![]() |
| |||||||
Plagegeister aller Art und deren Bekämpfung: avast blockiert http://utils.cdneurope.com/ WIN7Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
| | #5 |
![]() ![]() | avast blockiert http://utils.cdneurope.com/ WIN7 Die Fehlermeldung kommt schon seid deinen letzten Anweisungen nicht mehr. ![]() Hier die logs: ESET Code:
ATTFilter ESETSmartInstaller@High as downloader log:
all ok
ESETSmartInstaller@High as downloader log:
all ok
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.7623
# api_version=3.0.2
# EOSSerial=1ef0e0182c31f04a98e2f40767bdf031
# engine=19130
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=true
# antistealth_checked=true
# utc_time=2014-07-11 02:43:38
# local_time=2014-07-11 04:43:38 (+0100, Mitteleuropäische Sommerzeit)
# country="Germany"
# lang=1031
# osver=6.1.7601 NT Service Pack 1
# compatibility_mode_1='avast! Antivirus'
# compatibility_mode=783 16777213 100 97 264454 14021698 0 0
# compatibility_mode_1=''
# compatibility_mode=5893 16776573 100 94 4048 156721009 0 0
# scanned=149866
# found=6
# cleaned=0
# scan_time=2937
sh=AE42BB3FDB146F697FFA6DE35E42DC5B869DB78C ft=1 fh=2b69271612420e74 vn="Variante von Win32/Toolbar.DefaultTab.B evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Sarah\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\7ZJFR4UG\DefaultTabSetup[1].exe"
sh=11D5EE05ADD03CE3107715CD59EF350BC5084E9F ft=1 fh=825b9b0785a89e52 vn="Win32/Conduit.SearchProtect.Q evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Sarah\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\AXL31RW2\SPSetup[1].exe"
sh=3406087F8ABE6AC8BA34E96DC139C9933E15987C ft=1 fh=1a6775cb8f999136 vn="Win32/Toolbar.Conduit.R evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Sarah\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\COSHAXYI\SearchProtectBlekkoSetup[1].exe"
sh=92FDF01ECE4D936103EBFF1A8922B0067C33353C ft=1 fh=d7d0f22406514848 vn="Variante von Win32/Toolbar.GadgetBox.G evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Sarah\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\COSHAXYI\sitefinder_installer[1].exe"
sh=4691C7A8857888C049C46C147C6C66E4F25A4EBF ft=1 fh=02d3e1f077d9a807 vn="Win32/Conduit.SearchProtect.L evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Sarah\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\ZKBKUE07\spstub[1].exe"
sh=845B1F6C45E4AAA1D1C2BE2FA0ECC5363FB2528D ft=1 fh=3f4827bfbe5b391f vn="Win32/OutBrowse.J evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Sarah\Downloads\setup.exe"
Code:
ATTFilter Results of screen317's Security Check version 0.99.85
Windows 7 Service Pack 1 x86 (UAC is enabled)
Internet Explorer 11
``````````````Antivirus/Firewall Check:``````````````
avast! Antivirus
Antivirus up to date! (On Access scanning disabled!)
`````````Anti-malware/Other Utilities Check:`````````
Java(TM) 6 Update 22
Java 7 Update 51
Java version out of Date!
