Durch Unwissenheit meiner Eltern haben diese die .zip Datei in der vermeintlichen Rechnung der Telekom geöffnet. Ich habe das System mit FRST64 gescannt und bitte nun jemanden, sich die Logfiles anzuschauen. Ich hoffe ihr könnt mir Auskunft über eine mögliche Infektion geben und mich bei den weitern Schritten unterstützen.
Vielen Dank im Voraus.
FRST.txt
Code:
Alles auswählen Aufklappen ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 02-06-2014
Ran by Eibe (administrator) on EIBE-PC on 04-06-2014 15:07:14
Running from C:\Users\Eibe\Downloads
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: hxxp://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/
Download link for 64-Bit Version: hxxp://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgrsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgcsrva.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(ArcSoft Inc.) C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe
(Juniper Networks) C:\Program Files (x86)\Juniper Networks\Common Files\dsNcService.exe
(Foxit Corporation) C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgnsa.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgemca.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Event Service\VESMgr.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Event Service\VESMgrSub.exe
(Intel Corporation) C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe
(Intel Corporation) C:\Program Files\Sony\VAIO Care\VCPerfService.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler64.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNClient.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMgr.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMService.exe
(hxxp://tortoisesvn.net) C:\Program Files\TortoiseSVN\bin\TSVNCache.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
(ArcSoft Inc.) C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
(Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgui.exe
(Dropbox, Inc.) C:\Users\Eibe\AppData\Roaming\Dropbox\bin\Dropbox.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Intel Corporation) C:\Program Files\Sony\VAIO Care\ESRV\esrv.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCSystemTray.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCService.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCAgent.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update\VUAgent.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCAdmin.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
() C:\Program Files\Sony\VAIO Care\listener.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [9636896 2014-04-18] (Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [500208 2010-03-06] (Adobe Systems Incorporated)
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [108144 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [102400 2010-09-20] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284696 2009-11-20] (Intel Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-12-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [224128 2014-03-18] (Oracle Corporation)
HKLM-x32\...\Run: [AdobeCS5ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [406992 2010-02-22] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [ArcSoft Connection Service] => C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe [207424 2010-10-27] (ArcSoft Inc.)
HKLM-x32\...\Run: [PDFPrint] => C:\Program Files (x86)\PDF24\pdf24.exe [189480 2014-02-06] (Geek Software GmbH)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [54576 2009-11-18] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [hpqSRMon] => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [150528 2008-07-22] (Hewlett-Packard)
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\AVG2014\avgui.exe [5181456 2014-05-13] (AVG Technologies CZ, s.r.o.)
Winlogon\Notify\VESWinlogon-x32: VESWinlogon.dll [X]
HKU\.DEFAULT\...\RunOnce: [SPReview] - C:\Windows\System32\SPReview\SPReview.exe [301568 2014-04-22] (Microsoft Corporation)
HKU\S-1-5-21-2746430463-3383457793-1616783157-1001\...\Run: [DAEMON Tools Lite] => D:\Programme\DaemonTools\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
HKU\S-1-5-21-2746430463-3383457793-1616783157-1001\...\Run: [AdobeBridge] => [X]
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)
Startup: C:\Users\Eibe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Eibe\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xA809DE66325BCF01
URLSearchHook: HKCU - Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre8\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre8\bin\jp2ssv.dll (Oracle Corporation)
BHO: DVDVideoSoft IE Extension - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll (DVDVideoSoft Ltd.)
BHO-x32: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
BHO-x32: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
BHO-x32: ContributeBHO Class - {074C1DC5-9320-4A9A-947D-C042949C6216} - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll (Adobe Systems, Inc.)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: DVDVideoSoft IE Extension - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll (DVDVideoSoft Ltd.)
BHO-x32: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll (Yahoo! Inc)
BHO-x32: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
Toolbar: HKLM-x32 - Contribute Toolbar - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\IEPlugin\contributeieplugin.dll (Adobe Systems, Inc.)
Toolbar: HKLM-x32 - Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files (x86)\Yahoo!\Companion\Installs\cpn\yt.dll (Yahoo! Inc.)
DPF: HKLM-x32 {F27237D7-93C8-44C2-AC6E-D6057B9A918F} https://juniper.net/dana-cached/sc/JuniperSetupClient.cab
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_182.dll ()
FF Plugin: @java.com/DTPlugin,version=11.5.2 - C:\Program Files\Java\jre8\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.5.2 - C:\Program Files\Java\jre8\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_182.dll ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF HKLM-x32\...\Firefox\Extensions: [{01A8CA0A-4C96-465b-A49B-65C46FAD54F9}] - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\FirefoxPlugin\{01A8CA0A-4C96-465b-A49B-65C46FAD54F9}
FF Extension: Adobe Contribute Toolbar - C:\Program Files (x86)\Adobe\Adobe Contribute CS5\Plugins\FirefoxPlugin\{01A8CA0A-4C96-465b-A49B-65C46FAD54F9} [2014-04-19]
FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2014-04-24]
FF HKCU\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2014-04-24]
FF HKCU\...\Firefox\Extensions: [{B64D9B05-48E1-4CEB-BF58-E0643994E900}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff\
FF Extension: Download videos and MP3s from YouTube - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff\ []
Chrome:
=======
CHR HomePage: hxxp://www.google.com/
CHR Extension: (Google Docs) - C:\Users\Eibe\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-04-18]
CHR Extension: (YouTube) - C:\Users\Eibe\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-04-18]
CHR Extension: (Adblock Plus) - C:\Users\Eibe\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-04-29]
CHR Extension: (Google-Suche) - C:\Users\Eibe\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-04-18]
CHR Extension: (AdBlock) - C:\Users\Eibe\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-06-01]
CHR Extension: (Google Wallet) - C:\Users\Eibe\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-04-18]
CHR Extension: (Google Mail) - C:\Users\Eibe\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-04-18]
CHR HKCU\...\Chrome\Extension: [nikpibnbobmbdbheedjfogjlikpgpnhp] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\DVDVideoSoftBrowserExtension.crx [2014-05-23]
==================== Services (Whitelisted) =================
R2 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe [3644432 2014-05-13] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe [292424 2014-05-13] (AVG Technologies CZ, s.r.o.)
