|
Plagegeister aller Art und deren Bekämpfung: Hat jemand Zugriff auf meine Daten?Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
06.12.2014, 16:09 | #1 |
| Hat jemand Zugriff auf meine Daten? Hallo Trojaner-Board, ich habe folgendes Problem: Mir ist aufgefallen, dass wenn ich die Eigenschaften einer Datei öffne und auf den Reiter Sicherheit gehe sich dort ein unbekanntes Konto befindet. Werde ich ausspioniert oder was ist das? Ich benutze Windows 7 Home Edition |
06.12.2014, 16:34 | #2 |
/// the machine /// TB-Ausbilder | Hat jemand Zugriff auf meine Daten? hi,
__________________Screenshot bitte.
__________________ |
06.12.2014, 17:07 | #3 |
| Hat jemand Zugriff auf meine Daten? Hier ist der Screenshot.
__________________Kann ich das in Zukunft auch über dropbox machen? hxxps://www.dropbox.com/s/kkynd0s4hgxazmd/Unbenannt.PNG?dl=0 Geändert von Windows 7 (06.12.2014 um 16:50 Uhr) Grund: Fehler |
07.12.2014, 13:52 | #4 |
/// the machine /// TB-Ausbilder | Hat jemand Zugriff auf meine Daten? Nein, bitte Screenshots immer anhängen und nicht irgendwo hosten. Und Logfiles und Co gar nicht anhängen sondern direkt posten. Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
07.12.2014, 14:23 | #5 |
| Hat jemand Zugriff auf meine Daten?FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 07-12-2014 01 Ran by Skin (administrator) on SKIN-PC on 07-12-2014 14:17:08 Running from C:\Downloads\Software Loaded Profile: Skin (Available profiles: Skin & Ansgar) Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe (MICRO-STAR INTERNATIONAL CO., LTD.) C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Microsoft Corporation) C:\Windows\System32\alg.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (Intel Corporation) C:\Windows\System32\igfxTray.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe (Dropbox, Inc.) C:\Users\Skin\AppData\Roaming\Dropbox\bin\Dropbox.exe (VideoLAN) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_239.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_239.exe (FreeDownloadManager.ORG) C:\Program Files (x86)\Free Download Manager\fdm.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7575768 2014-11-08] (Realtek Semiconductor) HKLM-x32\...\Run: [IMSS] => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [132920 2013-05-31] (Intel Corporation) HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292088 2013-02-22] (Intel Corporation) HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2014-08-19] (AVAST Software) HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-10-02] (Apple Inc.) HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [157480 2014-10-15] (Apple Inc.) Winlogon\Notify\igfxcui: igfxdev.dll [X] HKU\S-1-5-21-1582827518-2800864390-4253646256-1001\...\Policies\system: [LogonHoursAction] 2 HKU\S-1-5-21-1582827518-2800864390-4253646256-1001\...\Policies\system: [DontDisplayLogonHoursWarnings] 1 Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\iSCTsysTray.lnk ShortcutTarget: iSCTsysTray.lnk -> C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray.exe (Intel Corporation) Startup: C:\Users\Skin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Skin\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software) GroupPolicyUsers\S-1-5-21-1582827518-2800864390-4253646256-1040\User: Group Policy restriction detected <======= ATTENTION ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKU\S-1-5-21-1582827518-2800864390-4253646256-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.nationzoom.com/web/?type=ds&ts=1389711460&from=slbnew&uid=ST500DM002-1BD142_Z3TPZBDRXXXXZ3TPZBDR&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.nationzoom.com/web/?type=ds&ts=1389711460&from=slbnew&uid=ST500DM002-1BD142_Z3TPZBDRXXXXZ3TPZBDR&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO: DVDVideoSoft IE Extension -> {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} -> C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll (DVDVideoSoft Ltd.) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll (Oracle Corporation) BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Free Download Manager -> {CC59E0F9-7E43-44FA-9FAA-8377850BF205} -> C:\Program Files (x86)\Free Download Manager\iefdm2.dll (FreeDownloadManager.ORG) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: DVDVideoSoft IE Extension -> {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} -> C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll (DVDVideoSoft Ltd.) Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{62C91E55-8C57-4112-9F5D-33A7F95206A9}: [NameServer] 8.8.4.4 FireFox: ======== FF ProfilePath: C:\Users\Skin\AppData\Roaming\Mozilla\Firefox\Profiles\yykgdiqs.default FF NetworkProxy: "type", 0 FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_239.dll () FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_239.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.0.72 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @videolan.org/vlc,version=2.1.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-1582827518-2800864390-4253646256-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Skin\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Plugin HKU\S-1-5-21-1582827518-2800864390-4253646256-1001: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll () FF Extension: WOT - C:\Users\Skin\AppData\Roaming\Mozilla\Firefox\Profiles\yykgdiqs.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} [2013-12-27] FF Extension: DVDVideoSoft YouTube MP3 and Video Download - C:\Users\Skin\AppData\Roaming\Mozilla\Firefox\Profiles\yykgdiqs.default\Extensions\{B64D9B05-48E1-4CEB-BF58-E0643994E900} [2014-12-06] FF Extension: Deutsch (DE) Language Pack - C:\Users\Skin\AppData\Roaming\Mozilla\Firefox\Profiles\yykgdiqs.default\Extensions\langpack-de@firefox.mozilla.org.xpi [2014-04-17] FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{B64D9B05-48E1-4CEB-BF58-E0643994E900}.xpi [2014-12-06] FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-12-24] FF HKU\S-1-5-21-1582827518-2800864390-4253646256-1001\...\Firefox\Extensions: [{B64D9B05-48E1-4CEB-BF58-E0643994E900}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff FF Extension: DVDVideoSoft YouTube MP3 and Video Download - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff [2014-12-06] FF Extension: Free Download Manager plugin - C:\ProgramData\Free Download Manager\Firefox\Extensions\1.6.0.8 [2014-11-10] FF Extension: No Name - wrc@avast.com [Not Found] FF Extension: No Name - fdm_ffext@freedownloadmanager.org [Not Found] Chrome: ======= CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-08-19] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-08-19] (AVAST Software) S3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [266240 2012-06-05] (Brother Industries, Ltd.) [File not signed] S2 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [402192 2013-12-20] (BlueStack Systems, Inc.) R2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [385808 2013-12-20] (BlueStack Systems, Inc.) R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2443960 2014-10-30] (Microsoft Corporation) S3 fussvc; C:\Program Files (x86)\Windows Kits\8.0\App Certification Kit\fussvc.exe [139776 2012-07-25] (Microsoft Corporation) [File not signed] R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [318568 2014-11-27] (Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [732160 2012-12-10] (Intel(R) Corporation) [File not signed] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [803872 2012-12-10] (Intel(R) Corporation) R2 ISCTAgent; C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe [149032 2012-10-22] () R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [167736 2013-05-31] (Intel Corporation) R2 MSI_Trigger_Service; C:\Program Files (x86)\MSI\MSITrigger\MSI_Trigger_Service.exe [29728 2013-05-28] (MICRO-STAR INTERNATIONAL CO., LTD.) S3 Te.Service; C:\Program Files (x86)\Windows Kits\8.0\Testing\Runtimes\TAEF\Wex.Services.exe [126976 2012-07-25] (Microsoft Corporation) [File not signed] R2 Themes; C:\Windows\system32\themeservice.dll [44544 2013-12-28] (Microsoft Corporation) [File not signed] ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-08-19] () R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-08-19] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-08-19] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-08-19] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1041168 2014-11-22] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427360 2014-08-19] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [92008 2014-08-19] (AVAST Software) R1 aswTdi; C:\Windows\System32\Drivers\aswTdi.sys [64288 2013-12-19] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [224896 2014-08-19] () S2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [310728 2013-12-25] () R2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [114448 2013-12-20] (BlueStack Systems) R3 ikbevent; C:\Windows\System32\DRIVERS\ikbevent.sys [20968 2012-10-22] () R3 imsevent; C:\Windows\System32\DRIVERS\imsevent.sys [19944 2012-10-22] () R3 ISCT; C:\Windows\System32\DRIVERS\ISCTD64.sys [46568 2014-11-08] () R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [42696 2013-12-25] () R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [100312 2014-11-20] (Intel Corporation) S3 RTL8192cu; C:\Windows\System32\DRIVERS\RTL8192cu.sys [806400 2011-07-14] (Realtek Semiconductor Corporation ) R3 SmbDrvI; C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys [34544 2014-11-20] (Synaptics Incorporated) S3 usbio; C:\Windows\System32\Drivers\dsiarhwprog_x64.sys [54640 2014-03-24] (Thesycon GmbH, Germany) S3 VBoxUSB; C:\Windows\System32\Drivers\VBoxUSB.sys [113936 2013-12-18] (Oracle Corporation) U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [59904 2009-07-14] (Microsoft Corporation) R3 WPRO_41_2001; C:\Windows\System32\drivers\WPRO_41_2001.sys [34752 2014-12-07] () S3 MSICDSetup; \??\D:\CDriver64.sys [X] S3 NTIOLib_1_0_C; \??\D:\NTIOLib_X64.