![]() |
|
Plagegeister aller Art und deren Bekämpfung: http://www.searchnu.com/410 Mozilla FirefoxWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
![]() | #5 |
![]() ![]() | ![]() http://www.searchnu.com/410 Mozilla Firefox Hallo Jürgen, das geht ja flott hier :-) Also: Code:
ATTFilter # AdwCleaner v3.214 - Bericht erstellt am 02/07/2014 um 19:54:30 # Aktualisiert 29/06/2014 von Xplode # Betriebssystem : Windows 8 (64 bits) # Benutzername : Katharina - WICHTLZWERG # Gestartet von : C:\Users\Katharina\Downloads\adwcleaner_3.214.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\Users\Katharina\AppData\Local\PackageAware Ordner Gelöscht : C:\Users\KATHAR~1\AppData\Local\Temp\OCS Ordner Gelöscht : C:\Users\Katharina\AppData\Roaming\pdfforge Datei Gelöscht : C:\Users\Public\Desktop\Get The Best Facebook Chat Messenger.lnk Datei Gelöscht : C:\Users\KATHAR~1\AppData\Local\Temp\Searchqu.ini Datei Gelöscht : C:\Users\Katharina\AppData\Roaming\Mozilla\Firefox\Profiles\ekrrck2g.default\searchplugins\Search_Results.xml Datei Gelöscht : C:\Program Files (x86)\Mozilla Firefox\searchplugins\Search_Results.xml ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{35B8892D-C3FB-4D88-990D-31DB2EBD72BD} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{93E3D79C-0786-48FF-9329-93BC9F6DC2B3} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2410} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2410} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{3F607E46-0D3C-4442-B1DE-DE7FA4768F5C} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{FE0273D1-99DF-4AC0-87D5-1371C6271785} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2410} Schlüssel Gelöscht : HKCU\Software\OCS ***** [ Browser ] ***** -\\ Internet Explorer v10.0.9200.16921 -\\ Mozilla Firefox v30.0 (de) [ Datei : C:\Users\Katharina\AppData\Roaming\Mozilla\Firefox\Profiles\ekrrck2g.default\prefs.js ] Zeile gelöscht : user_pref("browser.search.defaultenginename", "Search Results"); Zeile gelöscht : user_pref("browser.search.order.1", "Search Results"); Zeile gelöscht : user_pref("browser.search.selectedEngine", "Search Results"); Zeile gelöscht : user_pref("browser.startup.homepage", "hxxp://www.searchnu.com/410"); Zeile gelöscht : user_pref("keyword.URL", "hxxp://dts.search-results.com/sr?src=ffb&appid=0&systemid=410&sr=0&q="); ************************* AdwCleaner[R0].txt - [2925 octets] - [02/07/2014 19:53:20] AdwCleaner[S0].txt - [2666 octets] - [02/07/2014 19:54:30] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2726 octets] ########## Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlauf Datum: 02.07.2014 Suchlauf-Zeit: 20:01:35 Logdatei: Administrator: Ja Version: 2.00.2.1012 Malware Datenbank: v2014.07.02.05 Rootkit Datenbank: v2014.07.01.01 Lizenz: Kostenlos Malware Schutz: Deaktiviert Bösartiger Webseiten Schutz: Deaktiviert Self-protection: Deaktiviert Betriebssystem: Windows 8 CPU: x64 Dateisystem: NTFS Benutzer: Katharina Suchlauf-Art: Bedrohungs-Suchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 300696 Verstrichene Zeit: 12 Min, 25 Sek Speicher: Aktiviert Autostart: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Aktiviert Tiefer Rootkit-Suchlauf: Aktiviert Heuristics: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 0 (No malicious items detected) Module: 0 (No malicious items detected) Registrierungsschlüssel: 0 (No malicious items detected) Registrierungswerte: 0 (No malicious items detected) Registrierungsdaten: 0 (No malicious items detected) Ordner: 0 (No malicious items detected) Dateien: 0 (No malicious items detected) Physische Sektoren: 0 (No malicious items detected) (end) FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 01-07-2014 Ran by Katharina (administrator) on WICHTLZWERG on 02-07-2014 20:25:50 Running from C:\Users\Katharina\Downloads Platform: Windows 8 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Qualcomm Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe () C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe (Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe\LiveComm.exe (Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe () C:\Program Files (x86)\Bluetooth Suite\ActivateDesktop.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe (Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Lenovo) C:\Program Files\Lenovo\Onekey Theater\OnekeyStudio.exe (Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe (Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe (Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Manager\utility.exe () C:\Users\Katharina\AppData\Local\Amazon Music\Amazon Music Helper.exe (Vimicro) C:\Program Files (x86)\USB Camera\VM331STI.EXE (CyberLink Corp.) C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe (CyberLink Corp.) C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Lenovo) C:\Program Files (x86)\Lenovo\UserGuide\UserGuide.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [Nvtmru] => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1012000 2013-05-16] (NVIDIA Corporation) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [286704 2013-04-30] (Intel Corporation) HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1703424 2013-07-04] (IDT, Inc.) HKLM\...\Run: [DolbyTrayApp] => c:\program files (x86)\Dolby Home Theater v4\pcee4.exe [508656 2012-08-31] (Dolby Laboratories Inc.) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2778864 2013-08-30] (Synaptics Incorporated) HKLM\...\Run: [OnekeyStudio] => C:\Program Files\Lenovo\Onekey Theater\OnekeyStudio.exe [4196432 2012-09-14] (Lenovo) HKLM\...\Run: [Energy Manager] => C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe [15794160 2014-02-12] (Lenovo(beijing) Limited) HKLM\...\Run: [Lenovo Utility] => C:\Program Files (x86)\Lenovo\Energy Manager\Utility.exe [80368 2014-02-12] (Lenovo(beijing) Limited) HKLM-x32\...\Run: [331BigDog] => C:\Program Files (x86)\USB Camera\VM331STI.EXE [552960 2013-05-14] (Vimicro) HKLM-x32\...\Run: [YouCam Tray] => C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe [168464 2012-10-30] (CyberLink Corp.) HKLM-x32\...\Run: [UpdateP2GShortCut] => C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [217088 2012-04-18] (CyberLink Corp.) HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe [95192 2013-03-08] (CyberLink Corp.) HKLM-x32\...\Run: [Intel AppUp(SM) center] => C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [155488 2012-07-12] (Intel Corporation) HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [183376 2014-05-14] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [737872 2014-05-27] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2014-05-08] (Adobe Systems Incorporated) Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation) HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [132224 2013-02-28] ( (Atheros Communications)) HKU\S-1-5-21-3349096550-3144467483-3537340833-1002\...\Run: [Amazon Music] => C:\Users\Katharina\AppData\Local\Amazon Music\Amazon Music Helper.exe [3162944 2014-06-24] () HKU\S-1-5-21-3349096550-3144467483-3537340833-1002-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Amazon Music] => C:\Users\Katharina\AppData\Local\Amazon Music\Amazon Music Helper.exe [3162944 2014-06-24] () AppInit_DLLs: C:\WINDOWS\system32\nvinitx.dll => C:\WINDOWS\system32\nvinitx.dll [245872 2013-05-24] (NVIDIA Corporation) AppInit_DLLs-x32: C:\WINDOWS\SysWOW64\nvinit.dll => C:\WINDOWS\SysWOW64\nvinit.dll [201576 2013-05-24] (NVIDIA Corporation) ShellIconOverlayIdentifiers: SugarSyncBackedUp -> {0C4A258A-3F3B-4FFF-80A7-9B3BEC139472} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll (SugarSync, Inc.) ShellIconOverlayIdentifiers: SugarSyncPending -> {62CCD8E3-9C21-41E1-B55E-1E26DFC68511} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll (SugarSync, Inc.) ShellIconOverlayIdentifiers: SugarSyncRoot -> {A759AFF6-5851-457D-A540-F4ECED148351} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll (SugarSync, Inc.) ShellIconOverlayIdentifiers: SugarSyncShared -> {1574C9EF-7D58-488F-B358-8B78C1538F51} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll (SugarSync, Inc.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo13.msn.com/?pc=LCJB HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com SearchScopes: HKLM - DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2410} URL = SearchScopes: HKLM - {14810DE1-195E-4F23-B623-860FE40A0752} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=LCJB SearchScopes: HKLM-x32 - DefaultScope value is missing. SearchScopes: HKLM-x32 - {14810DE1-195E-4F23-B623-860FE40A0752} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=LCJB SearchScopes: HKCU - {14810DE1-195E-4F23-B623-860FE40A0752} URL = Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Katharina\AppData\Roaming\Mozilla\Firefox\Profiles\ekrrck2g.default FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF64_14_0_0_125.dll () FF Plugin: @videolan.org/vlc,version=2.1.4 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @adobe.com/FlashPlayer - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_125.dll () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.5.29 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: DownloadHelper - C:\Users\Katharina\AppData\Roaming\Mozilla\Firefox\Profiles\ekrrck2g.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2014-06-21] FF Extension: Ghostery - C:\Users\Katharina\AppData\Roaming\Mozilla\Firefox\Profiles\ekrrck2g.default\Extensions\firefox@ghostery.com.xpi [2014-06-21] FF Extension: Adblock Plus - C:\Users\Katharina\AppData\Roaming\Mozilla\Firefox\Profiles\ekrrck2g.