R2 ESRV_SVC; C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe [377768 2013-11-01] (Intel Corporation)
R2 FoxitCloudUpdateService; C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe [241728 2014-03-11] (Foxit Corporation)
S2 KMService; C:\Windows\SysWOW64\srvany.exe [8192 2014-04-18] ()
R2 MSSQL$SQLEXPRESS; C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [29293408 2010-12-10] (Microsoft Corporation)
S4 msvsmon90; C:\Program Files\Microsoft Visual Studio 9.0\Common7\IDE\Remote Debugger\x64\msvsmon.exe [4466688 2007-11-08] (Microsoft Corporation)
R2 SampleCollector; C:\Program Files\Sony\VAIO Care\VCPerfService.exe [266168 2013-11-01] (Intel Corporation)
S3 USER_ESRV_SVC; C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe [377768 2013-11-01] (Intel Corporation)
R3 VUAgent; C:\Program Files\Sony\VAIO Update\vuagent.exe [1642544 2014-02-27] (Sony Corporation)
==================== Drivers (Whitelisted) ====================
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [152344 2014-05-13] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [236312 2014-05-13] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [191768 2014-05-13] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [235800 2014-05-13] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [323352 2014-05-13] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [130328 2014-05-13] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [31512 2014-05-13] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [273176 2014-05-13] (AVG Technologies CZ, s.r.o.)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-04-18] (Disc Soft Ltd)
U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2011-10-24] (Huawei Technologies Co., Ltd.)
S3 libusb0; C:\Windows\System32\DRIVERS\libusb0.sys [44480 2011-05-21] (hxxp://libusb-win32.sourceforge.net)
R3 semav6thermal64ro; C:\Windows\system32\drivers\semav6thermal64ro.sys [13792 2014-04-18] ()
R3 WinDriver6; C:\Windows\System32\drivers\windrvr6.sys [260608 2012-02-27] (Jungo)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-06-04 15:07 - 2014-06-04 15:08 - 00020358 _____ () C:\Users\Eibe\Downloads\FRST.txt
2014-06-04 15:05 - 2014-06-04 15:07 - 00000000 ____D () C:\FRST
2014-06-04 15:04 - 2014-06-04 15:05 - 02068992 _____ (Farbar) C:\Users\Eibe\Downloads\FRST64.exe
2014-06-03 08:59 - 2014-06-03 08:59 - 00000000 ____D () C:\ProgramData\TEMP
2014-06-03 08:59 - 2014-06-03 08:59 - 00000000 ____D () C:\ProgramData\Licenses
2014-06-03 08:56 - 2014-06-03 08:56 - 00000000 ____D () C:\ProgramData\Simply Super Software
2014-06-03 08:53 - 2014-06-03 08:53 - 00961360 _____ (Chip Digital GmbH) C:\Users\Eibe\Downloads\Trojan Remover - CHIP-Installer.exe
2014-06-02 22:42 - 2014-06-02 22:42 - 00000000 ____D () C:\Users\Eibe\AppData\Roaming\AVG2014
2014-06-02 22:41 - 2014-06-02 22:41 - 00000981 _____ () C:\Users\Public\Desktop\AVG 2014.lnk
2014-06-02 22:41 - 2014-06-02 22:41 - 00000000 ____D () C:\Users\Eibe\AppData\Roaming\TuneUp Software
2014-06-02 22:41 - 2014-06-02 22:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2014-06-02 22:23 - 2014-06-03 02:29 - 00000000 ____D () C:\ProgramData\AVG2014
2014-06-02 22:23 - 2014-06-02 22:23 - 00000000 ___HD () C:\$AVG
2014-06-02 22:21 - 2014-06-02 22:21 - 00000000 ____D () C:\Program Files (x86)\AVG
2014-06-02 22:17 - 2014-06-04 15:05 - 00000000 ____D () C:\ProgramData\MFAData
2014-06-02 22:17 - 2014-06-02 23:02 - 00000000 ____D () C:\Users\Eibe\AppData\Local\Avg2014
2014-06-02 22:17 - 2014-06-02 22:17 - 00000000 ____D () C:\Users\Eibe\AppData\Local\MFAData
2014-06-02 22:09 - 2014-06-02 22:10 - 00961360 _____ (Chip Digital GmbH) C:\Users\Eibe\Downloads\AVG Anti Virus Free 2014 64 Bit - CHIP-Installer.exe
2014-06-02 22:05 - 2014-06-02 22:05 - 00416576 _____ (Kaspersky Lab) C:\Users\Eibe\Downloads\de-de.setup.exe
2014-06-01 17:25 - 2014-06-01 17:25 - 00000000 ____D () C:\Users\Eibe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-05-30 19:39 - 2014-05-30 19:40 - 00000000 ____D () C:\Users\Eibe\AppData\Roaming\Foxit Software
2014-05-30 19:39 - 2014-05-30 19:39 - 00000000 ____D () C:\Users\Public\Foxit Software
2014-05-30 19:38 - 2014-05-30 19:38 - 00000000 ____D () C:\Program Files (x86)\Foxit Software
2014-05-30 19:34 - 2014-05-30 19:35 - 39187992 _____ (Foxit Corporation ) C:\Users\Eibe\Downloads\FoxitReader620.0429_enu_Setup.exe
2014-05-30 16:14 - 2014-05-30 16:14 - 00961360 _____ (Chip Digital GmbH) C:\Users\Eibe\Downloads\Audio Recorder Pro - CHIP-Installer.exe
2014-05-28 19:15 - 2014-05-28 19:15 - 00000000 ____D () C:\Users\Eibe\Downloads\iPF8400SESeries-Drv-Win64-480
2014-05-28 19:11 - 2014-05-28 19:13 - 59461304 _____ () C:\Users\Eibe\Downloads\w1418mux_w_driver0480_8400se_win64.exe
2014-05-28 10:00 - 2014-05-28 10:00 - 12102090 _____ () C:\Users\Eibe\Downloads\hdv_0076_converted.wmv
2014-05-28 09:37 - 2014-05-28 09:36 - 00010892 _____ () C:\Users\Eibe\Desktop\importToGoogle.kml
2014-05-26 14:50 - 2014-05-26 14:50 - 00000000 ____D () C:\Users\Eibe\Desktop\Export to KML
2014-05-26 07:57 - 2014-05-26 07:57 - 02232307 _____ () C:\Users\Eibe\Downloads\Präsentation07.12.pptx
2014-05-25 11:33 - 2014-05-25 11:33 - 00059212 _____ () C:\Users\Eibe\Downloads\SelectionHighlight.vsix
2014-05-25 11:29 - 2014-05-25 11:29 - 00028287 _____ () C:\Users\Eibe\Downloads\WordLight 0.3.2.109.zip
2014-05-25 11:29 - 2014-05-25 11:29 - 00000000 ____D () C:\Users\Eibe\Downloads\WordLight 0.3.2.109
2014-05-25 11:29 - 2010-10-31 14:37 - 00063488 _____ (Mikhail Nasyrov) C:\Users\Eibe\Downloads\WordLight.dll
2014-05-25 11:29 - 2010-08-19 18:44 - 00001204 _____ () C:\Users\Eibe\Downloads\WordLight.AddIn
2014-05-24 10:55 - 2014-05-24 10:55 - 00003304 _____ () C:\Users\Eibe\Downloads\Unbenannt.kml
2014-05-24 10:37 - 2014-05-24 10:37 - 00002212 _____ () C:\Users\Public\Desktop\Google Earth.lnk
2014-05-24 10:37 - 2014-05-24 10:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth
2014-05-24 10:36 - 2014-05-26 10:52 - 00002542 _____ () C:\Users\Eibe\Desktop\testKML..kml
2014-05-24 10:35 - 2014-05-24 10:35 - 00918672 _____ (Google Inc.) C:\Users\Eibe\Downloads\GoogleEarthSetup.exe
2014-05-24 10:35 - 2014-05-24 10:35 - 00918672 _____ (Google Inc.) C:\Users\Eibe\Downloads\GoogleEarthSetup (1).exe
2014-05-23 17:16 - 2014-05-23 17:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
2014-05-23 17:16 - 2014-05-23 17:16 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft
2014-05-23 17:15 - 2014-05-23 17:17 - 00000000 ____D () C:\Users\Eibe\AppData\Roaming\DVDVideoSoft
2014-05-23 08:45 - 2014-05-23 08:46 - 32753176 _____ (DVDVideoSoft Ltd. ) C:\Users\Eibe\Downloads\FreeYouTubeDownload3235514 (1).exe
2014-05-21 21:29 - 2014-05-21 21:29 - 00000000 __SHD () C:\Users\Eibe\AppData\Local\EmieUserList
2014-05-21 21:29 - 2014-05-21 21:29 - 00000000 __SHD () C:\Users\Eibe\AppData\Local\EmieSiteList
2014-05-21 21:29 - 2014-05-21 21:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Exif Tag Remover
2014-05-21 21:29 - 2014-05-21 21:29 - 00000000 ____D () C:\Program Files (x86)\Exif Tag Remover
2014-05-21 21:29 - 2004-03-09 00:00 - 00609824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\COMCTL32.ocx
2014-05-21 21:29 - 1999-05-07 01:00 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Comdlg32.ocx
2014-05-20 21:37 - 2014-05-20 21:37 - 00000000 ____D () C:\Users\Eibe\Downloads\car-symbol-clip-art
2014-05-20 21:36 - 2014-05-20 21:37 - 00025287 _____ () C:\Users\Eibe\Downloads\car-symbol-clip-art.zip
2014-05-20 19:04 - 2014-05-20 19:04 - 00001145 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Update.lnk
2014-05-18 11:46 - 2014-05-21 21:13 - 00000000 ____D () C:\Users\Eibe\Desktop\Papas Golf
2014-05-15 23:47 - 2014-05-26 10:23 - 00000132 _____ () C:\Users\Eibe\AppData\Roaming\Adobe PNG Format CS5 Prefs
2014-05-14 16:03 - 2014-05-06 06:40 - 23544320 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-05-14 16:03 - 2014-05-06 06:17 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-05-14 16:03 - 2014-05-06 05:25 - 17382912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-05-14 16:03 - 2014-05-06 05:07 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-05-14 16:03 - 2014-05-06 05:00 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-05-14 16:03 - 2014-05-06 04:10 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-05-14 15:57 - 2014-05-09 08:14 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-05-14 15:57 - 2014-05-09 08:11 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-05-14 15:57 - 2014-03-25 04:43 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-05-14 15:57 - 2014-03-25 04:09 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2014-05-14 15:54 - 2014-04-12 04:22 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-05-14 15:54 - 2014-04-12 04:22 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2014-05-14 15:54 - 2014-04-12 04:19 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-05-14 15:54 - 2014-04-12 04:19 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2014-05-14 15:54 - 2014-04-12 04:19 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2014-05-14 15:54 - 2014-04-12 04:19 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2014-05-14 15:54 - 2014-04-12 04:19 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2014-05-14 15:54 - 2014-04-12 04:12 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-05-14 15:54 - 2014-04-12 04:10 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-05-14 15:54 - 2014-03-04 11:47 - 05550016 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-05-14 15:54 - 2014-03-04 11:44 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-05-14 15:54 - 2014-03-04 11:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll
2014-05-14 15:54 - 2014-03-04 11:44 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2014-05-14 15:54 - 2014-03-04 11:44 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-05-14 15:54 - 2014-03-04 11:44 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-05-14 15:54 - 2014-03-04 11:44 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-05-14 15:54 - 2014-03-04 11:44 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-05-14 15:54 - 2014-03-04 11:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll
2014-05-14 15:54 - 2014-03-04 11:43 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2014-05-14 15:54 - 2014-03-04 11:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll
2014-05-14 15:54 - 2014-03-04 11:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll
2014-05-14 15:54 - 2014-03-04 11:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll
2014-05-14 15:54 - 2014-03-04 11:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll
2014-05-14 15:54 - 2014-03-04 11:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll
2014-05-14 15:54 - 2014-03-04 11:43 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-05-14 15:54 - 2014-03-04 11:20 - 03969984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2014-05-14 15:54 - 2014-03-04 11:20 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2014-05-14 15:54 - 2014-03-04 11:17 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-05-14 15:54 - 2014-03-04 11:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll
2014-05-14 15:54 - 2014-03-04 11:17 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2014-05-14 15:54 - 2014-03-04 11:17 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-05-14 15:54 - 2014-03-04 11:17 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2014-05-14 15:54 - 2014-03-04 11:17 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-05-14 15:54 - 2014-03-04 11:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll
2014-05-14 15:54 - 2014-03-04 11:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll
2014-05-14 15:54 - 2014-03-04 11:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll
2014-05-14 15:54 - 2014-03-04 11:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll
2014-05-14 15:54 - 2014-03-04 11:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll
2014-05-14 15:54 - 2014-03-04 11:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll
2014-05-14 15:54 - 2014-03-04 11:17 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-05-14 15:54 - 2014-03-04 11:16 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2014-05-14 09:09 - 2014-05-14 09:09 - 00000000 ____D () C:\Users\Default\Documents\Visual Studio 2010
2014-05-14 09:09 - 2014-05-14 09:09 - 00000000 ____D () C:\Users\Default User\Documents\Visual Studio 2010
2014-05-14 08:27 - 2014-05-14 08:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\khazama.com
2014-05-14 08:27 - 2014-05-14 08:27 - 00000000 ____D () C:\Program Files (x86)\khazama.com
2014-05-14 08:22 - 2011-05-21 10:03 - 00075200 _____ (hxxp://libusb-win32.sourceforge.net) C:\Windows\system32\libusb0.dll
2014-05-14 08:22 - 2011-05-21 10:03 - 00067008 _____ (hxxp://libusb-win32.sourceforge.net) C:\Windows\SysWOW64\libusb0.dll
2014-05-14 08:22 - 2011-05-21 10:03 - 00044480 _____ (hxxp://libusb-win32.sourceforge.net) C:\Windows\system32\Drivers\libusb0.sys
2014-05-14 08:21 - 2014-05-14 08:21 - 00256253 _____ () C:\Users\Eibe\Downloads\USBasp-win-driver-x86-x64-ia64-v1.2.4.rar
2014-05-13 19:24 - 2014-05-13 19:24 - 00353093 _____ () C:\Users\Eibe\Downloads\usbasp-windriver.2011-05-28.zip
2014-05-13 19:24 - 2011-06-15 18:11 - 00000000 ____D () C:\Users\Eibe\Downloads\usbasp-windriver.2011-05-28
2014-05-13 14:20 - 2014-05-13 14:20 - 00273176 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgtdia.sys
2014-05-13 14:20 - 2014-05-13 14:20 - 00235800 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgldx64.sys
2014-05-13 14:06 - 2014-05-13 14:06 - 00323352 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgloga.sys
2014-05-13 14:05 - 2014-05-13 14:05 - 00191768 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsha.sys
2014-05-13 14:05 - 2014-05-13 14:05 - 00152344 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgdiska.sys
2014-05-13 14:05 - 2014-05-13 14:05 - 00130328 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgmfx64.sys
2014-05-13 14:04 - 2014-05-13 14:04 - 00236312 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsdrivera.sys
2014-05-13 14:04 - 2014-05-13 14:04 - 00031512 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgrkx64.sys
2014-05-13 01:23 - 2014-06-03 19:40 - 00000000 ____D () C:\Users\Eibe\AppData\Roaming\VisualAssistAtmel
2014-05-13 01:23 - 2014-05-13 01:23 - 00000000 ____D () C:\Users\Eibe\AppData\Local\IsolatedStorage
2014-05-13 01:22 - 2014-06-03 19:40 - 00000000 ____D () C:\Users\Eibe\AppData\Local\VisualAssistAtmel
2014-05-13 01:14 - 2014-05-13 01:24 - 00000000 ____D () C:\Users\Eibe\Documents\Atmel Studio
2014-05-13 01:14 - 2014-05-13 01:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Atmel
2014-05-13 01:14 - 2014-05-13 01:14 - 00000000 ____D () C:\Users\Eibe\AppData\Roaming\Atmel
2014-05-13 01:14 - 2014-05-13 01:14 - 00000000 ____D () C:\Users\Eibe\AppData\Local\Atmel
2014-05-13 01:12 - 2014-05-13 01:12 - 00000000 ____D () C:\Program Files\Seggger
2014-05-13 01:12 - 2014-05-13 01:12 - 00000000 ____D () C:\Program Files\DIFX
2014-05-13 01:12 - 2009-07-14 14:21 - 01721576 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01009.dll
2014-05-13 01:12 - 2009-07-14 07:37 - 01002728 _____ (Microsoft Corporation) C:\Windows\system32\winusbcoinstaller2.dll
2014-05-13 01:11 - 2014-05-13 01:17 - 00000000 ____D () C:\Program Files (x86)\Atmel
2014-05-13 01:11 - 2012-02-27 14:46 - 00260608 _____ (Jungo) C:\Windows\system32\Drivers\windrvr6.sys
2014-05-13 01:11 - 2010-01-17 20:13 - 00110592 _____ (Jungo) C:\Windows\SysWOW64\wdapi1011.dll
2014-05-13 01:11 - 2009-09-02 11:48 - 00143360 _____ (Jungo) C:\Windows\SysWOW64\wdapi1010.dll
2014-05-13 01:11 - 2009-07-14 10:07 - 00143360 _____ (Jungo) C:\Windows\SysWOW64\wdapi1002.dll
2014-05-13 01:11 - 2009-05-14 13:21 - 00157184 _____ (Jungo) C:\Windows\SysWOW64\wdapi1001.dll
2014-05-13 01:11 - 2008-07-04 09:51 - 00110592 _____ (Jungo) C:\Windows\SysWOW64\wdapi921.dll
2014-05-13 01:11 - 2006-10-18 15:39 - 00141824 _____ (Jungo) C:\Windows\SysWOW64\wdapi811.dll
2014-05-13 01:03 - 2014-05-13 01:03 - 00000000 ____D () C:\Program Files\Microsoft Help Viewer
2014-05-13 01:02 - 2014-05-25 11:35 - 00000000 ____D () C:\Users\Eibe\Documents\Visual Studio 2010
2014-05-13 01:00 - 2014-05-13 01:00 - 00000000 ____D () C:\Windows\SysWOW64\1033
2014-05-13 01:00 - 2014-05-13 01:00 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 10.0
2014-05-13 00:45 - 2014-05-13 00:54 - 620269832 _____ (Acresso Software Inc. ) C:\Users\Eibe\Downloads\AStudio61sp1_1.exe
2014-05-08 08:13 - 2014-05-13 09:00 - 00015360 _____ () C:\Users\Eibe\Desktop\Wasserwerte.xlsx
2014-05-07 10:18 - 2014-05-07 10:19 - 00283018 _____ () C:\Windows\msxml4-KB973688-enu.LOG
2014-05-06 22:35 - 2014-05-14 23:23 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-05-06 22:35 - 2014-05-06 22:35 - 00000000 ____D () C:\Program Files (x86)\MSXML 4.0
2014-05-06 22:34 - 2014-05-06 22:35 - 00285860 _____ () C:\Windows\msxml4-KB954430-enu.LOG
2014-05-05 18:54 - 2014-05-05 18:54 - 00000000 ____D () C:\Users\Eibe\AppData\Local\HP
2014-05-05 18:52 - 2014-05-05 18:52 - 00000000 ____D () C:\Users\Eibe\AppData\Roaming\Yahoo!
2014-05-05 18:52 - 2014-05-05 18:52 - 00000000 ____D () C:\ProgramData\Yahoo! Companion
2014-05-05 18:52 - 2014-05-05 18:52 - 00000000 ____D () C:\Program Files (x86)\Yahoo!
2014-05-05 18:51 - 2014-05-05 18:51 - 00001064 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\I.R.I.S. OCR-Registrierung.lnk
2014-05-05 18:51 - 2014-05-05 18:51 - 00000000 ____D () C:\Windows\SysWOW64\spool
2014-05-05 18:48 - 2014-05-05 18:54 - 00245528 _____ () C:\Windows\hpoins19.dat
2014-05-05 18:48 - 2009-10-20 06:30 - 00013898 ____N () C:\Windows\hpomdl19.dat
2014-05-05 18:48 - 2009-07-08 12:51 - 00861184 _____ (Hewlett-Packard) C:\Windows\system32\hpowiav1.dll
2014-05-05 18:48 - 2009-07-08 12:51 - 00730624 _____ (Hewlett-Packard Co.) C:\Windows\system32\hpotscl1.dll
2014-05-05 18:48 - 2009-07-08 12:51 - 00642360 _____ (Hewlett-Packard) C:\Windows\system32\hpzids40.dll
2014-05-05 18:48 - 2009-07-08 12:51 - 00498176 _____ (Hewlett-Packard Co.) C:\Windows\system32\hpovst01.dll
2014-05-05 18:37 - 2014-05-05 18:46 - 380301136 _____ () C:\Users\Eibe\Downloads\AIO_CDB_NonNet_Full_Win_WW_130_141.exe
==================== One Month Modified Files and Folders =======
2014-06-04 15:08 - 2014-06-04 15:07 - 00020358 _____ () C:\Users\Eibe\Downloads\FRST.txt
2014-06-04 15:08 - 2014-04-18 20:12 - 00000000 ____D () C:\Users\Eibe\AppData\Local\Temp
2014-06-04 15:07 - 2014-06-04 15:05 - 00000000 ____D () C:\FRST
2014-06-04 15:06 - 2014-04-18 20:07 - 01886894 _____ () C:\Windows\WindowsUpdate.log
2014-06-04 15:05 - 2014-06-04 15:04 - 02068992 _____ (Farbar) C:\Users\Eibe\Downloads\FRST64.exe
2014-06-04 15:05 - 2014-06-02 22:17 - 00000000 ____D () C:\ProgramData\MFAData
2014-06-04 15:04 - 2014-04-19 11:28 - 00000000 ____D () C:\Users\Eibe\AppData\Roaming\Dropbox
2014-06-04 15:04 - 2014-04-18 20:32 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-06-03 19:49 - 2009-07-14 06:45 - 00015728 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-06-03 19:49 - 2009-07-14 06:45 - 00015728 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-06-03 19:40 - 2014-05-13 01:23 - 00000000 ____D () C:\Users\Eibe\AppData\Roaming\VisualAssistAtmel
2014-06-03 19:40 - 2014-05-13 01:22 - 00000000 ____D () C:\Users\Eibe\AppData\Local\VisualAssistAtmel