Adobe Flash Player 14.0.0.145
Adobe Reader XI
Mozilla Firefox (30.0)
Google Chrome 35.0.1916.114
Google Chrome 35.0.1916.153
````````Process Check: objlist.exe by Laurent````````
AVAST Software Avast AvastSvc.exe
AVAST Software Avast AvastUI.exe
`````````````````System Health check`````````````````
Total Fragmentation on Drive C:
````````````````````End of Log``````````````````````
FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:11-07-2014
Ran by Sarah (administrator) on SARAH-PC on 11-07-2014 16:55:28
Running from C:\Users\Sarah\Downloads
Platform: Microsoft Windows 7 Enterprise Service Pack 1 (X86) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Geek Software GmbH) C:\Program Files\PDF24\pdf24.exe
(iSkySoft) C:\Program Files\Common Files\iSkysoft\iSkysoft Helper Compact\ISHelper.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Dropbox, Inc.) C:\Users\Sarah\AppData\Roaming\Dropbox\bin\Dropbox.exe
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.exe
(OpenOffice.org) C:\Program Files\OpenOffice.org 3\program\soffice.bin
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_14_0_0_145.exe
(Adobe Systems, Inc.) C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_14_0_0_145.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4086432 2014-07-08] (AVAST Software)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1791272 2010-06-04] (Synaptics Incorporated)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-12-21] (Adobe Systems Incorporated)
HKLM\...\Run: [PDFPrint] => C:\Program Files\PDF24\pdf24.exe [189480 2014-02-06] (Geek Software GmbH)
HKLM\...\Run: [iSkysoft Helper Compact.exe] => C:\Program Files\Common Files\iSkysoft\iSkysoft Helper Compact\ISHelper.exe [1734144 2013-05-29] (iSkySoft)
HKU\.DEFAULT\...\RunOnce: [SPReview] - C:\Windows\System32\SPReview\SPReview.exe [280576 2014-01-30] (Microsoft Corporation)
HKU\S-1-5-21-1941765313-3700113078-3629378886-1001\...\Run: [Skype] => C:\Program Files\Skype\Phone\Skype.exe [21444224 2014-05-08] (Skype Technologies S.A.)
HKU\S-1-5-21-1941765313-3700113078-3629378886-1001\...\Run: [Facebook Update] => C:\Users\Sarah\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2014-07-08] (Facebook Inc.)
Startup: C:\Users\Sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Sarah\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\Sarah\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk
ShortcutTarget: OpenOffice.org 3.3.lnk -> C:\Program Files\OpenOffice.org 3\program\quickstart.exe ()
ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (AVAST Software)
ShellIconOverlayIdentifiers: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => No File
ShellIconOverlayIdentifiers: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => No File
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x123FAC20AE1DCF01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE
URLSearchHook: HKLM - Default Value = {CCC7B151-1D8C-11E3-B2AD-F3EF3D58318D}
SearchScopes: HKLM - DefaultScope value is missing.
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
FireFox:
========
FF ProfilePath: C:\Users\Sarah\AppData\Roaming\Mozilla\Firefox\Profiles\1qspa4yq.default
FF SelectedSearchEngine: Google
FF Homepage: hxxp://www.opendoors.de/verfolgung/weltverfolgungsindex2014/weltverfolgungsindex2014/|https://support.mozilla.org/de/products/firefox/get-started
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin: @google.com/npPicasa3,version=3.0.0 - d:\Program Files\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin: @java.com/DTPlugin - C:\Program Files\Java\jre6\bin\npDeployJava1.dll (Sun Microsystems, Inc.)
FF Plugin: @java.com/JavaPlugin - C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @microsoft.com/WLPG,version=16.4.3522.0110 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.0.5 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.2 - d:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.3 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\Sarah\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF SearchPlugin: C:\Users\Sarah\AppData\Roaming\Mozilla\Firefox\Profiles\1qspa4yq.default\searchplugins\benefind.xml
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-01-30]
Chrome:
=======
CHR HomePage:
CHR Extension: (Docs) - C:\Users\Sarah\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-07-08]
