FRST Teil 6
Code:
Alles auswählen Aufklappen ATTFilter
2015-10-21 15:59 - 2014-10-29 04:56 - 00027456 _____ (Microsoft Corporation) C:\windows\system32\Drivers\rdpvideominiport.sys
2015-10-21 15:59 - 2014-10-29 03:51 - 00154112 _____ (Microsoft Corporation) C:\windows\system32\msaudite.dll
2015-10-21 15:59 - 2014-10-29 03:50 - 00736768 _____ (Microsoft Corporation) C:\windows\system32\adtschema.dll
2015-10-21 15:59 - 2014-10-29 03:49 - 00003072 _____ (Microsoft Corporation) C:\windows\system32\lpk.dll
2015-10-21 15:59 - 2014-10-29 03:48 - 00014336 _____ (Microsoft Corporation) C:\windows\system32\workerdd.dll
2015-10-21 15:59 - 2014-10-29 03:46 - 00082944 _____ (Microsoft Corporation) C:\windows\system32\Drivers\appid.sys
2015-10-21 15:59 - 2014-10-29 03:45 - 00007168 _____ (Microsoft Corporation) C:\windows\system32\shimeng.dll
2015-10-21 15:59 - 2014-10-29 03:44 - 00096256 _____ (Microsoft Corporation) C:\windows\system32\fontsub.dll
2015-10-21 15:59 - 2014-10-29 03:44 - 00014848 _____ (Microsoft Corporation) C:\windows\system32\dciman32.dll
2015-10-21 15:59 - 2014-10-29 03:43 - 00019968 _____ (Microsoft Corporation) C:\windows\system32\diskperf.exe
2015-10-21 15:59 - 2014-10-29 03:43 - 00017408 _____ (Microsoft Corporation) C:\windows\hh.exe
2015-10-21 15:59 - 2014-10-29 03:41 - 00017920 _____ (Microsoft Corporation) C:\windows\system32\appidcertstorecheck.exe
2015-10-21 15:59 - 2014-10-29 03:37 - 00040448 _____ (Microsoft Corporation) C:\windows\system32\rfxvmt.dll
2015-10-21 15:59 - 2014-10-29 03:34 - 00084992 _____ (Microsoft Corporation) C:\windows\system32\WSCollect.exe
2015-10-21 15:59 - 2014-10-29 03:34 - 00079872 _____ (Microsoft Corporation) C:\windows\system32\WSReset.exe
2015-10-21 15:59 - 2014-10-29 03:28 - 00197632 _____ (Microsoft Corporation) C:\windows\system32\appidpolicyconverter.exe
2015-10-21 15:59 - 2014-10-29 03:24 - 00103936 _____ (Microsoft Corporation) C:\windows\system32\mssitlb.dll
2015-10-21 15:59 - 2014-10-29 03:24 - 00066048 _____ (Microsoft Corporation) C:\windows\system32\tsgqec.dll
2015-10-21 15:59 - 2014-10-29 03:23 - 00101888 _____ (Microsoft Corporation) C:\windows\system32\BitLockerWizardElev.exe
2015-10-21 15:59 - 2014-10-29 03:23 - 00101888 _____ (Microsoft Corporation) C:\windows\system32\BitLockerWizard.exe
2015-10-21 15:59 - 2014-10-29 03:19 - 00055808 _____ (Microsoft Corporation) C:\windows\system32\hhsetup.dll
2015-10-21 15:59 - 2014-10-29 03:17 - 00110592 _____ (Microsoft Corporation) C:\windows\system32\logman.exe
2015-10-21 15:59 - 2014-10-29 03:13 - 00054272 _____ (Microsoft Corporation) C:\windows\system32\BdeUISrv.exe
2015-10-21 15:59 - 2014-10-29 03:06 - 00736768 _____ (Microsoft Corporation) C:\windows\SysWOW64\adtschema.dll
2015-10-21 15:59 - 2014-10-29 03:06 - 00154112 _____ (Microsoft Corporation) C:\windows\SysWOW64\msaudite.dll
2015-10-21 15:59 - 2014-10-29 03:04 - 00003072 _____ (Microsoft Corporation) C:\windows\SysWOW64\lpk.dll
2015-10-21 15:59 - 2014-10-29 03:00 - 00642560 _____ (Microsoft Corporation) C:\windows\SysWOW64\apphelp.dll
2015-10-21 15:59 - 2014-10-29 03:00 - 00077824 _____ (Microsoft Corporation) C:\windows\SysWOW64\fontsub.dll
2015-10-21 15:59 - 2014-10-29 03:00 - 00042496 _____ (Microsoft Corporation) C:\windows\system32\msscntrs.dll
2015-10-21 15:59 - 2014-10-29 03:00 - 00011776 _____ (Microsoft Corporation) C:\windows\SysWOW64\dciman32.dll
2015-10-21 15:59 - 2014-10-29 03:00 - 00005632 _____ (Microsoft Corporation) C:\windows\SysWOW64\shimeng.dll
