|
Plagegeister aller Art und deren Bekämpfung: Avira Antivir wird blockiertWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
14.07.2014, 16:50 | #1 |
| Avira Antivir wird blockiert Hallo, Ich bin neu hier und habe ein großes Problem Innerhalb von 2 Tagen hat Avira Antivir aufgehört zu arbeiten. Am nächsten Tag konnte ich nicht mehr zugreifen. Es kam eine Fehlermeldung: Avira wird durch eine Windows Gruppeneinstellung blockiert. Da war mir klar, ich habe Windows 7 Home, dass das nicht möglich ist, da Gruppeneinstellungen erst bei Premium verfügbar sind. Zudem war jetzt auch noch die Firewall aus geschalten. Dann habe ich die Firewall wieder ein geschalten ( Hat funktioniert) Danach den PC vom Internetanschluss getrennt. Ein Anti Virus Programm von einer CD installiert. Programm ausgeführt. Gefunden wurden zahlreiche Mal wäre und 3 Trojaner. Nun ging Avira immer noch nicht. Dann habe ich die beigelegte CD, die ich beim Computerkauf im Falle einer Neuinstallation nehmen solle eingeschoben. Nach 5 Stunden war laut PC Bildschirm, Windows neu aufgespielt worden mit Bereinigung und Erhaltung der kompletten PC Daten, wie Programm, Textdateien, etc. Dann habe ich den PC neu gestartet. Avira lässt sich immer noch nicht öffnen, weder deinstallieren. Ich vermute der Virus ist immer noch aktiv. Im Moment schreibe ich von meinem Tablet und der PC ist vom Netzwerk, sowie Strom getrennt Grüße Stefan |
14.07.2014, 16:55 | #2 |
/// the machine /// TB-Ausbilder | Avira Antivir wird blockiert hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
14.07.2014, 18:07 | #3 |
| Avira Antivir wird blockiert Das funktioniert nicht, dann kommt eine Fehlermeldung im Forum:
__________________Logs bitte als Archiv an den Beitrag anhängen Was soll ich rauskopieren und posten, wenn ich alles kopier und in den Code einfüge kommt eben die Fehlermeldung |
14.07.2014, 18:18 | #4 |
/// the machine /// TB-Ausbilder | Avira Antivir wird blockiert Hi, Logs bitte immer in den Thread posten. Zur Not aufteilen und mehrere Posts nutzen. Ich kann auf Arbeit keine Anhänge öffnen, danke. So funktioniert es: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
14.07.2014, 18:23 | #5 |
| Avira Antivir wird blockiertCode:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 14-07-2014 Ran by Schrägle (administrator) on SCHRÄGLE-PC on 14-07-2014 18:35:17 Running from C:\Users\Schrägle\Downloads Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 9 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\System32\atiesrxx.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (APN LLC.) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgfws.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe (Freemake) C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgnsa.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgemca.exe () C:\Windows\System32\dmwu.exe (Memeo) C:\Program Files (x86)\Memeo\AutoBackup\MemeoBackgroundService.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe (AVG Secure Search) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.7\ToolbarUpdater.exe (Wajam) C:\Program Files (x86)\Wajam\Updater\WajamUpdater.exe () C:\Program Files (x86)\watchmi\TvdService.exe () C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.7\loggingserver.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Conduit) C:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe (Microsoft Corporation) C:\Windows\System32\LogonUI.exe (AMD) C:\Windows\System32\atieclxx.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesApp64.exe (Conduit) C:\Program Files (x86)\SearchProtect\SearchProtect\bin\cltmng.exe () C:\Windows\SysWOW64\mjcm\dnkt.exe () C:\Windows\System32\tprb\dnkt.exe (Conduit) C:\Program Files (x86)\SearchProtect\UI\bin\cltmngui.exe (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Facebook Inc.) C:\Users\Schrägle\AppData\Local\Facebook\Update\FacebookUpdate.exe (PC Utilities Pro) C:\Program Files (x86)\Optimizer Pro\OptProReminder.exe (APN) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe (Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe () C:\Program Files (x86)\AVG Secure Search\vprot.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe () C:\Program Files (x86)\watchmi\TvdTray.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (AVG Secure Search) C:\Program Files (x86)\Common Files\AVG Secure Search\ScriptHelperInstaller\18.1.7\ScriptHelper.exe (Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgui.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13374568 2011-11-29] (Realtek Semiconductor) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-12-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [ApnTBMon] => C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [1956760 2014-06-23] (APN) HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\AVG2014\avgui.exe [5179408 2014-06-17] (AVG Technologies CZ, s.r.o.) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [750160 2014-07-03] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [CLMLServer] => C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [107816 2010-08-04] (CyberLink) HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [49208 2010-03-12] (Hewlett-Packard) HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284440 2011-05-20] (Intel Corporation) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [343168 2011-10-14] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [vProt] => C:\Program Files (x86)\AVG Secure Search\vprot.exe [2571288 2014-06-22] () HKLM Group Policy restriction on software: C:\Program Files (x86)\Avira <====== ATTENTION HKLM Group Policy restriction on software: C:\Documents and Settings\All Users\Application Data\Avira <====== ATTENTION HKU\S-1-5-21-4074982664-1885493180-2041087550-1001\...\Run: [aplvbtj] => regsvr32.exe " HKU\S-1-5-21-4074982664-1885493180-2041087550-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3673728 2012-11-06] (DT Soft Ltd) HKU\S-1-5-21-4074982664-1885493180-2041087550-1001\...\Run: [Driver Pro] => C:\Program Files (x86)\Driver Pro\DPLauncher.exe [340512 2012-10-30] (PC Utilities Pro) HKU\S-1-5-21-4074982664-1885493180-2041087550-1001\...\Run: [Facebook Update] => C:\Users\Schrägle\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2013-02-25] (Facebook Inc.) HKU\S-1-5-21-4074982664-1885493180-2041087550-1001\...\Run: [Optimizer Pro] => C:\Program Files (x86)\Optimizer Pro\OptProLauncher.exe [81952 2012-10-21] (PC Utilities Pro) HKU\S-1-5-21-4074982664-1885493180-2041087550-1001\...\Run: [BrowserChoice] => C:\Windows\System32\browserchoice.exe [294912 2010-02-23] (Microsoft Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\watchmi tray.lnk ShortcutTarget: watchmi tray.lnk -> C:\Windows\Installer\{F0559C5E-7912-4391-B1A0-6B975F0E5064}\SHCT_TRAY_PROGRAMG_A10D8603999C4E9488776EF2533C58C9.exe (Acresso Software Inc.) Startup: C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk ShortcutTarget: OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk -> C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,bProtector Start Page = hxxp://www2.delta-search.com/?affID=120519&tt=gc_&babsrc=HP_ss&mntrId=204C8C89A5C0D106 HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com/ig/redirectdomain?brand=MDNF&bmod=MDNF HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://feed.helperbar.com/?publisher=OC&dpid=OC&co=DE&userid=3f43e60c-aae1-49e7-abf7-b555e1809f35&affid=111583&searchtype=ds&babsrc=lnkry&q={searchTerms} HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://feed.helperbar.com/?publisher=OC&dpid=OC&co=DE&userid=3f43e60c-aae1-49e7-abf7-b555e1809f35&affid=111583&searchtype=ds&babsrc=lnkry&q={searchTerms} HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.google.de/ HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.conduit.com/?ctid=CT3318001&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=2&UP=SPBDE4106A-6735-4786-94FB-2FDCB1B2DBB3&SSPV= URLSearchHook: HKCU - SearchHook Class - {D8278076-BC68-4484-9233-6E7F1628B56C} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\searchhook.dll (APN LLC.) StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&gct=ds&appid=484&systemid=406&apn_dtid=BND406&apn_ptnrs=AG6&o=APN10645&apn_uid=4169429992394568&q={searchTerms} SearchScopes: HKLM - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&gct=ds&appid=484&systemid=406&apn_dtid=BND406&apn_ptnrs=AG6&o=APN10645&apn_uid=4169429992394568&q={searchTerms} SearchScopes: HKLM-x32 - DefaultScope {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.helperbar.com/?publisher=OC&dpid=OC&co=DE&userid=3f43e60c-aae1-49e7-abf7-b555e1809f35&affid=113129&searchtype=ds&babsrc=lnkry&q={searchTerms} SearchScopes: HKLM-x32 - {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.helperbar.com/?publisher=OC&dpid=OC&co=DE&userid=3f43e60c-aae1-49e7-abf7-b555e1809f35&affid=113129&searchtype=ds&babsrc=lnkry&q={searchTerms} SearchScopes: HKLM-x32 - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&gct=ds&appid=484&systemid=406&apn_dtid=BND406&apn_ptnrs=AG6&o=APN10645&apn_uid=4169429992394568&q={searchTerms} SearchScopes: HKCU - DefaultScope {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = hxxp://search.conduit.com/Results.aspx?ctid=CT3318001&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=2&UP=SPBDE4106A-6735-4786-94FB-2FDCB1B2DBB3&q={searchTerms}&SSPV= SearchScopes: HKCU - bProtectorDefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} SearchScopes: HKCU - {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.helperbar.com/?publisher=OC&dpid=OC&co=DE&userid=3f43e60c-aae1-49e7-abf7-b555e1809f35&affid=111583&searchtype=ds&babsrc=lnkry&q={searchTerms} SearchScopes: HKCU - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = hxxp://search.conduit.com/Results.aspx?ctid=CT3318001&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=2&UP=SPBDE4106A-6735-4786-94FB-2FDCB1B2DBB3&q={searchTerms}&SSPV= SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://search.babylon.com/?q={searchTerms}&affID=120519&tt=gc_&babsrc=SP_ss_wls&mntrId=204C8C89A5C0D106 SearchScopes: HKCU - {47F90973-4CA2-4B04-9871-357401428EDA} URL = hxxp://search.softonic.com/MOY00621/tb_v1?q={searchTerms}&SearchSource=4&cc=&mi=204c3cc00000000000008c89a5c0d106&r=760 SearchScopes: HKCU - {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxp://isearch.avg.com/search?cid={6BC30EE0-2A17-4FE7-9CC0-06810D954378}&mid=76e695e090054cd5a827dd4aeb17cf8b-450ce608ba99f2e236ed78e1c9cefc30d79ded87&lang=en&ds=pl011&pr=sa&d=2013-01-04 11:19:12&v=14.2.0.1&pid=avg&sg=0&sap=dsp&q={searchTerms} SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&gct=ds&appid=484&systemid=406&apn_dtid=BND406&apn_ptnrs=AG6&o=APN10645&apn_uid=4169429992394568&q={searchTerms} SearchScopes: HKCU - {CD620077-47CB-4D83-82DD-10CE510566DA} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=AVR-3&o=APN10395&src=kw&q={searchTerms}&locale=de_DE&apn_ptnrs=^ABT&apn_dtid=^YYYYYY^YY^DE&apn_uid=b959b0e8-4ca6-444f-8433-8477125cfddd&apn_sauid=60B437BE-0B18-4D4C-AE46-115F562DE782 SearchScopes: HKCU - {CFF4DB9B-135F-47c0-9269-B4C6572FD61A} URL = hxxp://mystart.incredibar.com/?a=6OyR68zFGC&loc=skw&search={searchTerms}&i=26 BHO: Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport_x64.dll (APN LLC.) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: DataMngr - {C1ED9DA0-AFD0-4b90-AC6A-D3874F591014} - C:\Program Files (x86)\Search Results Toolbar\Datamngr\x64\BrowserConnection.dll (Bandoo Media Inc) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO: DVDVideoSoft IE Extension - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll (DVDVideoSoft Ltd.) BHO-x32: Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.) BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\18.1.7.644\AVG Secure Search_toolbar.dll (AVG Secure Search) BHO-x32: Wajam - {A7A6995D-6EE1-4FD1-A258-49395D5BF99C} - C:\Program Files (x86)\Wajam\IE\priam_bho.dll (Wajam) BHO-x32: delta Helper Object - {C1AF5FA5-852C-4C90-812E-A7F75E011D87} - C:\Program Files (x86)\Delta\delta\1.8.16.16\bh\delta.dll (Delta-search.com) BHO-x32: DataMngr - {C1ED9DA0-AFD0-4b90-AC6A-D3874F591014} - C:\Program Files (x86)\Search Results Toolbar\Datamngr\BrowserConnection.dll (Bandoo Media Inc) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Softonic Helper Object - {E87806B5-E908-45FD-AF5E-957D83E58E68} - C:\Program Files (x86)\Softonic\Softonic\1.8.21.14\bh\Softonic.dll (Softonic.com) BHO-x32: DVDVideoSoft IE Extension - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll (DVDVideoSoft Ltd.) BHO-x32: SweetPacks Browser Helper - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll (SweetIM Technologies Ltd.) BHO-x32: Search-Results Toolbar - {f34c9277-6577-4dff-b2d7-7d58092f272f} - C:\PROGRA~2\SEARCH~1\Datamngr\SRTOOL~1\searchresultsDx.dll No File BHO-x32: PricePeep - {FD6D90C0-E6EE-4BC6-B9F7-9ED319698007} - C:\Program Files (x86)\PricePeep\pricepeep.dll (PricePeep) Toolbar: HKLM - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport_x64.dll (APN LLC.) Toolbar: HKLM - No Name - {ae07101b-46d4-4a98-af68-0333ea26e113} - No File Toolbar: HKLM-x32 - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.) Toolbar: HKLM-x32 - Softonic Toolbar - {5018CFD2-804D-4C99-9F81-25EAEA2769DE} - C:\Program Files (x86)\Softonic\Softonic\1.8.21.14\SoftonicTlbr.dll (Softonic.com) Toolbar: HKLM-x32 - Delta Toolbar - {82E1477C-B154-48D3-9891-33D83C26BCD3} - C:\Program Files (x86)\Delta\delta\1.8.16.16\deltaTlbr.dll (Delta-search.com) Toolbar: HKLM-x32 - AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\18.1.7.644\AVG Secure Search_toolbar.dll (AVG Secure Search) Toolbar: HKLM-x32 - No Name - {ae07101b-46d4-4a98-af68-0333ea26e113} - No File Toolbar: HKLM-x32 - SweetPacks Toolbar for Internet Explorer - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll (SweetIM Technologies Ltd.) Toolbar: HKLM-x32 - Search-Results Toolbar - {f34c9277-6577-4dff-b2d7-7d58092f272f} - C:\PROGRA~2\SEARCH~1\Datamngr\SRTOOL~1\searchresultsDx.dll No File Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File Toolbar: HKCU - No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No File Toolbar: HKCU - No Name - {EEE6C35B-6118-11DC-9C72-001320C79847} - No File Toolbar: HKCU - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport_x64.dll (APN LLC.) DPF: HKLM-x32 {C8BC46C7-921C-4102-B67D-F1F7E65FB0BE} https://battlefield.play4free.com/static/updater/BP4FUpdater_1.0.96.0.cab Handler-x32: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\18.1.7\ViProtocol.dll (AVG Secure Search) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 192.168.2.1 FireFox: ======== FF ProfilePath: C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default FF DefaultSearchEngine: Ask Search FF SelectedSearchEngine: Conduit Search FF Homepage: hxxp://search.conduit.com/?ctid=CT3318001&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=2&UP=SPBDE4106A-6735-4786-94FB-2FDCB1B2DBB3&SSPV= FF Homepage: hxxp://search.conduit.com/?ctid=CT3318001&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=2&UP=SPBDE4106A-6735-4786-94FB-2FDCB1B2DBB3&SSPV= FF SearchEngineOrder.1: Ask Search FF NewTab: hxxp://search.conduit.com/?ctid=CT3318001&octid=EB_ORIGINAL_CTID&SearchSource=69&CUI=&SSPV=&Lay=1&UM=2&UP=SPBDE4106A-6735-4786-94FB-2FDCB1B2DBB3 FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll () FF Plugin: @java.com/DTPlugin,version=10.25.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll () FF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin - C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\18.1.7\\npsitesafety.dll No File FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @java.com/DTPlugin,version=10.21.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.21.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\Schrägle\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited) FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Schrägle\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF user.js: detected! => C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\user.js FF SearchPlugin: C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\searchplugins\ask-search.xml FF SearchPlugin: C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\searchplugins\babylon.xml FF SearchPlugin: C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\searchplugins\conduit-search.xml FF SearchPlugin: C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\searchplugins\delta.xml FF SearchPlugin: C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\searchplugins\MyStart Search.xml FF SearchPlugin: C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\searchplugins\softonic.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\avg-secure-search.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\Search_Results.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\avg-secure-search.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Battlefield Play4Free - C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\Extensions\battlefieldplay4free@ea.com [2013-05-30] FF Extension: Delta Toolbar - C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\Extensions\ffxtlbr@delta.com [2013-02-28] FF Extension: No Name - C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\Extensions\staged [2014-07-13] FF Extension: Yahoo! Toolbar - C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\Extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1} [2013-04-14] FF Extension: PricePeep - C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\Extensions\pricepeep@getpricepeep.com.xpi [2013-02-03] FF Extension: Avira SearchFree Toolbar plus Web Protection - C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\Extensions\toolbar_AVIRA-V7@apn.ask.com.xpi [2013-07-26] FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\extensions\ffxtlbr@babylon.com [2013-02-28] FF HKLM\...\Firefox\Extensions: [{336D0C35-8A85-403a-B9D2-65C292C39087}] - C:\Program Files\IB Updater\Firefox FF Extension: IB Updater - C:\Program Files\IB Updater\Firefox [2012-10-14] FF HKLM\...\Firefox\Extensions: [{FE1DEEEA-DB6D-44b8-83F0-34FC0F9D1052}] - C:\Program Files\IB Updater\Firefox FF HKLM-x32\...\Firefox\Extensions: [avg@toolbar] - C:\ProgramData\AVG Secure Search\FireFoxExt\18.1.7.644 FF Extension: AVG Security Toolbar - C:\ProgramData\AVG Secure Search\FireFoxExt\18.1.7.644 [2014-06-22] FF HKLM-x32\...\Firefox\Extensions: [fmconverter@gmail.com] - C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Firefox FF Extension: Freemake Video Converter Plugin - C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Firefox [2013-02-15] FF HKLM-x32\...\Firefox\Extensions: [{336D0C35-8A85-403a-B9D2-65C292C39087}] - C:\Program Files\IB Updater\Firefox FF HKLM-x32\...\Firefox\Extensions: [{ACAA314B-EEBA-48e4-AD47-84E31C44796C}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff FF Extension: DVDVideoSoft YouTube MP3 and Video Download - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff [2013-12-16] FF HKLM-x32\...\Firefox\Extensions: [{FE1DEEEA-DB6D-44b8-83F0-34FC0F9D1052}] - C:\Program Files\IB Updater\Firefox FF HKCU\...\Firefox\Extensions: [{45dd9ac7-a7fe-4cee-a035-d55aefec22ce}] - C:\Program Files (x86)\bLyrics\131.xpi FF Extension: B Lyrics - C:\Program Files (x86)\bLyrics\131.xpi [2013-08-29] FF HKCU\...\Firefox\Extensions: [{5a95a9e0-59dd-4314-bd84-4d18ca83a0e2}] - C:\Program Files (x86)\Wajam\Firefox\{5a95a9e0-59dd-4314-bd84-4d18ca83a0e2}.xpi FF Extension: Wajam - C:\Program Files (x86)\Wajam\Firefox\{5a95a9e0-59dd-4314-bd84-4d18ca83a0e2}.xpi [2013-03-28] Chrome: ======= CHR HomePage: hxxp://search.softonic.com/MOY00621/tb_v1?SearchSource=48&cc=&mi=204c3cc00000000000008c89a5c0d106 CHR StartupUrls: "hxxp://search.softonic.com/MOY00621/tb_v1?SearchSource=48&cc=&mi=204c3cc00000000000008c89a5c0d106" CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\gcswf32.dll No File CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll No File CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\4.1.10111.0\npctrl.dll No File CHR Plugin: (Chrome NaCl) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\pdf.dll () CHR Plugin: (Kaspersky Anti-Virus) - C:\Users\Schrgle\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman\12.0.0.374_0\plugin/npABPlugin.dll No File CHR Plugin: (Kaspersky Anti-Virus) - C:\Users\Schrgle\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh\12.0.0.374_0\plugin/npVKPlugin.dll No File CHR Plugin: (Kaspersky Anti-Virus) - C:\Users\Schrgle\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\12.0.0.397_0\plugin/npUrlAdvisor.dll No File CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll No File CHR Plugin: (Java(TM) Platform SE 7 U3) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (Windows Live Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (Default Plug-in) - default_plugin No File CHR Extension: (Avira SearchFree Toolbar plus Web Protection) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaacalgebmfelllfiaoknifldpngjh [2013-08-07] CHR Extension: (Adblock Plus) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2013-05-06] CHR Extension: (IB Updater) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd [2012-10-30] CHR Extension: (Softonic Chrome Toolbar) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\elchiiiejkobdbblfejjkbphbddgmljf [2013-12-16] CHR Extension: (Freemake Video Converter) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj [2013-02-15] CHR Extension: (Wajam) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpmbfleldcgkldadpdinhjjopdfpjfjp [2013-04-03] CHR Extension: (SwissConverter 2.1) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\lhdidofdhbieclaekjnfcnfaoceobnco [2013-04-03] CHR Extension: (PricePeep) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\licjnkifamhpbaefhdpacpmihicfbomb [2013-04-03] CHR Extension: (Google Wallet) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-22] CHR Extension: (SweetPacks Chrome Extension) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj [2013-09-17] CHR Extension: (Battlefield Play4Free) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\oiokahphinmbmakkehgelkmpolmnbkdh [2013-11-02] CHR Extension: (B Lyrics) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\okaclkhnjaebofijaabgiahinbajiekd [2013-08-16] CHR HKLM\...\Chrome\Extension: [dlnembnfbcpjnepmfjmngjenhhajpdfd] - C:\Program Files\IB Updater\source.crx [2012-10-14] CHR HKCU\...\Chrome\Extension: [lhdidofdhbieclaekjnfcnfaoceobnco] - C:\Users\Schrägle\AppData\Local\CRE\lhdidofdhbieclaekjnfcnfaoceobnco.crx [2013-03-24] CHR HKLM-x32\...\Chrome\Extension: [aaaaacalgebmfelllfiaoknifldpngjh] - C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\ToolbarCR.crx [2014-06-26] CHR HKLM-x32\...\Chrome\Extension: [dhkplhfnhceodhffomolpfigojocbpcb] - C:\Users\Schrägle\AppData\Roaming\BabSolution\CR\BabylonChrome1.crx [2014-06-26] CHR HKLM-x32\...\Chrome\Extension: [dlnembnfbcpjnepmfjmngjenhhajpdfd] - C:\Program Files\IB Updater\source.crx [2012-10-14] CHR HKLM-x32\...\Chrome\Extension: [elchiiiejkobdbblfejjkbphbddgmljf] - C:\Program Files (x86)\Softonic\Softonic\1.8.21.14\Softonic.crx [2013-06-11] CHR HKLM-x32\...\Chrome\Extension: [fgfdfcbeamjnjdejakdidpniblllnbpg] - C:\Windows\SysWOW64\jmdp\pnte.crx [2013-06-11] CHR HKLM-x32\...\Chrome\Extension: [jbolfgndggfhhpbnkgnpjkfhinclbigj] - C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Chrome\Freemake.Plugin.Chrome.crx [2013-02-15] CHR HKLM-x32\...\Chrome\Extension: [jifflliplgeajjdhmkcfnngfpgbjonjg] - C:\Program Files (x86)\Perion\NewTab\newTab.crx [2012-10-14] CHR HKLM-x32\...\Chrome\Extension: [jpmbfleldcgkldadpdinhjjopdfpjfjp] - C:\Users\Schrägle\AppData\Local\Wajam\Chrome\wajam.crx [2013-03-28] CHR HKLM-x32\...\Chrome\Extension: [lhdidofdhbieclaekjnfcnfaoceobnco] - C:\Users\Schrägle\AppData\Local\CRE\lhdidofdhbieclaekjnfcnfaoceobnco.crx [2013-03-24] CHR HKLM-x32\...\Chrome\Extension: [ndibdjnfmopecpmkdieinmbadjfpblof] - C:\ProgramData\AVG Secure Search\ChromeExt\18.1.0.443\avg.crx [2014-04-27] CHR HKLM-x32\...\Chrome\Extension: [niogeckbkdcabhnapjbkeiklablhjoca] - C:\Program Files (x86)\Perion\ChromeInfoBar\ChromeInfoBar.crx [2012-10-14] CHR HKLM-x32\...\Chrome\Extension: [ogccgbmabaphcakpiclgcnmcnimhokcj] - C:\Windows\SysWOW64\mjcm\SweetNT.crx [2014-06-24] CHR HKLM-x32\...\Chrome\Extension: [okaclkhnjaebofijaabgiahinbajiekd] - C:\Program Files (x86)\bLyrics\131.crx [2013-08-29] ==================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [430160 2014-07-03] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [430160 2014-07-03] (Avira Operations GmbH & Co. KG) R2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1030224 2014-07-02] (Avira Operations GmbH & Co. KG) R2 APNMCP; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [165784 2014-06-23] (APN LLC.) R2 avgfws; C:\Program Files (x86)\AVG\AVG2014\avgfws.exe [1417160 2014-06-17] (AVG Technologies CZ, s.r.o.) S2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe [3241488 2014-06-27] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe [289328 2014-06-17] (AVG Technologies CZ, s.r.o.) R2 CltMngSvc; C:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe [2301216 2014-01-01] (Conduit) R2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [100864 2013-01-31] (Freemake) [File not signed] R2 IBUpdaterService; C:\Windows\system32\dmwu.exe [2601776 2014-06-24] () S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [File not signed] S3 IEEtwCollectorService; C:\Windows\system32\IEEtwCollector.exe [111616 2014-06-19] (Microsoft Corporation) [File not signed] R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe [2100024 2013-08-30] (TuneUp Software) R2 vToolbarUpdater18.1.7; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.7\ToolbarUpdater.exe [1813528 2014-06-22] (AVG Secure Search) R2 WajamUpdater; C:\Program Files (x86)\Wajam\Updater\WajamUpdater.exe [109064 2013-03-28] (Wajam) [File not signed] R2 watchmi; C:\Program Files (x86)\watchmi\TvdService.exe [70144 2012-01-31] () [File not signed] ==================== Drivers (Whitelisted) ==================== R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [153368 2014-06-17] (AVG Technologies CZ, s.r.o.) R1 Avgfwfd; C:\Windows\System32\DRIVERS\avgfwd6a.sys [57144 2013-09-26] (AVG Technologies CZ, s.r.o.) R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [242968 2014-06-17] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [190744 2014-06-17] (AVG Technologies CZ, s.r.o.) S1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [235800 2014-06-17] (AVG Technologies CZ, s.r.o.) S0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [328984 2014-06-17] (AVG Technologies CZ, s.r.o.) R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [123672 2014-06-17] (AVG Technologies CZ, s.r.o.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [117712 2014-07-03] (Avira Operations GmbH & Co. KG) R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [31512 2014-06-17] (AVG Technologies CZ, s.r.o.) R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [269080 2014-06-17] (AVG Technologies CZ, s.r.o.) R1 avgtp; C:\Windows\system32\drivers\avgtpx64.sys [50464 2014-06-22] (AVG Technologies) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [130584 2014-06-03] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-11-19] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\Windows\System32\DRIVERS\avnetflt.sys [42040 2014-07-02] (Avira Operations GmbH & Co. KG) R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [14112 2013-08-21] (TuneUp Software) U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [59904 2009-07-14] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-07-14 18:35 - 2014-07-14 18:35 - 00036211 _____ () C:\Users\Schrägle\Downloads\FRST.txt 2014-07-14 18:34 - 2014-07-14 18:34 - 02086912 _____ (Farbar) C:\Users\Schrägle\Downloads\FRST64.exe 2014-07-14 18:31 - 2014-07-14 18:32 - 00001447 _____ () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-07-14 18:31 - 2014-07-14 18:31 - 00003548 _____ () C:\Windows\System32\Tasks\CreateChoiceProcessTask 2014-07-14 18:31 - 2014-07-14 18:31 - 00001758 _____ () C:\Users\Public\Desktop\Browserwahl.lnk 2014-07-14 06:53 - 2013-05-10 07:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2014-07-14 06:53 - 2013-05-10 07:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL 2014-07-14 06:53 - 2013-05-10 06:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL 2014-07-14 06:53 - 2013-05-10 06:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2014-07-14 06:16 - 2010-02-23 10:16 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\browserchoice.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 17773056 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 12268544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 10884096 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 09702400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 03695416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2014-07-14 06:14 - 2014-07-14 06:14 - 03695416 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2014-07-14 06:14 - 2014-07-14 06:14 - 02382848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-07-14 06:14 - 2014-07-14 06:14 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-07-14 06:14 - 2014-07-14 06:14 - 02303488 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 02136064 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01797632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01785344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01492992 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-07-14 06:14 - 2014-07-14 06:14 - 01427456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-07-14 06:14 - 2014-07-14 06:14 - 01389056 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01344000 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01126912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01102336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00818176 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00716800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00697344 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00603648 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00580608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00534528 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00452608 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00448512 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-07-14 06:14 - 2014-07-14 06:14 - 00434176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00420864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00403248 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2014-07-14 06:14 - 2014-07-14 06:14 - 00353792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00353584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00282112 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\ieaksie.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00249344 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00248320 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00236544 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00231936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00227840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieaksie.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00203776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00176640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieakui.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\ieakui.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00160256 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00160256 _____ (Microsoft Corporation) C:\Windows\system32\ieakeng.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00150528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00130560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieakeng.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00123392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00118784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\admparse.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00101888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\admparse.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00078848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2014-07-14 06:14 - 2014-07-14 06:14 - 00074752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00074752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ie4uinit.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00072704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00065024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00063488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2014-07-14 06:14 - 2014-07-14 06:14 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00054272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-07-14 06:08 - 2014-07-14 06:15 - 00004361 _____ () C:\Windows\IE9_main.log 2014-07-14 06:00 - 2012-07-26 05:08 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll 2014-07-14 06:00 - 2012-07-26 05:08 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe 2014-07-14 06:00 - 2012-07-26 05:08 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll 2014-07-14 06:00 - 2012-07-26 05:08 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll 2014-07-14 06:00 - 2012-07-26 05:08 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll 2014-07-14 06:00 - 2012-07-26 04:26 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys 2014-07-14 06:00 - 2012-07-26 04:26 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys 2014-07-14 06:00 - 2012-06-02 16:57 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf 2014-07-14 05:53 - 2012-03-01 08:46 - 00023408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys 2014-07-14 05:53 - 2012-03-01 08:28 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll 2014-07-14 05:53 - 2012-03-01 07:29 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmi.dll 2014-07-14 04:35 - 2014-07-13 23:50 - 00000000 ____D () C:\Windows\Panther 2014-07-14 04:33 - 2014-07-14 04:33 - 00262144 _____ () C:\Windows\system32\config\userdiff 2014-07-14 04:14 - 2014-07-13 19:51 - 00000000 ___HD () C:\$WINDOWS.~Q 2014-07-14 04:06 - 2014-07-14 04:10 - 00000000 ___HD () C:\$INPLACE.~TR 2014-07-14 03:30 - 2014-01-28 04:32 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2014-07-14 03:30 - 2013-10-30 04:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2014-07-14 03:30 - 2013-10-30 04:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2014-07-14 03:30 - 2013-07-04 14:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll 2014-07-14 03:30 - 2013-07-04 13:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll 2014-07-14 03:30 - 2013-03-19 07:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll 2014-07-14 03:30 - 2011-06-16 07:49 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\xmllite.dll 2014-07-14 03:30 - 2011-06-16 06:33 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xmllite.dll 2014-07-14 03:30 - 2011-06-15 12:02 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll 2014-07-14 03:30 - 2011-06-15 12:02 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll 2014-07-14 03:30 - 2011-06-15 12:02 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccu32.dll 2014-07-14 03:30 - 2011-06-15 12:02 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccr32.dll 2014-07-14 03:30 - 2011-06-15 10:55 - 00319488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcjt32.dll 2014-07-14 03:30 - 2011-06-15 10:55 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbctrac.dll 2014-07-14 03:30 - 2011-06-15 10:55 - 00122880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccp32.dll 2014-07-14 03:30 - 2011-06-15 10:55 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccu32.dll 2014-07-14 03:30 - 2011-06-15 10:55 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccr32.dll 2014-07-14 03:29 - 2014-03-25 04:43 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-07-14 03:29 - 2014-03-25 04:09 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2014-07-14 03:29 - 2013-07-09 07:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2014-07-14 03:29 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2014-07-14 03:29 - 2013-02-15 08:08 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2014-07-14 03:29 - 2013-02-15 08:06 - 03717632 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2014-07-14 03:29 - 2013-02-15 08:02 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll 2014-07-14 03:29 - 2013-02-15 06:37 - 03217408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2014-07-14 03:29 - 2013-02-15 06:34 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll 2014-07-14 03:29 - 2013-02-15 05:25 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2014-07-14 03:29 - 2012-10-09 20:17 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll 2014-07-14 03:29 - 2012-10-09 20:17 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll 2014-07-14 03:29 - 2012-10-09 19:40 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll 2014-07-14 03:29 - 2012-10-09 19:40 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll 2014-07-14 03:29 - 2012-01-04 12:44 - 00509952 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll 2014-07-14 03:29 - 2012-01-04 10:58 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll 2014-07-14 03:29 - 2011-10-26 07:25 - 01572864 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll 2014-07-14 03:29 - 2011-10-26 07:25 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll 2014-07-14 03:29 - 2011-10-26 06:32 - 01328128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll 2014-07-14 03:29 - 2011-10-26 06:32 - 00514560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll 2014-07-14 03:29 - 2011-04-09 08:58 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2014-07-14 03:29 - 2011-04-09 07:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2014-07-14 03:29 - 2010-12-23 12:42 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll 2014-07-14 03:29 - 2010-12-23 12:42 - 00961024 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll 2014-07-14 03:29 - 2010-12-23 12:36 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax 2014-07-14 03:29 - 2010-12-23 07:54 - 00850944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sbe.dll 2014-07-14 03:29 - 2010-12-23 07:54 - 00642048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll 2014-07-14 03:29 - 2010-12-23 07:50 - 00199680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mpg2splt.ax 2014-07-14 03:28 - 2014-04-25 04:34 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll 2014-07-14 03:28 - 2014-04-25 04:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll 2014-07-14 03:28 - 2014-04-05 04:47 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2014-07-14 03:28 - 2014-04-05 04:47 - 00288192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2014-07-14 03:28 - 2014-01-29 04:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2014-07-14 03:28 - 2014-01-29 04:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll 2014-07-14 03:28 - 2014-01-01 01:05 - 00420008 _____ () C:\Windows\SysWOW64\locale.nls 2014-07-14 03:28 - 2014-01-01 01:04 - 00420008 _____ () C:\Windows\system32\locale.nls 2014-07-14 03:28 - 2013-11-26 13:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2014-07-14 03:28 - 2013-10-19 04:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2014-07-14 03:28 - 2013-10-19 03:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2014-07-14 03:28 - 2013-10-05 22:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2014-07-14 03:28 - 2013-10-05 21:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2014-07-14 03:28 - 2013-07-09 07:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2014-07-14 03:28 - 2013-07-09 07:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2014-07-14 03:28 - 2013-07-09 06:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2014-07-14 03:28 - 2013-07-09 06:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2014-07-14 03:28 - 2013-02-27 08:02 - 00111448 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2014-07-14 03:28 - 2013-02-27 07:47 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2014-07-14 03:28 - 2011-11-17 08:35 - 00395776 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll 2014-07-14 03:28 - 2011-11-17 07:35 - 00314880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll 2014-07-14 03:28 - 2011-07-09 04:46 - 00288768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2014-07-14 03:28 - 2011-05-04 07:25 - 02315776 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll 2014-07-14 03:28 - 2011-05-04 07:22 - 02223616 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll 2014-07-14 03:28 - 2011-05-04 07:22 - 00778752 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll 2014-07-14 03:28 - 2011-05-04 07:22 - 00491520 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll 2014-07-14 03:28 - 2011-05-04 07:22 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll 2014-07-14 03:28 - 2011-05-04 07:22 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll 2014-07-14 03:28 - 2011-05-04 07:19 - 00591872 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe 2014-07-14 03:28 - 2011-05-04 07:19 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe 2014-07-14 03:28 - 2011-05-04 07:19 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe 2014-07-14 03:28 - 2011-05-04 06:34 - 01549312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll 2014-07-14 03:28 - 2011-05-04 06:32 - 01401344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll 2014-07-14 03:28 - 2011-05-04 06:32 - 00666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll 2014-07-14 03:28 - 2011-05-04 06:32 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll 2014-07-14 03:28 - 2011-05-04 06:32 - 00197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll 2014-07-14 03:28 - 2011-05-04 06:32 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll 2014-07-14 03:28 - 2011-05-04 06:28 - 00427520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe 2014-07-14 03:28 - 2011-05-04 06:28 - 00164352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe 2014-07-14 03:28 - 2011-05-04 06:28 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe 2014-07-14 03:28 - 2011-04-27 04:40 - 00158208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2014-07-14 03:28 - 2011-04-27 04:39 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2014-07-14 03:27 - 2014-06-30 04:09 - 00519168 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-07-14 03:27 - 2014-06-30 04:04 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-07-14 03:27 - 2014-06-18 04:18 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2014-07-14 03:27 - 2014-06-18 03:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe 2014-07-14 03:27 - 2014-06-18 03:10 - 03157504 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-07-14 03:27 - 2014-03-26 16:44 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2014-07-14 03:27 - 2014-03-26 16:44 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-07-14 03:27 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll 2014-07-14 03:27 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-07-14 03:27 - 2014-03-26 16:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2014-07-14 03:27 - 2014-03-26 16:27 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-07-14 03:27 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll 2014-07-14 03:27 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-07-14 03:27 - 2013-11-12 04:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2014-07-14 03:27 - 2013-11-12 04:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2014-07-14 03:27 - 2013-10-04 04:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll 2014-07-14 03:27 - 2013-10-04 04:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll 2014-07-14 03:27 - 2013-10-04 04:24 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2014-07-14 03:27 - 2013-10-04 04:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2014-07-14 03:27 - 2013-10-04 03:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll 2014-07-14 03:27 - 2013-10-04 03:56 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2014-07-14 03:27 - 2013-10-04 03:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll 2014-07-14 03:27 - 2013-10-04 03:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2014-07-14 03:27 - 2013-08-05 04:25 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys 2014-07-14 03:27 - 2011-12-30 08:26 - 00515584 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl 2014-07-14 03:27 - 2011-12-30 07:27 - 00478720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl 2014-07-14 03:26 - 2014-06-06 12:10 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-07-14 03:26 - 2014-06-06 11:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2014-07-14 03:26 - 2014-05-30 08:45 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2014-07-14 03:26 - 2013-12-04 04:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll 2014-07-14 03:26 - 2013-12-04 04:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll 2014-07-14 03:26 - 2013-12-04 04:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll 2014-07-14 03:26 - 2013-12-04 04:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll 2014-07-14 03:26 - 2013-12-04 04:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll 2014-07-14 03:26 - 2013-12-04 04:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe 2014-07-14 03:26 - 2013-12-04 04:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe 2014-07-14 03:26 - 2013-12-04 04:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe 2014-07-14 03:26 - 2013-12-04 04:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe 2014-07-14 03:26 - 2013-12-04 04:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll 2014-07-14 03:26 - 2013-12-04 04:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll 2014-07-14 03:26 - 2013-12-04 04:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll 2014-07-14 03:26 - 2013-12-04 04:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll 2014-07-14 03:26 - 2013-12-04 04:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll 2014-07-14 03:26 - 2013-12-04 03:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe 2014-07-14 03:26 - 2013-12-04 03:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe 2014-07-14 03:26 - 2013-12-04 03:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe 2014-07-14 03:26 - 2013-12-04 03:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe 2014-07-14 03:26 - 2013-11-27 03:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-07-14 03:26 - 2013-11-27 03:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-07-14 03:26 - 2013-11-27 03:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2014-07-14 03:26 - 2013-11-27 03:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-07-14 03:26 - 2013-11-27 03:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-07-14 03:26 - 2013-07-25 11:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2014-07-14 03:26 - 2013-07-25 10:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2014-07-14 03:26 - 2013-07-12 12:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys 2014-07-14 03:26 - 2013-07-09 07:51 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2014-07-14 03:26 - 2013-07-09 06:52 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2014-07-14 03:26 - 2013-07-03 06:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2014-07-14 03:26 - 2013-07-03 06:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys 2014-07-14 03:26 - 2013-06-26 00:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys 2014-07-14 03:26 - 2013-06-06 07:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2014-07-14 03:26 - 2013-06-06 07:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2014-07-14 03:26 - 2013-06-06 07:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2014-07-14 03:26 - 2013-06-06 07:47 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2014-07-14 03:26 - 2013-06-06 06:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2014-07-14 03:26 - 2013-06-06 06:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2014-07-14 03:26 - 2013-06-06 06:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2014-07-14 03:26 - 2013-06-06 05:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2014-07-14 03:26 - 2013-06-06 05:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2014-07-14 03:26 - 2013-06-06 05:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2014-07-14 03:26 - 2013-02-12 06:12 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys 2014-07-14 03:26 - 2012-11-29 00:56 - 00054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys 2014-07-14 03:26 - 2012-11-29 00:56 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll 2014-07-14 03:26 - 2012-11-29 00:56 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf 2014-07-14 03:26 - 2012-10-03 19:44 - 00303104 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll 2014-07-14 03:26 - 2012-10-03 19:44 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\netcorehc.dll 2014-07-14 03:26 - 2012-10-03 19:44 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll 2014-07-14 03:26 - 2012-10-03 19:44 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll 2014-07-14 03:26 - 2012-10-03 19:44 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\netevent.dll 2014-07-14 03:26 - 2012-10-03 19:42 - 00569344 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll 2014-07-14 03:26 - 2012-10-03 18:42 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcorehc.dll 2014-07-14 03:26 - 2012-10-03 18:42 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll 2014-07-14 03:26 - 2012-10-03 18:42 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netevent.dll 2014-07-14 03:26 - 2012-10-03 18:07 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys 2014-07-14 03:26 - 2012-08-22 20:12 - 00950128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2014-07-14 03:26 - 2012-07-04 22:26 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys 2014-07-14 03:26 - 2012-04-26 07:41 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll 2014-07-14 03:26 - 2012-04-26 07:41 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll 2014-07-14 03:26 - 2012-04-26 07:34 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe 2014-07-14 03:26 - 2012-01-13 09:12 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll 2014-07-14 03:26 - 2011-03-11 08:34 - 01395712 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll 2014-07-14 03:26 - 2011-03-11 08:34 - 01359872 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll 2014-07-14 03:26 - 2011-03-11 07:33 - 01164288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42u.dll 2014-07-14 03:26 - 2011-03-11 07:33 - 01137664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42.dll 2014-07-14 03:25 - 2014-03-04 11:47 - 05550016 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2014-07-14 03:25 - 2014-03-04 11:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll 2014-07-14 03:25 - 2014-03-04 11:44 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2014-07-14 03:25 - 2014-03-04 11:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll 2014-07-14 03:25 - 2014-03-04 11:43 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 2014-07-14 03:25 - 2014-03-04 11:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll 2014-07-14 03:25 - 2014-03-04 11:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll 2014-07-14 03:25 - 2014-03-04 11:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll 2014-07-14 03:25 - 2014-03-04 11:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll 2014-07-14 03:25 - 2014-03-04 11:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll 2014-07-14 03:25 - 2014-03-04 11:20 - 03969984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2014-07-14 03:25 - 2014-03-04 11:20 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2014-07-14 03:25 - 2014-03-04 11:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll 2014-07-14 03:25 - 2014-03-04 11:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll 2014-07-14 03:25 - 2014-03-04 11:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll 2014-07-14 03:25 - 2014-03-04 11:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll 2014-07-14 03:25 - 2014-03-04 11:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll 2014-07-14 03:25 - 2014-03-04 11:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll 2014-07-14 03:25 - 2014-03-04 11:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll 2014-07-14 03:25 - 2014-03-04 11:16 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2014-07-14 03:25 - 2013-08-02 04:12 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2014-07-14 03:25 - 2013-08-02 04:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2014-07-14 03:25 - 2013-08-02 03:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2014-07-14 03:25 - 2013-08-02 02:59 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2014-07-14 03:25 - 2013-07-04 14:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2014-07-14 03:25 - 2013-07-04 14:50 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2014-07-14 03:25 - 2013-07-04 13:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll 2014-07-14 03:25 - 2013-07-04 13:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll 2014-07-14 03:25 - 2013-07-04 12:11 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2014-07-14 03:25 - 2012-11-02 07:59 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll 2014-07-14 03:25 - 2012-11-02 07:11 - 00376832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll 2014-07-14 03:25 - 2012-08-21 23:01 - 00245760 _____ (Microsoft Corporation) C:\Windows\system32\OxpsConverter.exe 2014-07-14 03:25 - 2012-05-01 07:40 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll 2014-07-14 03:25 - 2011-03-03 08:24 - 00357888 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll 2014-07-14 03:25 - 2011-03-03 08:24 - 00183296 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll 2014-07-14 03:25 - 2011-03-03 08:21 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\dnscacheugc.exe 2014-07-14 03:25 - 2011-03-03 07:38 - 00270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll 2014-07-14 03:25 - 2011-03-03 07:36 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnscacheugc.exe 2014-07-14 03:24 - 2013-09-08 04:27 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll 2014-07-14 03:24 - 2013-09-08 04:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll 2014-07-14 03:24 - 2013-06-15 06:32 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 2014-07-14 03:24 - 2012-12-07 15:20 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll 2014-07-14 03:24 - 2012-12-07 15:15 - 02746368 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll 2014-07-14 03:24 - 2012-12-07 14:26 - 00308736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll 2014-07-14 03:24 - 2012-12-07 14:20 - 02576384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll 2014-07-14 03:24 - 2012-12-07 13:20 - 00045568 _____ (Microsoft) C:\Windows\system32\oflc-nz.rs 2014-07-14 03:24 - 2012-12-07 13:20 - 00044544 _____ (Microsoft) C:\Windows\system32\pegibbfc.rs 2014-07-14 03:24 - 2012-12-07 13:20 - 00043520 _____ (Microsoft) C:\Windows\system32\csrr.rs 2014-07-14 03:24 - 2012-12-07 13:20 - 00030720 _____ (Microsoft) C:\Windows\system32\usk.rs 2014-07-14 03:24 - 2012-12-07 13:20 - 00023552 _____ (Microsoft) C:\Windows\system32\oflc.rs 2014-07-14 03:24 - 2012-12-07 13:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-pt.rs 2014-07-14 03:24 - 2012-12-07 13:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-fi.rs 2014-07-14 03:24 - 2012-12-07 13:19 - 00055296 _____ (Microsoft) C:\Windows\system32\cero.rs 2014-07-14 03:24 - 2012-12-07 13:19 - 00051712 _____ (Microsoft) C:\Windows\system32\esrb.rs 2014-07-14 03:24 - 2012-12-07 13:19 - 00046592 _____ (Microsoft) C:\Windows\system32\fpb.rs 2014-07-14 03:24 - 2012-12-07 13:19 - 00040960 _____ (Microsoft) C:\Windows\system32\cob-au.rs 2014-07-14 03:24 - 2012-12-07 13:19 - 00021504 _____ (Microsoft) C:\Windows\system32\grb.rs 2014-07-14 03:24 - 2012-12-07 13:19 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi.rs 2014-07-14 03:24 - 2012-12-07 13:19 - 00015360 _____ (Microsoft) C:\Windows\system32\djctq.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00055296 _____ (Microsoft) C:\Windows\SysWOW64\cero.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00051712 _____ (Microsoft) C:\Windows\SysWOW64\esrb.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00046592 _____ (Microsoft) C:\Windows\SysWOW64\fpb.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00045568 _____ (Microsoft) C:\Windows\SysWOW64\oflc-nz.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00044544 _____ (Microsoft) C:\Windows\SysWOW64\pegibbfc.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00043520 _____ (Microsoft) C:\Windows\SysWOW64\csrr.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00040960 _____ (Microsoft) C:\Windows\SysWOW64\cob-au.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00030720 _____ (Microsoft) C:\Windows\SysWOW64\usk.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00023552 _____ (Microsoft) C:\Windows\SysWOW64\oflc.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00021504 _____ (Microsoft) C:\Windows\SysWOW64\grb.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-pt.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-fi.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00015360 _____ (Microsoft) C:\Windows\SysWOW64\djctq.rs 2014-07-14 03:24 - 2011-08-17 07:26 - 00613888 _____ (Microsoft Corporation) C:\Windows\system32\psisdecd.dll 2014-07-14 03:24 - 2011-08-17 07:25 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\psisrndr.ax 2014-07-14 03:24 - 2011-08-17 06:24 - 00465408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisdecd.dll 2014-07-14 03:24 - 2011-08-17 06:19 - 00075776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisrndr.ax 2014-07-14 03:24 - 2011-04-29 05:06 - 00467456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys 2014-07-14 03:24 - 2011-04-29 05:05 - 00410112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys 2014-07-14 03:24 - 2011-04-29 05:05 - 00168448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys 2014-07-14 03:23 - 2013-08-29 04:16 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2014-07-14 03:23 - 2013-08-29 04:16 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll 2014-07-14 03:23 - 2013-08-29 04:13 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2014-07-14 03:23 - 2013-08-29 03:50 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2014-07-14 03:23 - 2013-08-29 03:50 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll 2014-07-14 03:23 - 2013-08-29 03:48 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2014-07-14 03:23 - 2012-04-28 05:55 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys 2014-07-14 03:23 - 2012-03-17 09:58 - 00075120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys 2014-07-14 03:22 - 2014-05-30 10:08 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2014-07-14 03:22 - 2014-05-30 10:08 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2014-07-14 03:22 - 2014-05-30 10:08 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2014-07-14 03:22 - 2014-05-30 10:08 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2014-07-14 03:22 - 2014-05-30 10:08 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2014-07-14 03:22 - 2014-05-30 10:08 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2014-07-14 03:22 - 2014-05-30 10:08 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2014-07-14 03:22 - 2014-05-30 09:52 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2014-07-14 03:22 - 2014-05-30 09:52 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2014-07-14 03:22 - 2014-05-30 09:52 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2014-07-14 03:22 - 2014-05-30 09:52 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2014-07-14 03:22 - 2014-05-30 09:52 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2014-07-14 03:22 - 2014-05-30 09:52 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2014-07-14 03:22 - 2014-05-30 09:52 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2014-07-14 03:22 - 2014-02-04 04:35 - 00274880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys 2014-07-14 03:22 - 2014-02-04 04:35 - 00190912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys 2014-07-14 03:22 - 2014-02-04 04:35 - 00027584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys 2014-07-14 03:22 - 2014-02-04 04:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll 2014-07-14 03:22 - 2014-02-04 04:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iologmsg.dll 2014-07-14 03:22 - 2013-07-26 04:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2014-07-14 03:22 - 2013-07-26 03:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll 2014-07-14 03:22 - 2012-09-26 00:47 - 00078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\synceng.dll 2014-07-14 03:22 - 2012-09-26 00:46 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll 2014-07-14 03:22 - 2012-04-07 14:31 - 03216384 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2014-07-14 03:22 - 2012-04-07 13:26 - 02342400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2014-07-14 03:22 - 2011-02-05 19:10 - 00642944 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2014-07-14 03:22 - 2011-02-05 19:10 - 00020352 _____ (Microsoft Corporation) C:\Windows\system32\kdusb.dll 2014-07-14 03:22 - 2011-02-05 19:10 - 00019328 _____ (Microsoft Corporation) C:\Windows\system32\kd1394.dll 2014-07-14 03:22 - 2011-02-05 19:10 - 00017792 _____ (Microsoft Corporation) C:\Windows\system32\kdcom.dll 2014-07-14 03:22 - 2011-02-05 19:06 - 00605552 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe 2014-07-14 03:22 - 2011-02-05 19:06 - 00566208 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2014-07-14 03:22 - 2011-02-05 19:06 - 00518672 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe 2014-07-14 03:21 - 2014-03-04 11:44 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2014-07-14 03:21 - 2014-03-04 11:44 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2014-07-14 03:21 - 2014-03-04 11:44 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2014-07-14 03:21 - 2014-03-04 11:44 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2014-07-14 03:21 - 2014-03-04 11:44 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2014-07-14 03:21 - 2014-03-04 11:17 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2014-07-14 03:21 - 2014-03-04 11:16 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2014-07-14 03:21 - 2014-03-04 11:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2014-07-14 03:21 - 2014-03-04 11:16 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2014-07-14 03:21 - 2014-03-04 10:09 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2014-07-14 03:21 - 2014-03-04 10:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2014-07-14 03:21 - 2014-01-24 04:37 - 01684928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2014-07-14 03:21 - 2013-10-03 04:23 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2014-07-14 03:21 - 2013-10-03 04:00 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2014-07-14 03:21 - 2013-08-02 04:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2014-07-14 03:21 - 2013-08-02 02:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 02:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 02:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 02:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2014-07-14 03:21 - 2013-07-20 12:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2014-07-14 03:21 - 2013-07-20 12:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2014-07-14 03:21 - 2013-05-13 07:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll 2014-07-14 03:21 - 2013-05-13 05:43 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe 2014-07-14 03:21 - 2013-05-13 05:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe 2014-07-14 03:21 - 2013-05-13 05:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll 2014-07-14 03:21 - 2013-05-10 07:49 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll 2014-07-14 03:21 - 2013-05-10 05:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll 2014-07-14 03:21 - 2013-04-26 07:51 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2014-07-14 03:21 - 2013-04-26 06:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2014-07-14 03:21 - 2013-01-24 08:01 - 00223752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys 2014-07-14 03:21 - 2012-11-23 05:13 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe 2014-07-14 03:21 - 2012-07-05 00:16 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll 2014-07-14 03:21 - 2012-07-05 00:13 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll 2014-07-14 03:21 - 2012-07-05 00:13 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll 2014-07-14 03:21 - 2012-07-04 23:16 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netapi32.dll 2014-07-14 03:21 - 2012-07-04 23:14 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browcli.dll 2014-07-14 03:21 - 2012-05-05 10:36 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2014-07-14 03:21 - 2012-05-05 09:46 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2014-07-14 03:21 - 2011-12-16 10:46 - 00634880 _____ (Microsoft Corporation) C:\Windows\system32\msvcrt.dll 2014-07-14 03:21 - 2011-12-16 09:52 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcrt.dll 2014-07-14 03:21 - 2011-05-24 13:42 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll 2014-07-14 03:21 - 2011-05-24 12:40 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devobj.dll 2014-07-14 03:21 - 2011-05-24 12:40 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devrtl.dll 2014-07-14 03:21 - 2011-05-24 12:39 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfgmgr32.dll 2014-07-14 03:21 - 2011-05-24 12:37 - 00252928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe 2014-07-14 03:21 - 2011-05-03 07:29 - 00976896 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2014-07-14 03:21 - 2011-05-03 06:30 - 00741376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2014-07-14 03:21 - 2011-02-18 12:51 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\prevhost.exe 2014-07-14 03:21 - 2011-02-18 07:39 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prevhost.exe 2014-07-14 03:21 - 2011-02-12 13:34 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOVER.exe 2014-07-14 03:20 - 2014-06-05 16:45 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-07-14 03:20 - 2014-06-05 16:26 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll |
14.07.2014, 18:25 | #6 |
| Avira Antivir wird blockiertCode:
ATTFilter 2014-07-14 03:20 - 2014-06-05 16:25 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2014-07-14 03:20 - 2014-04-12 04:22 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2014-07-14 03:20 - 2014-04-12 04:22 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2014-07-14 03:20 - 2014-04-12 04:19 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2014-07-14 03:20 - 2014-04-12 04:19 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2014-07-14 03:20 - 2014-04-12 04:19 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2014-07-14 03:20 - 2014-04-12 04:19 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2014-07-14 03:20 - 2013-10-12 04:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2014-07-14 03:20 - 2013-10-12 04:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2014-07-14 03:20 - 2013-10-12 04:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2014-07-14 03:20 - 2013-10-12 04:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2014-07-14 03:20 - 2013-10-12 04:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2014-07-14 03:20 - 2013-10-12 04:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx 2014-07-14 03:20 - 2013-10-12 04:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2014-07-14 03:20 - 2013-10-12 04:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2014-07-14 03:20 - 2013-10-12 04:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2014-07-14 03:20 - 2013-10-12 03:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe 2014-07-14 03:20 - 2013-10-12 03:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2014-07-14 03:20 - 2013-10-12 03:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe 2014-07-14 03:20 - 2013-10-12 03:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe 2014-07-14 03:20 - 2013-08-28 03:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll 2014-07-14 03:20 - 2013-08-27 11:01 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2014-07-14 03:20 - 2013-08-27 11:01 - 01143296 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2014-07-14 03:20 - 2013-08-27 10:21 - 01077760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2014-07-14 03:20 - 2013-08-01 14:09 - 00983488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2014-07-14 03:20 - 2013-07-04 14:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2014-07-14 03:20 - 2013-04-10 08:01 - 00265064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2014-07-14 03:20 - 2012-06-06 08:02 - 01133568 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll 2014-07-14 03:20 - 2012-06-06 07:03 - 00805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll 2014-07-14 03:20 - 2012-05-14 07:26 - 00956928 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2014-07-14 03:20 - 2011-11-19 16:58 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll 2014-07-14 03:20 - 2011-11-19 16:01 - 00067072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll 2014-07-14 03:20 - 2011-10-15 08:31 - 00723456 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll 2014-07-14 03:20 - 2011-10-15 07:38 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EncDec.dll 2014-07-14 03:20 - 2011-08-27 07:37 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2014-07-14 03:20 - 2011-08-27 07:37 - 00331776 _____ (Microsoft Corporation) C:\Windows\system32\oleacc.dll 2014-07-14 03:20 - 2011-08-27 06:26 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2014-07-14 03:20 - 2011-08-27 06:26 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleacc.dll 2014-07-14 03:20 - 2011-02-23 06:55 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys 2014-07-14 03:20 - 2011-02-03 13:25 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2014-07-13 23:54 - 2014-07-14 18:32 - 00121624 _____ () C:\Users\Schrägle\AppData\Local\GDIPFONTCACHEV1.DAT 2014-07-13 23:54 - 2014-07-13 23:54 - 09580848 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-07-13 23:52 - 2014-07-14 18:32 - 00001413 _____ () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk 2014-07-13 23:50 - 2014-07-13 23:50 - 00000020 ___SH () C:\Users\Schrägle\ntuser.ini 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Programme 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Favoriten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Dokumente und Einstellungen 2014-07-13 20:40 - 2012-02-17 08:38 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll 2014-07-13 20:40 - 2012-02-17 07:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll 2014-07-13 20:40 - 2012-02-17 06:57 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys 2014-07-13 20:26 - 2012-06-03 00:19 - 02428952 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2014-07-13 20:26 - 2012-06-03 00:19 - 00057880 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2014-07-13 20:26 - 2012-06-03 00:19 - 00044056 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2014-07-13 20:26 - 2012-06-03 00:15 - 02622464 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2014-07-13 20:25 - 2012-06-03 00:19 - 00701976 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2014-07-13 20:25 - 2012-06-03 00:19 - 00038424 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2014-07-13 20:25 - 2012-06-03 00:15 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2014-07-13 20:25 - 2012-06-02 15:19 - 00186752 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2014-07-13 20:25 - 2012-06-02 15:15 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2014-07-13 20:17 - 2014-07-14 18:22 - 01257796 _____ () C:\Windows\WindowsUpdate.log 2014-07-13 19:54 - 2014-07-13 19:54 - 00022960 _____ () C:\Windows\system32\emptyregdb.dat 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerRecover 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Macromedia 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerRecover 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Macromedia 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help 2014-07-13 19:12 - 2014-07-13 23:50 - 00000000 ____D () C:\Users\Schrägle 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Vorlagen 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Startmenü 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Netzwerkumgebung 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Lokale Einstellungen 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Eigene Dateien 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Druckumgebung 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Documents\Eigene Musik 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Documents\Eigene Bilder 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\AppData\Local\Verlauf 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\AppData\Local\Anwendungsdaten 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Anwendungsdaten 2014-07-13 19:12 - 2009-07-14 06:54 - 00000000 ___RD () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-07-13 19:12 - 2009-07-14 06:49 - 00000000 ___RD () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-07-13 19:11 - 2014-07-13 19:11 - 00001345 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk 2014-07-13 19:11 - 2014-07-13 19:11 - 00001326 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk 2014-07-13 19:06 - 2014-07-13 19:06 - 00001355 _____ () C:\Windows\TSSysprep.log 2014-07-13 18:55 - 2014-07-13 19:03 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-07-13 18:55 - 2014-07-13 18:55 - 00000000 ____D () C:\Program Files\Realtek 2014-07-13 18:54 - 2014-07-13 18:54 - 00000000 _____ () C:\Windows\ativpsrm.bin 2014-07-13 18:50 - 2014-07-13 18:50 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf 2014-07-13 17:40 - 2014-07-13 19:51 - 00006161 _____ () C:\Windows\comsetup.log 2014-07-13 17:26 - 2014-07-13 17:26 - 00003302 _____ () C:\Users\Schrägle\Desktop\Windows Compatibility Report.htm 2014-07-13 17:23 - 2014-07-13 17:23 - 00013662 _____ () C:\Windows\diagwrn.xml 2014-07-13 17:23 - 2014-07-13 17:23 - 00001890 _____ () C:\Windows\diagerr.xml 2014-07-13 16:03 - 2014-07-13 19:39 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\AVG2014 2014-07-13 16:02 - 2014-07-13 19:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2014-07-13 16:02 - 2014-07-13 16:02 - 00000985 _____ () C:\Users\Public\Desktop\AVG 2014.lnk 2014-07-13 16:00 - 2014-07-13 19:24 - 00000000 ____D () C:\ProgramData\AVG2014 2014-07-13 16:00 - 2014-07-13 16:00 - 00000000 ___HD () C:\$AVG 2014-07-13 15:59 - 2014-07-13 19:17 - 00000000 ____D () C:\Program Files (x86)\AVG 2014-07-13 15:56 - 2014-07-13 19:39 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Win System 2014-07-13 15:56 - 2014-07-13 19:39 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\VOPackage 2014-07-13 15:56 - 2014-07-13 19:39 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage 2014-07-13 15:55 - 2014-07-13 19:39 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Security Systems 2014-07-13 15:55 - 2014-07-13 15:55 - 00000142 _____ () C:\Users\Schrägle\AppData\Roaming\tmp_register.bat 2014-07-13 15:54 - 2014-07-14 18:17 - 00000000 ____D () C:\ProgramData\MFAData 2014-07-13 15:54 - 2014-07-13 19:37 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\MFAData 2014-07-13 15:54 - 2014-07-13 19:36 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Avg2014 2014-07-13 15:46 - 2014-07-14 18:35 - 00000000 ____D () C:\FRST 2014-07-13 15:40 - 2014-07-13 19:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2014-07-13 11:14 - 2014-07-13 11:14 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{C887F452-5450-42AE-92C3-EAC911EDB34C} 2014-07-10 17:33 - 2014-07-10 17:33 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{2E7488C6-96C2-45A0-83FA-4AA877390050} 2014-07-09 20:30 - 2014-07-09 20:30 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{042D9681-1CB0-45D7-9366-084F768DC847} 2014-07-09 15:51 - 2014-06-19 03:06 - 00004096 ____N (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-07-09 15:51 - 2014-06-19 02:41 - 00083968 ____N (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-07-09 15:51 - 2014-06-19 02:41 - 00048640 ____N (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-07-09 15:51 - 2014-06-19 02:24 - 00111616 ____N (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-07-09 15:51 - 2014-06-19 02:23 - 00752640 ____N (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-07-09 15:51 - 2014-06-19 02:14 - 00940032 ____N (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-07-09 15:51 - 2014-06-19 01:59 - 00038400 ____N (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-07-09 15:51 - 2014-06-19 01:36 - 00051200 ____N (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-07-09 15:51 - 2014-06-19 01:35 - 00062464 ____N (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-07-09 15:51 - 2014-06-19 01:27 - 01249280 ____N (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-07-09 15:51 - 2014-06-19 01:22 - 00592896 ____N (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-07-09 15:51 - 2014-06-19 01:06 - 00032256 ____N (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-07-09 15:51 - 2014-06-19 00:46 - 01068032 ____N (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-07-07 18:53 - 2014-07-07 18:53 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{1071BD73-6D66-4747-B84F-C3F980B69617} 2014-07-07 18:53 - 2014-07-07 18:53 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{0E5B554B-2C84-4A29-BBCF-8CF9312A023F} 2014-07-05 11:03 - 2014-07-05 11:04 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{DBB75948-902D-4024-B588-07D9CC33167F} 2014-07-02 20:37 - 2014-07-02 20:37 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{0ED52F5C-7E76-48D3-B440-1B66A2247749} 2014-06-29 16:57 - 2014-06-29 16:57 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{ECC4DA04-C8A5-4673-9625-EAB427986779} 2014-06-29 16:57 - 2014-06-29 16:57 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{C9E1C0EE-9103-4424-8418-78EADDD7D964} 2014-06-29 09:03 - 2014-06-29 09:03 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{A84A427F-8D52-45C8-AE07-D49BAA473727} 2014-06-28 17:51 - 2014-06-28 17:51 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{DC6B7C0A-397F-420A-925E-9E651BBF7836} 2014-06-27 19:56 - 2014-07-13 19:36 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\AskPartnerNetwork 2014-06-25 20:16 - 2014-06-25 20:16 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cf90a18dd4ef68.job 2014-06-25 19:50 - 2014-06-24 16:15 - 02601776 _____ () C:\Windows\system32\dmwu.exe 2014-06-25 16:39 - 2014-06-25 16:39 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{DE3AADE9-90F8-4435-8DBF-C09011FD9CCC} 2014-06-23 19:49 - 2014-07-13 19:27 - 00000000 ____D () C:\Windows\SysWOW64\mjcm 2014-06-23 19:49 - 2014-07-13 19:27 - 00000000 ____D () C:\Windows\system32\tprb 2014-06-22 21:58 - 2014-07-13 19:41 - 00000000 ____D () C:\Users\Schrägle\Desktop\Stefan Referat VW 2014-06-21 19:58 - 2014-06-21 19:58 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{B33F55B0-EBE8-4679-942B-6AA96708E1A9} 2014-06-20 20:03 - 2014-06-20 20:04 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{9F69A0B2-809F-423F-8B77-E0501B392178} 2014-06-19 19:12 - 2014-06-19 19:12 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{C03CB42A-9AE4-418C-BA83-47CB7D12EC35} 2014-06-18 19:05 - 2014-06-18 19:05 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{F10216B5-ABA2-4B1F-9443-7925EDA4C2CF} 2014-06-17 16:21 - 2014-06-17 16:21 - 00235800 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgldx64.sys 2014-06-17 16:07 - 2014-06-17 16:07 - 00328984 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgloga.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00269080 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgtdia.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00242968 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsdrivera.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00190744 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsha.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00153368 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgdiska.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00123672 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgmfx64.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00031512 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgrkx64.sys 2014-06-16 20:33 - 2014-06-16 20:34 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{37940329-4D90-4DFC-A19F-5B13B85BC9B0} 2014-06-15 20:52 - 2014-06-15 20:52 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{A4B0555F-BEAA-4483-9C9C-05EDBCEE76F4} 2014-06-15 14:43 - 2014-06-15 14:43 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{DC99FA77-EBF8-4A51-8EB1-A12BD84B7E68} 2014-06-14 13:01 - 2014-06-14 13:01 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{83E2F3AA-BE9E-4DF7-9766-BF2BE4F8CF71} ==================== One Month Modified Files and Folders ======= 2014-07-14 18:35 - 2014-07-14 18:35 - 00036211 _____ () C:\Users\Schrägle\Downloads\FRST.txt 2014-07-14 18:35 - 2014-07-13 20:17 - 01257796 _____ () C:\Windows\WindowsUpdate.log 2014-07-14 18:35 - 2014-07-13 15:46 - 00000000 ____D () C:\FRST 2014-07-14 18:35 - 2011-05-16 16:04 - 00699132 _____ () C:\Windows\system32\perfh007.dat 2014-07-14 18:35 - 2011-05-16 16:04 - 00149014 _____ () C:\Windows\system32\perfc007.dat 2014-07-14 18:35 - 2009-07-14 07:13 - 01619832 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-07-14 18:35 - 2009-07-14 06:45 - 00016752 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-07-14 18:35 - 2009-07-14 06:45 - 00016752 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-07-14 18:34 - 2014-07-14 18:34 - 02086912 _____ (Farbar) C:\Users\Schrägle\Downloads\FRST64.exe 2014-07-14 18:32 - 2014-07-14 18:31 - 00001447 _____ () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-07-14 18:32 - 2014-07-13 23:54 - 00121624 _____ () C:\Users\Schrägle\AppData\Local\GDIPFONTCACHEV1.DAT 2014-07-14 18:32 - 2014-07-13 23:52 - 00001413 _____ () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk 2014-07-14 18:31 - 2014-07-14 18:31 - 00003548 _____ () C:\Windows\System32\Tasks\CreateChoiceProcessTask 2014-07-14 18:31 - 2014-07-14 18:31 - 00001758 _____ () C:\Users\Public\Desktop\Browserwahl.lnk 2014-07-14 18:30 - 2013-06-28 12:34 - 00000374 _____ () C:\Windows\Tasks\B Lyrics Update.job 2014-07-14 18:30 - 2013-06-03 21:08 - 00000350 _____ () C:\Windows\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv.job 2014-07-14 18:28 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-07-14 18:28 - 2009-07-14 06:51 - 00547916 _____ () C:\Windows\setupact.log 2014-07-14 18:25 - 2009-07-14 06:45 - 00455952 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-07-14 18:20 - 2011-04-12 10:28 - 00000000 ____D () C:\Program Files\Windows Journal 2014-07-14 18:20 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Common Files\System 2014-07-14 18:19 - 2014-05-06 21:02 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-07-14 18:19 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files\Windows Defender 2014-07-14 18:19 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files (x86)\Windows Defender 2014-07-14 18:19 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\Dism 2014-07-14 18:19 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\Dism 2014-07-14 18:18 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-07-14 18:17 - 2014-07-13 15:54 - 00000000 ____D () C:\ProgramData\MFAData 2014-07-14 18:16 - 2012-09-03 19:29 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-07-14 18:14 - 2013-02-25 16:09 - 00000940 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4074982664-1885493180-2041087550-1001UA.job 2014-07-14 18:11 - 2012-08-05 11:20 - 00001110 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-07-14 06:15 - 2014-07-14 06:08 - 00004361 _____ () C:\Windows\IE9_main.log 2014-07-14 06:14 - 2014-07-14 06:14 - 17773056 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 12268544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 10884096 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 09702400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 03695416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2014-07-14 06:14 - 2014-07-14 06:14 - 03695416 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2014-07-14 06:14 - 2014-07-14 06:14 - 02382848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-07-14 06:14 - 2014-07-14 06:14 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-07-14 06:14 - 2014-07-14 06:14 - 02303488 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 02136064 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01797632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01785344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01492992 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-07-14 06:14 - 2014-07-14 06:14 - 01427456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-07-14 06:14 - 2014-07-14 06:14 - 01389056 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01344000 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01126912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01102336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00818176 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00716800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00697344 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00603648 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00580608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00534528 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00452608 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00448512 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-07-14 06:14 - 2014-07-14 06:14 - 00434176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00420864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00403248 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2014-07-14 06:14 - 2014-07-14 06:14 - 00353792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00353584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00282112 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\ieaksie.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00249344 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00248320 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00236544 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00231936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00227840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieaksie.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00203776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00176640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieakui.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\ieakui.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00160256 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00160256 _____ (Microsoft Corporation) C:\Windows\system32\ieakeng.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00150528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00130560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieakeng.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00123392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00118784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\admparse.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00101888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\admparse.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00078848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2014-07-14 06:14 - 2014-07-14 06:14 - 00074752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00074752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ie4uinit.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00072704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00065024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00063488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2014-07-14 06:14 - 2014-07-14 06:14 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00054272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-07-14 04:55 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache 2014-07-14 04:34 - 2009-07-14 07:38 - 00025600 ___SH () C:\Windows\system32\config\BCD-Template.LOG 2014-07-14 04:34 - 2009-07-14 07:32 - 00028672 _____ () C:\Windows\system32\config\BCD-Template 2014-07-14 04:33 - 2014-07-14 04:33 - 00262144 _____ () C:\Windows\system32\config\userdiff 2014-07-14 04:10 - 2014-07-14 04:06 - 00000000 ___HD () C:\$INPLACE.~TR 2014-07-14 00:54 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files\Windows Sidebar 2014-07-14 00:54 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files (x86)\Windows Sidebar 2014-07-14 00:54 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files (x86)\Windows Photo Viewer 2014-07-14 00:53 - 2011-05-16 15:57 - 00000000 ____D () C:\Windows\SysWOW64\XPSViewer 2014-07-14 00:53 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\SysWOW64\winrm 2014-07-14 00:53 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\SysWOW64\WCN 2014-07-14 00:53 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\SysWOW64\sysprep 2014-07-14 00:53 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\SysWOW64\slmgr 2014-07-14 00:53 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\SysWOW64\Printing_Admin_Scripts 2014-07-14 00:53 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files\Windows Photo Viewer 2014-07-14 00:53 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\MUI 2014-07-14 00:53 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\migwiz 2014-07-14 00:52 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\system32\winrm 2014-07-14 00:52 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\system32\WCN 2014-07-14 00:52 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\system32\slmgr 2014-07-14 00:52 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\system32\Printing_Admin_Scripts 2014-07-14 00:52 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\com 2014-07-14 00:52 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\sysprep 2014-07-14 00:52 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\Setup 2014-07-14 00:52 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\oobe 2014-07-14 00:52 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\MUI 2014-07-14 00:52 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\migwiz 2014-07-14 00:52 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\IME 2014-07-14 00:50 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\com 2014-07-14 00:49 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\servicing 2014-07-14 00:48 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\tr-TR 2014-07-14 00:48 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\tr-TR 2014-07-14 00:45 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\Setup 2014-07-14 00:45 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\oobe 2014-07-14 00:40 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\sl-SI 2014-07-14 00:39 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\sl-SI 2014-07-14 00:09 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files\DVD Maker 2014-07-13 23:55 - 2013-12-16 18:36 - 00000000 ___RD () C:\Users\Schrägle\Desktop\Stefan 2014-07-13 23:54 - 2014-07-13 23:54 - 09580848 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-07-13 23:53 - 2009-07-14 07:09 - 00000000 ____D () C:\Windows\System32\Tasks\WPD 2014-07-13 23:50 - 2014-07-14 04:35 - 00000000 ____D () C:\Windows\Panther 2014-07-13 23:50 - 2014-07-13 23:50 - 00000020 ___SH () C:\Users\Schrägle\ntuser.ini 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Programme 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Favoriten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Dokumente und Einstellungen 2014-07-13 23:50 - 2014-07-13 19:12 - 00000000 ____D () C:\Users\Schrägle 2014-07-13 23:50 - 2012-08-05 11:19 - 00000000 __SHD () C:\Recovery 2014-07-13 23:50 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Public\Libraries 2014-07-13 23:50 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Default 2014-07-13 23:50 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\Recovery 2014-07-13 23:50 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Windows NT 2014-07-13 20:25 - 2009-07-14 07:32 - 00000000 ____D () C:\Windows\system32\restore 2014-07-13 20:19 - 2010-11-21 05:47 - 00011344 _____ () C:\Windows\PFRO.log 2014-07-13 20:18 - 2012-09-03 19:29 - 00699056 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-07-13 20:18 - 2012-09-03 19:29 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-07-13 20:18 - 2011-12-01 23:26 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-07-13 20:18 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\Registration 2014-07-13 19:54 - 2014-07-13 19:54 - 00022960 _____ () C:\Windows\system32\emptyregdb.dat 2014-07-13 19:52 - 2012-08-06 16:45 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2014-07-13 19:51 - 2014-07-14 04:14 - 00000000 ___HD () C:\$WINDOWS.~Q 2014-07-13 19:51 - 2014-07-13 17:40 - 00006161 _____ () C:\Windows\comsetup.log 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerRecover 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Macromedia 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerRecover 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Macromedia 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help 2014-07-13 19:44 - 2009-07-14 06:57 - 00001547 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2014-07-13 19:44 - 2009-07-14 06:46 - 00005157 _____ () C:\Windows\DtcInstall.log 2014-07-13 19:44 - 2009-07-14 05:20 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-07-13 19:44 - 2009-07-14 05:20 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-07-13 19:44 - 2009-07-14 05:20 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-07-13 19:44 - 2009-07-14 05:20 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-07-13 19:42 - 2014-03-03 19:27 - 00000000 ____D () C:\Users\Schrägle\Documents\OneNote-Notizbücher 2014-07-13 19:42 - 2013-11-09 14:17 - 00000000 ____D () C:\Users\Schrägle\Documents\Battlefield Play4Free 2014-07-13 19:42 - 2013-02-15 21:06 - 00000000 ____D () C:\Users\Schrägle\Documents\Freemake 2014-07-13 19:42 - 2012-12-24 21:43 - 00000000 ____D () C:\Users\Schrägle\Documents\My Games 2014-07-13 19:42 - 2012-12-23 11:16 - 00000000 ____D () C:\Users\Schrägle\Documents\PhoenixRC 2014-07-13 19:42 - 2012-12-02 16:29 - 00000000 ____D () C:\Users\Schrägle\Documents\BFBC2 2014-07-13 19:42 - 2012-08-13 10:49 - 00000000 ____D () C:\Users\Schrägle\Tracing 2014-07-13 19:42 - 2012-08-05 11:11 - 00000000 __RHD () C:\Users\Schrägle\Finger weg sonst Finger ab 2014-07-13 19:41 - 2014-06-22 21:58 - 00000000 ____D () C:\Users\Schrägle\Desktop\Stefan Referat VW 2014-07-13 19:40 - 2014-03-12 21:02 - 00000000 ____D () C:\Users\Schrägle\Desktop\Fotos 2014-07-13 19:40 - 2013-06-08 14:27 - 00000000 ____D () C:\Users\Schrägle\Desktop\PV Anlage - UST FA 2014-07-13 19:40 - 2012-11-11 19:53 - 00000000 ____D () C:\Users\Schrägle\Desktop\Klaudia 2014-07-13 19:40 - 2012-09-06 16:30 - 00000000 ____D () C:\Users\Schrägle\Desktop\PV Anlage 2014-07-13 19:40 - 2012-08-05 11:11 - 00000000 ___RD () C:\Users\Schrägle\Desktop\Rainer 2014-07-13 19:40 - 2012-08-05 11:11 - 00000000 ____D () C:\Users\Schrägle\Desktop\PhoenixRC 2014-07-13 19:40 - 2012-08-05 11:11 - 00000000 ____D () C:\Users\Schrägle\Desktop\Musik W 2014-07-13 19:40 - 2012-08-05 11:11 - 00000000 ____D () C:\Users\Schrägle\Desktop\Fäustle 2014-07-13 19:39 - 2014-07-13 16:03 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\AVG2014 2014-07-13 19:39 - 2014-07-13 15:56 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Win System 2014-07-13 19:39 - 2014-07-13 15:56 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\VOPackage 2014-07-13 19:39 - 2014-07-13 15:56 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage 2014-07-13 19:39 - 2014-07-13 15:55 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Security Systems 2014-07-13 19:39 - 2014-06-13 18:17 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\FileZilla 2014-07-13 19:39 - 2014-05-05 09:44 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\thriXXX 2014-07-13 19:39 - 2014-04-13 09:55 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\FreeCAD 2014-07-13 19:39 - 2014-04-12 13:14 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LibreCAD 2014-07-13 19:39 - 2014-01-29 18:58 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\ColorCop 2014-07-13 19:39 - 2013-12-16 18:55 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\SearchProtect 2014-07-13 19:39 - 2013-12-16 18:54 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Uniblue 2014-07-13 19:39 - 2013-12-16 18:21 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\TuneUp Software 2014-07-13 19:39 - 2013-12-16 18:18 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Softonic 2014-07-13 19:39 - 2013-12-16 18:18 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\DVDVideoSoft 2014-07-13 19:39 - 2013-10-05 17:36 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\InstallShield 2014-07-13 19:39 - 2013-08-07 16:26 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Avira 2014-07-13 19:39 - 2013-05-09 12:47 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\player 2014-07-13 19:39 - 2013-04-03 16:16 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wajam 2014-07-13 19:39 - 2013-04-03 16:16 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Wajam 2014-07-13 19:39 - 2013-04-03 16:13 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FilesFrog Update Checker 2014-07-13 19:39 - 2013-02-28 16:42 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VideoPerformer 2014-07-13 19:39 - 2013-02-28 16:42 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Delta 2014-07-13 19:39 - 2013-02-15 21:06 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake 2014-07-13 19:39 - 2013-01-04 11:49 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\OpenCandy 2014-07-13 19:39 - 2013-01-04 11:49 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\DAEMON Tools Lite 2014-07-13 19:39 - 2012-12-25 15:28 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\WinRAR 2014-07-13 19:39 - 2012-12-25 15:27 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Driver Pro 2014-07-13 19:39 - 2012-12-25 15:08 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Optimizer Pro 2014-07-13 19:39 - 2012-12-21 17:04 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Unigraphics Solutions 2014-07-13 19:39 - 2012-12-16 12:31 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Unity 2014-07-13 19:39 - 2012-12-16 12:19 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Unity 2014-07-13 19:39 - 2012-12-02 16:29 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\PunkBuster 2014-07-13 19:39 - 2012-10-14 18:36 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Video Downloader 2014-07-13 19:39 - 2012-10-02 23:26 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Babylon 2014-07-13 19:39 - 2012-09-09 10:36 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Mozilla 2014-07-13 19:39 - 2012-08-29 09:01 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\XMedia Recode 2014-07-13 19:39 - 2012-08-17 09:54 - 00000000 ___HD () C:\Users\Schrägle\Desktop\Flugbilder 2014-07-13 19:39 - 2012-08-11 17:09 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\CyberLink 2014-07-13 19:39 - 2012-08-06 16:46 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\SoftGrid Client 2014-07-13 19:39 - 2012-08-06 16:46 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\SoftGrid Client 2014-07-13 19:39 - 2012-08-05 14:04 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Windows Live 2014-07-13 19:39 - 2012-08-05 11:24 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerRecover 2014-07-13 19:39 - 2012-08-05 11:24 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Macromedia 2014-07-13 19:39 - 2012-08-05 11:24 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Intel Corporation 2014-07-13 19:39 - 2012-08-05 11:24 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\ATI 2014-07-13 19:39 - 2012-08-05 11:24 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\VirtualStore 2014-07-13 19:39 - 2012-08-05 11:24 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Power2Go 2014-07-13 19:39 - 2012-08-05 11:09 - 00000000 ____D () C:\Users\Schrägle\Desktop\Drucker 2014-07-13 19:39 - 2012-08-05 10:59 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\HpUpdate 2014-07-13 19:39 - 2012-08-05 10:47 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Windows Live Writer 2014-07-13 19:39 - 2012-08-05 10:47 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Windows Live Writer 2014-07-13 19:39 - 2012-08-05 10:45 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Adobe 2014-07-13 19:39 - 2012-08-05 10:44 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Google 2014-07-13 19:38 - 2012-09-09 10:36 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Mozilla 2014-07-13 19:38 - 2012-08-05 10:46 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Microsoft Help 2014-07-13 19:37 - 2014-07-13 15:54 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\MFAData 2014-07-13 19:37 - 2014-04-12 13:15 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\LibreCAD 2014-07-13 19:37 - 2012-09-25 18:13 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Macromedia 2014-07-13 19:37 - 2012-08-05 10:56 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\HP 2014-07-13 19:37 - 2012-08-05 10:44 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Google 2014-07-13 19:36 - 2014-07-13 15:54 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Avg2014 2014-07-13 19:36 - 2014-06-27 19:56 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\AskPartnerNetwork 2014-07-13 19:36 - 2013-04-03 16:16 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\CRE 2014-07-13 19:36 - 2013-02-25 16:09 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Facebook 2014-07-13 19:36 - 2013-01-04 12:19 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\AVG Secure Search 2014-07-13 19:36 - 2012-09-01 15:14 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\APN 2014-07-13 19:36 - 2012-08-07 19:18 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Adobe 2014-07-13 19:36 - 2012-08-05 11:24 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\ATI 2014-07-13 19:27 - 2014-06-23 19:49 - 00000000 ____D () C:\Windows\SysWOW64\mjcm 2014-07-13 19:27 - 2014-06-23 19:49 - 00000000 ____D () C:\Windows\system32\tprb 2014-07-13 19:27 - 2014-04-12 13:20 - 00000000 ____D () C:\Windows\SysWOW64\jmdp 2014-07-13 19:27 - 2014-04-12 13:20 - 00000000 ____D () C:\Windows\system32\ljkb 2014-07-13 19:27 - 2014-01-16 17:31 - 00000000 ____D () C:\Windows\SysWOW64\SearchProtect 2014-07-13 19:27 - 2013-08-15 22:42 - 00000000 ____D () C:\Windows\system32\MRT 2014-07-13 19:27 - 2013-04-10 17:02 - 00000000 ____D () C:\Windows\SysWOW64\ARFC 2014-07-13 19:27 - 2012-10-14 18:34 - 00000000 ____D () C:\Windows\SysWOW64\WNLT 2014-07-13 19:27 - 2012-08-13 10:46 - 00000000 ____D () C:\Windows\tr 2014-07-13 19:27 - 2012-08-13 10:46 - 00000000 ____D () C:\Windows\sl 2014-07-13 19:27 - 2012-08-13 10:46 - 00000000 ____D () C:\Windows\pl 2014-07-13 19:27 - 2012-08-13 10:46 - 00000000 ____D () C:\Windows\nl 2014-07-13 19:27 - 2011-10-14 14:15 - 00000000 ____D () C:\Windows\system32\Macromed 2014-07-13 19:27 - 2011-07-18 23:12 - 00000000 ____D () C:\Windows\SysWOW64\Macromed 2014-07-13 19:27 - 2011-04-12 10:28 - 00000000 ____D () C:\Windows\ShellNew 2014-07-13 19:27 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\zh-HK 2014-07-13 19:27 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\zh-HK 2014-07-13 19:27 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF 2014-07-13 19:26 - 2012-08-13 10:46 - 00000000 ____D () C:\Windows\it 2014-07-13 19:26 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\LiveKernelReports 2014-07-13 19:25 - 2014-07-13 16:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2014-07-13 19:25 - 2014-07-13 15:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2014-07-13 19:25 - 2014-06-13 18:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Programm Verknüpfung Landjugend 2014-07-13 19:25 - 2014-04-12 13:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeCAD 0.13 2014-07-13 19:25 - 2014-02-03 19:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth 2014-07-13 19:25 - 2014-01-29 18:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Color Cop 2014-07-13 19:25 - 2013-12-16 18:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uniblue 2014-07-13 19:25 - 2013-12-16 18:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014 2014-07-13 19:25 - 2013-12-16 18:21 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} 2014-07-13 19:25 - 2013-12-16 18:21 - 00000000 ____D () C:\ProgramData\TuneUp Software 2014-07-13 19:25 - 2013-12-16 18:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft 2014-07-13 19:25 - 2013-11-09 14:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA Games 2014-07-13 19:25 - 2013-10-05 17:36 - 00000000 ____D () C:\Users\Public\Documents\Casio 2014-07-13 19:25 - 2013-10-05 17:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dynamic Photo Manager 2014-07-13 19:25 - 2013-06-02 12:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2014-07-13 19:25 - 2013-05-09 12:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAFPlayer 2014-07-13 19:25 - 2013-04-03 16:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip 2014-07-13 19:25 - 2013-03-14 09:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2014-07-13 19:25 - 2013-02-28 16:41 - 00000000 ____D () C:\ProgramData\IBUpdaterService 2014-07-13 19:25 - 2013-02-15 21:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake 2014-07-13 19:25 - 2013-02-15 21:06 - 00000000 ____D () C:\ProgramData\Freemake 2014-07-13 19:25 - 2013-02-15 21:06 - 00000000 ____D () C:\ProgramData\DivX 2014-07-13 19:25 - 2013-01-04 11:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite 2014-07-13 19:25 - 2013-01-04 11:48 - 00000000 ____D () C:\ProgramData\DAEMON Tools Lite 2014-07-13 19:25 - 2012-12-31 19:17 - 00000000 ____D () C:\ProgramData\Visan 2014-07-13 19:25 - 2012-12-31 19:17 - 00000000 ____D () C:\ProgramData\HP Photo Creations 2014-07-13 19:25 - 2012-12-27 13:05 - 00000000 ____D () C:\ProgramData\Wincert 2014-07-13 19:25 - 2012-12-27 13:05 - 00000000 ____D () C:\ProgramData\boost_interprocess 2014-07-13 19:25 - 2012-12-25 15:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Pro 2014-07-13 19:25 - 2012-12-25 15:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro 2014-07-13 19:25 - 2012-12-23 11:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhoenixRC 2014-07-13 19:25 - 2012-12-21 16:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Solid Edge V20 2014-07-13 19:25 - 2012-09-09 10:36 - 00000000 ____D () C:\ProgramData\Mozilla 2014-07-13 19:25 - 2012-09-03 19:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Live Add-in 2014-07-13 19:25 - 2012-08-13 10:48 - 00000000 ____D () C:\Windows\de 2014-07-13 19:25 - 2012-08-13 10:47 - 00000000 ____D () C:\Windows\hu 2014-07-13 19:25 - 2012-08-13 10:47 - 00000000 ____D () C:\Windows\fr 2014-07-13 19:25 - 2012-08-13 10:47 - 00000000 ____D () C:\Windows\es 2014-07-13 19:25 - 2012-08-13 10:47 - 00000000 ____D () C:\Windows\en 2014-07-13 19:25 - 2012-08-13 10:47 - 00000000 ____D () C:\Windows\el 2014-07-13 19:25 - 2012-08-13 10:47 - 00000000 ____D () C:\Windows\da 2014-07-13 19:25 - 2012-08-07 16:01 - 00000000 ____D () C:\ProgramData\VirtualizedApplications 2014-07-13 19:25 - 2012-08-06 16:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Starter (Deutsch) 2014-07-13 19:25 - 2012-08-05 11:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Memeo 2014-07-13 19:25 - 2012-08-05 11:23 - 00000000 ____D () C:\ProgramData\Kaspersky Rescue Disk 10 2014-07-13 19:25 - 2012-08-05 11:21 - 00000000 ____D () C:\ProgramData\TvdPersonal 2014-07-13 19:25 - 2012-08-05 11:21 - 00000000 ____D () C:\ProgramData\Partner 2014-07-13 19:25 - 2012-08-05 11:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\watchmi 2014-07-13 19:25 - 2012-08-05 11:21 - 00000000 ____D () C:\ProgramData\Google 2014-07-13 19:25 - 2012-08-05 10:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP 2014-07-13 19:25 - 2012-08-05 10:57 - 00000000 ____D () C:\ProgramData\HP 2014-07-13 19:25 - 2012-08-05 10:46 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-07-13 19:25 - 2012-02-20 17:40 - 00000000 ____D () C:\ProgramData\Sun 2014-07-13 19:25 - 2012-02-16 03:17 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Power2Go 2014-07-13 19:25 - 2012-02-16 03:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerDVD Copy 2014-07-13 19:25 - 2012-02-16 03:16 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LabelPrint 2014-07-13 19:25 - 2012-02-16 03:15 - 00000000 ____D () C:\ProgramData\CyberLink 2014-07-13 19:25 - 2012-02-16 03:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center 2014-07-13 19:25 - 2012-02-16 03:06 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel 2014-07-13 19:25 - 2012-02-15 18:25 - 00000000 ____D () C:\Users\Public\CyberLink 2014-07-13 19:25 - 2011-07-18 23:22 - 00000000 ____D () C:\ProgramData\Temp 2014-07-13 19:25 - 2011-07-18 22:56 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live 2014-07-13 19:25 - 2011-04-12 10:28 - 00000000 ___RD () C:\Users\Public\Recorded TV 2014-07-13 19:24 - 2014-07-13 16:00 - 00000000 ____D () C:\ProgramData\AVG2014 2014-07-13 19:24 - 2014-05-05 09:44 - 00000000 ____D () C:\Program Files (x86)\thriXXX 2014-07-13 19:24 - 2014-04-27 14:19 - 00000000 ____D () C:\ProgramData\AVG Secure Search 2014-07-13 19:24 - 2013-12-16 18:54 - 00000000 ____D () C:\Program Files (x86)\Uniblue 2014-07-13 19:24 - 2013-12-16 18:21 - 00000000 ____D () C:\Program Files (x86)\TuneUp Utilities 2014 2014-07-13 19:24 - 2013-08-07 16:25 - 00000000 ____D () C:\ProgramData\AskPartnerNetwork 2014-07-13 19:24 - 2013-08-07 16:25 - 00000000 ____D () C:\ProgramData\APN 2014-07-13 19:24 - 2013-06-16 20:13 - 00000000 ____D () C:\ProgramData\Ask 2014-07-13 19:24 - 2013-05-09 12:47 - 00000000 ____D () C:\Program Files (x86)\Tuguu SL 2014-07-13 19:24 - 2013-04-03 16:16 - 00000000 ____D () C:\Program Files (x86)\Wajam 2014-07-13 19:24 - 2013-02-28 16:42 - 00000000 ____D () C:\Program Files (x86)\VideoPerformer 2014-07-13 19:24 - 2013-01-04 12:10 - 00000000 ____D () C:\Program Files (x86)\SweetIM 2014-07-13 19:24 - 2012-12-21 15:21 - 00000000 ____D () C:\Program Files (x86)\Solid Edge V20 2014-07-13 19:24 - 2012-10-14 18:35 - 00000000 ____D () C:\Program Files (x86)\vGrabber-software 2014-07-13 19:24 - 2012-09-03 19:35 - 00000000 ____D () C:\ProgramData\Avira 2014-07-13 19:24 - 2012-08-05 11:21 - 00000000 ____D () C:\Program Files (x86)\watchmi 2014-07-13 19:24 - 2012-02-16 03:11 - 00000000 ____D () C:\ProgramData\ATI 2014-07-13 19:24 - 2011-07-18 23:06 - 00000000 ____D () C:\ProgramData\Adobe 2014-07-13 19:24 - 2011-07-18 22:51 - 00000000 ____D () C:\Program Files (x86)\Windows Live 2014-07-13 19:23 - 2013-12-16 18:55 - 00000000 ____D () C:\Program Files (x86)\SearchProtect 2014-07-13 19:23 - 2013-12-16 18:18 - 00000000 ____D () C:\Program Files (x86)\Softonic 2014-07-13 19:23 - 2013-04-03 16:13 - 00000000 ____D () C:\Program Files (x86)\PricePeep 2014-07-13 19:23 - 2012-12-27 13:05 - 00000000 ____D () C:\Program Files (x86)\Search Results Toolbar 2014-07-13 19:23 - 2012-12-23 11:16 - 00000000 ____D () C:\Program Files (x86)\PhoenixRC 2014-07-13 19:23 - 2012-02-16 03:12 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-07-13 19:22 - 2013-06-02 12:28 - 00000000 ____D () C:\Program Files (x86)\Microsoft Works 2014-07-13 19:22 - 2013-06-02 12:28 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 2014-07-13 19:22 - 2013-06-02 12:25 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 8 2014-07-13 19:22 - 2013-03-14 09:04 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight 2014-07-13 19:22 - 2013-01-06 17:36 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-07-13 19:22 - 2012-12-25 15:08 - 00000000 ____D () C:\Program Files (x86)\Optimizer Pro 2014-07-13 19:22 - 2012-12-16 18:22 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-07-13 19:22 - 2012-10-14 18:35 - 00000000 ____D () C:\Program Files (x86)\Perion 2014-07-13 19:22 - 2011-07-18 22:55 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2014-07-13 19:22 - 2011-07-18 22:40 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office 2014-07-13 19:22 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files (x86)\MSBuild 2014-07-13 19:21 - 2014-04-12 13:19 - 00000000 ____D () C:\Program Files (x86)\FreeCAD0.13 2014-07-13 19:21 - 2014-04-12 13:14 - 00000000 ____D () C:\Program Files (x86)\LibreCAD 2014-07-13 19:21 - 2014-02-11 20:59 - 00000000 ____D () C:\Program Files (x86)\Microsoft Expression 2014-07-13 19:21 - 2013-06-18 20:03 - 00000000 ____D () C:\Program Files (x86)\Java 2014-07-13 19:21 - 2013-02-15 21:06 - 00000000 ____D () C:\Program Files (x86)\Freemake 2014-07-13 19:21 - 2013-01-15 18:58 - 00000000 ____D () C:\Program Files (x86)\HP 2014-07-13 19:21 - 2012-12-31 19:17 - 00000000 ____D () C:\Program Files (x86)\HP Photo Creations 2014-07-13 19:21 - 2012-08-06 16:45 - 00000000 ____D () C:\Program Files (x86)\Microsoft Application Virtualization Client 2014-07-13 19:21 - 2012-08-05 11:23 - 00000000 ____D () C:\Program Files (x86)\Memeo 2014-07-13 19:21 - 2012-08-05 11:20 - 00000000 ____D () C:\Program Files (x86)\Google 2014-07-13 19:21 - 2012-08-05 10:59 - 00000000 ____D () C:\Program Files (x86)\Hewlett-Packard 2014-07-13 19:21 - 2012-02-16 03:02 - 00000000 ____D () C:\Program Files (x86)\Intel 2014-07-13 19:21 - 2011-07-18 23:23 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-07-13 19:20 - 2014-06-13 18:16 - 00000000 ____D () C:\Program Files (x86)\FileZilla FTP Client 2014-07-13 19:20 - 2013-12-16 18:18 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft 2014-07-13 19:20 - 2013-04-03 16:13 - 00000000 ____D () C:\Program Files (x86)\FilesFrog Update Checker 2014-07-13 19:20 - 2012-12-02 16:21 - 00000000 ____D () C:\Program Files (x86)\EA Games 2014-07-13 19:19 - 2013-02-28 16:42 - 00000000 ____D () C:\Program Files (x86)\Delta 2014-07-13 19:19 - 2013-01-04 11:49 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite 2014-07-13 19:19 - 2012-12-25 15:27 - 00000000 ____D () C:\Program Files (x86)\Driver Pro 2014-07-13 19:19 - 2011-07-18 23:23 - 00000000 ____D () C:\Program Files (x86)\CyberLink 2014-07-13 19:18 - 2014-01-29 18:57 - 00000000 ____D () C:\Program Files (x86)\Color_Cop 2014-07-13 19:18 - 2013-10-05 17:36 - 00000000 ____D () C:\Program Files (x86)\Casio 2014-07-13 19:18 - 2013-08-29 14:00 - 00000000 ____D () C:\Program Files (x86)\bLyrics 2014-07-13 19:18 - 2013-08-07 16:24 - 00000000 ____D () C:\Program Files (x86)\Avira 2014-07-13 19:18 - 2013-01-04 12:19 - 00000000 ____D () C:\Program Files (x86)\AVG Secure Search 2014-07-13 19:17 - 2014-07-13 15:59 - 00000000 ____D () C:\Program Files (x86)\AVG 2014-07-13 19:17 - 2013-08-07 16:25 - 00000000 ____D () C:\Program Files (x86)\AskPartnerNetwork 2014-07-13 19:17 - 2013-06-26 22:03 - 00000000 ____D () C:\Program Files\Java 2014-07-13 19:17 - 2013-04-03 16:13 - 00000000 ____D () C:\Program Files (x86)\7-Zip 2014-07-13 19:17 - 2013-03-14 09:04 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-07-13 19:17 - 2013-01-06 17:04 - 00000000 ____D () C:\Program Files\CCleaner 2014-07-13 19:17 - 2013-01-04 13:05 - 00000000 ____D () C:\Program Files\TrueCrypt 2014-07-13 19:17 - 2012-10-14 18:34 - 00000000 ____D () C:\Program Files\IB Updater 2014-07-13 19:17 - 2012-08-05 11:21 - 00000000 ____D () C:\Program Files\PlayReady 2014-07-13 19:17 - 2012-08-05 10:56 - 00000000 ____D () C:\Program Files\HP 2014-07-13 19:17 - 2012-08-05 10:47 - 00000000 ____D () C:\Program Files\Microsoft Office 2014-07-13 19:17 - 2012-02-16 03:15 - 00000000 ____D () C:\Program Files (x86)\ASM104xUSB3 2014-07-13 19:17 - 2012-02-16 03:10 - 00000000 ____D () C:\Program Files (x86)\AMD APP 2014-07-13 19:17 - 2012-02-16 03:09 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies 2014-07-13 19:17 - 2012-02-16 03:09 - 00000000 ____D () C:\Program Files\ATI Technologies 2014-07-13 19:17 - 2012-02-16 03:09 - 00000000 ____D () C:\Program Files\ATI 2014-07-13 19:17 - 2012-02-16 03:09 - 00000000 ____D () C:\Program Files (x86)\ATI Technologies 2014-07-13 19:17 - 2011-07-18 23:06 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-07-13 19:17 - 2011-07-18 22:49 - 00000000 ____D () C:\Program Files\Windows Live 2014-07-13 19:17 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Vorlagen 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Startmenü 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Netzwerkumgebung 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Lokale Einstellungen 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Eigene Dateien 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Druckumgebung 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Documents\Eigene Musik 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Documents\Eigene Bilder 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\AppData\Local\Verlauf 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\AppData\Local\Anwendungsdaten 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Anwendungsdaten 2014-07-13 19:11 - 2014-07-13 19:11 - 00001345 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk 2014-07-13 19:11 - 2014-07-13 19:11 - 00001326 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk 2014-07-13 19:11 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2014-07-13 19:11 - 2009-07-14 05:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2014-07-13 19:06 - 2014-07-13 19:06 - 00001355 _____ () C:\Windows\TSSysprep.log 2014-07-13 19:03 - 2014-07-13 18:55 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-07-13 18:55 - 2014-07-13 18:55 - 00000000 ____D () C:\Program Files\Realtek 2014-07-13 18:54 - 2014-07-13 18:54 - 00000000 _____ () C:\Windows\ativpsrm.bin 2014-07-13 18:50 - 2014-07-13 18:50 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf 2014-07-13 18:01 - 2012-08-05 11:19 - 01212404 _____ () C:\Windows\WindowsUpdate (1).log 2014-07-13 17:26 - 2014-07-13 17:26 - 00003302 _____ () C:\Users\Schrägle\Desktop\Windows Compatibility Report.htm 2014-07-13 17:23 - 2014-07-13 17:23 - 00013662 _____ () C:\Windows\diagwrn.xml 2014-07-13 17:23 - 2014-07-13 17:23 - 00001890 _____ () C:\Windows\diagerr.xml 2014-07-13 16:02 - 2014-07-13 16:02 - 00000985 _____ () C:\Users\Public\Desktop\AVG 2014.lnk 2014-07-13 16:00 - 2014-07-13 16:00 - 00000000 ___HD () C:\$AVG 2014-07-13 15:55 - 2014-07-13 15:55 - 00000142 _____ () C:\Users\Schrägle\AppData\Roaming\tmp_register.bat 2014-07-13 15:40 - 2013-08-07 16:24 - 00002074 _____ () C:\Users\Public\Desktop\Avira Control Center.lnk 2014-07-13 11:14 - 2014-07-13 11:14 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{C887F452-5450-42AE-92C3-EAC911EDB34C} 2014-07-10 17:33 - 2014-07-10 17:33 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{2E7488C6-96C2-45A0-83FA-4AA877390050} 2014-07-09 20:30 - 2014-07-09 20:30 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{042D9681-1CB0-45D7-9366-084F768DC847} 2014-07-07 18:53 - 2014-07-07 18:53 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{1071BD73-6D66-4747-B84F-C3F980B69617} 2014-07-07 18:53 - 2014-07-07 18:53 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{0E5B554B-2C84-4A29-BBCF-8CF9312A023F} 2014-07-05 11:04 - 2014-07-05 11:03 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{DBB75948-902D-4024-B588-07D9CC33167F} 2014-07-03 18:11 - 2013-08-07 16:24 - 00117712 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2014-07-02 20:37 - 2014-07-02 20:37 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{0ED52F5C-7E76-48D3-B440-1B66A2247749} 2014-07-02 13:06 - 2013-08-07 16:24 - 00042040 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2014-06-30 04:09 - 2014-07-14 03:27 - 00519168 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-06-30 04:04 - 2014-07-14 03:27 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-06-29 16:57 - 2014-06-29 16:57 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{ECC4DA04-C8A5-4673-9625-EAB427986779} 2014-06-29 16:57 - 2014-06-29 16:57 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{C9E1C0EE-9103-4424-8418-78EADDD7D964} 2014-06-29 09:03 - 2014-06-29 09:03 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{A84A427F-8D52-45C8-AE07-D49BAA473727} 2014-06-28 17:51 - 2014-06-28 17:51 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{DC6B7C0A-397F-420A-925E-9E651BBF7836} 2014-06-25 20:16 - 2014-06-25 20:16 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cf90a18dd4ef68.job 2014-06-25 16:39 - 2014-06-25 16:39 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{DE3AADE9-90F8-4435-8DBF-C09011FD9CCC} 2014-06-24 16:15 - 2014-06-25 19:50 - 02601776 _____ () C:\Windows\system32\dmwu.exe 2014-06-24 16:11 - 2012-10-14 18:34 - 00033792 _____ (IncrediMail, Ltd.) C:\Windows\system32\ImHttpComm.dll 2014-06-24 15:09 - 2011-01-08 00:02 - 00829264 _____ (Microsoft Corporation) C:\Windows\system32\msvcr100.dll 2014-06-24 15:09 - 2011-01-08 00:02 - 00608080 _____ (Microsoft Corporation) C:\Windows\system32\msvcp100.dll 2014-06-22 22:00 - 2013-06-26 15:54 - 00003730 _____ () C:\Program Files (x86)\Mozilla Firefoxavg-secure-search.xml 2014-06-22 22:00 - 2013-01-04 12:19 - 00050464 _____ (AVG Technologies) C:\Windows\system32\Drivers\avgtpx64.sys 2014-06-22 20:20 - 2013-03-06 20:42 - 00901120 ___SH () C:\Users\Schrägle\Desktop\Thumbs.db 2014-06-21 19:58 - 2014-06-21 19:58 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{B33F55B0-EBE8-4679-942B-6AA96708E1A9} 2014-06-20 20:04 - 2014-06-20 20:03 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{9F69A0B2-809F-423F-8B77-E0501B392178} 2014-06-19 19:12 - 2014-06-19 19:12 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{C03CB42A-9AE4-418C-BA83-47CB7D12EC35} 2014-06-19 03:06 - 2014-07-09 15:51 - 00004096 ____N (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-06-19 02:41 - 2014-07-09 15:51 - 00083968 ____N (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-06-19 02:41 - 2014-07-09 15:51 - 00048640 ____N (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-06-19 02:24 - 2014-07-09 15:51 - 00111616 ____N (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-06-19 02:23 - 2014-07-09 15:51 - 00752640 ____N (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-06-19 02:14 - 2014-07-09 15:51 - 00940032 ____N (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-06-19 01:59 - 2014-07-09 15:51 - 00038400 ____N (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-06-19 01:36 - 2014-07-09 15:51 - 00051200 ____N (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-06-19 01:35 - 2014-07-09 15:51 - 00062464 ____N (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-06-19 01:27 - 2014-07-09 15:51 - 01249280 ____N (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-06-19 01:22 - 2014-07-09 15:51 - 00592896 ____N (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-06-19 01:06 - 2014-07-09 15:51 - 00032256 ____N (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-06-19 00:46 - 2014-07-09 15:51 - 01068032 ____N (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-06-18 19:05 - 2014-06-18 19:05 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{F10216B5-ABA2-4B1F-9443-7925EDA4C2CF} 2014-06-18 04:18 - 2014-07-14 03:27 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2014-06-18 03:51 - 2014-07-14 03:27 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe 2014-06-18 03:10 - 2014-07-14 03:27 - 03157504 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-06-17 16:21 - 2014-06-17 16:21 - 00235800 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgldx64.sys 2014-06-17 16:07 - 2014-06-17 16:07 - 00328984 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgloga.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00269080 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgtdia.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00242968 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsdrivera.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00190744 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsha.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00153368 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgdiska.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00123672 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgmfx64.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00031512 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgrkx64.sys 2014-06-16 20:34 - 2014-06-16 20:33 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{37940329-4D90-4DFC-A19F-5B13B85BC9B0} 2014-06-15 20:52 - 2014-06-15 20:52 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{A4B0555F-BEAA-4483-9C9C-05EDBCEE76F4} 2014-06-15 14:43 - 2014-06-15 14:43 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{DC99FA77-EBF8-4A51-8EB1-A12BD84B7E68} 2014-06-14 13:01 - 2014-06-14 13:01 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{83E2F3AA-BE9E-4DF7-9766-BF2BE4F8CF71} ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-07-13 21:04 ==================== End Of Log ============================Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 14-07-2014 Ran by Schrägle (administrator) on SCHRÄGLE-PC on 14-07-2014 18:35:17 Running from C:\Users\Schrägle\Downloads Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 9 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\System32\atiesrxx.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (APN LLC.) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgfws.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe (Freemake) C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgnsa.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgemca.exe () C:\Windows\System32\dmwu.exe (Memeo) C:\Program Files (x86)\Memeo\AutoBackup\MemeoBackgroundService.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe (AVG Secure Search) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.7\ToolbarUpdater.exe (Wajam) C:\Program Files (x86)\Wajam\Updater\WajamUpdater.exe () C:\Program Files (x86)\watchmi\TvdService.exe () C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.7\loggingserver.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Conduit) C:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe (Microsoft Corporation) C:\Windows\System32\LogonUI.exe (AMD) C:\Windows\System32\atieclxx.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesApp64.exe (Conduit) C:\Program Files (x86)\SearchProtect\SearchProtect\bin\cltmng.exe () C:\Windows\SysWOW64\mjcm\dnkt.exe () C:\Windows\System32\tprb\dnkt.exe (Conduit) C:\Program Files (x86)\SearchProtect\UI\bin\cltmngui.exe (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Facebook Inc.) C:\Users\Schrägle\AppData\Local\Facebook\Update\FacebookUpdate.exe (PC Utilities Pro) C:\Program Files (x86)\Optimizer Pro\OptProReminder.exe (APN) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe (Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe () C:\Program Files (x86)\AVG Secure Search\vprot.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe () C:\Program Files (x86)\watchmi\TvdTray.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (AVG Secure Search) C:\Program Files (x86)\Common Files\AVG Secure Search\ScriptHelperInstaller\18.1.7\ScriptHelper.exe (Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgui.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13374568 2011-11-29] (Realtek Semiconductor) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-12-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [ApnTBMon] => C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [1956760 2014-06-23] (APN) HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\AVG2014\avgui.exe [5179408 2014-06-17] (AVG Technologies CZ, s.r.o.) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [750160 2014-07-03] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [CLMLServer] => C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [107816 2010-08-04] (CyberLink) HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [49208 2010-03-12] (Hewlett-Packard) HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284440 2011-05-20] (Intel Corporation) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [343168 2011-10-14] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [vProt] => C:\Program Files (x86)\AVG Secure Search\vprot.exe [2571288 2014-06-22] () HKLM Group Policy restriction on software: C:\Program Files (x86)\Avira <====== ATTENTION HKLM Group Policy restriction on software: C:\Documents and Settings\All Users\Application Data\Avira <====== ATTENTION HKU\S-1-5-21-4074982664-1885493180-2041087550-1001\...\Run: [aplvbtj] => regsvr32.exe " HKU\S-1-5-21-4074982664-1885493180-2041087550-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3673728 2012-11-06] (DT Soft Ltd) HKU\S-1-5-21-4074982664-1885493180-2041087550-1001\...\Run: [Driver Pro] => C:\Program Files (x86)\Driver Pro\DPLauncher.exe [340512 2012-10-30] (PC Utilities Pro) HKU\S-1-5-21-4074982664-1885493180-2041087550-1001\...\Run: [Facebook Update] => C:\Users\Schrägle\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2013-02-25] (Facebook Inc.) HKU\S-1-5-21-4074982664-1885493180-2041087550-1001\...\Run: [Optimizer Pro] => C:\Program Files (x86)\Optimizer Pro\OptProLauncher.exe [81952 2012-10-21] (PC Utilities Pro) HKU\S-1-5-21-4074982664-1885493180-2041087550-1001\...\Run: [BrowserChoice] => C:\Windows\System32\browserchoice.exe [294912 2010-02-23] (Microsoft Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\watchmi tray.lnk ShortcutTarget: watchmi tray.lnk -> C:\Windows\Installer\{F0559C5E-7912-4391-B1A0-6B975F0E5064}\SHCT_TRAY_PROGRAMG_A10D8603999C4E9488776EF2533C58C9.exe (Acresso Software Inc.) Startup: C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk ShortcutTarget: OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk -> C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,bProtector Start Page = hxxp://www2.delta-search.com/?affID=120519&tt=gc_&babsrc=HP_ss&mntrId=204C8C89A5C0D106 HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com/ig/redirectdomain?brand=MDNF&bmod=MDNF HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://feed.helperbar.com/?publisher=OC&dpid=OC&co=DE&userid=3f43e60c-aae1-49e7-abf7-b555e1809f35&affid=111583&searchtype=ds&babsrc=lnkry&q={searchTerms} HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://feed.helperbar.com/?publisher=OC&dpid=OC&co=DE&userid=3f43e60c-aae1-49e7-abf7-b555e1809f35&affid=111583&searchtype=ds&babsrc=lnkry&q={searchTerms} HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.google.de/ HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.conduit.com/?ctid=CT3318001&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=2&UP=SPBDE4106A-6735-4786-94FB-2FDCB1B2DBB3&SSPV= URLSearchHook: HKCU - SearchHook Class - {D8278076-BC68-4484-9233-6E7F1628B56C} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\searchhook.dll (APN LLC.) StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&gct=ds&appid=484&systemid=406&apn_dtid=BND406&apn_ptnrs=AG6&o=APN10645&apn_uid=4169429992394568&q={searchTerms} SearchScopes: HKLM - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&gct=ds&appid=484&systemid=406&apn_dtid=BND406&apn_ptnrs=AG6&o=APN10645&apn_uid=4169429992394568&q={searchTerms} SearchScopes: HKLM-x32 - DefaultScope {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.helperbar.com/?publisher=OC&dpid=OC&co=DE&userid=3f43e60c-aae1-49e7-abf7-b555e1809f35&affid=113129&searchtype=ds&babsrc=lnkry&q={searchTerms} SearchScopes: HKLM-x32 - {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.helperbar.com/?publisher=OC&dpid=OC&co=DE&userid=3f43e60c-aae1-49e7-abf7-b555e1809f35&affid=113129&searchtype=ds&babsrc=lnkry&q={searchTerms} SearchScopes: HKLM-x32 - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&gct=ds&appid=484&systemid=406&apn_dtid=BND406&apn_ptnrs=AG6&o=APN10645&apn_uid=4169429992394568&q={searchTerms} SearchScopes: HKCU - DefaultScope {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = hxxp://search.conduit.com/Results.aspx?ctid=CT3318001&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=2&UP=SPBDE4106A-6735-4786-94FB-2FDCB1B2DBB3&q={searchTerms}&SSPV= SearchScopes: HKCU - bProtectorDefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} SearchScopes: HKCU - {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.helperbar.com/?publisher=OC&dpid=OC&co=DE&userid=3f43e60c-aae1-49e7-abf7-b555e1809f35&affid=111583&searchtype=ds&babsrc=lnkry&q={searchTerms} SearchScopes: HKCU - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = hxxp://search.conduit.com/Results.aspx?ctid=CT3318001&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=2&UP=SPBDE4106A-6735-4786-94FB-2FDCB1B2DBB3&q={searchTerms}&SSPV= SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://search.babylon.com/?q={searchTerms}&affID=120519&tt=gc_&babsrc=SP_ss_wls&mntrId=204C8C89A5C0D106 SearchScopes: HKCU - {47F90973-4CA2-4B04-9871-357401428EDA} URL = hxxp://search.softonic.com/MOY00621/tb_v1?q={searchTerms}&SearchSource=4&cc=&mi=204c3cc00000000000008c89a5c0d106&r=760 SearchScopes: HKCU - {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxp://isearch.avg.com/search?cid={6BC30EE0-2A17-4FE7-9CC0-06810D954378}&mid=76e695e090054cd5a827dd4aeb17cf8b-450ce608ba99f2e236ed78e1c9cefc30d79ded87&lang=en&ds=pl011&pr=sa&d=2013-01-04 11:19:12&v=14.2.0.1&pid=avg&sg=0&sap=dsp&q={searchTerms} SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&gct=ds&appid=484&systemid=406&apn_dtid=BND406&apn_ptnrs=AG6&o=APN10645&apn_uid=4169429992394568&q={searchTerms} SearchScopes: HKCU - {CD620077-47CB-4D83-82DD-10CE510566DA} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=AVR-3&o=APN10395&src=kw&q={searchTerms}&locale=de_DE&apn_ptnrs=^ABT&apn_dtid=^YYYYYY^YY^DE&apn_uid=b959b0e8-4ca6-444f-8433-8477125cfddd&apn_sauid=60B437BE-0B18-4D4C-AE46-115F562DE782 SearchScopes: HKCU - {CFF4DB9B-135F-47c0-9269-B4C6572FD61A} URL = hxxp://mystart.incredibar.com/?a=6OyR68zFGC&loc=skw&search={searchTerms}&i=26 BHO: Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport_x64.dll (APN LLC.) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: DataMngr - {C1ED9DA0-AFD0-4b90-AC6A-D3874F591014} - C:\Program Files (x86)\Search Results Toolbar\Datamngr\x64\BrowserConnection.dll (Bandoo Media Inc) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO: DVDVideoSoft IE Extension - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll (DVDVideoSoft Ltd.) BHO-x32: Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.) BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\18.1.7.644\AVG Secure Search_toolbar.dll (AVG Secure Search) BHO-x32: Wajam - {A7A6995D-6EE1-4FD1-A258-49395D5BF99C} - C:\Program Files (x86)\Wajam\IE\priam_bho.dll (Wajam) BHO-x32: delta Helper Object - {C1AF5FA5-852C-4C90-812E-A7F75E011D87} - C:\Program Files (x86)\Delta\delta\1.8.16.16\bh\delta.dll (Delta-search.com) BHO-x32: DataMngr - {C1ED9DA0-AFD0-4b90-AC6A-D3874F591014} - C:\Program Files (x86)\Search Results Toolbar\Datamngr\BrowserConnection.dll (Bandoo Media Inc) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Softonic Helper Object - {E87806B5-E908-45FD-AF5E-957D83E58E68} - C:\Program Files (x86)\Softonic\Softonic\1.8.21.14\bh\Softonic.dll (Softonic.com) BHO-x32: DVDVideoSoft IE Extension - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll (DVDVideoSoft Ltd.) BHO-x32: SweetPacks Browser Helper - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll (SweetIM Technologies Ltd.) BHO-x32: Search-Results Toolbar - {f34c9277-6577-4dff-b2d7-7d58092f272f} - C:\PROGRA~2\SEARCH~1\Datamngr\SRTOOL~1\searchresultsDx.dll No File BHO-x32: PricePeep - {FD6D90C0-E6EE-4BC6-B9F7-9ED319698007} - C:\Program Files (x86)\PricePeep\pricepeep.dll (PricePeep) Toolbar: HKLM - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport_x64.dll (APN LLC.) Toolbar: HKLM - No Name - {ae07101b-46d4-4a98-af68-0333ea26e113} - No File Toolbar: HKLM-x32 - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.) Toolbar: HKLM-x32 - Softonic Toolbar - {5018CFD2-804D-4C99-9F81-25EAEA2769DE} - C:\Program Files (x86)\Softonic\Softonic\1.8.21.14\SoftonicTlbr.dll (Softonic.com) Toolbar: HKLM-x32 - Delta Toolbar - {82E1477C-B154-48D3-9891-33D83C26BCD3} - C:\Program Files (x86)\Delta\delta\1.8.16.16\deltaTlbr.dll (Delta-search.com) Toolbar: HKLM-x32 - AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\18.1.7.644\AVG Secure Search_toolbar.dll (AVG Secure Search) Toolbar: HKLM-x32 - No Name - {ae07101b-46d4-4a98-af68-0333ea26e113} - No File Toolbar: HKLM-x32 - SweetPacks Toolbar for Internet Explorer - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll (SweetIM Technologies Ltd.) Toolbar: HKLM-x32 - Search-Results Toolbar - {f34c9277-6577-4dff-b2d7-7d58092f272f} - C:\PROGRA~2\SEARCH~1\Datamngr\SRTOOL~1\searchresultsDx.dll No File Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File Toolbar: HKCU - No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No File Toolbar: HKCU - No Name - {EEE6C35B-6118-11DC-9C72-001320C79847} - No File Toolbar: HKCU - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport_x64.dll (APN LLC.) DPF: HKLM-x32 {C8BC46C7-921C-4102-B67D-F1F7E65FB0BE} https://battlefield.play4free.com/static/updater/BP4FUpdater_1.0.96.0.cab Handler-x32: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\18.1.7\ViProtocol.dll (AVG Secure Search) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 192.168.2.1 FireFox: ======== FF ProfilePath: C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default FF DefaultSearchEngine: Ask Search FF SelectedSearchEngine: Conduit Search FF Homepage: hxxp://search.conduit.com/?ctid=CT3318001&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=2&UP=SPBDE4106A-6735-4786-94FB-2FDCB1B2DBB3&SSPV= FF Homepage: hxxp://search.conduit.com/?ctid=CT3318001&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=2&UP=SPBDE4106A-6735-4786-94FB-2FDCB1B2DBB3&SSPV= FF SearchEngineOrder.1: Ask Search FF NewTab: hxxp://search.conduit.com/?ctid=CT3318001&octid=EB_ORIGINAL_CTID&SearchSource=69&CUI=&SSPV=&Lay=1&UM=2&UP=SPBDE4106A-6735-4786-94FB-2FDCB1B2DBB3 FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll () FF Plugin: @java.com/DTPlugin,version=10.25.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll () FF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin - C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\18.1.7\\npsitesafety.dll No File FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @java.com/DTPlugin,version=10.21.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.21.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\Schrägle\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited) FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Schrägle\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF user.js: detected! => C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\user.js FF SearchPlugin: C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\searchplugins\ask-search.xml FF SearchPlugin: C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\searchplugins\babylon.xml FF SearchPlugin: C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\searchplugins\conduit-search.xml FF SearchPlugin: C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\searchplugins\delta.xml FF SearchPlugin: C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\searchplugins\MyStart Search.xml FF SearchPlugin: C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\searchplugins\softonic.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\avg-secure-search.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\Search_Results.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\avg-secure-search.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Battlefield Play4Free - C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\Extensions\battlefieldplay4free@ea.com [2013-05-30] FF Extension: Delta Toolbar - C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\Extensions\ffxtlbr@delta.com [2013-02-28] FF Extension: No Name - C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\Extensions\staged [2014-07-13] FF Extension: Yahoo! Toolbar - C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\Extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1} [2013-04-14] FF Extension: PricePeep - C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\Extensions\pricepeep@getpricepeep.com.xpi [2013-02-03] FF Extension: Avira SearchFree Toolbar plus Web Protection - C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\Extensions\toolbar_AVIRA-V7@apn.ask.com.xpi [2013-07-26] FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\extensions\ffxtlbr@babylon.com [2013-02-28] FF HKLM\...\Firefox\Extensions: [{336D0C35-8A85-403a-B9D2-65C292C39087}] - C:\Program Files\IB Updater\Firefox FF Extension: IB Updater - C:\Program Files\IB Updater\Firefox [2012-10-14] FF HKLM\...\Firefox\Extensions: [{FE1DEEEA-DB6D-44b8-83F0-34FC0F9D1052}] - C:\Program Files\IB Updater\Firefox FF HKLM-x32\...\Firefox\Extensions: [avg@toolbar] - C:\ProgramData\AVG Secure Search\FireFoxExt\18.1.7.644 FF Extension: AVG Security Toolbar - C:\ProgramData\AVG Secure Search\FireFoxExt\18.1.7.644 [2014-06-22] FF HKLM-x32\...\Firefox\Extensions: [fmconverter@gmail.com] - C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Firefox FF Extension: Freemake Video Converter Plugin - C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Firefox [2013-02-15] FF HKLM-x32\...\Firefox\Extensions: [{336D0C35-8A85-403a-B9D2-65C292C39087}] - C:\Program Files\IB Updater\Firefox FF HKLM-x32\...\Firefox\Extensions: [{ACAA314B-EEBA-48e4-AD47-84E31C44796C}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff FF Extension: DVDVideoSoft YouTube MP3 and Video Download - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff [2013-12-16] FF HKLM-x32\...\Firefox\Extensions: [{FE1DEEEA-DB6D-44b8-83F0-34FC0F9D1052}] - C:\Program Files\IB Updater\Firefox FF HKCU\...\Firefox\Extensions: [{45dd9ac7-a7fe-4cee-a035-d55aefec22ce}] - C:\Program Files (x86)\bLyrics\131.xpi FF Extension: B Lyrics - C:\Program Files (x86)\bLyrics\131.xpi [2013-08-29] FF HKCU\...\Firefox\Extensions: [{5a95a9e0-59dd-4314-bd84-4d18ca83a0e2}] - C:\Program Files (x86)\Wajam\Firefox\{5a95a9e0-59dd-4314-bd84-4d18ca83a0e2}.xpi FF Extension: Wajam - C:\Program Files (x86)\Wajam\Firefox\{5a95a9e0-59dd-4314-bd84-4d18ca83a0e2}.xpi [2013-03-28] Chrome: ======= CHR HomePage: hxxp://search.softonic.com/MOY00621/tb_v1?SearchSource=48&cc=&mi=204c3cc00000000000008c89a5c0d106 CHR StartupUrls: "hxxp://search.softonic.com/MOY00621/tb_v1?SearchSource=48&cc=&mi=204c3cc00000000000008c89a5c0d106" CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\gcswf32.dll No File CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll No File CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\4.1.10111.0\npctrl.dll No File CHR Plugin: (Chrome NaCl) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\pdf.dll () CHR Plugin: (Kaspersky Anti-Virus) - C:\Users\Schrgle\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman\12.0.0.374_0\plugin/npABPlugin.dll No File CHR Plugin: (Kaspersky Anti-Virus) - C:\Users\Schrgle\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh\12.0.0.374_0\plugin/npVKPlugin.dll No File CHR Plugin: (Kaspersky Anti-Virus) - C:\Users\Schrgle\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\12.0.0.397_0\plugin/npUrlAdvisor.dll No File CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll No File CHR Plugin: (Java(TM) Platform SE 7 U3) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (Windows Live Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (Default Plug-in) - default_plugin No File CHR Extension: (Avira SearchFree Toolbar plus Web Protection) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaacalgebmfelllfiaoknifldpngjh [2013-08-07] CHR Extension: (Adblock Plus) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2013-05-06] CHR Extension: (IB Updater) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd [2012-10-30] CHR Extension: (Softonic Chrome Toolbar) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\elchiiiejkobdbblfejjkbphbddgmljf [2013-12-16] CHR Extension: (Freemake Video Converter) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj [2013-02-15] CHR Extension: (Wajam) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpmbfleldcgkldadpdinhjjopdfpjfjp [2013-04-03] CHR Extension: (SwissConverter 2.1) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\lhdidofdhbieclaekjnfcnfaoceobnco [2013-04-03] CHR Extension: (PricePeep) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\licjnkifamhpbaefhdpacpmihicfbomb [2013-04-03] CHR Extension: (Google Wallet) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-22] CHR Extension: (SweetPacks Chrome Extension) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj [2013-09-17] CHR Extension: (Battlefield Play4Free) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\oiokahphinmbmakkehgelkmpolmnbkdh [2013-11-02] CHR Extension: (B Lyrics) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\okaclkhnjaebofijaabgiahinbajiekd [2013-08-16] CHR HKLM\...\Chrome\Extension: [dlnembnfbcpjnepmfjmngjenhhajpdfd] - C:\Program Files\IB Updater\source.crx [2012-10-14] CHR HKCU\...\Chrome\Extension: [lhdidofdhbieclaekjnfcnfaoceobnco] - C:\Users\Schrägle\AppData\Local\CRE\lhdidofdhbieclaekjnfcnfaoceobnco.crx [2013-03-24] CHR HKLM-x32\...\Chrome\Extension: [aaaaacalgebmfelllfiaoknifldpngjh] - C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\ToolbarCR.crx [2014-06-26] CHR HKLM-x32\...\Chrome\Extension: [dhkplhfnhceodhffomolpfigojocbpcb] - C:\Users\Schrägle\AppData\Roaming\BabSolution\CR\BabylonChrome1.crx [2014-06-26] CHR HKLM-x32\...\Chrome\Extension: [dlnembnfbcpjnepmfjmngjenhhajpdfd] - C:\Program Files\IB Updater\source.crx [2012-10-14] CHR HKLM-x32\...\Chrome\Extension: [elchiiiejkobdbblfejjkbphbddgmljf] - C:\Program Files (x86)\Softonic\Softonic\1.8.21.14\Softonic.crx [2013-06-11] CHR HKLM-x32\...\Chrome\Extension: [fgfdfcbeamjnjdejakdidpniblllnbpg] - C:\Windows\SysWOW64\jmdp\pnte.crx [2013-06-11] CHR HKLM-x32\...\Chrome\Extension: [jbolfgndggfhhpbnkgnpjkfhinclbigj] - C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Chrome\Freemake.Plugin.Chrome.crx [2013-02-15] CHR HKLM-x32\...\Chrome\Extension: [jifflliplgeajjdhmkcfnngfpgbjonjg] - C:\Program Files (x86)\Perion\NewTab\newTab.crx [2012-10-14] CHR HKLM-x32\...\Chrome\Extension: [jpmbfleldcgkldadpdinhjjopdfpjfjp] - C:\Users\Schrägle\AppData\Local\Wajam\Chrome\wajam.crx [2013-03-28] CHR HKLM-x32\...\Chrome\Extension: [lhdidofdhbieclaekjnfcnfaoceobnco] - C:\Users\Schrägle\AppData\Local\CRE\lhdidofdhbieclaekjnfcnfaoceobnco.crx [2013-03-24] CHR HKLM-x32\...\Chrome\Extension: [ndibdjnfmopecpmkdieinmbadjfpblof] - C:\ProgramData\AVG Secure Search\ChromeExt\18.1.0.443\avg.crx [2014-04-27] CHR HKLM-x32\...\Chrome\Extension: [niogeckbkdcabhnapjbkeiklablhjoca] - C:\Program Files (x86)\Perion\ChromeInfoBar\ChromeInfoBar.crx [2012-10-14] CHR HKLM-x32\...\Chrome\Extension: [ogccgbmabaphcakpiclgcnmcnimhokcj] - C:\Windows\SysWOW64\mjcm\SweetNT.crx [2014-06-24] CHR HKLM-x32\...\Chrome\Extension: [okaclkhnjaebofijaabgiahinbajiekd] - C:\Program Files (x86)\bLyrics\131.crx [2013-08-29] ==================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [430160 2014-07-03] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [430160 2014-07-03] (Avira Operations GmbH & Co. KG) R2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1030224 2014-07-02] (Avira Operations GmbH & Co. KG) R2 APNMCP; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [165784 2014-06-23] (APN LLC.) R2 avgfws; C:\Program Files (x86)\AVG\AVG2014\avgfws.exe [1417160 2014-06-17] (AVG Technologies CZ, s.r.o.) S2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe [3241488 2014-06-27] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe [289328 2014-06-17] (AVG Technologies CZ, s.r.o.) R2 CltMngSvc; C:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe [2301216 2014-01-01] (Conduit) R2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [100864 2013-01-31] (Freemake) [File not signed] R2 IBUpdaterService; C:\Windows\system32\dmwu.exe [2601776 2014-06-24] () S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [File not signed] S3 IEEtwCollectorService; C:\Windows\system32\IEEtwCollector.exe [111616 2014-06-19] (Microsoft Corporation) [File not signed] R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe [2100024 2013-08-30] (TuneUp Software) R2 vToolbarUpdater18.1.7; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.7\ToolbarUpdater.exe [1813528 2014-06-22] (AVG Secure Search) R2 WajamUpdater; C:\Program Files (x86)\Wajam\Updater\WajamUpdater.exe [109064 2013-03-28] (Wajam) [File not signed] R2 watchmi; C:\Program Files (x86)\watchmi\TvdService.exe [70144 2012-01-31] () [File not signed] ==================== Drivers (Whitelisted) ==================== R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [153368 2014-06-17] (AVG Technologies CZ, s.r.o.) R1 Avgfwfd; C:\Windows\System32\DRIVERS\avgfwd6a.sys [57144 2013-09-26] (AVG Technologies CZ, s.r.o.) R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [242968 2014-06-17] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [190744 2014-06-17] (AVG Technologies CZ, s.r.o.) S1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [235800 2014-06-17] (AVG Technologies CZ, s.r.o.) S0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [328984 2014-06-17] (AVG Technologies CZ, s.r.o.) R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [123672 2014-06-17] (AVG Technologies CZ, s.r.o.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [117712 2014-07-03] (Avira Operations GmbH & Co. KG) R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [31512 2014-06-17] (AVG Technologies CZ, s.r.o.) R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [269080 2014-06-17] (AVG Technologies CZ, s.r.o.) R1 avgtp; C:\Windows\system32\drivers\avgtpx64.sys [50464 2014-06-22] (AVG Technologies) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [130584 2014-06-03] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-11-19] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\Windows\System32\DRIVERS\avnetflt.sys [42040 2014-07-02] (Avira Operations GmbH & Co. KG) R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [14112 2013-08-21] (TuneUp Software) U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [59904 2009-07-14] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-07-14 18:35 - 2014-07-14 18:35 - 00036211 _____ () C:\Users\Schrägle\Downloads\FRST.txt 2014-07-14 18:34 - 2014-07-14 18:34 - 02086912 _____ (Farbar) C:\Users\Schrägle\Downloads\FRST64.exe 2014-07-14 18:31 - 2014-07-14 18:32 - 00001447 _____ () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-07-14 18:31 - 2014-07-14 18:31 - 00003548 _____ () C:\Windows\System32\Tasks\CreateChoiceProcessTask 2014-07-14 18:31 - 2014-07-14 18:31 - 00001758 _____ () C:\Users\Public\Desktop\Browserwahl.lnk 2014-07-14 06:53 - 2013-05-10 07:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2014-07-14 06:53 - 2013-05-10 07:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL |
14.07.2014, 18:28 | #7 |
| Avira Antivir wird blockiertCode:
ATTFilter 2014-07-14 06:53 - 2013-05-10 06:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL 2014-07-14 06:53 - 2013-05-10 06:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2014-07-14 06:16 - 2010-02-23 10:16 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\browserchoice.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 17773056 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 12268544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 10884096 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 09702400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 03695416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2014-07-14 06:14 - 2014-07-14 06:14 - 03695416 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2014-07-14 06:14 - 2014-07-14 06:14 - 02382848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-07-14 06:14 - 2014-07-14 06:14 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-07-14 06:14 - 2014-07-14 06:14 - 02303488 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 02136064 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01797632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01785344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01492992 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-07-14 06:14 - 2014-07-14 06:14 - 01427456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-07-14 06:14 - 2014-07-14 06:14 - 01389056 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01344000 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01126912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01102336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00818176 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00716800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00697344 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00603648 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00580608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00534528 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00452608 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00448512 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-07-14 06:14 - 2014-07-14 06:14 - 00434176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00420864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00403248 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2014-07-14 06:14 - 2014-07-14 06:14 - 00353792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00353584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00282112 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\ieaksie.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00249344 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00248320 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00236544 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00231936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00227840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieaksie.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00203776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00176640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieakui.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\ieakui.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00160256 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00160256 _____ (Microsoft Corporation) C:\Windows\system32\ieakeng.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00150528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00130560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieakeng.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00123392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00118784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\admparse.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00101888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\admparse.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00078848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2014-07-14 06:14 - 2014-07-14 06:14 - 00074752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00074752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ie4uinit.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00072704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00065024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00063488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2014-07-14 06:14 - 2014-07-14 06:14 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00054272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-07-14 06:08 - 2014-07-14 06:15 - 00004361 _____ () C:\Windows\IE9_main.log 2014-07-14 06:00 - 2012-07-26 05:08 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll 2014-07-14 06:00 - 2012-07-26 05:08 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe 2014-07-14 06:00 - 2012-07-26 05:08 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll 2014-07-14 06:00 - 2012-07-26 05:08 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll 2014-07-14 06:00 - 2012-07-26 05:08 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll 2014-07-14 06:00 - 2012-07-26 04:26 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys 2014-07-14 06:00 - 2012-07-26 04:26 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys 2014-07-14 06:00 - 2012-06-02 16:57 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf 2014-07-14 05:53 - 2012-03-01 08:46 - 00023408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys 2014-07-14 05:53 - 2012-03-01 08:28 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll 2014-07-14 05:53 - 2012-03-01 07:29 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmi.dll 2014-07-14 04:35 - 2014-07-13 23:50 - 00000000 ____D () C:\Windows\Panther 2014-07-14 04:33 - 2014-07-14 04:33 - 00262144 _____ () C:\Windows\system32\config\userdiff 2014-07-14 04:14 - 2014-07-13 19:51 - 00000000 ___HD () C:\$WINDOWS.~Q 2014-07-14 04:06 - 2014-07-14 04:10 - 00000000 ___HD () C:\$INPLACE.~TR 2014-07-14 03:30 - 2014-01-28 04:32 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2014-07-14 03:30 - 2013-10-30 04:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2014-07-14 03:30 - 2013-10-30 04:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2014-07-14 03:30 - 2013-07-04 14:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll 2014-07-14 03:30 - 2013-07-04 13:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll 2014-07-14 03:30 - 2013-03-19 07:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll 2014-07-14 03:30 - 2011-06-16 07:49 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\xmllite.dll 2014-07-14 03:30 - 2011-06-16 06:33 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xmllite.dll 2014-07-14 03:30 - 2011-06-15 12:02 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll 2014-07-14 03:30 - 2011-06-15 12:02 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll 2014-07-14 03:30 - 2011-06-15 12:02 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccu32.dll 2014-07-14 03:30 - 2011-06-15 12:02 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccr32.dll 2014-07-14 03:30 - 2011-06-15 10:55 - 00319488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcjt32.dll 2014-07-14 03:30 - 2011-06-15 10:55 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbctrac.dll 2014-07-14 03:30 - 2011-06-15 10:55 - 00122880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccp32.dll 2014-07-14 03:30 - 2011-06-15 10:55 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccu32.dll 2014-07-14 03:30 - 2011-06-15 10:55 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccr32.dll 2014-07-14 03:29 - 2014-03-25 04:43 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-07-14 03:29 - 2014-03-25 04:09 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2014-07-14 03:29 - 2013-07-09 07:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2014-07-14 03:29 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2014-07-14 03:29 - 2013-02-15 08:08 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2014-07-14 03:29 - 2013-02-15 08:06 - 03717632 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2014-07-14 03:29 - 2013-02-15 08:02 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll 2014-07-14 03:29 - 2013-02-15 06:37 - 03217408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2014-07-14 03:29 - 2013-02-15 06:34 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll 2014-07-14 03:29 - 2013-02-15 05:25 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2014-07-14 03:29 - 2012-10-09 20:17 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll 2014-07-14 03:29 - 2012-10-09 20:17 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll 2014-07-14 03:29 - 2012-10-09 19:40 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll 2014-07-14 03:29 - 2012-10-09 19:40 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll 2014-07-14 03:29 - 2012-01-04 12:44 - 00509952 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll 2014-07-14 03:29 - 2012-01-04 10:58 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll 2014-07-14 03:29 - 2011-10-26 07:25 - 01572864 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll 2014-07-14 03:29 - 2011-10-26 07:25 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll 2014-07-14 03:29 - 2011-10-26 06:32 - 01328128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll 2014-07-14 03:29 - 2011-10-26 06:32 - 00514560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll 2014-07-14 03:29 - 2011-04-09 08:58 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2014-07-14 03:29 - 2011-04-09 07:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2014-07-14 03:29 - 2010-12-23 12:42 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll 2014-07-14 03:29 - 2010-12-23 12:42 - 00961024 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll 2014-07-14 03:29 - 2010-12-23 12:36 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax 2014-07-14 03:29 - 2010-12-23 07:54 - 00850944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sbe.dll 2014-07-14 03:29 - 2010-12-23 07:54 - 00642048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll 2014-07-14 03:29 - 2010-12-23 07:50 - 00199680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mpg2splt.ax 2014-07-14 03:28 - 2014-04-25 04:34 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll 2014-07-14 03:28 - 2014-04-25 04:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll 2014-07-14 03:28 - 2014-04-05 04:47 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2014-07-14 03:28 - 2014-04-05 04:47 - 00288192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2014-07-14 03:28 - 2014-01-29 04:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2014-07-14 03:28 - 2014-01-29 04:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll 2014-07-14 03:28 - 2014-01-01 01:05 - 00420008 _____ () C:\Windows\SysWOW64\locale.nls 2014-07-14 03:28 - 2014-01-01 01:04 - 00420008 _____ () C:\Windows\system32\locale.nls 2014-07-14 03:28 - 2013-11-26 13:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2014-07-14 03:28 - 2013-10-19 04:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2014-07-14 03:28 - 2013-10-19 03:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2014-07-14 03:28 - 2013-10-05 22:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2014-07-14 03:28 - 2013-10-05 21:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2014-07-14 03:28 - 2013-07-09 07:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2014-07-14 03:28 - 2013-07-09 07:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2014-07-14 03:28 - 2013-07-09 06:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2014-07-14 03:28 - 2013-07-09 06:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2014-07-14 03:28 - 2013-02-27 08:02 - 00111448 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2014-07-14 03:28 - 2013-02-27 07:47 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2014-07-14 03:28 - 2011-11-17 08:35 - 00395776 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll 2014-07-14 03:28 - 2011-11-17 07:35 - 00314880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll 2014-07-14 03:28 - 2011-07-09 04:46 - 00288768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2014-07-14 03:28 - 2011-05-04 07:25 - 02315776 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll 2014-07-14 03:28 - 2011-05-04 07:22 - 02223616 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll 2014-07-14 03:28 - 2011-05-04 07:22 - 00778752 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll 2014-07-14 03:28 - 2011-05-04 07:22 - 00491520 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll 2014-07-14 03:28 - 2011-05-04 07:22 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll 2014-07-14 03:28 - 2011-05-04 07:22 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll 2014-07-14 03:28 - 2011-05-04 07:19 - 00591872 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe 2014-07-14 03:28 - 2011-05-04 07:19 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe 2014-07-14 03:28 - 2011-05-04 07:19 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe 2014-07-14 03:28 - 2011-05-04 06:34 - 01549312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll 2014-07-14 03:28 - 2011-05-04 06:32 - 01401344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll 2014-07-14 03:28 - 2011-05-04 06:32 - 00666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll 2014-07-14 03:28 - 2011-05-04 06:32 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll 2014-07-14 03:28 - 2011-05-04 06:32 - 00197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll 2014-07-14 03:28 - 2011-05-04 06:32 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll 2014-07-14 03:28 - 2011-05-04 06:28 - 00427520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe 2014-07-14 03:28 - 2011-05-04 06:28 - 00164352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe 2014-07-14 03:28 - 2011-05-04 06:28 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe 2014-07-14 03:28 - 2011-04-27 04:40 - 00158208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2014-07-14 03:28 - 2011-04-27 04:39 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2014-07-14 03:27 - 2014-06-30 04:09 - 00519168 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-07-14 03:27 - 2014-06-30 04:04 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-07-14 03:27 - 2014-06-18 04:18 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2014-07-14 03:27 - 2014-06-18 03:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe 2014-07-14 03:27 - 2014-06-18 03:10 - 03157504 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-07-14 03:27 - 2014-03-26 16:44 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2014-07-14 03:27 - 2014-03-26 16:44 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-07-14 03:27 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll 2014-07-14 03:27 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-07-14 03:27 - 2014-03-26 16:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2014-07-14 03:27 - 2014-03-26 16:27 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-07-14 03:27 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll 2014-07-14 03:27 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-07-14 03:27 - 2013-11-12 04:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2014-07-14 03:27 - 2013-11-12 04:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2014-07-14 03:27 - 2013-10-04 04:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll 2014-07-14 03:27 - 2013-10-04 04:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll 2014-07-14 03:27 - 2013-10-04 04:24 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2014-07-14 03:27 - 2013-10-04 04:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2014-07-14 03:27 - 2013-10-04 03:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll 2014-07-14 03:27 - 2013-10-04 03:56 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2014-07-14 03:27 - 2013-10-04 03:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll 2014-07-14 03:27 - 2013-10-04 03:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2014-07-14 03:27 - 2013-08-05 04:25 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys 2014-07-14 03:27 - 2011-12-30 08:26 - 00515584 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl 2014-07-14 03:27 - 2011-12-30 07:27 - 00478720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl 2014-07-14 03:26 - 2014-06-06 12:10 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-07-14 03:26 - 2014-06-06 11:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2014-07-14 03:26 - 2014-05-30 08:45 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2014-07-14 03:26 - 2013-12-04 04:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll 2014-07-14 03:26 - 2013-12-04 04:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll 2014-07-14 03:26 - 2013-12-04 04:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll 2014-07-14 03:26 - 2013-12-04 04:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll 2014-07-14 03:26 - 2013-12-04 04:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll 2014-07-14 03:26 - 2013-12-04 04:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe 2014-07-14 03:26 - 2013-12-04 04:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe 2014-07-14 03:26 - 2013-12-04 04:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe 2014-07-14 03:26 - 2013-12-04 04:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe 2014-07-14 03:26 - 2013-12-04 04:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll 2014-07-14 03:26 - 2013-12-04 04:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll 2014-07-14 03:26 - 2013-12-04 04:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll 2014-07-14 03:26 - 2013-12-04 04:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll 2014-07-14 03:26 - 2013-12-04 04:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll 2014-07-14 03:26 - 2013-12-04 03:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe 2014-07-14 03:26 - 2013-12-04 03:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe 2014-07-14 03:26 - 2013-12-04 03:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe 2014-07-14 03:26 - 2013-12-04 03:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe 2014-07-14 03:26 - 2013-11-27 03:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-07-14 03:26 - 2013-11-27 03:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-07-14 03:26 - 2013-11-27 03:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2014-07-14 03:26 - 2013-11-27 03:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-07-14 03:26 - 2013-11-27 03:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-07-14 03:26 - 2013-07-25 11:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2014-07-14 03:26 - 2013-07-25 10:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2014-07-14 03:26 - 2013-07-12 12:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys 2014-07-14 03:26 - 2013-07-09 07:51 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2014-07-14 03:26 - 2013-07-09 06:52 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2014-07-14 03:26 - 2013-07-03 06:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2014-07-14 03:26 - 2013-07-03 06:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys 2014-07-14 03:26 - 2013-06-26 00:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys 2014-07-14 03:26 - 2013-06-06 07:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2014-07-14 03:26 - 2013-06-06 07:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2014-07-14 03:26 - 2013-06-06 07:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2014-07-14 03:26 - 2013-06-06 07:47 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2014-07-14 03:26 - 2013-06-06 06:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2014-07-14 03:26 - 2013-06-06 06:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2014-07-14 03:26 - 2013-06-06 06:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2014-07-14 03:26 - 2013-06-06 05:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2014-07-14 03:26 - 2013-06-06 05:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2014-07-14 03:26 - 2013-06-06 05:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2014-07-14 03:26 - 2013-02-12 06:12 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys 2014-07-14 03:26 - 2012-11-29 00:56 - 00054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys 2014-07-14 03:26 - 2012-11-29 00:56 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll 2014-07-14 03:26 - 2012-11-29 00:56 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf 2014-07-14 03:26 - 2012-10-03 19:44 - 00303104 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll 2014-07-14 03:26 - 2012-10-03 19:44 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\netcorehc.dll 2014-07-14 03:26 - 2012-10-03 19:44 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll 2014-07-14 03:26 - 2012-10-03 19:44 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll 2014-07-14 03:26 - 2012-10-03 19:44 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\netevent.dll 2014-07-14 03:26 - 2012-10-03 19:42 - 00569344 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll 2014-07-14 03:26 - 2012-10-03 18:42 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcorehc.dll 2014-07-14 03:26 - 2012-10-03 18:42 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll 2014-07-14 03:26 - 2012-10-03 18:42 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netevent.dll 2014-07-14 03:26 - 2012-10-03 18:07 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys 2014-07-14 03:26 - 2012-08-22 20:12 - 00950128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2014-07-14 03:26 - 2012-07-04 22:26 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys 2014-07-14 03:26 - 2012-04-26 07:41 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll 2014-07-14 03:26 - 2012-04-26 07:41 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll 2014-07-14 03:26 - 2012-04-26 07:34 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe 2014-07-14 03:26 - 2012-01-13 09:12 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll 2014-07-14 03:26 - 2011-03-11 08:34 - 01395712 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll 2014-07-14 03:26 - 2011-03-11 08:34 - 01359872 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll 2014-07-14 03:26 - 2011-03-11 07:33 - 01164288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42u.dll 2014-07-14 03:26 - 2011-03-11 07:33 - 01137664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42.dll 2014-07-14 03:25 - 2014-03-04 11:47 - 05550016 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2014-07-14 03:25 - 2014-03-04 11:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll 2014-07-14 03:25 - 2014-03-04 11:44 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2014-07-14 03:25 - 2014-03-04 11:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll 2014-07-14 03:25 - 2014-03-04 11:43 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 2014-07-14 03:25 - 2014-03-04 11:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll 2014-07-14 03:25 - 2014-03-04 11:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll 2014-07-14 03:25 - 2014-03-04 11:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll 2014-07-14 03:25 - 2014-03-04 11:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll 2014-07-14 03:25 - 2014-03-04 11:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll 2014-07-14 03:25 - 2014-03-04 11:20 - 03969984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2014-07-14 03:25 - 2014-03-04 11:20 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2014-07-14 03:25 - 2014-03-04 11:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll 2014-07-14 03:25 - 2014-03-04 11:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll 2014-07-14 03:25 - 2014-03-04 11:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll 2014-07-14 03:25 - 2014-03-04 11:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll 2014-07-14 03:25 - 2014-03-04 11:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll 2014-07-14 03:25 - 2014-03-04 11:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll 2014-07-14 03:25 - 2014-03-04 11:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll 2014-07-14 03:25 - 2014-03-04 11:16 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2014-07-14 03:25 - 2013-08-02 04:12 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2014-07-14 03:25 - 2013-08-02 04:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2014-07-14 03:25 - 2013-08-02 03:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2014-07-14 03:25 - 2013-08-02 02:59 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2014-07-14 03:25 - 2013-07-04 14:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2014-07-14 03:25 - 2013-07-04 14:50 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2014-07-14 03:25 - 2013-07-04 13:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll 2014-07-14 03:25 - 2013-07-04 13:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll 2014-07-14 03:25 - 2013-07-04 12:11 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2014-07-14 03:25 - 2012-11-02 07:59 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll 2014-07-14 03:25 - 2012-11-02 07:11 - 00376832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll 2014-07-14 03:25 - 2012-08-21 23:01 - 00245760 _____ (Microsoft Corporation) C:\Windows\system32\OxpsConverter.exe 2014-07-14 03:25 - 2012-05-01 07:40 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll 2014-07-14 03:25 - 2011-03-03 08:24 - 00357888 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll 2014-07-14 03:25 - 2011-03-03 08:24 - 00183296 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll 2014-07-14 03:25 - 2011-03-03 08:21 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\dnscacheugc.exe 2014-07-14 03:25 - 2011-03-03 07:38 - 00270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll 2014-07-14 03:25 - 2011-03-03 07:36 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnscacheugc.exe 2014-07-14 03:24 - 2013-09-08 04:27 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll 2014-07-14 03:24 - 2013-09-08 04:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll 2014-07-14 03:24 - 2013-06-15 06:32 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 2014-07-14 03:24 - 2012-12-07 15:20 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll 2014-07-14 03:24 - 2012-12-07 15:15 - 02746368 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll 2014-07-14 03:24 - 2012-12-07 14:26 - 00308736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll 2014-07-14 03:24 - 2012-12-07 14:20 - 02576384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll 2014-07-14 03:24 - 2012-12-07 13:20 - 00045568 _____ (Microsoft) C:\Windows\system32\oflc-nz.rs 2014-07-14 03:24 - 2012-12-07 13:20 - 00044544 _____ (Microsoft) C:\Windows\system32\pegibbfc.rs 2014-07-14 03:24 - 2012-12-07 13:20 - 00043520 _____ (Microsoft) C:\Windows\system32\csrr.rs 2014-07-14 03:24 - 2012-12-07 13:20 - 00030720 _____ (Microsoft) C:\Windows\system32\usk.rs 2014-07-14 03:24 - 2012-12-07 13:20 - 00023552 _____ (Microsoft) C:\Windows\system32\oflc.rs 2014-07-14 03:24 - 2012-12-07 13:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-pt.rs 2014-07-14 03:24 - 2012-12-07 13:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-fi.rs 2014-07-14 03:24 - 2012-12-07 13:19 - 00055296 _____ (Microsoft) C:\Windows\system32\cero.rs 2014-07-14 03:24 - 2012-12-07 13:19 - 00051712 _____ (Microsoft) C:\Windows\system32\esrb.rs 2014-07-14 03:24 - 2012-12-07 13:19 - 00046592 _____ (Microsoft) C:\Windows\system32\fpb.rs 2014-07-14 03:24 - 2012-12-07 13:19 - 00040960 _____ (Microsoft) C:\Windows\system32\cob-au.rs 2014-07-14 03:24 - 2012-12-07 13:19 - 00021504 _____ (Microsoft) C:\Windows\system32\grb.rs 2014-07-14 03:24 - 2012-12-07 13:19 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi.rs 2014-07-14 03:24 - 2012-12-07 13:19 - 00015360 _____ (Microsoft) C:\Windows\system32\djctq.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00055296 _____ (Microsoft) C:\Windows\SysWOW64\cero.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00051712 _____ (Microsoft) C:\Windows\SysWOW64\esrb.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00046592 _____ (Microsoft) C:\Windows\SysWOW64\fpb.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00045568 _____ (Microsoft) C:\Windows\SysWOW64\oflc-nz.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00044544 _____ (Microsoft) C:\Windows\SysWOW64\pegibbfc.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00043520 _____ (Microsoft) C:\Windows\SysWOW64\csrr.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00040960 _____ (Microsoft) C:\Windows\SysWOW64\cob-au.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00030720 _____ (Microsoft) C:\Windows\SysWOW64\usk.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00023552 _____ (Microsoft) C:\Windows\SysWOW64\oflc.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00021504 _____ (Microsoft) C:\Windows\SysWOW64\grb.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-pt.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-fi.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00015360 _____ (Microsoft) C:\Windows\SysWOW64\djctq.rs 2014-07-14 03:24 - 2011-08-17 07:26 - 00613888 _____ (Microsoft Corporation) C:\Windows\system32\psisdecd.dll 2014-07-14 03:24 - 2011-08-17 07:25 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\psisrndr.ax 2014-07-14 03:24 - 2011-08-17 06:24 - 00465408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisdecd.dll 2014-07-14 03:24 - 2011-08-17 06:19 - 00075776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisrndr.ax 2014-07-14 03:24 - 2011-04-29 05:06 - 00467456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys 2014-07-14 03:24 - 2011-04-29 05:05 - 00410112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys 2014-07-14 03:24 - 2011-04-29 05:05 - 00168448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys 2014-07-14 03:23 - 2013-08-29 04:16 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2014-07-14 03:23 - 2013-08-29 04:16 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll 2014-07-14 03:23 - 2013-08-29 04:13 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2014-07-14 03:23 - 2013-08-29 03:50 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2014-07-14 03:23 - 2013-08-29 03:50 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll 2014-07-14 03:23 - 2013-08-29 03:48 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2014-07-14 03:23 - 2012-04-28 05:55 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys 2014-07-14 03:23 - 2012-03-17 09:58 - 00075120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys 2014-07-14 03:22 - 2014-05-30 10:08 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2014-07-14 03:22 - 2014-05-30 10:08 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2014-07-14 03:22 - 2014-05-30 10:08 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2014-07-14 03:22 - 2014-05-30 10:08 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2014-07-14 03:22 - 2014-05-30 10:08 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2014-07-14 03:22 - 2014-05-30 10:08 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2014-07-14 03:22 - 2014-05-30 10:08 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2014-07-14 03:22 - 2014-05-30 09:52 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2014-07-14 03:22 - 2014-05-30 09:52 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2014-07-14 03:22 - 2014-05-30 09:52 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2014-07-14 03:22 - 2014-05-30 09:52 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2014-07-14 03:22 - 2014-05-30 09:52 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2014-07-14 03:22 - 2014-05-30 09:52 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2014-07-14 03:22 - 2014-05-30 09:52 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2014-07-14 03:22 - 2014-02-04 04:35 - 00274880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys 2014-07-14 03:22 - 2014-02-04 04:35 - 00190912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys 2014-07-14 03:22 - 2014-02-04 04:35 - 00027584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys 2014-07-14 03:22 - 2014-02-04 04:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll 2014-07-14 03:22 - 2014-02-04 04:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iologmsg.dll 2014-07-14 03:22 - 2013-07-26 04:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2014-07-14 03:22 - 2013-07-26 03:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll 2014-07-14 03:22 - 2012-09-26 00:47 - 00078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\synceng.dll 2014-07-14 03:22 - 2012-09-26 00:46 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll 2014-07-14 03:22 - 2012-04-07 14:31 - 03216384 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2014-07-14 03:22 - 2012-04-07 13:26 - 02342400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2014-07-14 03:22 - 2011-02-05 19:10 - 00642944 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2014-07-14 03:22 - 2011-02-05 19:10 - 00020352 _____ (Microsoft Corporation) C:\Windows\system32\kdusb.dll 2014-07-14 03:22 - 2011-02-05 19:10 - 00019328 _____ (Microsoft Corporation) C:\Windows\system32\kd1394.dll 2014-07-14 03:22 - 2011-02-05 19:10 - 00017792 _____ (Microsoft Corporation) C:\Windows\system32\kdcom.dll 2014-07-14 03:22 - 2011-02-05 19:06 - 00605552 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe 2014-07-14 03:22 - 2011-02-05 19:06 - 00566208 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2014-07-14 03:22 - 2011-02-05 19:06 - 00518672 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe 2014-07-14 03:21 - 2014-03-04 11:44 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2014-07-14 03:21 - 2014-03-04 11:44 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2014-07-14 03:21 - 2014-03-04 11:44 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2014-07-14 03:21 - 2014-03-04 11:44 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2014-07-14 03:21 - 2014-03-04 11:44 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2014-07-14 03:21 - 2014-03-04 11:17 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2014-07-14 03:21 - 2014-03-04 11:16 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2014-07-14 03:21 - 2014-03-04 11:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2014-07-14 03:21 - 2014-03-04 11:16 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2014-07-14 03:21 - 2014-03-04 10:09 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2014-07-14 03:21 - 2014-03-04 10:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2014-07-14 03:21 - 2014-01-24 04:37 - 01684928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2014-07-14 03:21 - 2013-10-03 04:23 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2014-07-14 03:21 - 2013-10-03 04:00 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2014-07-14 03:21 - 2013-08-02 04:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2014-07-14 03:21 - 2013-08-02 02:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 02:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 02:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 02:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2014-07-14 03:21 - 2013-07-20 12:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2014-07-14 03:21 - 2013-07-20 12:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2014-07-14 03:21 - 2013-05-13 07:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll 2014-07-14 03:21 - 2013-05-13 05:43 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe 2014-07-14 03:21 - 2013-05-13 05:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe 2014-07-14 03:21 - 2013-05-13 05:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll 2014-07-14 03:21 - 2013-05-10 07:49 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll 2014-07-14 03:21 - 2013-05-10 05:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll 2014-07-14 03:21 - 2013-04-26 07:51 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2014-07-14 03:21 - 2013-04-26 06:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2014-07-14 03:21 - 2013-01-24 08:01 - 00223752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys 2014-07-14 03:21 - 2012-11-23 05:13 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe 2014-07-14 03:21 - 2012-07-05 00:16 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll 2014-07-14 03:21 - 2012-07-05 00:13 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll 2014-07-14 03:21 - 2012-07-05 00:13 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll 2014-07-14 03:21 - 2012-07-04 23:16 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netapi32.dll 2014-07-14 03:21 - 2012-07-04 23:14 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browcli.dll 2014-07-14 03:21 - 2012-05-05 10:36 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2014-07-14 03:21 - 2012-05-05 09:46 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2014-07-14 03:21 - 2011-12-16 10:46 - 00634880 _____ (Microsoft Corporation) C:\Windows\system32\msvcrt.dll 2014-07-14 03:21 - 2011-12-16 09:52 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcrt.dll 2014-07-14 03:21 - 2011-05-24 13:42 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll 2014-07-14 03:21 - 2011-05-24 12:40 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devobj.dll 2014-07-14 03:21 - 2011-05-24 12:40 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devrtl.dll 2014-07-14 03:21 - 2011-05-24 12:39 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfgmgr32.dll 2014-07-14 03:21 - 2011-05-24 12:37 - 00252928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe 2014-07-14 03:21 - 2011-05-03 07:29 - 00976896 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2014-07-14 03:21 - 2011-05-03 06:30 - 00741376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2014-07-14 03:21 - 2011-02-18 12:51 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\prevhost.exe 2014-07-14 03:21 - 2011-02-18 07:39 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prevhost.exe 2014-07-14 03:21 - 2011-02-12 13:34 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOVER.exe 2014-07-14 03:20 - 2014-06-05 16:45 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-07-14 03:20 - 2014-06-05 16:26 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2014-07-14 03:20 - 2014-06-05 16:25 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2014-07-14 03:20 - 2014-04-12 04:22 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2014-07-14 03:20 - 2014-04-12 04:22 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2014-07-14 03:20 - 2014-04-12 04:19 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2014-07-14 03:20 - 2014-04-12 04:19 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2014-07-14 03:20 - 2014-04-12 04:19 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2014-07-14 03:20 - 2014-04-12 04:19 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2014-07-14 03:20 - 2013-10-12 04:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2014-07-14 03:20 - 2013-10-12 04:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2014-07-14 03:20 - 2013-10-12 04:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2014-07-14 03:20 - 2013-10-12 04:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2014-07-14 03:20 - 2013-10-12 04:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2014-07-14 03:20 - 2013-10-12 04:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx 2014-07-14 03:20 - 2013-10-12 04:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2014-07-14 03:20 - 2013-10-12 04:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2014-07-14 03:20 - 2013-10-12 04:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2014-07-14 03:20 - 2013-10-12 03:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe 2014-07-14 03:20 - 2013-10-12 03:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2014-07-14 03:20 - 2013-10-12 03:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe 2014-07-14 03:20 - 2013-10-12 03:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe 2014-07-14 03:20 - 2013-08-28 03:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll 2014-07-14 03:20 - 2013-08-27 11:01 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2014-07-14 03:20 - 2013-08-27 11:01 - 01143296 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2014-07-14 03:20 - 2013-08-27 10:21 - 01077760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2014-07-14 03:20 - 2013-08-01 14:09 - 00983488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2014-07-14 03:20 - 2013-07-04 14:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2014-07-14 03:20 - 2013-04-10 08:01 - 00265064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2014-07-14 03:20 - 2012-06-06 08:02 - 01133568 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll 2014-07-14 03:20 - 2012-06-06 07:03 - 00805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll 2014-07-14 03:20 - 2012-05-14 07:26 - 00956928 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2014-07-14 03:20 - 2011-11-19 16:58 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll 2014-07-14 03:20 - 2011-11-19 16:01 - 00067072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll 2014-07-14 03:20 - 2011-10-15 08:31 - 00723456 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll 2014-07-14 03:20 - 2011-10-15 07:38 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EncDec.dll 2014-07-14 03:20 - 2011-08-27 07:37 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2014-07-14 03:20 - 2011-08-27 07:37 - 00331776 _____ (Microsoft Corporation) C:\Windows\system32\oleacc.dll 2014-07-14 03:20 - 2011-08-27 06:26 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2014-07-14 03:20 - 2011-08-27 06:26 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleacc.dll 2014-07-14 03:20 - 2011-02-23 06:55 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys 2014-07-14 03:20 - 2011-02-03 13:25 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2014-07-13 23:54 - 2014-07-14 18:32 - 00121624 _____ () C:\Users\Schrägle\AppData\Local\GDIPFONTCACHEV1.DAT 2014-07-13 23:54 - 2014-07-13 23:54 - 09580848 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-07-13 23:52 - 2014-07-14 18:32 - 00001413 _____ () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk 2014-07-13 23:50 - 2014-07-13 23:50 - 00000020 ___SH () C:\Users\Schrägle\ntuser.ini 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Programme 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Favoriten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Dokumente und Einstellungen 2014-07-13 20:40 - 2012-02-17 08:38 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll 2014-07-13 20:40 - 2012-02-17 07:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll 2014-07-13 20:40 - 2012-02-17 06:57 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys 2014-07-13 20:26 - 2012-06-03 00:19 - 02428952 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2014-07-13 20:26 - 2012-06-03 00:19 - 00057880 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2014-07-13 20:26 - 2012-06-03 00:19 - 00044056 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2014-07-13 20:26 - 2012-06-03 00:15 - 02622464 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2014-07-13 20:25 - 2012-06-03 00:19 - 00701976 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2014-07-13 20:25 - 2012-06-03 00:19 - 00038424 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2014-07-13 20:25 - 2012-06-03 00:15 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2014-07-13 20:25 - 2012-06-02 15:19 - 00186752 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2014-07-13 20:25 - 2012-06-02 15:15 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2014-07-13 20:17 - 2014-07-14 18:22 - 01257796 _____ () C:\Windows\WindowsUpdate.log 2014-07-13 19:54 - 2014-07-13 19:54 - 00022960 _____ () C:\Windows\system32\emptyregdb.dat 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerRecover 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Macromedia 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerRecover 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Macromedia 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help 2014-07-13 19:12 - 2014-07-13 23:50 - 00000000 ____D () C:\Users\Schrägle 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Vorlagen 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Startmenü 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Netzwerkumgebung 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Lokale Einstellungen 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Eigene Dateien 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Druckumgebung 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Documents\Eigene Musik 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Documents\Eigene Bilder 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\AppData\Local\Verlauf 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\AppData\Local\Anwendungsdaten 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Anwendungsdaten 2014-07-13 19:12 - 2009-07-14 06:54 - 00000000 ___RD () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-07-13 19:12 - 2009-07-14 06:49 - 00000000 ___RD () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-07-13 19:11 - 2014-07-13 19:11 - 00001345 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk 2014-07-13 19:11 - 2014-07-13 19:11 - 00001326 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk 2014-07-13 19:06 - 2014-07-13 19:06 - 00001355 _____ () C:\Windows\TSSysprep.log 2014-07-13 18:55 - 2014-07-13 19:03 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-07-13 18:55 - 2014-07-13 18:55 - 00000000 ____D () C:\Program Files\Realtek 2014-07-13 18:54 - 2014-07-13 18:54 - 00000000 _____ () C:\Windows\ativpsrm.bin 2014-07-13 18:50 - 2014-07-13 18:50 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf 2014-07-13 17:40 - 2014-07-13 19:51 - 00006161 _____ () C:\Windows\comsetup.log 2014-07-13 17:26 - 2014-07-13 17:26 - 00003302 _____ () C:\Users\Schrägle\Desktop\Windows Compatibility Report.htm 2014-07-13 17:23 - 2014-07-13 17:23 - 00013662 _____ () C:\Windows\diagwrn.xml 2014-07-13 17:23 - 2014-07-13 17:23 - 00001890 _____ () C:\Windows\diagerr.xml 2014-07-13 16:03 - 2014-07-13 19:39 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\AVG2014 2014-07-13 16:02 - 2014-07-13 19:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2014-07-13 16:02 - 2014-07-13 16:02 - 00000985 _____ () C:\Users\Public\Desktop\AVG 2014.lnk 2014-07-13 16:00 - 2014-07-13 19:24 - 00000000 ____D () C:\ProgramData\AVG2014 2014-07-13 16:00 - 2014-07-13 16:00 - 00000000 ___HD () C:\$AVG 2014-07-13 15:59 - 2014-07-13 19:17 - 00000000 ____D () C:\Program Files (x86)\AVG 2014-07-13 15:56 - 2014-07-13 19:39 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Win System 2014-07-13 15:56 - 2014-07-13 19:39 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\VOPackage 2014-07-13 15:56 - 2014-07-13 19:39 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage 2014-07-13 15:55 - 2014-07-13 19:39 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Security Systems 2014-07-13 15:55 - 2014-07-13 15:55 - 00000142 _____ () C:\Users\Schrägle\AppData\Roaming\tmp_register.bat 2014-07-13 15:54 - 2014-07-14 18:17 - 00000000 ____D () C:\ProgramData\MFAData 2014-07-13 15:54 - 2014-07-13 19:37 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\MFAData 2014-07-13 15:54 - 2014-07-13 19:36 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Avg2014 2014-07-13 15:46 - 2014-07-14 18:35 - 00000000 ____D () C:\FRST 2014-07-13 15:40 - 2014-07-13 19:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2014-07-13 11:14 - 2014-07-13 11:14 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{C887F452-5450-42AE-92C3-EAC911EDB34C} 2014-07-10 17:33 - 2014-07-10 17:33 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{2E7488C6-96C2-45A0-83FA-4AA877390050} 2014-07-09 20:30 - 2014-07-09 20:30 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{042D9681-1CB0-45D7-9366-084F768DC847} 2014-07-09 15:51 - 2014-06-19 03:06 - 00004096 ____N (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-07-09 15:51 - 2014-06-19 02:41 - 00083968 ____N (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-07-09 15:51 - 2014-06-19 02:41 - 00048640 ____N (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-07-09 15:51 - 2014-06-19 02:24 - 00111616 ____N (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-07-09 15:51 - 2014-06-19 02:23 - 00752640 ____N (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-07-09 15:51 - 2014-06-19 02:14 - 00940032 ____N (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-07-09 15:51 - 2014-06-19 01:59 - 00038400 ____N (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-07-09 15:51 - 2014-06-19 01:36 - 00051200 ____N (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-07-09 15:51 - 2014-06-19 01:35 - 00062464 ____N (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-07-09 15:51 - 2014-06-19 01:27 - 01249280 ____N (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-07-09 15:51 - 2014-06-19 01:22 - 00592896 ____N (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-07-09 15:51 - 2014-06-19 01:06 - 00032256 ____N (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-07-09 15:51 - 2014-06-19 00:46 - 01068032 ____N (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-07-07 18:53 - 2014-07-07 18:53 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{1071BD73-6D66-4747-B84F-C3F980B69617} 2014-07-07 18:53 - 2014-07-07 18:53 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{0E5B554B-2C84-4A29-BBCF-8CF9312A023F} 2014-07-05 11:03 - 2014-07-05 11:04 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{DBB75948-902D-4024-B588-07D9CC33167F} 2014-07-02 20:37 - 2014-07-02 20:37 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{0ED52F5C-7E76-48D3-B440-1B66A2247749} 2014-06-29 16:57 - 2014-06-29 16:57 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{ECC4DA04-C8A5-4673-9625-EAB427986779} 2014-06-29 16:57 - 2014-06-29 16:57 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{C9E1C0EE-9103-4424-8418-78EADDD7D964} 2014-06-29 09:03 - 2014-06-29 09:03 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{A84A427F-8D52-45C8-AE07-D49BAA473727} 2014-06-28 17:51 - 2014-06-28 17:51 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{DC6B7C0A-397F-420A-925E-9E651BBF7836} 2014-06-27 19:56 - 2014-07-13 19:36 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\AskPartnerNetwork 2014-06-25 20:16 - 2014-06-25 20:16 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cf90a18dd4ef68.job 2014-06-25 19:50 - 2014-06-24 16:15 - 02601776 _____ () C:\Windows\system32\dmwu.exe 2014-06-25 16:39 - 2014-06-25 16:39 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{DE3AADE9-90F8-4435-8DBF-C09011FD9CCC} 2014-06-23 19:49 - 2014-07-13 19:27 - 00000000 ____D () C:\Windows\SysWOW64\mjcm 2014-06-23 19:49 - 2014-07-13 19:27 - 00000000 ____D () C:\Windows\system32\tprb 2014-06-22 21:58 - 2014-07-13 19:41 - 00000000 ____D () C:\Users\Schrägle\Desktop\Stefan Referat VW 2014-06-21 19:58 - 2014-06-21 19:58 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{B33F55B0-EBE8-4679-942B-6AA96708E1A9} 2014-06-20 20:03 - 2014-06-20 20:04 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{9F69A0B2-809F-423F-8B77-E0501B392178} 2014-06-19 19:12 - 2014-06-19 19:12 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{C03CB42A-9AE4-418C-BA83-47CB7D12EC35} 2014-06-18 19:05 - 2014-06-18 19:05 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{F10216B5-ABA2-4B1F-9443-7925EDA4C2CF} 2014-06-17 16:21 - 2014-06-17 16:21 - 00235800 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgldx64.sys 2014-06-17 16:07 - 2014-06-17 16:07 - 00328984 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgloga.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00269080 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgtdia.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00242968 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsdrivera.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00190744 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsha.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00153368 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgdiska.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00123672 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgmfx64.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00031512 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgrkx64.sys 2014-06-16 20:33 - 2014-06-16 20:34 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{37940329-4D90-4DFC-A19F-5B13B85BC9B0} 2014-06-15 20:52 - 2014-06-15 20:52 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{A4B0555F-BEAA-4483-9C9C-05EDBCEE76F4} 2014-06-15 14:43 - 2014-06-15 14:43 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{DC99FA77-EBF8-4A51-8EB1-A12BD84B7E68} 2014-06-14 13:01 - 2014-06-14 13:01 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{83E2F3AA-BE9E-4DF7-9766-BF2BE4F8CF71} ==================== One Month Modified Files and Folders ======= 2014-07-14 18:35 - 2014-07-14 18:35 - 00036211 _____ () C:\Users\Schrägle\Downloads\FRST.txt 2014-07-14 18:35 - 2014-07-13 20:17 - 01257796 _____ () C:\Windows\WindowsUpdate.log 2014-07-14 18:35 - 2014-07-13 15:46 - 00000000 ____D () C:\FRST 2014-07-14 18:35 - 2011-05-16 16:04 - 00699132 _____ () C:\Windows\system32\perfh007.dat 2014-07-14 18:35 - 2011-05-16 16:04 - 00149014 _____ () C:\Windows\system32\perfc007.dat 2014-07-14 18:35 - 2009-07-14 07:13 - 01619832 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-07-14 18:35 - 2009-07-14 06:45 - 00016752 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-07-14 18:35 - 2009-07-14 06:45 - 00016752 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-07-14 18:34 - 2014-07-14 18:34 - 02086912 _____ (Farbar) C:\Users\Schrägle\Downloads\FRST64.exe 2014-07-14 18:32 - 2014-07-14 18:31 - 00001447 _____ () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-07-14 18:32 - 2014-07-13 23:54 - 00121624 _____ () C:\Users\Schrägle\AppData\Local\GDIPFONTCACHEV1.DAT 2014-07-14 18:32 - 2014-07-13 23:52 - 00001413 _____ () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk 2014-07-14 18:31 - 2014-07-14 18:31 - 00003548 _____ () C:\Windows\System32\Tasks\CreateChoiceProcessTask 2014-07-14 18:31 - 2014-07-14 18:31 - 00001758 _____ () C:\Users\Public\Desktop\Browserwahl.lnk 2014-07-14 18:30 - 2013-06-28 12:34 - 00000374 _____ () C:\Windows\Tasks\B Lyrics Update.job 2014-07-14 18:30 - 2013-06-03 21:08 - 00000350 _____ () C:\Windows\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv.job 2014-07-14 18:28 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-07-14 18:28 - 2009-07-14 06:51 - 00547916 _____ () C:\Windows\setupact.log 2014-07-14 18:25 - 2009-07-14 06:45 - 00455952 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-07-14 18:20 - 2011-04-12 10:28 - 00000000 ____D () C:\Program Files\Windows Journal 2014-07-14 18:20 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Common Files\System 2014-07-14 18:19 - 2014-05-06 21:02 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-07-14 18:19 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files\Windows Defender 2014-07-14 18:19 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files (x86)\Windows Defender 2014-07-14 18:19 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\Dism 2014-07-14 18:19 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\Dism 2014-07-14 18:18 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-07-14 18:17 - 2014-07-13 15:54 - 00000000 ____D () C:\ProgramData\MFAData 2014-07-14 18:16 - 2012-09-03 19:29 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-07-14 18:14 - 2013-02-25 16:09 - 00000940 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4074982664-1885493180-2041087550-1001UA.job 2014-07-14 18:11 - 2012-08-05 11:20 - 00001110 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-07-14 06:15 - 2014-07-14 06:08 - 00004361 _____ () C:\Windows\IE9_main.log 2014-07-14 06:14 - 2014-07-14 06:14 - 17773056 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 12268544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 10884096 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 09702400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 03695416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2014-07-14 06:14 - 2014-07-14 06:14 - 03695416 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2014-07-14 06:14 - 2014-07-14 06:14 - 02382848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-07-14 06:14 - 2014-07-14 06:14 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-07-14 06:14 - 2014-07-14 06:14 - 02303488 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 02136064 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01797632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01785344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01492992 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-07-14 06:14 - 2014-07-14 06:14 - 01427456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-07-14 06:14 - 2014-07-14 06:14 - 01389056 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01344000 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01126912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01102336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00818176 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00716800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00697344 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00603648 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00580608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00534528 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00452608 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00448512 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-07-14 06:14 - 2014-07-14 06:14 - 00434176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00420864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00403248 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2014-07-14 06:14 - 2014-07-14 06:14 - 00353792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00353584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00282112 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\ieaksie.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00249344 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00248320 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00236544 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00231936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00227840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieaksie.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00203776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00176640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieakui.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\ieakui.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00160256 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00160256 _____ (Microsoft Corporation) C:\Windows\system32\ieakeng.dll |