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-06-21] FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK ==================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [430160 2014-05-27] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [430160 2014-05-27] (Avira Operations GmbH & Co. KG) R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [227968 2013-02-28] (Qualcomm Atheros Commnucations) R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [123984 2014-05-14] (Avira Operations GmbH & Co. KG) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15344 2013-04-30] (Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [731648 2013-02-13] (Intel(R) Corporation) [File not signed] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [820184 2013-02-13] (Intel(R) Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-05-17] (Intel Corporation) R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [337920 2013-07-04] (IDT, Inc.) [File not signed] R2 VeriFaceSrv; C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe [68368 2014-02-12] () S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16056 2014-03-29] (Microsoft Corporation) R2 ZAtheros Bt and Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584 2013-02-28] (Atheros) [File not signed] ==================== Drivers (Whitelisted) ==================== R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [112080 2014-05-27] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [130584 2014-05-27] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2014-05-27] (Avira Operations GmbH & Co. KG) R3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2013-02-28] (Qualcomm Atheros) R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation) R0 IntelHSWPcc; C:\Windows\System32\drivers\IntelPcc.sys [100184 2013-04-09] (Intel Corporation) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2013-08-30] (Synaptics Incorporated) R0 sptd; C:\Windows\System32\Drivers\sptd.sys [564824 2014-06-22] (Duplex Secure Ltd.) R3 vm331avs; C:\Windows\System32\Drivers\vm331avs.sys [1064704 2013-05-31] (Vimicro Corporation) S3 wsvd; C:\Windows\system32\DRIVERS\wsvd.sys [102376 2012-06-13] ("CyberLink) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-07-02 19:53 - 2014-07-02 19:54 - 00000000 ____D () C:\AdwCleaner 2014-07-02 19:52 - 2014-07-02 19:52 - 01346519 _____ () C:\Users\Katharina\Downloads\adwcleaner_3.214.exe 2014-07-02 19:38 - 2014-07-02 19:38 - 00019179 _____ () C:\Users\Katharina\Downloads\Addition.txt 2014-07-02 19:37 - 2014-07-02 20:25 - 00013487 _____ () C:\Users\Katharina\Downloads\FRST.txt 2014-07-02 19:37 - 2014-07-02 20:25 - 00000000 ____D () C:\FRST 2014-07-02 19:36 - 2014-07-02 19:36 - 02083840 _____ (Farbar) C:\Users\Katharina\Downloads\FRST64.exe 2014-07-02 18:59 - 2014-07-02 20:01 - 00122584 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2014-07-02 18:58 - 2014-07-02 18:58 - 00001117 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-07-02 18:58 - 2014-07-02 18:58 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-07-02 18:58 - 2014-07-02 18:58 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-07-02 18:58 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2014-07-02 18:58 - 2014-05-12 07:26 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2014-07-02 18:58 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2014-07-02 18:57 - 2014-07-02 18:58 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Katharina\Downloads\mbam-setup-2.0.2.1012.exe 2014-07-01 18:30 - 2014-07-01 18:42 - 00017536 _____ () C:\Users\Katharina\Desktop\Menüpläne.odt 2014-07-01 09:39 - 2014-07-01 09:39 - 00001046 _____ () C:\Users\Public\Desktop\PDFCreator.lnk 2014-07-01 09:39 - 2014-07-01 09:39 - 00000000 ____D () C:\ProgramData\PDF Architect 2 2014-07-01 09:39 - 2014-07-01 09:39 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator 2014-07-01 09:38 - 2014-07-01 09:39 - 00000000 ____D () C:\Program Files (x86)\PDFCreator 2014-07-01 09:38 - 2014-04-25 17:44 - 00137000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSMAPI32.OCX 2014-07-01 09:38 - 2014-04-25 17:44 - 00110264 _____ (pdfforge GmbH) C:\WINDOWS\system32\pdfcmon.dll 2014-07-01 09:38 - 2014-04-25 17:44 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSMPIDE.DLL 2014-07-01 09:38 - 1998-07-06 18:56 - 00125712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VB6DE.DLL 2014-07-01 09:38 - 1998-07-06 18:55 - 00158208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSCMCDE.DLL 2014-07-01 09:38 - 1998-07-06 18:55 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSCC2DE.DLL 2014-07-01 09:37 - 2014-07-01 09:37 - 27843432 _____ (pdfforge ) C:\Users\Katharina\Downloads\PDFCreator-1_7_3_setup.exe 2014-07-01 09:17 - 2013-09-01 12:59 - 01103872 _____ () C:\WINDOWS\SysWOW64\CBLCtlsU.ocx 2014-07-01 09:17 - 2013-07-13 12:15 - 00805376 _____ () C:\WINDOWS\SysWOW64\EditCtlsU.ocx 2014-07-01 09:17 - 2013-07-12 22:57 - 00539648 _____ () C:\WINDOWS\SysWOW64\LblCtlsU.ocx 2014-07-01 09:17 - 2013-04-05 13:55 - 00476160 _____ () C:\WINDOWS\SysWOW64\TabStripCtlU.ocx 2014-07-01 09:17 - 2013-03-28 23:13 - 00645632 _____ () C:\WINDOWS\SysWOW64\BtnCtlsU.ocx 2014-07-01 09:17 - 2013-03-03 14:37 - 01061888 _____ () C:\WINDOWS\SysWOW64\ExLvwU.ocx 2014-07-01 09:16 - 2014-07-01 09:16 - 07873675 _____ (7-PDF, Germany - Th. Hodes ) C:\Users\Katharina\Downloads\7PDF_10_0_0_1840_CB-DL-Manager [1].exe 2014-07-01 09:15 - 2014-07-01 09:15 - 00788832 _____ ( ) C:\Users\Katharina\Downloads\7PDF_10_0_0_1840_CB-DL-Manager.exe 2014-07-01 09:04 - 2014-07-01 09:04 - 00000000 ____D () C:\ProgramData\boost_interprocess 2014-06-30 20:56 - 2014-06-30 20:56 - 00000000 ____D () C:\Users\Katharina\dwhelper 2014-06-30 20:42 - 2014-06-30 20:42 - 00001329 _____ () C:\Users\Katharina\Desktop\Easy Audio Cutter.lnk 2014-06-30 20:42 - 2014-06-30 20:42 - 00001313 _____ () C:\Users\Katharina\Desktop\Free CD Ripper.lnk 2014-06-30 20:42 - 2014-06-30 20:42 - 00001311 _____ () C:\Users\Katharina\Desktop\Free Mp3 Wma Converter.lnk 2014-06-30 20:42 - 2014-06-30 20:42 - 00000000 ____D () C:\Users\Katharina\AppData\Roaming\FreeAudioPack 2014-06-30 20:42 - 2014-06-30 20:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Audio Pack 2014-06-30 20:42 - 2014-06-30 20:42 - 00000000 ____D () C:\Program Files (x86)\Free mp3 Wma Converter 2014-06-30 20:42 - 2014-04-25 17:44 - 01070152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSCOMCTL.OCX 2014-06-30 20:42 - 2011-09-29 14:20 - 02084864 _____ (NCT Company Ltd.) C:\WINDOWS\SysWOW64\AudDesign.dll 2014-06-30 20:42 - 2011-09-29 14:20 - 01986560 _____ (NCT Company Ltd.) C:\WINDOWS\SysWOW64\AudFile.dll 2014-06-30 20:42 - 2011-09-29 14:20 - 01212416 _____ (NCT Company Ltd.) C:\WINDOWS\SysWOW64\AudioInfos.dll 2014-06-30 20:42 - 2011-09-29 14:20 - 00484352 _____ () C:\WINDOWS\SysWOW64\lame_enc.dll 2014-06-30 20:42 - 2011-09-29 14:20 - 00479232 _____ (NCT Company Ltd.) C:\WINDOWS\SysWOW64\AudioVisu.dll 2014-06-30 20:42 - 2011-09-29 14:20 - 00458752 _____ (NCT Company Ltd.) C:\WINDOWS\SysWOW64\AudPlayer.dll 2014-06-30 20:42 - 2011-09-29 14:20 - 00454656 _____ (NCT Company Ltd.) C:\WINDOWS\SysWOW64\AudioRecord.dll 2014-06-30 20:42 - 2011-09-29 14:20 - 00417792 _____ (NCT Company Ltd.) C:\WINDOWS\SysWOW64\AudDisplay.dll 2014-06-30 20:42 - 2011-09-29 14:20 - 00348160 _____ (NCT Company Ltd.) C:\WINDOWS\SysWOW64\WMAFile.dll 2014-06-30 20:42 - 2011-09-29 14:20 - 00307200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr70.dll 2014-06-30 20:42 - 2011-09-29 14:20 - 00164144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\COMCT232.OCX 2014-06-30 20:42 - 2011-09-29 14:20 - 00116296 _____ () C:\WINDOWS\SysWOW64\NCTWMAProfiles.prx 2014-06-30 20:42 - 2011-09-29 14:19 - 00662288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSCOMCT2.OCX 2014-06-30 20:42 - 2011-09-29 14:19 - 00224016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TABCTL32.OCX 2014-06-30 20:42 - 2011-09-29 14:19 - 00152848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\COMDLG32.OCX 2014-06-30 20:42 - 2011-09-29 14:19 - 00141312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSCMCFR.DLL 2014-06-30 20:42 - 2011-09-29 14:19 - 00119568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VB6FR.DLL 2014-06-30 20:42 - 2011-09-29 14:19 - 00115920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msinet.OCX 2014-06-30 20:42 - 2011-09-29 14:19 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VB6STKIT.DLL 2014-06-30 20:42 - 2011-09-29 14:19 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Mscc2fr.dll 2014-06-30 20:42 - 2011-09-29 14:19 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CMDLGFR.DLL 2014-06-30 20:42 - 2011-09-29 14:19 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TABCTFR.DLL 2014-06-30 20:42 - 2011-09-29 14:19 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetfr.DLL 2014-06-30 20:40 - 2014-06-30 20:40 - 00961360 _____ (Chip Digital GmbH) C:\Users\Katharina\Downloads\Free Mp3 Wma Converter - CHIP-Installer.exe 2014-06-30 20:32 - 2014-06-30 20:32 - 00001163 _____ () C:\Users\Katharina\Desktop\Amazon Music.lnk 2014-06-30 20:31 - 2014-06-30 20:31 - 38534920 _____ (Amazon) C:\Users\Katharina\Downloads\AmazonMusicInstaller.exe 2014-06-30 20:26 - 2014-06-30 20:27 - 09659608 _____ () C:\Users\Katharina\Downloads\AmazonMusicImporterInstaller-2.1.0._V337128703_.exe 2014-06-30 17:25 - 2014-06-30 17:25 - 00015074 _____ () C:\Users\Katharina\Documents\Saisonkalender_Obst_Gemüse.odt 2014-06-30 16:28 - 2014-06-30 16:28 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf 2014-06-30 15:58 - 2014-06-30 15:58 - 00013441 _____ () C:\Users\Katharina\Documents\Unbenannt 1.odt 2014-06-29 09:34 - 2014-06-30 20:27 - 00000000 ____D () C:\Users\Katharina\AppData\Local\Adobe 2014-06-27 20:26 - 2014-06-27 20:26 - 00000000 ____D () C:\Users\Katharina\AppData\Local\Macromedia 2014-06-26 21:02 - 2014-06-26 21:02 - 00955246 _____ () C:\Users\Katharina\Desktop\Hochzeitstag 26082014.MVM 2014-06-26 20:59 - 2014-06-26 20:59 - 00000000 ____D () C:\Users\Katharina\AppData\Local\CrashDumps 2014-06-26 20:43 - 2014-06-26 20:43 - 00000000 ____D () C:\Users\Katharina\AppData\Roaming\WebApp 2014-06-26 20:40 - 2014-06-26 20:40 - 00000000 ____D () C:\Users\Katharina\Documents\Lenovo 2014-06-26 20:40 - 2014-06-26 20:40 - 00000000 ____D () C:\Users\Katharina\Documents\CyberLink 2014-06-26 20:40 - 2014-06-26 20:40 - 00000000 ____D () C:\Users\Katharina\AppData\Roaming\Lenovo 2014-06-26 20:40 - 2014-06-26 20:40 - 00000000 ____D () C:\Users\Katharina\AppData\Roaming\CyberLink 2014-06-26 13:32 - 2014-06-26 20:50 - 00023040 ___SH () C:\Users\Katharina\Downloads\Thumbs.db 2014-06-26 13:30 - 2014-06-26 13:31 - 00000000 ____D () C:\ProgramData\MAGIX 2014-06-26 13:30 - 2014-06-26 13:30 - 00001051 _____ () C:\Users\Public\Desktop\MAGIX Slideshow Maker 2.lnk 2014-06-26 13:30 - 2014-06-26 13:30 - 00000000 ____D () C:\Users\Katharina\Documents\MAGIX 2014-06-26 13:30 - 2014-06-26 13:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MAGIX 2014-06-26 13:30 - 2014-06-26 13:30 - 00000000 ____D () C:\Program Files (x86)\MAGIX 2014-06-26 13:27 - 2014-06-26 13:31 - 00000000 ____D () C:\Users\Katharina\AppData\Roaming\MAGIX 2014-06-26 13:25 - 2014-06-26 13:25 - 00961360 _____ (Chip Digital GmbH) C:\Users\Katharina\Downloads\Vollversion Magix Slideshow Maker - CHIP-Installer.exe 2014-06-26 13:09 - 2014-06-26 13:10 - 00000000 ____D () C:\Users\Katharina\AppData\Local\AquaSoft 2014-06-26 13:09 - 2014-06-26 13:09 - 00000000 ____D () C:\Users\Katharina\AppData\Roaming\AquaSoft 2014-06-24 17:24 - 2014-07-01 21:00 - 00115712 ___SH () C:\Users\Katharina\Desktop\Thumbs.db 2014-06-24 17:24 - 2014-06-24 17:24 - 00144345 _____ () C:\Users\Katharina\Desktop\klarna agb.odt 2014-06-24 16:41 - 2014-06-24 16:41 - 00307760 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2014-06-24 16:40 - 2014-06-24 16:40 - 00000000 ____D () C:\sources 2014-06-24 16:39 - 2014-06-25 17:13 - 00000000 ____D () C:\Users\UpdatusUser\AppData\Local\CrashDumps 2014-06-22 22:33 - 2014-04-19 11:39 - 00628024 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationUI.exe 2014-06-22 22:33 - 2014-04-19 10:45 - 00693760 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll 2014-06-22 22:33 - 2014-04-19 10:45 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-06-22 22:33 - 2014-04-19 08:57 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll 2014-06-22 22:33 - 2014-04-19 08:57 