CHR Extension: (Google Drive) - C:\Users\Sarah\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-07-08]
CHR Extension: (YouTube) - C:\Users\Sarah\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-07-08]
CHR Extension: (Google Search) - C:\Users\Sarah\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-07-08]
CHR Extension: (avast! Online Security) - C:\Users\Sarah\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-07-08]
CHR Extension: (Google Wallet) - C:\Users\Sarah\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-07-08]
CHR Extension: (Gmail) - C:\Users\Sarah\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-07-08]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-07-08]
========================== Services (Whitelisted) =================
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-07-08] (AVAST Software)
==================== Drivers (Whitelisted) ====================
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [24184 2014-07-08] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [67824 2014-07-08] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [81768 2014-07-08] (AVAST Software)
R0 aswRvrt; C:\Windows\system32\Drivers\aswRvrt.sys [49944 2014-07-08] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [779536 2014-07-08] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [414520 2014-07-08] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [71944 2014-07-08] (AVAST Software)
R0 aswVmm; C:\Windows\system32\Drivers\aswVmm.sys [192352 2014-07-08] ()
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-07-11 16:55 - 2014-07-11 16:55 - 00010608 _____ () C:\Users\Sarah\Downloads\FRST.txt
2014-07-11 16:55 - 2014-07-11 16:55 - 00000000 ____D () C:\Users\Sarah\Downloads\FRST-OlderVersion
2014-07-11 16:54 - 2014-07-11 16:54 - 00000925 _____ () C:\Users\Sarah\Desktop\checkup.txt
2014-07-11 16:51 - 2014-07-11 16:51 - 00854390 _____ () C:\Users\Sarah\Downloads\SecurityCheck.exe
2014-07-11 16:47 - 2014-07-11 16:47 - 00000973 _____ () C:\Users\Sarah\Desktop\esetOnlinelist.txt
2014-07-10 22:28 - 2014-07-10 22:28 - 02347384 _____ (ESET) C:\Users\Sarah\Downloads\esetsmartinstaller_deu.exe
2014-07-10 21:42 - 2014-07-10 21:42 - 00000000 ____D () C:\Users\Sarah\AppData\Local\Adobe
2014-07-10 21:29 - 2014-06-20 21:39 - 00240824 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-07-10 21:29 - 2014-06-19 02:16 - 17276416 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-07-10 21:29 - 2014-06-19 01:56 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-07-10 21:29 - 2014-06-19 01:56 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-07-10 21:29 - 2014-06-19 01:38 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-07-10 21:29 - 2014-06-19 01:37 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-07-10 21:29 - 2014-06-19 01:36 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-07-10 21:29 - 2014-06-19 01:35 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-07-10 21:29 - 2014-06-19 01:32 - 02179072 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-07-10 21:29 - 2014-06-19 01:28 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-07-10 21:29 - 2014-06-19 01:28 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-07-10 21:29 - 2014-06-19 01:25 - 00442368 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-07-10 21:29 - 2014-06-19 01:23 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-07-10 21:29 - 2014-06-19 01:23 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-07-10 21:29 - 2014-06-19 01:22 - 00592896 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-07-10 21:29 - 2014-06-19 01:16 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-07-10 21:29 - 2014-06-19 01:12 - 00367616 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-07-10 21:29 - 2014-06-19 01:06 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-07-10 21:29 - 2014-06-19 01:01 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-07-10 21:29 - 2014-06-19 00:59 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-07-10 21:29 - 2014-06-19 00:58 - 00239616 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-07-10 21:29 - 2014-06-19 00:52 - 04254720 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-07-10 21:29 - 2014-06-19 00:52 - 00595968 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-07-10 21:29 - 2014-06-19 00:49 