2015-10-21 15:59 - 2014-10-29 02:58 - 00031232 _____ (Microsoft Corporation) C:\windows\system32\WPDShextAutoplay.exe
2015-10-21 15:59 - 2014-10-29 02:58 - 00017920 _____ (Microsoft Corporation) C:\windows\SysWOW64\diskperf.exe
2015-10-21 15:59 - 2014-10-29 02:58 - 00015872 _____ (Microsoft Corporation) C:\windows\SysWOW64\hh.exe
2015-10-21 15:59 - 2014-10-29 02:57 - 00016896 _____ (Microsoft Corporation) C:\windows\system32\ntvdm64.dll
2015-10-21 15:59 - 2014-10-29 02:54 - 00110080 _____ (Microsoft Corporation) C:\windows\system32\WPDShServiceObj.dll
2015-10-21 15:59 - 2014-10-29 02:52 - 00809984 _____ (Microsoft Corporation) C:\windows\system32\fvewiz.dll
2015-10-21 15:59 - 2014-10-29 02:43 - 00095232 _____ (Microsoft Corporation) C:\windows\SysWOW64\mssitlb.dll
2015-10-21 15:59 - 2014-10-29 02:43 - 00052736 _____ (Microsoft Corporation) C:\windows\SysWOW64\tsgqec.dll
2015-10-21 15:59 - 2014-10-29 02:40 - 00045568 _____ (Microsoft Corporation) C:\windows\SysWOW64\hhsetup.dll
2015-10-21 15:59 - 2014-10-29 02:38 - 00087552 _____ (Microsoft Corporation) C:\windows\SysWOW64\logman.exe
2015-10-21 15:59 - 2014-10-29 02:28 - 00048128 _____ (Microsoft Corporation) C:\windows\system32\atlthunk.dll
2015-10-21 15:59 - 2014-10-29 02:26 - 00103424 _____ (Microsoft Corporation) C:\windows\system32\BitLockerDeviceEncryption.exe
2015-10-21 15:59 - 2014-10-29 02:26 - 00046592 _____ (Microsoft Corporation) C:\windows\system32\typeperf.exe
2015-10-21 15:59 - 2014-10-29 02:26 - 00043008 _____ (Microsoft Corporation) C:\windows\system32\relog.exe
2015-10-21 15:59 - 2014-10-29 02:26 - 00034304 _____ (Microsoft Corporation) C:\windows\SysWOW64\msscntrs.dll
2015-10-21 15:59 - 2014-10-29 02:25 - 00026624 _____ (Microsoft Corporation) C:\windows\SysWOW64\WPDShextAutoplay.exe
2015-10-21 15:59 - 2014-10-29 02:24 - 00086016 _____ (Microsoft Corporation) C:\windows\system32\nlaapi.dll
2015-10-21 15:59 - 2014-10-29 02:22 - 00086528 _____ (Microsoft Corporation) C:\windows\SysWOW64\WPDShServiceObj.dll
2015-10-21 15:59 - 2014-10-29 02:20 - 00238592 _____ (Microsoft Corporation) C:\windows\SysWOW64\mssphtb.dll
2015-10-21 15:59 - 2014-10-29 02:19 - 00070656 _____ (Microsoft Corporation) C:\windows\system32\eappprxy.dll
2015-10-21 15:59 - 2014-10-29 02:16 - 00216064 _____ (Microsoft Corporation) C:\windows\system32\fveapibase.dll
2015-10-21 15:59 - 2014-10-29 02:15 - 00014336 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntvdm64.dll
2015-10-21 15:59 - 2014-10-29 02:15 - 00005632 _____ (Microsoft Corporation) C:\windows\SysWOW64\wow32.dll
2015-10-21 15:59 - 2014-10-29 02:14 - 00004096 _____ (Microsoft Corporation) C:\windows\SysWOW64\user.exe
2015-10-21 15:59 - 2014-10-29 02:13 - 00315392 _____ (Microsoft Corporation) C:\windows\system32\Windows.ApplicationModel.Store.dll
2015-10-21 15:59 - 2014-10-29 02:13 - 00025600 _____ (Microsoft Corporation) C:\windows\SysWOW64\setup16.exe
2015-10-21 15:59 - 2014-10-29 02:13 - 00008704 _____ (Microsoft Corporation) C:\windows\SysWOW64\instnm.exe
2015-10-21 15:59 - 2014-10-29 02:04 - 00041472 _____ (Microsoft Corporation) C:\windows\SysWOW64\typeperf.exe
2015-10-21 15:59 - 2014-10-29 02:04 - 00038400 _____ (Microsoft Corporation) C:\windows\SysWOW64\relog.exe
2015-10-21 15:59 - 2014-10-29 02:01 - 00065536 _____ (Microsoft Corporation) C:\windows\SysWOW64\nlaapi.dll
2015-10-21 15:59 - 2014-10-29 01:59 - 00056320 _____ (Microsoft Corporation) C:\windows\SysWOW64\eappprxy.dll