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2014-06-22 13:08 - 2014-05-31 07:16 - 00703992 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2014-06-22 13:08 - 2014-05-31 07:16 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2014-06-22 13:05 - 2014-06-22 13:09 - 00000000 ___RD () C:\WINDOWS\BrowserChoice 2014-06-22 12:08 - 2014-06-22 12:08 - 00564824 _____ (Duplex Secure Ltd.) C:\WINDOWS\system32\Drivers\sptd.sys 2014-06-22 12:02 - 2014-06-22 12:02 - 00961360 _____ (Chip Digital GmbH) C:\Users\Katharina\Downloads\DiaShow Ultimate - CHIP-Installer.exe 2014-06-22 11:38 - 2014-06-22 11:40 - 00000000 ____D () C:\WINDOWS\system32\MRT 2014-06-22 11:38 - 2014-06-01 17:17 - 95414520 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2014-06-21 19:48 - 2014-05-27 17:12 - 00130584 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys 2014-06-21 19:48 - 2014-05-27 17:12 - 00112080 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys 2014-06-21 19:48 - 2014-05-27 17:12 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avkmgr.sys 2014-06-21 19:45 - 2014-06-21 19:48 - 00000000 ____D () C:\ProgramData\Avira 2014-06-21 19:45 - 2014-06-21 19:48 - 00000000 ____D () C:\Program Files (x86)\Avira 2014-06-21 19:45 - 2014-06-21 19:45 - 00001148 _____ () C:\Users\Public\Desktop\Avira.lnk 2014-06-21 19:45 - 2014-06-21 19:45 - 00000000 ____D () C:\ProgramData\Package Cache 2014-06-21 19:45 - 2014-06-21 12:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2014-06-21 19:37 - 2014-06-21 19:37 - 00000000 ____D () C:\Users\Katharina\AppData\Roaming\Nitro 2014-06-21 19:34 - 2014-07-02 20:00 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3349096550-3144467483-3537340833-1002 2014-06-21 19:30 - 2014-06-21 19:30 - 04536336 _____ (Avira Operations GmbH & Co. KG) C:\Users\Katharina\Downloads\avira_de_av___ws.exe 2014-06-21 19:28 - 2014-06-21 19:28 - 00000000 ____D () C:\Users\Katharina\AppData\Roaming\Intel Corporation 2014-06-21 19:27 - 2014-06-21 19:27 - 00000000 ____D () C:\Users\Katharina\Documents\Bluetooth Folder 2014-06-21 19:27 - 2014-06-21 19:27 - 00000000 ____D () C:\Users\Katharina\AppData\Roaming\Atheros 2014-06-21 19:27 - 2014-06-21 19:27 - 00000000 ____D () C:\Users\Katharina\AppData\Local\BMExplorer 2014-06-21 19:27 - 2014-06-21 19:27 - 00000000 ____D () C:\ProgramData\Atheros 2014-06-21 19:26 - 2014-06-30 20:56 - 00000000 ____D () C:\Users\Katharina 2014-06-21 19:26 - 2014-06-30 20:27 - 00000000 ____D () C:\Users\Katharina\AppData\Roaming\Adobe 2014-06-21 19:26 - 2014-06-22 13:09 - 00000000 ____D () C:\Users\Katharina\AppData\Local\Packages 2014-06-21 19:26 - 2014-06-21 19:27 - 00001133 _____ () C:\Users\Katharina\Desktop\Cyberlink Power2Go.lnk 2014-06-21 19:26 - 2014-06-21 19:26 - 00001453 _____ () C:\Users\Katharina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-06-21 19:26 - 2014-06-21 19:26 - 00000139 _____ () C:\Users\Public\Desktop\eBay.url 2014-06-21 19:26 - 2014-06-21 19:26 - 00000020 ___SH () C:\Users\Katharina\ntuser.ini 2014-06-21 19:26 - 2014-06-21 19:26 - 00000000 _SHDL () C:\Users\Katharina\Vorlagen 2014-06-21 19:26 - 2014-06-21 19:26 - 00000000 _SHDL () C:\Users\Katharina\Startmenü 2014-06-21 19:26 - 2014-06-21 19:26 - 00000000 _SHDL () C:\Users\Katharina\Netzwerkumgebung 2014-06-21 19:26 - 2014-06-21 19:26 - 00000000 _SHDL () C:\Users\Katharina\Lokale Einstellungen 2014-06-21 19:26 - 2014-06-21 19:26 - 00000000 _SHDL () C:\Users\Katharina\Eigene Dateien 2014-06-21 19:26 - 2014-06-21 19:26 - 00000000 _SHDL () C:\Users\Katharina\Druckumgebung 2014-06-21 19:26 - 2014-06-21 19:26 - 00000000 _SHDL () C:\Users\Katharina\Documents\Eigene Musik 2014-06-21 19:26 - 2014-06-21 19:26 - 00000000 _SHDL () C:\Users\Katharina\Documents\Eigene Bilder 2014-06-21 19:26 - 2014-06-21 19:26 - 00000000 _SHDL () C:\Users\Katharina\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-06-21 19:26 - 2014-06-21 19:26 - 00000000 _SHDL () C:\Users\Katharina\AppData\Local\Verlauf 2014-06-21 19:26 - 2014-06-21 19:26 - 00000000 _SHDL () C:\Users\Katharina\AppData\Local\Anwendungsdaten 2014-06-21 19:26 - 2014-06-21 19:26 - 00000000 _SHDL () C:\Users\Katharina\Anwendungsdaten 2014-06-21 19:26 - 2014-06-21 19:26 - 00000000 ____D () C:\WINDOWS\System32\Tasks\WPD 2014-06-21 19:26 - 2014-06-21 19:26 - 00000000 ____D () C:\Users\Katharina\AppData\Roaming\Macromedia 2014-06-21 19:26 - 2014-06-21 19:26 - 00000000 ____D () C:\Users\Katharina\AppData\Local\VirtualStore 2014-06-21 19:26 - 2014-06-21 19:26 - 00000000 ____D () C:\ProgramData\eBay 2014-06-21 19:26 - 2014-02-13 00:19 - 00000000 ___RD () C:\Users\Katharina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-06-21 19:26 - 2014-02-13 00:16 - 00000000 ___RD () C:\Users\Katharina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-06-21 19:26 - 2014-02-12 16:10 - 00000000 ____D () C:\Users\Katharina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo 2014-06-21 19:26 - 2013-02-04 08:18 - 00000189 _____ () C:\Users\Katharina\Desktop\Lenovo Telephony Start Now.url 2014-06-21 19:26 - 2012-07-26 10:13 - 00000000 ___RD () C:\Users\Katharina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-06-21 19:26 - 2012-07-26 10:13 - 00000000 ____D () C:\Users\Katharina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Programme 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Dokumente und Einstellungen 2014-06-21 19:13 - 2014-07-02 11:37 - 00000000 ____D () C:\Users\Katharina\AppData\Roaming\vlc 2014-06-21 19:13 - 2014-06-21 19:13 - 00000882 _____ () C:\Users\Public\Desktop\VLC media player.lnk 2014-06-21 19:13 - 2014-06-21 19:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2014-06-21 19:13 - 2014-06-21 19:13 - 00000000 ____D () C:\Program Files\VideoLAN 2014-06-21 19:11 - 2014-06-21 19:11 - 25055851 _____ () C:\Users\Katharina\Downloads\vlc-2.1.4-win64.exe 2014-06-21 14:09 - 2014-06-21 14:10 - 00000000 ____D () C:\ProgramData\tmp 2014-06-21 14:09 - 2014-06-21 14:10 - 00000000 ____D () C:\ProgramData\hps 2014-06-21 14:09 - 2014-06-21 14:09 - 00547393 _____ () C:\Users\Katharina\Downloads\uninstall.exe 2014-06-21 14:09 - 2014-06-21 14:09 - 00000818 _____ () C:\Users\Public\Desktop\CEWE FOTOSCHAU.lnk 2014-06-21 14:09 - 2014-06-21 14:09 - 00000803 _____ () C:\Users\Public\Desktop\dm-Fotowelt.lnk 2014-06-21 14:09 - 2014-06-21 14:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\dm-Fotowelt 2014-06-21 14:07 - 2014-06-21 14:09 - 00000000 ____D () C:\Users\Katharina\Downloads\Resources 2014-06-21 14:07 - 2014-06-21 14:07 - 00000000 ____D () C:\Users\Katharina\Downloads\printsupport 2014-06-21 14:07 - 2014-06-21 14:07 - 00000000 ____D () C:\Users\Katharina\Downloads\platforms 2014-06-21 14:07 - 2014-06-21 14:07 - 00000000 ____D () C:\Users\Katharina\Downloads\orderprocessors 2014-06-21 14:07 - 2014-06-21 14:07 - 00000000 ____D () C:\Users\Katharina\Downloads\imageformats 2014-06-21 14:07 - 2014-04-03 09:09 - 01100288 _____ () C:\Users\Katharina\Downloads\CWTemplates.dll 2014-06-21 14:07 - 2014-04-03 09:09 - 00932864 _____ () C:\Users\Katharina\Downloads\CWAPM.dll 2014-06-21 14:07 - 2014-04-03 09:09 - 00578048 _____ () C:\Users\Katharina\Downloads\CWModelBase.dll 2014-06-21 14:07 - 2014-04-03 09:09 - 00572416 _____ () C:\Users\Katharina\Downloads\CWStartScreen.dll 2014-06-21 14:07 - 2014-04-03 09:09 - 00509952 _____ () C:\Users\Katharina\Downloads\CWCustomer.dll 2014-06-21 14:07 - 2014-04-03 09:09 - 00451584 _____ () C:\Users\Katharina\Downloads\CWPriceListDialog.dll 2014-06-21 14:07 - 2014-04-03 09:09 - 00396800 _____ () C:\Users\Katharina\Downloads\CWCalendar.dll 2014-06-21 14:07 - 2014-04-03 09:09 - 00352256 _____ () C:\Users\Katharina\Downloads\CWNetworkingXTCI.dll 2014-06-21 14:07 - 2014-04-03 09:09 - 00089600 _____ () C:\Users\Katharina\Downloads\CWRegionOfInterest.dll 2014-06-21 14:07 - 2014-04-01 15:56 - 01309696 _____ () C:\Users\Katharina\Downloads\CWGUIWidgets.dll 2014-06-21 14:07 - 2014-04-01 15:56 - 01226752 _____ () C:\Users\Katharina\Downloads\CWFoto.dll 2014-06-21 14:07 - 2014-04-01 15:56 - 00849920 _____ () C:\Users\Katharina\Downloads\CWCore.dll 2014-06-21 14:07 - 2014-04-01 15:56 - 00710144 _____ () C:\Users\Katharina\Downloads\CWImageProcessing.dll 2014-06-21 14:07 - 2014-04-01 15:56 - 00664064 _____ () C:\Users\Katharina\Downloads\CWProductProperties.dll 2014-06-21 14:07 - 2014-04-01 15:56 - 00458752 _____ () C:\Users\Katharina\Downloads\CWXML.dll 2014-06-21 14:07 - 2014-04-01 15:56 - 00422912 _____ () C:\Users\Katharina\Downloads\CWImageLoader.dll 2014-06-21 14:07 - 2014-04-01 15:56 - 00350208 _____ () C:\Users\Katharina\Downloads\CWImageProcessingGUI.dll 2014-06-21 14:07 - 2014-04-01 15:56 - 00220672 _____ () C:\Users\Katharina\Downloads\CWNetworking.dll 2014-06-21 14:07 - 2014-04-01 15:56 - 00209408 _____ () C:\Users\Katharina\Downloads\CWFotoschauDLL.dll 2014-06-21 14:07 - 2014-04-01 15:56 - 00204288 _____ () C:\Users\Katharina\Downloads\CWAssistant.dll 2014-06-21 14:07 - 2014-04-01 15:56 - 00192512 _____ () C:\Users\Katharina\Downloads\CWVideoAnalysis.dll 2014-06-21 14:07 - 2014-04-01 15:56 - 00168960 _____ () C:\Users\Katharina\Downloads\CWGeoLocation.dll 2014-06-21 14:07 - 2014-04-01 15:56 - 00122368 _____ () C:\Users\Katharina\Downloads\CWProductBase.dll 2014-06-21 14:07 - 2014-04-01 15:56 - 00019968 _____ () C:\Users\Katharina\Downloads\facedetection.exe 2014-06-21 14:07 - 2014-03-07 10:32 - 02340352 _____ (Smaller Animals Software, Inc.) C:\Users\Katharina\Downloads\_ISource50.dll 2014-06-21 14:07 - 2014-03-07 09:37 - 21603328 _____ (Digia Plc and/or its subsidiary(-ies)) C:\Users\Katharina\Downloads\Qt5WebKit.dll 2014-06-21 14:07 - 2014-03-07 09:37 - 05216256 _____ (Digia Plc and/or its subsidiary(-ies)) C:\Users\Katharina\Downloads\Qt5Widgets.dll 2014-06-21 14:07 - 2014-03-07 09:37 - 04941312 _____ (Digia Plc and/or its subsidiary(-ies)) C:\Users\Katharina\Downloads\Qt5Gui.dll 2014-06-21 14:07 - 2014-03-07 09:37 - 04687360 _____ (Digia Plc and/or its subsidiary(-ies)) C:\Users\Katharina\Downloads\Qt5Core.dll 2014-06-21 14:07 - 2014-03-07 09:37 - 03280384 _____ (Digia Plc and/or its subsidiary(-ies)) C:\Users\Katharina\Downloads\Qt5V8.dll 2014-06-21 14:07 - 2014-03-07 09:37 - 02407424 _____ (Digia Plc and/or its subsidiary(-ies)) C:\Users\Katharina\Downloads\Qt5Quick.dll 2014-06-21 14:07 - 2014-03-07 09:37 - 01936896 _____ (Digia Plc and/or its subsidiary(-ies)) C:\Users\Katharina\Downloads\Qt5Qml.dll 2014-06-21 14:07 - 2014-03-07 09:37 - 01242112 _____ (Digia Plc and/or its subsidiary(-ies)) C:\Users\Katharina\Downloads\Qt5Script.dll 2014-06-21 14:07 - 2014-03-07 09:37 - 01035264 _____ (Digia Plc and/or its subsidiary(-ies)) C:\Users\Katharina\Downloads\Qt5Network.dll 2014-06-21 14:07 - 2014-03-07 09:37 - 01018368 _____ (FotoNation Inc.) C:\Users\Katharina\Downloads\Face.dll 2014-06-21 14:07 - 2014-03-07 09:37 - 00677376 _____ (Digia Plc and/or its subsidiary(-ies)) C:\Users\Katharina\Downloads\Qt5Multimedia.dll 2014-06-21 14:07 - 2014-03-07 09:37 - 00352256 _____ (Digia Plc and/or its subsidiary(-ies)) C:\Users\Katharina\Downloads\Qt5OpenGL.dll 