Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: Win 7 Sp1 64Bit. Ein Trojaner plagt mich.

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML.

 
Alt 08.08.2015, 12:06   #1
Christoph B.
 
Win 7 Sp1 64Bit. Ein Trojaner plagt mich. - Standard

Win 7 Sp1 64Bit. Ein Trojaner plagt mich.



Hallo zusammen,

Seit einigen Tagen plagt wohl ein Trojaner meinen Rechner. Habe, nachdem sich dann automatisch AVG 2015 installiert hatte meinen Virenscanner (Avast 2015, konstenlose Version) mal eine vollständige Überprüfung machen lassen, leider ohne Ergebnis.

Habe dann diesen manuell deinstalliert und AdwCleaner laufen lassen.

Das Ergebnis war Folgendes:

Code:
ATTFilter
# AdwCleaner v4.208 - Bericht erstellt 08/08/2015 um 11:26:01
# Aktualisiert 09/07/2015 von Xplode
# Datenbank : 2015-08-01.1 [Server]
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (x64)
# Benutzername : ******* - *******
# Gestarted von : C:\Users\*******\Downloads\adwcleaner_4.208.exe
# Option : Suchlauf

***** [ Dienste ] *****


***** [ Dateien / Ordner ] *****


***** [ Geplante Tasks ] *****


***** [ Verknüpfungen ] *****


***** [ Registrierungsdatenbank ] *****

Daten Gefunden : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - <local>

***** [ Internetbrowser ] *****

-\\ Internet Explorer v11.0.9600.17909


-\\ Mozilla Firefox v30.0 (de)


-\\ Google Chrome v44.0.2403.130


-\\ Chromium v


*************************

AdwCleaner[R0].txt - [845 Bytes] - [08/08/2015 11:26:01]

########## EOF - C:\AdwCleaner\AdwCleaner[R0].txt - [903 Bytes] ##########
         
Habe daraufhin etwas gegooglet und bin auf Eure Seite gestoßen und bitte nun um Hilfe.

Code:
ATTFilter
defogger_disable by jpshortstuff (23.02.10.1)
Log created at 12:44 on 08/08/2015 (*****)

Checking for autostart values...
HKCU\~\Run values retrieved.
HKLM\~\Run values retrieved.

Checking for services/drivers...


-=E.O.F=-
         
Code:
ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:08-08-2015
durchgeführt von ***** (Administrator) auf ***** (08-08-2015 12:49:44)
Gestartet von C:\Users\*****\Desktop
Geladene Profile: ***** (Verfügbare Profile: *****)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: Chrome)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Prozesse (Nicht auf der Ausnahmeliste) =================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(Dell Inc.) C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Windows\System32\alg.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\ng\ngservice.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Spotify Ltd) C:\Users\*****\AppData\Roaming\Spotify\SpotifyWebHelper.exe
(Alienware) C:\Program Files\Alienware\Command Center\AWCCServiceController.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe
(Computec Media AG) C:\Users\*****\AppData\Local\Blasc3\Program.Blasc3.exe
(Akamai Technologies, Inc.) C:\Users\*****\AppData\Local\Akamai\netsession_win.exe
() C:\Users\*****\AppData\Local\Amazon Music\Amazon Music Helper.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Akamai Technologies, Inc.) C:\Users\*****\AppData\Local\Akamai\netsession_win.exe
(Spotify Ltd) C:\Users\*****\AppData\Roaming\Spotify\Spotify.exe
(Curse) C:\Users\*****\AppData\Local\Apps\2.0\7NC9HZKJ.11C\3ZKW4BG8.487\curs..tion_9e9e83ddf3ed3ead_0005.0001_fb8944c2684f5b6c\CurseClient.exe
(Dropbox, Inc.) C:\Users\*****\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe
(Sony Corporation) C:\Program Files (x86)\Sony\Content Transfer\ContentTransferWMDetector.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\avastui.exe
(Alienware) C:\Program Files\Alienware\Command Center\AlienwareAlienFXController.exe
(Alienware) C:\Program Files\Alienware\Command Center\AWCCApplicationWatcher32.exe
(Alienware) C:\Program Files\Alienware\Command Center\AWCCApplicationWatcher64.exe
(NCSOFT Corporation) C:\Program Files (x86)\NCWest\NCLauncher\NCUpdateHelper.exe
(Spotify Ltd) C:\Users\*****\AppData\Roaming\Spotify\Spotify.exe
(Spotify Ltd) C:\Users\*****\AppData\Roaming\Spotify\Spotify.exe
(Alienware) C:\Program Files\Alienware\Command Center\AlienFusionService.exe
(Dell Inc.) C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe
(Alienware) C:\Program Files\Alienware\Command Center\AlienFusionController.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Dell Inc.) C:\Program Files\Dell\DellDataVault\DellDataVault.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registry (Nicht auf der Ausnahmeliste) ==================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6412904 2011-11-03] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1157224 2011-10-20] (Realtek Semiconductor)
HKLM\...\Run: [] => [X]
HKLM\...\Run: [Command Center Controllers] => C:\Program Files\Alienware\Command Center\AWCCStartupOrchestrator.exe [12616 2011-12-15] (Alienware)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2462536 2014-10-16] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [170280 2015-07-11] (Apple Inc.)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [40336 2015-06-27] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [60712 2015-05-15] (Apple Inc.)
HKLM-x32\...\Run: [ContentTransferWMDetector.exe] => C:\Program Files (x86)\Sony\Content Transfer\ContentTransferWMDetector.exe [583016 2009-11-19] (Sony Corporation)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5515496 2015-05-11] (Avast Software s.r.o.)
HKLM-x32\...\Run: [NCUpdateHelper] => C:\Program Files (x86)\NCWest\NCLauncher\NCUpdateHelper.exe [528360 2014-03-08] (NCSOFT Corporation)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2015-06-17] (Apple Inc.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-2025296424-690445150-2269518065-1001\...\Run: [Pando Media Booster] => C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe [3093624 2013-01-31] ()
HKU\S-1-5-21-2025296424-690445150-2269518065-1001\...\Run: [Spotify Web Helper] => C:\Users\*****\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2018360 2015-08-06] (Spotify Ltd)
HKU\S-1-5-21-2025296424-690445150-2269518065-1001\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\Overwolf.exe -silent
HKU\S-1-5-21-2025296424-690445150-2269518065-1001\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [43816 2015-04-26] (Apple Inc.)
HKU\S-1-5-21-2025296424-690445150-2269518065-1001\...\Run: [ApplePhotoStreams] => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [43816 2015-04-26] (Apple Inc.)
HKU\S-1-5-21-2025296424-690445150-2269518065-1001\...\Run: [Blasc3] => C:\Users\*****\AppData\Local\Blasc3\Program.Blasc3.exe [485888 2014-08-28] (Computec Media AG)
HKU\S-1-5-21-2025296424-690445150-2269518065-1001\...\Run: [Akamai NetSession Interface] => C:\Users\*****\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-30] (Akamai Technologies, Inc.)
HKU\S-1-5-21-2025296424-690445150-2269518065-1001\...\Run: [Amazon Music] => C:\Users\*****\AppData\Local\Amazon Music\Amazon Music Helper.exe [6277952 2014-11-19] ()
HKU\S-1-5-21-2025296424-690445150-2269518065-1001\...\Run: [Skype] => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
HKU\S-1-5-21-2025296424-690445150-2269518065-1001\...\Run: [Spotify] => C:\Users\*****\AppData\Roaming\Spotify\Spotify.exe [7675448 2015-08-06] (Spotify Ltd)
HKU\S-1-5-21-2025296424-690445150-2269518065-1001\...\Run: [Dropbox Update] => C:\Users\*****\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-06-18] (Dropbox, Inc.)
HKU\S-1-5-21-2025296424-690445150-2269518065-1001\...\Run: [msnmsgr] => C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe [4272840 2014-03-31] (Microsoft Corporation)
HKU\S-1-5-21-2025296424-690445150-2269518065-1001\...\RunOnce: [Uninstall C:\Users\*****\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64] => C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\*****\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112\amd64"
HKU\S-1-5-21-2025296424-690445150-2269518065-1001\...\RunOnce: [Uninstall C:\Users\*****\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112] => C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\*****\AppData\Local\Microsoft\SkyDrive\17.0.2003.1112"
HKU\S-1-5-18\...\RunOnce: [iCloud] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloud.exe [43816 2015-04-26] (Apple Inc.)
AppInit_DLLs: C:\ProgramData\SecurityUtility\SecurityUtility64.dll => C:\ProgramData\SecurityUtility\SecurityUtility64.dll Datei nicht gefunden
AppInit_DLLs:  C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [174856 2014-10-16] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\ProgramData\SecurityUtility\SecurityUtility32.dll => "C:\ProgramData\SecurityUtility\SecurityUtility32.dll" Datei nicht gefunden
AppInit_DLLs-x32:  C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [156840 2014-10-16] (NVIDIA Corporation)
Startup: C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CurseClientStartup.ccip [2013-01-23] ()
Startup: C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2015-05-08]
ShortcutTarget: Dropbox.lnk -> C:\Users\*****\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\GameRanger.lnk [2013-12-22]
ShortcutTarget: GameRanger.lnk -> C:\Users\*****\AppData\Roaming\GameRanger\GameRanger\GameRanger.exe (GameRanger Technologies)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-04-22] (Avast Software s.r.o.)
ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\*****\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-07-24] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\*****\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-07-24] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\*****\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-07-24] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\*****\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-07-24] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\*****\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll [2015-07-24] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\*****\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll [2015-07-24] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\*****\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll [2015-07-24] (Dropbox, Inc.)
GroupPolicy: Gruppenrichtline auf Chrome erkannt <======= ACHTUNG
CHR HKLM\SOFTWARE\Policies\Google: Richtlinienbeschränkung <======= ACHTUNG

==================== Internet (Nicht auf der Ausnahmeliste) ====================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt..)

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-06-09] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_45\bin\ssv.dll [2015-04-21] (Oracle Corporation)
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-04-22] (Avast Software s.r.o.)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-07-17] (Google Inc.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL [2015-06-09] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-06-16] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-04-21] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-04-21] (Oracle Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-04-22] (Avast Software s.r.o.)
BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-07-17] (Google Inc.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL [2015-06-09] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-04-21] (Oracle Corporation)
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} -  Keine Datei
Toolbar: HKLM - Kein Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} -  Keine Datei
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2015-07-17] (Google Inc.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2015-07-17] (Google Inc.)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-02-03] (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} -  Keine Datei
Winsock: Catalog5 05 C:\Windows\system32\DnsBlockA.dll Datei nicht gefunden
Winsock: Catalog5 11 C:\Windows\system32\DnsBlockB.dll Datei nicht gefunden
Winsock: Catalog5-x64 05 C:\Windows\system32\DnsBlockA.dll File Not ' & $found1 & '
Winsock: Catalog5-x64 11 C:\Windows\system32\DnsBlockB.dll File Not ' & $found1 & '
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{3A84EB8B-D610-4EB8-B42A-FAED5407B372}: [DhcpNameServer] 192.168.2.1

FireFox:
========
FF ProfilePath: C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\0xip5oi5.default
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_18_0_0_209.dll [2015-07-15] ()
FF Plugin: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-04-21] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-04-21] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll [2015-07-15] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-01-06] ()
FF Plugin-x32: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-04-21] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-04-21] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2013-11-12] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2014-10-16] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2014-10-16] (NVIDIA Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [2013-01-31] (Pando Networks)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-16] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-16] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll [2015-06-27] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-2025296424-690445150-2269518065-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\*****\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-04-01] (Unity Technologies ApS)
FF Plugin HKU\S-1-5-21-2025296424-690445150-2269518065-1001: pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [2013-01-31] (Pando Networks)
FF Plugin HKU\S-1-5-21-2025296424-690445150-2269518065-1001: thehappycloud.com/HappyCloudPlugin -> C:\ProgramData\HappyCloud\Application\npHappyCloudPlugin.dll [2013-05-05] (The Happy Cloud)
FF Extension: Kein Name - C:\Users\*****\AppData\Roaming\Mozilla\Firefox\Profiles\0xip5oi5.default\Extensions\1438986229_xpi [2015-08-08]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-01-23]

Chrome: 
=======
CHR Profile: C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Avast SafePrice) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2015-08-06]
CHR Extension: (Avast Online Security) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2013-05-30]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-14]
CHR Extension: (Chrome Web Store Payments) - C:\Users\*****\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-23]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswwebrepchrome-sp.crx [2014-08-04]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-04-22]

==================== Dienste (Nicht auf der Ausnahmeliste) ========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77128 2015-05-29] (Apple Inc.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-04-22] (Avast Software s.r.o.)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4034896 2015-04-22] (Avast Software)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2753720 2015-07-01] (Microsoft Corporation)
R2 DellDataVault; C:\Program Files\Dell\DellDataVault\DellDataVault.exe [2573520 2015-05-22] (Dell Inc.)
R2 DellDataVaultWiz; C:\Program Files\Dell\DellDataVault\DellDataVaultWiz.exe [201936 2015-05-22] (Dell Inc.)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1148744 2014-10-16] (NVIDIA Corporation)
S2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1871160 2015-06-18] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
S4 MSI_ODD_Service; c:\Program Files (x86)\msi\ODD Monitor\ODD_Monitor.exe [76800 2011-10-05] (Micro-Star Int'l Co., Ltd.) [Datei ist nicht signiert]
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1795912 2014-10-16] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19439944 2014-10-16] (NVIDIA Corporation)
R2 SupportAssistAgent; C:\Program Files (x86)\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [20648 2015-06-11] (Dell Inc.)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
S2 0136381358887401mcinstcleanup; C:\Windows\TEMP\013638~1.EXE C:\PROGRA~2\COMMON~1\McAfee\INSTAL~1\cleanup.ini -cleanup -nolog -service

===================== Treiber (Nicht auf der Ausnahmeliste) ==========================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29168 2015-04-22] ()
R1 aswKbd; C:\Windows\System32\Drivers\aswKbd.sys [21136 2012-10-31] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [89944 2015-04-22] (Avast Software s.r.o.)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-04-22] (Avast Software s.r.o.)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65736 2015-04-22] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1047320 2015-04-22] (Avast Software s.r.o.)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [442264 2015-06-26] (Avast Software s.r.o.)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [137288 2015-04-22] (Avast Software s.r.o.)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [272248 2015-04-22] ()
R3 DDDriver; C:\Windows\System32\drivers\DDDriver64Dcsa.sys [23760 2015-01-31] (Dell Computer Corporation)
R3 DellProf; C:\Windows\System32\drivers\DellProf.sys [24240 2015-05-22] (Dell Computer Corporation)
S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-06-18] (Malwarebytes Corporation)
S3 NTIOLib_X64; C:\Program Files (x86)\msi\ODD Monitor\NTIOLib_X64.sys [14136 2010-01-18] (MSI)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19272 2014-10-16] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [38048 2014-10-16] (NVIDIA Corporation)
R3 rusb3hub; C:\Windows\System32\DRIVERS\rusb3hub.sys [100352 2011-09-15] (Renesas Electronics Corporation)
R3 rusb3xhc; C:\Windows\System32\DRIVERS\rusb3xhc.sys [216064 2011-09-15] (Renesas Electronics Corporation)
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2014-07-28] (Apple, Inc.) [Datei ist nicht signiert]
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [273824 2015-04-22] (Avast Software)
U3 Winsock; kein ImagePath
R3 XSplit_Dummy; C:\Windows\System32\drivers\xspltspk.sys [26200 2014-07-02] (SplitmediaLabs Limited)
S3 PCDSRVC{90AB3B40-A9A6E5C8-06020200}_0; \??\c:\program files\alienware\supportassist\pcdsrvc_x64.pkms [X]
U3 pgtirpow; \??\C:\Users\CHRIST~1\AppData\Local\Temp\pgtirpow.sys [X]

==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)


