Sorry, bei Mcaffee bekomm ich keine Logfiles angezeigt :(
upps! ab hier der Rest Code:
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(McAfee, Inc.) C:\Program Files\McAfee\MSC\McAPExe.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
(VMware, Inc.) C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
(VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Nero AG) C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe
(Nero AG) C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(McAfee, Inc.) C:\Program Files\McAfee\MAT\McPvTray.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\saUI.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Farbar) C:\Users\Markus\Downloads\FRST64(1).exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(McAfee, Inc.) C:\Program Files\McAfee\VirusScan\mcods.exe
(Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
(Apple Inc.) C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe
(Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\SeaPort.EXE
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [BeatsOSDApp] => C:\Program Files\IDT\WDM\beats64.exe [37888 2010-10-21] (Hewlett-Packard )
HKLM\...\Run: [hpsysdrv] => c:\program files (x86)\hewlett-packard\HP odometer\hpsysdrv.exe [62768 2008-11-20] (Hewlett-Packard)
HKLM\...\Run: [snp2uvc] => C:\Windows\vsnp2uvc.exe [662016 2009-08-12] (Sonix)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1425408 2012-04-24] (IDT, Inc.)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2199840 2014-04-30] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [HP Software Update] => c:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [54576 2008-12-08] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Easybits Recovery] => C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe
HKLM-x32\...\Run: [PDF Complete] => C:\Program Files (x86)\PDF Complete\pdfsty.exe [656920 2011-02-01] (PDF Complete Inc)
HKLM-x32\...\Run: [mcpltui_exe] => C:\Program Files\McAfee.com\Agent\mcagent.exe [537992 2014-04-25] (McAfee, Inc.)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-12-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [snp2uvc] => C:\Windows\vsnp2uvc.exe [662016 2009-08-12] (Sonix)
HKLM-x32\...\Run: [tsnp2uvc] => C:\Program Files (x86)\Common Files\SNP2UVC\tsnp2uvc.exe [322048 2011-05-04] (Sonix Technology Co., Ltd.)
HKLM-x32\...\Run: [BingDesktop] => C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktop.exe [2353880 2013-11-01] (Microsoft Corp.)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.)
HKLM-x32\...\Run: [Download Protect] => C:\ProgramData\dlprotect.exe
HKLM-x32\...\Run: [WinampAgent] => C:\Program Files (x86)\Winamp\winampa.exe [85600 2013-12-13] (Nullsoft, Inc.)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-08-01] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-07-25] (Oracle Corporation)
HKLM-x32\...\Run: [Microsoft Windows Hosting Service] => C:\Users\Markus\AppData\Local\Temp\csrss.exe [258048 2014-08-19] (Copyright © 1997-2013, Nullsoft, Inc.)
HKLM\...\RunOnce: [NCPluginUpdater] => C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe [21720 2014-08-05] (Hewlett-Packard)
HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1
HKLM\...\Policies\Explorer: [NoFolderOptions] 0
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] => C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe [152872 2008-01-22] (Nero AG)
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [Akamai NetSession Interface] => C:\Users\Markus\AppData\Local\Akamai\netsession_win.exe [4672920 2014-04-17] (Akamai Technologies, Inc.)
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [Snappy Fax] => [X]
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [asepwn.exe] => C:\Users\Markus\AppData\Roaming\hzepnu\\asepwn.exe [69119328 2014-03-24] (iziueudewtdud)
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [abwcqt.exe] => C:\Users\Markus\AppData\Roaming\hzepnu\\abwcqt.exe
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [buwcqt.exe] => C:\Users\Markus\AppData\Roaming\ujokab\\buwcqt.exe [69119328 2014-03-24] (iziueudewtdud)
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [wekeab.exe] => C:\Users\Markus\AppData\Roaming\ujokab\\wekeab.exe
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [Dont.Get.Angry.2.GERMAN-FASiSO.exe] => Dont.Get.Angry.2.GERMAN-FASiSO.exe
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [uoewfk.exe] => C:\Users\Markus\AppData\Roaming\ujokab\\uoewfk.exe
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [kewnow.exe] => C:\Users\Markus\AppData\Roaming\hzepnu\\kewnow.exe
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [zzsuel.exe] => C:\Users\Markus\AppData\Roaming\hzepnu\\zzsuel.exe
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [gfzrzz.exe] => C:\Users\Markus\AppData\Roaming\hzepnu\\gfzrzz.exe
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [deabzr.exe] => C:\Users\Markus\AppData\Roaming\hzepnu\\deabzr.exe
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [kenuow.exe] => C:\Users\Markus\AppData\Roaming\ujokab\\kenuow.exe
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [aqzzuj.exe] => C:\Users\Markus\AppData\Roaming\hzepnu\\aqzzuj.exe
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [aqzvuj.exe] => C:\Users\Markus\AppData\Roaming\ujokab\\aqzvuj.exe
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [ihjaok.exe] => C:\Users\Markus\AppData\Roaming\hzepnu\\ihjaok.exe
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [czkoxa.exe] => C:\Users\Markus\AppData\Roaming\hzepnu\\czkoxa.exe
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [wcgfvx.exe] => C:\Users\Markus\AppData\Roaming\ujokab\\wcgfvx.exe
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [aspuwn.exe] => C:\Users\Markus\AppData\Roaming\hzepnu\\aspuwn.exe
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [rxqtih.exe] => C:\Users\Markus\AppData\Roaming\ujokab\\rxqtih.exe
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [fkrxzz.exe] => C:\Users\Markus\AppData\Roaming\hzepnu\\fkrxzz.exe
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [ewburx.exe] => C:\Users\Markus\AppData\Roaming\hzepnu\\ewburx.exe
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [bucztr.exe] => C:\Users\Markus\AppData\Roaming\ujokab\\bucztr.exe
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [] => C:\Users\Markus\AppData\Roaming\ujokab\\ [0 ] ()
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [ujwede.exe] => C:\Users\Markus\AppData\Roaming\hzepnu\\ujwede.exe
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [buwctr.exe] => C:\Users\Markus\AppData\Roaming\ujokab\\buwctr.exe
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [qtzvja.exe] => C:\Users\Markus\AppData\Roaming\hzepnu\\qtzvja.exe
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [jaweew.exe] => C:\Users\Markus\AppData\Roaming\hzepnu\\jaweew.exe
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [hzaske.exe] => C:\Users\Markus\AppData\Roaming\hzepnu\\hzaske.exe
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [trxaas.exe] => C:\Users\Markus\AppData\Roaming\hzepnu\\trxaas.exe
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [fkzrzz.exe] => C:\Users\Markus\AppData\Roaming\hzepnu\\fkzrzz.exe
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [eplabu.exe] => C:\Users\Markus\AppData\Roaming\hzepnu\\eplabu.exe
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [udczrz.exe] => C:\Users\Markus\AppData\Roaming\hzepnu\\udczrz.exe
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [nuudgf.exe] => C:\Users\Markus\AppData\Roaming\hzepnu\\nuudgf.exe
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [uodefk.exe] => C:\Users\Markus\AppData\Roaming\hzepnu\\uodefk.exe
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [nudegf.exe] => C:\Users\Markus\AppData\Roaming\hzepnu\\nudegf.exe
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [elnuwc.exe] => C:\Users\Markus\AppData\Roaming\hzepnu\\elnuwc.exe
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Run: [Microsoft Windows Hosting Service] => C:\Users\Markus\AppData\Local\Temp\csrss.exe [258048 2014-08-19] (Copyright © 1997-2013, Nullsoft, Inc.) <===== ATTENTION
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Policies\Explorer: [DisallowRun] 1
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Policies\Explorer: [NoFolderOptions] 0
HKU\S-1-5-21-2536818366-3843244585-2005303905-1001\...\Policies\Explorer: [NoControlPanel] 0
IFEO\DatamngrCoordinator.exe: [Debugger] tasklist.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files (x86)\McAfee Security Scan\3.0.285\SSScheduler.exe (McAfee, Inc.)
Startup: C:\Users\Markus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\AutoStarter.lnk
ShortcutTarget: AutoStarter.lnk -> C:\Users\Markus\Documents\UseNeXT\wizard\Geile Teenies haben unvergesslichen Sex miteinande\Geile Teenies haben unvergesslichen Sex miteinander.exe ()
ShellIconOverlayIdentifiers: MOBK -> {3c3f3c1a-9153-7c05-f938-622e7003894d} => C:\Program Files (x86)\McAfee Online Backup\MOBKshell.dll (McAfee, Inc.)
ShellIconOverlayIdentifiers: MOBK2 -> {e6ea1d7d-144e-b977-98c4-84c53c1a69d0} => C:\Program Files (x86)\McAfee Online Backup\MOBKshell.dll (McAfee, Inc.)
ShellIconOverlayIdentifiers: MOBK3 -> {b4caf489-1eec-c617-49ad-8d7088598c06} => C:\Program Files (x86)\McAfee Online Backup\MOBKshell.dll (McAfee, Inc.)
