![]() |
|
Log-Analyse und Auswertung: Windows 8.1: Avira meldet TR/Crypt.XPACK.Gen7Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #1 |
| ![]() Windows 8.1: Avira meldet TR/Crypt.XPACK.Gen7 Guten Abend allerseits Ich bin neu hier und möchte euch wegen folgendem Problem um Hilfe bitten: Als ich über google eine Website mit Praktika für Studenten aufrufen wollte, meldete mir der Avira Echtzeit-Scanner einen Fund: TR/Crypt.XPACK.Gen7 mit der URL bo.prodigymsnteregala.com Ich habe den Fund in die Quarantäne verschieben lassen. Jedoch bin ich mir ziemlich sicher, dass das Problem somit noch nicht gelöst ist. Auch wenn ich bis jetzt keine "offensichtliche Symptome" eines Befalls oder sonstige Störungen feststellen konnte. Ein Scan mit Malwarebytes hat keine Resultate erziehlt. (Siehe Log) Einen Scan mit FRST habe ich ebenfalls durchegführt (Siehe Log von FRST und Addition) Einen Scan mit Avira werde ich noch durchführen und dann sofort hinzufügen. Einen Scan mit GMER konnte ich nicht durchführen, da es Probleme bei der Ausführung gab. Ich werde es jedoch falls nötig nochmals versuchen oder allenfalls einen Scan mit einem ähnlichen, von euch empfohlenen Programm durchführen. EDIT: Fehlermeldung beim Start von GMER lautet Der Prozess kann nicht auf die Datei zugreifen, da sie von einem anderen Prozess verwendet wird. Ist ein Scan mit defog auch notwendig, wenn keine DVD-Emulatoren vorhanden sind? Malwarebytes: Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlauf Datum: 30.05.2014 Suchlauf-Zeit: 21:41:08 Logdatei: Malwarebytes.txt Administrator: Ja Version: 2.00.1.1004 Malware Datenbank: v2014.05.30.08 Rootkit Datenbank: v2014.05.21.01 Lizenz: Kostenlos Malware Schutz: Deaktiviert Bösartiger Webseiten Schutz: Deaktiviert Chameleon: Deaktiviert Betriebssystem: Windows 8.1 CPU: x64 Dateisystem: NTFS Benutzer: Ale Suchlauf-Art: Benutzerdefinierter Suchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 390317 Verstrichene Zeit: 1 Std, 7 Min, 23 Sek Speicher: Aktiviert Autostart: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Shuriken: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 0 (No malicious items detected) Module: 0 (No malicious items detected) Registrierungsschlüssel: 0 (No malicious items detected) Registrierungswerte: 0 (No malicious items detected) Registrierungsdaten: 0 (No malicious items detected) Ordner: 0 (No malicious items detected) Dateien: 0 (No malicious items detected) Physische Sektoren: 0 (No malicious items detected) (end) FRST Logfile: FRST Logfile: FRST Logfile: FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 30-05-2014 Ran by Ale (administrator) on ALE-PC on 30-05-2014 22:22:04 Running from C:\Users\Ale\Downloads Platform: Windows 8.1 (Update 1) (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (ASUS) C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe () C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe (Intel Corporation) C:\Windows\System32\DptfParticipantProcessorService.exe (Intel Corporation) C:\Windows\System32\DptfPolicyConfigTDPService.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Diskeeper Corporation) C:\Program Files\Diskeeper Corporation\ExpressCache\ExpressCache.exe (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Windows\SysWOW64\irstrtsv.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe (ASUS) C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnWMI.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe (ASUS) C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnCfg.exe (ASUS) C:\Program Files\ASUS\P4G\BatteryLife.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe (IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe (AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe (AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe (AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe (Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe (Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe (Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe (Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Farbar) C:\Users\Ale\Downloads\FRST64(1).exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13197456 2012-09-28] (Realtek Semiconductor) HKLM\...\Run: [BTMTrayAgent] => C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [11582848 2012-09-30] (Motorola Solutions, Inc.) HKLM\...\Run: [ACMON] => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [107192 2012-08-24] (ASUS) HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [161984 2014-04-20] (IvoSoft) HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [40312 2013-12-18] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [ASUSPRP] => C:\Program Files (x86)\ASUS\APRP\APRP.EXE [3187360 2013-04-26] (ASUSTek Computer Inc.) HKLM-x32\...\Run: [ASUSWebStorage] => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSPanel.exe [3576784 2012-12-19] (ASUS Cloud Corporation) HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [91432 2012-03-28] (CyberLink Corp.) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [737872 2014-05-22] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [49208 2010-06-09] (Hewlett-Packard) HKLM-x32\...\Run: [] => [X] Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.ch/ HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus13.msn.com SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=ASU2JS SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=ASU2JS SearchScopes: HKLM-x32 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=ASU2JS SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=ASU2JS SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft) BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO: ClassicIEBHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIEDLL_64.dll (IvoSoft) BHO-x32: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO-x32: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft) BHO-x32: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: ClassicIEBHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll (IvoSoft) Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft) Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 FireFox: ======== FF ProfilePath: C:\Users\Ale\AppData\Roaming\Mozilla\Firefox\Profiles\v75zn2z6.default FF Homepage: hxxp://www.google.ch/ FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll () FF Plugin-x32: @adobe.com/FlashPlayer - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 - C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @videolan.org/vlc,version=2.0.6 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll () FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Adblock Plus - C:\Users\Ale\AppData\Roaming\Mozilla\Firefox\Profiles\v75zn2z6.