2014-06-03 19:31 - 2009-07-14 06:51 - 00031406 _____ () C:\Windows\setupact.log
2014-06-03 08:59 - 2014-06-03 08:59 - 00000000 ____D () C:\ProgramData\TEMP
2014-06-03 08:59 - 2014-06-03 08:59 - 00000000 ____D () C:\ProgramData\Licenses
2014-06-03 08:56 - 2014-06-03 08:56 - 00000000 ____D () C:\ProgramData\Simply Super Software
2014-06-03 08:53 - 2014-06-03 08:53 - 00961360 _____ (Chip Digital GmbH) C:\Users\Eibe\Downloads\Trojan Remover - CHIP-Installer.exe
2014-06-03 07:32 - 2014-04-19 11:31 - 00000000 ___RD () C:\Users\Eibe\Dropbox
2014-06-03 07:32 - 2014-04-19 11:30 - 00000000 ____D () C:\Users\Eibe\AppData\Roaming\DropboxMaster
2014-06-03 07:28 - 2014-04-23 10:28 - 00000000 ____D () C:\Users\Eibe\AppData\Local\TSVNCache
2014-06-03 07:28 - 2014-04-18 20:32 - 00001102 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-06-03 07:13 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-06-03 02:29 - 2014-06-02 22:23 - 00000000 ____D () C:\ProgramData\AVG2014
2014-06-02 23:02 - 2014-06-02 22:17 - 00000000 ____D () C:\Users\Eibe\AppData\Local\Avg2014
2014-06-02 22:42 - 2014-06-02 22:42 - 00000000 ____D () C:\Users\Eibe\AppData\Roaming\AVG2014
2014-06-02 22:41 - 2014-06-02 22:41 - 00000981 _____ () C:\Users\Public\Desktop\AVG 2014.lnk
2014-06-02 22:41 - 2014-06-02 22:41 - 00000000 ____D () C:\Users\Eibe\AppData\Roaming\TuneUp Software
2014-06-02 22:41 - 2014-06-02 22:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2014-06-02 22:23 - 2014-06-02 22:23 - 00000000 ___HD () C:\$AVG
2014-06-02 22:21 - 2014-06-02 22:21 - 00000000 ____D () C:\Program Files (x86)\AVG
2014-06-02 22:17 - 2014-06-02 22:17 - 00000000 ____D () C:\Users\Eibe\AppData\Local\MFAData
2014-06-02 22:10 - 2014-06-02 22:09 - 00961360 _____ (Chip Digital GmbH) C:\Users\Eibe\Downloads\AVG Anti Virus Free 2014 64 Bit - CHIP-Installer.exe
2014-06-02 22:05 - 2014-06-02 22:05 - 00416576 _____ (Kaspersky Lab) C:\Users\Eibe\Downloads\de-de.setup.exe
2014-06-02 21:55 - 2009-07-14 19:58 - 00757266 _____ () C:\Windows\system32\perfh007.dat
2014-06-02 21:55 - 2009-07-14 19:58 - 00174050 _____ () C:\Windows\system32\perfc007.dat
2014-06-02 21:55 - 2009-07-14 07:13 - 01770824 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-06-02 12:09 - 2014-04-19 17:25 - 00000000 ____D () C:\Users\Eibe\Documents\Visual Studio 2008
2014-06-01 17:25 - 2014-06-01 17:25 - 00000000 ____D () C:\Users\Eibe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-06-01 09:47 - 2014-04-18 23:33 - 00000000 ____D () C:\Users\Eibe\AppData\Local\Microsoft Help
2014-05-30 19:40 - 2014-05-30 19:39 - 00000000 ____D () C:\Users\Eibe\AppData\Roaming\Foxit Software
2014-05-30 19:39 - 2014-05-30 19:39 - 00000000 ____D () C:\Users\Public\Foxit Software
2014-05-30 19:38 - 2014-05-30 19:38 - 00000000 ____D () C:\Program Files (x86)\Foxit Software
2014-05-30 19:35 - 2014-05-30 19:34 - 39187992 _____ (Foxit Corporation ) C:\Users\Eibe\Downloads\FoxitReader620.0429_enu_Setup.exe
2014-05-30 16:14 - 2014-05-30 16:14 - 00961360 _____ (Chip Digital GmbH) C:\Users\Eibe\Downloads\Audio Recorder Pro - CHIP-Installer.exe
2014-05-30 16:07 - 2014-04-23 10:09 - 00000000 ____D () C:\Users\Eibe\AppData\Local\ADT
2014-05-28 19:15 - 2014-05-28 19:15 - 00000000 ____D () C:\Users\Eibe\Downloads\iPF8400SESeries-Drv-Win64-480
2014-05-28 19:13 - 2014-05-28 19:11 - 59461304 _____ () C:\Users\Eibe\Downloads\w1418mux_w_driver0480_8400se_win64.exe
2014-05-28 10:00 - 2014-05-28 10:00 - 12102090 _____ () C:\Users\Eibe\Downloads\hdv_0076_converted.wmv
2014-05-28 09:36 - 2014-05-28 09:37 - 00010892 _____ () C:\Users\Eibe\Desktop\importToGoogle.kml
2014-05-26 14:50 - 2014-05-26 14:50 - 00000000 ____D () C:\Users\Eibe\Desktop\Export to KML
2014-05-26 10:52 - 2014-05-24 10:36 - 00002542 _____ () C:\Users\Eibe\Desktop\testKML..kml
2014-05-26 10:23 - 2014-05-15 23:47 - 00000132 _____ () C:\Users\Eibe\AppData\Roaming\Adobe PNG Format CS5 Prefs
2014-05-26 07:57 - 2014-05-26 07:57 - 02232307 _____ () C:\Users\Eibe\Downloads\Präsentation07.12.pptx
2014-05-25 11:35 - 2014-05-13 01:02 - 00000000 ____D () C:\Users\Eibe\Documents\Visual Studio 2010
2014-05-25 11:33 - 2014-05-25 11:33 - 00059212 _____ () C:\Users\Eibe\Downloads\SelectionHighlight.vsix
2014-05-25 11:29 - 2014-05-25 11:29 - 00028287 _____ () C:\Users\Eibe\Downloads\WordLight 0.3.2.109.zip
2014-05-25 11:29 - 2014-05-25 11:29 - 00000000 ____D () C:\Users\Eibe\Downloads\WordLight 0.3.2.109
2014-05-24 10:55 - 2014-05-24 10:55 - 00003304 _____ () C:\Users\Eibe\Downloads\Unbenannt.kml
2014-05-24 10:37 - 2014-05-24 10:37 - 00002212 _____ () C:\Users\Public\Desktop\Google Earth.lnk
2014-05-24 10:37 - 2014-05-24 10:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth
2014-05-24 10:37 - 2014-04-18 20:32 - 00000000 ____D () C:\Users\Eibe\AppData\Local\Google
2014-05-24 10:37 - 2014-04-18 20:32 - 00000000 ____D () C:\Program Files (x86)\Google