2015-10-21 15:59 - 2014-10-29 01:57 - 00133120 _____ (Microsoft Corporation) C:\windows\system32\mssprxy.dll
2015-10-21 15:59 - 2014-10-29 01:57 - 00014336 _____ (Microsoft Corporation) C:\windows\system32\msshooks.dll
2015-10-21 15:59 - 2014-10-29 01:56 - 00200192 _____ (Microsoft Corporation) C:\windows\system32\SearchFilterHost.exe
2015-10-21 15:59 - 2014-10-29 01:55 - 00223744 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.ApplicationModel.Store.dll
2015-10-21 15:59 - 2014-10-29 01:46 - 00048128 _____ (Microsoft Corporation) C:\windows\SysWOW64\mssprxy.dll
2015-10-21 15:59 - 2014-10-29 01:45 - 00010752 _____ (Microsoft Corporation) C:\windows\SysWOW64\msshooks.dll
2015-10-21 15:59 - 2014-10-29 01:44 - 00168960 _____ (Microsoft Corporation) C:\windows\SysWOW64\SearchFilterHost.exe
2015-10-21 15:59 - 2014-10-13 03:43 - 00086336 _____ (Microsoft Corporation) C:\windows\system32\Drivers\pdc.sys
2015-10-21 15:59 - 2014-10-13 03:43 - 00039744 _____ (Microsoft Corporation) C:\windows\system32\Drivers\intelpep.sys
2015-10-21 15:59 - 2014-10-07 07:54 - 00189248 _____ (Microsoft Corporation) C:\windows\system32\Drivers\UCX01000.SYS
2015-10-21 15:59 - 2014-07-10 05:08 - 00321536 _____ (Microsoft Corporation) C:\windows\system32\lockscreencn.dll
2015-10-21 15:51 - 2014-07-11 16:08 - 00100864 ____R (Microsoft) C:\windows\system32\Drivers\msu30x64w8.sys
2015-10-21 15:50 - 2015-09-29 13:29 - 00136904 _____ (Microsoft Corporation) C:\windows\system32\wuauclt.exe
2015-10-21 15:50 - 2015-09-28 19:45 - 03705344 _____ (Microsoft Corporation) C:\windows\system32\wuaueng.dll
2015-10-21 15:50 - 2015-09-28 19:26 - 00409088 _____ (Microsoft Corporation) C:\windows\system32\WUSettingsProvider.dll
2015-10-21 15:50 - 2015-09-28 19:25 - 00140288 _____ (Microsoft Corporation) C:\windows\system32\wuwebv.dll
2015-10-21 15:50 - 2015-09-28 19:25 - 00095744 _____ (Microsoft Corporation) C:\windows\system32\wudriver.dll
2015-10-21 15:50 - 2015-09-28 19:25 - 00035840 _____ (Microsoft Corporation) C:\windows\system32\wuapp.exe
2015-10-21 15:50 - 2015-09-28 19:22 - 00124928 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuwebv.dll
2015-10-21 15:50 - 2015-09-28 19:22 - 00081920 _____ (Microsoft Corporation) C:\windows\SysWOW64\wudriver.dll
2015-10-21 15:50 - 2015-09-28 19:22 - 00029696 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapp.exe
2015-10-21 15:50 - 2015-09-28 19:15 - 02243072 _____ (Microsoft Corporation) C:\windows\system32\wucltux.dll
2015-10-21 15:50 - 2015-09-28 19:13 - 00891904 _____ (Microsoft Corporation) C:\windows\system32\wuapi.dll
2015-10-21 15:50 - 2015-09-28 19:12 - 00721920 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapi.dll
2015-10-21 15:50 - 2015-08-22 14:42 - 00901264 _____ (Microsoft Corporation) C:\windows\SysWOW64\ucrtbase.dll
2015-10-21 15:50 - 2015-08-22 14:42 - 00066400 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-private-l1-1-0.dll
2015-10-21 15:50 - 2015-08-22 14:42 - 00022368 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-math-l1-1-0.dll
2015-10-21 15:50 - 2015-08-22 14:42 - 00019808 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2015-10-21 15:50 - 2015-08-22 14:42 - 00017760 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-string-l1-1-0.dll
2015-10-21 15:50 - 2015-08-22 14:42 - 00017760 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2015-10-21 15:50 - 2015-08-22 14:42 - 00016224 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2015-10-21 15:50 - 2015-08-22 14:42 - 00015712 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll
2015-10-21 15:50 - 2015-08-22 14:42 - 00014176 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-time-l1-1-0.dll
2015-10-21 15:50 - 2015-08-22 14:42 - 00013664 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2015-10-21 15:50 - 2015-08-22 14:42 - 00012640 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-process-l1-1-0.dll
2015-10-21 15:50 - 2015-08-22 14:42 - 00012640 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll
2015-10-21 15:50 - 2015-08-22 14:42 - 00012640 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll
2015-10-21 15:50 - 2015-08-22 14:42 - 00012128 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll
2015-10-21 15:50 - 2015-08-22 14:42 - 00012128 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll
2015-10-21 15:50 - 2015-08-22 14:42 - 00012128 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll
2015-10-21 15:50 - 2015-08-22 14:35 - 00984448 _____ (Microsoft Corporation) C:\windows\system32\ucrtbase.dll
2015-10-21 15:50 - 2015-08-22 14:35 - 00063840 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-private-l1-1-0.dll
2015-10-21 15:50 - 2015-08-22 14:35 - 00020832 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-math-l1-1-0.dll
2015-10-21 15:50 - 2015-08-22 14:35 - 00019808 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2015-10-21 15:50 - 2015-08-22 14:35 - 00017760 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-string-l1-1-0.dll
2015-10-21 15:50 - 2015-08-22 14:35 - 00017760 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2015-10-21 15:50 - 2015-08-22 14:35 - 00016224 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2015-10-21 15:50 - 2015-08-22 14:35 - 00015712 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2015-10-21 15:50 - 2015-08-22 14:35 - 00014176 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-time-l1-1-0.dll
2015-10-21 15:50 - 2015-08-22 14:35 - 00013664 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2015-10-21 15:50 - 2015-08-22 14:35 - 00012640 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-process-l1-1-0.dll
2015-10-21 15:50 - 2015-08-22 14:35 - 00012640 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2015-10-21 15:50 - 2015-08-22 14:35 - 00012640 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2015-10-21 15:50 - 2015-08-22 14:35 - 00012128 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2015-10-21 15:50 - 2015-08-22 14:35 - 00012128 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2015-10-21 15:50 - 2015-08-22 14:35 - 00012128 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2015-10-21 15:50 - 2015-03-14 01:09 - 00200192 _____ (Microsoft Corporation) C:\windows\system32\storewuauth.dll
2015-10-21 15:50 - 2014-07-24 04:20 - 00875688 _____ (Microsoft Corporation) C:\windows\SysWOW64\msvcr120_clr0400.dll
2015-10-21 15:50 - 2014-07-24 04:20 - 00869544 _____ (Microsoft Corporation) C:\windows\system32\msvcr120_clr0400.dll
2015-10-21 15:49 - 2015-05-12 14:19 - 00294912 _____ (Microsoft Corporation) C:\windows\system32\SystemEventsBrokerServer.dll
2015-10-21 15:49 - 2014-10-29 02:27 - 00028160 _____ (Microsoft Corporation) C:\windows\system32\EventAggregation.dll
2015-10-21 15:49 - 2014-10-29 02:27 - 00020480 _____ (Microsoft Corporation) C:\windows\system32\CSystemEventsBrokerClient.dll
2015-10-21 15:49 - 2014-10-29 02:12 - 00270336 _____ (Microsoft Corporation) C:\windows\system32\bisrv.dll
2015-10-21 15:48 - 2015-05-03 16:07 - 07784448 _____ (Microsoft Corporation) C:\windows\system32\Windows.Data.Pdf.dll
2015-10-21 15:48 - 2015-05-03 15:57 - 05264384 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Data.Pdf.dll
2015-10-21 15:44 - 2015-10-21 15:44 - 00000000 ____D C:\Users\Torsten\AppData\Local\GWX
2015-10-21 15:43 - 2015-10-28 09:31 - 00000000 ___RD C:\Users\Torsten\OneDrive
2015-10-21 15:43 - 2015-10-28 08:52 - 00003598 _____ C:\windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-948925497-2791582057-2897880704-1001
2015-10-21 15:43 - 2015-10-21 15:43 - 00000000 ___HD C:\ProgramData\CanonBJ
2015-10-21 15:42 - 2015-10-21 15:42 - 00000000 ___HD C:\ProgramData\CanonIJFAX
2015-10-21 15:42 - 2014-04-28 04:00 - 00303104 _____ (CANON INC.) C:\windows\system32\CNCALCG.DLL
2015-10-21 15:42 - 2014-04-23 04:00 - 00406016 _____ (CANON INC.) C:\windows\system32\CNMLMCG.DLL
2015-10-21 15:38 - 2015-10-21 15:39 - 00000000 ____D C:\Users\Torsten\AppData\Local\PackageStaging
2015-10-21 15:37 - 2015-10-28 11:44 - 00000000 ____D C:\Users\Torsten
2015-10-21 15:37 - 2015-10-26 10:44 - 00000000 ____D C:\Users\Torsten\AppData\Local\Packages
2015-10-21 15:37 - 2015-10-23 13:28 - 00000000 ____D C:\Users\Torsten\AppData\Local\VirtualStore
2015-10-21 15:37 - 2015-10-22 15:20 - 00000000 ____D C:\Users\Torsten\AppData\Roaming\Adobe
2015-10-21 15:37 - 2015-10-21 18:15 - 00000000 ___SD C:\windows\SysWOW64\GWX
2015-10-21 15:37 - 2015-10-21 18:15 - 00000000 ___SD C:\windows\system32\GWX
2015-10-21 15:37 - 2015-10-21 15:37 - 00001457 _____ C:\Users\Torsten\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-10-21 15:37 - 2015-10-21 15:37 - 00000451 _____ C:\windows\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2015-10-21 15:37 - 2015-10-21 15:37 - 00000020 ___SH C:\Users\Torsten\ntuser.ini
2015-10-21 15:37 - 2015-10-21 15:37 - 00000000 _SHDL C:\Users\Torsten\Vorlagen
2015-10-21 15:37 - 2015-10-21 15:37 - 00000000 _SHDL C:\Users\Torsten\Startmenü
2015-10-21 15:37 - 2015-10-21 15:37 - 00000000 _SHDL C:\Users\Torsten\Netzwerkumgebung
2015-10-21 15:37 - 2015-10-21 15:37 - 00000000 _SHDL C:\Users\Torsten\Lokale Einstellungen
2015-10-21 15:37 - 2015-10-21 15:37 - 00000000 _SHDL C:\Users\Torsten\Eigene Dateien
2015-10-21 15:37 - 2015-10-21 15:37 - 00000000 _SHDL C:\Users\Torsten\Druckumgebung
2015-10-21 15:37 - 2015-10-21 15:37 - 00000000 _SHDL C:\Users\Torsten\Documents\Eigene Musik
2015-10-21 15:37 - 2015-10-21 15:37 - 00000000 _SHDL C:\Users\Torsten\Documents\Eigene Bilder
2015-10-21 15:37 - 2015-10-21 15:37 - 00000000 _SHDL C:\Users\Torsten\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-10-21 15:37 - 2015-10-21 15:37 - 00000000 _SHDL C:\Users\Torsten\AppData\Local\Verlauf
2015-10-21 15:37 - 2015-10-21 15:37 - 00000000 _SHDL C:\Users\Torsten\AppData\Local\Anwendungsdaten
2015-10-21 15:37 - 2015-10-21 15:37 - 00000000 _SHDL C:\Users\Torsten\Anwendungsdaten
2015-10-21 15:37 - 2014-08-14 06:11 - 00000000 ___RD C:\Users\Torsten\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-10-21 15:37 - 2014-08-14 05:48 - 00000000 ___RD C:\Users\Torsten\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-10-21 15:37 - 2014-08-14 05:31 - 00000369 _____ C:\Users\Torsten\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2015-10-21 15:37 - 2014-08-14 05:31 - 00000369 _____ C:\Users\Torsten\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2015-10-21 15:37 - 2013-08-22 16:36 - 00000000 ___RD C:\Users\Torsten\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-10-21 15:37 - 2013-08-22 16:36 - 00000000 ____D C:\Users\Torsten\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-10-21 15:30 - 2015-08-11 03:47 - 02757072 _____ (Microsoft Corporation) C:\windows\explorer.exe