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-05-06] FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK ==================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [430160 2014-05-22] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [430160 2014-05-22] (Avira Operations GmbH & Co. KG) R2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1039952 2014-05-22] (Avira Operations GmbH & Co. KG) R2 ASUS InstantOn; C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe [277120 2012-04-13] (ASUS) R2 Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe [72192 2012-12-19] () R2 DptfParticipantProcessorService; C:\Windows\system32\DptfParticipantProcessorService.exe [30080 2012-10-01] (Intel Corporation) R2 DptfPolicyConfigTDPService; C:\Windows\system32\DptfPolicyConfigTDPService.exe [31616 2012-10-01] (Intel Corporation) R2 ExpressCache; C:\Program Files\Diskeeper Corporation\ExpressCache\ExpressCache.exe [79664 2012-03-30] (Diskeeper Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [129856 2012-06-27] (Intel Corporation) R2 irstrtsv; C:\Windows\SysWOW64\irstrtsv.exe [193576 2012-07-30] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-06-25] (Intel Corporation) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273136 2013-08-28] () S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-24] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-24] (Microsoft Corporation) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3378416 2013-08-28] (Intel® Corporation) ==================== Drivers (Whitelisted) ==================== S0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra) R3 ATP; C:\Windows\System32\drivers\AsusTP.sys [61824 2012-10-31] (ASUS Corporation) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [112080 2014-05-22] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [130584 2014-05-22] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2013-12-01] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [84720 2013-12-17] (Avira Operations GmbH & Co. KG) S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows (R) Win 7 DDK provider) R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-03-18] (Microsoft Corporation) R3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [1337216 2012-10-01] (Motorola Solutions, Inc.) S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-09-25] (Windows (R) Win 7 DDK provider) S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-09-25] (Windows (R) Win 7 DDK provider) R3 DptfDevDram; C:\Windows\system32\DRIVERS\DptfDevDram.sys [107328 2012-10-01] (Intel Corporation) R3 DptfDevFan; C:\Windows\system32\DRIVERS\DptfDevFan.sys [42816 2012-10-01] (Intel Corporation) R3 DptfDevGen; C:\Windows\system32\DRIVERS\DptfDevGen.sys [64832 2012-10-01] (Intel Corporation) R3 DptfDevPch; C:\Windows\system32\DRIVERS\DptfDevPch.sys [96576 2012-10-01] (Intel Corporation) R3 DptfDevProc; C:\Windows\system32\DRIVERS\DptfDevProc.sys [229184 2012-10-01] (Intel Corporation) R3 DptfManager; C:\Windows\system32\DRIVERS\DptfManager.sys [363328 2012-10-01] (Intel Corporation) R1 excfs; C:\Windows\System32\DRIVERS\excfs.sys [23344 2012-03-30] (Diskeeper Corporation) R0 excsd; C:\Windows\System32\DRIVERS\excsd.sys [95024 2012-03-30] (Diskeeper Corporation) S3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation) S3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation) S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation) R0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2014-03-18] (Microsoft Corporation) R3 irstrtdv; C:\Windows\System32\drivers\irstrtdv.sys [43800 2012-07-30] (Intel Corporation) R3 kbfiltr; C:\Windows\System32\drivers\kbfiltr.sys [14992 2012-08-02] ( ) S0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation) R3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation) S3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation) R3 NETwNe64; C:\Windows\system32\DRIVERS\Netwew00.sys [3345376 2013-10-08] (Intel Corporation) S3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924504 2014-03-18] (Microsoft Corporation) S3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2014-03-18] (Microsoft Corporation) S0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2014-03-18] (Microsoft Corporation) S3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation) R3 usb3Hub; C:\Windows\System32\drivers\usb3Hub.sys [47072 2012-10-09] (Windows (R) Win 7 DDK provider) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-03-24] (Microsoft Corporation) R0 Wof; C:\Windows\System32\Drivers\Wof.sys [157016 2014-05-08] (Microsoft Corporation) R3 XHCIPort; C:\Windows\System32\drivers\XHCIPort.sys [188896 2012-10-09] (Windows (R) Win 7 DDK provider) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-05-30 22:22 - 2014-05-30 22:22 - 00018021 _____ () C:\Users\Ale\Downloads\FRST.txt 2014-05-30 22:21 - 2014-05-30 22:22 - 00000000 ____D () C:\FRST 2014-05-30 22:21 - 2014-05-30 22:21 - 02066944 _____ (Farbar) C:\Users\Ale\Downloads\FRST64(1).exe 2014-05-30 22:20 - 2014-05-30 22:20 - 02066944 _____ (Farbar) C:\Users\Ale\Downloads\FRST64.exe 2014-05-30 21:43 - 2014-05-30 21:43 - 00001159 _____ () C:\Users\Ale\Desktop\Malwarebytes.txt 2014-05-30 19:38 - 2014-05-30 19:38 - 00000856 _____ () C:\WINDOWS\PFRO.log 2014-05-22 10:31 - 2014-05-30 21:13 - 00501360 _____ () C:\WINDOWS\WindowsUpdate.log 2014-05-15 21:33 - 2014-05-15 21:33 - 00000000 __SHD () C:\Users\Ale\AppData\Local\EmieUserList 2014-05-15 21:33 - 2014-05-15 21:33 - 00000000 __SHD () C:\Users\Ale\AppData\Local\EmieSiteList 2014-05-14 20:23 - 2014-03-24 04:30 - 00257880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys 2014-05-14 20:23 - 2014-03-24 04:30 - 00123224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys 2014-05-14 20:23 - 2014-03-24 04:27 - 00035856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys 2014-05-14 20:21 - 2014-04-09 00:46 - 00086688 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt_map.dll 2014-05-14 20:21 - 2014-04-09 00:46 - 00028320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt100.dll 2014-05-14 20:21 - 2014-04-08 20:54 - 00080032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mrt_map.dll 2014-05-14 20:21 - 2014-04-08 20:54 - 00026784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mrt100.dll 2014-05-14 20:21 - 2014-03-13 09:42 - 00308224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wusa.exe 2014-05-14 20:21 - 2014-03-13 08:51 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wusa.exe 2014-05-14 15:16 - 2014-05-14 15:16 - 00000000 ____D () C:\WINDOWS\PCHEALTH 2014-05-14 12:39 - 2014-04-11 12:03 - 00555736 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2014-05-14 12:39 - 2014-04-11 12:03 - 00054776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2014-05-14 12:39 - 2014-04-11 10:25 - 00419928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll 2014-05-14 12:39 - 2014-04-11 08:04 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2014-05-14 12:39 - 2014-04-11 07:53 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe 2014-05-14 12:39 - 2014-04-11 07:22 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll 2014-05-14 12:39 - 2014-04-11 05:54 - 00201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll 2014-05-14 12:39 - 2014-04-11 05:36 - 11792384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2014-05-14 12:39 - 2014-04-11 05:24 - 13288960 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2014-05-14 12:39 - 2014-04-11 05:06 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe 2014-05-14 12:39 - 2014-04-11 05:05 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2014-05-14 12:39 - 2014-04-11 05:05 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll 2014-05-14 12:39 - 2014-04-11 05:02 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-05-14 12:39 - 2014-04-11 05:02 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe 2014-05-14 12:39 - 2014-04-11 05:01 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll 2014-05-14 12:39 - 2014-04-11 05:00 