2014-06-21 14:07 - 2014-03-07 09:37 - 00269312 _____ (Digia Plc and/or its subsidiary(-ies)) C:\Users\Katharina\Downloads\Qt5PrintSupport.dll 2014-06-21 14:07 - 2014-03-07 09:37 - 00255488 _____ (Digia Plc and/or its subsidiary(-ies)) C:\Users\Katharina\Downloads\Qt5Svg.dll 2014-06-21 14:07 - 2014-03-07 09:37 - 00226816 _____ (Digia Plc and/or its subsidiary(-ies)) C:\Users\Katharina\Downloads\Qt5WebKitWidgets.dll 2014-06-21 14:07 - 2014-03-07 09:37 - 00199680 _____ (Digia Plc and/or its subsidiary(-ies)) C:\Users\Katharina\Downloads\Qt5Xml.dll 2014-06-21 14:07 - 2014-03-07 09:37 - 00198656 _____ (Digia Plc and/or its subsidiary(-ies)) C:\Users\Katharina\Downloads\Qt5Sql.dll 2014-06-21 14:07 - 2014-03-07 09:37 - 00180736 _____ (FotoNation Inc.) C:\Users\Katharina\Downloads\RedEye.dll 2014-06-21 14:07 - 2014-03-07 09:37 - 00173568 _____ (Digia Plc and/or its subsidiary(-ies)) C:\Users\Katharina\Downloads\Qt5Sensors.dll 2014-06-21 14:07 - 2014-03-07 09:37 - 00099328 _____ (Digia Plc and/or its subsidiary(-ies)) C:\Users\Katharina\Downloads\Qt5MultimediaWidgets.dll 2014-06-21 14:07 - 2013-11-27 13:29 - 06205952 _____ () C:\Users\Katharina\Downloads\avcodec-54.dll 2014-06-21 14:07 - 2013-11-27 13:29 - 01368576 _____ (ImageMagick Studio) C:\Users\Katharina\Downloads\CORE_RL_magick_.dll 2014-06-21 14:07 - 2013-11-27 13:29 - 01286144 _____ (The ICU Project) C:\Users\Katharina\Downloads\icuuc50.dll 2014-06-21 14:07 - 2013-11-27 13:29 - 00307712 _____ () C:\Users\Katharina\Downloads\avutil-52.dll 2014-06-21 14:07 - 2013-11-27 13:28 - 20785664 _____ (The ICU Project) C:\Users\Katharina\Downloads\icudt50.dll 2014-06-21 14:07 - 2013-11-27 13:28 - 05718872 _____ (Microsoft Corporation) C:\Users\Katharina\Downloads\vcredist2010_x64.exe 2014-06-21 14:07 - 2013-11-27 13:28 - 01629696 _____ (The ICU Project) C:\Users\Katharina\Downloads\icuin50.dll 2014-06-21 14:07 - 2013-11-27 13:28 - 01505280 _____ (The OpenSSL Project, hxxp://www.openssl.org/) C:\Users\Katharina\Downloads\libeay32.dll 2014-06-21 14:07 - 2013-11-27 13:28 - 01419776 _____ () C:\Users\Katharina\Downloads\exiv2.dll 2014-06-21 14:07 - 2013-11-27 13:28 - 01374720 _____ () C:\Users\Katharina\Downloads\avformat-54.dll 2014-06-21 14:07 - 2013-11-27 13:28 - 00730112 _____ (ImageMagick Studio LLC) C:\Users\Katharina\Downloads\CORE_RL_wand_.dll 2014-06-21 14:07 - 2013-11-27 13:28 - 00530944 _____ () C:\Users\Katharina\Downloads\avfilter-3.dll 2014-06-21 14:07 - 2013-11-27 13:28 - 00466432 _____ () C:\Users\Katharina\Downloads\IccProfLib0.dll 2014-06-21 14:07 - 2013-11-27 13:28 - 00449536 _____ () C:\Users\Katharina\Downloads\CORE_RL_Magick++_.dll 2014-06-21 14:07 - 2013-11-27 13:28 - 00361472 _____ () C:\Users\Katharina\Downloads\swscale-2.dll 2014-06-21 14:07 - 2013-11-27 13:28 - 00354304 _____ (hxxp://hunspell.sourceforge.net/) C:\Users\Katharina\Downloads\libhunspell.dll 2014-06-21 14:07 - 2013-11-27 13:28 - 00347648 _____ () C:\Users\Katharina\Downloads\libwebp.dll 2014-06-21 14:07 - 2013-11-27 13:28 - 00325120 _____ (The OpenSSL Project, hxxp://www.openssl.org/) C:\Users\Katharina\Downloads\ssleay32.dll 2014-06-21 14:07 - 2013-11-27 13:28 - 00156672 _____ () C:\Users\Katharina\Downloads\libexpat.dll 2014-06-21 14:07 - 2013-11-27 13:28 - 00150528 _____ () C:\Users\Katharina\Downloads\swresample-0.dll 2014-06-21 14:07 - 2013-11-27 13:28 - 00105472 _____ () C:\Users\Katharina\Downloads\avdevice-54.dll 2014-06-21 14:07 - 2013-11-27 13:28 - 00086528 _____ () C:\Users\Katharina\Downloads\HE_3D2anaglyph.dll 2014-06-21 14:07 - 2013-11-27 13:28 - 00069120 _____ () C:\Users\Katharina\Downloads\zlib1.dll 2014-06-21 14:07 - 2013-11-27 13:28 - 00029696 _____ (TODO: <Firmenname>) C:\Users\Katharina\Downloads\ImapiBurner.dll 2014-06-21 14:06 - 2014-06-21 14:09 - 00000000 _____ () C:\Users\Katharina\Downloads\temp.txt 2014-06-21 14:06 - 2014-06-21 14:06 - 00001332 _____ () C:\Users\Katharina\Downloads\38-index-5.1.5.txt 2014-06-21 14:06 - 2014-04-03 09:09 - 07558656 _____ () C:\Users\Katharina\Downloads\dm-Fotowelt.exe 2014-06-21 14:06 - 2014-04-01 15:55 - 01532928 _____ () C:\Users\Katharina\Downloads\CEWE FOTOSCHAU.exe 2014-06-21 14:06 - 2014-04-01 15:55 - 00436736 _____ () C:\Users\Katharina\Downloads\CEWE FOTOIMPORTER.exe 2014-06-21 14:05 - 2014-06-21 14:05 - 01628432 _____ () C:\Users\Katharina\Downloads\setup_dm_Fotowelt.exe 2014-06-21 13:50 - 2014-06-21 13:50 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2014-06-21 13:50 - 2014-06-21 13:50 - 00002030 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk 2014-06-21 13:50 - 2014-06-21 13:50 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-06-21 13:48 - 2014-06-21 13:49 - 75151232 _____ (Adobe Systems Incorporated) C:\Users\Katharina\Downloads\AdbeRdr11007_de_DE.exe 2014-06-21 13:36 - 2014-06-21 13:36 - 00001116 _____ () C:\Users\Public\Desktop\OpenOffice 4.1.0.lnk 2014-06-21 13:36 - 2014-06-21 13:36 - 00000000 ___SD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.0 2014-06-21 13:36 - 2014-06-21 13:36 - 00000000 ____D () C:\Users\Katharina\AppData\Roaming\OpenOffice 2014-06-21 13:35 - 2014-06-21 13:36 - 00000000 ____D () C:\Program Files (x86)\OpenOffice 4 2014-06-21 13:27 - 2014-06-21 13:27 - 00961360 _____ (Chip Digital GmbH) C:\Users\Katharina\Downloads\OpenOffice - CHIP-Installer.exe 2014-06-21 13:24 - 2014-02-04 01:56 - 00332632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys 2014-06-21 13:24 - 2014-02-04 01:56 - 00278872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys 2014-06-21 13:24 - 2014-01-31 02:48 - 00485888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSDApi.dll 2014-06-21 13:24 - 2014-01-31 02:48 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll 2014-06-21 13:24 - 2014-01-31 02:06 - 00599040 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDApi.dll 2014-06-21 13:24 - 2014-01-27 05:39 - 01939288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2014-06-21 13:24 - 2014-01-16 01:42 - 00118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys 2014-06-21 13:24 - 2014-01-11 08:48 - 05979648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2014-06-21 13:24 - 2014-01-11 07:06 - 05092352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2014-06-21 13:24 - 2014-01-03 01:35 - 00365568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsGdiConverter.dll 2014-06-21 13:24 - 2014-01-03 01:32 - 00523264 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsGdiConverter.dll 2014-06-21 13:24 - 2013-08-10 07:21 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll 2014-06-21 13:24 - 2013-08-10 07:21 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncInfo.dll 2014-06-21 13:24 - 2013-08-10 05:58 - 00356352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll 2014-06-21 13:24 - 2013-08-03 08:40 - 01374208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdc.dll 2014-06-21 13:24 - 2013-08-03 08:40 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wvc.dll 2014-06-21 13:24 - 2013-08-03 08:40 - 00462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmon.ocx 2014-06-21 13:24 - 2013-08-03 07:14 - 00399360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sysmon.ocx 2014-06-21 13:24 - 2013-08-03 07:13 - 01245696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdc.dll 2014-06-21 13:24 - 2013-08-03 07:13 - 00437248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wvc.dll 2014-06-21 13:24 - 2013-08-02 08:28 - 00222208 _____ (Microsoft Corporation) C:\WINDOWS\system32\shdocvw.dll 2014-06-21 13:24 - 2013-08-02 07:08 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shdocvw.dll 2014-06-21 13:24 - 2013-07-25 01:10 - 00158208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mbsmsapi.dll 2014-06-21 13:24 - 2013-07-25 01:06 - 00225280 _____ (Microsoft Corporation) C:\WINDOWS\system32\mbsmsapi.dll 2014-06-21 13:24 - 2013-04-10 01:17 - 01125888 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll 2014-06-21 13:24 - 2013-04-10 00:29 - 00893952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll 2014-06-21 13:17 - 2014-04-30 00:32 - 01301504 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2014-06-21 13:17 - 2014-04-30 00:22 - 01023488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2014-06-21 13:17 - 2013-10-10 13:53 - 00096600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys 2014-06-21 13:17 - 2013-10-10 11:21 - 01160192 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL 2014-06-21 13:17 - 2013-10-10 11:20 - 00723968 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL 2014-06-21 13:17 - 2013-09-04 05:11 - 00576512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys 2014-06-21 13:16 - 2014-05-03 07:47 - 03246592 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2014-06-21 13:16 - 2014-05-03 05:34 - 00235520 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2014-06-21 13:16 - 2014-04-03 13:19 - 00328024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys 2014-06-21 13:16 - 2014-04-03 05:44 - 00619008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2014-06-21 13:16 - 2014-04-01 00:08 - 00387268 _____ () C:\WINDOWS\system32\ApnDatabase.xml 2014-06-21 13:16 - 2014-03-28 10:23 - 19759104 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2014-06-21 13:16 - 2014-03-28 08:18 - 17562112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2014-06-21 13:16 - 2014-03-25 01:42 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wusa.exe 2014-06-21 13:16 - 2014-03-25 00:56 - 00309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\wusa.exe 2014-06-21 13:16 - 2013-10-19 07:45 - 00062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\imagehlp.dll 2014-06-21 13:16 - 2013-10-19 06:04 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imagehlp.dll 2014-06-21 13:16 - 2013-08-16 07:41 - 00058200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys 2014-06-21 13:16 - 2013-08-16 07:39 - 02371728 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll 2014-06-21 13:16 - 2013-08-16 07:22 - 04917760 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe 2014-06-21 13:16 - 2013-08-16 07:21 - 01164288 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2014-06-21 13:16 - 2013-08-16 07:21 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll 2014-06-21 13:16 - 2013-08-16 07:21 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSClient.dll 2014-06-21 13:16 - 2013-08-16 07:21 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll 2014-06-21 13:16 - 2013-08-16 07:21 - 00183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSSync.dll 2014-06-21 13:16 - 2013-08-16 07:21 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppc.dll 2014-06-21 13:16 - 2013-08-16 07:21 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupcln.dll 2014-06-21 13:16 - 2013-08-16 07:20 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSetupUI.dll 2014-06-21 13:16 - 2013-08-16 00:43 - 00167424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSClient.dll 2014-06-21 13:16 - 2013-08-16 00:43 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSSync.dll 