|
Plagegeister aller Art und deren Bekämpfung: Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbarWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
24.06.2015, 10:43 | #31 |
/// TB-Ausbilder | Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar Evtl. noch veralteter Status ? Gibt es denn dafür nen Log, zeigt Bitdefender um welche Archive es sind dabei handeln soll ?
__________________ Lerne, zurück zu schlagen und unterstütze uns! TB Akademie | Spende | Lob & Kritik |
26.06.2015, 19:51 | #32 |
| Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbarCode:
ATTFilter BitDefender Log File Product : Bitdefender Total Security 2015 Scanning task : System-Scan Log date : Freitag, 26. Juni 2015 17:08:13 Log path : C:\ProgramData\Bitdefender\Desktop\Profiles\Logs\dcf483c4-26d0-4e6f-ba28-6a53a00adae1\1435324160_1_01.xml Scan Paths: Path : C:\ Path : D:\ [-]Scan Results [-]Objects that were not scanned: Object Path Reason Final Status File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/a98ad887-1e81-47af-b3df-f06329ab67e5 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/7dd666d5-ac93-428a-b051-bd4f13c8356d Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/035792a1-d4ef-4a78-bf9a-aa9628c281a3 Password-protected Not scanned (file was password-protected) File: C:\System Volume Information\{1481da00-1785-11e5-8279-28d244d27e3f}{3808876b-c176-4e48-b7ae-04046e6cc752} (object was not found) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Lenovo-Customer Feedback.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/UNATTEND/unattend.xml Password-protected Not scanned (file was password-protected) File: C:\Program Files (x86)\InstallShield Installation Information\{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}\SupportFiles.7z=>ProjectManager/library.zip Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Kernel-WHEA%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2965500.log.dpx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/2bc666b2-c77b-492d-a698-30536c6c4d42 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2934018.log.dpx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/DPX/setuperr.log Password-protected Not scanned (file was password-protected) File: C:\System Volume Information\{06aad29a-11f0-11e5-8275-28d244d27e3f}{3808876b-c176-4e48-b7ae-04046e6cc752} (object was not found) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>removeQ.bat Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/Pokki.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/8cc813c9-712a-41ef-9512-b233444fc669 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/MainQueueOnline0.que Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2937592.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>note.txt Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/6aa91e8c-ddbd-4979-8464-4062f7681a19 Password-protected Not scanned (file was password-protected) File: C:\System Volume Information\{b3cd2c2d-062b-11e5-8265-28d244d27e3f}{3808876b-c176-4e48-b7ae-04046e6cc752} (object was not found) File: C:\System Volume Information\{abebcfbd-0eba-11e5-826f-28d244d27e3f}{3808876b-c176-4e48-b7ae-04046e6cc752} (object was not found) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2938439.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-AppReadiness%4Admin.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/8b6f734b-452c-40e4-88dc-346eb19a28f0 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2955164.log.dpx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/Power2Godvd.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/setupapi.dev.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>removeW.scp Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-ApplicationResourceManagementSystem%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/57e1ab59-8b1f-47d2-ad45-7f2a4f5cdf39 Password-protected Not scanned (file was password-protected) File: C:\System Volume Information\{9c99f20f-12c2-11e5-8276-28d244d27e3f}{3808876b-c176-4e48-b7ae-04046e6cc752} (object was not found) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>removeQ.scp Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/SCM.EVM Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>CLIENTID.DAT Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/DDACLSys.log Password-protected Not scanned (file was password-protected) File: C:\System Volume Information\{3a266de5-0cf9-11e5-826c-28d244d27e3f}{3808876b-c176-4e48-b7ae-04046e6cc752} (object was not found) File: C:\System Volume Information\{3808876b-c176-4e48-b7ae-04046e6cc752} (object was not found) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>aodstat.dat Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/sysprep/Panther/IE/setupact.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/ndows8.1-KB2954879-v2.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-PowerShell%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>filter.mop Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>aodtag.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>BCDBOOT.BAT Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/DPX/setupact.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>BOM.BAT Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/a216000c-66d3-4e66-8a6e-d98ab5762d3c Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/7455d819-e7ef-4b39-a9d4-cf3bc2ca7edb Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>ID.LOG Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>boottype.dat Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Application-Experience%4Steps-Recorder.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>mopsenv.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>cri.mop Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/actionqueue/auditUser.uaq Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/1a65e0de-77ef-4608-a58b-7d4753ba0398 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>CSUP.TXT Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Diagnosis-PLA%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>DHCPIP.txt Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/ANSI_power_devconf.txt Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2962409.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2939153.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/nVIDIAVGA.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>drive_clean_0.scp Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/45561755-0bb2-49df-9b3c-3f0ceb4ab61e Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>GPTAG.BAT Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-GroupPolicy%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>drive_rescan_0.scp Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/2c9c0c6c-2a74-46f2-858a-4389d253ead0 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2919355.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>drvnum.bat Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/DriveInfoList.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/UnattendGC/setupact.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>HDDINFO.bat Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-AppXDeploymentServer%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>HDDMODE.ADD Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/CBS/CbsPersist_20140904083123.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>LRS_ESP.SCP Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>mops.dat Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>mopsenv.bat Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Appidbox.txt Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/EnergyManager.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/setupapi.setup.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/TOUCHPAD.LOG Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-HotspotAuth%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2937592.log.dpx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/CBS/CBS.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-WFP%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/DISM/dism.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-IKE%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/OFFLINE/offline.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/ndows8.1-KB2954879-v2.log.dpx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2919355.log.dpx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/6dfcb649-0769-4f83-bb10-f60f235f6d3d Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2932046.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/actionqueue/generalize.uaq Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2962409.log.dpx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/UGCT.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Regsvr32%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-AppxPackaging%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2939153.log.dpx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/SCM.EVM.2 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2932046.log.dpx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2965500.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2934018.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2955164.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Logs/ONLINE/Windows8.1-KB2938439.log.dpx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/1b137d64-b86f-41f1-9fbe-cdd805f1ac73 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/actionqueue/auditSystem.uaq Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/actionqueue/specialize.uaq Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Windows Defender%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Internet Explorer.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/commandexec/commandexec Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/c3bc58bf-fe17-4e06-b231-415ca4048de7 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/52afba5e-5be9-4727-9467-2b6bca40d7fe Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/commandexec/commandexec.4d53424c4b425244.spl Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/diagwrn.xml Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/Contents0.dir Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-WLAN-AutoConfig%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/setupinfo Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/diagerr.xml Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/84400372-b6db-4852-b387-6ce186eae25b Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/setup.etl Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/setupact.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/setuperr.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/55e46f05-2a1c-4f8f-8254-26482b40c290 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/unattend.xml Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/UnattendGC/diagerr.xml Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/UnattendGC/diagwrn.xml Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/UnattendGC/setuperr.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/UNIC_DEVCON_devconf.txt Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/_s_5EF9.tmp Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/Panther/_s_6600.tmp Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/setupact.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/9ff4c139-5234-410c-b7fa-23ee2fd2ab53 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/setuperr.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/36fbf9f7-0174-4757-bf5c-29dd8e248df9 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/006e650b-c0f4-4da5-adb8-c4bd9a2f842b Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/01693d02-1027-498c-94db-f7e1c3e2f6a3 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/02517402-1b76-4f24-8dab-d65be59386e9 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/OneKey_Recovery.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/modules.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/adec7f16-b143-46c4-aea2-b857c6c1123c Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/02736f5f-8bf0-493a-9285-6fa085788488 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/044c0ecb-d77c-4d85-a7c5-01275585901d Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/163cb38e-5bed-4920-81ba-91c8b9bf688f Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/0491975a-2231-4f7e-a63a-4f2ff41adb9d Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/05293577-d647-4185-b859-c94839a0b2e3 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/0b545118-b563-42fc-8d07-b78f602fcf34 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/0c6409f4-9174-415c-84ac-38611941847b Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/0cda7f67-716f-4559-b04d-b637be0c0e28 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/0d21bbce-5ff6-4613-b62c-48148ca6eaa1 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/0d8a891d-890c-4808-84d8-2f436ab14653 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/1274336e-ab06-46b6-a48c-0671c5557cc6 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/2d95d35a-54ac-40ce-b246-f4ab6d2a6cd8 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/1687544d-7247-4f5a-965a-a6e920e55278 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/18d711af-d919-4ddb-883f-488c7f44c5d6 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Wcmsvc%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/1a4230a2-e136-4936-9b22-ddf624bb8332 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/1effb9c8-b178-41d3-906d-d567219d1b46 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Kernel-EventTracing%4Admin.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/1f56664b-83e2-40a1-ba59-493a08f85d30 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/2085bf56-520d-4951-b7c0-df34af90cc6a Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Kernel-PnPConfig%4Configuration.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/221203ac-ebf6-499e-817e-e0efb5eab1bf Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/df8ff214-d536-45f4-90ec-1767f65dbed4 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/28ff6f6c-ead0-444d-ad78-6bcb91d06e4a Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/2baa7e3e-432b-4794-a2b1-b7f2ce73ddef Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/329d0ff6-145e-4a45-9cbd-cbe6bb2fc8d8 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/34946d56-a8ff-4198-bd85-43fa91981a0f Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/352e6ca0-7314-4df4-89c4-682368d80d57 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/358ee060-bd59-4f93-9741-a57ae6887dc0 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/3b6d8a73-f20b-4c93-b8fb-56a154f172d2 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Shell-Core%4ActionCenter.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/4073eca4-e751-4d54-b6e1-9daa3bcbf179 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/47bfe674-5dfa-4395-b88c-47d28d6e5597 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>PBR.SCP Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/49754026-21e1-41fc-94fd-727afe414fe7 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/5705047a-8b57-4b41-881f-daea70d97a9c Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/570eeead-5a38-4160-952e-01a0464105b1 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/57d2908a-c2c5-4156-bf22-3fdc8e3f83ba Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/c4ae3c3e-c327-4689-b6fd-c11fb31ae88b Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/5a3fb241-0b11-4ea5-bc66-0d9f1b406040 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/e288921a-4336-4dea-a1a6-6f3e6a856e5c Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/62e0ad22-a8d6-4270-b8c5-04f51a8bd8fa Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/668f8557-652d-433b-9cd3-cb95162f402d Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/67d35eb5-a929-4b08-b1b8-135fe34b8d3b Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>removeC.bat Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Ntfs%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/6a707146-5b1c-4162-b148-121bf3d107e1 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/cd5b361c-450c-456e-af2c-b490d5ad4938 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/6d21c8e9-c77f-4ee7-9252-2d30c930528a Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/6f02587f-8a2b-4552-97f6-deef229e335b Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/WMI/LwtNetLog.etl Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/73b1b253-ce67-4501-ae1a-377dd1d68b65 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/73d1388c-336e-40ec-b0b4-62cb862af2be Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/bt.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/73f931aa-0e5b-4c84-b943-ffd06be0e804 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/77f1d869-6e65-4079-a2a0-e2023408ef97 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/7a1ca63a-3611-4e61-aafa-1b56f8746f3a Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/7cb1c992-e560-45e7-88d5-d54c54e642a0 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/81a56ce6-601c-4260-9e89-c2ece15ac668 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/c1871b11-4a68-44d9-98b3-ee63b16d29e1 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/81ade2cf-6a20-45db-8231-3f41276e391d Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/86c209a4-74bb-48fe-b626-53ee71a07511 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/872d0e53-fd2e-41e3-b431-698af82882ce Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/8ed637a0-c900-4c3e-916d-3acacd92bbd4 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/92908369-ccf2-493a-85ab-05a9f8e620b0 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/94e12419-82b1-4d1e-9def-5a2959b6c0b0 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/9582a7bc-71c4-499c-a162-d32317301af7 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/96b095bb-12cf-465e-9072-863ba0f5696e Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/9ae37d28-4d53-45a9-970d-a57242f1a84f Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Kernel-Power%4Thermal-Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/9b3a5d95-1ae4-45de-9991-05bd06f89d25 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/9c8e21c9-6ab1-4d66-8df5-73af5359b24e Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/a2e6af92-a27e-48c6-9213-2231e259b7df Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/a44a1624-c719-4a46-8833-aa65471469c9 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-UserPnp%4ActionCenter.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Shell-Core%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-AppModel-Runtime%4Admin.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/a5480e25-af71-4b88-a76e-c9c3ba1588ee Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/a693a6e9-fb8c-46ca-932b-88dc7684be1c Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/aaa89daf-1b4f-447d-af21-7f0559ac9962 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Windows Firewall With Advanced Security%4ConnectionSecurity.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/b77224c0-94b5-4c17-8031-c0b10585f172 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/LAN.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/b7992938-01f1-4f40-a0ec-0d23d2f0f152 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Windows Firewall With Advanced Security%4Firewall.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/ba48fccd-f364-42bf-b684-e7b4dcc4d3d1 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/bc537794-54f5-4702-8ceb-06f584ecd24a Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/da6f0bdb-7e59-4edc-97b4-9c98c18ff800 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/bd50f9d1-96f6-4cfa-a79f-701151c176d3 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Application.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/e64595d9-e1af-4e09-8d36-1721fc82aee3 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/be219048-0fb3-4427-9037-b7176b708a35 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/c2599556-050c-48b7-98e3-cd224a313fe3 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/c371f25e-745f-4a1e-bef3-959161b56258 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/cbd3ef37-0e38-431a-a6e8-607c56893a63 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/cc7e9366-cf26-4dc9-a66c-3eab252649e1 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Bits-Client%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/ccfebb07-718e-418a-804e-3e5593d0793f Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Audio%4PlaybackManager.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/cd3f71a5-25da-4a71-b641-3b0b338d3b10 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Windows PowerShell.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/ce2de968-e342-40d7-9566-427d45e4a886 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/d88fec9e-a82a-46f9-87e2-b6b97b301c1a Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/ce6fe823-2dcd-4c7e-aafc-209e5f199b69 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/cfd7c21a-808b-487b-a6ec-8a10e44e8360 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/d00e7cb4-f82a-4a72-ab0f-7bb86dca6f2f Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/db6798e2-7da8-4ae6-8d2c-6bd29e32ddb0 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/d1d8f1ba-2e8d-4582-8cb7-7777c9e26e39 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/d6f4a061-cefb-4f38-81ec-6e80ecdd3011 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/da46820f-ff8a-4b5e-a6b2-b12185dcfffb Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/dcf2d225-a323-4eea-8684-cdd53e02ba70 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-VPN%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/e075ac73-7fc0-4acd-9f28-dd590c391c1c Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/e131c6a0-5ffc-419b-abfa-ce4cb36cde8a Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/plaction.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/e150a263-b986-433b-9b2c-153b02f804af Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>PRESTAT.bat Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-NCSI%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/e367590c-10f8-4401-b924-5839261dc94e Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/e5a0f734-72f6-4b0c-9566-7e5b74a6b1c0 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/e6d378fa-e068-4bcb-80de-56d43a249507 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/e8cc75dc-a5f5-4267-bd93-8a3479d0a822 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Setup.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/e90afe1c-4fde-42aa-955f-3b9edf653c66 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/edcad10e-42b8-45f3-aaef-de86f7373643 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/f15e0568-c1da-446e-86c9-4af3857badf7 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/SCM.EVM.3 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/f3033906-e419-4ca4-aaa0-8e9b8b3154e2 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/f61c1098-6385-4992-9119-ce0f68340314 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/f62d3a5b-5e2e-4305-a06a-a7ce9de361b0 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/f67c3c3c-2ee9-498e-a0d8-aa09f8787fb1 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>size.add Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/SCM.EVM.1 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/SCM.EVM.4 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/Scm/SCM.EVM.5 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/SQM/SQMLogger.etl.001 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/SQM/SQMLogger.etl.002 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Audio%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/SQM/SQMLogger.etl.003 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-SMBServer%4Security.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/SQM/SQMLogger.etl.004 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/SQM/SQMLogger.etl.005 Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/WindowsUpdate.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/LogFiles/WMI/FamilySafetyAOT.etl Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/sysprep/Panther/IE/diagerr.xml Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/sysprep/Panther/IE/diagwrn.xml Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-WorkFolders%4WHC.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Dhcp-Client%4Admin.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/sysprep/Panther/IE/setuperr.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/HardwareEvents.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Key Management Service.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Application-Experience%4Program-Compatibility-Assistant.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-International%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Diagnosis-PCW%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Application-Experience%4Program-Compatibility-Troubleshooter.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Application-Experience%4Program-Inventory.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Application-Experience%4Program-Telemetry.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-AppReadiness%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-AppXDeploymentServer%4Restricted.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Audio%4CaptureMonitor.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Audio%4GlitchDetection.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/WLAN.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-CoreApplication%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Crypto-DPAPI%4BackUpKeySvc.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Crypto-DPAPI%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-DeviceSetupManager%4Admin.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-DeviceSetupManager%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Dhcpv6-Client%4Admin.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Kernel-ShimEngine%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Diagnosis-DPS%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Diagnostics-Performance%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Kernel-Boot%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Kernel-PnP%4Configuration.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Kernel-StoreMgr%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Kernel-WHEA%4Errors.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-PowerShell%4Admin.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Known Folders API Service.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-MUI%4Admin.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>removeS.bat Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-MUI%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-NetworkProfile%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Ntfs%4WHC.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-PrintService%4Admin.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-ReadyBoost%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Resource-Exhaustion-Detector%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-RestartManager%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-SmbClient%4Connectivity.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-SMBClient%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-SmbClient%4Security.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-SMBServer%4Connectivity.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-SMBServer%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-TerminalServices-LocalSessionManager%4Admin.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-TerminalServices-LocalSessionManager%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-User Profile Service%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-UserPnp%4DeviceInstall.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>PART.LOG Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Windows Defender%4WHC.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/camera.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-WindowsSystemAssessmentTool%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-WindowsUpdateClient%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-WinINet-Config%4ProxyConfigChanged.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-Winlogon%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-Windows-WMI-Activity%4Operational.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Microsoft-WS-Licensing%4Admin.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/Security.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>OS/Windows/System32/winevt/Logs/System.evtx Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>PART.SCP Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/ANSI_DEVCON_devconf.txt Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/AppTag.txt Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/AUDIO.LOG Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/chipset.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/BackupFolder.txt Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/BrowserGuard.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/CardReader.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/Chipset1.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/devconf.txt Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/IntelRST_MSI.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/IntelVGA.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/lsc.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/iRST.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/KB2938327_UpdateLang.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/LP.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/mcafee.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/MEI.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/NitroPDF.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/PowerDVD10_DVD.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/UNIC_msinfo_devconf.txt Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>Preload/UNIC_power_devconf.txt Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>removeC.scp Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>removeS.scp Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>removeW.bat Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>tester.log Password-protected Not scanned (file was password-protected) File: C:\FRST\Quarantine\C\Windows\MFGSTAT.zip.xBAD=>thedcp.dat Password-protected Not scanned (file was password-protected) [-]Detailed Scan Summary [-]Basic Scanned items : 1606240 Infected items : 0 (no infected items have been detected) Suspicious items : 0 (no suspected items have been detected) Resolved items : 0 (no threats have been detected during this scan) Unresolved items : 0 (no issues remained unresolved) [+]Advanced [+]Scan Options |
27.06.2015, 15:41 | #33 |
/// TB-Ausbilder | Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar Hast du Delfix nicht laufen lassen ?
__________________Die Reihenfolge ist hier entscheidend.
__________________ |
28.06.2015, 08:18 | #34 |
| Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar jetzt erinnere ich mich. bei defogger wusste ich nicht was das ist und das combofix geht nicht. da sagt der pc konnte nicht gefunden werden. wie gehe ich denn jetzt nochmal vor? kannst du mir die schritte nochmal posten? |
29.06.2015, 10:45 | #35 |
/// TB-Ausbilder | Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar Lass Defogger+Combofix, wichtig ist, das DelFix durchgelaufen ist. Das löscht die verwendeten Tools sowie die FRst Quarantäne, die von Bitdefender gemeldet wird.
__________________ Lerne, zurück zu schlagen und unterstütze uns! TB Akademie | Spende | Lob & Kritik |
30.06.2015, 19:22 | #36 |
| Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbarCode:
ATTFilter BitDefender Log File Product : Bitdefender Total Security 2015 Scanning task : System-Scan Log date : Dienstag, 30. Juni 2015 19:40:08 Log path : C:\ProgramData\Bitdefender\Desktop\Profiles\Logs\dcf483c4-26d0-4e6f-ba28-6a53a00adae1\1435683434_1_01.xml Scan Paths: Path : C:\ Path : D:\ [-]Scan Results [-]Objects that were not scanned: Object Path Reason Final Status File: C:\System Volume Information\{3808876b-c176-4e48-b7ae-04046e6cc752} (object was not found) File: C:\System Volume Information\{e6dac26a-1c3d-11e5-827a-28d244d27e3f}{3808876b-c176-4e48-b7ae-04046e6cc752} (object was not found) File: C:\Program Files (x86)\InstallShield Installation Information\{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}\SupportFiles.7z=>ProjectManager/library.zip Password-protected Not scanned (file was password-protected) [-]Detailed Scan Summary [-]Basic Scanned items : 609458 Infected items : 0 (no infected items have been detected) Suspicious items : 0 (no suspected items have been detected) Resolved items : 0 (no threats have been detected during this scan) Unresolved items : 0 (no issues remained unresolved) [+]Advanced [+]Scan Options |
01.07.2015, 07:44 | #37 |
/// TB-Ausbilder | Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar Das gefundene ist allerdings total harmlos, wenns dich stört dann mach den Fix. Das passwort geschützte gehört zu Cyberlink PowerDirector, höchstwahrscheinlich zu Reparaturzwecken. Falls du den Fix durchführst: Der Rechner wird bei Ausführen des Fix neu starten und eine Dateiüberprüfung laufen lassen. Lass es durchlaufen und im Anschluss kannst du nochmal mit Bitdefender prüfen. Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter C:\Program Files (x86)\InstallShield Installation Information\{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}\SupportFiles.7z=>ProjectManager/library.zip cmd: chkdsk c: /F /R /X reboot: Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
__________________ Lerne, zurück zu schlagen und unterstütze uns! TB Akademie | Spende | Lob & Kritik |
05.07.2015, 11:42 | #38 |
| Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbarFRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:04-07-2015 Ran by Petra (administrator) on LENOVO-PC on 05-07-2015 12:32:16 Running from C:\Users\Petra\Downloads Loaded Profiles: UpdatusUser & Petra (Available Profiles: UpdatusUser & Petra) Platform: Windows 8.1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 (Default browser: FF) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: FRST Tutorial - How to use Farbar Recovery Scan Tool - Geeks to Go Forum ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\vsserv.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe (Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (LENOVO INCORPORATED.) C:\Program Files\Lenovo\iMController\SystemAgentService.exe () C:\Program Files\Lenovo PhoneCompanion\LPAWDService.exe (Lenovo(beijing) Limited) C:\Windows\System32\LenovoWiFiHotspotSvr.exe (Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Lenovo Updates\LUService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (Lenovo) C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionPusher.exe () C:\Program Files\CyberLink\Shared files\RichVideo64.exe (Conexant Systems, Inc.) C:\Windows\SysWOW64\SASrv.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\psia.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\updatesrv.exe () C:\Program Files (x86)\Lenovo\Lenovo VeriFace Pro\VfConnectorService.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\sua.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe () C:\Program Files\Lenovo PhoneCompanion\adb.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe (Intel Corporation) C:\Windows\System32\igfxTray.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe () C:\Program Files\CONEXANT\ForteConfig\fmapp.exe (Realtek semiconductor) C:\Windows\RTFTrack.exe (Lenovo) C:\Program Files\Lenovo PhoneCompanion\Phone Companion.exe (Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe (Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Manager\utility.exe (Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\bdagent.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxag.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe () C:\Program Files (x86)\Vidalia Bridge Bundle\Vidalia\vidalia.exe (Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe (Secunia) C:\Program Files (x86)\Secunia\PSI\psi_tray.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (CyberLink Corp.) C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe (Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe (Lenovo) C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe (Bitdefender) C:\Program Files\Bitdefender\Bitdefender 2015\seccenter.exe (Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [Nvtmru] => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028384 2013-10-18] (NVIDIA Corporation) HKLM\...\Run: [ForteConfig] => C:\Program Files\Conexant\ForteConfig\fmapp.exe [49056 2010-10-26] () HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1830616 2014-04-10] (Conexant Systems, Inc.) HKLM\...\Run: [RtsFT] => C:\WINDOWS\RTFTrack.exe [6340312 2014-01-22] (Realtek semiconductor) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2808560 2014-08-08] (Synaptics Incorporated) HKLM\...\Run: [PhoneCompanion] => C:\Program Files\Lenovo PhoneCompanion\Phone Companion.exe [802800 2014-09-04] (Lenovo) HKLM\...\Run: [Energy Manager] => C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe [16094704 2014-09-04] (Lenovo(beijing) Limited) HKLM\...\Run: [Lenovo Utility] => C:\Program Files (x86)\Lenovo\Energy Manager\Utility.exe [10841584 2014-09-04] (Lenovo(beijing) Limited) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [169768 2015-04-07] (Apple Inc.) HKLM\...\Run: [Bdagent] => C:\Program Files\Bitdefender\Bitdefender 2015\bdagent.exe [1691112 2015-03-12] (Bitdefender) HKLM-x32\...\Run: [UpdateP2GShortCut] => C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [214312 2011-12-06] (CyberLink Corp.) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1022152 2014-12-19] (Adobe Systems Incorporated) HKU\S-1-5-21-2313430980-499788672-1817343724-1002\...\Run: [Bitdefender-Geldbörse-Agent] => C:\Program Files\Bitdefender\Bitdefender 2015\bdwtxag.exe [790880 2015-01-15] (Bitdefender) HKU\S-1-5-21-2313430980-499788672-1817343724-1002\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [28785792 2015-06-02] (Skype Technologies S.A.) HKU\S-1-5-21-2313430980-499788672-1817343724-1002\...\Run: [Vidalia] => C:\Program Files (x86)\Vidalia Bridge Bundle\Vidalia\vidalia.exe [6239727 2014-07-29] () HKU\S-1-5-21-2313430980-499788672-1817343724-1002\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\Bubbles.scr [788480 2014-10-29] (Microsoft Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2014-09-04] ShortcutTarget: Bluetooth.lnk -> C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe (Broadcom Corporation.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Secunia PSI Tray.lnk [2015-06-18] ShortcutTarget: Secunia PSI Tray.lnk -> C:\Program Files (x86)\Secunia\PSI\psi_tray.exe (Secunia) Startup: C:\Users\Petra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk [2015-04-29] ShortcutTarget: OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk -> C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation) ShellIconOverlayIdentifiers: [__SafeBox1] -> {152C96EB-288E-4EDC-B7C6-D21F8250ADF3} => C:\Program Files\Bitdefender\Bitdefender SafeBox\SafeBoxShell.dll [2014-07-04] (Bitdefender) ShellIconOverlayIdentifiers: [__SafeBox2] -> {342DAA0B-D796-460D-8566-901E08A1CCAD} => C:\Program Files\Bitdefender\Bitdefender SafeBox\SafeBoxShell.dll [2014-07-04] (Bitdefender) ShellIconOverlayIdentifiers: [__SafeBox3] -> {57595DAE-1AE1-4D97-A49E-67CBB53B52DF} => C:\Program Files\Bitdefender\Bitdefender SafeBox\SafeBoxShell.dll [2014-07-04] (Bitdefender) ShellIconOverlayIdentifiers: [__SafeBox4] -> {33816773-98AE-4723-ADE0-EBE54C8B5A67} => C:\Program Files\Bitdefender\Bitdefender SafeBox\SafeBoxShell.dll [2014-07-04] (Bitdefender) CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = Google HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = HKU\S-1-5-21-2313430980-499788672-1817343724-1002\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-2313430980-499788672-1817343724-1002\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = Lenovo Deutschland: Computer, Notebooks, Tablets & Mehr | Lenovo (DE) URLSearchHook: [S-1-5-21-2313430980-499788672-1817343724-1001] ATTENTION ==> Default URLSearchHook is missing SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-2313430980-499788672-1817343724-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Bitdefender-Geldbörse -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender 2015\pmbxie.dll [2015-01-28] (Bitdefender) BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (Microsoft Corporation) BHO-x32: Bitdefender-Geldbörse -> {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} -> C:\Program Files\Bitdefender\Bitdefender 2015\Antispam32\pmbxie.dll [2015-01-28] (Bitdefender) BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation) Toolbar: HKLM - Bitdefender-Geldbörse - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender 2015\pmbxie.dll [2015-01-28] (Bitdefender) Toolbar: HKLM-x32 - Bitdefender-Geldbörse - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender 2015\Antispam32\pmbxie.dll [2015-01-28] (Bitdefender) Toolbar: HKU\S-1-5-21-2313430980-499788672-1817343724-1002 -> Bitdefender-Geldbörse - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender 2015\pmbxie.dll [2015-01-28] (Bitdefender) Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (Microsoft Corporation) Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{348602B9-F28F-4E23-9375-3D45D3A27764}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{B7AAC55F-53CB-48AF-8CBC-B4B01A0F27D3}: [DhcpNameServer] 150.212.1.3 FireFox: ======== FF ProfilePath: C:\Users\Petra\AppData\Roaming\Mozilla\Firefox\Profiles\wctd707o.default-1433060820093 FF Homepage: Google FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-09-17] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-09-17] (Intel Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corp.) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-19] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-19] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-05-01] (Adobe Systems Inc.) FF SearchPlugin: C:\Users\Petra\AppData\Roaming\Mozilla\Firefox\Profiles\wctd707o.default-1433060820093\searchplugins\google-images.xml [2015-06-07] FF SearchPlugin: C:\Users\Petra\AppData\Roaming\Mozilla\Firefox\Profiles\wctd707o.default-1433060820093\searchplugins\google-maps.xml [2015-06-07] FF Extension: NoScript - C:\Users\Petra\AppData\Roaming\Mozilla\Firefox\Profiles\wctd707o.default-1433060820093\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2015-06-18] FF Extension: Adblock Plus - C:\Users\Petra\AppData\Roaming\Mozilla\Firefox\Profiles\wctd707o.default-1433060820093\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-06-18] FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2015-07-03] FF HKLM\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender 2015\bdtbext FF Extension: Bitdefender Antispam Toolbar - C:\Program Files\Bitdefender\Bitdefender 2015\bdtbext [2015-04-26] FF HKLM-x32\...\Firefox\Extensions: [bdwteff@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender 2015\antispam32\bdwteff FF Extension: Bitdefender Wallet - C:\Program Files\Bitdefender\Bitdefender 2015\antispam32\bdwteff [2015-04-26] FF HKLM-x32\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender 2015\bdtbext Chrome: ======= CHR Profile: C:\Users\Petra\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Docs) - C:\Users\Petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-04-27] CHR Extension: (Google Drive) - C:\Users\Petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-04-27] CHR Extension: (YouTube) - C:\Users\Petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-04-27] CHR Extension: (Google Search) - C:\Users\Petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-04-27] CHR Extension: (Bitdefender Wallet) - C:\Users\Petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\fabcmochhfpldjekobfaaggijgohadih [2015-04-27] CHR Extension: (Skype Click to Call) - C:\Users\Petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-05-25] CHR Extension: (Google Wallet) - C:\Users\Petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-04-27] CHR Extension: (Gmail) - C:\Users\Petra\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-27] CHR HKLM-x32\...\Chrome\Extension: [fabcmochhfpldjekobfaaggijgohadih] - https://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2015-05-01] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-01-19] (Apple Inc.) S2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2251992 2013-11-14] (Broadcom Corporation.) S3 BdDesktopParental; C:\Program Files\Bitdefender\Bitdefender 2015\bdparentalservice.exe [78144 2014-12-09] (Bitdefender) S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-29] (Microsoft Corporation) R2 btwdins; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [976600 2014-05-05] (Broadcom Corporation.) R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1394816 2015-05-01] (Microsoft Corporation) R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1772672 2015-05-01] (Microsoft Corporation) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [16232 2014-02-26] (Intel Corporation) R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [315352 2014-05-22] (Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [File not signed] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-17] (Intel Corporation) S3 Lenovo EasyPlus Hotspot; C:\Program Files (x86)\Common Files\lenovo\easyplussdk\bin\EPHotspot64.exe [533760 2014-06-03] (Lenovo) R2 Lenovo System Agent Service; C:\Program Files\Lenovo\iMController\SystemAgentService.exe [584960 2014-05-21] (LENOVO INCORPORATED.) R2 LenovoPAWDService; C:\Program Files\Lenovo PhoneCompanion\LPAWDService.exe [133440 2014-09-04] () R2 LenovoWiFiHotspotSvr; C:\Windows\System32\LenovoWiFiHotspotSvr.exe [198192 2014-09-04] (Lenovo(beijing) Limited) S3 LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [272440 2015-03-09] (Lenovo) R2 LUService; C:\Program Files (x86)\Lenovo\Lenovo Updates\LUService.exe [38896 2014-02-17] (Lenovo(beijing) Limited) S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation) R2 PhoneCompanionPusher; C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionPusher.exe [321520 2014-09-04] (Lenovo) S3 PhoneCompanionVap; C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionVap.exe [338416 2014-09-04] (Lenovo) R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [390632 2012-04-25] () S4 SafeBox; C:\Program Files\Bitdefender\Bitdefender SafeBox\safeboxservice.exe [94624 2013-07-08] (Bitdefender) R2 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1228504 2013-07-03] (Secunia) R2 Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [660184 2013-07-03] (Secunia) R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [190704 2014-08-08] (Synaptics Incorporated) R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender 2015\updatesrv.exe [67320 2014-10-27] (Bitdefender) R2 VeriFaceSrv; C:\Program Files (x86)\Lenovo\Lenovo VeriFace Pro\VfConnectorService.exe [68880 2014-09-04] () R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender 2015\vsserv.exe [1547936 2015-03-16] (Bitdefender) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R0 avc3; C:\Windows\System32\DRIVERS\avc3.sys [1306464 2015-01-14] (BitDefender) R3 avchv; C:\Windows\system32\DRIVERS\avchv.sys [262544 2015-01-23] (BitDefender) R3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [677104 2015-01-14] (BitDefender) R3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170712 2013-11-14] (Broadcom Corporation.) R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [7504560 2013-11-19] (Broadcom Corporation) S0 bdelam; C:\Windows\System32\drivers\bdelam.sys [23568 2013-09-08] (Bitdefender) R1 BdfNdisf; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfndisf6.sys [98768 2014-12-15] (BitDefender LLC) R1 bdfwfpf; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys [107008 2013-07-29] (BitDefender LLC) S3 bdfwfpf_pc; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf_pc.sys [121928 2013-07-02] (Bitdefender SRL) R1 BDVEDISK; C:\Windows\system32\DRIVERS\bdvedisk.sys [79192 2013-07-30] (BitDefender) S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-03-18] (Microsoft Corporation) R0 gzflt; C:\Windows\System32\DRIVERS\gzflt.sys [160544 2015-02-24] (BitDefender LLC) R3 KMDFVirtualKbd; C:\Windows\System32\drivers\KMDFVirtualKbd.sys [22264 2014-08-04] () R3 KMDFVirtualMouse; C:\Windows\System32\drivers\KMDFVirtualMouse.sys [21240 2014-08-04] () S3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation) S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-06-18] (Malwarebytes Corporation) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-17] (Intel Corporation) S3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew02.sys [4649440 2013-06-18] (Intel Corporation) R3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2013-07-03] (Secunia) R3 rtsuvc; C:\Windows\system32\DRIVERS\rtsuvc.sys [9105624 2014-01-22] (Realtek Semiconductor Corp.) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [31472 2014-08-08] (Synaptics Incorporated) R0 trufos; C:\Windows\System32\DRIVERS\trufos.sys [452040 2014-10-15] (BitDefender S.R.L.) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation) S3 wsvd; C:\Windows\system32\DRIVERS\wsvd.sys [102376 2012-06-13] ("CyberLink) ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One Month Created files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2015-07-05 10:06 - 2015-07-05 12:32 - 00023127 _____ C:\Users\Petra\Downloads\FRST.txt 2015-07-04 12:37 - 2015-07-05 12:32 - 00000000 ____D C:\FRST 2015-07-04 12:30 - 2015-07-04 12:30 - 02112512 _____ (Farbar) C:\Users\Petra\Downloads\FRST64.exe 2015-07-04 12:25 - 2015-07-04 12:31 - 00000000 ____D C:\AdwCleaner 2015-07-03 22:36 - 2015-07-04 12:32 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2015-06-29 17:59 - 2015-06-29 17:59 - 02244096 _____ C:\Users\Petra\Downloads\AdwCleaner_4.207.exe 2015-06-29 17:56 - 2015-06-29 17:56 - 00000000 ____D C:\WINDOWS\ERUNT 2015-06-29 17:55 - 2015-06-29 17:56 - 00001173 _____ C:\DelFix.txt 2015-06-20 22:18 - 2015-06-20 22:18 - 00082824 _____ (BitDefender SRL) C:\WINDOWS\system32\Drivers\bdsandbox.sys 2015-06-18 21:39 - 2015-05-29 15:25 - 00561922 _____ C:\Users\Petra\Downloads\noscript_security_suite-2.6.9.26-sm+fn+fx.xpi 2015-06-18 21:37 - 2015-05-29 15:16 - 00946636 _____ C:\Users\Petra\Downloads\adblock_plus-2.6.9-an+sm+tb+fx.xpi 2015-06-18 21:36 - 2015-06-18 21:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2015-06-18 21:36 - 2015-06-18 21:38 - 00001016 _____ C:\Users\Petra\Desktop\WinRAR.lnk 2015-06-18 21:36 - 2015-06-18 21:38 - 00000000 ____D C:\Users\Petra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2015-06-18 21:36 - 2015-06-18 21:38 - 00000000 ____D C:\Program Files\WinRAR 2015-06-18 21:36 - 2015-06-18 21:36 - 00000000 ____D C:\Users\Petra\AppData\Roaming\WinRAR 2015-06-18 21:35 - 2015-06-18 21:35 - 01915800 _____ C:\Users\Petra\Downloads\winrar-x64-510.exe 2015-06-18 21:18 - 2015-06-18 21:18 - 00561331 _____ C:\Users\Petra\Downloads\noscript_security_suite-2.6.9.26-sm_fn_fx(1).zip 2015-06-18 21:04 - 2015-06-26 21:53 - 00000000 ____D C:\Program Files (x86)\SpywareBlaster 2015-06-18 21:04 - 2015-06-18 21:04 - 00001102 _____ C:\Users\Public\Desktop\SpywareBlaster.lnk 2015-06-18 21:04 - 2015-06-18 21:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpywareBlaster 2015-06-18 21:04 - 2015-06-18 21:04 - 00000000 ____D C:\ProgramData\Licenses 2015-06-18 21:00 - 2015-06-18 21:00 - 00895965 _____ C:\Users\Petra\Downloads\adblock_plus-2.6.9-an_sm_tb_fx.zip 2015-06-18 20:59 - 2015-06-18 20:59 - 00561331 _____ C:\Users\Petra\Downloads\noscript_security_suite-2.6.9.26-sm_fn_fx.zip 2015-06-18 20:58 - 2015-06-18 20:58 - 04095448 _____ (BrightFort LLC ) C:\Users\Petra\Downloads\spywareblastersetup50.exe 2015-06-18 20:32 - 2015-07-04 12:39 - 00002216 _____ C:\WINDOWS\SecuniaPackage.log 2015-06-18 20:28 - 2015-06-18 20:28 - 00001096 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Secunia PSI.lnk 2015-06-18 20:28 - 2015-06-18 20:28 - 00000000 ____D C:\Users\Petra\AppData\Local\Secunia PSI 2015-06-18 20:28 - 2015-06-18 20:28 - 00000000 ____D C:\Program Files (x86)\Secunia 2015-06-17 21:10 - 2015-06-17 21:10 - 00002052 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IncrediMail.lnk 2015-06-17 21:10 - 2015-06-17 21:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2015-06-17 21:09 - 2015-06-17 21:09 - 00000000 ____D C:\Program Files (x86)\IncrediMail 2015-06-14 20:09 - 2015-06-14 20:12 - 00015872 ___SH C:\Users\Petra\Downloads\Thumbs.db 2015-06-14 20:06 - 2015-06-16 19:15 - 00000000 ____D C:\ProgramData\WinZip 2015-06-14 20:06 - 2015-06-14 20:06 - 00000000 ____D C:\Users\Petra\Documents\Add-in Express 2015-06-12 15:05 - 2015-06-12 15:05 - 00000207 _____ C:\WINDOWS\tweaking.com-regbackup-LENOVO-PC-Windows-8.1-(64-bit).dat 2015-06-11 23:17 - 2015-07-05 11:29 - 00113880 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2015-06-11 23:17 - 2015-07-05 11:28 - 00001125 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2015-06-11 23:17 - 2015-07-05 11:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-06-11 23:17 - 2015-07-05 11:28 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-06-11 23:17 - 2015-06-18 08:42 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2015-06-11 23:17 - 2015-06-18 08:41 - 00109272 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2015-06-11 23:17 - 2015-06-18 08:41 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2015-06-11 23:17 - 2015-06-11 23:17 - 00000000 ____D C:\ProgramData\Malwarebytes 2015-06-11 11:54 - 2015-06-11 11:54 - 00000000 ____D C:\Users\Petra\AppData\Roaming\Nico Mak Computing 2015-06-11 11:54 - 2015-06-11 11:54 - 00000000 ____D C:\ProgramData\Nico Mak Computing 2015-06-11 10:03 - 2015-05-25 15:23 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcResources.dll 2015-06-11 10:03 - 2015-05-25 15:07 - 01430528 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2015-06-11 10:03 - 2015-05-22 15:08 - 00700416 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2015-06-11 10:03 - 2015-05-21 15:08 - 01119232 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2015-06-11 10:03 - 2015-05-21 15:08 - 01020928 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2015-06-11 10:03 - 2015-05-21 15:08 - 00756736 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2015-06-11 10:03 - 2015-05-21 15:08 - 00422912 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2015-06-11 10:03 - 2015-05-21 15:08 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll 2015-06-11 10:03 - 2015-05-21 15:08 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2015-06-11 10:03 - 2015-04-25 04:34 - 00653824 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll 2015-06-11 10:03 - 2015-04-25 04:33 - 00549888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll 2015-06-11 10:03 - 2015-04-17 00:07 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll 2015-06-11 10:03 - 2015-04-16 08:17 - 00325464 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS 2015-06-11 10:03 - 2015-04-14 00:37 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\authz.dll 2015-06-11 10:03 - 2015-04-14 00:34 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authz.dll 2015-06-11 10:03 - 2015-04-10 02:40 - 01249280 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll 2015-06-11 10:03 - 2015-04-10 02:17 - 01018880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll 2015-06-11 10:03 - 2015-04-09 00:41 - 00158720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rgb9rast.dll 2015-06-11 10:03 - 2015-04-09 00:07 - 00410336 _____ C:\WINDOWS\system32\ApnDatabase.xml 2015-06-11 10:03 - 2015-04-02 00:42 - 03097600 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll 2015-06-11 10:03 - 2015-04-02 00:30 - 02483712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll 2015-06-11 10:03 - 2015-04-01 06:21 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe 2015-06-11 10:03 - 2015-04-01 06:18 - 00468480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll 2015-06-11 10:03 - 2015-04-01 06:17 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssphtb.dll 2015-06-11 10:03 - 2015-04-01 06:08 - 00774144 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll 2015-06-11 10:03 - 2015-04-01 05:46 - 03633664 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2015-06-11 10:03 - 2015-04-01 05:17 - 02551808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2015-06-11 10:03 - 2015-04-01 05:17 - 00903168 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe 2015-06-11 10:03 - 2015-04-01 04:53 - 00391680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll 2015-06-11 10:03 - 2015-04-01 04:53 - 00272896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe 2015-06-11 10:03 - 2015-04-01 04:45 - 02749952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll 2015-06-11 10:03 - 2015-04-01 04:45 - 00699392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll 2015-06-11 10:03 - 2015-04-01 04:14 - 01920000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll 2015-06-11 10:03 - 2015-04-01 04:12 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe 2015-06-11 10:03 - 2015-03-20 05:49 - 00309760 _____ (Microsoft Corporation) C:\WINDOWS\system32\compstui.dll 2015-06-11 10:03 - 2015-03-20 05:08 - 00477184 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll 2015-06-11 10:03 - 2015-03-20 04:37 - 00367104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll 2015-06-11 10:03 - 2015-03-20 04:07 - 01091072 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2015-06-11 10:03 - 2015-03-02 03:43 - 00222208 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastapi.dll 2015-06-11 10:03 - 2015-03-02 03:21 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastapi.dll 2015-06-11 10:02 - 2015-05-27 16:35 - 24917504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2015-06-11 10:02 - 2015-05-27 16:08 - 19607040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2015-06-11 10:02 - 2015-05-23 05:15 - 00503808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2015-06-11 10:02 - 2015-05-23 05:14 - 00341504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\html.iec 2015-06-11 10:02 - 2015-05-23 05:10 - 02278912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2015-06-11 10:02 - 2015-05-23 05:05 - 00664064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2015-06-11 10:02 - 2015-05-23 05:04 - 00620032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll 2015-06-11 10:02 - 2015-05-23 04:48 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll 2015-06-11 10:02 - 2015-05-23 04:47 - 04305920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2015-06-11 10:02 - 2015-05-23 04:47 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll 2015-06-11 10:02 - 2015-05-23 04:47 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll 2015-06-11 10:02 - 2015-05-23 04:43 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll 2015-06-11 10:02 - 2015-05-23 04:38 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2015-06-11 10:02 - 2015-05-23 04:38 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2015-06-11 10:02 - 2015-05-23 04:37 - 02052608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2015-06-11 10:02 - 2015-05-23 04:28 - 12829696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2015-06-11 10:02 - 2015-05-23 04:28 - 01042944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll 2015-06-11 10:02 - 2015-05-23 04:20 - 01950720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2015-06-11 10:02 - 2015-05-23 04:16 - 01309696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2015-06-11 10:02 - 2015-05-23 04:14 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2015-06-11 10:02 - 2015-05-22 21:00 - 02885632 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2015-06-11 10:02 - 2015-05-22 21:00 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2015-06-11 10:02 - 2015-05-22 21:00 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec 2015-06-11 10:02 - 2015-05-22 20:52 - 06026240 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2015-06-11 10:02 - 2015-05-22 20:48 - 00633856 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll 2015-06-11 10:02 - 2015-05-22 20:47 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2015-06-11 10:02 - 2015-05-22 20:47 - 00814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2015-06-11 10:02 - 2015-05-22 20:24 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2015-06-11 10:02 - 2015-05-22 20:23 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll 2015-06-11 10:02 - 2015-05-22 20:21 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll 2015-06-11 10:02 - 2015-05-22 20:15 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll 2015-06-11 10:02 - 2015-05-22 20:09 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll 2015-06-11 10:02 - 2015-05-22 20:08 - 00374272 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2015-06-11 10:02 - 2015-05-22 20:06 - 00801280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2015-06-11 10:02 - 2015-05-22 20:05 - 02125824 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2015-06-11 10:02 - 2015-05-22 19:57 - 14404096 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2015-06-11 10:02 - 2015-05-22 19:50 - 02426880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2015-06-11 10:02 - 2015-05-22 19:49 - 02865152 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll 2015-06-11 10:02 - 2015-05-22 19:38 - 01545728 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2015-06-11 10:02 - 2015-05-22 19:26 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2015-06-11 10:02 - 2015-05-21 18:47 - 04177920 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2015-06-08 18:36 - 2015-06-09 18:44 - 00029184 _____ C:\Users\Petra\Documents\Wasserzähler_Wohnungen.xls 2015-06-08 18:24 - 2015-06-08 18:35 - 00013804 _____ C:\Users\Petra\Documents\Wasserzähler_Wohnungen.xlsx 2015-06-07 16:54 - 2015-06-07 16:53 - 00092330 _____ C:\Users\Petra\Documents\1433672912_1_02.xml 2015-06-07 12:08 - 2014-04-16 01:34 - 00029888 _____ (Microsoft Corporation) C:\WINDOWS\system32\aspnet_counters.dll 2015-06-07 12:07 - 2015-06-07 12:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Live Add-in 2015-06-07 12:07 - 2014-04-16 01:35 - 00028352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aspnet_counters.dll 2015-06-07 11:46 - 2015-06-18 21:09 - 00000000 ____D C:\Users\Petra\AppData\Temp 2015-06-06 18:04 - 2015-07-05 10:04 - 00000000 ____D C:\Users\Petra\AppData\Local\Vidalia 2015-06-06 18:04 - 2015-07-05 01:27 - 00000000 ____D C:\Users\Petra\AppData\Roaming\tor 2015-06-06 18:04 - 2015-06-06 18:04 - 00000000 ____D C:\Users\Petra\AppData\Local\Tor 2015-06-06 18:04 - 2015-06-06 18:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vidalia Bridge Bundle 2015-06-06 18:04 - 2015-06-06 18:04 - 00000000 ____D C:\Program Files (x86)\Vidalia Bridge Bundle 2015-06-06 18:03 - 2011-05-13 12:16 - 00493056 _____ ( datenhaus GmbH) C:\WINDOWS\SysWOW64\dhRichClient3.dll 2015-06-06 18:03 - 2011-03-25 20:42 - 00338432 _____ C:\WINDOWS\SysWOW64\sqlite36_engine.dll 2015-06-06 17:42 - 2015-06-06 17:42 - 00000854 _____ C:\Users\Petra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Tor Browser.lnk 2015-06-06 17:41 - 2015-06-06 17:41 - 00000000 ____D C:\Users\Petra\Desktop\Tor Browser ==================== One Month Modified files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2015-07-05 12:30 - 2015-05-25 16:20 - 00000000 ____D C:\Users\Petra\AppData\Roaming\Skype 2015-07-05 12:27 - 2015-04-27 20:10 - 00001138 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2015-07-05 12:27 - 2015-04-23 21:18 - 00003598 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2313430980-499788672-1817343724-1002 2015-07-05 12:26 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\AppReadiness 2015-07-05 12:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sru 2015-07-05 10:37 - 2014-09-04 09:35 - 01351136 _____ C:\WINDOWS\WindowsUpdate.log 2015-07-05 10:14 - 2013-08-22 16:46 - 00055288 _____ C:\WINDOWS\setupact.log 2015-07-05 10:07 - 2015-04-23 21:19 - 00003934 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{E10E42AD-3DA3-4EE6-B84A-1344DDA645EC} 2015-07-05 10:03 - 2015-04-27 20:10 - 00001134 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2015-07-04 12:34 - 2013-08-22 16:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2015-07-04 12:34 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\ELAM 2015-07-04 12:32 - 2015-05-24 23:40 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2015-07-04 12:32 - 2014-03-18 11:44 - 00035504 _____ C:\WINDOWS\PFRO.log 2015-07-04 12:31 - 2014-09-04 10:54 - 00002560 _____ C:\WINDOWS\system32\VfService.trf 2015-06-30 21:19 - 2015-05-04 22:01 - 00000000 ____D C:\Users\Petra\AppData\Roaming\vlc 2015-06-30 18:47 - 2014-09-04 11:07 - 00000000 ____D C:\ProgramData\Energy Manager 2015-06-26 21:59 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI 2015-06-26 21:53 - 2014-09-04 10:53 - 00000000 ____D C:\ProgramData\Temp 2015-06-26 16:02 - 2013-08-22 17:20 - 00000000 ____D C:\WINDOWS\CbsTemp 2015-06-21 10:31 - 2015-05-26 19:27 - 00005120 _____ C:\Users\Petra\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2015-06-20 05:02 - 2013-08-22 17:38 - 00792568 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2015-06-20 05:02 - 2013-08-22 17:38 - 00178168 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2015-06-17 21:10 - 2015-04-25 16:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IncrediMail 2015-06-16 22:12 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\Performance 2015-06-16 19:15 - 2015-04-23 21:10 - 00000000 ____D C:\Users\Petra 2015-06-15 20:56 - 2015-05-04 12:22 - 00203264 ___SH C:\Users\Petra\Desktop\Thumbs.db 2015-06-15 18:08 - 2014-09-04 19:18 - 00766620 _____ C:\WINDOWS\system32\perfh007.dat 2015-06-15 18:08 - 2014-09-04 19:18 - 00159902 _____ C:\WINDOWS\system32\perfc007.dat 2015-06-15 18:08 - 2014-03-18 11:53 - 01780340 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2015-06-13 21:23 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\rescache 2015-06-12 16:09 - 2013-08-22 17:36 - 00000000 ___RD C:\WINDOWS\Offline Web Pages 2015-06-12 11:21 - 2015-04-25 21:30 - 00000000 __SHD C:\Users\Petra\AppData\Local\EmieBrowserModeList 2015-06-12 11:21 - 2015-04-23 21:19 - 00000000 __SHD C:\Users\Petra\AppData\Local\EmieUserList 2015-06-12 11:21 - 2015-04-23 21:19 - 00000000 __SHD C:\Users\Petra\AppData\Local\EmieSiteList 2015-06-12 08:46 - 2013-08-22 16:44 - 00387328 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2015-06-12 08:45 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\ELAMBKUP 2015-06-12 08:43 - 2015-04-25 21:18 - 00000000 ____D C:\WINDOWS\system32\appraiser 2015-06-12 08:43 - 2015-04-25 21:17 - 00000000 ___SD C:\WINDOWS\system32\CompatTel 2015-06-12 08:43 - 2013-08-22 17:36 - 00000000 ___RD C:\WINDOWS\ToastData 2015-06-12 08:43 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\PolicyDefinitions 2015-06-11 10:23 - 2015-04-25 20:41 - 00000000 ____D C:\WINDOWS\system32\MRT 2015-06-11 10:18 - 2015-04-25 20:41 - 140135120 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2015-06-11 10:16 - 2015-04-25 17:33 - 00000000 ____D C:\ProgramData\Microsoft Help 2015-06-09 18:37 - 2015-05-22 18:15 - 00076800 _____ C:\Users\Petra\Documents\Wasserzähler ab 2011.xls 2015-06-08 22:51 - 2015-05-09 15:42 - 00074944 _____ C:\WINDOWS\system32\bdsandbox.txt 2015-06-08 18:19 - 2015-05-25 16:19 - 00000000 ____D C:\ProgramData\Skype 2015-06-07 12:07 - 2015-04-25 17:33 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2015-06-06 14:38 - 2015-04-25 16:12 - 00002324 _____ C:\Users\Petra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk ==================== Files in the root of some directories ======= 2015-05-26 19:27 - 2015-06-21 10:31 - 0005120 _____ () C:\Users\Petra\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2014-09-04 10:16 - 2014-09-04 10:16 - 0000000 ____H () C:\ProgramData\DP45977C.lfl ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2015-07-03 23:52 ==================== End of log ============================ die raute geht nicht zu benutzen was kannich denn bei der Datenträgerbereinigung löschen lassen? |
06.07.2015, 09:55 | #39 |
/// TB-Ausbilder | Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar Hm welche Raute geht nicht zu benutzen ? Hast du die Anleitung richtig befolgt ? Eigentlich sollte nen Fix gemacht werden.
__________________ Lerne, zurück zu schlagen und unterstütze uns! TB Akademie | Spende | Lob & Kritik |
06.07.2015, 17:36 | #40 |
| Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar geht nicht das programm sagt das er die txt nicht findet. Sie ist aber im selben ordner wie das programm ja sorry hab ich falsch gemacht. die raute um den text zu posten ging nicht. dann lasse ich das mit dem FRST wenns nichts besonderes ist was noch beim Bitdefender als gesch. Archiv drin ist. |
07.07.2015, 09:52 | #41 |
/// TB-Ausbilder | Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar Ok.
__________________ Lerne, zurück zu schlagen und unterstütze uns! TB Akademie | Spende | Lob & Kritik |
12.07.2015, 10:15 | #42 |
| Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar schade das FRST geht nicht mehr. läuft stundenlang und endet den Fix nicht. Ich denke der PC ist soweit wieder in Ordnung! vielen vielen danke für die Hilfe! |
Themen zu Bitdefender hat 369 passwortgeschütze Archive gefunden! Nicht scanbar |
archive, bitdefender, blieb, defender, feedback, gefunde, geschützte, hallo zusammen, löschen, malware, nichts, passwortgeschützte, protector, rechner, scan, scanbar, scanne, scannen, thema, vorgehensweise, wiederherstellung, windows, winzip, woche, wochen, zusammen |