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-07-10 21:29 - 2014-06-19 00:46 - 01068032 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-07-10 21:29 - 2014-06-19 00:45 - 01964544 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-07-10 21:29 - 2014-06-19 00:35 - 11742208 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-07-10 21:29 - 2014-06-19 00:13 - 01791488 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-07-10 21:29 - 2014-06-19 00:09 - 01139200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-07-10 21:29 - 2014-06-19 00:07 - 00704512 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-07-10 21:28 - 2014-06-18 03:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2014-07-10 21:28 - 2014-06-18 02:52 - 02350080 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-07-10 21:27 - 2014-06-06 11:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2014-07-10 21:27 - 2014-06-05 16:26 - 01059840 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-07-10 21:27 - 2014-05-30 09:52 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-07-10 21:27 - 2014-05-30 09:52 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-07-10 21:27 - 2014-05-30 09:52 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-07-10 21:27 - 2014-05-30 09:52 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-07-10 21:27 - 2014-05-30 09:52 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-07-10 21:27 - 2014-05-30 09:52 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-07-10 21:27 - 2014-05-30 09:52 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-07-10 21:27 - 2014-05-30 08:36 - 00338944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2014-07-08 23:44 - 2014-07-08 23:44 - 00000000 ____D () C:\Windows\ERUNT
2014-07-08 23:43 - 2014-07-08 23:43 - 01016261 _____ (Thisisu) C:\Users\Sarah\Downloads\JRT.exe
2014-07-08 23:38 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\system32\sqlite3.dll
2014-07-08 23:37 - 2014-07-08 23:38 - 00000000 ____D () C:\AdwCleaner
2014-07-08 23:37 - 2014-07-08 23:37 - 01346519 _____ () C:\Users\Sarah\Downloads\adwcleaner_3.214.exe
2014-07-08 23:18 - 2014-07-08 23:35 - 00110296 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-07-08 23:18 - 2014-07-08 23:18 - 00001024 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2014-07-08 23:18 - 2014-07-08 23:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware
2014-07-08 23:18 - 2014-07-08 23:18 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-07-08 23:18 - 2014-07-08 23:18 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware
2014-07-08 23:18 - 2014-05-12 07:26 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-07-08 23:18 - 2014-05-12 07:25 - 00074456 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-07-08 23:18 - 2014-05-12 07:25 - 00023256 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-07-08 23:17 - 2014-07-08 23:18 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Sarah\Downloads\mbam-setup-2.0.2.1012.exe
2014-07-08 23:08 - 2014-07-08 23:08 - 00000000 ____D () C:\Users\Sarah\Desktop\WLM8887.tmp
2014-07-08 23:07 - 2014-07-08 23:07 - 00000000 ____D () C:\Users\Sarah\Desktop\WLM68F4.tmp
2014-07-08 22:05 - 2014-07-11 16:46 - 00002081 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-07-08 22:05 - 2014-07-11 16:46 - 00001096 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-07-08 22:05 - 2014-07-11 15:51 - 00001092 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-07-08 22:05 - 2014-07-08 22:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-07-08 18:45 - 2014-07-08 18:46 - 00000000 ____D () C:\Users\Sarah\Downloads\logfiles 08_07_2014
2014-07-08 18:17 - 2014-07-08 18:17 - 00380416 _____ () C:\Users\Sarah\Downloads\Gmer-19357.exe
2014-07-08 17:59 - 2014-07-11 16:55 - 01075200 _____ (Farbar) C:\Users\Sarah\Downloads\FRST.exe
2014-07-08 17:59 - 2014-07-11 16:55 - 00000000 ____D () C:\FRST
2014-07-08 17:57 - 2014-07-08 17:57 - 00050477 _____ () C:\Users\Sarah\Downloads\Defogger.exe
2014-07-08 17:57 - 2014-07-08 17:57 - 00000000 _____ () C:\Users\Sarah\defogger_reenable
2014-07-08 16:15 - 2014-07-11 16:20 - 00000928 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1941765313-3700113078-3629378886-1001UA.job
2014-07-08 16:15 - 2014-07-11 16:20 - 00000906 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1941765313-3700113078-3629378886-1001Core.job