2014-06-21 13:16 - 2013-08-16 00:43 - 00083968 _____ () C:\WINDOWS\SysWOW64\OEMLicense.dll 2014-06-21 13:16 - 2013-08-16 00:42 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppc.dll 2014-06-21 13:16 - 2013-08-16 00:42 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupcln.dll 2014-06-21 13:16 - 2013-07-06 02:15 - 00652288 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll 2014-06-21 13:16 - 2013-07-04 04:13 - 00541696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll 2014-06-21 13:15 - 2014-03-28 21:19 - 00035856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys 2014-06-21 13:15 - 2014-03-24 00:11 - 00269592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys 2014-06-21 13:15 - 2013-12-09 02:45 - 00523776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2014-06-21 13:15 - 2013-12-09 01:59 - 00600064 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2014-06-21 13:15 - 2013-10-09 03:33 - 00059416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2014-06-21 13:15 - 2013-10-09 00:30 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2014-06-21 13:15 - 2013-10-09 00:30 - 00126976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll 2014-06-21 13:15 - 2013-10-09 00:30 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll 2014-06-21 13:15 - 2013-10-09 00:30 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe 2014-06-21 13:15 - 2013-10-09 00:28 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe 2014-06-21 13:15 - 2013-10-09 00:27 - 03279872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2014-06-21 13:15 - 2013-10-09 00:27 - 01622016 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2014-06-21 13:15 - 2013-10-09 00:27 - 00773120 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2014-06-21 13:15 - 2013-10-09 00:27 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2014-06-21 13:15 - 2013-10-09 00:27 - 00175104 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2014-06-21 13:15 - 2013-10-09 00:27 - 00142848 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll 2014-06-21 13:15 - 2013-10-09 00:27 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2014-06-21 13:15 - 2013-10-05 08:10 - 00285016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys 2014-06-21 13:15 - 2013-10-02 04:50 - 00447320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2014-06-21 13:15 - 2013-09-28 07:48 - 00778752 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll 2014-06-21 13:15 - 2013-09-28 05:58 - 00551424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll 2014-06-21 13:15 - 2013-09-19 09:32 - 01455448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2014-06-21 13:15 - 2013-09-14 00:36 - 00247296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ubpm.dll 2014-06-21 13:15 - 2013-09-14 00:33 - 00328192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll 2014-06-21 13:15 - 2013-08-30 07:43 - 00061784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\crashdmp.sys 2014-06-21 13:15 - 2013-08-30 07:20 - 01173504 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2014-06-21 13:15 - 2013-08-30 07:19 - 00626688 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll 2014-06-21 13:15 - 2013-08-30 07:18 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll 2014-06-21 13:15 - 2013-08-30 01:48 - 00914432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2014-06-21 13:15 - 2013-08-30 01:48 - 00488960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll 2014-06-21 13:15 - 2013-08-30 01:47 - 00302080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll 2014-06-21 13:15 - 2013-08-21 08:39 - 00465240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2014-06-21 13:15 - 2013-08-16 07:21 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2014-06-21 13:15 - 2013-08-16 07:21 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll 2014-06-21 13:15 - 2013-08-16 00:43 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll 2014-06-21 13:15 - 2013-08-10 08:30 - 00151896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys 2014-06-21 13:15 - 2013-07-25 01:10 - 10799104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2014-06-21 13:15 - 2013-07-25 01:07 - 13661696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2014-06-21 13:15 - 2013-07-06 00:02 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbcir.sys 2014-06-21 13:15 - 2013-07-06 00:01 - 00210560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbvideo.sys 2014-06-21 13:15 - 2013-07-02 00:14 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbprint.sys 2014-06-21 13:15 - 2013-06-22 07:45 - 00785624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Wdf01000.sys 2014-06-21 13:15 - 2013-06-22 07:45 - 00054488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdfLdr.sys 2014-06-21 13:14 - 2014-05-24 04:48 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2014-06-21 13:14 - 2014-05-24 04:47 - 02239488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2014-06-21 13:14 - 2014-05-24 04:47 - 01366016 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2014-06-21 13:14 - 2014-05-24 04:47 - 00915968 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll 2014-06-21 13:14 - 2014-05-24 04:47 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\UXInit.dll 2014-06-21 13:14 - 2014-05-24 04:46 - 19290112 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-06-21 13:14 - 2014-05-24 04:46 - 15368704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2014-06-21 13:14 - 2014-05-24 04:46 - 03958784 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2014-06-21 13:14 - 2014-05-24 04:46 - 02650112 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2014-06-21 13:14 - 2014-05-24 04:46 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2014-06-21 13:14 - 2014-05-24 04:46 - 00603136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2014-06-21 13:14 - 2014-05-24 04:46 - 00197120 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll 2014-06-21 13:14 - 2014-05-24 04:46 - 00136704 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesysprep.dll 2014-06-21 13:14 - 2014-05-24 04:46 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2014-06-21 13:14 - 2014-05-24 04:46 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll 2014-06-21 13:14 - 2014-05-24 04:46 - 00053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2014-06-21 13:14 - 2014-05-24 04:46 - 00039936 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll 2014-06-21 13:14 - 2014-05-24 04:45 - 01508864 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2014-06-21 13:14 - 2014-05-24 04:45 - 00452096 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll 2014-06-21 13:14 - 2014-05-24 04:45 - 00281600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll 2014-06-21 13:14 - 2014-05-24 03:26 - 14365696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2014-06-21 13:14 - 2014-05-24 03:26 - 01766400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2014-06-21 13:14 - 2014-05-24 03:26 - 01141248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2014-06-21 13:14 - 2014-05-24 03:26 - 00493056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2014-06-21 13:14 - 2014-05-24 03:26 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll 2014-06-21 13:14 - 2014-05-24 03:26 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll 2014-06-21 13:14 - 2014-05-24 03:26 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UXInit.dll 2014-06-21 13:14 - 2014-05-24 03:25 - 13731328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2014-06-21 13:14 - 2014-05-24 03:25 - 02862080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2014-06-21 13:14 - 2014-05-24 03:25 - 02050560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2014-06-21 13:14 - 2014-05-24 03:25 - 01440768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2014-06-21 13:14 - 2014-05-24 03:25 - 00690688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2014-06-21 13:14 - 2014-05-24 03:25 - 00357888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll 2014-06-21 13:14 - 2014-05-24 03:25 - 00226816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll 2014-06-21 13:14 - 2014-05-24 03:25 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesysprep.dll 2014-06-21 13:14 - 2014-05-24 03:25 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll 2014-06-21 13:14 - 2014-05-24 03:25 - 00039936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll 2014-06-21 13:14 - 2014-05-24 03:25 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll 2014-06-21 13:14 - 2014-05-24 03:09 - 02706432 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2014-06-21 13:14 - 2014-05-24 03:03 - 02706432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2014-06-21 13:14 - 2014-05-24 00:37 - 00534528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll 2014-06-21 13:14 - 2014-02-08 06:34 - 04036608 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2014-06-21 13:14 - 2013-10-02 01:37 - 01569280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll 2014-06-21 13:14 - 2013-10-02 01:26 - 01890816 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll 2014-06-21 13:14 - 2013-07-09 10:04 - 00120144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msgpioclx.sys 2014-06-21 13:14 - 2013-07-09 08:18 - 00439488 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe 2014-06-21 13:14 - 2013-07-09 06:25 - 00385768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe 2014-06-21 13:14 - 2013-07-09 05:57 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LocationApi.dll 2014-06-21 13:14 - 2013-07-09 00:46 - 00543744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll 2014-06-21 13:14 - 2013-07-09 00:46 - 00414208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll 2014-06-21 13:14 - 2013-07-09 00:46 - 00370688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wwanadvui.dll 2014-06-21 13:14 - 2013-07-09 00:45 - 00312832 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll 2014-06-21 13:14 - 2013-07-06 02:16 - 01025024 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2014-06-21 13:14 - 2013-07-03 02:23 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll 2014-06-21 13:14 - 2013-07-03 02:22 - 02839552 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2014-06-21 13:14 - 2013-07-03 02:11 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll 2014-06-21 13:14 - 2013-07-03 02:10 - 02273792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll 2014-06-21 13:14 - 2013-07-01 00:30 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\openfiles.exe 2014-06-21 13:14 - 2013-07-01 00:29 - 00077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\openfiles.exe 2014-06-21 13:14 - 2013-06-29 08:15 - 00195416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys 2014-06-21 13:14 - 2013-06-29 08:15 - 00125784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys 2014-06-21 13:14 - 2013-06-26 05:01 - 00321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\udfs.sys 2014-06-21 13:14 - 2013-06-26 