14.07.2014, 18:29 | #8 |
| Avira Antivir wird blockiertCode:
ATTFilter 2014-07-14 06:14 - 2014-07-14 06:14 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00150528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00130560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieakeng.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00123392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00118784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\admparse.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00101888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\admparse.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00078848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2014-07-14 06:14 - 2014-07-14 06:14 - 00074752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00074752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ie4uinit.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00072704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00065024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00063488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2014-07-14 06:14 - 2014-07-14 06:14 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00054272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-07-14 04:55 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache 2014-07-14 04:34 - 2009-07-14 07:38 - 00025600 ___SH () C:\Windows\system32\config\BCD-Template.LOG 2014-07-14 04:34 - 2009-07-14 07:32 - 00028672 _____ () C:\Windows\system32\config\BCD-Template 2014-07-14 04:33 - 2014-07-14 04:33 - 00262144 _____ () C:\Windows\system32\config\userdiff 2014-07-14 04:10 - 2014-07-14 04:06 - 00000000 ___HD () C:\$INPLACE.~TR 2014-07-14 00:54 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files\Windows Sidebar 2014-07-14 00:54 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files (x86)\Windows Sidebar 2014-07-14 00:54 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files (x86)\Windows Photo Viewer 2014-07-14 00:53 - 2011-05-16 15:57 - 00000000 ____D () C:\Windows\SysWOW64\XPSViewer 2014-07-14 00:53 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\SysWOW64\winrm 2014-07-14 00:53 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\SysWOW64\WCN 2014-07-14 00:53 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\SysWOW64\sysprep 2014-07-14 00:53 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\SysWOW64\slmgr 2014-07-14 00:53 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\SysWOW64\Printing_Admin_Scripts 2014-07-14 00:53 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files\Windows Photo Viewer 2014-07-14 00:53 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\MUI 2014-07-14 00:53 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\migwiz 2014-07-14 00:52 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\system32\winrm 2014-07-14 00:52 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\system32\WCN 2014-07-14 00:52 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\system32\slmgr 2014-07-14 00:52 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\system32\Printing_Admin_Scripts 2014-07-14 00:52 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\com 2014-07-14 00:52 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\sysprep 2014-07-14 00:52 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\Setup 2014-07-14 00:52 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\oobe 2014-07-14 00:52 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\MUI 2014-07-14 00:52 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\migwiz 2014-07-14 00:52 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\IME 2014-07-14 00:50 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\com 2014-07-14 00:49 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\servicing 2014-07-14 00:48 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\tr-TR 2014-07-14 00:48 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\tr-TR 2014-07-14 00:45 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\Setup 2014-07-14 00:45 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\oobe 2014-07-14 00:40 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\sl-SI 2014-07-14 00:39 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\sl-SI 2014-07-14 00:09 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files\DVD Maker 2014-07-13 23:55 - 2013-12-16 18:36 - 00000000 ___RD () C:\Users\Schrägle\Desktop\Stefan 2014-07-13 23:54 - 2014-07-13 23:54 - 09580848 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-07-13 23:53 - 2009-07-14 07:09 - 00000000 ____D () C:\Windows\System32\Tasks\WPD 2014-07-13 23:50 - 2014-07-14 04:35 - 00000000 ____D () C:\Windows\Panther 2014-07-13 23:50 - 2014-07-13 23:50 - 00000020 ___SH () C:\Users\Schrägle\ntuser.ini 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Programme 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Favoriten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Dokumente und Einstellungen 2014-07-13 23:50 - 2014-07-13 19:12 - 00000000 ____D () C:\Users\Schrägle 2014-07-13 23:50 - 2012-08-05 11:19 - 00000000 __SHD () C:\Recovery 2014-07-13 23:50 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Public\Libraries 2014-07-13 23:50 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Default 2014-07-13 23:50 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\Recovery 2014-07-13 23:50 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Windows NT 2014-07-13 20:25 - 2009-07-14 07:32 - 00000000 ____D () C:\Windows\system32\restore 2014-07-13 20:19 - 2010-11-21 05:47 - 00011344 _____ () C:\Windows\PFRO.log 2014-07-13 20:18 - 2012-09-03 19:29 - 00699056 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-07-13 20:18 - 2012-09-03 19:29 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-07-13 20:18 - 2011-12-01 23:26 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-07-13 20:18 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\Registration 2014-07-13 19:54 - 2014-07-13 19:54 - 00022960 _____ () C:\Windows\system32\emptyregdb.dat 2014-07-13 19:52 - 2012-08-06 16:45 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2014-07-13 19:51 - 2014-07-14 04:14 - 00000000 ___HD () C:\$WINDOWS.~Q 2014-07-13 19:51 - 2014-07-13 17:40 - 00006161 _____ () C:\Windows\comsetup.log 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerRecover 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Macromedia 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerRecover 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Macromedia 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help 2014-07-13 19:44 - 2009-07-14 06:57 - 00001547 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2014-07-13 19:44 - 2009-07-14 06:46 - 00005157 _____ () C:\Windows\DtcInstall.log 2014-07-13 19:44 - 2009-07-14 05:20 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-07-13 19:44 - 2009-07-14 05:20 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-07-13 19:44 - 2009-07-14 05:20 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-07-13 19:44 - 2009-07-14 05:20 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-07-13 19:42 - 2014-03-03 19:27 - 00000000 ____D () C:\Users\Schrägle\Documents\OneNote-Notizbücher 2014-07-13 19:42 - 2013-11-09 14:17 - 00000000 ____D () C:\Users\Schrägle\Documents\Battlefield Play4Free 2014-07-13 19:42 - 2013-02-15 21:06 - 00000000 ____D () C:\Users\Schrägle\Documents\Freemake 2014-07-13 19:42 - 2012-12-24 21:43 - 00000000 ____D () C:\Users\Schrägle\Documents\My Games 2014-07-13 19:42 - 2012-12-23 11:16 - 00000000 ____D () C:\Users\Schrägle\Documents\PhoenixRC 2014-07-13 19:42 - 2012-12-02 16:29 - 00000000 ____D () C:\Users\Schrägle\Documents\BFBC2 2014-07-13 19:42 - 2012-08-13 10:49 - 00000000 ____D () C:\Users\Schrägle\Tracing 2014-07-13 19:42 - 2012-08-05 11:11 - 00000000 __RHD () C:\Users\Schrägle\Finger weg sonst Finger ab 2014-07-13 19:41 - 2014-06-22 21:58 - 00000000 ____D () C:\Users\Schrägle\Desktop\Stefan Referat VW 2014-07-13 19:40 - 2014-03-12 21:02 - 00000000 ____D () C:\Users\Schrägle\Desktop\Fotos 2014-07-13 19:40 - 2013-06-08 14:27 - 00000000 ____D () C:\Users\Schrägle\Desktop\PV Anlage - UST FA 2014-07-13 19:40 - 2012-11-11 19:53 - 00000000 ____D () C:\Users\Schrägle\Desktop\Klaudia 2014-07-13 19:40 - 2012-09-06 16:30 - 00000000 ____D () C:\Users\Schrägle\Desktop\PV Anlage 2014-07-13 19:40 - 2012-08-05 11:11 - 00000000 ___RD () C:\Users\Schrägle\Desktop\Rainer 2014-07-13 19:40 - 2012-08-05 11:11 - 00000000 ____D () C:\Users\Schrägle\Desktop\PhoenixRC 2014-07-13 19:40 - 2012-08-05 11:11 - 00000000 ____D () C:\Users\Schrägle\Desktop\Musik W 2014-07-13 19:40 - 2012-08-05 11:11 - 00000000 ____D () C:\Users\Schrägle\Desktop\Fäustle 2014-07-13 19:39 - 2014-07-13 16:03 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\AVG2014 2014-07-13 19:39 - 2014-07-13 15:56 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Win System 2014-07-13 19:39 - 2014-07-13 15:56 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\VOPackage 2014-07-13 19:39 - 2014-07-13 15:56 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage 2014-07-13 19:39 - 2014-07-13 15:55 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Security Systems 2014-07-13 19:39 - 2014-06-13 18:17 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\FileZilla 2014-07-13 19:39 - 2014-05-05 09:44 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\thriXXX 2014-07-13 19:39 - 2014-04-13 09:55 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\FreeCAD 2014-07-13 19:39 - 2014-04-12 13:14 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LibreCAD 2014-07-13 19:39 - 2014-01-29 18:58 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\ColorCop 2014-07-13 19:39 - 2013-12-16 18:55 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\SearchProtect 2014-07-13 19:39 - 2013-12-16 18:54 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Uniblue 2014-07-13 19:39 - 2013-12-16 18:21 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\TuneUp Software 2014-07-13 19:39 - 2013-12-16 18:18 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Softonic 2014-07-13 19:39 - 2013-12-16 18:18 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\DVDVideoSoft 2014-07-13 19:39 - 2013-10-05 17:36 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\InstallShield 2014-07-13 19:39 - 2013-08-07 16:26 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Avira 2014-07-13 19:39 - 2013-05-09 12:47 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\player 2014-07-13 19:39 - 2013-04-03 16:16 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wajam 2014-07-13 19:39 - 2013-04-03 16:16 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Wajam 2014-07-13 19:39 - 2013-04-03 16:13 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FilesFrog Update Checker 2014-07-13 19:39 - 2013-02-28 16:42 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VideoPerformer 2014-07-13 19:39 - 2013-02-28 16:42 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Delta 2014-07-13 19:39 - 2013-02-15 21:06 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake 2014-07-13 19:39 - 2013-01-04 11:49 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\OpenCandy 2014-07-13 19:39 - 2013-01-04 11:49 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\DAEMON Tools Lite 2014-07-13 19:39 - 2012-12-25 15:28 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\WinRAR 2014-07-13 19:39 - 2012-12-25 15:27 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Driver Pro 2014-07-13 19:39 - 2012-12-25 15:08 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Optimizer Pro 2014-07-13 19:39 - 2012-12-21 17:04 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Unigraphics Solutions 2014-07-13 19:39 - 2012-12-16 12:31 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Unity 2014-07-13 19:39 - 2012-12-16 12:19 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Unity 2014-07-13 19:39 - 2012-12-02 16:29 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\PunkBuster 2014-07-13 19:39 - 2012-10-14 18:36 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Video Downloader 2014-07-13 19:39 - 2012-10-02 23:26 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Babylon 2014-07-13 19:39 - 2012-09-09 10:36 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Mozilla 2014-07-13 19:39 - 2012-08-29 09:01 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\XMedia Recode 2014-07-13 19:39 - 2012-08-17 09:54 - 00000000 ___HD () C:\Users\Schrägle\Desktop\Flugbilder 2014-07-13 19:39 - 2012-08-11 17:09 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\CyberLink 2014-07-13 19:39 - 2012-08-06 16:46 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\SoftGrid Client 2014-07-13 19:39 - 2012-08-06 16:46 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\SoftGrid Client 2014-07-13 19:39 - 2012-08-05 14:04 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Windows Live 2014-07-13 19:39 - 2012-08-05 11:24 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerRecover 2014-07-13 19:39 - 2012-08-05 11:24 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Macromedia 2014-07-13 19:39 - 2012-08-05 11:24 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Intel Corporation 2014-07-13 19:39 - 2012-08-05 11:24 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\ATI 2014-07-13 19:39 - 2012-08-05 11:24 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\VirtualStore 2014-07-13 19:39 - 2012-08-05 11:24 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Power2Go 2014-07-13 19:39 - 2012-08-05 11:09 - 00000000 ____D () C:\Users\Schrägle\Desktop\Drucker 2014-07-13 19:39 - 2012-08-05 10:59 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\HpUpdate 2014-07-13 19:39 - 2012-08-05 10:47 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Windows Live Writer 2014-07-13 19:39 - 2012-08-05 10:47 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Windows Live Writer 2014-07-13 19:39 - 2012-08-05 10:45 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Adobe 2014-07-13 19:39 - 2012-08-05 10:44 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Google 2014-07-13 19:38 - 2012-09-09 10:36 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Mozilla 2014-07-13 19:38 - 2012-08-05 10:46 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Microsoft Help 2014-07-13 19:37 - 2014-07-13 15:54 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\MFAData 2014-07-13 19:37 - 2014-04-12 13:15 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\LibreCAD 2014-07-13 19:37 - 2012-09-25 18:13 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Macromedia 2014-07-13 19:37 - 2012-08-05 10:56 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\HP 2014-07-13 19:37 - 2012-08-05 10:44 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Google 2014-07-13 19:36 - 2014-07-13 15:54 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Avg2014 2014-07-13 19:36 - 2014-06-27 19:56 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\AskPartnerNetwork 2014-07-13 19:36 - 2013-04-03 16:16 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\CRE 2014-07-13 19:36 - 2013-02-25 16:09 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Facebook 2014-07-13 19:36 - 2013-01-04 12:19 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\AVG Secure Search 2014-07-13 19:36 - 2012-09-01 15:14 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\APN 2014-07-13 19:36 - 2012-08-07 19:18 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Adobe 2014-07-13 19:36 - 2012-08-05 11:24 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\ATI 2014-07-13 19:27 - 2014-06-23 19:49 - 00000000 ____D () C:\Windows\SysWOW64\mjcm 2014-07-13 19:27 - 2014-06-23 19:49 - 00000000 ____D () C:\Windows\system32\tprb 2014-07-13 19:27 - 2014-04-12 13:20 - 00000000 ____D () C:\Windows\SysWOW64\jmdp 2014-07-13 19:27 - 2014-04-12 13:20 - 00000000 ____D () C:\Windows\system32\ljkb 2014-07-13 19:27 - 2014-01-16 17:31 - 00000000 ____D () C:\Windows\SysWOW64\SearchProtect 2014-07-13 19:27 - 2013-08-15 22:42 - 00000000 ____D () C:\Windows\system32\MRT 2014-07-13 19:27 - 2013-04-10 17:02 - 00000000 ____D () C:\Windows\SysWOW64\ARFC 2014-07-13 19:27 - 2012-10-14 18:34 - 00000000 ____D () C:\Windows\SysWOW64\WNLT 2014-07-13 19:27 - 2012-08-13 10:46 - 00000000 ____D () C:\Windows\tr 2014-07-13 19:27 - 2012-08-13 10:46 - 00000000 ____D () C:\Windows\sl 2014-07-13 19:27 - 2012-08-13 10:46 - 00000000 ____D () C:\Windows\pl 2014-07-13 19:27 - 2012-08-13 10:46 - 00000000 ____D () C:\Windows\nl 2014-07-13 19:27 - 2011-10-14 14:15 - 00000000 ____D () C:\Windows\system32\Macromed 2014-07-13 19:27 - 2011-07-18 23:12 - 00000000 ____D () C:\Windows\SysWOW64\Macromed 2014-07-13 19:27 - 2011-04-12 10:28 - 00000000 ____D () C:\Windows\ShellNew 2014-07-13 19:27 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\zh-HK 2014-07-13 19:27 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\zh-HK 2014-07-13 19:27 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF 2014-07-13 19:26 - 2012-08-13 10:46 - 00000000 ____D () C:\Windows\it 2014-07-13 19:26 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\LiveKernelReports 2014-07-13 19:25 - 2014-07-13 16:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2014-07-13 19:25 - 2014-07-13 15:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2014-07-13 19:25 - 2014-06-13 18:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Programm Verknüpfung Landjugend 2014-07-13 19:25 - 2014-04-12 13:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeCAD 0.13 2014-07-13 19:25 - 2014-02-03 19:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth 2014-07-13 19:25 - 2014-01-29 18:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Color Cop 2014-07-13 19:25 - 2013-12-16 18:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uniblue 2014-07-13 19:25 - 2013-12-16 18:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014 2014-07-13 19:25 - 2013-12-16 18:21 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} 2014-07-13 19:25 - 2013-12-16 18:21 - 00000000 ____D () C:\ProgramData\TuneUp Software 2014-07-13 19:25 - 2013-12-16 18:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft 2014-07-13 19:25 - 2013-11-09 14:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA Games 2014-07-13 19:25 - 2013-10-05 17:36 - 00000000 ____D () C:\Users\Public\Documents\Casio 2014-07-13 19:25 - 2013-10-05 17:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dynamic Photo Manager 2014-07-13 19:25 - 2013-06-02 12:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2014-07-13 19:25 - 2013-05-09 12:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAFPlayer 2014-07-13 19:25 - 2013-04-03 16:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip 2014-07-13 19:25 - 2013-03-14 09:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2014-07-13 19:25 - 2013-02-28 16:41 - 00000000 ____D () C:\ProgramData\IBUpdaterService 2014-07-13 19:25 - 2013-02-15 21:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake 2014-07-13 19:25 - 2013-02-15 21:06 - 00000000 ____D () C:\ProgramData\Freemake 2014-07-13 19:25 - 2013-02-15 21:06 - 00000000 ____D () C:\ProgramData\DivX 2014-07-13 19:25 - 2013-01-04 11:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite 2014-07-13 19:25 - 2013-01-04 11:48 - 00000000 ____D () C:\ProgramData\DAEMON Tools Lite 2014-07-13 19:25 - 2012-12-31 19:17 - 00000000 ____D () C:\ProgramData\Visan 2014-07-13 19:25 - 2012-12-31 19:17 - 00000000 ____D () C:\ProgramData\HP Photo Creations 2014-07-13 19:25 - 2012-12-27 13:05 - 00000000 ____D () C:\ProgramData\Wincert 2014-07-13 19:25 - 2012-12-27 13:05 - 00000000 ____D () C:\ProgramData\boost_interprocess 2014-07-13 19:25 - 2012-12-25 15:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Pro 2014-07-13 19:25 - 2012-12-25 15:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro 2014-07-13 19:25 - 2012-12-23 11:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhoenixRC 2014-07-13 19:25 - 2012-12-21 16:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Solid Edge V20 2014-07-13 19:25 - 2012-09-09 10:36 - 00000000 ____D () C:\ProgramData\Mozilla 2014-07-13 19:25 - 2012-09-03 19:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Live Add-in 2014-07-13 19:25 - 2012-08-13 10:48 - 00000000 ____D () C:\Windows\de 2014-07-13 19:25 - 2012-08-13 10:47 - 00000000 ____D () C:\Windows\hu 2014-07-13 19:25 - 2012-08-13 10:47 - 00000000 ____D () C:\Windows\fr 2014-07-13 19:25 - 2012-08-13 10:47 - 00000000 ____D () C:\Windows\es 2014-07-13 19:25 - 2012-08-13 10:47 - 00000000 ____D () C:\Windows\en 2014-07-13 19:25 - 2012-08-13 10:47 - 00000000 ____D () C:\Windows\el 2014-07-13 19:25 - 2012-08-13 10:47 - 00000000 ____D () C:\Windows\da 2014-07-13 19:25 - 2012-08-07 16:01 - 00000000 ____D () C:\ProgramData\VirtualizedApplications 2014-07-13 19:25 - 2012-08-06 16:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Starter (Deutsch) 2014-07-13 19:25 - 2012-08-05 11:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Memeo 2014-07-13 19:25 - 2012-08-05 11:23 - 00000000 ____D () C:\ProgramData\Kaspersky Rescue Disk 10 2014-07-13 19:25 - 2012-08-05 11:21 - 00000000 ____D () C:\ProgramData\TvdPersonal 2014-07-13 19:25 - 2012-08-05 11:21 - 00000000 ____D () C:\ProgramData\Partner 2014-07-13 19:25 - 2012-08-05 11:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\watchmi 2014-07-13 19:25 - 2012-08-05 11:21 - 00000000 ____D () C:\ProgramData\Google 2014-07-13 19:25 - 2012-08-05 10:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP 2014-07-13 19:25 - 2012-08-05 10:57 - 00000000 ____D () C:\ProgramData\HP 2014-07-13 19:25 - 2012-08-05 10:46 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-07-13 19:25 - 2012-02-20 17:40 - 00000000 ____D () C:\ProgramData\Sun 2014-07-13 19:25 - 2012-02-16 03:17 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Power2Go 2014-07-13 19:25 - 2012-02-16 03:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerDVD Copy 2014-07-13 19:25 - 2012-02-16 03:16 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LabelPrint 2014-07-13 19:25 - 2012-02-16 03:15 - 00000000 ____D () C:\ProgramData\CyberLink 2014-07-13 19:25 - 2012-02-16 03:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center 2014-07-13 19:25 - 2012-02-16 03:06 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel 2014-07-13 19:25 - 2012-02-15 18:25 - 00000000 ____D () C:\Users\Public\CyberLink 2014-07-13 19:25 - 2011-07-18 23:22 - 00000000 ____D () C:\ProgramData\Temp 2014-07-13 19:25 - 2011-07-18 22:56 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live 2014-07-13 19:25 - 2011-04-12 10:28 - 00000000 ___RD () C:\Users\Public\Recorded TV 2014-07-13 19:24 - 2014-07-13 16:00 - 00000000 ____D () C:\ProgramData\AVG2014 2014-07-13 19:24 - 2014-05-05 09:44 - 00000000 ____D () C:\Program Files (x86)\thriXXX 2014-07-13 19:24 - 2014-04-27 14:19 - 00000000 ____D () C:\ProgramData\AVG Secure Search 2014-07-13 19:24 - 2013-12-16 18:54 - 00000000 ____D () C:\Program Files (x86)\Uniblue 2014-07-13 19:24 - 2013-12-16 18:21 - 00000000 ____D () C:\Program Files (x86)\TuneUp Utilities 2014 2014-07-13 19:24 - 2013-08-07 16:25 - 00000000 ____D () C:\ProgramData\AskPartnerNetwork 2014-07-13 19:24 - 2013-08-07 16:25 - 00000000 ____D () C:\ProgramData\APN 2014-07-13 19:24 - 2013-06-16 20:13 - 00000000 ____D () C:\ProgramData\Ask 2014-07-13 19:24 - 2013-05-09 12:47 - 00000000 ____D () C:\Program Files (x86)\Tuguu SL 2014-07-13 19:24 - 2013-04-03 16:16 - 00000000 ____D () C:\Program Files (x86)\Wajam 2014-07-13 19:24 - 2013-02-28 16:42 - 00000000 ____D () C:\Program Files (x86)\VideoPerformer 2014-07-13 19:24 - 2013-01-04 12:10 - 00000000 ____D () C:\Program Files (x86)\SweetIM 2014-07-13 19:24 - 2012-12-21 15:21 - 00000000 ____D () C:\Program Files (x86)\Solid Edge V20 2014-07-13 19:24 - 2012-10-14 18:35 - 00000000 ____D () C:\Program Files (x86)\vGrabber-software 2014-07-13 19:24 - 2012-09-03 19:35 - 00000000 ____D () C:\ProgramData\Avira 2014-07-13 19:24 - 2012-08-05 11:21 - 00000000 ____D () C:\Program Files (x86)\watchmi 2014-07-13 19:24 - 2012-02-16 03:11 - 00000000 ____D () C:\ProgramData\ATI 2014-07-13 19:24 - 2011-07-18 23:06 - 00000000 ____D () C:\ProgramData\Adobe 2014-07-13 19:24 - 2011-07-18 22:51 - 00000000 ____D () C:\Program Files (x86)\Windows Live 2014-07-13 19:23 - 2013-12-16 18:55 - 00000000 ____D () C:\Program Files (x86)\SearchProtect 2014-07-13 19:23 - 2013-12-16 18:18 - 00000000 ____D () C:\Program Files (x86)\Softonic 2014-07-13 19:23 - 2013-04-03 16:13 - 00000000 ____D () C:\Program Files (x86)\PricePeep 2014-07-13 19:23 - 2012-12-27 13:05 - 00000000 ____D () C:\Program Files (x86)\Search Results Toolbar 2014-07-13 19:23 - 2012-12-23 11:16 - 00000000 ____D () C:\Program Files (x86)\PhoenixRC 2014-07-13 19:23 - 2012-02-16 03:12 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-07-13 19:22 - 2013-06-02 12:28 - 00000000 ____D () C:\Program Files (x86)\Microsoft Works 2014-07-13 19:22 - 2013-06-02 12:28 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 2014-07-13 19:22 - 2013-06-02 12:25 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 8 2014-07-13 19:22 - 2013-03-14 09:04 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight 2014-07-13 19:22 - 2013-01-06 17:36 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-07-13 19:22 - 2012-12-25 15:08 - 00000000 ____D () C:\Program Files (x86)\Optimizer Pro 2014-07-13 19:22 - 2012-12-16 18:22 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-07-13 19:22 - 2012-10-14 18:35 - 00000000 ____D () C:\Program Files (x86)\Perion 2014-07-13 19:22 - 2011-07-18 22:55 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2014-07-13 19:22 - 2011-07-18 22:40 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office 2014-07-13 19:22 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files (x86)\MSBuild 2014-07-13 19:21 - 2014-04-12 13:19 - 00000000 ____D () C:\Program Files (x86)\FreeCAD0.13 2014-07-13 19:21 - 2014-04-12 13:14 - 00000000 ____D () C:\Program Files (x86)\LibreCAD 2014-07-13 19:21 - 2014-02-11 20:59 - 00000000 ____D () C:\Program Files (x86)\Microsoft Expression 2014-07-13 19:21 - 2013-06-18 20:03 - 00000000 ____D () C:\Program Files (x86)\Java 2014-07-13 19:21 - 2013-02-15 21:06 - 00000000 ____D () C:\Program Files (x86)\Freemake 2014-07-13 19:21 - 2013-01-15 18:58 - 00000000 ____D () C:\Program Files (x86)\HP 2014-07-13 19:21 - 2012-12-31 19:17 - 00000000 ____D () C:\Program Files (x86)\HP Photo Creations 2014-07-13 19:21 - 2012-08-06 16:45 - 00000000 ____D () C:\Program Files (x86)\Microsoft Application Virtualization Client 2014-07-13 19:21 - 2012-08-05 11:23 - 00000000 ____D () C:\Program Files (x86)\Memeo 2014-07-13 19:21 - 2012-08-05 11:20 - 00000000 ____D () C:\Program Files (x86)\Google 2014-07-13 19:21 - 2012-08-05 10:59 - 00000000 ____D () C:\Program Files (x86)\Hewlett-Packard 2014-07-13 19:21 - 2012-02-16 03:02 - 00000000 ____D () C:\Program Files (x86)\Intel 2014-07-13 19:21 - 2011-07-18 23:23 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-07-13 19:20 - 2014-06-13 18:16 - 00000000 ____D () C:\Program Files (x86)\FileZilla FTP Client 2014-07-13 19:20 - 2013-12-16 18:18 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft 2014-07-13 19:20 - 2013-04-03 16:13 - 00000000 ____D () C:\Program Files (x86)\FilesFrog Update Checker 2014-07-13 19:20 - 2012-12-02 16:21 - 00000000 ____D () C:\Program Files (x86)\EA Games 2014-07-13 19:19 - 2013-02-28 16:42 - 00000000 ____D () C:\Program Files (x86)\Delta 2014-07-13 19:19 - 2013-01-04 11:49 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite 2014-07-13 19:19 - 2012-12-25 15:27 - 00000000 ____D () C:\Program Files (x86)\Driver Pro 2014-07-13 19:19 - 2011-07-18 23:23 - 00000000 ____D () C:\Program Files (x86)\CyberLink 2014-07-13 19:18 - 2014-01-29 18:57 - 00000000 ____D () C:\Program Files (x86)\Color_Cop 2014-07-13 19:18 - 2013-10-05 17:36 - 00000000 ____D () C:\Program Files (x86)\Casio 2014-07-13 19:18 - 2013-08-29 14:00 - 00000000 ____D () C:\Program Files (x86)\bLyrics 2014-07-13 19:18 - 2013-08-07 16:24 - 00000000 ____D () C:\Program Files (x86)\Avira 2014-07-13 19:18 - 2013-01-04 12:19 - 00000000 ____D () C:\Program Files (x86)\AVG Secure Search 2014-07-13 19:17 - 2014-07-13 15:59 - 00000000 ____D () C:\Program Files (x86)\AVG 2014-07-13 19:17 - 2013-08-07 16:25 - 00000000 ____D () C:\Program Files (x86)\AskPartnerNetwork 2014-07-13 19:17 - 2013-06-26 22:03 - 00000000 ____D () C:\Program Files\Java 2014-07-13 19:17 - 2013-04-03 16:13 - 00000000 ____D () C:\Program Files (x86)\7-Zip 2014-07-13 19:17 - 2013-03-14 09:04 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-07-13 19:17 - 2013-01-06 17:04 - 00000000 ____D () C:\Program Files\CCleaner 2014-07-13 19:17 - 2013-01-04 13:05 - 00000000 ____D () C:\Program Files\TrueCrypt 2014-07-13 19:17 - 2012-10-14 18:34 - 00000000 ____D () C:\Program Files\IB Updater 2014-07-13 19:17 - 2012-08-05 11:21 - 00000000 ____D () C:\Program Files\PlayReady 2014-07-13 19:17 - 2012-08-05 10:56 - 00000000 ____D () C:\Program Files\HP 2014-07-13 19:17 - 2012-08-05 10:47 - 00000000 ____D () C:\Program Files\Microsoft Office 2014-07-13 19:17 - 2012-02-16 03:15 - 00000000 ____D () C:\Program Files (x86)\ASM104xUSB3 2014-07-13 19:17 - 2012-02-16 03:10 - 00000000 ____D () C:\Program Files (x86)\AMD APP 2014-07-13 19:17 - 2012-02-16 03:09 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies 2014-07-13 19:17 - 2012-02-16 03:09 - 00000000 ____D () C:\Program Files\ATI Technologies 2014-07-13 19:17 - 2012-02-16 03:09 - 00000000 ____D () C:\Program Files\ATI 2014-07-13 19:17 - 2012-02-16 03:09 - 00000000 ____D () C:\Program Files (x86)\ATI Technologies 2014-07-13 19:17 - 2011-07-18 23:06 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-07-13 19:17 - 2011-07-18 22:49 - 00000000 ____D () C:\Program Files\Windows Live 2014-07-13 19:17 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Vorlagen 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Startmenü 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Netzwerkumgebung 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Lokale Einstellungen 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Eigene Dateien 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Druckumgebung 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Documents\Eigene Musik 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Documents\Eigene Bilder 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\AppData\Local\Verlauf 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\AppData\Local\Anwendungsdaten 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Anwendungsdaten 2014-07-13 19:11 - 2014-07-13 19:11 - 00001345 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk 2014-07-13 19:11 - 2014-07-13 19:11 - 00001326 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk 2014-07-13 19:11 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2014-07-13 19:11 - 2009-07-14 05:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2014-07-13 19:06 - 2014-07-13 19:06 - 00001355 _____ () C:\Windows\TSSysprep.log 2014-07-13 19:03 - 2014-07-13 18:55 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-07-13 18:55 - 2014-07-13 18:55 - 00000000 ____D () C:\Program Files\Realtek 2014-07-13 18:54 - 2014-07-13 18:54 - 00000000 _____ () C:\Windows\ativpsrm.bin 2014-07-13 18:50 - 2014-07-13 18:50 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf 2014-07-13 18:01 - 2012-08-05 11:19 - 01212404 _____ () C:\Windows\WindowsUpdate (1).log 2014-07-13 17:26 - 2014-07-13 17:26 - 00003302 _____ () C:\Users\Schrägle\Desktop\Windows Compatibility Report.htm 2014-07-13 17:23 - 2014-07-13 17:23 - 00013662 _____ () C:\Windows\diagwrn.xml 2014-07-13 17:23 - 2014-07-13 17:23 - 00001890 _____ () C:\Windows\diagerr.xml 2014-07-13 16:02 - 2014-07-13 16:02 - 00000985 _____ () C:\Users\Public\Desktop\AVG 2014.lnk 2014-07-13 16:00 - 2014-07-13 16:00 - 00000000 ___HD () C:\$AVG 2014-07-13 15:55 - 2014-07-13 15:55 - 00000142 _____ () C:\Users\Schrägle\AppData\Roaming\tmp_register.bat 2014-07-13 15:40 - 2013-08-07 16:24 - 00002074 _____ () C:\Users\Public\Desktop\Avira Control Center.lnk 2014-07-13 11:14 - 2014-07-13 11:14 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{C887F452-5450-42AE-92C3-EAC911EDB34C} 2014-07-10 17:33 - 2014-07-10 17:33 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{2E7488C6-96C2-45A0-83FA-4AA877390050} 2014-07-09 20:30 - 2014-07-09 20:30 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{042D9681-1CB0-45D7-9366-084F768DC847} 2014-07-07 18:53 - 2014-07-07 18:53 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{1071BD73-6D66-4747-B84F-C3F980B69617} 2014-07-07 18:53 - 2014-07-07 18:53 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{0E5B554B-2C84-4A29-BBCF-8CF9312A023F} 2014-07-05 11:04 - 2014-07-05 11:03 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{DBB75948-902D-4024-B588-07D9CC33167F} 2014-07-03 18:11 - 2013-08-07 16:24 - 00117712 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2014-07-02 20:37 - 2014-07-02 20:37 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{0ED52F5C-7E76-48D3-B440-1B66A2247749} 2014-07-02 13:06 - 2013-08-07 16:24 - 00042040 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2014-06-30 04:09 - 2014-07-14 03:27 - 00519168 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-06-30 04:04 - 2014-07-14 03:27 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-06-29 16:57 - 2014-06-29 16:57 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{ECC4DA04-C8A5-4673-9625-EAB427986779} 2014-06-29 16:57 - 2014-06-29 16:57 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{C9E1C0EE-9103-4424-8418-78EADDD7D964} 2014-06-29 09:03 - 2014-06-29 09:03 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{A84A427F-8D52-45C8-AE07-D49BAA473727} 2014-06-28 17:51 - 2014-06-28 17:51 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{DC6B7C0A-397F-420A-925E-9E651BBF7836} 2014-06-25 20:16 - 2014-06-25 20:16 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cf90a18dd4ef68.job 2014-06-25 16:39 - 2014-06-25 16:39 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{DE3AADE9-90F8-4435-8DBF-C09011FD9CCC} 2014-06-24 16:15 - 2014-06-25 19:50 - 02601776 _____ () C:\Windows\system32\dmwu.exe 2014-06-24 16:11 - 2012-10-14 18:34 - 00033792 _____ (IncrediMail, Ltd.) C:\Windows\system32\ImHttpComm.dll 2014-06-24 15:09 - 2011-01-08 00:02 - 00829264 _____ (Microsoft Corporation) C:\Windows\system32\msvcr100.dll 2014-06-24 15:09 - 2011-01-08 00:02 - 00608080 _____ (Microsoft Corporation) C:\Windows\system32\msvcp100.dll 2014-06-22 22:00 - 2013-06-26 15:54 - 00003730 _____ () C:\Program Files (x86)\Mozilla Firefoxavg-secure-search.xml 2014-06-22 22:00 - 2013-01-04 12:19 - 00050464 _____ (AVG Technologies) C:\Windows\system32\Drivers\avgtpx64.sys 2014-06-22 20:20 - 2013-03-06 20:42 - 00901120 ___SH () C:\Users\Schrägle\Desktop\Thumbs.db 2014-06-21 19:58 - 2014-06-21 19:58 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{B33F55B0-EBE8-4679-942B-6AA96708E1A9} 2014-06-20 20:04 - 2014-06-20 20:03 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{9F69A0B2-809F-423F-8B77-E0501B392178} 2014-06-19 19:12 - 2014-06-19 19:12 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{C03CB42A-9AE4-418C-BA83-47CB7D12EC35} 2014-06-19 03:06 - 2014-07-09 15:51 - 00004096 ____N (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-06-19 02:41 - 2014-07-09 15:51 - 00083968 ____N (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-06-19 02:41 - 2014-07-09 15:51 - 00048640 ____N (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-06-19 02:24 - 2014-07-09 15:51 - 00111616 ____N (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-06-19 02:23 - 2014-07-09 15:51 - 00752640 ____N (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-06-19 02:14 - 2014-07-09 15:51 - 00940032 ____N (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-06-19 01:59 - 2014-07-09 15:51 - 00038400 ____N (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-06-19 01:36 - 2014-07-09 15:51 - 00051200 ____N (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-06-19 01:35 - 2014-07-09 15:51 - 00062464 ____N (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-06-19 01:27 - 2014-07-09 15:51 - 01249280 ____N (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-06-19 01:22 - 2014-07-09 15:51 - 00592896 ____N (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-06-19 01:06 - 2014-07-09 15:51 - 00032256 ____N (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-06-19 00:46 - 2014-07-09 15:51 - 01068032 ____N (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-06-18 19:05 - 2014-06-18 19:05 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{F10216B5-ABA2-4B1F-9443-7925EDA4C2CF} 2014-06-18 04:18 - 2014-07-14 03:27 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2014-06-18 03:51 - 2014-07-14 03:27 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe 2014-06-18 03:10 - 2014-07-14 03:27 - 03157504 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-06-17 16:21 - 2014-06-17 16:21 - 00235800 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgldx64.sys 2014-06-17 16:07 - 2014-06-17 16:07 - 00328984 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgloga.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00269080 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgtdia.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00242968 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsdrivera.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00190744 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsha.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00153368 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgdiska.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00123672 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgmfx64.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00031512 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgrkx64.sys 2014-06-16 20:34 - 2014-06-16 20:33 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{37940329-4D90-4DFC-A19F-5B13B85BC9B0} 2014-06-15 20:52 - 2014-06-15 20:52 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{A4B0555F-BEAA-4483-9C9C-05EDBCEE76F4} 2014-06-15 14:43 - 2014-06-15 14:43 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{DC99FA77-EBF8-4A51-8EB1-A12BD84B7E68} 2014-06-14 13:01 - 2014-06-14 13:01 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{83E2F3AA-BE9E-4DF7-9766-BF2BE4F8CF71} ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-07-13 21:04 ==================== End Of Log ============================Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 14-07-2014 Ran by Schrägle (administrator) on SCHRÄGLE-PC on 14-07-2014 18:35:17 Running from C:\Users\Schrägle\Downloads Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 9 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\System32\atiesrxx.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (APN LLC.) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgfws.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe (Freemake) C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgnsa.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgemca.exe () C:\Windows\System32\dmwu.exe (Memeo) C:\Program Files (x86)\Memeo\AutoBackup\MemeoBackgroundService.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe (AVG Secure Search) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.7\ToolbarUpdater.exe (Wajam) C:\Program Files (x86)\Wajam\Updater\WajamUpdater.exe () C:\Program Files (x86)\watchmi\TvdService.exe () C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.7\loggingserver.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Conduit) C:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe (Microsoft Corporation) C:\Windows\System32\LogonUI.exe (AMD) C:\Windows\System32\atieclxx.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesApp64.exe (Conduit) C:\Program Files (x86)\SearchProtect\SearchProtect\bin\cltmng.exe () C:\Windows\SysWOW64\mjcm\dnkt.exe () C:\Windows\System32\tprb\dnkt.exe (Conduit) C:\Program Files (x86)\SearchProtect\UI\bin\cltmngui.exe (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Facebook Inc.) C:\Users\Schrägle\AppData\Local\Facebook\Update\FacebookUpdate.exe (PC Utilities Pro) C:\Program Files (x86)\Optimizer Pro\OptProReminder.exe (APN) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe (Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe () C:\Program Files (x86)\AVG Secure Search\vprot.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe () C:\Program Files (x86)\watchmi\TvdTray.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (AVG Secure Search) C:\Program Files (x86)\Common Files\AVG Secure Search\ScriptHelperInstaller\18.1.7\ScriptHelper.exe (Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgui.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13374568 2011-11-29] (Realtek Semiconductor) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-12-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [ApnTBMon] => C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [1956760 2014-06-23] (APN) HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\AVG2014\avgui.exe [5179408 2014-06-17] (AVG Technologies CZ, s.r.o.) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [750160 2014-07-03] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [CLMLServer] => C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [107816 2010-08-04] (CyberLink) HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [49208 2010-03-12] (Hewlett-Packard) HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284440 2011-05-20] (Intel Corporation) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [343168 2011-10-14] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [vProt] => C:\Program Files (x86)\AVG Secure Search\vprot.exe [2571288 2014-06-22] () HKLM Group Policy restriction on software: C:\Program Files (x86)\Avira <====== ATTENTION HKLM Group Policy restriction on software: C:\Documents and Settings\All Users\Application Data\Avira <====== ATTENTION HKU\S-1-5-21-4074982664-1885493180-2041087550-1001\...\Run: [aplvbtj] => regsvr32.exe " HKU\S-1-5-21-4074982664-1885493180-2041087550-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3673728 2012-11-06] (DT Soft Ltd) HKU\S-1-5-21-4074982664-1885493180-2041087550-1001\...\Run: [Driver Pro] => C:\Program Files (x86)\Driver Pro\DPLauncher.exe [340512 2012-10-30] (PC Utilities Pro) HKU\S-1-5-21-4074982664-1885493180-2041087550-1001\...\Run: [Facebook Update] => C:\Users\Schrägle\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2013-02-25] (Facebook Inc.) HKU\S-1-5-21-4074982664-1885493180-2041087550-1001\...\Run: [Optimizer Pro] => C:\Program Files (x86)\Optimizer Pro\OptProLauncher.exe [81952 2012-10-21] (PC Utilities Pro) HKU\S-1-5-21-4074982664-1885493180-2041087550-1001\...\Run: [BrowserChoice] => C:\Windows\System32\browserchoice.exe [294912 2010-02-23] (Microsoft Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\watchmi tray.lnk ShortcutTarget: watchmi tray.lnk -> C:\Windows\Installer\{F0559C5E-7912-4391-B1A0-6B975F0E5064}\SHCT_TRAY_PROGRAMG_A10D8603999C4E9488776EF2533C58C9.exe (Acresso Software Inc.) Startup: C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk ShortcutTarget: OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk -> C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,bProtector Start Page = hxxp://www2.delta-search.com/?affID=120519&tt=gc_&babsrc=HP_ss&mntrId=204C8C89A5C0D106 HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com/ig/redirectdomain?brand=MDNF&bmod=MDNF HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://feed.helperbar.com/?publisher=OC&dpid=OC&co=DE&userid=3f43e60c-aae1-49e7-abf7-b555e1809f35&affid=111583&searchtype=ds&babsrc=lnkry&q={searchTerms} HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://feed.helperbar.com/?publisher=OC&dpid=OC&co=DE&userid=3f43e60c-aae1-49e7-abf7-b555e1809f35&affid=111583&searchtype=ds&babsrc=lnkry&q={searchTerms} HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.google.de/ HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.conduit.com/?ctid=CT3318001&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=2&UP=SPBDE4106A-6735-4786-94FB-2FDCB1B2DBB3&SSPV= URLSearchHook: HKCU - SearchHook Class - {D8278076-BC68-4484-9233-6E7F1628B56C} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\searchhook.dll (APN LLC.) StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&gct=ds&appid=484&systemid=406&apn_dtid=BND406&apn_ptnrs=AG6&o=APN10645&apn_uid=4169429992394568&q={searchTerms} SearchScopes: HKLM - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&gct=ds&appid=484&systemid=406&apn_dtid=BND406&apn_ptnrs=AG6&o=APN10645&apn_uid=4169429992394568&q={searchTerms} SearchScopes: HKLM-x32 - DefaultScope {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.helperbar.com/?publisher=OC&dpid=OC&co=DE&userid=3f43e60c-aae1-49e7-abf7-b555e1809f35&affid=113129&searchtype=ds&babsrc=lnkry&q={searchTerms} SearchScopes: HKLM-x32 - {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.helperbar.com/?publisher=OC&dpid=OC&co=DE&userid=3f43e60c-aae1-49e7-abf7-b555e1809f35&affid=113129&searchtype=ds&babsrc=lnkry&q={searchTerms} SearchScopes: HKLM-x32 - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&gct=ds&appid=484&systemid=406&apn_dtid=BND406&apn_ptnrs=AG6&o=APN10645&apn_uid=4169429992394568&q={searchTerms} SearchScopes: HKCU - DefaultScope {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = hxxp://search.conduit.com/Results.aspx?ctid=CT3318001&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=2&UP=SPBDE4106A-6735-4786-94FB-2FDCB1B2DBB3&q={searchTerms}&SSPV= SearchScopes: HKCU - bProtectorDefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} SearchScopes: HKCU - {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.helperbar.com/?publisher=OC&dpid=OC&co=DE&userid=3f43e60c-aae1-49e7-abf7-b555e1809f35&affid=111583&searchtype=ds&babsrc=lnkry&q={searchTerms} SearchScopes: HKCU - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = hxxp://search.conduit.com/Results.aspx?ctid=CT3318001&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=2&UP=SPBDE4106A-6735-4786-94FB-2FDCB1B2DBB3&q={searchTerms}&SSPV= SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://search.babylon.com/?q={searchTerms}&affID=120519&tt=gc_&babsrc=SP_ss_wls&mntrId=204C8C89A5C0D106 SearchScopes: HKCU - {47F90973-4CA2-4B04-9871-357401428EDA} URL = hxxp://search.softonic.com/MOY00621/tb_v1?q={searchTerms}&SearchSource=4&cc=&mi=204c3cc00000000000008c89a5c0d106&r=760 SearchScopes: HKCU - {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxp://isearch.avg.com/search?cid={6BC30EE0-2A17-4FE7-9CC0-06810D954378}&mid=76e695e090054cd5a827dd4aeb17cf8b-450ce608ba99f2e236ed78e1c9cefc30d79ded87&lang=en&ds=pl011&pr=sa&d=2013-01-04 11:19:12&v=14.2.0.1&pid=avg&sg=0&sap=dsp&q={searchTerms} SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&gct=ds&appid=484&systemid=406&apn_dtid=BND406&apn_ptnrs=AG6&o=APN10645&apn_uid=4169429992394568&q={searchTerms} SearchScopes: HKCU - {CD620077-47CB-4D83-82DD-10CE510566DA} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=AVR-3&o=APN10395&src=kw&q={searchTerms}&locale=de_DE&apn_ptnrs=^ABT&apn_dtid=^YYYYYY^YY^DE&apn_uid=b959b0e8-4ca6-444f-8433-8477125cfddd&apn_sauid=60B437BE-0B18-4D4C-AE46-115F562DE782 SearchScopes: HKCU - {CFF4DB9B-135F-47c0-9269-B4C6572FD61A} URL = hxxp://mystart.incredibar.com/?a=6OyR68zFGC&loc=skw&search={searchTerms}&i=26 BHO: Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport_x64.dll (APN LLC.) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: DataMngr - {C1ED9DA0-AFD0-4b90-AC6A-D3874F591014} - C:\Program Files (x86)\Search Results Toolbar\Datamngr\x64\BrowserConnection.dll (Bandoo Media Inc) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO: DVDVideoSoft IE Extension - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll (DVDVideoSoft Ltd.) BHO-x32: Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.) BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\18.1.7.644\AVG Secure Search_toolbar.dll (AVG Secure Search) BHO-x32: Wajam - {A7A6995D-6EE1-4FD1-A258-49395D5BF99C} - C:\Program Files (x86)\Wajam\IE\priam_bho.dll (Wajam) BHO-x32: delta Helper Object - {C1AF5FA5-852C-4C90-812E-A7F75E011D87} - C:\Program Files (x86)\Delta\delta\1.8.16.16\bh\delta.dll (Delta-search.com) BHO-x32: DataMngr - {C1ED9DA0-AFD0-4b90-AC6A-D3874F591014} - C:\Program Files (x86)\Search Results Toolbar\Datamngr\BrowserConnection.dll (Bandoo Media Inc) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Softonic Helper Object - {E87806B5-E908-45FD-AF5E-957D83E58E68} - C:\Program Files (x86)\Softonic\Softonic\1.8.21.14\bh\Softonic.dll (Softonic.com) BHO-x32: DVDVideoSoft IE Extension - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll (DVDVideoSoft Ltd.) BHO-x32: SweetPacks Browser Helper - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll (SweetIM Technologies Ltd.) BHO-x32: Search-Results Toolbar - {f34c9277-6577-4dff-b2d7-7d58092f272f} - C:\PROGRA~2\SEARCH~1\Datamngr\SRTOOL~1\searchresultsDx.dll No File BHO-x32: PricePeep - {FD6D90C0-E6EE-4BC6-B9F7-9ED319698007} - C:\Program Files (x86)\PricePeep\pricepeep.dll (PricePeep) Toolbar: HKLM - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport_x64.dll (APN LLC.) Toolbar: HKLM - No Name - {ae07101b-46d4-4a98-af68-0333ea26e113} - No File Toolbar: HKLM-x32 - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.) Toolbar: HKLM-x32 - Softonic Toolbar - {5018CFD2-804D-4C99-9F81-25EAEA2769DE} - C:\Program Files (x86)\Softonic\Softonic\1.8.21.14\SoftonicTlbr.dll (Softonic.com) Toolbar: HKLM-x32 - Delta Toolbar - {82E1477C-B154-48D3-9891-33D83C26BCD3} - C:\Program Files (x86)\Delta\delta\1.8.16.16\deltaTlbr.dll (Delta-search.com) Toolbar: HKLM-x32 - AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\18.1.7.644\AVG Secure Search_toolbar.dll (AVG Secure Search) Toolbar: HKLM-x32 - No Name - {ae07101b-46d4-4a98-af68-0333ea26e113} - No File Toolbar: HKLM-x32 - SweetPacks Toolbar for Internet Explorer - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll (SweetIM Technologies Ltd.) Toolbar: HKLM-x32 - Search-Results Toolbar - {f34c9277-6577-4dff-b2d7-7d58092f272f} - C:\PROGRA~2\SEARCH~1\Datamngr\SRTOOL~1\searchresultsDx.dll No File Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File Toolbar: HKCU - No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No File Toolbar: HKCU - No Name - {EEE6C35B-6118-11DC-9C72-001320C79847} - No File Toolbar: HKCU - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport_x64.dll (APN LLC.) DPF: HKLM-x32 {C8BC46C7-921C-4102-B67D-F1F7E65FB0BE} https://battlefield.play4free.com/static/updater/BP4FUpdater_1.0.96.0.cab Handler-x32: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\18.1.7\ViProtocol.dll (AVG Secure Search) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 192.168.2.1 FireFox: ======== FF ProfilePath: C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default FF DefaultSearchEngine: Ask Search FF SelectedSearchEngine: Conduit Search FF Homepage: hxxp://search.conduit.com/?ctid=CT3318001&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=2&UP=SPBDE4106A-6735-4786-94FB-2FDCB1B2DBB3&SSPV= FF Homepage: hxxp://search.conduit.com/?ctid=CT3318001&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=2&UP=SPBDE4106A-6735-4786-94FB-2FDCB1B2DBB3&SSPV= FF SearchEngineOrder.1: Ask Search FF NewTab: hxxp://search.conduit.com/?ctid=CT3318001&octid=EB_ORIGINAL_CTID&SearchSource=69&CUI=&SSPV=&Lay=1&UM=2&UP=SPBDE4106A-6735-4786-94FB-2FDCB1B2DBB3 FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll () FF Plugin: @java.com/DTPlugin,version=10.25.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll () FF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin - C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\18.1.7\\npsitesafety.dll No File FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @java.com/DTPlugin,version=10.21.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.21.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\Schrägle\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited) FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Schrägle\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF user.js: detected! => C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\user.js FF SearchPlugin: C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\searchplugins\ask-search.xml FF SearchPlugin: C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\searchplugins\babylon.xml FF SearchPlugin: C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\searchplugins\conduit-search.xml FF SearchPlugin: C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\searchplugins\delta.xml FF SearchPlugin: C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\searchplugins\MyStart Search.xml FF SearchPlugin: C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\searchplugins\softonic.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\avg-secure-search.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\Search_Results.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\avg-secure-search.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Battlefield Play4Free - C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\Extensions\battlefieldplay4free@ea.com [2013-05-30] FF Extension: Delta Toolbar - C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\Extensions\ffxtlbr@delta.com [2013-02-28] FF Extension: No Name - C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\Extensions\staged [2014-07-13] FF Extension: Yahoo! Toolbar - C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\Extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1} [2013-04-14] FF Extension: PricePeep - C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\Extensions\pricepeep@getpricepeep.com.xpi [2013-02-03] FF Extension: Avira SearchFree Toolbar plus Web Protection - C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\Extensions\toolbar_AVIRA-V7@apn.ask.com.xpi [2013-07-26] FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\extensions\ffxtlbr@babylon.com [2013-02-28] FF HKLM\...\Firefox\Extensions: [{336D0C35-8A85-403a-B9D2-65C292C39087}] - C:\Program Files\IB Updater\Firefox FF Extension: IB Updater - C:\Program Files\IB Updater\Firefox [2012-10-14] FF HKLM\...\Firefox\Extensions: [{FE1DEEEA-DB6D-44b8-83F0-34FC0F9D1052}] - C:\Program Files\IB Updater\Firefox FF HKLM-x32\...\Firefox\Extensions: [avg@toolbar] - C:\ProgramData\AVG Secure Search\FireFoxExt\18.1.7.644 FF Extension: AVG Security Toolbar - C:\ProgramData\AVG Secure Search\FireFoxExt\18.1.7.644 [2014-06-22] FF HKLM-x32\...\Firefox\Extensions: [fmconverter@gmail.com] - C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Firefox FF Extension: Freemake Video Converter Plugin - C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Firefox [2013-02-15] FF HKLM-x32\...\Firefox\Extensions: [{336D0C35-8A85-403a-B9D2-65C292C39087}] - C:\Program Files\IB Updater\Firefox FF HKLM-x32\...\Firefox\Extensions: [{ACAA314B-EEBA-48e4-AD47-84E31C44796C}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff FF Extension: DVDVideoSoft YouTube MP3 and Video Download - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff [2013-12-16] FF HKLM-x32\...\Firefox\Extensions: [{FE1DEEEA-DB6D-44b8-83F0-34FC0F9D1052}] - C:\Program Files\IB Updater\Firefox FF HKCU\...\Firefox\Extensions: [{45dd9ac7-a7fe-4cee-a035-d55aefec22ce}] - C:\Program Files (x86)\bLyrics\131.xpi FF Extension: B Lyrics - C:\Program Files (x86)\bLyrics\131.xpi [2013-08-29] FF HKCU\...\Firefox\Extensions: [{5a95a9e0-59dd-4314-bd84-4d18ca83a0e2}] - C:\Program Files (x86)\Wajam\Firefox\{5a95a9e0-59dd-4314-bd84-4d18ca83a0e2}.xpi FF Extension: Wajam - C:\Program Files (x86)\Wajam\Firefox\{5a95a9e0-59dd-4314-bd84-4d18ca83a0e2}.xpi [2013-03-28] Chrome: ======= CHR HomePage: hxxp://search.softonic.com/MOY00621/tb_v1?SearchSource=48&cc=&mi=204c3cc00000000000008c89a5c0d106 CHR StartupUrls: "hxxp://search.softonic.com/MOY00621/tb_v1?SearchSource=48&cc=&mi=204c3cc00000000000008c89a5c0d106" CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\gcswf32.dll No File CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll No File CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\4.1.10111.0\npctrl.dll No File CHR Plugin: (Chrome NaCl) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\pdf.dll () CHR Plugin: (Kaspersky Anti-Virus) - C:\Users\Schrgle\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman\12.0.0.374_0\plugin/npABPlugin.dll No File CHR Plugin: (Kaspersky Anti-Virus) - C:\Users\Schrgle\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh\12.0.0.374_0\plugin/npVKPlugin.dll No File CHR Plugin: (Kaspersky Anti-Virus) - C:\Users\Schrgle\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\12.0.0.397_0\plugin/npUrlAdvisor.dll No File CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll No File CHR Plugin: (Java(TM) Platform SE 7 U3) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (Windows Live Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (Default Plug-in) - default_plugin No File CHR Extension: (Avira SearchFree Toolbar plus Web Protection) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaacalgebmfelllfiaoknifldpngjh [2013-08-07] CHR Extension: (Adblock Plus) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2013-05-06] CHR Extension: (IB Updater) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd [2012-10-30] CHR Extension: (Softonic Chrome Toolbar) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\elchiiiejkobdbblfejjkbphbddgmljf [2013-12-16] CHR Extension: (Freemake Video Converter) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj [2013-02-15] CHR Extension: (Wajam) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpmbfleldcgkldadpdinhjjopdfpjfjp [2013-04-03] CHR Extension: (SwissConverter 2.1) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\lhdidofdhbieclaekjnfcnfaoceobnco [2013-04-03] CHR Extension: (PricePeep) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\licjnkifamhpbaefhdpacpmihicfbomb [2013-04-03] CHR Extension: (Google Wallet) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-22] CHR Extension: (SweetPacks Chrome Extension) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj [2013-09-17] CHR Extension: (Battlefield Play4Free) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\oiokahphinmbmakkehgelkmpolmnbkdh [2013-11-02] CHR Extension: (B Lyrics) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\okaclkhnjaebofijaabgiahinbajiekd [2013-08-16] CHR HKLM\...\Chrome\Extension: [dlnembnfbcpjnepmfjmngjenhhajpdfd] - C:\Program Files\IB Updater\source.crx [2012-10-14] CHR HKCU\...\Chrome\Extension: [lhdidofdhbieclaekjnfcnfaoceobnco] - C:\Users\Schrägle\AppData\Local\CRE\lhdidofdhbieclaekjnfcnfaoceobnco.crx [2013-03-24] CHR HKLM-x32\...\Chrome\Extension: [aaaaacalgebmfelllfiaoknifldpngjh] - C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\ToolbarCR.crx [2014-06-26] CHR HKLM-x32\...\Chrome\Extension: [dhkplhfnhceodhffomolpfigojocbpcb] - C:\Users\Schrägle\AppData\Roaming\BabSolution\CR\BabylonChrome1.crx [2014-06-26] CHR HKLM-x32\...\Chrome\Extension: [dlnembnfbcpjnepmfjmngjenhhajpdfd] - C:\Program Files\IB Updater\source.crx [2012-10-14] CHR HKLM-x32\...\Chrome\Extension: [elchiiiejkobdbblfejjkbphbddgmljf] - C:\Program Files (x86)\Softonic\Softonic\1.8.21.14\Softonic.crx [2013-06-11] CHR HKLM-x32\...\Chrome\Extension: [fgfdfcbeamjnjdejakdidpniblllnbpg] - C:\Windows\SysWOW64\jmdp\pnte.crx [2013-06-11] |