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll 2014-05-14 12:39 - 2014-04-11 04:59 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2014-05-14 12:39 - 2014-04-11 04:57 - 00190976 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2014-05-14 12:39 - 2014-04-11 04:56 - 00381440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2014-05-14 12:39 - 2014-04-11 04:55 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2014-05-14 12:39 - 2014-04-11 04:53 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2014-05-14 12:39 - 2014-04-11 04:52 - 03464192 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2014-05-14 12:39 - 2014-04-11 04:46 - 01705472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2014-05-14 12:39 - 2014-04-11 04:36 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll 2014-05-14 12:39 - 2014-04-11 04:34 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll 2014-05-14 12:39 - 2014-04-11 04:29 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2014-05-14 12:39 - 2014-04-11 04:25 - 00921088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll 2014-05-14 12:38 - 2014-05-06 06:40 - 23544320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-05-14 12:38 - 2014-05-06 05:25 - 17382912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2014-05-14 12:38 - 2014-05-06 05:00 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2014-05-14 12:38 - 2014-05-06 04:10 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll 2014-05-14 12:38 - 2014-03-27 11:12 - 21225584 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2014-05-14 12:38 - 2014-03-27 09:48 - 18679728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2014-05-12 16:29 - 2014-05-12 16:29 - 00000000 ___RD () C:\WINDOWS\BrowserChoice 2014-05-10 12:14 - 2014-05-10 12:14 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-05-08 00:42 - 2014-05-19 12:38 - 00000000 ___DC () C:\WINDOWS\Panther 2014-05-08 00:42 - 2014-05-08 00:42 - 00000000 __SHD () C:\Recovery 2014-05-08 00:40 - 2014-05-08 00:40 - 16875520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 12732416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 08653824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 07425368 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2014-05-08 00:40 - 2014-05-08 00:40 - 06641152 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 05833728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 05770752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 04268544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 02900992 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 02641920 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 02519384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 02479616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 02373784 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2014-05-08 00:40 - 2014-05-08 00:40 - 02331000 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 02317824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 02270208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 02141912 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 02133504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 02088160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2014-05-08 00:40 - 2014-05-08 00:40 - 02030080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 02013016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 01843712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01816576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Display.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01779800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01764864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01679128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01656832 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01557848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 01542768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01527296 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01466864 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01411584 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01351168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01339240 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01306624 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01291200 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01230336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01200296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01129472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01112536 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01095488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01066496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01063424 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL 2014-05-08 00:40 - 2014-05-08 00:40 - 01057280 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01036288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01023488 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01015808 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00958464 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00950784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00939520 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00924160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00887296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aclui.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe 2014-05-08 00:40 - 2014-05-08 00:40 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00839168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00836096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00834560 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL 2014-05-08 00:40 - 2014-05-08 00:40 - 00801792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00800256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adtschema.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00721408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00717312 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00679424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00669696 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00655360 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00621568 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe 2014-05-08 00:40 - 2014-05-08 00:40 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00565536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00518552 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00492256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00488280 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00467800 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2014-05-08 00:40 - 2014-05-08 00:40 - 00467504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00463264 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlangpui.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00443392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00428888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2014-05-08 00:40 - 2014-05-08 00:40 - 00425984 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL 2014-05-08 00:40 - 2014-05-08 00:40 - 00406912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00406512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00402944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00390488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netcfgx.