04:59 - 00341504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\HdAudio.sys 2014-06-21 13:14 - 2013-06-25 00:54 - 00447488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll 2014-06-21 13:14 - 2013-06-25 00:54 - 00263680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll 2014-06-21 13:14 - 2013-06-25 00:54 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll 2014-06-21 13:14 - 2013-06-19 07:36 - 00183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmmbase.dll 2014-06-21 13:14 - 2013-06-19 07:36 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmm.dll 2014-06-21 13:14 - 2013-06-19 00:38 - 00160256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmmbase.dll 2014-06-21 13:14 - 2013-06-19 00:38 - 00125440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmm.dll 2014-06-21 13:14 - 2013-06-12 01:43 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinSCard.dll 2014-06-21 13:14 - 2013-06-12 01:26 - 00230912 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSCard.dll 2014-06-21 13:14 - 2013-06-10 21:16 - 00888832 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll 2014-06-21 13:14 - 2013-06-10 21:15 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL 2014-06-21 13:14 - 2013-06-10 21:10 - 00702464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll 2014-06-21 13:14 - 2013-06-10 21:10 - 00245248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL 2014-06-21 13:14 - 2013-06-06 10:03 - 00119040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS 2014-06-21 13:14 - 2013-05-24 01:02 - 01314816 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll 2014-06-21 13:14 - 2013-05-24 00:25 - 00694272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll 2014-06-21 13:13 - 2014-04-12 11:27 - 00172888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2014-06-21 13:13 - 2014-04-12 11:10 - 00578048 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe 2014-06-21 13:13 - 2014-04-12 11:09 - 01043968 _____ (Microsoft Corporation) C:\WINDOWS\system32\usercpl.dll 2014-06-21 13:13 - 2014-04-12 11:09 - 00588288 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll 2014-06-21 13:13 - 2014-04-12 11:09 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdigest.dll 2014-06-21 13:13 - 2014-04-12 11:09 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSpkg.dll 2014-06-21 13:13 - 2014-04-12 11:08 - 01281536 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2014-06-21 13:13 - 2014-04-12 11:08 - 00827904 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2014-06-21 13:13 - 2014-04-12 11:08 - 00439808 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll 2014-06-21 13:13 - 2014-04-12 11:08 - 00318464 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2014-06-21 13:13 - 2014-04-12 11:07 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\credssp.dll 2014-06-21 13:13 - 2014-04-12 09:23 - 00961536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usercpl.dll 2014-06-21 13:13 - 2014-04-12 09:23 - 00452608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll 2014-06-21 13:13 - 2014-04-12 09:23 - 00273920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2014-06-21 13:13 - 2014-04-12 09:23 - 00178688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdigest.dll 2014-06-21 13:13 - 2014-04-12 09:23 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSpkg.dll 2014-06-21 13:13 - 2014-04-12 09:22 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2014-06-21 13:13 - 2014-04-12 09:22 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credssp.dll 2014-06-21 13:13 - 2014-04-12 08:58 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\workerdd.dll 2014-06-21 13:13 - 2014-03-11 05:32 - 06987096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2014-06-21 13:13 - 2014-03-11 05:25 - 00100184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys 2014-06-21 13:13 - 2014-03-11 02:41 - 00559104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\objsel.dll 2014-06-21 13:13 - 2014-03-11 02:41 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll 2014-06-21 13:13 - 2014-03-11 02:41 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dimsroam.dll 2014-06-21 13:13 - 2014-03-11 02:39 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsass.exe 2014-06-21 13:13 - 2014-03-11 02:38 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2014-06-21 13:13 - 2014-03-11 02:38 - 00684032 _____ (Microsoft Corporation) C:\WINDOWS\system32\objsel.dll 2014-06-21 13:13 - 2014-03-11 02:38 - 00419328 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll 2014-06-21 13:13 - 2014-03-11 02:38 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll 2014-06-21 13:13 - 2014-03-11 02:38 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll 2014-06-21 13:13 - 2014-03-11 02:38 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\dimsroam.dll 2014-06-21 13:13 - 2014-03-11 02:38 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspisrv.dll 2014-06-21 13:13 - 2014-03-10 05:05 - 00668160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2014-06-21 13:13 - 2014-03-10 03:27 - 00099840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll 2014-06-21 13:13 - 2014-03-04 01:07 - 00570216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2014-06-21 13:13 - 2013-12-05 01:43 - 00583680 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdrm.dll 2014-06-21 13:13 - 2013-12-05 01:37 - 00451072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdrm.dll 2014-06-21 13:13 - 2013-10-31 07:56 - 00915968 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll 2014-06-21 13:13 - 2013-10-31 07:56 - 00758784 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll 2014-06-21 13:13 - 2013-10-31 06:01 - 00550400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll 2014-06-21 13:13 - 2013-10-31 05:42 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mpsdrv.sys 2014-06-21 13:13 - 2013-10-13 22:49 - 00100696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\disk.sys 2014-06-21 13:13 - 2013-08-27 07:21 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebClnt.dll 2014-06-21 13:13 - 2013-08-27 07:19 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll 2014-06-21 13:13 - 2013-08-27 00:29 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebClnt.dll 2014-06-21 13:13 - 2013-08-27 00:28 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\davclnt.dll 2014-06-21 13:13 - 2013-07-20 00:13 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2014-06-21 13:13 - 2013-07-20 00:13 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2014-06-21 13:13 - 2013-07-13 08:18 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll 2014-06-21 13:13 - 2013-07-13 08:16 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptsvc.dll 2014-06-21 13:13 - 2013-07-13 08:15 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll 2014-06-21 13:13 - 2013-07-13 08:15 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll 2014-06-21 13:13 - 2013-07-13 06:24 - 00261120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll 2014-06-21 13:13 - 2013-07-13 06:23 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepapi.dll 2014-06-21 13:13 - 2013-07-13 06:23 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepsync.dll 2014-06-21 13:13 - 2013-07-01 03:42 - 00623448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbhub.sys 2014-06-21 13:13 - 2013-07-01 03:42 - 00498008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbport.sys 2014-06-21 13:13 - 2013-07-01 03:42 - 00079192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbehci.sys 2014-06-21 13:13 - 2013-07-01 03:42 - 00021848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbd.sys 2014-06-21 13:13 - 2013-06-29 05:07 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbuhci.sys 2014-06-21 13:13 - 2013-06-29 05:06 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbccgp.sys 2014-06-21 13:13 - 2013-05-27 01:17 - 00035328 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2014-06-21 13:13 - 2013-05-27 00:59 - 00046080 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2014-06-21 13:13 - 2013-05-25 05:15 - 00362496 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2014-06-21 13:13 - 2013-05-25 04:32 - 00300032 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll 2014-06-21 13:12 - 2014-04-03 13:22 - 02233176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2014-06-21 13:12 - 2014-03-28 10:23 - 01287168 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll 2014-06-21 13:12 - 2014-03-07 02:47 - 01419264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll 2014-06-21 13:12 - 2014-03-07 02:08 - 01845760 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll 2014-06-21 13:12 - 2014-02-06 01:41 - 00595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll 2014-06-21 13:12 - 2014-02-06 01:37 - 00496640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qedit.dll 2014-06-21 13:12 - 2014-01-31 02:48 - 01339392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll 2014-06-21 13:12 - 2014-01-31 02:06 - 01628160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2014-06-21 13:12 - 2014-01-13 01:30 - 02238976 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10warp.dll 2014-06-21 13:12 - 2014-01-13 01:30 - 02032640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10warp.dll 2014-06-21 13:12 - 2013-11-23 08:43 - 00420864 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll 2014-06-21 13:12 - 2013-11-23 07:05 - 00368640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll 2014-06-21 13:12 - 2013-11-20 02:15 - 03842560 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll 2014-06-21 13:12 - 2013-11-20 01:57 - 03288576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll 2014-06-21 13:12 - 2013-10-10 11:32 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cscript.exe 2014-06-21 13:12 - 2013-10-10 11:30 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrobj.dll 2014-06-21 13:12 - 2013-10-10 11:30 - 00156160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrrun.dll 2014-06-21 13:12 - 2013-10-10 11:24 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshom.ocx 2014-06-21 13:12 - 2013-10-10 11:23 - 00146944 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscript.exe 2014-06-21 13:12 - 2013-10-10 11:22 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrobj.dll 2014-06-21 13:12 - 2013-10-10 11:22 - 00194048 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrrun.dll 2014-06-21 13:12 - 2013-10-02 01:37 - 02035712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll 2014-06-21 13:12 - 2013-10-02 01:26 - 02304512 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2014-06-21 13:12 - 2013-09-28 05:35 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys 2014-06-21 13:12 - 2013-08-23 09:22 - 02062848 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2014-06-21 13:12 - 2013-08-23 03:44 - 01711616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll 2014-06-21 13:12 - 2013-08-07 07:15 - 00144896 _____ (Microsoft Corporation) C:\WINDOWS\system32\tssdisai.dll 