2015-10-21 15:30 - 2015-08-11 03:47 - 02414096 _____ (Microsoft Corporation) C:\windows\SysWOW64\explorer.exe
2015-10-21 15:30 - 2015-07-09 19:48 - 00131712 _____ (Microsoft Corporation) C:\windows\system32\RestoreOptIn.exe
2015-10-21 15:30 - 2015-07-09 19:40 - 00359936 _____ (Microsoft Corporation) C:\windows\system32\WinSetupUI.dll
2015-10-21 15:30 - 2015-07-09 18:59 - 00112624 _____ (Microsoft Corporation) C:\windows\SysWOW64\RestoreOptIn.exe
2015-10-21 15:30 - 2015-06-27 04:08 - 00066048 _____ (Microsoft Corporation) C:\windows\system32\wups.dll
2015-10-21 15:30 - 2015-06-27 04:08 - 00052224 _____ (Microsoft Corporation) C:\windows\system32\wups2.dll
2015-10-21 15:30 - 2015-06-27 03:14 - 00027136 _____ (Microsoft Corporation) C:\windows\SysWOW64\wups.dll
2015-10-21 15:30 - 2015-03-14 02:51 - 00015360 _____ (Microsoft Corporation) C:\windows\system32\wu.upgrade.ps.dll
2015-10-21 15:30 - 2014-10-18 07:50 - 00017408 _____ (Microsoft Corporation) C:\windows\system32\wuaext.dll
2015-10-21 15:29 - 2015-10-28 09:03 - 01378128 _____ C:\windows\WindowsUpdate.log
==================== Ein Monat: Geänderte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2015-10-28 11:41 - 2014-08-14 04:55 - 00764340 _____ C:\windows\system32\perfh007.dat
2015-10-28 11:41 - 2014-08-14 04:55 - 00159160 _____ C:\windows\system32\perfc007.dat
2015-10-28 11:41 - 2014-08-13 22:03 - 01776918 _____ C:\windows\system32\PerfStringBackup.INI
2015-10-28 09:31 - 2013-08-22 15:45 - 00000006 ____H C:\windows\Tasks\SA.DAT
2015-10-28 09:30 - 2013-08-22 15:46 - 00033718 _____ C:\windows\setupact.log
2015-10-28 09:04 - 2013-08-22 14:25 - 00262144 ___SH C:\windows\system32\config\BBI
2015-10-28 09:00 - 2013-08-22 16:36 - 00000000 ____D C:\windows\system32\sru
2015-10-28 08:18 - 2013-08-22 16:36 - 00000000 ____D C:\windows\rescache
2015-10-27 08:45 - 2014-08-14 05:06 - 00000000 ____D C:\windows\Firmware
2015-10-27 08:45 - 2013-08-22 16:20 - 00000000 ____D C:\windows\CbsTemp
2015-10-27 08:03 - 2013-08-22 22:00 - 00000000 ____D C:\Program Files\Windows Journal
2015-10-27 08:03 - 2013-08-22 21:57 - 00000000 ____D C:\windows\SysWOW64\winrm
2015-10-27 08:03 - 2013-08-22 21:57 - 00000000 ____D C:\windows\SysWOW64\WCN
2015-10-27 08:03 - 2013-08-22 21:57 - 00000000 ____D C:\windows\SysWOW64\slmgr
2015-10-27 08:03 - 2013-08-22 21:57 - 00000000 ____D C:\windows\SysWOW64\Printing_Admin_Scripts
2015-10-27 08:03 - 2013-08-22 21:57 - 00000000 ____D C:\windows\system32\winrm
2015-10-27 08:03 - 2013-08-22 21:57 - 00000000 ____D C:\windows\system32\WCN
2015-10-27 08:03 - 2013-08-22 21:57 - 00000000 ____D C:\windows\system32\slmgr
2015-10-27 08:03 - 2013-08-22 21:57 - 00000000 ____D C:\windows\system32\Printing_Admin_Scripts
2015-10-27 08:03 - 2013-08-22 16:36 - 00000000 ___SD C:\windows\system32\dsc
2015-10-27 08:03 - 2013-08-22 16:36 - 00000000 ___RD C:\windows\ImmersiveControlPanel
2015-10-27 08:03 - 2013-08-22 16:36 - 00000000 ____D C:\windows\WinStore
2015-10-27 08:03 - 2013-08-22 16:36 - 00000000 ____D C:\windows\SysWOW64\MUI
2015-10-27 08:03 - 2013-08-22 16:36 - 00000000 ____D C:\windows\SysWOW64\en-GB
2015-10-27 08:03 - 2013-08-22 16:36 - 00000000 ____D C:\windows\SysWOW64\Com
2015-10-27 08:03 - 2013-08-22 16:36 - 00000000 ____D C:\windows\system32\SystemResetPlatform
2015-10-27 08:03 - 2013-08-22 16:36 - 00000000 ____D C:\windows\system32\MUI