==================== Ein Monat: Erstellte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2015-08-08 12:47 - 2015-08-08 12:47 - 02169856 _____ (Farbar) C:\Users\*****\Downloads\FRST64 (1).exe
2015-08-08 12:46 - 2015-08-08 12:46 - 02169856 _____ (Farbar) C:\Users\*****\Downloads\FRST64.exe
2015-08-08 12:44 - 2015-08-08 12:44 - 00000000 ____D C:\Users\*****\Desktop\FRST-OlderVersion
2015-08-08 11:52 - 2015-08-08 11:59 - 00001010 _____ C:\Users\*****\Desktop\AdwCleaner[R1].txt
2015-08-08 11:49 - 2015-08-08 11:49 - 00380416 _____ C:\Users\*****\Downloads\n4ldsfo8.exe
2015-08-08 11:47 - 2015-08-08 11:47 - 00380416 _____ C:\Users\*****\Downloads\fo8kzmij.exe
2015-08-08 11:42 - 2015-08-08 12:49 - 00028358 _____ C:\Users\*****\Desktop\FRST.txt
2015-08-08 11:42 - 2015-08-08 12:49 - 00000000 ____D C:\FRST
2015-08-08 11:42 - 2015-08-08 12:02 - 00094850 _____ C:\Users\*****\Desktop\Addition.txt
2015-08-08 11:41 - 2015-08-08 12:44 - 02169856 _____ (Farbar) C:\Users\*****\Desktop\FRST64.exe
2015-08-08 11:39 - 2015-08-08 12:44 - 00000492 _____ C:\Users\*****\Desktop\defogger_disable.log
2015-08-08 11:39 - 2015-08-08 11:39 - 00000000 _____ C:\Users\*****\defogger_reenable
2015-08-08 11:38 - 2015-08-08 11:38 - 00050477 _____ C:\Users\*****\Desktop\Defogger.exe
2015-08-08 11:37 - 2015-08-08 12:03 - 00002648 _____ C:\Users\*****\Desktop\Anti-Maleware Suchlauf.txt
2015-08-08 11:35 - 2015-08-08 11:35 - 00002658 _____ C:\Anti-Maleware Suchlauf.txt
2015-08-08 11:26 - 2015-08-08 11:58 - 00000958 _____ C:\Users\*****\Desktop\AdwCleaner[R0].txt
2015-08-08 11:24 - 2015-08-08 11:25 - 02248704 _____ C:\Users\*****\Desktop\adwcleaner_4.208.exe
2015-08-08 01:09 - 2015-08-08 11:18 - 00113880 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-08-08 01:09 - 2015-08-08 01:09 - 00001104 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2015-08-08 01:09 - 2015-08-08 01:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2015-08-08 01:09 - 2015-08-08 01:09 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-08-08 01:09 - 2015-08-08 01:09 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 
2015-08-08 01:09 - 2015-06-18 08:41 - 00109272 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-08-08 01:09 - 2015-06-18 08:41 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-08-08 01:09 - 2015-06-18 08:41 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-08-08 01:07 - 2015-08-08 01:08 - 24345872 _____ (Malwarebytes Corporation ) C:\Users\*****\Downloads\mbam-setup-2.1.8.1057.exe
2015-08-08 00:26 - 2015-08-08 00:26 - 00000306 __RSH C:\ProgramData\ntuser.pol
2015-08-08 00:26 - 2015-08-08 00:26 - 00000000 ____D C:\Users\*****\Downloads\Neuer Ordner
2015-08-08 00:26 - 2015-08-08 00:26 - 00000000 ____D C:\Program Files\{E9BD9858-0527-4940-9AC3-BFFCAD328F7B}
2015-08-08 00:26 - 2015-08-08 00:26 - 00000000 ____D C:\Program Files (x86)\{A25BAB8C-2F3B-4864-9FF0-542E5994EDE5}
2015-08-08 00:22 - 2015-08-08 00:23 - 00517448 _____ ( ) C:\Users\*****\Downloads\WarCraft_WindowsModifier.zip.exe
2015-08-06 19:44 - 2015-08-08 11:56 - 00000000 ____D C:\AdwCleaner
2015-08-06 12:35 - 2015-08-06 12:35 - 01865516 _____ C:\Users\Apps\musixmatch-lyrics-cp.spa
2015-08-06 12:35 - 2015-08-06 12:35 - 00449780 _____ C:\Users\snapshot_blob.bin
2015-08-06 12:35 - 2015-08-06 12:35 - 00410937 _____ C:\Users\natives_blob.bin
2015-08-05 04:00 - 2015-08-05 04:00 - 00000000 _____ C:\Windows\SysWOW64\sho7EEC.tmp
2015-08-05 03:30 - 2015-08-05 03:38 - 00008989 _____ C:\Users\*****\Downloads\All_About_The_Bass_-_Meghan_Trainor_Treble_Clef_Brass_Quartet.mscz
2015-08-05 03:30 - 2015-08-05 03:30 - 00010361 _____ C:\Users\*****\Downloads\.All_About_The_Bass_-_Meghan_Trainor_Treble_Clef_Brass_Quartet.mscz,
2015-08-05 02:12 - 2015-08-06 01:21 - 00007152 _____ C:\Users\*****\Downloads\Forrest_Gump_-_4_trombones.mscz
2015-08-05 02:12 - 2015-08-05 03:51 - 00007074 _____ C:\Users\*****\Downloads\.Forrest_Gump_-_4_trombones.mscz,
2015-08-04 23:41 - 2015-08-04 23:41 - 00000000 ____D C:\Users\*****\AppData\Roaming\dlg
2015-08-04 23:40 - 2015-08-04 23:48 - 00000000 ____D C:\Users\*****\Documents\Apowersoft Free Audio Recorder
2015-08-04 23:39 - 2015-08-04 23:44 - 00000000 ____D C:\Users\*****\AppData\Roaming\Apowersoft
2015-08-04 23:39 - 2015-08-04 23:39 - 00000000 ____D C:\Program Files (x86)\Apowersoft
2015-08-04 23:38 - 2015-08-04 23:38 - 07976008 _____ (APOWERSOFT LIMITED ) C:\Windows\SysWOW64\free-audio-recorder-computerbild.exe
2015-08-04 23:37 - 2015-08-04 23:37 - 00000000 ____D C:\Users\*****\AppData\Roaming\AVG
2015-08-04 23:36 - 2015-08-04 23:36 - 00000000 ____D C:\Users\*****\AppData\Local\Avg
2015-08-04 23:34 - 2015-08-08 11:20 - 00000000 ____D C:\Users\*****\Tracing
2015-08-04 23:30 - 2015-08-04 23:38 - 00000000 ____D C:\ProgramData\AVG
2015-08-04 23:30 - 2015-08-04 23:30 - 00000000 ____D C:\Windows\de
2015-08-04 23:29 - 2015-08-08 11:17 - 00000386 _____ C:\Windows\Tasks\RNKCKUYTBN1.job
2015-08-04 23:29 - 2015-08-04 23:29 - 00002908 _____ C:\Windows\System32\Tasks\RNKCKUYTBN1
2015-08-04 23:29 - 2015-08-04 23:29 - 00002488 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Messenger.lnk
2015-08-04 23:29 - 2015-08-04 23:29 - 00001460 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk
2015-08-04 23:29 - 2015-08-04 23:29 - 00001376 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk
2015-08-04 23:29 - 2015-08-04 23:29 - 00001307 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk
2015-08-04 23:29 - 2015-08-04 23:29 - 00000020 _____ C:\Windows\pôL
2015-08-04 23:29 - 2015-08-04 23:29 - 00000000 ____D C:\ProgramData\7b24ec7cc000461ebe26d116b88142c8
2015-08-04 23:29 - 2015-08-04 23:29 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2015-08-04 23:28 - 2015-08-04 23:28 - 00516720 _____ ( ) C:\Users\*****\Downloads\free-audio-recorder-computerbild_CB-DL-Manager.exe
2015-08-04 23:27 - 2015-08-04 23:29 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
2015-08-04 23:27 - 2015-08-04 23:27 - 00000000 ____D C:\Program Files\Windows Live
2015-08-04 23:27 - 2014-03-31 21:06 - 00058056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fssfltr.sys
2015-08-04 23:26 - 2015-08-04 23:29 - 00000000 ____D C:\Program Files (x86)\Windows Live
2015-08-04 23:26 - 2015-08-04 23:26 - 00081303 _____ C:\Users\*****\Documents\Unbenannt (2).wma
2015-08-04 23:25 - 2015-08-04 23:25 - 00054363 _____ C:\Users\*****\Documents\Unbenannt.wma
2015-08-04 23:21 - 2015-08-04 23:21 - 00002234 _____ C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2015-08-04 23:19 - 2015-08-07 16:02 - 00000000 ____D C:\Users\*****\AppData\Local\Windows Live
2015-08-04 23:19 - 2015-08-04 23:19 - 02746203 _____ C:\Users\*****\Downloads\Vorbemerkung.mp4
2015-08-04 23:18 - 2015-08-04 23:18 - 01245384 _____ (Microsoft Corporation) C:\Users\*****\Downloads\wlsetup-web.exe
2015-08-04 23:00 - 2015-08-04 23:00 - 00000000 ____D C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Syntrillium
2015-08-04 23:00 - 2015-08-04 23:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Syntrillium
2015-08-04 22:59 - 2015-08-05 00:44 - 00000000 ____D C:\cool
2015-08-04 22:59 - 2015-08-04 23:28 - 00003967 _____ C:\Windows\cool.ini
2015-08-04 22:59 - 1997-05-01 15:01 - 00127023 _____ C:\Windows\c96unins.exe
2015-08-04 22:59 - 1997-04-29 08:06 - 00272896 _____ (Progressive Networks) C:\Windows\SysWOW64\pncrt.dll
2015-08-04 22:59 - 1997-04-29 08:06 - 00140288 _____ (Progressive Networks, Inc.) C:\Windows\SysWOW64\ra3214_4.dll
2015-08-04 22:59 - 1997-04-29 08:06 - 00090624 _____ (Progressive Networks, Inc.) C:\Windows\SysWOW64\pnc32301.dll
2015-08-04 22:59 - 1997-04-29 08:06 - 00085504 _____ (Progressive Networks, Inc.) C:\Windows\SysWOW64\encdnet.dll
2015-08-04 22:59 - 1997-04-29 08:06 - 00072704 _____ (Progressive Networks, Inc.) C:\Windows\SysWOW64\ra3228_8.dll
2015-08-04 22:59 - 1997-04-29 08:06 - 00013824 _____ (Progressive Networks, Inc.) C:\Windows\SysWOW64\ra32dnet.dll
2015-08-04 22:58 - 2015-08-04 22:58 - 02178955 _____ C:\Users\*****\Downloads\31939_c96setup.exe
2015-08-02 08:41 - 2015-08-07 16:44 - 00000000 ____D C:\Users\*****\AppData\Roaming\OBS
2015-08-02 08:41 - 2015-08-02 20:16 - 00000000 ____D C:\Program Files\OBS
2015-08-02 08:41 - 2015-08-02 08:41 - 07413584 _____ C:\Users\*****\Downloads\OBS_0_653b_Installer.exe
2015-08-02 08:41 - 2015-08-02 08:41 - 00000937 _____ C:\Users\*****\Desktop\Open Broadcaster Software.lnk
2015-08-02 08:41 - 2015-08-02 08:41 - 00000000 ____D C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Open Broadcaster Software
2015-08-02 08:41 - 2015-08-02 08:41 - 00000000 ____D C:\Program Files (x86)\OBS
2015-08-01 06:22 - 2015-08-07 04:20 - 00000000 ____D C:\Users\*****\Documents\Dateien bis 01.August 2015
2015-07-31 16:52 - 2015-07-31 16:52 - 00000000 ____D C:\Users\*****\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2015-07-28 10:05 - 2015-07-25 20:07 - 00017856 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2015-07-28 10:05 - 2015-07-25 20:04 - 00765440 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-07-28 10:05 - 2015-07-25 20:04 - 00726528 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-07-28 10:05 - 2015-07-25 20:03 - 01085440 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-07-28 10:05 - 2015-07-25 20:03 - 00433664 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-07-28 10:05 - 2015-07-25 20:03 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-07-28 10:05 - 2015-07-25 20:03 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-07-28 10:05 - 2015-07-25 19:55 - 01145856 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-07-27 03:45 - 2015-07-27 03:45 - 00000000 _____ C:\Windows\SysWOW64\shoDE3D.tmp
2015-07-26 13:49 - 2015-07-26 13:49 - 00003886 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2015-07-22 17:51 - 2015-07-22 17:51 - 00001715 _____ C:\Users\Public\Desktop\iTunes.lnk
2015-07-22 17:51 - 2015-07-22 17:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2015-07-22 17:45 - 2015-07-22 17:45 - 00001847 _____ C:\Users\Public\Desktop\QuickTime Player.lnk
2015-07-22 17:45 - 2015-07-22 17:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
2015-07-22 17:45 - 2015-07-22 17:45 - 00000000 ____D C:\Program Files (x86)\QuickTime
2015-07-22 17:43 - 2015-07-22 17:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
2015-07-22 04:59 - 2015-07-22 05:01 - 00000000 ____D C:\Users\*****\Documents\StarCraft II Beta
2015-07-22 04:33 - 2015-07-22 04:59 - 00000000 ____D C:\Program Files (x86)\StarCraft II - Legacy of the Void Beta
2015-07-22 02:54 - 2015-07-22 02:54 - 00000000 ____D C:\Users\*****\AppData\Local\CEF
2015-07-21 19:51 - 2015-07-21 19:51 - 00002043 _____ C:\Users\Public\Desktop\Star Wars - Galactic Battlegrounds.lnk
2015-07-21 19:51 - 2015-07-21 19:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com
2015-07-21 19:51 - 2000-06-23 22:05 - 00136704 _____ (Ligos Corporation) C:\Windows\SysWOW64\iacenc.dll
2015-07-21 19:51 - 2000-06-22 21:09 - 00056320 _____ C:\Windows\SysWOW64\iyvu9_32.dll
2015-07-21 19:50 - 2015-07-21 19:50 - 00000000 ____D C:\GOG Games
2015-07-21 19:44 - 2015-07-21 19:48 - 569047376 _____ (GOG.com ) C:\Users\*****\Downloads\setup_sw_galactic_battlegrounds_saga_german_2.0.0.2.exe
2015-07-21 15:35 - 2015-07-15 05:19 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2015-07-21 15:35 - 2015-07-15 05:19 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-07-21 15:35 - 2015-07-15 05:19 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2015-07-21 15:35 - 2015-07-15 05:19 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2015-07-21 15:35 - 2015-07-15 04:55 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2015-07-21 15:35 - 2015-07-15 04:55 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-07-21 15:35 - 2015-07-15 04:55 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2015-07-21 15:35 - 2015-07-15 04:54 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2015-07-21 15:35 - 2015-07-15 03:59 - 00372224 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-07-21 15:35 - 2015-07-15 03:52 - 00299008 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-07-17 18:17 - 2015-07-17 18:22 - 26401485 _____ (diclovit ) C:\Users\*****\Downloads\dmp_9.9.0_setup.exe
2015-07-16 19:35 - 2015-07-16 19:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XSplit
2015-07-15 15:39 - 2015-07-15 15:39 - 18524336 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2015-07-15 14:52 - 2015-07-09 19:58 - 03154944 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-07-15 14:52 - 2015-07-09 19:58 - 02603008 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-07-15 14:52 - 2015-07-09 19:58 - 00696320 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-07-15 14:52 - 2015-07-09 19:58 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-07-15 14:52 - 2015-07-09 19:58 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-07-15 14:52 - 2015-07-09 19:58 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-07-15 14:52 - 2015-07-09 19:58 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-07-15 14:52 - 2015-07-09 19:58 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-07-15 14:52 - 2015-07-09 19:58 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-07-15 14:52 - 2015-07-09 19:58 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-07-15 14:52 - 2015-07-09 19:58 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2015-07-15 14:52 - 2015-07-09 19:43 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-07-15 14:52 - 2015-07-09 19:43 - 00173056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-07-15 14:52 - 2015-07-09 19:43 - 00093184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-07-15 14:52 - 2015-07-09 19:43 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-07-15 14:52 - 2015-07-09 19:42 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-07-15 14:52 - 2015-06-27 04:47 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-07-15 14:52 - 2015-06-27 04:43 - 05923840 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-07-15 14:52 - 2015-06-27 03:58 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-07-15 14:52 - 2015-06-27 03:39 - 04520448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-07-15 14:52 - 2015-06-25 10:57 - 03207168 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-07-15 14:52 - 2015-06-17 19:47 - 00404992 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-07-15 14:52 - 2015-06-17 19:37 - 00312320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2015-07-15 14:52 - 2015-06-02 02:07 - 00254976 _____ (Microsoft Corporation) C:\Windows\system32\cewmdm.dll
2015-07-15 14:52 - 2015-06-02 01:47 - 00210432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cewmdm.dll
2015-07-15 14:51 - 2015-07-02 23:21 - 19877376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-07-15 14:51 - 2015-07-02 23:08 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-07-15 14:51 - 2015-07-02 22:50 - 02279424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-07-15 14:51 - 2015-07-02 22:49 - 25193984 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-07-15 14:51 - 2015-07-02 22:46 - 00479232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-07-15 14:51 - 2015-07-02 22:40 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-07-15 14:51 - 2015-07-02 22:23 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-07-15 14:51 - 2015-07-02 22:19 - 12855296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-07-15 14:51 - 2015-07-02 22:12 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-07-15 14:51 - 2015-07-02 21:55 - 01310720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-07-15 14:51 - 2015-07-02 21:20 - 14453248 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-07-15 14:51 - 2015-07-02 20:59 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-07-15 14:49 - 2015-06-25 20:09 - 00389832 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-07-15 14:49 - 2015-06-25 19:43 - 00342736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-07-15 14:49 - 2015-06-20 22:06 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-07-15 14:49 - 2015-06-20 21:50 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-07-15 14:49 - 2015-06-20 21:49 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-07-15 14:49 - 2015-06-20 21:49 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-07-15 14:49 - 2015-06-20 21:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-07-15 14:49 - 2015-06-20 21:48 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-07-15 14:49 - 2015-06-20 21:40 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-07-15 14:49 - 2015-06-20 21:39 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-07-15 14:49 - 2015-06-20 21:34 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-07-15 14:49 - 2015-06-20 21:34 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-07-15 14:49 - 2015-06-20 21:34 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-07-15 14:49 - 2015-06-20 21:25 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-07-15 14:49 - 2015-06-20 21:21 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-07-15 14:49 - 2015-06-20 21:13 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-07-15 14:49 - 2015-06-20 21:08 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-07-15 14:49 - 2015-06-20 21:07 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-07-15 14:49 - 2015-06-20 21:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-07-15 14:49 - 2015-06-20 20:48 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-07-15 14:49 - 2015-06-20 20:48 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-07-15 14:49 - 2015-06-20 20:46 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-07-15 14:49 - 2015-06-20 20:46 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-07-15 14:49 - 2015-06-20 20:26 - 02427392 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-07-15 14:49 - 2015-06-20 20:02 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-07-15 14:49 - 2015-06-19 20:25 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-07-15 14:49 - 2015-06-19 20:25 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-07-15 14:49 - 2015-06-19 20:24 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-07-15 14:49 - 2015-06-19 20:24 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-07-15 14:49 - 2015-06-19 20:23 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-07-15 14:49 - 2015-06-19 20:17 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-07-15 14:49 - 2015-06-19 20:16 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-07-15 14:49 - 2015-06-19 20:13 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-07-15 14:49 - 2015-06-19 20:13 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-07-15 14:49 - 2015-06-19 20:03 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-07-15 14:49 - 2015-06-19 19:57 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-07-15 14:49 - 2015-06-19 19:53 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-07-15 14:49 - 2015-06-19 19:52 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-07-15 14:49 - 2015-06-19 19:51 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-07-15 14:49 - 2015-06-19 19:40 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-07-15 14:49 - 2015-06-19 19:40 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-07-15 14:49 - 2015-06-19 19:39 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2015-07-15 14:49 - 2015-06-19 19:15 - 01951232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-07-15 14:49 - 2015-06-19 19:11 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-07-15 14:46 - 2015-07-04 20:07 - 02087424 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2015-07-15 14:46 - 2015-07-04 19:48 - 01414656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2015-07-15 14:46 - 2015-07-01 22:56 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-07-15 14:46 - 2015-07-01 22:56 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-07-15 14:46 - 2015-07-01 22:49 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-07-15 14:46 - 2015-07-01 22:49 - 01216512 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-07-15 14:46 - 2015-07-01 22:49 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-07-15 14:46 - 2015-07-01 22:49 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-07-15 14:46 - 2015-07-01 22:49 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-07-15 14:46 - 2015-07-01 22:49 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-07-15 14:46 - 2015-07-01 22:49 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-07-15 14:46 - 2015-07-01 22:49 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-07-15 14:46 - 2015-07-01 22:49 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-07-15 14:46 - 2015-07-01 22:49 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-07-15 14:46 - 2015-07-01 22:49 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-07-15 14:46 - 2015-07-01 22:48 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2015-07-15 14:46 - 2015-07-01 22:48 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-07-15 14:46 - 2015-07-01 22:47 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-07-15 14:46 - 2015-07-01 22:47 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-07-15 14:46 - 2015-07-01 22:43 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-07-15 14:46 - 2015-07-01 22:43 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-07-15 14:46 - 2015-07-01 22:39 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-07-15 14:46 - 2015-07-01 22:30 - 00552960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-07-15 14:46 - 2015-07-01 22:30 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-07-15 14:46 - 2015-07-01 22:30 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-07-15 14:46 - 2015-07-01 22:30 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2015-07-15 14:46 - 2015-07-01 22:30 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-07-15 14:46 - 2015-07-01 22:30 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-07-15 14:46 - 2015-07-01 22:30 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2015-07-15 14:46 - 2015-07-01 22:30 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2015-07-15 14:46 - 2015-07-01 22:30 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-07-15 14:46 - 2015-07-01 22:29 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-07-15 14:46 - 2015-07-01 22:29 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2015-07-15 14:46 - 2015-07-01 22:29 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2015-07-15 14:46 - 2015-07-01 22:27 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2015-07-15 14:46 - 2015-07-01 22:26 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-07-15 14:46 - 2015-07-01 22:24 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-07-15 14:46 - 2015-07-01 21:27 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-07-15 14:46 - 2015-07-01 21:26 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-07-15 14:46 - 2015-07-01 21:26 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-07-15 14:46 - 2015-04-27 21:23 - 01480192 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2015-07-15 14:46 - 2015-04-27 21:23 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2015-07-15 14:46 - 2015-04-27 21:23 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2015-07-15 14:46 - 2015-04-27 21:23 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2015-07-15 14:46 - 2015-04-27 21:05 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2015-07-15 14:46 - 2015-04-27 21:04 - 01174528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2015-07-15 14:46 - 2015-04-27 21:04 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2015-07-15 14:46 - 2015-04-27 21:04 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2015-07-15 14:45 - 2015-06-15 23:50 - 00112064 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2015-07-15 14:45 - 2015-06-15 23:45 - 03242496 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-07-15 14:45 - 2015-06-15 23:45 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-07-15 14:45 - 2015-06-15 23:45 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2015-07-15 14:45 - 2015-06-15 23:45 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2015-07-15 14:45 - 2015-06-15 23:44 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2015-07-15 14:45 - 2015-06-15 23:43 - 02364416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2015-07-15 14:45 - 2015-06-15 23:43 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-07-15 14:45 - 2015-06-15 23:43 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2015-07-15 14:45 - 2015-06-15 23:42 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
2015-07-15 14:45 - 2015-06-15 23:42 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll
2015-07-15 14:45 - 2015-06-15 23:37 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll
2015-07-10 19:28 - 2015-07-28 11:36 - 00000000 ___HD C:\$Windows.~BT
2015-07-10 06:09 - 2015-07-10 06:09 - 00000000 _____ C:\Windows\SysWOW64\shoBEEC.tmp

==================== Ein Monat: Geänderte Dateien und Ordner ========

(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)

2015-08-08 12:46 - 2009-07-14 06:45 - 00028128 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-08-08 12:46 - 2009-07-14 06:45 - 00028128 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-08-08 12:39 - 2013-03-02 18:16 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-08-08 12:36 - 2013-01-23 00:09 - 00000000 ____D C:\Users\*****\AppData\Roaming\Spotify
2015-08-08 12:22 - 2015-06-18 00:11 - 00001264 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2025296424-690445150-2269518065-1001UA.job
2015-08-08 12:22 - 2013-01-31 03:57 - 00000000 ____D C:\Users\*****\AppData\Local\PMB Files
2015-08-08 12:21 - 2013-01-23 00:16 - 00000000 ____D C:\Users\*****\AppData\Local\Deployment
2015-08-08 12:05 - 2013-01-23 11:01 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-08-08 11:46 - 2012-01-20 14:08 - 01167793 _____ C:\Windows\WindowsUpdate.log
2015-08-08 11:39 - 2013-01-22 22:43 - 00000000 ____D C:\Users\*****
2015-08-08 11:22 - 2013-01-30 11:43 - 00000000 ___RD C:\Users\*****\Dropbox
2015-08-08 11:21 - 2013-01-30 11:41 - 00000000 ____D C:\Users\*****\AppData\Roaming\Dropbox
2015-08-08 11:21 - 2013-01-23 00:10 - 00000000 ____D C:\Users\*****\AppData\Local\Spotify
2015-08-08 11:19 - 2013-01-22 23:13 - 00000374 _____ C:\Windows\system32\Drivers\etc\hosts.ics
2015-08-08 11:17 - 2013-01-22 23:42 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-08-08 11:17 - 2012-01-20 14:06 - 00000000 ____D C:\ProgramData\NVIDIA
2015-08-08 11:17 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-08-08 11:17 - 2009-07-14 06:51 - 00177306 _____ C:\Windows\setupact.log
2015-08-08 11:16 - 2010-11-21 05:47 - 00443606 _____ C:\Windows\PFRO.log
2015-08-08 11:16 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\tracing
2015-08-08 10:30 - 2014-07-23 14:18 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2015-08-08 00:29 - 2013-10-06 00:59 - 00000000 ____D C:\Users\*****\AppData\Local\Battle.net
2015-08-08 00:26 - 2009-07-14 05:20 - 00000000 ___HD C:\Windows\system32\GroupPolicy
2015-08-08 00:14 - 2014-11-28 17:31 - 00001043 _____ C:\Users\Public\Desktop\Warcraft III - The Frozen Throne.lnk
2015-08-08 00:10 - 2014-01-19 02:16 - 00000958 _____ C:\Users\Public\Desktop\Warcraft III.lnk
2015-08-06 16:51 - 2015-03-31 14:10 - 00003504 _____ C:\Windows\System32\Tasks\PCDEventLauncherTask
2015-08-06 12:35 - 2015-06-01 08:16 - 00602180 _____ C:\Users\Apps\local-files-desktop.spa
2015-08-06 12:35 - 2015-05-23 23:37 - 00158566 _____ C:\Users\Apps\hub.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 45066808 _____ C:\Users\libcef.dll
2015-08-06 12:35 - 2015-04-27 22:25 - 10207504 _____ C:\Users\icudtl.dat
2015-08-06 12:35 - 2015-04-27 22:25 - 07675448 _____ (Spotify Ltd) C:\Users\Spotify.exe
2015-08-06 12:35 - 2015-04-27 22:25 - 04487782 _____ C:\Users\devtools_resources.pak
2015-08-06 12:35 - 2015-04-27 22:25 - 03457592 _____ (Microsoft Corporation) C:\Users\d3dcompiler_47.dll
2015-08-06 12:35 - 2015-04-27 22:25 - 02332541 _____ C:\Users\Apps\musixmatch-lyrics.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 02184260 _____ C:\Users\cef.pak
2015-08-06 12:35 - 2015-04-27 22:25 - 02157552 _____ C:\Users\Apps\glue-resources.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 02106424 _____ (Microsoft Corporation) C:\Users\d3dcompiler_43.dll
2015-08-06 12:35 - 2015-04-27 22:25 - 02018360 _____ (Spotify Ltd) C:\Users\SpotifyWebHelper.exe
2015-08-06 12:35 - 2015-04-27 22:25 - 01649208 _____ C:\Users\libGLESv2.dll
2015-08-06 12:35 - 2015-04-27 22:25 - 00967736 _____ (The Chromium Authors) C:\Users\ffmpegsumo.dll
2015-08-06 12:35 - 2015-04-27 22:25 - 00900089 _____ C:\Users\Apps\zlink.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 00838712 _____ (Spotify Ltd) C:\Users\SpotifyCrashService.exe
2015-08-06 12:35 - 2015-04-27 22:25 - 00721136 _____ C:\Users\Apps\browse.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 00622967 _____ C:\Users\cef_200_percent.pak
2015-08-06 12:35 - 2015-04-27 22:25 - 00606828 _____ C:\Users\Apps\playlist-desktop.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 00542847 _____ C:\Users\Apps\notification-center.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 00530001 _____ C:\Users\Apps\settings.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 00528578 _____ C:\Users\Apps\collection.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 00512594 _____ C:\Users\Apps\genre.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 00508698 _____ C:\Users\Apps\collection-artist.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 00504671 _____ C:\Users\Apps\discover.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 00471783 _____ C:\Users\Apps\messages.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 00468951 _____ C:\Users\cef_100_percent.pak
2015-08-06 12:35 - 2015-04-27 22:25 - 00466223 _____ C:\Users\Apps\collection-album.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 00451113 _____ C:\Users\Apps\social-feed.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 00444041 _____ C:\Users\Apps\article.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 00416475 _____ C:\Users\Apps\album.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 00395528 _____ C:\Users\Apps\collection-songs.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 00392161 _____ C:\Users\Apps\zlogin.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 00383262 _____ C:\Users\Apps\social-chart.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 00368227 _____ C:\Users\Apps\charts.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 00366817 _____ C:\Users\Apps\buddy-list.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 00363479 _____ C:\Users\Apps\artist.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 00304572 _____ C:\Users\Apps\radio.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 00278727 _____ C:\Users\Apps\folder.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 00274437 _____ C:\Users\Apps\share.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 00257997 _____ C:\Users\Apps\zlink-queue.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 00244918 _____ C:\Users\Apps\profile.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 00236396 _____ C:\Users\Apps\chart.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 00216723 _____ C:\Users\Apps\search.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 00216045 _____ C:\Users\Apps\findfriends.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 00196416 _____ C:\Users\Apps\suggest.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 00158229 _____ C:\Users\Apps\follow.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 00098360 _____ (Spotify Ltd) C:\Users\SpotifyLauncher.exe
2015-08-06 12:35 - 2015-04-27 22:25 - 00080952 _____ C:\Users\libEGL.dll
2015-08-06 12:35 - 2015-04-27 22:25 - 00080587 _____ C:\Users\Apps\about.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 00073272 _____ C:\Users\wow_helper.exe
2015-08-06 12:35 - 2015-04-27 22:25 - 00072701 _____ C:\Users\Apps\error.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 00053462 _____ C:\Users\Apps\ad.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 00050934 _____ C:\Users\Apps\licenses.spa
2015-08-06 12:35 - 2015-04-27 22:25 - 00014086 _____ C:\Users\locales\en-US.pak
2015-08-06 12:35 - 2015-04-27 22:25 - 00008009 _____ C:\Users\locales\el.mo
2015-08-06 12:35 - 2015-04-27 22:25 - 00007791 _____ C:\Users\locales\ru.mo
2015-08-06 12:35 - 2015-04-27 22:25 - 00007076 _____ C:\Users\locales\ja.mo
2015-08-06 12:35 - 2015-04-27 22:25 - 00006969 _____ C:\Users\locales\hu.mo
2015-08-06 12:35 - 2015-04-27 22:25 - 00006950 _____ C:\Users\locales\fr-CA.mo
2015-08-06 12:35 - 2015-04-27 22:25 - 00006899 _____ C:\Users\locales\fr.mo
2015-08-06 12:35 - 2015-04-27 22:25 - 00006876 _____ C:\Users\locales\fi.mo
2015-08-06 12:35 - 2015-04-27 22:25 - 00006875 _____ C:\Users\locales\pl.mo
2015-08-06 12:35 - 2015-04-27 22:25 - 00006808 _____ C:\Users\locales\es-419.mo
2015-08-06 12:35 - 2015-04-27 22:25 - 00006793 _____ C:\Users\locales\nl.mo
2015-08-06 12:35 - 2015-04-27 22:25 - 00006756 _____ C:\Users\locales\de.mo
2015-08-06 12:35 - 2015-04-27 22:25 - 00006740 _____ C:\Users\locales\zsm.mo
2015-08-06 12:35 - 2015-04-27 22:25 - 00006739 _____ C:\Users\locales\it.mo
2015-08-06 12:35 - 2015-04-27 22:25 - 00006731 _____ C:\Users\locales\es.mo
2015-08-06 12:35 - 2015-04-27 22:25 - 00006726 _____ C:\Users\locales\tr.mo
2015-08-06 12:35 - 2015-04-27 22:25 - 00006719 _____ C:\Users\locales\zh-Hant.mo
2015-08-06 12:35 - 2015-04-27 22:25 - 00006717 _____ C:\Users\locales\pt-BR.mo
2015-08-06 12:35 - 2015-04-27 22:25 - 00006672 _____ C:\Users\locales\sv.mo
2015-08-06 12:35 - 2015-04-27 22:25 - 00006540 _____ C:\Users\locales\arb.mo
2015-08-06 12:35 - 2015-04-27 22:25 - 00006469 _____ C:\Users\locales\en.mo
2015-08-06 12:35 - 2015-04-27 22:25 - 00000020 _____ C:\Users\inst_ver.dat
2015-08-06 12:35 - 2015-04-27 22:25 - 00000000 ____D C:\Users\locales
2015-08-06 12:35 - 2015-04-27 22:25 - 00000000 _____ C:\Users\Christoph.redir
2015-08-05 15:29 - 2015-06-18 00:11 - 00001212 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-2025296424-690445150-2269518065-1001Core.job
2015-08-05 03:08 - 2013-01-23 11:02 - 00002177 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-08-04 23:27 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2015-08-04 23:22 - 2013-01-23 11:16 - 00389020 _____ C:\Windows\DirectX.log
2015-08-04 19:02 - 2010-11-21 08:50 - 00710954 _____ C:\Windows\system32\perfh007.dat
2015-08-04 19:02 - 2010-11-21 08:50 - 00155026 _____ C:\Windows\system32\perfc007.dat
2015-08-04 19:02 - 2009-07-14 07:13 - 01653366 _____ C:\Windows\system32\PerfStringBackup.INI
2015-08-04 16:17 - 2013-10-06 00:59 - 00000000 ____D C:\Program Files (x86)\Battle.net
2015-08-02 22:10 - 2013-01-23 00:10 - 00000000 ____D C:\Users\*****\AppData\Roaming\TS3Client
2015-08-02 03:38 - 2014-02-13 13:02 - 00000000 ____D C:\Program Files (x86)\Steam
2015-07-29 19:26 - 2014-01-15 18:34 - 00000000 ____D C:\Program Files (x86)\Hearthstone
2015-07-29 15:16 - 2013-01-23 11:20 - 00000000 ____D C:\Program Files (x86)\World of Warcraft
2015-07-29 00:47 - 2014-04-30 14:58 - 00000000 ___SD C:\Windows\system32\CompatTel
2015-07-28 11:41 - 2011-02-11 19:13 - 00000000 ____D C:\Windows\panther
2015-07-26 13:55 - 2013-01-24 11:45 - 00002021 _____ C:\Users\Public\Desktop\Adobe Reader X.lnk
2015-07-26 13:55 - 2012-01-20 15:40 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk
2015-07-25 13:04 - 2015-04-05 03:00 - 00000000 ___SD C:\Windows\system32\GWX
2015-07-23 00:25 - 2014-06-27 13:39 - 00000000 ____D C:\Program Files (x86)\World of Warcraft Beta
2015-07-22 17:51 - 2014-07-23 14:18 - 00000000 ____D C:\Program Files\iTunes
2015-07-22 17:50 - 2015-04-08 17:29 - 00000000 ____D C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
2015-07-22 17:50 - 2014-07-23 14:18 - 00000000 ____D C:\Program Files\iPod
2015-07-22 17:50 - 2014-07-23 14:18 - 00000000 ____D C:\Program Files (x86)\iTunes
2015-07-22 17:50 - 2013-05-19 20:53 - 00000000 ____D C:\Program Files\Common Files\Apple
2015-07-22 16:36 - 2014-11-14 03:45 - 00000000 __SHD C:\Users\*****\AppData\Local\EmieBrowserModeList
2015-07-22 16:36 - 2014-07-25 17:20 - 00000000 __SHD C:\Users\*****\AppData\Local\EmieUserList
2015-07-22 16:36 - 2014-07-25 17:20 - 00000000 __SHD C:\Users\*****\AppData\Local\EmieSiteList
2015-07-22 05:05 - 2014-10-29 06:31 - 00000000 ____D C:\Program Files (x86)\Heroes of the Storm
2015-07-22 05:00 - 2013-01-22 23:56 - 00000000 ____D C:\ProgramData\Blizzard Entertainment
2015-07-22 03:27 - 2013-11-12 15:59 - 00000000 ____D C:\Program Files\Microsoft Office 15
2015-07-22 03:09 - 2009-07-14 06:45 - 00493600 _____ C:\Windows\system32\FNTCACHE.DAT
2015-07-21 19:51 - 2009-07-14 07:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-07-19 21:50 - 2013-01-23 00:37 - 00000000 ____D C:\Spiele
2015-07-19 21:49 - 2013-01-23 11:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Total War
2015-07-18 16:58 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache
2015-07-18 15:17 - 2015-06-18 00:11 - 00004254 _____ C:\Windows\System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2025296424-690445150-2269518065-1001UA
2015-07-18 15:17 - 2015-06-18 00:11 - 00003858 _____ C:\Windows\System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2025296424-690445150-2269518065-1001Core
2015-07-18 00:06 - 2013-05-30 17:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive
2015-07-17 18:25 - 2014-06-12 23:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\diclovit's mod pack
2015-07-17 02:02 - 2014-11-03 05:58 - 00000000 ____D C:\NVIDIA
2015-07-16 20:03 - 2014-06-28 17:28 - 00000000 ____D C:\ProgramData\SplitMediaLabs
2015-07-16 19:35 - 2014-09-29 12:12 - 00001220 _____ C:\Users\Public\Desktop\XSplit Gamecaster.lnk
2015-07-16 19:35 - 2014-09-29 12:08 - 00000000 __SHD C:\AI_RecycleBin
2015-07-16 19:34 - 2014-06-28 17:28 - 00000000 __SHD C:\Windows\SysWOW64\AI_RecycleBin
2015-07-16 00:00 - 2013-01-23 11:01 - 00004106 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2015-07-16 00:00 - 2013-01-22 23:42 - 00003854 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-07-15 23:08 - 2014-12-10 04:10 - 00000000 ____D C:\Windows\system32\appraiser
2015-07-15 23:08 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\PolicyDefinitions
2015-07-15 17:30 - 2013-08-13 22:49 - 00000000 ____D C:\Windows\system32\MRT
2015-07-15 15:39 - 2013-03-02 18:16 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-07-15 15:39 - 2013-03-02 18:16 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-07-15 15:39 - 2012-01-20 15:16 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-07-15 05:58 - 2015-04-05 03:00 - 00000000 ___SD C:\Windows\SysWOW64\GWX