2014-07-08 16:15 - 2014-07-08 16:15 - 00000000 ____D () C:\Users\Sarah\AppData\Local\Facebook
2014-07-08 15:49 - 2014-07-08 15:49 - 00001081 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-07-08 15:49 - 2014-07-08 15:49 - 00001069 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-07-08 15:49 - 2014-07-08 15:49 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-07-08 15:49 - 2014-07-08 15:49 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-07-08 15:47 - 2014-07-08 15:47 - 00284288 _____ (Mozilla) C:\Users\Sarah\Downloads\Firefox Setup Stub 30.0.exe
2014-07-08 15:46 - 2014-07-08 15:46 - 00000000 __SHD () C:\Users\Sarah\AppData\Local\EmieUserList
2014-07-08 15:46 - 2014-07-08 15:46 - 00000000 __SHD () C:\Users\Sarah\AppData\Local\EmieSiteList
2014-07-08 15:14 - 2014-07-08 15:14 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-07-08 15:14 - 2014-07-08 15:14 - 00002047 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-06-24 21:21 - 2014-06-24 21:21 - 00014239 _____ () C:\Users\Sarah\Desktop\Wohnung.odt
2014-06-24 16:15 - 2014-06-24 16:15 - 00000000 ____D () C:\Program Files\Common Files\Skype
2014-06-18 17:20 - 2014-07-08 15:14 - 00024184 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-06-11 22:04 - 2014-05-08 11:06 - 00919040 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-06-11 22:04 - 2014-04-25 04:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2014-06-11 22:04 - 2014-04-05 04:25 - 01294272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2014-06-11 22:04 - 2014-04-05 04:24 - 00187840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2014-06-11 22:04 - 2014-03-26 16:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2014-06-11 22:04 - 2014-03-26 16:27 - 01237504 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-06-11 22:04 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2014-06-11 22:04 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
==================== One Month Modified Files and Folders =======
2014-07-11 16:56 - 2014-07-11 16:55 - 00010608 _____ () C:\Users\Sarah\Downloads\FRST.txt
2014-07-11 16:55 - 2014-07-11 16:55 - 00000000 ____D () C:\Users\Sarah\Downloads\FRST-OlderVersion
2014-07-11 16:55 - 2014-07-08 17:59 - 01075200 _____ (Farbar) C:\Users\Sarah\Downloads\FRST.exe
2014-07-11 16:55 - 2014-07-08 17:59 - 00000000 ____D () C:\FRST
2014-07-11 16:54 - 2014-07-11 16:54 - 00000925 _____ () C:\Users\Sarah\Desktop\checkup.txt
2014-07-11 16:51 - 2014-07-11 16:51 - 00854390 _____ () C:\Users\Sarah\Downloads\SecurityCheck.exe
2014-07-11 16:47 - 2014-07-11 16:47 - 00000973 _____ () C:\Users\Sarah\Desktop\esetOnlinelist.txt
2014-07-11 16:46 - 2014-07-08 22:05 - 00002081 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-07-11 16:46 - 2014-07-08 22:05 - 00001096 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-07-11 16:42 - 2014-02-05 13:08 - 00000000 ____D () C:\Users\Sarah\AppData\Roaming\Dropbox
2014-07-11 16:25 - 2014-01-30 11:34 - 00000000 ____D () C:\Users\Sarah\AppData\Roaming\Skype
2014-07-11 16:20 - 2014-07-08 16:15 - 00000928 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1941765313-3700113078-3629378886-1001UA.job
2014-07-11 16:20 - 2014-07-08 16:15 - 00000906 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-1941765313-3700113078-3629378886-1001Core.job
2014-07-11 16:09 - 2014-02-05 14:19 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-07-11 15:52 - 2014-02-05 13:19 - 00000000 ___RD () C:\Users\Sarah\Dropbox
2014-07-11 15:52 - 2014-02-05 13:16 - 00000000 ____D () C:\Users\Sarah\AppData\Roaming\DropboxMaster
2014-07-11 15:51 - 2014-07-08 22:05 - 00001092 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-07-11 15:38 - 2009-07-14 06:34 - 00021808 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-07-11 15:38 - 2009-07-14 06:34 - 00021808 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-07-11 15:36 - 2014-01-30 00:15 - 01985092 _____ () C:\Windows\WindowsUpdate.log
2014-07-11 15:35 - 2009-10-15 11:59 - 02507726 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-07-11 15:31 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-07-11 15:31 - 2009-07-14 06:39 - 00034311 _____ () C:\Windows\setupact.log
2014-07-10 22:28 - 2014-07-10 22:28 - 02347384 _____ (ESET) C:\Users\Sarah\Downloads\esetsmartinstaller_deu.exe
2014-07-10 22:22 - 2009-07-14 06:33 - 00294080 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-07-10 22:20 - 2009-07-14 11:14 - 00000000 ____D () C:\Program Files\Windows Journal
2014-07-10 22:20 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\fr-FR
2014-07-10 22:20 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\de-DE
2014-07-10 21:56 - 2014-01-30 13:43 - 00000000 ____D () C:\Windows\system32\MRT
2014-07-10 21:54 - 2014-01-30 13:43 - 93585272 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-07-10 21:42 - 2014-07-10 21:42 - 00000000 ____D () C:\Users\Sarah\AppData\Local\Adobe
2014-07-08 23:44 - 2014-07-08 23:44 - 00000000 ____D () C:\Windows\ERUNT
2014-07-08 23:43 - 2014-07-08 23:43 - 01016261 _____ (Thisisu) C:\Users\Sarah\Downloads\JRT.exe
2014-07-08 23:39 - 2014-01-30 11:37 - 00104700 _____ () C:\Windows\PFRO.log
2014-07-08 23:38 - 2014-07-08 23:37 - 00000000 ____D () C:\AdwCleaner
2014-07-08 23:38 - 2014-01-30 00:16 - 00000000 ____D () C:\Users\Sarah
2014-07-08 23:37 - 2014-07-08 23:37 - 01346519 _____ () C:\Users\Sarah\Downloads\adwcleaner_3.214.exe
2014-07-08 23:35 - 2014-07-08 23:18 - 00110296 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-07-08 23:31 - 2014-01-30 00:13 - 00000000 ____D () C:\Windows\rescache
2014-07-08 23:18 - 2014-07-08 23:18 - 00001024 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2014-07-08 23:18 - 2014-07-08 23:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware
2014-07-08 23:18 - 2014-07-08 23:18 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-07-08 23:18 - 2014-07-08 23:18 - 00000000 ____D () C:\Program Files\ Malwarebytes Anti-Malware
2014-07-08 23:18 - 2014-07-08 23:17 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Sarah\Downloads\mbam-setup-2.0.2.1012.exe
2014-07-08 23:08 - 2014-07-08 23:08 - 00000000 ____D () C:\Users\Sarah\Desktop\WLM8887.tmp
2014-07-08 23:07 - 2014-07-08 23:07 - 00000000 ____D () C:\Users\Sarah\Desktop\WLM68F4.tmp
2014-07-08 22:09 - 2014-02-05 14:19 - 00699056 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-07-08 22:09 - 2014-02-05 14:19 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2014-07-08 22:05 - 2014-07-08 22:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-07-08 22:05 - 2014-01-30 11:33 - 00000000 ____D () C:\Users\Sarah\AppData\Local\Google
2014-07-08 22:05 - 2014-01-30 11:33 - 00000000 ____D () C:\Program Files\Google
2014-07-08 18:46 - 2014-07-08 18:45 - 00000000 ____D () C:\Users\Sarah\Downloads\logfiles 08_07_2014
2014-07-08 18:17 - 2014-07-08 18:17 - 00380416 _____ () C:\Users\Sarah\Downloads\Gmer-19357.exe
2014-07-08 17:57 - 2014-07-08 17:57 - 00050477 _____ () C:\Users\Sarah\Downloads\Defogger.exe
2014-07-08 17:57 - 2014-07-08 17:57 - 00000000 _____ () C:\Users\Sarah\defogger_reenable
2014-07-08 16:15 - 2014-07-08 16:15 - 00000000 ____D () C:\Users\Sarah\AppData\Local\Facebook
2014-07-08 15:49 - 2014-07-08 15:49 - 00001081 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-07-08 15:49 - 2014-07-08 15:49 - 00001069 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-07-08 15:49 - 2014-07-08 15:49 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-07-08 15:49 - 2014-07-08 15:49 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-07-08 15:47 - 2014-07-08 15:47 - 00284288 _____ (Mozilla) C:\Users\Sarah\Downloads\Firefox Setup Stub 30.0.exe
2014-07-08 15:46 - 2014-07-08 15:46 - 00000000 __SHD () C:\Users\Sarah\AppData\Local\EmieUserList
2014-07-08 15:46 - 2014-07-08 15:46 - 00000000 __SHD () C:\Users\Sarah\AppData\Local\EmieSiteList
2014-07-08 15:14 - 2014-07-08 15:14 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-07-08 15:14 - 2014-07-08 15:14 - 00002047 _____ () C:\Users\Public\Desktop\avast! Free Antivirus.lnk
2014-07-08 15:14 - 2014-06-18 17:20 - 00024184 _____ () C:\Windows\system32\Drivers\aswHwid.sys
2014-07-08 15:14 - 2014-01-30 10:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast
2014-07-08 15:14 - 2014-01-30 10:48 - 00779536 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys
2014-07-08 15:14 - 2014-01-30 10:48 - 00414520 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys
2014-07-08 15:14 - 2014-01-30 10:48 - 00276432 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-07-08 15:14 - 2014-01-30 10:48 - 00192352 _____ () C:\Windows\system32\Drivers\aswVmm.sys