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-12-07 14:17 - 2014-12-07 14:17 - 00000000 ____D () C:\FRST 2014-12-07 13:36 - 2014-12-07 13:36 - 00000000 ____D () C:\Users\Skin\Desktop\X 2014-12-07 11:56 - 2014-12-07 11:56 - 00094656 _____ (CACE Technologies) C:\Windows\system32\WPRO_41_2001woem.tmp 2014-12-06 16:51 - 2014-12-07 13:11 - 00000000 ___RD () C:\Users\Skin\Dropbox 2014-12-06 16:51 - 2014-12-06 16:51 - 00001121 _____ () C:\Users\Skin\Desktop\Dropbox.lnk 2014-12-06 16:47 - 2014-12-06 16:47 - 00000000 ____D () C:\Users\Skin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2014-12-06 16:43 - 2014-12-07 13:11 - 00000000 ____D () C:\Users\Skin\AppData\Roaming\Dropbox 2014-12-06 15:17 - 2014-12-06 15:17 - 00001512 _____ () C:\Users\Public\Desktop\Free Video to MP3 Converter.lnk 2014-12-06 15:17 - 2014-12-06 15:17 - 00001245 _____ () C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk 2014-12-06 14:51 - 2014-12-06 14:51 - 00000000 ____D () C:\Program Files (x86)\Free Codec Pack 2014-12-06 13:18 - 2014-12-07 13:41 - 00000000 ____D () C:\Program Files (x86)\Cloud Downloader 2.3 2014-12-05 21:47 - 2014-12-05 21:47 - 00000000 __SHD () C:\Users\Skin\AppData\Local\EmieBrowserModeList 2014-12-05 17:48 - 2014-12-05 18:05 - 00000000 ____D () C:\Users\Skin\Desktop\Neuer Ordner 2014-11-29 15:29 - 2014-11-29 15:29 - 00000451 _____ () C:\Windows\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat 2014-11-27 20:28 - 2014-11-27 20:28 - 22905344 _____ (Intel Corporation) C:\Windows\system32\igdfcl64.dll 2014-11-27 20:28 - 2014-11-27 20:28 - 17837568 _____ (Intel Corporation) C:\Windows\SysWOW64\igdfcl32.dll 2014-11-27 20:28 - 2014-11-27 20:28 - 11815600 _____ (Intel Corporation) C:\Windows\SysWOW64\igd10iumd32.dll 2014-11-27 20:28 - 2014-11-27 20:28 - 08401408 _____ (Intel Corporation) C:\Windows\system32\ig7icd64.dll 2014-11-27 20:28 - 2014-11-27 20:28 - 06553600 _____ (Intel Corporation) C:\Windows\SysWOW64\ig7icd32.dll 2014-11-27 20:28 - 2014-11-27 20:28 - 04353640 _____ (Intel Corporation) C:\Windows\system32\Gfxv4_0.exe 2014-11-27 20:28 - 2014-11-27 20:28 - 04350056 _____ (Intel Corporation) C:\Windows\system32\Gfxv2_0.exe 2014-11-27 20:28 - 2014-11-27 20:28 - 03828152 _____ (Intel Corporation) C:\Windows\system32\Drivers\igdkmd64.sys 2014-11-27 20:28 - 2014-11-27 20:28 - 01677824 _____ (Intel Corporation) C:\Windows\system32\igdrcl64.dll 2014-11-27 20:28 - 2014-11-27 20:28 - 01555456 _____ (Intel Corporation) C:\Windows\SysWOW64\igdrcl32.dll 2014-11-27 20:28 - 2014-11-27 20:28 - 00931944 _____ (Intel Corporation) C:\Windows\system32\GfxUIEx.exe 2014-11-27 20:28 - 2014-11-27 20:28 - 00545896 _____ (Intel Corporation) C:\Windows\system32\DPTopologyApp.exe 2014-11-27 20:28 - 2014-11-27 20:28 - 00545384 _____ (Intel Corporation) C:\Windows\system32\DPTopologyAppv2_0.exe 2014-11-27 20:28 - 2014-11-27 20:28 - 00450576 _____ (Intel Corporation) C:\Windows\system32\igdmd64.dll 2014-11-27 20:28 - 2014-11-27 20:28 - 00399464 _____ (Intel Corporation) C:\Windows\system32\CustomModeApp.exe 2014-11-27 20:28 - 2014-11-27 20:28 - 00398952 _____ (Intel Corporation) C:\Windows\system32\CustomModeAppv2_0.exe 2014-11-27 20:28 - 2014-11-27 20:28 - 00372736 _____ (Intel Corporation) C:\Windows\system32\igfxOSP.dll 2014-11-27 20:28 - 2014-11-27 20:28 - 00361984 _____ (Intel Corporation) C:\Windows\SysWOW64\igdmd32.dll 2014-11-27 20:28 - 2014-11-27 20:28 - 00358912 _____ (Intel Corporation) C:\Windows\system32\IntelOpenCL64.dll 2014-11-27 20:28 - 2014-11-27 20:28 - 00330240 _____ (Intel Corporation) C:\Windows\system32\igdbcl64.dll 2014-11-27 20:28 - 2014-11-27 20:28 - 00294912 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelOpenCL32.dll 2014-11-27 20:28 - 2014-11-27 20:28 - 00291328 _____ (Intel Corporation) C:\Windows\SysWOW64\igdbcl32.dll 2014-11-27 20:28 - 2014-11-27 20:28 - 00280680 _____ (Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe 2014-11-27 20:28 - 2014-11-27 20:28 - 00254976 _____ () C:\Windows\system32\igfxCPL.cpl 2014-11-27 20:28 - 2014-11-27 20:28 - 00223744 _____ () C:\Windows\system32\igdde64.dll 2014-11-27 20:28 - 2014-11-27 20:28 - 00214016 _____ (Intel Corporation) C:\Windows\system32\igfxDTCM.dll 2014-11-27 20:28 - 2014-11-27 20:28 - 00193128 _____ (Intel Corporation) C:\Windows\system32\igfxext.exe 2014-11-27 20:28 - 2014-11-27 20:28 - 00183808 _____ () C:\Windows\SysWOW64\igdde32.dll 2014-11-27 20:28 - 2014-11-27 20:28 - 00183296 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v3958.dll 2014-11-27 20:28 - 2014-11-27 20:28 - 00160256 _____ () C:\Windows\system32\igdail64.dll 2014-11-27 20:28 - 2014-11-27 20:28 - 00154728 _____ (Intel Corporation) C:\Windows\system32\difx64.exe 2014-11-27 20:28 - 2014-11-27 20:28 - 00143360 _____ () C:\Windows\SysWOW64\igdail32.dll 2014-11-27 20:28 - 2014-11-27 20:28 - 00070144 _____ () C:\Windows\system32\igfxCUIServicePS.dll 2014-11-27 20:28 - 2014-11-27 20:28 - 00069632 _____ ( ) C:\Windows\system32\igfxDHLibv2_0.dll 2014-11-27 20:28 - 2014-11-27 20:28 - 00058368 _____ ( ) C:\Windows\system32\igfxDHLib.dll 2014-11-27 20:28 - 2014-11-27 20:28 - 00031408 _____ (Intel Corporation) C:\Windows\system32\igfxexps.dll 2014-11-27 20:28 - 2014-11-27 20:28 - 00030720 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxexps32.dll 2014-11-27 20:28 - 2014-11-27 20:28 - 00010752 _____ ( ) C:\Windows\system32\igfxDILib.dll 2014-11-27 20:28 - 2014-11-27 20:28 - 00010240 _____ ( ) C:\Windows\system32\igfxEMLibv2_0.dll 2014-11-27 20:28 - 2014-11-27 20:28 - 00010240 _____ ( ) C:\Windows\system32\igfxEMLib.dll 2014-11-27 20:28 - 2014-11-27 20:28 - 00010240 _____ ( ) C:\Windows\system32\igfxDILibv2_0.dll 2014-11-27 20:28 - 2014-11-27 20:28 - 00005120 _____ ( ) C:\Windows\system32\igfxLHMLibv2_0.dll 2014-11-27 20:28 - 2014-11-27 20:28 - 00005120 _____ ( ) C:\Windows\system32\igfxLHMLib.dll 2014-11-27 20:28 - 2014-11-27 20:28 - 00002532 _____ () C:\Windows\system32\iglhxs64.vp 2014-11-27 20:18 - 2014-11-27 20:18 - 00000894 _____ () C:\Users\Skin\Desktop\Sweet Home 3D.lnk 2014-11-27 20:18 - 2014-11-27 20:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eTeks Sweet Home 3D 2014-11-27 20:18 - 2014-11-27 20:18 - 00000000 ____D () C:\Program Files\Sweet Home 3D 2014-11-23 20:56 - 2014-11-23 21:05 - 00001531 _____ () C:\Users\Skin\Desktop\Latein.txt 2014-11-20 20:48 - 2014-11-20 20:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Project 64 2.0 2014-11-20 18:27 - 2014-11-20 18:27 - 00100312 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverx64.sys 2014-11-20 18:27 - 2014-11-20 18:27 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf 2014-11-20 18:26 - 2014-11-20 18:26 - 01795952 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll 2014-11-20 18:26 - 2014-11-20 18:26 - 00454416 _____ (Intel(R) Corporation) C:\Windows\system32\Drivers\IntcDAud.sys 2014-11-20 18:26 - 2014-11-20 18:26 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf 2014-11-20 18:26 - 2014-11-20 18:26 - 00000000 ____D () C:\Program Files\Synaptics 2014-11-20 18:25 - 2014-11-20 18:25 - 00034544 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\Smb_driver_Intel.sys 2014-11-20 18:14 - 2014-06-30 23:24 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll 2014-11-20 18:14 - 2014-06-30 23:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardres.dll 2014-11-20 18:14 - 2014-06-06 07:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe 2014-11-20 18:14 - 2014-06-06 07:12 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe 2014-11-20 18:14 - 2014-03-09 22:48 - 01389208 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe 2014-11-20 18:14 - 2014-03-09 22:48 - 00171160 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll 2014-11-20 18:14 - 2014-03-09 22:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardagt.exe 2014-11-20 18:14 - 2014-03-09 22:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\infocardapi.dll 2014-11-20 18:12 - 2014-11-20 18:12 - 00003212 _____ () C:\Windows\System32\Tasks\Driver Booster Scan 2014-11-20 18:12 - 2014-11-20 18:12 - 00003156 _____ () C:\Windows\System32\Tasks\Driver Booster Update 2014-11-20 18:01 - 2014-12-04 20:07 - 00002150 _____ () C:\Users\Public\Desktop\Driver Booster 2.lnk 2014-11-20 18:01 - 2014-11-20 18:04 - 00000000 ____D () C:\AdwCleaner 2014-11-20 18:01 - 2014-11-20 18:01 - 00000000 ____D () C:\ProgramData\ProductData 2014-11-20 18:01 - 2014-11-20 18:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 2 2014-11-20 18:00 - 2014-11-20 18:00 - 00000000 ____D () C:\Windows\Tasks\ImCleanDisabled 2014-11-20 16:33 - 2014-11-11 04:08 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2014-11-20 16:33 - 2014-11-11 04:08 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll 2014-11-20 16:33 - 2014-11-11 03:44 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2014-11-20 16:33 - 2014-11-11 03:44 - 00186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll 2014-11-19 17:23 - 2014-11-20 20:48 - 00000000 ____D () C:\Program Files (x86)\Project64 2.1 2014-11-15 14:08 - 2014-11-15 14:08 - 00000000 ____D () C:\Windows\SysWOW64\XPSViewer 2014-11-15 14:08 - 2014-11-15 14:08 - 00000000 ____D () C:\Users\Skin\AppData\Local\Ubisoft 2014-11-15 14:08 - 2014-11-15 14:08 - 00000000 ____D () C:\Program Files (x86)\MSBuild 2014-11-15 14:07 - 2014-11-15 14:07 - 00000000 ____D () C:\Program Files\Reference Assemblies 2014-11-15 14:07 - 2014-11-15 14:07 - 00000000 ____D () C:\Program Files\MSBuild 2014-11-15 03:59 - 2014-11-07 20:23 - 00341168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-11-15 03:59 - 2014-11-06 05:04 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-11-15 03:59 - 2014-11-06 04:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-11-15 03:59 - 2014-11-06 04:35 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-11-15 03:59 - 2014-11-06 04:30 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-11-15 03:59 - 2014-11-06 04:12 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-11-15 03:59 - 2014-11-06 04:10 - 19781632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-11-15 03:59 - 2014-11-06 04:07 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-11-15 03:59 - 2014-11-06 04:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-11-15 03:59 - 2014-11-06 03:42 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-11-15 03:59 - 2014-11-06 03:41 - 00716800 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-11-15 03:59 - 2014-11-06 03:36 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-11-15 03:59 - 2014-11-06 03:34 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-11-15 03:59 - 2014-11-06 03:22 - 00688640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-11-15 03:59 - 2014-11-06 02:48 - 01310208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-11-15 03:58 - 2014-11-07 20:49 - 00388272 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-11-15 03:58 - 2014-11-06 05:03 - 25110016 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-11-15 03:58 - 2014-11-06 05:03 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-11-15 03:58 - 2014-11-06 04:47 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-11-15 03:58 - 2014-11-06 04:46 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-11-15 03:58 - 2014-11-06 04:44 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-11-15 03:58 - 2014-11-06 04:43 - 02884096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-11-15 03:58 - 2014-11-06 04:36 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-11-15 03:58 - 2014-11-06 04:31 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-11-15 03:58 - 2014-11-06 04:30 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-11-15 03:58 - 2014-11-06 04:29 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-11-15 03:58 - 2014-11-06 04:28 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-11-15 03:58 - 2014-11-06 04:23 - 06040064 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-11-15 03:58 - 2014-11-06 04:20 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-11-15 03:58 - 2014-11-06 04:16 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-11-15 03:58 - 2014-11-06 04:13 - 00501248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-11-15 03:58 - 2014-11-06 04:13 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-11-15 03:58 - 2014-11-06 04:10 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-11-15 03:58 - 2014-11-06 04:05 - 02277376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-11-15 03:58 - 2014-11-06 04:04 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-11-15 03:58 - 2014-11-06 04:02 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-11-15 03:58 - 2014-11-06 04:00 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-11-15 03:58 - 2014-11-06 04:00 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-11-15 03:58 - 2014-11-06 03:59 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-11-15 03:58 - 2014-11-06 03:58 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-11-15 03:58 - 2014-11-06 03:57 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-11-15 03:58 - 2014-11-06 03:48 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-11-15 03:58 - 2014-11-06 03:41 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-11-15 03:58 - 2014-11-06 03:39 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-11-15 03:58 - 2014-11-06 03:38 - 02124288 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-11-15 03:58 - 2014-11-06 03:37 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-11-15 03:58 - 2014-11-06 03:30 - 14390272 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-11-15 03:58 - 2014-11-06 03:21 - 04298240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-11-15 03:58 - 2014-11-06 03:21 - 02051072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-11-15 03:58 - 2014-11-06 03:20 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-11-15 03:58 - 2014-11-06 03:17 - 02365440 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-11-15 03:58 - 2014-11-06 03:04 - 01550336 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-11-15 03:58 - 2014-11-06 03:03 - 12819456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-11-15 03:58 - 2014-11-06 02:53 - 00799232 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-11-15 03:58 - 2014-11-06 02:52 - 01892864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-11-15 03:58 - 2014-11-06 02:47 - 00708096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-11-15 02:48 - 2014-10-14 03:16 - 00155064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2014-11-15 02:48 - 2014-10-14 03:13 - 00683520 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll 2014-11-15 02:48 - 2014-10-14 03:12 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-11-15 02:48 - 2014-10-14 03:09 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2014-11-15 02:48 - 2014-10-14 03:07 - 00681984 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2014-11-15 02:48 - 2014-10-14 02:50 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2014-11-15 02:48 - 2014-10-14 02:49 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2014-11-15 02:48 - 2014-10-14 02:47 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2014-11-15 02:48 - 2014-10-14 02:46 - 00681984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2014-11-15 02:38 - 2014-09-19 10:42 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2014-11-15 02:38 - 2014-09-19 10:42 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2014-11-15 02:38 - 2014-09-19 10:42 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2014-11-15 02:38 - 2014-09-19 10:42 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2014-11-15 02:38 - 2014-09-19 10:42 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2014-11-15 02:38 - 2014-09-19 10:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2014-11-15 02:38 - 2014-09-19 10:23 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2014-11-15 02:38 - 2014-09-19 10:23 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2014-11-15 02:38 - 2014-09-19 10:23 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2014-11-15 02:38 - 2014-09-19 10:23 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2014-11-15 02:38 - 2014-09-19 10:23 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2014-11-15 02:38 - 2014-09-19 10:23 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2014-11-15 02:34 - 2014-10-03 03:12 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll 2014-11-15 02:34 - 2014-10-03 03:11 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll 2014-11-15 02:34 - 2014-10-03 03:11 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll 2014-11-15 02:34 - 2014-10-03 03:11 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll 2014-11-15 02:34 - 2014-10-03 03:11 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll 2014-11-15 02:34 - 2014-10-03 02:44 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll 2014-11-15 02:34 - 2014-10-03 02:44 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll 2014-11-15 02:34 - 2014-10-03 02:44 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll 2014-11-15 01:03 - 2014-08-21 07:43 - 01882624 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2014-11-15 01:03 - 2014-08-21 07:40 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2014-11-15 01:03 - 2014-08-21 07:26 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2014-11-15 01:03 - 2014-08-21 07:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2014-11-15 00:54 - 2014-08-12 03:02 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL 2014-11-15 00:54 - 2014-08-12 02:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL 2014-11-14 23:44 - 2014-10-14 03:13 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2014-11-14 23:44 - 2014-10-14 02:50 - 02363904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2014-11-14 23:40 - 2014-10-18 03:05 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll 2014-11-14 23:40 - 2014-10-18 02:33 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll 2014-11-14 22:53 - 2014-10-25 02:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll 2014-11-14 22:53 - 2014-10-25 02:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll 2014-11-14 22:53 - 2014-10-10 01:57 - 03198976 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-11-14 15:18 - 2014-11-14 15:18 - 00000000 ____D () C:\Users\Ansgar\AppData\Roaming\java 2014-11-13 21:50 - 2014-11-13 21:50 - 00000000 ____D () C:\Users\Skin\Documents\Benutzerdefinierte Office-Vorlagen 2014-11-13 21:04 - 2014-11-13 21:04 - 00002176 _____ () C:\Users\Skin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft SkyDrive.lnk 2014-11-13 21:04 - 2014-11-13 21:04 - 00002124 _____ () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft SkyDrive.lnk 2014-11-13 21:04 - 2014-11-13 21:04 - 00002124 _____ () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft SkyDrive.lnk 2014-11-13 21:04 - 2014-11-13 21:04 - 00000000 ___RD () C:\Users\Skin\SkyDrive 2014-11-13 21:04 - 2014-11-13 21:04 - 00000000 ____D () C:\ProgramData\Microsoft SkyDrive 2014-11-13 21:04 - 2014-11-13 21:04 - 00000000 ____D () C:\Program Files (x86)\Microsoft SkyDrive 2014-11-13 20:59 - 2014-11-13 20:59 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform 2014-11-13 20:58 - 2014-11-27 21:09 - 00000000 ____D () C:\Program Files\Microsoft Office 15 2014-11-13 20:58 - 2014-11-13 21:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2014-11-11 21:02 - 2014-12-04 20:07 - 00000000 ____D () C:\Users\Skin\AppData\Local\Unity 2014-11-11 18:46 - 2014-12-07 11:57 - 00004980 _____ () C:\Windows\setupact.log 2014-11-11 18:46 - 2014-12-07 11:56 - 00019672 _____ () C:\Windows\PFRO.log 2014-11-11 18:46 - 2014-11-11 18:46 - 00000000 _____ () C:\Windows\setuperr.log 2014-11-10 20:35 - 2014-12-06 16:44 - 00000000 ____D () C:\Users\Skin\AppData\Roaming\Free Download Manager 2014-11-10 20:35 - 2014-11-10 20:35 - 00001071 _____ () C:\Users\Skin\Desktop\Free Download Manager.lnk 2014-11-10 20:35 - 2014-11-10 20:35 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Download Manager 2014-11-10 20:35 - 2014-11-10 20:35 - 00000000 ____D () C:\ProgramData\Free Download Manager 2014-11-10 20:35 - 2014-11-10 20:35 - 00000000 ____D () C:\Program Files (x86)\Free Download Manager 2014-11-10 20:25 - 2014-11-11 19:51 - 00000000 ____D () C:\Users\Skin\AppData\Local\pangu 2014-11-10 20:20 - 2014-11-10 20:24 - 44435904 _____ () C:\Users\Skin\Desktop\Pangu8_v1.2.1.exe 2014-11-10 17:46 - 2014-11-10 17:46 - 03618816 _____ () C:\Users\Skin\Downloads\tinyumbrella-7.12.00.exe 2014-11-10 16:44 - 2014-11-10 16:44 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-11-09 16:21 - 2014-11-09 16:21 - 00000000 ____D () C:\Users\Skin\AppData\Roaming\java 2014-11-09 16:11 - 2014-11-09 16:11 - 00000000 ____D () C:\Users\Skin\Downloads\ifaith-v1.5.9 2014-11-09 16:10 - 2014-11-09 16:11 - 04984425 _____ () C:\Users\Skin\Downloads\ifaith-v1.5.9.zip 2014-11-09 16:02 - 2014-11-09 16:02 - 00000000 ____D () C:\Users\Skin\Downloads\redsn0w_win_0.9.15b3(1) 2014-11-09 15:58 - 2014-11-09 16:01 - 17279732 _____ () C:\Users\Skin\Downloads\redsn0w_win_0.9.15b3(1).zip 2014-11-09 15:33 - 2014-11-10 17:47 - 00024335 _____ () C:\Users\Skin\Downloads\umbrella.log 2014-11-09 15:32 - 2014-11-09 15:31 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-11-09 15:31 - 2014-11-09 15:31 - 00000000 ____D () C:\Program Files (x86)\Java 2014-11-09 15:28 - 2014-11-09 15:30 - 29727656 _____ (Oracle Corporation) C:\Users\Skin\Downloads\jre-8u25-windows-i586.exe 2014-11-09 15:27 - 2014-11-09 15:27 - 00000000 ____D () C:\ProgramData\Sun 2014-11-09 15:27 - 2014-11-09 15:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-11-09 15:17 - 2014-11-09 15:26 - 92658088 _____ (Oracle Corporation) C:\Users\Skin\Downloads\jre-8u25-windows-x64.exe 2014-11-09 11:38 - 2014-11-09 11:38 - 00638888 _____ (Oracle Corporation) C:\Users\Skin\Downloads\jxpiinstall.exe 2014-11-09 11:34 - 2014-11-09 11:36 - 03458048 _____ () C:\Users\Skin\Downloads\tinyumbrella-7.11.00.exe 2014-11-08 16:03 - 2014-11-08 16:03 - 00000113 _____ () C:\Users\Skin\Desktop\Soundcloud.url 2014-11-08 15:45 - 2014-11-08 15:45 - 01488384 _____ () C:\Users\Skin\Downloads\msxml6.msi 2014-11-08 15:42 - 2014-11-08 15:42 - 03707392 _____ () C:\Users\Skin\Downloads\msxml6_ia64.msi 2014-11-08 15:31 - 2014-11-08 15:31 - 02617344 _____ () C:\Users\Skin\Downloads\msxml6_x64.msi 2014-11-08 15:29 - 2014-11-08 15:29 - 00001070 _____ () C:\Users\Public\Desktop\VLC media player.lnk 2014-11-08 15:27 - 2014-11-08 15:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox 2014-11-08 15:27 - 2014-07-15 16:16 - 00863528 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxDrv.sys 2014-11-08 15:27 - 2014-07-15 16:15 - 00129168 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxUSBMon.sys 2014-11-08 15:24 - 2014-11-08 15:24 - 00001783 _____ () C:\Users\Public\Desktop\iTunes.lnk 2014-11-08 15:24 - 2014-11-08 15:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2014-11-08 15:24 - 2014-11-08 15:24 - 00000000 ____D () C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7 2014-11-08 15:24 - 2014-11-08 15:24 - 00000000 ____D () C:\Program Files\iTunes 2014-11-08 15:24 - 2014-11-08 15:24 - 00000000 ____D () C:\Program Files\iPod 2014-11-08 15:24 - 2014-11-08 15:24 - 00000000 ____D () C:\Program Files (x86)\iTunes 2014-11-08 15:10 - 2014-11-08 15:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime 2014-11-08 15:09 - 2014-11-08 15:10 - 00000000 ____D () C:\Program Files (x86)\QuickTime 2014-11-08 14:34 - 2014-11-08 14:34 - 00046568 _____ () C:\Windows\system32\Drivers\ISCTD64.sys 2014-11-08 14:32 - 2014-11-27 20:28 - 12196712 _____ (Intel Corporation) C:\Windows\system32\igd10iumd64.dll 2014-11-08 14:32 - 2014-11-27 20:28 - 10956576 _____ (Intel Corporation) C:\Windows\system32\igdumdim64.dll 2014-11-08 14:32 - 2014-11-27 20:28 - 10474536 _____ (Intel Corporation) C:\Windows\SysWOW64\igdumdim32.dll 2014-11-08 14:32 - 2014-11-27 20:28 - 04598392 _____ (Intel Corporation) C:\Windows\system32\igdusc64.dll 2014-11-08 14:32 - 2014-11-27 20:28 - 03663128 _____ (Intel Corporation) C:\Windows\SysWOW64\igdusc32.dll 2014-11-08 14:32 - 2014-11-27 20:28 - 00665088 _____ (Intel Corporation) C:\Windows\system32\igfxDH.dll 2014-11-08 14:32 - 2014-11-27 20:28 - 00503400 _____ (Intel Corporation) C:\Windows\system32\igfxEM.exe 2014-11-08 14:32 - 2014-11-27 20:28 - 00318568 _____ (Intel Corporation) C:\Windows\system32\igfxCUIService.exe 2014-11-08 14:32 - 2014-11-27 20:28 - 00272384 _____ (Intel Corporation) C:\Windows\system32\igfxDI.dll 2014-11-08 14:32 - 2014-11-27 20:28 - 00250368 _____ (Intel Corporation) C:\Windows\system32\igfxLHM.dll 2014-11-08 14:32 - 2014-11-27 20:28 - 00245864 _____ (Intel Corporation) C:\Windows\system32\igfxHK.exe 2014-11-08 14:32 - 2014-11-08 14:32 - 02813952 _____ () C:\Windows\system32\iglhxa64.cpa 2014-11-08 14:32 - 2014-11-08 14:32 - 02023936 _____ (Intel Corporation) C:\Windows\system32\igfxcmjit64.dll 2014-11-08 14:32 - 2014-11-08 14:32 - 01756160 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmjit32.dll 2014-11-08 14:32 - 2014-11-08 14:32 - 01137080 _____ (Intel Corporation) C:\Windows\system32\iglhsip64.dll 2014-11-08 14:32 - 2014-11-08 14:32 - 01132960 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhsip32.dll 2014-11-08 14:32 - 2014-11-08 14:32 - 00734720 _____ (Intel Corporation) C:\Windows\system32\MetroIntelGenericUIFramework.dll 2014-11-08 14:32 - 2014-11-08 14:32 - 00218808 _____ (Intel Corporation) C:\Windows\system32\iglhcp64.dll 2014-11-08 14:32 - 2014-11-08 14:32 - 00188456 _____ (Intel Corporation) C:\Windows\system32\igfxcmrt64.dll 2014-11-08 14:32 - 2014-11-08 14:32 - 00187508 _____ () C:\Windows\system32\resTHA.cui 2014-11-08 14:32 - 2014-11-08 14:32 - 00184320 _____ (Intel Corporation) C:\Windows\system32\igfx11cmrt64.dll 2014-11-08 14:32 - 2014-11-08 14:32 - 00183800 _____ (Intel Corporation) C:\Windows\SysWOW64\iglhcp32.dll 2014-11-08 14:32 - 2014-11-08 14:32 - 00182784 _____ (Intel Corporation) C:\Windows\system32\igfxCoIn_v3945.dll 2014-11-08 14:32 - 2014-11-08 14:32 - 00180324 _____ () C:\Windows\system32\resELL.cui 2014-11-08 14:32 - 2014-11-08 14:32 - 00176180 _____ () C:\Windows\system32\resRUS.cui 2014-11-08 14:32 - 2014-11-08 14:32 - 00162036 _____ () C:\Windows\system32\resARA.cui 2014-11-08 14:32 - 2014-11-08 14:32 - 00161492 _____ () C:\Windows\system32\resHEB.cui 2014-11-08 14:32 - 2014-11-08 14:32 - 00161428 _____ () C:\Windows\system32\resJPN.cui 2014-11-08 14:32 - 2014-11-08 14:32 - 00159056 _____ (Intel Corporation) C:\Windows\SysWOW64\igfxcmrt32.dll 2014-11-08 14:32 - 2014-11-08 14:32 - 00156852 _____ () C:\Windows\system32\resFRA.cui 2014-11-08 14:32 - 2014-11-08 14:32 - 00156836 _____ () C:\Windows\system32\resHUN.cui 2014-11-08 14:32 - 2014-11-08 14:32 - 00155140 _____ () C:\Windows\system32\resKOR.cui 2014-11-08 14:32 - 2014-11-08 14:32 - 00155044 _____ () C:\Windows\system32\resITA.cui 2014-11-08 14:32 - 2014-11-08 14:32 - 00155044 _____ () C:\Windows\system32\resDEU.cui 2014-11-08 14:32 - 2014-11-08 14:32 - 00154884 _____ () C:\Windows\system32\resROM.cui 2014-11-08 14:32 - 2014-11-08 14:32 - 00154772 _____ () C:\Windows\system32\resESN.cui 2014-11-08 14:32 - 2014-11-08 14:32 - 00154624 _____ (Intel Corporation) C:\Windows\SysWOW64\igfx11cmrt32.dll 2014-11-08 14:32 - 2014-11-08 14:32 - 00154340 _____ () C:\Windows\system32\resPLK.cui 2014-11-08 14:32 - 2014-11-08 14:32 - 00154196 _____ () C:\Windows\system32\resSKY.cui 2014-11-08 14:32 - 2014-11-08 14:32 - 00154004 _____ () C:\Windows\system32\resNLD.cui 2014-11-08 14:32 - 2014-11-08 14:32 - 00153444 _____ () C:\Windows\system32\resPTB.cui 2014-11-08 14:32 - 2014-11-08 14:32 - 00153300 _____ () C:\Windows\system32\resTRK.cui 2014-11-08 14:32 - 2014-11-08 14:32 - 00153268 _____ () C:\Windows\system32\resCSY.cui 2014-11-08 14:32 - 2014-11-08 14:32 - 00153140 _____ () C:\Windows\system32\resPTG.cui 2014-11-08 14:32 - 2014-11-08 14:32 - 00152724 _____ () C:\Windows\system32\resFIN.cui 2014-11-08 14:32 - 2014-11-08 14:32 - 00152292 _____ () C:\Windows\system32\resHRV.cui 2014-11-08 14:32 - 2014-11-08 14:32 - 00151844 _____ () C:\Windows\system32\resSVE.cui 2014-11-08 14:32 - 2014-11-08 14:32 - 00151668 _____ () C:\Windows\system32\resSLV.cui 2014-11-08 14:32 - 2014-11-08 14:32 - 00150740 _____ () C:\Windows\system32\resNOR.cui 2014-11-08 14:32 - 2014-11-08 14:32 - 00150228 _____ () C:\Windows\system32\resDAN.cui 2014-11-08 14:32 - 2014-11-08 14:32 - 00148916 _____ () C:\Windows\system32\resENU.cui 2014-11-08 14:32 - 2014-11-08 14:32 - 00147140 _____ () C:\Windows\system32\resCHT.cui 2014-11-08 14:32 - 2014-11-08 14:32 - 00146308 _____ () C:\Windows\system32\resCHS.cui 2014-11-08 14:32 - 2014-11-08 14:32 - 00064000 _____ (Khronos Group) C:\Windows\system32\Intel_OpenCL_ICD64.dll 2014-11-08 14:32 - 2014-11-08 14:32 - 00060416 _____ (Khronos Group) C:\Windows\SysWOW64\Intel_OpenCL_ICD32.dll 2014-11-08 14:32 - 2014-11-08 14:32 - 00044025 _____ () C:\Windows\system32\iglhxo64.vp 2014-11-08 14:32 - 2014-11-08 14:32 - 00043816 _____ () C:\Windows\system32\iglhxc64_dev.vp 2014-11-08 14:32 - 2014-11-08 14:32 - 00043494 _____ () C:\Windows\system32\iglhxc64.vp 2014-11-08 14:32 - 2014-11-08 14:32 - 00043298 _____ () C:\Windows\system32\iglhxg64_dev.vp 2014-11-08 14:32 - 2014-11-08 14:32 - 00043256 _____ () C:\Windows\system32\iglhxg64.vp 2014-11-08 14:32 - 2014-11-08 14:32 - 00042079 _____ () C:\Windows\system32\iglhxo64_dev.vp 2014-11-08 14:32 - 2014-11-08 14:32 - 00001125 _____ () C:\Windows\system32\iglhxa64.vp 2014-11-08 14:32 - 2014-11-08 14:32 - 00000000 ____H () C:\ProgramData\DP45977C.lfl 2014-11-08 14:31 - 2014-11-08 14:31 - 60636160 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2014-11-08 14:31 - 2014-11-08 14:31 - 28343384 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnA64.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 14863448 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 12894808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO3064.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 06218072 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 05804772 _____ () C:\Windows\system32\Drivers\rtvienna.dat 2014-11-08 14:31 - 2014-11-08 14:31 - 05751048 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 03962840 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2014-11-08 14:31 - 2014-11-08 14:31 - 03959384 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnN64.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 02834648 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 02800344 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 02770976 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 02162992 _____ (Yamaha Corporation) C:\Windows\system32\YamahaAE.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 02117424 _____ () C:\Windows\system32\SStudio.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 02101848 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 02041432 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 01959128 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2014-11-08 14:31 - 2014-11-08 14:31 - 01939800 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 01934424 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 01317976 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO6064.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 01313904 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 01286872 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 01168472 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 01136728 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 01099203 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT 2014-11-08 14:31 - 2014-11-08 14:31 - 01063512 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 01048824 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 01022168 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 00956504 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 00948952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 00947760 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 00942384 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOSettingsIPC.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 00900696 _____ (Waves Audio Ltd.) C:\Windows\SysWOW64\MaxxAudioAPOShell.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 00889592 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 00724728 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 00628952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 00501184 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 00487360 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 00415680 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 00315736 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 00291488 _____ (ICEpower a/s) C:\Windows\system32\ICEsoundAPO64.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 00261464 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 00246008 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2014-11-08 14:31 - 2014-11-08 14:31 - 00033592 _____ () C:\Windows\system32\audioLibVc.dll 2014-11-08 14:30 - 2014-11-08 14:30 - 00941784 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys 2014-11-08 14:30 - 2014-11-08 14:30 - 00073800 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll 2014-11-08 13:56 - 2014-11-20 17:49 - 00000000 ____D () C:\Users\Skin\Desktop\Wartung 2014-11-08 13:51 - 2014-11-08 13:51 - 00000000 ____D () C:\Users\Skin\AppData\Local\Secunia PSI 2014-11-08 13:51 - 2014-11-08 13:51 - 00000000 ____D () C:\Program Files (x86)\Secunia 2014-11-08 13:46 - 2014-12-07 11:58 - 00002852 _____ () C:\Windows\System32\Tasks\Driver Booster SkipUAC (Skin) 2014-11-08 13:46 - 2014-11-20 17:59 - 00000000 ____D () C:\ProgramData\IObit 2014-11-08 13:46 - 2014-11-08 13:46 - 00000000 ____D () C:\Users\Skin\AppData\Roaming\IObit 2014-11-08 13:46 - 2014-11-08 13:46 - 00000000 ____D () C:\Program Files (x86)\IObit 2014-11-07 19:32 - 2014-08-29 03:07 - 05780480 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2014-11-07 19:32 - 2014-08-29 03:07 - 03179520 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2014-11-07 19:32 - 2014-08-29 03:07 - 00322560 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll 2014-11-07 19:32 - 2014-08-29 03:07 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2014-11-07 19:32 - 2014-08-29 03:06 - 01125888 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe 2014-11-07 19:32 - 2014-08-29 02:44 - 04922368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2014-11-07 19:32 - 2014-08-29 02:44 - 01050112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe 2014-11-07 19:32 - 2014-08-29 02:44 - 00269312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll 2014-11-07 19:32 - 2014-08-29 02:44 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2014-11-07 19:09 - 2014-06-18 23:23 - 01943696 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll 2014-11-07 19:09 - 2014-06-18 23:23 - 01131664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll 2014-11-07 19:09 - 2014-06-18 23:23 - 00156824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscorier.dll 2014-11-07 19:09 - 2014-06-18 23:23 - 00156312 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll 2014-11-07 19:09 - 2014-06-18 23:23 - 