14.07.2014, 18:30 | #9 |
| Avira Antivir wird blockiertCode:
ATTFilter CHR HKLM-x32\...\Chrome\Extension: [jbolfgndggfhhpbnkgnpjkfhinclbigj] - C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Chrome\Freemake.Plugin.Chrome.crx [2013-02-15] CHR HKLM-x32\...\Chrome\Extension: [jifflliplgeajjdhmkcfnngfpgbjonjg] - C:\Program Files (x86)\Perion\NewTab\newTab.crx [2012-10-14] CHR HKLM-x32\...\Chrome\Extension: [jpmbfleldcgkldadpdinhjjopdfpjfjp] - C:\Users\Schrägle\AppData\Local\Wajam\Chrome\wajam.crx [2013-03-28] CHR HKLM-x32\...\Chrome\Extension: [lhdidofdhbieclaekjnfcnfaoceobnco] - C:\Users\Schrägle\AppData\Local\CRE\lhdidofdhbieclaekjnfcnfaoceobnco.crx [2013-03-24] CHR HKLM-x32\...\Chrome\Extension: [ndibdjnfmopecpmkdieinmbadjfpblof] - C:\ProgramData\AVG Secure Search\ChromeExt\18.1.0.443\avg.crx [2014-04-27] CHR HKLM-x32\...\Chrome\Extension: [niogeckbkdcabhnapjbkeiklablhjoca] - C:\Program Files (x86)\Perion\ChromeInfoBar\ChromeInfoBar.crx [2012-10-14] CHR HKLM-x32\...\Chrome\Extension: [ogccgbmabaphcakpiclgcnmcnimhokcj] - C:\Windows\SysWOW64\mjcm\SweetNT.crx [2014-06-24] CHR HKLM-x32\...\Chrome\Extension: [okaclkhnjaebofijaabgiahinbajiekd] - C:\Program Files (x86)\bLyrics\131.crx [2013-08-29] ==================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [430160 2014-07-03] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [430160 2014-07-03] (Avira Operations GmbH & Co. KG) R2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1030224 2014-07-02] (Avira Operations GmbH & Co. KG) R2 APNMCP; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [165784 2014-06-23] (APN LLC.) R2 avgfws; C:\Program Files (x86)\AVG\AVG2014\avgfws.exe [1417160 2014-06-17] (AVG Technologies CZ, s.r.o.) S2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe [3241488 2014-06-27] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe [289328 2014-06-17] (AVG Technologies CZ, s.r.o.) R2 CltMngSvc; C:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe [2301216 2014-01-01] (Conduit) R2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [100864 2013-01-31] (Freemake) [File not signed] R2 IBUpdaterService; C:\Windows\system32\dmwu.exe [2601776 2014-06-24] () S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [File not signed] S3 IEEtwCollectorService; C:\Windows\system32\IEEtwCollector.exe [111616 2014-06-19] (Microsoft Corporation) [File not signed] R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe [2100024 2013-08-30] (TuneUp Software) R2 vToolbarUpdater18.1.7; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.7\ToolbarUpdater.exe [1813528 2014-06-22] (AVG Secure Search) R2 WajamUpdater; C:\Program Files (x86)\Wajam\Updater\WajamUpdater.exe [109064 2013-03-28] (Wajam) [File not signed] R2 watchmi; C:\Program Files (x86)\watchmi\TvdService.exe [70144 2012-01-31] () [File not signed] ==================== Drivers (Whitelisted) ==================== R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [153368 2014-06-17] (AVG Technologies CZ, s.r.o.) R1 Avgfwfd; C:\Windows\System32\DRIVERS\avgfwd6a.sys [57144 2013-09-26] (AVG Technologies CZ, s.r.o.) R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [242968 2014-06-17] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [190744 2014-06-17] (AVG Technologies CZ, s.r.o.) S1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [235800 2014-06-17] (AVG Technologies CZ, s.r.o.) S0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [328984 2014-06-17] (AVG Technologies CZ, s.r.o.) R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [123672 2014-06-17] (AVG Technologies CZ, s.r.o.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [117712 2014-07-03] (Avira Operations GmbH & Co. KG) R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [31512 2014-06-17] (AVG Technologies CZ, s.r.o.) R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [269080 2014-06-17] (AVG Technologies CZ, s.r.o.) R1 avgtp; C:\Windows\system32\drivers\avgtpx64.sys [50464 2014-06-22] (AVG Technologies) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [130584 2014-06-03] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-11-19] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\Windows\System32\DRIVERS\avnetflt.sys [42040 2014-07-02] (Avira Operations GmbH & Co. KG) R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [14112 2013-08-21] (TuneUp Software) U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [59904 2009-07-14] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-07-14 18:35 - 2014-07-14 18:35 - 00036211 _____ () C:\Users\Schrägle\Downloads\FRST.txt 2014-07-14 18:34 - 2014-07-14 18:34 - 02086912 _____ (Farbar) C:\Users\Schrägle\Downloads\FRST64.exe 2014-07-14 18:31 - 2014-07-14 18:32 - 00001447 _____ () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-07-14 18:31 - 2014-07-14 18:31 - 00003548 _____ () C:\Windows\System32\Tasks\CreateChoiceProcessTask 2014-07-14 18:31 - 2014-07-14 18:31 - 00001758 _____ () C:\Users\Public\Desktop\Browserwahl.lnk 2014-07-14 06:53 - 2013-05-10 07:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2014-07-14 06:53 - 2013-05-10 07:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL 2014-07-14 06:53 - 2013-05-10 06:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL 2014-07-14 06:53 - 2013-05-10 06:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2014-07-14 06:16 - 2010-02-23 10:16 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\browserchoice.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 17773056 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 12268544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 10884096 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 09702400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 03695416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2014-07-14 06:14 - 2014-07-14 06:14 - 03695416 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2014-07-14 06:14 - 2014-07-14 06:14 - 02382848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-07-14 06:14 - 2014-07-14 06:14 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-07-14 06:14 - 2014-07-14 06:14 - 02303488 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 02136064 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01797632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01785344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01492992 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-07-14 06:14 - 2014-07-14 06:14 - 01427456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-07-14 06:14 - 2014-07-14 06:14 - 01389056 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01344000 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01126912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01102336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00818176 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00716800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00697344 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00603648 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00580608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00534528 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00452608 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00448512 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-07-14 06:14 - 2014-07-14 06:14 - 00434176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00420864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00403248 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2014-07-14 06:14 - 2014-07-14 06:14 - 00353792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00353584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00282112 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\ieaksie.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00249344 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00248320 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00236544 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00231936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00227840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieaksie.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00203776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00176640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieakui.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\ieakui.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00160256 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00160256 _____ (Microsoft Corporation) C:\Windows\system32\ieakeng.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00150528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00130560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieakeng.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00123392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00118784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\admparse.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00101888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\admparse.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00078848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2014-07-14 06:14 - 2014-07-14 06:14 - 00074752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00074752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ie4uinit.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00072704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00065024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00063488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2014-07-14 06:14 - 2014-07-14 06:14 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00054272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-07-14 06:08 - 2014-07-14 06:15 - 00004361 _____ () C:\Windows\IE9_main.log 2014-07-14 06:00 - 2012-07-26 05:08 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll 2014-07-14 06:00 - 2012-07-26 05:08 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe 2014-07-14 06:00 - 2012-07-26 05:08 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll 2014-07-14 06:00 - 2012-07-26 05:08 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll 2014-07-14 06:00 - 2012-07-26 05:08 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll 2014-07-14 06:00 - 2012-07-26 04:26 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys 2014-07-14 06:00 - 2012-07-26 04:26 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys 2014-07-14 06:00 - 2012-06-02 16:57 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf 2014-07-14 05:53 - 2012-03-01 08:46 - 00023408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys 2014-07-14 05:53 - 2012-03-01 08:28 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll 2014-07-14 05:53 - 2012-03-01 07:29 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmi.dll 2014-07-14 04:35 - 2014-07-13 23:50 - 00000000 ____D () C:\Windows\Panther 2014-07-14 04:33 - 2014-07-14 04:33 - 00262144 _____ () C:\Windows\system32\config\userdiff 2014-07-14 04:14 - 2014-07-13 19:51 - 00000000 ___HD () C:\$WINDOWS.~Q 2014-07-14 04:06 - 2014-07-14 04:10 - 00000000 ___HD () C:\$INPLACE.~TR 2014-07-14 03:30 - 2014-01-28 04:32 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2014-07-14 03:30 - 2013-10-30 04:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2014-07-14 03:30 - 2013-10-30 04:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2014-07-14 03:30 - 2013-07-04 14:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll 2014-07-14 03:30 - 2013-07-04 13:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll 2014-07-14 03:30 - 2013-03-19 07:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll 2014-07-14 03:30 - 2011-06-16 07:49 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\xmllite.dll 2014-07-14 03:30 - 2011-06-16 06:33 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xmllite.dll 2014-07-14 03:30 - 2011-06-15 12:02 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll 2014-07-14 03:30 - 2011-06-15 12:02 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll 2014-07-14 03:30 - 2011-06-15 12:02 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccu32.dll 2014-07-14 03:30 - 2011-06-15 12:02 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccr32.dll 2014-07-14 03:30 - 2011-06-15 10:55 - 00319488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcjt32.dll 2014-07-14 03:30 - 2011-06-15 10:55 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbctrac.dll 2014-07-14 03:30 - 2011-06-15 10:55 - 00122880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccp32.dll 2014-07-14 03:30 - 2011-06-15 10:55 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccu32.dll 2014-07-14 03:30 - 2011-06-15 10:55 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccr32.dll 2014-07-14 03:29 - 2014-03-25 04:43 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-07-14 03:29 - 2014-03-25 04:09 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2014-07-14 03:29 - 2013-07-09 07:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2014-07-14 03:29 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2014-07-14 03:29 - 2013-02-15 08:08 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2014-07-14 03:29 - 2013-02-15 08:06 - 03717632 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2014-07-14 03:29 - 2013-02-15 08:02 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll 2014-07-14 03:29 - 2013-02-15 06:37 - 03217408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2014-07-14 03:29 - 2013-02-15 06:34 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll 2014-07-14 03:29 - 2013-02-15 05:25 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2014-07-14 03:29 - 2012-10-09 20:17 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll 2014-07-14 03:29 - 2012-10-09 20:17 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll 2014-07-14 03:29 - 2012-10-09 19:40 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll 2014-07-14 03:29 - 2012-10-09 19:40 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll 2014-07-14 03:29 - 2012-01-04 12:44 - 00509952 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll 2014-07-14 03:29 - 2012-01-04 10:58 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll 2014-07-14 03:29 - 2011-10-26 07:25 - 01572864 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll 2014-07-14 03:29 - 2011-10-26 07:25 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll 2014-07-14 03:29 - 2011-10-26 06:32 - 01328128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll 2014-07-14 03:29 - 2011-10-26 06:32 - 00514560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll 2014-07-14 03:29 - 2011-04-09 08:58 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2014-07-14 03:29 - 2011-04-09 07:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2014-07-14 03:29 - 2010-12-23 12:42 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll 2014-07-14 03:29 - 2010-12-23 12:42 - 00961024 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll 2014-07-14 03:29 - 2010-12-23 12:36 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax 2014-07-14 03:29 - 2010-12-23 07:54 - 00850944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sbe.dll 2014-07-14 03:29 - 2010-12-23 07:54 - 00642048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll 2014-07-14 03:29 - 2010-12-23 07:50 - 00199680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mpg2splt.ax 2014-07-14 03:28 - 2014-04-25 04:34 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll 2014-07-14 03:28 - 2014-04-25 04:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll 2014-07-14 03:28 - 2014-04-05 04:47 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2014-07-14 03:28 - 2014-04-05 04:47 - 00288192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2014-07-14 03:28 - 2014-01-29 04:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2014-07-14 03:28 - 2014-01-29 04:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll 2014-07-14 03:28 - 2014-01-01 01:05 - 00420008 _____ () C:\Windows\SysWOW64\locale.nls 2014-07-14 03:28 - 2014-01-01 01:04 - 00420008 _____ () C:\Windows\system32\locale.nls 2014-07-14 03:28 - 2013-11-26 13:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2014-07-14 03:28 - 2013-10-19 04:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2014-07-14 03:28 - 2013-10-19 03:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2014-07-14 03:28 - 2013-10-05 22:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2014-07-14 03:28 - 2013-10-05 21:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2014-07-14 03:28 - 2013-07-09 07:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2014-07-14 03:28 - 2013-07-09 07:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2014-07-14 03:28 - 2013-07-09 06:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2014-07-14 03:28 - 2013-07-09 06:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2014-07-14 03:28 - 2013-02-27 08:02 - 00111448 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2014-07-14 03:28 - 2013-02-27 07:47 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2014-07-14 03:28 - 2011-11-17 08:35 - 00395776 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll 2014-07-14 03:28 - 2011-11-17 07:35 - 00314880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll 2014-07-14 03:28 - 2011-07-09 04:46 - 00288768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2014-07-14 03:28 - 2011-05-04 07:25 - 02315776 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll 2014-07-14 03:28 - 2011-05-04 07:22 - 02223616 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll 2014-07-14 03:28 - 2011-05-04 07:22 - 00778752 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll 2014-07-14 03:28 - 2011-05-04 07:22 - 00491520 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll 2014-07-14 03:28 - 2011-05-04 07:22 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll 2014-07-14 03:28 - 2011-05-04 07:22 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll 2014-07-14 03:28 - 2011-05-04 07:19 - 00591872 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe 2014-07-14 03:28 - 2011-05-04 07:19 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe 2014-07-14 03:28 - 2011-05-04 07:19 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe 2014-07-14 03:28 - 2011-05-04 06:34 - 01549312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll 2014-07-14 03:28 - 2011-05-04 06:32 - 01401344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll 2014-07-14 03:28 - 2011-05-04 06:32 - 00666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll 2014-07-14 03:28 - 2011-05-04 06:32 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll 2014-07-14 03:28 - 2011-05-04 06:32 - 00197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll 2014-07-14 03:28 - 2011-05-04 06:32 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll 2014-07-14 03:28 - 2011-05-04 06:28 - 00427520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe 2014-07-14 03:28 - 2011-05-04 06:28 - 00164352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe 2014-07-14 03:28 - 2011-05-04 06:28 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe 2014-07-14 03:28 - 2011-04-27 04:40 - 00158208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2014-07-14 03:28 - 2011-04-27 04:39 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2014-07-14 03:27 - 2014-06-30 04:09 - 00519168 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-07-14 03:27 - 2014-06-30 04:04 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-07-14 03:27 - 2014-06-18 04:18 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2014-07-14 03:27 - 2014-06-18 03:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe 2014-07-14 03:27 - 2014-06-18 03:10 - 03157504 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-07-14 03:27 - 2014-03-26 16:44 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2014-07-14 03:27 - 2014-03-26 16:44 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-07-14 03:27 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll 2014-07-14 03:27 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-07-14 03:27 - 2014-03-26 16:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2014-07-14 03:27 - 2014-03-26 16:27 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-07-14 03:27 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll 2014-07-14 03:27 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-07-14 03:27 - 2013-11-12 04:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2014-07-14 03:27 - 2013-11-12 04:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2014-07-14 03:27 - 2013-10-04 04:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll 2014-07-14 03:27 - 2013-10-04 04:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll 2014-07-14 03:27 - 2013-10-04 04:24 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2014-07-14 03:27 - 2013-10-04 04:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2014-07-14 03:27 - 2013-10-04 03:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll 2014-07-14 03:27 - 2013-10-04 03:56 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2014-07-14 03:27 - 2013-10-04 03:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll 2014-07-14 03:27 - 2013-10-04 03:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2014-07-14 03:27 - 2013-08-05 04:25 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys 2014-07-14 03:27 - 2011-12-30 08:26 - 00515584 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl 2014-07-14 03:27 - 2011-12-30 07:27 - 00478720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl 2014-07-14 03:26 - 2014-06-06 12:10 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-07-14 03:26 - 2014-06-06 11:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2014-07-14 03:26 - 2014-05-30 08:45 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2014-07-14 03:26 - 2013-12-04 04:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll 2014-07-14 03:26 - 2013-12-04 04:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll 2014-07-14 03:26 - 2013-12-04 04:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll 2014-07-14 03:26 - 2013-12-04 04:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll 2014-07-14 03:26 - 2013-12-04 04:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll 2014-07-14 03:26 - 2013-12-04 04:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe 2014-07-14 03:26 - 2013-12-04 04:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe 2014-07-14 03:26 - 2013-12-04 04:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe 2014-07-14 03:26 - 2013-12-04 04:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe 2014-07-14 03:26 - 2013-12-04 04:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll 2014-07-14 03:26 - 2013-12-04 04:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll 2014-07-14 03:26 - 2013-12-04 04:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll 2014-07-14 03:26 - 2013-12-04 04:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll 2014-07-14 03:26 - 2013-12-04 04:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll 2014-07-14 03:26 - 2013-12-04 03:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe 2014-07-14 03:26 - 2013-12-04 03:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe 2014-07-14 03:26 - 2013-12-04 03:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe 2014-07-14 03:26 - 2013-12-04 03:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe 2014-07-14 03:26 - 2013-11-27 03:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-07-14 03:26 - 2013-11-27 03:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-07-14 03:26 - 2013-11-27 03:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2014-07-14 03:26 - 2013-11-27 03:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-07-14 03:26 - 2013-11-27 03:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-07-14 03:26 - 2013-07-25 11:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2014-07-14 03:26 - 2013-07-25 10:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2014-07-14 03:26 - 2013-07-12 12:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys 2014-07-14 03:26 - 2013-07-09 07:51 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2014-07-14 03:26 - 2013-07-09 06:52 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2014-07-14 03:26 - 2013-07-03 06:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2014-07-14 03:26 - 2013-07-03 06:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys 2014-07-14 03:26 - 2013-06-26 00:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys 2014-07-14 03:26 - 2013-06-06 07:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2014-07-14 03:26 - 2013-06-06 07:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2014-07-14 03:26 - 2013-06-06 07:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2014-07-14 03:26 - 2013-06-06 07:47 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2014-07-14 03:26 - 2013-06-06 06:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2014-07-14 03:26 - 2013-06-06 06:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2014-07-14 03:26 - 2013-06-06 06:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2014-07-14 03:26 - 2013-06-06 05:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2014-07-14 03:26 - 2013-06-06 05:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2014-07-14 03:26 - 2013-06-06 05:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2014-07-14 03:26 - 2013-02-12 06:12 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys 2014-07-14 03:26 - 2012-11-29 00:56 - 00054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys 2014-07-14 03:26 - 2012-11-29 00:56 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll 2014-07-14 03:26 - 2012-11-29 00:56 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf 2014-07-14 03:26 - 2012-10-03 19:44 - 00303104 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll 2014-07-14 03:26 - 2012-10-03 19:44 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\netcorehc.dll 2014-07-14 03:26 - 2012-10-03 19:44 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll 2014-07-14 03:26 - 2012-10-03 19:44 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll 2014-07-14 03:26 - 2012-10-03 19:44 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\netevent.dll 2014-07-14 03:26 - 2012-10-03 19:42 - 00569344 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll 2014-07-14 03:26 - 2012-10-03 18:42 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcorehc.dll 2014-07-14 03:26 - 2012-10-03 18:42 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll 2014-07-14 03:26 - 2012-10-03 18:42 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netevent.dll 2014-07-14 03:26 - 2012-10-03 18:07 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys 2014-07-14 03:26 - 2012-08-22 20:12 - 00950128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2014-07-14 03:26 - 2012-07-04 22:26 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys 2014-07-14 03:26 - 2012-04-26 07:41 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll 2014-07-14 03:26 - 2012-04-26 07:41 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll 2014-07-14 03:26 - 2012-04-26 07:34 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe 2014-07-14 03:26 - 2012-01-13 09:12 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll 2014-07-14 03:26 - 2011-03-11 08:34 - 01395712 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll 2014-07-14 03:26 - 2011-03-11 08:34 - 01359872 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll 2014-07-14 03:26 - 2011-03-11 07:33 - 01164288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42u.dll 2014-07-14 03:26 - 2011-03-11 07:33 - 01137664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42.dll 2014-07-14 03:25 - 2014-03-04 11:47 - 05550016 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2014-07-14 03:25 - 2014-03-04 11:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll 2014-07-14 03:25 - 2014-03-04 11:44 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2014-07-14 03:25 - 2014-03-04 11:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll 2014-07-14 03:25 - 2014-03-04 11:43 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 2014-07-14 03:25 - 2014-03-04 11:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll 2014-07-14 03:25 - 2014-03-04 11:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll 2014-07-14 03:25 - 2014-03-04 11:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll 2014-07-14 03:25 - 2014-03-04 11:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll 2014-07-14 03:25 - 2014-03-04 11:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll 2014-07-14 03:25 - 2014-03-04 11:20 - 03969984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2014-07-14 03:25 - 2014-03-04 11:20 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2014-07-14 03:25 - 2014-03-04 11:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll 2014-07-14 03:25 - 2014-03-04 11:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll 2014-07-14 03:25 - 2014-03-04 11:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll 2014-07-14 03:25 - 2014-03-04 11:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll 2014-07-14 03:25 - 2014-03-04 11:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll 2014-07-14 03:25 - 2014-03-04 11:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll 2014-07-14 03:25 - 2014-03-04 11:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll 2014-07-14 03:25 - 2014-03-04 11:16 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2014-07-14 03:25 - 2013-08-02 04:12 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2014-07-14 03:25 - 2013-08-02 04:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2014-07-14 03:25 - 2013-08-02 03:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2014-07-14 03:25 - 2013-08-02 02:59 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2014-07-14 03:25 - 2013-07-04 14:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2014-07-14 03:25 - 2013-07-04 14:50 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2014-07-14 03:25 - 2013-07-04 13:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll 2014-07-14 03:25 - 2013-07-04 13:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll 2014-07-14 03:25 - 2013-07-04 12:11 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2014-07-14 03:25 - 2012-11-02 07:59 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll 2014-07-14 03:25 - 2012-11-02 07:11 - 00376832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll 2014-07-14 03:25 - 2012-08-21 23:01 - 00245760 _____ (Microsoft Corporation) C:\Windows\system32\OxpsConverter.exe 2014-07-14 03:25 - 2012-05-01 07:40 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll 2014-07-14 03:25 - 2011-03-03 08:24 - 00357888 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll 2014-07-14 03:25 - 2011-03-03 08:24 - 00183296 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll 2014-07-14 03:25 - 2011-03-03 08:21 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\dnscacheugc.exe 2014-07-14 03:25 - 2011-03-03 07:38 - 00270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll 2014-07-14 03:25 - 2011-03-03 07:36 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnscacheugc.exe 2014-07-14 03:24 - 2013-09-08 04:27 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll 2014-07-14 03:24 - 2013-09-08 04:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll 2014-07-14 03:24 - 2013-06-15 06:32 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 2014-07-14 03:24 - 2012-12-07 15:20 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll 2014-07-14 03:24 - 2012-12-07 15:15 - 02746368 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll 2014-07-14 03:24 - 2012-12-07 14:26 - 00308736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll 2014-07-14 03:24 - 2012-12-07 14:20 - 02576384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll 2014-07-14 03:24 - 2012-12-07 13:20 - 00045568 _____ (Microsoft) C:\Windows\system32\oflc-nz.rs 2014-07-14 03:24 - 2012-12-07 13:20 - 00044544 _____ (Microsoft) C:\Windows\system32\pegibbfc.rs 2014-07-14 03:24 - 2012-12-07 13:20 - 00043520 _____ (Microsoft) C:\Windows\system32\csrr.rs 2014-07-14 03:24 - 2012-12-07 13:20 - 00030720 _____ (Microsoft) C:\Windows\system32\usk.rs 2014-07-14 03:24 - 2012-12-07 13:20 - 00023552 _____ (Microsoft) C:\Windows\system32\oflc.rs 2014-07-14 03:24 - 2012-12-07 13:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-pt.rs 2014-07-14 03:24 - 2012-12-07 13:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-fi.rs 2014-07-14 03:24 - 2012-12-07 13:19 - 00055296 _____ (Microsoft) C:\Windows\system32\cero.rs 2014-07-14 03:24 - 2012-12-07 13:19 - 00051712 _____ (Microsoft) C:\Windows\system32\esrb.rs 2014-07-14 03:24 - 2012-12-07 13:19 - 00046592 _____ (Microsoft) C:\Windows\system32\fpb.rs 2014-07-14 03:24 - 2012-12-07 13:19 - 00040960 _____ (Microsoft) C:\Windows\system32\cob-au.rs 2014-07-14 03:24 - 2012-12-07 13:19 - 00021504 _____ (Microsoft) C:\Windows\system32\grb.rs 2014-07-14 03:24 - 2012-12-07 13:19 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi.rs 2014-07-14 03:24 - 2012-12-07 13:19 - 00015360 _____ (Microsoft) C:\Windows\system32\djctq.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00055296 _____ (Microsoft) C:\Windows\SysWOW64\cero.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00051712 _____ (Microsoft) C:\Windows\SysWOW64\esrb.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00046592 _____ (Microsoft) C:\Windows\SysWOW64\fpb.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00045568 _____ (Microsoft) C:\Windows\SysWOW64\oflc-nz.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00044544 _____ (Microsoft) C:\Windows\SysWOW64\pegibbfc.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00043520 _____ (Microsoft) C:\Windows\SysWOW64\csrr.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00040960 _____ (Microsoft) C:\Windows\SysWOW64\cob-au.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00030720 _____ (Microsoft) C:\Windows\SysWOW64\usk.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00023552 _____ (Microsoft) C:\Windows\SysWOW64\oflc.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00021504 _____ (Microsoft) C:\Windows\SysWOW64\grb.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-pt.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-fi.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00015360 _____ (Microsoft) C:\Windows\SysWOW64\djctq.rs 2014-07-14 03:24 - 2011-08-17 07:26 - 00613888 _____ (Microsoft Corporation) C:\Windows\system32\psisdecd.dll 2014-07-14 03:24 - 2011-08-17 07:25 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\psisrndr.ax 2014-07-14 03:24 - 2011-08-17 06:24 - 00465408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisdecd.dll 2014-07-14 03:24 - 2011-08-17 06:19 - 00075776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisrndr.ax 2014-07-14 03:24 - 2011-04-29 05:06 - 00467456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys 2014-07-14 03:24 - 2011-04-29 05:05 - 00410112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys 2014-07-14 03:24 - 2011-04-29 05:05 - 00168448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys 2014-07-14 03:23 - 2013-08-29 04:16 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2014-07-14 03:23 - 2013-08-29 04:16 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll 2014-07-14 03:23 - 2013-08-29 04:13 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2014-07-14 03:23 - 2013-08-29 03:50 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2014-07-14 03:23 - 2013-08-29 03:50 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll 2014-07-14 03:23 - 2013-08-29 03:48 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2014-07-14 03:23 - 2012-04-28 05:55 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys 2014-07-14 03:23 - 2012-03-17 09:58 - 00075120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys 2014-07-14 03:22 - 2014-05-30 10:08 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2014-07-14 03:22 - 2014-05-30 10:08 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2014-07-14 03:22 - 2014-05-30 10:08 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2014-07-14 03:22 - 2014-05-30 10:08 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2014-07-14 03:22 - 2014-05-30 10:08 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2014-07-14 03:22 - 2014-05-30 10:08 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2014-07-14 03:22 - 2014-05-30 10:08 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2014-07-14 03:22 - 2014-05-30 09:52 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2014-07-14 03:22 - 2014-05-30 09:52 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2014-07-14 03:22 - 2014-05-30 09:52 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2014-07-14 03:22 - 2014-05-30 09:52 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2014-07-14 03:22 - 2014-05-30 09:52 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2014-07-14 03:22 - 2014-05-30 09:52 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2014-07-14 03:22 - 2014-05-30 09:52 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2014-07-14 03:22 - 2014-02-04 04:35 - 00274880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys 2014-07-14 03:22 - 2014-02-04 04:35 - 00190912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys 2014-07-14 03:22 - 2014-02-04 04:35 - 00027584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys 2014-07-14 03:22 - 2014-02-04 04:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll 2014-07-14 03:22 - 2014-02-04 04:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iologmsg.dll 2014-07-14 03:22 - 2013-07-26 04:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2014-07-14 03:22 - 2013-07-26 03:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll 2014-07-14 03:22 - 2012-09-26 00:47 - 00078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\synceng.dll 2014-07-14 03:22 - 2012-09-26 00:46 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll 2014-07-14 03:22 - 2012-04-07 14:31 - 03216384 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2014-07-14 03:22 - 2012-04-07 13:26 - 02342400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2014-07-14 03:22 - 2011-02-05 19:10 - 00642944 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2014-07-14 03:22 - 2011-02-05 19:10 - 00020352 _____ (Microsoft Corporation) C:\Windows\system32\kdusb.dll 2014-07-14 03:22 - 2011-02-05 19:10 - 00019328 _____ (Microsoft Corporation) C:\Windows\system32\kd1394.dll 2014-07-14 03:22 - 2011-02-05 19:10 - 00017792 _____ (Microsoft Corporation) C:\Windows\system32\kdcom.dll 2014-07-14 03:22 - 2011-02-05 19:06 - 00605552 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe 2014-07-14 03:22 - 2011-02-05 19:06 - 00566208 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2014-07-14 03:22 - 2011-02-05 19:06 - 00518672 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe 2014-07-14 03:21 - 2014-03-04 11:44 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2014-07-14 03:21 - 2014-03-04 11:44 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2014-07-14 03:21 - 2014-03-04 11:44 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2014-07-14 03:21 - 2014-03-04 11:44 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2014-07-14 03:21 - 2014-03-04 11:44 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2014-07-14 03:21 - 2014-03-04 11:17 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2014-07-14 03:21 - 2014-03-04 11:16 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2014-07-14 03:21 - 2014-03-04 11:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2014-07-14 03:21 - 2014-03-04 11:16 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2014-07-14 03:21 - 2014-03-04 10:09 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2014-07-14 03:21 - 2014-03-04 10:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2014-07-14 03:21 - 2014-01-24 04:37 - 01684928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2014-07-14 03:21 - 2013-10-03 04:23 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2014-07-14 03:21 - 2013-10-03 04:00 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2014-07-14 03:21 - 2013-08-02 04:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2014-07-14 03:21 - 2013-08-02 02:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 02:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 02:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 02:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2014-07-14 03:21 - 2013-07-20 12:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2014-07-14 03:21 - 2013-07-20 12:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2014-07-14 03:21 - 2013-05-13 07:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll 2014-07-14 03:21 - 2013-05-13 05:43 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe 2014-07-14 03:21 - 2013-05-13 05:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe 2014-07-14 03:21 - 2013-05-13 05:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll 2014-07-14 03:21 - 2013-05-10 07:49 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll 2014-07-14 03:21 - 2013-05-10 05:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll 2014-07-14 03:21 - 2013-04-26 07:51 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2014-07-14 03:21 - 2013-04-26 06:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2014-07-14 03:21 - 2013-01-24 08:01 - 00223752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys 2014-07-14 03:21 - 2012-11-23 05:13 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe 2014-07-14 03:21 - 2012-07-05 00:16 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll 2014-07-14 03:21 - 2012-07-05 00:13 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll 2014-07-14 03:21 - 2012-07-05 00:13 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll 2014-07-14 03:21 - 2012-07-04 23:16 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netapi32.dll 2014-07-14 03:21 - 2012-07-04 23:14 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browcli.dll 2014-07-14 03:21 - 2012-05-05 10:36 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2014-07-14 03:21 - 2012-05-05 09:46 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2014-07-14 03:21 - 2011-12-16 10:46 - 00634880 _____ (Microsoft Corporation) C:\Windows\system32\msvcrt.dll 2014-07-14 03:21 - 2011-12-16 09:52 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcrt.dll 2014-07-14 03:21 - 2011-05-24 13:42 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll 2014-07-14 03:21 - 2011-05-24 12:40 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devobj.dll 2014-07-14 03:21 - 2011-05-24 12:40 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devrtl.dll 2014-07-14 03:21 - 2011-05-24 12:39 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfgmgr32.dll 2014-07-14 03:21 - 2011-05-24 12:37 - 00252928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe 2014-07-14 03:21 - 2011-05-03 07:29 - 00976896 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2014-07-14 03:21 - 2011-05-03 06:30 - 00741376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2014-07-14 03:21 - 2011-02-18 12:51 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\prevhost.exe 2014-07-14 03:21 - 2011-02-18 07:39 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prevhost.exe 2014-07-14 03:21 - 2011-02-12 13:34 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOVER.exe 2014-07-14 03:20 - 2014-06-05 16:45 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-07-14 03:20 - 2014-06-05 16:26 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2014-07-14 03:20 - 2014-06-05 16:25 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2014-07-14 03:20 - 2014-04-12 04:22 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2014-07-14 03:20 - 2014-04-12 04:22 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2014-07-14 03:20 - 2014-04-12 04:19 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2014-07-14 03:20 - 2014-04-12 04:19 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2014-07-14 03:20 - 2014-04-12 04:19 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2014-07-14 03:20 - 2014-04-12 04:19 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2014-07-14 03:20 - 2013-10-12 04:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2014-07-14 03:20 - 2013-10-12 04:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2014-07-14 03:20 - 2013-10-12 04:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2014-07-14 03:20 - 2013-10-12 04:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2014-07-14 03:20 - 2013-10-12 04:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2014-07-14 03:20 - 2013-10-12 04:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx 2014-07-14 03:20 - 2013-10-12 04:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2014-07-14 03:20 - 2013-10-12 04:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2014-07-14 03:20 - 2013-10-12 04:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2014-07-14 03:20 - 2013-10-12 03:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe 2014-07-14 03:20 - 2013-10-12 03:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2014-07-14 03:20 - 2013-10-12 03:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe 2014-07-14 03:20 - 2013-10-12 03:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe 2014-07-14 03:20 - 2013-08-28 03:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll 2014-07-14 03:20 - 2013-08-27 11:01 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2014-07-14 03:20 - 2013-08-27 11:01 - 01143296 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2014-07-14 03:20 - 2013-08-27 10:21 - 01077760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2014-07-14 03:20 - 2013-08-01 14:09 - 00983488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2014-07-14 03:20 - 2013-07-04 14:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2014-07-14 03:20 - 2013-04-10 08:01 - 00265064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2014-07-14 03:20 - 2012-06-06 08:02 - 01133568 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll 2014-07-14 03:20 - 2012-06-06 07:03 - 00805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll 2014-07-14 03:20 - 2012-05-14 07:26 - 00956928 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2014-07-14 03:20 - 2011-11-19 16:58 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll 2014-07-14 03:20 - 2011-11-19 16:01 - 00067072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll 2014-07-14 03:20 - 2011-10-15 08:31 - 00723456 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll 2014-07-14 03:20 - 2011-10-15 07:38 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EncDec.dll 2014-07-14 03:20 - 2011-08-27 07:37 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2014-07-14 03:20 - 2011-08-27 07:37 - 00331776 _____ (Microsoft Corporation) C:\Windows\system32\oleacc.dll 2014-07-14 03:20 - 2011-08-27 06:26 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2014-07-14 03:20 - 2011-08-27 06:26 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleacc.dll 2014-07-14 03:20 - 2011-02-23 06:55 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys 2014-07-14 03:20 - 2011-02-03 13:25 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2014-07-13 23:54 - 2014-07-14 18:32 - 00121624 _____ () C:\Users\Schrägle\AppData\Local\GDIPFONTCACHEV1.DAT 2014-07-13 23:54 - 2014-07-13 23:54 - 09580848 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-07-13 23:52 - 2014-07-14 18:32 - 00001413 _____ () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk 2014-07-13 23:50 - 2014-07-13 23:50 - 00000020 ___SH () C:\Users\Schrägle\ntuser.ini 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Programme 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Favoriten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Dokumente und Einstellungen 2014-07-13 20:40 - 2012-02-17 08:38 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll 2014-07-13 20:40 - 2012-02-17 07:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll 2014-07-13 20:40 - 2012-02-17 06:57 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys 2014-07-13 20:26 - 2012-06-03 00:19 - 02428952 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2014-07-13 20:26 - 2012-06-03 00:19 - 00057880 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2014-07-13 20:26 - 2012-06-03 00:19 - 00044056 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2014-07-13 20:26 - 2012-06-03 00:15 - 02622464 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2014-07-13 20:25 - 2012-06-03 00:19 - 00701976 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2014-07-13 20:25 - 2012-06-03 00:19 - 00038424 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2014-07-13 20:25 - 2012-06-03 00:15 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2014-07-13 20:25 - 2012-06-02 15:19 - 00186752 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2014-07-13 20:25 - 2012-06-02 15:15 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2014-07-13 20:17 - 2014-07-14 18:22 - 01257796 _____ () C:\Windows\WindowsUpdate.log 2014-07-13 19:54 - 2014-07-13 19:54 - 00022960 _____ () C:\Windows\system32\emptyregdb.dat 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerRecover 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Macromedia 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerRecover 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Macromedia 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help 2014-07-13 19:12 - 2014-07-13 23:50 - 00000000 ____D () C:\Users\Schrägle 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Vorlagen 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Startmenü 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Netzwerkumgebung 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Lokale Einstellungen 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Eigene Dateien 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Druckumgebung 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Documents\Eigene Musik 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Documents\Eigene Bilder 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\AppData\Local\Verlauf 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\AppData\Local\Anwendungsdaten 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Anwendungsdaten 2014-07-13 19:12 - 2009-07-14 06:54 - 00000000 ___RD () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-07-13 19:12 - 2009-07-14 06:49 - 00000000 ___RD () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-07-13 19:11 - 2014-07-13 19:11 - 00001345 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk 2014-07-13 19:11 - 2014-07-13 19:11 - 00001326 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk 2014-07-13 19:06 - 2014-07-13 19:06 - 00001355 _____ () C:\Windows\TSSysprep.log 2014-07-13 18:55 - 2014-07-13 19:03 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-07-13 18:55 - 2014-07-13 18:55 - 00000000 ____D () C:\Program Files\Realtek 2014-07-13 18:54 - 2014-07-13 18:54 - 00000000 _____ () C:\Windows\ativpsrm.bin 2014-07-13 18:50 - 2014-07-13 18:50 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf 2014-07-13 17:40 - 2014-07-13 19:51 - 00006161 _____ () C:\Windows\comsetup.log 2014-07-13 17:26 - 2014-07-13 17:26 - 00003302 _____ () C:\Users\Schrägle\Desktop\Windows Compatibility Report.htm 2014-07-13 17:23 - 2014-07-13 17:23 - 00013662 _____ () C:\Windows\diagwrn.xml 2014-07-13 17:23 - 2014-07-13 17:23 - 00001890 _____ () C:\Windows\diagerr.xml 2014-07-13 16:03 - 2014-07-13 19:39 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\AVG2014 2014-07-13 16:02 - 2014-07-13 19:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2014-07-13 16:02 - 2014-07-13 16:02 - 00000985 _____ () C:\Users\Public\Desktop\AVG 2014.lnk 2014-07-13 16:00 - 2014-07-13 19:24 - 00000000 ____D () C:\ProgramData\AVG2014 2014-07-13 16:00 - 2014-07-13 16:00 - 00000000 ___HD () C:\$AVG 2014-07-13 15:59 - 2014-07-13 19:17 - 00000000 ____D () C:\Program Files (x86)\AVG 2014-07-13 15:56 - 2014-07-13 19:39 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Win System 2014-07-13 15:56 - 2014-07-13 19:39 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\VOPackage 2014-07-13 15:56 - 2014-07-13 19:39 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage 2014-07-13 15:55 - 2014-07-13 19:39 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Security Systems 2014-07-13 15:55 - 2014-07-13 15:55 - 00000142 _____ () C:\Users\Schrägle\AppData\Roaming\tmp_register.bat 2014-07-13 15:54 - 2014-07-14 18:17 - 00000000 ____D () C:\ProgramData\MFAData 2014-07-13 15:54 - 2014-07-13 19:37 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\MFAData 2014-07-13 15:54 - 2014-07-13 19:36 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Avg2014 2014-07-13 15:46 - 2014-07-14 18:35 - 00000000 ____D () C:\FRST 2014-07-13 15:40 - 2014-07-13 19:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2014-07-13 11:14 - 2014-07-13 11:14 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{C887F452-5450-42AE-92C3-EAC911EDB34C} 2014-07-10 17:33 - 2014-07-10 17:33 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{2E7488C6-96C2-45A0-83FA-4AA877390050} 2014-07-09 20:30 - 2014-07-09 20:30 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{042D9681-1CB0-45D7-9366-084F768DC847} 2014-07-09 15:51 - 2014-06-19 03:06 - 00004096 ____N (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-07-09 15:51 - 2014-06-19 02:41 - 00083968 ____N (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-07-09 15:51 - 2014-06-19 02:41 - 00048640 ____N (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-07-09 15:51 - 2014-06-19 02:24 - 00111616 ____N (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-07-09 15:51 - 2014-06-19 02:23 - 00752640 ____N (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-07-09 15:51 - 2014-06-19 02:14 - 00940032 ____N (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-07-09 15:51 - 2014-06-19 01:59 - 00038400 ____N (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-07-09 15:51 - 2014-06-19 01:36 - 00051200 ____N (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-07-09 15:51 - 2014-06-19 01:35 - 00062464 ____N (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-07-09 15:51 - 2014-06-19 01:27 - 01249280 ____N (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-07-09 15:51 - 2014-06-19 01:22 - 00592896 ____N (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-07-09 15:51 - 2014-06-19 01:06 - 00032256 ____N (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-07-09 15:51 - 2014-06-19 00:46 - 01068032 ____N (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-07-07 18:53 - 2014-07-07 18:53 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{1071BD73-6D66-4747-B84F-C3F980B69617} 2014-07-07 18:53 - 2014-07-07 18:53 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{0E5B554B-2C84-4A29-BBCF-8CF9312A023F} 2014-07-05 11:03 - 2014-07-05 11:04 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{DBB75948-902D-4024-B588-07D9CC33167F} 2014-07-02 20:37 - 2014-07-02 20:37 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{0ED52F5C-7E76-48D3-B440-1B66A2247749} 2014-06-29 16:57 - 2014-06-29 16:57 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{ECC4DA04-C8A5-4673-9625-EAB427986779} 2014-06-29 16:57 - 2014-06-29 16:57 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{C9E1C0EE-9103-4424-8418-78EADDD7D964} 2014-06-29 09:03 - 2014-06-29 09:03 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{A84A427F-8D52-45C8-AE07-D49BAA473727} 2014-06-28 17:51 - 2014-06-28 17:51 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{DC6B7C0A-397F-420A-925E-9E651BBF7836} 2014-06-27 19:56 - 2014-07-13 19:36 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\AskPartnerNetwork 2014-06-25 20:16 - 2014-06-25 20:16 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cf90a18dd4ef68.job 2014-06-25 19:50 - 2014-06-24 16:15 - 02601776 _____ () C:\Windows\system32\dmwu.exe 2014-06-25 16:39 - 2014-06-25 16:39 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{DE3AADE9-90F8-4435-8DBF-C09011FD9CCC} 2014-06-23 19:49 - 2014-07-13 19:27 - 00000000 ____D () C:\Windows\SysWOW64\mjcm 2014-06-23 19:49 - 2014-07-13 19:27 - 00000000 ____D () C:\Windows\system32\tprb 2014-06-22 21:58 - 2014-07-13 19:41 - 00000000 ____D () C:\Users\Schrägle\Desktop\Stefan Referat VW 2014-06-21 19:58 - 2014-06-21 19:58 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{B33F55B0-EBE8-4679-942B-6AA96708E1A9} 2014-06-20 20:03 - 2014-06-20 20:04 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{9F69A0B2-809F-423F-8B77-E0501B392178} 2014-06-19 19:12 - 2014-06-19 19:12 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{C03CB42A-9AE4-418C-BA83-47CB7D12EC35} 2014-06-18 19:05 - 2014-06-18 19:05 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{F10216B5-ABA2-4B1F-9443-7925EDA4C2CF} 2014-06-17 16:21 - 2014-06-17 16:21 - 00235800 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgldx64.sys 2014-06-17 16:07 - 2014-06-17 16:07 - 00328984 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgloga.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00269080 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgtdia.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00242968 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsdrivera.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00190744 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsha.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00153368 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgdiska.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00123672 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgmfx64.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00031512 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgrkx64.sys 2014-06-16 20:33 - 2014-06-16 20:34 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{37940329-4D90-4DFC-A19F-5B13B85BC9B0} 2014-06-15 20:52 - 2014-06-15 20:52 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{A4B0555F-BEAA-4483-9C9C-05EDBCEE76F4} 2014-06-15 14:43 - 2014-06-15 14:43 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{DC99FA77-EBF8-4A51-8EB1-A12BD84B7E68} 2014-06-14 13:01 - 2014-06-14 13:01 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{83E2F3AA-BE9E-4DF7-9766-BF2BE4F8CF71} ==================== One Month Modified Files and Folders ======= 2014-07-14 18:35 - 2014-07-14 18:35 - 00036211 _____ () C:\Users\Schrägle\Downloads\FRST.txt 2014-07-14 18:35 - 2014-07-13 20:17 - 01257796 _____ () C:\Windows\WindowsUpdate.log 2014-07-14 18:35 - 2014-07-13 15:46 - 00000000 ____D () C:\FRST 2014-07-14 18:35 - 2011-05-16 16:04 - 00699132 _____ () C:\Windows\system32\perfh007.dat 2014-07-14 18:35 - 2011-05-16 16:04 - 00149014 _____ () C:\Windows\system32\perfc007.dat 2014-07-14 18:35 - 2009-07-14 07:13 - 01619832 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-07-14 18:35 - 2009-07-14 06:45 - 00016752 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-07-14 18:35 - 2009-07-14 06:45 - 00016752 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-07-14 18:34 - 2014-07-14 18:34 - 02086912 _____ (Farbar) C:\Users\Schrägle\Downloads\FRST64.exe 2014-07-14 18:32 - 2014-07-14 18:31 - 00001447 _____ () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-07-14 18:32 - 2014-07-13 23:54 - 00121624 _____ () C:\Users\Schrägle\AppData\Local\GDIPFONTCACHEV1.DAT 2014-07-14 18:32 - 2014-07-13 23:52 - 00001413 _____ () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk 2014-07-14 18:31 - 2014-07-14 18:31 - 00003548 _____ () C:\Windows\System32\Tasks\CreateChoiceProcessTask 2014-07-14 18:31 - 2014-07-14 18:31 - 00001758 _____ () C:\Users\Public\Desktop\Browserwahl.lnk 2014-07-14 18:30 - 2013-06-28 12:34 - 00000374 _____ () C:\Windows\Tasks\B Lyrics Update.job 2014-07-14 18:30 - 2013-06-03 21:08 - 00000350 _____ () C:\Windows\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv.job 2014-07-14 18:28 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-07-14 18:28 - 2009-07-14 06:51 - 00547916 _____ () C:\Windows\setupact.log 2014-07-14 18:25 - 2009-07-14 06:45 - 00455952 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-07-14 18:20 - 2011-04-12 10:28 - 00000000 ____D () C:\Program Files\Windows Journal 2014-07-14 18:20 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Common Files\System 2014-07-14 18:19 - 2014-05-06 21:02 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-07-14 18:19 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files\Windows Defender 2014-07-14 18:19 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files (x86)\Windows Defender 2014-07-14 18:19 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\Dism 2014-07-14 18:19 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\Dism 2014-07-14 18:18 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-07-14 18:17 - 2014-07-13 15:54 - 00000000 ____D () C:\ProgramData\MFAData 2014-07-14 18:16 - 2012-09-03 19:29 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-07-14 18:14 - 2013-02-25 16:09 - 00000940 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4074982664-1885493180-2041087550-1001UA.job 2014-07-14 18:11 - 2012-08-05 11:20 - 00001110 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-07-14 06:15 - 2014-07-14 06:08 - 00004361 _____ () C:\Windows\IE9_main.log 2014-07-14 06:14 - 2014-07-14 06:14 - 17773056 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 12268544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 10884096 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 09702400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 03695416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2014-07-14 06:14 - 2014-07-14 06:14 - 03695416 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2014-07-14 06:14 - 2014-07-14 06:14 - 02382848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-07-14 06:14 - 2014-07-14 06:14 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-07-14 06:14 - 2014-07-14 06:14 - 02303488 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 02136064 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01797632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01785344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01492992 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-07-14 06:14 - 2014-07-14 06:14 - 01427456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-07-14 06:14 - 2014-07-14 06:14 - 01389056 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01344000 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01126912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01102336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00818176 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00716800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00697344 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00603648 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00580608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00534528 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00452608 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00448512 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-07-14 06:14 - 2014-07-14 06:14 - 00434176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00420864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00403248 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2014-07-14 06:14 - 2014-07-14 06:14 - 00353792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00353584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00282112 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\ieaksie.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00249344 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00248320 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00236544 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00231936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00227840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieaksie.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00203776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00176640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieakui.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\ieakui.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00160256 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00160256 _____ (Microsoft Corporation) C:\Windows\system32\ieakeng.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00150528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00130560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieakeng.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00123392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00118784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\admparse.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll |
14.07.2014, 18:32 | #10 |
| Avira Antivir wird blockiertCode:
ATTFilter 2014-07-14 06:14 - 2014-07-14 06:14 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00101888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\admparse.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00078848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2014-07-14 06:14 - 2014-07-14 06:14 - 00074752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00074752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ie4uinit.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00072704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00065024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00063488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2014-07-14 06:14 - 2014-07-14 06:14 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00054272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-07-14 04:55 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache 2014-07-14 04:34 - 2009-07-14 07:38 - 00025600 ___SH () C:\Windows\system32\config\BCD-Template.LOG 2014-07-14 04:34 - 2009-07-14 07:32 - 00028672 _____ () C:\Windows\system32\config\BCD-Template 2014-07-14 04:33 - 2014-07-14 04:33 - 00262144 _____ () C:\Windows\system32\config\userdiff 2014-07-14 04:10 - 2014-07-14 04:06 - 00000000 ___HD () C:\$INPLACE.~TR 2014-07-14 00:54 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files\Windows Sidebar 2014-07-14 00:54 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files (x86)\Windows Sidebar 2014-07-14 00:54 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files (x86)\Windows Photo Viewer 2014-07-14 00:53 - 2011-05-16 15:57 - 00000000 ____D () C:\Windows\SysWOW64\XPSViewer 2014-07-14 00:53 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\SysWOW64\winrm 2014-07-14 00:53 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\SysWOW64\WCN 2014-07-14 00:53 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\SysWOW64\sysprep 2014-07-14 00:53 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\SysWOW64\slmgr 2014-07-14 00:53 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\SysWOW64\Printing_Admin_Scripts 2014-07-14 00:53 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files\Windows Photo Viewer 2014-07-14 00:53 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\MUI 2014-07-14 00:53 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\migwiz 2014-07-14 00:52 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\system32\winrm 2014-07-14 00:52 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\system32\WCN 2014-07-14 00:52 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\system32\slmgr 2014-07-14 00:52 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\system32\Printing_Admin_Scripts 2014-07-14 00:52 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\com 2014-07-14 00:52 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\sysprep 2014-07-14 00:52 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\Setup 2014-07-14 00:52 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\oobe 2014-07-14 00:52 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\MUI 2014-07-14 00:52 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\migwiz 2014-07-14 00:52 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\IME 2014-07-14 00:50 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\com 2014-07-14 00:49 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\servicing 2014-07-14 00:48 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\tr-TR 2014-07-14 00:48 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\tr-TR 2014-07-14 00:45 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\Setup 2014-07-14 00:45 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\oobe 2014-07-14 00:40 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\sl-SI 2014-07-14 00:39 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\sl-SI 2014-07-14 00:09 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files\DVD Maker 2014-07-13 23:55 - 2013-12-16 18:36 - 00000000 ___RD () C:\Users\Schrägle\Desktop\Stefan 2014-07-13 23:54 - 2014-07-13 23:54 - 09580848 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-07-13 23:53 - 2009-07-14 07:09 - 00000000 ____D () C:\Windows\System32\Tasks\WPD 2014-07-13 23:50 - 2014-07-14 04:35 - 00000000 ____D () C:\Windows\Panther 2014-07-13 23:50 - 2014-07-13 23:50 - 00000020 ___SH () C:\Users\Schrägle\ntuser.ini 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Programme 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Favoriten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Dokumente und Einstellungen 2014-07-13 23:50 - 2014-07-13 19:12 - 00000000 ____D () C:\Users\Schrägle 2014-07-13 23:50 - 2012-08-05 11:19 - 00000000 __SHD () C:\Recovery 2014-07-13 23:50 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Public\Libraries 2014-07-13 23:50 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Default 2014-07-13 23:50 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\Recovery 2014-07-13 23:50 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Windows NT 2014-07-13 20:25 - 2009-07-14 07:32 - 00000000 ____D () C:\Windows\system32\restore 2014-07-13 20:19 - 2010-11-21 05:47 - 00011344 _____ () C:\Windows\PFRO.log 2014-07-13 20:18 - 2012-09-03 19:29 - 00699056 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-07-13 20:18 - 2012-09-03 19:29 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-07-13 20:18 - 2011-12-01 23:26 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-07-13 20:18 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\Registration 2014-07-13 19:54 - 2014-07-13 19:54 - 00022960 _____ () C:\Windows\system32\emptyregdb.dat 2014-07-13 19:52 - 2012-08-06 16:45 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2014-07-13 19:51 - 2014-07-14 04:14 - 00000000 ___HD () C:\$WINDOWS.~Q 2014-07-13 19:51 - 2014-07-13 17:40 - 00006161 _____ () C:\Windows\comsetup.log 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerRecover 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Macromedia 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerRecover 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Macromedia 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help 2014-07-13 19:44 - 2009-07-14 06:57 - 00001547 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2014-07-13 19:44 - 2009-07-14 06:46 - 00005157 _____ () C:\Windows\DtcInstall.log 2014-07-13 19:44 - 2009-07-14 05:20 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-07-13 19:44 - 2009-07-14 05:20 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-07-13 19:44 - 2009-07-14 05:20 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-07-13 19:44 - 2009-07-14 05:20 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-07-13 19:42 - 2014-03-03 19:27 - 00000000 ____D () C:\Users\Schrägle\Documents\OneNote-Notizbücher 2014-07-13 19:42 - 2013-11-09 14:17 - 00000000 ____D () C:\Users\Schrägle\Documents\Battlefield Play4Free 2014-07-13 19:42 - 2013-02-15 21:06 - 00000000 ____D () C:\Users\Schrägle\Documents\Freemake 2014-07-13 19:42 - 2012-12-24 21:43 - 00000000 ____D () C:\Users\Schrägle\Documents\My Games 2014-07-13 19:42 - 2012-12-23 11:16 - 00000000 ____D () C:\Users\Schrägle\Documents\PhoenixRC 2014-07-13 19:42 - 2012-12-02 16:29 - 00000000 ____D () C:\Users\Schrägle\Documents\BFBC2 2014-07-13 19:42 - 2012-08-13 10:49 - 00000000 ____D () C:\Users\Schrägle\Tracing 2014-07-13 19:42 - 2012-08-05 11:11 - 00000000 __RHD () C:\Users\Schrägle\Finger weg sonst Finger ab 2014-07-13 19:41 - 2014-06-22 21:58 - 00000000 ____D () C:\Users\Schrägle\Desktop\Stefan Referat VW 2014-07-13 19:40 - 2014-03-12 21:02 - 00000000 ____D () C:\Users\Schrägle\Desktop\Fotos 2014-07-13 19:40 - 2013-06-08 14:27 - 00000000 ____D () C:\Users\Schrägle\Desktop\PV Anlage - UST FA 2014-07-13 19:40 - 2012-11-11 19:53 - 00000000 ____D () C:\Users\Schrägle\Desktop\Klaudia 2014-07-13 19:40 - 2012-09-06 16:30 - 00000000 ____D () C:\Users\Schrägle\Desktop\PV Anlage 2014-07-13 19:40 - 2012-08-05 11:11 - 00000000 ___RD () C:\Users\Schrägle\Desktop\Rainer 2014-07-13 19:40 - 2012-08-05 11:11 - 00000000 ____D () C:\Users\Schrägle\Desktop\PhoenixRC 2014-07-13 19:40 - 2012-08-05 11:11 - 00000000 ____D () C:\Users\Schrägle\Desktop\Musik W 2014-07-13 19:40 - 2012-08-05 11:11 - 00000000 ____D () C:\Users\Schrägle\Desktop\Fäustle 2014-07-13 19:39 - 2014-07-13 16:03 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\AVG2014 2014-07-13 19:39 - 2014-07-13 15:56 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Win System 2014-07-13 19:39 - 2014-07-13 15:56 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\VOPackage 2014-07-13 19:39 - 2014-07-13 15:56 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage 2014-07-13 19:39 - 2014-07-13 15:55 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Security Systems 2014-07-13 19:39 - 2014-06-13 18:17 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\FileZilla 2014-07-13 19:39 - 2014-05-05 09:44 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\thriXXX 2014-07-13 19:39 - 2014-04-13 09:55 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\FreeCAD 2014-07-13 19:39 - 2014-04-12 13:14 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LibreCAD 2014-07-13 19:39 - 2014-01-29 18:58 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\ColorCop 2014-07-13 19:39 - 2013-12-16 18:55 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\SearchProtect 2014-07-13 19:39 - 2013-12-16 18:54 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Uniblue 2014-07-13 19:39 - 2013-12-16 18:21 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\TuneUp Software 2014-07-13 19:39 - 2013-12-16 18:18 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Softonic 2014-07-13 19:39 - 2013-12-16 18:18 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\DVDVideoSoft 2014-07-13 19:39 - 2013-10-05 17:36 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\InstallShield 2014-07-13 19:39 - 2013-08-07 16:26 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Avira 2014-07-13 19:39 - 2013-05-09 12:47 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\player 2014-07-13 19:39 - 2013-04-03 16:16 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wajam 2014-07-13 19:39 - 2013-04-03 16:16 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Wajam 2014-07-13 19:39 - 2013-04-03 16:13 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FilesFrog Update Checker 2014-07-13 19:39 - 2013-02-28 16:42 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VideoPerformer 2014-07-13 19:39 - 2013-02-28 16:42 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Delta 2014-07-13 19:39 - 2013-02-15 21:06 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake 2014-07-13 19:39 - 2013-01-04 11:49 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\OpenCandy 2014-07-13 19:39 - 2013-01-04 11:49 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\DAEMON Tools Lite 2014-07-13 19:39 - 2012-12-25 15:28 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\WinRAR 2014-07-13 19:39 - 2012-12-25 15:27 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Driver Pro 2014-07-13 19:39 - 2012-12-25 15:08 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Optimizer Pro 2014-07-13 19:39 - 2012-12-21 17:04 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Unigraphics Solutions 2014-07-13 19:39 - 2012-12-16 12:31 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Unity 2014-07-13 19:39 - 2012-12-16 12:19 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Unity 2014-07-13 19:39 - 2012-12-02 16:29 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\PunkBuster 2014-07-13 19:39 - 2012-10-14 18:36 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Video Downloader 2014-07-13 19:39 - 2012-10-02 23:26 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Babylon 2014-07-13 19:39 - 2012-09-09 10:36 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Mozilla 2014-07-13 19:39 - 2012-08-29 09:01 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\XMedia Recode 2014-07-13 19:39 - 2012-08-17 09:54 - 00000000 ___HD () C:\Users\Schrägle\Desktop\Flugbilder 2014-07-13 19:39 - 2012-08-11 17:09 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\CyberLink 2014-07-13 19:39 - 2012-08-06 16:46 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\SoftGrid Client 2014-07-13 19:39 - 2012-08-06 16:46 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\SoftGrid Client 2014-07-13 19:39 - 2012-08-05 14:04 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Windows Live 2014-07-13 19:39 - 2012-08-05 11:24 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerRecover 2014-07-13 19:39 - 2012-08-05 11:24 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Macromedia 2014-07-13 19:39 - 2012-08-05 11:24 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Intel Corporation 2014-07-13 19:39 - 2012-08-05 11:24 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\ATI 2014-07-13 19:39 - 2012-08-05 11:24 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\VirtualStore 2014-07-13 19:39 - 2012-08-05 11:24 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Power2Go 2014-07-13 19:39 - 2012-08-05 11:09 - 00000000 ____D () C:\Users\Schrägle\Desktop\Drucker 2014-07-13 19:39 - 2012-08-05 10:59 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\HpUpdate 2014-07-13 19:39 - 2012-08-05 10:47 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Windows Live Writer 2014-07-13 19:39 - 2012-08-05 10:47 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Windows Live Writer 2014-07-13 19:39 - 2012-08-05 10:45 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Adobe 2014-07-13 19:39 - 2012-08-05 10:44 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Google 2014-07-13 19:38 - 2012-09-09 10:36 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Mozilla 2014-07-13 19:38 - 2012-08-05 10:46 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Microsoft Help 2014-07-13 19:37 - 2014-07-13 15:54 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\MFAData 2014-07-13 19:37 - 2014-04-12 13:15 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\LibreCAD 2014-07-13 19:37 - 2012-09-25 18:13 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Macromedia 2014-07-13 19:37 - 2012-08-05 10:56 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\HP 2014-07-13 19:37 - 2012-08-05 10:44 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Google 2014-07-13 19:36 - 2014-07-13 15:54 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Avg2014 2014-07-13 19:36 - 2014-06-27 19:56 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\AskPartnerNetwork 2014-07-13 19:36 - 2013-04-03 16:16 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\CRE 2014-07-13 19:36 - 2013-02-25 16:09 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Facebook 2014-07-13 19:36 - 2013-01-04 12:19 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\AVG Secure Search 2014-07-13 19:36 - 2012-09-01 15:14 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\APN 2014-07-13 19:36 - 2012-08-07 19:18 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Adobe 2014-07-13 19:36 - 2012-08-05 11:24 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\ATI 2014-07-13 19:27 - 2014-06-23 19:49 - 00000000 ____D () C:\Windows\SysWOW64\mjcm 2014-07-13 19:27 - 2014-06-23 19:49 - 00000000 ____D () C:\Windows\system32\tprb 2014-07-13 19:27 - 2014-04-12 13:20 - 00000000 ____D () C:\Windows\SysWOW64\jmdp 2014-07-13 19:27 - 2014-04-12 13:20 - 00000000 ____D () C:\Windows\system32\ljkb 2014-07-13 19:27 - 2014-01-16 17:31 - 00000000 ____D () C:\Windows\SysWOW64\SearchProtect 2014-07-13 19:27 - 2013-08-15 22:42 - 00000000 ____D () C:\Windows\system32\MRT 2014-07-13 19:27 - 2013-04-10 17:02 - 00000000 ____D () C:\Windows\SysWOW64\ARFC 2014-07-13 19:27 - 2012-10-14 18:34 - 00000000 ____D () C:\Windows\SysWOW64\WNLT 2014-07-13 19:27 - 2012-08-13 10:46 - 00000000 ____D () C:\Windows\tr 2014-07-13 19:27 - 2012-08-13 10:46 - 00000000 ____D () C:\Windows\sl 2014-07-13 19:27 - 2012-08-13 10:46 - 00000000 ____D () C:\Windows\pl 2014-07-13 19:27 - 2012-08-13 10:46 - 00000000 ____D () C:\Windows\nl 2014-07-13 19:27 - 2011-10-14 14:15 - 00000000 ____D () C:\Windows\system32\Macromed 2014-07-13 19:27 - 2011-07-18 23:12 - 00000000 ____D () C:\Windows\SysWOW64\Macromed 2014-07-13 19:27 - 2011-04-12 10:28 - 00000000 ____D () C:\Windows\ShellNew 2014-07-13 19:27 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\zh-HK 2014-07-13 19:27 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\zh-HK 2014-07-13 19:27 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF 2014-07-13 19:26 - 2012-08-13 10:46 - 00000000 ____D () C:\Windows\it 2014-07-13 19:26 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\LiveKernelReports 2014-07-13 19:25 - 2014-07-13 16:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2014-07-13 19:25 - 2014-07-13 15:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2014-07-13 19:25 - 2014-06-13 18:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Programm Verknüpfung Landjugend 2014-07-13 19:25 - 2014-04-12 13:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeCAD 0.13 2014-07-13 19:25 - 2014-02-03 19:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth 2014-07-13 19:25 - 2014-01-29 18:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Color Cop 2014-07-13 19:25 - 2013-12-16 18:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uniblue 2014-07-13 19:25 - 2013-12-16 18:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014 2014-07-13 19:25 - 2013-12-16 18:21 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} 2014-07-13 19:25 - 2013-12-16 18:21 - 00000000 ____D () C:\ProgramData\TuneUp Software 2014-07-13 19:25 - 2013-12-16 18:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft 2014-07-13 19:25 - 2013-11-09 14:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA Games 2014-07-13 19:25 - 2013-10-05 17:36 - 00000000 ____D () C:\Users\Public\Documents\Casio 2014-07-13 19:25 - 2013-10-05 17:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dynamic Photo Manager 2014-07-13 19:25 - 2013-06-02 12:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2014-07-13 19:25 - 2013-05-09 12:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAFPlayer 2014-07-13 19:25 - 2013-04-03 16:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip 2014-07-13 19:25 - 2013-03-14 09:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2014-07-13 19:25 - 2013-02-28 16:41 - 00000000 ____D () C:\ProgramData\IBUpdaterService 2014-07-13 19:25 - 2013-02-15 21:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake 2014-07-13 19:25 - 2013-02-15 21:06 - 00000000 ____D () C:\ProgramData\Freemake 2014-07-13 19:25 - 2013-02-15 21:06 - 00000000 ____D () C:\ProgramData\DivX 2014-07-13 19:25 - 2013-01-04 11:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite 2014-07-13 19:25 - 2013-01-04 11:48 - 00000000 ____D () C:\ProgramData\DAEMON Tools Lite 2014-07-13 19:25 - 2012-12-31 19:17 - 00000000 ____D () C:\ProgramData\Visan 2014-07-13 19:25 - 2012-12-31 19:17 - 00000000 ____D () C:\ProgramData\HP Photo Creations 2014-07-13 19:25 - 2012-12-27 13:05 - 00000000 ____D () C:\ProgramData\Wincert 2014-07-13 19:25 - 2012-12-27 13:05 - 00000000 ____D () C:\ProgramData\boost_interprocess 2014-07-13 19:25 - 2012-12-25 15:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Pro 2014-07-13 19:25 - 2012-12-25 15:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro 2014-07-13 19:25 - 2012-12-23 11:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhoenixRC 2014-07-13 19:25 - 2012-12-21 16:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Solid Edge V20 2014-07-13 19:25 - 2012-09-09 10:36 - 00000000 ____D () C:\ProgramData\Mozilla 2014-07-13 19:25 - 2012-09-03 19:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Live Add-in 2014-07-13 19:25 - 2012-08-13 10:48 - 00000000 ____D () C:\Windows\de 2014-07-13 19:25 - 2012-08-13 10:47 - 00000000 ____D () C:\Windows\hu 2014-07-13 19:25 - 2012-08-13 10:47 - 00000000 ____D () C:\Windows\fr 2014-07-13 19:25 - 2012-08-13 10:47 - 00000000 ____D () C:\Windows\es 2014-07-13 19:25 - 2012-08-13 10:47 - 00000000 ____D () C:\Windows\en 2014-07-13 19:25 - 2012-08-13 10:47 - 00000000 ____D () C:\Windows\el 2014-07-13 19:25 - 2012-08-13 10:47 - 00000000 ____D () C:\Windows\da 2014-07-13 19:25 - 2012-08-07 16:01 - 00000000 ____D () C:\ProgramData\VirtualizedApplications 2014-07-13 19:25 - 2012-08-06 16:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Starter (Deutsch) 2014-07-13 19:25 - 2012-08-05 11:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Memeo 2014-07-13 19:25 - 2012-08-05 11:23 - 00000000 ____D () C:\ProgramData\Kaspersky Rescue Disk 10 2014-07-13 19:25 - 2012-08-05 11:21 - 00000000 ____D () C:\ProgramData\TvdPersonal 2014-07-13 19:25 - 2012-08-05 11:21 - 00000000 ____D () C:\ProgramData\Partner 2014-07-13 19:25 - 2012-08-05 11:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\watchmi 2014-07-13 19:25 - 2012-08-05 11:21 - 00000000 ____D () C:\ProgramData\Google 2014-07-13 19:25 - 2012-08-05 10:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP 2014-07-13 19:25 - 2012-08-05 10:57 - 00000000 ____D () C:\ProgramData\HP 2014-07-13 19:25 - 2012-08-05 10:46 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-07-13 19:25 - 2012-02-20 17:40 - 00000000 ____D () C:\ProgramData\Sun 2014-07-13 19:25 - 2012-02-16 03:17 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Power2Go 2014-07-13 19:25 - 2012-02-16 03:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerDVD Copy 2014-07-13 19:25 - 2012-02-16 03:16 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LabelPrint 2014-07-13 19:25 - 2012-02-16 03:15 - 00000000 ____D () C:\ProgramData\CyberLink 2014-07-13 19:25 - 2012-02-16 03:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center 2014-07-13 19:25 - 2012-02-16 03:06 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel 2014-07-13 19:25 - 2012-02-15 18:25 - 00000000 ____D () C:\Users\Public\CyberLink 2014-07-13 19:25 - 2011-07-18 23:22 - 00000000 ____D () C:\ProgramData\Temp 2014-07-13 19:25 - 2011-07-18 22:56 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live 2014-07-13 19:25 - 2011-04-12 10:28 - 00000000 ___RD () C:\Users\Public\Recorded TV 2014-07-13 19:24 - 2014-07-13 16:00 - 00000000 ____D () C:\ProgramData\AVG2014 2014-07-13 19:24 - 2014-05-05 09:44 - 00000000 ____D () C:\Program Files (x86)\thriXXX 2014-07-13 19:24 - 2014-04-27 14:19 - 00000000 ____D () C:\ProgramData\AVG Secure Search 2014-07-13 19:24 - 2013-12-16 18:54 - 00000000 ____D () C:\Program Files (x86)\Uniblue 2014-07-13 19:24 - 2013-12-16 18:21 - 00000000 ____D () C:\Program Files (x86)\TuneUp Utilities 2014 2014-07-13 19:24 - 2013-08-07 16:25 - 00000000 ____D () C:\ProgramData\AskPartnerNetwork 2014-07-13 19:24 - 2013-08-07 16:25 - 00000000 ____D () C:\ProgramData\APN 2014-07-13 19:24 - 2013-06-16 20:13 - 00000000 ____D () C:\ProgramData\Ask 2014-07-13 19:24 - 2013-05-09 12:47 - 00000000 ____D () C:\Program Files (x86)\Tuguu SL 2014-07-13 19:24 - 2013-04-03 16:16 - 00000000 ____D () C:\Program Files (x86)\Wajam 2014-07-13 19:24 - 2013-02-28 16:42 - 00000000 ____D () C:\Program Files (x86)\VideoPerformer 2014-07-13 19:24 - 2013-01-04 12:10 - 00000000 ____D () C:\Program Files (x86)\SweetIM 2014-07-13 19:24 - 2012-12-21 15:21 - 00000000 ____D () C:\Program Files (x86)\Solid Edge V20 2014-07-13 19:24 - 2012-10-14 18:35 - 00000000 ____D () C:\Program Files (x86)\vGrabber-software 2014-07-13 19:24 - 2012-09-03 19:35 - 00000000 ____D () C:\ProgramData\Avira 2014-07-13 19:24 - 2012-08-05 11:21 - 00000000 ____D () C:\Program Files (x86)\watchmi 2014-07-13 19:24 - 2012-02-16 03:11 - 00000000 ____D () C:\ProgramData\ATI 2014-07-13 19:24 - 2011-07-18 23:06 - 00000000 ____D () C:\ProgramData\Adobe 2014-07-13 19:24 - 2011-07-18 22:51 - 00000000 ____D () C:\Program Files (x86)\Windows Live 2014-07-13 19:23 - 2013-12-16 18:55 - 00000000 ____D () C:\Program Files (x86)\SearchProtect 2014-07-13 19:23 - 2013-12-16 18:18 - 00000000 ____D () C:\Program Files (x86)\Softonic 2014-07-13 19:23 - 2013-04-03 16:13 - 00000000 ____D () C:\Program Files (x86)\PricePeep 2014-07-13 19:23 - 2012-12-27 13:05 - 00000000 ____D () C:\Program Files (x86)\Search Results Toolbar 2014-07-13 19:23 - 2012-12-23 11:16 - 00000000 ____D () C:\Program Files (x86)\PhoenixRC 2014-07-13 19:23 - 2012-02-16 03:12 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-07-13 19:22 - 2013-06-02 12:28 - 00000000 ____D () C:\Program Files (x86)\Microsoft Works 2014-07-13 19:22 - 2013-06-02 12:28 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 2014-07-13 19:22 - 2013-06-02 12:25 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 8 2014-07-13 19:22 - 2013-03-14 09:04 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight 2014-07-13 19:22 - 2013-01-06 17:36 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-07-13 19:22 - 2012-12-25 15:08 - 00000000 ____D () C:\Program Files (x86)\Optimizer Pro 2014-07-13 19:22 - 2012-12-16 18:22 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-07-13 19:22 - 2012-10-14 18:35 - 00000000 ____D () C:\Program Files (x86)\Perion 2014-07-13 19:22 - 2011-07-18 22:55 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2014-07-13 19:22 - 2011-07-18 22:40 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office 2014-07-13 19:22 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files (x86)\MSBuild 2014-07-13 19:21 - 2014-04-12 13:19 - 00000000 ____D () C:\Program Files (x86)\FreeCAD0.13 2014-07-13 19:21 - 2014-04-12 13:14 - 00000000 ____D () C:\Program Files (x86)\LibreCAD 2014-07-13 19:21 - 2014-02-11 20:59 - 00000000 ____D () C:\Program Files (x86)\Microsoft Expression 2014-07-13 19:21 - 2013-06-18 20:03 - 00000000 ____D () C:\Program Files (x86)\Java 2014-07-13 19:21 - 2013-02-15 21:06 - 00000000 ____D () C:\Program Files (x86)\Freemake 2014-07-13 19:21 - 2013-01-15 18:58 - 00000000 ____D () C:\Program Files (x86)\HP 2014-07-13 19:21 - 2012-12-31 19:17 - 00000000 ____D () C:\Program Files (x86)\HP Photo Creations 2014-07-13 19:21 - 2012-08-06 16:45 - 00000000 ____D () C:\Program Files (x86)\Microsoft Application Virtualization Client 2014-07-13 19:21 - 2012-08-05 11:23 - 00000000 ____D () C:\Program Files (x86)\Memeo 2014-07-13 19:21 - 2012-08-05 11:20 - 00000000 ____D () C:\Program Files (x86)\Google 2014-07-13 19:21 - 2012-08-05 10:59 - 00000000 ____D () C:\Program Files (x86)\Hewlett-Packard 2014-07-13 19:21 - 2012-02-16 03:02 - 00000000 ____D () C:\Program Files (x86)\Intel 2014-07-13 19:21 - 2011-07-18 23:23 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-07-13 19:20 - 2014-06-13 18:16 - 00000000 ____D () C:\Program Files (x86)\FileZilla FTP Client 2014-07-13 19:20 - 2013-12-16 18:18 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft 2014-07-13 19:20 - 2013-04-03 16:13 - 00000000 ____D () C:\Program Files (x86)\FilesFrog Update Checker 2014-07-13 19:20 - 2012-12-02 16:21 - 00000000 ____D () C:\Program Files (x86)\EA Games 2014-07-13 19:19 - 2013-02-28 16:42 - 00000000 ____D () C:\Program Files (x86)\Delta 2014-07-13 19:19 - 2013-01-04 11:49 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite 2014-07-13 19:19 - 2012-12-25 15:27 - 00000000 ____D () C:\Program Files (x86)\Driver Pro 2014-07-13 19:19 - 2011-07-18 23:23 - 00000000 ____D () C:\Program Files (x86)\CyberLink 2014-07-13 19:18 - 2014-01-29 18:57 - 00000000 ____D () C:\Program Files (x86)\Color_Cop 2014-07-13 19:18 - 2013-10-05 17:36 - 00000000 ____D () C:\Program Files (x86)\Casio 2014-07-13 19:18 - 2013-08-29 14:00 - 00000000 ____D () C:\Program Files (x86)\bLyrics 2014-07-13 19:18 - 2013-08-07 16:24 - 00000000 ____D () C:\Program Files (x86)\Avira 2014-07-13 19:18 - 2013-01-04 12:19 - 00000000 ____D () C:\Program Files (x86)\AVG Secure Search 2014-07-13 19:17 - 2014-07-13 15:59 - 00000000 ____D () C:\Program Files (x86)\AVG 2014-07-13 19:17 - 2013-08-07 16:25 - 00000000 ____D () C:\Program Files (x86)\AskPartnerNetwork 2014-07-13 19:17 - 2013-06-26 22:03 - 00000000 ____D () C:\Program Files\Java 2014-07-13 19:17 - 2013-04-03 16:13 - 00000000 ____D () C:\Program Files (x86)\7-Zip 2014-07-13 19:17 - 2013-03-14 09:04 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-07-13 19:17 - 2013-01-06 17:04 - 00000000 ____D () C:\Program Files\CCleaner 2014-07-13 19:17 - 2013-01-04 13:05 - 00000000 ____D () C:\Program Files\TrueCrypt 2014-07-13 19:17 - 2012-10-14 18:34 - 00000000 ____D () C:\Program Files\IB Updater 2014-07-13 19:17 - 2012-08-05 11:21 - 00000000 ____D () C:\Program Files\PlayReady 2014-07-13 19:17 - 2012-08-05 10:56 - 00000000 ____D () C:\Program Files\HP 2014-07-13 19:17 - 2012-08-05 10:47 - 00000000 ____D () C:\Program Files\Microsoft Office 2014-07-13 19:17 - 2012-02-16 03:15 - 00000000 ____D () C:\Program Files (x86)\ASM104xUSB3 2014-07-13 19:17 - 2012-02-16 03:10 - 00000000 ____D () C:\Program Files (x86)\AMD APP 2014-07-13 19:17 - 2012-02-16 03:09 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies 2014-07-13 19:17 - 2012-02-16 03:09 - 00000000 ____D () C:\Program Files\ATI Technologies 2014-07-13 19:17 - 2012-02-16 03:09 - 00000000 ____D () C:\Program Files\ATI 2014-07-13 19:17 - 2012-02-16 03:09 - 00000000 ____D () C:\Program Files (x86)\ATI Technologies 2014-07-13 19:17 - 2011-07-18 23:06 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-07-13 19:17 - 2011-07-18 22:49 - 00000000 ____D () C:\Program Files\Windows Live 2014-07-13 19:17 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Vorlagen 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Startmenü 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Netzwerkumgebung 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Lokale Einstellungen 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Eigene Dateien 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Druckumgebung 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Documents\Eigene Musik 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Documents\Eigene Bilder 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\AppData\Local\Verlauf 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\AppData\Local\Anwendungsdaten 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Anwendungsdaten 2014-07-13 19:11 - 2014-07-13 19:11 - 00001345 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk 2014-07-13 19:11 - 2014-07-13 19:11 - 00001326 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk 2014-07-13 19:11 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2014-07-13 19:11 - 2009-07-14 05:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2014-07-13 19:06 - 2014-07-13 19:06 - 00001355 _____ () C:\Windows\TSSysprep.log 2014-07-13 19:03 - 2014-07-13 18:55 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-07-13 18:55 - 2014-07-13 18:55 - 00000000 ____D () C:\Program Files\Realtek 2014-07-13 18:54 - 2014-07-13 18:54 - 00000000 _____ () C:\Windows\ativpsrm.bin 2014-07-13 18:50 - 2014-07-13 18:50 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf 2014-07-13 18:01 - 2012-08-05 11:19 - 01212404 _____ () C:\Windows\WindowsUpdate (1).log 2014-07-13 17:26 - 2014-07-13 17:26 - 00003302 _____ () C:\Users\Schrägle\Desktop\Windows Compatibility Report.htm 2014-07-13 17:23 - 2014-07-13 17:23 - 00013662 _____ () C:\Windows\diagwrn.xml 2014-07-13 17:23 - 2014-07-13 17:23 - 00001890 _____ () C:\Windows\diagerr.xml 2014-07-13 16:02 - 2014-07-13 16:02 - 00000985 _____ () C:\Users\Public\Desktop\AVG 2014.lnk 2014-07-13 16:00 - 2014-07-13 16:00 - 00000000 ___HD () C:\$AVG 2014-07-13 15:55 - 2014-07-13 15:55 - 00000142 _____ () C:\Users\Schrägle\AppData\Roaming\tmp_register.bat 2014-07-13 15:40 - 2013-08-07 16:24 - 00002074 _____ () C:\Users\Public\Desktop\Avira Control Center.lnk 2014-07-13 11:14 - 2014-07-13 11:14 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{C887F452-5450-42AE-92C3-EAC911EDB34C} 2014-07-10 17:33 - 2014-07-10 17:33 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{2E7488C6-96C2-45A0-83FA-4AA877390050} 2014-07-09 20:30 - 2014-07-09 20:30 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{042D9681-1CB0-45D7-9366-084F768DC847} 2014-07-07 18:53 - 2014-07-07 18:53 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{1071BD73-6D66-4747-B84F-C3F980B69617} 2014-07-07 18:53 - 2014-07-07 18:53 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{0E5B554B-2C84-4A29-BBCF-8CF9312A023F} 2014-07-05 11:04 - 2014-07-05 11:03 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{DBB75948-902D-4024-B588-07D9CC33167F} 2014-07-03 18:11 - 2013-08-07 16:24 - 00117712 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2014-07-02 20:37 - 2014-07-02 20:37 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{0ED52F5C-7E76-48D3-B440-1B66A2247749} 2014-07-02 13:06 - 2013-08-07 16:24 - 00042040 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2014-06-30 04:09 - 2014-07-14 03:27 - 00519168 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-06-30 04:04 - 2014-07-14 03:27 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-06-29 16:57 - 2014-06-29 16:57 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{ECC4DA04-C8A5-4673-9625-EAB427986779} 2014-06-29 16:57 - 2014-06-29 16:57 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{C9E1C0EE-9103-4424-8418-78EADDD7D964} 2014-06-29 09:03 - 2014-06-29 09:03 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{A84A427F-8D52-45C8-AE07-D49BAA473727} 2014-06-28 17:51 - 2014-06-28 17:51 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{DC6B7C0A-397F-420A-925E-9E651BBF7836} 2014-06-25 20:16 - 2014-06-25 20:16 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cf90a18dd4ef68.job 2014-06-25 16:39 - 2014-06-25 16:39 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{DE3AADE9-90F8-4435-8DBF-C09011FD9CCC} 2014-06-24 16:15 - 2014-06-25 19:50 - 02601776 _____ () C:\Windows\system32\dmwu.exe 2014-06-24 16:11 - 2012-10-14 18:34 - 00033792 _____ (IncrediMail, Ltd.) C:\Windows\system32\ImHttpComm.dll 2014-06-24 15:09 - 2011-01-08 00:02 - 00829264 _____ (Microsoft Corporation) C:\Windows\system32\msvcr100.dll 2014-06-24 15:09 - 2011-01-08 00:02 - 00608080 _____ (Microsoft Corporation) C:\Windows\system32\msvcp100.dll 2014-06-22 22:00 - 2013-06-26 15:54 - 00003730 _____ () C:\Program Files (x86)\Mozilla Firefoxavg-secure-search.xml 2014-06-22 22:00 - 2013-01-04 12:19 - 00050464 _____ (AVG Technologies) C:\Windows\system32\Drivers\avgtpx64.sys 2014-06-22 20:20 - 2013-03-06 20:42 - 00901120 ___SH () C:\Users\Schrägle\Desktop\Thumbs.db 2014-06-21 19:58 - 2014-06-21 19:58 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{B33F55B0-EBE8-4679-942B-6AA96708E1A9} 2014-06-20 20:04 - 2014-06-20 20:03 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{9F69A0B2-809F-423F-8B77-E0501B392178} 2014-06-19 19:12 - 2014-06-19 19:12 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{C03CB42A-9AE4-418C-BA83-47CB7D12EC35} 2014-06-19 03:06 - 2014-07-09 15:51 - 00004096 ____N (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-06-19 02:41 - 2014-07-09 15:51 - 00083968 ____N (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-06-19 02:41 - 2014-07-09 15:51 - 00048640 ____N (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-06-19 02:24 - 2014-07-09 15:51 - 00111616 ____N (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-06-19 02:23 - 2014-07-09 15:51 - 00752640 ____N (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-06-19 02:14 - 2014-07-09 15:51 - 00940032 ____N (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-06-19 01:59 - 2014-07-09 15:51 - 00038400 ____N (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-06-19 01:36 - 2014-07-09 15:51 - 00051200 ____N (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-06-19 01:35 - 2014-07-09 15:51 - 00062464 ____N (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-06-19 01:27 - 2014-07-09 15:51 - 01249280 ____N (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-06-19 01:22 - 2014-07-09 15:51 - 00592896 ____N (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-06-19 01:06 - 2014-07-09 15:51 - 00032256 ____N (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-06-19 00:46 - 2014-07-09 15:51 - 01068032 ____N (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-06-18 19:05 - 2014-06-18 19:05 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{F10216B5-ABA2-4B1F-9443-7925EDA4C2CF} 2014-06-18 04:18 - 2014-07-14 03:27 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2014-06-18 03:51 - 2014-07-14 03:27 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe 2014-06-18 03:10 - 2014-07-14 03:27 - 03157504 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-06-17 16:21 - 2014-06-17 16:21 - 00235800 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgldx64.sys 2014-06-17 16:07 - 2014-06-17 16:07 - 00328984 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgloga.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00269080 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgtdia.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00242968 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsdrivera.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00190744 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsha.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00153368 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgdiska.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00123672 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgmfx64.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00031512 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgrkx64.sys 2014-06-16 20:34 - 2014-06-16 20:33 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{37940329-4D90-4DFC-A19F-5B13B85BC9B0} 2014-06-15 20:52 - 2014-06-15 20:52 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{A4B0555F-BEAA-4483-9C9C-05EDBCEE76F4} 2014-06-15 14:43 - 2014-06-15 14:43 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{DC99FA77-EBF8-4A51-8EB1-A12BD84B7E68} 2014-06-14 13:01 - 2014-06-14 13:01 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{83E2F3AA-BE9E-4DF7-9766-BF2BE4F8CF71} ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-07-13 21:04 ==================== End Of Log ============================Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 14-07-2014 Ran by Schrägle (administrator) on SCHRÄGLE-PC on 14-07-2014 18:55:57 Running from C:\Users\Schrägle\Downloads Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 9 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\System32\atiesrxx.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (APN LLC.) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgfws.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe (Freemake) C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgnsa.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgemca.exe () C:\Windows\System32\dmwu.exe (Memeo) C:\Program Files (x86)\Memeo\AutoBackup\MemeoBackgroundService.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe (AVG Secure Search) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.7\ToolbarUpdater.exe (Wajam) C:\Program Files (x86)\Wajam\Updater\WajamUpdater.exe () C:\Program Files (x86)\watchmi\TvdService.exe () C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.7\loggingserver.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Conduit) C:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe (Microsoft Corporation) C:\Windows\System32\LogonUI.exe (AMD) C:\Windows\System32\atieclxx.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesApp64.exe (Conduit) C:\Program Files (x86)\SearchProtect\SearchProtect\bin\cltmng.exe () C:\Windows\SysWOW64\mjcm\dnkt.exe () C:\Windows\System32\tprb\dnkt.exe (Conduit) C:\Program Files (x86)\SearchProtect\UI\bin\cltmngui.exe (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Facebook Inc.) C:\Users\Schrägle\AppData\Local\Facebook\Update\FacebookUpdate.exe (PC Utilities Pro) C:\Program Files (x86)\Optimizer Pro\OptProReminder.exe (APN) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe (Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe () C:\Program Files (x86)\AVG Secure Search\vprot.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe () C:\Program Files (x86)\watchmi\TvdTray.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgui.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13374568 2011-11-29] (Realtek Semiconductor) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-12-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [ApnTBMon] => C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [1956760 2014-06-23] (APN) HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\AVG2014\avgui.exe [5179408 2014-06-17] (AVG Technologies CZ, s.r.o.) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [750160 2014-07-03] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [CLMLServer] => C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [107816 2010-08-04] (CyberLink) HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [49208 2010-03-12] (Hewlett-Packard) HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284440 2011-05-20] (Intel Corporation) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [343168 2011-10-14] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [vProt] => C:\Program Files (x86)\AVG Secure Search\vprot.exe [2571288 2014-06-22] () HKLM Group Policy restriction on software: C:\Program Files (x86)\Avira <====== ATTENTION HKLM Group Policy restriction on software: C:\Documents and Settings\All Users\Application Data\Avira <====== ATTENTION HKU\S-1-5-21-4074982664-1885493180-2041087550-1001\...\Run: [aplvbtj] => regsvr32.exe " HKU\S-1-5-21-4074982664-1885493180-2041087550-1001\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3673728 2012-11-06] (DT Soft Ltd) HKU\S-1-5-21-4074982664-1885493180-2041087550-1001\...\Run: [Driver Pro] => C:\Program Files (x86)\Driver Pro\DPLauncher.exe [340512 2012-10-30] (PC Utilities Pro) HKU\S-1-5-21-4074982664-1885493180-2041087550-1001\...\Run: [Facebook Update] => C:\Users\Schrägle\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2013-02-25] (Facebook Inc.) HKU\S-1-5-21-4074982664-1885493180-2041087550-1001\...\Run: [Optimizer Pro] => C:\Program Files (x86)\Optimizer Pro\OptProLauncher.exe [81952 2012-10-21] (PC Utilities Pro) HKU\S-1-5-21-4074982664-1885493180-2041087550-1001\...\Run: [BrowserChoice] => C:\Windows\System32\browserchoice.exe [294912 2010-02-23] (Microsoft Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\watchmi tray.lnk ShortcutTarget: watchmi tray.lnk -> C:\Windows\Installer\{F0559C5E-7912-4391-B1A0-6B975F0E5064}\SHCT_TRAY_PROGRAMG_A10D8603999C4E9488776EF2533C58C9.exe (Acresso Software Inc.) Startup: C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk ShortcutTarget: OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk -> C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,bProtector Start Page = hxxp://www2.delta-search.com/?affID=120519&tt=gc_&babsrc=HP_ss&mntrId=204C8C89A5C0D106 HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com/ig/redirectdomain?brand=MDNF&bmod=MDNF HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://feed.helperbar.com/?publisher=OC&dpid=OC&co=DE&userid=3f43e60c-aae1-49e7-abf7-b555e1809f35&affid=111583&searchtype=ds&babsrc=lnkry&q={searchTerms} HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://feed.helperbar.com/?publisher=OC&dpid=OC&co=DE&userid=3f43e60c-aae1-49e7-abf7-b555e1809f35&affid=111583&searchtype=ds&babsrc=lnkry&q={searchTerms} HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.google.de/ HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.conduit.com/?ctid=CT3318001&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=2&UP=SPBDE4106A-6735-4786-94FB-2FDCB1B2DBB3&SSPV= URLSearchHook: HKCU - SearchHook Class - {D8278076-BC68-4484-9233-6E7F1628B56C} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\searchhook.dll (APN LLC.) StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&gct=ds&appid=484&systemid=406&apn_dtid=BND406&apn_ptnrs=AG6&o=APN10645&apn_uid=4169429992394568&q={searchTerms} SearchScopes: HKLM - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = SearchScopes: HKLM - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&gct=ds&appid=484&systemid=406&apn_dtid=BND406&apn_ptnrs=AG6&o=APN10645&apn_uid=4169429992394568&q={searchTerms} SearchScopes: HKLM-x32 - DefaultScope {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.helperbar.com/?publisher=OC&dpid=OC&co=DE&userid=3f43e60c-aae1-49e7-abf7-b555e1809f35&affid=113129&searchtype=ds&babsrc=lnkry&q={searchTerms} SearchScopes: HKLM-x32 - {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.helperbar.com/?publisher=OC&dpid=OC&co=DE&userid=3f43e60c-aae1-49e7-abf7-b555e1809f35&affid=113129&searchtype=ds&babsrc=lnkry&q={searchTerms} SearchScopes: HKLM-x32 - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&gct=ds&appid=484&systemid=406&apn_dtid=BND406&apn_ptnrs=AG6&o=APN10645&apn_uid=4169429992394568&q={searchTerms} SearchScopes: HKCU - DefaultScope {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = hxxp://search.conduit.com/Results.aspx?ctid=CT3318001&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=2&UP=SPBDE4106A-6735-4786-94FB-2FDCB1B2DBB3&q={searchTerms}&SSPV= SearchScopes: HKCU - bProtectorDefaultScope {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} SearchScopes: HKCU - {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.helperbar.com/?publisher=OC&dpid=OC&co=DE&userid=3f43e60c-aae1-49e7-abf7-b555e1809f35&affid=111583&searchtype=ds&babsrc=lnkry&q={searchTerms} SearchScopes: HKCU - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = hxxp://search.conduit.com/Results.aspx?ctid=CT3318001&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=2&UP=SPBDE4106A-6735-4786-94FB-2FDCB1B2DBB3&q={searchTerms}&SSPV= SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://search.babylon.com/?q={searchTerms}&affID=120519&tt=gc_&babsrc=SP_ss_wls&mntrId=204C8C89A5C0D106 SearchScopes: HKCU - {47F90973-4CA2-4B04-9871-357401428EDA} URL = hxxp://search.softonic.com/MOY00621/tb_v1?q={searchTerms}&SearchSource=4&cc=&mi=204c3cc00000000000008c89a5c0d106&r=760 SearchScopes: HKCU - {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxp://isearch.avg.com/search?cid={6BC30EE0-2A17-4FE7-9CC0-06810D954378}&mid=76e695e090054cd5a827dd4aeb17cf8b-450ce608ba99f2e236ed78e1c9cefc30d79ded87&lang=en&ds=pl011&pr=sa&d=2013-01-04 11:19:12&v=14.2.0.1&pid=avg&sg=0&sap=dsp&q={searchTerms} SearchScopes: HKCU - {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&gct=ds&appid=484&systemid=406&apn_dtid=BND406&apn_ptnrs=AG6&o=APN10645&apn_uid=4169429992394568&q={searchTerms} SearchScopes: HKCU - {CD620077-47CB-4D83-82DD-10CE510566DA} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=AVR-3&o=APN10395&src=kw&q={searchTerms}&locale=de_DE&apn_ptnrs=^ABT&apn_dtid=^YYYYYY^YY^DE&apn_uid=b959b0e8-4ca6-444f-8433-8477125cfddd&apn_sauid=60B437BE-0B18-4D4C-AE46-115F562DE782 SearchScopes: HKCU - {CFF4DB9B-135F-47c0-9269-B4C6572FD61A} URL = hxxp://mystart.incredibar.com/?a=6OyR68zFGC&loc=skw&search={searchTerms}&i=26 BHO: Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport_x64.dll (APN LLC.) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: DataMngr - {C1ED9DA0-AFD0-4b90-AC6A-D3874F591014} - C:\Program Files (x86)\Search Results Toolbar\Datamngr\x64\BrowserConnection.dll (Bandoo Media Inc) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO: DVDVideoSoft IE Extension - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll (DVDVideoSoft Ltd.) BHO-x32: Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.) BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\18.1.7.644\AVG Secure Search_toolbar.dll (AVG Secure Search) BHO-x32: Wajam - {A7A6995D-6EE1-4FD1-A258-49395D5BF99C} - C:\Program Files (x86)\Wajam\IE\priam_bho.dll (Wajam) BHO-x32: delta Helper Object - {C1AF5FA5-852C-4C90-812E-A7F75E011D87} - C:\Program Files (x86)\Delta\delta\1.8.16.16\bh\delta.dll (Delta-search.com) BHO-x32: DataMngr - {C1ED9DA0-AFD0-4b90-AC6A-D3874F591014} - C:\Program Files (x86)\Search Results Toolbar\Datamngr\BrowserConnection.dll (Bandoo Media Inc) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Softonic Helper Object - {E87806B5-E908-45FD-AF5E-957D83E58E68} - C:\Program Files (x86)\Softonic\Softonic\1.8.21.14\bh\Softonic.dll (Softonic.com) BHO-x32: DVDVideoSoft IE Extension - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll (DVDVideoSoft Ltd.) BHO-x32: SweetPacks Browser Helper - {EEE6C35C-6118-11DC-9C72-001320C79847} - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll (SweetIM Technologies Ltd.) BHO-x32: Search-Results Toolbar - {f34c9277-6577-4dff-b2d7-7d58092f272f} - C:\PROGRA~2\SEARCH~1\Datamngr\SRTOOL~1\searchresultsDx.dll No File BHO-x32: PricePeep - {FD6D90C0-E6EE-4BC6-B9F7-9ED319698007} - C:\Program Files (x86)\PricePeep\pricepeep.dll (PricePeep) Toolbar: HKLM - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport_x64.dll (APN LLC.) Toolbar: HKLM - No Name - {ae07101b-46d4-4a98-af68-0333ea26e113} - No File Toolbar: HKLM-x32 - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.) Toolbar: HKLM-x32 - Softonic Toolbar - {5018CFD2-804D-4C99-9F81-25EAEA2769DE} - C:\Program Files (x86)\Softonic\Softonic\1.8.21.14\SoftonicTlbr.dll (Softonic.com) Toolbar: HKLM-x32 - Delta Toolbar - {82E1477C-B154-48D3-9891-33D83C26BCD3} - C:\Program Files (x86)\Delta\delta\1.8.16.16\deltaTlbr.dll (Delta-search.com) Toolbar: HKLM-x32 - AVG Security Toolbar - {95B7759C-8C7F-4BF1-B163-73684A933233} - C:\Program Files (x86)\AVG Secure Search\18.1.7.644\AVG Secure Search_toolbar.dll (AVG Secure Search) Toolbar: HKLM-x32 - No Name - {ae07101b-46d4-4a98-af68-0333ea26e113} - No File Toolbar: HKLM-x32 - SweetPacks Toolbar for Internet Explorer - {EEE6C35B-6118-11DC-9C72-001320C79847} - C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll (SweetIM Technologies Ltd.) Toolbar: HKLM-x32 - Search-Results Toolbar - {f34c9277-6577-4dff-b2d7-7d58092f272f} - C:\PROGRA~2\SEARCH~1\Datamngr\SRTOOL~1\searchresultsDx.dll No File Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File Toolbar: HKCU - No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - No File Toolbar: HKCU - No Name - {EEE6C35B-6118-11DC-9C72-001320C79847} - No File Toolbar: HKCU - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport_x64.dll (APN LLC.) DPF: HKLM-x32 {C8BC46C7-921C-4102-B67D-F1F7E65FB0BE} https://battlefield.play4free.com/static/updater/BP4FUpdater_1.0.96.0.cab Handler-x32: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\18.1.7\ViProtocol.dll (AVG Secure Search) Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 192.168.2.1 FireFox: ======== FF ProfilePath: C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default FF DefaultSearchEngine: Ask Search FF SelectedSearchEngine: Conduit Search FF Homepage: hxxp://search.conduit.com/?ctid=CT3318001&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=2&UP=SPBDE4106A-6735-4786-94FB-2FDCB1B2DBB3&SSPV= FF Homepage: hxxp://search.conduit.com/?ctid=CT3318001&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=2&UP=SPBDE4106A-6735-4786-94FB-2FDCB1B2DBB3&SSPV= FF SearchEngineOrder.1: Ask Search FF NewTab: hxxp://search.conduit.com/?ctid=CT3318001&octid=EB_ORIGINAL_CTID&SearchSource=69&CUI=&SSPV=&Lay=1&UM=2&UP=SPBDE4106A-6735-4786-94FB-2FDCB1B2DBB3 FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll () FF Plugin: @java.com/DTPlugin,version=10.25.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll () FF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin - C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\18.1.7\\npsitesafety.dll No File FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @java.com/DTPlugin,version=10.21.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.21.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\Schrägle\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited) FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Schrägle\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF user.js: detected! => C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\user.js FF SearchPlugin: C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\searchplugins\ask-search.xml FF SearchPlugin: C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\searchplugins\babylon.xml FF SearchPlugin: C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\searchplugins\conduit-search.xml FF SearchPlugin: C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\searchplugins\delta.xml FF SearchPlugin: C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\searchplugins\MyStart Search.xml FF SearchPlugin: C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\searchplugins\softonic.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\avg-secure-search.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\Search_Results.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\avg-secure-search.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Battlefield Play4Free - C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\Extensions\battlefieldplay4free@ea.com [2013-05-30] FF Extension: Delta Toolbar - C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\Extensions\ffxtlbr@delta.com [2013-02-28] FF Extension: No Name - C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\Extensions\staged [2014-07-13] FF Extension: Yahoo! Toolbar - C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\Extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1} [2013-04-14] FF Extension: PricePeep - C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\Extensions\pricepeep@getpricepeep.com.xpi [2013-02-03] FF Extension: Avira SearchFree Toolbar plus Web Protection - C:\Users\Schrägle\AppData\Roaming\Mozilla\Firefox\Profiles\1vv60yf3.default\Extensions\toolbar_AVIRA-V7@apn.ask.com.xpi [2013-07-26] FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\extensions\ffxtlbr@babylon.com [2013-02-28] FF HKLM\...\Firefox\Extensions: [{336D0C35-8A85-403a-B9D2-65C292C39087}] - C:\Program Files\IB Updater\Firefox FF Extension: IB Updater - C:\Program Files\IB Updater\Firefox [2012-10-14] FF HKLM\...\Firefox\Extensions: [{FE1DEEEA-DB6D-44b8-83F0-34FC0F9D1052}] - C:\Program Files\IB Updater\Firefox FF HKLM-x32\...\Firefox\Extensions: [avg@toolbar] - C:\ProgramData\AVG Secure Search\FireFoxExt\18.1.7.644 FF Extension: AVG Security Toolbar - C:\ProgramData\AVG Secure Search\FireFoxExt\18.1.7.644 [2014-06-22] FF HKLM-x32\...\Firefox\Extensions: [fmconverter@gmail.com] - C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Firefox FF Extension: Freemake Video Converter Plugin - C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Firefox [2013-02-15] FF HKLM-x32\...\Firefox\Extensions: [{336D0C35-8A85-403a-B9D2-65C292C39087}] - C:\Program Files\IB Updater\Firefox FF HKLM-x32\...\Firefox\Extensions: [{ACAA314B-EEBA-48e4-AD47-84E31C44796C}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff FF Extension: DVDVideoSoft YouTube MP3 and Video Download - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff [2013-12-16] FF HKLM-x32\...\Firefox\Extensions: [{FE1DEEEA-DB6D-44b8-83F0-34FC0F9D1052}] - C:\Program Files\IB Updater\Firefox FF HKCU\...\Firefox\Extensions: [{45dd9ac7-a7fe-4cee-a035-d55aefec22ce}] - C:\Program Files (x86)\bLyrics\131.xpi FF Extension: B Lyrics - C:\Program Files (x86)\bLyrics\131.xpi [2013-08-29] FF HKCU\...\Firefox\Extensions: [{5a95a9e0-59dd-4314-bd84-4d18ca83a0e2}] - C:\Program Files (x86)\Wajam\Firefox\{5a95a9e0-59dd-4314-bd84-4d18ca83a0e2}.xpi FF Extension: Wajam - C:\Program Files (x86)\Wajam\Firefox\{5a95a9e0-59dd-4314-bd84-4d18ca83a0e2}.xpi [2013-03-28] Chrome: ======= CHR HomePage: hxxp://search.softonic.com/MOY00621/tb_v1?SearchSource=48&cc=&mi=204c3cc00000000000008c89a5c0d106 CHR StartupUrls: "hxxp://search.softonic.com/MOY00621/tb_v1?SearchSource=48&cc=&mi=204c3cc00000000000008c89a5c0d106" CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\gcswf32.dll No File CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll No File CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\4.1.10111.0\npctrl.dll No File CHR Plugin: (Chrome NaCl) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\pdf.dll () CHR Plugin: (Kaspersky Anti-Virus) - C:\Users\Schrgle\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman\12.0.0.374_0\plugin/npABPlugin.dll No File CHR Plugin: (Kaspersky Anti-Virus) - C:\Users\Schrgle\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh\12.0.0.374_0\plugin/npVKPlugin.dll No File CHR Plugin: (Kaspersky Anti-Virus) - C:\Users\Schrgle\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\12.0.0.397_0\plugin/npUrlAdvisor.dll No File CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll No File CHR Plugin: (Java(TM) Platform SE 7 U3) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (Windows Live Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (Default Plug-in) - default_plugin No File CHR Extension: (Avira SearchFree Toolbar plus Web Protection) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaacalgebmfelllfiaoknifldpngjh [2013-08-07] CHR Extension: (Adblock Plus) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2013-05-06] CHR Extension: (IB Updater) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd [2012-10-30] CHR Extension: (Softonic Chrome Toolbar) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\elchiiiejkobdbblfejjkbphbddgmljf [2013-12-16] CHR Extension: (Freemake Video Converter) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj [2013-02-15] CHR Extension: (Wajam) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpmbfleldcgkldadpdinhjjopdfpjfjp [2013-04-03] CHR Extension: (SwissConverter 2.1) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\lhdidofdhbieclaekjnfcnfaoceobnco [2013-04-03] CHR Extension: (PricePeep) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\licjnkifamhpbaefhdpacpmihicfbomb [2013-04-03] CHR Extension: (Google Wallet) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-22] CHR Extension: (SweetPacks Chrome Extension) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj [2013-09-17] CHR Extension: (Battlefield Play4Free) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\oiokahphinmbmakkehgelkmpolmnbkdh [2013-11-02] CHR Extension: (B Lyrics) - C:\Users\Schrägle\AppData\Local\Google\Chrome\User Data\Default\Extensions\okaclkhnjaebofijaabgiahinbajiekd [2013-08-16] CHR HKLM\...\Chrome\Extension: [dlnembnfbcpjnepmfjmngjenhhajpdfd] - C:\Program Files\IB Updater\source.crx [2012-10-14] CHR HKCU\...\Chrome\Extension: [lhdidofdhbieclaekjnfcnfaoceobnco] - C:\Users\Schrägle\AppData\Local\CRE\lhdidofdhbieclaekjnfcnfaoceobnco.crx [2013-03-24] CHR HKLM-x32\...\Chrome\Extension: [aaaaacalgebmfelllfiaoknifldpngjh] - C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\ToolbarCR.crx [2014-06-26] CHR HKLM-x32\...\Chrome\Extension: [dhkplhfnhceodhffomolpfigojocbpcb] - C:\Users\Schrägle\AppData\Roaming\BabSolution\CR\BabylonChrome1.crx [2014-06-26] CHR HKLM-x32\...\Chrome\Extension: [dlnembnfbcpjnepmfjmngjenhhajpdfd] - C:\Program Files\IB Updater\source.crx [2012-10-14] CHR HKLM-x32\...\Chrome\Extension: [elchiiiejkobdbblfejjkbphbddgmljf] - C:\Program Files (x86)\Softonic\Softonic\1.8.21.14\Softonic.crx [2013-06-11] CHR HKLM-x32\...\Chrome\Extension: [fgfdfcbeamjnjdejakdidpniblllnbpg] - C:\Windows\SysWOW64\jmdp\pnte.crx [2013-06-11] CHR HKLM-x32\...\Chrome\Extension: [jbolfgndggfhhpbnkgnpjkfhinclbigj] - C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Chrome\Freemake.Plugin.Chrome.crx [2013-02-15] CHR HKLM-x32\...\Chrome\Extension: [jifflliplgeajjdhmkcfnngfpgbjonjg] - C:\Program Files (x86)\Perion\NewTab\newTab.crx [2012-10-14] CHR HKLM-x32\...\Chrome\Extension: [jpmbfleldcgkldadpdinhjjopdfpjfjp] - C:\Users\Schrägle\AppData\Local\Wajam\Chrome\wajam.crx [2013-03-28] CHR HKLM-x32\...\Chrome\Extension: [lhdidofdhbieclaekjnfcnfaoceobnco] - C:\Users\Schrägle\AppData\Local\CRE\lhdidofdhbieclaekjnfcnfaoceobnco.crx [2013-03-24] CHR HKLM-x32\...\Chrome\Extension: [ndibdjnfmopecpmkdieinmbadjfpblof] - C:\ProgramData\AVG Secure Search\ChromeExt\18.1.0.443\avg.crx [2014-04-27] CHR HKLM-x32\...\Chrome\Extension: [niogeckbkdcabhnapjbkeiklablhjoca] - C:\Program Files (x86)\Perion\ChromeInfoBar\ChromeInfoBar.crx [2012-10-14] CHR HKLM-x32\...\Chrome\Extension: [ogccgbmabaphcakpiclgcnmcnimhokcj] - C:\Windows\SysWOW64\mjcm\SweetNT.crx [2014-06-24] CHR HKLM-x32\...\Chrome\Extension: [okaclkhnjaebofijaabgiahinbajiekd] - C:\Program Files (x86)\bLyrics\131.crx [2013-08-29] ==================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [430160 2014-07-03] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [430160 2014-07-03] (Avira Operations GmbH & Co. KG) R2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1030224 2014-07-02] (Avira Operations GmbH & Co. KG) R2 APNMCP; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [165784 2014-06-23] (APN LLC.) R2 avgfws; C:\Program Files (x86)\AVG\AVG2014\avgfws.exe [1417160 2014-06-17] (AVG Technologies CZ, s.r.o.) S2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe [3241488 2014-06-27] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe [289328 2014-06-17] (AVG Technologies CZ, s.r.o.) R2 CltMngSvc; C:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe [2301216 2014-01-01] (Conduit) R2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [100864 2013-01-31] (Freemake) [File not signed] R2 IBUpdaterService; C:\Windows\system32\dmwu.exe [2601776 2014-06-24] () S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [File not signed] S3 IEEtwCollectorService; C:\Windows\system32\IEEtwCollector.exe [111616 2014-06-19] (Microsoft Corporation) [File not signed] R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe [2100024 2013-08-30] (TuneUp Software) R2 vToolbarUpdater18.1.7; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.7\ToolbarUpdater.exe [1813528 2014-06-22] (AVG Secure Search) R2 WajamUpdater; C:\Program Files (x86)\Wajam\Updater\WajamUpdater.exe [109064 2013-03-28] (Wajam) [File not signed] R2 watchmi; C:\Program Files (x86)\watchmi\TvdService.exe [70144 2012-01-31] () [File not signed] ==================== Drivers (Whitelisted) ==================== R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [153368 2014-06-17] (AVG Technologies CZ, s.r.o.) R1 Avgfwfd; C:\Windows\System32\DRIVERS\avgfwd6a.sys [57144 2013-09-26] (AVG Technologies CZ, s.r.o.) R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [242968 2014-06-17] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [190744 2014-06-17] (AVG Technologies CZ, s.r.o.) S1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [235800 2014-06-17] (AVG Technologies CZ, s.r.o.) S0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [328984 2014-06-17] (AVG Technologies CZ, s.r.o.) R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [123672 2014-06-17] (AVG Technologies CZ, s.r.o.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [117712 2014-07-03] (Avira Operations GmbH & Co. KG) R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [31512 2014-06-17] (AVG Technologies CZ, s.r.o.) R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [269080 2014-06-17] (AVG Technologies CZ, s.r.o.) R1 avgtp; C:\Windows\system32\drivers\avgtpx64.sys [50464 2014-06-22] (AVG Technologies) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [130584 2014-06-03] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-11-19] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\Windows\System32\DRIVERS\avnetflt.sys [42040 2014-07-02] (Avira Operations GmbH & Co. KG) R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [14112 2013-08-21] (TuneUp Software) U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [59904 2009-07-14] (Microsoft Corporation) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-07-14 18:38 - 2014-07-14 18:38 - 00174567 _____ () C:\Users\Schrägle\Desktop\FRST.txt 2014-07-14 18:35 - 2014-07-14 18:55 - 00036017 _____ () C:\Users\Schrägle\Downloads\FRST.txt 2014-07-14 18:34 - 2014-07-14 18:34 - 02086912 _____ (Farbar) C:\Users\Schrägle\Downloads\FRST64.exe 2014-07-14 18:31 - 2014-07-14 18:32 - 00001447 _____ () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-07-14 18:31 - 2014-07-14 18:31 - 00003548 _____ () C:\Windows\System32\Tasks\CreateChoiceProcessTask 2014-07-14 18:31 - 2014-07-14 18:31 - 00001758 _____ () C:\Users\Public\Desktop\Browserwahl.lnk 2014-07-14 06:53 - 2013-05-10 07:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2014-07-14 06:53 - 2013-05-10 07:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL 2014-07-14 06:53 - 2013-05-10 06:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL 2014-07-14 06:53 - 2013-05-10 06:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2014-07-14 06:16 - 2010-02-23 10:16 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\browserchoice.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 17773056 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 12268544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 10884096 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 09702400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 03695416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2014-07-14 06:14 - 2014-07-14 06:14 - 03695416 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2014-07-14 06:14 - 2014-07-14 06:14 - 02382848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-07-14 06:14 - 2014-07-14 06:14 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-07-14 06:14 - 2014-07-14 06:14 - 02303488 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 02136064 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01797632 _____ (Microsoft Corporation) |
14.07.2014, 18:33 | #11 |
| Avira Antivir wird blockiertCode:
ATTFilter C:\Windows\SysWOW64\jscript9.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01785344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01492992 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-07-14 06:14 - 2014-07-14 06:14 - 01427456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-07-14 06:14 - 2014-07-14 06:14 - 01389056 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01344000 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01126912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01102336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00818176 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00716800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00697344 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00603648 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00580608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00534528 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00452608 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00448512 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-07-14 06:14 - 2014-07-14 06:14 - 00434176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00420864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00403248 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2014-07-14 06:14 - 2014-07-14 06:14 - 00353792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00353584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00282112 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\ieaksie.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00249344 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00248320 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00236544 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00231936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00227840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieaksie.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00203776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00176640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieakui.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\ieakui.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00160256 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00160256 _____ (Microsoft Corporation) C:\Windows\system32\ieakeng.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00150528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00130560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieakeng.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00123392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00118784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\admparse.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00101888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\admparse.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00078848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2014-07-14 06:14 - 2014-07-14 06:14 - 00074752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00074752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ie4uinit.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00072704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00065024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00063488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2014-07-14 06:14 - 2014-07-14 06:14 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00054272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-07-14 06:08 - 2014-07-14 06:15 - 00004361 _____ () C:\Windows\IE9_main.log 2014-07-14 06:00 - 2012-07-26 05:08 - 00744448 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll 2014-07-14 06:00 - 2012-07-26 05:08 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe 2014-07-14 06:00 - 2012-07-26 05:08 - 00194048 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll 2014-07-14 06:00 - 2012-07-26 05:08 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll 2014-07-14 06:00 - 2012-07-26 05:08 - 00045056 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll 2014-07-14 06:00 - 2012-07-26 04:26 - 00198656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys 2014-07-14 06:00 - 2012-07-26 04:26 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys 2014-07-14 06:00 - 2012-06-02 16:57 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf 2014-07-14 05:53 - 2012-03-01 08:46 - 00023408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys 2014-07-14 05:53 - 2012-03-01 08:28 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll 2014-07-14 05:53 - 2012-03-01 07:29 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmi.dll 2014-07-14 04:35 - 2014-07-13 23:50 - 00000000 ____D () C:\Windows\Panther 2014-07-14 04:33 - 2014-07-14 04:33 - 00262144 _____ () C:\Windows\system32\config\userdiff 2014-07-14 04:14 - 2014-07-13 19:51 - 00000000 ___HD () C:\$WINDOWS.~Q 2014-07-14 04:06 - 2014-07-14 04:10 - 00000000 ___HD () C:\$INPLACE.~TR 2014-07-14 03:30 - 2014-01-28 04:32 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2014-07-14 03:30 - 2013-10-30 04:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2014-07-14 03:30 - 2013-10-30 04:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll 2014-07-14 03:30 - 2013-07-04 14:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll 2014-07-14 03:30 - 2013-07-04 13:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll 2014-07-14 03:30 - 2013-03-19 07:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll 2014-07-14 03:30 - 2011-06-16 07:49 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\xmllite.dll 2014-07-14 03:30 - 2011-06-16 06:33 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xmllite.dll 2014-07-14 03:30 - 2011-06-15 12:02 - 00212992 _____ (Microsoft Corporation) C:\Windows\system32\odbctrac.dll 2014-07-14 03:30 - 2011-06-15 12:02 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\odbccp32.dll 2014-07-14 03:30 - 2011-06-15 12:02 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccu32.dll 2014-07-14 03:30 - 2011-06-15 12:02 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\odbccr32.dll 2014-07-14 03:30 - 2011-06-15 10:55 - 00319488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbcjt32.dll 2014-07-14 03:30 - 2011-06-15 10:55 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbctrac.dll 2014-07-14 03:30 - 2011-06-15 10:55 - 00122880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccp32.dll 2014-07-14 03:30 - 2011-06-15 10:55 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccu32.dll 2014-07-14 03:30 - 2011-06-15 10:55 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbccr32.dll 2014-07-14 03:29 - 2014-03-25 04:43 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-07-14 03:29 - 2014-03-25 04:09 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2014-07-14 03:29 - 2013-07-09 07:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2014-07-14 03:29 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2014-07-14 03:29 - 2013-02-15 08:08 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2014-07-14 03:29 - 2013-02-15 08:06 - 03717632 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2014-07-14 03:29 - 2013-02-15 08:02 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll 2014-07-14 03:29 - 2013-02-15 06:37 - 03217408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2014-07-14 03:29 - 2013-02-15 06:34 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll 2014-07-14 03:29 - 2013-02-15 05:25 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2014-07-14 03:29 - 2012-10-09 20:17 - 00226816 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll 2014-07-14 03:29 - 2012-10-09 20:17 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll 2014-07-14 03:29 - 2012-10-09 19:40 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll 2014-07-14 03:29 - 2012-10-09 19:40 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll 2014-07-14 03:29 - 2012-01-04 12:44 - 00509952 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll 2014-07-14 03:29 - 2012-01-04 10:58 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll 2014-07-14 03:29 - 2011-10-26 07:25 - 01572864 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll 2014-07-14 03:29 - 2011-10-26 07:25 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll 2014-07-14 03:29 - 2011-10-26 06:32 - 01328128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll 2014-07-14 03:29 - 2011-10-26 06:32 - 00514560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll 2014-07-14 03:29 - 2011-04-09 08:58 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2014-07-14 03:29 - 2011-04-09 07:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2014-07-14 03:29 - 2010-12-23 12:42 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\sbe.dll 2014-07-14 03:29 - 2010-12-23 12:42 - 00961024 _____ (Microsoft Corporation) C:\Windows\system32\CPFilters.dll 2014-07-14 03:29 - 2010-12-23 12:36 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax 2014-07-14 03:29 - 2010-12-23 07:54 - 00850944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sbe.dll 2014-07-14 03:29 - 2010-12-23 07:54 - 00642048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CPFilters.dll 2014-07-14 03:29 - 2010-12-23 07:50 - 00199680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mpg2splt.ax 2014-07-14 03:28 - 2014-04-25 04:34 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll 2014-07-14 03:28 - 2014-04-25 04:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll 2014-07-14 03:28 - 2014-04-05 04:47 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2014-07-14 03:28 - 2014-04-05 04:47 - 00288192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS 2014-07-14 03:28 - 2014-01-29 04:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2014-07-14 03:28 - 2014-01-29 04:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll 2014-07-14 03:28 - 2014-01-01 01:05 - 00420008 _____ () C:\Windows\SysWOW64\locale.nls 2014-07-14 03:28 - 2014-01-01 01:04 - 00420008 _____ () C:\Windows\system32\locale.nls 2014-07-14 03:28 - 2013-11-26 13:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2014-07-14 03:28 - 2013-10-19 04:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll 2014-07-14 03:28 - 2013-10-19 03:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll 2014-07-14 03:28 - 2013-10-05 22:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2014-07-14 03:28 - 2013-10-05 21:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2014-07-14 03:28 - 2013-07-09 07:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2014-07-14 03:28 - 2013-07-09 07:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2014-07-14 03:28 - 2013-07-09 06:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2014-07-14 03:28 - 2013-07-09 06:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2014-07-14 03:28 - 2013-02-27 08:02 - 00111448 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2014-07-14 03:28 - 2013-02-27 07:47 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2014-07-14 03:28 - 2011-11-17 08:35 - 00395776 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll 2014-07-14 03:28 - 2011-11-17 07:35 - 00314880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll 2014-07-14 03:28 - 2011-07-09 04:46 - 00288768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2014-07-14 03:28 - 2011-05-04 07:25 - 02315776 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll 2014-07-14 03:28 - 2011-05-04 07:22 - 02223616 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll 2014-07-14 03:28 - 2011-05-04 07:22 - 00778752 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll 2014-07-14 03:28 - 2011-05-04 07:22 - 00491520 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll 2014-07-14 03:28 - 2011-05-04 07:22 - 00288256 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll 2014-07-14 03:28 - 2011-05-04 07:22 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll 2014-07-14 03:28 - 2011-05-04 07:19 - 00591872 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe 2014-07-14 03:28 - 2011-05-04 07:19 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe 2014-07-14 03:28 - 2011-05-04 07:19 - 00113664 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe 2014-07-14 03:28 - 2011-05-04 06:34 - 01549312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll 2014-07-14 03:28 - 2011-05-04 06:32 - 01401344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll 2014-07-14 03:28 - 2011-05-04 06:32 - 00666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll 2014-07-14 03:28 - 2011-05-04 06:32 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll 2014-07-14 03:28 - 2011-05-04 06:32 - 00197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll 2014-07-14 03:28 - 2011-05-04 06:32 - 00059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll 2014-07-14 03:28 - 2011-05-04 06:28 - 00427520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe 2014-07-14 03:28 - 2011-05-04 06:28 - 00164352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe 2014-07-14 03:28 - 2011-05-04 06:28 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe 2014-07-14 03:28 - 2011-04-27 04:40 - 00158208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2014-07-14 03:28 - 2011-04-27 04:39 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2014-07-14 03:27 - 2014-06-30 04:09 - 00519168 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-07-14 03:27 - 2014-06-30 04:04 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-07-14 03:27 - 2014-06-18 04:18 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2014-07-14 03:27 - 2014-06-18 03:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe 2014-07-14 03:27 - 2014-06-18 03:10 - 03157504 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-07-14 03:27 - 2014-03-26 16:44 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2014-07-14 03:27 - 2014-03-26 16:44 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-07-14 03:27 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll 2014-07-14 03:27 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-07-14 03:27 - 2014-03-26 16:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2014-07-14 03:27 - 2014-03-26 16:27 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-07-14 03:27 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll 2014-07-14 03:27 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-07-14 03:27 - 2013-11-12 04:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2014-07-14 03:27 - 2013-11-12 04:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2014-07-14 03:27 - 2013-10-04 04:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll 2014-07-14 03:27 - 2013-10-04 04:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll 2014-07-14 03:27 - 2013-10-04 04:24 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2014-07-14 03:27 - 2013-10-04 04:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys 2014-07-14 03:27 - 2013-10-04 03:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll 2014-07-14 03:27 - 2013-10-04 03:56 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2014-07-14 03:27 - 2013-10-04 03:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll 2014-07-14 03:27 - 2013-10-04 03:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys 2014-07-14 03:27 - 2013-08-05 04:25 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys 2014-07-14 03:27 - 2011-12-30 08:26 - 00515584 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl 2014-07-14 03:27 - 2011-12-30 07:27 - 00478720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl 2014-07-14 03:26 - 2014-06-06 12:10 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-07-14 03:26 - 2014-06-06 11:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2014-07-14 03:26 - 2014-05-30 08:45 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys 2014-07-14 03:26 - 2013-12-04 04:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll 2014-07-14 03:26 - 2013-12-04 04:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll 2014-07-14 03:26 - 2013-12-04 04:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll 2014-07-14 03:26 - 2013-12-04 04:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll 2014-07-14 03:26 - 2013-12-04 04:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll 2014-07-14 03:26 - 2013-12-04 04:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe 2014-07-14 03:26 - 2013-12-04 04:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe 2014-07-14 03:26 - 2013-12-04 04:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe 2014-07-14 03:26 - 2013-12-04 04:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe 2014-07-14 03:26 - 2013-12-04 04:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll 2014-07-14 03:26 - 2013-12-04 04:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll 2014-07-14 03:26 - 2013-12-04 04:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll 2014-07-14 03:26 - 2013-12-04 04:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll 2014-07-14 03:26 - 2013-12-04 04:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll 2014-07-14 03:26 - 2013-12-04 03:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe 2014-07-14 03:26 - 2013-12-04 03:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe 2014-07-14 03:26 - 2013-12-04 03:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe 2014-07-14 03:26 - 2013-12-04 03:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe 2014-07-14 03:26 - 2013-11-27 03:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys 2014-07-14 03:26 - 2013-11-27 03:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys 2014-07-14 03:26 - 2013-11-27 03:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys 2014-07-14 03:26 - 2013-11-27 03:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys 2014-07-14 03:26 - 2013-11-27 03:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys 2014-07-14 03:26 - 2013-07-25 11:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2014-07-14 03:26 - 2013-07-25 10:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2014-07-14 03:26 - 2013-07-12 12:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys 2014-07-14 03:26 - 2013-07-09 07:51 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2014-07-14 03:26 - 2013-07-09 06:52 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2014-07-14 03:26 - 2013-07-03 06:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys 2014-07-14 03:26 - 2013-07-03 06:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys 2014-07-14 03:26 - 2013-06-26 00:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys 2014-07-14 03:26 - 2013-06-06 07:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2014-07-14 03:26 - 2013-06-06 07:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2014-07-14 03:26 - 2013-06-06 07:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2014-07-14 03:26 - 2013-06-06 07:47 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2014-07-14 03:26 - 2013-06-06 06:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2014-07-14 03:26 - 2013-06-06 06:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2014-07-14 03:26 - 2013-06-06 06:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2014-07-14 03:26 - 2013-06-06 05:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2014-07-14 03:26 - 2013-06-06 05:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2014-07-14 03:26 - 2013-06-06 05:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2014-07-14 03:26 - 2013-02-12 06:12 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys 2014-07-14 03:26 - 2012-11-29 00:56 - 00054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys 2014-07-14 03:26 - 2012-11-29 00:56 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll 2014-07-14 03:26 - 2012-11-29 00:56 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf 2014-07-14 03:26 - 2012-10-03 19:44 - 00303104 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll 2014-07-14 03:26 - 2012-10-03 19:44 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\netcorehc.dll 2014-07-14 03:26 - 2012-10-03 19:44 - 00216576 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll 2014-07-14 03:26 - 2012-10-03 19:44 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll 2014-07-14 03:26 - 2012-10-03 19:44 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\netevent.dll 2014-07-14 03:26 - 2012-10-03 19:42 - 00569344 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll 2014-07-14 03:26 - 2012-10-03 18:42 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcorehc.dll 2014-07-14 03:26 - 2012-10-03 18:42 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll 2014-07-14 03:26 - 2012-10-03 18:42 - 00018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netevent.dll 2014-07-14 03:26 - 2012-10-03 18:07 - 00045568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys 2014-07-14 03:26 - 2012-08-22 20:12 - 00950128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2014-07-14 03:26 - 2012-07-04 22:26 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\RNDISMP.sys 2014-07-14 03:26 - 2012-04-26 07:41 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll 2014-07-14 03:26 - 2012-04-26 07:41 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\rdpwsx.dll 2014-07-14 03:26 - 2012-04-26 07:34 - 00009216 _____ (Microsoft Corporation) C:\Windows\system32\rdrmemptylst.exe 2014-07-14 03:26 - 2012-01-13 09:12 - 00052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll 2014-07-14 03:26 - 2011-03-11 08:34 - 01395712 _____ (Microsoft Corporation) C:\Windows\system32\mfc42.dll 2014-07-14 03:26 - 2011-03-11 08:34 - 01359872 _____ (Microsoft Corporation) C:\Windows\system32\mfc42u.dll 2014-07-14 03:26 - 2011-03-11 07:33 - 01164288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42u.dll 2014-07-14 03:26 - 2011-03-11 07:33 - 01137664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc42.dll 2014-07-14 03:25 - 2014-03-04 11:47 - 05550016 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2014-07-14 03:25 - 2014-03-04 11:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll 2014-07-14 03:25 - 2014-03-04 11:44 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2014-07-14 03:25 - 2014-03-04 11:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll 2014-07-14 03:25 - 2014-03-04 11:43 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 2014-07-14 03:25 - 2014-03-04 11:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll 2014-07-14 03:25 - 2014-03-04 11:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll 2014-07-14 03:25 - 2014-03-04 11:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll 2014-07-14 03:25 - 2014-03-04 11:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll 2014-07-14 03:25 - 2014-03-04 11:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll 2014-07-14 03:25 - 2014-03-04 11:20 - 03969984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2014-07-14 03:25 - 2014-03-04 11:20 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2014-07-14 03:25 - 2014-03-04 11:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll 2014-07-14 03:25 - 2014-03-04 11:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll 2014-07-14 03:25 - 2014-03-04 11:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll 2014-07-14 03:25 - 2014-03-04 11:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll 2014-07-14 03:25 - 2014-03-04 11:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll 2014-07-14 03:25 - 2014-03-04 11:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll 2014-07-14 03:25 - 2014-03-04 11:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll 2014-07-14 03:25 - 2014-03-04 11:16 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2014-07-14 03:25 - 2013-08-02 04:12 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2014-07-14 03:25 - 2013-08-02 04:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2014-07-14 03:25 - 2013-08-02 03:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2014-07-14 03:25 - 2013-08-02 02:59 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2014-07-14 03:25 - 2013-07-04 14:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2014-07-14 03:25 - 2013-07-04 14:50 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2014-07-14 03:25 - 2013-07-04 13:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll 2014-07-14 03:25 - 2013-07-04 13:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll 2014-07-14 03:25 - 2013-07-04 12:11 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys 2014-07-14 03:25 - 2012-11-02 07:59 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\dpnet.dll 2014-07-14 03:25 - 2012-11-02 07:11 - 00376832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpnet.dll 2014-07-14 03:25 - 2012-08-21 23:01 - 00245760 _____ (Microsoft Corporation) C:\Windows\system32\OxpsConverter.exe 2014-07-14 03:25 - 2012-05-01 07:40 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll 2014-07-14 03:25 - 2011-03-03 08:24 - 00357888 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll 2014-07-14 03:25 - 2011-03-03 08:24 - 00183296 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll 2014-07-14 03:25 - 2011-03-03 08:21 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\dnscacheugc.exe 2014-07-14 03:25 - 2011-03-03 07:38 - 00270336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll 2014-07-14 03:25 - 2011-03-03 07:36 - 00028672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnscacheugc.exe 2014-07-14 03:24 - 2013-09-08 04:27 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll 2014-07-14 03:24 - 2013-09-08 04:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll 2014-07-14 03:24 - 2013-06-15 06:32 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 2014-07-14 03:24 - 2012-12-07 15:20 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\Wpc.dll 2014-07-14 03:24 - 2012-12-07 15:15 - 02746368 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll 2014-07-14 03:24 - 2012-12-07 14:26 - 00308736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wpc.dll 2014-07-14 03:24 - 2012-12-07 14:20 - 02576384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll 2014-07-14 03:24 - 2012-12-07 13:20 - 00045568 _____ (Microsoft) C:\Windows\system32\oflc-nz.rs 2014-07-14 03:24 - 2012-12-07 13:20 - 00044544 _____ (Microsoft) C:\Windows\system32\pegibbfc.rs 2014-07-14 03:24 - 2012-12-07 13:20 - 00043520 _____ (Microsoft) C:\Windows\system32\csrr.rs 2014-07-14 03:24 - 2012-12-07 13:20 - 00030720 _____ (Microsoft) C:\Windows\system32\usk.rs 2014-07-14 03:24 - 2012-12-07 13:20 - 00023552 _____ (Microsoft) C:\Windows\system32\oflc.rs 2014-07-14 03:24 - 2012-12-07 13:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-pt.rs 2014-07-14 03:24 - 2012-12-07 13:20 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi-fi.rs 2014-07-14 03:24 - 2012-12-07 13:19 - 00055296 _____ (Microsoft) C:\Windows\system32\cero.rs 2014-07-14 03:24 - 2012-12-07 13:19 - 00051712 _____ (Microsoft) C:\Windows\system32\esrb.rs 2014-07-14 03:24 - 2012-12-07 13:19 - 00046592 _____ (Microsoft) C:\Windows\system32\fpb.rs 2014-07-14 03:24 - 2012-12-07 13:19 - 00040960 _____ (Microsoft) C:\Windows\system32\cob-au.rs 2014-07-14 03:24 - 2012-12-07 13:19 - 00021504 _____ (Microsoft) C:\Windows\system32\grb.rs 2014-07-14 03:24 - 2012-12-07 13:19 - 00020480 _____ (Microsoft) C:\Windows\system32\pegi.rs 2014-07-14 03:24 - 2012-12-07 13:19 - 00015360 _____ (Microsoft) C:\Windows\system32\djctq.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00055296 _____ (Microsoft) C:\Windows\SysWOW64\cero.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00051712 _____ (Microsoft) C:\Windows\SysWOW64\esrb.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00046592 _____ (Microsoft) C:\Windows\SysWOW64\fpb.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00045568 _____ (Microsoft) C:\Windows\SysWOW64\oflc-nz.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00044544 _____ (Microsoft) C:\Windows\SysWOW64\pegibbfc.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00043520 _____ (Microsoft) C:\Windows\SysWOW64\csrr.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00040960 _____ (Microsoft) C:\Windows\SysWOW64\cob-au.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00030720 _____ (Microsoft) C:\Windows\SysWOW64\usk.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00023552 _____ (Microsoft) C:\Windows\SysWOW64\oflc.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00021504 _____ (Microsoft) C:\Windows\SysWOW64\grb.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-pt.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-fi.rs |
14.07.2014, 18:34 | #12 |
| Avira Antivir wird blockiertCode:
ATTFilter 2014-07-14 03:24 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi-fi.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00020480 _____ (Microsoft) C:\Windows\SysWOW64\pegi.rs 2014-07-14 03:24 - 2012-12-07 12:46 - 00015360 _____ (Microsoft) C:\Windows\SysWOW64\djctq.rs 2014-07-14 03:24 - 2011-08-17 07:26 - 00613888 _____ (Microsoft Corporation) C:\Windows\system32\psisdecd.dll 2014-07-14 03:24 - 2011-08-17 07:25 - 00108032 _____ (Microsoft Corporation) C:\Windows\system32\psisrndr.ax 2014-07-14 03:24 - 2011-08-17 06:24 - 00465408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisdecd.dll 2014-07-14 03:24 - 2011-08-17 06:19 - 00075776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\psisrndr.ax 2014-07-14 03:24 - 2011-04-29 05:06 - 00467456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys 2014-07-14 03:24 - 2011-04-29 05:05 - 00410112 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys 2014-07-14 03:24 - 2011-04-29 05:05 - 00168448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys 2014-07-14 03:23 - 2013-08-29 04:16 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2014-07-14 03:23 - 2013-08-29 04:16 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll 2014-07-14 03:23 - 2013-08-29 04:13 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2014-07-14 03:23 - 2013-08-29 03:50 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2014-07-14 03:23 - 2013-08-29 03:50 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll 2014-07-14 03:23 - 2013-08-29 03:48 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2014-07-14 03:23 - 2012-04-28 05:55 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys 2014-07-14 03:23 - 2012-03-17 09:58 - 00075120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\partmgr.sys 2014-07-14 03:22 - 2014-05-30 10:08 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2014-07-14 03:22 - 2014-05-30 10:08 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2014-07-14 03:22 - 2014-05-30 10:08 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2014-07-14 03:22 - 2014-05-30 10:08 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2014-07-14 03:22 - 2014-05-30 10:08 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2014-07-14 03:22 - 2014-05-30 10:08 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2014-07-14 03:22 - 2014-05-30 10:08 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2014-07-14 03:22 - 2014-05-30 09:52 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2014-07-14 03:22 - 2014-05-30 09:52 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2014-07-14 03:22 - 2014-05-30 09:52 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2014-07-14 03:22 - 2014-05-30 09:52 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2014-07-14 03:22 - 2014-05-30 09:52 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2014-07-14 03:22 - 2014-05-30 09:52 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2014-07-14 03:22 - 2014-05-30 09:52 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2014-07-14 03:22 - 2014-02-04 04:35 - 00274880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys 2014-07-14 03:22 - 2014-02-04 04:35 - 00190912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys 2014-07-14 03:22 - 2014-02-04 04:35 - 00027584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys 2014-07-14 03:22 - 2014-02-04 04:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll 2014-07-14 03:22 - 2014-02-04 04:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iologmsg.dll 2014-07-14 03:22 - 2013-07-26 04:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2014-07-14 03:22 - 2013-07-26 03:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll 2014-07-14 03:22 - 2012-09-26 00:47 - 00078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\synceng.dll 2014-07-14 03:22 - 2012-09-26 00:46 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\synceng.dll 2014-07-14 03:22 - 2012-04-07 14:31 - 03216384 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2014-07-14 03:22 - 2012-04-07 13:26 - 02342400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2014-07-14 03:22 - 2011-02-05 19:10 - 00642944 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2014-07-14 03:22 - 2011-02-05 19:10 - 00020352 _____ (Microsoft Corporation) C:\Windows\system32\kdusb.dll 2014-07-14 03:22 - 2011-02-05 19:10 - 00019328 _____ (Microsoft Corporation) C:\Windows\system32\kd1394.dll 2014-07-14 03:22 - 2011-02-05 19:10 - 00017792 _____ (Microsoft Corporation) C:\Windows\system32\kdcom.dll 2014-07-14 03:22 - 2011-02-05 19:06 - 00605552 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe 2014-07-14 03:22 - 2011-02-05 19:06 - 00566208 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2014-07-14 03:22 - 2011-02-05 19:06 - 00518672 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe 2014-07-14 03:21 - 2014-03-04 11:44 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2014-07-14 03:21 - 2014-03-04 11:44 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2014-07-14 03:21 - 2014-03-04 11:44 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2014-07-14 03:21 - 2014-03-04 11:44 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2014-07-14 03:21 - 2014-03-04 11:44 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2014-07-14 03:21 - 2014-03-04 11:17 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2014-07-14 03:21 - 2014-03-04 11:16 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2014-07-14 03:21 - 2014-03-04 11:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2014-07-14 03:21 - 2014-03-04 11:16 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2014-07-14 03:21 - 2014-03-04 10:09 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2014-07-14 03:21 - 2014-03-04 10:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2014-07-14 03:21 - 2014-01-24 04:37 - 01684928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2014-07-14 03:21 - 2013-10-03 04:23 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2014-07-14 03:21 - 2013-10-03 04:00 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2014-07-14 03:21 - 2013-08-02 04:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 03:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2014-07-14 03:21 - 2013-08-02 02:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 02:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 02:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2014-07-14 03:21 - 2013-08-02 02:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2014-07-14 03:21 - 2013-07-20 12:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2014-07-14 03:21 - 2013-07-20 12:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2014-07-14 03:21 - 2013-05-13 07:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll 2014-07-14 03:21 - 2013-05-13 05:43 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe 2014-07-14 03:21 - 2013-05-13 05:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe 2014-07-14 03:21 - 2013-05-13 05:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll 2014-07-14 03:21 - 2013-05-10 07:49 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll 2014-07-14 03:21 - 2013-05-10 05:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll 2014-07-14 03:21 - 2013-04-26 07:51 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2014-07-14 03:21 - 2013-04-26 06:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2014-07-14 03:21 - 2013-01-24 08:01 - 00223752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys 2014-07-14 03:21 - 2012-11-23 05:13 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe 2014-07-14 03:21 - 2012-07-05 00:16 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\netapi32.dll 2014-07-14 03:21 - 2012-07-05 00:13 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll 2014-07-14 03:21 - 2012-07-05 00:13 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\browcli.dll 2014-07-14 03:21 - 2012-07-04 23:16 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netapi32.dll 2014-07-14 03:21 - 2012-07-04 23:14 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\browcli.dll 2014-07-14 03:21 - 2012-05-05 10:36 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2014-07-14 03:21 - 2012-05-05 09:46 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2014-07-14 03:21 - 2011-12-16 10:46 - 00634880 _____ (Microsoft Corporation) C:\Windows\system32\msvcrt.dll 2014-07-14 03:21 - 2011-12-16 09:52 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcrt.dll 2014-07-14 03:21 - 2011-05-24 13:42 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\umpnpmgr.dll 2014-07-14 03:21 - 2011-05-24 12:40 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devobj.dll 2014-07-14 03:21 - 2011-05-24 12:40 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\devrtl.dll 2014-07-14 03:21 - 2011-05-24 12:39 - 00145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cfgmgr32.dll 2014-07-14 03:21 - 2011-05-24 12:37 - 00252928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvinst.exe 2014-07-14 03:21 - 2011-05-03 07:29 - 00976896 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2014-07-14 03:21 - 2011-05-03 06:30 - 00741376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2014-07-14 03:21 - 2011-02-18 12:51 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\prevhost.exe 2014-07-14 03:21 - 2011-02-18 07:39 - 00031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prevhost.exe 2014-07-14 03:21 - 2011-02-12 13:34 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\FXSCOVER.exe 2014-07-14 03:20 - 2014-06-05 16:45 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-07-14 03:20 - 2014-06-05 16:26 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2014-07-14 03:20 - 2014-06-05 16:25 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2014-07-14 03:20 - 2014-04-12 04:22 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2014-07-14 03:20 - 2014-04-12 04:22 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2014-07-14 03:20 - 2014-04-12 04:19 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2014-07-14 03:20 - 2014-04-12 04:19 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2014-07-14 03:20 - 2014-04-12 04:19 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2014-07-14 03:20 - 2014-04-12 04:19 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2014-07-14 03:20 - 2013-10-12 04:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx 2014-07-14 03:20 - 2013-10-12 04:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll 2014-07-14 03:20 - 2013-10-12 04:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll 2014-07-14 03:20 - 2013-10-12 04:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2014-07-14 03:20 - 2013-10-12 04:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL 2014-07-14 03:20 - 2013-10-12 04:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx 2014-07-14 03:20 - 2013-10-12 04:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll 2014-07-14 03:20 - 2013-10-12 04:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll 2014-07-14 03:20 - 2013-10-12 04:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2014-07-14 03:20 - 2013-10-12 03:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe 2014-07-14 03:20 - 2013-10-12 03:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe 2014-07-14 03:20 - 2013-10-12 03:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe 2014-07-14 03:20 - 2013-10-12 03:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe 2014-07-14 03:20 - 2013-08-28 03:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll 2014-07-14 03:20 - 2013-08-27 11:01 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2014-07-14 03:20 - 2013-08-27 11:01 - 01143296 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2014-07-14 03:20 - 2013-08-27 10:21 - 01077760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2014-07-14 03:20 - 2013-08-01 14:09 - 00983488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2014-07-14 03:20 - 2013-07-04 14:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2014-07-14 03:20 - 2013-04-10 08:01 - 00265064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2014-07-14 03:20 - 2012-06-06 08:02 - 01133568 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll 2014-07-14 03:20 - 2012-06-06 07:03 - 00805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll 2014-07-14 03:20 - 2012-05-14 07:26 - 00956928 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2014-07-14 03:20 - 2011-11-19 16:58 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll 2014-07-14 03:20 - 2011-11-19 16:01 - 00067072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll 2014-07-14 03:20 - 2011-10-15 08:31 - 00723456 _____ (Microsoft Corporation) C:\Windows\system32\EncDec.dll 2014-07-14 03:20 - 2011-10-15 07:38 - 00534528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EncDec.dll 2014-07-14 03:20 - 2011-08-27 07:37 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2014-07-14 03:20 - 2011-08-27 07:37 - 00331776 _____ (Microsoft Corporation) C:\Windows\system32\oleacc.dll 2014-07-14 03:20 - 2011-08-27 06:26 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2014-07-14 03:20 - 2011-08-27 06:26 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleacc.dll 2014-07-14 03:20 - 2011-02-23 06:55 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys 2014-07-14 03:20 - 2011-02-03 13:25 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2014-07-13 23:54 - 2014-07-14 18:32 - 00121624 _____ () C:\Users\Schrägle\AppData\Local\GDIPFONTCACHEV1.DAT 2014-07-13 23:54 - 2014-07-13 23:54 - 09580848 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-07-13 23:52 - 2014-07-14 18:32 - 00001413 _____ () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk 2014-07-13 23:50 - 2014-07-13 23:50 - 00000020 ___SH () C:\Users\Schrägle\ntuser.ini 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Programme 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Favoriten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Dokumente und Einstellungen 2014-07-13 20:40 - 2012-02-17 08:38 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll 2014-07-13 20:40 - 2012-02-17 07:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll 2014-07-13 20:40 - 2012-02-17 06:57 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys 2014-07-13 20:26 - 2012-06-03 00:19 - 02428952 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2014-07-13 20:26 - 2012-06-03 00:19 - 00057880 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2014-07-13 20:26 - 2012-06-03 00:19 - 00044056 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2014-07-13 20:26 - 2012-06-03 00:15 - 02622464 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2014-07-13 20:25 - 2012-06-03 00:19 - 00701976 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2014-07-13 20:25 - 2012-06-03 00:19 - 00038424 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2014-07-13 20:25 - 2012-06-03 00:15 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2014-07-13 20:25 - 2012-06-02 15:19 - 00186752 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2014-07-13 20:25 - 2012-06-02 15:15 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2014-07-13 20:17 - 2014-07-14 18:41 - 01331851 _____ () C:\Windows\WindowsUpdate.log 2014-07-13 19:54 - 2014-07-13 19:54 - 00022960 _____ () C:\Windows\system32\emptyregdb.dat 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerRecover 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Macromedia 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerRecover 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Macromedia 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help 2014-07-13 19:12 - 2014-07-13 23:50 - 00000000 ____D () C:\Users\Schrägle 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Vorlagen 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Startmenü 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Netzwerkumgebung 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Lokale Einstellungen 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Eigene Dateien 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Druckumgebung 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Documents\Eigene Musik 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Documents\Eigene Bilder 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\AppData\Local\Verlauf 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\AppData\Local\Anwendungsdaten 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Anwendungsdaten 2014-07-13 19:12 - 2009-07-14 06:54 - 00000000 ___RD () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-07-13 19:12 - 2009-07-14 06:49 - 00000000 ___RD () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-07-13 19:11 - 2014-07-13 19:11 - 00001345 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk 2014-07-13 19:11 - 2014-07-13 19:11 - 00001326 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk 2014-07-13 19:06 - 2014-07-13 19:06 - 00001355 _____ () C:\Windows\TSSysprep.log 2014-07-13 18:55 - 2014-07-13 19:03 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-07-13 18:55 - 2014-07-13 18:55 - 00000000 ____D () C:\Program Files\Realtek 2014-07-13 18:54 - 2014-07-13 18:54 - 00000000 _____ () C:\Windows\ativpsrm.bin 2014-07-13 18:50 - 2014-07-13 18:50 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf 2014-07-13 17:40 - 2014-07-13 19:51 - 00006161 _____ () C:\Windows\comsetup.log 2014-07-13 17:26 - 2014-07-13 17:26 - 00003302 _____ () C:\Users\Schrägle\Desktop\Windows Compatibility Report.htm 2014-07-13 17:23 - 2014-07-13 17:23 - 00013662 _____ () C:\Windows\diagwrn.xml 2014-07-13 17:23 - 2014-07-13 17:23 - 00001890 _____ () C:\Windows\diagerr.xml 2014-07-13 16:03 - 2014-07-13 19:39 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\AVG2014 2014-07-13 16:02 - 2014-07-13 19:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2014-07-13 16:02 - 2014-07-13 16:02 - 00000985 _____ () C:\Users\Public\Desktop\AVG 2014.lnk 2014-07-13 16:00 - 2014-07-13 19:24 - 00000000 ____D () C:\ProgramData\AVG2014 2014-07-13 16:00 - 2014-07-13 16:00 - 00000000 ___HD () C:\$AVG 2014-07-13 15:59 - 2014-07-13 19:17 - 00000000 ____D () C:\Program Files (x86)\AVG 2014-07-13 15:56 - 2014-07-13 19:39 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Win System 2014-07-13 15:56 - 2014-07-13 19:39 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\VOPackage 2014-07-13 15:56 - 2014-07-13 19:39 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage 2014-07-13 15:55 - 2014-07-13 19:39 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Security Systems 2014-07-13 15:55 - 2014-07-13 15:55 - 00000142 _____ () C:\Users\Schrägle\AppData\Roaming\tmp_register.bat 2014-07-13 15:54 - 2014-07-14 18:51 - 00000000 ____D () C:\ProgramData\MFAData 2014-07-13 15:54 - 2014-07-13 19:37 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\MFAData 2014-07-13 15:54 - 2014-07-13 19:36 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Avg2014 2014-07-13 15:46 - 2014-07-14 18:56 - 00000000 ____D () C:\FRST 2014-07-13 15:40 - 2014-07-13 19:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2014-07-13 11:14 - 2014-07-13 11:14 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{C887F452-5450-42AE-92C3-EAC911EDB34C} 2014-07-10 17:33 - 2014-07-10 17:33 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{2E7488C6-96C2-45A0-83FA-4AA877390050} 2014-07-09 20:30 - 2014-07-09 20:30 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{042D9681-1CB0-45D7-9366-084F768DC847} 2014-07-09 15:51 - 2014-06-19 03:06 - 00004096 ____N (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-07-09 15:51 - 2014-06-19 02:41 - 00083968 ____N (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-07-09 15:51 - 2014-06-19 02:41 - 00048640 ____N (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-07-09 15:51 - 2014-06-19 02:24 - 00111616 ____N (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-07-09 15:51 - 2014-06-19 02:23 - 00752640 ____N (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-07-09 15:51 - 2014-06-19 02:14 - 00940032 ____N (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-07-09 15:51 - 2014-06-19 01:59 - 00038400 ____N (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-07-09 15:51 - 2014-06-19 01:36 - 00051200 ____N (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-07-09 15:51 - 2014-06-19 01:35 - 00062464 ____N (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-07-09 15:51 - 2014-06-19 01:27 - 01249280 ____N (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-07-09 15:51 - 2014-06-19 01:22 - 00592896 ____N (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-07-09 15:51 - 2014-06-19 01:06 - 00032256 ____N (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-07-09 15:51 - 2014-06-19 00:46 - 01068032 ____N (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-07-07 18:53 - 2014-07-07 18:53 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{1071BD73-6D66-4747-B84F-C3F980B69617} 2014-07-07 18:53 - 2014-07-07 18:53 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{0E5B554B-2C84-4A29-BBCF-8CF9312A023F} 2014-07-05 11:03 - 2014-07-05 11:04 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{DBB75948-902D-4024-B588-07D9CC33167F} 2014-07-02 20:37 - 2014-07-02 20:37 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{0ED52F5C-7E76-48D3-B440-1B66A2247749} 2014-06-29 16:57 - 2014-06-29 16:57 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{ECC4DA04-C8A5-4673-9625-EAB427986779} 2014-06-29 16:57 - 2014-06-29 16:57 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{C9E1C0EE-9103-4424-8418-78EADDD7D964} 2014-06-29 09:03 - 2014-06-29 09:03 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{A84A427F-8D52-45C8-AE07-D49BAA473727} 2014-06-28 17:51 - 2014-06-28 17:51 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{DC6B7C0A-397F-420A-925E-9E651BBF7836} 2014-06-27 19:56 - 2014-07-13 19:36 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\AskPartnerNetwork 2014-06-25 20:16 - 2014-06-25 20:16 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cf90a18dd4ef68.job 2014-06-25 19:50 - 2014-06-24 16:15 - 02601776 _____ () C:\Windows\system32\dmwu.exe 2014-06-25 16:39 - 2014-06-25 16:39 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{DE3AADE9-90F8-4435-8DBF-C09011FD9CCC} 2014-06-23 19:49 - 2014-07-13 19:27 - 00000000 ____D () C:\Windows\SysWOW64\mjcm 2014-06-23 19:49 - 2014-07-13 19:27 - 00000000 ____D () C:\Windows\system32\tprb 2014-06-22 21:58 - 2014-07-13 19:41 - 00000000 ____D () C:\Users\Schrägle\Desktop\Stefan Referat VW 2014-06-21 19:58 - 2014-06-21 19:58 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{B33F55B0-EBE8-4679-942B-6AA96708E1A9} 2014-06-20 20:03 - 2014-06-20 20:04 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{9F69A0B2-809F-423F-8B77-E0501B392178} 2014-06-19 19:12 - 2014-06-19 19:12 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{C03CB42A-9AE4-418C-BA83-47CB7D12EC35} 2014-06-18 19:05 - 2014-06-18 19:05 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{F10216B5-ABA2-4B1F-9443-7925EDA4C2CF} 2014-06-17 16:21 - 2014-06-17 16:21 - 00235800 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgldx64.sys 2014-06-17 16:07 - 2014-06-17 16:07 - 00328984 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgloga.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00269080 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgtdia.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00242968 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsdrivera.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00190744 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsha.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00153368 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgdiska.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00123672 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgmfx64.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00031512 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgrkx64.sys 2014-06-16 20:33 - 2014-06-16 20:34 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{37940329-4D90-4DFC-A19F-5B13B85BC9B0} 2014-06-15 20:52 - 2014-06-15 20:52 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{A4B0555F-BEAA-4483-9C9C-05EDBCEE76F4} 2014-06-15 14:43 - 2014-06-15 14:43 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{DC99FA77-EBF8-4A51-8EB1-A12BD84B7E68} 2014-06-14 13:01 - 2014-06-14 13:01 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{83E2F3AA-BE9E-4DF7-9766-BF2BE4F8CF71} ==================== One Month Modified Files and Folders ======= 2014-07-14 18:56 - 2014-07-14 18:35 - 00036017 _____ () C:\Users\Schrägle\Downloads\FRST.txt 2014-07-14 18:56 - 2014-07-13 15:46 - 00000000 ____D () C:\FRST 2014-07-14 18:55 - 2014-07-13 20:17 - 01331851 _____ () C:\Windows\WindowsUpdate.log 2014-07-14 18:51 - 2014-07-13 15:54 - 00000000 ____D () C:\ProgramData\MFAData 2014-07-14 18:38 - 2014-07-14 18:38 - 00174567 _____ () C:\Users\Schrägle\Desktop\FRST.txt 2014-07-14 18:35 - 2011-05-16 16:04 - 00699132 _____ () C:\Windows\system32\perfh007.dat 2014-07-14 18:35 - 2011-05-16 16:04 - 00149014 _____ () C:\Windows\system32\perfc007.dat 2014-07-14 18:35 - 2009-07-14 07:13 - 01619832 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-07-14 18:35 - 2009-07-14 06:45 - 00016752 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-07-14 18:35 - 2009-07-14 06:45 - 00016752 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-07-14 18:34 - 2014-07-14 18:34 - 02086912 _____ (Farbar) C:\Users\Schrägle\Downloads\FRST64.exe 2014-07-14 18:32 - 2014-07-14 18:31 - 00001447 _____ () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-07-14 18:32 - 2014-07-13 23:54 - 00121624 _____ () C:\Users\Schrägle\AppData\Local\GDIPFONTCACHEV1.DAT 2014-07-14 18:32 - 2014-07-13 23:52 - 00001413 _____ () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk 2014-07-14 18:31 - 2014-07-14 18:31 - 00003548 _____ () C:\Windows\System32\Tasks\CreateChoiceProcessTask 2014-07-14 18:31 - 2014-07-14 18:31 - 00001758 _____ () C:\Users\Public\Desktop\Browserwahl.lnk 2014-07-14 18:30 - 2013-06-28 12:34 - 00000374 _____ () C:\Windows\Tasks\B Lyrics Update.job 2014-07-14 18:30 - 2013-06-03 21:08 - 00000350 _____ () C:\Windows\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv.job 2014-07-14 18:28 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-07-14 18:28 - 2009-07-14 06:51 - 00547916 _____ () C:\Windows\setupact.log 2014-07-14 18:25 - 2009-07-14 06:45 - 00455952 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-07-14 18:20 - 2011-04-12 10:28 - 00000000 ____D () C:\Program Files\Windows Journal 2014-07-14 18:20 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Common Files\System 2014-07-14 18:19 - 2014-05-06 21:02 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-07-14 18:19 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files\Windows Defender 2014-07-14 18:19 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files (x86)\Windows Defender 2014-07-14 18:19 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\Dism 2014-07-14 18:19 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\Dism 2014-07-14 18:18 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-07-14 18:16 - 2012-09-03 19:29 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-07-14 18:14 - 2013-02-25 16:09 - 00000940 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4074982664-1885493180-2041087550-1001UA.job 2014-07-14 18:11 - 2012-08-05 11:20 - 00001110 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-07-14 06:15 - 2014-07-14 06:08 - 00004361 _____ () C:\Windows\IE9_main.log 2014-07-14 06:14 - 2014-07-14 06:14 - 17773056 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 12268544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 10884096 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 09702400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 03695416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2014-07-14 06:14 - 2014-07-14 06:14 - 03695416 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2014-07-14 06:14 - 2014-07-14 06:14 - 02382848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-07-14 06:14 - 2014-07-14 06:14 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-07-14 06:14 - 2014-07-14 06:14 - 02303488 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 02136064 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01797632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01785344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01492992 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-07-14 06:14 - 2014-07-14 06:14 - 01427456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-07-14 06:14 - 2014-07-14 06:14 - 01389056 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01344000 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01126912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 01102336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00818176 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00716800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00697344 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00603648 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00580608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00534528 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00452608 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00448512 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-07-14 06:14 - 2014-07-14 06:14 - 00434176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00420864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00403248 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2014-07-14 06:14 - 2014-07-14 06:14 - 00353792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00353584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00282112 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00267776 _____ (Microsoft Corporation) C:\Windows\system32\ieaksie.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00249344 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00248320 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00236544 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00231936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00227840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieaksie.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00222208 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00203776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00176640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00165888 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieakui.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00163840 _____ (Microsoft Corporation) C:\Windows\system32\ieakui.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00160256 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00160256 _____ (Microsoft Corporation) C:\Windows\system32\ieakeng.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00150528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00130560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieakeng.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00123392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00118784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00114176 _____ (Microsoft Corporation) C:\Windows\system32\admparse.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00103936 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00101888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\admparse.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00089088 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00082432 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00078848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00076800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2014-07-14 06:14 - 2014-07-14 06:14 - 00074752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00074752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ie4uinit.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00072704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00065024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00063488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2014-07-14 06:14 - 2014-07-14 06:14 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00054272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00049664 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00031744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2014-07-14 06:14 - 2014-07-14 06:14 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2014-07-14 06:14 - 2014-07-14 06:14 - 00010752 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2014-07-14 04:55 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache 2014-07-14 04:34 - 2009-07-14 07:38 - 00025600 ___SH () C:\Windows\system32\config\BCD-Template.LOG 2014-07-14 04:34 - 2009-07-14 07:32 - 00028672 _____ () C:\Windows\system32\config\BCD-Template 2014-07-14 04:33 - 2014-07-14 04:33 - 00262144 _____ () C:\Windows\system32\config\userdiff 2014-07-14 04:10 - 2014-07-14 04:06 - 00000000 ___HD () C:\$INPLACE.~TR 2014-07-14 00:54 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files\Windows Sidebar 2014-07-14 00:54 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files (x86)\Windows Sidebar 2014-07-14 00:54 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files (x86)\Windows Photo Viewer 2014-07-14 00:53 - 2011-05-16 15:57 - 00000000 ____D () C:\Windows\SysWOW64\XPSViewer 2014-07-14 00:53 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\SysWOW64\winrm 2014-07-14 00:53 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\SysWOW64\WCN 2014-07-14 00:53 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\SysWOW64\sysprep 2014-07-14 00:53 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\SysWOW64\slmgr 2014-07-14 00:53 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\SysWOW64\Printing_Admin_Scripts 2014-07-14 00:53 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files\Windows Photo Viewer 2014-07-14 00:53 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\MUI 2014-07-14 00:53 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\migwiz 2014-07-14 00:52 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\system32\winrm 2014-07-14 00:52 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\system32\WCN 2014-07-14 00:52 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\system32\slmgr 2014-07-14 00:52 - 2011-04-12 10:17 - 00000000 ____D () C:\Windows\system32\Printing_Admin_Scripts 2014-07-14 00:52 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\com 2014-07-14 00:52 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\sysprep 2014-07-14 00:52 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\Setup 2014-07-14 00:52 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\oobe 2014-07-14 00:52 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\MUI 2014-07-14 00:52 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\migwiz 2014-07-14 00:52 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\IME 2014-07-14 00:50 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\com 2014-07-14 00:49 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\servicing 2014-07-14 00:48 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\tr-TR 2014-07-14 00:48 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\tr-TR 2014-07-14 00:45 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\Setup 2014-07-14 00:45 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\oobe 2014-07-14 00:40 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\sl-SI 2014-07-14 00:39 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\sl-SI 2014-07-14 00:09 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files\DVD Maker 2014-07-13 23:55 - 2013-12-16 18:36 - 00000000 ___RD () C:\Users\Schrägle\Desktop\Stefan 2014-07-13 23:54 - 2014-07-13 23:54 - 09580848 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-07-13 23:53 - 2009-07-14 07:09 - 00000000 ____D () C:\Windows\System32\Tasks\WPD 2014-07-13 23:50 - 2014-07-14 04:35 - 00000000 ____D () C:\Windows\Panther 2014-07-13 23:50 - 2014-07-13 23:50 - 00000020 ___SH () C:\Users\Schrägle\ntuser.ini 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Vorlagen 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Startmenü 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Druckumgebung 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Programme 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Vorlagen 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Startmenü 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Favoriten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Dokumente 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien 2014-07-13 23:50 - 2014-07-13 23:50 - 00000000 _SHDL () C:\Dokumente und Einstellungen 2014-07-13 23:50 - 2014-07-13 19:12 - 00000000 ____D () C:\Users\Schrägle 2014-07-13 23:50 - 2012-08-05 11:19 - 00000000 __SHD () C:\Recovery 2014-07-13 23:50 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Public\Libraries 2014-07-13 23:50 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Default 2014-07-13 23:50 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\Recovery 2014-07-13 23:50 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Windows NT 2014-07-13 20:25 - 2009-07-14 07:32 - 00000000 ____D () C:\Windows\system32\restore 2014-07-13 20:19 - 2010-11-21 05:47 - 00011344 _____ () C:\Windows\PFRO.log 2014-07-13 20:18 - 2012-09-03 19:29 - 00699056 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-07-13 20:18 - 2012-09-03 19:29 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-07-13 20:18 - 2011-12-01 23:26 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-07-13 20:18 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\Registration 2014-07-13 19:54 - 2014-07-13 19:54 - 00022960 _____ () C:\Windows\system32\emptyregdb.dat 2014-07-13 19:52 - 2012-08-06 16:45 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2014-07-13 19:51 - 2014-07-14 04:14 - 00000000 ___HD () C:\$WINDOWS.