2015-10-27 08:03 - 2013-08-22 16:36 - 00000000 ____D C:\windows\system32\migwiz
2015-10-27 08:03 - 2013-08-22 16:36 - 00000000 ____D C:\windows\system32\en-GB
2015-10-27 08:03 - 2013-08-22 16:36 - 00000000 ____D C:\windows\system32\Com
2015-10-27 08:03 - 2013-08-22 16:36 - 00000000 ____D C:\windows\PolicyDefinitions
2015-10-27 08:03 - 2013-08-22 16:36 - 00000000 ____D C:\windows\IME
2015-10-27 08:03 - 2013-08-22 16:36 - 00000000 ____D C:\windows\Help
2015-10-27 08:03 - 2013-08-22 16:36 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2015-10-27 08:03 - 2013-08-22 16:36 - 00000000 ____D C:\Program Files\Windows Defender
2015-10-27 08:03 - 2013-08-22 16:36 - 00000000 ____D C:\Program Files\Common Files\System
2015-10-27 08:03 - 2013-08-22 16:36 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2015-10-27 08:03 - 2013-08-22 16:36 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2015-10-27 08:03 - 2013-08-22 14:36 - 00000000 ____D C:\windows\SysWOW64\oobe
2015-10-27 08:03 - 2013-08-22 14:36 - 00000000 ____D C:\windows\SysWOW64\Dism
2015-10-27 08:03 - 2013-08-22 14:36 - 00000000 ____D C:\windows\system32\Sysprep
2015-10-27 08:03 - 2013-08-22 14:36 - 00000000 ____D C:\windows\system32\oobe
2015-10-27 08:03 - 2013-08-22 14:36 - 00000000 ____D C:\windows\system32\Dism
2015-10-27 08:03 - 2013-08-22 14:36 - 00000000 ____D C:\windows\servicing
2015-10-25 15:23 - 2013-08-22 16:36 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2015-10-24 13:03 - 2013-08-22 16:36 - 00000000 ____D C:\windows\AppReadiness
2015-10-22 16:51 - 2014-08-13 21:53 - 00152234 _____ C:\windows\PFRO.log
2015-10-22 07:07 - 2013-08-22 16:36 - 00000000 ____D C:\windows\AppCompat
2015-10-22 07:02 - 2013-08-22 15:44 - 00482240 _____ C:\windows\system32\FNTCACHE.DAT
2015-10-21 20:10 - 2015-09-01 14:41 - 00000326 _____ C:\windows\primopdf.ini
2015-10-21 19:28 - 2014-08-13 21:56 - 00000000 ____D C:\ProgramData\Package Cache
2015-10-21 18:18 - 2014-08-13 21:54 - 00000000 ____D C:\windows\SysWOW64\TrueColor5.2
2015-10-21 18:18 - 2014-08-13 21:54 - 00000000 ____D C:\windows\system32\TrueColor5.2
2015-10-21 18:18 - 2013-08-22 16:37 - 00002988 _____ C:\windows\DtcInstall.log
2015-10-21 18:15 - 2013-08-22 22:00 - 00000000 __SHD C:\windows\BitLockerDiscoveryVolumeContents
2015-10-21 18:15 - 2013-08-22 16:36 - 00000000 ___RD C:\windows\ToastData
2015-10-21 18:15 - 2013-08-22 16:36 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-10-21 18:15 - 2013-08-22 16:36 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-10-21 18:15 - 2013-08-22 16:36 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-10-21 18:15 - 2013-08-22 16:36 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-10-21 18:15 - 2013-08-22 16:36 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-10-21 18:15 - 2013-08-22 16:36 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-10-21 18:15 - 2013-08-22 16:36 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
2015-10-21 18:15 - 2013-08-22 16:36 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-10-21 18:15 - 2013-08-22 16:36 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-10-21 18:15 - 2013-08-22 16:36 - 00000000 ____D C:\windows\SysWOW64\sppui
2015-10-21 18:15 - 2013-08-22 16:36 - 00000000 ____D C:\windows\SysWOW64\setup
2015-10-21 18:15 - 2013-08-22 16:36 - 00000000 ____D C:\windows\SysWOW64\migwiz
2015-10-21 18:15 - 2013-08-22 16:36 - 00000000 ____D C:\windows\SysWOW64\InputMethod