BootExecute: autocheck autochk * bootdelete
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StPOamTTqzur3wb8K-Ou-Ve_tolwkCoFEtV9h8HxjCgmJgRkbv8hPsmn6MtslG5PS90lqfKeoBoAzF6us13mGLYBdyAaJxYud-qJvwx2FQTbebv2NsoN7xvz6mEzmGLfqI8CH3OMiX3ZSjIRwFAswlCFzsrd18on5oOfTCFIgxNNh46c-eiakmJIWAOgzUIbZGkQd_WFNGIg,,&q={searchTerms}
HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StPOamTTqzur3wb8K-Ou-Ve_tolwkCoFEtV9h8HxjCgmJgRkbv8hPsmn6MtslG5PS90lqfKeoBoAzF6us13mGLYBdyAaJxYud-qJvwx2FQTbebv2NsoN7xvz6mEzmGLfqI8CH3OMiX3ZSjIRwFAswlCFzsrd18on5oOfTCFIgxNNh46c-eiakmJIWAOgzUIbZGkQd_WFNGIg,,&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
URLSearchHook: HKCU - (No Name) - {84FF7BD6-B47F-46F8-9130-01B2696B36CB} - No File
SearchScopes: HKLM - {2fa28606-de77-4029-af96-b231e3b8f827} URL = hxxp://eu.ask.com/web?q={searchterms}&l=dis&o=HPDTDF
SearchScopes: HKLM - {93D54FB4-4DD2-4D46-AC29-2FDB1401A52F} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de1-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM - {b7fca997-d0fb-4fe0-8afd-255e89cf9671} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPDTDF
SearchScopes: HKLM - {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = hxxp://de.wikipedia.org/wiki/Special:Search?search={searchTerms}
SearchScopes: HKLM - {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-111076-19270-2/4?mpre=hxxp://shop.ebay.com/?_nkw={searchTerms}
SearchScopes: HKLM-x32 - DefaultScope {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StPOamTTqzur3wb8K-Ou-Ve_tolwkCoFEtV9h8HxjCgmJgRkbv8hPsmn6MtslG5PS90lqfKeoBoAzF6us13mGLYBdyAaJxYud-qJvwx2FQTbebv2NsoN7xvz6mEzmGLfqI8CH3OMiX3ZSjIRwFAswlCFzsrd18on5oOfTCFIgxNNh46c-eiakmJIWHCwbJuP0dR-F5MRpCrQ,,&q={searchTerms}
SearchScopes: HKLM-x32 - {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StPOamTTqzur3wb8K-Ou-Ve_tolwkCoFEtV9h8HxjCgmJgRkbv8hPsmn6MtslG5PS90lqfKeoBoAzF6us13mGLYBdyAaJxYud-qJvwx2FQTbebv2NsoN7xvz6mEzmGLfqI8CH3OMiX3ZSjIRwFAswlCFzsrd18on5oOfTCFIgxNNh46c-eiakmJIWHCwbJuP0dR-F5MRpCrQ,,&q={searchTerms}
SearchScopes: HKCU - DefaultScope {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StPOamTTqzur3wb8K-Ou-Ve_tolwkCoFEtV9h8HxjCgmJgRkbv8hPsmn6MtslG5PS90lqfKeoBoAzF6us13mGLYBdyAaJxYud-qJvwx2FQTbebv2NsoN7xvz6mEzmGLfqI8CH3OMiX3ZSjIRwFAswlCFzsrd18on5oOfTCFIgxNNh46c-eiakmJIWAOgzUIbZGkQd_WFNGIg,,&q={searchTerms}
SearchScopes: HKCU - {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StPOamTTqzur3wb8K-Ou-Ve_tolwkCoFEtV9h8HxjCgmJgRkbv8hPsmn6MtslG5PS90lqfKeoBoAzF6us13mGLYBdyAaJxYud-qJvwx2FQTbebv2NsoN7xvz6mEzmGLfqI8CH3OMiX3ZSjIRwFAswlCFzsrd18on5oOfTCFIgxNNh46c-eiakmJIWAOgzUIbZGkQd_WFNGIg,,&q={searchTerms}
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: McAfee SiteAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
BHO-x32: No Name -> {01F29AE5-D48D-417B-9D00-8A115C23A0EB} -> C:\Users\Markus\AppData\LocalLow\systems ie bho\bho.dll ()
BHO-x32: Bing Bar Helper -> {1dad3af3-ef2f-4f64-ac4b-11789189fcb6} -> C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\BingExt.dll (Microsoft Corporation.)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: No Name -> {84FF7BD6-B47F-46F8-9130-01B2696B36CB} -> No File
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: McAfee SiteAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
Toolbar: HKLM - No Name - {ae07101b-46d4-4a98-af68-0333ea26e113} - No File
Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Toolbar: HKLM-x32 - Bing Bar - {eec0f710-38b5-4aba-99bf-ec87564a4e13} - C:\Program Files (x86)\Microsoft\BingBar\7.1.361.0\BingExt.dll (Microsoft Corporation.)
Toolbar: HKLM-x32 - No Name - {ae07101b-46d4-4a98-af68-0333ea26e113} - No File
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\McAfee\MSC\McSnIePl64.dll (McAfee, Inc.)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\MSC\McSnIePl.dll (McAfee, Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
FireFox:
========
FF ProfilePath: C:\Users\Markus\AppData\Roaming\Mozilla\Firefox\Profiles\jc23kr5n.default-1401701752173
FF DefaultSearchEngine: user_pref("browser.search.defaultenginename", "");
FF SelectedSearchEngine: user_pref("browser.search.selectedEngine", "");
FF Homepage: https://www.google.de/
FF Keyword.URL: hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StPOamTTqzur3wb8K-Ou-Ve_tolwkCoFEtV9h8HxjCgmJgRkbv8hPsmn6MtslG5PS90lqfKeoBoAzF6us13mGLYBdyAaJxYud-qJvwx2FQTbebv2NsoN7xvz6mEzmGLfqI8CH3OMiX3ZSjIRwFAswlCFzsrd18on5oOfTCFIgxNNh46c-eiakmJIWAOgzUIbZGkQd_WFNGIg,,&q=
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_179.dll ()
FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_179.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL ()
FF Plugin-x32: @mcafee.com/MVT -> C:\Program Files (x86)\McAfee\Supportability\MVT\NPMVTPlugin.dll (McAfee, Inc.)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF user.js: detected! => C:\Users\Markus\AppData\Roaming\Mozilla\Firefox\Profiles\jc23kr5n.default-1401701752173\user.js
FF SearchPlugin: C:\Users\Markus\AppData\Roaming\Mozilla\Firefox\Profiles\jc23kr5n.default-1401701752173\searchplugins\Web Search.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\McSiteAdvisor.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: Foxy Secure - C:\Users\Markus\AppData\Roaming\Mozilla\Firefox\Profiles\jc23kr5n.default-1401701752173\Extensions\admin@foxysecure.com [2014-06-20]
FF Extension: DownloadHelper - C:\Users\Markus\AppData\Roaming\Mozilla\Firefox\Profiles\jc23kr5n.default-1401701752173\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2014-08-08]
FF Extension: AdBeaver - C:\Users\Markus\AppData\Roaming\Mozilla\Firefox\Profiles\jc23kr5n.default-1401701752173\Extensions\adbeaver@adbeaver.org.xpi [2014-08-12]
FF Extension: Candy Crush Saga Game Guide - C:\Users\Markus\AppData\Roaming\Mozilla\Firefox\Profiles\jc23kr5n.default-1401701752173\Extensions\extension@hiddenstuffentertainment.com.xpi [2014-06-04]
FF Extension: Board Games - C:\Users\Markus\AppData\Roaming\Mozilla\Firefox\Profiles\jc23kr5n.default-1401701752173\Extensions\jid0-QKAC0NHupnBwqAqSE1Tts8BCWLo@jetpack.xpi [2014-06-04]
FF Extension: Outlook Button - C:\Users\Markus\AppData\Roaming\Mozilla\Firefox\Profiles\jc23kr5n.default-1401701752173\Extensions\{8f7dd41a-0441-4e16-a7d0-f25deb928fb1}.xpi [2014-06-04]
FF Extension: MP3 Player - C:\Users\Markus\AppData\Roaming\Mozilla\Firefox\Profiles\jc23kr5n.default-1401701752173\Extensions\{98249f04-e000-489b-bad4-0d6da2a86141}.xpi [2014-06-04]
FF Extension: Adblock Plus - C:\Users\Markus\AppData\Roaming\Mozilla\Firefox\Profiles\jc23kr5n.default-1401701752173\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-08-20]
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor
FF Extension: McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor [2014-05-06]
FF HKLM-x32\...\Firefox\Extensions: [fmconverter@gmail.com] - C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Firefox
FF Extension: Freemake Video Converter Plugin - C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Firefox [2014-05-07]
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2014-05-06]
Chrome:
=======
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2014-08-01]
CHR HKLM-x32\...\Chrome\Extension: [jbolfgndggfhhpbnkgnpjkfhinclbigj] - C:\Program Files (x86)\Freemake\Freemake Video Converter\BrowserPlugin\Chrome\Freemake.Plugin.Chrome.crx [2014-05-07]
CHR HKLM-x32\...\Chrome\Extension: [mkcedibhemacmilmkpndpkoidlnmgngg] - C:\Users\Markus\ChromeExtensions\mkcedibhemacmilmkpndpkoidlnmgngg\amazon.crx [2014-05-10]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 BingDesktopUpdate; C:\Program Files (x86)\Microsoft\BingDesktop\BingDesktopUpdater.exe [173272 2013-11-01] (Microsoft Corp.)
R2 ezSharedSvc; C:\Windows\SysWOW64\ezSharedSvcHost.exe [514232 2010-04-23] (EasyBits Software AS) [File not signed]
R2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [108032 2014-03-26] (Freemake) [File not signed]
R2 HandleService; C:\Users\Markus\AppData\Roaming\Win System\handle.exe [637952 2014-06-10] (Handle) [File not signed]
R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [92160 2013-11-04] (Hewlett-Packard Company) [File not signed]
R2 McAfee SiteAdvisor Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [178528 2014-04-25] (McAfee, Inc.)
S3 McComponentHostService; C:\Program Files (x86)\McAfee Security Scan\3.0.285\McCHSvc.exe [234776 2012-09-05] (McAfee, Inc.)
R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 McNaiAnn; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R3 McODS; C:\Program Files\McAfee\VirusScan\mcods.exe [603424 2014-06-12] (McAfee, Inc.)
R2 mcpltsvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 McProxy; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 MDM; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [335872 2006-10-26] (Microsoft Corporation) [File not signed]
R2 mfecore; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [1041192 2014-06-18] (McAfee, Inc.)
R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [219752 2014-06-20] (McAfee, Inc.)
R2 mfevtp; C:\Windows\system32\mfevtps.exe [189912 2014-06-20] (McAfee, Inc.)
R2 MOBKbackup; C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe [231224 2010-04-13] (McAfee, Inc.)
R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R3 NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [275752 2008-01-22] (Nero AG)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1617696 2014-04-30] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21007192 2014-04-30] (NVIDIA Corporation)
R2 ogmservice; C:\Program Files (x86)\Online Games Manager\ogmservice.exe [581568 2014-03-27] (RealNetworks, Inc.)
R2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1127448 2011-02-01] (PDF Complete Inc)
R2 PLFlash DeviceIoControl Service; C:\Windows\SysWOW64\IoctlSvc.exe [81920 2006-12-19] (Prolific Technology Inc.) [File not signed]
R2 W3SVC; C:\Windows\system32\inetsrv\iisw3adm.dll [453120 2010-11-21] (Microsoft Corporation)
S2 JetDrive WindowsClosingService; C:\Windows\System32\WindowsClosingService [X]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [72128 2014-06-20] (McAfee, Inc.)
S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197704 2013-09-23] (McAfee, Inc.)
S3 jetdrive; C:\Windows\System32\DRIVERS\jddrv.sys [37248 2012-05-22] (Abelssoft GmbH)
R2 McPvDrv; C:\Windows\system32\drivers\McPvDrv.sys [74560 2013-09-09] (McAfee, Inc.)
R3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [181704 2014-06-20] (McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [313544 2014-06-20] (McAfee, Inc.)
R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [523792 2014-06-20] (McAfee, Inc.)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [786296 2014-06-20] (McAfee, Inc.)
R3 mfencbdc; C:\Windows\System32\DRIVERS\mfencbdc.sys [444720 2014-06-18] (McAfee, Inc.)
S3 mfencrk; C:\Windows\System32\DRIVERS\mfencrk.sys [96592 2014-06-18] (McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [348552 2014-06-20] (McAfee, Inc.)
R1 MOBKFilter; C:\Windows\System32\DRIVERS\MOBK.sys [66040 2010-04-13] (Mozy, Inc.)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [18776 2014-04-30] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [3565312 2011-05-04] ()
S3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2014-05-17] (Anchorfree Inc.)
R3 vmkbd2; C:\Windows\system32\drivers\VMkbd.sys [33496 2014-06-12] (VMware, Inc.)
R0 vsock; C:\Windows\System32\drivers\vsock.sys [73296 2013-10-08] (VMware, Inc.)
S3 MBAMSwissArmy; \??\C:\Windows\system32\drivers\MBAMSwissArmy.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-08-20 14:32 - 2014-08-20 14:34 - 00048225 _____ () C:\Users\Markus\Downloads\Addition.txt
2014-08-20 14:29 - 2014-08-20 14:36 - 00000000 ____D () C:\FRST
2014-08-20 14:29 - 2014-08-20 14:29 - 02101760 _____ (Farbar) C:\Users\Markus\Downloads\FRST64(1).exe
2014-08-20 01:41 - 2014-08-20 14:25 - 00003112 _____ () C:\Windows\System32\Tasks\WinZip Malware Protector_startup
2014-08-20 01:41 - 2014-08-20 01:41 - 00001195 _____ () C:\Users\Public\Desktop\WinZip Malware Protector.lnk
2014-08-20 01:41 - 2014-08-20 01:41 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\Nico Mak Computing
2014-08-20 01:41 - 2014-08-20 01:41 - 00000000 ____D () C:\ProgramData\Nico Mak Computing
2014-08-20 01:41 - 2014-08-20 01:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip Malware Protector
2014-08-20 01:40 - 2014-08-20 01:41 - 00000000 ____D () C:\Program Files (x86)\WinZip Malware Protector
2014-08-20 01:40 - 2014-08-20 01:40 - 04892480 _____ (WinZip International LLC ) C:\Users\Markus\Downloads\wzmp_8.exe
2014-08-20 01:40 - 2013-03-15 17:10 - 00020480 _____ () C:\Windows\system32\wsusnative64.exe
2014-08-20 01:39 - 2014-08-20 01:39 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-08-20 01:19 - 2014-08-20 01:27 - 00000000 ____D () C:\Users\Markus\AppData\Local\Album Shaper
2014-08-20 01:19 - 2014-08-20 01:25 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\Album Shaper
2014-08-20 01:19 - 2014-08-20 01:19 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Album Shaper 2.1
2014-08-20 01:19 - 2014-08-20 01:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Album Shaper 2.1
2014-08-20 01:19 - 2014-08-20 01:19 - 00000000 ____D () C:\Program Files (x86)\Album Shaper 2.1
2014-08-20 01:18 - 2014-08-20 01:18 - 07249289 _____ () C:\Users\Markus\Downloads\albumshaper_2.1_win.exe
2014-08-20 01:11 - 2014-08-20 01:11 - 00000000 ____D () C:\Users\Markus\Downloads\zphoto-w32-1.2(1)
2014-08-20 01:10 - 2014-08-20 01:10 - 01733277 _____ () C:\Users\Markus\Downloads\zphoto-w32-1.2(1).zip
2014-08-19 23:32 - 2014-08-19 23:33 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Markus\Downloads\mbam-setup-2.0.2.1012(1).exe
2014-08-19 23:23 - 2014-08-20 14:36 - 00034957 _____ () C:\Users\Markus\Downloads\FRST.txt
2014-08-19 23:22 - 2014-08-19 23:22 - 02101760 _____ (Farbar) C:\Users\Markus\Downloads\FRST64.exe
2014-08-19 19:19 - 2014-08-19 21:28 - 00004096 _____ () C:\conf.dat
2014-08-19 18:53 - 2014-08-19 18:53 - 00000000 ____D () C:\Users\Markus\Desktop\2014-08-19
2014-08-19 02:22 - 2014-08-19 02:24 - 00000000 ___RD () C:\Users\Markus\Desktop\Webmaster
2014-08-19 01:34 - 2014-08-19 01:34 - 02891989 _____ () C:\Users\Markus\Downloads\archive.zip
2014-08-19 00:11 - 2014-08-19 00:11 - 00012625 _____ () C:\Users\Markus\Documents\london.wowsl
2014-08-18 23:32 - 2014-08-18 23:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Thumb Studio
2014-08-18 23:31 - 2014-08-18 23:31 - 00000000 ____D () C:\Program Files (x86)\Arclab
2014-08-18 23:30 - 2014-08-18 23:30 - 07345912 _____ (Arclab Software GbR ) C:\Users\Markus\Downloads\thumb(1).exe
2014-08-18 23:28 - 2014-08-18 23:30 - 98164000 _____ (Jalbum AB) C:\Users\Markus\Downloads\jAlbum-install(1).exe
2014-08-18 23:23 - 2014-08-18 23:23 - 00827618 _____ (ornj.net ) C:\Users\Markus\Downloads\webalbum_setup.exe
2014-08-18 23:16 - 2014-08-19 00:14 - 00000000 ____D () C:\Users\Markus\Documents\WOW Slider
2014-08-18 23:14 - 2014-08-18 23:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WOW Slider
2014-08-18 23:14 - 2014-08-18 23:14 - 00000000 ____D () C:\Program Files (x86)\WOW Slider
2014-08-18 23:13 - 2014-08-18 23:13 - 00000000 ____D () C:\Users\Markus\Downloads\wowslider-win-setup(1)
2014-08-18 23:12 - 2014-08-18 23:13 - 22259516 _____ () C:\Users\Markus\Downloads\wowslider-win-setup(1).zip
2014-08-18 21:47 - 2014-08-19 01:58 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\IrfanView
2014-08-18 21:47 - 2014-08-18 21:47 - 01898640 _____ (Irfan Skiljan) C:\Users\Markus\Downloads\iview438_setup.exe
2014-08-18 21:20 - 2014-08-18 21:20 - 02368579 _____ () C:\Users\Markus\Downloads\httsetup.exe
2014-08-18 21:20 - 2014-08-18 21:20 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HTTPhotos
2014-08-18 21:20 - 2014-08-18 21:20 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\httphotos
2014-08-18 21:20 - 2014-08-18 21:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HTTPhotos
2014-08-18 21:18 - 2014-08-18 21:18 - 00272808 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-08-18 21:18 - 2014-08-18 21:18 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-08-18 21:18 - 2014-08-18 21:18 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-08-18 21:18 - 2014-08-18 21:18 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-08-18 21:18 - 2014-08-18 21:18 - 00000000 ____D () C:\ProgramData\Sun
2014-08-18 21:18 - 2014-08-18 21:18 - 00000000 ____D () C:\ProgramData\Oracle
2014-08-18 21:18 - 2014-08-18 21:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-08-18 21:18 - 2014-08-18 21:18 - 00000000 ____D () C:\Program Files (x86)\Java
2014-08-18 21:17 - 2014-08-18 21:17 - 00918952 _____ (Oracle Corporation) C:\Users\Markus\Downloads\jxpiinstall.exe
2014-08-18 21:04 - 2014-08-18 21:04 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\S10 Software
2014-08-18 21:04 - 2014-08-18 21:04 - 00000000 ____D () C:\ProgramData\S10 Software
2014-08-18 21:03 - 2014-08-18 21:03 - 00478720 _____ () C:\Users\Markus\Downloads\s10-webalbums_25203.msi
2014-08-18 21:00 - 2014-08-18 21:00 - 19620864 _____ ( ) C:\Users\Markus\Downloads\web-photo-album_19354.exe
2014-08-18 20:49 - 2014-08-18 20:49 - 00000000 ____D () C:\Users\Markus\Downloads\piwigo-2.6.3
2014-08-18 20:48 - 2014-08-18 20:49 - 06501760 _____ () C:\Users\Markus\Downloads\piwigo-2.6.3.zip
2014-08-18 20:28 - 2014-08-18 20:28 - 02798440 _____ (Benjamin Mussler ) C:\Users\Markus\Downloads\galmakent.exe
2014-08-18 19:46 - 2014-08-19 01:59 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\Photo! Web Album
2014-08-18 19:45 - 2014-08-19 02:00 - 00000000 ____D () C:\Program Files (x86)\Browser Guard
2014-08-18 19:44 - 2014-08-18 19:46 - 00000000 ____D () C:\Program Files (x86)\Web Photo Album
2014-08-18 19:43 - 2014-08-18 19:43 - 00366952 _____ (Softonic) C:\Users\Markus\Downloads\SoftonicDownloader_fuer_web-photo-album.exe
2014-08-18 19:17 - 2014-08-18 19:17 - 02222022 _____ ( ) C:\Users\Markus\Downloads\gnsetup.exe
2014-08-18 19:15 - 2014-08-18 19:15 - 00000000 ____D () C:\Users\Markus\Downloads\zphoto-w32-1.2
2014-08-18 19:14 - 2014-08-18 19:15 - 01733277 _____ () C:\Users\Markus\Downloads\zphoto-w32-1.2.zip
2014-08-18 18:52 - 2014-08-19 00:54 - 00000000 ____D () C:\Users\Markus\Documents\Arclab Thumb Studio
2014-08-18 18:52 - 2014-08-18 18:52 - 00000000 ____D () C:\ProgramData\Arclab
2014-08-18 18:50 - 2014-08-18 18:50 - 07345912 _____ (Arclab Software GbR ) C:\Users\Markus\Downloads\thumb.exe
2014-08-18 16:42 - 2014-08-18 16:42 - 22259516 _____ () C:\Users\Markus\Downloads\wowslider-win-setup.zip
2014-08-18 16:42 - 2014-08-18 16:42 - 00000000 ____D () C:\Users\Markus\Downloads\wowslider-win-setup
2014-08-18 16:38 - 2014-08-18 16:38 - 01627383 _____ () C:\Users\Markus\Downloads\lightbox-2.7.1.zip
2014-08-18 16:38 - 2014-08-18 16:38 - 00000000 ____D () C:\Users\Markus\Downloads\lightbox-2.7.1
2014-08-18 16:24 - 2014-08-18 18:49 - 00000000 ____D () C:\Program Files (x86)\OnlineGalerie
2014-08-18 16:24 - 2014-08-18 16:24 - 04318144 _____ (IN MEDIA KG ) C:\Users\Markus\Downloads\freeware_onlinegalerie.exe
2014-08-18 16:24 - 2014-08-18 16:24 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\IN-MEDIAKG
2014-08-18 16:24 - 2014-08-18 16:24 - 00000000 ____D () C:\Program Files (x86)\mresreg
2014-08-18 16:09 - 2014-08-18 16:09 - 01755136 _____ (Mobatek) C:\Users\Markus\Downloads\mobaphoto_19262.exe
2014-08-18 16:09 - 2014-08-18 16:09 - 00240128 _____ () C:\Windows\MPAssoc.dll
2014-08-18 16:03 - 2014-08-18 16:03 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\Windows Live Writer
2014-08-18 16:03 - 2014-08-18 16:03 - 00000000 ____D () C:\Users\Markus\AppData\Local\Windows Live Writer
2014-08-18 15:57 - 2014-08-18 16:04 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\jAlbum
2014-08-18 15:56 - 2014-08-18 15:57 - 98164000 _____ (Jalbum AB) C:\Users\Markus\Downloads\jAlbum-install.exe
2014-08-18 15:19 - 2014-08-18 15:19 - 00812968 _____ ( ) C:\Users\Markus\Downloads\PictigalSetup_CB-DL-Manager.exe
2014-08-18 15:19 - 2014-08-18 15:19 - 00676064 _____ (XLM Software Axel Meierhöfer ) C:\Users\Markus\Downloads\PictigalSetup_CB-DL-Manager [1].exe
2014-08-18 13:45 - 2014-08-18 13:45 - 00044049 _____ () C:\Users\Markus\Downloads\SteffenHagdorn-Pixlie-v0.1.1-2-gc37dc2e.zip
2014-08-18 13:45 - 2014-08-18 13:45 - 00000000 ____D () C:\Users\Markus\Downloads\SteffenHagdorn-Pixlie-v0.1.1-2-gc37dc2e
2014-08-17 21:38 - 2014-08-17 21:38 - 00000000 ____D () C:\ProgramData\374311380
2014-08-17 21:37 - 2014-08-17 21:37 - 00003250 _____ () C:\Windows\System32\Tasks\Optimizer Pro Schedule
2014-08-17 21:37 - 2014-08-17 21:37 - 00000000 ____D () C:\Users\Markus\Documents\Optimizer Pro
2014-08-17 21:33 - 2014-08-17 21:33 - 06052529 _____ (Tim Kosse) C:\Users\Markus\Downloads\FileZilla_3.9.0.3_win32-setup.exe
2014-08-17 21:33 - 2014-08-17 21:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
2014-08-17 21:32 - 2014-08-20 01:06 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\FileZilla
2014-08-17 21:32 - 2014-08-17 21:33 - 00000000 ____D () C:\Program Files (x86)\FileZilla FTP Client
2014-08-17 21:32 - 2014-08-17 21:31 - 04076719 _____ () C:\Users\Markus\Downloads\FileZilla_3.2.7.1_win32-setup [1].exe
2014-08-17 21:31 - 2014-08-17 21:31 - 00761544 _____ ( ) C:\Users\Markus\Downloads\FileZilla_3.2.7.1_win32-setup.exe
2014-08-17 21:29 - 2014-08-17 21:29 - 00000000 _____ () C:\Users\Markus\Downloads\SFTPMSI_CB-DL-Manager.exe
2014-08-17 19:43 - 2014-08-17 19:43 - 00000000 ____D () C:\Users\Markus\AppData\Local\Adobe Code:
2014-08-16 16:59 - 2014-08-16 18:51 - 00000000 ____D () C:\Users\Markus\Desktop\Die Geschichte der Popmusik
2014-08-16 16:00 - 2014-08-16 16:01 - 00527423 _____ ( ) C:\Users\Markus\Downloads\Lame_v3.99.3_for_Windows.exe
2014-08-16 11:39 - 2014-06-12 18:23 - 00064728 _____ (VMware, Inc.) C:\Windows\system32\Drivers\vmx86.sys
2014-08-16 11:39 - 2014-06-12 18:21 - 00033496 _____ (VMware, Inc.) C:\Windows\system32\Drivers\VMkbd.sys
2014-08-16 11:39 - 2013-10-08 18:21 - 00073296 _____ (VMware, Inc.) C:\Windows\system32\Drivers\vsock.sys
2014-08-16 11:39 - 2013-10-08 18:21 - 00067664 _____ (VMware, Inc.) C:\Windows\system32\vsocklib.dll
2014-08-16 11:39 - 2013-10-08 18:21 - 00063568 _____ (VMware, Inc.) C:\Windows\SysWOW64\vsocklib.dll
2014-08-16 11:38 - 2014-08-16 11:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VMware
2014-08-16 11:38 - 2014-08-16 11:38 - 00000000 ____D () C:\Program Files\Common Files\VMware
2014-08-16 11:38 - 2014-06-12 18:23 - 00359128 _____ (VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe
2014-08-16 11:38 - 2014-06-12 18:22 - 00931032 _____ (VMware, Inc.) C:\Windows\system32\vnetlib64.dll
2014-08-16 11:38 - 2014-06-12 18:22 - 00437976 _____ (VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe
2014-08-16 11:38 - 2014-06-12 18:22 - 00031448 _____ (VMware, Inc.) C:\Windows\system32\Drivers\vmnetuserif.sys
2014-08-16 11:38 - 2014-02-27 18:40 - 00054464 _____ (VMware, Inc.) C:\Windows\system32\Drivers\hcmon.sys
2014-08-16 11:37 - 2014-08-16 11:37 - 00000000 ____D () C:\Program Files (x86)\VMware
2014-08-16 11:33 - 2014-08-16 11:35 - 98900000 _____ (VMware, Inc.) C:\Users\Markus\Downloads\VMware-player-6.0.3-1895310.exe
2014-08-16 11:15 - 2014-08-16 11:15 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\McAfee
2014-08-16 11:13 - 2014-08-16 11:13 - 00541592 _____ (McAfee, Inc.) C:\Users\Markus\Downloads\MVTInstaller.exe
2014-08-16 09:42 - 2014-08-16 09:42 - 00000000 ____D () C:\Users\Markus\Desktop\MK to MP3
2014-08-16 09:39 - 2014-08-16 16:32 - 00000034 _____ () C:\Windows\cdplayer.ini
2014-08-16 09:39 - 2014-08-16 09:39 - 00400569 _____ () C:\Users\Markus\Downloads\agmp3plugin.exe
2014-08-16 09:38 - 2014-08-16 09:41 - 00000000 ____D () C:\Program Files (x86)\Security Guard
2014-08-16 09:38 - 2014-08-16 09:40 - 00000000 ____D () C:\Program Files (x86)\Driver Pro
2014-08-16 09:38 - 2014-08-16 09:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audiograbber
2014-08-16 09:37 - 2014-08-16 09:38 - 00471536 _____ () C:\Users\Markus\Downloads\download_audiograbber(1).exe
2014-08-16 09:37 - 2014-08-16 09:37 - 00002494 _____ () C:\Users\Markus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Search.lnk
2014-08-16 09:36 - 2014-08-16 09:36 - 00471536 _____ () C:\Users\Markus\Downloads\download_audiograbber.exe
2014-08-16 09:33 - 2014-08-16 09:33 - 01445348 _____ () C:\Users\Markus\Downloads\lame-3.99.5.tar.gz
2014-08-16 09:30 - 2014-08-16 09:30 - 00000000 ____D () C:\Users\Markus\Downloads\lame3.99.5
2014-08-16 09:29 - 2014-08-16 09:29 - 00676143 _____ () C:\Users\Markus\Downloads\lame3.99.5.zip
2014-08-16 09:19 - 2014-08-16 09:19 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JYK Recorder
2014-08-16 09:19 - 2014-08-16 09:19 - 00000000 ____D () C:\Program Files (x86)\JiaYinKing
2014-08-16 08:18 - 2014-08-16 08:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus
2014-08-16 08:18 - 2014-08-16 08:18 - 00000000 ____D () C:\ProgramData\McAfee Security Scan
2014-08-16 08:18 - 2014-08-16 08:18 - 00000000 ____D () C:\Program Files (x86)\McAfee Security Scan
2014-08-13 09:26 - 2014-07-01 00:24 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll
2014-08-13 09:26 - 2014-07-01 00:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardres.dll
2014-08-13 09:26 - 2014-06-06 08:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2014-08-13 09:26 - 2014-06-06 08:12 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2014-08-13 09:26 - 2014-03-09 23:48 - 01389208 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe
2014-08-13 09:26 - 2014-03-09 23:48 - 00171160 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll
2014-08-13 09:26 - 2014-03-09 23:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardagt.exe
2014-08-13 09:26 - 2014-03-09 23:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\infocardapi.dll
2014-08-13 09:22 - 2014-07-16 05:25 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-08-13 09:22 - 2014-07-16 05:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-08-13 09:22 - 2014-07-16 04:46 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-08-13 09:22 - 2014-07-16 04:46 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-08-13 09:22 - 2014-07-16 04:12 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-08-13 09:22 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL
2014-08-13 09:22 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL
2014-08-13 09:22 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL
2014-08-13 09:22 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL
2014-08-13 09:22 - 2014-07-09 04:03 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL
2014-08-13 09:22 - 2014-07-09 03:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDYAK.DLL
2014-08-13 09:22 - 2014-07-09 03:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAT.DLL
2014-08-13 09:22 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU1.DLL
2014-08-13 09:22 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU.DLL
2014-08-13 09:22 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL
2014-08-13 09:22 - 2014-07-09 00:38 - 00419992 _____ () C:\Windows\system32\locale.nls
2014-08-13 09:22 - 2014-07-09 00:30 - 00419992 _____ () C:\Windows\SysWOW64\locale.nls
2014-08-13 09:22 - 2014-06-25 04:05 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-08-13 09:22 - 2014-06-25 03:41 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2014-08-13 09:22 - 2014-06-16 04:10 - 00985536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2014-08-13 09:22 - 2014-06-03 12:02 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2014-08-13 09:22 - 2014-06-03 12:02 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2014-08-13 09:22 - 2014-06-03 12:02 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2014-08-13 09:22 - 2014-06-03 12:02 - 00112064 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2014-08-13 09:22 - 2014-06-03 11:29 - 02363392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2014-08-13 09:22 - 2014-06-03 11:29 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2014-08-13 09:22 - 2014-06-03 11:29 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2014-08-13 09:21 - 2014-08-01 01:41 - 00348856 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-08-13 09:21 - 2014-08-01 01:16 - 00307384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-08-13 09:21 - 2014-07-25 16:52 - 23645696 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-08-13 09:21 - 2014-07-25 16:02 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-08-13 09:21 - 2014-07-25 16:01 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-08-13 09:21 - 2014-07-25 15:51 - 17524224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-08-13 09:21 - 2014-07-25 15:30 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-08-13 09:21 - 2014-07-25 15:28 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-08-13 09:21 - 2014-07-25 15:28 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-08-13 09:21 - 2014-07-25 15:25 - 02774528 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-08-13 09:21 - 2014-07-25 15:25 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-08-13 09:21 - 2014-07-25 15:11 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-08-13 09:21 - 2014-07-25 15:10 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-08-13 09:21 - 2014-07-25 15:04 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-08-13 09:21 - 2014-07-25 15:03 - 00598016 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-08-13 09:21 - 2014-07-25 15:00 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-08-13 09:21 - 2014-07-25 15:00 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-08-13 09:21 - 2014-07-25 14:59 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-08-13 09:21 - 2014-07-25 14:47 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-08-13 09:21 - 2014-07-25 14:40 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-08-13 09:21 - 2014-07-25 14:34 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-08-13 09:21 - 2014-07-25 14:34 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-08-13 09:21 - 2014-07-25 14:33 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-08-13 09:21 - 2014-07-25 14:30 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-08-13 09:21 - 2014-07-25 14:28 - 05824512 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-08-13 09:21 - 2014-07-25 14:28 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-08-13 09:21 - 2014-07-25 14:21 - 02184704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-08-13 09:21 - 2014-07-25 14:19 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-08-13 09:21 - 2014-07-25 14:18 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-08-13 09:21 - 2014-07-25 14:17 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-08-13 09:21 - 2014-07-25 14:17 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-08-13 09:21 - 2014-07-25 14:12 - 00438784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-08-13 09:21 - 2014-07-25 14:10 - 00292864 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-08-13 09:21 - 2014-07-25 14:10 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-08-13 09:21 - 2014-07-25 14:08 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-08-13 09:21 - 2014-07-25 14:06 - 04204032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-08-13 09:21 - 2014-07-25 13:52 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-08-13 09:21 - 2014-07-25 13:47 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-08-13 09:21 - 2014-07-25 13:43 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-08-13 09:21 - 2014-07-25 13:42 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-08-13 09:21 - 2014-07-25 13:39 - 02087936 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-08-13 09:21 - 2014-07-25 13:39 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-08-13 09:21 - 2014-07-25 13:36 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-08-13 09:21 - 2014-07-25 13:34 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-08-13 09:21 - 2014-07-25 13:29 - 00239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-08-13 09:21 - 2014-07-25 13:23 - 13547008 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-08-13 09:21 - 2014-07-25 13:13 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-08-13 09:21 - 2014-07-25 13:07 - 02001920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-08-13 09:21 - 2014-07-25 13:07 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-08-13 09:21 - 2014-07-25 13:03 - 11772928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-08-13 09:21 - 2014-07-25 12:52 - 02266624 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-08-13 09:21 - 2014-07-25 12:26 - 01431040 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-08-13 09:21 - 2014-07-25 12:17 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-08-13 09:21 - 2014-07-25 12:09 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-08-13 09:21 - 2014-07-25 12:05 - 01792512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-08-13 09:21 - 2014-07-25 12:00 - 01169920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-08-13 09:19 - 2014-08-07 04:06 - 00529920 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-08-13 09:19 - 2014-08-07 04:01 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-08-13 09:19 - 2014-07-14 04:02 - 01216000 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2014-08-13 09:19 - 2014-07-14 03:40 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2014-08-12 20:39 - 2014-08-16 18:47 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\Audacity
2014-08-12 20:39 - 2014-08-12 20:39 - 00001025 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk
2014-08-12 20:38 - 2014-08-12 20:39 - 00000000 ____D () C:\Program Files (x86)\Audacity
2014-08-12 20:38 - 2014-08-12 20:38 - 22180353 _____ (Audacity Team ) C:\Users\Markus\Downloads\audacity-win-2.0.5.exe
2014-08-11 21:57 - 2014-08-11 21:57 - 00144492 ____H () C:\Windows\SysWOW64\mlfcache.dat
2014-08-08 10:52 - 2014-08-08 10:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2014-08-08 10:52 - 2014-08-08 10:52 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-08-08 10:52 - 2014-08-08 10:52 - 00000000 ____D () C:\Program Files\iTunes
2014-08-08 10:52 - 2014-08-08 10:52 - 00000000 ____D () C:\Program Files\iPod
2014-08-08 10:52 - 2014-08-08 10:52 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-08-07 18:34 - 2014-08-09 11:11 - 00000000 ____D () C:\Users\Markus\Desktop\Filme zum Brennen
2014-08-02 07:50 - 2014-05-14 18:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2014-08-02 07:50 - 2014-05-14 18:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2014-08-02 07:50 - 2014-05-14 18:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2014-08-02 07:50 - 2014-05-14 18:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2014-08-02 07:50 - 2014-05-14 18:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2014-08-02 07:50 - 2014-05-14 18:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2014-08-02 07:50 - 2014-05-14 18:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2014-08-02 07:50 - 2014-05-14 18:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2014-08-02 07:50 - 2014-05-14 18:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2014-08-02 07:50 - 2014-05-14 18:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2014-08-02 07:50 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2014-08-02 07:50 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2014-08-02 07:50 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2014-08-02 07:50 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2014-08-01 22:02 - 2014-08-01 22:02 - 00000000 ____D () C:\NVIDIA Corporation
2014-07-25 04:54 - 2014-07-25 04:54 - 00000000 _____ () C:\Users\Markus\Downloads\adwcleaner_3.216_CB-DL-Manager.exe
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-08-20 14:36 - 2014-08-20 14:29 - 00000000 ____D () C:\FRST
2014-08-20 14:36 - 2014-08-19 23:23 - 00034957 _____ () C:\Users\Markus\Downloads\FRST.txt
2014-08-20 14:34 - 2014-08-20 14:32 - 00048225 _____ () C:\Users\Markus\Downloads\Addition.txt
2014-08-20 14:33 - 2009-07-14 06:45 - 00024400 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-08-20 14:33 - 2009-07-14 06:45 - 00024400 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-08-20 14:29 - 2014-08-20 14:29 - 02101760 _____ (Farbar) C:\Users\Markus\Downloads\FRST64(1).exe
2014-08-20 14:29 - 2014-05-06 13:25 - 01562774 _____ () C:\Windows\WindowsUpdate.log
2014-08-20 14:28 - 2014-05-06 13:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
2014-08-20 14:26 - 2014-05-06 13:47 - 00000000 __RSD () C:\Users\Markus\Documents\McAfee-Tresore
2014-08-20 14:25 - 2014-08-20 01:41 - 00003112 _____ () C:\Windows\System32\Tasks\WinZip Malware Protector_startup
2014-08-20 14:25 - 2011-09-02 09:47 - 00000000 ____D () C:\ProgramData\PDFC
2014-08-20 14:24 - 2014-05-07 01:01 - 00000000 ____D () C:\ProgramData\VMware
2014-08-20 14:24 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-08-20 14:24 - 2009-07-14 06:51 - 00120940 _____ () C:\Windows\setupact.log
2014-08-20 14:24 - 2009-07-14 06:45 - 00444304 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-08-20 14:23 - 2011-09-02 09:32 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-08-20 08:43 - 2014-05-07 01:28 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-08-20 07:58 - 2014-05-06 13:53 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-08-20 01:41 - 2014-08-20 01:41 - 00001195 _____ () C:\Users\Public\Desktop\WinZip Malware Protector.lnk
2014-08-20 01:41 - 2014-08-20 01:41 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\Nico Mak Computing
2014-08-20 01:41 - 2014-08-20 01:41 - 00000000 ____D () C:\ProgramData\Nico Mak Computing
2014-08-20 01:41 - 2014-08-20 01:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip Malware Protector
2014-08-20 01:41 - 2014-08-20 01:40 - 00000000 ____D () C:\Program Files (x86)\WinZip Malware Protector
2014-08-20 01:40 - 2014-08-20 01:40 - 04892480 _____ (WinZip International LLC ) C:\Users\Markus\Downloads\wzmp_8.exe
2014-08-20 01:39 - 2014-08-20 01:39 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-08-20 01:27 - 2014-08-20 01:19 - 00000000 ____D () C:\Users\Markus\AppData\Local\Album Shaper
2014-08-20 01:25 - 2014-08-20 01:19 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\Album Shaper
2014-08-20 01:19 - 2014-08-20 01:19 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Album Shaper 2.1
2014-08-20 01:19 - 2014-08-20 01:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Album Shaper 2.1
2014-08-20 01:19 - 2014-08-20 01:19 - 00000000 ____D () C:\Program Files (x86)\Album Shaper 2.1
2014-08-20 01:18 - 2014-08-20 01:18 - 07249289 _____ () C:\Users\Markus\Downloads\albumshaper_2.1_win.exe
2014-08-20 01:11 - 2014-08-20 01:11 - 00000000 ____D () C:\Users\Markus\Downloads\zphoto-w32-1.2(1)
2014-08-20 01:10 - 2014-08-20 01:10 - 01733277 _____ () C:\Users\Markus\Downloads\zphoto-w32-1.2(1).zip
2014-08-20 01:06 - 2014-08-17 21:32 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\FileZilla
2014-08-19 23:33 - 2014-08-19 23:32 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Markus\Downloads\mbam-setup-2.0.2.1012(1).exe
2014-08-19 23:22 - 2014-08-19 23:22 - 02101760 _____ (Farbar) C:\Users\Markus\Downloads\FRST64.exe
2014-08-19 21:28 - 2014-08-19 19:19 - 00004096 _____ () C:\conf.dat
2014-08-19 18:53 - 2014-08-19 18:53 - 00000000 ____D () C:\Users\Markus\Desktop\2014-08-19
2014-08-19 02:24 - 2014-08-19 02:22 - 00000000 ___RD () C:\Users\Markus\Desktop\Webmaster
2014-08-19 02:00 - 2014-08-18 19:45 - 00000000 ____D () C:\Program Files (x86)\Browser Guard
2014-08-19 01:59 - 2014-08-18 19:46 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\Photo! Web Album
2014-08-19 01:58 - 2014-08-18 21:47 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\IrfanView
2014-08-19 01:34 - 2014-08-19 01:34 - 02891989 _____ () C:\Users\Markus\Downloads\archive.zip
2014-08-19 00:54 - 2014-08-18 18:52 - 00000000 ____D () C:\Users\Markus\Documents\Arclab Thumb Studio
2014-08-19 00:14 - 2014-08-18 23:16 - 00000000 ____D () C:\Users\Markus\Documents\WOW Slider
2014-08-19 00:11 - 2014-08-19 00:11 - 00012625 _____ () C:\Users\Markus\Documents\london.wowsl
2014-08-18 23:32 - 2014-08-18 23:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Thumb Studio
2014-08-18 23:31 - 2014-08-18 23:31 - 00000000 ____D () C:\Program Files (x86)\Arclab
2014-08-18 23:30 - 2014-08-18 23:30 - 07345912 _____ (Arclab Software GbR ) C:\Users\Markus\Downloads\thumb(1).exe
2014-08-18 23:30 - 2014-08-18 23:28 - 98164000 _____ (Jalbum AB) C:\Users\Markus\Downloads\jAlbum-install(1).exe
2014-08-18 23:23 - 2014-08-18 23:23 - 00827618 _____ (ornj.net ) C:\Users\Markus\Downloads\webalbum_setup.exe
2014-08-18 23:14 - 2014-08-18 23:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WOW Slider
2014-08-18 23:14 - 2014-08-18 23:14 - 00000000 ____D () C:\Program Files (x86)\WOW Slider
2014-08-18 23:13 - 2014-08-18 23:13 - 00000000 ____D () C:\Users\Markus\Downloads\wowslider-win-setup(1)
2014-08-18 23:13 - 2014-08-18 23:12 - 22259516 _____ () C:\Users\Markus\Downloads\wowslider-win-setup(1).zip
2014-08-18 23:08 - 2010-11-21 05:47 - 00541498 _____ () C:\Windows\PFRO.log
2014-08-18 21:53 - 2014-05-07 01:18 - 00000000 ____D () C:\temp
2014-08-18 21:47 - 2014-08-18 21:47 - 01898640 _____ (Irfan Skiljan) C:\Users\Markus\Downloads\iview438_setup.exe
2014-08-18 21:20 - 2014-08-18 21:20 - 02368579 _____ () C:\Users\Markus\Downloads\httsetup.exe
2014-08-18 21:20 - 2014-08-18 21:20 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HTTPhotos
2014-08-18 21:20 - 2014-08-18 21:20 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\httphotos
2014-08-18 21:20 - 2014-08-18 21:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HTTPhotos
2014-08-18 21:18 - 2014-08-18 21:18 - 00272808 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-08-18 21:18 - 2014-08-18 21:18 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-08-18 21:18 - 2014-08-18 21:18 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-08-18 21:18 - 2014-08-18 21:18 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-08-18 21:18 - 2014-08-18 21:18 - 00000000 ____D () C:\ProgramData\Sun
2014-08-18 21:18 - 2014-08-18 21:18 - 00000000 ____D () C:\ProgramData\Oracle
2014-08-18 21:18 - 2014-08-18 21:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-08-18 21:18 - 2014-08-18 21:18 - 00000000 ____D () C:\Program Files (x86)\Java
2014-08-18 21:17 - 2014-08-18 21:17 - 00918952 _____ (Oracle Corporation) C:\Users\Markus\Downloads\jxpiinstall.exe
2014-08-18 21:04 - 2014-08-18 21:04 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\S10 Software
2014-08-18 21:04 - 2014-08-18 21:04 - 00000000 ____D () C:\ProgramData\S10 Software
2014-08-18 21:03 - 2014-08-18 21:03 - 00478720 _____ () C:\Users\Markus\Downloads\s10-webalbums_25203.msi
2014-08-18 21:00 - 2014-08-18 21:00 - 19620864 _____ ( ) C:\Users\Markus\Downloads\web-photo-album_19354.exe
2014-08-18 20:49 - 2014-08-18 20:49 - 00000000 ____D () C:\Users\Markus\Downloads\piwigo-2.6.3
2014-08-18 20:49 - 2014-08-18 20:48 - 06501760 _____ () C:\Users\Markus\Downloads\piwigo-2.6.3.zip
2014-08-18 20:28 - 2014-08-18 20:28 - 02798440 _____ (Benjamin Mussler ) C:\Users\Markus\Downloads\galmakent.exe
2014-08-18 19:46 - 2014-08-18 19:44 - 00000000 ____D () C:\Program Files (x86)\Web Photo Album
2014-08-18 19:43 - 2014-08-18 19:43 - 00366952 _____ (Softonic) C:\Users\Markus\Downloads\SoftonicDownloader_fuer_web-photo-album.exe
2014-08-18 19:17 - 2014-08-18 19:17 - 02222022 _____ ( ) C:\Users\Markus\Downloads\gnsetup.exe
2014-08-18 19:15 - 2014-08-18 19:15 - 00000000 ____D () C:\Users\Markus\Downloads\zphoto-w32-1.2
2014-08-18 19:15 - 2014-08-18 19:14 - 01733277 _____ () C:\Users\Markus\Downloads\zphoto-w32-1.2.zip
2014-08-18 18:52 - 2014-08-18 18:52 - 00000000 ____D () C:\ProgramData\Arclab
2014-08-18 18:50 - 2014-08-18 18:50 - 07345912 _____ (Arclab Software GbR ) C:\Users\Markus\Downloads\thumb.exe
2014-08-18 18:49 - 2014-08-18 16:24 - 00000000 ____D () C:\Program Files (x86)\OnlineGalerie
2014-08-18 18:25 - 2014-05-08 01:09 - 00003192 _____ () C:\Windows\System32\Tasks\HPCeeScheduleForMarkus
2014-08-18 18:25 - 2014-05-08 01:09 - 00000336 _____ () C:\Windows\Tasks\HPCeeScheduleForMarkus.job
2014-08-18 16:42 - 2014-08-18 16:42 - 22259516 _____ () C:\Users\Markus\Downloads\wowslider-win-setup.zip
2014-08-18 16:42 - 2014-08-18 16:42 - 00000000 ____D () C:\Users\Markus\Downloads\wowslider-win-setup
2014-08-18 16:38 - 2014-08-18 16:38 - 01627383 _____ () C:\Users\Markus\Downloads\lightbox-2.7.1.zip
2014-08-18 16:38 - 2014-08-18 16:38 - 00000000 ____D () C:\Users\Markus\Downloads\lightbox-2.7.1
2014-08-18 16:24 - 2014-08-18 16:24 - 04318144 _____ (IN MEDIA KG ) C:\Users\Markus\Downloads\freeware_onlinegalerie.exe
2014-08-18 16:24 - 2014-08-18 16:24 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\IN-MEDIAKG
2014-08-18 16:24 - 2014-08-18 16:24 - 00000000 ____D () C:\Program Files (x86)\mresreg
2014-08-18 16:09 - 2014-08-18 16:09 - 01755136 _____ (Mobatek) C:\Users\Markus\Downloads\mobaphoto_19262.exe
2014-08-18 16:09 - 2014-08-18 16:09 - 00240128 _____ () C:\Windows\MPAssoc.dll
2014-08-18 16:04 - 2014-08-18 15:57 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\jAlbum
2014-08-18 16:03 - 2014-08-18 16:03 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\Windows Live Writer
2014-08-18 16:03 - 2014-08-18 16:03 - 00000000 ____D () C:\Users\Markus\AppData\Local\Windows Live Writer
2014-08-18 16:03 - 2014-05-16 14:58 - 00000000 ____D () C:\Users\Markus\AppData\Local\Windows Live
2014-08-18 15:57 - 2014-08-18 15:56 - 98164000 _____ (Jalbum AB) C:\Users\Markus\Downloads\jAlbum-install.exe
2014-08-18 15:23 - 2011-09-02 09:23 - 00793854 _____ () C:\Windows\system32\perfh007.dat
2014-08-18 15:23 - 2011-09-02 09:23 - 00183982 _____ () C:\Windows\system32\perfc007.dat
2014-08-18 15:23 - 2009-07-14 07:13 - 01861134 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-08-18 15:19 - 2014-08-18 15:19 - 00812968 _____ ( ) C:\Users\Markus\Downloads\PictigalSetup_CB-DL-Manager.exe
2014-08-18 15:19 - 2014-08-18 15:19 - 00676064 _____ (XLM Software Axel Meierhöfer ) C:\Users\Markus\Downloads\PictigalSetup_CB-DL-Manager [1].exe
2014-08-18 13:45 - 2014-08-18 13:45 - 00044049 _____ () C:\Users\Markus\Downloads\SteffenHagdorn-Pixlie-v0.1.1-2-gc37dc2e.zip
2014-08-18 13:45 - 2014-08-18 13:45 - 00000000 ____D () C:\Users\Markus\Downloads\SteffenHagdorn-Pixlie-v0.1.1-2-gc37dc2e
2014-08-18 13:25 - 2014-05-07 01:15 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\SuperMailer
2014-08-17 21:38 - 2014-08-17 21:38 - 00000000 ____D () C:\ProgramData\374311380
2014-08-17 21:37 - 2014-08-17 21:37 - 00003250 _____ () C:\Windows\System32\Tasks\Optimizer Pro Schedule
2014-08-17 21:37 - 2014-08-17 21:37 - 00000000 ____D () C:\Users\Markus\Documents\Optimizer Pro
2014-08-17 21:33 - 2014-08-17 21:33 - 06052529 _____ (Tim Kosse) C:\Users\Markus\Downloads\FileZilla_3.9.0.3_win32-setup.exe
2014-08-17 21:33 - 2014-08-17 21:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
2014-08-17 21:33 - 2014-08-17 21:32 - 00000000 ____D () C:\Program Files (x86)\FileZilla FTP Client
2014-08-17 21:31 - 2014-08-17 21:32 - 04076719 _____ () C:\Users\Markus\Downloads\FileZilla_3.2.7.1_win32-setup [1].exe
2014-08-17 21:31 - 2014-08-17 21:31 - 00761544 _____ ( ) C:\Users\Markus\Downloads\FileZilla_3.2.7.1_win32-setup.exe
2014-08-17 21:29 - 2014-08-17 21:29 - 00000000 _____ () C:\Users\Markus\Downloads\SFTPMSI_CB-DL-Manager.exe
2014-08-17 19:59 - 2014-05-06 13:32 - 00000000 ____D () C:\Users\Markus\AppData\Local\PDFC
2014-08-17 19:43 - 2014-08-17 19:43 - 00000000 ____D () C:\Users\Markus\AppData\Local\Adobe
2014-08-17 18:19 - 2014-05-06 13:43 - 00000000 ___RD () C:\Users\Markus\Desktop\Home-Office
2014-08-17 08:56 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache
2014-08-17 00:25 - 2014-05-08 00:47 - 00000000 ____D () C:\Program Files\SuperMailer
2014-08-16 18:52 - 2014-06-06 21:45 - 00000000 ____D () C:\Users\Markus\Documents\UseNeXT
2014-08-16 18:52 - 2014-06-06 21:45 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\UseNeXT
2014-08-16 18:51 - 2014-08-16 16:59 - 00000000 ____D () C:\Users\Markus\Desktop\Die Geschichte der Popmusik
2014-08-16 18:47 - 2014-08-12 20:39 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\Audacity
2014-08-16 16:32 - 2014-08-16 09:39 - 00000034 _____ () C:\Windows\cdplayer.ini
2014-08-16 16:14 - 2010-11-21 09:16 - 00000000 ___RD () C:\Users\Public\Recorded TV
2014-08-16 16:01 - 2014-08-16 16:00 - 00527423 _____ ( ) C:\Users\Markus\Downloads\Lame_v3.99.3_for_Windows.exe
2014-08-16 15:39 - 2014-05-06 13:45 - 00000000 ____D () C:\Program Files (x86)\McAfee
2014-08-16 11:41 - 2014-05-07 09:26 - 00000000 ____D () C:\Users\Markus\AppData\Local\VMware
2014-08-16 11:40 - 2014-05-07 09:26 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\VMware
2014-08-16 11:38 - 2014-08-16 11:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VMware
2014-08-16 11:38 - 2014-08-16 11:38 - 00000000 ____D () C:\Program Files\Common Files\VMware
2014-08-16 11:38 - 2011-02-11 19:15 - 01881090 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-08-16 11:37 - 2014-08-16 11:37 - 00000000 ____D () C:\Program Files (x86)\VMware
2014-08-16 11:35 - 2014-08-16 11:33 - 98900000 _____ (VMware, Inc.) C:\Users\Markus\Downloads\VMware-player-6.0.3-1895310.exe
2014-08-16 11:31 - 2014-05-07 01:28 - 00699568 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-08-16 11:31 - 2014-05-07 01:28 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-08-16 11:31 - 2014-05-07 01:28 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-08-16 11:18 - 2014-05-06 13:35 - 00000000 ____D () C:\Program Files\Common Files\McAfee
2014-08-16 11:15 - 2014-08-16 11:15 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\McAfee
2014-08-16 11:14 - 2014-05-06 13:35 - 00000000 ____D () C:\ProgramData\McAfee
2014-08-16 11:13 - 2014-08-16 11:13 - 00541592 _____ (McAfee, Inc.) C:\Users\Markus\Downloads\MVTInstaller.exe
2014-08-16 09:42 - 2014-08-16 09:42 - 00000000 ____D () C:\Users\Markus\Desktop\MK to MP3
2014-08-16 09:41 - 2014-08-16 09:38 - 00000000 ____D () C:\Program Files (x86)\Security Guard
2014-08-16 09:40 - 2014-08-16 09:38 - 00000000 ____D () C:\Program Files (x86)\Driver Pro
2014-08-16 09:39 - 2014-08-16 09:39 - 00400569 _____ () C:\Users\Markus\Downloads\agmp3plugin.exe
2014-08-16 09:38 - 2014-08-16 09:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audiograbber
2014-08-16 09:38 - 2014-08-16 09:37 - 00471536 _____ () C:\Users\Markus\Downloads\download_audiograbber(1).exe
2014-08-16 09:37 - 2014-08-16 09:37 - 00002494 _____ () C:\Users\Markus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Search.lnk
2014-08-16 09:36 - 2014-08-16 09:36 - 00471536 _____ () C:\Users\Markus\Downloads\download_audiograbber.exe
2014-08-16 09:33 - 2014-08-16 09:33 - 01445348 _____ () C:\Users\Markus\Downloads\lame-3.99.5.tar.gz
2014-08-16 09:30 - 2014-08-16 09:30 - 00000000 ____D () C:\Users\Markus\Downloads\lame3.99.5
2014-08-16 09:29 - 2014-08-16 09:29 - 00676143 _____ () C:\Users\Markus\Downloads\lame3.99.5.zip
2014-08-16 09:19 - 2014-08-16 09:19 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JYK Recorder
2014-08-16 09:19 - 2014-08-16 09:19 - 00000000 ____D () C:\Program Files (x86)\JiaYinKing
2014-08-16 08:18 - 2014-08-16 08:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus
2014-08-16 08:18 - 2014-08-16 08:18 - 00000000 ____D () C:\ProgramData\McAfee Security Scan
2014-08-16 08:18 - 2014-08-16 08:18 - 00000000 ____D () C:\Program Files (x86)\McAfee Security Scan
2014-08-14 12:20 - 2014-05-24 16:45 - 00000000 ___RD () C:\Users\Markus\Desktop\Grillplatz
2014-08-13 20:19 - 2014-05-14 17:36 - 00000000 _____ () C:\Windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2014-08-13 20:19 - 2014-05-08 00:36 - 00000052 _____ () C:\Windows\SysWOW64\DOErrors.log
2014-08-13 09:55 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-08-13 09:40 - 2014-05-07 00:42 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-08-13 09:32 - 2014-05-07 11:57 - 00000000 ____D () C:\Windows\system32\MRT
2014-08-13 09:30 - 2014-05-07 11:57 - 99218768 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-08-13 09:26 - 2014-05-07 13:03 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-08-12 20:39 - 2014-08-12 20:39 - 00001025 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk
2014-08-12 20:39 - 2014-08-12 20:38 - 00000000 ____D () C:\Program Files (x86)\Audacity
2014-08-12 20:38 - 2014-08-12 20:38 - 22180353 _____ (Audacity Team ) C:\Users\Markus\Downloads\audacity-win-2.0.5.exe
2014-08-11 21:57 - 2014-08-11 21:57 - 00144492 ____H () C:\Windows\SysWOW64\mlfcache.dat
2014-08-09 21:48 - 2014-07-12 08:52 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\dvdcss
2014-08-09 21:48 - 2014-06-07 05:45 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\vlc
2014-08-09 18:57 - 2014-06-06 22:54 - 00000165 _____ () C:\Users\Markus\AppData\default.pls
2014-08-09 11:11 - 2014-08-07 18:34 - 00000000 ____D () C:\Users\Markus\Desktop\Filme zum Brennen
2014-08-08 10:52 - 2014-08-08 10:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2014-08-08 10:52 - 2014-08-08 10:52 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-08-08 10:52 - 2014-08-08 10:52 - 00000000 ____D () C:\Program Files\iTunes
2014-08-08 10:52 - 2014-08-08 10:52 - 00000000 ____D () C:\Program Files\iPod
2014-08-08 10:52 - 2014-08-08 10:52 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-08-07 18:24 - 2009-07-14 07:32 - 00000000 ____D () C:\Windows\system32\FxsTmp
2014-08-07 04:06 - 2014-08-13 09:19 - 00529920 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-08-07 04:01 - 2014-08-13 09:19 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-08-06 10:56 - 2014-06-07 05:42 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\Winamp
2014-08-04 10:02 - 2014-05-25 15:56 - 00000000 ____D () C:\Windows\Minidump
2014-08-04 10:01 - 2014-05-06 22:19 - 00303703 ____N () C:\Windows\Minidump\080414-20763-01.dmp
2014-08-01 22:02 - 2014-08-01 22:02 - 00000000 ____D () C:\NVIDIA Corporation
2014-08-01 22:02 - 2014-05-27 19:26 - 00000000 ____D () C:\NVIDIA
2014-08-01 01:41 - 2014-08-13 09:21 - 00348856 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-08-01 01:16 - 2014-08-13 09:21 - 00307384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-07-30 00:35 - 2014-05-27 19:30 - 00000000 ____D () C:\Users\Markus\AppData\Local\NVIDIA
2014-07-27 18:48 - 2014-06-20 19:06 - 00000000 ____D () C:\Users\Markus\AppData\Roaming\Security Systems
2014-07-25 16:52 - 2014-08-13 09:21 - 23645696 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-07-25 16:02 - 2014-08-13 09:21 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-07-25 16:01 - 2014-08-13 09:21 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-07-25 15:51 - 2014-08-13 09:21 - 17524224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-07-25 15:30 - 2014-08-13 09:21 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-07-25 15:28 - 2014-08-13 09:21 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-07-25 15:28 - 2014-08-13 09:21 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-07-25 15:25 - 2014-08-13 09:21 - 02774528 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-07-25 15:25 - 2014-08-13 09:21 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-07-25 15:11 - 2014-08-13 09:21 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-07-25 15:10 - 2014-08-13 09:21 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-07-25 15:04 - 2014-08-13 09:21 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-07-25 15:03 - 2014-08-13 09:21 - 00598016 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-07-25 15:00 - 2014-08-13 09:21 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-07-25 15:00 - 2014-08-13 09:21 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-07-25 14:59 - 2014-08-13 09:21 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-07-25 14:47 - 2014-08-13 09:21 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-07-25 14:40 - 2014-08-13 09:21 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-07-25 14:34 - 2014-08-13 09:21 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-07-25 14:34 - 2014-08-13 09:21 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-07-25 14:33 - 2014-08-13 09:21 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-07-25 14:30 - 2014-08-13 09:21 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-07-25 14:28 - 2014-08-13 09:21 - 05824512 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-07-25 14:28 - 2014-08-13 09:21 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-07-25 14:21 - 2014-08-13 09:21 - 02184704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-07-25 14:19 - 2014-08-13 09:21 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-07-25 14:18 - 2014-08-13 09:21 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-07-25 14:17 - 2014-08-13 09:21 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-07-25 14:17 - 2014-08-13 09:21 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-07-25 14:12 - 2014-08-13 09:21 - 00438784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-07-25 14:10 - 2014-08-13 09:21 - 00292864 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-07-25 14:10 - 2014-08-13 09:21 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-07-25 14:08 - 2014-08-13 09:21 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-07-25 14:06 - 2014-08-13 09:21 - 04204032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-07-25 13:52 - 2014-08-13 09:21 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-07-25 13:47 - 2014-08-13 09:21 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-07-25 13:43 - 2014-08-13 09:21 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-07-25 13:42 - 2014-08-13 09:21 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-07-25 13:39 - 2014-08-13 09:21 - 02087936 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-07-25 13:39 - 2014-08-13 09:21 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-07-25 13:36 - 2014-08-13 09:21 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-07-25 13:34 - 2014-08-13 09:21 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-07-25 13:29 - 2014-08-13 09:21 - 00239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-07-25 13:23 - 2014-08-13 09:21 - 13547008 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-07-25 13:13 - 2014-08-13 09:21 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-07-25 13:07 - 2014-08-13 09:21 - 02001920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-07-25 13:07 - 2014-08-13 09:21 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-07-25 13:03 - 2014-08-13 09:21 - 11772928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-07-25 12:52 - 2014-08-13 09:21 - 02266624 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-07-25 12:26 - 2014-08-13 09:21 - 01431040 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-07-25 12:17 - 2014-08-13 09:21 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-07-25 12:09 - 2014-08-13 09:21 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-07-25 12:05 - 2014-08-13 09:21 - 01792512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-07-25 12:00 - 2014-08-13 09:21 - 01169920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-07-25 04:54 - 2014-07-25 04:54 - 00000000 _____ () C:\Users\Markus\Downloads\adwcleaner_3.216_CB-DL-Manager.exe
2014-07-24 20:44 - 2014-05-07 11:55 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-07-24 20:44 - 2014-05-07 11:55 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-07-24 19:13 - 2014-05-07 11:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2014-07-24 18:13 - 2009-07-14 07:08 - 00032632 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
Files to move or delete:
====================
C:\Users\Markus\AppData\Local\Temp\csrss.exe
Some content of TEMP:
====================
C:\Users\Markus\AppData\Local\Temp\browserguard1_Setup.exe
C:\Users\Markus\AppData\Local\Temp\csrss.exe
C:\Users\Markus\AppData\Local\Temp\IminentSetup_july17.exe
C:\Users\Markus\AppData\Local\Temp\iv_uninstall.exe
C:\Users\Markus\AppData\Local\Temp\ose00000.exe
C:\Users\Markus\AppData\Local\Temp\ose00002.exe
C:\Users\Markus\AppData\Local\Temp\ose00004.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-08-17 08:49
==================== End Of Log ============================ |