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00388408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00387210 _____ () C:\WINDOWS\system32\ApnDatabase.xml 2014-05-08 00:40 - 2014-05-08 00:40 - 00386560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlangpui.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00379224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00376152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00364640 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00360512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00356848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00355832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00337752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00334848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe 2014-05-08 00:40 - 2014-05-08 00:40 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00325632 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00305768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanmsm.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDMon.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\spp.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00264192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL 2014-05-08 00:40 - 2014-05-08 00:40 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LocationApi.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00254976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pdh.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00247296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00244888 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2014-05-08 00:40 - 2014-05-08 00:40 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spp.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00220160 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00212992 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00197632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00180056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReInfo.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00157016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00136024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00134144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpnpmgr.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevPropMgr.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00113648 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00111616 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe 2014-05-08 00:40 - 2014-05-08 00:40 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvinst.exe 2014-05-08 00:40 - 2014-05-08 00:40 - 00094016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userenv.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\davclnt.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxproxy.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32tm.exe 2014-05-08 00:40 - 2014-05-08 00:40 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IPMIDrv.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\w32tm.exe 2014-05-08 00:40 - 2014-05-08 00:40 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\l2gpstore.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\l2gpstore.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvcfg.exe 2014-05-08 00:40 - 2014-05-08 00:40 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpipreg.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SetNetworkLocation.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Shell.Search.UriHandler.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxproxy.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00033280 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredentialMigrationHandler.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanhlp.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll 2014-05-08 00:39 - 2014-05-08 00:39 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2014-05-08 00:39 - 2014-05-08 00:39 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2014-05-08 00:39 - 2014-05-08 00:39 - 00918528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2014-05-08 00:39 - 2014-05-08 00:39 - 00629760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll 2014-05-08 00:39 - 2014-05-08 00:39 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff 2014-05-08 00:37 - 2014-05-08 00:37 - 00000000 ____D () C:\WINDOWS\SysWOW64\XPSViewer 2014-05-08 00:37 - 2014-05-08 00:37 - 00000000 ____D () C:\Program Files\Reference Assemblies 2014-05-08 00:37 - 2014-05-08 00:37 - 00000000 ____D () C:\Program Files\MSBuild 2014-05-08 00:37 - 2014-05-08 00:37 - 00000000 ____D () C:\Program Files (x86)\Reference Assemblies 2014-05-08 00:37 - 2014-05-08 00:37 - 00000000 ____D () C:\Program Files (x86)\MSBuild 2014-05-08 00:36 - 2014-05-08 00:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell 2014-05-08 00:36 - 2013-08-03 06:48 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2014-05-08 00:36 - 2013-08-03 06:48 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2014-05-08 00:36 - 2013-08-03 06:48 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2014-05-08 00:36 - 2013-08-03 06:41 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll 2014-05-08 00:36 - 2013-08-03 06:41 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2014-05-08 00:36 - 2013-08-03 06:41 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2014-05-08 00:34 - 2014-05-08 00:35 - 06791360 _____ (IvoSoft) C:\Users\Ale\Downloads\ClassicShellSetup_4_1_0.exe 2014-05-08 00:25 - 2014-05-30 19:41 - 00000000 __RDO () C:\Users\Ale\OneDrive 2014-05-08 00:24 - 2014-05-08 00:24 - 00001456 _____ () C:\Users\Ale\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-05-08 00:23 - 2014-05-08 00:23 - 00000020 ___SH () C:\Users\Ale\ntuser.ini 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Programme 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Dokumente und Einstellungen 2014-05-08 00:06 - 2014-05-08 00:06 - 00022960 _____ () C:\WINDOWS\system32\emptyregdb.dat 2014-05-07 23:56 - 2014-05-07 23:56 - 00001547 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2014-05-07 23:56 - 2014-05-07 23:56 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Intel 2014-05-07 23:56 - 2014-05-07 23:56 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help 2014-05-07 23:56 - 2014-05-07 23:56 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Intel 2014-05-07 23:56 - 2014-05-07 23:56 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help 2014-05-07 23:51 - 2014-05-07 23:51 - 00000000 ____D () C:\WINDOWS\system32\config\bbimigrate 2014-05-07 23:50 - 2014-05-30 22:22 - 00000000 ____D () C:\Users\Ale\AppData\Local\Temp 2014-05-07 23:50 - 2014-05-30 19:39 - 00000000 ____D () C:\Users\Ale 2014-05-07 23:50 - 2014-05-08 00:06 - 00024768 _____ () C:\WINDOWS\diagwrn.xml 2014-05-07 23:50 - 2014-05-08 00:06 - 00024768 _____ () C:\WINDOWS\diagerr.xml 2014-05-07 23:50 - 2014-05-07 23:51 - 00000000 ___RD () C:\Users\Ale\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-07 23:50 - 2014-05-07 23:51 - 00000000 ___RD () C:\Users\Ale\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Vorlagen 2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Startmenü 2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Netzwerkumgebung 