2015-10-21 18:15 - 2013-08-22 16:36 - 00000000 ____D C:\windows\system32\WinBioPlugIns
2015-10-21 18:15 - 2013-08-22 16:36 - 00000000 ____D C:\windows\system32\sr-Latn-RS
2015-10-21 18:15 - 2013-08-22 16:36 - 00000000 ____D C:\windows\system32\sr-Latn-CS
2015-10-21 18:15 - 2013-08-22 16:36 - 00000000 ____D C:\windows\system32\sppui
2015-10-21 18:15 - 2013-08-22 16:36 - 00000000 ____D C:\windows\system32\setup
2015-10-21 18:15 - 2013-08-22 16:36 - 00000000 ____D C:\windows\MediaViewer
2015-10-21 18:15 - 2013-08-22 16:36 - 00000000 ____D C:\windows\FileManager
2015-10-21 18:15 - 2013-08-22 16:36 - 00000000 ____D C:\windows\Camera
2015-10-21 18:15 - 2013-08-22 16:36 - 00000000 ____D C:\Program Files\WindowsPowerShell
2015-10-21 18:15 - 2013-08-22 16:36 - 00000000 ____D C:\Program Files\Windows Portable Devices
2015-10-21 18:15 - 2013-08-22 16:36 - 00000000 ____D C:\Program Files\Windows Multimedia Platform
2015-10-21 18:15 - 2013-08-22 16:36 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices
2015-10-21 18:15 - 2013-08-22 16:36 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform
2015-10-21 17:20 - 2013-08-22 16:36 - 00262144 _____ C:\windows\system32\config\BCD-Template
2015-10-21 17:20 - 2013-08-22 16:36 - 00000000 ____D C:\windows\system32\Recovery
2015-10-21 16:52 - 2013-08-22 16:36 - 00215552 _____ (Microsoft Corporation) C:\windows\system32\msclmd.dll
2015-10-21 16:52 - 2013-08-22 16:36 - 00195072 _____ (Microsoft Corporation) C:\windows\SysWOW64\msclmd.dll
2015-10-21 16:21 - 2014-08-14 06:52 - 00000000 ____D C:\windows\Panther
2015-10-21 15:44 - 2013-08-22 16:36 - 00000000 ____D C:\windows\system32\FxsTmp
2015-10-21 15:30 - 2013-08-22 16:36 - 00000000 ____D C:\windows\system32\restore
2015-10-21 15:30 - 2013-08-22 14:36 - 00000000 ____D C:\windows\system32\AdvancedInstallers
==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======
2014-08-13 21:54 - 2014-08-13 21:54 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2015-10-23 13:28 - 2015-10-23 13:28 - 0000089 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.400.32.bc
Einige Dateien in TEMP:
====================
C:\Users\Torsten\AppData\Local\Temp\avgnt.exe
C:\Users\Torsten\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpb5333v.dll
C:\Users\Torsten\AppData\Local\Temp\SetupO365HomePremRetail.x86.de-DE_O365HomePremRetail_D3KY9-N2YDK-7RM34-2Q8YD-M7RR4_act_1_.exe
==================== Bamital & volsnap =================
(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)
C:\windows\system32\winlogon.exe => Datei ist digital signiert
C:\windows\system32\wininit.exe => Datei ist digital signiert
C:\windows\explorer.exe => Datei ist digital signiert
C:\windows\SysWOW64\explorer.exe => Datei ist digital signiert
C:\windows\system32\svchost.exe => Datei ist digital signiert
C:\windows\SysWOW64\svchost.exe => Datei ist digital signiert
C:\windows\system32\services.exe => Datei ist digital signiert
C:\windows\system32\User32.dll => Datei ist digital signiert
C:\windows\SysWOW64\User32.dll => Datei ist digital signiert
C:\windows\system32\userinit.exe => Datei ist digital signiert
C:\windows\SysWOW64\userinit.exe => Datei ist digital signiert
C:\windows\system32\rpcss.dll => Datei ist digital signiert
C:\windows\system32\dnsapi.dll => Datei ist digital signiert
C:\windows\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\windows\system32\Drivers\volsnap.sys => Datei ist digital signiert
LastRegBack: 2014-08-13 21:53
==================== Ende von FRST.txt ============================