==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======

2012-10-29 12:08 - 2012-10-29 12:08 - 0134954 _____ () C:\Program Files\changelog.txt
2012-10-29 12:08 - 2012-10-29 12:08 - 0024252 _____ () C:\Program Files\license.txt
2013-04-29 11:41 - 2013-04-29 11:56 - 0000040 _____ () C:\Users\*****\AppData\Roaming\gnuplot_history
2015-01-04 03:45 - 2015-01-04 03:45 - 0000103 _____ () C:\Users\*****\AppData\Local\fusioncache.dat
2013-07-27 16:10 - 2013-07-27 16:10 - 0000040 _____ () C:\ProgramData\ra3.ini

Einige Dateien in TEMP:
====================
C:\Users\*****\AppData\Local\Temp\drm_dialogs.dll
C:\Users\*****\AppData\Local\Temp\drm_dyndata_7330017.dll
C:\Users\*****\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpkctbxr.dll
C:\Users\*****\AppData\Local\Temp\DseShExt-x64.dll
C:\Users\*****\AppData\Local\Temp\DseShExt-x86.dll
C:\Users\*****\AppData\Local\Temp\FileSystemView.dll
C:\Users\*****\AppData\Local\Temp\GameuxInstallHelper.dll
C:\Users\*****\AppData\Local\Temp\Gw2.exe
C:\Users\*****\AppData\Local\Temp\jre-7u11-windows-i586-iftw.exe
C:\Users\*****\AppData\Local\Temp\jre-7u13-windows-i586-iftw.exe
C:\Users\*****\AppData\Local\Temp\jre-7u15-windows-i586-iftw.exe
C:\Users\*****\AppData\Local\Temp\jre-7u25-windows-i586-iftw.exe
C:\Users\*****\AppData\Local\Temp\jre-7u45-windows-i586-iftw.exe
C:\Users\*****\AppData\Local\Temp\jre-7u51-windows-i586-iftw.exe
C:\Users\*****\AppData\Local\Temp\jre-7u55-windows-i586-iftw.exe
C:\Users\*****\AppData\Local\Temp\jre-8u45-windows-au.exe
C:\Users\*****\AppData\Local\Temp\nvSCPAPI64.dll
C:\Users\*****\AppData\Local\Temp\nvStereoApiI64.dll
C:\Users\*****\AppData\Local\Temp\nvStInst.exe
C:\Users\*****\AppData\Local\Temp\OfficeSetup.exe
C:\Users\*****\AppData\Local\Temp\SDShelEx-win32.dll
C:\Users\*****\AppData\Local\Temp\SDShelEx-x64.dll
C:\Users\*****\AppData\Local\Temp\SkypeSetup.exe
C:\Users\*****\AppData\Local\Temp\SpotifyUpgrader.exe
C:\Users\*****\AppData\Local\Temp\swt-win32-3740.dll
C:\Users\*****\AppData\Local\Temp\tmp7C6C.tmp.exe
C:\Users\*****\AppData\Local\Temp\_is4596.exe
C:\Users\*****\AppData\Local\Temp\_is494E.exe
C:\Users\*****\AppData\Local\Temp\_is5EAC.exe
C:\Users\*****\AppData\Local\Temp\_is620C.exe
C:\Users\*****\AppData\Local\Temp\_is6DEE.exe
C:\Users\*****\AppData\Local\Temp\_is8D69.exe
C:\Users\*****\AppData\Local\Temp\_is9DBE.exe
C:\Users\*****\AppData\Local\Temp\_isB3F2.exe
C:\Users\*****\AppData\Local\Temp\_isEDF2.exe
C:\Users\*****\AppData\Local\Temp\_isFA20.exe


==================== Bamital & volsnap Check =================

(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)

C:\Windows\system32\winlogon.exe => Datei ist digital signiert
C:\Windows\system32\wininit.exe => Datei ist digital signiert
C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert
C:\Windows\explorer.exe => Datei ist digital signiert
C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert
C:\Windows\system32\svchost.exe => Datei ist digital signiert
C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert
C:\Windows\system32\services.exe => Datei ist digital signiert
C:\Windows\system32\User32.dll => Datei ist digital signiert
C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert
C:\Windows\system32\userinit.exe => Datei ist digital signiert
C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert
C:\Windows\system32\rpcss.dll => Datei ist digital signiert
C:\Windows\system32\dnsapi.dll => Datei ist digital signiert
C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert


LastRegBack: 2015-08-02 08:13

==================== Ende von log ============================
         
Durch die Addition.txt wird mein Text hier zu lang. Ich füge diese als Zip dem Beitrag hinzu. Wenn gewünscht, kann ich sie hier aber auch noch zusätzlich in einem weiteren Beitrag in diesem Thread niederschreiben.

Das Programm GMER funktionierte beim Ausführen nicht.

 

Themen zu Win 7 Sp1 64Bit. Ein Trojaner plagt mich.
akamai, antivirus, avg, bonjour, browser, chromium, computer, defender, dnsapi.dll, firefox, flash player, google, home, internet, internet explorer, monitor, mozilla, prozesse, realtek, registry, rundll, scan, server, software, svchost.exe, trojaner, windows




Ähnliche Themen: Win 7 Sp1 64Bit. Ein Trojaner plagt mich.


  1. Qvo6 plagt mich in meinen Browsern! Was tun?
    Plagegeister aller Art und deren Bekämpfung - 10.11.2013 (25)
  2. Windows XP bzw. Betriebssystem unabhängig, Rootkit plagt selbst nach Formatierung
    Log-Analyse und Auswertung - 07.08.2013 (14)
  3. GVu Trojaner 2.07 auf Win 7 64bit
    Log-Analyse und Auswertung - 26.10.2012 (13)
  4. SUISA-Trojaner (Verschlüsselungs-Trojaner) befall auf HP-Pro-Laptop Win7 64Bit
    Plagegeister aller Art und deren Bekämpfung - 06.09.2012 (19)
  5. GVU Trojaner hat mich erwischt, W7 64bit
    Plagegeister aller Art und deren Bekämpfung - 28.08.2012 (4)
  6. GVu Trojaner 2.07 auf Win 7 64bit
    Log-Analyse und Auswertung - 20.08.2012 (11)
  7. GVU-Trojaner Win 7 64bit
    Log-Analyse und Auswertung - 19.08.2012 (6)
  8. GVU Trojaner Win 7 64Bit
    Plagegeister aller Art und deren Bekämpfung - 04.08.2012 (11)
  9. Desktop Security 2010 plagt meinen Laptop.Alles versuche vergeblich, kommt nach Neustart wieder.
    Plagegeister aller Art und deren Bekämpfung - 06.08.2010 (2)
  10. Problem mit dem ICQ Virus plagt mich auch
    Plagegeister aller Art und deren Bekämpfung - 15.04.2010 (4)
  11. TR/Patched.Gen [trojan] plagt mich seit gestern
    Plagegeister aller Art und deren Bekämpfung - 09.12.2009 (1)
  12. TR/Rootkit.Gen plagt mich
    Plagegeister aller Art und deren Bekämpfung - 10.02.2009 (10)
  13. Trojanische Pferd TR/Crypt.XPACK.Gen plagt mich auch!
    Plagegeister aller Art und deren Bekämpfung - 09.12.2008 (1)
  14. Virus plagt, kann jemand helfen ???
    Mülltonne - 14.05.2008 (0)
  15. Hilfe! Ominöser Trojaner plagt mich
    Log-Analyse und Auswertung - 01.04.2008 (6)
  16. Bitte um Hilfe small.GA.7 plagt mich
    Log-Analyse und Auswertung - 09.01.2006 (8)
  17. Trojaner TR/Dldr.Dyfuca.DB plagt mich
    Plagegeister aller Art und deren Bekämpfung - 24.04.2005 (6)

Zum Thema Win 7 Sp1 64Bit. Ein Trojaner plagt mich. - Hallo zusammen, Seit einigen Tagen plagt wohl ein Trojaner meinen Rechner. Habe, nachdem sich dann automatisch AVG 2015 installiert hatte meinen Virenscanner (Avast 2015, konstenlose Version) mal eine vollständige Überprüfung - Win 7 Sp1 64Bit. Ein Trojaner plagt mich....
Archiv
Du betrachtest: Win 7 Sp1 64Bit. Ein Trojaner plagt mich. auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.