Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: RUN.dll fehler

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 16.01.2015, 17:44   #1
momolol404
 
RUN.dll fehler - Standard

RUN.dll fehler



hallo zusammen,

immer wenn ich mein PC starte erscheint diese Meldung(siehe Bild)

ich hoffe ihr könnt mir helfen

MFG momolol404
Miniaturansicht angehängter Grafiken
RUN.dll fehler-unbenannt.jpg  

Alt 16.01.2015, 18:21   #2
schrauber
/// the machine
/// TB-Ausbilder
 

RUN.dll fehler - Standard

RUN.dll fehler



hi,

Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)

__________________

__________________

Alt 16.01.2015, 18:55   #3
momolol404
 
RUN.dll fehler - Standard

RUN.dll fehler



okay kommt gleich

Also hier die addition datei
Code:
ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 15-01-2015 01
Ran by ... at 2015-01-16 18:41:52
Running from ...Downloads
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: AVG AntiVirus 2014 (Enabled - Up to date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
AS: AVG AntiVirus 2014 (Enabled - Up to date) {B5F5C120-2089-702E-0001-553BB0D5A664}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

32 Bit HP CIO Components Installer (Version: 6.1.1 - Hewlett-Packard) Hidden
8500A909_eDocs (Version: 1.00.0000 - Hewlett-Packard) Hidden
8500A909_Help (Version: 1.00.0000 - Hewlett-Packard) Hidden
8500A909g (Version: 50.0.165.000 - Hewlett-Packard) Hidden
Adobe Acrobat Reader 3.01 (HKLM\...\Adobe Acrobat Reader 3.01) (Version:  - )
Adobe Flash Player 15 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 15.0.0.246 - Adobe Systems Incorporated)
Adobe Reader X (10.1.13) - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-AA1000000001}) (Version: 10.1.13 - Adobe Systems Incorporated)
Adobe Shockwave Player 11.6 (HKLM\...\Adobe Shockwave Player) (Version: 11.6.1.629 - Adobe Systems, Inc.)
Any Video Converter 5.7.6 (HKLM\...\Any Video Converter_is1) (Version:  - Any-Video-Converter.com)
Audacity 2.0.5 (HKLM\...\Audacity_is1) (Version: 2.0.5 - Audacity Team)
AVG 2014 (HKLM\...\AVG) (Version: 2014.0.4800 - AVG Technologies)
AVG 2014 (Version: 14.0.4253 - AVG Technologies) Hidden
AVG 2014 (Version: 14.0.4257 - AVG Technologies) Hidden
AVG 2014 (Version: 14.0.4800 - AVG Technologies) Hidden
AVG PC TuneUp 2015 (de-DE) (Version: 15.0.1001.105 - AVG Technologies) Hidden
AVG Web TuneUp (HKLM\...\AVG Web TuneUp) (Version: 4.0.0.19 - AVG Technologies)
BlueStacks App Player (HKLM\...\BlueStacks App Player) (Version: 0.9.4.4079 - BlueStack Systems, Inc.)
BlueStacks Notification Center (HKLM\...\{8DCCC556-265B-478A-8B32-C12DA988BA74}) (Version: 0.9.4.4079 - BlueStack Systems, Inc.)
BPD_DSWizards (Version: 1.00.0000 - Hewlett-Packard) Hidden
bpd_scan (Version: 3.00.0000 - Hewlett-Packard) Hidden
BPDSoftware (Version: 50.0.165.000 - Hewlett-Packard) Hidden
BPDSoftware_Ini (Version: 1.00.0000 - Hewlett-Packard) Hidden
BufferChm (Version: 130.0.331.000 - Hewlett-Packard) Hidden
BurnAware Free 7.7 (HKLM\...\BurnAware Free_is1) (Version:  - Burnaware)
ccc-core-static (Version: 2009.0721.1107.18080 - Ihr Firmenname) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 4.05 - Piriform)
CheckDrive (HKLM\...\{B83513EC-2E4D-4621-816D-4CCF397BE702}_is1) (Version: 4.4 - Abelssoft)
D3DX10 (Version: 15.4.2368.0902 - Microsoft) Hidden
Destinations (Version: 130.0.0.0 - Hewlett-Packard) Hidden
DeviceDiscovery (Version: 130.0.465.000 - Hewlett-Packard) Hidden
DocMgr (Version: 130.0.000.000 - Ihr Firmenname) Hidden
DocProc (Version: 13.0.0.0 - Hewlett-Packard) Hidden
Druckerdeinstallation für EPSON XP-302 303 305 306 Series (HKLM\...\EPSON XP-302 303 305 306 Series) (Version:  - SEIKO EPSON Corporation)
DualCoreCenter (HKLM\...\DualCoreCenter_is1) (Version:  - MSI, Inc.)
Epson Connect Printer Setup (HKLM\...\{D9B1D51B-EB56-410D-AEB5-1CCFAC4B6C8C}) (Version: 1.3.0 - SEIKO EPSON CORPORATION)
Epson E-Web Print (HKLM\...\{896667C8-53F8-47B8-B6B0-B113B10F05BC}) (Version: 1.20.0000 - SEIKO EPSON CORPORATION)
EPSON Printer Finder (HKLM\...\{B8ECD0D3-AE08-4891-B6C7-32F96B75EB6C}) (Version: 1.0.0 - SEIKO EPSON CORPORATION)
Fax (Version: 130.0.418.000 - Hewlett-Packard) Hidden
Fotogalerie (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
GeoGebra 5 (HKLM\...\GeoGebra 5) (Version: 5.0.4.0 - International GeoGebra Institute)
Google Chrome (HKLM\...\Google Chrome) (Version: 39.0.2171.95 - Google Inc.)
Google Earth (HKLM\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Earth (HKLM\...\{5A3C1721-F8ED-11E0-8AFB-B8AC6F97B88E}) (Version: 6.1.0.5001 - Google)
Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden
GPBaseService2 (Version: 130.0.371.000 - Hewlett-Packard) Hidden
Haali Media Splitter (HKLM\...\HaaliMkx) (Version:  - FreeCodecPack)
HPProductAssistant (Version: 130.0.371.000 - Hewlett-Packard) Hidden
HPSSupply (Version: 130.0.371.000 - Hewlett-Packard) Hidden
HxD Hex Editor Version 1.7.7.0 (HKLM\...\HxD Hex Editor_is1) (Version: 1.7.7.0 - Maël Hörz)
Java 8 Update 25 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation)
MarketResearch (Version: 130.0.374.000 - Hewlett-Packard) Hidden
Media Downloader version 1.5 (HKLM\...\Media Downloader_is1) (Version: 1.5 - Media Downloader)
Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUSR) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM\...\{402ED4A1-8F5B-387A-8688-997ABF58B8F2}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Movie Maker (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Mozilla Firefox 34.0.5 (x86 de) (HKLM\...\Mozilla Firefox 34.0.5 (x86 de)) (Version: 34.0.5 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla)
Mozilla Thunderbird 12.0.1 (x86 de) (HKLM\...\Mozilla Thunderbird 12.0.1 (x86 de)) (Version: 12.0.1 - Mozilla)
MSI Live Update (HKLM\...\{4F46CF54-47D2-41F4-B230-B0954C544420}}_is1) (Version: 6.0.012 - MSI)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
Network (Version: 130.0.579.000 - Hewlett-Packard) Hidden
Nitro PDF Professional (HKLM\...\{853F9C53-2518-4AD0-ABA2-A72EDF4441A4}) (Version: 5.5.2.0 - Nitro PDF Software )
Oracle VM VirtualBox 4.3.12 (HKLM\...\{D90E08B8-E7BB-4D29-8249-8670D4CC24BD}) (Version: 4.3.12 - Oracle Corporation)
Phase 5 HTML-Editor (HKLM\...\{20B1B020-DEAE-48D1-9960-D4C3185D758B}) (Version: 5.6.2.3 - Systemberatung Schommer)
ProductContext (Version: 50.0.165.000 - Hewlett-Packard) Hidden
Revo Uninstaller 1.95 (HKLM\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group)
Scan (Version: 13.0.0.0 - Hewlett-Packard) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version:  - Microsoft)
Skins (Version: 2009.0721.1107.18080 - ATI) Hidden
Skype™ 6.16 (HKLM\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.16.105 - Skype Technologies S.A.)
SmartWebPrinting (Version: 130.0.457.000 - Hewlett-Packard) Hidden
Software Updater (HKLM\...\{FA7EE274-7370-43B7-9A45-A39B17CCCDC5}) (Version: 4.3.3 - SEIKO EPSON CORPORATION)
SolutionCenter (Version: 130.0.373.000 - Hewlett-Packard) Hidden
Status (Version: 130.0.469.000 - Hewlett-Packard) Hidden
Steam (HKLM\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
Team Fortress 2 (HKLM\...\Steam App 440) (Version:  - Valve)
TL-WN851ND Driver (HKLM\...\{4BAE4C76-44C3-418F-B715-6BBF5A65323E}) (Version: 1.00.0000 - TP-LINK)
Toolbox (Version: 130.0.648.000 - Hewlett-Packard) Hidden
TP-LINK Wireless Configuration Utility (HKLM\...\{319D91C6-3D44-436C-9F79-36C0D22372DC}) (Version: 2.01.0012 - TP-LINK)
TrayApp (Version: 130.0.422.000 - Hewlett-Packard) Hidden
TuneUp Utilities Language Pack (de-DE) (Version: 10.0.3000.99 - TuneUp Software) Hidden
TuneUp Utilities Language Pack (de-DE) (Version: 9.0.5100.2 - TuneUp Software) Hidden
VideoSoft ActiveX Controls (HKLM\...\VideoSoft ActiveX Controls) (Version:  - )
Visual Studio 2012 x86 Redistributables (HKLM\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
VLC media player 2.0.5 (HKLM\...\VLC media player) (Version: 2.0.5 - VideoLAN)
WebReg (Version: 130.0.132.017 - Hewlett-Packard) Hidden
Windows 7 USB/DVD Download Tool (HKLM\...\{CCF298AF-9CE1-4B26-B251-486E98A34789}) (Version: 1.0.30 - Microsoft Corporation)
Windows Live Essentials (HKLM\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation)
WinRAR 5.01 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points  =========================


==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:04 - 2009-06-10 22:39 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {060974C6-EB13-439D-B0A4-E1A5D3E04852} - System32\Tasks\Microsoft\Windows\TabletPC\InputPersonalization => C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe [2009-07-14] (Microsoft Corporation)
Task: {2D589190-9944-476E-A573-222791290DD5} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {459268AE-08D6-45FB-91CC-5E706DBF30D9} - System32\Tasks\Abelssoft\CheckDriveBackgroundGuard => C:\Program Files\CheckDrive\CheckDriveBackgroundGuard.exe [2014-01-28] (Abelssoft)
Task: {4D5E15B7-CCF8-4F94-9FE2-98CFF7A3D34C} - System32\Tasks\Microsoft\Windows\Multimedia\SMupdate3 => Rundll32.exe C:\PROGRA~1\COMMON~1\System\SysMenu.dll ,Command701 update3 <==== ATTENTION
Task: {7F66F5E4-A742-4D44-A1E6-8702EE739B5D} - System32\Tasks\Abelssoft\Updater scan => C:\Program Files\CHIP Updater\CHIPUpdater.exe
Task: {84B9A19E-C07B-4C2F-B2C2-2DC5A5A722AD} - System32\Tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTask => C:\Windows\system32\Wat\WatAdminSvc.exe [2013-11-18] ()
Task: {990DE140-CCEF-429D-8697-D5B3F80B76FF} - System32\Tasks\Microsoft\Windows\Maintenance\SMupdate2 => Rundll32.exe C:\PROGRA~1\COMMON~1\System\SysMenu.dll ,Command701 update2 <==== ATTENTION
Task: {FF042177-2ECB-464E-9EC1-4F2FB2EAB17B} - System32\Tasks\Games\UpdateCheck_S-1-5-21-2908931533-4132489533-110418967-1000

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Loaded Modules (whitelisted) =============

2015-01-10 16:56 - 2005-07-18 13:43 - 00160256 _____ () C:\Program Files\MSI\Live Update\unrar.dll
2014-03-05 16:39 - 2014-03-05 16:39 - 00075136 _____ () C:\Windows\system32\PnkBstrA.exe
2014-12-09 18:58 - 2014-01-28 17:33 - 00019744 _____ () C:\Program Files\CheckDrive\AbStartManager.dll
2014-12-09 18:58 - 2014-01-28 17:33 - 00014112 _____ () C:\Program Files\CheckDrive\AbMessages.dll
2013-09-05 00:14 - 2013-09-05 00:14 - 04300456 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2014-07-02 12:53 - 2014-12-09 18:52 - 03758192 _____ () C:\Program Files\Mozilla Firefox\mozjs.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\ProgramData\TEMP:1CE11B51
AlternateDataStreams: C:\ProgramData\TEMP:373E1720

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys => ""="Driver"

==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)

MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^DualCoreCenter.lnk => C:\Windows\pss\DualCoreCenter.lnk.CommonStartup
MSCONFIG\startupreg: DelReg => C:\Program Files\MSI\DualCoreCenter\DelReg.exe
MSCONFIG\startupreg: EPLTarget => 
MSCONFIG\startupreg: StartCCC => "C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
MSCONFIG\startupreg: Uninstall C: => 

========================= Accounts: ==========================

Administrator (S-1-5-21-2908931533-4132489533-110418967-500 - Administrator - Disabled)
Gast (S-1-5-21-2908931533-4132489533-110418967-501 - Limited - Disabled)
... (S-1-5-21-2908931533-4132489533-110418967-1000 - Administrator - Enabled) => C:\Users\.......-PC

==================== Faulty Device Manager Devices =============

Name: 
Description: 
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: 
Description: 
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: 
Description: 
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Officejet Pro 8500 A909g
Description: Officejet Pro 8500 A909g
Class Guid: 
Manufacturer: 
Service: 
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: SPDRIVER_1.38.0.1434
Description: SPDRIVER_1.38.0.1434
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer: 
Service: SPDRIVER_1.38.0.1434
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.

Name: ntiomin
Description: ntiomin
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer: 
Service: ntiomin
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.


==================== Event log errors: =========================

Application errors:
==================
Error: (01/16/2015 06:42:12 PM) (Source: VSS) (EventID: 12292) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Erstellen der Schattenkopieanbieter-COM-Klasse mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
] ist ein Fehler aufgetreten.


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen
   Schattenkopien abfragen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
   Snapshotkontext: 13
   Snapshotkontext: 13
   Ausführungskontext: Coordinator

Error: (01/16/2015 06:42:12 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} und dem Namen "SW_PROV" kann nicht gestartet werden. [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
]


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen
   Schattenkopien abfragen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
   Snapshotkontext: 13
   Snapshotkontext: 13
   Ausführungskontext: Coordinator

Error: (01/16/2015 04:32:37 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service.  Service did not stop gracefully the last time it was run.
   bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
   bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error: (01/16/2015 02:57:10 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service.  Service did not stop gracefully the last time it was run.
   bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
   bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error: (01/15/2015 07:31:09 PM) (Source: VSS) (EventID: 12292) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Erstellen der Schattenkopieanbieter-COM-Klasse mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
] ist ein Fehler aufgetreten.


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Überprüfen, ob das Volume vom Anbieter unterstützt wird
   Volume einem Schattenkopiesatz hinzufügen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {00000000-0000-0000-0000-000000000000}
   Snapshotkontext: 16
   Ausführungskontext: Coordinator
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Volumename: C:\
   Ausführungskontext: Coordinator

Error: (01/15/2015 07:31:09 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} und dem Namen "SW_PROV" kann nicht gestartet werden. [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
]


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Überprüfen, ob das Volume vom Anbieter unterstützt wird
   Volume einem Schattenkopiesatz hinzufügen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {00000000-0000-0000-0000-000000000000}
   Snapshotkontext: 16
   Ausführungskontext: Coordinator
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Volumename: C:\
   Ausführungskontext: Coordinator

Error: (01/15/2015 07:17:48 PM) (Source: VSS) (EventID: 12292) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Erstellen der Schattenkopieanbieter-COM-Klasse mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
] ist ein Fehler aufgetreten.


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen
   Schattenkopien abfragen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
   Snapshotkontext: -1
   Snapshotkontext: -1
   Ausführungskontext: Coordinator

Error: (01/15/2015 07:17:48 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} und dem Namen "SW_PROV" kann nicht gestartet werden. [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
]


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen
   Schattenkopien abfragen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
   Snapshotkontext: -1
   Snapshotkontext: -1
   Ausführungskontext: Coordinator

Error: (01/15/2015 07:17:48 PM) (Source: VSS) (EventID: 12292) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Erstellen der Schattenkopieanbieter-COM-Klasse mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
] ist ein Fehler aufgetreten.


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Überprüfen, ob das Volume vom Anbieter unterstützt wird

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {00000000-0000-0000-0000-000000000000}
   Snapshotkontext: 0
   Ausführungskontext: Coordinator
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Volumename: \\?\Volume{f0d1c040-5541-11df-9f0a-806e6f6e6963}\

Error: (01/15/2015 07:17:48 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} und dem Namen "SW_PROV" kann nicht gestartet werden. [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
]


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Überprüfen, ob das Volume vom Anbieter unterstützt wird

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {00000000-0000-0000-0000-000000000000}
   Snapshotkontext: 0
   Ausführungskontext: Coordinator
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Volumename: \\?\Volume{f0d1c040-5541-11df-9f0a-806e6f6e6963}\


System errors:
=============
Error: (01/16/2015 04:16:15 PM) (Source: Disk) (EventID: 11) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR2 gefunden.

Error: (01/16/2015 04:16:14 PM) (Source: Disk) (EventID: 11) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR2 gefunden.

Error: (01/16/2015 04:16:14 PM) (Source: Disk) (EventID: 11) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR2 gefunden.

Error: (01/16/2015 04:16:13 PM) (Source: Disk) (EventID: 11) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR2 gefunden.

Error: (01/15/2015 07:52:22 PM) (Source: atikmdag) (EventID: 19468) (User: )
Description: CPLIB :: General - Invalid Parameter

Error: (01/15/2015 07:52:19 PM) (Source: atikmdag) (EventID: 19468) (User: )
Description: CPLIB :: General - Invalid Parameter

Error: (01/15/2015 07:52:15 PM) (Source: atikmdag) (EventID: 19468) (User: )
Description: CPLIB :: General - Invalid Parameter

Error: (01/15/2015 07:52:11 PM) (Source: atikmdag) (EventID: 19468) (User: )
Description: CPLIB :: General - Invalid Parameter

Error: (01/15/2015 07:52:07 PM) (Source: atikmdag) (EventID: 19468) (User: )
Description: CPLIB :: General - Invalid Parameter

Error: (01/15/2015 07:52:04 PM) (Source: atikmdag) (EventID: 19468) (User: )
Description: CPLIB :: General - Invalid Parameter


Microsoft Office Sessions:
=========================
Error: (01/16/2015 06:42:12 PM) (Source: VSS) (EventID: 12292) (User: )
Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen
   Schattenkopien abfragen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
   Snapshotkontext: 13
   Snapshotkontext: 13
   Ausführungskontext: Coordinator

Error: (01/16/2015 06:42:12 PM) (Source: VSS) (EventID: 13) (User: )
Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}SW_PROV0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen
   Schattenkopien abfragen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
   Snapshotkontext: 13
   Snapshotkontext: 13
   Ausführungskontext: Coordinator

Error: (01/16/2015 04:32:37 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service.  Service did not stop gracefully the last time it was run.
   bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
   bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error: (01/16/2015 02:57:10 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service.  Service did not stop gracefully the last time it was run.
   bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
   bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error: (01/15/2015 07:31:09 PM) (Source: VSS) (EventID: 12292) (User: )
Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Überprüfen, ob das Volume vom Anbieter unterstützt wird
   Volume einem Schattenkopiesatz hinzufügen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {00000000-0000-0000-0000-000000000000}
   Snapshotkontext: 16
   Ausführungskontext: Coordinator
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Volumename: C:\
   Ausführungskontext: Coordinator

Error: (01/15/2015 07:31:09 PM) (Source: VSS) (EventID: 13) (User: )
Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}SW_PROV0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Überprüfen, ob das Volume vom Anbieter unterstützt wird
   Volume einem Schattenkopiesatz hinzufügen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {00000000-0000-0000-0000-000000000000}
   Snapshotkontext: 16
   Ausführungskontext: Coordinator
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Volumename: C:\
   Ausführungskontext: Coordinator

Error: (01/15/2015 07:17:48 PM) (Source: VSS) (EventID: 12292) (User: )
Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen
   Schattenkopien abfragen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
   Snapshotkontext: -1
   Snapshotkontext: -1
   Ausführungskontext: Coordinator

Error: (01/15/2015 07:17:48 PM) (Source: VSS) (EventID: 13) (User: )
Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}SW_PROV0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen
   Schattenkopien abfragen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
   Snapshotkontext: -1
   Snapshotkontext: -1
   Ausführungskontext: Coordinator

Error: (01/15/2015 07:17:48 PM) (Source: VSS) (EventID: 12292) (User: )
Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Überprüfen, ob das Volume vom Anbieter unterstützt wird

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {00000000-0000-0000-0000-000000000000}
   Snapshotkontext: 0
   Ausführungskontext: Coordinator
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Volumename: \\?\Volume{f0d1c040-5541-11df-9f0a-806e6f6e6963}\

Error: (01/15/2015 07:17:48 PM) (Source: VSS) (EventID: 13) (User: )
Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}SW_PROV0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Überprüfen, ob das Volume vom Anbieter unterstützt wird

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {00000000-0000-0000-0000-000000000000}
   Snapshotkontext: 0
   Ausführungskontext: Coordinator
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Volumename: \\?\Volume{f0d1c040-5541-11df-9f0a-806e6f6e6963}\
         
und hier die FRST


FRST Logfile:

FRST Logfile:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 15-01-2015 01
Ran by ... (administrator) on ...-PC on 16-01-2015 18:36:34
Running from C:\Users\...Downloads
Loaded Profiles: .d (Available profiles: ...)
Platform: Microsoft Windows 7 Ultimate  Service Pack 2 (X86) OS Language: Deutsch (Deutschland)
Internet Explorer Version 10 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgrsx.exe
(ATI Technologies Inc.) C:\Windows\System32\Ati2evxx.exe
(Acronis) C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgidsagent.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgwdsvc.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-LogRotatorService.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgcsrvx.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-UpdaterService.exe
(SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE
(Micro-Star International) C:\Program Files\MSI\Live Update\MSI_LiveUpdate_Service.exe
() C:\Windows\System32\PnkBstrA.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgnsx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgemcx.exe
(ATI Technologies Inc.) C:\Windows\System32\Ati2evxx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgcsrvx.exe
(Abelssoft) C:\Program Files\CheckDrive\CheckDriveBackgroundGuard.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgui.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ink\InputPersonalization.exe
(Microsoft Corporation) C:\Windows\System32\taskmgr.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\System32\audiodg.exe
(Farbar) C:\Users\...\Downloads\FRST(1).exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AVG_UI] => C:\Program Files\AVG\AVG2014\avgui.exe [5188112 2014-12-16] (AVG Technologies CZ, s.r.o.)
HKLM\...\Run: [Live Update] => C:\Program Files\MSI\Live Update\Live Update.exe [3484624 2014-11-27] (Micro-Star International)
HKU\S-1-5-21-2908931533-4132489533-110418967-1000\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-2908931533-4132489533-110418967-1000\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\S-1-5-21-2908931533-4132489533-110418967-1000\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
HKU\S-1-5-18\...\RunOnce: [{91140000-0011-0000-0000-0000000FF1CE}] => C:\Windows\system32\cmd.exe /C del "C:\ProgramData\Microsoft Help\Rgstrtn.lck" /Q /A:H
HKU\S-1-5-18\...\RunOnce: [{90140000-001A-0407-0000-0000000FF1CE}] => C:\Windows\system32\cmd.exe /C del "C:\ProgramData\Microsoft Help\Rgstrtn.lck" /Q /A:H
Startup: C:\Users\...\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Mozilla Firefox.lnk
ShortcutTarget: Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
Startup: C:\Users\...\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Mozilla Firefox.lnk
ShortcutTarget: Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  No File
ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} =>  No File
ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} =>  No File
ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} =>  No File
ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} =>  No File

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-2908931533-4132489533-110418967-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
SearchScopes: HKLM -> {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-2908931533-4132489533-110418967-1000 -> {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-2908931533-4132489533-110418967-1000 -> {1} URL = 
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Handler: WSWSVCUchrome - No CLSID Value - 
Tcpip\..\Interfaces\{4007158E-A27E-4722-834C-9092AFB70BBA}: [NameServer] 192.168.178.1
Tcpip\..\Interfaces\{6390599D-EB38-4EAF-A9A7-CA69DB545DE2}: [NameServer] 192.168.178.1
Tcpip\..\Interfaces\{63BBC024-99F8-45D3-AB40-74F50224FE54}: [NameServer] 192.168.178.1
Tcpip\..\Interfaces\{BED213D9-3AFA-41A2-9268-951878DACF3E}: [NameServer] 8.8.8.8,8.8.4.4
Tcpip\..\Interfaces\{EA104EC2-7169-4026-98D9-7FA51715A643}: [NameServer] 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1

FireFox:
========
FF ProfilePath: C:\Users\...\AppData\Roaming\Mozilla\Firefox\Profiles\1fcf5fo1.default-1417951851860
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_15_0_0_246.dll ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> C:\Windows\system32\Wat\npWatWeb.dll ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.0.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll No File
FF Extension: Adblock Plus - C:\Users\.......-PC\AppData\Roaming\Mozilla\Firefox\Profiles\1fcf5fo1.default-1417951851860\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-01-10]
FF HKLM\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF HKLM\...\Firefox\Extensions: [OKitSpace@Vittalia.es] - C:\Users\...\AppData\Roaming\okitspace\Firefox
FF HKLM\...\Firefox\Extensions: [e-webprint@epson.com] - C:\Program Files\Epson Software\E-Web Print\Firefox Add-on
FF Extension: E-Web Print - C:\Program Files\Epson Software\E-Web Print\Firefox Add-on [2014-11-05]

Chrome: 
=======
CHR StartupUrls: Default -> "hxxp://www.google.com"
CHR DefaultSearchKeyword: Default -> google
CHR DefaultSuggestURL: Default -> 
CHR Profile: C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-09-22]
CHR Extension: (Google Drive) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-09-22]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-09-22]
CHR Extension: (YouTube) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-09-22]
CHR Extension: (Google-Suche) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-09-22]
CHR Extension: (Google Tabellen) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-09-22]
CHR Extension: (Google Wallet) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-09-22]
CHR Extension: (Google Mail) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-09-22]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - No Path
CHR HKLM\...\Chrome\Extension: [pilobbegphefikcgjpajnneiiahhejam] - C:\Users\...\Econa\Gutscheinsammler\Chrome\chrome.crx [Not Found]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 AcrSch2Svc; C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe [661072 2009-11-12] (Acronis)
R2 afcdpsrv; C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe [2480048 2010-07-25] (Acronis)
R2 AVGIDSAgent; C:\Program Files\AVG\AVG2014\avgidsagent.exe [3247120 2014-12-16] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files\AVG\AVG2014\avgwdsvc.exe [289328 2014-12-16] (AVG Technologies CZ, s.r.o.)
S2 BstHdAndroidSvc; C:\Program Files\BlueStacks\HD-Service.exe [409304 2014-10-08] (BlueStack Systems, Inc.)
R2 BstHdLogRotatorSvc; C:\Program Files\BlueStacks\HD-LogRotatorService.exe [388824 2014-10-08] (BlueStack Systems, Inc.)
R2 BstHdUpdaterSvc; C:\Program Files\BlueStacks\HD-UpdaterService.exe [782040 2014-10-08] (BlueStack Systems, Inc.)
R2 EPSON_PM_RPCV4_04; C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE [142432 2012-02-21] (SEIKO EPSON CORPORATION)
S3 FlexNet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe [1074480 2014-09-22] (Flexera Software LLC)
R3 hpqcxs08; C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll [249344 2009-09-23] (Hewlett-Packard Co.) [File not signed]
R2 hpqddsvc; C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll [133120 2009-09-23] (Hewlett-Packard Co.) [File not signed]
R2 HPSLPSVC; C:\Program Files\HP\Digital Imaging\bin\HPSLPSVC32.DLL [694784 2009-09-23] (Hewlett-Packard Co.) [File not signed]
R2 MSI_LiveUpdate_Service; C:\Program Files\MSI\Live Update\MSI_LiveUpdate_Service.exe [1732048 2014-11-27] (Micro-Star International)
S2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [44544 2008-12-03] (Hewlett-Packard) [File not signed]
S2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [53760 2008-12-03] (Hewlett-Packard) [File not signed]
R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [75136 2014-03-05] ()
S3 WatAdminSvc; C:\Windows\system32\Wat\WatAdminSvc.exe [1343400 2013-11-18] () [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AegisP; C:\Windows\System32\DRIVERS\AegisP.sys [21035 2012-05-17] (Meetinghouse Data Communications) [File not signed]
R1 Avgdiskx; C:\Windows\System32\DRIVERS\avgdiskx.sys [121624 2014-06-30] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdriverx.sys [200984 2014-07-21] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHX; C:\Windows\System32\DRIVERS\avgidshx.sys [147736 2014-06-17] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSShim; C:\Windows\System32\DRIVERS\avgidsshimx.sys [21272 2014-06-17] (AVG Technologies CZ, s.r.o.)
R1 Avgldx86; C:\Windows\System32\DRIVERS\avgldx86.sys [189720 2014-10-24] (AVG Technologies CZ, s.r.o.)
R0 Avglogx; C:\Windows\System32\DRIVERS\avglogx.sys [241944 2014-06-17] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx86; C:\Windows\System32\DRIVERS\avgmfx86.sys [98584 2014-10-29] (AVG Technologies CZ, s.r.o.)
R0 AvgRkx86; C:\Windows\System32\DRIVERS\avgrkx86.sys [27416 2014-06-17] (AVG Technologies CZ, s.r.o.)
R1 Avgtdix; C:\Windows\System32\DRIVERS\avgtdix.sys [197400 2014-10-20] (AVG Technologies CZ, s.r.o.)
R1 avgtp; C:\Windows\system32\drivers\avgtpx86.sys [42784 2014-11-13] (AVG Technologies)
R2 BstHdDrv; C:\Program Files\BlueStacks\HD-Hypervisor-x86.sys [112344 2014-10-08] (BlueStack Systems)
S3 DrvAgent32; C:\Windows\system32\Drivers\DrvAgent32.sys [23456 2015-01-11] (Phoenix Technologies) [File not signed]
S3 DualCoreCenter; C:\Program Files\MSI\DualCoreCenter\NTGLM7X.sys [36152 2010-02-08] (MICRO-STAR INT'L CO., LTD.)
R0 giveio; C:\Windows\System32\giveio.sys [5248 1996-04-03] () [File not signed]
R3 NTIOLib_1_0_4; C:\Program Files\MSI\Live Update\NTIOLib.sys [7680 2010-10-20] (MSI) [File not signed]
S3 RTLWUSB; C:\Windows\System32\DRIVERS\RTL8187.sys [172416 2006-04-21] (Realtek Semiconductor Corporation                           ) [File not signed]
S3 RushTopDevice2; C:\Program Files\MSI\DualCoreCenter\RushTop.sys [55296 2009-03-18] (Your Corporation) [File not signed]
S3 SjyPkt; C:\Windows\System32\Drivers\SjyPkt.sys [13532 2002-10-02] (Windows (R) 2000 DDK provider) [File not signed]
S3 SMARTMouseFilterx86; C:\Windows\System32\DRIVERS\SMARTMouseFilterx86.sys [8192 2014-03-25] (SMART Technologies) [File not signed]
S3 SMARTVHidMini2000x86; C:\Windows\System32\DRIVERS\SMARTVHidMini2000x86.sys [7680 2014-03-25] (SMART Technologies) [File not signed]
S3 SMARTVTabletPCx86; C:\Windows\System32\DRIVERS\SMARTVTabletPCx86.sys [15872 2014-03-25] (SMART Technologies ULC) [File not signed]
R0 tdrpman258; C:\Windows\System32\DRIVERS\tdrpm258.sys [911680 2010-07-25] (Acronis)
S2 eamonm; system32\DRIVERS\eamonm.sys [X]
S3 fsbl; \??\C:\Program Files\F-Secure\apps\ComputerSecurity\Anti-Virus\fsbldrv.sys [X]
S1 ntiomin; No ImagePath
S3 OSFMount; \??\C:\Users\.......-PC\AppData\Local\Temp\Rar$EXa0.041\bin\OSFMount.sys [X]
S3 SANDRA; \??\C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2015x\WNt600x86\Sandra.sys [X]
S2 SPDRIVER_1.38.0.1434; \??\C:\Program Files\ShopperPro\JSDriver\1.38.0.1434\jsdrv.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
S3 XDva401; \??\C:\Windows\system32\XDva401.sys [X]

==================== NetSvcs (Whitelisted) ===================


(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-16 18:32 - 2015-01-16 18:38 - 00016818 _____ () C:\Users\.......-PC\Downloads\FRST.txt
2015-01-16 18:30 - 2015-01-16 18:31 - 01116672 _____ (Farbar) C:\Users\.......-PC\Downloads\FRST.exe
2015-01-16 18:30 - 2015-01-16 18:31 - 01116672 _____ (Farbar) C:\Users\.......-PC\Downloads\FRST(1).exe
2015-01-16 17:05 - 2015-01-16 17:05 - 00212880 _____ () C:\Users\.......-PC\Downloads\TCC_LE_Windows_Command_Prompt_64bit_v13.06_Build_77_TSA1WIDD9.exe
2015-01-16 16:26 - 2015-01-16 16:26 - 00640424 _____ (Akeo Consulting (hxxp://akeo.ie)) C:\Users\.......-PC\Downloads\rufus-1.4.12.exe
2015-01-14 17:44 - 2009-12-16 00:03 - 00002816 _____ () C:\Windows\PFRO.log
2015-01-14 17:27 - 2010-02-11 06:32 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIDEMGX.dll
2015-01-14 17:27 - 2010-02-11 06:30 - 00348160 _____ (ATI Technologies, Inc.) C:\Windows\system32\atipdlxx.dll
2015-01-14 17:27 - 2010-02-11 06:30 - 00274432 _____ (ATI Technologies, Inc.) C:\Windows\system32\Oemdspif.dll
2015-01-14 17:27 - 2010-02-11 06:30 - 00159744 _____ () C:\Windows\system32\atitmmxx.dll
2015-01-14 17:27 - 2010-02-11 06:29 - 00043520 _____ (ATI Technologies, Inc.) C:\Windows\system32\ati2edxx.dll
2015-01-14 17:27 - 2010-02-11 06:29 - 00012288 _____ (AMD) C:\Windows\system32\atimuixx.dll
2015-01-14 17:27 - 2010-02-11 05:58 - 11513856 _____ (ATI Technologies Inc.) C:\Windows\system32\atioglxx.dll
2015-01-14 17:27 - 2010-02-11 05:48 - 00135168 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll
2015-01-14 17:27 - 2010-02-11 05:34 - 00053248 _____ (ATI Technologies Inc.) C:\Windows\system32\Drivers\ati2erec.dll
2015-01-14 17:27 - 2009-07-14 02:14 - 04772352 _____ (ATI Technologies Inc. ) C:\Windows\system32\atiumdva.dll
2015-01-14 17:27 - 2009-07-14 02:14 - 04030976 _____ (ATI Technologies Inc. ) C:\Windows\system32\atiumdag.dll
2015-01-14 17:27 - 2009-07-14 02:14 - 00050688 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom32.dll
2015-01-14 17:27 - 2009-07-13 23:09 - 04194816 _____ (ATI Technologies Inc.) C:\Windows\system32\Drivers\atikmdag.sys
2015-01-14 17:27 - 2009-06-10 22:19 - 00069112 _____ () C:\Windows\system32\atiumdva.cap
2015-01-14 17:24 - 2015-01-14 17:31 - 00000000 ____D () C:\Program Files\ATI Technologies
2015-01-14 17:24 - 2009-12-16 00:22 - 00000000 ____D () C:\Program Files\ATI
2015-01-14 17:24 - 2009-07-21 11:41 - 00278528 _____ (ATI Technologies Inc.) C:\Windows\system32\Ati2evxx.dll
2015-01-14 17:24 - 2009-07-21 11:40 - 00733184 _____ (ATI Technologies Inc.) C:\Windows\system32\Ati2evxx.exe
2015-01-14 17:24 - 2009-05-05 00:30 - 00014392 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\Drivers\AtiPcie.sys
2015-01-14 17:16 - 2015-01-14 17:16 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\DriverToolkit
2015-01-14 17:15 - 2015-01-14 17:19 - 00000000 ____D () C:\Program Files\DriverToolkit
2015-01-14 17:15 - 2015-01-14 17:15 - 02448688 _____ (Megaify Software ) C:\Users\.......-PC\Downloads\driver_setup.exe
2015-01-14 16:48 - 2015-01-14 16:48 - 69104008 _____ (SiSoftware ) C:\Users\.......-PC\Downloads\san2015x-2115_CB-DL-Manager [1].exe
2015-01-14 16:47 - 2015-01-14 16:47 - 00823792 _____ ( ) C:\Users\.......-PC\Downloads\san2015x-2115_CB-DL-Manager.exe
2015-01-14 16:46 - 2015-01-14 16:46 - 01179936 _____ () C:\Users\.......-PC\Downloads\SiSoft Sandra Lite 2015 - CHIP-Installer.exe
2015-01-14 16:46 - 2015-01-14 16:46 - 01179936 _____ () C:\Users\.......-PC\Downloads\SiSoft Sandra Lite 2015 - CHIP-Installer(1).exe
2015-01-14 16:39 - 2015-01-14 16:40 - 00633360 _____ (Copyright © 2010 eSupport.com. All Rights Reserved.) C:\Users\.......-PC\Downloads\biosagentplus_1218(1).exe
2015-01-14 16:37 - 2015-01-14 16:37 - 00000000 _____ () C:\Users\.......-PC\Downloads\cpu-z_1.71-setup-en_CB-DL-Manager.exe
2015-01-13 17:36 - 2015-01-16 16:40 - 00000488 __RSH () C:\ProgramData\ntuser.pol
2015-01-13 17:35 - 2015-01-13 17:35 - 00639400 _____ (Akeo Consulting (hxxp://akeo.ie)) C:\Users\.......-PC\Downloads\rufus.exe
2015-01-13 17:32 - 2015-01-13 17:32 - 01179936 _____ () C:\Users\.......-PC\Downloads\Rufus - CHIP-Installer.exe
2015-01-13 17:12 - 2015-01-13 17:13 - 03852472 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-01-12 16:01 - 2015-01-16 16:31 - 00000672 _____ () C:\Windows\setupact.log
2015-01-12 16:01 - 2015-01-12 16:01 - 00115592 _____ () C:\Users\.......-PC\AppData\Local\GDIPFONTCACHEV1.DAT
2015-01-12 16:01 - 2015-01-12 16:01 - 00000000 _____ () C:\Windows\setuperr.log
2015-01-11 18:52 - 2015-01-11 18:52 - 00019456 _____ () C:\Users\.......-PC\Downloads\launcher32.dll
2015-01-11 18:50 - 2015-01-11 18:50 - 00633360 _____ (Copyright © 2010 eSupport.com. All Rights Reserved.) C:\Users\.......-PC\Downloads\biosagentplus_1218.exe
2015-01-11 18:50 - 2015-01-11 18:50 - 00023456 _____ (Phoenix Technologies) C:\Windows\system32\Drivers\DrvAgent32.sys
2015-01-11 18:50 - 2015-01-11 18:50 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\eSupport.com
2015-01-11 18:28 - 2015-01-11 18:28 - 01297519 _____ (KC Softwares ) C:\Users\.......-PC\Downloads\ramexpert_nork_CB-DL-Manager [1].exe
2015-01-11 14:42 - 2015-01-11 14:42 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-01-11 14:05 - 2015-01-11 14:50 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Sparta
2015-01-11 14:05 - 2015-01-11 14:05 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\sparta111
2015-01-11 14:05 - 2015-01-11 14:05 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Pirates
2015-01-11 13:15 - 2015-01-11 15:01 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ImgBurn
2015-01-11 11:56 - 2015-01-11 11:56 - 00001103 _____ () C:\Users\Public\Desktop\DualCoreCenter.lnk
2015-01-11 11:56 - 2006-10-13 08:18 - 00380928 _____ (NVIDIA) C:\Windows\ntuneoem.dll
2015-01-11 11:56 - 2006-10-13 08:18 - 00018216 _____ (NVidia Corp.) C:\Windows\nvoclk64.sys
2015-01-11 11:56 - 2006-10-13 08:18 - 00006912 _____ (NVidia Corp.) C:\Windows\nvoclock.sys
2015-01-11 11:56 - 2006-10-13 08:16 - 00421888 _____ (NVIDIA) C:\Windows\nvsulib.dll
2015-01-11 11:56 - 2006-10-13 08:13 - 01622016 _____ (NVIDIA) C:\Windows\NVBenchMarks.dll
2015-01-11 11:56 - 2006-10-13 08:12 - 00028672 _____ (NVIDIA) C:\Windows\AutoTuneScript.dll
2015-01-11 11:56 - 2006-09-05 14:59 - 00217088 _____ () C:\Windows\NVGfxOgl.dll
2015-01-11 11:56 - 2006-08-21 09:20 - 00045056 _____ (NVIDIA) C:\Windows\NTuneGpu.dll
2015-01-11 11:56 - 2006-06-01 17:22 - 00053248 _____ (NVIDIA Corporation) C:\Windows\Nvgpio.dll
2015-01-11 11:56 - 2005-09-23 16:33 - 01060864 _____ (Microsoft Corporation) C:\Windows\MFC71.dll
2015-01-11 11:56 - 2005-09-23 16:33 - 00499712 _____ (Microsoft Corporation) C:\Windows\msvcp71.dll
2015-01-11 11:56 - 2005-09-23 16:33 - 00348160 _____ (Microsoft Corporation) C:\Windows\msvcr71.dll
2015-01-10 20:56 - 2015-01-10 20:57 - 02191360 _____ () C:\Users\.......-PC\Desktop\adwcleaner_4.107.exe
2015-01-10 17:00 - 2015-01-10 17:00 - 00001881 _____ () C:\Users\Public\Desktop\MSI Live Update 6.lnk
2015-01-10 17:00 - 2015-01-10 17:00 - 00000000 ____D () C:\MSI
2015-01-10 16:57 - 2015-01-10 16:59 - 00013817 _____ () C:\Windows\system32\Utility.xml
2015-01-10 16:56 - 2014-04-30 16:23 - 00011248 _____ (Windows (R) Win 7 DDK provider) C:\Windows\acpimof.dll
2015-01-10 15:17 - 2015-01-10 15:19 - 00000000 _____ () C:\Users\.......-PC\AppData\Local\{9D9B305F-6B8C-4AA5-94D7-474EAA096BC4}
2014-12-24 09:38 - 2014-12-24 09:38 - 00040960 ____N () C:\bootex.log
2014-12-24 09:38 - 2014-12-24 09:38 - 00016648 ____N () C:\bootsqm.dat
2014-12-24 09:38 - 2014-12-24 09:38 - 00000000 __SHD () C:\found.002
2014-12-22 12:49 - 2014-12-22 12:49 - 00000000 ___HD () C:\MediaServer_Temp
2014-12-22 12:48 - 2014-12-22 12:50 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Wondershare Video Converter Pro
2014-12-22 12:48 - 2014-12-22 12:48 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Wondershare
2014-12-22 12:48 - 2014-12-22 12:48 - 00000000 ____D () C:\Program Files\Common Files\Wondershare
2014-12-22 12:47 - 2014-12-22 13:30 - 00000000 ____D () C:\Program Files\Wondershare
2014-12-22 12:47 - 2014-12-22 13:29 - 00000000 ____D () C:\ProgramData\Wondershare
2014-12-22 12:47 - 2014-12-22 13:01 - 00000000 ____D () C:\ProgramData\Wondershare Video Converter Pro
2014-12-22 12:47 - 2014-10-24 14:16 - 00214528 _____ () C:\Windows\system32\WSCM32.dll
2014-12-22 12:45 - 2014-12-22 12:45 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\HandBrake
2014-12-22 12:41 - 2014-12-22 12:41 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\4Videosoft Studio
2014-12-22 12:28 - 2014-12-22 12:28 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Aiseesoft Studio
2014-12-22 10:32 - 2014-12-22 10:32 - 00000213 _____ () C:\Users\.......-PC\Desktop\Team Fortress 2.url
2014-12-22 10:26 - 2015-01-16 15:35 - 00000000 ____D () C:\Program Files\Steam
2014-12-22 10:26 - 2014-12-22 10:26 - 00000897 _____ () C:\Users\Public\Desktop\Steam.lnk
2014-12-22 10:26 - 2014-12-22 10:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2014-12-21 16:44 - 2014-12-21 16:44 - 00000000 __RSH () C:\MSDOS.SYS
2014-12-21 16:44 - 2014-12-21 16:44 - 00000000 __RSH () C:\IO.SYS
2014-12-21 12:27 - 2014-12-21 12:27 - 00000000 ____D () C:\Program Files\ESET
2014-12-21 12:13 - 2015-01-16 18:36 - 00000000 ____D () C:\FRST
2014-12-21 11:58 - 2014-12-21 11:58 - 00000083 _____ () C:\Users\.......-PC\Desktop\Neues Textdokument (2).txt
2014-12-20 17:20 - 2014-12-20 17:25 - 00000000 ____D () C:\Program Files\RMPrepUSB
2014-12-20 14:32 - 2014-12-22 11:23 - 00000000 ____D () C:\Users\.......-PC\Desktop\Hausbau
2014-12-20 11:49 - 2014-12-20 14:38 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk
2014-12-20 11:49 - 2014-12-20 11:49 - 00001965 _____ () C:\Users\Public\Desktop\Adobe Reader X.lnk
2014-12-20 11:49 - 2014-12-20 11:49 - 00000000 ____D () C:\Program Files\Adobe
2014-12-20 11:32 - 2014-12-20 11:32 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Mael
2014-12-20 11:14 - 2015-01-11 13:14 - 00000373 _____ () C:\Users\.......-PC\AppData\Roaming\burnaware.ini
2014-12-20 11:14 - 2014-12-20 11:14 - 00000988 _____ () C:\Users\Public\Desktop\BurnAware Free.lnk
2014-12-20 11:14 - 2014-12-20 11:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BurnAware Free
2014-12-20 11:14 - 2014-12-20 11:14 - 00000000 ____D () C:\Program Files\BurnAware Free
2014-12-20 10:46 - 2014-12-20 10:46 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Ashampoo
2014-12-20 10:45 - 2014-12-20 10:45 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\ashampoo
2014-12-20 10:45 - 2014-12-20 10:45 - 00000000 ____D () C:\ProgramData\ashampoo
2014-12-20 09:15 - 2011-07-11 11:39 - 00324834 _____ () C:\Windows6.1-KB2566584-x86.msu
2014-12-19 20:01 - 2014-12-19 20:01 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Aimersoft Video Converter Ultimate
2014-12-19 20:01 - 2014-12-19 20:01 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\{950EB46C-6AC7-4ACC-AB36-9A6A77C08B6A}
2014-12-19 20:01 - 2014-12-19 20:01 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Aimersoft
2014-12-19 20:01 - 2014-12-19 20:01 - 00000000 ____D () C:\Program Files\Common Files\Aimersoft
2014-12-19 20:00 - 2014-12-20 11:11 - 00000000 ____D () C:\Program Files\Aimersoft
2014-12-19 19:50 - 2014-12-19 19:52 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\tiger-k
2014-12-19 19:49 - 2014-12-19 19:49 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Leawo
2014-12-19 19:49 - 2014-12-19 19:49 - 00000000 ____D () C:\ProgramData\Leawo
2014-12-19 19:49 - 2012-01-10 10:18 - 00066944 _____ (TOSHIBA Corporation) C:\Windows\system32\Drivers\thdudf.sys
2014-12-19 18:44 - 2014-12-19 18:44 - 00001133 _____ () C:\Users\.......-PC\Desktop\Any Video Converter.lnk
2014-12-19 18:44 - 2014-12-19 18:44 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Anvsoft
2014-12-19 18:44 - 2014-12-19 18:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anvsoft
2014-12-19 18:44 - 2014-12-19 18:44 - 00000000 ____D () C:\Program Files\Anvsoft
2014-12-19 18:10 - 2014-12-19 19:34 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Microsoft Games
2014-12-19 05:49 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll
2014-12-19 05:49 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll
2014-12-19 05:49 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll
2014-12-19 05:49 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll
2014-12-19 05:49 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll
2014-12-19 05:49 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll
2014-12-19 05:49 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll
2014-12-19 05:49 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll
2014-12-19 05:49 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll
2014-12-19 05:49 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll
2014-12-19 05:49 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll
2014-12-19 05:49 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll
2014-12-19 05:49 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll
2014-12-19 05:49 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll
2014-12-19 05:49 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll
2014-12-19 05:49 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll
2014-12-19 05:49 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll
2014-12-19 05:49 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll
2014-12-19 05:49 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll
2014-12-19 05:49 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll
2014-12-19 05:49 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll
2014-12-19 05:49 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll
2014-12-19 05:49 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll
2014-12-19 05:49 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll
2014-12-19 05:49 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll
2014-12-19 05:49 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll
2014-12-19 05:49 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll
2014-12-19 05:49 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll
2014-12-19 05:49 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll
2014-12-19 05:49 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll
2014-12-19 05:49 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll
2014-12-19 05:49 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll
2014-12-19 05:49 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll
2014-12-19 05:49 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll
2014-12-19 05:49 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll
2014-12-19 05:49 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll
2014-12-19 05:49 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll
2014-12-19 05:49 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll
2014-12-19 05:49 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll
2014-12-19 05:49 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll
2014-12-19 05:49 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll
2014-12-19 05:49 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll
2014-12-19 05:49 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll
2014-12-19 05:49 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll
2014-12-19 05:49 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll
2014-12-19 05:49 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll
2014-12-19 05:49 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll
2014-12-19 05:49 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll
2014-12-19 05:49 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll
2014-12-19 05:49 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll
2014-12-19 05:49 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll
2014-12-18 16:49 - 2014-12-21 12:57 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2014-12-18 16:40 - 2015-01-16 15:39 - 00000000 ____D () C:\Program Files\Common Files\Steam
2014-12-18 16:13 - 2014-12-18 16:13 - 00000000 __SHD () C:\found.001
2014-12-18 05:59 - 2014-12-18 05:59 - 00000000 ____D () C:\SUPERDelete
2014-12-18 05:57 - 2014-12-18 05:57 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\SUPERAntiSpyware.com
2014-12-18 05:57 - 2014-12-18 05:57 - 00000000 ____D () C:\ProgramData\SUPERAntiSpyware.com
2014-12-17 15:55 - 2014-12-17 15:55 - 00000000 ____D () C:\Program Files\Enigma Software Group

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-16 18:38 - 2014-04-20 13:06 - 01153156 _____ () C:\Windows\WindowsUpdate.log
2015-01-16 17:35 - 2010-05-02 06:57 - 00000000 ____D () C:\Program Files\Mozilla Thunderbird
2015-01-16 17:34 - 2014-08-03 12:16 - 00000000 ____D () C:\ProgramData\MFAData
2015-01-16 16:38 - 2014-09-01 14:20 - 00000000 ____D () C:\Users\.......-PC
2015-01-16 16:31 - 2009-07-14 05:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-01-16 15:19 - 2014-04-30 15:08 - 00000000 ____D () C:\Users\.......-PC\Desktop\video
2015-01-15 19:54 - 2009-07-14 05:34 - 00037504 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-01-15 19:54 - 2009-07-14 05:34 - 00037504 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-01-15 19:25 - 2014-09-01 14:20 - 00000000 ___RD () C:\Users\.......-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-01-15 19:08 - 2013-08-06 17:45 - 00000000 ____D () C:\Windows\pss
2015-01-12 17:45 - 2014-11-30 18:14 - 00007606 _____ () C:\Users\.......-PC\AppData\Local\Resmon.ResmonCfg
2015-01-11 18:17 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\LogFiles
2015-01-11 15:07 - 2014-01-23 17:49 - 00000000 ___DC () C:\AdwCleaner
2015-01-11 15:02 - 2010-05-02 06:58 - 00000000 ___RD () C:\Users\.......-PC\Desktop\support
2015-01-11 14:51 - 2014-11-22 18:21 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\JAM Software
2015-01-11 11:56 - 2010-05-02 07:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI
2015-01-11 11:56 - 2010-05-02 07:06 - 00000000 ____D () C:\Program Files\MSI
2015-01-10 20:54 - 2014-10-26 16:25 - 00000000 ____D () C:\Users\.......-PC\Desktop\POwer
2015-01-10 17:35 - 2014-08-03 12:20 - 00000927 _____ () C:\Users\Public\Desktop\AVG 2014.lnk
2015-01-10 17:35 - 2014-08-03 12:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2014-12-22 14:16 - 2014-09-01 14:20 - 00001397 _____ () C:\Users\.......-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-12-22 14:16 - 2014-03-28 17:20 - 00002097 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-12-22 14:16 - 2012-01-22 11:26 - 00001035 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-12-22 14:16 - 2010-05-02 06:51 - 00001023 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-12-22 10:15 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\NDF
2014-12-21 16:49 - 2014-11-01 19:29 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\vlc
2014-12-21 16:45 - 2010-05-02 09:08 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-12-21 16:45 - 2010-05-02 09:08 - 00000000 ____D () C:\Program Files\Microsoft Office
2014-12-21 16:45 - 2009-07-14 03:37 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2014-12-21 16:44 - 2014-05-05 14:57 - 00000033 _____ () C:\Windows\Nscal.ini
2014-12-21 16:44 - 2014-05-05 14:51 - 00302592 _____ (InstallShield Corporation, Inc.) C:\Windows\unin0407.exe
2014-12-21 16:44 - 2009-07-14 09:56 - 00000000 ____D () C:\Windows\ShellNew
2014-12-21 16:40 - 2014-11-05 17:10 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\DVDVideoSoft
2014-12-21 16:26 - 2013-06-04 19:46 - 00000000 __RHD () C:\Users\Public\Libraries
2014-12-20 11:53 - 2013-05-10 12:32 - 00000000 ____D () C:\ProgramData\Adobe
2014-12-20 11:52 - 2014-11-03 05:38 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Adobe
2014-12-20 11:52 - 2014-09-01 14:20 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Adobe
2014-12-20 11:49 - 2014-06-09 11:40 - 00000000 ____D () C:\Program Files\Common Files\Adobe
2014-12-20 10:59 - 2013-01-18 15:50 - 00000000 ____D () C:\Program Files\Ashampoo
2014-12-17 16:50 - 2014-09-01 14:24 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Thunderbird
2014-12-17 15:40 - 2009-07-14 05:53 - 00032640 _____ () C:\Windows\Tasks\SCHEDLGU.TXT

Some content of TEMP:
====================
C:\Users\...\AppData\Local\Temp\avgnt.exe
C:\Users\...\AppData\Local\Temp\DseShExt-x86.dll
C:\Users\...\AppData\Local\Temp\SDShelEx-win32.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => MD5 is legit
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-12-20 15:05

==================== End Of Log ============================
         
--- --- ---

--- --- ---




Danke dür deine hilfe
__________________

Alt 16.01.2015, 19:45   #4
schrauber
/// the machine
/// TB-Ausbilder
 

RUN.dll fehler - Standard

RUN.dll fehler



hi,

Scan mit Combofix
WARNUNG an die MITLESER:
Combofix sollte ausschließlich ausgeführt werden, wenn dies von einem Teammitglied angewiesen wurde!

Downloade dir bitte Combofix vom folgenden Downloadspiegel: Link
  • WICHTIG: Speichere Combofix auf deinem Desktop.
  • Deaktiviere bitte alle deine Antivirensoftware sowie Malware/Spyware Scanner. Diese können Combofix bei der Arbeit stören. Combofix meckert auch manchmal trotzdem noch, das kannst du dann ignorieren, mir aber bitte mitteilen.
  • Starte die Combofix.exe und folge den Anweisungen auf dem Bildschirm.
  • Während Combofix läuft bitte nicht am Computer arbeiten, die Maus bewegen oder ins Combofixfenster klicken!
  • Wenn Combofix fertig ist, wird es ein Logfile erstellen.
  • Bitte poste die C:\Combofix.txt in deiner nächsten Antwort (möglichst in CODE-Tags).
Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten
Es wurde versucht, einen Registrierungsschlüssel einem ungültigen Vorgang zu unterziehen, der zum Löschen markiert wurde.
starte den Rechner einfach neu. Dies sollte das Problem beheben.

__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 17.01.2015, 17:34   #5
momolol404
 
RUN.dll fehler - Standard

RUN.dll fehler



hallo schrauber

ich kann die Combofix datei nicht ausfürhren da mein PC nicht startet.Also er lädt immer stürzt dan mit einem Bluescreen ab, es ist ein F4 Fehler kann es daran liegen das ich mein PC während des entpackens von Combofix ausgeschaltet hab.Ich vermute es zwar nicht weil F4 ja ein Hardware Fehler ist hast du irgeneine Idee

Danke dir


Alt 17.01.2015, 22:38   #6
schrauber
/// the machine
/// TB-Ausbilder
 

RUN.dll fehler - Standard

RUN.dll fehler



Startet er gar nicht mehr? Auch nicht im Safe Mode?

Scan mit Farbar's Recovery Scan Tool (Recovery Mode - Windows Vista, 7, 8)
Hinweise für Windows 8-Nutzer: Anleitung 1 (FRST-Variante) und Anleitung 2 (zweiter Teil)
  • Downloade dir bitte die passende Version des Tools (im Zweifel beide) und speichere diese auf einen USB Stick: FRST Download FRST 32-Bit | FRST 64-Bit
  • Schließe den USB Stick an das infizierte System an und boote das System in die System Reparatur Option.
  • Scanne jetzt nach der bebilderten Anleitung oder verwende die folgende Kurzanleitung:
Über den Boot Manager:
  • Starte den Rechner neu.
  • Während dem Hochfahren drücke mehrmals die F8 Taste
  • Wähle nun Computer reparieren.
  • Wähle dein Betriebssystem und Benutzerkonto und klicke jeweils "Weiter".
Mit Windows CD/DVD (auch bei Windows 8 möglich):
  • Lege die Windows CD in dein Laufwerk.
  • Starte den Rechner neu und starte von der CD.
  • Wähle die Spracheinstellungen und klicke "Weiter".
  • Klicke auf Computerreparaturoptionen !
  • Wähle dein Betriebssystem und Benutzerkonto und klicke jeweils "Weiter".
Wähle in den Reparaturoptionen: Eingabeaufforderung
  • Gib nun bitte notepad ein und drücke Enter.
  • Im öffnenden Textdokument: Datei > Speichern unter... und wähle Computer.
    Hier wird dir der Laufwerksbuchstabe deines USB Sticks angezeigt, merke ihn dir.
  • Schließe Notepad wieder
  • Gib nun bitte folgenden Befehl ein.
    e:\frst.exe bzw. e:\frst64.exe
    Hinweis: e steht für den Laufwerksbuchstaben deines USB Sticks, den du dir gemerkt hast. Gegebenfalls anpassen.
  • Akzeptiere den Disclaimer mit Ja und klicke Untersuchen
Das Tool erstellt eine FRST.txt auf deinem USB Stick. Poste den Inhalt bitte hier nach Möglichkeit in Code-Tags (Anleitung).

__________________
--> RUN.dll fehler

Alt 18.01.2015, 11:58   #7
momolol404
 
RUN.dll fehler - Standard

RUN.dll fehler



hallo

nein er startet gar nicht mehr ich werde deine schritte befolgen und danke dir für deine hilfe

Hier die dateien musste sie teilen waren zu gross


Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 18-01-2015
Ran by SYSTEM on MININT-067FJHK on 16-12-2009 20:14:11
Running from F:\
Platform: Windows 7 Ultimate (X86) OS Language: English (United States)
Internet Explorer Version 10
Boot Mode: Recovery

The current controlset is ControlSet004
ATTENTION!:=====> If the system is bootable FRST must be run from normal or Safe mode to create a complete log.

Tutorial for Farbar Recovery Scan Tool: FRST Tutorial - How to use Farbar Recovery Scan Tool - Malware Removal Guides and Tutorials

==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AVG_UI] => C:\Program Files\AVG\AVG2014\avgui.exe [5188112 2014-12-16] (AVG Technologies CZ, s.r.o.)
HKLM\...\Run: [Live Update] => C:\Program Files\MSI\Live Update\Live Update.exe [3484624 2014-11-27] (Micro-Star International)
HKU\...\...\RunOnce: [FlashPlayerUpdate] => C:\Windows\system32\Macromed\Flash\FlashUtil32_14_0_0_145_Plugin.exe -update plugin
HKU\...\...\Policies\system: [LogonHoursAction] 2
HKU\...\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\.......-PC\...\Policies\system: [LogonHoursAction] 2
HKU\.......-PC\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\.......-PC\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
Startup: C:\Users\.......-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Mozilla Firefox.lnk
ShortcutTarget: Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 AcrSch2Svc; C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe [661072 2009-11-11] (Acronis)
S2 afcdpsrv; C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe [2480048 2010-07-24] (Acronis)
S2 AVGIDSAgent; C:\Program Files\AVG\AVG2014\avgidsagent.exe [3247120 2014-12-16] (AVG Technologies CZ, s.r.o.)
S2 avgwd; C:\Program Files\AVG\AVG2014\avgwdsvc.exe [289328 2014-12-16] (AVG Technologies CZ, s.r.o.)
S2 BstHdAndroidSvc; C:\Program Files\BlueStacks\HD-Service.exe [409304 2014-10-08] (BlueStack Systems, Inc.)
S2 BstHdLogRotatorSvc; C:\Program Files\BlueStacks\HD-LogRotatorService.exe [388824 2014-10-08] (BlueStack Systems, Inc.)
S2 BstHdUpdaterSvc; C:\Program Files\BlueStacks\HD-UpdaterService.exe [782040 2014-10-08] (BlueStack Systems, Inc.)
S2 EPSON_PM_RPCV4_04; C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE [142432 2012-02-20] (SEIKO EPSON CORPORATION)
S3 FlexNet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe [1074480 2014-09-22] (Flexera Software LLC)
S2 MSI_LiveUpdate_Service; C:\Program Files\MSI\Live Update\MSI_LiveUpdate_Service.exe [1732048 2014-11-27] (Micro-Star International)
S2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [75136 2014-03-05] ()
S3 WatAdminSvc; C:\Windows\system32\Wat\WatAdminSvc.exe [1343400 2013-11-18] ()
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-26] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S2 AegisP; C:\Windows\System32\DRIVERS\AegisP.sys [21035 2012-05-17] (Meetinghouse Data Communications)
S1 Avgdiskx; C:\Windows\System32\DRIVERS\avgdiskx.sys [121624 2014-06-30] (AVG Technologies CZ, s.r.o.)
S1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdriverx.sys [200984 2014-07-21] (AVG Technologies CZ, s.r.o.)
S0 AVGIDSHX; C:\Windows\System32\DRIVERS\avgidshx.sys [147736 2014-06-17] (AVG Technologies CZ, s.r.o.)
S1 AVGIDSShim; C:\Windows\System32\DRIVERS\avgidsshimx.sys [21272 2014-06-17] (AVG Technologies CZ, s.r.o.)
S1 Avgldx86; C:\Windows\System32\DRIVERS\avgldx86.sys [189720 2014-10-24] (AVG Technologies CZ, s.r.o.)
S0 Avglogx; C:\Windows\System32\DRIVERS\avglogx.sys [241944 2014-06-17] (AVG Technologies CZ, s.r.o.)
S0 Avgmfx86; C:\Windows\System32\DRIVERS\avgmfx86.sys [98584 2014-10-29] (AVG Technologies CZ, s.r.o.)
S0 AvgRkx86; C:\Windows\System32\DRIVERS\avgrkx86.sys [27416 2014-06-17] (AVG Technologies CZ, s.r.o.)
S1 Avgtdix; C:\Windows\System32\DRIVERS\avgtdix.sys [197400 2014-10-20] (AVG Technologies CZ, s.r.o.)
S1 avgtp; C:\Windows\system32\drivers\avgtpx86.sys [42784 2014-11-13] (AVG Technologies)
S2 BstHdDrv; C:\Program Files\BlueStacks\HD-Hypervisor-x86.sys [112344 2014-10-08] (BlueStack Systems)
S0 giveio; C:\Windows\System32\giveio.sys [5248 1996-04-03] ()
S3 NTIOLib_1_0_4; C:\Program Files\MSI\Live Update\NTIOLib.sys [7680 2010-10-20] (MSI)
S3 RTLWUSB; C:\Windows\System32\DRIVERS\RTL8187.sys [172416 2006-04-21] (Realtek Semiconductor Corporation                           )
S3 SjyPkt; C:\Windows\System32\Drivers\SjyPkt.sys [13532 2002-10-01] (Windows (R) 2000 DDK provider)
S3 SMARTMouseFilterx86; C:\Windows\System32\DRIVERS\SMARTMouseFilterx86.sys [8192 2014-03-25] (SMART Technologies)
S3 SMARTVHidMini2000x86; C:\Windows\System32\DRIVERS\SMARTVHidMini2000x86.sys [7680 2014-03-25] (SMART Technologies)
S3 SMARTVTabletPCx86; C:\Windows\System32\DRIVERS\SMARTVTabletPCx86.sys [15872 2014-03-25] (SMART Technologies ULC)
S0 tdrpman258; C:\Windows\System32\DRIVERS\tdrpm258.sys [911680 2010-07-24] (Acronis)
S3 DualCoreCenter; \??\C:\Program Files\MSI\DualCoreCenter\NTGLM7X.sys [X]
S2 eamonm; system32\DRIVERS\eamonm.sys [X]
S3 fsbl; \??\C:\Program Files\F-Secure\apps\ComputerSecurity\Anti-Virus\fsbldrv.sys [X]
S1 ntiomin; No ImagePath
S3 OSFMount; \??\C:\Users\.......-PC\AppData\Local\Temp\Rar$EXa0.041\bin\OSFMount.sys [X]
S3 RushTopDevice2; \??\C:\Program Files\MSI\DualCoreCenter\RushTop.sys [X]
S3 SANDRA; \??\C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2015x\WNt600x86\Sandra.sys [X]
S2 SPDRIVER_1.38.0.1434; \??\C:\Program Files\ShopperPro\JSDriver\1.38.0.1434\jsdrv.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
S3 XDva401; \??\C:\Windows\system32\XDva401.sys [X]

==================== NetSvcs (Whitelisted) ===================


(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-17 06:24 - 2009-12-16 08:15 - 938946094 _____ () C:\Windows\MEMORY.DMP
2015-01-16 10:55 - 2015-01-16 10:55 - 05609736 ____R (Swearware) C:\Users\.......-PC\Desktop\ComboFix.exe
2015-01-16 09:41 - 2015-01-16 09:45 - 00034347 _____ () C:\Users\.......-PC\Downloads\Addition.txt
2015-01-16 09:32 - 2015-01-16 09:45 - 00041486 _____ () C:\Users\.......-PC\Downloads\FRST.txt
2015-01-16 09:30 - 2015-01-16 09:31 - 01116672 _____ (Farbar) C:\Users\.......-PC\Downloads\FRST.exe
2015-01-16 09:30 - 2015-01-16 09:31 - 01116672 _____ (Farbar) C:\Users\.......-PC\Downloads\FRST(1).exe
2015-01-16 07:26 - 2015-01-16 07:26 - 00640424 _____ (Akeo Consulting (Akeo Consulting)) C:\Users\.......-PC\Downloads\rufus-1.4.12.exe
2015-01-14 08:44 - 2009-12-16 08:15 - 00085346 _____ () C:\Windows\PFRO.log
2015-01-14 08:27 - 2010-02-10 21:32 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\System32\ATIDEMGX.dll
2015-01-14 08:27 - 2010-02-10 21:30 - 00348160 _____ (ATI Technologies, Inc.) C:\Windows\System32\atipdlxx.dll
2015-01-14 08:27 - 2010-02-10 21:30 - 00274432 _____ (ATI Technologies, Inc.) C:\Windows\System32\Oemdspif.dll
2015-01-14 08:27 - 2010-02-10 21:30 - 00159744 _____ () C:\Windows\System32\atitmmxx.dll
2015-01-14 08:27 - 2010-02-10 21:29 - 00043520 _____ (ATI Technologies, Inc.) C:\Windows\System32\ati2edxx.dll
2015-01-14 08:27 - 2010-02-10 21:29 - 00012288 _____ (AMD) C:\Windows\System32\atimuixx.dll
2015-01-14 08:27 - 2010-02-10 20:58 - 11513856 _____ (ATI Technologies Inc.) C:\Windows\System32\atioglxx.dll
2015-01-14 08:27 - 2010-02-10 20:48 - 00135168 _____ (Advanced Micro Devices, Inc.) C:\Windows\System32\atiadlxx.dll
2015-01-14 08:27 - 2010-02-10 20:34 - 00053248 _____ (ATI Technologies Inc.) C:\Windows\System32\Drivers\ati2erec.dll
2015-01-14 08:27 - 2009-07-13 17:14 - 04772352 _____ (ATI Technologies Inc. ) C:\Windows\System32\atiumdva.dll
2015-01-14 08:27 - 2009-07-13 17:14 - 04030976 _____ (ATI Technologies Inc. ) C:\Windows\System32\atiumdag.dll
2015-01-14 08:27 - 2009-07-13 17:14 - 00050688 _____ (Advanced Micro Devices, Inc. ) C:\Windows\System32\amdpcom32.dll
2015-01-14 08:27 - 2009-07-13 14:09 - 04194816 _____ (ATI Technologies Inc.) C:\Windows\System32\Drivers\atikmdag.sys
2015-01-14 08:27 - 2009-06-10 13:19 - 00069112 _____ () C:\Windows\System32\atiumdva.cap
2015-01-14 08:24 - 2015-01-14 08:31 - 00000000 ____D () C:\Program Files\ATI Technologies
2015-01-14 08:24 - 2009-12-15 15:22 - 00000000 ____D () C:\Program Files\ATI
2015-01-14 08:24 - 2009-07-21 02:41 - 00278528 _____ (ATI Technologies Inc.) C:\Windows\System32\Ati2evxx.dll
2015-01-14 08:24 - 2009-07-21 02:40 - 00733184 _____ (ATI Technologies Inc.) C:\Windows\System32\Ati2evxx.exe
2015-01-14 08:24 - 2009-05-04 15:30 - 00014392 _____ (Advanced Micro Devices Inc.) C:\Windows\System32\Drivers\AtiPcie.sys
2015-01-14 08:16 - 2015-01-14 08:16 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\DriverToolkit
2015-01-14 08:15 - 2015-01-14 08:19 - 00000000 ____D () C:\Program Files\DriverToolkit
2015-01-14 08:15 - 2015-01-14 08:15 - 02448688 _____ (Megaify Software ) C:\Users\.......-PC\Downloads\driver_setup.exe
2015-01-14 07:48 - 2015-01-14 07:48 - 69104008 _____ (SiSoftware ) C:\Users\.......-PC\Downloads\san2015x-2115_CB-DL-Manager [1].exe
2015-01-14 07:47 - 2015-01-14 07:47 - 00823792 _____ ( ) C:\Users\.......-PC\Downloads\san2015x-2115_CB-DL-Manager.exe
2015-01-14 07:46 - 2015-01-14 07:46 - 01179936 _____ () C:\Users\.......-PC\Downloads\SiSoft Sandra Lite 2015 - CHIP-Installer.exe
2015-01-14 07:46 - 2015-01-14 07:46 - 01179936 _____ () C:\Users\.......-PC\Downloads\SiSoft Sandra Lite 2015 - CHIP-Installer(1).exe
2015-01-14 07:39 - 2015-01-14 07:40 - 00633360 _____ (Copyright © 2010 eSupport.com. All Rights Reserved.) C:\Users\.......-PC\Downloads\biosagentplus_1218(1).exe
2015-01-14 07:37 - 2015-01-14 07:37 - 00000000 _____ () C:\Users\.......-PC\Downloads\cpu-z_1.71-setup-en_CB-DL-Manager.exe
2015-01-13 08:36 - 2015-01-16 07:40 - 00000488 __RSH () C:\ProgramData\ntuser.pol
2015-01-13 08:35 - 2015-01-13 08:35 - 00639400 _____ (Akeo Consulting (Akeo Consulting)) C:\Users\.......-PC\Downloads\rufus.exe
2015-01-13 08:32 - 2015-01-13 08:32 - 01179936 _____ () C:\Users\.......-PC\Downloads\Rufus - CHIP-Installer.exe
2015-01-13 08:12 - 2015-01-13 08:13 - 03852472 _____ () C:\Windows\System32\FNTCACHE.DAT
2015-01-12 07:01 - 2015-01-16 07:31 - 00000672 _____ () C:\Windows\setupact.log
2015-01-12 07:01 - 2015-01-12 07:01 - 00115592 _____ () C:\Users\.......-PC\AppData\Local\GDIPFONTCACHEV1.DAT
2015-01-12 07:01 - 2015-01-12 07:01 - 00000000 _____ () C:\Windows\setuperr.log
2015-01-11 09:52 - 2015-01-11 09:52 - 00019456 _____ () C:\Users\.......-PC\Downloads\launcher32.dll
2015-01-11 09:50 - 2015-01-11 09:50 - 00633360 _____ (Copyright © 2010 eSupport.com. All Rights Reserved.) C:\Users\.......-PC\Downloads\biosagentplus_1218.exe
2015-01-11 09:50 - 2015-01-11 09:50 - 00023456 _____ (Phoenix Technologies) C:\Windows\System32\Drivers\DrvAgent32.sys
2015-01-11 09:50 - 2015-01-11 09:50 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\eSupport.com
2015-01-11 09:28 - 2015-01-11 09:28 - 01297519 _____ (KC Softwares ) C:\Users\.......-PC\Downloads\ramexpert_nork_CB-DL-Manager [1].exe
2015-01-11 05:42 - 2015-01-11 05:42 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-01-11 05:05 - 2015-01-11 05:50 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Sparta
2015-01-11 05:05 - 2015-01-11 05:05 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\sparta111
2015-01-11 05:05 - 2015-01-11 05:05 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Pirates
2015-01-11 02:56 - 2006-10-12 23:18 - 00380928 _____ (NVIDIA) C:\Windows\ntuneoem.dll
2015-01-11 02:56 - 2006-10-12 23:18 - 00018216 _____ (NVidia Corp.) C:\Windows\nvoclk64.sys
2015-01-11 02:56 - 2006-10-12 23:18 - 00006912 _____ (NVidia Corp.) C:\Windows\nvoclock.sys
2015-01-11 02:56 - 2006-10-12 23:16 - 00421888 _____ (NVIDIA) C:\Windows\nvsulib.dll
2015-01-11 02:56 - 2006-10-12 23:13 - 01622016 _____ (NVIDIA) C:\Windows\NVBenchMarks.dll
2015-01-11 02:56 - 2006-10-12 23:12 - 00028672 _____ (NVIDIA) C:\Windows\AutoTuneScript.dll
2015-01-11 02:56 - 2006-09-05 05:59 - 00217088 _____ () C:\Windows\NVGfxOgl.dll
2015-01-11 02:56 - 2006-08-21 00:20 - 00045056 _____ (NVIDIA) C:\Windows\NTuneGpu.dll
2015-01-11 02:56 - 2006-06-01 08:22 - 00053248 _____ (NVIDIA Corporation) C:\Windows\Nvgpio.dll
2015-01-11 02:56 - 2005-09-23 07:33 - 01060864 _____ (Microsoft Corporation) C:\Windows\MFC71.dll
2015-01-11 02:56 - 2005-09-23 07:33 - 00499712 _____ (Microsoft Corporation) C:\Windows\msvcp71.dll
2015-01-11 02:56 - 2005-09-23 07:33 - 00348160 _____ (Microsoft Corporation) C:\Windows\msvcr71.dll
2015-01-10 11:56 - 2015-01-10 11:57 - 02191360 _____ () C:\Users\.......-PC\Desktop\adwcleaner_4.107.exe
2015-01-10 08:00 - 2015-01-10 08:00 - 00001881 _____ () C:\Users\Public\Desktop\MSI Live Update 6.lnk
2015-01-10 08:00 - 2015-01-10 08:00 - 00000000 ____D () C:\MSI
2015-01-10 07:57 - 2015-01-10 07:59 - 00013817 _____ () C:\Windows\System32\Utility.xml
2015-01-10 07:56 - 2014-04-30 07:23 - 00011248 _____ (Windows (R) Win 7 DDK provider) C:\Windows\acpimof.dll
2015-01-10 06:17 - 2015-01-10 06:19 - 00000000 _____ () C:\Users\.......-PC\AppData\Local\{9D9B305F-6B8C-4AA5-94D7-474EAA096BC4}
2014-12-24 00:38 - 2014-12-24 00:38 - 00016648 ____N () C:\bootsqm.dat
2014-12-24 00:38 - 2014-12-24 00:38 - 00000000 __SHD () C:\found.002
2014-12-22 03:49 - 2014-12-22 03:49 - 00000000 ___HD () C:\MediaServer_Temp
2014-12-22 03:48 - 2014-12-22 03:50 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Wondershare Video Converter Pro
2014-12-22 03:48 - 2014-12-22 03:48 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Wondershare
2014-12-22 03:48 - 2014-12-22 03:48 - 00000000 ____D () C:\Program Files\Common Files\Wondershare
2014-12-22 03:47 - 2014-12-22 04:30 - 00000000 ____D () C:\Program Files\Wondershare
2014-12-22 03:47 - 2014-12-22 04:29 - 00000000 ____D () C:\ProgramData\Wondershare
2014-12-22 03:47 - 2014-12-22 04:01 - 00000000 ____D () C:\ProgramData\Wondershare Video Converter Pro
2014-12-22 03:47 - 2014-10-24 05:16 - 00214528 _____ () C:\Windows\System32\WSCM32.dll
2014-12-22 03:45 - 2014-12-22 03:45 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\HandBrake
2014-12-22 03:41 - 2014-12-22 03:41 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\4Videosoft Studio
2014-12-22 03:28 - 2014-12-22 03:28 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Aiseesoft Studio
2014-12-22 01:32 - 2014-12-22 01:32 - 00000213 _____ () C:\Users\.......-PC\Desktop\Team Fortress 2.url
2014-12-22 01:26 - 2015-01-16 06:35 - 00000000 ____D () C:\Program Files\Steam
2014-12-22 01:26 - 2014-12-22 01:26 - 00000897 _____ () C:\Users\Public\Desktop\Steam.lnk
2014-12-21 07:44 - 2014-12-21 07:44 - 00000000 __RSH () C:\MSDOS.SYS
2014-12-21 07:44 - 2014-12-21 07:44 - 00000000 __RSH () C:\IO.SYS
2014-12-21 03:27 - 2014-12-21 03:27 - 00000000 ____D () C:\Program Files\ESET
2014-12-21 03:13 - 2009-12-16 20:14 - 00000000 ____D () C:\FRST
2014-12-21 02:58 - 2014-12-21 02:58 - 00000083 _____ () C:\Users\.......-PC\Desktop\Neues Textdokument (2).txt
2014-12-20 08:20 - 2014-12-20 08:25 - 00000000 ____D () C:\Program Files\RMPrepUSB
2014-12-20 05:32 - 2014-12-22 02:23 - 00000000 ____D () C:\Users\.......-PC\Desktop\Hausbau
2014-12-20 02:49 - 2014-12-20 02:49 - 00001965 _____ () C:\Users\Public\Desktop\Adobe Reader X.lnk
2014-12-20 02:49 - 2014-12-20 02:49 - 00000000 ____D () C:\Program Files\Adobe
2014-12-20 02:32 - 2014-12-20 02:32 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Mael
2014-12-20 02:14 - 2015-01-11 04:14 - 00000373 _____ () C:\Users\.......-PC\AppData\Roaming\burnaware.ini
2014-12-20 02:14 - 2014-12-20 02:14 - 00000988 _____ () C:\Users\Public\Desktop\BurnAware Free.lnk
2014-12-20 02:14 - 2014-12-20 02:14 - 00000000 ____D () C:\Program Files\BurnAware Free
2014-12-20 01:46 - 2014-12-20 01:46 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Ashampoo
2014-12-20 01:45 - 2014-12-20 01:45 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\ashampoo
2014-12-20 01:45 - 2014-12-20 01:45 - 00000000 ____D () C:\ProgramData\ashampoo
2014-12-20 00:15 - 2011-07-11 02:39 - 00324834 _____ () C:\Windows6.1-KB2566584-x86.msu
2014-12-19 11:01 - 2014-12-19 11:01 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Aimersoft Video Converter Ultimate
2014-12-19 11:01 - 2014-12-19 11:01 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\{950EB46C-6AC7-4ACC-AB36-9A6A77C08B6A}
2014-12-19 11:01 - 2014-12-19 11:01 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Aimersoft
2014-12-19 11:01 - 2014-12-19 11:01 - 00000000 ____D () C:\Program Files\Common Files\Aimersoft
2014-12-19 11:00 - 2014-12-20 02:11 - 00000000 ____D () C:\Program Files\Aimersoft
2014-12-19 10:50 - 2014-12-19 10:52 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\tiger-k
2014-12-19 10:49 - 2014-12-19 10:49 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Leawo
2014-12-19 10:49 - 2014-12-19 10:49 - 00000000 ____D () C:\ProgramData\Leawo
2014-12-19 10:49 - 2012-01-10 01:18 - 00066944 _____ (TOSHIBA Corporation) C:\Windows\System32\Drivers\thdudf.sys
2014-12-19 09:44 - 2014-12-19 09:44 - 00001133 _____ () C:\Users\.......-PC\Desktop\Any Video Converter.lnk
2014-12-19 09:44 - 2014-12-19 09:44 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Anvsoft
2014-12-19 09:44 - 2014-12-19 09:44 - 00000000 ____D () C:\Program Files\Anvsoft
2014-12-19 09:10 - 2014-12-19 10:34 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Microsoft Games
2014-12-18 20:49 - 2010-02-04 01:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_6.dll
2014-12-18 20:49 - 2010-02-04 01:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_6.dll
2014-12-18 20:49 - 2010-02-04 01:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\System32\XAPOFX1_4.dll
2014-12-18 20:49 - 2010-02-04 01:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\System32\X3DAudio1_7.dll
2014-12-18 20:49 - 2009-09-04 08:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_5.dll
2014-12-18 20:49 - 2009-09-04 08:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_5.dll
2014-12-18 20:49 - 2009-09-04 08:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\System32\XAPOFX1_3.dll
2014-12-18 20:49 - 2009-09-04 08:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\System32\d3dcsx_42.dll
2014-12-18 20:49 - 2009-09-04 08:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_42.dll
2014-12-18 20:49 - 2009-09-04 08:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\System32\D3DX9_42.dll
2014-12-18 20:49 - 2009-09-04 08:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\System32\d3dx11_42.dll
2014-12-18 20:49 - 2009-03-16 05:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_4.dll
2014-12-18 20:49 - 2009-03-16 05:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_4.dll
2014-12-18 20:49 - 2009-03-16 05:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\System32\X3DAudio1_6.dll
2014-12-18 20:49 - 2009-03-09 06:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\System32\D3DX9_41.dll
2014-12-18 20:49 - 2008-10-27 01:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_3.dll
2014-12-18 20:49 - 2008-10-27 01:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_3.dll
2014-12-18 20:49 - 2008-10-27 01:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\System32\XAPOFX1_2.dll
2014-12-18 20:49 - 2008-10-27 01:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\System32\X3DAudio1_5.dll
2014-12-18 20:49 - 2008-10-14 21:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\System32\D3DX9_40.dll
2014-12-18 20:49 - 2008-10-14 21:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_40.dll
2014-12-18 20:49 - 2008-10-14 21:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_40.dll
2014-12-18 20:49 - 2008-07-31 01:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_2.dll
2014-12-18 20:49 - 2008-07-31 01:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\System32\XAPOFX1_1.dll
2014-12-18 20:49 - 2008-07-31 01:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_2.dll
2014-12-18 20:49 - 2008-07-10 02:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_39.dll
2014-12-18 20:49 - 2008-07-10 02:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\System32\D3DX9_39.dll
2014-12-18 20:49 - 2008-07-10 02:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_39.dll
2014-12-18 20:49 - 2008-05-30 05:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_1.dll
2014-12-18 20:49 - 2008-05-30 05:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_1.dll
2014-12-18 20:49 - 2008-05-30 05:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\System32\XAPOFX1_0.dll
2014-12-18 20:49 - 2008-05-30 05:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\System32\X3DAudio1_4.dll
2014-12-18 20:49 - 2008-05-30 05:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\System32\D3DX9_38.dll
2014-12-18 20:49 - 2008-05-30 05:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_38.dll
2014-12-18 20:49 - 2008-05-30 05:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_38.dll
2014-12-18 20:49 - 2008-03-05 07:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_0.dll
2014-12-18 20:49 - 2008-03-05 07:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_0.dll
2014-12-18 20:49 - 2008-03-05 07:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\System32\X3DAudio1_3.dll
2014-12-18 20:49 - 2008-03-05 06:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\System32\D3DX9_37.dll
2014-12-18 20:49 - 2008-03-05 06:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_37.dll
2014-12-18 20:49 - 2008-02-05 14:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_37.dll
2014-12-18 20:49 - 2007-10-21 18:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_10.dll
2014-12-18 20:49 - 2007-10-21 18:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\System32\X3DAudio1_2.dll
2014-12-18 20:49 - 2007-10-12 06:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_36.dll
2014-12-18 20:49 - 2007-10-12 06:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_36.dll
2014-12-18 20:49 - 2007-10-02 00:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_36.dll
2014-12-18 20:49 - 2007-07-19 15:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_9.dll
2014-12-18 20:49 - 2007-07-19 09:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_35.dll
2014-12-18 20:49 - 2007-07-19 09:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_35.dll
2014-12-18 20:49 - 2007-07-19 09:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_35.dll
2014-12-18 20:49 - 2007-06-20 11:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_8.dll
2014-12-18 07:40 - 2015-01-16 06:39 - 00000000 ____D () C:\Program Files\Common Files\Steam
2014-12-18 07:13 - 2014-12-18 07:13 - 00000000 __SHD () C:\found.001
2014-12-17 20:59 - 2014-12-17 20:59 - 00000000 ____D () C:\SUPERDelete
2014-12-17 20:57 - 2014-12-17 20:57 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\SUPERAntiSpyware.com
2014-12-17 20:57 - 2014-12-17 20:57 - 00000000 ____D () C:\ProgramData\SUPERAntiSpyware.com
2014-12-17 06:55 - 2014-12-17 06:55 - 00000000 ____D () C:\Program Files\Enigma Software Group
2014-12-15 07:54 - 2014-11-03 00:40 - 00055464 _____ (Elex do Brasil Participações Ltda) C:\Windows\System32\Drivers\iSafeNetFilter.sys
2014-12-14 08:15 - 2014-12-14 08:15 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Nitro PDF
2014-12-13 07:51 - 2007-05-16 07:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_34.dll
2014-12-13 07:51 - 2007-05-16 07:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_34.dll
2014-12-13 07:51 - 2007-05-16 07:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_34.dll
2014-12-13 07:51 - 2007-04-04 09:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_7.dll
2014-12-13 07:51 - 2007-04-04 09:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\System32\xinput1_3.dll
2014-12-13 07:51 - 2007-03-15 07:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_33.dll
2014-12-13 07:51 - 2007-03-12 07:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_33.dll
2014-12-13 07:51 - 2007-03-12 07:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_33.dll
2014-12-13 07:51 - 2007-03-05 03:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\System32\x3daudio1_1.dll
2014-12-13 07:51 - 2007-01-24 06:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_6.dll
2014-12-13 07:51 - 2006-12-08 03:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_5.dll
2014-12-13 07:51 - 2006-11-29 04:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10.dll
2014-12-13 07:51 - 2006-09-28 07:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_31.dll
2014-12-13 07:51 - 2006-09-28 07:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_4.dll
2014-12-13 07:51 - 2006-07-28 00:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_3.dll
2014-12-13 07:51 - 2006-07-28 00:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\System32\xinput1_2.dll
2014-12-13 07:51 - 2006-05-30 22:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_2.dll
2014-12-13 07:51 - 2006-03-31 03:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_30.dll
2014-12-13 07:51 - 2006-03-31 03:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_1.dll
2014-12-13 07:51 - 2006-03-31 03:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\System32\xinput1_1.dll
2014-12-13 07:51 - 2006-02-02 23:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_29.dll
2014-12-13 07:51 - 2006-02-02 23:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\System32\xactengine2_0.dll
2014-12-13 07:51 - 2006-02-02 23:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\System32\x3daudio1_0.dll
2014-12-13 07:51 - 2005-12-05 09:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_28.dll
2014-12-13 07:51 - 2005-07-22 10:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_27.dll
2014-12-13 07:51 - 2005-05-26 06:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_26.dll
2014-12-13 07:51 - 2005-03-18 08:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_25.dll
2014-12-13 07:51 - 2005-02-05 10:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_24.dll
2014-12-13 07:50 - 2014-12-13 07:50 - 00000324 _____ () C:\Windows\game.ini
2014-12-13 07:44 - 2014-12-13 07:44 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Skype
2014-12-13 07:43 - 2014-12-13 07:45 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Skype
2014-12-12 06:32 - 2014-12-12 06:32 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\dvdcss
2014-12-11 09:22 - 2014-12-11 09:22 - 00000000 ____D () C:\Windows\CheckSur
2014-12-09 09:58 - 2014-12-09 10:17 - 00001839 _____ () C:\Users\.......-PC\Desktop\CheckDrive.lnk
2014-12-09 09:58 - 2014-12-09 10:17 - 00000000 ____D () C:\Program Files\CheckDrive
2014-12-08 06:30 - 2014-12-08 06:30 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\CrashRpt
2014-12-08 06:29 - 2014-12-08 06:29 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Smartbar
2014-12-08 06:28 - 2014-12-08 06:46 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Pro PC Cleaner
2014-12-08 06:28 - 2014-12-08 06:28 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Pro_PC_Cleaner
2014-12-07 09:37 - 2014-12-07 09:37 - 00018620 _____ () C:\Windows\System32\CCCInstall_201412071837316367.log
2014-12-07 08:56 - 2014-12-07 08:56 - 00000000 ____D () C:\ATI
2014-12-07 06:20 - 2014-12-07 06:20 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\ATI
2014-12-07 06:20 - 2014-12-07 06:20 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\ATI
2014-12-07 06:20 - 2014-12-07 06:20 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\AMD
2014-12-07 06:19 - 2014-12-07 06:19 - 00065940 _____ () C:\Windows\System32\CCCInstall_201412071519130422.log
2014-12-07 06:17 - 2014-12-07 08:59 - 00000000 ____D () C:\ProgramData\AMD
2014-12-07 05:12 - 2014-12-07 05:52 - 00000000 ____D () C:\AMD
2014-12-07 04:01 - 2014-12-07 04:01 - 00001784 _____ () C:\Users\Public\Desktop\Apps.lnk
2014-12-07 03:58 - 2014-12-07 03:58 - 00000000 ____D () C:\ProgramData\BlueStacks
2014-12-07 03:58 - 2014-12-07 03:58 - 00000000 ____D () C:\Program Files\BlueStacks
2014-12-07 03:57 - 2014-12-07 03:57 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Bluestacks
2014-12-07 03:48 - 2014-12-13 10:24 - 00003028 _____ () C:\Windows\System32\debug.log
2014-11-30 09:14 - 2015-01-16 10:28 - 00007606 _____ () C:\Users\.......-PC\AppData\Local\Resmon.ResmonCfg
2014-11-25 08:06 - 2010-10-16 02:59 - 02788816 _____ (Adobe Systems, Inc.) C:\Users\.......-PC\Desktop\FP_PL_PFS_INSTALLER.exe
2014-11-25 07:59 - 2014-11-25 07:59 - 00783424 _____ () C:\Windows\pkeyconfig.xrm-ms
2014-11-25 07:58 - 2014-11-26 10:30 - 00000000 ____D () C:\Users\.......-PC\Desktop\Windows7Loader
2014-11-23 19:56 - 2014-11-23 19:56 - 00001052 _____ () C:\Users\Public\Desktop\Oracle VM VirtualBox.lnk
2014-11-23 19:56 - 2014-11-23 19:56 - 00000000 ____D () C:\Program Files\Oracle
2014-11-23 19:56 - 2014-05-16 06:25 - 00204064 _____ (Oracle Corporation) C:\Windows\System32\Drivers\VBoxDrv.sys
2014-11-23 19:56 - 2014-05-16 06:24 - 00104736 _____ (Oracle Corporation) C:\Windows\System32\Drivers\VBoxUSBMon.sys
2014-11-23 19:50 - 2014-11-23 20:16 - 00000000 ____D () C:\Program Files\Andy
2014-11-23 08:54 - 2014-11-23 08:54 - 00000000 ____D () C:\ProgramData\4001812108
2014-11-23 08:53 - 2014-11-23 08:53 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\DriverFinder
2014-11-23 08:45 - 2014-11-23 08:50 - 00000000 ____D () C:\Program Files\DriverFinder
2014-11-23 08:35 - 2014-11-23 08:50 - 00000000 ____D () C:\SocketeQ
2014-11-23 07:41 - 2014-11-23 07:41 - 00000008 _____ () C:\Users\Public\youwave_size
2014-11-23 04:28 - 2014-11-23 04:28 - 00000000 ____D () C:\Program Files\Convar
2014-11-22 09:26 - 2014-11-22 10:56 - 00000000 ___HD () C:\Users\.......-PC\AppData\Roaming\IFViewer
2014-11-22 09:21 - 2015-01-11 05:51 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\JAM Software
2014-11-22 02:46 - 2014-11-22 02:47 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Apps\Windows 7 USB DVD Download Tool
2014-11-22 02:46 - 2014-11-22 02:46 - 00002585 _____ () C:\Users\.......-PC\Desktop\Windows 7 USB DVD Download Tool.lnk
2014-11-22 02:44 - 2014-11-22 02:47 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\ImgBurn
2014-11-22 02:36 - 2014-11-22 02:36 - 00000000 ____D () C:\Program Files\ImgBurn
2014-11-20 08:43 - 2014-11-20 08:43 - 00000880 _____ () C:\Users\.......-PC\Desktop\Robot Karol.lnk
2014-11-20 08:43 - 2014-11-20 08:43 - 00000000 ____D () C:\Program Files\RobotKarol
2014-11-19 06:46 - 2014-11-10 18:44 - 00550912 _____ (Microsoft Corporation) C:\Windows\System32\kerberos.dll
2014-11-19 06:46 - 2014-11-10 18:44 - 00186880 _____ (Microsoft Corporation) C:\Windows\System32\pku2u.dll
2014-11-13 06:23 - 2014-11-23 06:09 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\AVG Web TuneUp
2014-11-13 06:23 - 2014-11-13 06:23 - 00042784 _____ (AVG Technologies) C:\Windows\System32\Drivers\avgtpx86.sys
2014-11-13 06:23 - 2014-11-13 06:23 - 00000000 ____D () C:\ProgramData\AVG Web TuneUp
2014-11-13 06:23 - 2014-11-13 06:23 - 00000000 ____D () C:\Program Files\AVG Web TuneUp
2014-11-13 05:55 - 2014-10-17 17:33 - 00571904 _____ (Microsoft Corporation) C:\Windows\System32\oleaut32.dll
2014-11-13 05:55 - 2014-10-13 17:50 - 02363904 _____ (Microsoft Corporation) C:\Windows\System32\msi.dll
2014-11-13 05:55 - 2014-10-09 16:45 - 02379264 _____ (Microsoft Corporation) C:\Windows\System32\win32k.sys
2014-11-13 05:55 - 2014-10-02 17:44 - 00475136 _____ (Microsoft Corporation) C:\Windows\System32\audiosrv.dll
2014-11-13 05:55 - 2014-10-02 17:44 - 00442880 _____ (Microsoft Corporation) C:\Windows\System32\AUDIOKSE.dll
2014-11-13 05:55 - 2014-10-02 17:44 - 00374784 _____ (Microsoft Corporation) C:\Windows\System32\AudioEng.dll
2014-11-13 05:55 - 2014-10-02 17:44 - 00275968 _____ (Microsoft Corporation) C:\Windows\System32\EncDump.dll
2014-11-13 05:55 - 2014-10-02 17:44 - 00195584 _____ (Microsoft Corporation) C:\Windows\System32\AudioSes.dll
2014-11-13 05:55 - 2014-08-20 22:26 - 01237504 _____ (Microsoft Corporation) C:\Windows\System32\msxml3.dll
2014-11-13 05:55 - 2014-08-20 22:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\System32\msxml3r.dll
2014-11-13 05:55 - 2014-08-11 17:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\System32\IMJP10K.DLL
2014-11-13 05:54 - 2014-11-05 09:50 - 00254464 _____ (Microsoft Corporation) C:\Windows\System32\generaltel.dll
2014-11-13 05:54 - 2014-11-05 09:50 - 00203776 _____ (Microsoft Corporation) C:\Windows\System32\aepdu.dll
2014-11-13 05:54 - 2014-11-05 09:47 - 00302592 _____ (Microsoft Corporation) C:\Windows\System32\aeinv.dll
2014-11-13 05:54 - 2014-10-25 16:36 - 01762816 _____ (Microsoft Corporation) C:\Windows\System32\wininet.dll
2014-11-13 05:54 - 2014-10-25 16:36 - 00042496 _____ (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe
2014-11-13 05:54 - 2014-10-25 16:35 - 14368768 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2014-11-13 05:54 - 2014-10-25 16:35 - 01181696 _____ (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2014-11-13 05:54 - 2014-10-25 16:35 - 00523776 _____ (Microsoft Corporation) C:\Windows\System32\vbscript.dll
2014-11-13 05:54 - 2014-10-25 16:35 - 00493056 _____ (Microsoft Corporation) C:\Windows\System32\msfeeds.dll
2014-11-13 05:54 - 2014-10-25 16:35 - 00163840 _____ (Microsoft Corporation) C:\Windows\System32\msrating.dll
2014-11-13 05:54 - 2014-10-25 16:35 - 00080384 _____ (Microsoft Corporation) C:\Windows\System32\mshtmled.dll
2014-11-13 05:54 - 2014-10-25 16:34 - 13758464 _____ (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2014-11-13 05:54 - 2014-10-25 16:34 - 02861568 _____ (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2014-11-13 05:54 - 2014-10-25 16:34 - 02055168 _____ (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2014-11-13 05:54 - 2014-10-25 16:34 - 01441280 _____ (Microsoft Corporation) C:\Windows\System32\inetcpl.cpl
2014-11-13 05:54 - 2014-10-25 16:34 - 00690688 _____ (Microsoft Corporation) C:\Windows\System32\jscript.dll
2014-11-13 05:54 - 2014-10-25 16:34 - 00391168 _____ (Microsoft Corporation) C:\Windows\System32\ieui.dll
2014-11-13 05:54 - 2014-10-25 16:34 - 00357888 _____ (Microsoft Corporation) C:\Windows\System32\dxtmsft.dll
2014-11-13 05:54 - 2014-10-25 16:34 - 00226816 _____ (Microsoft Corporation) C:\Windows\System32\iedkcs32.dll
2014-11-13 05:54 - 2014-10-25 16:34 - 00226816 _____ (Microsoft Corporation) C:\Windows\System32\dxtrans.dll
2014-11-13 05:54 - 2014-10-25 16:34 - 00109056 _____ (Microsoft Corporation) C:\Windows\System32\iesysprep.dll
2014-11-13 05:54 - 2014-10-25 16:34 - 00061440 _____ (Microsoft Corporation) C:\Windows\System32\iesetup.dll
2014-11-13 05:54 - 2014-10-25 16:34 - 00039936 _____ (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2014-11-13 05:54 - 2014-10-25 16:34 - 00033280 _____ (Microsoft Corporation) C:\Windows\System32\iernonce.dll
2014-11-13 05:54 - 2014-10-25 16:13 - 02706432 _____ (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2014-11-13 05:54 - 2014-10-25 15:17 - 00071680 _____ (Microsoft Corporation) C:\Windows\System32\RegisterIEPKEYs.exe
2014-11-13 05:54 - 2014-10-24 17:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\System32\packager.dll
2014-11-13 05:54 - 2014-10-13 17:56 - 00136632 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ksecpkg.sys
2014-11-13 05:54 - 2014-10-13 17:50 - 01059840 _____ (Microsoft Corporation) C:\Windows\System32\lsasrv.dll
2014-11-13 05:54 - 2014-10-13 17:50 - 00523776 _____ (Microsoft Corporation) C:\Windows\System32\termsrv.dll
2014-11-13 05:54 - 2014-10-13 17:47 - 00146432 _____ (Microsoft Corporation) C:\Windows\System32\msaudite.dll
2014-11-13 05:54 - 2014-10-13 17:46 - 00681984 _____ (Microsoft Corporation) C:\Windows\System32\adtschema.dll
2014-11-13 05:54 - 2014-09-19 01:23 - 00259584 _____ (Microsoft Corporation) C:\Windows\System32\msv1_0.dll
2014-11-13 05:54 - 2014-09-19 01:23 - 00248832 _____ (Microsoft Corporation) C:\Windows\System32\schannel.dll
2014-11-13 05:54 - 2014-09-19 01:23 - 00221184 _____ (Microsoft Corporation) C:\Windows\System32\ncrypt.dll
2014-11-13 05:54 - 2014-09-19 01:23 - 00172032 _____ (Microsoft Corporation) C:\Windows\System32\wdigest.dll
2014-11-13 05:54 - 2014-09-19 01:23 - 00065536 _____ (Microsoft Corporation) C:\Windows\System32\TSpkg.dll
2014-11-13 05:54 - 2014-09-19 01:23 - 00017408 _____ (Microsoft Corporation) C:\Windows\System32\credssp.dll
2014-11-08 10:49 - 2014-11-23 08:53 - 00000000 ____D () C:\Program Files\AppInventor
2014-11-08 10:36 - 2014-11-08 10:36 - 00096680 _____ (Oracle Corporation) C:\Windows\System32\WindowsAccessBridge.dll
2014-11-08 10:36 - 2014-11-08 10:36 - 00000000 ____D () C:\ProgramData\Sun
2014-11-08 10:36 - 2014-11-08 10:36 - 00000000 ____D () C:\ProgramData\Oracle
2014-11-08 10:36 - 2014-11-08 10:36 - 00000000 ____D () C:\Program Files\Common Files\Java
2014-11-08 10:35 - 2014-11-08 10:35 - 00000000 ____D () C:\Program Files\Java
2014-11-08 06:52 - 2014-11-08 06:52 - 00000000 ____D () C:\Windows\de
2014-11-08 06:51 - 2014-12-14 10:01 - 00000000 ____D () C:\Program Files\Windows Live
2014-11-08 06:48 - 2014-11-08 06:51 - 00002122 _____ () C:\Users\.......-PC\Desktop\Revo Uninstaller.lnk
2014-11-05 20:44 - 2014-11-08 06:32 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Security Systems
2014-11-05 20:44 - 2009-09-04 08:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_42.dll
2014-11-05 20:44 - 2006-11-29 04:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\System32\d3dx9_32.dll
2014-11-05 20:28 - 2014-11-05 20:39 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\GoPro
2014-11-05 20:28 - 2014-11-05 20:28 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\GoPro
2014-11-05 20:26 - 2014-11-05 20:38 - 00000000 ____D () C:\Users\Public\CineForm
2014-11-05 20:26 - 2014-11-05 20:26 - 00000000 ____D () C:\Program Files\DIFX
2014-11-05 20:26 - 2014-11-05 20:26 - 00000000 ____D () C:\Program Files\CineForm
2014-11-05 20:25 - 2014-11-05 20:25 - 00000000 ____D () C:\Program Files\QuickTime
2014-11-05 20:08 - 2014-11-05 20:08 - 00000000 ____D () C:\Program Files\Microsoft OneDrive
2014-11-05 20:07 - 2014-12-14 09:56 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Windows Live
2014-11-05 20:07 - 2014-11-05 20:07 - 00000000 ____D () C:\ProgramData\Microsoft OneDrive
2014-11-05 19:59 - 2014-11-25 06:57 - 00000000 ____D () C:\Users\.......-PC\Desktop\video bearbeitung
2014-11-05 08:27 - 2014-11-05 08:27 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\TuneUp Software
2014-11-05 08:26 - 2014-11-05 08:26 - 00000000 ____D () C:\ProgramData\AVS4YOU
2014-11-05 08:19 - 2014-11-13 06:13 - 00000000 ____D () C:\Program Files\Common Files\AVSMedia
2014-11-05 08:19 - 2014-11-13 06:13 - 00000000 ____D () C:\Program Files\AVS4YOU
2014-11-05 08:19 - 2010-05-11 04:17 - 00024576 _____ (Microsoft Corporation) C:\Windows\System32\msxml3a.dll
2014-11-05 08:11 - 2014-11-08 06:36 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\RHEng
2014-11-05 08:10 - 2014-12-21 07:40 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\DVDVideoSoft
2014-11-05 05:56 - 2011-03-14 18:03 - 00081408 _____ (SEIKO EPSON CORPORATION) C:\Windows\System32\E_FD4BIKE.DLL
2014-11-05 05:56 - 2007-04-09 16:06 - 00008192 _____ (SEIKO EPSON CORP.) C:\Windows\System32\E_DCINST.DLL
2014-11-03 08:09 - 2014-11-03 08:09 - 00000000 ____D () C:\Program Files\Media Downloader
2014-11-03 08:08 - 2014-11-03 08:08 - 00000000 ____D () C:\d2d420b2-f982-4729-b039-30b07ccf2823
2014-11-03 07:53 - 2014-11-03 07:53 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\BandExtend
2014-11-03 07:53 - 2014-11-03 07:53 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\BabSolution
2014-11-03 07:52 - 2014-11-03 07:52 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\onlysearch
2014-11-02 20:38 - 2014-12-20 02:52 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Adobe
2014-11-01 10:29 - 2014-12-21 07:49 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\vlc
2014-10-30 07:43 - 2014-10-30 07:43 - 00000000 ____D () C:\42676f3ac33449616cfea7
2014-10-29 12:03 - 2014-10-29 12:03 - 00098584 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgmfx86.sys
2014-10-27 08:06 - 2014-10-27 08:06 - 00000000 ____H () C:\Users\.......-PC\Desktop\~WRL0878.tmp
2014-10-26 20:25 - 2014-11-23 09:14 - 00000000 ____D () C:\Users\.......-PC\.android
2014-10-26 20:15 - 2014-10-26 20:15 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER
2014-10-26 07:25 - 2015-01-10 11:54 - 00000000 ____D () C:\Users\.......-PC\Desktop\POwer
2014-10-26 06:48 - 2014-10-26 06:48 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Temp0561407a51fbba49347fad4ca495ceda
2014-10-26 05:33 - 2014-10-26 05:33 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Tempcc98a81f0fce842a178a66543abf44aa
2014-10-26 05:03 - 2014-11-23 19:50 - 01177208 _____ () C:\Users\.......-PC\AppData\Roaming\AndyCleanupTool.exe
2014-10-26 05:03 - 2014-11-23 19:50 - 01176696 _____ () C:\Users\.......-PC\AppData\Roaming\AndyCleanVM.exe
2014-10-26 05:03 - 2014-10-26 05:03 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Temp7db2cb2cfe5e4c3b14adbdaddec4cd75
2014-10-26 05:03 - 2014-10-26 05:03 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Temp1c2bbb750c324b48d5e1e16d045bdd1b
2014-10-24 06:04 - 2014-09-03 21:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\System32\rastls.dll
2014-10-24 06:04 - 2014-07-16 17:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\System32\winsta.dll
2014-10-24 06:04 - 2014-07-16 17:39 - 00304128 _____ (Microsoft Corporation) C:\Windows\System32\winlogon.exe
2014-10-24 06:04 - 2014-07-16 17:39 - 00130048 _____ (Microsoft Corporation) C:\Windows\System32\rdpcorekmts.dll
2014-10-24 06:04 - 2014-07-16 17:03 - 00184320 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\rdpwd.sys
2014-10-24 06:04 - 2014-07-16 17:02 - 00031232 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\tssecsrv.sys
2014-10-24 06:04 - 2014-06-18 14:23 - 01131664 _____ (Microsoft Corporation) C:\Windows\System32\dfshim.dll
2014-10-24 06:04 - 2014-06-18 14:23 - 00156824 _____ (Microsoft Corporation) C:\Windows\System32\mscorier.dll
2014-10-24 06:04 - 2014-06-18 14:23 - 00081560 _____ (Microsoft Corporation) C:\Windows\System32\mscories.dll
2014-10-24 06:03 - 2014-08-28 17:44 - 04922368 _____ (Microsoft Corporation) C:\Windows\System32\mstscax.dll
2014-10-24 06:03 - 2014-08-28 17:44 - 02744320 _____ (Microsoft Corporation) C:\Windows\System32\rdpcorets.dll
2014-10-24 06:03 - 2014-08-28 17:44 - 01050112 _____ (Microsoft Corporation) C:\Windows\System32\mstsc.exe
2014-10-24 06:03 - 2014-08-28 17:44 - 00269312 _____ (Microsoft Corporation) C:\Windows\System32\aaclient.dll
2014-10-24 06:03 - 2014-08-28 17:44 - 00037376 _____ (Microsoft Corporation) C:\Windows\System32\tsgqec.dll
2014-10-24 06:03 - 2014-07-08 17:29 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDYAK.DLL
2014-10-24 06:03 - 2014-07-08 17:29 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDTAT.DLL
2014-10-24 06:03 - 2014-07-08 17:29 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDRU1.DLL
2014-10-24 06:03 - 2014-07-08 17:29 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDBASH.DLL
2014-10-24 06:03 - 2014-07-08 17:29 - 00005632 _____ (Microsoft Corporation) C:\Windows\System32\KBDRU.DLL
2014-10-24 06:03 - 2014-07-08 14:30 - 00419992 _____ () C:\Windows\System32\locale.nls
2014-10-24 01:20 - 2014-10-24 01:20 - 00189720 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgldx86.sys
2014-10-20 06:14 - 2014-10-20 06:14 - 00197400 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgtdix.sys
2014-10-15 03:16 - 2014-10-15 03:16 - 00000182 _____ () C:\Windows\AutoKMS.ini
2014-10-15 03:02 - 2014-10-15 03:02 - 00000000 ____D () C:\Program Files\Microsoft Synchronization Services
2014-10-15 03:01 - 2014-11-08 06:51 - 00000000 ____D () C:\Program Files\Microsoft SQL Server Compact Edition
2014-10-15 03:01 - 2014-10-15 03:01 - 00000000 ____D () C:\Program Files\Microsoft Sync Framework
2014-10-15 02:57 - 2014-10-15 02:57 - 00000000 ____D () C:\Program Files\Microsoft Analysis Services
2014-10-15 02:29 - 2014-12-12 06:33 - 00000000 ____D () C:\Users\.......-PC\Desktop\Office2010 Pro Deutsch
2014-10-11 04:46 - 2014-10-11 04:46 - 00117272 _____ (Oracle Corporation) C:\Windows\System32\Drivers\VBoxNetAdp.sys
2014-10-09 07:31 - 2014-10-09 07:46 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Opera Software
2014-10-09 07:31 - 2014-10-09 07:46 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Opera Software
2014-10-09 06:58 - 2014-12-09 09:58 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Abelssoft
2014-10-09 06:58 - 2014-10-09 06:58 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Abelssoft
2014-10-09 06:58 - 2014-10-09 06:58 - 00000000 ____D () C:\ProgramData\XDMessagingv4
2014-10-05 02:53 - 2014-11-23 03:16 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Avg
2014-10-05 02:53 - 2014-10-05 02:53 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\AVG
2014-10-05 02:38 - 2014-09-24 17:40 - 00519680 _____ (Microsoft Corporation) C:\Windows\System32\qdvd.dll
2014-09-29 05:57 - 2014-09-29 05:57 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\GeoGebra 5.0
2014-09-24 07:14 - 2014-06-26 17:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\System32\msmpeg2vdec.dll
2014-09-24 06:57 - 2014-09-09 13:47 - 00002048 _____ (Microsoft Corporation) C:\Windows\System32\tzres.dll
2014-09-24 06:47 - 2014-09-24 06:47 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\WinRAR
2014-09-22 08:43 - 2014-09-22 08:43 - 00000000 ____D () C:\fcf80c325e21b2aa8287eacb88
2014-09-22 08:28 - 2014-09-29 05:50 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\SMART Technologies
2014-09-22 06:15 - 2014-10-26 06:54 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\FileViewPro
2014-09-22 06:15 - 2014-09-22 06:15 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\IsolatedStorage
2014-09-22 06:15 - 2014-09-22 06:15 - 00000000 ____D () C:\ProgramData\IsolatedStorage
2014-09-22 06:13 - 2014-09-22 06:13 - 00000000 ____D () C:\Spacekace
2014-09-22 05:38 - 2014-09-22 05:38 - 00001880 _____ () C:\Users\.......-PC\Desktop\geogebra.lnk
2014-09-22 05:36 - 2014-09-22 05:37 - 00000000 ____D () C:\Program Files\GeoGebra 5.0
2014-09-22 05:35 - 2014-12-15 20:08 - 00000000 ____D () C:\ProgramData\Downloaded Installations
2014-09-22 05:35 - 2014-08-01 03:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\System32\TSWorkspace.dll
2014-09-22 05:34 - 2014-06-23 18:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\System32\d3d10warp.dll
2014-09-22 05:31 - 2014-09-22 05:31 - 00000000 ____D () C:\Program Files\Common Files\Macrovision Shared
2014-09-22 05:23 - 2014-09-22 05:23 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Macromedia
2014-09-22 05:23 - 2014-09-22 05:23 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Macromedia
2014-09-02 06:48 - 2014-09-02 06:52 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Mozilla
2014-09-01 05:28 - 2014-08-22 17:46 - 00305152 _____ (Microsoft Corporation) C:\Windows\System32\gdi32.dll
2014-09-01 05:24 - 2014-12-17 07:50 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Thunderbird
2014-09-01 05:24 - 2014-09-02 06:46 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Mozilla
2014-09-01 05:24 - 2014-09-01 05:24 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Thunderbird
2014-09-01 05:21 - 2014-09-29 09:26 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Avg2014
2014-09-01 05:21 - 2014-09-01 05:21 - 00000680 __RSH () C:\Users\.......-PC\ntuser.pol
2014-09-01 05:21 - 2014-09-01 05:21 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\AVG2014
2014-09-01 05:21 - 2014-09-01 05:21 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Google
2014-09-01 05:20 - 2015-01-16 07:38 - 00000000 ____D () C:\users\.......-PC
2014-09-01 05:20 - 2014-12-20 02:52 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Adobe
2014-09-01 05:20 - 2014-11-20 10:30 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\VirtualStore
2014-09-01 05:20 - 2014-11-05 08:27 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\TuneUp Software
2014-09-01 05:20 - 2014-10-15 02:22 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Microsoft Help
2014-09-01 05:20 - 2014-09-01 05:20 - 00000020 ___SH () C:\Users\.......-PC\ntuser.ini
2014-09-01 05:20 - 2014-09-01 05:20 - 00000000 _SHDL () C:\Users\.......-PC\Startmenü
2014-09-01 05:20 - 2014-09-01 05:20 - 00000000 _SHDL () C:\Users\.......-PC\Netzwerkumgebung
2014-09-01 05:20 - 2014-09-01 05:20 - 00000000 _SHDL () C:\Users\.......-PC\Druckumgebung
2014-09-01 05:20 - 2014-09-01 05:20 - 00000000 _SHDL () C:\Users\.......-PC\Documents\Eigene Musik
2014-09-01 05:20 - 2014-09-01 05:20 - 00000000 _SHDL () C:\Users\.......-PC\Documents\Eigene Bilder
2014-09-01 05:20 - 2014-09-01 05:20 - 00000000 _SHDL () C:\Users\.......-PC\AppData\Local\Verlauf
2014-08-27 05:54 - 2014-08-30 06:54 - 00000000 ____D () C:\users\TEMP
2014-08-27 05:54 - 2014-08-17 00:43 - 00000000 ____D () C:\Users\TEMP\AppData\Roaming\TuneUp Software
2014-08-27 05:54 - 2011-02-21 07:50 - 00000000 ____D () C:\Users\TEMP\AppData\Local\Microsoft Help
2014-08-24 01:14 - 2014-08-24 01:14 - 00000000 ____D () C:\Users\...\AppData\Local\PDF24
2014-08-24 00:55 - 2014-08-24 01:06 - 00000000 ____D () C:\Users\...\Desktop\tuhh2
2014-08-17 01:44 - 2014-08-17 01:44 - 00112752 _____ () C:\Users\...\AppData\Local\GDIPFONTCACHEV1.DAT
2014-08-17 01:00 - 2014-06-30 14:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\System32\icardres.dll
2014-08-17 01:00 - 2014-06-05 22:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\System32\TsWpfWrp.exe
2014-08-17 01:00 - 2014-03-09 13:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\System32\icardagt.exe
2014-08-17 01:00 - 2014-03-09 13:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\System32\infocardapi.dll
2014-08-17 00:48 - 2014-07-13 17:42 - 00654336 _____ (Microsoft Corporation) C:\Windows\System32\rpcrt4.dll
2014-08-17 00:48 - 2014-06-15 17:44 - 00730048 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\dxgkrnl.sys
2014-08-17 00:48 - 2014-06-15 17:44 - 00219072 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\dxgmms1.sys
2014-08-17 00:48 - 2014-06-15 17:40 - 00107520 _____ (Microsoft Corporation) C:\Windows\System32\cdd.dll
2014-08-17 00:47 - 2014-06-24 17:41 - 12874240 _____ (Microsoft Corporation) C:\Windows\System32\shell32.dll
2014-08-17 00:47 - 2014-06-03 01:30 - 00101824 _____ (Microsoft Corporation) C:\Windows\System32\consent.exe
2014-08-17 00:47 - 2014-06-03 01:29 - 01805824 _____ (Microsoft Corporation) C:\Windows\System32\authui.dll
2014-08-17 00:47 - 2014-06-03 01:29 - 00337408 _____ (Microsoft Corporation) C:\Windows\System32\msihnd.dll
2014-08-17 00:43 - 2014-08-17 00:43 - 00000000 ____D () C:\Users\Default\AppData\Roaming\TuneUp Software
2014-08-12 00:35 - 2014-08-12 00:53 - 00009474 _____ () C:\Users\...\Desktop\Sanitär2.xlsx
2014-08-07 02:39 - 2014-08-07 04:05 - 00009890 _____ () C:\Users\...\Desktop\Snitär.xlsx
2014-08-07 01:11 - 2014-08-07 04:06 - 00009226 _____ () C:\Users\...\Desktop\Microsoft Excel-Arbeitsblatt (neu).xlsx
2014-08-07 00:35 - 2014-10-15 03:03 - 00000000 ____D () C:\Users\...\AppData\Local\AVG Web TuneUp
2014-08-04 00:53 - 2014-11-23 03:16 - 00000000 ____D () C:\Users\...\AppData\Local\AVG
2014-08-04 00:53 - 2014-08-04 00:53 - 00000000 ____D () C:\Users\...\AppData\Roaming\AVG
2014-08-04 00:51 - 2014-10-05 02:51 - 00000000 ____D () C:\ProgramData\AVG
2014-08-04 00:51 - 2014-08-04 00:58 - 00000000 __SHD () C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308}
2014-08-03 03:22 - 2014-08-03 03:22 - 00000000 ____D () C:\Users\...\AppData\Roaming\AVG2014
2014-08-03 03:20 - 2015-01-10 08:35 - 00000927 _____ () C:\Users\Public\Desktop\AVG 2014.lnk
2014-08-03 03:19 - 2014-12-07 08:38 - 00000000 ____D () C:\ProgramData\AVG2014
2014-08-03 03:19 - 2014-10-15 03:02 - 00000000 ____D () C:\Program Files\AVG
2014-08-03 03:19 - 2014-08-03 03:19 - 00000000 ___HD () C:\$AVG
2014-08-03 03:16 - 2015-01-16 08:34 - 00000000 ____D () C:\ProgramData\MFAData
2014-08-03 03:16 - 2014-08-03 03:16 - 00000000 ____D () C:\Users\...\AppData\Local\MFAData
2014-07-30 13:43 - 2014-07-30 13:43 - 03586232 _____ (Intel Corporation) C:\Windows\System32\libmmd.dll
2014-07-30 13:43 - 2014-07-30 13:43 - 01060864 _____ (Microsoft Corporation) C:\Windows\System32\MFC71.dll
2014-07-30 13:43 - 2014-07-30 13:43 - 00534712 _____ (Intel Corporation) C:\Windows\System32\libiomp5md.dll
2014-07-30 13:43 - 2014-07-30 13:43 - 00473272 _____ (Intel Corporation) C:\Windows\System32\libguide40.dll
2014-07-30 13:42 - 2014-07-30 13:42 - 00633008 _____ (Intel Corporation.) C:\Windows\System32\ippjw7-6.1.dll
2014-07-30 13:42 - 2014-07-30 13:42 - 00239792 _____ (Intel Corporation.) C:\Windows\System32\ipps-6.1.dll
2014-07-30 13:42 - 2014-07-30 13:42 - 00129200 _____ (Intel Corporation.) C:\Windows\System32\ippvc-6.1.dll
2014-07-30 13:42 - 2014-07-30 13:42 - 00129200 _____ (Intel Corporation.) C:\Windows\System32\ippcore-6.1.dll
2014-07-30 13:42 - 2014-07-30 13:42 - 00104624 _____ (Intel Corporation.) C:\Windows\System32\ippj-6.1.dll
2014-07-29 23:35 - 2014-07-29 23:35 - 00000165 ____H () C:\Users\...\Desktop\~$Microsoft Excel-Arbeitsblatt .xlsx
2014-07-29 02:47 - 2014-07-29 02:47 - 00000000 ____D () C:\Users\...\AppData\Local\Bluestacks
2014-07-27 02:05 - 2014-07-29 02:24 - 00000134 _____ () C:\Users\...\Desktop\Internet Explorer Troubleshooting.url
2014-07-27 01:59 - 2014-06-17 17:51 - 00646144 _____ (Microsoft Corporation) C:\Windows\System32\osk.exe
2014-07-27 01:59 - 2014-06-06 01:44 - 00509440 _____ (Microsoft Corporation) C:\Windows\System32\qedit.dll
2014-07-27 01:59 - 2014-05-29 22:36 - 00338944 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\afd.sys
2014-07-27 01:48 - 2014-07-27 01:48 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-07-24 16:35 - 2014-07-24 16:35 - 00875688 _____ (Microsoft Corporation) C:\Windows\System32\msvcr120_clr0400.dll
2014-07-21 11:03 - 2014-07-21 11:03 - 00200984 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgidsdriverx.sys
2014-07-03 06:16 - 2014-07-03 06:16 - 00000000 ____D () C:\Users\...\Documents\Fax
2014-07-03 05:45 - 2014-05-14 08:23 - 01973728 _____ (Microsoft Corporation) C:\Windows\System32\wuaueng.dll
2014-07-03 05:45 - 2014-05-14 08:23 - 00054240 _____ (Microsoft Corporation) C:\Windows\System32\wuauclt.exe
2014-07-03 05:45 - 2014-05-14 08:23 - 00045536 _____ (Microsoft Corporation) C:\Windows\System32\wups2.dll
2014-07-03 05:45 - 2014-05-14 08:17 - 02425856 _____ (Microsoft Corporation) C:\Windows\System32\wucltux.dll
2014-07-03 05:44 - 2014-05-14 08:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\System32\wuapi.dll
2014-07-03 05:44 - 2014-05-14 08:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\System32\wups.dll
2014-07-03 05:44 - 2014-05-14 08:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\System32\wudriver.dll
2014-07-03 05:44 - 2014-05-13 23:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\System32\wuwebv.dll
2014-07-03 05:44 - 2014-05-13 23:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\System32\wuapp.exe
2014-07-03 05:38 - 2014-07-03 05:38 - 00000000 ____D () C:\found.000
2014-07-02 06:19 - 2014-07-02 06:19 - 00000000 ____D () C:\Users\...\Documents\My Received Files
2014-07-02 03:53 - 2014-12-09 09:52 - 00000000 ____D () C:\Program Files\Mozilla Firefox
2014-07-01 06:10 - 2014-08-03 03:10 - 00000000 ____D () C:\Users\...\Desktop\musik
2014-07-01 05:59 - 2014-07-01 05:59 - 00000000 ____D () C:\Users\...\AppData\Roaming\DropboxMaster
2014-07-01 05:57 - 2014-07-01 05:59 - 00000000 ____D () C:\Users\...\AppData\Roaming\Dropbox
2014-07-01 05:57 - 2014-07-01 05:57 - 00000000 ____D () C:\Users\...\AppData\Roaming\AVAST Software
2014-07-01 05:55 - 2014-07-01 05:55 - 00776976 _____ (AVAST Software) C:\Windows\System32\Drivers\aswsnx.sys.1404223387500
2014-07-01 05:55 - 2014-07-01 05:55 - 00411552 _____ (AVAST Software) C:\Windows\System32\Drivers\aswsp.sys.1404223387500
2014-07-01 05:55 - 2014-07-01 05:55 - 00000000 ____D () C:\ProgramData\AVAST Software
2014-07-01 05:55 - 2014-07-01 05:55 - 00000000 ____D () C:\Program Files\AVAST Software
2014-07-01 05:26 - 2014-07-01 05:26 - 00000000 ____H () C:\Windows\System32\Drivers\Msft_Kernel_WinUsb_01007.Wdf
2014-07-01 05:25 - 2010-02-18 15:00 - 01302600 _____ (Microsoft Corporation) C:\Windows\System32\wudfupdate_01007.dll
2014-07-01 05:25 - 2010-02-18 15:00 - 01112288 _____ (Microsoft Corporation) C:\Windows\System32\wdfcoinstaller01007.dll
2014-07-01 05:25 - 2010-02-18 15:00 - 00581192 _____ (Microsoft Corporation) C:\Windows\System32\winusbcoinstaller.dll
2014-07-01 05:24 - 2014-07-01 05:24 - 00002971 _____ () C:\Users\...\Desktop\Helium.lnk
2014-07-01 05:01 - 2014-08-04 00:27 - 00000000 ____D () C:\Users\...\AppData\Local\pgcchelper
2014-07-01 04:46 - 2014-04-04 18:25 - 01294272 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys
2014-07-01 04:46 - 2014-04-04 18:24 - 00187840 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\FWPKCLNT.SYS
2014-07-01 04:43 - 2014-04-24 18:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\System32\usp10.dll
2014-07-01 04:43 - 2014-03-26 06:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\System32\msxml6.dll
2014-07-01 04:43 - 2014-03-26 06:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\System32\msxml6r.dll
2014-06-30 07:04 - 2014-06-30 07:04 - 00000000 ____D () C:\adobeTemp
2014-06-30 02:43 - 2014-06-30 02:43 - 00121624 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgdiskx.sys
2014-06-21 09:00 - 2014-06-21 09:00 - 00077824 _____ (Advanced Micro Devices) C:\Windows\System32\Drivers\AtihdW73.sys
2014-06-21 08:59 - 2014-06-21 08:59 - 00084480 _____ (Advanced Micro Devices) C:\Windows\System32\DelayAPO.dll
2014-06-19 02:35 - 2014-05-08 01:06 - 00013824 _____ (Microsoft Corporation) C:\Windows\System32\RdpGroupPolicyExtension.dll
2014-06-19 02:15 - 2014-06-19 02:15 - 00000000 ___RD () C:\Users\...\Creative Cloud Files
2014-06-17 06:18 - 2014-06-17 06:18 - 00241944 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avglogx.sys
2014-06-17 06:17 - 2014-06-17 06:17 - 00147736 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgidshx.sys
2014-06-17 06:06 - 2014-06-17 06:06 - 00027416 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgrkx86.sys
2014-06-17 06:06 - 2014-06-17 06:06 - 00021272 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\System32\Drivers\avgidsshimx.sys
2014-06-09 19:51 - 2014-06-09 19:53 - 00000000 ____D () C:\ProgramData\regid.1986-12.com.adobe
2014-06-09 19:51 - 2014-06-09 19:51 - 00000000 ____D () C:\Users\...\AppData\Roaming\PDAppFlex
2014-06-09 02:45 - 2014-07-01 05:05 - 00000000 ____D () C:\Users\...\AppData\Local\SearchProtect
2014-06-09 02:41 - 2014-12-07 05:13 - 00000000 ____D () C:\ProgramData\Package Cache
2014-06-09 02:40 - 2014-12-20 02:49 - 00000000 ____D () C:\Program Files\Common Files\Adobe
2014-06-09 01:03 - 2014-06-09 01:03 - 00000042 _____ () C:\Users\...\AppData\Roaming\WB.CFG
2014-06-08 01:49 - 2014-06-09 02:25 - 00000000 ____D () C:\Program Files\epson
2014-06-08 01:44 - 2014-06-08 01:44 - 00000000 ____H () C:\Users\...\Documents\Default.rdp
2014-06-08 01:05 - 2014-06-09 02:29 - 00000000 ____D () C:\Users\...\AppData\Roaming\0F1F1C2Y1H1P1C0I0T
2014-06-01 03:16 - 2014-06-01 03:16 - 00000000 ____D () C:\Users\...\AppData\Roaming\Optimizer Elite Max
2014-06-01 03:13 - 2014-06-01 03:13 - 00000000 ____D () C:\Users\...\AppData\Local\com
2014-06-01 03:12 - 2014-06-01 03:12 - 00000000 ____D () C:\Users\...\AppData\Local\globalUpdate
2014-06-01 03:11 - 2014-07-01 06:11 - 00000000 ____D () C:\Users\...\AppData\Local\fst_de_28
2014-06-01 03:06 - 2014-06-01 03:06 - 00000000 ____D () C:\Users\...\AppData\Roaming\GlarySoft
2014-06-01 03:06 - 2014-06-01 03:06 - 00000000 ____D () C:\Users\...\AppData\Roaming\DiskDefrag
2014-05-28 08:06 - 2014-05-28 08:06 - 00000000 ____D () C:\0fd140dc6c9ef2213e044e0dd7779e98
2014-05-28 04:51 - 2014-05-28 07:57 - 00000680 __RSH () C:\Users\...\ntuser.pol
2014-05-27 07:18 - 2014-05-27 07:18 - 00000000 ____D () C:\f2d35dea9c287267fe0c58
2014-05-27 06:49 - 2014-05-27 06:49 - 00000000 ____D () C:\cc860e795253d2fa8ac4ad6824
2014-05-26 06:36 - 2014-04-11 18:15 - 00067520 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ksecdd.sys
2014-05-26 06:36 - 2014-04-11 18:12 - 00100352 _____ (Microsoft Corporation) C:\Windows\System32\sspicli.dll
2014-05-26 06:36 - 2014-04-11 18:12 - 00022016 _____ (Microsoft Corporation) C:\Windows\System32\secur32.dll
2014-05-26 06:36 - 2014-04-11 18:12 - 00015872 _____ (Microsoft Corporation) C:\Windows\System32\sspisrv.dll
2014-05-26 06:36 - 2014-04-11 18:11 - 00022528 _____ (Microsoft Corporation) C:\Windows\System32\lsass.exe
2014-05-26 06:36 - 2014-03-04 01:20 - 03969984 _____ (Microsoft Corporation) C:\Windows\System32\ntkrnlpa.exe
2014-05-26 06:36 - 2014-03-04 01:20 - 03914176 _____ (Microsoft Corporation) C:\Windows\System32\ntoskrnl.exe
2014-05-26 06:36 - 2014-03-04 01:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\System32\objsel.dll
2014-05-26 06:36 - 2014-03-04 01:17 - 00293376 _____ (Microsoft Corporation) C:\Windows\System32\KernelBase.dll
2014-05-26 06:36 - 2014-03-04 01:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\System32\cngprovider.dll
2014-05-26 06:36 - 2014-03-04 01:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\System32\adprovider.dll
2014-05-26 06:36 - 2014-03-04 01:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\System32\capiprovider.dll
2014-05-26 06:36 - 2014-03-04 01:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\System32\dpapiprovider.dll
2014-05-26 06:36 - 2014-03-04 01:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\System32\dimsroam.dll
2014-05-26 06:36 - 2014-03-04 01:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\System32\wincredprovider.dll
2014-05-22 08:13 - 2014-05-22 08:13 - 00000000 ____D () C:\Program Files\Common Files\Skype
2014-05-16 06:24 - 2014-05-16 06:24 - 00174880 _____ (Oracle Corporation) C:\Windows\System32\VBoxNetFltNobj.dll
2014-05-16 06:24 - 2014-05-16 06:24 - 00126752 _____ (Oracle Corporation) C:\Windows\System32\Drivers\VBoxNetFlt.sys
2014-05-15 09:30 - 2014-05-15 09:30 - 00000000 ____D () C:\Users\...\AppData\Roaming\dvdcss
2014-05-07 04:36 - 2014-07-03 07:15 - 00000000 ____D () C:\Users\...\AppData\Roaming\Audacity
2014-05-07 04:36 - 2014-05-07 04:36 - 00000981 _____ () C:\Users\Public\Desktop\Audacity.lnk
2014-05-07 04:35 - 2014-05-07 04:35 - 00000000 ____D () C:\Program Files\Audacity
2014-05-06 08:14 - 2014-05-06 08:14 - 00001098 _____ () C:\Users\...\Desktop\Videos -.lnk
2014-05-06 07:57 - 2014-05-06 07:57 - 00000000 ____D () C:\Users\...\AppData\Roaming\rightbackup
2014-05-06 07:27 - 2014-11-13 06:16 - 00000000 ___SD () C:\Windows\System32\CompatTel
2014-05-05 07:58 - 2014-07-01 05:03 - 00001040 _____ () C:\Users\Public\Desktop\VLC media player.lnk
2014-05-05 07:58 - 2014-06-05 07:51 - 00000000 ____D () C:\Users\...\AppData\Roaming\vlc
2014-05-05 07:58 - 2014-05-05 07:58 - 00000000 ____D () C:\Program Files\VideoLAN
2014-05-05 05:57 - 2014-12-21 07:44 - 00000033 _____ () C:\Windows\Nscal.ini
2014-05-05 05:57 - 1999-05-18 07:11 - 00698210 _____ () C:\Windows\cd32.exe
2014-05-05 05:57 - 1999-05-04 00:16 - 00061952 _____ (Netscape Communications Corporation) C:\Windows\System32\nabapi32.dll
2014-05-05 05:57 - 1999-04-20 01:25 - 00578048 _____ (Corporate Software & Technologies Int. Inc.) C:\Windows\System32\uniapi32.dll
2014-05-05 05:57 - 1999-04-20 01:25 - 00322832 _____ (Microsoft Corporation) C:\Windows\System32\mfc30.dll
2014-05-05 05:57 - 1999-04-20 01:25 - 00133904 _____ (Microsoft Corporation) C:\Windows\System32\mfcans32.dll
2014-05-05 05:57 - 1999-04-20 01:25 - 00133392 _____ (Microsoft Corporation) C:\Windows\System32\mfco30.dll
2014-05-05 05:57 - 1999-04-20 01:25 - 00108032 _____ (Microsoft Corporation) C:\Windows\System32\mfcuia32.dll
2014-05-05 05:55 - 2014-05-05 05:56 - 00000000 ____D () C:\VS
2014-05-05 05:55 - 1999-12-08 07:17 - 00448216 _____ (VideoSoft) C:\Windows\System32\Vsflex7u.ocx
2014-05-05 05:55 - 1999-12-08 07:17 - 00448216 _____ (VideoSoft) C:\Windows\System32\Vsflex7.ocx
2014-05-05 05:55 - 1999-12-08 07:17 - 00407256 _____ (VideoSoft) C:\Windows\System32\Vsflex7d.ocx
2014-05-05 05:55 - 1999-12-08 07:17 - 00399064 _____ (VideoSoft) C:\Windows\System32\Vsflex7L.ocx
2014-05-05 05:55 - 1999-12-07 09:10 - 00122880 _____ () C:\Windows\System32\VsPPG7.dll
2014-05-05 05:55 - 1999-08-05 07:23 - 00081920 _____ (VideoSoft) C:\Windows\System32\vsStr7.ocx
2014-05-05 05:54 - 1999-02-20 15:59 - 00122880 _____ () C:\Windows\System32\CFFPTree.dll
2014-05-05 05:54 - 1999-02-20 15:58 - 00082432 _____ () C:\Windows\System32\CFFtp.dll
2014-05-05 05:54 - 1999-02-20 15:46 - 00039936 _____ () C:\Windows\System32\cfmsg.dll
2014-05-05 05:54 - 1998-07-09 06:24 - 00565760 _____ (Microsoft Corporation) C:\Windows\System32\MSVCP50.DLL
2014-05-05 05:52 - 2014-05-05 06:11 - 00002404 _____ () C:\Windows\ACROREAD.INI
2014-05-05 05:52 - 2014-05-05 05:52 - 00000000 ____D () C:\Acrobat3
2014-05-05 05:51 - 2014-12-21 07:44 - 00302592 _____ (InstallShield Corporation, Inc.) C:\Windows\unin0407.exe
2014-05-05 05:51 - 2014-05-05 05:51 - 00000000 ____D () C:\TGEB
2014-05-05 05:49 - 2014-05-05 07:52 - 00000024 _____ () C:\Windows\winamp.ini
2014-05-05 05:48 - 2014-05-05 05:48 - 00000000 ____D () C:\programme
2014-05-05 04:15 - 1998-01-23 02:22 - 00304128 _____ (InstallShield Software Corporation) C:\Windows\IsUninst.exe
2014-05-05 04:15 - 1998-01-23 02:20 - 00305664 _____ (InstallShield Software Corporation ) C:\Windows\IsUn0407.exe
2014-04-30 06:26 - 2014-05-04 01:47 - 00000000 ____D () C:\Users\...\AppData\Roaming\SCheck
2014-04-30 06:26 - 2014-04-30 06:26 - 00000000 ____D () C:\Users\...\AppData\Local\simple_new_tab
2014-04-30 06:08 - 2015-01-16 06:19 - 00000000 ____D () C:\Users\.......-PC\Desktop\video
2014-04-28 01:10 - 2014-04-28 01:11 - 00000000 ____D () C:\Users\...\Desktop\EPSON
2014-04-21 07:12 - 2014-04-21 07:12 - 00000000 ____D () C:\ProgramData\HyperTerminal
2014-04-21 07:12 - 2008-09-30 03:22 - 00164864 ____N () C:\Windows\System32\UNWISE32.EXE
2014-04-21 06:39 - 2014-05-06 08:53 - 00000000 ____D () C:\pebuilder3110a
2014-04-20 04:06 - 2015-01-16 10:57 - 01172765 _____ () C:\Windows\WindowsUpdate.log
2014-04-14 17:34 - 2014-04-14 17:34 - 01070232 _____ (Microsoft Corporation) C:\Windows\System32\MSCOMCTL.OCX
2014-04-09 19:02 - 2014-02-03 18:07 - 00234432 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\msiscsi.sys
2014-04-09 19:02 - 2014-02-03 18:07 - 00149440 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\storport.sys
2014-04-09 19:02 - 2014-02-03 18:07 - 00027072 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\Diskdump.sys
2014-04-09 19:02 - 2014-02-03 18:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\System32\iologmsg.dll
2014-04-09 19:01 - 2014-03-04 01:17 - 00868352 _____ (Microsoft Corporation) C:\Windows\System32\kernel32.dll
2014-04-09 19:01 - 2014-01-23 18:18 - 01212352 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ntfs.sys
2014-03-31 12:34 - 2014-03-31 12:34 - 00322248 _____ () C:\Windows\WLXPGSS.SCR
2014-03-31 07:48 - 2014-12-15 07:54 - 00002741 _____ () C:\Users\...\Desktop\Google-Suche.lnk
2014-03-28 08:31 - 2014-12-15 07:54 - 00002524 _____ () C:\Users\...\Desktop\Chrome App Launcher.lnk
2014-03-28 08:29 - 2014-04-23 05:50 - 00000000 ____D () C:\Program Files\Bluefish Games
2014-03-28 08:20 - 2014-12-22 05:16 - 00002097 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-03-28 08:13 - 2014-03-28 08:13 - 00000000 ____D () C:\Users\...\AppData\Roaming\Mael
2014-03-28 08:12 - 2014-03-28 08:12 - 00000867 _____ () C:\Users\Public\Desktop\HxD.lnk
2014-03-28 08:12 - 2014-03-28 08:12 - 00000000 ____D () C:\Program Files\HxD
2014-03-28 07:57 - 2014-11-14 08:07 - 00000000 ____D () C:\Users\...\Desktop\FITZNAS
2014-03-26 08:52 - 2014-03-26 08:53 - 00000000 ____D () C:\890c05ead1594569fa6a
2014-03-25 07:35 - 2014-03-25 07:35 - 00007680 _____ (SMART Technologies) C:\Windows\System32\Drivers\SMARTVHidMini2000x86.sys
2014-03-25 07:34 - 2014-03-25 07:34 - 00015872 _____ (SMART Technologies ULC) C:\Windows\System32\Drivers\SMARTVTabletPCx86.sys
2014-03-25 07:34 - 2014-03-25 07:34 - 00008192 _____ (SMART Technologies) C:\Windows\System32\Drivers\SMARTMouseFilterx86.sys
2014-03-17 08:03 - 2014-08-07 02:40 - 00012633 _____ () C:\Users\...\Desktop\Microsoft Excel-Arbeitsblatt .xlsx
2014-03-17 07:47 - 2014-12-13 07:43 - 00002505 _____ () C:\Users\Public\Desktop\Skype.lnk
2014-03-17 07:47 - 2014-03-17 07:47 - 00000000 ____D () C:\Users\...\AppData\Local\Skype
2014-03-15 07:59 - 2014-03-15 07:59 - 00000000 ____D () C:\Users\...\AppData\Roaming\Need for Speed World
2014-03-15 07:39 - 2014-03-15 07:39 - 00000000 ____D () C:\Users\...\AppData\Local\Electronic_Arts_Inc
2014-03-15 07:36 - 2014-05-06 08:02 - 00000000 ____D () C:\Users\...\AppData\Roaming\Security System 2
2014-03-15 07:36 - 2014-03-28 08:09 - 00000000 ____D () C:\Users\...\AppData\Roaming\BupSystem
2014-03-15 07:32 - 2014-02-03 18:04 - 01230336 _____ (Microsoft Corporation) C:\Windows\System32\WindowsCodecs.dll
2014-03-15 07:32 - 2014-01-28 18:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\System32\wer.dll
2014-03-15 07:32 - 2014-01-27 18:07 - 00185344 _____ (Microsoft Corporation) C:\Windows\System32\wwansvc.dll
2014-03-12 07:32 - 2014-07-01 05:46 - 00000000 ____D () C:\Users\...\AppData\Local\F-Secure
2014-03-12 07:03 - 2014-03-15 07:17 - 00000000 ___HD () C:\Users\...\AppData\Local\Xujkof
2014-03-07 07:39 - 2014-03-07 07:39 - 00000000 ____D () C:\Users\Public\Sony Online Entertainment
2014-03-07 07:39 - 2014-03-07 07:39 - 00000000 ____D () C:\Users\...\AppData\Local\SCE
2014-03-07 07:39 - 2010-06-01 19:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\System32\XAudio2_7.dll
2014-03-07 07:39 - 2010-06-01 19:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\System32\xactengine3_7.dll
2014-03-07 07:39 - 2010-06-01 19:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\System32\XAPOFX1_5.dll
2014-03-07 07:39 - 2010-05-26 02:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_43.dll
2014-03-07 07:39 - 2010-05-26 02:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\System32\D3DX9_43.dll
2014-03-07 07:39 - 2010-05-26 02:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\System32\d3dcsx_43.dll
2014-03-07 07:39 - 2010-05-26 02:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_43.dll
2014-03-07 07:39 - 2010-05-26 02:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\System32\d3dx11_43.dll
2014-03-05 07:39 - 2014-03-06 05:50 - 00268952 _____ () C:\Windows\System32\PnkBstrB.xtr
2014-03-05 07:39 - 2014-03-06 05:50 - 00268952 _____ () C:\Windows\System32\PnkBstrB.exe
2014-03-05 07:39 - 2014-03-06 05:50 - 00137176 _____ () C:\Windows\System32\Drivers\PnkBstrK.sys
2014-03-05 07:39 - 2014-03-05 08:11 - 00268952 _____ () C:\Windows\System32\PnkBstrB.ex0
2014-03-05 07:39 - 2014-03-05 07:39 - 00075136 _____ () C:\Windows\System32\PnkBstrA.exe
2014-03-05 07:35 - 2014-03-05 07:35 - 00000000 ____D () C:\Users\...\AppData\Local\Punkbuster
2014-03-05 01:27 - 2014-03-05 01:27 - 00000000 ____D () C:\Users\...\AppData\Roaming\OfferMosquito
2014-02-26 08:12 - 2014-07-01 05:46 - 00000000 ____D () C:\Users\...\AppData\Roaming\F-Secure
2014-02-21 06:41 - 2014-12-10 07:14 - 00000000 ____D () C:\Users\...\AppData\Roaming\Fifth
2014-02-21 06:41 - 2014-02-21 06:41 - 00000000 ____D () C:\Users\...\AppData\Roaming\Intermediate
2014-02-21 06:41 - 2014-02-21 06:41 - 00000000 ____D () C:\Users\...\AppData\Roaming\DataMgr
2014-02-21 06:40 - 2014-02-21 06:40 - 00000000 ____D () C:\Users\...\AppData\Roaming\SSync
2014-02-21 06:39 - 2014-02-21 06:39 - 00000000 ____D () C:\Users\...\AppData\Roaming\Common
2014-02-21 06:13 - 2013-12-03 18:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\System32\secproc.dll
2014-02-21 06:13 - 2013-12-03 18:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\System32\secproc_isv.dll
2014-02-21 06:13 - 2013-12-03 18:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\System32\secproc_ssp_isv.dll
2014-02-21 06:13 - 2013-12-03 18:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\System32\secproc_ssp.dll
2014-02-21 06:13 - 2013-12-03 18:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\System32\msdrm.dll
2014-02-21 06:13 - 2013-12-03 17:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\System32\RMActivate_isv.exe
2014-02-21 06:13 - 2013-12-03 17:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\System32\RMActivate.exe
2014-02-21 06:13 - 2013-12-03 17:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\System32\RMActivate_ssp.exe
2014-02-21 06:13 - 2013-12-03 17:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\System32\RMActivate_ssp_isv.exe
2014-02-21 06:11 - 2013-11-26 00:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\System32\d2d1.dll
2014-02-09 21:06 - 2014-11-22 10:12 - 00000000 ____D () C:\Users\...\Documents\ccleaner
2014-02-09 21:04 - 2014-02-09 21:05 - 00000000 ____D () C:\Users\...\AppData\Roaming\TIPP10
2014-02-09 20:15 - 2014-02-09 20:15 - 00000000 ____D () C:\Windows\Profiles\...
2014-02-09 05:03 - 2014-02-09 05:03 - 00000000 ____D () C:\ProgramData\CompuLearn
2014-02-09 04:56 - 2014-02-09 04:56 - 00000000 ____D () C:\Program Files\Haali
2014-02-09 04:55 - 2014-03-07 07:35 - 00000000 ____D () C:\Users\...\AppData\Roaming\speedtest127
2014-02-09 04:55 - 2014-02-09 05:01 - 00000000 ____D () C:\Users\...\AppData\Roaming\PerformerSoft
2014-02-09 04:55 - 2014-02-09 04:55 - 00000000 ____D () C:\Users\...\AppData\Roaming\freegames111
2014-02-09 04:40 - 2014-02-09 04:40 - 00000971 _____ () C:\Users\...\Desktop\TIPP10.lnk
2014-02-05 00:22 - 2014-02-05 00:22 - 02239352 _____ () C:\Users\...\AppData\Local\omesuperv.exe
2014-02-03 08:04 - 2014-08-04 00:58 - 00000000 __SHD () C:\ProgramData\{24036256-BFDB-4CD3-BE8A-A3D6160F2E16}
2014-02-02 03:37 - 2012-08-23 06:48 - 00221184 _____ (Microsoft Corporation) C:\Windows\System32\rdpudd.dll
2014-02-02 03:37 - 2012-08-23 06:44 - 00014848 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\rdpvideominiport.sys
2014-02-02 03:37 - 2012-08-23 06:40 - 00049664 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\TsUsbFlt.sys
2014-02-02 03:37 - 2012-08-23 06:10 - 00013312 _____ (Microsoft Corporation) C:\Windows\System32\TsUsbRedirectionGroupPolicyExtension.dll
2014-02-02 03:37 - 2012-08-23 06:10 - 00012288 _____ (Microsoft Corporation) C:\Windows\System32\TsUsbRedirectionGroupPolicyControl.exe
2014-02-02 03:37 - 2012-08-23 05:47 - 00046592 _____ (Microsoft Corporation) C:\Windows\System32\MsRdpWebAccess.dll
2014-02-02 03:37 - 2012-08-23 05:46 - 00016896 _____ (Microsoft Corporation) C:\Windows\System32\wksprtPS.dll
2014-02-02 03:37 - 2012-08-23 05:32 - 00032768 _____ (Microsoft Corporation) C:\Windows\System32\TsUsbGDCoInstaller.dll
2014-02-02 03:37 - 2012-08-23 03:40 - 00056320 _____ (Microsoft Corporation) C:\Windows\System32\TSWbPrxy.exe
2014-02-02 03:37 - 2012-08-23 03:32 - 00317440 _____ (Microsoft Corporation) C:\Windows\System32\wksprt.exe
2014-02-02 03:37 - 2012-08-23 03:12 - 00192000 _____ (Microsoft Corporation) C:\Windows\System32\rdpendp_winip.dll
2014-02-01 06:42 - 2014-03-24 08:02 - 00000000 ____D () C:\Program Files\SpeedFan
2014-02-01 06:41 - 2014-02-09 20:43 - 00000045 _____ () C:\Windows\System32\initdebug.nfo
2014-02-01 06:33 - 2014-02-01 06:33 - 00000000 ____D () C:\Program Files\ClockworkMod
2014-02-01 06:17 - 2015-01-16 10:57 - 00000000 ___DC () C:\32788R22FWJFW
2014-02-01 06:17 - 2014-02-01 06:17 - 00000000 ____D () C:\Windows\erdnt
2014-02-01 05:49 - 2014-02-01 05:49 - 00347816 _____ (Microsoft Corporation) C:\Users\...\Desktop\MicrosoftFixit.wu.Run.exe
2014-02-01 05:28 - 2014-07-01 04:43 - 00000000 ____D () C:\Users\...\AppData\Local\Adobe
2014-01-23 08:58 - 2014-06-04 09:56 - 00000000 ____D () C:\Users\...\Desktop\softwares
2014-01-23 08:01 - 2014-01-23 08:01 - 00013225 _____ () C:\Users\...\Desktop\Nach Updates suchen - Verknüpfung.lnk
2014-01-22 08:21 - 2014-01-22 08:21 - 00000000 ___DC () C:\daa66a5bf9166ea01b04b4
2014-01-15 09:18 - 2014-01-15 09:18 - 00028578 _____ () C:\Users\...\Desktop\Microsoft PowerPoint-Präsentation (neu).pptx
2014-01-15 07:48 - 2013-05-09 20:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\System32\wmploc.DLL
2014-01-15 07:48 - 2013-05-09 20:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\System32\wmp.dll
2014-01-15 07:40 - 2013-10-03 17:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\System32\SmartcardCredentialProvider.dll
2014-01-15 07:40 - 2013-10-03 17:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\System32\credui.dll
2014-01-15 07:39 - 2013-11-26 03:11 - 00240576 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\netio.sys
2014-01-15 07:39 - 2013-11-23 10:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\System32\WMPhoto.dll
2014-01-15 07:39 - 2013-10-29 18:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\System32\msieftp.dll
2014-01-15 07:39 - 2013-10-18 17:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\System32\imagehlp.dll
2014-01-15 07:39 - 2013-10-11 18:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\System32\wshom.ocx
2014-01-15 07:39 - 2013-10-11 18:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\System32\nshwfp.dll
2014-01-15 07:39 - 2013-10-11 18:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\System32\scrrun.dll
2014-01-15 07:39 - 2013-10-11 18:01 - 00679424 _____ (Microsoft Corporation) C:\Windows\System32\IKEEXT.DLL
2014-01-15 07:39 - 2013-10-11 18:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\System32\FWPUCLNT.DLL
2014-01-15 07:39 - 2013-10-11 17:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\System32\wscript.exe
2014-01-15 07:39 - 2013-10-11 17:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\System32\cscript.exe
2014-01-15 07:39 - 2013-10-05 11:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\System32\crypt32.dll
2014-01-15 07:39 - 2013-10-03 17:49 - 00081408 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\drmk.sys
2014-01-15 07:39 - 2013-10-03 17:17 - 00177152 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\portcls.sys
2014-01-15 07:39 - 2013-07-04 04:16 - 00369848 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\cng.sys
2014-01-15 07:37 - 2013-11-26 17:14 - 00258560 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\usbhub.sys
2014-01-15 07:37 - 2013-11-26 17:13 - 00284672 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\usbport.sys
2014-01-15 07:37 - 2013-11-26 17:13 - 00076288 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\usbccgp.sys
2014-01-15 07:37 - 2013-11-26 17:13 - 00043520 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\usbehci.sys
2014-01-15 07:37 - 2013-11-26 17:13 - 00024064 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\usbuhci.sys
2014-01-15 07:37 - 2013-11-26 17:13 - 00020480 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\usbohci.sys
2014-01-15 07:37 - 2013-11-26 17:13 - 00006016 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\usbd.sys
2014-01-15 07:25 - 2014-01-15 07:25 - 00717733 _____ () C:\Users\...\Desktop\pcwUpdateRepair.exe
2014-01-08 07:19 - 2014-01-08 07:19 - 00000000 ____D () C:\Users\...\AppData\Roaming\EZDownloader
2014-01-08 07:16 - 2014-01-08 07:16 - 00000000 ____D () C:\Users\...\AppData\Local\Torch
2014-01-08 07:16 - 2014-01-08 07:16 - 00000000 ____D () C:\Users\...\AppData\Local\Comodo
2014-01-08 07:16 - 2014-01-08 07:16 - 00000000 ____D () C:\Users\Gast\AppData\Local\Torch
2014-01-08 07:16 - 2014-01-08 07:16 - 00000000 ____D () C:\Users\Gast\AppData\Local\Google
2014-01-08 07:16 - 2014-01-08 07:16 - 00000000 ____D () C:\Users\Gast\AppData\Local\Comodo
2014-01-08 07:16 - 2014-01-08 07:16 - 00000000 ____D () C:\users\Gast
2014-01-08 07:16 - 2014-01-08 07:16 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Torch
2014-01-08 07:16 - 2014-01-08 07:16 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Google
2014-01-08 07:16 - 2014-01-08 07:16 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Comodo
2014-01-08 07:16 - 2014-01-08 07:16 - 00000000 ____D () C:\users\Administrator
2014-01-08 07:14 - 2014-01-08 07:20 - 00000000 ____D () C:\ProgramData\InstallMate
2014-01-08 07:09 - 2014-01-08 07:09 - 00000000 ____D () C:\Users\...\SyncFolder
2014-01-02 06:09 - 2014-03-23 05:17 - 00000000 ____D () C:\Users\...\AppData\Roaming\newnext.me
2014-01-02 06:09 - 2014-03-23 05:17 - 00000000 ____D () C:\Users\...\AppData\Local\genienext
2014-01-02 06:09 - 2014-01-14 09:05 - 00000000 ____D () C:\Users\...\AppData\Local\Mobogenie
2014-01-02 06:09 - 2014-01-13 09:09 - 00001588 _____ () C:\Users\...\daemonprocess.txt
2014-01-02 06:09 - 2014-01-02 06:09 - 00000000 ____D () C:\Users\...\Documents\Mobogenie
2014-01-02 06:09 - 2014-01-02 06:09 - 00000000 ____D () C:\Users\...\AppData\Roaming\Windows Net Data
2014-01-02 06:09 - 2014-01-02 06:09 - 00000000 ____D () C:\Users\...\AppData\Local\cache
2014-01-02 06:09 - 2014-01-02 06:09 - 00000000 ____D () C:\Users\...\.android
2014-01-02 06:07 - 2014-01-02 06:13 - 00000000 ____D () C:\Users\...\AppData\Roaming\PhotoScape
2014-01-02 05:59 - 2014-01-02 05:59 - 00000000 ____D () C:\Users\...\AppData\Roaming\MrJobs
2013-12-19 05:33 - 2013-12-19 05:33 - 00000967 _____ () C:\Users\...\Desktop\HTML Editor.lnk
2013-12-19 05:22 - 2013-12-19 05:22 - 00000000 ____D () C:\Users\...\AppData\Roaming\Nvu
2013-12-19 05:15 - 2014-04-02 05:53 - 00000000 ____D () C:\Users\...\Desktop\HTML
2013-12-19 05:07 - 2014-04-21 07:31 - 00000000 ____D () C:\Program Files\phase5
2013-12-19 03:03 - 2014-11-01 05:40 - 00000439 _____ () C:\Windows\System32\Drivers\etc\hosts.ics
2013-11-20 08:40 - 2013-11-20 08:40 - 00000000 ____D () C:\Users\...\Documents\Optimizer Pro
2013-10-20 02:56 - 2013-11-06 05:32 - 00002293 _____ () C:\Users\...\Documents\Install STAR WARS The Old Republic.log
2013-10-13 01:55 - 2014-11-05 05:57 - 00000000 ____D () C:\Program Files\EPSON Software
2013-10-10 09:14 - 2013-09-07 18:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\System32\mswsock.dll
2013-10-10 09:14 - 2013-08-28 17:50 - 01289096 _____ (Microsoft Corporation) C:\Windows\System32\ntdll.dll
2013-10-10 09:14 - 2013-08-28 17:50 - 00619520 _____ (Microsoft Corporation) C:\Windows\System32\tdh.dll
2013-10-10 09:14 - 2013-08-28 17:48 - 00640512 _____ (Microsoft Corporation) C:\Windows\System32\advapi32.dll
2013-10-10 09:14 - 2013-08-27 16:57 - 00434688 _____ (Microsoft Corporation) C:\Windows\System32\scavengeui.dll
2013-10-10 09:14 - 2013-07-20 02:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\System32\PresentationCFFRasterizerNative_v0300.dll
2013-10-10 09:14 - 2013-07-04 03:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\System32\comctl32.dll
2013-10-10 09:14 - 2013-07-02 19:36 - 00055808 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\hidclass.sys
2013-10-10 09:14 - 2013-07-02 19:36 - 00025728 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\hidparse.sys
2013-10-10 09:13 - 2013-07-04 03:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\System32\WebClnt.dll
2013-10-10 09:13 - 2013-07-04 03:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\System32\davclnt.dll
2013-10-10 09:13 - 2013-07-04 01:48 - 00115712 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mrxdav.sys
2013-10-10 09:13 - 2013-06-05 20:52 - 00026112 _____ (Microsoft Corporation) C:\Windows\System32\lpk.dll
2013-10-10 09:13 - 2013-06-05 20:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\System32\fontsub.dll
2013-10-10 09:13 - 2013-06-05 20:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\System32\dciman32.dll
2013-10-10 09:13 - 2013-06-05 19:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\System32\atmfd.dll
2013-10-10 09:13 - 2013-06-05 19:01 - 00034304 _____ (Adobe Systems) C:\Windows\System32\atmlib.dll
2013-10-10 09:12 - 2013-07-12 02:07 - 00086016 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\usbcir.sys
2013-10-10 09:12 - 2013-06-25 14:56 - 00527064 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\Wdf01000.sys
2013-10-08 04:13 - 2013-10-08 04:13 - 00000000 ____D () C:\Users\...\Documents\228488-673002-adobe-flash-player.zip
2013-10-04 17:38 - 2013-10-04 17:38 - 04449952 _____ (Microsoft Corporation) C:\Windows\System32\mfc120u.dll
2013-10-04 17:38 - 2013-10-04 17:38 - 04424344 _____ (Microsoft Corporation) C:\Windows\System32\mfc120.dll
2013-10-04 17:38 - 2013-10-04 17:38 - 00970912 _____ (Microsoft Corporation) C:\Windows\System32\msvcr120.dll
2013-10-04 17:38 - 2013-10-04 17:38 - 00455328 _____ (Microsoft Corporation) C:\Windows\System32\msvcp120.dll
2013-10-04 17:38 - 2013-10-04 17:38 - 00339616 _____ (Microsoft Corporation) C:\Windows\System32\vcamp120.dll
2013-10-04 17:38 - 2013-10-04 17:38 - 00247984 _____ (Microsoft Corporation) C:\Windows\System32\vccorlib120.dll
2013-10-04 17:38 - 2013-10-04 17:38 - 00119456 _____ (Microsoft Corporation) C:\Windows\System32\vcomp120.dll
2013-10-04 17:38 - 2013-10-04 17:38 - 00083104 _____ (Microsoft Corporation) C:\Windows\System32\mfcm120u.dll
2013-10-04 17:38 - 2013-10-04 17:38 - 00083104 _____ (Microsoft Corporation) C:\Windows\System32\mfcm120.dll
2013-10-04 17:38 - 2013-10-04 17:38 - 00074920 _____ (Microsoft Corporation) C:\Windows\System32\mfc120fra.dll
2013-10-04 17:38 - 2013-10-04 17:38 - 00074920 _____ (Microsoft Corporation) C:\Windows\System32\mfc120deu.dll
2013-10-04 17:38 - 2013-10-04 17:38 - 00073896 _____ (Microsoft Corporation) C:\Windows\System32\mfc120esn.dll
2013-10-04 17:38 - 2013-10-04 17:38 - 00072872 _____ (Microsoft Corporation) C:\Windows\System32\mfc120ita.dll
2013-10-04 17:38 - 2013-10-04 17:38 - 00070824 _____ (Microsoft Corporation) C:\Windows\System32\mfc120rus.dll
2013-10-04 17:38 - 2013-10-04 17:38 - 00065192 _____ (Microsoft Corporation) C:\Windows\System32\mfc120enu.dll
2013-10-04 17:38 - 2013-10-04 17:38 - 00053928 _____ (Microsoft Corporation) C:\Windows\System32\mfc120jpn.dll
2013-10-04 17:38 - 2013-10-04 17:38 - 00053416 _____ (Microsoft Corporation) C:\Windows\System32\mfc120kor.dll
2013-10-04 17:38 - 2013-10-04 17:38 - 00046248 _____ (Microsoft Corporation) C:\Windows\System32\mfc120cht.dll
2013-10-04 17:38 - 2013-10-04 17:38 - 00046248 _____ (Microsoft Corporation) C:\Windows\System32\mfc120chs.dll
2013-10-03 04:28 - 2014-08-03 03:24 - 00000000 ____D () C:\Users\...\AppData\Local\Avg2014
2013-10-01 01:50 - 2014-11-13 06:05 - 00000000 ____D () C:\Windows\System32\MRT
2013-10-01 01:49 - 2013-08-04 17:56 - 00133056 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ataport.sys
2013-10-01 01:49 - 2013-07-25 00:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\System32\WMVDECOD.DLL
2013-10-01 01:48 - 2013-08-01 17:50 - 00169984 _____ (Microsoft Corporation) C:\Windows\System32\winsrv.dll
2013-10-01 01:48 - 2013-08-01 17:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-file-l1-1-0.dll
2013-10-01 01:48 - 2013-08-01 17:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-processthreads-l1-1-0.dll
2013-10-01 01:48 - 2013-08-01 17:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-10-01 01:48 - 2013-08-01 17:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-synch-l1-1-0.dll
2013-10-01 01:48 - 2013-08-01 17:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-misc-l1-1-0.dll
2013-10-01 01:48 - 2013-08-01 17:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-localregistry-l1-1-0.dll
2013-10-01 01:48 - 2013-08-01 17:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-localization-l1-1-0.dll
2013-10-01 01:48 - 2013-08-01 17:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-10-01 01:48 - 2013-08-01 17:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-10-01 01:48 - 2013-08-01 17:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-memory-l1-1-0.dll
2013-10-01 01:48 - 2013-08-01 17:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-10-01 01:48 - 2013-08-01 17:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-interlocked-l1-1-0.dll
2013-10-01 01:48 - 2013-08-01 17:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-heap-l1-1-0.dll
2013-10-01 01:48 - 2013-08-01 17:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-string-l1-1-0.dll
2013-10-01 01:48 - 2013-08-01 17:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-10-01 01:48 - 2013-08-01 17:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-profile-l1-1-0.dll
2013-10-01 01:48 - 2013-08-01 17:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-io-l1-1-0.dll
2013-10-01 01:48 - 2013-08-01 17:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-handle-l1-1-0.dll
2013-10-01 01:48 - 2013-08-01 17:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-fibers-l1-1-0.dll
2013-10-01 01:48 - 2013-08-01 17:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-10-01 01:48 - 2013-08-01 17:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-delayload-l1-1-0.dll
2013-10-01 01:48 - 2013-08-01 17:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-debug-l1-1-0.dll
2013-10-01 01:48 - 2013-08-01 17:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-datetime-l1-1-0.dll
2013-10-01 01:48 - 2013-08-01 17:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-console-l1-1-0.dll
2013-10-01 01:48 - 2013-08-01 16:52 - 00271360 _____ (Microsoft Corporation) C:\Windows\System32\conhost.exe
2013-10-01 01:48 - 2013-08-01 16:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-security-base-l1-1-0.dll
2013-10-01 01:48 - 2013-08-01 16:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-threadpool-l1-1-0.dll
2013-10-01 01:48 - 2013-08-01 16:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-xstate-l1-1-0.dll
2013-10-01 01:48 - 2013-08-01 16:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-core-util-l1-1-0.dll
2013-10-01 01:48 - 2013-07-25 17:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\System32\shdocvw.dll
2013-10-01 01:48 - 2013-07-08 20:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\System32\wintrust.dll
2013-10-01 01:48 - 2013-07-08 20:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\System32\cryptsvc.dll
2013-10-01 01:48 - 2013-07-08 20:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\System32\cryptnet.dll
2013-10-01 01:27 - 2014-03-17 08:04 - 00528384 _____ () C:\Users\...\Desktop\Microsoft Access Datenbank (neu).accdb
2013-09-30 05:34 - 2014-11-08 06:45 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2013-09-30 05:33 - 2013-09-30 05:33 - 00000000 ____D () C:\Users\...\Documents\DVDVideoSoft
2013-09-30 05:32 - 2014-07-29 01:45 - 00000000 ____D () C:\Users\...\AppData\Roaming\DVDVideoSoft
2013-09-30 04:38 - 2014-01-15 09:19 - 00000000 ____D () C:\Users\...\Desktop\Powerpoint
2013-09-23 07:30 - 2013-10-03 04:32 - 00000000 ____D () C:\Users\...\AppData\Local\Windows Live
2013-09-23 07:29 - 2013-09-23 07:29 - 00000000 ____D () C:\Program Files\Common Files\Windows Live
2013-09-19 05:33 - 2013-09-19 05:33 - 00000000 ____H () C:\Windows\System32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2013-09-11 12:21 - 2013-09-11 12:21 - 00863344 _____ (Microsoft Corporation) C:\Windows\System32\msvcr110_clr0400.dll
2013-09-11 12:21 - 2013-09-11 12:21 - 00501872 _____ (Microsoft Corporation) C:\Windows\System32\msvcp110_clr0400.dll
2013-09-11 12:21 - 2013-09-11 12:21 - 00028776 _____ (Microsoft Corporation) C:\Windows\System32\aspnet_counters.dll
2013-09-11 12:21 - 2013-09-11 12:21 - 00018000 _____ (Microsoft Corporation) C:\Windows\System32\msvcr100_clr0400.dll
2013-09-11 06:48 - 2013-09-11 06:48 - 01195520 _____ () C:\Users\...\Documents\Goldrausch Kalifornien.pptuh.ppt
2013-09-11 04:52 - 2013-09-11 04:52 - 00000000 _____ () C:\Windows\wininit.ini
2013-08-28 04:38 - 2013-08-28 04:38 - 00000000 ____D () C:\Users\...\AppData\Roaming\WinRAR
2013-08-06 08:55 - 2014-11-08 06:48 - 00000000 ____D () C:\Program Files\VS Revo Group
2013-08-06 08:45 - 2015-01-15 10:08 - 00000000 ____D () C:\Windows\pss
2013-08-06 08:40 - 2013-05-12 19:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\System32\certutil.exe
2013-08-06 08:40 - 2013-05-12 19:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\System32\certenc.dll
2013-08-06 08:40 - 2013-05-09 19:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\System32\cryptdlg.dll
2013-08-06 08:40 - 2013-04-25 15:30 - 01505280 _____ (Microsoft Corporation) C:\Windows\System32\d3d11.dll
2013-08-06 08:40 - 2013-04-09 15:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\System32\DWrite.dll
2013-08-06 08:39 - 2013-04-25 20:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\System32\win32spl.dll
2013-08-06 08:29 - 2013-08-06 08:29 - 00000000 ____D () C:\Program Files\Common Files\EPSON
2013-08-06 08:28 - 2013-08-21 06:06 - 00000000 ____D () C:\ProgramData\EPSON
2013-08-06 08:28 - 2011-04-19 17:03 - 00095232 _____ (SEIKO EPSON CORPORATION) C:\Windows\System32\E_FLBIKE.DLL
2013-08-06 07:36 - 2013-08-06 08:37 - 00104526 _____ () C:\Users\...\Documents\Präsentation1.pptx
2013-08-05 04:13 - 2013-08-05 04:13 - 00000000 ____D () C:\Users\Public\Recorded TV
2013-08-04 17:15 - 2013-12-20 07:11 - 00002186 _____ () C:\Users\Public\Desktop\Google Earth.lnk
2013-08-01 08:39 - 2014-02-28 07:20 - 00020351 _____ () C:\Windows\prodsett_copy.ini
2013-08-01 08:26 - 2014-07-01 05:46 - 00000000 ____D () C:\ProgramData\F-Secure
2013-06-09 09:53 - 2013-06-09 09:53 - 04456520 _____ (Microsoft Corporation) C:\Windows\System32\mfc110u.dll
2013-06-09 09:53 - 2013-06-09 09:53 - 04421192 _____ (Microsoft Corporation) C:\Windows\System32\mfc110.dll
2013-06-09 09:53 - 2013-06-09 09:53 - 00164424 _____ (Microsoft Corporation) C:\Windows\System32\atl110.dll
2013-06-09 09:53 - 2013-06-09 09:53 - 00083024 _____ (Microsoft Corporation) C:\Windows\System32\mfcm110u.dll
2013-06-09 09:53 - 2013-06-09 09:53 - 00083016 _____ (Microsoft Corporation) C:\Windows\System32\mfcm110.dll
2013-06-09 09:53 - 2013-06-09 09:53 - 00074832 _____ (Microsoft Corporation) C:\Windows\System32\mfc110fra.dll
2013-06-09 09:53 - 2013-06-09 09:53 - 00074832 _____ (Microsoft Corporation) C:\Windows\System32\mfc110deu.dll
2013-06-09 09:53 - 2013-06-09 09:53 - 00073808 _____ (Microsoft Corporation) C:\Windows\System32\mfc110esn.dll
2013-06-09 09:53 - 2013-06-09 09:53 - 00072784 _____ (Microsoft Corporation) C:\Windows\System32\mfc110ita.dll
2013-06-09 09:53 - 2013-06-09 09:53 - 00070736 _____ (Microsoft Corporation) C:\Windows\System32\mfc110rus.dll
2013-06-09 09:53 - 2013-06-09 09:53 - 00065104 _____ (Microsoft Corporation) C:\Windows\System32\mfc110enu.dll
2013-06-09 09:53 - 2013-06-09 09:53 - 00053840 _____ (Microsoft Corporation) C:\Windows\System32\mfc110jpn.dll
2013-06-09 09:53 - 2013-06-09 09:53 - 00053328 _____ (Microsoft Corporation) C:\Windows\System32\mfc110kor.dll
2013-06-09 09:53 - 2013-06-09 09:53 - 00046160 _____ (Microsoft Corporation) C:\Windows\System32\mfc110cht.dll
2013-06-09 09:53 - 2013-06-09 09:53 - 00046160 _____ (Microsoft Corporation) C:\Windows\System32\mfc110chs.dll
2013-06-07 20:09 - 2013-06-07 20:30 - 00001664 _____ () C:\Windows\System32\ASOROSet.bin
2013-06-07 20:08 - 2013-06-07 20:08 - 00000000 ____D () C:\Users\...\AppData\Local\Microsoft_Corporation
2013-06-07 07:23 - 2014-07-01 05:15 - 00000000 ____D () C:\Users\...\AppData\Roaming\Systweak
2013-06-06 11:32 - 2013-06-06 11:32 - 00000000 ____D () C:\Users\...\Documents\OneNote-Notizbücher
2013-06-04 10:46 - 2014-12-21 07:26 - 00000000 __RHD () C:\Users\Public\Libraries
2013-05-29 07:15 - 2014-12-13 07:43 - 00000000 ____D () C:\ProgramData\Skype
2013-05-29 07:15 - 2014-05-22 08:14 - 00000000 ____D () C:\Users\...\AppData\Roaming\Skype
2013-05-29 07:15 - 2014-05-22 08:13 - 00000000 ____D () C:\Program Files\Skype
2013-05-20 04:26 - 2013-05-20 04:26 - 00000000 ____D () C:\Users\...\AppData\Local\SWTORPerf
2013-05-20 04:25 - 2014-04-23 05:52 - 00000000 ____D () C:\Program Files\Electronic Arts
2013-05-20 04:25 - 2013-06-06 10:36 - 00000000 ____D () C:\Program Files\Common Files\BioWare
2013-05-20 04:25 - 2013-05-20 04:25 - 00000000 ____D () C:\users\hedev
2013-05-20 02:49 - 2013-03-18 19:33 - 00040960 _____ (Microsoft Corporation) C:\Windows\System32\wwanprotdim.dll
2013-05-20 02:48 - 2013-02-26 20:49 - 00047104 _____ (Microsoft Corporation) C:\Windows\System32\appinfo.dll
2013-05-10 03:32 - 2014-12-20 02:53 - 00000000 ____D () C:\ProgramData\Adobe
2013-05-10 03:32 - 2013-05-10 03:32 - 00000000 ____D () C:\ProgramData\McAfee
2013-05-08 07:01 - 2014-12-10 07:13 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2013-05-08 07:01 - 2013-05-08 07:01 - 00000000 ____D () C:\ProgramData\Mozilla
2013-05-07 09:29 - 2013-05-12 02:48 - 00000000 ____D () C:\Program Files\Valve
2013-05-07 09:08 - 2013-05-07 23:48 - 00000000 ____D () C:\Program Files\7-Zip
2013-05-07 09:08 - 2011-05-13 15:17 - 00632656 _____ (Microsoft Corporation) C:\Windows\System32\msvcr80.dll
2013-05-07 09:08 - 2011-05-13 15:17 - 00554832 _____ (Microsoft Corporation) C:\Windows\System32\msvcp80.dll
2013-05-07 09:08 - 2011-05-13 15:17 - 00479232 _____ (Microsoft Corporation) C:\Windows\System32\msvcm80.dll
2013-05-07 09:08 - 2011-05-13 06:59 - 00001870 _____ () C:\Windows\System32\Microsoft.VC80.CRT.manifest
2013-04-30 08:20 - 2013-04-30 08:20 - 00000000 ____D () C:\Users\...\AppData\Roaming\Unity
2013-04-30 08:00 - 2013-04-30 08:00 - 00000000 ____D () C:\Users\...\AppData\Local\Unity
2013-04-27 07:04 - 2013-04-27 07:04 - 00000000 ____D () C:\Users\...\AppData\Local\Macromedia
2013-04-27 06:58 - 2014-12-10 09:06 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\System32\FlashPlayerApp.exe
2013-04-27 06:58 - 2013-04-27 06:58 - 01400416 _____ (Microsoft Corporation) C:\Windows\System32\ieapfltr.dat
2013-04-27 06:58 - 2013-04-27 06:58 - 00745472 _____ (Microsoft Corporation) C:\Windows\System32\MsSpellCheckingFacility.exe
2013-04-27 06:58 - 2013-04-27 06:58 - 00719360 _____ (Microsoft Corporation) C:\Windows\System32\mshtmlmedia.dll
2013-04-27 06:58 - 2013-04-27 06:58 - 00629248 _____ (Microsoft Corporation) C:\Windows\System32\ieapfltr.dll
2013-04-27 06:58 - 2013-04-27 06:58 - 00361984 _____ (Microsoft Corporation) C:\Windows\System32\html.iec
2013-04-27 06:58 - 2013-04-27 06:58 - 00232960 _____ (Microsoft Corporation) C:\Windows\System32\url.dll
2013-04-27 06:58 - 2013-04-27 06:58 - 00204800 _____ (Microsoft Corporation) C:\Windows\System32\webcheck.dll
2013-04-27 06:58 - 2013-04-27 06:58 - 00185344 _____ (Microsoft Corporation) C:\Windows\System32\elshyph.dll
2013-04-27 06:58 - 2013-04-27 06:58 - 00158720 _____ (Microsoft Corporation) C:\Windows\System32\msls31.dll
         

Alt 18.01.2015, 12:04   #8
momolol404
 
RUN.dll fehler - Standard

RUN.dll fehler



Code:
ATTFilter
2013-04-27 06:58 - 2013-04-27 06:58 - 00150528 _____ (Microsoft Corporation) C:\Windows\System32\iexpress.exe
2013-04-27 06:58 - 2013-04-27 06:58 - 00138752 _____ (Microsoft Corporation) C:\Windows\System32\wextract.exe
2013-04-27 06:58 - 2013-04-27 06:58 - 00137216 _____ (Microsoft Corporation) C:\Windows\System32\ieUnatt.exe
2013-04-27 06:58 - 2013-04-27 06:58 - 00125440 _____ (Microsoft Corporation) C:\Windows\System32\occache.dll
2013-04-27 06:58 - 2013-04-27 06:58 - 00117248 _____ (Microsoft Corporation) C:\Windows\System32\iepeers.dll
2013-04-27 06:58 - 2013-04-27 06:58 - 00110592 _____ (Microsoft Corporation) C:\Windows\System32\IEAdvpack.dll
2013-04-27 06:58 - 2013-04-27 06:58 - 00082432 _____ (Microsoft Corporation) C:\Windows\System32\inseng.dll
2013-04-27 06:58 - 2013-04-27 06:58 - 00073728 _____ (Microsoft Corporation) C:\Windows\System32\SetIEInstalledDate.exe
2013-04-27 06:58 - 2013-04-27 06:58 - 00069120 _____ (Microsoft Corporation) C:\Windows\System32\icardie.dll
2013-04-27 06:58 - 2013-04-27 06:58 - 00061952 _____ (Microsoft Corporation) C:\Windows\System32\tdc.ocx
2013-04-27 06:58 - 2013-04-27 06:58 - 00057344 _____ (Microsoft Corporation) C:\Windows\System32\pngfilt.dll
2013-04-27 06:58 - 2013-04-27 06:58 - 00048640 _____ (Microsoft Corporation) C:\Windows\System32\mshtmler.dll
2013-04-27 06:58 - 2013-04-27 06:58 - 00041984 _____ (Microsoft Corporation) C:\Windows\System32\msfeedsbs.dll
2013-04-27 06:58 - 2013-04-27 06:58 - 00038400 _____ (Microsoft Corporation) C:\Windows\System32\imgutil.dll
2013-04-27 06:58 - 2013-04-27 06:58 - 00023040 _____ (Microsoft Corporation) C:\Windows\System32\licmgr10.dll
2013-04-27 06:58 - 2013-04-27 06:58 - 00012800 _____ (Microsoft Corporation) C:\Windows\System32\mshta.exe
2013-04-27 06:58 - 2013-04-27 06:58 - 00011776 _____ (Microsoft Corporation) C:\Windows\System32\msfeedssync.exe
2013-04-27 06:57 - 2013-04-27 06:57 - 01158144 _____ (Microsoft Corporation) C:\Windows\System32\XpsPrint.dll
2013-04-27 06:57 - 2013-04-27 06:57 - 01080832 _____ (Microsoft Corporation) C:\Windows\System32\d3d10.dll
2013-04-27 06:57 - 2013-04-27 06:57 - 00906240 _____ (Microsoft Corporation) C:\Windows\System32\FntCache.dll
2013-04-27 06:57 - 2013-04-27 06:57 - 00604160 _____ (Microsoft Corporation) C:\Windows\System32\d3d10level9.dll
2013-04-27 06:57 - 2013-04-27 06:57 - 00364544 _____ (Microsoft Corporation) C:\Windows\System32\XpsGdiConverter.dll
2013-04-27 06:57 - 2013-04-27 06:57 - 00293376 _____ (Microsoft Corporation) C:\Windows\System32\dxgi.dll
2013-04-27 06:57 - 2013-04-27 06:57 - 00249856 _____ (Microsoft Corporation) C:\Windows\System32\d3d10_1core.dll
2013-04-27 06:57 - 2013-04-27 06:57 - 00220160 _____ (Microsoft Corporation) C:\Windows\System32\d3d10core.dll
2013-04-27 06:57 - 2013-04-27 06:57 - 00207872 _____ (Microsoft Corporation) C:\Windows\System32\WindowsCodecsExt.dll
2013-04-27 06:57 - 2013-04-27 06:57 - 00187392 _____ (Microsoft Corporation) C:\Windows\System32\UIAnimation.dll
2013-04-27 06:57 - 2013-04-27 06:57 - 00161792 _____ (Microsoft Corporation) C:\Windows\System32\d3d10_1.dll
2013-04-27 06:57 - 2013-04-27 06:57 - 00010752 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-04-27 06:57 - 2013-04-27 06:57 - 00009728 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-04-27 06:57 - 2013-04-27 06:57 - 00005632 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-04-27 06:57 - 2013-04-27 06:57 - 00005632 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-04-27 06:57 - 2013-04-27 06:57 - 00004096 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-04-27 06:57 - 2013-04-27 06:57 - 00003584 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-04-27 06:57 - 2013-04-27 06:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-downlevel-version-l1-1-0.dll
2013-04-27 06:57 - 2013-04-27 06:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-04-27 06:57 - 2013-04-27 06:57 - 00002560 ____H (Microsoft Corporation) C:\Windows\System32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-04-26 10:21 - 2012-07-25 19:39 - 00047720 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\WdfLdr.sys
2013-04-26 10:21 - 2012-07-25 18:46 - 00009728 _____ (Microsoft Corporation) C:\Windows\System32\Wdfres.dll
2013-04-26 10:21 - 2012-06-02 06:34 - 00000003 _____ () C:\Windows\System32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
2013-04-26 10:20 - 2012-07-25 19:21 - 00196608 _____ (Microsoft Corporation) C:\Windows\System32\WUDFHost.exe
2013-04-26 10:20 - 2012-07-25 19:20 - 00613888 _____ (Microsoft Corporation) C:\Windows\System32\WUDFx.dll
2013-04-26 10:20 - 2012-07-25 19:20 - 00172032 _____ (Microsoft Corporation) C:\Windows\System32\WUDFPlatform.dll
2013-04-26 10:20 - 2012-07-25 19:20 - 00073216 _____ (Microsoft Corporation) C:\Windows\System32\WUDFSvc.dll
2013-04-26 10:20 - 2012-07-25 19:20 - 00038912 _____ (Microsoft Corporation) C:\Windows\System32\WUDFCoinstaller.dll
2013-04-26 10:20 - 2012-07-25 18:33 - 00066560 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\WUDFPf.sys
2013-04-26 10:20 - 2012-07-25 18:32 - 00155136 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\WUDFRd.sys
2013-04-26 10:20 - 2012-06-02 06:57 - 00000003 _____ () C:\Windows\System32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
2013-04-26 10:11 - 2012-08-21 12:12 - 00245760 _____ (Microsoft Corporation) C:\Windows\System32\OxpsConverter.exe
2013-04-26 10:11 - 2012-05-13 20:33 - 00769024 _____ (Microsoft Corporation) C:\Windows\System32\localspl.dll
2013-04-26 10:10 - 2012-12-07 04:26 - 00308736 _____ (Microsoft Corporation) C:\Windows\System32\Wpc.dll
2013-04-26 10:10 - 2012-12-07 04:20 - 02576384 _____ (Microsoft Corporation) C:\Windows\System32\gameux.dll
2013-04-26 10:10 - 2012-12-07 02:46 - 00055296 _____ (Microsoft) C:\Windows\System32\cero.rs
2013-04-26 10:10 - 2012-12-07 02:46 - 00051712 _____ (Microsoft) C:\Windows\System32\esrb.rs
2013-04-26 10:10 - 2012-12-07 02:46 - 00046592 _____ (Microsoft) C:\Windows\System32\fpb.rs
2013-04-26 10:10 - 2012-12-07 02:46 - 00045568 _____ (Microsoft) C:\Windows\System32\oflc-nz.rs
2013-04-26 10:10 - 2012-12-07 02:46 - 00044544 _____ (Microsoft) C:\Windows\System32\pegibbfc.rs
2013-04-26 10:10 - 2012-12-07 02:46 - 00043520 _____ (Microsoft) C:\Windows\System32\csrr.rs
2013-04-26 10:10 - 2012-12-07 02:46 - 00040960 _____ (Microsoft) C:\Windows\System32\cob-au.rs
2013-04-26 10:10 - 2012-12-07 02:46 - 00030720 _____ (Microsoft) C:\Windows\System32\usk.rs
2013-04-26 10:10 - 2012-12-07 02:46 - 00023552 _____ (Microsoft) C:\Windows\System32\oflc.rs
2013-04-26 10:10 - 2012-12-07 02:46 - 00021504 _____ (Microsoft) C:\Windows\System32\grb.rs
2013-04-26 10:10 - 2012-12-07 02:46 - 00020480 _____ (Microsoft) C:\Windows\System32\pegi-pt.rs
2013-04-26 10:10 - 2012-12-07 02:46 - 00020480 _____ (Microsoft) C:\Windows\System32\pegi-fi.rs
2013-04-26 10:10 - 2012-12-07 02:46 - 00020480 _____ (Microsoft) C:\Windows\System32\pegi.rs
2013-04-26 10:10 - 2012-12-07 02:46 - 00015360 _____ (Microsoft) C:\Windows\System32\djctq.rs
2013-04-26 10:09 - 2013-03-18 20:48 - 00038912 _____ (Microsoft Corporation) C:\Windows\System32\csrsrv.dll
2013-04-26 10:09 - 2013-03-18 18:49 - 00069632 _____ (Microsoft Corporation) C:\Windows\System32\smss.exe
2013-04-26 10:09 - 2012-10-09 09:40 - 00193536 _____ (Microsoft Corporation) C:\Windows\System32\dhcpcore6.dll
2013-04-26 10:09 - 2012-10-09 09:40 - 00044032 _____ (Microsoft Corporation) C:\Windows\System32\dhcpcsvc6.dll
2013-04-26 10:09 - 2012-10-03 08:42 - 00242176 _____ (Microsoft Corporation) C:\Windows\System32\nlasvc.dll
2013-04-26 10:09 - 2012-10-03 08:42 - 00175104 _____ (Microsoft Corporation) C:\Windows\System32\netcorehc.dll
2013-04-26 10:09 - 2012-10-03 08:42 - 00156672 _____ (Microsoft Corporation) C:\Windows\System32\ncsi.dll
2013-04-26 10:09 - 2012-10-03 08:42 - 00052224 _____ (Microsoft Corporation) C:\Windows\System32\nlaapi.dll
2013-04-26 10:09 - 2012-10-03 08:42 - 00018944 _____ (Microsoft Corporation) C:\Windows\System32\netevent.dll
2013-04-26 10:09 - 2012-10-03 08:40 - 00499712 _____ (Microsoft Corporation) C:\Windows\System32\iphlpsvc.dll
2013-04-26 10:09 - 2012-10-03 07:21 - 00035328 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\tcpipreg.sys
2013-04-26 10:09 - 2012-06-05 21:03 - 00805376 _____ (Microsoft Corporation) C:\Windows\System32\cdosys.dll
2013-04-26 10:08 - 2013-02-11 19:32 - 00015872 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\usb8023x.sys
2013-04-26 10:08 - 2013-02-11 19:32 - 00015872 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\usb8023.sys
2013-04-26 10:08 - 2013-01-23 20:47 - 00196328 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\fvevol.sys
2013-04-26 10:08 - 2012-11-22 18:48 - 00049152 _____ (Microsoft Corporation) C:\Windows\System32\taskhost.exe
2013-04-26 10:08 - 2012-11-01 21:11 - 00376832 _____ (Microsoft Corporation) C:\Windows\System32\dpnet.dll
2013-04-26 10:08 - 2012-09-25 14:47 - 00078336 _____ (Microsoft Corporation) C:\Windows\System32\synceng.dll
2013-04-26 10:08 - 2012-08-22 09:16 - 00712048 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ndis.sys
2013-04-26 10:08 - 2012-07-04 13:16 - 00057344 _____ (Microsoft Corporation) C:\Windows\System32\netapi32.dll
2013-04-26 10:08 - 2012-07-04 13:14 - 00102912 _____ (Microsoft Corporation) C:\Windows\System32\browser.dll
2013-04-26 10:08 - 2012-07-04 13:14 - 00041984 _____ (Microsoft Corporation) C:\Windows\System32\browcli.dll
2013-04-26 10:08 - 2012-07-04 11:45 - 00033280 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\rndismpx.sys
2013-04-26 10:08 - 2012-07-04 11:45 - 00033280 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\RNDISMP.sys
2013-04-26 10:08 - 2012-05-04 23:46 - 00400896 _____ (Microsoft Corporation) C:\Windows\System32\srcore.dll
2013-04-26 10:08 - 2012-04-30 20:44 - 00164352 _____ (Microsoft Corporation) C:\Windows\System32\profsvc.dll
2013-04-26 10:08 - 2012-04-25 20:45 - 00058880 _____ (Microsoft Corporation) C:\Windows\System32\rdpwsx.dll
2013-04-26 10:08 - 2012-04-25 20:41 - 00008192 _____ (Microsoft Corporation) C:\Windows\System32\rdrmemptylst.exe
2013-04-26 10:08 - 2012-03-16 23:27 - 00056176 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\partmgr.sys
2013-04-26 10:08 - 2012-02-10 21:37 - 00317440 _____ (Microsoft Corporation) C:\Windows\System32\spoolsv.exe
2013-01-19 09:18 - 2013-01-19 09:18 - 00000000 ____D () C:\Users\...\AppData\Local\AVTEMPDIR
2013-01-18 06:56 - 2013-01-18 06:56 - 00000000 ____D () C:\Users\...\AppData\Roaming\Ashampoo Photo Commander 5
2013-01-18 06:55 - 2013-01-18 06:55 - 00000000 ____D () C:\Users\...\AppData\Local\ashampoo
2013-01-18 06:52 - 2013-01-18 06:52 - 00000000 ____D () C:\Users\...\AppData\Local\Ashampoo Antivirus
2013-01-18 06:50 - 2014-12-20 01:59 - 00000000 ____D () C:\Program Files\Ashampoo
2012-12-29 12:59 - 2012-12-29 12:59 - 00024184 _____ (Almico Software) C:\Windows\System32\speedfan.sys
2012-12-24 07:04 - 2014-05-06 08:44 - 00007601 _____ () C:\Users\...\AppData\Local\resmon.resmoncfg
2012-12-24 07:01 - 2012-12-24 07:01 - 00000000 ____D () C:\Users\...\AppData\Local\Apps\2.0
2012-11-05 16:20 - 2012-11-05 16:20 - 00875472 _____ (Microsoft Corporation) C:\Windows\System32\msvcr110.dll
2012-11-05 16:20 - 2012-11-05 16:20 - 00535008 _____ (Microsoft Corporation) C:\Windows\System32\msvcp110.dll
2012-11-05 16:20 - 2012-11-05 16:20 - 00320976 _____ (Microsoft Corporation) C:\Windows\System32\vcamp110.dll
2012-11-05 16:20 - 2012-11-05 16:20 - 00252400 _____ (Microsoft Corporation) C:\Windows\System32\vccorlib110.dll
2012-11-05 16:20 - 2012-11-05 16:20 - 00125904 _____ (Microsoft Corporation) C:\Windows\System32\vcomp110.dll
2012-10-07 06:47 - 2012-10-07 06:47 - 00000000 ____D () C:\Windows\uninstall
2012-07-17 05:49 - 2012-07-17 05:49 - 00209648 _____ (Microsoft Corp.) C:\Windows\System32\LIVESSP.DLL
2012-05-17 02:48 - 2012-05-17 02:48 - 00021035 _____ (Meetinghouse Data Communications) C:\Windows\System32\Drivers\AegisP.sys
2012-04-12 08:56 - 2012-02-29 21:46 - 00019824 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\fs_rec.sys
2012-04-12 08:56 - 2012-02-29 21:29 - 00005120 _____ (Microsoft Corporation) C:\Windows\System32\wmi.dll
2012-03-27 07:31 - 2012-02-16 21:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\System32\rdpcore.dll
2012-03-27 07:31 - 2012-02-16 20:13 - 00024576 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\tdtcp.sys
2012-02-21 08:20 - 2012-01-04 00:58 - 00442880 _____ (Microsoft Corporation) C:\Windows\System32\ntshrui.dll
2012-02-21 08:20 - 2011-12-29 21:27 - 00478720 _____ (Microsoft Corporation) C:\Windows\System32\timedate.cpl
2012-02-21 08:20 - 2011-12-15 23:52 - 00690688 _____ (Microsoft Corporation) C:\Windows\System32\msvcrt.dll
2012-02-15 09:13 - 2012-12-24 10:49 - 00000000 ____D () C:\Users\...\AppData\Roaming\Media Finder
2012-02-15 09:12 - 2012-02-15 09:12 - 00000000 ____D () C:\Users\...\AppData\Roaming\Babylon
2012-02-13 06:44 - 2014-02-02 03:28 - 00000000 ____D () C:\Users\...\AppData\Local\Conduit
2012-02-10 08:40 - 2012-03-04 05:52 - 00447208 _____ (BitDefender) C:\Windows\System32\Drivers\avckf.sys
2012-01-29 07:32 - 2011-11-16 21:35 - 00314880 _____ (Microsoft Corporation) C:\Windows\System32\webio.dll
2012-01-17 05:58 - 2012-01-17 05:58 - 00000385 _____ () C:\Windows\System32\user_gensett.xml
2012-01-15 02:45 - 2012-01-15 02:45 - 00000000 ____H () C:\Windows\System32\Drivers\Msft_Kernel_avchv_01009.Wdf
2012-01-15 02:40 - 2012-12-24 10:55 - 00000000 ____D () C:\Program Files\Bitdefender
2012-01-15 02:39 - 2012-01-15 02:39 - 00000000 ____D () C:\Users\...\AppData\Roaming\QuickScan
2012-01-15 02:07 - 2011-10-25 20:32 - 01328128 _____ (Microsoft Corporation) C:\Windows\System32\quartz.dll
2012-01-03 04:02 - 2012-12-24 12:00 - 00000000 ____D () C:\Program Files\Franzis
2011-12-28 06:59 - 2011-10-14 21:38 - 00534528 _____ (Microsoft Corporation) C:\Windows\System32\EncDec.dll
2011-11-25 04:59 - 2011-11-25 04:59 - 00240184 _____ (BitDefender) C:\Windows\System32\Drivers\avchv.sys
2011-11-12 04:20 - 2002-01-08 14:48 - 00000000 ____D () C:\Users\...\AppData\Local\Akamai
2011-10-26 08:09 - 2011-08-26 20:26 - 00233472 _____ (Microsoft Corporation) C:\Windows\System32\oleacc.dll
2011-10-26 08:09 - 2011-08-16 20:24 - 00465408 _____ (Microsoft Corporation) C:\Windows\System32\psisdecd.dll
2011-10-26 08:09 - 2011-08-16 20:19 - 00075776 _____ (Microsoft Corporation) C:\Windows\System32\psisrndr.ax
2011-09-29 05:05 - 2014-04-29 02:46 - 00000000 ____D () C:\Windows\bg-BG
2011-09-29 05:05 - 2011-09-29 05:05 - 00000000 ____D () C:\Windows\System32\Drivers\bg-BG
2011-09-29 05:05 - 2011-09-29 05:05 - 00000000 ____D () C:\Windows\System32\0409
2011-09-06 07:06 - 2014-07-28 04:46 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2011-08-14 00:59 - 2011-07-08 18:30 - 00223744 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mrxsmb10.sys
2011-08-14 00:59 - 2011-06-15 20:33 - 00180224 _____ (Microsoft Corporation) C:\Windows\System32\xmllite.dll
2011-08-14 00:58 - 2011-06-15 00:55 - 00319488 _____ (Microsoft Corporation) C:\Windows\System32\odbcjt32.dll
2011-08-14 00:58 - 2011-06-15 00:55 - 00163840 _____ (Microsoft Corporation) C:\Windows\System32\odbctrac.dll
2011-08-14 00:58 - 2011-06-15 00:55 - 00122880 _____ (Microsoft Corporation) C:\Windows\System32\odbccp32.dll
2011-08-14 00:58 - 2011-06-15 00:55 - 00086016 _____ (Microsoft Corporation) C:\Windows\System32\odbccu32.dll
2011-08-14 00:58 - 2011-06-15 00:55 - 00081920 _____ (Microsoft Corporation) C:\Windows\System32\odbccr32.dll
2011-08-14 00:58 - 2011-05-24 02:44 - 00293376 _____ (Microsoft Corporation) C:\Windows\System32\umpnpmgr.dll
2011-08-14 00:58 - 2011-05-03 20:34 - 01549312 _____ (Microsoft Corporation) C:\Windows\System32\tquery.dll
2011-08-14 00:58 - 2011-05-03 20:32 - 01401344 _____ (Microsoft Corporation) C:\Windows\System32\mssrch.dll
2011-08-14 00:58 - 2011-05-03 20:32 - 00666624 _____ (Microsoft Corporation) C:\Windows\System32\mssvp.dll
2011-08-14 00:58 - 2011-05-03 20:32 - 00337408 _____ (Microsoft Corporation) C:\Windows\System32\mssph.dll
2011-08-14 00:58 - 2011-05-03 20:32 - 00197120 _____ (Microsoft Corporation) C:\Windows\System32\mssphtb.dll
2011-08-14 00:58 - 2011-05-03 20:32 - 00059392 _____ (Microsoft Corporation) C:\Windows\System32\msscntrs.dll
2011-08-14 00:58 - 2011-05-03 20:28 - 00427520 _____ (Microsoft Corporation) C:\Windows\System32\SearchIndexer.exe
2011-08-14 00:58 - 2011-05-03 20:28 - 00164352 _____ (Microsoft Corporation) C:\Windows\System32\SearchProtocolHost.exe
2011-08-14 00:58 - 2011-05-03 20:28 - 00086528 _____ (Microsoft Corporation) C:\Windows\System32\SearchFilterHost.exe
2011-08-03 06:53 - 2014-03-05 06:03 - 00000000 ____D () C:\Users\...\AppData\Roaming\OpenCandy
2011-08-03 06:53 - 2011-08-04 03:30 - 00000000 ____D () C:\Users\...\AppData\Local\OpenCandy
2011-06-20 04:09 - 2011-05-02 20:30 - 00741376 _____ (Microsoft Corporation) C:\Windows\System32\inetcomm.dll
2011-06-20 04:09 - 2011-04-28 18:46 - 00311808 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\srv.sys
2011-06-20 04:09 - 2011-04-28 18:46 - 00310272 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\srv2.sys
2011-06-20 04:09 - 2011-04-28 18:46 - 00114688 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\srvnet.sys
2011-06-20 04:08 - 2011-04-26 18:17 - 00123904 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mrxsmb.sys
2011-06-20 04:08 - 2011-04-26 18:17 - 00096768 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mrxsmb20.sys
2011-06-10 16:58 - 2011-06-10 16:58 - 04422992 _____ (Microsoft Corporation) C:\Windows\System32\mfc100u.dll
2011-06-10 16:58 - 2011-06-10 16:58 - 04397384 _____ (Microsoft Corporation) C:\Windows\System32\mfc100.dll
2011-06-10 16:58 - 2011-06-10 16:58 - 00773968 _____ (Microsoft Corporation) C:\Windows\System32\msvcr100.dll
2011-06-10 16:58 - 2011-06-10 16:58 - 00421200 _____ (Microsoft Corporation) C:\Windows\System32\msvcp100.dll
2011-06-10 16:58 - 2011-06-10 16:58 - 00138056 _____ (Microsoft Corporation) C:\Windows\System32\atl100.dll
2011-06-10 16:58 - 2011-06-10 16:58 - 00081744 _____ (Microsoft Corporation) C:\Windows\System32\mfcm100u.dll
2011-06-10 16:58 - 2011-06-10 16:58 - 00081744 _____ (Microsoft Corporation) C:\Windows\System32\mfcm100.dll
2011-06-10 16:58 - 2011-06-10 16:58 - 00064336 _____ (Microsoft Corporation) C:\Windows\System32\mfc100fra.dll
2011-06-10 16:58 - 2011-06-10 16:58 - 00064336 _____ (Microsoft Corporation) C:\Windows\System32\mfc100deu.dll
2011-06-10 16:58 - 2011-06-10 16:58 - 00063824 _____ (Microsoft Corporation) C:\Windows\System32\mfc100esn.dll
2011-06-10 16:58 - 2011-06-10 16:58 - 00062288 _____ (Microsoft Corporation) C:\Windows\System32\mfc100ita.dll
2011-06-10 16:58 - 2011-06-10 16:58 - 00060752 _____ (Microsoft Corporation) C:\Windows\System32\mfc100rus.dll
2011-06-10 16:58 - 2011-06-10 16:58 - 00055120 _____ (Microsoft Corporation) C:\Windows\System32\mfc100enu.dll
2011-06-10 16:58 - 2011-06-10 16:58 - 00051024 _____ (Microsoft Corporation) C:\Windows\System32\vcomp100.dll
2011-06-10 16:58 - 2011-06-10 16:58 - 00043856 _____ (Microsoft Corporation) C:\Windows\System32\mfc100jpn.dll
2011-06-10 16:58 - 2011-06-10 16:58 - 00043344 _____ (Microsoft Corporation) C:\Windows\System32\mfc100kor.dll
2011-06-10 16:58 - 2011-06-10 16:58 - 00036176 _____ (Microsoft Corporation) C:\Windows\System32\mfc100cht.dll
2011-06-10 16:58 - 2011-06-10 16:58 - 00036176 _____ (Microsoft Corporation) C:\Windows\System32\mfc100chs.dll
2011-06-09 20:34 - 2011-06-09 20:34 - 00394856 _____ (Realtek ) C:\Windows\System32\Drivers\Rt86win7.sys
2011-06-09 20:34 - 2011-06-09 20:34 - 00100896 _____ (Realtek Semiconductor Corporation) C:\Windows\System32\RTNUninst32.dll
2011-06-09 20:34 - 2011-06-09 20:34 - 00080416 _____ () C:\Windows\System32\RtNicProp32.dll
2011-05-14 08:20 - 2014-10-25 05:18 - 00000000 ____D () C:\Windows\PCHEALTH
2011-05-14 07:55 - 2011-04-08 21:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\System32\poqexec.exe
2011-05-14 07:16 - 2014-12-10 09:06 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\System32\FlashPlayerCPLApp.cpl
2011-05-14 07:01 - 2011-05-14 07:01 - 00000000 ____D () C:\Users\...\Downloads\Video
2011-05-14 07:01 - 2002-01-08 14:32 - 00000000 ____D () C:\Users\...\Downloads\Compressed
2011-05-14 06:18 - 2011-03-10 21:39 - 00143744 _____ (NVIDIA Corporation) C:\Windows\System32\Drivers\nvstor.sys
2011-05-14 06:18 - 2011-03-10 21:39 - 00117120 _____ (NVIDIA Corporation) C:\Windows\System32\Drivers\nvraid.sys
2011-05-14 06:18 - 2011-03-10 21:38 - 00332160 _____ (Intel Corporation) C:\Windows\System32\Drivers\iaStorV.sys
2011-05-14 06:18 - 2011-03-10 21:38 - 00080256 _____ (Advanced Micro Devices) C:\Windows\System32\Drivers\amdsata.sys
2011-05-14 06:18 - 2011-03-10 21:38 - 00022400 _____ (Advanced Micro Devices) C:\Windows\System32\Drivers\amdxata.sys
2011-05-14 06:18 - 2011-03-10 21:33 - 01699328 _____ (Microsoft Corporation) C:\Windows\System32\esent.dll
2011-05-14 06:18 - 2011-03-10 21:31 - 00074240 _____ (Microsoft Corporation) C:\Windows\System32\fsutil.exe
2011-05-14 06:18 - 2011-03-10 20:01 - 00076288 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\USBSTOR.SYS
2011-05-14 06:17 - 2011-02-24 21:30 - 02616320 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2011-05-14 06:17 - 2011-02-17 21:39 - 00031232 _____ (Microsoft Corporation) C:\Windows\System32\prevhost.exe
2011-04-29 08:38 - 2013-11-15 05:33 - 00000000 ____D () C:\14cea5152b3f79c431d4b59b3a
2011-04-29 08:34 - 2011-03-10 21:33 - 01164288 _____ (Microsoft Corporation) C:\Windows\System32\mfc42u.dll
2011-04-29 08:34 - 2011-03-10 21:33 - 01137664 _____ (Microsoft Corporation) C:\Windows\System32\mfc42.dll
2011-04-29 08:34 - 2011-03-02 21:38 - 00270336 _____ (Microsoft Corporation) C:\Windows\System32\dnsapi.dll
2011-04-29 08:34 - 2011-03-02 21:38 - 00132608 _____ (Microsoft Corporation) C:\Windows\System32\dnsrslvr.dll
2011-04-29 08:34 - 2011-03-02 21:36 - 00028672 _____ (Microsoft Corporation) C:\Windows\System32\dnscacheugc.exe
2011-04-29 08:34 - 2011-02-22 20:47 - 00069632 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\bowser.sys
2011-04-29 08:34 - 2011-02-11 21:35 - 00191488 _____ (Microsoft Corporation) C:\Windows\System32\FXSCOVER.exe
2011-03-09 06:22 - 2010-12-22 21:54 - 00850944 _____ (Microsoft Corporation) C:\Windows\System32\sbe.dll
2011-03-09 06:22 - 2010-12-22 21:54 - 00642048 _____ (Microsoft Corporation) C:\Windows\System32\CPFilters.dll
2011-03-09 06:22 - 2010-12-22 21:50 - 00199680 _____ (Microsoft Corporation) C:\Windows\System32\mpg2splt.ax
2011-02-21 07:50 - 2011-02-21 07:50 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help
2011-02-20 04:31 - 2011-02-20 04:31 - 00000000 ____D () C:\Users\...\AppData\Roaming\URSoft
2011-02-20 04:27 - 2008-11-10 02:41 - 00032656 _____ (Microsoft Corporation) C:\Windows\System32\msonpmon.dll
2011-02-20 04:21 - 2011-02-20 04:21 - 00000000 ____D () C:\Program Files\Microsoft Visual Studio 8
2011-02-20 04:20 - 2011-02-20 04:20 - 00000000 ____D () C:\MSOCache
2011-02-20 03:33 - 2012-05-17 03:04 - 00009851 _____ () C:\Windows\RTacDbg.txt
2011-02-20 03:32 - 2006-04-21 05:43 - 00172416 ____R (Realtek Semiconductor Corporation ) C:\Windows\System32\Drivers\RTL8187.SYS
2011-02-20 03:30 - 2012-05-17 02:55 - 00000000 ____D () C:\Program Files\Micronet Wireless Network Utility
2011-02-20 03:30 - 2011-02-20 03:30 - 00000000 ____D () C:\Windows\OPTIONS
2011-02-20 03:30 - 2005-11-02 06:21 - 00097977 _____ () C:\Windows\System32\EAPPkt9x.VXD
2011-02-20 03:30 - 2002-10-01 23:57 - 00013532 _____ (Windows (R) 2000 DDK provider) C:\Windows\System32\Drivers\SjyPkt.sys
2011-02-20 03:30 - 2001-09-26 01:03 - 00012981 _____ () C:\Windows\System32\REALPKT.VXD
2011-02-14 10:20 - 2013-06-04 10:30 - 00000000 ___RD () C:\Users\...\Desktop\Drucker
2011-02-13 05:56 - 2011-02-13 05:56 - 00000000 ____D () C:\Program Files\MSECache
2011-02-13 05:01 - 2014-02-09 04:33 - 00000000 ____D () C:\Program Files\TuneUp Utilities 2011
2010-12-30 09:10 - 2010-12-30 09:13 - 00000000 ____D () C:\Windows\System32\Adobe
2010-12-29 04:37 - 2014-11-01 08:10 - 00000000 ____D () C:\Program Files\Google
2010-11-14 02:52 - 2003-04-18 10:06 - 00008192 _____ () C:\Windows\System32\srvany.exe
2010-11-14 02:12 - 2010-11-14 02:12 - 00000000 ____D () C:\Program Files\MSXML 4.0
2010-10-29 07:44 - 1999-06-02 09:55 - 00074000 _____ (Microsoft Corporation) C:\Windows\System32\msrclr40.dll
2010-10-29 07:44 - 1998-11-06 05:38 - 00008198 _____ () C:\Windows\System32\odbcjet.cnt
2010-10-29 07:44 - 1998-11-06 05:33 - 00244417 _____ () C:\Windows\System32\odbcjet.hlp
2010-10-29 07:43 - 2002-08-23 00:00 - 01381376 _____ (Borland Software Corporation) C:\Windows\System32\vcl70.bpl
2010-10-29 07:43 - 1999-06-02 08:55 - 00028944 _____ (Microsoft Corporation) C:\Windows\System32\msrecr40.dll
2010-10-29 07:42 - 2013-05-09 08:17 - 00000000 ____D () C:\Program Files\Common Files\InstallShieldi
2010-10-25 04:34 - 2013-01-19 09:03 - 00000000 ____D () C:\Users\...\AppData\Local\Microsoft Games
2010-10-20 02:44 - 2010-10-20 02:44 - 01207656 _____ (Microsoft Corporation) C:\Windows\System32\FM20.DLL
2010-10-12 02:17 - 2014-06-10 07:04 - 00000000 ___RD () C:\Users\...\Desktop\... Ali1
2010-10-10 09:28 - 2010-10-10 09:32 - 00000000 ____D () C:\Users\...\AppData\Roaming\HP
2010-10-10 09:27 - 2010-10-10 09:27 - 00000000 ____D () C:\Users\...\AppData\Local\HP
2010-10-10 09:21 - 2010-10-10 09:21 - 00000000 ____D () C:\Program Files\Common Files\HP
2010-10-10 09:21 - 2010-10-10 09:21 - 00000000 ____D () C:\Program Files\Common Files\Hewlett-Packard
2010-10-10 09:20 - 2010-10-10 09:20 - 00000000 ____D () C:\Windows\hpojp8500a909
2010-10-10 09:18 - 2009-09-10 22:41 - 00364544 _____ (Hewlett-Packard) C:\Windows\System32\hppldcoi.dll
2010-10-10 09:18 - 2009-09-10 22:40 - 00966656 _____ (Hewlett-Packard Co.) C:\Windows\System32\hpwtiop4.dll
2010-10-10 09:18 - 2009-09-10 22:40 - 00741376 _____ (Hewlett-Packard) C:\Windows\System32\hpwwiax5.dll
2010-10-10 09:18 - 2009-09-10 22:40 - 00271704 _____ (Hewlett-Packard) C:\Windows\System32\hpzids01.dll
2010-10-10 09:18 - 2008-08-12 00:58 - 00118272 _____ (Hewlett-Packard Company) C:\Windows\System32\hpf3l082.dll
2010-10-10 09:17 - 2013-05-07 23:50 - 00000000 ____D () C:\Program Files\HP
2010-10-10 09:15 - 2010-10-10 09:28 - 00267817 _____ () C:\Windows\hpwins22.dat
2010-10-10 04:59 - 2009-12-15 15:03 - 00000000 ____D () C:\Windows\Minidump
2010-08-10 05:49 - 2010-08-10 05:49 - 00149776 _____ (Microsoft Corporation) C:\Windows\System32\phl.dll
2010-07-28 05:36 - 2010-07-28 05:36 - 00108560 _____ (ATI Technologies, Inc.) C:\Windows\System32\Drivers\AtiHdmi.sys
2010-07-24 23:20 - 2010-07-24 23:20 - 00581984 _____ (Acronis) C:\Windows\System32\Drivers\timntr.sys
2010-07-24 23:20 - 2010-07-24 23:20 - 00160288 _____ (Acronis) C:\Windows\System32\Drivers\afcdp.sys
2010-07-24 22:34 - 2014-01-02 06:28 - 00000000 ____D () C:\Program Files\TeamViewer
2010-07-22 04:12 - 2010-07-22 04:12 - 00000000 ____D () C:\Users\...\AppData\Roaming\Nitro PDF
2010-07-22 04:11 - 2010-07-22 04:11 - 00000000 ____D () C:\Program Files\Nitro PDF
2010-07-22 04:11 - 2010-07-22 04:11 - 00000000 ____D () C:\Program Files\Common Files\Nitro PDF
2010-07-22 04:11 - 2010-07-22 04:11 - 00000000 ____D () C:\Program Files\Common Files\BCL Technologies
2010-07-22 04:08 - 2010-07-22 04:08 - 00000000 ____D () C:\Windows\Downloaded Installations
2010-07-19 09:13 - 2010-07-19 09:13 - 00000000 ____D () C:\ProgramData\Acronis
2010-07-19 09:11 - 2010-07-24 23:20 - 00000000 ____D () C:\Program Files\Common Files\Acronis
2010-07-19 09:11 - 2010-07-19 09:11 - 00158272 _____ (Acronis) C:\Windows\System32\Drivers\snapman.sys
2010-07-19 09:11 - 2010-07-19 09:11 - 00000000 ____D () C:\Program Files\Acronis
2010-07-18 07:10 - 2011-03-13 04:15 - 00000000 ____D () C:\bootwiz
2010-07-18 07:05 - 2010-07-18 07:05 - 00000000 ____D () C:\Users\...\AppData\Local\NeoSmart_Technologies
2010-07-18 07:02 - 2013-09-30 05:45 - 00000000 ____D () C:\Program Files\NeoSmart Technologies
2010-07-18 04:54 - 2014-05-05 05:58 - 00024560 _____ () C:\Windows\nsreg.dat
2010-07-18 04:54 - 2010-07-18 04:54 - 00000000 ____D () C:\Users\...\AppData\Roaming\Thunderbird
2010-07-18 04:54 - 2010-07-18 04:54 - 00000000 ____D () C:\Users\...\AppData\Local\Thunderbird
2010-07-11 05:47 - 2010-07-11 05:47 - 01846632 _____ (Microsoft Corporation) C:\Windows\System32\D3DCompiler_41.dll
2010-07-11 05:47 - 2010-07-11 05:47 - 00453456 _____ (Microsoft Corporation) C:\Windows\System32\d3dx10_41.dll
2010-05-03 08:01 - 2010-11-20 04:40 - 00383786 __RSH () C:\bootmgr
2010-05-03 07:14 - 2014-06-30 06:59 - 00000000 ____D () C:\Users\...\AppData\Roaming\Adobe
2010-05-03 07:14 - 2010-05-03 07:14 - 00000000 ____D () C:\Users\...\AppData\Roaming\Macromedia
2010-05-03 07:08 - 2013-05-27 06:40 - 00000000 ____D () C:\Windows\System32\Macromed
2010-05-02 02:04 - 2010-05-02 02:04 - 00172032 _____ (Realtek ) C:\Windows\System32\Drivers\Rtlh86.sys
2010-05-02 01:18 - 2010-05-02 01:18 - 00000000 ____D () C:\Users\...\AppData\Roaming\ESET
2010-05-02 01:18 - 2010-05-02 01:18 - 00000000 ____D () C:\Users\...\AppData\Local\ESET
2010-05-02 00:10 - 2014-10-15 03:01 - 00000000 ____D () C:\Program Files\Microsoft.NET
2010-05-02 00:08 - 2014-12-21 07:45 - 00000000 ____D () C:\ProgramData\Microsoft Help
2010-05-02 00:08 - 2014-12-21 07:45 - 00000000 ____D () C:\Program Files\Microsoft Office
2010-05-02 00:08 - 2014-08-04 00:58 - 00000000 ____D () C:\Users\...\AppData\Local\Microsoft Help
2010-05-01 22:52 - 2010-05-01 22:52 - 00000000 ____D () C:\Users\...\AppData\Roaming\Acronis
2010-05-01 22:51 - 2010-07-24 23:20 - 00911680 _____ (Acronis) C:\Windows\System32\Drivers\tdrpm258.sys
2010-05-01 22:20 - 2010-02-10 23:10 - 00293376 _____ (Microsoft Corporation) C:\Windows\System32\browserchoice.exe
2010-05-01 22:06 - 2015-01-11 02:56 - 00000000 ____D () C:\Program Files\MSI
2010-05-01 21:58 - 2015-01-11 06:02 - 00000000 ___RD () C:\Users\.......-PC\Desktop\support
2010-05-01 21:57 - 2015-01-16 08:35 - 00000000 ____D () C:\Program Files\Mozilla Thunderbird
2010-05-01 21:57 - 2014-03-15 07:13 - 00001159 _____ () C:\Users\.......-PC\Desktop\mails.lnk
2010-05-01 21:54 - 2014-04-30 07:06 - 00000000 ____D () C:\Users\...\AppData\Local\Google
2010-05-01 21:51 - 2014-12-22 05:16 - 00001023 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2010-05-01 21:51 - 2013-10-01 03:25 - 00000000 ____D () C:\Users\...\AppData\Local\Mozilla
2010-05-01 21:51 - 2010-05-01 21:51 - 00000000 ____D () C:\Users\...\AppData\Roaming\Mozilla
2010-05-01 10:07 - 2014-01-05 05:32 - 00000000 ____D () C:\Program Files\WinRAR
2010-05-01 10:05 - 2012-01-15 02:35 - 00000000 ____D () C:\Users\...\AppData\Roaming\DMCache
2010-05-01 10:03 - 2013-09-30 05:37 - 00000000 ____D () C:\ProgramData\TuneUp Software
2010-05-01 10:03 - 2013-09-30 05:35 - 00000000 ____D () C:\Users\...\AppData\Roaming\TuneUp Software
2010-05-01 09:32 - 2010-05-01 09:32 - 00050632 _____ (G DATA Software AG) C:\Windows\System32\Drivers\MiniIcpt.sys
2010-05-01 09:31 - 2010-05-01 09:55 - 00000000 ____D () C:\Program Files\Common Files\G DATA
2010-05-01 09:31 - 2010-05-01 09:31 - 00040392 _____ (G DATA Software AG) C:\Windows\System32\Drivers\gdwfpcd32.sys
2010-05-01 09:30 - 2013-09-30 05:41 - 00000000 ____D () C:\Users\...\AppData\Local\Downloaded Installations
2010-05-01 09:27 - 2001-12-31 15:13 - 00000000 ___HD () C:\Program Files\InstallShield Installation Information
2010-05-01 09:05 - 2010-05-01 09:05 - 00000000 ____H () C:\Windows\System32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2010-05-01 09:02 - 2014-06-19 02:15 - 00000000 ____D () C:\users\...
2010-05-01 09:02 - 2011-12-06 09:07 - 00000000 ____D () C:\Users\...\AppData\Local\VirtualStore
2010-05-01 09:02 - 2010-05-01 09:02 - 00000000 _SHDL () C:\Users\...\AppData\Local\Verlauf
2010-05-01 08:59 - 2010-05-01 08:59 - 00000000 _SHDL () C:\Users\Default\Startmenü
2010-05-01 08:59 - 2010-05-01 08:59 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung
2010-05-01 08:59 - 2010-05-01 08:59 - 00000000 _SHDL () C:\Users\Default\Druckumgebung
2010-05-01 08:59 - 2010-05-01 08:59 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik
2010-05-01 08:59 - 2010-05-01 08:59 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder
2010-05-01 08:59 - 2010-05-01 08:59 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf
2010-05-01 08:54 - 2010-05-01 08:54 - 00000000 _____ () C:\Windows\ativpsrm.bin
2010-05-01 08:53 - 2010-05-01 08:53 - 00000000 ____D () C:\Windows\CSC
2010-03-20 10:11 - 2010-03-20 10:11 - 00036736 _____ (Microsoft Corporation) C:\Windows\System32\FM20DEU.DLL
2010-02-20 07:20 - 2010-02-20 07:20 - 00031616 _____ (Microsoft Corporation) C:\Windows\System32\FM20ENU.DLL
2010-02-17 11:42 - 2010-02-17 11:42 - 00051584 _____ (Microsoft Corporation) C:\Windows\System32\VBAME.DLL
2010-02-10 20:43 - 2010-02-10 20:43 - 00053248 _____ (Advanced Micro Devices Inc.) C:\Windows\System32\aticalrt.dll
2010-02-10 20:43 - 2010-02-10 20:43 - 00053248 _____ (Advanced Micro Devices Inc.) C:\Windows\System32\aticalcl.dll
2010-02-10 20:42 - 2010-02-10 20:42 - 03235840 _____ (Advanced Micro Devices Inc.) C:\Windows\System32\aticaldd.dll
2009-12-15 17:37 - 2009-12-15 18:19 - 00000453 _____ () C:\nvscnrpt.log
2009-12-15 17:37 - 2009-12-15 17:37 - 00000000 ____D () C:\temp
2009-12-15 15:32 - 2009-12-15 15:32 - 00000000 ____D () C:\ProgramData\ATI
2009-12-15 15:03 - 2009-12-15 15:03 - 00135680 _____ () C:\Windows\Minidump\121609-22812-01.dmp

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-16 10:58 - 2009-07-13 20:34 - 00037504 ____H () C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-01-16 10:58 - 2009-07-13 20:34 - 00037504 ____H () C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-12-22 01:15 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\NDF
2014-12-21 07:45 - 2009-07-13 18:37 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2014-12-21 07:44 - 2009-07-14 00:56 - 00000000 ____D () C:\Windows\ShellNew
2014-12-13 07:51 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2014-12-07 01:39 - 2009-07-13 20:52 - 00000000 ____D () C:\Windows\System32\FxsTmp
2014-11-26 05:23 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\rescache
2014-11-25 08:07 - 2002-01-01 20:38 - 00811520 _____ (Microsoft Corporation) C:\Windows\System32\user32.dll
2014-11-25 08:07 - 2002-01-01 20:37 - 00409088 _____ (Microsoft Corporation) C:\Windows\System32\systemcpl.dll
2014-11-25 08:07 - 2002-01-01 20:37 - 00013824 _____ (Microsoft Corporation) C:\Windows\System32\slwga.dll
2014-11-23 07:41 - 2009-07-13 18:37 - 00000000 ___RD () C:\users\Public
2014-11-22 11:00 - 2009-10-13 19:07 - 00000000 ____D () C:\Windows\Panther
2014-11-22 10:12 - 2002-01-08 15:12 - 00000000 ___RD () C:\Users\...\Desktop\Bilder
2014-11-13 06:16 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\de-DE
2014-11-13 05:57 - 2009-10-13 18:21 - 100445232 _____ (Microsoft Corporation) C:\Windows\System32\MRT.exe
2014-11-01 08:09 - 2009-07-13 20:52 - 00000000 ____D () C:\Windows\twain_32
2014-10-26 20:12 - 2009-07-13 18:04 - 00000763 _____ () C:\Windows\win.ini
2014-10-25 05:43 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\bg-BG
2014-10-15 03:03 - 2009-07-13 20:52 - 00000000 ____D () C:\Program Files\MSBuild
2014-08-07 04:04 - 2009-07-14 00:56 - 00000000 ____D () C:\Program Files\Windows Journal
2014-08-07 04:04 - 2009-07-14 00:47 - 00000000 ____D () C:\Windows\System32\XPSViewer
2014-08-07 04:04 - 2009-07-14 00:47 - 00000000 ____D () C:\Windows\System32\winrm
2014-08-07 04:04 - 2009-07-14 00:47 - 00000000 ____D () C:\Windows\System32\WCN
2014-08-07 04:04 - 2009-07-14 00:47 - 00000000 ____D () C:\Windows\System32\slmgr
2014-08-07 04:04 - 2009-07-14 00:47 - 00000000 ____D () C:\Windows\System32\Printing_Admin_Scripts
2014-08-07 04:04 - 2009-07-14 00:47 - 00000000 ____D () C:\Windows\DigitalLocker
2014-08-07 04:04 - 2009-07-13 20:52 - 00000000 ____D () C:\Program Files\Windows Sidebar
2014-08-07 04:04 - 2009-07-13 20:52 - 00000000 ____D () C:\Program Files\Windows Photo Viewer
2014-08-07 04:04 - 2009-07-13 20:52 - 00000000 ____D () C:\Program Files\Windows Defender
2014-08-07 04:04 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\MUI
2014-08-07 04:04 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\fr-FR
2014-08-07 04:04 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\com
2014-08-07 04:04 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\ar-SA
2014-08-07 04:04 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\IME
2014-06-08 00:57 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\Resources
2014-03-30 23:35 - 2009-10-13 18:21 - 00231584 ____N (Microsoft Corporation) C:\Windows\System32\MpSigStub.exe
2014-02-09 21:09 - 2009-07-13 20:46 - 00001515 _____ () C:\Users\.......-PC\Desktop\Windows Media Player.lnk
2014-02-03 07:29 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\tr-TR
2014-02-03 07:28 - 2009-07-13 20:52 - 00000000 ____D () C:\Program Files\DVD Maker
2014-02-03 07:20 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\th-TH
2014-02-02 03:38 - 2009-07-14 00:47 - 00000000 ____D () C:\Windows\System32\Drivers\de-DE
2014-02-02 03:28 - 2002-01-08 17:28 - 00000000 ____D () C:\ProgramData\TEMP
2014-02-01 06:01 - 2009-07-13 20:52 - 00000000 ____D () C:\Windows\System32\WinBioPlugIns
2013-11-20 08:40 - 2002-01-08 17:58 - 00000981 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2013-11-20 08:40 - 2002-01-08 17:58 - 00000000 ____D () C:\Program Files\CCleaner
2013-08-21 05:33 - 2009-11-10 10:44 - 00005194 _____ () C:\Windows\System32\PerfStringBackup.INI
2013-08-06 08:35 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\system
2013-04-27 07:19 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\zh-TW
2013-04-27 07:19 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\zh-HK
2013-04-27 07:19 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\zh-CN
2013-04-27 07:19 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\sv-SE
2013-04-27 07:19 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\ru-RU
2013-04-27 07:19 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\pt-PT
2013-04-27 07:19 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\pt-BR
2013-04-27 07:19 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\pl-PL
2013-04-27 07:19 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\nl-NL
2013-04-27 07:19 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\nb-NO
2013-04-27 07:19 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\ko-KR
2013-04-27 07:19 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\ja-JP
2013-04-27 07:19 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\it-IT
2013-04-27 07:19 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\hu-HU
2013-04-27 07:19 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\fi-FI
2013-04-27 07:19 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\el-GR
2012-12-24 11:56 - 2009-07-13 20:41 - 00000749 ___RH () C:\Windows\WindowsShell.Manifest
2012-12-24 06:32 - 2009-07-13 18:37 - 00000000 ___HD () C:\Windows\System32\GroupPolicy
2012-12-24 05:21 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\Registration
2011-08-17 10:38 - 2001-12-31 15:13 - 01249792 _____ (Atheros Communications, Inc.) C:\Windows\System32\Drivers\athr.sys
2011-08-17 10:38 - 2001-12-31 15:13 - 01249792 _____ (Atheros Communications, Inc.) C:\Windows\System32\athr.sys
2011-08-17 10:38 - 2001-12-31 15:13 - 00007630 _____ () C:\Windows\System32\athrext.cat
2010-11-20 04:36 - 2002-01-01 20:37 - 01077248 _____ (Microsoft Corporation) C:\Windows\System32\Narrator.exe
2010-11-20 04:36 - 2002-01-01 20:37 - 00107008 _____ (Microsoft Corporation) C:\Windows\System32\NAPHLPR.DLL
2010-11-20 04:36 - 2002-01-01 20:37 - 00046080 _____ (Microsoft Corporation) C:\Windows\System32\NAPCRYPT.DLL
2010-11-20 04:32 - 2002-01-01 20:38 - 05066752 _____ (Microsoft Corporation) C:\Windows\System32\AuthFWSnapin.dll
2010-11-20 04:30 - 2002-01-01 20:38 - 00245632 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\volsnap.sys
2010-11-20 04:30 - 2002-01-01 20:38 - 00175360 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\vmbus.sys
2010-11-20 04:30 - 2002-01-01 20:38 - 00160128 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\vhdmp.sys
2010-11-20 04:30 - 2002-01-01 20:38 - 00153984 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\pci.sys
2010-11-20 04:30 - 2002-01-01 20:38 - 00116096 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\msdsm.sys
2010-11-20 04:30 - 2002-01-01 20:38 - 00085376 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\sbp2port.sys
2010-11-20 04:30 - 2002-01-01 20:38 - 00053120 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\termdd.sys
2010-11-20 04:30 - 2002-01-01 20:38 - 00028032 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\msahci.sys
2010-11-20 04:30 - 2002-01-01 20:37 - 00173440 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\rdyboost.sys
2010-11-20 04:30 - 2002-01-01 20:37 - 00140160 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\scsiport.sys
2010-11-20 04:30 - 2002-01-01 20:37 - 00130432 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mpio.sys
2010-11-20 04:30 - 2002-01-01 20:37 - 00078208 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\mountmgr.sys
2010-11-20 04:30 - 2002-01-01 20:37 - 00053120 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\volmgr.sys
2010-11-20 04:30 - 2002-01-01 20:37 - 00040704 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\vmstorfl.sys
2010-11-20 04:30 - 2002-01-01 20:37 - 00028032 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\storvsc.sys
2010-11-20 04:29 - 2002-01-01 20:38 - 00520064 _____ (Microsoft Corporation) C:\Windows\System32\mcupdate_GenuineIntel.dll
2010-11-20 04:29 - 2002-01-01 20:38 - 00014208 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\hwpolicy.sys
2010-11-20 04:29 - 2002-01-01 20:37 - 02217856 _____ (Microsoft Corporation) C:\Windows\System32\bootres.dll
2010-11-20 04:29 - 2002-01-01 20:37 - 00274304 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\acpi.sys
2010-11-20 04:29 - 2002-01-01 20:37 - 00194432 _____ (Microsoft Corporation) C:\Windows\System32\halmacpi.dll
2010-11-20 04:29 - 2002-01-01 20:37 - 00194432 _____ (Microsoft Corporation) C:\Windows\System32\hal.dll
2010-11-20 04:29 - 2002-01-01 20:37 - 00137088 _____ (Microsoft Corporation) C:\Windows\System32\halacpi.dll
2010-11-20 04:29 - 2002-01-01 20:37 - 00043392 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\winhv.sys
2010-11-20 04:24 - 2002-01-01 20:38 - 00690680 _____ (Microsoft Corporation) C:\Windows\System32\ci.dll
2010-11-20 04:24 - 2002-01-01 20:38 - 00508904 _____ (Microsoft Corporation) C:\Windows\System32\winload.exe
2010-11-20 04:24 - 2002-01-01 20:38 - 00442720 _____ (Microsoft Corporation) C:\Windows\System32\winresume.exe
2010-11-20 04:24 - 2002-01-01 20:38 - 00271664 _____ (Microsoft Corporation) C:\Windows\System32\fveapi.dll
2010-11-20 04:23 - 2002-01-01 20:38 - 00144768 _____ (Microsoft Corporation) C:\Windows\System32\basecsp.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 02983424 _____ (Microsoft Corporation) C:\Windows\System32\UIRibbon.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 02755072 _____ (Microsoft Corporation) C:\Windows\System32\themeui.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 02311168 _____ (Microsoft Corporation) C:\Windows\System32\wpdshext.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 02146304 _____ (Microsoft Corporation) C:\Windows\System32\SyncCenter.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 01712640 _____ (Microsoft Corporation) C:\Windows\System32\xpsservices.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 01667584 _____ (Microsoft Corporation) C:\Windows\System32\setupapi.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 01363456 _____ (Microsoft Corporation) C:\Windows\System32\Query.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 01175040 _____ (Microsoft Corporation) C:\Windows\System32\WsmSvc.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 01159168 _____ (Microsoft Corporation) C:\Windows\System32\sysmain.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 01128448 _____ (Microsoft Corporation) C:\Windows\System32\vssapi.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 01115136 _____ (Microsoft Corporation) C:\Windows\System32\RacEngn.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 01086976 _____ (Microsoft Corporation) C:\Windows\System32\wevtsvc.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 01063936 _____ (Microsoft Corporation) C:\Windows\System32\werconcpl.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00974336 _____ (Microsoft Corporation) C:\Windows\System32\sppobjs.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00907776 _____ (Microsoft Corporation) C:\Windows\System32\sdengin2.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00811520 _____ (Microsoft Corporation) C:\Windows\System32\user32.dll.bak
2010-11-20 04:21 - 2002-01-01 20:38 - 00782336 _____ (Microsoft Corporation) C:\Windows\System32\webservices.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00778240 _____ (Microsoft Corporation) C:\Windows\System32\sqlsrv32.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00750592 _____ (Microsoft Corporation) C:\Windows\System32\schedsvc.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00646144 _____ (Microsoft Corporation) C:\Windows\System32\SearchFolder.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00551424 _____ (Microsoft Corporation) C:\Windows\System32\samsrv.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00505856 _____ (Microsoft Corporation) C:\Windows\System32\taskschd.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00464896 _____ (Microsoft Corporation) C:\Windows\System32\scrptadm.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00463360 _____ (Microsoft Corporation) C:\Windows\System32\wiaservc.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00458752 _____ (Microsoft Corporation) C:\Windows\System32\WSDApi.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00412160 _____ (Microsoft Corporation) C:\Windows\System32\sppwinob.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00411648 _____ (Microsoft Corporation) C:\Windows\System32\wlangpui.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00380416 _____ (Microsoft Corporation) C:\Windows\System32\sxs.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00376832 _____ (Microsoft Corporation) C:\Windows\System32\rpcss.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00352256 _____ (Microsoft Corporation) C:\Windows\System32\wmpeffects.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00351232 _____ (Microsoft Corporation) C:\Windows\System32\winhttp.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00350208 _____ (Microsoft Corporation) C:\Windows\System32\shlwapi.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00335872 _____ (Microsoft Corporation) C:\Windows\System32\WinSATAPI.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00305152 _____ (Microsoft Corporation) C:\Windows\System32\taskcomp.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00270848 _____ (Microsoft Corporation) C:\Windows\System32\tsmf.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00269824 _____ (Microsoft Corporation) C:\Windows\System32\Wldap32.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00253952 _____ (Microsoft Corporation) C:\Windows\System32\spwizui.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00246272 _____ (Microsoft Corporation) C:\Windows\System32\scansetting.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00242176 _____ (Microsoft Corporation) C:\Windows\System32\vpnike.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00228352 _____ (Microsoft Corporation) C:\Windows\System32\stobject.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00206848 _____ (Microsoft Corporation) C:\Windows\System32\ws2_32.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00206848 _____ (Microsoft Corporation) C:\Windows\System32\upnp.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00172544 _____ (Microsoft Corporation) C:\Windows\System32\spp.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00171008 _____ (Microsoft Corporation) C:\Windows\System32\umrdp.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00168960 _____ (Microsoft Corporation) C:\Windows\System32\srvsvc.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00154624 _____ (Microsoft Corporation) C:\Windows\System32\tscfgwmi.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00140800 _____ (Microsoft Corporation) C:\Windows\System32\rdpendp.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00139264 _____ (Microsoft Corporation) C:\Windows\System32\rpchttp.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00134656 _____ (Microsoft Corporation) C:\Windows\System32\WinSCard.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00133632 _____ (Microsoft Corporation) C:\Windows\System32\tspubwmi.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00120320 _____ (Microsoft Corporation) C:\Windows\System32\tssrvlic.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00113664 _____ (Microsoft Corporation) C:\Windows\System32\SessEnv.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00109056 _____ (Microsoft Corporation) C:\Windows\System32\t2embed.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00081920 _____ (Microsoft Corporation) C:\Windows\System32\userenv.dll
2010-11-20 04:21 - 2002-01-01 20:38 - 00051712 _____ (Microsoft Corporation) C:\Windows\System32\wscapi.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 02202624 _____ (Microsoft Corporation) C:\Windows\System32\SensorsCpl.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 02157568 _____ (Microsoft Corporation) C:\Windows\System32\themecpl.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 01624064 _____ (Microsoft Corporation) C:\Windows\System32\WMPEncEn.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 01326592 _____ (Microsoft Corporation) C:\Windows\System32\wlanpref.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 01227776 _____ (Microsoft Corporation) C:\Windows\System32\wdc.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 01003008 _____ (Microsoft Corporation) C:\Windows\System32\WMNetMgr.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00933376 _____ (Microsoft Corporation) C:\Windows\System32\Vault.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00902656 _____ (Microsoft Corporation) C:\Windows\System32\WMADMOD.DLL
2010-11-20 04:21 - 2002-01-01 20:37 - 00766464 _____ (Microsoft Corporation) C:\Windows\System32\wpccpl.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00755200 _____ (Microsoft Corporation) C:\Windows\System32\sud.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00750080 _____ (Microsoft Corporation) C:\Windows\System32\sdcpl.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00739328 _____ (Microsoft Corporation) C:\Windows\System32\WMSPDMOD.DLL
2010-11-20 04:21 - 2002-01-01 20:37 - 00738816 _____ (Microsoft Corporation) C:\Windows\System32\wmpmde.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00638976 _____ (Microsoft Corporation) C:\Windows\System32\VAN.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00616960 _____ (Microsoft Corporation) C:\Windows\System32\wmdrmsdk.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00600064 _____ (Microsoft Corporation) C:\Windows\System32\usercpl.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00577024 _____ (Microsoft Corporation) C:\Windows\System32\wpd_ci.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00541184 _____ (Microsoft Corporation) C:\Windows\System32\WMVSDECD.DLL
2010-11-20 04:21 - 2002-01-01 20:37 - 00507392 _____ (Microsoft Corporation) C:\Windows\System32\wmdrmdev.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00473600 _____ (Microsoft Corporation) C:\Windows\System32\riched20.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00444928 _____ (Microsoft Corporation) C:\Windows\System32\wvc.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00436736 _____ (Microsoft Corporation) C:\Windows\System32\wmdrmnet.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00428544 _____ (Microsoft Corporation) C:\Windows\System32\shwebsvc.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00428032 _____ (Microsoft Corporation) C:\Windows\System32\wlanmsm.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00416768 _____ (Microsoft Corporation) C:\Windows\System32\wiadefui.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00410624 _____ (Microsoft Corporation) C:\Windows\System32\systemcpl.dll.bak
2010-11-20 04:21 - 2002-01-01 20:37 - 00410112 _____ (Microsoft Corporation) C:\Windows\System32\wlanui.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00406528 _____ (Microsoft Corporation) C:\Windows\System32\wimgapi.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00363520 _____ (Microsoft Corporation) C:\Windows\System32\StructuredQuery.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00352768 _____ (Microsoft Corporation) C:\Windows\System32\termmgr.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00352768 _____ (Microsoft Corporation) C:\Windows\System32\spwizeng.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00350720 _____ (Microsoft Corporation) C:\Windows\System32\WPDSp.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00346624 _____ (Microsoft Corporation) C:\Windows\System32\untfs.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00328192 _____ (Microsoft Corporation) C:\Windows\System32\shsvcs.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00327680 _____ (Microsoft Corporation) C:\Windows\System32\zipfldr.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00318976 _____ (Microsoft Corporation) C:\Windows\System32\raschap.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00316416 _____ (Microsoft Corporation) C:\Windows\System32\sharemediacpl.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00309760 _____ (Microsoft Corporation) C:\Windows\System32\sqlcese30.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00307712 _____ (Microsoft Corporation) C:\Windows\System32\scesrv.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00301568 _____ (Microsoft Corporation) C:\Windows\System32\srchadmin.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00299520 _____ (Microsoft Corporation) C:\Windows\System32\wmpdxm.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00286208 _____ (Microsoft Corporation) C:\Windows\System32\rasmans.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00276992 _____ (Microsoft Corporation) C:\Windows\System32\wcncsvc.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00257024 _____ (Microsoft Corporation) C:\Windows\System32\srrstr.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00247808 _____ (Microsoft Corporation) C:\Windows\System32\ReAgent.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00242176 _____ (Microsoft Corporation) C:\Windows\System32\tapisrv.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00233472 _____ (Microsoft Corporation) C:\Windows\System32\taskbarcpl.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00222208 _____ (Microsoft Corporation) C:\Windows\System32\wavemsp.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00220160 _____ (Microsoft Corporation) C:\Windows\System32\SndVolSSO.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00202240 _____ (Microsoft Corporation) C:\Windows\System32\unattend.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00198144 _____ (Microsoft Corporation) C:\Windows\System32\wpdwcn.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00198144 _____ (Microsoft Corporation) C:\Windows\System32\sysclass.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00196608 _____ (Microsoft Corporation) C:\Windows\System32\wwanconn.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00196096 _____ (Microsoft Corporation) C:\Windows\System32\vaultsvc.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00194048 _____ (Microsoft Corporation) C:\Windows\System32\winmm.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00193536 _____ (Microsoft Corporation) C:\Windows\System32\sppcomapi.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00189952 _____ (Microsoft Corporation) C:\Windows\System32\sqmapi.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00186368 _____ (Microsoft Corporation) C:\Windows\System32\rdpencom.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00182272 _____ (Microsoft Corporation) C:\Windows\System32\wmpsrcwp.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00181760 _____ (Microsoft Corporation) C:\Windows\System32\tcpipcfg.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00176640 _____ (Microsoft Corporation) C:\Windows\System32\rasppp.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00175616 _____ (Microsoft Corporation) C:\Windows\System32\scecli.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00160256 _____ (Microsoft Corporation) C:\Windows\System32\vdsbas.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00159232 _____ (Microsoft Corporation) C:\Windows\System32\syncui.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00151040 _____ (Microsoft Corporation) C:\Windows\System32\vdsutil.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00146944 _____ (Microsoft Corporation) C:\Windows\System32\remotepg.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00146432 _____ (Microsoft Corporation) C:\Windows\System32\twext.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00144384 _____ (Microsoft Corporation) C:\Windows\System32\wmpps.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00135680 _____ (Microsoft Corporation) C:\Windows\System32\recovery.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00135168 _____ (Microsoft Corporation) C:\Windows\System32\XpsRasterService.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00125952 _____ (Microsoft Corporation) C:\Windows\System32\sdrsvc.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00119808 _____ (Microsoft Corporation) C:\Windows\System32\umpo.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00118784 _____ (Microsoft Corporation) C:\Windows\System32\uxlib.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00115712 _____ (Microsoft Corporation) C:\Windows\System32\sppnp.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00115712 _____ (Microsoft Corporation) C:\Windows\System32\setupcln.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00111104 _____ (Microsoft Corporation) C:\Windows\System32\shsetup.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00109568 _____ (Microsoft Corporation) C:\Windows\System32\wiavideo.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00108032 _____ (Microsoft Corporation) C:\Windows\System32\shacct.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00105984 _____ (Microsoft Corporation) C:\Windows\System32\WPDShServiceObj.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00105472 _____ (Microsoft Corporation) C:\Windows\System32\wmpshell.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00100864 _____ (Microsoft Corporation) C:\Windows\System32\sppinst.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00090112 _____ (Microsoft Corporation) C:\Windows\System32\srvcli.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00085504 _____ (Microsoft Corporation) C:\Windows\System32\wpdbusenum.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00084480 _____ (Microsoft Corporation) C:\Windows\System32\wkssvc.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00082944 _____ (Microsoft Corporation) C:\Windows\System32\thumbcache.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00080896 _____ (Microsoft Corporation) C:\Windows\System32\QUTIL.DLL
2010-11-20 04:21 - 2002-01-01 20:37 - 00078848 _____ (Microsoft Corporation) C:\Windows\System32\UserAccountControlSettings.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00073216 _____ (Microsoft Corporation) C:\Windows\System32\TabSvc.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00072192 _____ (Microsoft Corporation) C:\Windows\System32\regapi.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00071168 _____ (Microsoft Corporation) C:\Windows\System32\resutils.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00069632 _____ (Microsoft Corporation) C:\Windows\System32\tlscsp.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00069632 _____ (Microsoft Corporation) C:\Windows\System32\rastapi.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00061952 _____ (Microsoft Corporation) C:\Windows\System32\spbcd.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00059392 _____ (Microsoft Corporation) C:\Windows\System32\unimdmat.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00056832 _____ (Microsoft Corporation) C:\Windows\System32\vfwwdm32.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00053760 _____ (Microsoft Corporation) C:\Windows\System32\sppuinotify.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00052224 _____ (Microsoft Corporation) C:\Windows\System32\rdpd3d.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00051712 _____ (Microsoft Corporation) C:\Windows\System32\wsnmp32.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00051200 _____ (Twain Working Group) C:\Windows\twain_32.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00051200 _____ (Microsoft Corporation) C:\Windows\System32\samcli.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00050688 _____ (Microsoft Corporation) C:\Windows\System32\umb.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00050176 _____ (Microsoft Corporation) C:\Windows\System32\setbcdlocale.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00047104 _____ (Microsoft Corporation) C:\Windows\System32\wkscli.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00046592 _____ (Microsoft Corporation) C:\Windows\System32\WavDest.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00046080 _____ (Microsoft Corporation) C:\Windows\System32\RpcRtRemote.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00040448 _____ (Microsoft Corporation) C:\Windows\System32\wtsapi32.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00037376 _____ (Microsoft Corporation) C:\Windows\System32\rtutils.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00036352 _____ (Microsoft Corporation) C:\Windows\System32\wshbth.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00035840 _____ (Microsoft Corporation) C:\Windows\System32\shimgvw.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00033280 _____ (Microsoft Corporation) C:\Windows\System32\wiarpc.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00031744 _____ (Microsoft Corporation) C:\Windows\System32\wdiasqmmodule.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00031744 _____ (Microsoft Corporation) C:\Windows\System32\utildll.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00025600 _____ (Microsoft Corporation) C:\Windows\System32\vpnikeapi.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00021504 _____ (Microsoft Corporation) C:\Windows\System32\wsdchngr.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00021504 _____ (Microsoft Corporation) C:\Windows\System32\TRAPI.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00021504 _____ (Microsoft Corporation) C:\Windows\System32\rdprefdrvapi.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00020992 _____ (Microsoft Corporation) C:\Windows\System32\shgina.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00019968 _____ (Microsoft Corporation) C:\Windows\System32\spopk.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00019456 _____ (Microsoft Corporation) C:\Windows\System32\sisbkup.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00017408 _____ (Microsoft Corporation) C:\Windows\System32\schedcli.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00014848 _____ (Microsoft Corporation) C:\Windows\System32\syssetup.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00014336 _____ (Microsoft Corporation) C:\Windows\System32\slwga.dll.bak
2010-11-20 04:21 - 2002-01-01 20:37 - 00012288 _____ (Microsoft Corporation) C:\Windows\System32\tsbyuv.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00011264 _____ (Microsoft Corporation) C:\Windows\System32\wshirda.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00010752 _____ (Microsoft Corporation) C:\Windows\System32\shunimpl.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00009728 _____ (Microsoft Corporation) C:\Windows\System32\sscore.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00008704 _____ (Microsoft Corporation) C:\Windows\System32\riched32.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00008704 _____ (Microsoft Corporation) C:\Windows\System32\rdpcfgex.dll
2010-11-20 04:21 - 2002-01-01 20:37 - 00004096 _____ (Microsoft Corporation) C:\Windows\System32\msdxm.ocx
2010-11-20 04:21 - 2002-01-01 20:37 - 00004096 _____ (Microsoft Corporation) C:\Windows\System32\dxmasf.dll
2010-11-20 04:21 - 2002-01-01 20:36 - 00697344 _____ (Microsoft Corporation) C:\Windows\System32\SmiEngine.dll
2010-11-20 04:21 - 2002-01-01 20:36 - 00363008 _____ (Microsoft Corporation) C:\Windows\System32\wbemcomn.dll
2010-11-20 04:21 - 2002-01-01 20:36 - 00351232 _____ (Microsoft Corporation) C:\Windows\System32\wmicmiplugin.dll
2010-11-20 04:21 - 2002-01-01 20:36 - 00189952 _____ (Microsoft Corporation) C:\Windows\System32\wdscore.dll
2010-11-20 04:20 - 2002-01-01 20:38 - 02504192 _____ (Microsoft Corporation) C:\Windows\System32\WMVCORE.DLL
2010-11-20 04:20 - 2002-01-01 20:38 - 02494464 _____ (Microsoft Corporation) C:\Windows\System32\netshell.dll
2010-11-20 04:20 - 2002-01-01 20:38 - 01750528 _____ (Microsoft Corporation) C:\Windows\System32\pnidui.dll
2010-11-20 04:20 - 2002-01-01 20:38 - 01508864 _____ (Microsoft Corporation) C:\Windows\System32\pla.dll
2010-11-20 04:20 - 2002-01-01 20:38 - 01414144 _____ (Microsoft Corporation) C:\Windows\System32\ole32.dll
2010-11-20 04:20 - 2002-01-01 20:38 - 00988160 _____ (Microsoft Corporation) C:\Windows\System32\propsys.dll
2010-11-20 04:20 - 2002-01-01 20:38 - 00932352 _____ (Microsoft Corporation) C:\Windows\System32\printui.dll
2010-11-20 04:20 - 2002-01-01 20:38 - 00801280 _____ (Microsoft Corporation) C:\Windows\System32\NaturalLanguage6.dll
2010-11-20 04:20 - 2002-01-01 20:38 - 00585728 _____ (Microsoft Corporation) C:\Windows\System32\qmgr.dll
2010-11-20 04:20 - 2002-01-01 20:38 - 00573440 _____ (Microsoft Corporation) C:\Windows\System32\odbc32.dll
2010-11-20 04:20 - 2002-01-01 20:38 - 00563712 _____ (Microsoft Corporation) C:\Windows\System32\netlogon.dll
2010-11-20 04:20 - 2002-01-01 20:38 - 00547840 _____ (Microsoft Corporation) C:\Windows\System32\PortableDeviceApi.dll
2010-11-20 04:20 - 2002-01-01 20:38 - 00406528 _____ (Microsoft Corporation) C:\Windows\System32\netcfgx.dll
2010-11-20 04:20 - 2002-01-01 20:38 - 00330240 _____ (Microsoft Corporation) C:\Windows\System32\QAGENTRT.DLL
2010-11-20 04:20 - 2002-01-01 20:38 - 00225792 _____ (Microsoft Corporation) C:\Windows\System32\netdiagfx.dll
2010-11-20 04:20 - 2002-01-01 20:38 - 00167936 _____ (Microsoft Corporation) C:\Windows\System32\QSHVHOST.DLL
2010-11-20 04:20 - 2002-01-01 20:38 - 00116736 _____ (Microsoft Corporation) C:\Windows\System32\prncache.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 02130944 _____ (Microsoft Corporation) C:\Windows\System32\networkmap.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 01661440 _____ (Microsoft Corporation) C:\Windows\System32\networkexplorer.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 01644032 _____ (Microsoft Corporation) C:\Windows\System32\netcenter.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 01160192 _____ (Microsoft Corporation) C:\Windows\System32\OpcServices.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 01111552 _____ (Microsoft Corporation) C:\Windows\System32\onexui.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00859648 _____ (Microsoft Corporation) C:\Windows\System32\OobeFldr.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00600576 _____ (Microsoft Corporation) C:\Windows\System32\PerfCenterCPL.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00441856 _____ (Microsoft Corporation) C:\Windows\System32\powercpl.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00427520 _____ (Microsoft Corporation) C:\Windows\System32\PortableDeviceStatus.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00395264 _____ (Microsoft Corporation) C:\Windows\System32\prnfldr.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00346112 _____ (Microsoft Corporation) C:\Windows\System32\nshipsec.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00324608 _____ (Microsoft Corporation) C:\Windows\System32\puiobj.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00297472 _____ (Microsoft Corporation) C:\Windows\System32\ntprint.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00295424 _____ (Microsoft Corporation) C:\Windows\System32\photowiz.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00283136 _____ (Microsoft Corporation) C:\Windows\System32\qdv.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00236544 _____ (Microsoft Corporation) C:\Windows\System32\pdh.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00218112 _____ (Microsoft Corporation) C:\Windows\System32\OnLineIDCpl.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00206848 _____ (Microsoft Corporation) C:\Windows\System32\qasf.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00199168 _____ (Microsoft Corporation) C:\Windows\System32\onex.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00190976 _____ (Microsoft Corporation) C:\Windows\System32\qcap.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00183296 _____ (Microsoft Corporation) C:\Windows\System32\PortableDeviceSyncProvider.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00175616 _____ (Microsoft Corporation) C:\Windows\System32\netplwiz.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00174592 _____ (Microsoft Corporation) C:\Windows\System32\ocsetapi.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00171520 _____ (Microsoft Corporation) C:\Windows\System32\QAGENT.DLL
2010-11-20 04:20 - 2002-01-01 20:37 - 00166400 _____ (Microsoft Corporation) C:\Windows\System32\netiohlp.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00165376 _____ (Microsoft Corporation) C:\Windows\System32\provsvc.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00161792 _____ (Microsoft Corporation) C:\Windows\System32\netjoin.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00136192 _____ (Microsoft Corporation) C:\Windows\System32\mydocs.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00121344 _____ (Microsoft Corporation) C:\Windows\System32\sppc.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00120320 _____ (Microsoft Corporation) C:\Windows\System32\prntvpt.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00117248 _____ (Microsoft Corporation) C:\Windows\System32\netid.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00099328 _____ (Microsoft Corporation) C:\Windows\System32\QSVRMGMT.DLL
2010-11-20 04:20 - 2002-01-01 20:37 - 00090112 _____ (Microsoft Corporation) C:\Windows\System32\olepro32.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00078848 _____ (Microsoft Corporation) C:\Windows\System32\nci.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00077824 _____ (Microsoft Corporation) C:\Windows\System32\olethk32.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00071680 _____ (Microsoft Corporation) C:\Windows\System32\QCLIPROV.DLL
2010-11-20 04:20 - 2002-01-01 20:37 - 00069120 _____ (Microsoft Corporation) C:\Windows\System32\ntlanman.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00068096 _____ (Microsoft Corporation) C:\Windows\System32\napdsnap.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00060928 _____ (Microsoft Corporation) C:\Windows\System32\ncryptui.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00046592 _____ (Microsoft Corporation) C:\Windows\System32\pdhui.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00040960 _____ (Microsoft Corporation) C:\Windows\System32\odbcconf.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00032768 _____ (Microsoft Corporation) C:\Windows\System32\PrintIsolationProxy.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00028672 _____ (Microsoft Corporation) C:\Windows\System32\profprov.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00022528 _____ (Microsoft Corporation) C:\Windows\System32\netutils.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00017408 _____ (Microsoft Corporation) C:\Windows\System32\perfts.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00011776 _____ (Microsoft Corporation) C:\Windows\System32\nrpsrv.dll
2010-11-20 04:20 - 2002-01-01 20:37 - 00008192 _____ (Microsoft Corporation) C:\Windows\System32\spwmp.dll
2010-11-20 04:19 - 2002-01-01 20:38 - 03207680 _____ (Microsoft Corporation) C:\Windows\System32\mf.dll
2010-11-20 04:19 - 2002-01-01 20:38 - 02291712 _____ (Microsoft Corporation) C:\Windows\System32\MSVidCtl.dll
2010-11-20 04:19 - 2002-01-01 20:38 - 02151936 _____ (Microsoft Corporation) C:\Windows\System32\mmcndmgr.dll
2010-11-20 04:19 - 2002-01-01 20:38 - 01493504 _____ (Microsoft Corporation) C:\Windows\System32\ExplorerFrame.dll
2010-11-20 04:19 - 2002-01-01 20:38 - 00954752 _____ (Microsoft Corporation) C:\Windows\System32\mfc40.dll
2010-11-20 04:19 - 2002-01-01 20:38 - 00954288 _____ (Microsoft Corporation) C:\Windows\System32\mfc40u.dll
2010-11-20 04:19 - 2002-01-01 20:38 - 00830464 _____ (Microsoft Corporation) C:\Windows\System32\MSMPEG2ENC.DLL
2010-11-20 04:19 - 2002-01-01 20:38 - 00732160 _____ (Microsoft Corporation) C:\Windows\System32\imapi2fs.dll
2010-11-20 04:19 - 2002-01-01 20:38 - 00727040 _____ (Microsoft Corporation) C:\Windows\System32\mcmde.dll
2010-11-20 04:19 - 2002-01-01 20:38 - 00593408 _____ (Microsoft Corporation) C:\Windows\System32\gpsvc.dll
2010-11-20 04:19 - 2002-01-01 20:38 - 00584192 _____ (Microsoft Corporation) C:\Windows\System32\gpprefcl.dll
2010-11-20 04:19 - 2002-01-01 20:38 - 00566272 _____ (Microsoft Corporation) C:\Windows\System32\MPSSVC.dll
2010-11-20 04:19 - 2002-01-01 20:38 - 00488448 _____ (Microsoft Corporation) C:\Windows\System32\evr.dll
2010-11-20 04:19 - 2002-01-01 20:38 - 00392192 _____ (Microsoft Corporation) C:\Windows\System32\imapi2.dll
2010-11-20 04:19 - 2002-01-01 20:38 - 00350208 _____ (Microsoft Corporation) C:\Windows\System32\IPSECSVC.DLL
2010-11-20 04:19 - 2002-01-01 20:38 - 00296448 _____ (Microsoft Corporation) C:\Windows\System32\mfds.dll
2010-11-20 04:19 - 2002-01-01 20:38 - 00213504 _____ (Microsoft Corporation) C:\Windows\System32\MMDevAPI.dll
2010-11-20 04:19 - 2002-01-01 20:38 - 00206336 _____ (Microsoft Corporation) C:\Windows\System32\framedynos.dll
2010-11-20 04:19 - 2002-01-01 20:38 - 00196608 _____ (Microsoft Corporation) C:\Windows\System32\mfreadwrite.dll
2010-11-20 04:19 - 2002-01-01 20:38 - 00155136 _____ (Microsoft Corporation) C:\Windows\System32\hgprint.dll
2010-11-20 04:19 - 2002-01-01 20:38 - 00126464 _____ (Microsoft Corporation) C:\Windows\System32\inetpp.dll
2010-11-20 04:19 - 2002-01-01 20:38 - 00124416 _____ (Microsoft Corporation) C:\Windows\System32\fde.dll
2010-11-20 04:19 - 2002-01-01 20:38 - 00053760 _____ (Microsoft Corporation) C:\Windows\System32\LSCSHostPolicy.dll
2010-11-20 04:19 - 2002-01-01 20:38 - 00034304 _____ (Microsoft Corporation) C:\Windows\System32\msasn1.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 01066496 _____ (Microsoft Corporation) C:\Windows\System32\msdtctm.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00856576 _____ (Microsoft Corporation) C:\Windows\System32\FirewallControlPanel.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00828928 _____ (Microsoft Corporation) C:\Windows\System32\fontext.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00592384 _____ (Microsoft Corporation) C:\Windows\System32\msftedit.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00504320 _____ (Microsoft Corporation) C:\Windows\System32\msscp.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00481792 _____ (Microsoft Corporation) C:\Windows\System32\mscms.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00430080 _____ (Microsoft Corporation) C:\Windows\System32\FXSTIFF.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00429056 _____ (Microsoft Corporation) C:\Windows\System32\localsec.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00417792 _____ (Microsoft Corporation) C:\Windows\System32\msdri.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00414208 _____ (Microsoft Corporation) C:\Windows\System32\mspbda.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00400896 _____ (Microsoft Corporation) C:\Windows\System32\ipsmsnap.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00320512 _____ (Microsoft Corporation) C:\Windows\System32\mtxclu.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00320512 _____ (Microsoft Corporation) C:\Windows\System32\Faultrep.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00312832 _____ (Microsoft Corporation) C:\Windows\System32\hgcpl.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00271360 _____ (Microsoft Corporation) C:\Windows\System32\iprtrmgr.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00268800 _____ (Microsoft Corporation) C:\Windows\System32\mprddm.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00266752 _____ (Microsoft Corporation) C:\Windows\System32\MediaMetadataHandler.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00265216 _____ (Microsoft Corporation) C:\Windows\System32\msnetobj.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00226304 _____ (Microsoft Corporation) C:\Windows\System32\MSAC3ENC.DLL
2010-11-20 04:19 - 2002-01-01 20:37 - 00219648 _____ (Microsoft Corporation) C:\Windows\System32\iTVData.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00209920 _____ (Microsoft Corporation) C:\Windows\System32\mstask.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00202752 _____ (Microsoft Corporation) C:\Windows\System32\framedyn.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00202240 _____ (Microsoft Corporation) C:\Windows\System32\input.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00194560 _____ (Microsoft Corporation) C:\Windows\System32\ListSvc.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00176128 _____ (Microsoft Corporation) C:\Windows\System32\msorcl32.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00176128 _____ (Microsoft Corporation) C:\Windows\System32\MFPlay.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00175104 _____ (Microsoft Corporation) C:\Windows\System32\fvecpl.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00172032 _____ (Microsoft Corporation) C:\Windows\System32\iasrad.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00167936 _____ (Microsoft Corporation) C:\Windows\System32\msutb.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00158720 _____ (Microsoft Corporation) C:\Windows\System32\mprapi.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00158720 _____ (Microsoft Corporation) C:\Windows\System32\itircl.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00148992 _____ (Microsoft Corporation) C:\Windows\System32\ifsutil.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00127488 _____ (Microsoft Corporation) C:\Windows\System32\logoncli.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00122880 _____ (Microsoft Corporation) C:\Windows\System32\iasrecst.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00120320 _____ (Microsoft Corporation) C:\Windows\System32\msvfw32.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00118272 _____ (Microsoft Corporation) C:\Windows\System32\imm32.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00103936 _____ (Microsoft Corporation) C:\Windows\System32\IPHLPAPI.DLL
2010-11-20 04:19 - 2002-01-01 20:37 - 00101888 _____ (Microsoft Corporation) C:\Windows\System32\migisol.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00098304 _____ (Microsoft Corporation) C:\Windows\System32\fphc.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00093696 _____ (Windows (R) Codename Longhorn DDK provider) C:\Windows\System32\fms.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00084480 _____ (Microsoft Corporation) C:\Windows\System32\mciavi32.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00082944 _____ (Radius Inc.) C:\Windows\System32\iccvid.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00078848 _____ (Microsoft Corporation) C:\Windows\System32\iasacct.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00076800 _____ (Microsoft Corporation) C:\Windows\System32\mapistub.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00076800 _____ (Microsoft Corporation) C:\Windows\System32\mapi32.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00071168 _____ (Microsoft Corporation) C:\Windows\System32\KMSVC.DLL
2010-11-20 04:19 - 2002-01-01 20:37 - 00068096 _____ (Microsoft Corporation) C:\Windows\System32\Mcx2Svc.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00066560 _____ (Microsoft Corporation) C:\Windows\System32\hbaapi.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00059904 _____ (Microsoft Corporation) C:\Windows\System32\fdeploy.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00052736 _____ (Microsoft Corporation) C:\Windows\System32\inetmib1.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00050176 _____ (Microsoft Corporation) C:\Windows\System32\iyuv_32.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00042496 _____ (Microsoft Corporation) C:\Windows\System32\mimefilt.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00041984 _____ (Microsoft Corporation) C:\Windows\System32\luainstall.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00039424 _____ (Microsoft Corporation) C:\Windows\System32\FXSMON.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00036352 _____ (Microsoft Corporation) C:\Windows\System32\mciqtz32.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00034816 _____ (Microsoft Corporation) C:\Windows\System32\httpapi.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00031744 _____ (Microsoft Corporation) C:\Windows\System32\msvidc32.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00030720 _____ (Microsoft Corporation) C:\Windows\System32\msdmo.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00028672 _____ (Microsoft Corporation) C:\Windows\System32\iscsium.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00022528 _____ (Microsoft Corporation) C:\Windows\System32\msyuv.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00022528 _____ (Microsoft Corporation) C:\Windows\System32\HotStartUserAgent.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00021504 _____ (Microsoft Corporation) C:\Windows\System32\lsmproxy.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00015872 _____ (Microsoft Corporation) C:\Windows\System32\icaapi.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00013312 _____ (Microsoft Corporation) C:\Windows\System32\muifontsetup.dll
2010-11-20 04:19 - 2002-01-01 20:37 - 00013312 _____ (Microsoft Corporation) C:\Windows\System32\msrle32.dll
2010-11-20 04:18 - 2002-01-01 20:38 - 02522624 _____ (Microsoft Corporation) C:\Windows\System32\dbgeng.dll
2010-11-20 04:18 - 2002-01-01 20:38 - 01828352 _____ (Microsoft Corporation) C:\Windows\System32\d3d9.dll
2010-11-20 04:18 - 2002-01-01 20:38 - 01555456 _____ (Microsoft Corporation) C:\Windows\System32\certmgr.dll
2010-11-20 04:18 - 2002-01-01 20:38 - 01371136 _____ (Microsoft Corporation) C:\Windows\System32\dwmcore.dll
2010-11-20 04:18 - 2002-01-01 20:38 - 01334272 _____ (Microsoft Corporation) C:\Windows\System32\CertEnroll.dll
2010-11-20 04:18 - 2002-01-01 20:38 - 00863744 _____ (Microsoft Corporation) C:\Windows\System32\diagperf.dll
2010-11-20 04:18 - 2002-01-01 20:38 - 00854016 _____ (Microsoft Corporation) C:\Windows\System32\dbghelp.dll
2010-11-20 04:18 - 2002-01-01 20:38 - 00762880 _____ (Microsoft Corporation) C:\Windows\System32\azroles.dll
2010-11-20 04:18 - 2002-01-01 20:38 - 00630784 _____ (Microsoft Corporation) C:\Windows\System32\DXPTaskRingtone.dll
2010-11-20 04:18 - 2002-01-01 20:38 - 00546304 _____ (Microsoft Corporation) C:\Windows\System32\cscsvc.dll
2010-11-20 04:18 - 2002-01-01 20:38 - 00494592 _____ (Microsoft Corporation) C:\Windows\System32\BFE.DLL
2010-11-20 04:18 - 2002-01-01 20:38 - 00485888 _____ (Microsoft Corporation) C:\Windows\System32\comdlg32.dll
2010-11-20 04:18 - 2002-01-01 20:38 - 00342016 _____ (Microsoft Corporation) C:\Windows\System32\certcli.dll
2010-11-20 04:18 - 2002-01-01 20:38 - 00339968 _____ (Microsoft Corporation) C:\Windows\System32\appmgr.dll
2010-11-20 04:18 - 2002-01-01 20:38 - 00295936 _____ (Microsoft Corporation) C:\Windows\System32\apphelp.dll
2010-11-20 04:18 - 2002-01-01 20:38 - 00254464 _____ (Microsoft Corporation) C:\Windows\System32\dhcpcore.dll
2010-11-20 04:18 - 2002-01-01 20:38 - 00252928 _____ (Microsoft) C:\Windows\System32\DShowRdpFilter.dll
2010-11-20 04:18 - 2002-01-01 20:38 - 00144384 _____ (Microsoft Corporation) C:\Windows\System32\dps.dll
2010-11-20 04:18 - 2002-01-01 20:38 - 00139264 _____ (Microsoft Corporation) C:\Windows\System32\cscobj.dll
2010-11-20 04:18 - 2002-01-01 20:38 - 00091136 _____ (Microsoft Corporation) C:\Windows\System32\dot3api.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 03727872 _____ (Microsoft Corporation) C:\Windows\System32\accessibilitycpl.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 01400320 _____ (Microsoft Corporation) C:\Windows\System32\DxpTaskSync.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 01188864 _____ (Microsoft Corporation) C:\Windows\System32\DiagCpl.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 01040384 _____ (Microsoft Corporation) C:\Windows\System32\Display.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 01003520 _____ (Microsoft Corporation) C:\Windows\System32\cryptui.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00744448 _____ (Microsoft Corporation) C:\Windows\System32\ActionCenter.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00743424 _____ (Microsoft Corporation) C:\Windows\System32\blackbox.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00740864 _____ (Microsoft Corporation) C:\Windows\System32\batmeter.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00685056 _____ (Microsoft Corporation) C:\Windows\System32\dsuiext.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00665600 _____ (Microsoft Corporation) C:\Windows\System32\AuxiliaryDisplayCpl.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00537600 _____ (Microsoft Corporation) C:\Windows\System32\ActionCenterCPL.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00484864 _____ (Microsoft Corporation) C:\Windows\System32\DeviceCenter.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00438272 _____ (Microsoft Corporation) C:\Windows\System32\AdmTmpl.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00428032 _____ (Microsoft Corporation) C:\Windows\System32\biocpl.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00418816 _____ (Microsoft Corporation) C:\Windows\System32\cscui.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00402944 _____ (Microsoft Corporation) C:\Windows\System32\drmmgrtn.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00399872 _____ (Microsoft Corporation) C:\Windows\System32\DXP.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00333824 _____ (Microsoft Corporation) C:\Windows\System32\dot3ui.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00314368 _____ (Microsoft Corporation) C:\Windows\System32\azroleui.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00309760 _____ (Microsoft Corporation) C:\Windows\System32\actxprxy.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00243712 _____ (Microsoft Corporation) C:\Windows\System32\audiodev.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00242176 _____ (Microsoft Corporation) C:\Windows\System32\eapp3hst.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00230912 _____ (Microsoft Corporation) C:\Windows\System32\clusapi.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00222208 _____ (Microsoft Corporation) C:\Windows\System32\eapphost.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00220672 _____ (Microsoft Corporation) C:\Windows\System32\defaultlocationcpl.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00214016 _____ (Microsoft Corporation) C:\Windows\System32\dot3svc.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00211456 _____ (Microsoft Corporation) C:\Windows\System32\DevicePairingFolder.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00210432 _____ (Microsoft Corporation) C:\Windows\System32\dxdiagn.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00205312 _____ (Microsoft Corporation) C:\Windows\System32\efscore.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00202752 _____ (Microsoft Corporation) C:\Windows\System32\activeds.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00196608 _____ (Microsoft Corporation) C:\Windows\System32\dskquoui.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00186880 _____ (Microsoft Corporation) C:\Windows\System32\adsldp.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00179200 _____ (Microsoft Corporation) C:\Windows\System32\ActionQueue.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00146944 _____ (Microsoft Corporation) C:\Windows\System32\autoplay.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00145920 _____ (Microsoft Corporation) C:\Windows\System32\cfgmgr32.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00133632 _____ (Microsoft Corporation) C:\Windows\System32\bcdsrv.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00132608 _____ (Microsoft Corporation) C:\Windows\System32\cabview.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00128512 _____ (Microsoft Corporation) C:\Windows\System32\EhStorAPI.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00115200 _____ (Microsoft Corporation) C:\Windows\System32\dot3msm.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00112128 _____ (Microsoft Corporation) C:\Windows\System32\AuxiliaryDisplayServices.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00109568 _____ (Microsoft Corporation) C:\Windows\System32\CscMig.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00109056 _____ (Microsoft Corporation) C:\Windows\System32\dnscmmc.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00097280 _____ (Microsoft Corporation) C:\Windows\System32\dwmredir.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00094208 _____ (Microsoft Corporation) C:\Windows\System32\eappgnui.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00091648 _____ (Microsoft Corporation) C:\Windows\System32\avifil32.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00088064 _____ (Microsoft Corporation) C:\Windows\System32\AxInstSv.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00082432 _____ (Microsoft Corporation) C:\Windows\System32\dot3cfg.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00073216 _____ (Microsoft Corporation) C:\Windows\System32\cabinet.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00070656 _____ (Microsoft Corporation) C:\Windows\System32\amstream.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00067584 _____ (Microsoft Corporation) C:\Windows\System32\certprop.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00067584 _____ (Microsoft Corporation) C:\Windows\System32\asycfilt.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00066560 _____ (Microsoft Corporation) C:\Windows\System32\cca.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00065024 _____ (Microsoft Corporation) C:\Windows\System32\CertPolEng.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00045568 _____ (Microsoft Corporation) C:\Windows\System32\acppage.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00044032 _____ (Microsoft Corporation) C:\Windows\System32\basesrv.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00034816 _____ (Microsoft Corporation) C:\Windows\System32\cscapi.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00030208 _____ (Microsoft Corporation) C:\Windows\System32\dsauth.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00028160 _____ (Microsoft Corporation) C:\Windows\System32\AzSqlExt.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00023040 _____ (Microsoft Corporation) C:\Windows\System32\cscdll.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00022528 _____ (Microsoft Corporation) C:\Windows\System32\elsTrans.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00019456 _____ (Microsoft Corporation) C:\Windows\System32\bitsperf.dll
2010-11-20 04:18 - 2002-01-01 20:37 - 00011264 _____ (Microsoft Corporation) C:\Windows\System32\C_ISCII.DLL
2010-11-20 04:18 - 2002-01-01 20:37 - 00010752 _____ (Microsoft Corporation) C:\Windows\System32\browseui.dll
2010-11-20 04:18 - 2002-01-01 20:36 - 00323072 _____ (Microsoft Corporation) C:\Windows\System32\drvstore.dll
2010-11-20 04:18 - 2002-01-01 20:36 - 00257024 _____ (Microsoft Corporation) C:\Windows\System32\dpx.dll
2010-11-20 04:17 - 2002-01-01 20:38 - 03367424 _____ (Microsoft Corporation) C:\Windows\System32\WinSAT.exe
2010-11-20 04:17 - 2002-01-01 20:38 - 01203200 _____ (Microsoft Corporation) C:\Windows\System32\wbengine.exe
2010-11-20 04:17 - 2002-01-01 20:38 - 01025536 _____ (Microsoft Corporation) C:\Windows\System32\VSSVC.exe
2010-11-20 04:17 - 2002-01-01 20:38 - 00802304 _____ (Microsoft Corporation) C:\Windows\System32\WFS.exe
2010-11-20 04:17 - 2002-01-01 20:38 - 00523264 _____ (Microsoft Corporation) C:\Windows\System32\FXSSVC.exe
2010-11-20 04:17 - 2002-01-01 20:38 - 00477696 _____ (Microsoft Corporation) C:\Windows\System32\lpksetup.exe
2010-11-20 04:17 - 2002-01-01 20:38 - 00456192 _____ (Microsoft Corporation) C:\Windows\System32\spinstall.exe
2010-11-20 04:17 - 2002-01-01 20:38 - 00453632 _____ (Microsoft Corporation) C:\Windows\System32\vds.exe
2010-11-20 04:17 - 2002-01-01 20:38 - 00334336 _____ (Microsoft Corporation) C:\Windows\System32\wisptis.exe
2010-11-20 04:17 - 2002-01-01 20:38 - 00302592 _____ (Microsoft Corporation) C:\Windows\System32\cmd.exe
2010-11-20 04:17 - 2002-01-01 20:38 - 00280576 _____ (Microsoft Corporation) C:\Windows\System32\spreview.exe
2010-11-20 04:17 - 2002-01-01 20:38 - 00267776 _____ (Microsoft Corporation) C:\Windows\System32\lsm.exe
2010-11-20 04:17 - 2002-01-01 20:38 - 00260608 _____ (Microsoft Corporation) C:\Windows\System32\rdpshell.exe
2010-11-20 04:17 - 2002-01-01 20:38 - 00220672 _____ (Microsoft Corporation) C:\Windows\System32\mcbuilder.exe
2010-11-20 04:17 - 2002-01-01 20:38 - 00192000 _____ (Microsoft Corporation) C:\Windows\System32\taskeng.exe
2010-11-20 04:17 - 2002-01-01 20:38 - 00173568 _____ (Microsoft Corporation) C:\Windows\System32\rdpclip.exe
2010-11-20 04:17 - 2002-01-01 20:38 - 00161280 _____ (Microsoft Corporation) C:\Windows\System32\rdpinit.exe
2010-11-20 04:17 - 2002-01-01 20:38 - 00142336 _____ (Microsoft Corporation) C:\Windows\System32\net1.exe
2010-11-20 04:17 - 2002-01-01 20:38 - 00103936 _____ (Microsoft Corporation) C:\Windows\System32\setupcl.exe
2010-11-20 04:17 - 2002-01-01 20:38 - 00080896 _____ () C:\Windows\System32\RDVGHelper.exe
2010-11-20 04:17 - 2002-01-01 20:38 - 00051200 _____ (Microsoft Corporation) C:\Windows\System32\PushPrinterConnections.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 03179520 _____ (Microsoft Corporation) C:\Windows\System32\sppsvc.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 01131008 _____ (Microsoft Corporation) C:\Windows\System32\sdclt.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00941568 _____ (Microsoft Corporation) C:\Windows\System32\mblctr.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00586752 _____ (Microsoft Corporation) C:\Windows\System32\dfrgui.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00327680 _____ (Microsoft Corporation) C:\Windows\System32\wimserv.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00327168 _____ (Microsoft Corporation) C:\Windows\System32\nltest.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00325632 _____ (Microsoft Corporation) C:\Windows\System32\slui.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00314880 _____ (Microsoft Corporation) C:\Windows\System32\wusa.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00314368 _____ (Microsoft Corporation) C:\Windows\System32\SndVol.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00303104 _____ (Microsoft Corporation) C:\Windows\System32\msinfo32.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00292864 _____ (Microsoft Corporation) C:\Windows\System32\WindowsAnytimeUpgradeResults.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00288256 _____ (Microsoft Corporation) C:\Windows\System32\eudcedit.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00276480 _____ (Microsoft Corporation) C:\Windows\System32\diskraid.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00270336 _____ (Microsoft Corporation) C:\Windows\System32\sethc.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00262656 _____ (Microsoft Corporation) C:\Windows\System32\rstrui.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00254976 _____ (Microsoft Corporation) C:\Windows\System32\wsqmcons.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00233984 _____ (Microsoft Corporation) C:\Windows\System32\msconfig.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00227328 _____ (Microsoft Corporation) C:\Windows\System32\taskmgr.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00210432 _____ (Microsoft Corporation) C:\Windows\System32\recdisc.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00197632 _____ (Microsoft Corporation) C:\Windows\System32\ocsetup.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00182784 _____ (Microsoft Corporation) C:\Windows\System32\RelPost.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00179712 _____ (Microsoft Corporation) C:\Windows\System32\schtasks.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00170496 _____ (Microsoft Corporation) C:\Windows\System32\PresentationSettings.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00157184 _____ (Microsoft Corporation) C:\Windows\System32\perfmon.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00144896 _____ (Microsoft Corporation) C:\Windows\System32\iscsicli.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00133632 _____ (Microsoft Corporation) C:\Windows\System32\diskpart.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00132608 _____ (Microsoft Corporation) C:\Windows\System32\MdSched.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00113152 _____ (Microsoft Corporation) C:\Windows\System32\setupugc.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00101376 _____ (Microsoft Corporation) C:\Windows\System32\mobsync.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00098816 _____ (Microsoft) C:\Windows\System32\Robocopy.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00098304 _____ (Microsoft Corporation) C:\Windows\System32\nslookup.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00095232 _____ (Microsoft Corporation) C:\Windows\System32\logagent.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00086528 _____ (Microsoft Corporation) C:\Windows\System32\isoburn.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00084992 _____ (Microsoft Corporation) C:\Windows\System32\cmstp.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00082944 _____ (Microsoft Corporation) C:\Windows\System32\logman.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00074240 _____ (Microsoft Corporation) C:\Windows\System32\tabcal.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00073216 _____ (Microsoft Corporation) C:\Windows\System32\msiexec.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00070656 _____ (Microsoft Corporation) C:\Windows\System32\MuiUnattend.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00066048 _____ (Microsoft Corporation) C:\Windows\System32\w32tm.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00066048 _____ () C:\Windows\System32\PrintBrmUi.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00062976 _____ (Microsoft Corporation) C:\Windows\System32\findstr.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00061952 _____ (Microsoft Corporation) C:\Windows\System32\manage-bde.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00061952 _____ (Microsoft Corporation) C:\Windows\System32\lpremove.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00061440 _____ (Microsoft Corporation) C:\Windows\System32\PnPUnattend.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00059904 _____ (Microsoft Corporation) C:\Windows\System32\djoin.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00057344 _____ (Microsoft Corporation) C:\Windows\System32\repair-bde.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00057344 _____ (Microsoft Corporation) C:\Windows\System32\rdpsign.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00053248 _____ (Microsoft Corporation) C:\Windows\System32\MultiDigiMon.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00051200 _____ (Microsoft Corporation) C:\Windows\System32\takeown.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00050688 _____ (Microsoft Corporation) C:\Windows\System32\runonce.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00047616 _____ (Microsoft Corporation) C:\Windows\System32\tzutil.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00042496 _____ (Microsoft Corporation) C:\Windows\System32\ftp.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00037888 _____ (Microsoft Corporation) C:\Windows\System32\relog.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00034304 _____ (Microsoft Corporation) C:\Windows\System32\unlodctr.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00028672 _____ (Microsoft Corporation) C:\Windows\System32\WerFaultSecure.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00028672 _____ (Microsoft Corporation) C:\Windows\System32\proquota.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00026624 _____ (Microsoft Corporation) C:\Windows\System32\userinit.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00026624 _____ (Microsoft Corporation) C:\Windows\System32\qwinsta.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00025600 _____ (Microsoft Corporation) C:\Windows\System32\netiougc.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00025600 _____ (Microsoft Corporation) C:\Windows\System32\netcfg.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00025088 _____ (Microsoft Corporation) C:\Windows\System32\qprocess.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00024576 _____ (Microsoft Corporation) C:\Windows\System32\msg.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00024064 _____ (Microsoft Corporation) C:\Windows\System32\netbtugc.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00023040 _____ (Microsoft Corporation) C:\Windows\System32\quser.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00022528 _____ (Microsoft Corporation) C:\Windows\System32\tskill.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00022016 _____ (Microsoft Corporation) C:\Windows\System32\tsdiscon.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00022016 _____ (Microsoft Corporation) C:\Windows\System32\ReAgentc.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00021504 _____ (Microsoft Corporation) C:\Windows\System32\tscon.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00021504 _____ (Microsoft Corporation) C:\Windows\System32\qappsrv.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00021504 _____ (Microsoft Corporation) C:\Windows\System32\logoff.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00020992 _____ (Microsoft Corporation) C:\Windows\System32\shadow.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00020992 _____ (Microsoft Corporation) C:\Windows\System32\rwinsta.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00015360 _____ (Microsoft Corporation) C:\Windows\System32\reset.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00014848 _____ (Microsoft Corporation) C:\Windows\System32\query.exe
2010-11-20 04:17 - 2002-01-01 20:37 - 00010752 _____ (Microsoft Corporation) C:\Windows\System32\LogonUI.exe
2010-11-20 04:17 - 2002-01-01 20:36 - 00209920 _____ (Microsoft Corporation) C:\Windows\System32\PkgMgr.exe
2010-11-20 04:16 - 2002-01-01 20:38 - 00776192 _____ (Microsoft Corporation) C:\Windows\System32\calc.exe
2010-11-20 04:16 - 2002-01-01 20:38 - 00320000 _____ (Microsoft Corporation) C:\Windows\System32\winspool.drv
2010-11-20 04:16 - 2002-01-01 20:38 - 00119808 _____ (Microsoft Corporation) C:\Windows\System32\aitagent.exe
2010-11-20 04:16 - 2002-01-01 20:37 - 00905216 _____ (Microsoft Corporation) C:\Windows\System32\mmsys.cpl
2010-11-20 04:16 - 2002-01-01 20:37 - 00878592 _____ (Microsoft Corporation) C:\Windows\System32\Bubbles.scr
2010-11-20 04:16 - 2002-01-01 20:37 - 00692736 _____ (Microsoft Corporation) C:\Windows\System32\bthprops.cpl
2010-11-20 04:16 - 2002-01-01 20:37 - 00679424 _____ (Microsoft Corporation) C:\Windows\System32\autoconv.exe
2010-11-20 04:16 - 2002-01-01 20:37 - 00668160 _____ (Microsoft Corporation) C:\Windows\System32\autochk.exe
2010-11-20 04:16 - 2002-01-01 20:37 - 00658944 _____ (Microsoft Corporation) C:\Windows\System32\autofmt.exe
2010-11-20 04:16 - 2002-01-01 20:37 - 00649216 _____ (Microsoft Corporation) C:\Windows\System32\appwiz.cpl
2010-11-20 04:16 - 2002-01-01 20:37 - 00600576 _____ (Microsoft Corporation) C:\Windows\System32\TabletPC.cpl
2010-11-20 04:16 - 2002-01-01 20:37 - 00516096 _____ (Microsoft Corporation) C:\Windows\System32\main.cpl
2010-11-20 04:16 - 2002-01-01 20:37 - 00413696 _____ (Microsoft Corporation) C:\Windows\System32\PhotoScreensaver.scr
2010-11-20 04:16 - 2002-01-01 20:37 - 00389632 _____ (Microsoft Corporation) C:\Windows\System32\sysmon.ocx
2010-11-20 04:16 - 2002-01-01 20:37 - 00345088 _____ (Microsoft Corporation) C:\Windows\System32\intl.cpl
2010-11-20 04:16 - 2002-01-01 20:37 - 00326656 _____ (Microsoft Corporation) C:\Windows\System32\sysdm.cpl
2010-11-20 04:16 - 2002-01-01 20:37 - 00295424 _____ (Microsoft Corporation) C:\Windows\System32\bcdedit.exe
2010-11-20 04:16 - 2002-01-01 20:37 - 00293888 _____ (Microsoft Corporation) C:\Windows\System32\ssText3d.scr
2010-11-20 04:16 - 2002-01-01 20:37 - 00281088 _____ (Microsoft Corporation) C:\Windows\System32\unimdm.tsp
2010-11-20 04:16 - 2002-01-01 20:37 - 00221184 _____ (Microsoft Corporation) C:\Windows\System32\Mystify.scr
2010-11-20 04:16 - 2002-01-01 20:37 - 00220672 _____ (Microsoft Corporation) C:\Windows\System32\Ribbons.scr
2010-11-20 04:16 - 2002-01-01 20:37 - 00204288 _____ (Microsoft Corporation) C:\Windows\System32\MSNP.ax
2010-11-20 04:16 - 2002-01-01 20:37 - 00193536 _____ (Microsoft Corporation) C:\Windows\System32\ksproxy.ax
2010-11-20 04:16 - 2002-01-01 20:37 - 00186368 _____ (Microsoft Corporation) C:\Windows\System32\bitsadmin.exe
2010-11-20 04:16 - 2002-01-01 20:37 - 00172032 _____ (Microsoft Corporation) C:\Windows\System32\wdmaud.drv
2010-11-20 04:16 - 2002-01-01 20:37 - 00153600 _____ (Microsoft Corporation) C:\Windows\System32\VBICodec.ax
2010-11-20 04:16 - 2002-01-01 20:37 - 00146944 _____ (Microsoft Corporation) C:\Windows\System32\bcdboot.exe
2010-11-20 04:16 - 2002-01-01 20:37 - 00142336 _____ (Microsoft Corporation) C:\Windows\System32\powercfg.cpl
2010-11-20 04:16 - 2002-01-01 20:37 - 00128000 _____ (Microsoft Corporation) C:\Windows\System32\desk.cpl
2010-11-20 04:16 - 2002-01-01 20:37 - 00126464 _____ (Microsoft Corporation) C:\Windows\System32\BdeHdCfg.exe
2010-11-20 04:16 - 2002-01-01 20:37 - 00107008 _____ (Microsoft Corporation) C:\Windows\System32\Kswdmcap.ax
2010-11-20 04:16 - 2002-01-01 20:37 - 00100864 _____ (Microsoft Corporation) C:\Windows\System32\audiodg.exe
2010-11-20 04:16 - 2002-01-01 20:37 - 00084480 _____ (Microsoft Corporation) C:\Windows\System32\kstvtune.ax
2010-11-20 04:16 - 2002-01-01 20:37 - 00072704 _____ (Microsoft Corporation) C:\Windows\System32\Mpeg2Data.ax
2010-11-20 04:16 - 2002-01-01 20:37 - 00068608 _____ (Microsoft Corporation) C:\Windows\System32\WSTPager.ax
2010-11-20 04:16 - 2002-01-01 20:37 - 00065024 _____ (Microsoft Corporation) C:\Windows\bfsvc.exe
2010-11-20 04:16 - 2002-01-01 20:37 - 00059904 _____ (Microsoft Corporation) C:\Windows\System32\MSDvbNP.ax
2010-11-20 04:16 - 2002-01-01 20:37 - 00048640 _____ (Microsoft Corporation) C:\Windows\System32\ksxbar.ax
2010-11-20 04:16 - 2002-01-01 20:37 - 00045568 _____ (Microsoft Corporation) C:\Windows\System32\g711codc.ax
2010-11-20 04:16 - 2002-01-01 20:37 - 00033792 _____ (Microsoft Corporation) C:\Windows\System32\vbisurf.ax
2010-11-20 04:16 - 2002-01-01 20:37 - 00022528 _____ (Microsoft Corporation) C:\Windows\System32\chgport.exe
2010-11-20 04:16 - 2002-01-01 20:37 - 00022016 _____ (Microsoft Corporation) C:\Windows\System32\chglogon.exe
2010-11-20 04:16 - 2002-01-01 20:37 - 00020992 _____ (Microsoft Corporation) C:\Windows\System32\chgusr.exe
2010-11-20 04:16 - 2002-01-01 20:37 - 00015360 _____ (Microsoft Corporation) C:\Windows\System32\change.exe
2010-11-20 04:07 - 2002-01-01 20:37 - 01164800 _____ (Microsoft Corporation) C:\Windows\System32\UIRibbonRes.dll
2010-11-20 04:07 - 2002-01-01 20:37 - 00007680 _____ (Microsoft Corporation) C:\Windows\System32\spwizres.dll
2010-11-20 04:06 - 2002-01-01 20:37 - 00069120 _____ (Microsoft Corporation) C:\Windows\System32\nlsbres.dll
2010-11-20 04:05 - 2002-01-01 20:37 - 00121856 _____ (Microsoft Corporation) C:\Windows\System32\RDPENCDD.dll
2010-11-20 04:05 - 2002-01-01 20:37 - 00035328 _____ (Microsoft Corporation) C:\Windows\System32\pifmgr.dll
2010-11-20 04:03 - 2002-01-01 20:37 - 00053760 _____ (Microsoft Corporation) C:\Windows\System32\vmicres.dll
2010-11-20 04:03 - 2002-01-01 20:37 - 00044544 _____ (Microsoft Corporation) C:\Windows\System32\vmbusres.dll
2010-11-20 04:03 - 2002-01-01 20:37 - 00038400 _____ (Microsoft Corporation) C:\Windows\System32\vmstorfltres.dll
2010-11-20 04:00 - 2002-01-01 20:37 - 01027584 _____ (Microsoft Corporation) C:\Windows\System32\IMJP10.IME
2010-11-20 04:00 - 2002-01-01 20:37 - 00430080 _____ (Microsoft Corporation) C:\Windows\System32\imkr80.ime
2010-11-20 04:00 - 2002-01-01 20:37 - 00007168 _____ (Microsoft Corporation) C:\Windows\System32\KBDSG.DLL
2010-11-20 04:00 - 2002-01-01 20:37 - 00007168 _____ (Microsoft Corporation) C:\Windows\System32\kbdlk41a.dll
2010-11-20 04:00 - 2002-01-01 20:37 - 00007168 _____ (Microsoft Corporation) C:\Windows\System32\KBDCZ1.DLL
2010-11-20 04:00 - 2002-01-01 20:37 - 00006656 _____ (Microsoft Corporation) C:\Windows\System32\KBDTUQ.DLL
2010-11-20 04:00 - 2002-01-01 20:37 - 00006656 _____ (Microsoft Corporation) C:\Windows\System32\KBDTUF.DLL
2010-11-20 04:00 - 2002-01-01 20:37 - 00006656 _____ (Microsoft Corporation) C:\Windows\System32\KBDSF.DLL
2010-11-20 04:00 - 2002-01-01 20:37 - 00006656 _____ (Microsoft Corporation) C:\Windows\System32\KBDPO.DLL
2010-11-20 04:00 - 2002-01-01 20:37 - 00006656 _____ (Microsoft Corporation) C:\Windows\System32\KBDNEPR.DLL
2010-11-20 04:00 - 2002-01-01 20:37 - 00006656 _____ (Microsoft Corporation) C:\Windows\System32\KBDINBEN.DLL
2010-11-20 04:00 - 2002-01-01 20:37 - 00006656 _____ (Microsoft Corporation) C:\Windows\System32\KBDGR1.DLL
2010-11-20 04:00 - 2002-01-01 20:37 - 00006656 _____ (Microsoft Corporation) C:\Windows\System32\KBDGKL.DLL
2010-11-20 04:00 - 2002-01-01 20:37 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDUS.DLL
2010-11-20 04:00 - 2002-01-01 20:37 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDUGHR1.DLL
2010-11-20 04:00 - 2002-01-01 20:37 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDTURME.DLL
2010-11-20 04:00 - 2002-01-01 20:37 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDTAJIK.DLL
2010-11-20 04:00 - 2002-01-01 20:37 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDMON.DLL
2010-11-20 04:00 - 2002-01-01 20:37 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDMAORI.DLL
2010-11-20 04:00 - 2002-01-01 20:37 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDLT1.DLL
2010-11-20 04:00 - 2002-01-01 20:37 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDINTEL.DLL
2010-11-20 04:00 - 2002-01-01 20:37 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDINTAM.DLL
2010-11-20 04:00 - 2002-01-01 20:37 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDINORI.DLL
2010-11-20 04:00 - 2002-01-01 20:37 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDINMAR.DLL
2010-11-20 04:00 - 2002-01-01 20:37 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDINKAN.DLL
2010-11-20 04:00 - 2002-01-01 20:37 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDINHIN.DLL
2010-11-20 04:00 - 2002-01-01 20:37 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDBULG.DLL
2010-11-20 04:00 - 2002-01-01 20:37 - 00006144 _____ (Microsoft Corporation) C:\Windows\System32\KBDBLR.DLL
2010-11-20 04:00 - 2002-01-01 20:37 - 00005632 _____ (Microsoft Corporation) C:\Windows\System32\KBDGEO.DLL
2010-11-20 03:57 - 2002-01-01 20:37 - 00002560 _____ (Microsoft Corporation) C:\Windows\System32\dpnaddr.dll
2010-11-20 03:56 - 2002-01-01 20:37 - 00052736 _____ (Microsoft Corporation) C:\Windows\System32\BlbEvents.dll
2010-11-20 02:52 - 2002-01-01 20:37 - 00026112 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\usbrpm.sys
2010-11-20 02:24 - 2002-01-01 20:38 - 00133632 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\rdpdr.sys
2010-11-20 02:22 - 2002-01-01 20:38 - 00213504 _____ (Microsoft Corporation) C:\Windows\System32\rdpdd.dll
2010-11-20 02:22 - 2002-01-01 20:37 - 00006656 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\RDPCDD.sys
2010-11-20 02:21 - 2002-01-01 20:37 - 00026624 _____ (Microsoft Corporation) C:\Windows\System32\RDPREFDD.dll
2010-11-20 02:21 - 2002-01-01 20:37 - 00018432 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\tdpipe.sys
2010-11-20 02:07 - 2002-01-01 20:37 - 00118784 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ndiswan.sys
2010-11-20 02:07 - 2002-01-01 20:37 - 00063488 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\wanarp.sys
2010-11-20 02:07 - 2002-01-01 20:37 - 00048640 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ndproxy.sys
2010-11-20 02:06 - 2002-01-01 20:37 - 00117760 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\rmcast.sys
2010-11-20 02:06 - 2002-01-01 20:37 - 00108544 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\tunnel.sys
2010-11-20 02:06 - 2002-01-01 20:37 - 00046080 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ndisuio.sys
2010-11-20 02:01 - 2002-01-01 20:38 - 00164864 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\1394ohci.sys
2010-11-20 02:00 - 2002-01-01 20:37 - 00304128 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\HdAudio.sys
2010-11-20 02:00 - 2002-01-01 20:37 - 00039936 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\umbus.sys
2010-11-20 02:00 - 2002-01-01 20:37 - 00025856 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\USBCAMD2.sys
2010-11-20 02:00 - 2002-01-01 20:37 - 00025856 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\USBCAMD.sys
2010-11-20 01:59 - 2002-01-01 20:37 - 00108544 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\hdaudbus.sys
2010-11-20 01:59 - 2002-01-01 20:37 - 00035968 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\winusb.sys
2010-11-20 01:59 - 2002-01-01 20:37 - 00024064 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\hidusb.sys
2010-11-20 01:50 - 2002-01-01 20:37 - 00190976 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\ks.sys
2010-11-20 01:50 - 2002-01-01 20:37 - 00031232 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\CompositeBus.sys
2010-11-20 01:50 - 2002-01-01 20:37 - 00028160 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\kbdhid.sys
2010-11-20 01:50 - 2002-01-01 20:37 - 00012800 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\sffp_sd.sys
2010-11-20 01:29 - 2002-01-01 20:37 - 00050176 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\appid.sys
2010-11-20 01:24 - 2002-01-01 20:37 - 00026624 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\scfilter.sys
2010-11-20 01:19 - 2002-01-01 20:37 - 00065536 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\IPMIDrv.sys
2010-11-20 01:14 - 2002-01-01 20:38 - 00215552 _____ (Microsoft Corporation) C:\Windows\System32\vmicsvc.exe
2010-11-20 01:14 - 2002-01-01 20:37 - 00116224 _____ (Microsoft Corporation) C:\Windows\System32\VmbusCoinstaller.dll
2010-11-20 01:14 - 2002-01-01 20:37 - 00113664 _____ (Microsoft Corporation) C:\Windows\System32\VmdCoinstall.dll
2010-11-20 01:14 - 2002-01-01 20:37 - 00113664 _____ (Microsoft Corporation) C:\Windows\System32\IcCoinstall.dll
2010-11-20 01:14 - 2002-01-01 20:37 - 00047616 _____ (Microsoft Corporation) C:\Windows\System32\vmictimeprovider.dll
2010-11-20 01:14 - 2002-01-01 20:37 - 00017920 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\VMBusHID.sys
2010-11-20 01:14 - 2002-01-01 20:37 - 00014336 _____ (Microsoft Corporation) C:\Windows\System32\vmbuspipe.dll
2010-11-20 01:14 - 2002-01-01 20:37 - 00005632 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\vms3cap.sys
2010-11-20 00:47 - 2002-01-01 20:37 - 00010240 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\acpipmi.sys
2010-11-20 00:44 - 2002-01-01 20:38 - 00388096 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\csc.sys
2010-11-20 00:44 - 2002-01-01 20:38 - 00242688 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\rdbss.sys
2010-11-20 00:42 - 2002-01-01 20:37 - 00246784 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\udfs.sys
2010-11-20 00:42 - 2002-01-01 20:37 - 00078336 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\dfsc.sys
2010-11-20 00:40 - 2002-01-01 20:38 - 00513536 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\http.sys
2010-11-20 00:39 - 2002-01-01 20:37 - 00187904 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\netbt.sys
2010-11-20 00:39 - 2002-01-01 20:37 - 00074752 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\tdx.sys
2010-11-20 00:39 - 2002-01-01 20:37 - 00021504 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\tdi.sys
2010-11-20 00:38 - 2002-01-01 20:37 - 00108544 _____ (Microsoft Corporation) C:\Windows\System32\Drivers\cdrom.sys
2010-11-19 21:23 - 2002-01-01 20:37 - 00053600 _____ () C:\Windows\System32\dosx.exe
2010-11-09 17:45 - 2002-01-01 20:37 - 00010429 _____ () C:\Windows\System32\ScavengeSpace.xml
2010-11-04 18:20 - 2002-01-01 20:38 - 00146852 _____ () C:\Windows\System32\systemsf.ebd
2010-11-04 18:20 - 2002-01-01 20:37 - 00105559 _____ () C:\Windows\System32\RacRules.xml
2010-11-04 18:11 - 2002-01-01 20:37 - 00312168 _____ (Microsoft Corporation) C:\Windows\System32\MCEWMDRMNDBootstrap.dll
2010-11-04 17:58 - 2002-01-01 20:38 - 00297808 _____ (Microsoft Corporation) C:\Windows\System32\mscoree.dll
2010-11-04 17:58 - 2002-01-01 20:38 - 00049488 _____ (Microsoft Corporation) C:\Windows\System32\netfxperf.dll
2010-11-04 17:53 - 2002-01-01 20:38 - 00295264 _____ (Microsoft Corporation) C:\Windows\System32\PresentationHost.exe
2010-11-04 17:53 - 2002-01-01 20:38 - 00099176 _____ (Microsoft Corporation) C:\Windows\System32\PresentationHostProxy.dll
2010-05-01 09:27 - 2009-07-13 20:52 - 00000000 ____D () C:\Windows\System32\restore
2010-05-01 08:59 - 2009-07-13 18:37 - 00000000 __RHD () C:\users\Default
2010-05-01 08:59 - 2009-07-13 18:37 - 00000000 ____D () C:\Program Files\Windows NT
2009-12-16 03:38 - 2009-07-13 18:37 - 00000000 ____D () C:\Windows\System32\LogFiles

Some content of TEMP:
====================
C:\Users\...\AppData\Local\Temp\avgnt.exe
C:\Users\...\AppData\Local\Temp\DseShExt-x86.dll
C:\Users\...\AppData\Local\Temp\SDShelEx-win32.dll


==================== Known DLLs (Whitelisted) ============


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => MD5 is legit
C:\Windows\System32\winlogon.exe
[2014-10-24 06:04] - [2014-07-16 17:39] - 0304128 ____A (Microsoft Corporation) 52449FD429D6053B78AE564DEF303870

C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit

==================== Restore Points  =========================


==================== Memory info =========================== 

Percentage of memory in use: 51%
Total physical RAM: 895.43 MB
Available physical RAM: 436.77 MB
Total Pagefile: 895.43 MB
Available Pagefile: 451.2 MB
Total Virtual: 2047.88 MB
Available Virtual: 1948.7 MB

==================== Drives ================================

Drive c: (Windows7 Deutsch) (Fixed) (Total:247.49 GB) (Free:192.61 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: (Volume) (Fixed) (Total:50.59 GB) (Free:39.45 GB) NTFS
Drive e: (GRMCULFRER_EN_DVD) (CDROM) (Total:2.36 GB) (Free:0 GB) UDF
Drive f: (...) (Removable) (Total:1.87 GB) (Free:1.86 GB) FAT
Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: A95CCC88)
Partition 1: (Not Active) - (Size=50.6 GB) - (Type=07 NTFS)
Partition 2: (Active) - (Size=247.5 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (Size: 1.9 GB) (Disk ID: 0009CD56)
Partition 1: (Not Active) - (Size=1.9 GB) - (Type=0E)


LastRegBack: 2014-12-20 06:05

==================== End Of Log ============================
         
Sollte ich irgendwas auf dieser Festplatte löschen sag bitte bescheid

Alt 18.01.2015, 15:11   #9
schrauber
/// the machine
/// TB-Ausbilder
 

RUN.dll fehler - Standard

RUN.dll fehler



Warum kommt man eigentlich auf die Idee den Rechner einfach auszuschalten während gerade ein Tool am arbeiten is?


Drücke bitte die + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument

Code:
ATTFilter
LastRegBack: 2014-12-20 06:05
         
Speichere diese bitte als Fixlist.txt auf deinem USB Stick.
  • Starte deinen Rechner erneut in die Reparaturoptionen
  • Starte nun die FRST.exe erneut und klicke den Entfernen Button.

Das Tool erstellt eine Fixlog.txt auf deinem USB Stick. Poste den Inhalt bitte hier.
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 18.01.2015, 16:19   #10
momolol404
 
RUN.dll fehler - Standard

RUN.dll fehler



hallo ich lads bald hoch
ich hab ih ausgeschaltet weil er sich auf gehängt hat
Gruss

Hey Melde mich von meinem PC wieder
gier die FIXLIST
Code:
ATTFilter
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 18-01-2015
Ran by SYSTEM at 2009-12-17 00:38:09 Run:1
Running from F:\
Boot Mode: Recovery

==============================================

Content of fixlist:
*****************
LastRegBack: 2014-12-20 06:05
*****************

DEFAULT hive was successfully copied to System32\config\HiveBackup
DEFAULT hive was successfully restored from registry back up.
SAM hive was successfully copied to System32\config\HiveBackup
SAM hive was successfully restored from registry back up.
SECURITY hive was successfully copied to System32\config\HiveBackup
SECURITY hive was successfully restored from registry back up.
SOFTWARE hive was successfully copied to System32\config\HiveBackup
SOFTWARE hive was successfully restored from registry back up.
SYSTEM hive was successfully copied to System32\config\HiveBackup
SYSTEM hive was successfully restored from registry back up.

==== End of Fixlog 00:38:20 ====
         
Wurden jetzt alle meine Dateien bis zum 20.12.2014 gelöscht oder betraf das nur die Registry

Gruss

Alt 18.01.2015, 17:32   #11
schrauber
/// the machine
/// TB-Ausbilder
 

RUN.dll fehler - Standard

RUN.dll fehler



Nur die Registry.

Frisches FRST log bitte.
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 18.01.2015, 18:23   #12
momolol404
 
RUN.dll fehler - Standard

RUN.dll fehler



Erscheint gleich

Also hier die FRST.txt

Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 18-01-2015 01
Ran by ... (administrator) on ...-PC on 18-01-2015 17:58:37
Running from C:\Users\.......-PC\Downloads\FRST-OlderVersion
Loaded Profiles: ... (Available profiles: ...)
Platform: Microsoft Windows 7 Ultimate  Service Pack 1 (X86) OS Language: Deutsch (Deutschland)
Internet Explorer Version 10 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Acronis) C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-LogRotatorService.exe
(BlueStack Systems, Inc.) C:\Program Files\BlueStacks\HD-UpdaterService.exe
(SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE
() C:\Windows\System32\PnkBstrA.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation) C:\Windows\System32\msiexec.exe
(Microsoft Corporation) C:\Windows\System32\audiodg.exe
(Abelssoft) C:\Program Files\CheckDrive\CheckDriveBackgroundGuard.exe
(AimerSoft) C:\Program Files\Common Files\Aimersoft\Aimersoft Helper Compact\ASHelper.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\System32\taskmgr.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ink\InputPersonalization.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgwdsvc.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgnsx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgemcx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgrsx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgcsrvx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgcsrvx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2014\avgui.exe
(Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Adobe Systems Incorporated) C:\Program Files\Adobe\Reader 10.0\Reader\reader_sl.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AVG_UI] => C:\Program Files\AVG\AVG2014\avgui.exe [5188112 2014-12-16] (AVG Technologies CZ, s.r.o.)
HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM\...\Run: [Aimersoft Helper Compact.exe] => C:\Program Files\Common Files\Aimersoft\Aimersoft Helper Compact\ASHelper.exe [1734144 2013-05-29] (AimerSoft)
HKU\S-1-5-21-2908931533-4132489533-110418967-1000\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-2908931533-4132489533-110418967-1000\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\S-1-5-21-2908931533-4132489533-110418967-1000\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
HKU\S-1-5-18\...\RunOnce: [{91140000-0011-0000-0000-0000000FF1CE}] => C:\Windows\system32\cmd.exe /C del "C:\ProgramData\Microsoft Help\Rgstrtn.lck" /Q /A:H
HKU\S-1-5-18\...\RunOnce: [{90140000-001A-0407-0000-0000000FF1CE}] => C:\Windows\system32\cmd.exe /C del "C:\ProgramData\Microsoft Help\Rgstrtn.lck" /Q /A:H
AppInit_DLLs: C:\PROGRA~1\SEARCH~1\SEARCH~1\bin\VC32LO~1.DLL => C:\PROGRA~1\SEARCH~1\SEARCH~1\bin\VC32LO~1.DLL File Not Found
AppInit_DLLs:  c:\progra~1\suptab\search~1.dll => c:\progra~1\suptab\search~1.dll File Not Found
Startup: C:\Users\.......-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Mozilla Firefox.lnk
ShortcutTarget: Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
Startup: C:\Users\.......-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Mozilla Firefox.lnk
ShortcutTarget: Mozilla Firefox.lnk -> C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  No File
ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} =>  No File
ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} =>  No File
ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} =>  No File
ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} =>  No File

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-2908931533-4132489533-110418967-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
URLSearchHook: HKLM - (No Name) - {cc05a3e3-64c3-4af2-bfc1-af0d66b69065} -  No File
SearchScopes: HKLM -> DefaultScope {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKLM -> {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-2908931533-4132489533-110418967-1000 -> {0191A6B0-1154-4C22-9182-23A95BBE92D9} URL = hxxp://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-2908931533-4132489533-110418967-1000 -> {1} URL = 
Toolbar: HKLM - No Name - {cc05a3e3-64c3-4af2-bfc1-af0d66b69065} -  No File
Toolbar: HKLM - No Name - {30F9B915-B755-4826-820B-08FBA6BD249D} -  No File
Toolbar: HKLM - No Name - {828DC97A-2277-4E10-92A9-4907FA0922A9} -  No File
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\..\Interfaces\{4007158E-A27E-4722-834C-9092AFB70BBA}: [NameServer] 192.168.178.1
Tcpip\..\Interfaces\{6390599D-EB38-4EAF-A9A7-CA69DB545DE2}: [NameServer] 192.168.178.1
Tcpip\..\Interfaces\{63BBC024-99F8-45D3-AB40-74F50224FE54}: [NameServer] 192.168.178.1
Tcpip\..\Interfaces\{D7A7E645-6BCA-4CC9-801C-D2007BE4C6DC}: [NameServer] 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1
Tcpip\..\Interfaces\{EA104EC2-7169-4026-98D9-7FA51715A643}: [NameServer] 8.8.8.8,8.8.4.4,4.2.2.1,4.2.2.2,208.67.222.222,208.67.220.220,8.26.56.26,8.20.247.20,156.154.70.1,156.154.71.1

FireFox:
========
FF ProfilePath: C:\Users\.......-PC\AppData\Roaming\Mozilla\Firefox\Profiles\1fcf5fo1.default-1417951851860
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_15_0_0_246.dll ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw.dll (Adobe Systems, Inc.)
FF Plugin: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -> C:\Program Files\Common Files\AVG Secure Search\SiteSafetyInstaller\18.1.10\\npsitesafety.dll No File
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> C:\Windows\system32\Wat\npWatWeb.dll ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.0.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll No File
FF Extension: Adblock Plus - C:\Users\.......-PC\AppData\Roaming\Mozilla\Firefox\Profiles\1fcf5fo1.default-1417951851860\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-01-10]
FF HKLM\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF HKLM\...\Firefox\Extensions: [OKitSpace@Vittalia.es] - C:\Users\...\AppData\Roaming\okitspace\Firefox
FF HKLM\...\Firefox\Extensions: [quick_start@gmail.com] - C:\Users\...\AppData\Roaming\Mozilla\Firefox\Profiles\9bd6yrxo.default\extensions\quick_start@gmail.com
FF HKLM\...\Firefox\Extensions: [e-webprint@epson.com] - C:\Program Files\Epson Software\E-Web Print\Firefox Add-on
FF Extension: E-Web Print - C:\Program Files\Epson Software\E-Web Print\Firefox Add-on [2014-11-05]

Chrome: 
=======
CHR StartupUrls: Default -> "hxxp://www.google.com"
CHR DefaultSearchKeyword: Default -> google
CHR DefaultSuggestURL: Default -> 
CHR Profile: C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-09-22]
CHR Extension: (Google Drive) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-09-22]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-09-22]
CHR Extension: (YouTube) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-09-22]
CHR Extension: (Google-Suche) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-09-22]
CHR Extension: (Google Tabellen) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-09-22]
CHR Extension: (Google Wallet) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-09-22]
CHR Extension: (Google Mail) - C:\Users\.......-PC\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-09-22]
CHR HKLM\...\Chrome\Extension: [aacbndibbcpajfgnkdkaakeiojmmgmnk] - C:\Users\...\AppData\Roaming\Media Finder\Extensions\mf_plugin_gc.crx [Not Found]
CHR HKLM\...\Chrome\Extension: [bakijjialdiiboeaknfpmflphhmljfkd] - No Path
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - No Path
CHR HKLM\...\Chrome\Extension: [ifohbjbgfchkkfhphahclmkpgejiplfo] - C:\Users\...\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtab.crx [2013-11-20]
CHR HKLM\...\Chrome\Extension: [jpihmmhdcobmllpcnpfbhnipmhamldje] - C:\Users\...\AppData\Roaming\Media Finder\Extensions\gencrawler_gc.crx [2012-02-15]
CHR HKLM\...\Chrome\Extension: [mggiecmcgkpfmegnobeimepgndgdhbjm] - C:\Users\...\AppData\Roaming\okitspace\Chrome\OKitSpace.crx [Not Found]
CHR HKLM\...\Chrome\Extension: [pelmeidfhdlhlbjimpabfcbnnojbboma] - C:\Users\...\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtabv3.crx [2014-06-01]
CHR HKLM\...\Chrome\Extension: [pilobbegphefikcgjpajnneiiahhejam] - C:\Users\...\Econa\Gutscheinsammler\Chrome\chrome.crx [Not Found]

========================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 AcrSch2Svc; C:\Program Files\Common Files\Acronis\Schedule2\schedul2.exe [661072 2009-11-12] (Acronis)
R2 afcdpsrv; C:\Program Files\Common Files\Acronis\CDP\afcdpsrv.exe [2480048 2010-07-25] (Acronis)
S2 AVGIDSAgent; C:\Program Files\AVG\AVG2014\avgidsagent.exe [3247120 2014-12-16] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files\AVG\AVG2014\avgwdsvc.exe [289328 2014-12-16] (AVG Technologies CZ, s.r.o.)
S2 BstHdAndroidSvc; C:\Program Files\BlueStacks\HD-Service.exe [409304 2014-10-08] (BlueStack Systems, Inc.)
R2 BstHdLogRotatorSvc; C:\Program Files\BlueStacks\HD-LogRotatorService.exe [388824 2014-10-08] (BlueStack Systems, Inc.)
R2 BstHdUpdaterSvc; C:\Program Files\BlueStacks\HD-UpdaterService.exe [782040 2014-10-08] (BlueStack Systems, Inc.)
R2 EPSON_PM_RPCV4_04; C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RP7.EXE [142432 2012-02-21] (SEIKO EPSON CORPORATION)
S3 FlexNet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe [1074480 2014-09-22] (Flexera Software LLC)
R3 hpqcxs08; C:\Program Files\HP\Digital Imaging\bin\hpqcxs08.dll [249344 2009-09-23] (Hewlett-Packard Co.) [File not signed]
R2 hpqddsvc; C:\Program Files\HP\Digital Imaging\bin\hpqddsvc.dll [133120 2009-09-23] (Hewlett-Packard Co.) [File not signed]
R2 HPSLPSVC; C:\Program Files\HP\Digital Imaging\bin\HPSLPSVC32.DLL [694784 2009-09-23] (Hewlett-Packard Co.) [File not signed]
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [44544 2008-12-03] (Hewlett-Packard) [File not signed]
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [53760 2008-12-03] (Hewlett-Packard) [File not signed]
R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [75136 2014-03-05] ()
S3 WatAdminSvc; C:\Windows\system32\Wat\WatAdminSvc.exe [1343400 2013-11-18] () [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Corporation)
S2 !SASCORE; "C:\Program Files\SUPERAntiSpyware\SASCORE.EXE" [X]
S2 EZ Software Updater; C:\Program Files\EZ Software Updater\EZ Software Updater.exe [X]
S2 Orbiter; C:/Program Files/ORBTR/orbiter.dll [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AegisP; C:\Windows\System32\DRIVERS\AegisP.sys [21035 2012-05-17] (Meetinghouse Data Communications) [File not signed]
R1 Avgdiskx; C:\Windows\System32\DRIVERS\avgdiskx.sys [121624 2014-06-30] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdriverx.sys [200984 2014-07-21] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHX; C:\Windows\System32\DRIVERS\avgidshx.sys [147736 2014-06-17] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSShim; C:\Windows\System32\DRIVERS\avgidsshimx.sys [21272 2014-06-17] (AVG Technologies CZ, s.r.o.)
R1 Avgldx86; C:\Windows\System32\DRIVERS\avgldx86.sys [189720 2014-10-24] (AVG Technologies CZ, s.r.o.)
R0 Avglogx; C:\Windows\System32\DRIVERS\avglogx.sys [241944 2014-06-17] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx86; C:\Windows\System32\DRIVERS\avgmfx86.sys [98584 2014-10-29] (AVG Technologies CZ, s.r.o.)
R0 AvgRkx86; C:\Windows\System32\DRIVERS\avgrkx86.sys [27416 2014-06-17] (AVG Technologies CZ, s.r.o.)
R1 Avgtdix; C:\Windows\System32\DRIVERS\avgtdix.sys [197400 2014-10-20] (AVG Technologies CZ, s.r.o.)
R1 avgtp; C:\Windows\system32\drivers\avgtpx86.sys [42784 2014-11-13] (AVG Technologies)
R2 BstHdDrv; C:\Program Files\BlueStacks\HD-Hypervisor-x86.sys [112344 2014-10-08] (BlueStack Systems)
R0 giveio; C:\Windows\System32\giveio.sys [5248 1996-04-03] () [File not signed]
S3 RTLWUSB; C:\Windows\System32\DRIVERS\RTL8187.sys [172416 2006-04-21] (Realtek Semiconductor Corporation                           ) [File not signed]
S3 SjyPkt; C:\Windows\System32\Drivers\SjyPkt.sys [13532 2002-10-02] (Windows (R) 2000 DDK provider) [File not signed]
S3 SMARTMouseFilterx86; C:\Windows\System32\DRIVERS\SMARTMouseFilterx86.sys [8192 2014-03-25] (SMART Technologies) [File not signed]
S3 SMARTVHidMini2000x86; C:\Windows\System32\DRIVERS\SMARTVHidMini2000x86.sys [7680 2014-03-25] (SMART Technologies) [File not signed]
S3 SMARTVTabletPCx86; C:\Windows\System32\DRIVERS\SMARTVTabletPCx86.sys [15872 2014-03-25] (SMART Technologies ULC) [File not signed]
R0 tdrpman258; C:\Windows\System32\DRIVERS\tdrpm258.sys [911680 2010-07-25] (Acronis)
S3 CEDRIVER60; \??\C:\Program Files\Cheat Engine 6.4\dbk32.sys [X]
S2 eamonm; system32\DRIVERS\eamonm.sys [X]
S3 FLASHSYS; \??\C:\Program Files\MSI\Live Update 4\LU4\FLASHSYS.sys [X]
S3 fsbl; \??\C:\Program Files\F-Secure\apps\ComputerSecurity\Anti-Virus\fsbldrv.sys [X]
S1 ntiomin; No ImagePath
S3 OSFMount; \??\C:\Users\.......-PC\AppData\Local\Temp\Rar$EXa0.041\bin\OSFMount.sys [X]
S1 SASDIFSV; \??\C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [X]
S1 SASKUTIL; \??\C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [X]
S2 sbmntr; \??\C:\PROGRA~1\YTDOWN~1\sbmntr.sys [X]
S2 SPDRIVER_1.38.0.1434; \??\C:\Program Files\ShopperPro\JSDriver\1.38.0.1434\jsdrv.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
S3 XDva401; \??\C:\Windows\system32\XDva401.sys [X]

==================== NetSvcs (Whitelisted) ===================


(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-18 17:40 - 2015-01-18 17:58 - 00000000 ____D () C:\Users\.......-PC\Downloads\FRST-OlderVersion
2015-01-17 15:24 - 2009-12-17 00:39 - 938946094 _____ () C:\Windows\MEMORY.DMP
2015-01-16 19:55 - 2015-01-16 19:55 - 05609736 ____R (Swearware) C:\Users\.......-PC\Desktop\ComboFix.exe
2015-01-16 18:41 - 2015-01-16 18:45 - 00034347 _____ () C:\Users\.......-PC\Downloads\Addition.txt
2015-01-16 18:32 - 2015-01-16 18:45 - 00041486 _____ () C:\Users\.......-PC\Downloads\FRST.txt
2015-01-16 16:26 - 2015-01-16 16:26 - 00640424 _____ (Akeo Consulting (hxxp://akeo.ie)) C:\Users\.......-PC\Downloads\rufus-1.4.12.exe
2015-01-14 17:44 - 2009-12-17 00:39 - 00086226 _____ () C:\Windows\PFRO.log
2015-01-14 17:27 - 2010-02-11 06:32 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ATIDEMGX.dll
2015-01-14 17:27 - 2010-02-11 06:30 - 00348160 _____ (ATI Technologies, Inc.) C:\Windows\system32\atipdlxx.dll
2015-01-14 17:27 - 2010-02-11 06:30 - 00274432 _____ (ATI Technologies, Inc.) C:\Windows\system32\Oemdspif.dll
2015-01-14 17:27 - 2010-02-11 06:30 - 00159744 _____ () C:\Windows\system32\atitmmxx.dll
2015-01-14 17:27 - 2010-02-11 06:29 - 00043520 _____ (ATI Technologies, Inc.) C:\Windows\system32\ati2edxx.dll
2015-01-14 17:27 - 2010-02-11 06:29 - 00012288 _____ (AMD) C:\Windows\system32\atimuixx.dll
2015-01-14 17:27 - 2010-02-11 05:58 - 11513856 _____ (ATI Technologies Inc.) C:\Windows\system32\atioglxx.dll
2015-01-14 17:27 - 2010-02-11 05:48 - 00135168 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll
2015-01-14 17:27 - 2010-02-11 05:34 - 00053248 _____ (ATI Technologies Inc.) C:\Windows\system32\Drivers\ati2erec.dll
2015-01-14 17:27 - 2009-07-14 02:14 - 04772352 _____ (ATI Technologies Inc. ) C:\Windows\system32\atiumdva.dll
2015-01-14 17:27 - 2009-07-14 02:14 - 04030976 _____ (ATI Technologies Inc. ) C:\Windows\system32\atiumdag.dll
2015-01-14 17:27 - 2009-07-14 02:14 - 00050688 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom32.dll
2015-01-14 17:27 - 2009-07-13 23:09 - 04194816 _____ (ATI Technologies Inc.) C:\Windows\system32\Drivers\atikmdag.sys
2015-01-14 17:27 - 2009-06-10 22:19 - 00069112 _____ () C:\Windows\system32\atiumdva.cap
2015-01-14 17:24 - 2015-01-14 17:31 - 00000000 ____D () C:\Program Files\ATI Technologies
2015-01-14 17:24 - 2009-12-16 00:22 - 00000000 ____D () C:\Program Files\ATI
2015-01-14 17:24 - 2009-07-21 11:41 - 00278528 _____ (ATI Technologies Inc.) C:\Windows\system32\Ati2evxx.dll
2015-01-14 17:24 - 2009-07-21 11:40 - 00733184 _____ (ATI Technologies Inc.) C:\Windows\system32\Ati2evxx.exe
2015-01-14 17:24 - 2009-05-05 00:30 - 00014392 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\Drivers\AtiPcie.sys
2015-01-14 17:16 - 2015-01-14 17:16 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\DriverToolkit
2015-01-14 17:15 - 2015-01-14 17:19 - 00000000 ____D () C:\Program Files\DriverToolkit
2015-01-14 17:15 - 2015-01-14 17:15 - 02448688 _____ (Megaify Software ) C:\Users\.......-PC\Downloads\driver_setup.exe
2015-01-14 16:48 - 2015-01-14 16:48 - 69104008 _____ (SiSoftware ) C:\Users\.......-PC\Downloads\san2015x-2115_CB-DL-Manager [1].exe
2015-01-14 16:47 - 2015-01-14 16:47 - 00823792 _____ ( ) C:\Users\.......-PC\Downloads\san2015x-2115_CB-DL-Manager.exe
2015-01-14 16:46 - 2015-01-14 16:46 - 01179936 _____ () C:\Users\.......-PC\Downloads\SiSoft Sandra Lite 2015 - CHIP-Installer.exe
2015-01-14 16:46 - 2015-01-14 16:46 - 01179936 _____ () C:\Users\.......-PC\Downloads\SiSoft Sandra Lite 2015 - CHIP-Installer(1).exe
2015-01-14 16:39 - 2015-01-14 16:40 - 00633360 _____ (Copyright © 2010 eSupport.com. All Rights Reserved.) C:\Users\.......-PC\Downloads\biosagentplus_1218(1).exe
2015-01-14 16:37 - 2015-01-14 16:37 - 00000000 _____ () C:\Users\.......-PC\Downloads\cpu-z_1.71-setup-en_CB-DL-Manager.exe
2015-01-13 17:36 - 2009-12-17 00:40 - 00000488 __RSH () C:\ProgramData\ntuser.pol
2015-01-13 17:35 - 2015-01-13 17:35 - 00639400 _____ (Akeo Consulting (hxxp://akeo.ie)) C:\Users\.......-PC\Downloads\rufus.exe
2015-01-13 17:32 - 2015-01-13 17:32 - 01179936 _____ () C:\Users\.......-PC\Downloads\Rufus - CHIP-Installer.exe
2015-01-13 17:12 - 2015-01-13 17:13 - 03852472 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-01-12 16:01 - 2015-01-18 17:31 - 00000784 _____ () C:\Windows\setupact.log
2015-01-12 16:01 - 2015-01-12 16:01 - 00115592 _____ () C:\Users\.......-PC\AppData\Local\GDIPFONTCACHEV1.DAT
2015-01-12 16:01 - 2015-01-12 16:01 - 00000000 _____ () C:\Windows\setuperr.log
2015-01-11 18:52 - 2015-01-11 18:52 - 00019456 _____ () C:\Users\.......-PC\Downloads\launcher32.dll
2015-01-11 18:50 - 2015-01-11 18:50 - 00633360 _____ (Copyright © 2010 eSupport.com. All Rights Reserved.) C:\Users\.......-PC\Downloads\biosagentplus_1218.exe
2015-01-11 18:50 - 2015-01-11 18:50 - 00023456 _____ (Phoenix Technologies) C:\Windows\system32\Drivers\DrvAgent32.sys
2015-01-11 18:50 - 2015-01-11 18:50 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\eSupport.com
2015-01-11 18:28 - 2015-01-11 18:28 - 01297519 _____ (KC Softwares ) C:\Users\.......-PC\Downloads\ramexpert_nork_CB-DL-Manager [1].exe
2015-01-11 14:42 - 2015-01-11 14:42 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-01-11 14:05 - 2015-01-11 14:50 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Sparta
2015-01-11 14:05 - 2015-01-11 14:05 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\sparta111
2015-01-11 14:05 - 2015-01-11 14:05 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Pirates
2015-01-11 13:15 - 2015-01-11 15:01 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ImgBurn
2015-01-11 11:56 - 2006-10-13 08:18 - 00380928 _____ (NVIDIA) C:\Windows\ntuneoem.dll
2015-01-11 11:56 - 2006-10-13 08:18 - 00018216 _____ (NVidia Corp.) C:\Windows\nvoclk64.sys
2015-01-11 11:56 - 2006-10-13 08:18 - 00006912 _____ (NVidia Corp.) C:\Windows\nvoclock.sys
2015-01-11 11:56 - 2006-10-13 08:16 - 00421888 _____ (NVIDIA) C:\Windows\nvsulib.dll
2015-01-11 11:56 - 2006-10-13 08:13 - 01622016 _____ (NVIDIA) C:\Windows\NVBenchMarks.dll
2015-01-11 11:56 - 2006-10-13 08:12 - 00028672 _____ (NVIDIA) C:\Windows\AutoTuneScript.dll
2015-01-11 11:56 - 2006-09-05 14:59 - 00217088 _____ () C:\Windows\NVGfxOgl.dll
2015-01-11 11:56 - 2006-08-21 09:20 - 00045056 _____ (NVIDIA) C:\Windows\NTuneGpu.dll
2015-01-11 11:56 - 2006-06-01 17:22 - 00053248 _____ (NVIDIA Corporation) C:\Windows\Nvgpio.dll
2015-01-11 11:56 - 2005-09-23 16:33 - 01060864 _____ (Microsoft Corporation) C:\Windows\MFC71.dll
2015-01-11 11:56 - 2005-09-23 16:33 - 00499712 _____ (Microsoft Corporation) C:\Windows\msvcp71.dll
2015-01-11 11:56 - 2005-09-23 16:33 - 00348160 _____ (Microsoft Corporation) C:\Windows\msvcr71.dll
2015-01-10 20:56 - 2015-01-10 20:57 - 02191360 _____ () C:\Users\.......-PC\Desktop\adwcleaner_4.107.exe
2015-01-10 17:00 - 2015-01-10 17:00 - 00001881 _____ () C:\Users\Public\Desktop\MSI Live Update 6.lnk
2015-01-10 17:00 - 2015-01-10 17:00 - 00000000 ____D () C:\MSI
2015-01-10 16:57 - 2015-01-10 16:59 - 00013817 _____ () C:\Windows\system32\Utility.xml
2015-01-10 16:56 - 2014-04-30 16:23 - 00011248 _____ (Windows (R) Win 7 DDK provider) C:\Windows\acpimof.dll
2015-01-10 15:17 - 2015-01-10 15:19 - 00000000 _____ () C:\Users\.......-PC\AppData\Local\{9D9B305F-6B8C-4AA5-94D7-474EAA096BC4}
2014-12-24 09:38 - 2014-12-24 09:38 - 00016648 ____N () C:\bootsqm.dat
2014-12-24 09:38 - 2014-12-24 09:38 - 00000000 __SHD () C:\found.002
2014-12-22 12:49 - 2014-12-22 12:49 - 00000000 ___HD () C:\MediaServer_Temp
2014-12-22 12:48 - 2014-12-22 12:50 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Wondershare Video Converter Pro
2014-12-22 12:48 - 2014-12-22 12:48 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Wondershare
2014-12-22 12:48 - 2014-12-22 12:48 - 00000000 ____D () C:\Program Files\Common Files\Wondershare
2014-12-22 12:47 - 2014-12-22 13:30 - 00000000 ____D () C:\Program Files\Wondershare
2014-12-22 12:47 - 2014-12-22 13:29 - 00000000 ____D () C:\ProgramData\Wondershare
2014-12-22 12:47 - 2014-12-22 13:01 - 00000000 ____D () C:\ProgramData\Wondershare Video Converter Pro
2014-12-22 12:47 - 2014-10-24 14:16 - 00214528 _____ () C:\Windows\system32\WSCM32.dll
2014-12-22 12:45 - 2014-12-22 12:45 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\HandBrake
2014-12-22 12:41 - 2014-12-22 12:41 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\4Videosoft Studio
2014-12-22 12:28 - 2014-12-22 12:28 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Aiseesoft Studio
2014-12-22 10:32 - 2014-12-22 10:32 - 00000213 _____ () C:\Users\.......-PC\Desktop\Team Fortress 2.url
2014-12-22 10:26 - 2015-01-18 17:57 - 00000000 ____D () C:\Program Files\Steam
2014-12-22 10:26 - 2014-12-22 10:26 - 00000897 _____ () C:\Users\Public\Desktop\Steam.lnk
2014-12-22 10:26 - 2014-12-22 10:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2014-12-21 16:44 - 2014-12-21 16:44 - 00000000 __RSH () C:\MSDOS.SYS
2014-12-21 16:44 - 2014-12-21 16:44 - 00000000 __RSH () C:\IO.SYS
2014-12-21 12:27 - 2014-12-21 12:27 - 00000000 ____D () C:\Program Files\ESET
2014-12-21 12:13 - 2015-01-18 17:59 - 00000000 ____D () C:\FRST
2014-12-21 11:58 - 2014-12-21 11:58 - 00000083 _____ () C:\Users\.......-PC\Desktop\Neues Textdokument (2).txt
2014-12-20 17:20 - 2014-12-20 17:25 - 00000000 ____D () C:\Program Files\RMPrepUSB
2014-12-20 14:32 - 2014-12-22 11:23 - 00000000 ____D () C:\Users\.......-PC\Desktop\Hausbau
2014-12-20 11:49 - 2014-12-20 14:38 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk
2014-12-20 11:49 - 2014-12-20 11:49 - 00001965 _____ () C:\Users\Public\Desktop\Adobe Reader X.lnk
2014-12-20 11:49 - 2014-12-20 11:49 - 00000000 ____D () C:\Program Files\Adobe
2014-12-20 11:32 - 2014-12-20 11:32 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Mael
2014-12-20 11:14 - 2015-01-11 13:14 - 00000373 _____ () C:\Users\.......-PC\AppData\Roaming\burnaware.ini
2014-12-20 11:14 - 2014-12-20 11:14 - 00000988 _____ () C:\Users\Public\Desktop\BurnAware Free.lnk
2014-12-20 11:14 - 2014-12-20 11:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BurnAware Free
2014-12-20 11:14 - 2014-12-20 11:14 - 00000000 ____D () C:\Program Files\BurnAware Free
2014-12-20 10:46 - 2014-12-20 10:46 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Ashampoo
2014-12-20 10:45 - 2014-12-20 10:45 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\ashampoo
2014-12-20 10:45 - 2014-12-20 10:45 - 00000000 ____D () C:\ProgramData\ashampoo
2014-12-20 09:15 - 2011-07-11 11:39 - 00324834 _____ () C:\Windows6.1-KB2566584-x86.msu
2014-12-19 20:01 - 2014-12-19 20:01 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Aimersoft Video Converter Ultimate
2014-12-19 20:01 - 2014-12-19 20:01 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\{950EB46C-6AC7-4ACC-AB36-9A6A77C08B6A}
2014-12-19 20:01 - 2014-12-19 20:01 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Aimersoft
2014-12-19 20:01 - 2014-12-19 20:01 - 00000000 ____D () C:\Program Files\Common Files\Aimersoft
2014-12-19 20:00 - 2014-12-20 11:11 - 00000000 ____D () C:\Program Files\Aimersoft
2014-12-19 19:50 - 2014-12-19 19:52 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\tiger-k
2014-12-19 19:49 - 2014-12-19 19:49 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Leawo
2014-12-19 19:49 - 2014-12-19 19:49 - 00000000 ____D () C:\ProgramData\Leawo
2014-12-19 19:49 - 2012-01-10 10:18 - 00066944 _____ (TOSHIBA Corporation) C:\Windows\system32\Drivers\thdudf.sys
2014-12-19 18:44 - 2014-12-19 18:44 - 00001133 _____ () C:\Users\.......-PC\Desktop\Any Video Converter.lnk
2014-12-19 18:44 - 2014-12-19 18:44 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Anvsoft
2014-12-19 18:44 - 2014-12-19 18:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anvsoft
2014-12-19 18:44 - 2014-12-19 18:44 - 00000000 ____D () C:\Program Files\Anvsoft
2014-12-19 18:10 - 2014-12-19 19:34 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Microsoft Games
2014-12-19 05:49 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll
2014-12-19 05:49 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll
2014-12-19 05:49 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll
2014-12-19 05:49 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll
2014-12-19 05:49 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll
2014-12-19 05:49 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll
2014-12-19 05:49 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll
2014-12-19 05:49 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll
2014-12-19 05:49 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll
2014-12-19 05:49 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll
2014-12-19 05:49 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll
2014-12-19 05:49 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll
2014-12-19 05:49 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll
2014-12-19 05:49 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll
2014-12-19 05:49 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll
2014-12-19 05:49 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll
2014-12-19 05:49 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll
2014-12-19 05:49 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll
2014-12-19 05:49 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll
2014-12-19 05:49 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll
2014-12-19 05:49 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll
2014-12-19 05:49 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll
2014-12-19 05:49 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll
2014-12-19 05:49 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll
2014-12-19 05:49 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll
2014-12-19 05:49 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll
2014-12-19 05:49 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll
2014-12-19 05:49 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll
2014-12-19 05:49 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll
2014-12-19 05:49 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll
2014-12-19 05:49 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll
2014-12-19 05:49 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll
2014-12-19 05:49 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll
2014-12-19 05:49 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll
2014-12-19 05:49 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll
2014-12-19 05:49 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll
2014-12-19 05:49 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll
2014-12-19 05:49 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll
2014-12-19 05:49 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll
2014-12-19 05:49 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll
2014-12-19 05:49 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll
2014-12-19 05:49 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll
2014-12-19 05:49 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll
2014-12-19 05:49 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll
2014-12-19 05:49 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll
2014-12-19 05:49 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll
2014-12-19 05:49 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll
2014-12-19 05:49 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll
2014-12-19 05:49 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll
2014-12-19 05:49 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll
2014-12-19 05:49 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-18 18:01 - 2014-04-20 13:06 - 01326765 _____ () C:\Windows\WindowsUpdate.log
2015-01-18 17:47 - 2014-08-03 12:20 - 00000927 _____ () C:\Users\Public\Desktop\AVG 2014.lnk
2015-01-18 17:47 - 2014-08-03 12:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2015-01-18 17:44 - 2014-08-03 12:16 - 00000000 ____D () C:\ProgramData\MFAData
2015-01-18 17:31 - 2009-07-14 05:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-01-16 19:58 - 2009-07-14 05:34 - 00037504 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-01-16 19:58 - 2009-07-14 05:34 - 00037504 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-01-16 19:57 - 2014-02-01 15:17 - 00000000 ___DC () C:\32788R22FWJFW
2015-01-16 19:40 - 2010-05-02 07:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI
2015-01-16 19:28 - 2014-11-30 18:14 - 00007606 _____ () C:\Users\.......-PC\AppData\Local\Resmon.ResmonCfg
2015-01-16 17:35 - 2010-05-02 06:57 - 00000000 ____D () C:\Program Files\Mozilla Thunderbird
2015-01-16 16:38 - 2014-09-01 14:20 - 00000000 ____D () C:\Users\.......-PC
2015-01-16 15:39 - 2014-12-18 16:40 - 00000000 ____D () C:\Program Files\Common Files\Steam
2015-01-16 15:19 - 2014-04-30 15:08 - 00000000 ____D () C:\Users\.......-PC\Desktop\video
2015-01-15 19:25 - 2014-09-01 14:20 - 00000000 ___RD () C:\Users\.......-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-01-15 19:08 - 2013-08-06 17:45 - 00000000 ____D () C:\Windows\pss
2015-01-11 15:02 - 2010-05-02 06:58 - 00000000 ___RD () C:\Users\.......-PC\Desktop\support
2015-01-11 14:51 - 2014-11-22 18:21 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\JAM Software
2015-01-11 11:56 - 2010-05-02 07:06 - 00000000 ____D () C:\Program Files\MSI
2015-01-10 20:54 - 2014-10-26 16:25 - 00000000 ____D () C:\Users\.......-PC\Desktop\POwer
2014-12-22 14:16 - 2014-09-01 14:20 - 00001397 _____ () C:\Users\.......-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-12-22 14:16 - 2014-03-28 17:20 - 00002097 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-12-22 14:16 - 2012-01-22 11:26 - 00001035 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-12-22 14:16 - 2010-05-02 06:51 - 00001023 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-12-22 10:15 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\NDF
2014-12-21 16:49 - 2014-11-01 19:29 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\vlc
2014-12-21 16:45 - 2010-05-02 09:08 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-12-21 16:45 - 2010-05-02 09:08 - 00000000 ____D () C:\Program Files\Microsoft Office
2014-12-21 16:45 - 2009-07-14 03:37 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2014-12-21 16:44 - 2014-05-05 14:57 - 00000033 _____ () C:\Windows\Nscal.ini
2014-12-21 16:44 - 2014-05-05 14:51 - 00302592 _____ (InstallShield Corporation, Inc.) C:\Windows\unin0407.exe
2014-12-21 16:44 - 2009-07-14 09:56 - 00000000 ____D () C:\Windows\ShellNew
2014-12-21 16:40 - 2014-11-05 17:10 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\DVDVideoSoft
2014-12-21 16:26 - 2013-06-04 19:46 - 00000000 __RHD () C:\Users\Public\Libraries
2014-12-21 12:57 - 2014-12-18 16:49 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2014-12-20 11:53 - 2013-05-10 12:32 - 00000000 ____D () C:\ProgramData\Adobe
2014-12-20 11:52 - 2014-11-03 05:38 - 00000000 ____D () C:\Users\.......-PC\AppData\Local\Adobe
2014-12-20 11:52 - 2014-09-01 14:20 - 00000000 ____D () C:\Users\.......-PC\AppData\Roaming\Adobe
2014-12-20 11:49 - 2014-06-09 11:40 - 00000000 ____D () C:\Program Files\Common Files\Adobe
2014-12-20 10:59 - 2013-01-18 15:50 - 00000000 ____D () C:\Program Files\Ashampoo

==================== Files in the root of some directories =======
2014-10-26 14:03 - 2014-11-24 04:50 - 1177208 _____ () C:\Users\.......-PC\AppData\Roaming\AndyCleanupTool.exe
2014-10-26 14:03 - 2014-11-24 04:50 - 1176696 _____ () C:\Users\.......-PC\AppData\Roaming\AndyCleanVM.exe
2014-12-20 11:14 - 2015-01-11 13:14 - 0000373 _____ () C:\Users\.......-PC\AppData\Roaming\burnaware.ini
2014-11-30 18:14 - 2015-01-16 19:28 - 0007606 _____ () C:\Users\.......-PC\AppData\Local\Resmon.ResmonCfg
2002-01-01 00:05 - 2002-01-01 00:06 - 0000000 _____ () C:\Users\.......-PC\AppData\Local\{6022A40E-BF22-4886-B895-874490022456}
2015-01-10 15:17 - 2015-01-10 15:19 - 0000000 _____ () C:\Users\.......-PC\AppData\Local\{9D9B305F-6B8C-4AA5-94D7-474EAA096BC4}

Some content of TEMP:
====================
C:\Users\...\AppData\Local\Temp\avgnt.exe
C:\Users\...\AppData\Local\Temp\DseShExt-x86.dll
C:\Users\...\AppData\Local\Temp\SDShelEx-win32.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => MD5 is legit
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
         


und hier die Additional

Code:
ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 18-01-2015 01
Ran by ... at 2015-01-18 18:10:26
Running from C:\Users\.......-PC\Downloads\FRST-OlderVersion
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: AVG AntiVirus 2014 (Enabled - Up to date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
AS: AVG AntiVirus 2014 (Enabled - Up to date) {B5F5C120-2089-702E-0001-553BB0D5A664}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

32 Bit HP CIO Components Installer (Version: 6.1.1 - Hewlett-Packard) Hidden
8500A909_eDocs (Version: 1.00.0000 - Hewlett-Packard) Hidden
8500A909_Help (Version: 1.00.0000 - Hewlett-Packard) Hidden
8500A909g (Version: 50.0.165.000 - Hewlett-Packard) Hidden
Adobe Acrobat Reader 3.01 (HKLM\...\Adobe Acrobat Reader 3.01) (Version:  - )
Adobe Flash Player 15 Plugin (HKLM\...\Adobe Flash Player Plugin) (Version: 15.0.0.246 - Adobe Systems Incorporated)
Adobe Reader X (10.1.13) - Deutsch (HKLM\...\{AC76BA86-7AD7-1031-7B44-AA1000000001}) (Version: 10.1.13 - Adobe Systems Incorporated)
Adobe Shockwave Player 11.6 (HKLM\...\Adobe Shockwave Player) (Version: 11.6.1.629 - Adobe Systems, Inc.)
Any Video Converter 5.7.6 (HKLM\...\Any Video Converter_is1) (Version:  - Any-Video-Converter.com)
ATI Catalyst Install Manager (HKLM\...\{47FDEFC7-BFE6-FD75-41D1-28DD572BD2D9}) (Version: 3.0.715.0 - ATI Technologies, Inc.)
Audacity 2.0.5 (HKLM\...\Audacity_is1) (Version: 2.0.5 - Audacity Team)
AVG 2014 (HKLM\...\AVG) (Version: 2014.0.4800 - AVG Technologies)
AVG 2014 (Version: 14.0.4257 - AVG Technologies) Hidden
AVG 2014 (Version: 14.0.4794 - AVG Technologies) Hidden
AVG 2014 (Version: 14.0.4800 - AVG Technologies) Hidden
AVG PC TuneUp 2015 (de-DE) (Version: 15.0.1001.105 - AVG Technologies) Hidden
AVG Web TuneUp (HKLM\...\AVG Web TuneUp) (Version: 4.0.0.19 - AVG Technologies)
BlueStacks App Player (HKLM\...\BlueStacks App Player) (Version: 0.9.4.4079 - BlueStack Systems, Inc.)
BlueStacks Notification Center (HKLM\...\{8DCCC556-265B-478A-8B32-C12DA988BA74}) (Version: 0.9.4.4079 - BlueStack Systems, Inc.)
BPD_DSWizards (Version: 1.00.0000 - Hewlett-Packard) Hidden
bpd_scan (Version: 3.00.0000 - Hewlett-Packard) Hidden
BPDSoftware (Version: 50.0.165.000 - Hewlett-Packard) Hidden
BPDSoftware_Ini (Version: 1.00.0000 - Hewlett-Packard) Hidden
BufferChm (Version: 130.0.331.000 - Hewlett-Packard) Hidden
Bundled software uninstaller (HKLM\...\bi_uninstaller) (Version:  - ) <==== ATTENTION
BurnAware Free 7.7 (HKLM\...\BurnAware Free_is1) (Version:  - Burnaware)
CCleaner (HKLM\...\CCleaner) (Version: 4.05 - Piriform)
Cheat Engine 6.4 (HKLM\...\Cheat Engine 6.4_is1) (Version:  - Cheat Engine)
CheckDrive (HKLM\...\{B83513EC-2E4D-4621-816D-4CCF397BE702}_is1) (Version: 4.4 - Abelssoft)
D3DX10 (Version: 15.4.2368.0902 - Microsoft) Hidden
Destinations (Version: 130.0.0.0 - Hewlett-Packard) Hidden
DeviceDiscovery (Version: 130.0.465.000 - Hewlett-Packard) Hidden
DocMgr (Version: 130.0.000.000 - Ihr Firmenname) Hidden
DocProc (Version: 13.0.0.0 - Hewlett-Packard) Hidden
Dota 2 (HKLM\...\Steam App 570) (Version:  - Valve)
Druckerdeinstallation für EPSON XP-302 303 305 306 Series (HKLM\...\EPSON XP-302 303 305 306 Series) (Version:  - SEIKO EPSON Corporation)
Epson Connect Printer Setup (HKLM\...\{D9B1D51B-EB56-410D-AEB5-1CCFAC4B6C8C}) (Version: 1.3.0 - SEIKO EPSON CORPORATION)
Epson E-Web Print (HKLM\...\{896667C8-53F8-47B8-B6B0-B113B10F05BC}) (Version: 1.20.0000 - SEIKO EPSON CORPORATION)
EPSON Printer Finder (HKLM\...\{B8ECD0D3-AE08-4891-B6C7-32F96B75EB6C}) (Version: 1.0.0 - SEIKO EPSON CORPORATION)
EZ Software Updater version 1.2.0.4 (HKLM\...\EZ Software Updater_is1) (Version: 1.2.0.4 - )
Fax (Version: 130.0.418.000 - Hewlett-Packard) Hidden
Fotogalerie (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Free YouTube Download version 3.2.49.1022 (HKLM\...\Free YouTube Download_is1) (Version: 3.2.49.1022 - DVDVideoSoft Ltd.)
GeoGebra 5 (HKLM\...\GeoGebra 5) (Version: 5.0.4.0 - International GeoGebra Institute)
Google Chrome (HKLM\...\Google Chrome) (Version: 39.0.2171.95 - Google Inc.)
Google Earth (HKLM\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Earth (HKLM\...\{5A3C1721-F8ED-11E0-8AFB-B8AC6F97B88E}) (Version: 6.1.0.5001 - Google)
Google Update Helper (Version: 1.3.25.11 - Google Inc.) Hidden
GPBaseService2 (Version: 130.0.371.000 - Hewlett-Packard) Hidden
Haali Media Splitter (HKLM\...\HaaliMkx) (Version:  - FreeCodecPack)
HPProductAssistant (Version: 130.0.371.000 - Hewlett-Packard) Hidden
HPSSupply (Version: 130.0.371.000 - Hewlett-Packard) Hidden
HxD Hex Editor Version 1.7.7.0 (HKLM\...\HxD Hex Editor_is1) (Version: 1.7.7.0 - Maël Hörz)
Java 8 Update 25 (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation)
Key hack Setup version 1.5 (HKLM\...\{ADF6D3E3-02C1-47CE-9788-7E19C8B1753C}_is1) (Version: 1.5 - My Company, Inc.)
Liveupdate4 (HKLM\...\Liveupdate4_is1) (Version:  - MSI, Inc.)
MarketResearch (Version: 130.0.374.000 - Hewlett-Packard) Hidden
Media Downloader version 1.5 (HKLM\...\Media Downloader_is1) (Version: 1.5 - Media Downloader)
Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM\...\{90120000-0100-0407-0000-0000000FF1CE}_OMUI.de-de_{DB2ACBD1-65B1-4FC5-881E-4E75C668E7E2}) (Version:  - Microsoft)
Microsoft Office Language Pack 2007 - German/Deutsch (HKLM\...\OMUI.de-de) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (HKLM\...\Office14.PROPLUSR) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM\...\{402ED4A1-8F5B-387A-8688-997ABF58B8F2}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Movie Maker (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Mozilla Firefox 34.0.5 (x86 de) (HKLM\...\Mozilla Firefox 34.0.5 (x86 de)) (Version: 34.0.5 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla)
Mozilla Thunderbird 12.0.1 (x86 de) (HKLM\...\Mozilla Thunderbird 12.0.1 (x86 de)) (Version: 12.0.1 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
Netscape Communicator 4.6 (HKLM\...\Netscape Communicator 4.6) (Version:  - )
Network (Version: 130.0.579.000 - Hewlett-Packard) Hidden
Nitro PDF Professional (HKLM\...\{853F9C53-2518-4AD0-ABA2-A72EDF4441A4}) (Version: 5.5.2.0 - Nitro PDF Software )
Oracle VM VirtualBox 4.3.12 (HKLM\...\{D90E08B8-E7BB-4D29-8249-8670D4CC24BD}) (Version: 4.3.12 - Oracle Corporation)
Phase 5 HTML-Editor (HKLM\...\{20B1B020-DEAE-48D1-9960-D4C3185D758B}) (Version: 5.6.2.3 - Systemberatung Schommer)
ProductContext (Version: 50.0.165.000 - Hewlett-Packard) Hidden
Revo Uninstaller 1.95 (HKLM\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group)
Scan (Version: 13.0.0.0 - Hewlett-Packard) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version:  - Microsoft)
Skype™ 6.16 (HKLM\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.16.105 - Skype Technologies S.A.)
SmartWebPrinting (Version: 130.0.457.000 - Hewlett-Packard) Hidden
Software Updater (HKLM\...\{FA7EE274-7370-43B7-9A45-A39B17CCCDC5}) (Version: 4.3.3 - SEIKO EPSON CORPORATION)
SolutionCenter (Version: 130.0.373.000 - Hewlett-Packard) Hidden
Status (Version: 130.0.469.000 - Hewlett-Packard) Hidden
Steam (HKLM\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 6.0.1168 - SUPERAntiSpyware.com)
swMSM (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
TIPP10 Version 2.1.0 (HKLM\...\TIPP10_is1) (Version:  - (c) 2006-2011, Tom Thielicke IT Solutions)
TL-WN851ND Driver (HKLM\...\{4BAE4C76-44C3-418F-B715-6BBF5A65323E}) (Version: 1.00.0000 - TP-LINK)
Toolbox (Version: 130.0.648.000 - Hewlett-Packard) Hidden
TrayApp (Version: 130.0.422.000 - Hewlett-Packard) Hidden
TreeSize Personal V6.1.1 (HKLM\...\TreeSize Personal_is1) (Version: 6.1.1 - JAM Software)
TuneUp Utilities Language Pack (de-DE) (Version: 10.0.3000.99 - TuneUp Software) Hidden
TuneUp Utilities Language Pack (de-DE) (Version: 9.0.5100.2 - TuneUp Software) Hidden
Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM\...\{90120000-0016-0407-0000-0000000FF1CE}_OMUI.de-de_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version:  - Microsoft)
Update für Microsoft Office Outlook 2007 Help (KB963677) (HKLM\...\{90120000-001A-0407-0000-0000000FF1CE}_OMUI.de-de_{F6828576-6F79-470D-AB50-69D1BBADBD30}) (Version:  - Microsoft)
Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM\...\{90120000-0018-0407-0000-0000000FF1CE}_OMUI.de-de_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version:  - Microsoft)
Update für Microsoft Office Word 2007 Help (KB963665) (HKLM\...\{90120000-001B-0407-0000-0000000FF1CE}_OMUI.de-de_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version:  - Microsoft)
VideoSoft ActiveX Controls (HKLM\...\VideoSoft ActiveX Controls) (Version:  - )
Visual Studio 2012 x86 Redistributables (HKLM\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
VLC media player 2.0.5 (HKLM\...\VLC media player) (Version: 2.0.5 - VideoLAN)
WebReg (Version: 130.0.132.017 - Hewlett-Packard) Hidden
Windows 7 USB/DVD Download Tool (HKLM\...\{CCF298AF-9CE1-4B26-B251-486E98A34789}) (Version: 1.0.30 - Microsoft Corporation)
Windows Live Essentials (HKLM\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation)
WinRAR 5.01 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points  =========================


==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:04 - 2009-06-10 22:39 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {060974C6-EB13-439D-B0A4-E1A5D3E04852} - System32\Tasks\Microsoft\Windows\TabletPC\InputPersonalization => C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe [2009-07-14] (Microsoft Corporation)
Task: {28D2D37D-4310-475D-B318-49C33F2169C9} - \ProPCCleaner_Popup No Task File <==== ATTENTION
Task: {297C0F65-1E10-49F0-9DC5-D11301A7F843} - \SMupdate1 No Task File <==== ATTENTION
Task: {2D589190-9944-476E-A573-222791290DD5} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {3359158A-07D9-4850-95C6-0D9D97452A6D} - \GoogleUpdateTaskMachineCore No Task File <==== ATTENTION
Task: {41C9A7D1-822F-4722-9213-78D4AB6B4C21} - \PCHelpers1st No Task File <==== ATTENTION
Task: {459268AE-08D6-45FB-91CC-5E706DBF30D9} - System32\Tasks\Abelssoft\CheckDriveBackgroundGuard => C:\Program Files\CheckDrive\CheckDriveBackgroundGuard.exe [2014-01-28] (Abelssoft)
Task: {4D5E15B7-CCF8-4F94-9FE2-98CFF7A3D34C} - System32\Tasks\Microsoft\Windows\Multimedia\SMupdate3 => Rundll32.exe C:\PROGRA~1\COMMON~1\System\SysMenu.dll ,Command701 update3 <==== ATTENTION
Task: {56DBA06F-5936-424B-B712-0FFC44314AD0} - \SUPERAntiSpyware Scheduled Task 3065c5e0-abed-44dd-b0b5-72815b0aa146 No Task File <==== ATTENTION
Task: {5F1DBE2B-B0CF-4627-95DE-DE5185968F92} - \GoogleUpdateTaskMachineUA No Task File <==== ATTENTION
Task: {61827672-FD8A-419B-8509-E1B3E4BE2E86} - \Adobe Flash Player Updater No Task File <==== ATTENTION
Task: {668EDF93-5C13-42D2-A209-14C2A435D05D} - \ProPCCleaner_Start No Task File <==== ATTENTION
Task: {7F66F5E4-A742-4D44-A1E6-8702EE739B5D} - System32\Tasks\Abelssoft\Updater scan => C:\Program Files\CHIP Updater\CHIPUpdater.exe
Task: {81A76310-0754-42B7-89AC-993D9450C662} - \SUPERAntiSpyware Scheduled Task 06bbf209-d338-4d60-be59-4e63b86481f1 No Task File <==== ATTENTION
Task: {84B9A19E-C07B-4C2F-B2C2-2DC5A5A722AD} - System32\Tasks\Microsoft\Windows\Windows Activation Technologies\ValidationTask => C:\Windows\system32\Wat\WatAdminSvc.exe [2013-11-18] ()
Task: {95D2F5DE-7EBF-4966-B590-390DCC9F9652} - \{4FC590E3-B3EA-44D9-A548-0576CF073E8B} No Task File <==== ATTENTION
Task: {990DE140-CCEF-429D-8697-D5B3F80B76FF} - System32\Tasks\Microsoft\Windows\Maintenance\SMupdate2 => Rundll32.exe C:\PROGRA~1\COMMON~1\System\SysMenu.dll ,Command701 update2 <==== ATTENTION
Task: {9A4C242F-092D-40E9-B426-17495392768E} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated)
Task: {BC2154AC-4836-44A5-8FE5-BE39C0831DED} - \{7DE81AF0-5EBE-406B-94EA-BEB1B10BA181} No Task File <==== ATTENTION
Task: {CD72CD6A-F320-4DC8-B8D7-56142B2FC220} - \OMESupervisor No Task File <==== ATTENTION
Task: {D425DFCE-F4F9-4C60-AFD0-73F3C7D5AD27} - \RocketTab Update Task No Task File <==== ATTENTION
Task: {D59C6E92-8185-4EC8-9CDB-0BD63EA6729A} - \RocketTab No Task File <==== ATTENTION
Task: {F28A6735-8C38-406E-9E77-6E185897AB51} - \Fifth No Task File <==== ATTENTION
Task: {FF042177-2ECB-464E-9EC1-4F2FB2EAB17B} - System32\Tasks\Games\UpdateCheck_S-1-5-21-2908931533-4132489533-110418967-1000

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Loaded Modules (whitelisted) =============

2014-03-05 16:39 - 2014-03-05 16:39 - 00075136 _____ () C:\Windows\system32\PnkBstrA.exe
2014-12-09 18:58 - 2014-01-28 17:33 - 00019744 _____ () C:\Program Files\CheckDrive\AbStartManager.dll
2014-12-09 18:58 - 2014-01-28 17:33 - 00014112 _____ () C:\Program Files\CheckDrive\AbMessages.dll
2013-09-05 00:14 - 2013-09-05 00:14 - 04300456 _____ () C:\Program Files\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2014-07-02 12:53 - 2014-12-09 18:52 - 03758192 _____ () C:\Program Files\Mozilla Firefox\mozjs.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\ProgramData\TEMP:1CE11B51
AlternateDataStreams: C:\ProgramData\TEMP:373E1720

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys => ""="Driver"

==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)

MSCONFIG\startupreg: BlueStacks Agent => C:\Program Files\BlueStacks\HD-Agent.exe
MSCONFIG\startupreg: EPLTarget => 
MSCONFIG\startupreg: SUPERAntiSpyware => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
MSCONFIG\startupreg: Uninstall C: => 

========================= Accounts: ==========================

Administrator (S-1-5-21-2908931533-4132489533-110418967-500 - Administrator - Disabled)
Gast (S-1-5-21-2908931533-4132489533-110418967-501 - Limited - Disabled)
... (S-1-5-21-2908931533-4132489533-110418967-1000 - Administrator - Enabled) => C:\Users\.......-PC

==================== Faulty Device Manager Devices =============

Name: ntiomin
Description: ntiomin
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer: 
Service: ntiomin
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.

Name: 
Description: 
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: 
Description: 
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: 
Description: 
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: SASDIFSV
Description: SASDIFSV
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer: 
Service: SASDIFSV
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.

Name: Officejet Pro 8500 A909g
Description: Officejet Pro 8500 A909g
Class Guid: 
Manufacturer: 
Service: 
Problem: : This device is disabled. (Code 22)
Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions.

Name: SASKUTIL
Description: SASKUTIL
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer: 
Service: SASKUTIL
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.

Name: SBMNTR
Description: SBMNTR
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer: 
Service: sbmntr
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.

Name: SPDRIVER_1.38.0.1434
Description: SPDRIVER_1.38.0.1434
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer: 
Service: SPDRIVER_1.38.0.1434
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.


==================== Event log errors: =========================

Application errors:
==================
Error: (01/18/2015 06:10:29 PM) (Source: VSS) (EventID: 12292) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Erstellen der Schattenkopieanbieter-COM-Klasse mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
] ist ein Fehler aufgetreten.


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen
   Schattenkopien abfragen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
   Snapshotkontext: 13
   Snapshotkontext: 13
   Ausführungskontext: Coordinator

Error: (01/18/2015 06:10:29 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} und dem Namen "SW_PROV" kann nicht gestartet werden. [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
]


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen
   Schattenkopien abfragen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
   Snapshotkontext: 13
   Snapshotkontext: 13
   Ausführungskontext: Coordinator

Error: (01/18/2015 05:36:28 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service.  Service did not stop gracefully the last time it was run.
   bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
   bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error: (01/18/2015 04:27:44 PM) (Source: Windows Backup) (EventID: 4104) (User: )
Description: Die Sicherung war nicht erfolgreich. Fehler: "Fehler beim Bestimmen des Bibliothekenspeicherorts eines der in die Scherung eingeschlossenen Benutzer durch die Windows-Sicherung. (0x81000031)"

Error: (01/18/2015 04:27:44 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "GetProviderMgmtInterface" ist ein unerwarteter Fehler aufgetreten. hr = 0x8004230f, Unerwarteter Fehler beim Schattenkopieanbieter bei dem Versuch, den angegebenen Vorgang zu verarbeiten.
.

Error: (01/18/2015 04:27:43 PM) (Source: VSS) (EventID: 12292) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Erstellen der Schattenkopieanbieter-COM-Klasse mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
] ist ein Fehler aufgetreten.


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Anbieterverwaltungsschnittstelle wird abgerufen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {00000000-0000-0000-0000-000000000000}
   Snapshotkontext: -1
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}

Error: (01/18/2015 04:27:43 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} und dem Namen "SW_PROV" kann nicht gestartet werden. [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
]


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Anbieterverwaltungsschnittstelle wird abgerufen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {00000000-0000-0000-0000-000000000000}
   Snapshotkontext: -1
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}

Error: (01/18/2015 04:12:55 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service.  Service did not stop gracefully the last time it was run.
   bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
   bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error: (01/16/2015 06:42:12 PM) (Source: VSS) (EventID: 12292) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Erstellen der Schattenkopieanbieter-COM-Klasse mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
] ist ein Fehler aufgetreten.


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen
   Schattenkopien abfragen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
   Snapshotkontext: 13
   Snapshotkontext: 13
   Ausführungskontext: Coordinator

Error: (01/16/2015 06:42:12 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} und dem Namen "SW_PROV" kann nicht gestartet werden. [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
]


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen
   Schattenkopien abfragen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
   Snapshotkontext: 13
   Snapshotkontext: 13
   Ausführungskontext: Coordinator


System errors:
=============
Error: (01/18/2015 06:11:28 PM) (Source: Disk) (EventID: 11) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR1 gefunden.

Error: (01/18/2015 05:55:08 PM) (Source: VDS Basic Provider) (EventID: 1) (User: )
Description: Unerwarteter Fehler. Fehlercode: D@01010004

Error: (01/18/2015 05:55:08 PM) (Source: VDS Basic Provider) (EventID: 1) (User: )
Description: Unerwarteter Fehler. Fehlercode: D@01010004

Error: (01/18/2015 05:31:57 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am ‎18.‎01.‎2015 um 16:47:32 unerwartet heruntergefahren.

Error: (01/18/2015 04:19:40 PM) (Source: atikmdag) (EventID: 19468) (User: )
Description: CPLIB :: General - Invalid Parameter

Error: (01/18/2015 04:19:36 PM) (Source: atikmdag) (EventID: 19468) (User: )
Description: CPLIB :: General - Invalid Parameter

Error: (01/18/2015 04:19:32 PM) (Source: atikmdag) (EventID: 19468) (User: )
Description: CPLIB :: General - Invalid Parameter

Error: (01/18/2015 04:19:28 PM) (Source: atikmdag) (EventID: 19468) (User: )
Description: CPLIB :: General - Invalid Parameter

Error: (01/18/2015 04:19:25 PM) (Source: atikmdag) (EventID: 19468) (User: )
Description: CPLIB :: General - Invalid Parameter

Error: (01/18/2015 04:19:21 PM) (Source: atikmdag) (EventID: 19468) (User: )
Description: CPLIB :: General - Invalid Parameter


Microsoft Office Sessions:
=========================
Error: (01/18/2015 06:10:29 PM) (Source: VSS) (EventID: 12292) (User: )
Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen
   Schattenkopien abfragen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
   Snapshotkontext: 13
   Snapshotkontext: 13
   Ausführungskontext: Coordinator

Error: (01/18/2015 06:10:29 PM) (Source: VSS) (EventID: 13) (User: )
Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}SW_PROV0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen
   Schattenkopien abfragen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
   Snapshotkontext: 13
   Snapshotkontext: 13
   Ausführungskontext: Coordinator

Error: (01/18/2015 05:36:28 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service.  Service did not stop gracefully the last time it was run.
   bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
   bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error: (01/18/2015 04:27:44 PM) (Source: Windows Backup) (EventID: 4104) (User: )
Description: Fehler beim Bestimmen des Bibliothekenspeicherorts eines der in die Scherung eingeschlossenen Benutzer durch die Windows-Sicherung. (0x81000031)

Error: (01/18/2015 04:27:44 PM) (Source: VSS) (EventID: 8193) (User: )
Description: GetProviderMgmtInterface0x8004230f, Unerwarteter Fehler beim Schattenkopieanbieter bei dem Versuch, den angegebenen Vorgang zu verarbeiten.

Error: (01/18/2015 04:27:43 PM) (Source: VSS) (EventID: 12292) (User: )
Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Anbieterverwaltungsschnittstelle wird abgerufen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {00000000-0000-0000-0000-000000000000}
   Snapshotkontext: -1
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}

Error: (01/18/2015 04:27:43 PM) (Source: VSS) (EventID: 13) (User: )
Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}SW_PROV0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Anbieterverwaltungsschnittstelle wird abgerufen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {00000000-0000-0000-0000-000000000000}
   Snapshotkontext: -1
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}

Error: (01/18/2015 04:12:55 PM) (Source: BstHdAndroidSvc) (EventID: 0) (User: )
Description: Der Dienst kann nicht gestartet werden. System.ApplicationException: Cannot start service.  Service did not stop gracefully the last time it was run.
   bei BlueStacks.hyperDroid.Service.Service.OnStart(String[] args)
   bei System.ServiceProcess.ServiceBase.ServiceQueuedMainCallback(Object state)

Error: (01/16/2015 06:42:12 PM) (Source: VSS) (EventID: 12292) (User: )
Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen
   Schattenkopien abfragen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
   Snapshotkontext: 13
   Snapshotkontext: 13
   Ausführungskontext: Coordinator

Error: (01/16/2015 06:42:12 PM) (Source: VSS) (EventID: 13) (User: )
Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}SW_PROV0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen
   Schattenkopien abfragen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
   Snapshotkontext: 13
   Snapshotkontext: 13
   Ausführungskontext: Coordinator


==================== Memory info =========================== 

Processor: AMD Athlon(tm) 64 X2 Dual Core Processor 5000+
Percentage of memory in use: 57%
Total physical RAM: 991.43 MB
Available physical RAM: 419.44 MB
Total Pagefile: 20991.43 MB
Available Pagefile: 19862.29 MB
Total Virtual: 2047.88 MB
Available Virtual: 1917.81 MB

==================== Drives ================================

Drive c: (Windows7 Deutsch) (Fixed) (Total:247.49 GB) (Free:174.64 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: (Volume) (Fixed) (Total:50.59 GB) (Free:39.45 GB) NTFS
         

gruss

Alt 18.01.2015, 21:29   #13
schrauber
/// the machine
/// TB-Ausbilder
 

RUN.dll fehler - Standard

RUN.dll fehler



Lade Dir bitte von hier Revo Uninstaller Download Revo Uninstaller (alternativ portable Revo Uninstaller) herunter.
  • Installiere und starte das Programm. (Bebilderte Anleitung zu Revo Uninstaller)
  • Klicke auf Optionen und wähle als Sprache Deutsch.
  • Suche im Uninstallerfeld nach den Programmen:

    Bundled software uninstaller


  • Wähle die Programme nacheinander aus und klicke jedes Mal auf Uninstall.
  • Wähle anschließend den Modus "Moderat" aus.
  • Reste löschen:
    Klicke auf dann auf und dann auf .

 





Downloade Dir bitte Malwarebytes Anti-Malware
  • Installiere das Programm in den vorgegebenen Pfad. (Bebilderte Anleitung zu MBAM)
  • Starte Malwarebytes' Anti-Malware (MBAM).
  • Klicke im Anschluss auf Scannen, wähle den Bedrohungssuchlauf aus und klicke auf Suchlauf starten.
  • Lass am Ende des Suchlaufs alle Funde (falls vorhanden) in die Quarantäne verschieben. Klicke dazu auf Auswahl entfernen.
  • Lass deinen Rechner ggf. neu starten, um die Bereinigung abzuschließen.
  • Starte MBAM, klicke auf Verlauf und dann auf Anwendungsprotokolle.
  • Wähle das neueste Scan-Protokoll aus und klicke auf Export. Wähle Textdatei (.txt) aus und speichere die Datei als mbam.txt auf dem Desktop ab. Das Logfile von MBAM findest du hier.
  • Füge den Inhalt der mbam.txt mit deiner nächsten Antwort hinzu.


Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade Junkware Removal Tool auf Deinen Desktop

  • Starte das Tool mit Doppelklick. Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten.
  • Drücke eine beliebige Taste, um das Tool zu starten.
  • Je nach System kann der Scan eine Weile dauern.
  • Wenn das Tool fertig ist wird das Logfile (JRT.txt) auf dem Desktop gespeichert und automatisch geöffnet.
  • Bitte poste den Inhalt der JRT.txt in Deiner nächsten Antwort.


und ein frisches FRST log bitte.
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 19.01.2015, 14:31   #14
momolol404
 
RUN.dll fehler - Standard

RUN.dll fehler



Hallo Revo uninstaller und adwcleaner sind bereits installiert
ich poste bald allles rein
gruss

Alt 19.01.2015, 16:04   #15
schrauber
/// the machine
/// TB-Ausbilder
 

RUN.dll fehler - Standard

RUN.dll fehler



ok.
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Antwort

Themen zu RUN.dll fehler
.dll, .dll fehler, bild, erschein, erscheint, fehler, hallo zusammen, hoffe, meldung, run.dll, starte, zusammen




Ähnliche Themen: RUN.dll fehler


  1. Firewall nicht aktiverbar Fehler 0x6D9 + Wlan symbol fehler
    Plagegeister aller Art und deren Bekämpfung - 27.07.2015 (11)
  2. Schwieriger Fehler! Pc sehr langsam bei sache und vermuteter Hardware fehler?
    Alles rund um Windows - 18.02.2014 (2)
  3. Windows 7 HP: Firewall Fehler Code : 0x6D9 und Rundll Fehler beim Start
    Log-Analyse und Auswertung - 23.09.2013 (22)
  4. Fehler beim Scan-Vorgang: 37 Fehler !
    Plagegeister aller Art und deren Bekämpfung - 15.04.2013 (11)
  5. NetLoc.wlt fehler nach FEHLER Win XP Anmeldung direkt danach Abmeldung
    Plagegeister aller Art und deren Bekämpfung - 23.01.2013 (1)
  6. DLL Fehler !
    Alles rund um Windows - 30.12.2012 (4)
  7. RUNDLL Fehler beim Starten - Fehler beim Laden von C:/Dokume~1/../Lokale~1/Temp/0.5.... .exe
    Plagegeister aller Art und deren Bekämpfung - 23.04.2012 (5)
  8. Fehler in Windows Vista: "Ein kritischer Fehler ist aufgetreten, Windows wird in einer Minute..."
    Log-Analyse und Auswertung - 20.08.2010 (0)
  9. Fehler in der Fire Fox Console und Link Fehler
    Plagegeister aller Art und deren Bekämpfung - 03.07.2010 (7)
  10. Lap Top langsam/ Host-Prozess Fehler/ Superfetch Fehler
    Log-Analyse und Auswertung - 23.04.2009 (1)
  11. explorer-fehler bei rechtsklick von .jpg: explorer.exe hat einen fehler verursacht
    Alles rund um Windows - 10.04.2009 (4)
  12. AVG 8.0 Fehler
    Antiviren-, Firewall- und andere Schutzprogramme - 27.04.2008 (1)
  13. SP2 Fehler???
    Alles rund um Windows - 06.09.2007 (3)
  14. Habe dauernd Fehler Meldungen nach neu inst. Viren oder ein anderer fehler ???
    Plagegeister aller Art und deren Bekämpfung - 07.05.2007 (17)
  15. explorer.exe hat einen Fehler (Fehler im Log erkennbar?)
    Log-Analyse und Auswertung - 25.11.2006 (9)
  16. Fehler!! Fehler!! Fehler!!
    Plagegeister aller Art und deren Bekämpfung - 20.07.2005 (2)
  17. I/O Fehler, was ist das?
    Antiviren-, Firewall- und andere Schutzprogramme - 11.04.2005 (2)

Zum Thema RUN.dll fehler - hallo zusammen, immer wenn ich mein PC starte erscheint diese Meldung(siehe Bild) ich hoffe ihr könnt mir helfen MFG momolol404 - RUN.dll fehler...
Archiv
Du betrachtest: RUN.dll fehler auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.