2014-06-21 13:12 - 2013-08-02 08:28 - 10116608 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2014-06-21 13:12 - 2013-08-02 07:08 - 08858112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2014-06-21 13:12 - 2013-07-02 03:41 - 00337752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS 2014-06-21 13:12 - 2013-07-02 03:41 - 00213336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UCX01000.SYS 2014-06-21 13:12 - 2013-03-22 05:49 - 02382336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll 2014-06-21 13:12 - 2013-03-22 00:47 - 02851840 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll 2014-06-21 13:11 - 2014-03-01 11:47 - 01258496 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll 2014-06-21 13:11 - 2014-03-01 11:47 - 01120768 _____ (Microsoft Corporation) C:\WINDOWS\system32\gpedit.dll 2014-06-21 13:11 - 2014-03-01 10:07 - 01075200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gpedit.dll 2014-06-21 13:11 - 2014-03-01 08:59 - 00974848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll 2014-06-21 13:11 - 2014-02-27 01:18 - 00370688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2014-06-21 13:11 - 2014-02-27 01:18 - 00247808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys 2014-06-21 13:11 - 2014-02-27 01:18 - 00215040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2014-06-21 13:11 - 2014-02-15 06:15 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IPMIDrv.sys 2014-06-21 13:11 - 2013-11-26 01:17 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys 2014-06-21 13:11 - 2013-11-01 07:38 - 00312320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msieftp.dll 2014-06-21 13:11 - 2013-11-01 05:49 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msieftp.dll 2014-06-21 13:11 - 2013-06-29 05:08 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidparse.sys 2014-06-21 13:05 - 2014-06-24 16:46 - 00000000 ____D () C:\ProgramData\Adobe 2014-06-21 12:54 - 2014-06-30 20:42 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-06-21 12:54 - 2014-06-21 12:55 - 00000000 ____D () C:\Users\Katharina\AppData\Roaming\Mozilla 2014-06-21 12:54 - 2014-06-21 12:55 - 00000000 ____D () C:\Users\Katharina\AppData\Local\Mozilla 2014-06-21 12:54 - 2014-06-21 12:54 - 00001174 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2014-06-21 12:54 - 2014-06-21 12:54 - 00001162 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-06-21 12:53 - 2014-06-21 12:53 - 29677544 _____ (Mozilla) C:\Users\Katharina\Downloads\Firefox_Setup_de30.0.exe 2014-06-21 12:50 - 2014-06-21 12:49 - 00084720 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avnetflt.sys 2014-06-21 12:49 - 2014-06-21 12:49 - 00000000 ____D () C:\Users\Katharina\AppData\Roaming\Avira ==================== One Month Modified Files and Folders ======= 2014-07-02 20:25 - 2014-07-02 19:37 - 00013487 _____ () C:\Users\Katharina\Downloads\FRST.txt 2014-07-02 20:25 - 2014-07-02 19:37 - 00000000 ____D () C:\FRST 2014-07-02 20:01 - 2014-07-02 18:59 - 00122584 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2014-07-02 20:00 - 2014-06-21 19:34 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3349096550-3144467483-3537340833-1002 2014-07-02 20:00 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\system32\sru 2014-07-02 19:59 - 2014-02-13 00:09 - 00754172 _____ () C:\WINDOWS\system32\perfh007.dat 2014-07-02 19:59 - 2014-02-13 00:09 - 00156362 _____ () C:\WINDOWS\system32\perfc007.dat 2014-07-02 19:59 - 2012-07-26 09:28 - 01748838 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2014-07-02 19:55 - 2012-07-26 09:22 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-07-02 19:54 - 2014-07-02 19:53 - 00000000 ____D () C:\AdwCleaner 2014-07-02 19:54 - 2014-02-12 16:15 - 00002560 _____ () C:\WINDOWS\system32\VfService.trf 2014-07-02 19:54 - 2013-03-25 23:02 - 00142688 _____ () C:\WINDOWS\PFRO.log 2014-07-02 19:54 - 2012-07-26 07:26 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI 2014-07-02 19:52 - 2014-07-02 19:52 - 01346519 _____ () C:\Users\Katharina\Downloads\adwcleaner_3.214.exe 2014-07-02 19:38 - 2014-07-02 19:38 - 00019179 _____ () C:\Users\Katharina\Downloads\Addition.txt 2014-07-02 19:36 - 2014-07-02 19:36 - 02083840 _____ (Farbar) C:\Users\Katharina\Downloads\FRST64.exe 2014-07-02 19:31 - 2014-02-12 15:28 - 01459353 _____ () C:\WINDOWS\WindowsUpdate.log 2014-07-02 19:22 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\rescache 2014-07-02 18:58 - 2014-07-02 18:58 - 00001117 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-07-02 18:58 - 2014-07-02 18:58 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-07-02 18:58 - 2014-07-02 18:58 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-07-02 18:58 - 2014-07-02 18:57 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Katharina\Downloads\mbam-setup-2.0.2.1012.exe 2014-07-02 11:37 - 2014-06-21 19:13 - 00000000 ____D () C:\Users\Katharina\AppData\Roaming\vlc 2014-07-01 21:00 - 2014-06-24 17:24 - 00115712 ___SH () C:\Users\Katharina\Desktop\Thumbs.db 2014-07-01 18:42 - 2014-07-01 18:30 - 00017536 _____ () C:\Users\Katharina\Desktop\Menüpläne.odt 2014-07-01 09:39 - 2014-07-01 09:39 - 00001046 _____ () C:\Users\Public\Desktop\PDFCreator.lnk 2014-07-01 09:39 - 2014-07-01 09:39 - 00000000 ____D () C:\ProgramData\PDF Architect 2 2014-07-01 09:39 - 2014-07-01 09:39 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator 2014-07-01 09:39 - 2014-07-01 09:38 - 00000000 ____D () C:\Program Files (x86)\PDFCreator 2014-07-01 09:37 - 2014-07-01 09:37 - 27843432 _____ (pdfforge ) C:\Users\Katharina\Downloads\PDFCreator-1_7_3_setup.exe 2014-07-01 09:16 - 2014-07-01 09:16 - 07873675 _____ (7-PDF, Germany - Th. Hodes ) C:\Users\Katharina\Downloads\7PDF_10_0_0_1840_CB-DL-Manager [1].exe 2014-07-01 09:15 - 2014-07-01 09:15 - 00788832 _____ ( ) C:\Users\Katharina\Downloads\7PDF_10_0_0_1840_CB-DL-Manager.exe 2014-07-01 09:14 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\system32\FxsTmp 2014-07-01 09:04 - 2014-07-01 09:04 - 00000000 ____D () C:\ProgramData\boost_interprocess 2014-06-30 20:56 - 2014-06-30 20:56 - 00000000 ____D () C:\Users\Katharina\dwhelper 2014-06-30 20:56 - 2014-06-21 19:26 - 00000000 ____D () C:\Users\Katharina 2014-06-30 20:48 - 2012-07-26 09:21 - 00027033 _____ () C:\WINDOWS\setupact.log 2014-06-30 20:42 - 2014-06-30 20:42 - 00001329 _____ () C:\Users\Katharina\Desktop\Easy Audio Cutter.lnk 2014-06-30 20:42 - 2014-06-30 20:42 - 00001313 _____ () C:\Users\Katharina\Desktop\Free CD Ripper.lnk 2014-06-30 20:42 - 2014-06-30 20:42 - 00001311 _____ () C:\Users\Katharina\Desktop\Free Mp3 Wma Converter.lnk 2014-06-30 20:42 - 2014-06-30 20:42 - 00000000 ____D () C:\Users\Katharina\AppData\Roaming\FreeAudioPack 2014-06-30 20:42 - 2014-06-30 20:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Audio Pack 2014-06-30 20:42 - 2014-06-30 20:42 - 00000000 ____D () C:\Program Files (x86)\Free mp3 Wma Converter 2014-06-30 20:42 - 2014-06-21 12:54 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-06-30 20:40 - 2014-06-30 20:40 - 00961360 _____ (Chip Digital GmbH) C:\Users\Katharina\Downloads\Free Mp3 Wma Converter - CHIP-Installer.exe 2014-06-30 20:32 - 2014-06-30 20:32 - 00001163 _____ () C:\Users\Katharina\Desktop\Amazon Music.lnk 2014-06-30 20:31 - 2014-06-30 20:31 - 38534920 _____ (Amazon) C:\Users\Katharina\Downloads\AmazonMusicInstaller.exe 2014-06-30 20:27 - 2014-06-30 20:26 - 09659608 _____ () C:\Users\Katharina\Downloads\AmazonMusicImporterInstaller-2.1.0._V337128703_.exe 2014-06-30 20:27 - 2014-06-29 09:34 - 00000000 ____D () C:\Users\Katharina\AppData\Local\Adobe 2014-06-30 20:27 - 2014-06-21 19:26 - 00000000 ____D () C:\Users\Katharina\AppData\Roaming\Adobe 2014-06-30 17:25 - 2014-06-30 17:25 - 00015074 _____ () C:\Users\Katharina\Documents\Saisonkalender_Obst_Gemüse.odt 2014-06-30 16:28 - 2014-06-30 16:28 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf 2014-06-30 15:58 - 2014-06-30 15:58 - 00013441 _____ () C:\Users\Katharina\Documents\Unbenannt 1.odt 2014-06-27 20:26 - 2014-06-27 20:26 - 00000000 ____D () C:\Users\Katharina\AppData\Local\Macromedia 2014-06-26 21:02 - 2014-06-26 21:02 - 00955246 _____ () C:\Users\Katharina\Desktop\Hochzeitstag 26082014.MVM 2014-06-26 20:59 - 2014-06-26 20:59 - 00000000 ____D () C:\Users\Katharina\AppData\Local\CrashDumps 2014-06-26 20:50 - 2014-06-26 13:32 - 00023040 ___SH () C:\Users\Katharina\Downloads\Thumbs.db 2014-06-26 20:43 - 2014-06-26 20:43 - 00000000 ____D () C:\Users\Katharina\AppData\Roaming\WebApp 2014-06-26 20:40 - 2014-06-26 20:40 - 00000000 ____D () C:\Users\Katharina\Documents\Lenovo 2014-06-26 20:40 - 2014-06-26 20:40 - 00000000 ____D () C:\Users\Katharina\Documents\CyberLink 2014-06-26 20:40 - 2014-06-26 20:40 - 00000000 ____D () C:\Users\Katharina\AppData\Roaming\Lenovo 2014-06-26 20:40 - 2014-06-26 20:40 - 00000000 ____D () C:\Users\Katharina\AppData\Roaming\CyberLink 2014-06-26 20:40 - 2014-02-12 16:15 - 00000000 ____D () C:\ProgramData\Lenovo 2014-06-26 20:40 - 2014-02-12 16:08 - 00000000 ____D () C:\ProgramData\CyberLink 2014-06-26 13:31 - 2014-06-26 13:30 - 00000000 ____D () C:\ProgramData\MAGIX 2014-06-26 13:31 - 2014-06-26 13:27 - 00000000 ____D () C:\Users\Katharina\AppData\Roaming\MAGIX 2014-06-26 13:30 - 2014-06-26 13:30 - 00001051 _____ () C:\Users\Public\Desktop\MAGIX Slideshow Maker 2.lnk 2014-06-26 13:30 - 2014-06-26 13:30 - 00000000 ____D () C:\Users\Katharina\Documents\MAGIX 2014-06-26 13:30 - 2014-06-26 13:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MAGIX 2014-06-26 13:30 - 2014-06-26 13:30 - 00000000 ____D () C:\Program Files (x86)\MAGIX 2014-06-26 13:25 - 2014-06-26 13:25 - 00961360 _____ (Chip Digital GmbH) C:\Users\Katharina\Downloads\Vollversion Magix Slideshow Maker - CHIP-Installer.exe 2014-06-26 13:10 - 2014-06-26 13:09 - 00000000 ____D () C:\Users\Katharina\AppData\Local\AquaSoft 2014-06-26 13:09 - 2014-06-26 13:09 - 00000000 ____D () C:\Users\Katharina\AppData\Roaming\AquaSoft 2014-06-25 17:13 - 2014-06-24 16:39 - 00000000 ____D () C:\Users\UpdatusUser\AppData\Local\CrashDumps 2014-06-25 08:21 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\AUInstallAgent 2014-06-24 17:24 - 2014-06-24 17:24 - 00144345 _____ () C:\Users\Katharina\Desktop\klarna agb.odt 2014-06-24 16:46 - 2014-06-21 13:05 - 00000000 ____D () C:\ProgramData\Adobe 2014-06-24 16:41 - 2014-06-24 16:41 - 00307760 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2014-06-24 16:40 - 2014-06-24 16:40 - 00000000 ____D () C:\sources 2014-06-24 16:40 - 2012-07-26 10:12 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel 2014-06-24 16:40 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\WinStore 2014-06-24 16:40 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\SysWOW64\MUI 2014-06-24 16:40 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\SysWOW64\migwiz 2014-06-24 16:40 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\SysWOW64\Com 2014-06-24 16:40 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\system32\SystemResetPlatform 2014-06-24 