~Q 2014-07-13 19:51 - 2014-07-13 17:40 - 00006161 _____ () C:\Windows\comsetup.log 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerRecover 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Macromedia 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerRecover 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Macromedia 2014-07-13 19:44 - 2014-07-13 19:44 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help 2014-07-13 19:44 - 2009-07-14 06:57 - 00001547 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2014-07-13 19:44 - 2009-07-14 06:46 - 00005157 _____ () C:\Windows\DtcInstall.log 2014-07-13 19:44 - 2009-07-14 05:20 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-07-13 19:44 - 2009-07-14 05:20 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-07-13 19:44 - 2009-07-14 05:20 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2014-07-13 19:44 - 2009-07-14 05:20 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2014-07-13 19:42 - 2014-03-03 19:27 - 00000000 ____D () C:\Users\Schrägle\Documents\OneNote-Notizbücher 2014-07-13 19:42 - 2013-11-09 14:17 - 00000000 ____D () C:\Users\Schrägle\Documents\Battlefield Play4Free 2014-07-13 19:42 - 2013-02-15 21:06 - 00000000 ____D () C:\Users\Schrägle\Documents\Freemake 2014-07-13 19:42 - 2012-12-24 21:43 - 00000000 ____D () C:\Users\Schrägle\Documents\My Games 2014-07-13 19:42 - 2012-12-23 11:16 - 00000000 ____D () C:\Users\Schrägle\Documents\PhoenixRC 2014-07-13 19:42 - 2012-12-02 16:29 - 00000000 ____D () C:\Users\Schrägle\Documents\BFBC2 2014-07-13 19:42 - 2012-08-13 10:49 - 00000000 ____D () C:\Users\Schrägle\Tracing 2014-07-13 19:42 - 2012-08-05 11:11 - 00000000 __RHD () C:\Users\Schrägle\Finger weg sonst Finger ab 2014-07-13 19:41 - 2014-06-22 21:58 - 00000000 ____D () C:\Users\Schrägle\Desktop\Stefan Referat VW 2014-07-13 19:40 - 2014-03-12 21:02 - 00000000 ____D () C:\Users\Schrägle\Desktop\Fotos 2014-07-13 19:40 - 2013-06-08 14:27 - 00000000 ____D () C:\Users\Schrägle\Desktop\PV Anlage - UST FA 2014-07-13 19:40 - 2012-11-11 19:53 - 00000000 ____D () C:\Users\Schrägle\Desktop\Klaudia 2014-07-13 19:40 - 2012-09-06 16:30 - 00000000 ____D () C:\Users\Schrägle\Desktop\PV Anlage 2014-07-13 19:40 - 2012-08-05 11:11 - 00000000 ___RD () C:\Users\Schrägle\Desktop\Rainer 2014-07-13 19:40 - 2012-08-05 11:11 - 00000000 ____D () C:\Users\Schrägle\Desktop\PhoenixRC 2014-07-13 19:40 - 2012-08-05 11:11 - 00000000 ____D () C:\Users\Schrägle\Desktop\Musik W 2014-07-13 19:40 - 2012-08-05 11:11 - 00000000 ____D () C:\Users\Schrägle\Desktop\Fäustle 2014-07-13 19:39 - 2014-07-13 16:03 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\AVG2014 2014-07-13 19:39 - 2014-07-13 15:56 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Win System 2014-07-13 19:39 - 2014-07-13 15:56 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\VOPackage 2014-07-13 19:39 - 2014-07-13 15:56 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VOPackage 2014-07-13 19:39 - 2014-07-13 15:55 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Security Systems 2014-07-13 19:39 - 2014-06-13 18:17 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\FileZilla 2014-07-13 19:39 - 2014-05-05 09:44 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\thriXXX 2014-07-13 19:39 - 2014-04-13 09:55 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\FreeCAD 2014-07-13 19:39 - 2014-04-12 13:14 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LibreCAD 2014-07-13 19:39 - 2014-01-29 18:58 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\ColorCop 2014-07-13 19:39 - 2013-12-16 18:55 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\SearchProtect 2014-07-13 19:39 - 2013-12-16 18:54 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Uniblue 2014-07-13 19:39 - 2013-12-16 18:21 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\TuneUp Software 2014-07-13 19:39 - 2013-12-16 18:18 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Softonic 2014-07-13 19:39 - 2013-12-16 18:18 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\DVDVideoSoft 2014-07-13 19:39 - 2013-10-05 17:36 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\InstallShield 2014-07-13 19:39 - 2013-08-07 16:26 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Avira 2014-07-13 19:39 - 2013-05-09 12:47 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\player 2014-07-13 19:39 - 2013-04-03 16:16 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wajam 2014-07-13 19:39 - 2013-04-03 16:16 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Wajam 2014-07-13 19:39 - 2013-04-03 16:13 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FilesFrog Update Checker 2014-07-13 19:39 - 2013-02-28 16:42 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VideoPerformer 2014-07-13 19:39 - 2013-02-28 16:42 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Delta 2014-07-13 19:39 - 2013-02-15 21:06 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake 2014-07-13 19:39 - 2013-01-04 11:49 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\OpenCandy 2014-07-13 19:39 - 2013-01-04 11:49 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\DAEMON Tools Lite 2014-07-13 19:39 - 2012-12-25 15:28 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\WinRAR 2014-07-13 19:39 - 2012-12-25 15:27 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Driver Pro 2014-07-13 19:39 - 2012-12-25 15:08 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Optimizer Pro 2014-07-13 19:39 - 2012-12-21 17:04 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Unigraphics Solutions 2014-07-13 19:39 - 2012-12-16 12:31 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Unity 2014-07-13 19:39 - 2012-12-16 12:19 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Unity 2014-07-13 19:39 - 2012-12-02 16:29 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\PunkBuster 2014-07-13 19:39 - 2012-10-14 18:36 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Video Downloader 2014-07-13 19:39 - 2012-10-02 23:26 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Babylon 2014-07-13 19:39 - 2012-09-09 10:36 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Mozilla 2014-07-13 19:39 - 2012-08-29 09:01 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\XMedia Recode 2014-07-13 19:39 - 2012-08-17 09:54 - 00000000 ___HD () C:\Users\Schrägle\Desktop\Flugbilder 2014-07-13 19:39 - 2012-08-11 17:09 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\CyberLink 2014-07-13 19:39 - 2012-08-06 16:46 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\SoftGrid Client 2014-07-13 19:39 - 2012-08-06 16:46 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\SoftGrid Client 2014-07-13 19:39 - 2012-08-05 14:04 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Windows Live 2014-07-13 19:39 - 2012-08-05 11:24 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerRecover 2014-07-13 19:39 - 2012-08-05 11:24 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Macromedia 2014-07-13 19:39 - 2012-08-05 11:24 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Intel Corporation 2014-07-13 19:39 - 2012-08-05 11:24 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\ATI 2014-07-13 19:39 - 2012-08-05 11:24 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\VirtualStore 2014-07-13 19:39 - 2012-08-05 11:24 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Power2Go 2014-07-13 19:39 - 2012-08-05 11:09 - 00000000 ____D () C:\Users\Schrägle\Desktop\Drucker 2014-07-13 19:39 - 2012-08-05 10:59 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\HpUpdate 2014-07-13 19:39 - 2012-08-05 10:47 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Windows Live Writer 2014-07-13 19:39 - 2012-08-05 10:47 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Windows Live Writer 2014-07-13 19:39 - 2012-08-05 10:45 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Adobe 2014-07-13 19:39 - 2012-08-05 10:44 - 00000000 ____D () C:\Users\Schrägle\AppData\Roaming\Google 2014-07-13 19:38 - 2012-09-09 10:36 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Mozilla 2014-07-13 19:38 - 2012-08-05 10:46 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Microsoft Help 2014-07-13 19:37 - 2014-07-13 15:54 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\MFAData 2014-07-13 19:37 - 2014-04-12 13:15 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\LibreCAD 2014-07-13 19:37 - 2012-09-25 18:13 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Macromedia 2014-07-13 19:37 - 2012-08-05 10:56 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\HP 2014-07-13 19:37 - 2012-08-05 10:44 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Google 2014-07-13 19:36 - 2014-07-13 15:54 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Avg2014 2014-07-13 19:36 - 2014-06-27 19:56 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\AskPartnerNetwork 2014-07-13 19:36 - 2013-04-03 16:16 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\CRE 2014-07-13 19:36 - 2013-02-25 16:09 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Facebook 2014-07-13 19:36 - 2013-01-04 12:19 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\AVG Secure Search 2014-07-13 19:36 - 2012-09-01 15:14 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\APN 2014-07-13 19:36 - 2012-08-07 19:18 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\Adobe 2014-07-13 19:36 - 2012-08-05 11:24 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\ATI 2014-07-13 19:27 - 2014-06-23 19:49 - 00000000 ____D () C:\Windows\SysWOW64\mjcm 2014-07-13 19:27 - 2014-06-23 19:49 - 00000000 ____D () C:\Windows\system32\tprb 2014-07-13 19:27 - 2014-04-12 13:20 - 00000000 ____D () C:\Windows\SysWOW64\jmdp 2014-07-13 19:27 - 2014-04-12 13:20 - 00000000 ____D () C:\Windows\system32\ljkb 2014-07-13 19:27 - 2014-01-16 17:31 - 00000000 ____D () C:\Windows\SysWOW64\SearchProtect 2014-07-13 19:27 - 2013-08-15 22:42 - 00000000 ____D () C:\Windows\system32\MRT 2014-07-13 19:27 - 2013-04-10 17:02 - 00000000 ____D () C:\Windows\SysWOW64\ARFC 2014-07-13 19:27 - 2012-10-14 18:34 - 00000000 ____D () C:\Windows\SysWOW64\WNLT 2014-07-13 19:27 - 2012-08-13 10:46 - 00000000 ____D () C:\Windows\tr 2014-07-13 19:27 - 2012-08-13 10:46 - 00000000 ____D () C:\Windows\sl 2014-07-13 19:27 - 2012-08-13 10:46 - 00000000 ____D () C:\Windows\pl 2014-07-13 19:27 - 2012-08-13 10:46 - 00000000 ____D () C:\Windows\nl 2014-07-13 19:27 - 2011-10-14 14:15 - 00000000 ____D () C:\Windows\system32\Macromed 2014-07-13 19:27 - 2011-07-18 23:12 - 00000000 ____D () C:\Windows\SysWOW64\Macromed 2014-07-13 19:27 - 2011-04-12 10:28 - 00000000 ____D () C:\Windows\ShellNew 2014-07-13 19:27 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\zh-HK 2014-07-13 19:27 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\zh-HK 2014-07-13 19:27 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF 2014-07-13 19:26 - 2012-08-13 10:46 - 00000000 ____D () C:\Windows\it 2014-07-13 19:26 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\LiveKernelReports 2014-07-13 19:25 - 2014-07-13 16:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2014-07-13 19:25 - 2014-07-13 15:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2014-07-13 19:25 - 2014-06-13 18:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Programm Verknüpfung Landjugend 2014-07-13 19:25 - 2014-04-12 13:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeCAD 0.13 2014-07-13 19:25 - 2014-02-03 19:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth 2014-07-13 19:25 - 2014-01-29 18:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Color Cop 2014-07-13 19:25 - 2013-12-16 18:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uniblue 2014-07-13 19:25 - 2013-12-16 18:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014 2014-07-13 19:25 - 2013-12-16 18:21 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} 2014-07-13 19:25 - 2013-12-16 18:21 - 00000000 ____D () C:\ProgramData\TuneUp Software 2014-07-13 19:25 - 2013-12-16 18:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft 2014-07-13 19:25 - 2013-11-09 14:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA Games 2014-07-13 19:25 - 2013-10-05 17:36 - 00000000 ____D () C:\Users\Public\Documents\Casio 2014-07-13 19:25 - 2013-10-05 17:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dynamic Photo Manager 2014-07-13 19:25 - 2013-06-02 12:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2014-07-13 19:25 - 2013-05-09 12:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAFPlayer 2014-07-13 19:25 - 2013-04-03 16:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip 2014-07-13 19:25 - 2013-03-14 09:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2014-07-13 19:25 - 2013-02-28 16:41 - 00000000 ____D () C:\ProgramData\IBUpdaterService 2014-07-13 19:25 - 2013-02-15 21:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Freemake 2014-07-13 19:25 - 2013-02-15 21:06 - 00000000 ____D () C:\ProgramData\Freemake 2014-07-13 19:25 - 2013-02-15 21:06 - 00000000 ____D () C:\ProgramData\DivX 2014-07-13 19:25 - 2013-01-04 11:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite 2014-07-13 19:25 - 2013-01-04 11:48 - 00000000 ____D () C:\ProgramData\DAEMON Tools Lite 2014-07-13 19:25 - 2012-12-31 19:17 - 00000000 ____D () C:\ProgramData\Visan 2014-07-13 19:25 - 2012-12-31 19:17 - 00000000 ____D () C:\ProgramData\HP Photo Creations 2014-07-13 19:25 - 2012-12-27 13:05 - 00000000 ____D () C:\ProgramData\Wincert 2014-07-13 19:25 - 2012-12-27 13:05 - 00000000 ____D () C:\ProgramData\boost_interprocess 2014-07-13 19:25 - 2012-12-25 15:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Pro 2014-07-13 19:25 - 2012-12-25 15:08 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Optimizer Pro 2014-07-13 19:25 - 2012-12-23 11:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhoenixRC 2014-07-13 19:25 - 2012-12-21 16:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Solid Edge V20 2014-07-13 19:25 - 2012-09-09 10:36 - 00000000 ____D () C:\ProgramData\Mozilla 2014-07-13 19:25 - 2012-09-03 19:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Live Add-in 2014-07-13 19:25 - 2012-08-13 10:48 - 00000000 ____D () C:\Windows\de 2014-07-13 19:25 - 2012-08-13 10:47 - 00000000 ____D () C:\Windows\hu 2014-07-13 19:25 - 2012-08-13 10:47 - 00000000 ____D () C:\Windows\fr 2014-07-13 19:25 - 2012-08-13 10:47 - 00000000 ____D () C:\Windows\es 2014-07-13 19:25 - 2012-08-13 10:47 - 00000000 ____D () C:\Windows\en 2014-07-13 19:25 - 2012-08-13 10:47 - 00000000 ____D () C:\Windows\el 2014-07-13 19:25 - 2012-08-13 10:47 - 00000000 ____D () C:\Windows\da 2014-07-13 19:25 - 2012-08-07 16:01 - 00000000 ____D () C:\ProgramData\VirtualizedApplications 2014-07-13 19:25 - 2012-08-06 16:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Starter (Deutsch) 2014-07-13 19:25 - 2012-08-05 11:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Memeo 2014-07-13 19:25 - 2012-08-05 11:23 - 00000000 ____D () C:\ProgramData\Kaspersky Rescue Disk 10 2014-07-13 19:25 - 2012-08-05 11:21 - 00000000 ____D () C:\ProgramData\TvdPersonal 2014-07-13 19:25 - 2012-08-05 11:21 - 00000000 ____D () C:\ProgramData\Partner 2014-07-13 19:25 - 2012-08-05 11:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\watchmi 2014-07-13 19:25 - 2012-08-05 11:21 - 00000000 ____D () C:\ProgramData\Google 2014-07-13 19:25 - 2012-08-05 10:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP 2014-07-13 19:25 - 2012-08-05 10:57 - 00000000 ____D () C:\ProgramData\HP 2014-07-13 19:25 - 2012-08-05 10:46 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-07-13 19:25 - 2012-02-20 17:40 - 00000000 ____D () C:\ProgramData\Sun 2014-07-13 19:25 - 2012-02-16 03:17 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Power2Go 2014-07-13 19:25 - 2012-02-16 03:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerDVD Copy 2014-07-13 19:25 - 2012-02-16 03:16 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LabelPrint 2014-07-13 19:25 - 2012-02-16 03:15 - 00000000 ____D () C:\ProgramData\CyberLink 2014-07-13 19:25 - 2012-02-16 03:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center 2014-07-13 19:25 - 2012-02-16 03:06 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel 2014-07-13 19:25 - 2012-02-15 18:25 - 00000000 ____D () C:\Users\Public\CyberLink 2014-07-13 19:25 - 2011-07-18 23:22 - 00000000 ____D () C:\ProgramData\Temp 2014-07-13 19:25 - 2011-07-18 22:56 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live 2014-07-13 19:25 - 2011-04-12 10:28 - 00000000 ___RD () C:\Users\Public\Recorded TV 2014-07-13 19:24 - 2014-07-13 16:00 - 00000000 ____D () C:\ProgramData\AVG2014 2014-07-13 19:24 - 2014-05-05 09:44 - 00000000 ____D () C:\Program Files (x86)\thriXXX 2014-07-13 19:24 - 2014-04-27 14:19 - 00000000 ____D () C:\ProgramData\AVG Secure Search 2014-07-13 19:24 - 2013-12-16 18:54 - 00000000 ____D () C:\Program Files (x86)\Uniblue 2014-07-13 19:24 - 2013-12-16 18:21 - 00000000 ____D () C:\Program Files (x86)\TuneUp Utilities 2014 2014-07-13 19:24 - 2013-08-07 16:25 - 00000000 ____D () C:\ProgramData\AskPartnerNetwork 2014-07-13 19:24 - 2013-08-07 16:25 - 00000000 ____D () C:\ProgramData\APN 2014-07-13 19:24 - 2013-06-16 20:13 - 00000000 ____D () C:\ProgramData\Ask 2014-07-13 19:24 - 2013-05-09 12:47 - 00000000 ____D () C:\Program Files (x86)\Tuguu SL 2014-07-13 19:24 - 2013-04-03 16:16 - 00000000 ____D () C:\Program Files (x86)\Wajam 2014-07-13 19:24 - 2013-02-28 16:42 - 00000000 ____D () C:\Program Files (x86)\VideoPerformer 2014-07-13 19:24 - 2013-01-04 12:10 - 00000000 ____D () C:\Program Files (x86)\SweetIM 2014-07-13 19:24 - 2012-12-21 15:21 - 00000000 ____D () C:\Program Files (x86)\Solid Edge V20 2014-07-13 19:24 - 2012-10-14 18:35 - 00000000 ____D () C:\Program Files (x86)\vGrabber-software 2014-07-13 19:24 - 2012-09-03 19:35 - 00000000 ____D () C:\ProgramData\Avira 2014-07-13 19:24 - 2012-08-05 11:21 - 00000000 ____D () C:\Program Files (x86)\watchmi 2014-07-13 19:24 - 2012-02-16 03:11 - 00000000 ____D () C:\ProgramData\ATI 2014-07-13 19:24 - 2011-07-18 23:06 - 00000000 ____D () C:\ProgramData\Adobe 2014-07-13 19:24 - 2011-07-18 22:51 - 00000000 ____D () C:\Program Files (x86)\Windows Live 2014-07-13 19:23 - 2013-12-16 18:55 - 00000000 ____D () C:\Program Files (x86)\SearchProtect 2014-07-13 19:23 - 2013-12-16 18:18 - 00000000 ____D () C:\Program Files (x86)\Softonic 2014-07-13 19:23 - 2013-04-03 16:13 - 00000000 ____D () C:\Program Files (x86)\PricePeep 2014-07-13 19:23 - 2012-12-27 13:05 - 00000000 ____D () C:\Program Files (x86)\Search Results Toolbar 2014-07-13 19:23 - 2012-12-23 11:16 - 00000000 ____D () C:\Program Files (x86)\PhoenixRC 2014-07-13 19:23 - 2012-02-16 03:12 - 00000000 ____D () C:\Program Files (x86)\Realtek 2014-07-13 19:22 - 2013-06-02 12:28 - 00000000 ____D () C:\Program Files (x86)\Microsoft Works 2014-07-13 19:22 - 2013-06-02 12:28 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 2014-07-13 19:22 - 2013-06-02 12:25 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 8 2014-07-13 19:22 - 2013-03-14 09:04 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight 2014-07-13 19:22 - 2013-01-06 17:36 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-07-13 19:22 - 2012-12-25 15:08 - 00000000 ____D () C:\Program Files (x86)\Optimizer Pro 2014-07-13 19:22 - 2012-12-16 18:22 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-07-13 19:22 - 2012-10-14 18:35 - 00000000 ____D () C:\Program Files (x86)\Perion 2014-07-13 19:22 - 2011-07-18 22:55 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2014-07-13 19:22 - 2011-07-18 22:40 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office 2014-07-13 19:22 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files (x86)\MSBuild 2014-07-13 19:21 - 2014-04-12 13:19 - 00000000 ____D () C:\Program Files (x86)\FreeCAD0.13 2014-07-13 19:21 - 2014-04-12 13:14 - 00000000 ____D () C:\Program Files (x86)\LibreCAD 2014-07-13 19:21 - 2014-02-11 20:59 - 00000000 ____D () C:\Program Files (x86)\Microsoft Expression 2014-07-13 19:21 - 2013-06-18 20:03 - 00000000 ____D () C:\Program Files (x86)\Java 2014-07-13 19:21 - 2013-02-15 21:06 - 00000000 ____D () C:\Program Files (x86)\Freemake 2014-07-13 19:21 - 2013-01-15 18:58 - 00000000 ____D () C:\Program Files (x86)\HP 2014-07-13 19:21 - 2012-12-31 19:17 - 00000000 ____D () C:\Program Files (x86)\HP Photo Creations 2014-07-13 19:21 - 2012-08-06 16:45 - 00000000 ____D () C:\Program Files (x86)\Microsoft Application Virtualization Client 2014-07-13 19:21 - 2012-08-05 11:23 - 00000000 ____D () C:\Program Files (x86)\Memeo 2014-07-13 19:21 - 2012-08-05 11:20 - 00000000 ____D () C:\Program Files (x86)\Google 2014-07-13 19:21 - 2012-08-05 10:59 - 00000000 ____D () C:\Program Files (x86)\Hewlett-Packard 2014-07-13 19:21 - 2012-02-16 03:02 - 00000000 ____D () C:\Program Files (x86)\Intel 2014-07-13 19:21 - 2011-07-18 23:23 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-07-13 19:20 - 2014-06-13 18:16 - 00000000 ____D () C:\Program Files (x86)\FileZilla FTP Client 2014-07-13 19:20 - 2013-12-16 18:18 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft 2014-07-13 19:20 - 2013-04-03 16:13 - 00000000 ____D () C:\Program Files (x86)\FilesFrog Update Checker 2014-07-13 19:20 - 2012-12-02 16:21 - 00000000 ____D () C:\Program Files (x86)\EA Games 2014-07-13 19:19 - 2013-02-28 16:42 - 00000000 ____D () C:\Program Files (x86)\Delta 2014-07-13 19:19 - 2013-01-04 11:49 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite 2014-07-13 19:19 - 2012-12-25 15:27 - 00000000 ____D () C:\Program Files (x86)\Driver Pro 2014-07-13 19:19 - 2011-07-18 23:23 - 00000000 ____D () C:\Program Files (x86)\CyberLink 2014-07-13 19:18 - 2014-01-29 18:57 - 00000000 ____D () C:\Program Files (x86)\Color_Cop 2014-07-13 19:18 - 2013-10-05 17:36 - 00000000 ____D () C:\Program Files (x86)\Casio 2014-07-13 19:18 - 2013-08-29 14:00 - 00000000 ____D () C:\Program Files (x86)\bLyrics 2014-07-13 19:18 - 2013-08-07 16:24 - 00000000 ____D () C:\Program Files (x86)\Avira 2014-07-13 19:18 - 2013-01-04 12:19 - 00000000 ____D () C:\Program Files (x86)\AVG Secure Search 2014-07-13 19:17 - 2014-07-13 15:59 - 00000000 ____D () C:\Program Files (x86)\AVG 2014-07-13 19:17 - 2013-08-07 16:25 - 00000000 ____D () C:\Program Files (x86)\AskPartnerNetwork 2014-07-13 19:17 - 2013-06-26 22:03 - 00000000 ____D () C:\Program Files\Java 2014-07-13 19:17 - 2013-04-03 16:13 - 00000000 ____D () C:\Program Files (x86)\7-Zip 2014-07-13 19:17 - 2013-03-14 09:04 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-07-13 19:17 - 2013-01-06 17:04 - 00000000 ____D () C:\Program Files\CCleaner 2014-07-13 19:17 - 2013-01-04 13:05 - 00000000 ____D () C:\Program Files\TrueCrypt 2014-07-13 19:17 - 2012-10-14 18:34 - 00000000 ____D () C:\Program Files\IB Updater 2014-07-13 19:17 - 2012-08-05 11:21 - 00000000 ____D () C:\Program Files\PlayReady 2014-07-13 19:17 - 2012-08-05 10:56 - 00000000 ____D () C:\Program Files\HP 2014-07-13 19:17 - 2012-08-05 10:47 - 00000000 ____D () C:\Program Files\Microsoft Office 2014-07-13 19:17 - 2012-02-16 03:15 - 00000000 ____D () C:\Program Files (x86)\ASM104xUSB3 2014-07-13 19:17 - 2012-02-16 03:10 - 00000000 ____D () C:\Program Files (x86)\AMD APP 2014-07-13 19:17 - 2012-02-16 03:09 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies 2014-07-13 19:17 - 2012-02-16 03:09 - 00000000 ____D () C:\Program Files\ATI Technologies 2014-07-13 19:17 - 2012-02-16 03:09 - 00000000 ____D () C:\Program Files\ATI 2014-07-13 19:17 - 2012-02-16 03:09 - 00000000 ____D () C:\Program Files (x86)\ATI Technologies 2014-07-13 19:17 - 2011-07-18 23:06 - 00000000 ____D () C:\Program Files (x86)\Adobe 2014-07-13 19:17 - 2011-07-18 22:49 - 00000000 ____D () C:\Program Files\Windows Live 2014-07-13 19:17 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Vorlagen 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Startmenü 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Netzwerkumgebung 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Lokale Einstellungen 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Eigene Dateien 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Druckumgebung 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Documents\Eigene Musik 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Documents\Eigene Bilder 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\AppData\Local\Verlauf 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\AppData\Local\Anwendungsdaten 2014-07-13 19:12 - 2014-07-13 19:12 - 00000000 _SHDL () C:\Users\Schrägle\Anwendungsdaten 2014-07-13 19:11 - 2014-07-13 19:11 - 00001345 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk 2014-07-13 19:11 - 2014-07-13 19:11 - 00001326 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk 2014-07-13 19:11 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2014-07-13 19:11 - 2009-07-14 05:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories 2014-07-13 19:06 - 2014-07-13 19:06 - 00001355 _____ () C:\Windows\TSSysprep.log 2014-07-13 19:03 - 2014-07-13 18:55 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-07-13 18:55 - 2014-07-13 18:55 - 00000000 ____D () C:\Program Files\Realtek 2014-07-13 18:54 - 2014-07-13 18:54 - 00000000 _____ () C:\Windows\ativpsrm.bin 2014-07-13 18:50 - 2014-07-13 18:50 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf 2014-07-13 18:01 - 2012-08-05 11:19 - 01212404 _____ () C:\Windows\WindowsUpdate (1).log 2014-07-13 17:26 - 2014-07-13 17:26 - 00003302 _____ () C:\Users\Schrägle\Desktop\Windows Compatibility Report.htm 2014-07-13 17:23 - 2014-07-13 17:23 - 00013662 _____ () C:\Windows\diagwrn.xml 2014-07-13 17:23 - 2014-07-13 17:23 - 00001890 _____ () C:\Windows\diagerr.xml 2014-07-13 16:02 - 2014-07-13 16:02 - 00000985 _____ () C:\Users\Public\Desktop\AVG 2014.lnk 2014-07-13 16:00 - 2014-07-13 16:00 - 00000000 ___HD () C:\$AVG 2014-07-13 15:55 - 2014-07-13 15:55 - 00000142 _____ () C:\Users\Schrägle\AppData\Roaming\tmp_register.bat 2014-07-13 15:40 - 2013-08-07 16:24 - 00002074 _____ () C:\Users\Public\Desktop\Avira Control Center.lnk 2014-07-13 11:14 - 2014-07-13 11:14 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{C887F452-5450-42AE-92C3-EAC911EDB34C} 2014-07-10 17:33 - 2014-07-10 17:33 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{2E7488C6-96C2-45A0-83FA-4AA877390050} 2014-07-09 20:30 - 2014-07-09 20:30 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{042D9681-1CB0-45D7-9366-084F768DC847} 2014-07-07 18:53 - 2014-07-07 18:53 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{1071BD73-6D66-4747-B84F-C3F980B69617} 2014-07-07 18:53 - 2014-07-07 18:53 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{0E5B554B-2C84-4A29-BBCF-8CF9312A023F} 2014-07-05 11:04 - 2014-07-05 11:03 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{DBB75948-902D-4024-B588-07D9CC33167F} 2014-07-03 18:11 - 2013-08-07 16:24 - 00117712 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2014-07-02 20:37 - 2014-07-02 20:37 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{0ED52F5C-7E76-48D3-B440-1B66A2247749} 2014-07-02 13:06 - 2013-08-07 16:24 - 00042040 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2014-06-30 04:09 - 2014-07-14 03:27 - 00519168 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-06-30 04:04 - 2014-07-14 03:27 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-06-29 16:57 - 2014-06-29 16:57 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{ECC4DA04-C8A5-4673-9625-EAB427986779} 2014-06-29 16:57 - 2014-06-29 16:57 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{C9E1C0EE-9103-4424-8418-78EADDD7D964} 2014-06-29 09:03 - 2014-06-29 09:03 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{A84A427F-8D52-45C8-AE07-D49BAA473727} 2014-06-28 17:51 - 2014-06-28 17:51 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{DC6B7C0A-397F-420A-925E-9E651BBF7836} 2014-06-25 20:16 - 2014-06-25 20:16 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cf90a18dd4ef68.job 2014-06-25 16:39 - 2014-06-25 16:39 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{DE3AADE9-90F8-4435-8DBF-C09011FD9CCC} 2014-06-24 16:15 - 2014-06-25 19:50 - 02601776 _____ () C:\Windows\system32\dmwu.exe 2014-06-24 16:11 - 2012-10-14 18:34 - 00033792 _____ (IncrediMail, Ltd.) C:\Windows\system32\ImHttpComm.dll 2014-06-24 15:09 - 2011-01-08 00:02 - 00829264 _____ (Microsoft Corporation) C:\Windows\system32\msvcr100.dll 2014-06-24 15:09 - 2011-01-08 00:02 - 00608080 _____ (Microsoft Corporation) C:\Windows\system32\msvcp100.dll 2014-06-22 22:00 - 2013-06-26 15:54 - 00003730 _____ () C:\Program Files (x86)\Mozilla Firefoxavg-secure-search.xml 2014-06-22 22:00 - 2013-01-04 12:19 - 00050464 _____ (AVG Technologies) C:\Windows\system32\Drivers\avgtpx64.sys 2014-06-22 20:20 - 2013-03-06 20:42 - 00901120 ___SH () C:\Users\Schrägle\Desktop\Thumbs.db 2014-06-21 19:58 - 2014-06-21 19:58 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{B33F55B0-EBE8-4679-942B-6AA96708E1A9} 2014-06-20 20:04 - 2014-06-20 20:03 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{9F69A0B2-809F-423F-8B77-E0501B392178} 2014-06-19 19:12 - 2014-06-19 19:12 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{C03CB42A-9AE4-418C-BA83-47CB7D12EC35} 2014-06-19 03:06 - 2014-07-09 15:51 - 00004096 ____N (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-06-19 02:41 - 2014-07-09 15:51 - 00083968 ____N (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-06-19 02:41 - 2014-07-09 15:51 - 00048640 ____N (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-06-19 02:24 - 2014-07-09 15:51 - 00111616 ____N (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-06-19 02:23 - 2014-07-09 15:51 - 00752640 ____N (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-06-19 02:14 - 2014-07-09 15:51 - 00940032 ____N (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-06-19 01:59 - 2014-07-09 15:51 - 00038400 ____N (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-06-19 01:36 - 2014-07-09 15:51 - 00051200 ____N (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-06-19 01:35 - 2014-07-09 15:51 - 00062464 ____N (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-06-19 01:27 - 2014-07-09 15:51 - 01249280 ____N (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-06-19 01:22 - 2014-07-09 15:51 - 00592896 ____N (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-06-19 01:06 - 2014-07-09 15:51 - 00032256 ____N (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-06-19 00:46 - 2014-07-09 15:51 - 01068032 ____N (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-06-18 19:05 - 2014-06-18 19:05 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{F10216B5-ABA2-4B1F-9443-7925EDA4C2CF} 2014-06-18 04:18 - 2014-07-14 03:27 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\osk.exe 2014-06-18 03:51 - 2014-07-14 03:27 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\osk.exe 2014-06-18 03:10 - 2014-07-14 03:27 - 03157504 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-06-17 16:21 - 2014-06-17 16:21 - 00235800 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgldx64.sys 2014-06-17 16:07 - 2014-06-17 16:07 - 00328984 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgloga.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00269080 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgtdia.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00242968 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsdrivera.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00190744 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsha.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00153368 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgdiska.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00123672 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgmfx64.sys 2014-06-17 16:06 - 2014-06-17 16:06 - 00031512 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgrkx64.sys 2014-06-16 20:34 - 2014-06-16 20:33 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{37940329-4D90-4DFC-A19F-5B13B85BC9B0} 2014-06-15 20:52 - 2014-06-15 20:52 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{A4B0555F-BEAA-4483-9C9C-05EDBCEE76F4} 2014-06-15 14:43 - 2014-06-15 14:43 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{DC99FA77-EBF8-4A51-8EB1-A12BD84B7E68} 2014-06-14 13:01 - 2014-06-14 13:01 - 00000000 ____D () C:\Users\Schrägle\AppData\Local\{83E2F3AA-BE9E-4DF7-9766-BF2BE4F8CF71} ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-07-13 21:04 ==================== End Of Log ============================ |
14.07.2014, 18:35 | #13 |
/// the machine /// TB-Ausbilder | Avira Antivir wird blockiert jetzt noch die Addition.txt
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
16.07.2014, 16:51 | #14 |
| Avira Antivir wird blockiert Und wie bekomme ich die her? Weil wenn ich deiner Anleitung folge, dann erscheint auf dem Desktop nur eine Textdatei, nachdem ich auf Scan geklickt habe. Grüße Stefan So jetzt, Ich habe vergessen vor dem scan bei Addition txt. ein Häckchen zu setzen. Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 14-07-2014 Ran by Schrägle at 2014-07-15 18:13:15 Running from C:\Users\Schrägle\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Avira Desktop (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AV: AVG Internet Security 2014 (Disabled - Out of date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9} AS: Avira Desktop (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: AVG Internet Security 2014 (Disabled - Out of date) {B5F5C120-2089-702E-0001-553BB0D5A664} FW: AVG Internet Security 2014 (Disabled) {36AFA1E1-4CDC-7EF8-11EE-C77C3581ABA2} ==================== Installed Programs ====================== 7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version: - ) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.1.0.4880 - Adobe Systems Incorporated) Adobe AIR (x32 Version: 3.1.0.4880 - Adobe Systems Incorporated) Hidden Adobe Flash Player 14 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 14.0.0.145 - Adobe Systems Incorporated) Adobe Flash Player 14 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 14.0.0.145 - Adobe Systems Incorporated) Adobe Reader XI (11.0.07) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.07 - Adobe Systems Incorporated) AMD APP SDK Runtime (Version: 2.5.793.1 - Advanced Micro Devices Inc.) Hidden AMD AVIVO64 Codecs (Version: 11.7.0.11013 - Advanced Micro Devices, Inc.) Hidden AMD Catalyst Install Manager (HKLM\...\{2F949F9F-EBD4-8597-5CF0-6370C0161CC9}) (Version: 3.0.851.0 - Advanced Micro Devices, Inc.) AMD Drag and Drop Transcoding (Version: 2.00.0000 - Advanced Micro Devices, Inc.) Hidden AMD Media Foundation Decoders (Version: 1.0.61013.1636 - Advanced Micro Devices, Inc.) Hidden Asmedia ASM104x USB 3.0 Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.12.9.0 - Asmedia Technology) AVG 2014 (HKLM\...\AVG) (Version: 2014.0.4716 - AVG Technologies) AVG 2014 (Version: 14.0.3986 - AVG Technologies) Hidden AVG 2014 (Version: 14.0.4716 - AVG Technologies) Hidden AVG Security Toolbar (HKLM-x32\...\AVG Secure Search) (Version: 18.1.7.644 - AVG Technologies) Avira Free Antivirus (HKLM-x32\...\Avira AntiVir Desktop) (Version: 14.0.5.464 - Avira) Avira SearchFree Toolbar (HKLM-x32\...\{41564952-412D-5637-00A7-A758B70C0F01}) (Version: 12.15.1.464 - APN, LLC) B Lyrics (HKLM-x32\...\{03fd586b-d6a0-4265-a9c0-b3fa3828276c}) (Version: - Be-Lyrics) <==== ATTENTION Babylon Chrome Toolbar (HKLM-x32\...\Babylon Chrome Toolbar) (Version: - Babylon Ltd.) <==== ATTENTION Battlefield Play4Free (HKLM-x32\...\{87686C21-8A15-4b4d-A3F1-11141D9BE094}) (Version: - EA Digital illusions) Bundled software uninstaller (HKLM-x32\...\bi_uninstaller) (Version: - ) <==== ATTENTION Catalyst Control Center (x32 Version: 2011.1013.1702.28713 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center InstallProxy (x32 Version: 2011.1013.1702.28713 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Localization All (x32 Version: 2011.1013.1702.28713 - Advanced Micro Devices, Inc.) Hidden CCC Help Danish (x32 Version: 2011.1013.1701.28713 - Advanced Micro Devices, Inc.) Hidden CCC Help Dutch (x32 Version: 2011.1013.1701.28713 - Advanced Micro Devices, Inc.) Hidden CCC Help English (x32 Version: 2011.1013.1701.28713 - Advanced Micro Devices, Inc.) Hidden CCC Help Finnish (x32 Version: 2011.1013.1701.28713 - Advanced Micro Devices, Inc.) Hidden CCC Help French (x32 Version: 2011.1013.1701.28713 - Advanced Micro Devices, Inc.) Hidden CCC Help German (x32 Version: 2011.1013.1701.28713 - Advanced Micro Devices, Inc.) Hidden CCC Help Italian (x32 Version: 2011.1013.1701.28713 - Advanced Micro Devices, Inc.) Hidden CCC Help Japanese (x32 Version: 2011.1013.1701.28713 - Advanced Micro Devices, Inc.) Hidden CCC Help Norwegian (x32 Version: 2011.1013.1701.28713 - Advanced Micro Devices, Inc.) Hidden CCC Help Spanish (x32 Version: 2011.1013.1701.28713 - Advanced Micro Devices, Inc.) Hidden CCC Help Swedish (x32 Version: 2011.1013.1701.28713 - Advanced Micro Devices, Inc.) Hidden ccc-utility64 (Version: 2011.1013.1702.28713 - Advanced Micro Devices, Inc.) Hidden CCleaner (HKLM\...\CCleaner) (Version: 3.26 - Piriform) Color Cop 5.4.3 (HKLM-x32\...\Color Cop_is1) (Version: - Jay Prall) Control ActiveX de Windows Live Mesh para conexiones remotas (HKLM-x32\...\{04668DF2-D32F-4555-9C7E-35523DCD6544}) (Version: 15.4.5722.2 - Microsoft Corporation) Contrôle ActiveX Windows Live Mesh pour connexions à distance (HKLM-x32\...\{55D003F4-9599-44BF-BA9E-95D060730DD3}) (Version: 15.4.5722.2 - Microsoft Corporation) Controlo ActiveX do Windows Live Mesh para Ligações Remotas (HKLM-x32\...\{E54EEB5D-41ED-40FE-B4A8-8565DB81469B}) (Version: 15.4.5722.2 - Microsoft Corporation) CyberLink LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.3624 - CyberLink Corp.) CyberLink LabelPrint (x32 Version: 2.5.3624 - CyberLink Corp.) Hidden CyberLink Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 7.0.0.1327 - CyberLink Corp.) CyberLink Power2Go (x32 Version: 7.0.0.1327 - CyberLink Corp.) Hidden CyberLink PowerDVD Copy (HKLM-x32\...\InstallShield_{E3D04529-6EDB-11D8-A372-0050BAE317E1}) (Version: 1.5.1306 - CyberLink Corp.) CyberLink PowerDVD Copy (x32 Version: 1.5.1306 - CyberLink Corp.) Hidden CyberLink PowerRecover (HKLM-x32\...\InstallShield_{44B2A0AB-412E-4F8C-B058-D1E8AECCDFF5}) (Version: 5.5.4125 - CyberLink Corp.) CyberLink PowerRecover (x32 Version: 5.5.4125 - CyberLink Corp.) Hidden CyberLink WaveEditor (HKLM-x32\...\InstallShield_{324F76CC-D8DD-4D87-B77D-D4AF5E1AA7B3}) (Version: 1.0.1.2821 - CyberLink Corp.) CyberLink WaveEditor (x32 Version: 1.0.1.2821 - CyberLink Corp.) Hidden D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.46.1.0327 - DT Soft Ltd) Delta toolbar (HKLM-x32\...\delta) (Version: 1.8.16.16 - Delta) <==== ATTENTION DomaIQ (HKLM-x32\...\DomaIQ Uninstaller) (Version: - Tuguu SLU) <==== ATTENTION Driver Pro v3.0 (HKLM-x32\...\Driver Pro_is1) (Version: 3.0 - PC Utilities Pro) Dynamic Photo Manager (HKLM-x32\...\{44E6DE02-8C0D-4A23-8675-2BB1F78B53BC}) (Version: 1.1.00 - Casio) Dynamic Photo Manager (x32 Version: 1.1.00 - Casio) Hidden Facebook Video Calling 2.0.0.447 (HKLM-x32\...\{8DF41A9F-FE13-43E8-A003-5F9B55A011EE}) (Version: 2.0.447 - Skype Limited) FilesFrog Update Checker (HKLM-x32\...\FilesFrog Update Checker) (Version: - ) <==== ATTENTION FileZilla Client 3.8.1 (HKLM-x32\...\FileZilla Client) (Version: 3.8.1 - Tim Kosse) Formant ActiveX programu Windows Live Mesh odpowiedzialny za obsługę połączeń zdalnych (HKLM-x32\...\{B04A0E2F-1E4C-4E61-B18E-3B2BD6779CA7}) (Version: 15.4.5722.2 - Microsoft Corporation) Fotogalerija Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Foxy Secure (HKLM-x32\...\Foxy Secure) (Version: - ) Free Studio version 2013 (HKLM-x32\...\Free Studio_is1) (Version: 6.2.2.1128 - DVDVideoSoft Ltd.) Free YouTube Download version 3.2.18.1128 (HKLM-x32\...\Free YouTube Download_is1) (Version: 3.2.18.1128 - DVDVideoSoft Ltd.) FreeCAD 0.13 (HKLM-x32\...\{2B2B5D2B-0F01-410B-843B-8F437FD75FBF}) (Version: 0.13.1828 - Juergen Riegel (FreeCAD@juergen-riegel.net)) Freemake Video Converter Version 3.2.1 (HKLM-x32\...\Freemake Video Converter_is1) (Version: 3.2.1 - Ellora Assets Corporation) Galeria de Fotografias do Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galería fotográfica de Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galeria fotografii usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galerie de photos Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Google Chrome (HKLM-x32\...\Google Chrome) (Version: 35.0.1916.153 - Google Inc.) Google Earth Plug-in (HKLM-x32\...\{4AB54F11-2F8C-11E3-B09F-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google) Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden gutscheinfilter.de (HKCU\...\{206a7328-437f-4bd9-b53e-12bfee24d588}) (Version: - gutscheinfilter.de) HP Officejet 6500 E710a-f - Grundlegende Software für das Gerät (HKLM\...\{939D91BD-7C35-492A-A8B4-DE99939BD44F}) (Version: 22.0.334.0 - Hewlett-Packard Co.) HP Officejet 6500 E710a-f Hilfe (HKLM-x32\...\{958B08B0-C784-4A77-8D2B-C0A58F1E14B5}) (Version: 140.0.2.2 - Hewlett Packard) HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.9572 - HP) HP Update (HKLM-x32\...\{787D1A33-A97B-4245-87C0-7174609A540C}) (Version: 5.002.005.003 - Hewlett-Packard) I.R.I.S. OCR (HKLM-x32\...\{CA6BCA2F-EDEB-408F-850B-31404BE16A61}) (Version: 12.3.4 - HP) IB Updater 2.0.0.574 (HKLM\...\{336D0C35-8A85-403a-B9D2-65C292C39087}_is1) (Version: 2.0.0.574 - IncrediBar) <==== ATTENTION IB Updater Service (HKLM-x32\...\WNLT) (Version: 5.1.1.3 - ) <==== ATTENTION Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.6.0.1002 - Intel Corporation) Internet Explorer Toolbar 4.7 by SweetPacks (HKLM-x32\...\{0110EF3B-85D7-4365-B585-4C521CFA9064}) (Version: 4.7.0002 - SweetIM Technologies Ltd.) <==== ATTENTION Java 7 Update 21 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217021FF}) (Version: 7.0.210 - Oracle) Java 7 Update 25 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417025FF}) (Version: 7.0.250 - Oracle) Java Auto Updater (x32 Version: 2.1.9.5 - Sun Microsystems, Inc.) Hidden Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Kontrolnik Windows Live Mesh ActiveX za oddaljene povezave (HKLM-x32\...\{CA227A9D-09BE-4BFB-9764-48FED2DA5454}) (Version: 15.4.5722.2 - Microsoft Corporation) LibreCAD (HKLM-x32\...\LibreCAD) (Version: 2.0.3 - LibreCAD Team) Marketsplash Schnellzugriffe (HKLM-x32\...\{FB0C267C-8B4F-4867-8161-A6A3B66D42C1}) (Version: 1.0.0.9 - Hewlett-Packard) Medion Home Cinema (HKLM-x32\...\InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}) (Version: 8.0.3216 - CyberLink Corp.) Medion Home Cinema (x32 Version: 8.0.3216 - CyberLink Corp.) Hidden Memeo Instant Backup (HKLM-x32\...\{8E666407-AC41-46a2-9692-6C7BFCBFDD37}) (Version: 4.60.0.7943 - Memeo Inc.) Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (HKLM\...\{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}) (Version: - ) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft Expression Web 2 (HKLM-x32\...\XWeb) (Version: 12.0.4518.1088 - Microsoft Corporation) Microsoft Expression Web 2 (x32 Version: 12.0.4518.1088 - Microsoft Corporation) Hidden Microsoft Expression Web 2 MUI (German) (x32 Version: 12.0.4518.1088 - Microsoft Corporation) Hidden Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Access MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office Enterprise 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Excel MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Groove MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office InfoPath MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Klick-und-Los 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Klick-und-Los 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden Microsoft Office Live Add-in 1.5 (HKLM-x32\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation) Microsoft Office Office 64-bit Components 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office OneNote MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Outlook MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (French) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Italian) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proofing (German) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden Microsoft Office Publisher MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Shared 64-bit MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Starter 2010 - Deutsch (HKLM-x32\...\{90140011-0066-0407-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Word MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Mozilla Firefox 22.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 22.0 (x86 de)) (Version: 22.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 22.0 - Mozilla) MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden Optimizer Pro v3.0 (HKLM-x32\...\Optimizer Pro_is1) (Version: 3.0 - PC Utilities Pro) <==== ATTENTION PhoenixRC (HKLM-x32\...\{7DF88245-6DD0-4186-9203-93236C2FED09}) (Version: 3.00.18 - Ihr Firmenname) PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation) Poczta usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Podstawowe programy Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Pošta Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden PricePeep (HKLM-x32\...\PricePeep) (Version: 2.1.0.22 - betwikx LLC) <==== ATTENTION PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.990 - Even Balance, Inc.) Raccolta foto di Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6516 - Realtek Semiconductor Corp.) Remote Desktop Access (VuuPC) (HKLM-x32\...\VOPackage) (Version: 1.0.0.0 - CMI Limited) <==== ATTENTION Search Protect (HKLM-x32\...\SearchProtect) (Version: 2.9.40.12 - Conduit) <==== ATTENTION Search-Results Toolbar (HKLM-x32\...\ilividtoolbarguid) (Version: 1.0.0.12 - APN LLC) <==== ATTENTION Softonic toolbar on IE and Chrome (HKLM-x32\...\Softonic) (Version: 1.8.21.14 - Softonic) <==== ATTENTION Solid Edge V20 (HKLM-x32\...\{886F91D5-4B45-45DC-938E-6B0276C6B015}) (Version: 20.00.0096 - UGS) SpeedUpMyPC (HKLM-x32\...\{E55B3271-7CA8-4D0C-AE06-69A24856E996}_is1) (Version: 5.3.4.4 - Uniblue Systems Ltd) <==== ATTENTION Spelling Dictionaries Support For Adobe Reader X (HKLM-x32\...\{AC76BA86-7AD7-5464-3428-A00000000004}) (Version: 10.0.0 - Adobe Systems Incorporated) Studie zur Verbesserung von HP Officejet 6500 E710a-f Produkten (HKLM\...\{A5C5CECF-648E-4263-B601-4D4CD3FCD11D}) (Version: 22.0.334.0 - Hewlett-Packard Co.) thriXXX WebLaunch (HKLM-x32\...\thriXXX WebLaunch) (Version: 1.0 - thriXXX) TuneUp Utilities 2014 (de-DE) (x32 Version: 14.0.1000.89 - TuneUp Software) Hidden TuneUp Utilities 2014 (HKLM-x32\...\TuneUp Utilities 2014) (Version: 14.0.1000.89 - TuneUp Software) TuneUp Utilities 2014 (x32 Version: 14.0.1000.89 - TuneUp Software) Hidden Unity Web Player (HKCU\...\UnityWebPlayer) (Version: - Unity Technologies ApS) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0045-0000-0000-0000000FF1CE}_XWeb_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update for Microsoft Expression Web 2 (KB957827) (HKLM-x32\...\{90120000-0045-0000-0000-0000000FF1CE}_XWeb_{DCA28998-1FE8-4CEA-818D-027D8B15F119}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{A024FC7B-77DE-45DE-A058-1C049A17BFB3}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (HKLM-x32\...\{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{CB68A5B0-3508-4193-AEB9-AF636DAECE0F}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{CB68A5B0-3508-4193-AEB9-AF636DAECE0F}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (HKLM-x32\...\{90120000-0045-0000-0000-0000000FF1CE}_XWeb_{CB68A5B0-3508-4193-AEB9-AF636DAECE0F}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{E9A82945-BA29-4EE8-8F2A-2F49545E9CF2}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition (HKLM-x32\...\{90120000-001A-0407-0000-0000000FF1CE}_ENTERPRISE_{EA54F104-79D2-48CC-9ABC-91A63C43D353}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2863811) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{53DEC068-4690-4F6B-9946-7D21EF02236B}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2883030) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{F5DCAB53-C2FD-4E5A-8C83-0F37485E5E89}) (Version: - Microsoft) Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0407-0000-0000000FF1CE}_ENTERPRISE_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version: - Microsoft) Update für Microsoft Office Outlook 2007 Help (KB963677) (HKLM-x32\...\{90120000-001A-0407-0000-0000000FF1CE}_ENTERPRISE_{F6828576-6F79-470D-AB50-69D1BBADBD30}) (Version: - Microsoft) Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0407-0000-0000000FF1CE}_ENTERPRISE_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version: - Microsoft) Update für Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0407-0000-0000000FF1CE}_ENTERPRISE_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version: - Microsoft) Updater Service (HKLM-x32\...\Updater Service) (Version: 15,9,28,27 - ) <==== ATTENTION Uzak Bağlantılar İçin Windows Live Mesh ActiveX Denetimi (HKLM-x32\...\{241E7104-937A-4366-AD57-8FDDDB003939}) (Version: 15.4.5722.2 - Microsoft Corporation) VAFPlayer (HKLM-x32\...\{EBE677C0-CBCB-4EBF-8098-E27E1B5271CF}) (Version: 1.6.8 - Tuguu SL) <==== ATTENTION Video Downloader (HKLM-x32\...\Video Downloader) (Version: 1.14 - hxxp://www.vgrabber.com) VideoPerformer (HKLM-x32\...\VideoPerformer) (Version: - PerformerSoft LLC) <==== ATTENTION Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) Wajam (HKLM-x32\...\Wajam) (Version: 1.73 - Wajam) <==== ATTENTION watchmi (HKLM-x32\...\{F0559C5E-7912-4391-B1A0-6B975F0E5064}) (Version: 3.0.0 - Axel Springer Digital TV Guide GmbH) Windows Live Communications Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation) Windows Live Essentials (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Fotogalerie (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Fotoğraf Galerisi (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Fotótár (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live ID Sign-in Assistant (Version: 7.250.4232.0 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Language Selector (Version: 15.4.3555.0308 - Microsoft Corporation) Hidden Windows Live Mail (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen (HKLM-x32\...\{C32CE55C-12BA-4951-8797-0967FDEF556F}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX control for remote connections (HKLM-x32\...\{C5398A89-516C-4DAF-BA07-EE7949090E56}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{C63A1E60-B6A4-440B-89A5-1FC6E4AC1C94}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX-objekt til fjernforbindelser (HKLM-x32\...\{57220148-3B2B-412A-A2E0-82B9DF423696}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX-vezérlő távoli kapcsolatokhoz (HKLM-x32\...\{6E29C4F7-C2C2-4B18-A15C-E09B92065F15}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Messenger (x32 Version: 15.4.3538.0513 - Microsoft Corporation) Hidden Windows Live MIME IFilter (Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Movie Maker (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Photo Gallery (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live Remote Client (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live Remote Client Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live Remote Service (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live Remote Service Resources (Version: 15.4.5722.2 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Temel Parçalar (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109 - Microsoft Corporation) Hidden Windows Live Writer (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Windows Live Writer Resources (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Στοιχείο ελέγχου ActiveX του Windows Live Mesh για απομακρυσμένες συνδέσεις (HKLM-x32\...\{F665F3B8-01B4-46A9-8E47-FF8DC2208C9F}) (Version: 15.4.5722.2 - Microsoft Corporation) Συλλογή φωτογραφιών του Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden ==================== Restore Points ========================= 14-07-2014 03:49:44 Windows Update 14-07-2014 20:28:27 Windows Update 15-07-2014 05:35:32 Gerätetreiber-Paketinstallation: DT Soft Ltd Systemgeräte 15-07-2014 05:38:45 Windows Update 15-07-2014 16:06:19 Windows Update ==================== Hosts content: ========================== 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {3155AAA6-1065-42F6-A08A-9FD59FDB50D1} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2012-12-19] (Piriform Ltd) Task: {3AD3BBA8-14E4-4D25-9273-FE8415DD2BD2} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-08-05] (Google Inc.) Task: {5AE11ECE-581F-4651-82FF-9A90A5501909} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-07-13] (Adobe Systems Incorporated) Task: {7418F18F-24C9-443F-A8F7-FD8FA4C79903} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-4074982664-1885493180-2041087550-1001UA => C:\Users\Schrägle\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-02-25] (Facebook Inc.) Task: {7C438662-7070-4768-B710-44358AD5A0D1} - System32\Tasks\HPCustParticipation HP Officejet 6500 E710a-f => C:\Program Files\HP\HP Officejet 6500 E710a-f\Bin\HPCustPartic.exe [2010-06-14] (Hewlett-Packard Co.) Task: {802C185B-1276-424D-9ECE-CDC3C75F4BD5} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-08-05] (Google Inc.) Task: {89FBF0B0-1563-4EEF-BA06-7B08E7CCFA5D} - System32\Tasks\B Lyrics Update => C:\Program Files (x86)\bLyrics\bLyrics.exe <==== ATTENTION Task: {A1D60D55-A6B8-401B-BC05-2938E02DF2F2} - System32\Tasks\Microsoft\Windows Defender\MP Scheduled Scan => d:\program files\windows defender\MpCmdRun.exe Task: {B1A3BE47-70E3-47EA-A68B-9FDDD8F8FB89} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-4074982664-1885493180-2041087550-1001Core => C:\Users\Schrägle\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-02-25] (Facebook Inc.) Task: {C4E8B14A-4159-4C58-BDAD-281DBBFC97E8} - System32\Tasks\Microsoft\Windows Defender\MpIdleTask => d:\program files\windows defender\MpCmdRun.exe Task: {C7D9FEFE-075A-4AFE-A757-7610AD125D41} - System32\Tasks\{0DF7A7E2-D28D-4B05-965E-E2F8195D35F4} => C:\Program Files (x86)\Avira\AntiVir Desktop\avcenter.exe [2014-07-02] (Avira Operations GmbH & Co. KG) Task: {FC433DE0-4DFB-4448-AACB-C696B558B270} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => Rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup Task: {FE71FD66-FB00-42EC-AC4C-EC98B57B4DF9} - System32\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv => C:\Windows\TEMP\{721D8D3C-8232-48D5-AF5C-5B383745C3F7}.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\AVG-Secure-Search-Update_JUNE2013_TB_rmv.job => C:\Windows\TEMP\{721D8D3C-8232-48D5-AF5C-5B383745C3F7}.exe Task: C:\Windows\Tasks\B Lyrics Update.job => C:\Program Files (x86)\bLyrics\bLyrics.exe <==== ATTENTION Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4074982664-1885493180-2041087550-1001Core.job => C:\Users\Schrägle\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-4074982664-1885493180-2041087550-1001UA.job => C:\Users\Schrägle\AppData\Local\Facebook\Update\FacebookUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore1cf90a18dd4ef68.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\SpeedUpMyPC.job => C:\Program Files (x86)\Uniblue\SpeedUpMyPC\sump.exe <==== ATTENTION Task: C:\Windows\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013.job => C:\Program Files (x86)\TuneUp Utilities 2014\OneClick.exe ==================== Loaded Modules (whitelisted) ============= 2014-06-25 19:50 - 2014-06-24 16:15 - 02601776 _____ () C:\Windows\system32\dmwu.exe 2013-08-30 10:51 - 2013-08-30 10:51 - 00757048 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\avgrepliba.dll 2012-01-31 11:24 - 2012-01-31 11:24 - 00070144 _____ () C:\Program Files (x86)\watchmi\TvdService.exe 2014-07-13 19:28 - 2014-07-13 19:28 - 00059904 _____ () C:\Windows\assembly\GAC_MSIL\Tvd.Remote\3.0.0.8__f722db7bec59a14b\Tvd.Remote.dll 2014-07-13 19:28 - 2014-07-13 19:28 - 00034304 _____ () C:\Windows\assembly\GAC_MSIL\Tvd.Tools\3.0.0.8__f722db7bec59a14b\Tvd.Tools.dll 2014-07-13 19:27 - 2014-07-13 19:27 - 00009216 _____ () C:\Windows\assembly\GAC_MSIL\FingerPrint\1.0.0.0__a62e68e935d72fa6\FingerPrint.dll 2014-07-13 19:28 - 2014-07-13 19:28 - 00079360 _____ () C:\Windows\assembly\GAC_MSIL\Tvd.Reporting\3.0.0.8__f722db7bec59a14b\Tvd.Reporting.dll 2014-07-13 19:28 - 2014-07-13 19:28 - 00153088 _____ () C:\Windows\assembly\GAC_MSIL\Tvd.Aprico\3.0.0.8__f722db7bec59a14b\Tvd.Aprico.dll 2014-06-22 22:00 - 2014-06-22 22:00 - 00159768 _____ () C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.7\loggingserver.exe 2014-05-01 21:29 - 2014-05-01 21:29 - 00098304 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext_64.dll 2014-06-24 16:15 - 2014-06-24 16:15 - 00640304 _____ () C:\Windows\SysWOW64\mjcm\dnkt.exe 2014-06-24 16:15 - 2014-06-24 16:15 - 00728880 _____ () C:\Windows\System32\tprb\dnkt.exe 2014-06-24 16:15 - 2014-06-24 16:15 - 01969456 _____ () C:\Windows\System32\tprb\5113\nsib.dll 2013-01-04 12:19 - 2014-06-22 22:00 - 02571288 _____ () C:\Program Files (x86)\AVG Secure Search\vprot.exe 2012-01-31 11:24 - 2012-01-31 11:24 - 01070592 _____ () C:\Program Files (x86)\watchmi\TvdTray.exe 2012-01-31 11:24 - 2012-01-31 11:24 - 00004608 _____ () C:\Program Files (x86)\watchmi\de\TvdTray.resources.dll 2011-10-14 02:01 - 2011-10-14 02:01 - 00369152 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll 2014-06-22 22:00 - 2014-06-22 22:00 - 00519704 _____ () C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.7\log4cplusU.dll 2014-06-24 16:15 - 2014-06-24 16:15 - 01581872 _____ () C:\Windows\SysWOW64\mjcm\5113\nsib.dll 2013-12-09 18:07 - 2014-06-22 22:00 - 01645592 _____ () C:\Program Files (x86)\AVG Secure Search\TBAPI.dll 2010-08-04 01:39 - 2010-08-04 01:39 - 00619816 _____ () C:\Program Files (x86)\CyberLink\Power2Go\CLMediaLibrary.dll 2010-08-04 01:39 - 2010-08-04 01:39 - 00013096 _____ () C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvcPS.dll 2014-07-14 19:40 - 2014-07-14 19:40 - 00172544 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\367540c92c2004ff2c6695778fed5dd6\IsdiInterop.ni.dll 2012-02-16 03:05 - 2011-05-20 20:05 - 00059904 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll 2014-06-01 11:08 - 2014-06-01 11:08 - 00035328 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext.dll 2014-05-24 18:41 - 2014-05-24 18:41 - 00091648 _____ () C:\Program Files (x86)\FileZilla FTP Client\libgcc_s_sjlj-1.dll 2014-05-24 18:41 - 2014-05-24 18:41 - 00892416 _____ () C:\Program Files (x86)\FileZilla FTP Client\libstdc++-6.dll 2014-06-12 17:40 - 2014-06-05 15:58 - 00716616 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\libglesv2.dll 2014-06-12 17:40 - 2014-06-05 15:58 - 00126280 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\libegl.dll 2014-06-12 17:40 - 2014-06-05 15:58 - 04217672 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\pdf.dll 2014-06-12 17:40 - 2014-06-05 15:58 - 00414536 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\ppGoogleNaClPluginChrome.dll 2014-06-12 17:40 - 2014-06-05 15:58 - 01732424 _____ () C:\Program Files (x86)\Google\Chrome\Application\35.0.1916.153\ffmpegsumo.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== ==================== EXE Association (whitelisted) ============= ==================== MSCONFIG/TASK MANAGER disabled items ========= ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (07/15/2014 06:09:51 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (07/15/2014 06:09:49 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (07/15/2014 06:03:02 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/15/2014 06:02:22 PM) (Source: MemeoBackgroundService) (EventID: 0) (User: ) Description: Problem starting Memeo Background Service :Ausnahmefehler "System.Reflection.TargetInvocationException: Ein Aufrufziel hat einen Ausnahmefehler verursacht. ---> System.Security.Principal.IdentityNotMappedException: Manche oder alle Identitätsverweise konnten nicht übersetzt werden. bei System.Runtime.Remoting.Channels.Ipc.IpcServerChannel.StartListening(Object data) bei System.Runtime.Remoting.Channels.Ipc.IpcServerChannel..ctor(IDictionary properties, IServerChannelSinkProvider sinkProvider, CommonSecurityDescriptor securityDescriptor) bei System.Runtime.Remoting.Channels.Ipc.IpcChannel..ctor(IDictionary properties, IClientChannelSinkProvider clientSinkProvider, IServerChannelSinkProvider serverSinkProvider) --- Ende der internen Ausnahmestapelüberwachung --- bei System.RuntimeMethodHandle._InvokeConstructor(Object[] args, SignatureStruct& signature, IntPtr declaringType) bei System.Reflection.RuntimeConstructorInfo.Invoke(BindingFlags invokeAttr, Binder binder, Object[] parameters, CultureInfo culture) bei System.RuntimeType.CreateInstanceImpl(BindingFlags bindingAttr, Binder binder, Object[] args, CultureInfo culture, Object[] activationAttributes) bei System.Runtime.Remoting.RemotingConfigHandler.CreateChannelFromConfigEntry(ChannelEntry entry) bei System.Runtime.Remoting.RemotingConfigHandler.ConfigureChannels(RemotingXmlConfigFileData configData, Boolean ensureSecurity) bei System.Runtime.Remoting.RemotingConfigHandler.ConfigureRemoting(RemotingXmlConfigFileData configData, Boolean ensureSecurity)" bei der Remotekonfiguration. bei System.Runtime.Remoting.RemotingConfigHandler.ConfigureRemoting(RemotingXmlConfigFileData configData, Boolean ensureSecurity) bei System.Runtime.Remoting.RemotingConfiguration.Configure(String filename, Boolean ensureSecurity) bei RemoteServerService.MemeoBackgroundService.OnStart(String[] args) Error: (07/15/2014 07:34:31 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (07/15/2014 07:33:50 AM) (Source: MemeoBackgroundService) (EventID: 0) (User: ) Description: Problem starting Memeo Background Service :Ausnahmefehler "System.Reflection.TargetInvocationException: Ein Aufrufziel hat einen Ausnahmefehler verursacht. ---> System.Security.Principal.IdentityNotMappedException: Manche oder alle Identitätsverweise konnten nicht übersetzt werden. bei System.Runtime.Remoting.Channels.Ipc.IpcServerChannel.StartListening(Object data) bei System.Runtime.Remoting.Channels.Ipc.IpcServerChannel..ctor(IDictionary properties, IServerChannelSinkProvider sinkProvider, CommonSecurityDescriptor securityDescriptor) bei System.Runtime.Remoting.Channels.Ipc.IpcChannel..ctor(IDictionary properties, IClientChannelSinkProvider clientSinkProvider, IServerChannelSinkProvider serverSinkProvider) --- Ende der internen Ausnahmestapelüberwachung --- bei System.RuntimeMethodHandle._InvokeConstructor(Object[] args, SignatureStruct& signature, IntPtr declaringType) bei System.Reflection.RuntimeConstructorInfo.Invoke(BindingFlags invokeAttr, Binder binder, Object[] parameters, CultureInfo culture) bei System.RuntimeType.CreateInstanceImpl(BindingFlags bindingAttr, Binder binder, Object[] args, CultureInfo culture, Object[] activationAttributes) bei System.Runtime.Remoting.RemotingConfigHandler.CreateChannelFromConfigEntry(ChannelEntry entry) bei System.Runtime.Remoting.RemotingConfigHandler.ConfigureChannels(RemotingXmlConfigFileData configData, Boolean ensureSecurity) bei System.Runtime.Remoting.RemotingConfigHandler.ConfigureRemoting(RemotingXmlConfigFileData configData, Boolean ensureSecurity)" bei der Remotekonfiguration. bei System.Runtime.Remoting.RemotingConfigHandler.ConfigureRemoting(RemotingXmlConfigFileData configData, Boolean ensureSecurity) bei System.Runtime.Remoting.RemotingConfiguration.Configure(String filename, Boolean ensureSecurity) bei RemoteServerService.MemeoBackgroundService.OnStart(String[] args) Error: (07/14/2014 09:14:05 PM) (Source: Google Update) (EventID: 20) (User: Schrägle-PC) Description: Network Request Error. Error: 0x80072ee7. Http status code: 0. Url=https://www.facebook.com/omaha/update.php Trying config: source=IE, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=auto, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=IE, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=auto, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee7 Error: (07/14/2014 07:46:18 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: cltmng.exe, Version: 2.9.40.12, Zeitstempel: 0x52c3d32c Name des fehlerhaften Moduls: cltmng.exe, Version: 2.9.40.12, Zeitstempel: 0x52c3d32c Ausnahmecode: 0x40000015 Fehleroffset: 0x001dbb03 ID des fehlerhaften Prozesses: 0x1020 Startzeit der fehlerhaften Anwendung: 0xcltmng.exe0 Pfad der fehlerhaften Anwendung: cltmng.exe1 Pfad des fehlerhaften Moduls: cltmng.exe2 Berichtskennung: cltmng.exe3 Error: (07/14/2014 06:33:52 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm avgui.exe, Version 14.0.0.4714 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 15f4 Startzeit: 01cf9f812de5e8a6 Endzeit: 5 Anwendungspfad: C:\Program Files (x86)\AVG\AVG2014\avgui.exe Berichts-ID: 976108e2-0b74-11e4-86dc-8c89a5c0d106 Error: (07/14/2014 06:32:18 PM) (Source: Google Update) (EventID: 20) (User: Schrägle-PC) Description: Network Request Error. Error: 0x80072ee7. Http status code: 0. Url=https://www.facebook.com/omaha/update.php Trying config: source=IE, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=auto, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=IE, direct connection. trying CUP:WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying WinHTTP. Send request returned 0x80072ee7. Http status code 0. trying CUP:iexplore. Send request returned 0x80004005. Http status code 0. Trying config: source=auto, wpad=1, script=. trying CUP:WinHTTP. Send request returned 0x80072ee7 System errors: ============= Error: (07/15/2014 06:13:39 PM) (Source: Service Control Manager) (EventID: 7024) (User: ) Description: Der Dienst "AVGIDSAgent" wurde mit folgendem dienstspezifischem Fehler beendet: %%-536753637. Error: (07/15/2014 06:13:38 PM) (Source: Service Control Manager) (EventID: 7024) (User: ) Description: Der Dienst "AVGIDSAgent" wurde mit folgendem dienstspezifischem Fehler beendet: %%-536753637. Error: (07/15/2014 06:13:37 PM) (Source: Service Control Manager) (EventID: 7024) (User: ) Description: Der Dienst "AVGIDSAgent" wurde mit folgendem dienstspezifischem Fehler beendet: %%-536753637. Error: (07/15/2014 06:13:36 PM) (Source: Service Control Manager) (EventID: 7024) (User: ) Description: Der Dienst "AVGIDSAgent" wurde mit folgendem dienstspezifischem Fehler beendet: %%-536753637. Error: (07/15/2014 06:13:35 PM) (Source: Service Control Manager) (EventID: 7024) (User: ) Description: Der Dienst "AVGIDSAgent" wurde mit folgendem dienstspezifischem Fehler beendet: %%-536753637. Error: (07/15/2014 06:13:34 PM) (Source: Service Control Manager) (EventID: 7024) (User: ) Description: Der Dienst "AVGIDSAgent" wurde mit folgendem dienstspezifischem Fehler beendet: %%-536753637. Error: (07/15/2014 06:13:33 PM) (Source: Service Control Manager) (EventID: 7024) (User: ) Description: Der Dienst "AVGIDSAgent" wurde mit folgendem dienstspezifischem Fehler beendet: %%-536753637. Error: (07/15/2014 06:13:32 PM) (Source: Service Control Manager) (EventID: 7024) (User: ) Description: Der Dienst "AVGIDSAgent" wurde mit folgendem dienstspezifischem Fehler beendet: %%-536753637. Error: (07/15/2014 06:13:22 PM) (Source: Service Control Manager) (EventID: 7024) (User: ) Description: Der Dienst "AVGIDSAgent" wurde mit folgendem dienstspezifischem Fehler beendet: %%-536753637. Error: (07/15/2014 06:13:21 PM) (Source: Service Control Manager) (EventID: 7024) (User: ) Description: Der Dienst "AVGIDSAgent" wurde mit folgendem dienstspezifischem Fehler beendet: %%-536753637. Microsoft Office Sessions: ========================= ==================== Memory info =========================== Percentage of memory in use: 41% Total physical RAM: 6125.63 MB Available physical RAM: 3585.49 MB Total Pagefile: 12249.44 MB Available Pagefile: 9129.54 MB Total Virtual: 8192 MB Available Virtual: 8191.84 MB ==================== Drives ================================ Drive c: (Boot) (Fixed) (Total:880.41 GB) (Free:797.31 GB) NTFS Drive d: (Recover) (Fixed) (Total:50 GB) (Free:16.88 GB) NTFS Drive h: (LS2013) (CDROM) (Total:1.36 GB) (Free:0 GB) CDFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: 86B07AD9) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=880 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=50 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=1 GB) - (Type=12) ==================== End Of Log ============================ Ich habe nochmal die CD eingelegt und es neu aufgespielt, hat aber nichts geholfen |
17.07.2014, 12:46 | #15 |
/// the machine /// TB-Ausbilder | Avira Antivir wird blockiert Adware & Co. deinstallieren
Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter HKLM Group Policy restriction on software: C:\Program Files (x86)\Avira <====== ATTENTION HKLM Group Policy restriction on software: C:\Documents and Settings\All Users\Application Data\Avira <====== ATTENTION Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Scan mit Combofix
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |