![]() |
|
Log-Analyse und Auswertung: Win 7 Sp1 64Bit. Ein Trojaner plagt mich.Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #1 |
| ![]() Win 7 Sp1 64Bit. Ein Trojaner plagt mich. Hallo zusammen, Seit einigen Tagen plagt wohl ein Trojaner meinen Rechner. Habe, nachdem sich dann automatisch AVG 2015 installiert hatte meinen Virenscanner (Avast 2015, konstenlose Version) mal eine vollständige Überprüfung machen lassen, leider ohne Ergebnis. Habe dann diesen manuell deinstalliert und AdwCleaner laufen lassen. Das Ergebnis war Folgendes: Code:
ATTFilter # AdwCleaner v4.208 - Bericht erstellt 08/08/2015 um 11:26:01 # Aktualisiert 09/07/2015 von Xplode # Datenbank : 2015-08-01.1 [Server] # Betriebssystem : Windows 7 Home Premium Service Pack 1 (x64) # Benutzername : ******* - ******* # Gestarted von : C:\Users\*******\Downloads\adwcleaner_4.208.exe # Option : Suchlauf ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** ***** [ Geplante Tasks ] ***** ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Daten Gefunden : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - <local> ***** [ Internetbrowser ] ***** -\\ Internet Explorer v11.0.9600.17909 -\\ Mozilla Firefox v30.0 (de) -\\ Google Chrome v44.0.2403.130 -\\ Chromium v ************************* AdwCleaner[R0].txt - [845 Bytes] - [08/08/2015 11:26:01] ########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [903 Bytes] ########## Code:
ATTFilter defogger_disable by jpshortstuff (23.02.10.1) Log created at 12:44 on 08/08/2015 (*****) Checking for autostart values... HKCU\~\Run values retrieved. HKLM\~\Run values retrieved. Checking for services/drivers... -=E.O.F=- Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:08-08-2015 durchgeführt von ***** (Administrator) auf ***** (08-08-2015 12:49:44) Gestartet von C:\Users\*****\Desktop Geladene Profile: ***** (Verfügbare Profile: *****) Platform: Windows 7 Home Premium Service Pack 1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: Chrome) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Dell Inc.) C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Corporation) C:\Windows\System32\alg.exe (Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\ng\ngservice.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe (Spotify Ltd) C:\Users\*****\AppData\Roaming\Spotify\SpotifyWebHelper.exe (Alienware) C:\Program Files\Alienware\Command Center\AWCCServiceController.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe (Computec Media AG) C:\Users\*****\AppData\Local\Blasc3\Program.Blasc3.exe (Akamai Technologies, Inc.) C:\Users\*****\AppData\Local\Akamai\netsession_win.exe () C:\Users\*****\AppData\Local\Amazon Music\Amazon Music Helper.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Akamai Technologies, Inc.) C:\Users\*****\AppData\Local\Akamai\netsession_win.exe (Spotify Ltd) C:\Users\*****\AppData\Roaming\Spotify\Spotify.exe (Curse) C:\Users\*****\AppData\Local\Apps\2.0\7NC9HZKJ.11C\3ZKW4BG8.487\curs..tion_9e9e83ddf3ed3ead_0005.0001_fb8944c2684f5b6c\CurseClient.exe (Dropbox, Inc.) C:\Users\*****\AppData\Roaming\Dropbox\bin\Dropbox.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Sony Corporation) C:\Program Files (x86)\Sony\Content Transfer\ContentTransferWMDetector.exe (Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\avastui.exe (Alienware) C:\Program Files\Alienware\Command Center\AlienwareAlienFXController.exe (Alienware) C:\Program Files\Alienware\Command Center\AWCCApplicationWatcher32.exe (Alienware) C:\Program Files\Alienware\Command Center\AWCCApplicationWatcher64.exe (NCSOFT Corporation) C:\Program Files (x86)\NCWest\NCLauncher\NCUpdateHelper.exe (Spotify Ltd) C:\Users\*****\AppData\Roaming\Spotify\Spotify.exe (Spotify Ltd) C:\Users\*****\AppData\Roaming\Spotify\Spotify.exe (Alienware) C:\Program Files\Alienware\Command Center\AlienFusionService.exe (Dell Inc.) C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe (Alienware) C:\Program Files\Alienware\Command Center\AlienFusionController.exe (Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Dell Inc.) C:\Program Files\Dell\DellDataVault\DellDataVault.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Nicht auf der Ausnahmeliste) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6412904 2011-11-03] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1157224 2011-10-20] (Realtek Semiconductor) HKLM\...\Run: [] => [X] HKLM\...\Run: [Command Center Controllers] => C:\Program Files\Alienware\Command Center\AWCCStartupOrchestrator.exe [12616 2011-12-15] (Alienware) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2462536 2014-10-16] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [170280 2015-07-11] (Apple Inc.) HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [40336 2015-06-27] (Adobe Systems Incorporated) HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60712 2015-05-15] (Apple Inc.) HKLM-x32\...\Run: [ContentTransferWMDetector.exe] => C:\Program Files (x86)\Sony\Content Transfer\ContentTransferWMDetector.exe [583016 2009-11-19] (Sony Corporation) HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5515496 2015-05-11] (Avast Software s.r.o.) HKLM-x32\...\Run: [NCUpdateHelper] => C:\Program Files (x86)\NCWest\NCLauncher\NCUpdateHelper.exe [528360 2014-03-08] (NCSOFT Corporation) HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2015-06-17] (Apple Inc.) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-2025296424-690445150-2269518065-1001\...\Run: [Pando Media Booster] => C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe [3093624 2013-01-31] () HKU\S-1-5-21-2025296424-690445150-2269518065-1001\...\Run: [Spotify Web Helper] => C:\Users\*****\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2018360 2015-08-06] (Spotify Ltd) HKU\S-1-5-21-2025296424-690445150-2269518065-1001\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\Overwolf.exe -silent HKU\S-1-5-21-2025296424-690445150-2269518065-1001\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [43816 2015-04-26] (Apple Inc.) HKU\S-1-5-21-2025296424-690445150-2269518065-1001\...\Run: [ApplePhotoStreams] => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [43816 2015-04-26] (Apple Inc.) HKU\S-1-5-21-2025296424-690445150-2269518065-1001\...\Run: [Blasc3] => C:\Users\*****\AppData\Local\Blasc3\Program.Blasc3.exe [485888 2014-08-28] (Computec Media AG) HKU\S-1-5-21-2025296424-690445150-2269518065-1001\...\Run: [Akamai NetSession Interface] => C:\Users\*****\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-30] (Akamai Technologies, Inc.) HKU\S-1-5-21-2025296424-690445150-2269518065-1001\...\Run: [Amazon Music] => C:\Users\*****\AppData\Local\Amazon Music\Amazon Music Helper.exe [6277952 2014-11-19] () HKU\S-1-5-21-2025296424-690445150-2269518065-1001\...\Run: [Skype] => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun HKU\S-1-5-21-2025296424-690445150-2269518065-1001\...\Run: [Spotify] => C:\Users\*****\AppData\Roaming\Spotify\Spotify.exe [7675448 2015-08-06] (Spotify Ltd) HKU\S-1-5-21-2025296424-690445150-2269518065-1001\...\Run: [Dropbox Update] => C:\Users\*****\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-06-18] (Dropbox, Inc.) HKU\S-1-5-21-2025296424-690445150-2269518065-1001\...\Run: [msnmsgr] => C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe [4272840 2014-03-31] (Microsoft Corporation) HKU\S-1-5-21-2025296424-690445150-2269518065-1001\...\RunOnce: [Uninstall C:\Users\*****\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64] => C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\*****\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64" HKU\S-1-5-21-2025296424-690445150-2269518065-1001\...\RunOnce: [Uninstall C:\Users\*****\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112] => C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\*****\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112" HKU\S-1-5-18\...\RunOnce: [iCloud] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloud.exe [43816 2015-04-26] (Apple Inc.) AppInit_DLLs: C:\ProgramData\SecurityUtility\SecurityUtility64.dll => C:\ProgramData\SecurityUtility\SecurityUtility64.dll Datei nicht gefunden AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [174856 2014-10-16] (NVIDIA Corporation) AppInit_DLLs-x32: C:\ProgramData\SecurityUtility\SecurityUtility32.dll => "C:\ProgramData\SecurityUtility\SecurityUtility32.dll" Datei nicht gefunden AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [156840 2014-10-16] (NVIDIA Corporation) Startup: C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip [2013-01-23] () Startup: C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2015-05-08] ShortcutTarget: Dropbox.lnk -> C:\Users\*****\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) Startup: C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\GameRanger.lnk [2013-12-22] ShortcutTarget: GameRanger.lnk -> C:\Users\*****\AppData\Roaming\GameRanger\GameRanger\GameRanger.exe (GameRanger Technologies) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-04-22] (Avast Software s.r.o.) ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\*****\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-07-24] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\*****\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-07-24] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\*****\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-07-24] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\*****\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-07-24] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\*****\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll [2015-07-24] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\*****\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll [2015-07-24] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\*****\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll [2015-07-24] (Dropbox, Inc.) GroupPolicy: Gruppenrichtline auf Chrome erkannt <======= ACHTUNG CHR HKLM\SOFTWARE\Policies\Google: Richtlinienbeschränkung <======= ACHTUNG ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt..) HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-06-09] (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_45\bin\ssv.dll [2015-04-21] (Oracle Corporation) BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-04-22] (Avast Software s.r.o.) BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.) BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-07-17] (Google Inc.) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL [2015-06-09] (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-06-16] (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-04-21] (Oracle Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-04-21] (Oracle Corporation) BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-04-22] (Avast Software s.r.o.) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.) BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-07-17] (Google Inc.) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL [2015-06-09] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-04-21] (Oracle Corporation) Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - Keine Datei Toolbar: HKLM - Kein Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - Keine Datei Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-07-17] (Google Inc.) Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-07-17] (Google Inc.) Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-02-03] (Microsoft Corporation) Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - Keine Datei Winsock: Catalog5 05 C:\Windows\system32\DnsBlockA.dll Datei nicht gefunden Winsock: Catalog5 11 C:\Windows\system32\DnsBlockB.dll Datei nicht gefunden Winsock: Catalog5-x64 05 C:\Windows\system32\DnsBlockA.dll File Not ' & $found1 & ' Winsock: Catalog5-x64 11 C:\Windows\system32\DnsBlockB.dll File Not ' & $found1 & ' Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{3A84EB8B-D610-4EB8-B42A-FAED5407B372}: [DhcpNameServer] 192.168.2.1 FireFox: ======== FF ProfilePath: C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\0xip5oi5.default FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_18_0_0_209.dll [2015-07-15] () FF Plugin: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-04-21] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-04-21] (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll [2015-07-15] () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-01-06] () FF Plugin-x32: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-04-21] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-04-21] (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2013-11-12] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2014-10-16] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2014-10-16] (NVIDIA Corporation) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [2013-01-31] (Pando Networks) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-16] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-16] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll [2015-06-27] (Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-2025296424-690445150-2269518065-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\*****\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-04-01] (Unity Technologies ApS) FF Plugin HKU\S-1-5-21-2025296424-690445150-2269518065-1001: pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [2013-01-31] (Pando Networks) FF Plugin HKU\S-1-5-21-2025296424-690445150-2269518065-1001: thehappycloud.com/HappyCloudPlugin -> C:\ProgramData\HappyCloud\Application\npHappyCloudPlugin.dll [2013-05-05] (The Happy Cloud) FF Extension: Kein Name - C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\0xip5oi5.default\Extensions\1438986229_xpi [2015-08-08] FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-01-23] Chrome: ======= CHR Profile: C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Avast SafePrice) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2015-08-06] CHR Extension: (Avast Online Security) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2013-05-30] CHR Extension: (Chrome Hotword Shared Module) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-14] CHR Extension: (Chrome Web Store Payments) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-23] CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswwebrepchrome-sp.crx [2014-08-04] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-04-22] ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-05-29] (Apple Inc.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-04-22] (Avast Software s.r.o.) R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4034896 2015-04-22] (Avast Software) R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2753720 2015-07-01] (Microsoft Corporation) R2 DellDataVault; C:\Program Files\Dell\DellDataVault\DellDataVault.exe [2573520 2015-05-22] (Dell Inc.) R2 DellDataVaultWiz; C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe [201936 2015-05-22] (Dell Inc.) R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1148744 2014-10-16] (NVIDIA Corporation) S2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1871160 2015-06-18] (Malwarebytes Corporation) S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation) S4 MSI_ODD_Service; c:\Program Files (x86)\msi\ODD Monitor\ODD_Monitor.exe [76800 2011-10-05] (Micro-Star Int'l Co., Ltd.) [Datei ist nicht signiert] R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1795912 2014-10-16] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19439944 2014-10-16] (NVIDIA Corporation) R2 SupportAssistAgent; C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [20648 2015-06-11] (Dell Inc.) R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) S2 0136381358887401mcinstcleanup; C:\Windows\TEMP\013638~1.EXE C:\PROGRA~2\COMMON~1\McAfee\INSTAL~1\cleanup.ini -cleanup -nolog -service ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29168 2015-04-22] () R1 aswKbd; C:\Windows\System32\Drivers\aswKbd.sys [21136 2012-10-31] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [89944 2015-04-22] (Avast Software s.r.o.) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-04-22] (Avast Software s.r.o.) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65736 2015-04-22] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1047320 2015-04-22] (Avast Software s.r.o.) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [442264 2015-06-26] (Avast Software s.r.o.) S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [137288 2015-04-22] (Avast Software s.r.o.) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [272248 2015-04-22] () R3 DDDriver; C:\Windows\System32\drivers\DDDriver64Dcsa.sys [23760 2015-01-31] (Dell Computer Corporation) R3 DellProf; C:\Windows\System32\drivers\DellProf.sys [24240 2015-05-22] (Dell Computer Corporation) S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation) S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-06-18] (Malwarebytes Corporation) S3 NTIOLib_X64; C:\Program Files (x86)\msi\ODD Monitor\NTIOLib_X64.sys [14136 2010-01-18] (MSI) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19272 2014-10-16] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [38048 2014-10-16] (NVIDIA Corporation) R3 rusb3hub; C:\Windows\System32\DRIVERS\rusb3hub.sys [100352 2011-09-15] (Renesas Electronics Corporation) R3 rusb3xhc; C:\Windows\System32\DRIVERS\rusb3xhc.sys [216064 2011-09-15] (Renesas Electronics Corporation) S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2014-07-28] (Apple, Inc.) [Datei ist nicht signiert] R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [273824 2015-04-22] (Avast Software) U3 Winsock; kein ImagePath R3 XSplit_Dummy; C:\Windows\System32\drivers\xspltspk.sys [26200 2014-07-02] (SplitmediaLabs Limited) S3 PCDSRVC{90AB3B40-A9A6E5C8-06020200}_0; \??\c:\program files\alienware\supportassist\pcdsrvc_x64.pkms [X] U3 pgtirpow; \??\C:\Users\CHRIST~1\AppData\Local\Temp\pgtirpow.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-08-08 12:47 - 2015-08-08 12:47 - 02169856 _____ (Farbar) C:\Users\*****\Downloads\FRST64 (1).exe 2015-08-08 12:46 - 2015-08-08 12:46 - 02169856 _____ (Farbar) C:\Users\*****\Downloads\FRST64.exe 2015-08-08 12:44 - 2015-08-08 12:44 - 00000000 ____D C:\Users\*****\Desktop\FRST-OlderVersion 2015-08-08 11:52 - 2015-08-08 11:59 - 00001010 _____ C:\Users\*****\Desktop\AdwCleaner[R1].txt 2015-08-08 11:49 - 2015-08-08 11:49 - 00380416 _____ C:\Users\*****\Downloads\n4ldsfo8.exe 2015-08-08 11:47 - 2015-08-08 11:47 - 00380416 _____ C:\Users\*****\Downloads\fo8kzmij.exe 2015-08-08 11:42 - 2015-08-08 12:49 - 00028358 _____ C:\Users\*****\Desktop\FRST.txt 2015-08-08 11:42 - 2015-08-08 12:49 - 00000000 ____D C:\FRST 2015-08-08 11:42 - 2015-08-08 12:02 - 00094850 _____ C:\Users\*****\Desktop\Addition.txt 2015-08-08 11:41 - 2015-08-08 12:44 - 02169856 _____ (Farbar) C:\Users\*****\Desktop\FRST64.exe 2015-08-08 11:39 - 2015-08-08 12:44 - 00000492 _____ C:\Users\*****\Desktop\defogger_disable.log 2015-08-08 11:39 - 2015-08-08 11:39 - 00000000 _____ C:\Users\*****\defogger_reenable 2015-08-08 11:38 - 2015-08-08 11:38 - 00050477 _____ C:\Users\*****\Desktop\Defogger.exe 2015-08-08 11:37 - 2015-08-08 12:03 - 00002648 _____ C:\Users\*****\Desktop\Anti-Maleware Suchlauf.txt 2015-08-08 11:35 - 2015-08-08 11:35 - 00002658 _____ C:\Anti-Maleware Suchlauf.txt 2015-08-08 11:26 - 2015-08-08 11:58 - 00000958 _____ C:\Users\*****\Desktop\AdwCleaner[R0].txt 2015-08-08 11:24 - 2015-08-08 11:25 - 02248704 _____ C:\Users\*****\Desktop\adwcleaner_4.208.exe 2015-08-08 01:09 - 2015-08-08 11:18 - 00113880 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2015-08-08 01:09 - 2015-08-08 01:09 - 00001104 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2015-08-08 01:09 - 2015-08-08 01:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-08-08 01:09 - 2015-08-08 01:09 - 00000000 ____D C:\ProgramData\Malwarebytes 2015-08-08 01:09 - 2015-08-08 01:09 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-08-08 01:09 - 2015-06-18 08:41 - 00109272 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2015-08-08 01:09 - 2015-06-18 08:41 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2015-08-08 01:09 - 2015-06-18 08:41 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2015-08-08 01:07 - 2015-08-08 01:08 - 24345872 _____ (Malwarebytes Corporation ) C:\Users\*****\Downloads\mbam-setup-2.1.8.1057.exe 2015-08-08 00:26 - 2015-08-08 00:26 - 00000306 __RSH C:\ProgramData\ntuser.pol 2015-08-08 00:26 - 2015-08-08 00:26 - 00000000 ____D C:\Users\*****\Downloads\Neuer Ordner 2015-08-08 00:26 - 2015-08-08 00:26 - 00000000 ____D C:\Program Files\{E9BD9858-0527-4940-9AC3-BFFCAD328F7B} 2015-08-08 00:26 - 2015-08-08 00:26 - 00000000 ____D C:\Program Files (x86)\{A25BAB8C-2F3B-4864-9FF0-542E5994EDE5} 2015-08-08 00:22 - 2015-08-08 00:23 - 00517448 _____ ( ) C:\Users\*****\Downloads\WarCraft_WindowsModifier.zip.exe 2015-08-06 19:44 - 2015-08-08 11:56 - 00000000 ____D C:\AdwCleaner 2015-08-06 12:35 - 2015-08-06 12:35 - 01865516 _____ C:\Users\Apps\musixmatch-lyrics-cp.spa 2015-08-06 12:35 - 2015-08-06 12:35 - 00449780 _____ C:\Users\snapshot_blob.bin 2015-08-06 12:35 - 2015-08-06 12:35 - 00410937 _____ C:\Users\natives_blob.bin 2015-08-05 04:00 - 2015-08-05 04:00 - 00000000 _____ C:\Windows\SysWOW64\sho7EEC.tmp 2015-08-05 03:30 - 2015-08-05 03:38 - 00008989 _____ C:\Users\*****\Downloads\All_About_The_Bass_-_Meghan_Trainor_Treble_Clef_Brass_Quartet.mscz 2015-08-05 03:30 - 2015-08-05 03:30 - 00010361 _____ C:\Users\*****\Downloads\.All_About_The_Bass_-_Meghan_Trainor_Treble_Clef_Brass_Quartet.mscz, 2015-08-05 02:12 - 2015-08-06 01:21 - 00007152 _____ C:\Users\*****\Downloads\Forrest_Gump_-_4_trombones.mscz 2015-08-05 02:12 - 2015-08-05 03:51 - 00007074 _____ C:\Users\*****\Downloads\.Forrest_Gump_-_4_trombones.mscz, 2015-08-04 23:41 - 2015-08-04 23:41 - 00000000 ____D C:\Users\*****\AppData\Roaming\dlg 2015-08-04 23:40 - 2015-08-04 23:48 - 00000000 ____D C:\Users\*****\Documents\Apowersoft Free Audio Recorder 2015-08-04 23:39 - 2015-08-04 23:44 - 00000000 ____D C:\Users\*****\AppData\Roaming\Apowersoft 2015-08-04 23:39 - 2015-08-04 23:39 - 00000000 ____D C:\Program Files (x86)\Apowersoft 2015-08-04 23:38 - 2015-08-04 23:38 - 07976008 _____ (APOWERSOFT LIMITED ) C:\Windows\SysWOW64\free-audio-recorder-computerbild.exe 2015-08-04 23:37 - 2015-08-04 23:37 - 00000000 ____D C:\Users\*****\AppData\Roaming\AVG 2015-08-04 23:36 - 2015-08-04 23:36 - 00000000 ____D C:\Users\*****\AppData\Local\Avg 2015-08-04 23:34 - 2015-08-08 11:20 - 00000000 ____D C:\Users\*****\Tracing 2015-08-04 23:30 - 2015-08-04 23:38 - 00000000 ____D C:\ProgramData\AVG 2015-08-04 23:30 - 2015-08-04 23:30 - 00000000 ____D C:\Windows\de 2015-08-04 23:29 - 2015-08-08 11:17 - 00000386 _____ C:\Windows\Tasks\RNKCKUYTBN1.job 2015-08-04 23:29 - 2015-08-04 23:29 - 00002908 _____ C:\Windows\System32\Tasks\RNKCKUYTBN1 2015-08-04 23:29 - 2015-08-04 23:29 - 00002488 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Messenger.lnk 2015-08-04 23:29 - 2015-08-04 23:29 - 00001460 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk 2015-08-04 23:29 - 2015-08-04 23:29 - 00001376 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk 2015-08-04 23:29 - 2015-08-04 23:29 - 00001307 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk 2015-08-04 23:29 - 2015-08-04 23:29 - 00000020 _____ C:\Windows\pôL 2015-08-04 23:29 - 2015-08-04 23:29 - 00000000 ____D C:\ProgramData\7b24ec7cc000461ebe26d116b88142c8 2015-08-04 23:29 - 2015-08-04 23:29 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition 2015-08-04 23:28 - 2015-08-04 23:28 - 00516720 _____ ( ) C:\Users\*****\Downloads\free-audio-recorder-computerbild_CB-DL-Manager.exe 2015-08-04 23:27 - 2015-08-04 23:29 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live 2015-08-04 23:27 - 2015-08-04 23:27 - 00000000 ____D C:\Program Files\Windows Live 2015-08-04 23:27 - 2014-03-31 21:06 - 00058056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fssfltr.sys 2015-08-04 23:26 - 2015-08-04 23:29 - 00000000 ____D C:\Program Files (x86)\Windows Live 2015-08-04 23:26 - 2015-08-04 23:26 - 00081303 _____ C:\Users\*****\Documents\Unbenannt (2).wma 2015-08-04 23:25 - 2015-08-04 23:25 - 00054363 _____ C:\Users\*****\Documents\Unbenannt.wma 2015-08-04 23:21 - 2015-08-04 23:21 - 00002234 _____ C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk 2015-08-04 23:19 - 2015-08-07 16:02 - 00000000 ____D C:\Users\*****\AppData\Local\Windows Live 2015-08-04 23:19 - 2015-08-04 23:19 - 02746203 _____ C:\Users\*****\Downloads\Vorbemerkung.mp4 2015-08-04 23:18 - 2015-08-04 23:18 - 01245384 _____ (Microsoft Corporation) C:\Users\*****\Downloads\wlsetup-web.exe 2015-08-04 23:00 - 2015-08-04 23:00 - 00000000 ____D C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Syntrillium 2015-08-04 23:00 - 2015-08-04 23:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Syntrillium 2015-08-04 22:59 - 2015-08-05 00:44 - 00000000 ____D C:\cool 2015-08-04 22:59 - 2015-08-04 23:28 - 00003967 _____ C:\Windows\cool.ini 2015-08-04 22:59 - 1997-05-01 15:01 - 00127023 _____ C:\Windows\c96unins.exe 2015-08-04 22:59 - 1997-04-29 08:06 - 00272896 _____ (Progressive Networks) C:\Windows\SysWOW64\pncrt.dll 2015-08-04 22:59 - 1997-04-29 08:06 - 00140288 _____ (Progressive Networks, Inc.) C:\Windows\SysWOW64\ra3214_4.dll 2015-08-04 22:59 - 1997-04-29 08:06 - 00090624 _____ (Progressive Networks, Inc.) C:\Windows\SysWOW64\pnc32301.dll 2015-08-04 22:59 - 1997-04-29 08:06 - 00085504 _____ (Progressive Networks, Inc.) C:\Windows\SysWOW64\encdnet.dll 2015-08-04 22:59 - 1997-04-29 08:06 - 00072704 _____ (Progressive Networks, Inc.) C:\Windows\SysWOW64\ra3228_8.dll 2015-08-04 22:59 - 1997-04-29 08:06 - 00013824 _____ (Progressive Networks, Inc.) C:\Windows\SysWOW64\ra32dnet.dll 2015-08-04 22:58 - 2015-08-04 22:58 - 02178955 _____ C:\Users\*****\Downloads\31939_c96setup.exe 2015-08-02 08:41 - 2015-08-07 16:44 - 00000000 ____D C:\Users\*****\AppData\Roaming\OBS 2015-08-02 08:41 - 2015-08-02 20:16 - 00000000 ____D C:\Program Files\OBS 2015-08-02 08:41 - 2015-08-02 08:41 - 07413584 _____ C:\Users\*****\Downloads\OBS_0_653b_Installer.exe 2015-08-02 08:41 - 2015-08-02 08:41 - 00000937 _____ C:\Users\*****\Desktop\Open Broadcaster Software.lnk 2015-08-02 08:41 - 2015-08-02 08:41 - 00000000 ____D C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Open Broadcaster Software 2015-08-02 08:41 - 2015-08-02 08:41 - 00000000 ____D C:\Program Files (x86)\OBS 2015-08-01 06:22 - 2015-08-07 04:20 - 00000000 ____D C:\Users\*****\Documents\Dateien bis 01.August 2015 2015-07-31 16:52 - 2015-07-31 16:52 - 00000000 ____D C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2015-07-28 10:05 - 2015-07-25 20:07 - 00017856 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe 2015-07-28 10:05 - 2015-07-25 20:04 - 00765440 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2015-07-28 10:05 - 2015-07-25 20:04 - 00726528 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2015-07-28 10:05 - 2015-07-25 20:03 - 01085440 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2015-07-28 10:05 - 2015-07-25 20:03 - 00433664 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2015-07-28 10:05 - 2015-07-25 20:03 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2015-07-28 10:05 - 2015-07-25 20:03 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll 2015-07-28 10:05 - 2015-07-25 19:55 - 01145856 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2015-07-27 03:45 - 2015-07-27 03:45 - 00000000 _____ C:\Windows\SysWOW64\shoDE3D.tmp 2015-07-26 13:49 - 2015-07-26 13:49 - 00003886 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task 2015-07-22 17:51 - 2015-07-22 17:51 - 00001715 _____ C:\Users\Public\Desktop\iTunes.lnk 2015-07-22 17:51 - 2015-07-22 17:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes 2015-07-22 17:45 - 2015-07-22 17:45 - 00001847 _____ C:\Users\Public\Desktop\QuickTime Player.lnk 2015-07-22 17:45 - 2015-07-22 17:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime 2015-07-22 17:45 - 2015-07-22 17:45 - 00000000 ____D C:\Program Files (x86)\QuickTime 2015-07-22 17:43 - 2015-07-22 17:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud 2015-07-22 04:59 - 2015-07-22 05:01 - 00000000 ____D C:\Users\*****\Documents\StarCraft II Beta 2015-07-22 04:33 - 2015-07-22 04:59 - 00000000 ____D C:\Program Files (x86)\StarCraft II - Legacy of the Void Beta 2015-07-22 02:54 - 2015-07-22 02:54 - 00000000 ____D C:\Users\*****\AppData\Local\CEF 2015-07-21 19:51 - 2015-07-21 19:51 - 00002043 _____ C:\Users\Public\Desktop\Star Wars - Galactic Battlegrounds.lnk 2015-07-21 19:51 - 2015-07-21 19:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com 2015-07-21 19:51 - 2000-06-23 22:05 - 00136704 _____ (Ligos Corporation) C:\Windows\SysWOW64\iacenc.dll 2015-07-21 19:51 - 2000-06-22 21:09 - 00056320 _____ C:\Windows\SysWOW64\iyvu9_32.dll 2015-07-21 19:50 - 2015-07-21 19:50 - 00000000 ____D C:\GOG Games 2015-07-21 19:44 - 2015-07-21 19:48 - 569047376 _____ (GOG.com ) C:\Users\*****\Downloads\setup_sw_galactic_battlegrounds_saga_german_2.0.0.2.exe 2015-07-21 15:35 - 2015-07-15 05:19 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2015-07-21 15:35 - 2015-07-15 05:19 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2015-07-21 15:35 - 2015-07-15 05:19 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2015-07-21 15:35 - 2015-07-15 05:19 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2015-07-21 15:35 - 2015-07-15 04:55 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2015-07-21 15:35 - 2015-07-15 04:55 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2015-07-21 15:35 - 2015-07-15 04:55 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2015-07-21 15:35 - 2015-07-15 04:54 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2015-07-21 15:35 - 2015-07-15 03:59 - 00372224 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2015-07-21 15:35 - 2015-07-15 03:52 - 00299008 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2015-07-17 18:17 - 2015-07-17 18:22 - 26401485 _____ (diclovit ) C:\Users\*****\Downloads\dmp_9.9.0_setup.exe 2015-07-16 19:35 - 2015-07-16 19:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XSplit 2015-07-15 15:39 - 2015-07-15 15:39 - 18524336 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2015-07-15 14:52 - 2015-07-09 19:58 - 03154944 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2015-07-15 14:52 - 2015-07-09 19:58 - 02603008 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2015-07-15 14:52 - 2015-07-09 19:58 - 00696320 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2015-07-15 14:52 - 2015-07-09 19:58 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2015-07-15 14:52 - 2015-07-09 19:58 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2015-07-15 14:52 - 2015-07-09 19:58 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2015-07-15 14:52 - 2015-07-09 19:58 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll 2015-07-15 14:52 - 2015-07-09 19:58 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2015-07-15 14:52 - 2015-07-09 19:58 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2015-07-15 14:52 - 2015-07-09 19:58 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2015-07-15 14:52 - 2015-07-09 19:58 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll 2015-07-15 14:52 - 2015-07-09 19:43 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2015-07-15 14:52 - 2015-07-09 19:43 - 00173056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2015-07-15 14:52 - 2015-07-09 19:43 - 00093184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2015-07-15 14:52 - 2015-07-09 19:43 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2015-07-15 14:52 - 2015-07-09 19:42 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2015-07-15 14:52 - 2015-06-27 04:47 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2015-07-15 14:52 - 2015-06-27 04:43 - 05923840 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2015-07-15 14:52 - 2015-06-27 03:58 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2015-07-15 14:52 - 2015-06-27 03:39 - 04520448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2015-07-15 14:52 - 2015-06-25 10:57 - 03207168 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2015-07-15 14:52 - 2015-06-17 19:47 - 00404992 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2015-07-15 14:52 - 2015-06-17 19:37 - 00312320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2015-07-15 14:52 - 2015-06-02 02:07 - 00254976 _____ (Microsoft Corporation) C:\Windows\system32\cewmdm.dll 2015-07-15 14:52 - 2015-06-02 01:47 - 00210432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cewmdm.dll 2015-07-15 14:51 - 2015-07-02 23:21 - 19877376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2015-07-15 14:51 - 2015-07-02 23:08 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2015-07-15 14:51 - 2015-07-02 22:50 - 02279424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2015-07-15 14:51 - 2015-07-02 22:49 - 25193984 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2015-07-15 14:51 - 2015-07-02 22:46 - 00479232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2015-07-15 14:51 - 2015-07-02 22:40 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2015-07-15 14:51 - 2015-07-02 22:23 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2015-07-15 14:51 - 2015-07-02 22:19 - 12855296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2015-07-15 14:51 - 2015-07-02 22:12 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2015-07-15 14:51 - 2015-07-02 21:55 - 01310720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2015-07-15 14:51 - 2015-07-02 21:20 - 14453248 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2015-07-15 14:51 - 2015-07-02 20:59 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2015-07-15 14:49 - 2015-06-25 20:09 - 00389832 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2015-07-15 14:49 - 2015-06-25 19:43 - 00342736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2015-07-15 14:49 - 2015-06-20 22:06 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2015-07-15 14:49 - 2015-06-20 21:50 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2015-07-15 14:49 - 2015-06-20 21:49 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2015-07-15 14:49 - 2015-06-20 21:49 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2015-07-15 14:49 - 2015-06-20 21:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2015-07-15 14:49 - 2015-06-20 21:48 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2015-07-15 14:49 - 2015-06-20 21:40 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2015-07-15 14:49 - 2015-06-20 21:39 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2015-07-15 14:49 - 2015-06-20 21:34 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2015-07-15 14:49 - 2015-06-20 21:34 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2015-07-15 14:49 - 2015-06-20 21:34 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2015-07-15 14:49 - 2015-06-20 21:25 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2015-07-15 14:49 - 2015-06-20 21:21 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2015-07-15 14:49 - 2015-06-20 21:13 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2015-07-15 14:49 - 2015-06-20 21:08 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2015-07-15 14:49 - 2015-06-20 21:07 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2015-07-15 14:49 - 2015-06-20 21:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2015-07-15 14:49 - 2015-06-20 20:48 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2015-07-15 14:49 - 2015-06-20 20:48 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2015-07-15 14:49 - 2015-06-20 20:46 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2015-07-15 14:49 - 2015-06-20 20:46 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2015-07-15 14:49 - 2015-06-20 20:26 - 02427392 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2015-07-15 14:49 - 2015-06-20 20:02 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2015-07-15 14:49 - 2015-06-19 20:25 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2015-07-15 14:49 - 2015-06-19 20:25 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2015-07-15 14:49 - 2015-06-19 20:24 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2015-07-15 14:49 - 2015-06-19 20:24 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2015-07-15 14:49 - 2015-06-19 20:23 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2015-07-15 14:49 - 2015-06-19 20:17 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2015-07-15 14:49 - 2015-06-19 20:16 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2015-07-15 14:49 - 2015-06-19 20:13 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2015-07-15 14:49 - 2015-06-19 20:13 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2015-07-15 14:49 - 2015-06-19 20:03 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2015-07-15 14:49 - 2015-06-19 19:57 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2015-07-15 14:49 - 2015-06-19 19:53 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2015-07-15 14:49 - 2015-06-19 19:52 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2015-07-15 14:49 - 2015-06-19 19:51 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2015-07-15 14:49 - 2015-06-19 19:40 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2015-07-15 14:49 - 2015-06-19 19:40 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2015-07-15 14:49 - 2015-06-19 19:39 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2015-07-15 14:49 - 2015-06-19 19:15 - 01951232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2015-07-15 14:49 - 2015-06-19 19:11 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2015-07-15 14:46 - 2015-07-04 20:07 - 02087424 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll 2015-07-15 14:46 - 2015-07-04 19:48 - 01414656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll 2015-07-15 14:46 - 2015-07-01 22:56 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2015-07-15 14:46 - 2015-07-01 22:56 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2015-07-15 14:46 - 2015-07-01 22:49 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2015-07-15 14:46 - 2015-07-01 22:49 - 01216512 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2015-07-15 14:46 - 2015-07-01 22:49 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2015-07-15 14:46 - 2015-07-01 22:49 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2015-07-15 14:46 - 2015-07-01 22:49 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2015-07-15 14:46 - 2015-07-01 22:49 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2015-07-15 14:46 - 2015-07-01 22:49 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2015-07-15 14:46 - 2015-07-01 22:49 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2015-07-15 14:46 - 2015-07-01 22:49 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2015-07-15 14:46 - 2015-07-01 22:49 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2015-07-15 14:46 - 2015-07-01 22:49 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2015-07-15 14:46 - 2015-07-01 22:48 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll 2015-07-15 14:46 - 2015-07-01 22:48 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2015-07-15 14:46 - 2015-07-01 22:47 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2015-07-15 14:46 - 2015-07-01 22:47 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2015-07-15 14:46 - 2015-07-01 22:43 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2015-07-15 14:46 - 2015-07-01 22:43 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2015-07-15 14:46 - 2015-07-01 22:39 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2015-07-15 14:46 - 2015-07-01 22:30 - 00552960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2015-07-15 14:46 - 2015-07-01 22:30 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2015-07-15 14:46 - 2015-07-01 22:30 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2015-07-15 14:46 - 2015-07-01 22:30 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2015-07-15 14:46 - 2015-07-01 22:30 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2015-07-15 14:46 - 2015-07-01 22:30 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2015-07-15 14:46 - 2015-07-01 22:30 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll 2015-07-15 14:46 - 2015-07-01 22:30 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2015-07-15 14:46 - 2015-07-01 22:30 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2015-07-15 14:46 - 2015-07-01 22:29 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2015-07-15 14:46 - 2015-07-01 22:29 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2015-07-15 14:46 - 2015-07-01 22:29 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe 2015-07-15 14:46 - 2015-07-01 22:27 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll 2015-07-15 14:46 - 2015-07-01 22:26 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2015-07-15 14:46 - 2015-07-01 22:24 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2015-07-15 14:46 - 2015-07-01 21:27 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2015-07-15 14:46 - 2015-07-01 21:26 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2015-07-15 14:46 - 2015-07-01 21:26 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2015-07-15 14:46 - 2015-04-27 21:23 - 01480192 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2015-07-15 14:46 - 2015-04-27 21:23 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2015-07-15 14:46 - 2015-04-27 21:23 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2015-07-15 14:46 - 2015-04-27 21:23 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2015-07-15 14:46 - 2015-04-27 21:05 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2015-07-15 14:46 - 2015-04-27 21:04 - 01174528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2015-07-15 14:46 - 2015-04-27 21:04 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2015-07-15 14:46 - 2015-04-27 21:04 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2015-07-15 14:45 - 2015-06-15 23:50 - 00112064 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2015-07-15 14:45 - 2015-06-15 23:45 - 03242496 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2015-07-15 14:45 - 2015-06-15 23:45 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2015-07-15 14:45 - 2015-06-15 23:45 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll 2015-07-15 14:45 - 2015-06-15 23:45 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2015-07-15 14:45 - 2015-06-15 23:44 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe 2015-07-15 14:45 - 2015-06-15 23:43 - 02364416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2015-07-15 14:45 - 2015-06-15 23:43 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2015-07-15 14:45 - 2015-06-15 23:43 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll 2015-07-15 14:45 - 2015-06-15 23:42 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe 2015-07-15 14:45 - 2015-06-15 23:42 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll 2015-07-15 14:45 - 2015-06-15 23:37 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll 2015-07-10 19:28 - 2015-07-28 11:36 - 00000000 ___HD C:\$Windows.~BT 2015-07-10 06:09 - 2015-07-10 06:09 - 00000000 _____ C:\Windows\SysWOW64\shoBEEC.tmp ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-08-08 12:46 - 2009-07-14 06:45 - 00028128 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-08-08 12:46 - 2009-07-14 06:45 - 00028128 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-08-08 12:39 - 2013-03-02 18:16 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2015-08-08 12:36 - 2013-01-23 00:09 - 00000000 ____D C:\Users\*****\AppData\Roaming\Spotify 2015-08-08 12:22 - 2015-06-18 00:11 - 00001264 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2025296424-690445150-2269518065-1001UA.job 2015-08-08 12:22 - 2013-01-31 03:57 - 00000000 ____D C:\Users\*****\AppData\Local\PMB Files 2015-08-08 12:21 - 2013-01-23 00:16 - 00000000 ____D C:\Users\*****\AppData\Local\Deployment 2015-08-08 12:05 - 2013-01-23 11:01 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-08-08 11:46 - 2012-01-20 14:08 - 01167793 _____ C:\Windows\WindowsUpdate.log 2015-08-08 11:39 - 2013-01-22 22:43 - 00000000 ____D C:\Users\***** 2015-08-08 11:22 - 2013-01-30 11:43 - 00000000 ___RD C:\Users\*****\Dropbox 2015-08-08 11:21 - 2013-01-30 11:41 - 00000000 ____D C:\Users\*****\AppData\Roaming\Dropbox 2015-08-08 11:21 - 2013-01-23 00:10 - 00000000 ____D C:\Users\*****\AppData\Local\Spotify 2015-08-08 11:19 - 2013-01-22 23:13 - 00000374 _____ C:\Windows\system32\Drivers\etc\hosts.ics 2015-08-08 11:17 - 2013-01-22 23:42 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-08-08 11:17 - 2012-01-20 14:06 - 00000000 ____D C:\ProgramData\NVIDIA 2015-08-08 11:17 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2015-08-08 11:17 - 2009-07-14 06:51 - 00177306 _____ C:\Windows\setupact.log 2015-08-08 11:16 - 2010-11-21 05:47 - 00443606 _____ C:\Windows\PFRO.log 2015-08-08 11:16 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\tracing 2015-08-08 10:30 - 2014-07-23 14:18 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2015-08-08 00:29 - 2013-10-06 00:59 - 00000000 ____D C:\Users\*****\AppData\Local\Battle.net 2015-08-08 00:26 - 2009-07-14 05:20 - 00000000 ___HD C:\Windows\system32\GroupPolicy 2015-08-08 00:14 - 2014-11-28 17:31 - 00001043 _____ C:\Users\Public\Desktop\Warcraft III - The Frozen Throne.lnk 2015-08-08 00:10 - 2014-01-19 02:16 - 00000958 _____ C:\Users\Public\Desktop\Warcraft III.lnk 2015-08-06 16:51 - 2015-03-31 14:10 - 00003504 _____ C:\Windows\System32\Tasks\PCDEventLauncherTask 2015-08-06 12:35 - 2015-06-01 08:16 - 00602180 _____ C:\Users\Apps\local-files-desktop.spa 2015-08-06 12:35 - 2015-05-23 23:37 - 00158566 _____ C:\Users\Apps\hub.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 45066808 _____ C:\Users\libcef.dll 2015-08-06 12:35 - 2015-04-27 22:25 - 10207504 _____ C:\Users\icudtl.dat 2015-08-06 12:35 - 2015-04-27 22:25 - 07675448 _____ (Spotify Ltd) C:\Users\Spotify.exe 2015-08-06 12:35 - 2015-04-27 22:25 - 04487782 _____ C:\Users\devtools_resources.pak 2015-08-06 12:35 - 2015-04-27 22:25 - 03457592 _____ (Microsoft Corporation) C:\Users\d3dcompiler_47.dll 2015-08-06 12:35 - 2015-04-27 22:25 - 02332541 _____ C:\Users\Apps\musixmatch-lyrics.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 02184260 _____ C:\Users\cef.pak 2015-08-06 12:35 - 2015-04-27 22:25 - 02157552 _____ C:\Users\Apps\glue-resources.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 02106424 _____ (Microsoft Corporation) C:\Users\d3dcompiler_43.dll 2015-08-06 12:35 - 2015-04-27 22:25 - 02018360 _____ (Spotify Ltd) C:\Users\SpotifyWebHelper.exe 2015-08-06 12:35 - 2015-04-27 22:25 - 01649208 _____ C:\Users\libGLESv2.dll 2015-08-06 12:35 - 2015-04-27 22:25 - 00967736 _____ (The Chromium Authors) C:\Users\ffmpegsumo.dll 2015-08-06 12:35 - 2015-04-27 22:25 - 00900089 _____ C:\Users\Apps\zlink.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 00838712 _____ (Spotify Ltd) C:\Users\SpotifyCrashService.exe 2015-08-06 12:35 - 2015-04-27 22:25 - 00721136 _____ C:\Users\Apps\browse.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 00622967 _____ C:\Users\cef_200_percent.pak 2015-08-06 12:35 - 2015-04-27 22:25 - 00606828 _____ C:\Users\Apps\playlist-desktop.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 00542847 _____ C:\Users\Apps\notification-center.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 00530001 _____ C:\Users\Apps\settings.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 00528578 _____ C:\Users\Apps\collection.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 00512594 _____ C:\Users\Apps\genre.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 00508698 _____ C:\Users\Apps\collection-artist.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 00504671 _____ C:\Users\Apps\discover.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 00471783 _____ C:\Users\Apps\messages.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 00468951 _____ C:\Users\cef_100_percent.pak 2015-08-06 12:35 - 2015-04-27 22:25 - 00466223 _____ C:\Users\Apps\collection-album.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 00451113 _____ C:\Users\Apps\social-feed.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 00444041 _____ C:\Users\Apps\article.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 00416475 _____ C:\Users\Apps\album.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 00395528 _____ C:\Users\Apps\collection-songs.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 00392161 _____ C:\Users\Apps\zlogin.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 00383262 _____ C:\Users\Apps\social-chart.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 00368227 _____ C:\Users\Apps\charts.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 00366817 _____ C:\Users\Apps\buddy-list.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 00363479 _____ C:\Users\Apps\artist.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 00304572 _____ C:\Users\Apps\radio.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 00278727 _____ C:\Users\Apps\folder.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 00274437 _____ C:\Users\Apps\share.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 00257997 _____ C:\Users\Apps\zlink-queue.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 00244918 _____ C:\Users\Apps\profile.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 00236396 _____ C:\Users\Apps\chart.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 00216723 _____ C:\Users\Apps\search.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 00216045 _____ C:\Users\Apps\findfriends.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 00196416 _____ C:\Users\Apps\suggest.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 00158229 _____ C:\Users\Apps\follow.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 00098360 _____ (Spotify Ltd) C:\Users\SpotifyLauncher.exe 2015-08-06 12:35 - 2015-04-27 22:25 - 00080952 _____ C:\Users\libEGL.dll 2015-08-06 12:35 - 2015-04-27 22:25 - 00080587 _____ C:\Users\Apps\about.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 00073272 _____ C:\Users\wow_helper.exe 2015-08-06 12:35 - 2015-04-27 22:25 - 00072701 _____ C:\Users\Apps\error.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 00053462 _____ C:\Users\Apps\ad.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 00050934 _____ C:\Users\Apps\licenses.spa 2015-08-06 12:35 - 2015-04-27 22:25 - 00014086 _____ C:\Users\locales\en-US.pak 2015-08-06 12:35 - 2015-04-27 22:25 - 00008009 _____ C:\Users\locales\el.mo 2015-08-06 12:35 - 2015-04-27 22:25 - 00007791 _____ C:\Users\locales\ru.mo 2015-08-06 12:35 - 2015-04-27 22:25 - 00007076 _____ C:\Users\locales\ja.mo 2015-08-06 12:35 - 2015-04-27 22:25 - 00006969 _____ C:\Users\locales\hu.mo 2015-08-06 12:35 - 2015-04-27 22:25 - 00006950 _____ C:\Users\locales\fr-CA.mo 2015-08-06 12:35 - 2015-04-27 22:25 - 00006899 _____ C:\Users\locales\fr.mo 2015-08-06 12:35 - 2015-04-27 22:25 - 00006876 _____ C:\Users\locales\fi.mo 2015-08-06 12:35 - 2015-04-27 22:25 - 00006875 _____ C:\Users\locales\pl.mo 2015-08-06 12:35 - 2015-04-27 22:25 - 00006808 _____ C:\Users\locales\es-419.mo 2015-08-06 12:35 - 2015-04-27 22:25 - 00006793 _____ C:\Users\locales\nl.mo 2015-08-06 12:35 - 2015-04-27 22:25 - 00006756 _____ C:\Users\locales\de.mo 2015-08-06 12:35 - 2015-04-27 22:25 - 00006740 _____ C:\Users\locales\zsm.mo 2015-08-06 12:35 - 2015-04-27 22:25 - 00006739 _____ C:\Users\locales\it.mo 2015-08-06 12:35 - 2015-04-27 22:25 - 00006731 _____ C:\Users\locales\es.mo 2015-08-06 12:35 - 2015-04-27 22:25 - 00006726 _____ C:\Users\locales\tr.mo 2015-08-06 12:35 - 2015-04-27 22:25 - 00006719 _____ C:\Users\locales\zh-Hant.mo 2015-08-06 12:35 - 2015-04-27 22:25 - 00006717 _____ C:\Users\locales\pt-BR.mo 2015-08-06 12:35 - 2015-04-27 22:25 - 00006672 _____ C:\Users\locales\sv.mo 2015-08-06 12:35 - 2015-04-27 22:25 - 00006540 _____ C:\Users\locales\arb.mo 2015-08-06 12:35 - 2015-04-27 22:25 - 00006469 _____ C:\Users\locales\en.mo 2015-08-06 12:35 - 2015-04-27 22:25 - 00000020 _____ C:\Users\inst_ver.dat 2015-08-06 12:35 - 2015-04-27 22:25 - 00000000 ____D C:\Users\locales 2015-08-06 12:35 - 2015-04-27 22:25 - 00000000 _____ C:\Users\Christoph.redir 2015-08-05 15:29 - 2015-06-18 00:11 - 00001212 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2025296424-690445150-2269518065-1001Core.job 2015-08-05 03:08 - 2013-01-23 11:02 - 00002177 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2015-08-04 23:27 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared 2015-08-04 23:22 - 2013-01-23 11:16 - 00389020 _____ C:\Windows\DirectX.log 2015-08-04 19:02 - 2010-11-21 08:50 - 00710954 _____ C:\Windows\system32\perfh007.dat 2015-08-04 19:02 - 2010-11-21 08:50 - 00155026 _____ C:\Windows\system32\perfc007.dat 2015-08-04 19:02 - 2009-07-14 07:13 - 01653366 _____ C:\Windows\system32\PerfStringBackup.INI 2015-08-04 16:17 - 2013-10-06 00:59 - 00000000 ____D C:\Program Files (x86)\Battle.net 2015-08-02 22:10 - 2013-01-23 00:10 - 00000000 ____D C:\Users\*****\AppData\Roaming\TS3Client 2015-08-02 03:38 - 2014-02-13 13:02 - 00000000 ____D C:\Program Files (x86)\Steam 2015-07-29 19:26 - 2014-01-15 18:34 - 00000000 ____D C:\Program Files (x86)\Hearthstone 2015-07-29 15:16 - 2013-01-23 11:20 - 00000000 ____D C:\Program Files (x86)\World of Warcraft 2015-07-29 00:47 - 2014-04-30 14:58 - 00000000 ___SD C:\Windows\system32\CompatTel 2015-07-28 11:41 - 2011-02-11 19:13 - 00000000 ____D C:\Windows\panther 2015-07-26 13:55 - 2013-01-24 11:45 - 00002021 _____ C:\Users\Public\Desktop\Adobe Reader X.lnk 2015-07-26 13:55 - 2012-01-20 15:40 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk 2015-07-25 13:04 - 2015-04-05 03:00 - 00000000 ___SD C:\Windows\system32\GWX 2015-07-23 00:25 - 2014-06-27 13:39 - 00000000 ____D C:\Program Files (x86)\World of Warcraft Beta 2015-07-22 17:51 - 2014-07-23 14:18 - 00000000 ____D C:\Program Files\iTunes 2015-07-22 17:50 - 2015-04-08 17:29 - 00000000 ____D C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7 2015-07-22 17:50 - 2014-07-23 14:18 - 00000000 ____D C:\Program Files\iPod 2015-07-22 17:50 - 2014-07-23 14:18 - 00000000 ____D C:\Program Files (x86)\iTunes 2015-07-22 17:50 - 2013-05-19 20:53 - 00000000 ____D C:\Program Files\Common Files\Apple 2015-07-22 16:36 - 2014-11-14 03:45 - 00000000 __SHD C:\Users\*****\AppData\Local\EmieBrowserModeList 2015-07-22 16:36 - 2014-07-25 17:20 - 00000000 __SHD C:\Users\*****\AppData\Local\EmieUserList 2015-07-22 16:36 - 2014-07-25 17:20 - 00000000 __SHD C:\Users\*****\AppData\Local\EmieSiteList 2015-07-22 05:05 - 2014-10-29 06:31 - 00000000 ____D C:\Program Files (x86)\Heroes of the Storm 2015-07-22 05:00 - 2013-01-22 23:56 - 00000000 ____D C:\ProgramData\Blizzard Entertainment 2015-07-22 03:27 - 2013-11-12 15:59 - 00000000 ____D C:\Program Files\Microsoft Office 15 2015-07-22 03:09 - 2009-07-14 06:45 - 00493600 _____ C:\Windows\system32\FNTCACHE.DAT 2015-07-21 19:51 - 2009-07-14 07:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2015-07-19 21:50 - 2013-01-23 00:37 - 00000000 ____D C:\Spiele 2015-07-19 21:49 - 2013-01-23 11:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Total War 2015-07-18 16:58 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2015-07-18 15:17 - 2015-06-18 00:11 - 00004254 _____ C:\Windows\System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2025296424-690445150-2269518065-1001UA 2015-07-18 15:17 - 2015-06-18 00:11 - 00003858 _____ C:\Windows\System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2025296424-690445150-2269518065-1001Core 2015-07-18 00:06 - 2013-05-30 17:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive 2015-07-17 18:25 - 2014-06-12 23:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\diclovit's mod pack 2015-07-17 02:02 - 2014-11-03 05:58 - 00000000 ____D C:\NVIDIA 2015-07-16 20:03 - 2014-06-28 17:28 - 00000000 ____D C:\ProgramData\SplitMediaLabs 2015-07-16 19:35 - 2014-09-29 12:12 - 00001220 _____ C:\Users\Public\Desktop\XSplit Gamecaster.lnk 2015-07-16 19:35 - 2014-09-29 12:08 - 00000000 __SHD C:\AI_RecycleBin 2015-07-16 19:34 - 2014-06-28 17:28 - 00000000 __SHD C:\Windows\SysWOW64\AI_RecycleBin 2015-07-16 00:00 - 2013-01-23 11:01 - 00004106 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2015-07-16 00:00 - 2013-01-22 23:42 - 00003854 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2015-07-15 23:08 - 2014-12-10 04:10 - 00000000 ____D C:\Windows\system32\appraiser 2015-07-15 23:08 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2015-07-15 17:30 - 2013-08-13 22:49 - 00000000 ____D C:\Windows\system32\MRT 2015-07-15 15:39 - 2013-03-02 18:16 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2015-07-15 15:39 - 2013-03-02 18:16 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2015-07-15 15:39 - 2012-01-20 15:16 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2015-07-15 05:58 - 2015-04-05 03:00 - 00000000 ___SD C:\Windows\SysWOW64\GWX ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2012-10-29 12:08 - 2012-10-29 12:08 - 0134954 _____ () C:\Program Files\changelog.txt 2012-10-29 12:08 - 2012-10-29 12:08 - 0024252 _____ () C:\Program Files\license.txt 2013-04-29 11:41 - 2013-04-29 11:56 - 0000040 _____ () C:\Users\*****\AppData\Roaming\gnuplot_history 2015-01-04 03:45 - 2015-01-04 03:45 - 0000103 _____ () C:\Users\*****\AppData\Local\fusioncache.dat 2013-07-27 16:10 - 2013-07-27 16:10 - 0000040 _____ () C:\ProgramData\ra3.ini Einige Dateien in TEMP: ==================== C:\Users\*****\AppData\Local\Temp\drm_dialogs.dll C:\Users\*****\AppData\Local\Temp\drm_dyndata_7330017.dll C:\Users\*****\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpkctbxr.dll C:\Users\*****\AppData\Local\Temp\DseShExt-x64.dll C:\Users\*****\AppData\Local\Temp\DseShExt-x86.dll C:\Users\*****\AppData\Local\Temp\FileSystemView.dll C:\Users\*****\AppData\Local\Temp\GameuxInstallHelper.dll C:\Users\*****\AppData\Local\Temp\Gw2.exe C:\Users\*****\AppData\Local\Temp\jre-7u11-windows-i586-iftw.exe C:\Users\*****\AppData\Local\Temp\jre-7u13-windows-i586-iftw.exe C:\Users\*****\AppData\Local\Temp\jre-7u15-windows-i586-iftw.exe C:\Users\*****\AppData\Local\Temp\jre-7u25-windows-i586-iftw.exe C:\Users\*****\AppData\Local\Temp\jre-7u45-windows-i586-iftw.exe C:\Users\*****\AppData\Local\Temp\jre-7u51-windows-i586-iftw.exe C:\Users\*****\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exe C:\Users\*****\AppData\Local\Temp\jre-8u45-windows-au.exe C:\Users\*****\AppData\Local\Temp\nvSCPAPI64.dll C:\Users\*****\AppData\Local\Temp\nvStereoApiI64.dll C:\Users\*****\AppData\Local\Temp\nvStInst.exe C:\Users\*****\AppData\Local\Temp\OfficeSetup.exe C:\Users\*****\AppData\Local\Temp\SDShelEx-win32.dll C:\Users\*****\AppData\Local\Temp\SDShelEx-x64.dll C:\Users\*****\AppData\Local\Temp\SkypeSetup.exe C:\Users\*****\AppData\Local\Temp\SpotifyUpgrader.exe C:\Users\*****\AppData\Local\Temp\swt-win32-3740.dll C:\Users\*****\AppData\Local\Temp\tmp7C6C.tmp.exe C:\Users\*****\AppData\Local\Temp\_is4596.exe C:\Users\*****\AppData\Local\Temp\_is494E.exe C:\Users\*****\AppData\Local\Temp\_is5EAC.exe C:\Users\*****\AppData\Local\Temp\_is620C.exe C:\Users\*****\AppData\Local\Temp\_is6DEE.exe C:\Users\*****\AppData\Local\Temp\_is8D69.exe C:\Users\*****\AppData\Local\Temp\_is9DBE.exe C:\Users\*****\AppData\Local\Temp\_isB3F2.exe C:\Users\*****\AppData\Local\Temp\_isEDF2.exe C:\Users\*****\AppData\Local\Temp\_isFA20.exe ==================== Bamital & volsnap Check ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\system32\winlogon.exe => Datei ist digital signiert C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2015-08-02 08:13 ==================== Ende von log ============================ Das Programm GMER funktionierte beim Ausführen nicht. |
Themen zu Win 7 Sp1 64Bit. Ein Trojaner plagt mich. |
akamai, antivirus, avg, bonjour, browser, chromium, computer, defender, dnsapi.dll, firefox, flash player, google, home, internet, internet explorer, monitor, mozilla, prozesse, realtek, registry, rundll, scan, server, software, svchost.exe, trojaner, windows |