Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 24.06.2015, 10:43   #31
Warlord711
/// TB-Ausbilder
 
Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar - Standard

Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar



Evtl. noch veralteter Status ?

Gibt es denn dafür nen Log, zeigt Bitdefender um welche Archive es sind dabei handeln soll ?
__________________
Lerne, zurück zu schlagen und unterstütze uns!
TB Akademie | Spende | Lob & Kritik

Alt 26.06.2015, 19:51   #32
mietzi2015
 
Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar - Standard

Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar



Code:
ATTFilter
BitDefender Log File 


Product : Bitdefender Total Security 2015
Scanning task : System-Scan
Log date : Freitag, 26. Juni 2015 17:08:13
Log path : C:\ProgramData\Bitdefender\Desktop\Profiles\Logs\dcf483c4-26d0-4e6f-ba28-6a53a00adae1\1435324160_1_01.xml

 
Scan Paths: 
Path : C:\
Path : D:\
 

[-]Scan Results 

[-]Objects that were not scanned: 
Object Path Reason Final Status 

File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/a98ad887-1e81-47af-b3df-f06329ab67e5 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/7dd666d5-ac93-428a-b051-bd4f13c8356d Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/035792a1-d4ef-4a78-bf9a-aa9628c281a3 Password-protected Not scanned (file was password-protected) 
File: C:\System Volume Information\{1481da00-1785-11e5-8279-28d244d27e3f}{3808876b-c176-4e48-b7ae-04046e6cc752}  (object was not found) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Lenovo-Customer Feedback.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/UNATTEND/unattend.xml Password-protected Not scanned (file was password-protected) 
File: C:\Program Files (x86)\InstallShield Installation Information\{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}\SupportFiles.7z=>ProjectManager/library.zip Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Kernel-WHEA%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2965500.log.dpx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/2bc666b2-c77b-492d-a698-30536c6c4d42 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2934018.log.dpx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/DPX/setuperr.log Password-protected Not scanned (file was password-protected) 
File: C:\System Volume Information\{06aad29a-11f0-11e5-8275-28d244d27e3f}{3808876b-c176-4e48-b7ae-04046e6cc752}  (object was not found) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>removeQ.bat Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/Pokki.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/8cc813c9-712a-41ef-9512-b233444fc669 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/MainQueueOnline0.que Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2937592.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>note.txt Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/6aa91e8c-ddbd-4979-8464-4062f7681a19 Password-protected Not scanned (file was password-protected) 
File: C:\System Volume Information\{b3cd2c2d-062b-11e5-8265-28d244d27e3f}{3808876b-c176-4e48-b7ae-04046e6cc752}  (object was not found) 
File: C:\System Volume Information\{abebcfbd-0eba-11e5-826f-28d244d27e3f}{3808876b-c176-4e48-b7ae-04046e6cc752}  (object was not found) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2938439.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-AppReadiness%4Admin.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/8b6f734b-452c-40e4-88dc-346eb19a28f0 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2955164.log.dpx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/Power2Godvd.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/setupapi.dev.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>removeW.scp Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-ApplicationResourceManagementSystem%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/57e1ab59-8b1f-47d2-ad45-7f2a4f5cdf39 Password-protected Not scanned (file was password-protected) 
File: C:\System Volume Information\{9c99f20f-12c2-11e5-8276-28d244d27e3f}{3808876b-c176-4e48-b7ae-04046e6cc752}  (object was not found) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>removeQ.scp Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/SCM.EVM Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>CLIENTID.DAT Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/DDACLSys.log Password-protected Not scanned (file was password-protected) 
File: C:\System Volume Information\{3a266de5-0cf9-11e5-826c-28d244d27e3f}{3808876b-c176-4e48-b7ae-04046e6cc752}  (object was not found) 
File: C:\System Volume Information\{3808876b-c176-4e48-b7ae-04046e6cc752}  (object was not found) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>aodstat.dat Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/sysprep/Panther/IE/setupact.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/ndows8.1-KB2954879-v2.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-PowerShell%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>filter.mop Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>aodtag.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>BCDBOOT.BAT Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/DPX/setupact.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>BOM.BAT Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/a216000c-66d3-4e66-8a6e-d98ab5762d3c Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/7455d819-e7ef-4b39-a9d4-cf3bc2ca7edb Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>ID.LOG Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>boottype.dat Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Application-Experience%4Steps-Recorder.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>mopsenv.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>cri.mop Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/actionqueue/auditUser.uaq Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/1a65e0de-77ef-4608-a58b-7d4753ba0398 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>CSUP.TXT Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Diagnosis-PLA%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>DHCPIP.txt Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/ANSI_power_devconf.txt Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2962409.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2939153.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/nVIDIAVGA.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>drive_clean_0.scp Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/45561755-0bb2-49df-9b3c-3f0ceb4ab61e Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>GPTAG.BAT Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-GroupPolicy%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>drive_rescan_0.scp Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/2c9c0c6c-2a74-46f2-858a-4389d253ead0 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2919355.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>drvnum.bat Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/DriveInfoList.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/UnattendGC/setupact.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>HDDINFO.bat Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-AppXDeploymentServer%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>HDDMODE.ADD Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/CBS/CbsPersist_20140904083123.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>LRS_ESP.SCP Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>mops.dat Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>mopsenv.bat Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Appidbox.txt Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/EnergyManager.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/setupapi.setup.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/TOUCHPAD.LOG Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-HotspotAuth%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2937592.log.dpx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/CBS/CBS.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-WFP%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/DISM/dism.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-IKE%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/OFFLINE/offline.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/ndows8.1-KB2954879-v2.log.dpx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2919355.log.dpx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/6dfcb649-0769-4f83-bb10-f60f235f6d3d Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2932046.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/actionqueue/generalize.uaq Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2962409.log.dpx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/UGCT.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Regsvr32%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-AppxPackaging%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2939153.log.dpx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/SCM.EVM.2 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2932046.log.dpx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2965500.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2934018.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2955164.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2938439.log.dpx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/1b137d64-b86f-41f1-9fbe-cdd805f1ac73 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/actionqueue/auditSystem.uaq Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/actionqueue/specialize.uaq Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Windows Defender%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Internet Explorer.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/commandexec/commandexec Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/c3bc58bf-fe17-4e06-b231-415ca4048de7 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/52afba5e-5be9-4727-9467-2b6bca40d7fe Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/commandexec/commandexec.4d53424c4b425244.spl Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/diagwrn.xml Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/Contents0.dir Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-WLAN-AutoConfig%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/setupinfo Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/diagerr.xml Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/84400372-b6db-4852-b387-6ce186eae25b Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/setup.etl Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/setupact.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/setuperr.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/55e46f05-2a1c-4f8f-8254-26482b40c290 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/unattend.xml Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/UnattendGC/diagerr.xml Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/UnattendGC/diagwrn.xml Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/UnattendGC/setuperr.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/UNIC_DEVCON_devconf.txt Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/_s_5EF9.tmp Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/_s_6600.tmp Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/setupact.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/9ff4c139-5234-410c-b7fa-23ee2fd2ab53 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/setuperr.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/36fbf9f7-0174-4757-bf5c-29dd8e248df9 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/006e650b-c0f4-4da5-adb8-c4bd9a2f842b Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/01693d02-1027-498c-94db-f7e1c3e2f6a3 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/02517402-1b76-4f24-8dab-d65be59386e9 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/OneKey_Recovery.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/modules.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/adec7f16-b143-46c4-aea2-b857c6c1123c Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/02736f5f-8bf0-493a-9285-6fa085788488 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/044c0ecb-d77c-4d85-a7c5-01275585901d Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/163cb38e-5bed-4920-81ba-91c8b9bf688f Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/0491975a-2231-4f7e-a63a-4f2ff41adb9d Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/05293577-d647-4185-b859-c94839a0b2e3 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/0b545118-b563-42fc-8d07-b78f602fcf34 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/0c6409f4-9174-415c-84ac-38611941847b Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/0cda7f67-716f-4559-b04d-b637be0c0e28 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/0d21bbce-5ff6-4613-b62c-48148ca6eaa1 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/0d8a891d-890c-4808-84d8-2f436ab14653 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/1274336e-ab06-46b6-a48c-0671c5557cc6 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/2d95d35a-54ac-40ce-b246-f4ab6d2a6cd8 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/1687544d-7247-4f5a-965a-a6e920e55278 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/18d711af-d919-4ddb-883f-488c7f44c5d6 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Wcmsvc%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/1a4230a2-e136-4936-9b22-ddf624bb8332 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/1effb9c8-b178-41d3-906d-d567219d1b46 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Kernel-EventTracing%4Admin.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/1f56664b-83e2-40a1-ba59-493a08f85d30 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/2085bf56-520d-4951-b7c0-df34af90cc6a Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Kernel-PnPConfig%4Configuration.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/221203ac-ebf6-499e-817e-e0efb5eab1bf Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/df8ff214-d536-45f4-90ec-1767f65dbed4 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/28ff6f6c-ead0-444d-ad78-6bcb91d06e4a Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/2baa7e3e-432b-4794-a2b1-b7f2ce73ddef Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/329d0ff6-145e-4a45-9cbd-cbe6bb2fc8d8 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/34946d56-a8ff-4198-bd85-43fa91981a0f Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/352e6ca0-7314-4df4-89c4-682368d80d57 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/358ee060-bd59-4f93-9741-a57ae6887dc0 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/3b6d8a73-f20b-4c93-b8fb-56a154f172d2 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Shell-Core%4ActionCenter.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/4073eca4-e751-4d54-b6e1-9daa3bcbf179 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/47bfe674-5dfa-4395-b88c-47d28d6e5597 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>PBR.SCP Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/49754026-21e1-41fc-94fd-727afe414fe7 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/5705047a-8b57-4b41-881f-daea70d97a9c Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/570eeead-5a38-4160-952e-01a0464105b1 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/57d2908a-c2c5-4156-bf22-3fdc8e3f83ba Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/c4ae3c3e-c327-4689-b6fd-c11fb31ae88b Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/5a3fb241-0b11-4ea5-bc66-0d9f1b406040 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/e288921a-4336-4dea-a1a6-6f3e6a856e5c Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/62e0ad22-a8d6-4270-b8c5-04f51a8bd8fa Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/668f8557-652d-433b-9cd3-cb95162f402d Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/67d35eb5-a929-4b08-b1b8-135fe34b8d3b Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>removeC.bat Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Ntfs%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/6a707146-5b1c-4162-b148-121bf3d107e1 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/cd5b361c-450c-456e-af2c-b490d5ad4938 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/6d21c8e9-c77f-4ee7-9252-2d30c930528a Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/6f02587f-8a2b-4552-97f6-deef229e335b Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/WMI/LwtNetLog.etl Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/73b1b253-ce67-4501-ae1a-377dd1d68b65 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/73d1388c-336e-40ec-b0b4-62cb862af2be Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/bt.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/73f931aa-0e5b-4c84-b943-ffd06be0e804 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/77f1d869-6e65-4079-a2a0-e2023408ef97 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/7a1ca63a-3611-4e61-aafa-1b56f8746f3a Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/7cb1c992-e560-45e7-88d5-d54c54e642a0 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/81a56ce6-601c-4260-9e89-c2ece15ac668 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/c1871b11-4a68-44d9-98b3-ee63b16d29e1 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/81ade2cf-6a20-45db-8231-3f41276e391d Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/86c209a4-74bb-48fe-b626-53ee71a07511 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/872d0e53-fd2e-41e3-b431-698af82882ce Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/8ed637a0-c900-4c3e-916d-3acacd92bbd4 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/92908369-ccf2-493a-85ab-05a9f8e620b0 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/94e12419-82b1-4d1e-9def-5a2959b6c0b0 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/9582a7bc-71c4-499c-a162-d32317301af7 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/96b095bb-12cf-465e-9072-863ba0f5696e Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/9ae37d28-4d53-45a9-970d-a57242f1a84f Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Kernel-Power%4Thermal-Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/9b3a5d95-1ae4-45de-9991-05bd06f89d25 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/9c8e21c9-6ab1-4d66-8df5-73af5359b24e Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/a2e6af92-a27e-48c6-9213-2231e259b7df Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/a44a1624-c719-4a46-8833-aa65471469c9 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-UserPnp%4ActionCenter.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Shell-Core%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-AppModel-Runtime%4Admin.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/a5480e25-af71-4b88-a76e-c9c3ba1588ee Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/a693a6e9-fb8c-46ca-932b-88dc7684be1c Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/aaa89daf-1b4f-447d-af21-7f0559ac9962 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Windows Firewall With Advanced Security%4ConnectionSecurity.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/b77224c0-94b5-4c17-8031-c0b10585f172 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/LAN.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/b7992938-01f1-4f40-a0ec-0d23d2f0f152 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Windows Firewall With Advanced Security%4Firewall.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/ba48fccd-f364-42bf-b684-e7b4dcc4d3d1 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/bc537794-54f5-4702-8ceb-06f584ecd24a Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/da6f0bdb-7e59-4edc-97b4-9c98c18ff800 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/bd50f9d1-96f6-4cfa-a79f-701151c176d3 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Application.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/e64595d9-e1af-4e09-8d36-1721fc82aee3 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/be219048-0fb3-4427-9037-b7176b708a35 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/c2599556-050c-48b7-98e3-cd224a313fe3 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/c371f25e-745f-4a1e-bef3-959161b56258 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/cbd3ef37-0e38-431a-a6e8-607c56893a63 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/cc7e9366-cf26-4dc9-a66c-3eab252649e1 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Bits-Client%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/ccfebb07-718e-418a-804e-3e5593d0793f Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Audio%4PlaybackManager.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/cd3f71a5-25da-4a71-b641-3b0b338d3b10 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Windows PowerShell.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/ce2de968-e342-40d7-9566-427d45e4a886 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/d88fec9e-a82a-46f9-87e2-b6b97b301c1a Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/ce6fe823-2dcd-4c7e-aafc-209e5f199b69 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/cfd7c21a-808b-487b-a6ec-8a10e44e8360 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/d00e7cb4-f82a-4a72-ab0f-7bb86dca6f2f Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/db6798e2-7da8-4ae6-8d2c-6bd29e32ddb0 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/d1d8f1ba-2e8d-4582-8cb7-7777c9e26e39 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/d6f4a061-cefb-4f38-81ec-6e80ecdd3011 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/da46820f-ff8a-4b5e-a6b2-b12185dcfffb Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/dcf2d225-a323-4eea-8684-cdd53e02ba70 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-VPN%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/e075ac73-7fc0-4acd-9f28-dd590c391c1c Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/e131c6a0-5ffc-419b-abfa-ce4cb36cde8a Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/plaction.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/e150a263-b986-433b-9b2c-153b02f804af Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>PRESTAT.bat Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-NCSI%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/e367590c-10f8-4401-b924-5839261dc94e Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/e5a0f734-72f6-4b0c-9566-7e5b74a6b1c0 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/e6d378fa-e068-4bcb-80de-56d43a249507 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/e8cc75dc-a5f5-4267-bd93-8a3479d0a822 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Setup.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/e90afe1c-4fde-42aa-955f-3b9edf653c66 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/edcad10e-42b8-45f3-aaef-de86f7373643 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/f15e0568-c1da-446e-86c9-4af3857badf7 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/SCM.EVM.3 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/f3033906-e419-4ca4-aaa0-8e9b8b3154e2 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/f61c1098-6385-4992-9119-ce0f68340314 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/f62d3a5b-5e2e-4305-a06a-a7ce9de361b0 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/f67c3c3c-2ee9-498e-a0d8-aa09f8787fb1 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>size.add Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/SCM.EVM.1 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/SCM.EVM.4 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/SCM.EVM.5 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/SQM/SQMLogger.etl.001 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/SQM/SQMLogger.etl.002 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Audio%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/SQM/SQMLogger.etl.003 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-SMBServer%4Security.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/SQM/SQMLogger.etl.004 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/SQM/SQMLogger.etl.005 Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/WindowsUpdate.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/WMI/FamilySafetyAOT.etl Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/sysprep/Panther/IE/diagerr.xml Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/sysprep/Panther/IE/diagwrn.xml Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-WorkFolders%4WHC.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Dhcp-Client%4Admin.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/sysprep/Panther/IE/setuperr.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/HardwareEvents.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Key Management Service.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Application-Experience%4Program-Compatibility-Assistant.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-International%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Diagnosis-PCW%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Application-Experience%4Program-Compatibility-Troubleshooter.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Application-Experience%4Program-Inventory.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Application-Experience%4Program-Telemetry.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-AppReadiness%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-AppXDeploymentServer%4Restricted.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Audio%4CaptureMonitor.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Audio%4GlitchDetection.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/WLAN.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-CoreApplication%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Crypto-DPAPI%4BackUpKeySvc.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Crypto-DPAPI%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-DeviceSetupManager%4Admin.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-DeviceSetupManager%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Dhcpv6-Client%4Admin.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Kernel-ShimEngine%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Diagnosis-DPS%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Diagnostics-Performance%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Kernel-Boot%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Kernel-PnP%4Configuration.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Kernel-StoreMgr%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Kernel-WHEA%4Errors.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-PowerShell%4Admin.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Known Folders API Service.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-MUI%4Admin.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>removeS.bat Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-MUI%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-NetworkProfile%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Ntfs%4WHC.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-PrintService%4Admin.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-ReadyBoost%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Resource-Exhaustion-Detector%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-RestartManager%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-SmbClient%4Connectivity.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-SMBClient%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-SmbClient%4Security.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-SMBServer%4Connectivity.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-SMBServer%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-TerminalServices-LocalSessionManager%4Admin.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-TerminalServices-LocalSessionManager%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-User Profile Service%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-UserPnp%4DeviceInstall.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>PART.LOG Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Windows Defender%4WHC.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/camera.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-WindowsSystemAssessmentTool%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-WindowsUpdateClient%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-WinINet-Config%4ProxyConfigChanged.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Winlogon%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-WMI-Activity%4Operational.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-WS-Licensing%4Admin.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Security.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/System.evtx Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>PART.SCP Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/ANSI_DEVCON_devconf.txt Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/AppTag.txt Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/AUDIO.LOG Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/chipset.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/BackupFolder.txt Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/BrowserGuard.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/CardReader.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/Chipset1.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/devconf.txt Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/IntelRST_MSI.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/IntelVGA.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/lsc.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/iRST.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/KB2938327_UpdateLang.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/LP.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/mcafee.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/MEI.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/NitroPDF.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/PowerDVD10_DVD.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/UNIC_msinfo_devconf.txt Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/UNIC_power_devconf.txt Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>removeC.scp Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>removeS.scp Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>removeW.bat Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>tester.log Password-protected Not scanned (file was password-protected) 
File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>thedcp.dat Password-protected Not scanned (file was password-protected) 
 

[-]Detailed Scan Summary 

[-]Basic 
Scanned items : 1606240
Infected items : 0 (no infected items have been detected)
Suspicious items : 0 (no suspected items have been detected)
Resolved items : 0 (no threats have been detected during this scan)
Unresolved items : 0 (no issues remained unresolved)
 
[+]Advanced 














 

[+]Scan Options
         
muss ich beim FRST noch auf fix gehen? Dann ist klar das die Dateien noch in der Quarantäne sind
__________________


Alt 27.06.2015, 15:41   #33
Warlord711
/// TB-Ausbilder
 
Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar - Standard

Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar



Hast du Delfix nicht laufen lassen ?

Die Reihenfolge ist hier entscheidend.
  1. Falls Defogger benutzt wurde: Defogger nochmal starten und auf re-enable klicken.
  2. Falls Combofix benutzt wurde: (Alternativ in uninstall.exe umbenennen und starten)
    • Windowstaste + R > Combofix /Uninstall (eingeben) > OK
    • Alternative: Combofix.exe in uninstall.exe umbenennen und starten
    • Combofix wird jetzt starten, sich evtl updaten und dann alle Reste von sich selbst entfernen.
  3. Downloade Dir bitte auf jeden Fall DelFix Download DelFix auf deinen Desktop:
    • Schließe alle offenen Programme.
    • Starte die delfix.exe mit einem Doppelklick.
    • Setze vor jede Funktion ein Häkchen.
    • Klicke auf Start.
    • Hinweis: DelFix entfernt u. a. alle verwendeten Programme, die Quarantäne unserer Scanner, den Java-Cache und löscht sich abschließend selbst.
    • Starte deinen Rechner abschließend neu.
  4. Sollten jetzt noch Programme aus unserer Bereinigung übrig sein kannst du sie bedenkenlos löschen.

__________________
__________________

Alt 28.06.2015, 08:18   #34
mietzi2015
 
Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar - Standard

Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar



jetzt erinnere ich mich. bei defogger wusste ich nicht was das ist und das combofix geht nicht. da sagt der pc konnte nicht gefunden werden. wie gehe ich denn jetzt nochmal vor? kannst du mir die schritte nochmal posten?

Alt 29.06.2015, 10:45   #35
Warlord711
/// TB-Ausbilder
 
Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar - Standard

Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar



Lass Defogger+Combofix, wichtig ist, das DelFix durchgelaufen ist.

Das löscht die verwendeten Tools sowie die FRst Quarantäne, die von Bitdefender gemeldet wird.

__________________
Lerne, zurück zu schlagen und unterstütze uns!
TB Akademie | Spende | Lob & Kritik

Alt 30.06.2015, 19:22   #36
mietzi2015
 
Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar - Standard

Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar



Code:
ATTFilter
BitDefender Log File 


Product : Bitdefender Total Security 2015
Scanning task : System-Scan
Log date : Dienstag, 30. Juni 2015 19:40:08
Log path : C:\ProgramData\Bitdefender\Desktop\Profiles\Logs\dcf483c4-26d0-4e6f-ba28-6a53a00adae1\1435683434_1_01.xml

 
Scan Paths: 
Path : C:\
Path : D:\
 

[-]Scan Results 

[-]Objects that were not scanned: 
Object Path Reason Final Status 

File: C:\System Volume Information\{3808876b-c176-4e48-b7ae-04046e6cc752}  (object was not found) 
File: C:\System Volume Information\{e6dac26a-1c3d-11e5-827a-28d244d27e3f}{3808876b-c176-4e48-b7ae-04046e6cc752}  (object was not found) 
File: C:\Program Files (x86)\InstallShield Installation Information\{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}\SupportFiles.7z=>ProjectManager/library.zip Password-protected Not scanned (file was password-protected) 
 

[-]Detailed Scan Summary 

[-]Basic 
Scanned items : 609458
Infected items : 0 (no infected items have been detected)
Suspicious items : 0 (no suspected items have been detected)
Resolved items : 0 (no threats have been detected during this scan)
Unresolved items : 0 (no issues remained unresolved)
 
[+]Advanced 














 

[+]Scan Options
         
ist immer noch was übrig im bitdefender

Alt 01.07.2015, 07:44   #37
Warlord711
/// TB-Ausbilder
 
Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar - Standard

Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar



Das gefundene ist allerdings total harmlos, wenns dich stört dann mach den Fix.
Das passwort geschützte gehört zu Cyberlink PowerDirector, höchstwahrscheinlich zu Reparaturzwecken.


Falls du den Fix durchführst:


Der Rechner wird bei Ausführen des Fix neu starten und eine Dateiüberprüfung laufen lassen.

Lass es durchlaufen und im Anschluss kannst du nochmal mit Bitdefender prüfen.


Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument

Code:
ATTFilter
C:\Program Files (x86)\InstallShield Installation Information\{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}\SupportFiles.7z=>ProjectManager/library.zip
cmd: chkdsk c: /F /R /X
reboot:
         

Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
  • Starte nun FRST erneut und klicke den Entfernen Button.
  • Das Tool erstellt eine Fixlog.txt.
  • Poste mir deren Inhalt.

__________________
Lerne, zurück zu schlagen und unterstütze uns!
TB Akademie | Spende | Lob & Kritik

Alt 05.07.2015, 11:42   #38
mietzi2015
 
Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar - Standard

Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar




FRST Logfile:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:04-07-2015
Ran by Petra (administrator) on LENOVO-PC on 05-07-2015 12:32:16
Running from C:\Users\Petra\Downloads
Loaded Profiles: UpdatusUser & Petra (Available Profiles: UpdatusUser & Petra)
Platform: Windows 8.1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: FRST Tutorial - How to use Farbar Recovery Scan Tool - Geeks to Go Forum

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\vsserv.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(LENOVO INCORPORATED.) C:\Program Files\Lenovo\iMController\SystemAgentService.exe
() C:\Program Files\Lenovo PhoneCompanion\LPAWDService.exe
(Lenovo(beijing) Limited) C:\Windows\System32\LenovoWiFiHotspotSvr.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Lenovo Updates\LUService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Lenovo) C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionPusher.exe
() C:\Program Files\CyberLink\Shared files\RichVideo64.exe
(Conexant Systems, Inc.) C:\Windows\SysWOW64\SASrv.exe
(Secunia) C:\Program Files (x86)\Secunia\PSI\psia.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\updatesrv.exe
() C:\Program Files (x86)\Lenovo\Lenovo VeriFace Pro\VfConnectorService.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Secunia) C:\Program Files (x86)\Secunia\PSI\sua.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
() C:\Program Files\Lenovo PhoneCompanion\adb.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
() C:\Program Files\CONEXANT\ForteConfig\fmapp.exe
(Realtek semiconductor) C:\Windows\RTFTrack.exe
(Lenovo) C:\Program Files\Lenovo PhoneCompanion\Phone Companion.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe
(Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Manager\utility.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\bdagent.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxag.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
() C:\Program Files (x86)\Vidalia Bridge Bundle\Vidalia\vidalia.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
(Secunia) C:\Program Files (x86)\Secunia\PSI\psi_tray.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE
(CyberLink Corp.) C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe
(Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe
(Lenovo) C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\seccenter.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Nvtmru] => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028384 2013-10-18] (NVIDIA Corporation)
HKLM\...\Run: [ForteConfig] => C:\Program Files\Conexant\ForteConfig\fmapp.exe [49056 2010-10-26] ()
HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1830616 2014-04-10] (Conexant Systems, Inc.)
HKLM\...\Run: [RtsFT] => C:\WINDOWS\RTFTrack.exe [6340312 2014-01-22] (Realtek semiconductor)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2808560 2014-08-08] (Synaptics Incorporated)
HKLM\...\Run: [PhoneCompanion] => C:\Program Files\Lenovo PhoneCompanion\Phone Companion.exe [802800 2014-09-04] (Lenovo)
HKLM\...\Run: [Energy Manager] => C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe [16094704 2014-09-04] (Lenovo(beijing) Limited)
HKLM\...\Run: [Lenovo Utility] => C:\Program Files (x86)\Lenovo\Energy Manager\Utility.exe [10841584 2014-09-04] (Lenovo(beijing) Limited)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [169768 2015-04-07] (Apple Inc.)
HKLM\...\Run: [Bdagent] => C:\Program Files\Bitdefender\Bitdefender 2015\bdagent.exe [1691112 2015-03-12] (Bitdefender)
HKLM-x32\...\Run: [UpdateP2GShortCut] => C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [214312 2011-12-06] (CyberLink Corp.)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1022152 2014-12-19] (Adobe Systems Incorporated)
HKU\S-1-5-21-2313430980-499788672-1817343724-1002\...\Run: [Bitdefender-Geldbörse-Agent] => C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxag.exe [790880 2015-01-15] (Bitdefender)
HKU\S-1-5-21-2313430980-499788672-1817343724-1002\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [28785792 2015-06-02] (Skype Technologies S.A.)
HKU\S-1-5-21-2313430980-499788672-1817343724-1002\...\Run: [Vidalia] => C:\Program Files (x86)\Vidalia Bridge Bundle\Vidalia\vidalia.exe [6239727 2014-07-29] ()
HKU\S-1-5-21-2313430980-499788672-1817343724-1002\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\Bubbles.scr [788480 2014-10-29] (Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2014-09-04]
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Secunia PSI Tray.lnk [2015-06-18]
ShortcutTarget: Secunia PSI Tray.lnk -> C:\Program Files (x86)\Secunia\PSI\psi_tray.exe (Secunia)
Startup: C:\Users\Petra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk [2015-04-29]
ShortcutTarget: OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk -> C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
ShellIconOverlayIdentifiers: [__SafeBox1] -> {152C96EB-288E-4EDC-B7C6-D21F8250ADF3} => C:\Program Files\Bitdefender\Bitdefender SafeBox\SafeBoxShell.dll [2014-07-04] (Bitdefender)
ShellIconOverlayIdentifiers: [__SafeBox2] -> {342DAA0B-D796-460D-8566-901E08A1CCAD} => C:\Program Files\Bitdefender\Bitdefender SafeBox\SafeBoxShell.dll [2014-07-04] (Bitdefender)
ShellIconOverlayIdentifiers: [__SafeBox3] -> {57595DAE-1AE1-4D97-A49E-67CBB53B52DF} => C:\Program Files\Bitdefender\Bitdefender SafeBox\SafeBoxShell.dll [2014-07-04] (Bitdefender)
ShellIconOverlayIdentifiers: [__SafeBox4] -> {33816773-98AE-4723-ADE0-EBE54C8B5A67} => C:\Program Files\Bitdefender\Bitdefender SafeBox\SafeBoxShell.dll [2014-07-04] (Bitdefender)
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = 
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = Google
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = 
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = 
HKU\S-1-5-21-2313430980-499788672-1817343724-1002\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-2313430980-499788672-1817343724-1002\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = Lenovo Deutschland: Computer, Notebooks, Tablets & Mehr | Lenovo (DE)
URLSearchHook: [S-1-5-21-2313430980-499788672-1817343724-1001] ATTENTION ==> Default URLSearchHook is missing
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-2313430980-499788672-1817343724-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
BHO: Bitdefender-Geldbörse -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender 2015\pmbxie.dll [2015-01-28] (Bitdefender)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (Microsoft Corporation)
BHO-x32: Bitdefender-Geldbörse -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender 2015\Antispam32\pmbxie.dll [2015-01-28] (Bitdefender)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation)
Toolbar: HKLM - Bitdefender-Geldbörse - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender 2015\pmbxie.dll [2015-01-28] (Bitdefender)
Toolbar: HKLM-x32 - Bitdefender-Geldbörse - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender 2015\Antispam32\pmbxie.dll [2015-01-28] (Bitdefender)
Toolbar: HKU\S-1-5-21-2313430980-499788672-1817343724-1002 -> Bitdefender-Geldbörse - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender 2015\pmbxie.dll [2015-01-28] (Bitdefender)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{348602B9-F28F-4E23-9375-3D45D3A27764}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{B7AAC55F-53CB-48AF-8CBC-B4B01A0F27D3}: [DhcpNameServer] 150.212.1.3

FireFox:
========
FF ProfilePath: C:\Users\Petra\AppData\Roaming\Mozilla\Firefox\Profiles\wctd707o.default-1433060820093
FF Homepage: Google
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-09-17] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-09-17] (Intel Corporation)
FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-19] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-19] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-05-01] (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\Petra\AppData\Roaming\Mozilla\Firefox\Profiles\wctd707o.default-1433060820093\searchplugins\google-images.xml [2015-06-07]
FF SearchPlugin: C:\Users\Petra\AppData\Roaming\Mozilla\Firefox\Profiles\wctd707o.default-1433060820093\searchplugins\google-maps.xml [2015-06-07]
FF Extension: NoScript - C:\Users\Petra\AppData\Roaming\Mozilla\Firefox\Profiles\wctd707o.default-1433060820093\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2015-06-18]
FF Extension: Adblock Plus - C:\Users\Petra\AppData\Roaming\Mozilla\Firefox\Profiles\wctd707o.default-1433060820093\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-06-18]
FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2015-07-03]
FF HKLM\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender 2015\bdtbext
FF Extension: Bitdefender Antispam Toolbar - C:\Program Files\Bitdefender\Bitdefender 2015\bdtbext [2015-04-26]
FF HKLM-x32\...\Firefox\Extensions: [bdwteff@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender 2015\antispam32\bdwteff
FF Extension: Bitdefender Wallet - C:\Program Files\Bitdefender\Bitdefender 2015\antispam32\bdwteff [2015-04-26]
FF HKLM-x32\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender 2015\bdtbext

Chrome: 
=======
CHR Profile: C:\Users\Petra\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\Petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-04-27]
CHR Extension: (Google Drive) - C:\Users\Petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-04-27]
CHR Extension: (YouTube) - C:\Users\Petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-04-27]
CHR Extension: (Google Search) - C:\Users\Petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-04-27]
CHR Extension: (Bitdefender Wallet) - C:\Users\Petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\fabcmochhfpldjekobfaaggijgohadih [2015-04-27]
CHR Extension: (Skype Click to Call) - C:\Users\Petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-05-25]
CHR Extension: (Google Wallet) - C:\Users\Petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-04-27]
CHR Extension: (Gmail) - C:\Users\Petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-27]
CHR HKLM-x32\...\Chrome\Extension: [fabcmochhfpldjekobfaaggijgohadih] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2015-05-01]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-01-19] (Apple Inc.)
S2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2251992 2013-11-14] (Broadcom Corporation.)
S3 BdDesktopParental; C:\Program Files\Bitdefender\Bitdefender 2015\bdparentalservice.exe [78144 2014-12-09] (Bitdefender)
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-29] (Microsoft Corporation)
R2 btwdins; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [976600 2014-05-05] (Broadcom Corporation.)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1394816 2015-05-01] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1772672 2015-05-01] (Microsoft Corporation)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [16232 2014-02-26] (Intel Corporation)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [315352 2014-05-22] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-17] (Intel Corporation)
S3 Lenovo EasyPlus Hotspot; C:\Program Files (x86)\Common Files\lenovo\easyplussdk\bin\EPHotspot64.exe [533760 2014-06-03] (Lenovo)
R2 Lenovo System Agent Service; C:\Program Files\Lenovo\iMController\SystemAgentService.exe [584960 2014-05-21] (LENOVO INCORPORATED.)
R2 LenovoPAWDService; C:\Program Files\Lenovo PhoneCompanion\LPAWDService.exe [133440 2014-09-04] ()
R2 LenovoWiFiHotspotSvr; C:\Windows\System32\LenovoWiFiHotspotSvr.exe [198192 2014-09-04] (Lenovo(beijing) Limited)
S3 LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [272440 2015-03-09] (Lenovo)
R2 LUService; C:\Program Files (x86)\Lenovo\Lenovo Updates\LUService.exe [38896 2014-02-17] (Lenovo(beijing) Limited)
S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
R2 PhoneCompanionPusher; C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionPusher.exe [321520 2014-09-04] (Lenovo)
S3 PhoneCompanionVap; C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionVap.exe [338416 2014-09-04] (Lenovo)
R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [390632 2012-04-25] ()
S4 SafeBox; C:\Program Files\Bitdefender\Bitdefender SafeBox\safeboxservice.exe [94624 2013-07-08] (Bitdefender)
R2 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1228504 2013-07-03] (Secunia)
R2 Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [660184 2013-07-03] (Secunia)
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [190704 2014-08-08] (Synaptics Incorporated)
R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender 2015\updatesrv.exe [67320 2014-10-27] (Bitdefender)
R2 VeriFaceSrv; C:\Program Files (x86)\Lenovo\Lenovo VeriFace Pro\VfConnectorService.exe [68880 2014-09-04] ()
R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender 2015\vsserv.exe [1547936 2015-03-16] (Bitdefender)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R0 avc3; C:\Windows\System32\DRIVERS\avc3.sys [1306464 2015-01-14] (BitDefender)
R3 avchv; C:\Windows\system32\DRIVERS\avchv.sys [262544 2015-01-23] (BitDefender)
R3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [677104 2015-01-14] (BitDefender)
R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170712 2013-11-14] (Broadcom Corporation.)
R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [7504560 2013-11-19] (Broadcom Corporation)
S0 bdelam; C:\Windows\System32\drivers\bdelam.sys [23568 2013-09-08] (Bitdefender)
R1 BdfNdisf; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfndisf6.sys [98768 2014-12-15] (BitDefender LLC)
R1 bdfwfpf; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys [107008 2013-07-29] (BitDefender LLC)
S3 bdfwfpf_pc; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf_pc.sys [121928 2013-07-02] (Bitdefender SRL)
R1 BDVEDISK; C:\Windows\system32\DRIVERS\bdvedisk.sys [79192 2013-07-30] (BitDefender)
S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-03-18] (Microsoft Corporation)
R0 gzflt; C:\Windows\System32\DRIVERS\gzflt.sys [160544 2015-02-24] (BitDefender LLC)
R3 KMDFVirtualKbd; C:\Windows\System32\drivers\KMDFVirtualKbd.sys [22264 2014-08-04] ()
R3 KMDFVirtualMouse; C:\Windows\System32\drivers\KMDFVirtualMouse.sys [21240 2014-08-04] ()
S3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-06-18] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-17] (Intel Corporation)
S3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew02.sys [4649440 2013-06-18] (Intel Corporation)
R3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2013-07-03] (Secunia)
R3 rtsuvc; C:\Windows\system32\DRIVERS\rtsuvc.sys [9105624 2014-01-22] (Realtek Semiconductor Corp.)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [31472 2014-08-08] (Synaptics Incorporated)
R0 trufos; C:\Windows\System32\DRIVERS\trufos.sys [452040 2014-10-15] (BitDefender S.R.L.)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)
S3 wsvd; C:\Windows\system32\DRIVERS\wsvd.sys [102376 2012-06-13] ("CyberLink)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-07-05 10:06 - 2015-07-05 12:32 - 00023127 _____ C:\Users\Petra\Downloads\FRST.txt
2015-07-04 12:37 - 2015-07-05 12:32 - 00000000 ____D C:\FRST
2015-07-04 12:30 - 2015-07-04 12:30 - 02112512 _____ (Farbar) C:\Users\Petra\Downloads\FRST64.exe
2015-07-04 12:25 - 2015-07-04 12:31 - 00000000 ____D C:\AdwCleaner
2015-07-03 22:36 - 2015-07-04 12:32 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-06-29 17:59 - 2015-06-29 17:59 - 02244096 _____ C:\Users\Petra\Downloads\AdwCleaner_4.207.exe
2015-06-29 17:56 - 2015-06-29 17:56 - 00000000 ____D C:\WINDOWS\ERUNT
2015-06-29 17:55 - 2015-06-29 17:56 - 00001173 _____ C:\DelFix.txt
2015-06-20 22:18 - 2015-06-20 22:18 - 00082824 _____ (BitDefender SRL) C:\WINDOWS\system32\Drivers\bdsandbox.sys
2015-06-18 21:39 - 2015-05-29 15:25 - 00561922 _____ C:\Users\Petra\Downloads\noscript_security_suite-2.6.9.26-sm+fn+fx.xpi
2015-06-18 21:37 - 2015-05-29 15:16 - 00946636 _____ C:\Users\Petra\Downloads\adblock_plus-2.6.9-an+sm+tb+fx.xpi
2015-06-18 21:36 - 2015-06-18 21:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-06-18 21:36 - 2015-06-18 21:38 - 00001016 _____ C:\Users\Petra\Desktop\WinRAR.lnk
2015-06-18 21:36 - 2015-06-18 21:38 - 00000000 ____D C:\Users\Petra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-06-18 21:36 - 2015-06-18 21:38 - 00000000 ____D C:\Program Files\WinRAR
2015-06-18 21:36 - 2015-06-18 21:36 - 00000000 ____D C:\Users\Petra\AppData\Roaming\WinRAR
2015-06-18 21:35 - 2015-06-18 21:35 - 01915800 _____ C:\Users\Petra\Downloads\winrar-x64-510.exe
2015-06-18 21:18 - 2015-06-18 21:18 - 00561331 _____ C:\Users\Petra\Downloads\noscript_security_suite-2.6.9.26-sm_fn_fx(1).zip
2015-06-18 21:04 - 2015-06-26 21:53 - 00000000 ____D C:\Program Files (x86)\SpywareBlaster
2015-06-18 21:04 - 2015-06-18 21:04 - 00001102 _____ C:\Users\Public\Desktop\SpywareBlaster.lnk
2015-06-18 21:04 - 2015-06-18 21:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpywareBlaster
2015-06-18 21:04 - 2015-06-18 21:04 - 00000000 ____D C:\ProgramData\Licenses
2015-06-18 21:00 - 2015-06-18 21:00 - 00895965 _____ C:\Users\Petra\Downloads\adblock_plus-2.6.9-an_sm_tb_fx.zip
2015-06-18 20:59 - 2015-06-18 20:59 - 00561331 _____ C:\Users\Petra\Downloads\noscript_security_suite-2.6.9.26-sm_fn_fx.zip
2015-06-18 20:58 - 2015-06-18 20:58 - 04095448 _____ (BrightFort LLC ) C:\Users\Petra\Downloads\spywareblastersetup50.exe
2015-06-18 20:32 - 2015-07-04 12:39 - 00002216 _____ C:\WINDOWS\SecuniaPackage.log
2015-06-18 20:28 - 2015-06-18 20:28 - 00001096 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Secunia PSI.lnk
2015-06-18 20:28 - 2015-06-18 20:28 - 00000000 ____D C:\Users\Petra\AppData\Local\Secunia PSI
2015-06-18 20:28 - 2015-06-18 20:28 - 00000000 ____D C:\Program Files (x86)\Secunia
2015-06-17 21:10 - 2015-06-17 21:10 - 00002052 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IncrediMail.lnk
2015-06-17 21:10 - 2015-06-17 21:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-06-17 21:09 - 2015-06-17 21:09 - 00000000 ____D C:\Program Files (x86)\IncrediMail
2015-06-14 20:09 - 2015-06-14 20:12 - 00015872 ___SH C:\Users\Petra\Downloads\Thumbs.db
2015-06-14 20:06 - 2015-06-16 19:15 - 00000000 ____D C:\ProgramData\WinZip
2015-06-14 20:06 - 2015-06-14 20:06 - 00000000 ____D C:\Users\Petra\Documents\Add-in Express
2015-06-12 15:05 - 2015-06-12 15:05 - 00000207 _____ C:\WINDOWS\tweaking.com-regbackup-LENOVO-PC-Windows-8.1-(64-bit).dat
2015-06-11 23:17 - 2015-07-05 11:29 - 00113880 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2015-06-11 23:17 - 2015-07-05 11:28 - 00001125 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2015-06-11 23:17 - 2015-07-05 11:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2015-06-11 23:17 - 2015-07-05 11:28 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 
2015-06-11 23:17 - 2015-06-18 08:42 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2015-06-11 23:17 - 2015-06-18 08:41 - 00109272 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2015-06-11 23:17 - 2015-06-18 08:41 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2015-06-11 23:17 - 2015-06-11 23:17 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-06-11 11:54 - 2015-06-11 11:54 - 00000000 ____D C:\Users\Petra\AppData\Roaming\Nico Mak Computing
2015-06-11 11:54 - 2015-06-11 11:54 - 00000000 ____D C:\ProgramData\Nico Mak Computing
2015-06-11 10:03 - 2015-05-25 15:23 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcResources.dll
2015-06-11 10:03 - 2015-05-25 15:07 - 01430528 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2015-06-11 10:03 - 2015-05-22 15:08 - 00700416 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2015-06-11 10:03 - 2015-05-21 15:08 - 01119232 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2015-06-11 10:03 - 2015-05-21 15:08 - 01020928 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2015-06-11 10:03 - 2015-05-21 15:08 - 00756736 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2015-06-11 10:03 - 2015-05-21 15:08 - 00422912 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2015-06-11 10:03 - 2015-05-21 15:08 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2015-06-11 10:03 - 2015-05-21 15:08 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2015-06-11 10:03 - 2015-04-25 04:34 - 00653824 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll
2015-06-11 10:03 - 2015-04-25 04:33 - 00549888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2015-06-11 10:03 - 2015-04-17 00:07 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll
2015-06-11 10:03 - 2015-04-16 08:17 - 00325464 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2015-06-11 10:03 - 2015-04-14 00:37 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\authz.dll
2015-06-11 10:03 - 2015-04-14 00:34 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authz.dll
2015-06-11 10:03 - 2015-04-10 02:40 - 01249280 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2015-06-11 10:03 - 2015-04-10 02:17 - 01018880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2015-06-11 10:03 - 2015-04-09 00:41 - 00158720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rgb9rast.dll
2015-06-11 10:03 - 2015-04-09 00:07 - 00410336 _____ C:\WINDOWS\system32\ApnDatabase.xml
2015-06-11 10:03 - 2015-04-02 00:42 - 03097600 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2015-06-11 10:03 - 2015-04-02 00:30 - 02483712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2015-06-11 10:03 - 2015-04-01 06:21 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2015-06-11 10:03 - 2015-04-01 06:18 - 00468480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2015-06-11 10:03 - 2015-04-01 06:17 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssphtb.dll
2015-06-11 10:03 - 2015-04-01 06:08 - 00774144 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2015-06-11 10:03 - 2015-04-01 05:46 - 03633664 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2015-06-11 10:03 - 2015-04-01 05:17 - 02551808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2015-06-11 10:03 - 2015-04-01 05:17 - 00903168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2015-06-11 10:03 - 2015-04-01 04:53 - 00391680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2015-06-11 10:03 - 2015-04-01 04:53 - 00272896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2015-06-11 10:03 - 2015-04-01 04:45 - 02749952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2015-06-11 10:03 - 2015-04-01 04:45 - 00699392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2015-06-11 10:03 - 2015-04-01 04:14 - 01920000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2015-06-11 10:03 - 2015-04-01 04:12 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2015-06-11 10:03 - 2015-03-20 05:49 - 00309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\compstui.dll
2015-06-11 10:03 - 2015-03-20 05:08 - 00477184 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2015-06-11 10:03 - 2015-03-20 04:37 - 00367104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll
2015-06-11 10:03 - 2015-03-20 04:07 - 01091072 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2015-06-11 10:03 - 2015-03-02 03:43 - 00222208 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastapi.dll
2015-06-11 10:03 - 2015-03-02 03:21 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastapi.dll
2015-06-11 10:02 - 2015-05-27 16:35 - 24917504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-06-11 10:02 - 2015-05-27 16:08 - 19607040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-06-11 10:02 - 2015-05-23 05:15 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2015-06-11 10:02 - 2015-05-23 05:14 - 00341504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\html.iec
2015-06-11 10:02 - 2015-05-23 05:10 - 02278912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-06-11 10:02 - 2015-05-23 05:05 - 00664064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-06-11 10:02 - 2015-05-23 05:04 - 00620032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2015-06-11 10:02 - 2015-05-23 04:48 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2015-06-11 10:02 - 2015-05-23 04:47 - 04305920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2015-06-11 10:02 - 2015-05-23 04:47 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2015-06-11 10:02 - 2015-05-23 04:47 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll
2015-06-11 10:02 - 2015-05-23 04:43 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2015-06-11 10:02 - 2015-05-23 04:38 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2015-06-11 10:02 - 2015-05-23 04:38 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2015-06-11 10:02 - 2015-05-23 04:37 - 02052608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2015-06-11 10:02 - 2015-05-23 04:28 - 12829696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-06-11 10:02 - 2015-05-23 04:28 - 01042944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2015-06-11 10:02 - 2015-05-23 04:20 - 01950720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2015-06-11 10:02 - 2015-05-23 04:16 - 01309696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-06-11 10:02 - 2015-05-23 04:14 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2015-06-11 10:02 - 2015-05-22 21:00 - 02885632 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-06-11 10:02 - 2015-05-22 21:00 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-06-11 10:02 - 2015-05-22 21:00 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec
2015-06-11 10:02 - 2015-05-22 20:52 - 06026240 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-06-11 10:02 - 2015-05-22 20:48 - 00633856 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll
2015-06-11 10:02 - 2015-05-22 20:47 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-06-11 10:02 - 2015-05-22 20:47 - 00814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2015-06-11 10:02 - 2015-05-22 20:24 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2015-06-11 10:02 - 2015-05-22 20:23 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2015-06-11 10:02 - 2015-05-22 20:21 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2015-06-11 10:02 - 2015-05-22 20:15 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2015-06-11 10:02 - 2015-05-22 20:09 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2015-06-11 10:02 - 2015-05-22 20:08 - 00374272 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2015-06-11 10:02 - 2015-05-22 20:06 - 00801280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2015-06-11 10:02 - 2015-05-22 20:05 - 02125824 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2015-06-11 10:02 - 2015-05-22 19:57 - 14404096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-06-11 10:02 - 2015-05-22 19:50 - 02426880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-06-11 10:02 - 2015-05-22 19:49 - 02865152 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2015-06-11 10:02 - 2015-05-22 19:38 - 01545728 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-06-11 10:02 - 2015-05-22 19:26 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2015-06-11 10:02 - 2015-05-21 18:47 - 04177920 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2015-06-08 18:36 - 2015-06-09 18:44 - 00029184 _____ C:\Users\Petra\Documents\Wasserzähler_Wohnungen.xls
2015-06-08 18:24 - 2015-06-08 18:35 - 00013804 _____ C:\Users\Petra\Documents\Wasserzähler_Wohnungen.xlsx
2015-06-07 16:54 - 2015-06-07 16:53 - 00092330 _____ C:\Users\Petra\Documents\1433672912_1_02.xml
2015-06-07 12:08 - 2014-04-16 01:34 - 00029888 _____ (Microsoft Corporation) C:\WINDOWS\system32\aspnet_counters.dll
2015-06-07 12:07 - 2015-06-07 12:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Live Add-in
2015-06-07 12:07 - 2014-04-16 01:35 - 00028352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aspnet_counters.dll
2015-06-07 11:46 - 2015-06-18 21:09 - 00000000 ____D C:\Users\Petra\AppData\Temp
2015-06-06 18:04 - 2015-07-05 10:04 - 00000000 ____D C:\Users\Petra\AppData\Local\Vidalia
2015-06-06 18:04 - 2015-07-05 01:27 - 00000000 ____D C:\Users\Petra\AppData\Roaming\tor
2015-06-06 18:04 - 2015-06-06 18:04 - 00000000 ____D C:\Users\Petra\AppData\Local\Tor
2015-06-06 18:04 - 2015-06-06 18:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vidalia Bridge Bundle
2015-06-06 18:04 - 2015-06-06 18:04 - 00000000 ____D C:\Program Files (x86)\Vidalia Bridge Bundle
2015-06-06 18:03 - 2011-05-13 12:16 - 00493056 _____ ( datenhaus GmbH) C:\WINDOWS\SysWOW64\dhRichClient3.dll
2015-06-06 18:03 - 2011-03-25 20:42 - 00338432 _____ C:\WINDOWS\SysWOW64\sqlite36_engine.dll
2015-06-06 17:42 - 2015-06-06 17:42 - 00000854 _____ C:\Users\Petra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Tor Browser.lnk
2015-06-06 17:41 - 2015-06-06 17:41 - 00000000 ____D C:\Users\Petra\Desktop\Tor Browser

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-07-05 12:30 - 2015-05-25 16:20 - 00000000 ____D C:\Users\Petra\AppData\Roaming\Skype
2015-07-05 12:27 - 2015-04-27 20:10 - 00001138 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-07-05 12:27 - 2015-04-23 21:18 - 00003598 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2313430980-499788672-1817343724-1002
2015-07-05 12:26 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-07-05 12:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sru
2015-07-05 10:37 - 2014-09-04 09:35 - 01351136 _____ C:\WINDOWS\WindowsUpdate.log
2015-07-05 10:14 - 2013-08-22 16:46 - 00055288 _____ C:\WINDOWS\setupact.log
2015-07-05 10:07 - 2015-04-23 21:19 - 00003934 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{E10E42AD-3DA3-4EE6-B84A-1344DDA645EC}
2015-07-05 10:03 - 2015-04-27 20:10 - 00001134 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-07-04 12:34 - 2013-08-22 16:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-07-04 12:34 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\ELAM
2015-07-04 12:32 - 2015-05-24 23:40 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2015-07-04 12:32 - 2014-03-18 11:44 - 00035504 _____ C:\WINDOWS\PFRO.log
2015-07-04 12:31 - 2014-09-04 10:54 - 00002560 _____ C:\WINDOWS\system32\VfService.trf
2015-06-30 21:19 - 2015-05-04 22:01 - 00000000 ____D C:\Users\Petra\AppData\Roaming\vlc
2015-06-30 18:47 - 2014-09-04 11:07 - 00000000 ____D C:\ProgramData\Energy Manager
2015-06-26 21:59 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2015-06-26 21:53 - 2014-09-04 10:53 - 00000000 ____D C:\ProgramData\Temp
2015-06-26 16:02 - 2013-08-22 17:20 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-06-21 10:31 - 2015-05-26 19:27 - 00005120 _____ C:\Users\Petra\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-06-20 05:02 - 2013-08-22 17:38 - 00792568 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2015-06-20 05:02 - 2013-08-22 17:38 - 00178168 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2015-06-17 21:10 - 2015-04-25 16:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IncrediMail
2015-06-16 22:12 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\Performance
2015-06-16 19:15 - 2015-04-23 21:10 - 00000000 ____D C:\Users\Petra
2015-06-15 20:56 - 2015-05-04 12:22 - 00203264 ___SH C:\Users\Petra\Desktop\Thumbs.db
2015-06-15 18:08 - 2014-09-04 19:18 - 00766620 _____ C:\WINDOWS\system32\perfh007.dat
2015-06-15 18:08 - 2014-09-04 19:18 - 00159902 _____ C:\WINDOWS\system32\perfc007.dat
2015-06-15 18:08 - 2014-03-18 11:53 - 01780340 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-06-13 21:23 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\rescache
2015-06-12 16:09 - 2013-08-22 17:36 - 00000000 ___RD C:\WINDOWS\Offline Web Pages
2015-06-12 11:21 - 2015-04-25 21:30 - 00000000 __SHD C:\Users\Petra\AppData\Local\EmieBrowserModeList
2015-06-12 11:21 - 2015-04-23 21:19 - 00000000 __SHD C:\Users\Petra\AppData\Local\EmieUserList
2015-06-12 11:21 - 2015-04-23 21:19 - 00000000 __SHD C:\Users\Petra\AppData\Local\EmieSiteList
2015-06-12 08:46 - 2013-08-22 16:44 - 00387328 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-06-12 08:45 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\ELAMBKUP
2015-06-12 08:43 - 2015-04-25 21:18 - 00000000 ____D C:\WINDOWS\system32\appraiser
2015-06-12 08:43 - 2015-04-25 21:17 - 00000000 ___SD C:\WINDOWS\system32\CompatTel
2015-06-12 08:43 - 2013-08-22 17:36 - 00000000 ___RD C:\WINDOWS\ToastData
2015-06-12 08:43 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2015-06-11 10:23 - 2015-04-25 20:41 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-06-11 10:18 - 2015-04-25 20:41 - 140135120 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-06-11 10:16 - 2015-04-25 17:33 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-06-09 18:37 - 2015-05-22 18:15 - 00076800 _____ C:\Users\Petra\Documents\Wasserzähler ab 2011.xls
2015-06-08 22:51 - 2015-05-09 15:42 - 00074944 _____ C:\WINDOWS\system32\bdsandbox.txt
2015-06-08 18:19 - 2015-05-25 16:19 - 00000000 ____D C:\ProgramData\Skype
2015-06-07 12:07 - 2015-04-25 17:33 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2015-06-06 14:38 - 2015-04-25 16:12 - 00002324 _____ C:\Users\Petra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk

==================== Files in the root of some directories =======

2015-05-26 19:27 - 2015-06-21 10:31 - 0005120 _____ () C:\Users\Petra\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-09-04 10:16 - 2014-09-04 10:16 - 0000000 ____H () C:\ProgramData\DP45977C.lfl

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-07-03 23:52

==================== End of log ============================
         
--- --- ---

die raute geht nicht zu benutzen was kannich denn bei der Datenträgerbereinigung löschen lassen?

Alt 06.07.2015, 09:55   #39
Warlord711
/// TB-Ausbilder
 
Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar - Standard

Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar



Hm welche Raute geht nicht zu benutzen ?

Hast du die Anleitung richtig befolgt ?
Eigentlich sollte nen Fix gemacht werden.
__________________
Lerne, zurück zu schlagen und unterstütze uns!
TB Akademie | Spende | Lob & Kritik

Alt 06.07.2015, 17:36   #40
mietzi2015
 
Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar - Standard

Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar



geht nicht das programm sagt das er die txt nicht findet. Sie ist aber im selben ordner wie das programm

ja sorry hab ich falsch gemacht.

die raute um den text zu posten ging nicht. dann lasse ich das mit dem FRST wenns nichts besonderes ist was noch beim Bitdefender als gesch. Archiv drin ist.

Alt 07.07.2015, 09:52   #41
Warlord711
/// TB-Ausbilder
 
Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar - Standard

Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar



Ok.
__________________
Lerne, zurück zu schlagen und unterstütze uns!
TB Akademie | Spende | Lob & Kritik

Alt 12.07.2015, 10:15   #42
mietzi2015
 
Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar - Standard

Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar



schade das FRST geht nicht mehr. läuft stundenlang und endet den Fix nicht. Ich denke der PC ist soweit wieder in Ordnung! vielen vielen danke für die Hilfe!

Antwort

Themen zu Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar
archive, bitdefender, blieb, defender, feedback, gefunde, geschützte, hallo zusammen, löschen, malware, nichts, passwortgeschützte, protector, rechner, scan, scanbar, scanne, scannen, thema, vorgehensweise, wiederherstellung, windows, winzip, woche, wochen, zusammen




Ähnliche Themen: Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar


  1. Passwortgeschützte Archive von Bitfender gefunden
    Log-Analyse und Auswertung - 11.10.2015 (1)
  2. bitdefender hat Phising Versuche erkannt und infizierte Websites gefunden (38Stück), die ich nicht aufgerufen habe
    Log-Analyse und Auswertung - 31.05.2015 (19)
  3. Unlöschbare ZIP Archive
    Smartphone, Tablet & Handy Security - 11.03.2015 (9)
  4. Trojan.Generic.12362692 und 12354483 wurden von Bitdefender gefunden
    Plagegeister aller Art und deren Bekämpfung - 23.01.2015 (55)
  5. Bitdefender hat Variant.Aware.Graftor.159320 gefunden
    Plagegeister aller Art und deren Bekämpfung - 24.11.2014 (21)
  6. Comodo Firewall +Bitdefender internet oder Bitdefender antivir ?
    Antiviren-, Firewall- und andere Schutzprogramme - 22.08.2014 (6)
  7. Bitdefender deinstallieren geht nicht.
    Antiviren-, Firewall- und andere Schutzprogramme - 07.06.2014 (3)
  8. Bitdefender findet was, Malwarebytes nicht
    Plagegeister aller Art und deren Bekämpfung - 17.05.2010 (1)
  9. BitDefender deinstalliert - BitDefender evtl. nicht installiert/nicht mehr aktuell
    Antiviren-, Firewall- und andere Schutzprogramme - 07.10.2009 (16)
  10. BitDefender scant nicht!!
    Antiviren-, Firewall- und andere Schutzprogramme - 17.05.2009 (0)
  11. Bitdefender hat iopus starr gefunden,bitte Logfile prüfen
    Mülltonne - 03.02.2008 (1)
  12. Habe mehrere Trojaner beim durchlaufen von Bitdefender gefunden,brauche Hilfe bitte .
    Plagegeister aller Art und deren Bekämpfung - 03.01.2008 (11)
  13. Trojaner und Würmer mit Bitdefender gefunden
    Mülltonne - 09.12.2007 (0)
  14. Antivir - Quarantäne-Dateien noch scanbar?
    Antiviren-, Firewall- und andere Schutzprogramme - 21.07.2006 (2)
  15. Outlook Archive
    Alles rund um Windows - 24.05.2006 (1)
  16. Archive durchsuchen
    Plagegeister aller Art und deren Bekämpfung - 12.07.2005 (0)
  17. Infizierte Archive
    Alles rund um Windows - 22.03.2005 (2)

Zum Thema Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar - Evtl. noch veralteter Status ? Gibt es denn dafür nen Log, zeigt Bitdefender um welche Archive es sind dabei handeln soll ? - Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar...
Archiv
Du betrachtest: Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.