16:40 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\system32\MUI 2014-06-24 16:40 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\system32\migwiz 2014-06-24 16:40 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\system32\Com 2014-06-24 16:40 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files\Windows Photo Viewer 2014-06-24 16:40 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files\Windows Defender 2014-06-24 16:40 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files (x86)\Windows Photo Viewer 2014-06-24 16:40 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files (x86)\Windows Defender 2014-06-24 16:40 - 2012-07-26 09:59 - 00000000 ____D () C:\WINDOWS\CbsTemp 2014-06-24 16:40 - 2012-07-26 09:52 - 00000000 ____D () C:\Program Files\Windows Journal 2014-06-24 16:40 - 2012-07-26 09:51 - 00000000 ____D () C:\WINDOWS\SysWOW64\winrm 2014-06-24 16:40 - 2012-07-26 09:51 - 00000000 ____D () C:\WINDOWS\SysWOW64\WCN 2014-06-24 16:40 - 2012-07-26 09:51 - 00000000 ____D () C:\WINDOWS\SysWOW64\sysprep 2014-06-24 16:40 - 2012-07-26 09:51 - 00000000 ____D () C:\WINDOWS\SysWOW64\slmgr 2014-06-24 16:40 - 2012-07-26 09:51 - 00000000 ____D () C:\WINDOWS\SysWOW64\Printing_Admin_Scripts 2014-06-24 16:40 - 2012-07-26 09:51 - 00000000 ____D () C:\WINDOWS\system32\winrm 2014-06-24 16:40 - 2012-07-26 09:51 - 00000000 ____D () C:\WINDOWS\system32\WCN 2014-06-24 16:40 - 2012-07-26 09:51 - 00000000 ____D () C:\WINDOWS\system32\slmgr 2014-06-24 16:40 - 2012-07-26 09:51 - 00000000 ____D () C:\WINDOWS\system32\Printing_Admin_Scripts 2014-06-24 16:40 - 2012-07-26 07:38 - 00000000 ____D () C:\WINDOWS\SysWOW64\oobe 2014-06-24 16:40 - 2012-07-26 07:38 - 00000000 ____D () C:\WINDOWS\SysWOW64\Dism 2014-06-24 16:40 - 2012-07-26 07:38 - 00000000 ____D () C:\WINDOWS\system32\Sysprep 2014-06-24 16:40 - 2012-07-26 07:38 - 00000000 ____D () C:\WINDOWS\system32\oobe 2014-06-24 16:40 - 2012-07-26 07:38 - 00000000 ____D () C:\WINDOWS\system32\Dism 2014-06-22 13:09 - 2014-06-22 13:05 - 00000000 ___RD () C:\WINDOWS\BrowserChoice 2014-06-22 13:09 - 2014-06-21 19:26 - 00000000 ____D () C:\Users\Katharina\AppData\Local\Packages 2014-06-22 13:09 - 2013-03-25 23:03 - 00000000 ____D () C:\ProgramData\PRICache 2014-06-22 13:05 - 2012-07-26 10:12 - 00000000 ___RD () C:\WINDOWS\ToastData 2014-06-22 13:05 - 2012-07-26 10:12 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-06-22 13:05 - 2012-07-26 10:12 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2014-06-22 13:05 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\PolicyDefinitions 2014-06-22 13:05 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2014-06-22 13:04 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\system32\SecureBootUpdates 2014-06-22 12:08 - 2014-06-22 12:08 - 00564824 _____ (Duplex Secure Ltd.) C:\WINDOWS\system32\Drivers\sptd.sys 2014-06-22 12:02 - 2014-06-22 12:02 - 00961360 _____ (Chip Digital GmbH) C:\Users\Katharina\Downloads\DiaShow Ultimate - CHIP-Installer.exe 2014-06-22 11:40 - 2014-06-22 11:38 - 00000000 ____D () C:\WINDOWS\system32\MRT 2014-06-22 11:38 - 2012-07-26 07:26 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM 2014-06-21 19:48 - 2014-06-21 19:45 - 00000000 ____D () C:\ProgramData\Avira 2014-06-21 19:48 - 2014-06-21 19:45 - 00000000 ____D () C:\Program Files (x86)\Avira 2014-06-21 19:45 - 2014-06-21 19:45 - 00001148 _____ () C:\Users\Public\Desktop\Avira.lnk 2014-06-21 19:45 - 2014-06-21 19:45 - 00000000 ____D () C:\ProgramData\Package Cache 2014-06-21 19:41 - 2012-07-26 10:12 - 00000000 ___HD () C:\WINDOWS\ELAMBKUP 2014-06-21 19:37 - 2014-06-21 19:37 - 00000000 ____D () C:\Users\Katharina\AppData\Roaming\Nitro 2014-06-21 19:35 - 2014-02-12 16:17 - 00000000 ____D () C:\ProgramData\Energy Manager 2014-06-21 19:30 - 2014-06-21 19:30 - 04536336 _____ (Avira Operations GmbH & Co. KG) C:\Users\Katharina\Downloads\avira_de_av___ws.exe 2014-06-21 19:28 - 2014-06-21 19:28 - 00000000 ____D () C:\Users\Katharina\AppData\Roaming\Intel Corporation 2014-06-21 19:27 - 2014-06-21 19:27 - 00000000 ____D () C:\Users\Katharina\Documents\Bluetooth Folder 2014-06-21 19:27 - 2014-06-21 19:27 - 00000000 ____D () C:\Users\Katharina\AppData\Roaming\Atheros 2014-06-21 19:27 - 2014-06-21 19:27 - 00000000 ____D () C:\Users\Katharina\AppData\Local\BMExplorer 2014-06-21 19:27 - 2014-06-21 19:27 - 00000000 ____D () C:\ProgramData\Atheros 2014-06-21 19:27 - 2014-06-21 19:26 - 00001133 _____ () C:\Users\Katharina\Desktop\Cyberlink Power2Go.lnk 2014-06-21 19:26 - 2014-06-21 19:26 - 00001453 _____ () C:\Users\Katharina\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-06-21 19:26 - 2014-06-21 19:26 - 00000139 _____ () C:\Users\Public\Desktop\eBay.url 2014-06-21 19:26 - 2014-06-21 19:26 - 00000020 ___SH () C:\Users\Katharina\ntuser.ini 2014-06-21 19:26 - 2014-06-21 19:26 - 00000000 _SHDL () C:\Users\Katharina\Vorlagen 2014-06-21 19:26 - 2014-06-21 19:26 - 00000000 _SHDL () C:\Users\Katharina\Startmenü 2014-06-21 19:26 - 2014-06-21 19:26 - 00000000 _SHDL () C:\Users\Katharina\Netzwerkumgebung 2014-06-21 19:26 - 2014-06-21 19:26 - 00000000 _SHDL () C:\Users\Katharina\Lokale Einstellungen 2014-06-21 19:26 - 2014-06-21 19:26 - 00000000 _SHDL () C:\Users\Katharina\Eigene Dateien 2014-06-21 19:26 - 2014-06-21 19:26 - 00000000 _SHDL () C:\Users\Katharina\Druckumgebung 2014-06-21 19:26 - 2014-06-21 19:26 - 00000000 _SHDL () C:\Users\Katharina\Documents\Eigene Musik 2014-06-21 19:26 - 2014-06-21 19:26 - 00000000 _SHDL () C:\Users\Katharina\Documents\Eigene Bilder 2014-06-21 19:26 - 2014-06-21 19:26 - 00000000 _SHDL () C:\Users\Katharina\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-06-21 19:26 - 2014-06-21 19:26 - 00000000 _SHDL () C:\Users\Katharina\AppData\Local\Verlauf 2014-06-21 19:26 - 2014-06-21 19:26 - 00000000 _SHDL () C:\Users\Katharina\AppData\Local\Anwendungsdaten 2014-06-21 19:26 - 2014-06-21 19:26 - 00000000 _SHDL () C:\Users\Katharina\Anwendungsdaten 2014-06-21 19:26 - 2014-06-21 19:26 - 00000000 ____D () C:\WINDOWS\System32\Tasks\WPD 2014-06-21 19:26 - 2014-06-21 19:26 - 00000000 ____D () C:\Users\Katharina\AppData\Roaming\Macromedia 2014-06-21 19:26 - 2014-06-21 19:26 - 00000000 ____D () C:\Users\Katharina\AppData\Local\VirtualStore 2014-06-21 19:26 - 2014-06-21 19:26 - 00000000 ____D () C:\ProgramData\eBay 2014-06-21 19:26 - 2014-02-13 01:25 - 00094656 _____ () C:\WINDOWS\modules.log 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Programme 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2014-06-21 19:16 - 2014-06-21 19:16 - 00000000 _SHDL () C:\Dokumente und Einstellungen 2014-06-21 19:16 - 2012-07-26 10:12 - 00000000 ____D () C:\Program Files\Windows NT 2014-06-21 19:16 - 2012-07-26 07:37 - 00000000 ___HD () C:\Users\Default 2014-06-21 19:13 - 2014-06-21 19:13 - 00000882 _____ () C:\Users\Public\Desktop\VLC media player.lnk 2014-06-21 19:13 - 2014-06-21 19:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2014-06-21 19:13 - 2014-06-21 19:13 - 00000000 ____D () C:\Program Files\VideoLAN 2014-06-21 19:11 - 2014-06-21 19:11 - 25055851 _____ () C:\Users\Katharina\Downloads\vlc-2.1.4-win64.exe 2014-06-21 14:11 - 2014-02-12 16:02 - 00000000 ____D () C:\Program Files (x86)\Lenovo DE 2014-06-21 14:10 - 2014-06-21 14:09 - 00000000 ____D () C:\ProgramData\tmp 2014-06-21 14:10 - 2014-06-21 14:09 - 00000000 ____D () C:\ProgramData\hps 2014-06-21 14:09 - 2014-06-21 14:09 - 00547393 _____ () C:\Users\Katharina\Downloads\uninstall.exe 2014-06-21 14:09 - 2014-06-21 14:09 - 00000818 _____ () C:\Users\Public\Desktop\CEWE FOTOSCHAU.lnk 2014-06-21 14:09 - 2014-06-21 14:09 - 00000803 _____ () C:\Users\Public\Desktop\dm-Fotowelt.lnk 2014-06-21 14:09 - 2014-06-21 14:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\dm-Fotowelt 2014-06-21 14:09 - 2014-06-21 14:07 - 00000000 ____D () C:\Users\Katharina\Downloads\Resources 2014-06-21 14:09 - 2014-06-21 14:06 - 00000000 _____ () C:\Users\Katharina\Downloads\temp.txt 2014-06-21 14:07 - 2014-06-21 14:07 - 00000000 ____D () C:\Users\Katharina\Downloads\printsupport 2014-06-21 14:07 - 2014-06-21 14:07 - 00000000 ____D () C:\Users\Katharina\Downloads\platforms 2014-06-21 14:07 - 2014-06-21 14:07 - 00000000 ____D () C:\Users\Katharina\Downloads\orderprocessors 2014-06-21 14:07 - 2014-06-21 14:07 - 00000000 ____D () C:\Users\Katharina\Downloads\imageformats 2014-06-21 14:06 - 2014-06-21 14:06 - 00001332 _____ () C:\Users\Katharina\Downloads\38-index-5.1.5.txt 2014-06-21 14:05 - 2014-06-21 14:05 - 01628432 _____ () C:\Users\Katharina\Downloads\setup_dm_Fotowelt.exe 2014-06-21 13:50 - 2014-06-21 13:50 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2014-06-21 13:50 - 2014-06-21 13:50 - 00002030 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk 2014-06-21 13:50 - 2014-06-21 13:50 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-06-21 13:49 - 2014-06-21 13:48 - 75151232 _____ (Adobe Systems Incorporated) C:\Users\Katharina\Downloads\AdbeRdr11007_de_DE.exe 2014-06-21 13:36 - 2014-06-21 13:36 - 00001116 _____ () C:\Users\Public\Desktop\OpenOffice 4.1.0.lnk 2014-06-21 13:36 - 2014-06-21 13:36 - 00000000 ___SD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.0 2014-06-21 13:36 - 2014-06-21 13:36 - 00000000 ____D () C:\Users\Katharina\AppData\Roaming\OpenOffice 2014-06-21 13:36 - 2014-06-21 13:35 - 00000000 ____D () C:\Program Files (x86)\OpenOffice 4 2014-06-21 13:27 - 2014-06-21 13:27 - 00961360 _____ (Chip Digital GmbH) C:\Users\Katharina\Downloads\OpenOffice - CHIP-Installer.exe 2014-06-21 12:55 - 2014-06-21 12:54 - 00000000 ____D () C:\Users\Katharina\AppData\Roaming\Mozilla 2014-06-21 12:55 - 2014-06-21 12:54 - 00000000 ____D () C:\Users\Katharina\AppData\Local\Mozilla 2014-06-21 12:54 - 2014-06-21 12:54 - 00001174 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2014-06-21 12:54 - 2014-06-21 12:54 - 00001162 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-06-21 12:53 - 2014-06-21 12:53 - 29677544 _____ (Mozilla) C:\Users\Katharina\Downloads\Firefox_Setup_de30.0.exe 2014-06-21 12:49 - 2014-06-21 12:50 - 00084720 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avnetflt.sys 2014-06-21 12:49 - 2014-06-21 12:49 - 00000000 ____D () C:\Users\Katharina\AppData\Roaming\Avira 2014-06-21 12:48 - 2014-06-21 19:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira Some content of TEMP: ==================== C:\Users\Katharina\AppData\Local\Temp\avgnt.exe C:\Users\Katharina\AppData\Local\Temp\installhelper.dll C:\Users\Katharina\AppData\Local\Temp\Quarantine.exe C:\Users\Katharina\AppData\Local\Temp\SRAssetsHelper.dll ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-07-01 09:27 ==================== End Of Log ============================ |
Themen zu http://www.searchnu.com/410 Mozilla Firefox |
chip.de, firefox, hoffe, installier, mozilla, mozilla firefox, runtergeladen, seitdem, seite, software, startseite, unerwünschtes, vermutlich, win32/bundled.toolbar.ask.d, win32/downloadsponsor.a, win32/installcore.pk, win32/installmonetizer.aq, win32/toolbar.searchsuite |