00081560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscories.dll 2014-11-07 19:09 - 2014-06-18 23:23 - 00073880 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll 2014-11-07 19:02 - 2014-07-09 03:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL 2014-11-07 19:02 - 2014-07-09 03:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL 2014-11-07 19:02 - 2014-07-09 03:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL 2014-11-07 19:02 - 2014-07-09 03:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL 2014-11-07 19:02 - 2014-07-09 03:03 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL 2014-11-07 19:02 - 2014-07-09 02:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDYAK.DLL 2014-11-07 19:02 - 2014-07-09 02:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAT.DLL 2014-11-07 19:02 - 2014-07-09 02:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU1.DLL 2014-11-07 19:02 - 2014-07-09 02:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU.DLL 2014-11-07 19:02 - 2014-07-09 02:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL 2014-11-07 19:02 - 2014-07-08 23:38 - 00419992 _____ () C:\Windows\system32\locale.nls 2014-11-07 19:02 - 2014-07-08 23:30 - 00419992 _____ () C:\Windows\SysWOW64\locale.nls 2014-11-07 18:44 - 2014-09-04 06:23 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll 2014-11-07 18:44 - 2014-09-04 06:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll 2014-11-07 18:44 - 2014-07-17 03:07 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 2014-11-07 18:44 - 2014-07-17 03:07 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll 2014-11-07 18:44 - 2014-07-17 03:07 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll 2014-11-07 18:44 - 2014-07-17 02:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll 2014-11-07 18:44 - 2014-07-17 02:21 - 00212480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys 2014-11-07 18:44 - 2014-07-17 02:21 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 2014-11-07 18:21 - 2014-11-07 18:21 - 00000036 _____ () C:\Users\Skin\Documents\Skype .txt ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-12-07 14:09 - 2013-12-27 15:36 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-12-07 13:43 - 2014-04-17 11:45 - 00000000 ____D () C:\Users\Skin\AppData\Roaming\.minecraft2 2014-12-07 13:42 - 2013-12-25 14:36 - 00000000 ____D () C:\Users\Skin\AppData\Roaming\.minecraft 2014-12-07 13:12 - 2011-04-12 08:43 - 00699654 _____ () C:\Windows\system32\perfh007.dat 2014-12-07 13:12 - 2011-04-12 08:43 - 00149794 _____ () C:\Windows\system32\perfc007.dat 2014-12-07 13:12 - 2009-07-14 06:13 - 01621612 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-12-07 12:43 - 2013-12-25 17:30 - 00000000 ____D () C:\Users\Skin\AppData\Roaming\vlc 2014-12-07 12:27 - 2013-12-20 16:54 - 01672917 _____ () C:\Windows\WindowsUpdate.log 2014-12-07 12:04 - 2009-07-14 05:45 - 00021664 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-12-07 12:04 - 2009-07-14 05:45 - 00021664 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-12-07 11:56 - 2014-01-16 17:57 - 00034752 _____ () C:\Windows\system32\Drivers\WPRO_41_2001.sys 2014-12-07 11:56 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-12-06 18:14 - 2014-02-25 14:04 - 00000000 ____D () C:\Windows\pss 2014-12-06 16:51 - 2013-12-24 19:18 - 00000000 ____D () C:\Users\Skin 2014-12-06 15:17 - 2014-07-28 10:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft 2014-12-06 15:17 - 2014-07-28 10:10 - 00000000 ____D () C:\Program Files (x86)\DVDVideoSoft 2014-12-06 15:16 - 2014-07-28 10:09 - 00000000 ____D () C:\Users\Skin\AppData\Roaming\DVDVideoSoft 2014-12-06 13:19 - 2013-12-25 15:03 - 00000000 ___RD () C:\Users\Skin\Desktop\* 2014-12-05 21:48 - 2014-01-12 15:20 - 00000000 ____D () C:\Users\Skin\AppData\Local\CrashDumps 2014-12-05 17:45 - 2014-01-18 19:10 - 00000000 ____D () C:\Users\Ansgar\AppData\Roaming\NetSpeedMonitor 2014-12-05 16:22 - 2014-08-29 15:48 - 00000000 ____D () C:\Users\Ansgar\AppData\Roaming\.minecraft 2014-12-04 19:11 - 2013-12-24 20:58 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update 2014-11-27 20:31 - 2013-12-27 15:36 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-11-27 20:31 - 2013-12-27 15:36 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-11-27 20:31 - 2013-12-27 15:36 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-11-27 20:28 - 2013-12-20 16:58 - 00448104 _____ (Intel Corporation) C:\Windows\system32\igfxTray.exe 2014-11-23 20:56 - 2014-01-19 18:42 - 00000000 ____D () C:\ProgramData\firebird 2014-11-22 16:05 - 2013-12-27 18:24 - 00000000 ____D () C:\Users\Skin\AppData\Roaming\Skype 2014-11-22 09:56 - 2013-12-24 20:58 - 01041168 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys 2014-11-21 18:49 - 2014-04-10 15:20 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-11-20 20:16 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache 2014-11-20 18:15 - 2014-04-10 16:40 - 00007597 _____ () C:\Users\Skin\AppData\Local\Resmon.ResmonCfg 2014-11-20 18:04 - 2014-01-14 16:01 - 00000000 ____D () C:\Windows\system32\log 2014-11-20 16:58 - 2013-12-25 15:02 - 00000000 ___RD () C:\Users\Skin\Desktop\** 2014-11-19 17:15 - 2014-04-10 15:56 - 00000000 ____D () C:\Users\Skin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2014-11-15 16:23 - 2014-01-15 17:20 - 00000000 ____D () C:\Users\Ansgar\AppData\Local\CrashDumps 2014-11-15 14:09 - 2014-01-24 13:54 - 00000000 ____D () C:\Users\Skin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft 2014-11-15 03:23 - 2013-12-28 19:46 - 00489304 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-11-15 03:05 - 2013-12-27 16:05 - 00000000 ____D () C:\Windows\system32\MRT 2014-11-15 03:01 - 2013-03-14 15:28 - 103374192 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-11-14 23:42 - 2013-12-24 19:28 - 00000000 ____D () C:\Windows\System32\Tasks\Games 2014-11-14 22:50 - 2013-12-28 19:50 - 00123784 _____ () C:\Users\Skin\AppData\Local\GDIPFONTCACHEV1.DAT 2014-11-14 15:19 - 2014-01-15 16:53 - 00123784 _____ () C:\Users\Ansgar\AppData\Local\GDIPFONTCACHEV1.DAT 2014-11-14 14:23 - 2009-07-14 06:08 - 00032640 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-11-13 20:59 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared 2014-11-13 20:58 - 2013-12-24 19:18 - 00000000 ____D () C:\Users\Skin\AppData\Local\VirtualStore 2014-11-13 20:03 - 2014-04-12 17:05 - 00000006 _____ () C:\Windows\core32.dll 2014-11-11 18:46 - 2013-12-24 20:57 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-11-10 20:19 - 2013-12-29 12:44 - 00000000 ____D () C:\Users\Skin\.VirtualBox 2014-11-09 16:03 - 2013-12-25 15:00 - 00000000 ____D () C:\Users\Skin\AppData\Roaming\redsn0w 2014-11-09 15:47 - 2014-01-15 16:52 - 00000000 ____D () C:\Users\Ansgar 2014-11-09 15:38 - 2013-12-24 20:56 - 00000000 ____D () C:\Program Files\Java 2014-11-09 15:33 - 2014-01-01 15:37 - 00000000 ____D () C:\Users\Skin\.shsh 2014-11-09 15:32 - 2013-12-29 12:05 - 00000000 ____D () C:\ProgramData\Oracle 2014-11-08 15:24 - 2014-04-10 15:51 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2014-11-08 15:24 - 2013-12-28 17:27 - 00000000 ____D () C:\Program Files\Common Files\Apple 2014-11-08 14:51 - 2014-04-05 15:30 - 00000437 _____ () C:\Windows\system32\Drivers\etc\hosts.ics 2014-11-08 14:34 - 2013-12-20 17:00 - 00000000 ____D () C:\Program Files\Intel 2014-11-08 14:32 - 2013-12-20 17:00 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM 2014-11-08 14:32 - 2013-01-31 14:45 - 00064000 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2014-11-08 14:32 - 2013-01-31 14:45 - 00060416 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2014-11-08 14:30 - 2013-01-18 13:53 - 00107552 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll 2014-11-08 03:25 - 2009-07-14 04:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories Some content of TEMP: ==================== C:\Users\Ansgar\AppData\Local\Temp\drm_dialogs.dll C:\Users\Ansgar\AppData\Local\Temp\drm_dyndata_7370014.dll C:\Users\Skin\AppData\Local\Temp\db2.exe C:\Users\Skin\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp0nyqme.dll C:\Users\Skin\AppData\Local\Temp\f4f2a446-6cf6-458d-b85a-dcb16e8ac472.exe C:\Users\Skin\AppData\Local\Temp\FreeVideoToMP3Converter.exe C:\Users\Skin\AppData\Local\Temp\FreeYouTubeDownload.exe C:\Users\Skin\AppData\Local\Temp\Quarantine.exe C:\Users\Skin\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-12-05 14:19 ==================== End Of Log ============================ Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 07-12-2014 01 Ran by Skin at 2014-12-07 14:18:03 Running from C:\Downloads\Software Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 3DS Compatible Action Replay Firmware Update version 1.1 (HKLM\...\3DS Compatible Action Replay Firmware Update_is1) (Version: 1.1 - ) Action Replay DSi Code Manager (HKLM\...\Action Replay DSi Code Manager_is1) (Version: - ) Admiral Nemo Version 1.0 (HKLM-x32\...\{4F3190EC-B667-4069-BEA3-E6226801FFC9}_is1) (Version: 1.0 - Applejuice Studio) Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.239 - Adobe Systems Incorporated) Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.239 - Adobe Systems Incorporated) Adobe Reader XI (11.0.06) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.06 - Adobe Systems Incorporated) AnyTrans 3.6.6 (HKLM-x32\...\{E580ED1F-AAF8-4F7E-B174-54BFA2B94E0B}}_is1) (Version: 3.6.6 - iMobie Inc.) Apple Application Support (HKLM-x32\...\{83CAF0DE-8D3B-4C37-A631-2B8F16EC3031}) (Version: 3.1 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{BDD99690-3541-4619-9D2A-3CDDB3E15F9E}) (Version: 8.0.5.6 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Application Verifier x64 External Package (Version: 8.59.29722 - Microsoft) Hidden Armagetron Advanced 0.2.8.2.1.gcc (HKLM-x32\...\Armagetron Advanced) (Version: 0.2.8.2.1.gcc - Armagetron Advanced Team) avast! Free Antivirus (HKLM-x32\...\avast) (Version: 9.0.2021 - AVAST Software) BlueStacks App Player (HKLM-x32\...\BlueStacks App Player) (Version: 0.8.4.3036 - BlueStack Systems, Inc.) BlueStacks Notification Center (HKLM-x32\...\{44181DF6-2751-48C7-B918-72F14508F127}) (Version: 0.8.4.3036 - BlueStack Systems, Inc.) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Brother MFL-Pro Suite DCP-7055 (HKLM-x32\...\{3ACCCFB3-7B17-4E9F-ACB0-46868FCD4487}) (Version: 1.1.3.0 - Brother Industries, Ltd.) CCleaner (HKLM\...\CCleaner) (Version: 4.09 - Piriform) Cheat Engine 6.3 (HKLM-x32\...\Cheat Engine 6.3_is1) (Version: - Cheat Engine) Chopper Simulator (HKLM-x32\...\Chopper Simulator_is1) (Version: - Contendo Media GmbH) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Die ersten 10 Jahre (HKLM-x32\...\{1C12B0B2-91FB-439A-A64D-1A239F0B7FAB}) (Version: 1.00.0000 - ) Die Siedler - Aufbruch der Kulturen (HKLM-x32\...\SADK) (Version: - ) Dirty Split (remove only) (HKLM-x32\...\Dirty Split) (Version: - ) Dota 2 (HKLM-x32\...\Steam App 570) (Version: - Valve) Driver Booster 2 (HKLM-x32\...\Driver Booster_is1) (Version: 2.0 - IObit) Dropbox (HKU\S-1-5-21-1582827518-2800864390-4253646256-1001\...\Dropbox) (Version: 3.0.2 - Dropbox, Inc.) Eggers (remove only) (HKLM-x32\...\Eggers) (Version: - ) English G 21 e-Workbook A3 (HKLM-x32\...\{BE18B4ED-EC6C-4DA1-AC48-515E8D60BFFE}) (Version: 1.00.000 - Cornelsen) Face Noir (HKLM-x32\...\Face Noir) (Version: 1.0 - Daedalic Entertainment) Fakteur 1.0 (HKLM-x32\...\Fakteur) (Version: 1.0 - ) Fotogalerie (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Free Download Manager 3.9.4 (HKLM-x32\...\Free Download Manager_is1) (Version: - FreeDownloadManager.ORG) Free Video to MP3 Converter version 5.0.52.1122 (HKLM-x32\...\Free Video to MP3 Converter_is1) (Version: 5.0.52.1122 - DVDVideoSoft Ltd.) Free YouTube Download version 3.2.49.1122 (HKLM-x32\...\Free YouTube Download_is1) (Version: 3.2.49.1122 - DVDVideoSoft Ltd.) Geheimakte 2 - Puritas Cordis (HKLM-x32\...\{39B9D0EC-0387-4600-8526-A0C2ED5DCEDB}) (Version: 1.02 - Deep Silver) Halo: Spartan Assault (HKLM-x32\...\Steam App 277430) (Version: - Vanguard Games) HyperCam 2 (HKLM-x32\...\HyperCam 2) (Version: 2.28.01 - Hyperionics Technology LLC) iFunbox (v2.7.2386.747), iFunbox DevTeam (HKLM-x32\...\iFunbox_is1) (Version: v2.7.2386.747 - ) ImgBurn (HKLM-x32\...\ImgBurn) (Version: 2.5.8.0 - LIGHTNING UK!) Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1011 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.0.0.1310 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3958 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation) Intel(R) Smart Connect Technology 3.0 x64 (HKLM\...\{F9384F65-8BCA-46FA-ABD0-6C7CD31D267F}) (Version: 3.0.42.1767 - Intel) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.8.251 - Intel Corporation) iTunes (HKLM\...\{2ABBBD91-91E5-4AD7-929A-FE15D1DC0576}) (Version: 12.0.1.26 - Apple Inc.) Java 8 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation) Kits Configuration Installer (x32 Version: 8.59.25584 - Microsoft) Hidden LEGO Digital Designer (HKLM-x32\...\New LEGO Digital Designer) (Version: - LEGO A/S) LEGO® Star Wars™: Die Komplette Saga (HKLM-x32\...\InstallShield_{D596980D-17BE-4425-B8F0-5640719AADE9}) (Version: 1.00.0000 - LucasArts) LEGO® Star Wars™: The Complete Saga (x32 Version: 1.00.0000 - LucasArts) Hidden LibreOffice 4.1.1.2 (HKLM-x32\...\{F1EE568A-171F-4C06-9BE6-2395BED067A3}) (Version: 4.1.1.2 - The Document Foundation) LIFT (HKLM-x32\...\{6CA1EAC8-38BE-42B3-BF2E-0F92C3A8CBAF}) (Version: 2.5.0 - C.C.Buchner) Lightworks (HKLM-x32\...\{E94DD4E4-7746-472c-AA7B-1242FED0CFC8}) (Version: 11.1.1.0 - Lightworks) LinuxLive USB Creator (HKLM-x32\...\LinuxLive USB Creator) (Version: 2.8 - Thibaut Lauziere) Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5 SDK (HKLM-x32\...\{4AE57014-05C4-4864-A13D-86517A7E1BA4}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft Office 365 - de-de (HKLM\...\O365HomePremRetail - de-de) (Version: 15.0.4667.1002 - Microsoft Corporation) Microsoft SkyDrive (HKU\S-1-5-21-1582827518-2800864390-4253646256-1001\...\SkyDriveSetup.exe) (Version: 16.4.6012.0828 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Moorhuhn Piraten (HKLM-x32\...\Moorhuhn Piraten) (Version: 1.00 - phenomedia publishing gmbh) Movie Maker (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Mozilla Firefox 33.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 33.1 (x86 de)) (Version: 33.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 30.0 - Mozilla) MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation) NetSpeedMonitor 2.5.4.0 x64 (HKLM\...\{88F41EE2-949B-4B52-933D-C7F8F67BC1D2}) (Version: 2.5.4.0 - Florian Gilles) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.5.1 - Notepad++ Team) NVIDIA PhysX (HKLM-x32\...\{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}) (Version: 9.10.0513 - NVIDIA Corporation) Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4667.1002 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4667.1002 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4667.1002 - Microsoft Corporation) Hidden OpenAL (HKLM-x32\...\OpenAL) (Version: - ) Oracle VM VirtualBox 4.3.14 (HKLM\...\{8DD94059-60C6-42E3-AB59-8F37445ACC79}) (Version: 4.3.14 - Oracle Corporation) PdaNet Desktop (64 bit) for iPhone 5.30 (HKLM-x32\...\PdaNet_is1) (Version: - June Fabrics Technology Inc) phase-6 2.3.4 (HKLM-x32\...\phase-6) (Version: 2.3.4 - phase-6) PhoneClean 2.1.6 (HKLM-x32\...\{E980ED1F-AOF8-PF7E-B174-59POS2BOIUVB}}_is1) (Version: 2.1.6 - iMobie Inc.) Photo Common (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Photo Gallery (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Project 64 version 2.1.0.1 (HKLM-x32\...\Project 64_is1) (Version: 2.1.0.1 - ) QuickTime 7 (HKLM-x32\...\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}) (Version: 7.76.80.95 - Apple Inc.) Rayman Origins (HKLM-x32\...\{DE491AB9-1D47-4FED-A8F5-4D4325B2EB4B}) (Version: 1.00 - Ubisoft) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.72.410.2013 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7246 - Realtek Semiconductor Corp.) Red Eclipse 1.4 (HKLM-x32\...\Red Eclipse) (Version: - ) Reflector (HKLM\...\{77342B24-A2A9-4420-8C9C-C109EE201CBC}) (Version: 1.3.3.1 - Squirrels) Risen 2 - Dark Waters (HKLM-x32\...\Steam App 40390) (Version: - Piranha Bytes) Robocraft version 0.3.290 (HKU\S-1-5-21-1582827518-2800864390-4253646256-1001\...\{9F101691-69D3-422E-BB5C-8CAD7110781B}_is1) (Version: 0.3.290 - Freejam) ROCCAT Lua Mouse Driver (HKLM-x32\...\InstallShield_{0F5183CD-4A86-43A4-8CAA-1045871F54DE}) (Version: 1.14 - ROCCAT) ROCCAT Lua Mouse Driver (x32 Version: 1.14 - ROCCAT) Hidden Schiffe Versenken - Karibik Edition (HKLM-x32\...\{7A92A322-1A10-4153-B551-D547AA9B4649}) (Version: 1.0 - media Verlagsgesellschaft mbH) ScreenRecorder (HKLM\...\{55A9972B-EA29-43C3-94B6-7A178D6F2E11}) (Version: 4.0.0 - Burak Uysaler) SDK Debuggers (x32 Version: 8.59.29746 - Microsoft Corporation) Hidden Secret Maryo Chronicles (HKLM-x32\...\secretmaryo) (Version: 1.9 - Florian Richter) Silent Hunter 5 (HKLM-x32\...\{AC61C594-5F86-4BE9-ABAF-763C6A8E2302}) (Version: 1.2.0 - Ubisoft) Skype™ 6.20 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.20.104 - Skype Technologies S.A.) Souvenir 1.0 (HKLM-x32\...\Souvenir) (Version: 1.0 - ) Speccy (HKLM\...\Speccy) (Version: 1.24 - Piriform) Star Wars - Battlefront II (HKLM-x32\...\Steam App 6060) (Version: - Pandemic Studios) Steam (HKLM-x32\...\Steam) (Version: - Valve Corporation) Stronghold (HKLM-x32\...\{C917BA70-28A3-4C74-B163-41FD8C8E1A5A}) (Version: 1.20.0000 - Firefly Studios) Stronghold Legends (HKLM-x32\...\{66A405D2-BA14-4594-BF36-B3B544F0754E}) (Version: 1.20.0000 - Firefly Studios) Sweet Home 3D version 4.4 (HKLM\...\Sweet Home 3D_is1) (Version: - eTeks) Team Fortress 2 (HKLM-x32\...\Steam App 440) (Version: - Valve) TeamSpeak 3 Client (HKU\S-1-5-21-1582827518-2800864390-4253646256-1001\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH) Thunder Gun 1.0 (HKLM-x32\...\Thunder Gun) (Version: 1.0 - ) TmNationsForever (HKLM-x32\...\TmNationsForever_is1) (Version: - Nadeo) Tom Clancy's Ghost Recon Phantoms - EU (HKLM-x32\...\Steam App 272350) (Version: - Ubisoft Singapore) Tom Clancy's H.A.W.X. 2 (HKLM-x32\...\{76A232AF-B7D6-41A4-B795-6B355E6D32B1}) (Version: 1.0.1 - Ubisoft) Ubisoft Game Launcher (HKLM-x32\...\{888F1505-C2B3-4FDE-835D-36353EBD4754}) (Version: 1.0.0.0 - UBISOFT) Unity Web Player (HKU\S-1-5-21-1582827518-2800864390-4253646256-1001\...\UnityWebPlayer) (Version: 4.6.0f3 - Unity Technologies ApS) VGA Boost (HKLM-x32\...\{809ACFAE-9A4D-4C60-9223-D8B615CD8CBA}}_is1) (Version: 1.0.0.6 - MSI) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN) Windows Driver Kit Tests for Windows 8.1 (HKLM-x32\...\{de51fac5-d60b-4be9-a23a-607fa6bb2780}) (Version: 8.100.25984 - Microsoft Corporation) Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation) Windows Software Development Kit (HKLM-x32\...\{363a2c1e-637f-45ce-933b-5a5463efd945}) (Version: 8.59.29750 - Microsoft Corporation) Windows-Treiberpaket - Datel Design & Development (usbio) USBIOControlledDevices (04/21/2009 2.40.0.0) (HKLM\...\30853F7174C6EB267FDAABE50A369169D18DA611) (Version: 04/21/2009 2.40.0.0 - Datel Design & Development) Windows-Treiberpaket - Datel Design & Development (usbio) USBIOControlledDevices (05/21/2012 2.40.0.0) (HKLM\...\7BD98A593B77F7A2CC2A9538524495FE39D5962E) (Version: 05/21/2012 2.40.0.0 - Datel Design & Development) Windows-Treiberpaket - Datel Design & Development USBIOControlledDevices (04/21/2009 2.40.0.0) (HKLM\...\8555DF8099612EF2F8333DC0EC454113D4537E7B) (Version: 04/21/2009 2.40.0.0 - Datel Design & Development) Windows-Treiberpaket - Datel Design & Development USBIOControlledDevices (05/21/2012 2.40.0.0) (HKLM\...\66D0EA0FEC96AC8BA6F5D30012E2C0BE83D4A67B) (Version: 05/21/2012 2.40.0.0 - Datel Design & Development) WinRAR 5.01 (32-Bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH) WPT Redistributables (x32 Version: 8.59.29750 - Microsoft) Hidden WPTx64 (x32 Version: 8.59.29722 - Microsoft) Hidden ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32 -> No File Path CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32 -> No File Path CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Skin\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{083863F1-70DE-11D0-BD40-00A0C911CE86}\InprocServer32 -> No File Path CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{275C23E2-3747-11D0-9FEA-00AA003F8646}\InprocServer32 -> No File Path CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{33156164-81D6-11D3-8006-00C04FA30A73}\InprocServer32 -> No File Path CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{33156168-81D6-11D3-8006-00C04FA30A73}\InprocServer32 -> No File Path CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{33D9A762-90C8-11D0-BD43-00A0C911CE86}\InprocServer32 -> No File Path CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{505C2E67-8615-4CA9-9B57-48CF6EE696FD}\InprocServer32 -> No File Path CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{62BE5D10-60EB-11D0-BD3B-00A0C911CE86}\InprocServer32 -> No File Path CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{632B606A-BBC6-11D2-A329-006097C4E476}\InprocServer32 -> No File Path CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation) CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{8D52AA2E-40BE-46D7-8F36-DB7B0F636824}\InprocServer32 -> No File Path CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{8E849609-C7E8-4EC7-8BD3-D55E871A340D}\InprocServer32 -> No File Path CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Skin\AppData\Local\Microsoft\SkyDrive\16.4.6012.0828\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{A5AC04E7-3E13-48CE-A43F-9FBA59DB1544}\InprocServer32 -> No File Path CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{AB37E6C0-194D-4C33-A924-5178414DEB98}\InprocServer32 -> No File Path CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{AB406AAC-2B2B-11D3-B36B-00C04F6108FF}\InprocServer32 -> No File Path CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Skin\AppData\Local\Microsoft\SkyDrive\16.4.6012.0828\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{C1AB3D89-6973-45A6-AA44-09CEBBF872E5}\InprocServer32 -> No File Path CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{CDA42200-BD88-11D0-BD4E-00A0C911CE86}\InprocServer32 -> No File Path CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{CFC399AF-D876-11D0-9C10-00C04FC99C8E}\InprocServer32 -> No File Path CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{DF0AD8E0-F91C-4109-AE46-1EAA5CD8AB08}\InprocServer32 -> No File Path CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{DF0AD8E1-F91C-4109-AE46-1EAA5CD8AB08}\InprocServer32 -> No File Path CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{DF0AD8E3-F91C-4109-AE46-1EAA5CD8AB08}\InprocServer32 -> No File Path CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{E297AB5E-40B0-41BD-9E06-E4144084EE5F}\InprocServer32 -> No File Path CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{E436EBB3-524F-11CE-9F53-0020AF0BA770}\InprocServer32 -> No File Path CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{EE3C1BE8-E049-43DC-BB3D-32CA777EA3C1}\InprocServer32 -> No File Path CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Skin\AppData\Local\Microsoft\SkyDrive\16.4.6012.0828\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Skin\AppData\Local\Microsoft\SkyDrive\16.4.6012.0828\amd64\FileSyncApi64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Skin\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Skin\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Skin\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Skin\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Skin\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Skin\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Skin\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-1582827518-2800864390-4253646256-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Skin\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) ==================== Restore Points ========================= 05-12-2014 13:25:09 Geplanter Prüfpunkt ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {07752A7F-A83B-47D8-B409-8BD06B505C90} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2014-10-07] (Microsoft Corporation) Task: {1C2FEF13-913E-4D2F-9243-E7947FA92B66} - System32\Tasks\Driver Booster Scan => C:\Program Files (x86)\IObit\Driver Booster\Scheduler.exe [2014-10-08] (IObit) Task: {2AE7F743-DE06-4950-845E-F6124EF4BC14} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {2DD924F3-1DDF-41DD-BD4F-1AEE70F58DFA} - System32\Tasks\Driver Booster Update => C:\Program Files (x86)\IObit\Driver Booster\AutoUpdate.exe [2014-10-13] (IObit) Task: {382B83AA-FCF0-4A42-A973-83B594F5EDCF} - System32\Tasks\{B7BC6BF4-841F-42C7-9559-48F8184ECF1A} => Firefox.exe hxxp://ui.skype.com/ui/0/6.11.0.102/de/abandoninstall?page=tsMain Task: {6688FFB3-F08E-4C95-B194-E5E00999EAE2} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2014-11-27] (Microsoft Corporation) Task: {7DA714D9-F470-411E-B151-244ADF1363C2} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-08-19] (AVAST Software) Task: {88A9E008-2E57-4788-A26F-9616F141E892} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-11-27] (Adobe Systems Incorporated) Task: {88AA4DEC-1361-4CA5-B88C-BD3E99AD6696} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-12-17] (Piriform Ltd) Task: {A52CF5F3-A8AD-4C8E-8FCE-9EF5EC27ABF8} - System32\Tasks\Driver Booster SkipUAC (Skin) => C:\Program Files (x86)\IObit\Driver Booster\DriverBooster.exe [2014-10-28] (IObit) Task: {B763F41D-C717-4998-8973-F78E06570B80} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Loaded Modules (whitelisted) ============= 2014-11-22 14:08 - 2014-05-20 09:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll 2012-10-22 10:55 - 2012-10-22 10:55 - 00149032 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe 2012-10-22 10:55 - 2012-10-22 10:55 - 00058920 _____ () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\NetworkHeuristic.dll 2012-06-18 16:24 - 2012-06-18 16:24 - 00222720 _____ () C:\Program Files (x86)\Notepad++\NppShell_05.dll 2014-08-19 15:52 - 2014-08-19 15:52 - 00301152 _____ () C:\Program Files\AVAST Software\Avast\aswProperty.dll 2014-12-06 13:08 - 2014-12-06 13:08 - 02905088 _____ () C:\Program Files\AVAST Software\Avast\defs\14120600\algo.dll 2014-12-07 13:11 - 2014-12-07 13:11 - 02905088 _____ () C:\Program Files\AVAST Software\Avast\defs\14120700\algo.dll 2014-02-12 19:58 - 2014-02-12 19:58 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2014-10-11 13:05 - 2014-10-11 13:05 - 01044776 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2014-08-19 15:52 - 2014-08-19 15:52 - 19329904 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2013-12-20 17:00 - 2013-05-13 23:15 - 01199576 ____R () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2014-12-06 16:47 - 2014-10-22 01:22 - 00750080 _____ () C:\Users\Skin\AppData\Roaming\Dropbox\bin\libGLESv2.dll 2014-12-07 13:10 - 2014-12-07 13:10 - 00043008 _____ () c:\users\skin\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp0nyqme.dll 2014-12-06 16:47 - 2014-10-22 01:22 - 00047616 _____ () C:\Users\Skin\AppData\Roaming\Dropbox\bin\libEGL.dll 2014-12-06 16:47 - 2014-10-22 01:22 - 00863744 _____ () C:\Users\Skin\AppData\Roaming\Dropbox\bin\plugins\platforms\qwindows.dll 2014-12-06 16:47 - 2014-10-22 01:22 - 00200704 _____ () C:\Users\Skin\AppData\Roaming\Dropbox\bin\plugins\imageformats\qjpeg.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00113171 _____ () C:\Program Files (x86)\VideoLAN\VLC\libvlc.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 02396691 _____ () C:\Program Files (x86)\VideoLAN\VLC\libvlccore.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00268307 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libdshow_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00027667 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_output\libdirectsound_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00031251 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_output\libwaveout_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00066579 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\video_output\libdirectdraw_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 02043411 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\access\liblibbluray_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00100371 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libaccess_bd_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00244243 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libdvdnav_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00076307 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libaccess_vdr_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00045587 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libfilesystem_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00060947 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_filter\libsmooth_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00531475 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_filter\libhttplive_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00708627 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_filter\libdash_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00114195 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libzip_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00040467 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libstream_filter_rar_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00014867 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_filter\librecord_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00133139 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libplaylist_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 01512467 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\meta_engine\libtaglib_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00296979 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\lua\liblua_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 01248787 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\misc\libxml_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00054291 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\control\libhotkeys_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00038419 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\control\libglobalhotkeys_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 11148307 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\gui\libqt4_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00025619 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libes_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00036371 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\meta_engine\libfolder_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00336403 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libtheora_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00189971 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libmp4_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00016403 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\librawvideo_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00146451 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libspeex_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00091667 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libavi_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00067603 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libasf_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00733203 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libvorbis_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00077331 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\demux\libflacsys_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00015891 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libaes3_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00022035 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\liblpcm_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00021523 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\packetizer\libpacketizer_flac_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00030739 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\packetizer\libpacketizer_dirac_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00021011 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\packetizer\libpacketizer_mlp_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00063507 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\packetizer\libpacketizer_mpeg4audio_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00036883 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\packetizer\libpacketizer_vc1_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00017427 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libsvcdsub_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00019987 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libspudec_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00025619 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\packetizer\libpacketizer_mpeg4video_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00024595 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\packetizer\libpacketizer_mpegvideo_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00018963 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libcvdsub_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00064531 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\packetizer\libpacketizer_h264_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00018963 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libmpeg_audio_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00292371 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libpng_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00017939 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libcdg_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 01280019 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libschroedinger_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00018451 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libdts_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00344595 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libfaad_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00198675 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libflac_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00027155 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\libg711_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 01393171 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\codec\liblibass_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00013843 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_mixer\libfloat_mixer_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00018963 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libscaletempo_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00130579 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libmpgatofixed32_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00168979 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libdtstofloat32_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00058899 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\liba52tofloat32_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 01496083 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libsamplerate_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00019475 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libsimple_channel_mixer_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00013331 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\liba52tospdif_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00014355 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libdtstospdif_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00014867 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libdolby_surround_decoder_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00014355 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libugly_resampler_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00015379 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libtrivial_channel_mixer_plugin.dll 2014-07-23 00:29 - 2014-07-23 00:29 - 00025619 _____ () C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libaudio_format_plugin.dll 2014-11-10 16:44 - 2014-11-10 16:44 - 03649648 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll 2014-11-10 20:35 - 2014-11-10 20:35 - 00284160 _____ () C:\ProgramData\Free Download Manager\Firefox\Extensions\1.6.0.8\components\vmsfdmff30.dll 2014-11-10 20:35 - 2014-04-22 21:52 - 00106496 _____ () C:\Program Files (x86)\Free Download Manager\fdmumsp.dll 2014-11-27 20:31 - 2014-11-27 20:31 - 16841392 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_239.dll 2014-11-10 20:35 - 2014-04-29 12:43 - 03553280 _____ () C:\Program Files (x86)\Free Download Manager\fdmbtsupp.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^phase-6 Reminder.lnk => C:\Windows\pss\phase-6 Reminder.lnk.CommonStartup MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Secunia PSI Tray.lnk => C:\Windows\pss\Secunia PSI Tray.lnk.CommonStartup MSCONFIG\startupfolder: C:^Users^Skin^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk => C:\Windows\pss\Dropbox.lnk.Startup MSCONFIG\startupfolder: C:^Users^Skin^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^PdaNet Desktop.lnk => C:\Windows\pss\PdaNet Desktop.lnk.Startup MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" MSCONFIG\startupreg: BlueStacks Agent => C:\Program Files (x86)\BlueStacks\HD-Agent.exe MSCONFIG\startupreg: BrStsMon00 => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe /AUTORUN MSCONFIG\startupreg: ControlCenter4 => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe /autorun MSCONFIG\startupreg: iTunesHelper => "C:\Program Files (x86)\iTunes\iTunesHelper.exe" MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun ========================= Accounts: ========================== Administrator (S-1-5-21-1582827518-2800864390-4253646256-500 - Administrator - Disabled) Ansgar (S-1-5-21-1582827518-2800864390-4253646256-1040 - Limited - Enabled) => C:\Users\Ansgar Gast (S-1-5-21-1582827518-2800864390-4253646256-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-1582827518-2800864390-4253646256-1064 - Limited - Enabled) Skin (S-1-5-21-1582827518-2800864390-4253646256-1001 - Administrator - Enabled) => C:\Users\Skin ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (12/07/2014 11:57:31 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/07/2014 11:57:00 AM) (Source: BstHdAndroidSvc) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run. bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (12/06/2014 06:17:12 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/06/2014 06:17:12 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run. bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (12/06/2014 04:48:30 PM) (Source: Microsoft-Windows-RestartManager) (EventID: 10006) (User: Skin-PC) Description: Die Anwendung oder der Dienst "Windows-Explorer" konnte nicht heruntergefahren werden. Error: (12/06/2014 01:09:06 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/06/2014 01:08:23 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run. bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (12/05/2014 09:48:51 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: IEXPLORE.EXE, Version: 11.0.9600.17420, Zeitstempel: 0x545ad233 Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.18247, Zeitstempel: 0x521ea8e7 Ausnahmecode: 0xc000000d Fehleroffset: 0x000994c9 ID des fehlerhaften Prozesses: 0x1720 Startzeit der fehlerhaften Anwendung: 0xIEXPLORE.EXE0 Pfad der fehlerhaften Anwendung: IEXPLORE.EXE1 Pfad des fehlerhaften Moduls: IEXPLORE.EXE2 Berichtskennung: IEXPLORE.EXE3 Error: (12/05/2014 04:36:01 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm javaw.exe, Version 8.0.25.18 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: e34 Startzeit: 01d010985deff9dd Endzeit: 258 Anwendungspfad: C:\Program Files (x86)\Java\jre1.8.0_25\bin\javaw.exe Berichts-ID: 63fd6963-7c94-11e4-959b-d43d7ef83581 Error: (12/05/2014 01:56:30 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Error: (12/07/2014 00:50:26 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: {005A3A96-BAC4-4B0A-94EA-C0CE100EA736} Error: (12/07/2014 11:57:00 AM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "BlueStacks Android Service" wurde mit folgendem Fehler beendet: %%1064 Error: (12/07/2014 11:56:48 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "atksgt" wurde aufgrund folgenden Fehlers nicht gestartet: %%1275 Error: (12/07/2014 11:56:48 AM) (Source: Application Popup) (EventID: 875) (User: ) Description: Treiber atksgt.sys konnte nicht geladen werden. Error: (12/06/2014 06:17:12 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "BlueStacks Android Service" wurde mit folgendem Fehler beendet: %%1064 Error: (12/06/2014 06:16:03 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "atksgt" wurde aufgrund folgenden Fehlers nicht gestartet: %%1275 Error: (12/06/2014 06:16:03 PM) (Source: Application Popup) (EventID: 875) (User: ) Description: Treiber atksgt.sys konnte nicht geladen werden. Error: (12/06/2014 01:08:23 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "BlueStacks Android Service" wurde mit folgendem Fehler beendet: %%1064 Error: (12/06/2014 01:07:44 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "atksgt" wurde aufgrund folgenden Fehlers nicht gestartet: %%1275 Error: (12/06/2014 01:07:44 PM) (Source: Application Popup) (EventID: 875) (User: ) Description: Treiber atksgt.sys konnte nicht geladen werden. Microsoft Office Sessions: ========================= Error: (12/07/2014 11:57:31 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/07/2014 11:57:00 AM) (Source: BstHdAndroidSvc) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run. bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (12/06/2014 06:17:12 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/06/2014 06:17:12 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run. bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (12/06/2014 04:48:30 PM) (Source: Microsoft-Windows-RestartManager) (EventID: 10006) (User: Skin-PC) Description: 1C:\Windows\explorer.exeWindows-Explorer0411731280 Error: (12/06/2014 01:09:06 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (12/06/2014 01:08:23 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: ) Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service. Service did not stop gracefully the last time it was run. bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args) bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state) Error: (12/05/2014 09:48:51 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: IEXPLORE.EXE11.0.9600.17420545ad233ntdll.dll6.1.7601.18247521ea8e7c000000d000994c9172001d010ccb38512f2C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXEC:\Windows\SysWOW64\ntdll.dll1ddd92ce-7cc0-11e4-959b-d43d7ef83581 Error: (12/05/2014 04:36:01 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: javaw.exe8.0.25.18e3401d010985deff9dd258C:\Program Files (x86)\Java\jre1.8.0_25\bin\javaw.exe63fd6963-7c94-11e4-959b-d43d7ef83581 Error: (12/05/2014 01:56:30 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 ==================== Memory info =========================== Processor: Intel(R) Pentium(R) CPU G2020 @ 2.90GHz Percentage of memory in use: 53% Total physical RAM: 3960.43 MB Available physical RAM: 1843.03 MB Total Pagefile: 7919.05 MB Available Pagefile: 5628.26 MB Total Virtual: 8192 MB Available Virtual: 8191.82 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:465.42 GB) (Free:210.26 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: C73ED450) Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=465.4 GB) - (Type=07 NTFS) ==================== End Of Log ============================ So? |
08.12.2014, 10:46 | #6 | |
/// the machine /// TB-Ausbilder | Hat jemand Zugriff auf meine Daten?Zitat:
Wen ja deckt sich das ja mit deinem Screenshot.
__________________ --> Hat jemand Zugriff auf meine Daten? |
08.12.2014, 13:49 | #7 |
| Hat jemand Zugriff auf meine Daten? Die Konten Ansgar und Skin habe ich im Moment. Das Gast Konto hatte ich vor langer Zeit mal aktiviert aber an ein Konto namens Administrator kann ich mich nicht erinnern... |
09.12.2014, 11:29 | #8 |
/// the machine /// TB-Ausbilder | Hat jemand Zugriff auf meine Daten? Das ist auch normal, ist der windowseigene Admin, du bist seit Vista (oder war es win7) kein voller ADmin mehr auf dem eigenen Rechner
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Hat jemand Zugriff auf meine Daten? |
ausspioniert, datei, daten, edition, eigenschaften, folge, folgendes, home, konto, problem, reiter, schaf, sicherheit, troja, trojaner-board, unbekanntes, unbekanntes konto, virus, windows, windows 7, windows 7 home, überwachung, zugriff |