2014-07-08 15:14 - 2014-01-30 10:48 - 00081768 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2014-07-08 15:14 - 2014-01-30 10:48 - 00071944 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys
2014-07-08 15:14 - 2014-01-30 10:48 - 00067824 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-07-08 15:14 - 2014-01-30 10:48 - 00049944 _____ () C:\Windows\system32\Drivers\aswRvrt.sys
2014-06-24 21:21 - 2014-06-24 21:21 - 00014239 _____ () C:\Users\Sarah\Desktop\Wohnung.odt
2014-06-24 16:15 - 2014-06-24 16:15 - 00000000 ____D () C:\Program Files\Common Files\Skype
2014-06-24 16:15 - 2014-02-26 21:55 - 00000000 ___RD () C:\Program Files\Skype
2014-06-24 16:15 - 2014-01-30 11:34 - 00000000 ____D () C:\ProgramData\Skype
2014-06-20 21:39 - 2014-07-10 21:29 - 00240824 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-06-19 22:54 - 2014-02-05 13:19 - 00000000 ____D () C:\Users\Sarah\Desktop\Hochzeit (1)
2014-06-19 02:16 - 2014-07-10 21:29 - 17276416 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-06-19 01:56 - 2014-07-10 21:29 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-06-19 01:56 - 2014-07-10 21:29 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-06-19 01:38 - 2014-07-10 21:29 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-06-19 01:37 - 2014-07-10 21:29 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-06-19 01:36 - 2014-07-10 21:29 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-06-19 01:35 - 2014-07-10 21:29 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-06-19 01:32 - 2014-07-10 21:29 - 02179072 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-06-19 01:28 - 2014-07-10 21:29 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-06-19 01:28 - 2014-07-10 21:29 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-06-19 01:25 - 2014-07-10 21:29 - 00442368 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-06-19 01:23 - 2014-07-10 21:29 - 00112128 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-06-19 01:23 - 2014-07-10 21:29 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-06-19 01:22 - 2014-07-10 21:29 - 00592896 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-06-19 01:16 - 2014-07-10 21:29 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-06-19 01:12 - 2014-07-10 21:29 - 00367616 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-06-19 01:06 - 2014-07-10 21:29 - 00032256 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-06-19 01:01 - 2014-07-10 21:29 - 00164864 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-06-19 00:59 - 2014-07-10 21:29 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-06-19 00:58 - 2014-07-10 21:29 - 00239616 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-06-19 00:52 - 2014-07-10 21:29 - 04254720 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-06-19 00:52 - 2014-07-10 21:29 - 00595968 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-06-19 00:49 - 2014-07-10 21:29 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-06-19 00:46 - 2014-07-10 21:29 - 01068032 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-06-19 00:45 - 2014-07-10 21:29 - 01964544 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-06-19 00:35 - 2014-07-10 21:29 - 11742208 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-06-19 00:13 - 2014-07-10 21:29 - 01791488 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-06-19 00:09 - 2014-07-10 21:29 - 01139200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-06-19 00:07 - 2014-07-10 21:29 - 00704512 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-06-18 03:51 - 2014-07-10 21:28 - 00646144 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe
2014-06-18 02:52 - 2014-07-10 21:28 - 02350080 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
Some content of TEMP:
====================
C:\Users\Sarah\AppData\Local\Temp\6_Offer_5.exe
C:\Users\Sarah\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp2alr7r.dll
C:\Users\Sarah\AppData\Local\Temp\install_reader11_de_ltr5x32d_awc_aih.exe
C:\Users\Sarah\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exe
C:\Users\Sarah\AppData\Local\Temp\pdf24-creator-update.exe
C:\Users\Sarah\AppData\Local\Temp\Quarantine.exe
C:\Users\Sarah\AppData\Local\Temp\vlc-2.1.3-win32.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-06-19 21:43
==================== End Of Log ============================
Merci beaucup!! |