2014-05-24 10:35 - 2014-05-24 10:35 - 00918672 _____ (Google Inc.) C:\Users\Eibe\Downloads\GoogleEarthSetup.exe
2014-05-24 10:35 - 2014-05-24 10:35 - 00918672 _____ (Google Inc.) C:\Users\Eibe\Downloads\GoogleEarthSetup (1).exe
2014-05-23 19:34 - 2014-04-18 20:43 - 00237836 _____ () C:\Windows\PFRO.log
2014-05-23 17:17 - 2014-05-23 17:15 - 00000000 ____D () C:\Users\Eibe\AppData\Roaming\DVDVideoSoft
2014-05-23 17:16 - 2014-05-23 17:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
2014-05-23 17:16 - 2014-05-23 17:16 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft
2014-05-23 17:16 - 2014-04-19 11:30 - 00000000 ____D () C:\Users\Eibe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2014-05-23 17:16 - 2014-04-18 20:12 - 00000000 ___RD () C:\Users\Eibe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-05-23 08:46 - 2014-05-23 08:45 - 32753176 _____ (DVDVideoSoft Ltd. ) C:\Users\Eibe\Downloads\FreeYouTubeDownload3235514 (1).exe
2014-05-21 21:29 - 2014-05-21 21:29 - 00000000 __SHD () C:\Users\Eibe\AppData\Local\EmieUserList
2014-05-21 21:29 - 2014-05-21 21:29 - 00000000 __SHD () C:\Users\Eibe\AppData\Local\EmieSiteList
2014-05-21 21:29 - 2014-05-21 21:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Exif Tag Remover
2014-05-21 21:29 - 2014-05-21 21:29 - 00000000 ____D () C:\Program Files (x86)\Exif Tag Remover
2014-05-21 21:13 - 2014-05-18 11:46 - 00000000 ____D () C:\Users\Eibe\Desktop\Papas Golf
2014-05-21 18:57 - 2014-04-18 20:33 - 00002175 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-05-21 07:22 - 2014-04-18 20:28 - 00113352 _____ () C:\Users\Eibe\AppData\Local\GDIPFONTCACHEV1.DAT
2014-05-21 07:21 - 2009-07-14 06:45 - 04997952 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-05-20 23:15 - 2014-04-18 23:33 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-05-20 23:11 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared
2014-05-20 22:24 - 2014-04-18 23:55 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-05-20 21:37 - 2014-05-20 21:37 - 00000000 ____D () C:\Users\Eibe\Downloads\car-symbol-clip-art
2014-05-20 21:37 - 2014-05-20 21:36 - 00025287 _____ () C:\Users\Eibe\Downloads\car-symbol-clip-art.zip
2014-05-20 19:58 - 2014-04-18 20:49 - 00000000 ____D () C:\Update
2014-05-20 19:04 - 2014-05-20 19:04 - 00001145 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Update.lnk
2014-05-20 19:04 - 2014-04-18 20:51 - 00000000 ____D () C:\Windows\System32\Tasks\Sony Corporation
2014-05-20 19:04 - 2014-04-18 20:41 - 00000000 ____D () C:\ProgramData\Sony Corporation
2014-05-20 19:04 - 2014-04-18 20:29 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-05-18 12:07 - 2014-04-18 23:58 - 00000000 ____D () C:\Users\Eibe\AppData\Roaming\Adobe
2014-05-17 16:29 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache
2014-05-15 08:48 - 2014-04-18 20:12 - 00000000 ___RD () C:\Users\Eibe\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-05-14 23:23 - 2014-05-06 22:35 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-05-14 20:46 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-05-14 16:02 - 2014-04-18 23:37 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER
2014-05-14 09:09 - 2014-05-14 09:09 - 00000000 ____D () C:\Users\Default\Documents\Visual Studio 2010
2014-05-14 09:09 - 2014-05-14 09:09 - 00000000 ____D () C:\Users\Default User\Documents\Visual Studio 2010
2014-05-14 08:27 - 2014-05-14 08:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\khazama.com
2014-05-14 08:27 - 2014-05-14 08:27 - 00000000 ____D () C:\Program Files (x86)\khazama.com
2014-05-14 08:21 - 2014-05-14 08:21 - 00256253 _____ () C:\Users\Eibe\Downloads\USBasp-win-driver-x86-x64-ia64-v1.2.4.rar
2014-05-13 19:24 - 2014-05-13 19:24 - 00353093 _____ () C:\Users\Eibe\Downloads\usbasp-windriver.2011-05-28.zip
2014-05-13 14:20 - 2014-05-13 14:20 - 00273176 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgtdia.sys
2014-05-13 14:20 - 2014-05-13 14:20 - 00235800 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgldx64.sys
2014-05-13 14:06 - 2014-05-13 14:06 - 00323352 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgloga.sys
2014-05-13 14:05 - 2014-05-13 14:05 - 00191768 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsha.sys
2014-05-13 14:05 - 2014-05-13 14:05 - 00152344 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgdiska.sys
2014-05-13 14:05 - 2014-05-13 14:05 - 00130328 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgmfx64.sys
2014-05-13 14:04 - 2014-05-13 14:04 - 00236312 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsdrivera.sys
2014-05-13 14:04 - 2014-05-13 14:04 - 00031512 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgrkx64.sys
2014-05-13 09:00 - 2014-05-08 08:13 - 00015360 _____ () C:\Users\Eibe\Desktop\Wasserwerte.xlsx
2014-05-13 01:24 - 2014-05-13 01:14 - 00000000 ____D () C:\Users\Eibe\Documents\Atmel Studio
2014-05-13 01:23 - 2014-05-13 01:23 - 00000000 ____D () C:\Users\Eibe\AppData\Local\IsolatedStorage
2014-05-13 01:20 - 2014-05-13 01:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Atmel
2014-05-13 01:17 - 2014-05-13 01:11 - 00000000 ____D () C:\Program Files (x86)\Atmel
2014-05-13 01:14 - 2014-05-13 01:14 - 00000000 ____D () C:\Users\Eibe\AppData\Roaming\Atmel
2014-05-13 01:14 - 2014-05-13 01:14 - 00000000 ____D () C:\Users\Eibe\AppData\Local\Atmel
2014-05-13 01:12 - 2014-05-13 01:12 - 00000000 ____D () C:\Program Files\Seggger
2014-05-13 01:12 - 2014-05-13 01:12 - 00000000 ____D () C:\Program Files\DIFX
2014-05-13 01:12 - 2014-04-18 23:35 - 00021310 _____ () C:\Windows\DPINST.LOG
2014-05-13 01:03 - 2014-05-13 01:03 - 00000000 ____D () C:\Program Files\Microsoft Help Viewer
2014-05-13 01:02 - 2014-04-19 17:35 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server
2014-05-13 01:00 - 2014-05-13 01:00 - 00000000 ____D () C:\Windows\SysWOW64\1033
2014-05-13 01:00 - 2014-05-13 01:00 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 10.0
2014-05-13 00:54 - 2014-05-13 00:45 - 620269832 _____ (Acresso Software Inc. ) C:\Users\Eibe\Downloads\AStudio61sp1_1.exe
2014-05-10 17:42 - 2014-04-18 20:32 - 00004102 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-05-10 17:42 - 2014-04-18 20:32 - 00003850 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-05-09 08:14 - 2014-05-14 15:57 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-05-09 08:11 - 2014-05-14 15:57 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-05-07 10:19 - 2014-05-07 10:18 - 00283018 _____ () C:\Windows\msxml4-KB973688-enu.LOG
2014-05-06 22:35 - 2014-05-06 22:35 - 00000000 ____D () C:\Program Files (x86)\MSXML 4.0
2014-05-06 22:35 - 2014-05-06 22:34 - 00285860 _____ () C:\Windows\msxml4-KB954430-enu.LOG
2014-05-06 06:40 - 2014-05-14 16:03 - 23544320 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-05-06 06:17 - 2014-05-14 16:03 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-05-06 05:25 - 2014-05-14 16:03 - 17382912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-05-06 05:07 - 2014-05-14 16:03 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-05-06 05:00 - 2014-05-14 16:03 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-05-06 04:10 - 2014-05-14 16:03 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-05-05 18:54 - 2014-05-05 18:54 - 00000000 ____D () C:\Users\Eibe\AppData\Local\HP
2014-05-05 18:54 - 2014-05-05 18:48 - 00245528 _____ () C:\Windows\hpoins19.dat
2014-05-05 18:54 - 2014-04-24 08:36 - 00000000 ____D () C:\Users\Eibe\AppData\Roaming\HP
2014-05-05 18:54 - 2014-04-24 08:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2014-05-05 18:54 - 2014-04-24 08:31 - 00001691 _____ () C:\ProgramData\hpzinstall.log
2014-05-05 18:54 - 2009-07-14 04:34 - 00000513 _____ () C:\Windows\win.ini
2014-05-05 18:53 - 2009-07-14 05:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
2014-05-05 18:52 - 2014-05-05 18:52 - 00000000 ____D () C:\Users\Eibe\AppData\Roaming\Yahoo!
2014-05-05 18:52 - 2014-05-05 18:52 - 00000000 ____D () C:\ProgramData\Yahoo! Companion
2014-05-05 18:52 - 2014-05-05 18:52 - 00000000 ____D () C:\Program Files (x86)\Yahoo!
2014-05-05 18:51 - 2014-05-05 18:51 - 00001064 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\I.R.I.S. OCR-Registrierung.lnk
2014-05-05 18:51 - 2014-05-05 18:51 - 00000000 ____D () C:\Windows\SysWOW64\spool
2014-05-05 18:51 - 2014-04-24 08:32 - 00000000 ____D () C:\Program Files (x86)\HP
2014-05-05 18:46 - 2014-05-05 18:37 - 380301136 _____ () C:\Users\Eibe\Downloads\AIO_CDB_NonNet_Full_Win_WW_130_141.exe
Some content of TEMP:
====================
C:\Users\Eibe\AppData\Local\Temp\Del893D.exe
C:\Users\Eibe\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpi3sndd.dll
C:\Users\Eibe\AppData\Local\Temp\GLF20AF.EXE
C:\Users\Eibe\AppData\Local\Temp\GLF561E.EXE
C:\Users\Eibe\AppData\Local\Temp\GLF88AD.EXE
C:\Users\Eibe\AppData\Local\Temp\GLF985D.EXE
C:\Users\Eibe\AppData\Local\Temp\GLF9979.EXE
C:\Users\Eibe\AppData\Local\Temp\GLF9D66.EXE
C:\Users\Eibe\AppData\Local\Temp\GLFAD29.EXE
C:\Users\Eibe\AppData\Local\Temp\GLFAD6E.EXE
C:\Users\Eibe\AppData\Local\Temp\GLFD2E.EXE
C:\Users\Eibe\AppData\Local\Temp\GLFD6A5.EXE
C:\Users\Eibe\AppData\Local\Temp\GLFE3DE.EXE
C:\Users\Eibe\AppData\Local\Temp\GLFF378.EXE
C:\Users\Eibe\AppData\Local\Temp\InstallAX.exe
C:\Users\Eibe\AppData\Local\Temp\InstallPlugin.exe
C:\Users\Eibe\AppData\Local\Temp\kernal.dll
C:\Users\Eibe\AppData\Local\Temp\kernal32.dll
C:\Users\Eibe\AppData\Local\Temp\neoNCSetup64.exe
C:\Users\Eibe\AppData\Local\Temp\ose00000.exe
C:\Users\Eibe\AppData\Local\Temp\ose00001.exe
C:\Users\Eibe\AppData\Local\Temp\xmlUpdater.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-05-30 14:43
==================== End Of Log ============================