2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Lokale Einstellungen 2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Eigene Dateien 2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Druckumgebung 2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Documents\Eigene Musik 2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Documents\Eigene Bilder 2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\AppData\Local\Verlauf 2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\AppData\Local\Anwendungsdaten 2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Anwendungsdaten 2014-05-07 23:50 - 2014-03-18 12:11 - 00000369 _____ () C:\Users\Ale\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2014-05-07 23:50 - 2014-03-18 12:11 - 00000369 _____ () C:\Users\Ale\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2014-05-07 23:50 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Ale\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-05-07 23:50 - 2013-08-22 17:36 - 00000000 ____D () C:\Users\Ale\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-05-07 23:45 - 2014-05-07 23:45 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_iBtFltCoex_01009.Wdf 2014-05-07 23:45 - 2014-05-07 23:45 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_DptfDevGen_01009.Wdf 2014-05-07 23:45 - 2014-05-07 23:45 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_DptfDevFan_01009.Wdf 2014-05-07 23:45 - 2014-05-07 23:45 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_DptfDevDram_01009.Wdf 2014-05-07 23:45 - 2014-05-07 23:45 - 00000000 ____D () C:\WINDOWS\SysWOW64\RTCOM 2014-05-07 23:45 - 2014-05-07 23:45 - 00000000 ____D () C:\Program Files\Realtek 2014-05-07 23:44 - 2014-05-07 23:54 - 00000000 ____D () C:\Program Files (x86)\Intel 2014-05-07 23:44 - 2014-05-07 23:44 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_DptfManager_01009.Wdf 2014-05-07 23:44 - 2014-05-07 23:44 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_DptfDevProc_01009.Wdf 2014-05-07 23:44 - 2014-05-07 23:44 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_DptfDevPch_01009.Wdf 2014-05-07 23:44 - 2013-10-01 13:02 - 00064000 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL 2014-05-07 23:44 - 2013-10-01 13:02 - 00060416 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL 2014-05-07 18:20 - 2014-05-07 18:20 - 00075514 _____ () C:\Users\Ale\Documents\cc_20140507_182052.reg 2014-05-06 00:44 - 2014-05-30 20:33 - 00119512 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2014-05-06 00:15 - 2014-05-07 23:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-05-06 00:15 - 2014-05-06 00:15 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-05-06 00:15 - 2014-05-06 00:15 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-05-06 00:15 - 2014-04-03 09:51 - 00088280 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2014-05-06 00:15 - 2014-04-03 09:51 - 00063192 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2014-05-06 00:15 - 2014-04-03 09:50 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2014-05-06 00:07 - 2014-05-06 00:10 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Ale\Downloads\mbam-setup-2.0.1.1004.exe ==================== One Month Modified Files and Folders ======= 2014-05-30 22:22 - 2014-05-30 22:22 - 00018021 _____ () C:\Users\Ale\Downloads\FRST.txt 2014-05-30 22:22 - 2014-05-30 22:21 - 00000000 ____D () C:\FRST 2014-05-30 22:22 - 2014-05-07 23:50 - 00000000 ____D () C:\Users\Ale\AppData\Local\Temp 2014-05-30 22:21 - 2014-05-30 22:21 - 02066944 _____ (Farbar) C:\Users\Ale\Downloads\FRST64(1).exe 2014-05-30 22:20 - 2014-05-30 22:20 - 02066944 _____ (Farbar) C:\Users\Ale\Downloads\FRST64.exe 2014-05-30 22:19 - 2013-09-18 13:35 - 00000884 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2014-05-30 22:00 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\sru 2014-05-30 21:43 - 2014-05-30 21:43 - 00001159 _____ () C:\Users\Ale\Desktop\Malwarebytes.txt 2014-05-30 21:16 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\rescache 2014-05-30 21:13 - 2014-05-22 10:31 - 00501360 _____ () C:\WINDOWS\WindowsUpdate.log 2014-05-30 20:50 - 2013-09-16 15:08 - 00003600 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2990060037-2151254000-1159204869-1001 2014-05-30 20:33 - 2014-05-06 00:44 - 00119512 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2014-05-30 20:28 - 2013-11-13 13:59 - 00000000 ____D () C:\Users\Ale\AppData\Roaming\ClassicShell 2014-05-30 20:08 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\AppReadiness 2014-05-30 19:45 - 2014-03-18 12:03 - 01776918 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2014-05-30 19:45 - 2014-03-18 11:25 - 00773008 _____ () C:\WINDOWS\system32\perfh007.dat 2014-05-30 19:45 - 2014-03-18 11:25 - 00162310 _____ () C:\WINDOWS\system32\perfc007.dat 2014-05-30 19:41 - 2014-05-08 00:25 - 00000000 __RDO () C:\Users\Ale\OneDrive 2014-05-30 19:40 - 2013-09-15 17:27 - 00000408 _____ () C:\Users\Ale\AppData\Roaming\sp_data.sys 2014-05-30 19:39 - 2014-05-07 23:50 - 00000000 ____D () C:\Users\Ale 2014-05-30 19:38 - 2014-05-30 19:38 - 00000856 _____ () C:\WINDOWS\PFRO.log 2014-05-30 19:38 - 2013-08-22 16:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-05-29 16:15 - 2013-09-15 17:25 - 00000000 ____D () C:\Users\Ale\AppData\Local\Packages 2014-05-27 14:13 - 2013-09-18 13:16 - 00271360 _____ () C:\Users\Ale\Desktop\Meine Outlook-Datendatei(1).pst 2014-05-22 11:16 - 2013-09-15 17:26 - 00000000 ____D () C:\Users\Ale\AppData\Roaming\Adobe 2014-05-22 11:16 - 2013-04-26 01:15 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-05-22 10:55 - 2013-09-17 20:53 - 00000000 ____D () C:\Users\Ale\AppData\Local\Adobe 2014-05-22 10:55 - 2013-04-26 01:15 - 00000000 ____D () C:\ProgramData\Adobe 2014-05-22 10:54 - 2013-11-22 13:18 - 00000000 ____D () C:\ProgramData\Package Cache 2014-05-22 10:32 - 2013-09-16 15:16 - 00130584 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys 2014-05-22 10:32 - 2013-09-16 15:16 - 00112080 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys 2014-05-19 12:38 - 2014-05-08 00:42 - 00000000 ___DC () C:\WINDOWS\Panther 2014-05-18 14:04 - 2013-09-16 12:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2014-05-18 14:04 - 2013-09-16 12:31 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-05-18 13:49 - 2013-09-16 15:05 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-05-16 21:13 - 2013-08-22 17:36 - 00000000 ___RD () C:\WINDOWS\ToastData 2014-05-16 21:13 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-16 21:13 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-16 21:13 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\WinStore 2014-05-16 21:13 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files\Windows Defender 2014-05-16 21:13 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender 2014-05-16 21:13 - 2013-08-22 15:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI 2014-05-16 14:32 - 2012-07-26 07:26 - 00000234 _____ () C:\WINDOWS\win.ini 2014-05-16 13:14 - 2012-07-26 09:59 - 00000000 ____D () C:\WINDOWS\CbsTemp 2014-05-16 12:08 - 2013-08-22 15:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM 2014-05-16 11:40 - 2013-09-15 17:27 - 00000000 ___RD () C:\Users\Ale\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2014-05-16 11:40 - 2013-09-15 17:27 - 00000000 ___RD () C:\Users\Ale\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2014-05-15 23:00 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\SecureBootUpdates 2014-05-15 22:53 - 2013-09-17 22:06 - 00000000 ____D () C:\WINDOWS\system32\MRT 2014-05-15 22:50 - 2013-09-17 22:06 - 93223848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2014-05-15 21:33 - 2014-05-15 21:33 - 00000000 __SHD () C:\Users\Ale\AppData\Local\EmieUserList 2014-05-15 21:33 - 2014-05-15 21:33 - 00000000 __SHD () C:\Users\Ale\AppData\Local\EmieSiteList 2014-05-14 15:16 - 2014-05-14 15:16 - 00000000 ____D () C:\WINDOWS\PCHEALTH 2014-05-13 20:19 - 2013-09-18 13:35 - 00003772 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2014-05-12 16:29 - 2014-05-12 16:29 - 00000000 ___RD () C:\WINDOWS\BrowserChoice 2014-05-10 12:14 - 2014-05-10 12:14 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-05-10 10:48 - 2013-09-30 08:54 - 00208737 _____ () C:\WINDOWS\hpoins21.dat 2014-05-10 10:48 - 2013-09-30 08:54 - 00001756 _____ () C:\ProgramData\hpzinstall.log 2014-05-10 10:44 - 2013-10-07 11:47 - 00002041 _____ () C:\Users\Public\Desktop\Adobe Reader X.lnk 2014-05-10 10:44 - 2013-04-26 01:15 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk 2014-05-08 00:42 - 2014-05-08 00:42 - 00000000 __SHD () C:\Recovery 2014-05-08 00:41 - 2013-08-22 17:36 - 00262144 _____ () C:\WINDOWS\system32\config\BCD-Template 2014-05-08 00:41 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\setup 2014-05-08 00:40 - 2014-05-08 00:40 - 16875520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 12732416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 08653824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 07425368 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2014-05-08 00:40 - 2014-05-08 00:40 - 06641152 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 05833728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 05770752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 04268544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 02900992 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 02641920 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 02519384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 02479616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 02373784 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe 2014-05-08 00:40 - 2014-05-08 00:40 - 02331000 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 02317824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 02270208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 02141912 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 02133504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 02088160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe 2014-05-08 00:40 - 2014-05-08 00:40 - 02030080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 02013016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 01843712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01816576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Display.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01779800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01764864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01679128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01656832 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01557848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 01542768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01527296 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01466864 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01411584 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01351168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01339240 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01306624 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01291200 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01230336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01200296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01129472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01112536 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01095488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01066496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01063424 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL 2014-05-08 00:40 - 2014-05-08 00:40 - 01057280 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01036288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01023488 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 01015808 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00958464 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00950784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00939520 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00924160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00887296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aclui.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe 2014-05-08 00:40 - 2014-05-08 00:40 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00839168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00836096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00834560 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL 2014-05-08 00:40 - 2014-05-08 00:40 - 00801792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00800256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adtschema.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00721408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00717312 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00679424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00669696 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00655360 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00621568 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe 2014-05-08 00:40 - 2014-05-08 00:40 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00565536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00518552 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00492256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00488280 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00467800 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2014-05-08 00:40 - 2014-05-08 00:40 - 00467504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00463264 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlangpui.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00443392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00428888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2014-05-08 00:40 - 2014-05-08 00:40 - 00425984 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL 2014-05-08 00:40 - 2014-05-08 00:40 - 00406912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00406512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00402944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00390488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netcfgx.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00388408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00387210 _____ () C:\WINDOWS\system32\ApnDatabase.xml 2014-05-08 00:40 - 2014-05-08 00:40 - 00386560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlangpui.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00379224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00376152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00364640 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00360512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00356848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00355832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00337752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00334848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe 2014-05-08 00:40 - 2014-05-08 00:40 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00325632 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00305768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanmsm.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDMon.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\spp.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00264192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL 2014-05-08 00:40 - 2014-05-08 00:40 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LocationApi.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00254976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pdh.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00247296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00244888 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2014-05-08 00:40 - 2014-05-08 00:40 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spp.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00220160 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00212992 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00197632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00180056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReInfo.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00157016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00136024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00134144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpnpmgr.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevPropMgr.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00113648 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00111616 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe 2014-05-08 00:40 - 2014-05-08 00:40 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvinst.exe 2014-05-08 00:40 - 2014-05-08 00:40 - 00094016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userenv.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\davclnt.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxproxy.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32tm.exe 2014-05-08 00:40 - 2014-05-08 00:40 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IPMIDrv.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\w32tm.exe 2014-05-08 00:40 - 2014-05-08 00:40 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\l2gpstore.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\l2gpstore.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvcfg.exe 2014-05-08 00:40 - 2014-05-08 00:40 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpipreg.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SetNetworkLocation.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Shell.Search.UriHandler.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxproxy.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00033280 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys 2014-05-08 00:40 - 2014-05-08 00:40 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredentialMigrationHandler.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanhlp.dll 2014-05-08 00:40 - 2014-05-08 00:40 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll 2014-05-08 00:39 - 2014-05-08 00:39 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2014-05-08 00:39 - 2014-05-08 00:39 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2014-05-08 00:39 - 2014-05-08 00:39 - 00918528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll 2014-05-08 00:39 - 2014-05-08 00:39 - 00629760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll 2014-05-08 00:39 - 2014-05-08 00:39 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff 2014-05-08 00:37 - 2014-05-08 00:37 - 00000000 ____D () C:\WINDOWS\SysWOW64\XPSViewer 2014-05-08 00:37 - 2014-05-08 00:37 - 00000000 ____D () C:\Program Files\Reference Assemblies 2014-05-08 00:37 - 2014-05-08 00:37 - 00000000 ____D () C:\Program Files\MSBuild 2014-05-08 00:37 - 2014-05-08 00:37 - 00000000 ____D () C:\Program Files (x86)\Reference Assemblies 2014-05-08 00:37 - 2014-05-08 00:37 - 00000000 ____D () C:\Program Files (x86)\MSBuild 2014-05-08 00:36 - 2014-05-08 00:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell 2014-05-08 00:36 - 2013-12-05 17:20 - 00000000 ____D () C:\ProgramData\ClassicShell 2014-05-08 00:36 - 2013-11-13 13:58 - 00000000 ____D () C:\Program Files\Classic Shell 2014-05-08 00:35 - 2014-05-08 00:34 - 06791360 _____ (IvoSoft) C:\Users\Ale\Downloads\ClassicShellSetup_4_1_0.exe 2014-05-08 00:35 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\restore 2014-05-08 00:24 - 2014-05-08 00:24 - 00001456 _____ () C:\Users\Ale\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-05-08 00:24 - 2013-09-15 17:27 - 00000000 ____D () C:\WINDOWS\System32\Tasks\WPD 2014-05-08 00:23 - 2014-05-08 00:23 - 00000020 ___SH () C:\Users\Ale\ntuser.ini 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Programme 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Dokumente und Einstellungen 2014-05-08 00:07 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files\Windows NT 2014-05-08 00:07 - 2013-08-22 15:36 - 00000000 __RHD () C:\Users\Default 2014-05-08 00:06 - 2014-05-08 00:06 - 00022960 _____ () C:\WINDOWS\system32\emptyregdb.dat 2014-05-08 00:06 - 2014-05-07 23:50 - 00024768 _____ () C:\WINDOWS\diagwrn.xml 2014-05-08 00:06 - 2014-05-07 23:50 - 00024768 _____ () C:\WINDOWS\diagerr.xml 2014-05-08 00:06 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\Registration 2014-05-08 00:03 - 2013-08-22 17:36 - 00000000 __RSD () C:\WINDOWS\Media 2014-05-08 00:02 - 2013-08-22 17:36 - 00000000 __RHD () C:\Users\Public\Libraries 2014-05-07 23:58 - 2013-08-22 16:44 - 00482104 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2014-05-07 23:57 - 2014-05-06 00:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-05-07 23:57 - 2014-03-18 11:40 - 00000000 ____D () C:\WINDOWS\ShellNew 2014-05-07 23:57 - 2013-11-22 13:19 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel PROSet Wireless 2014-05-07 23:57 - 2013-09-30 09:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP 2014-05-07 23:57 - 2013-09-16 15:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2014-05-07 23:57 - 2013-09-16 15:20 - 00000000 ____D () C:\Users\Ale\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-05-07 23:57 - 2013-09-16 15:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-05-07 23:57 - 2013-08-22 17:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp 2014-05-07 23:57 - 2013-08-22 15:36 - 00000000 ____D () C:\WINDOWS\system32\Sysprep 2014-05-07 23:57 - 2013-06-26 10:09 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel 2014-05-07 23:57 - 2013-04-26 01:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2014-05-07 23:57 - 2013-04-26 01:17 - 00000000 ____D () C:\WINDOWS\nl 2014-05-07 23:57 - 2013-04-26 01:17 - 00000000 ____D () C:\WINDOWS\it 2014-05-07 23:57 - 2013-04-26 01:17 - 00000000 ____D () C:\WINDOWS\fr 2014-05-07 23:57 - 2013-04-26 01:17 - 00000000 ____D () C:\WINDOWS\de 2014-05-07 23:57 - 2013-04-26 01:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS 2014-05-07 23:57 - 2012-07-26 11:43 - 00000000 ____D () C:\WINDOWS\en-GB 2014-05-07 23:56 - 2014-05-07 23:56 - 00001547 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2014-05-07 23:56 - 2014-05-07 23:56 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Intel 2014-05-07 23:56 - 2014-05-07 23:56 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help 2014-05-07 23:56 - 2014-05-07 23:56 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Intel 2014-05-07 23:56 - 2014-05-07 23:56 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help 2014-05-07 23:56 - 2014-03-18 11:25 - 00000000 ____D () C:\WINDOWS\SysWOW64\WCN 2014-05-07 23:56 - 2014-03-18 11:25 - 00000000 ____D () C:\WINDOWS\SysWOW64\sysprep 2014-05-07 23:56 - 2014-03-18 11:25 - 00000000 ____D () C:\WINDOWS\system32\WCN 2014-05-07 23:56 - 2013-09-30 09:06 - 00000000 ____D () C:\WINDOWS\SysWOW64\spool 2014-05-07 23:56 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\MUI 2014-05-07 23:56 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\migwiz 2014-05-07 23:56 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\IME 2014-05-07 23:56 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\WinBioPlugIns 2014-05-07 23:56 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\spool 2014-05-07 23:56 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\NDF 2014-05-07 23:56 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\MUI 2014-05-07 23:56 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\IME 2014-05-07 23:56 - 2013-08-22 15:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\SMI 2014-05-07 23:56 - 2013-08-22 15:36 - 00000000 ____D () C:\WINDOWS\system32\oobe 2014-05-07 23:56 - 2013-06-26 10:12 - 00000000 ____D () C:\WINDOWS\SysWOW64\sda 2014-05-07 23:56 - 2012-07-26 07:37 - 00000000 ____D () C:\Users\Default.migrated 2014-05-07 23:54 - 2014-05-07 23:44 - 00000000 ____D () C:\Program Files (x86)\Intel 2014-05-07 23:54 - 2013-09-16 15:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2014-05-07 23:54 - 2013-08-22 17:43 - 00000000 ____D () C:\WINDOWS\DigitalLocker 2014-05-07 23:54 - 2013-08-22 17:36 - 00000000 __SHD () C:\Program Files\Windows Sidebar 2014-05-07 23:54 - 2013-08-22 17:36 - 00000000 __SHD () C:\Program Files (x86)\Windows Sidebar 2014-05-07 23:54 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\PolicyDefinitions 2014-05-07 23:54 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\IME 2014-05-07 23:54 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\Help 2014-05-07 23:54 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files\Common Files\System 2014-05-07 23:54 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2014-05-07 23:54 - 2013-06-26 10:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Corporation 2014-05-07 23:54 - 2013-06-26 10:24 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUSDVD 2014-05-07 23:54 - 2012-08-02 15:28 - 00000000 ____D () C:\ProgramData\PRICache 2014-05-07 23:51 - 2014-05-07 23:51 - 00000000 ____D () C:\WINDOWS\system32\config\bbimigrate 2014-05-07 23:51 - 2014-05-07 23:50 - 00000000 ___RD () C:\Users\Ale\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-05-07 23:51 - 2014-05-07 23:50 - 00000000 ___RD () C:\Users\Ale\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-05-07 23:51 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\Recovery 2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Vorlagen 2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Startmenü 2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Netzwerkumgebung 2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Lokale Einstellungen 2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Eigene Dateien 2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Druckumgebung 2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Documents\Eigene Musik 2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Documents\Eigene Bilder 2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\AppData\Local\Verlauf 2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\AppData\Local\Anwendungsdaten 2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Anwendungsdaten 2014-05-07 23:45 - 2014-05-07 23:45 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_iBtFltCoex_01009.Wdf 2014-05-07 23:45 - 2014-05-07 23:45 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_DptfDevGen_01009.Wdf 2014-05-07 23:45 - 2014-05-07 23:45 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_DptfDevFan_01009.Wdf 2014-05-07 23:45 - 2014-05-07 23:45 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_DptfDevDram_01009.Wdf 2014-05-07 23:45 - 2014-05-07 23:45 - 00000000 ____D () C:\WINDOWS\SysWOW64\RTCOM 2014-05-07 23:45 - 2014-05-07 23:45 - 00000000 ____D () C:\Program Files\Realtek 2014-05-07 23:44 - 2014-05-07 23:44 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_DptfManager_01009.Wdf 2014-05-07 23:44 - 2014-05-07 23:44 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_DptfDevProc_01009.Wdf 2014-05-07 23:44 - 2014-05-07 23:44 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_DptfDevPch_01009.Wdf 2014-05-07 22:37 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\AUInstallAgent 2014-05-07 18:20 - 2014-05-07 18:20 - 00075514 _____ () C:\Users\Ale\Documents\cc_20140507_182052.reg 2014-05-07 15:39 - 2013-09-19 19:11 - 00111104 ___SH () C:\Users\Ale\Desktop\Thumbs.db 2014-05-06 06:40 - 2014-05-14 12:38 - 23544320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-05-06 05:25 - 2014-05-14 12:38 - 17382912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2014-05-06 05:00 - 2014-05-14 12:38 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2014-05-06 04:10 - 2014-05-14 12:38 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll 2014-05-06 00:15 - 2014-05-06 00:15 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-05-06 00:15 - 2014-05-06 00:15 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-05-06 00:10 - 2014-05-06 00:07 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Ale\Downloads\mbam-setup-2.0.1.1004.exe 2014-05-01 22:30 - 2013-08-22 17:38 - 00693240 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2014-05-01 22:30 - 2013-08-22 17:38 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl Files to move or delete: ==================== C:\ProgramData\SetStretch.exe C:\ProgramData\SetStretch.VBS Some content of TEMP: ==================== C:\Users\Ale\AppData\Local\Temp\avgnt.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2014-05-30 20:07 ==================== End Of Log ============================ --- --- --- --- --- --- --- --- --- --- --- --- EDIT: Addition-Log wird als Anhang hinzugefügt (Text war zu lang) Die restlichen Logs werde ich hinzufügen, sobald die Scans fertig sind. Ich hoffe ihr könnt mir bei meinem Problem behilflich sein und bitte zögert nicht mir mitzuteilen, falls ihr noch weitere Infos braucht. Ich danke euch bereits im Voraus! Geändert von aleinter12 (30.05.2014 um 22:30 Uhr) Grund: Text zu lang |
Themen zu Windows 8.1: Avira meldet TR/Crypt.XPACK.Gen7 |
adobe, antivir, asus, avira, browser, defender, desktop, explorer, firefox, flash player, google, homepage, log, mozilla, opera, problem, programm, realtek, registry, schutz, services.exe, software, störungen, tr/crypt.xpack.gen, windows, winlogon.exe |