AlexHarvey | 06.01.2014 22:19 | AdwCleaner Logfile: Code:
# AdwCleaner v3.016 - Bericht erstellt am 06/01/2014 um 22:10:32
# Aktualisiert 23/12/2013 von Xplode
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits)
# Benutzername : User - USER-PC
# Gestartet von : C:\Users\User\Downloads\adwcleaner.exe
# Option : Löschen
***** [ Dienste ] *****
***** [ Dateien / Ordner ] *****
Ordner Gelöscht : C:\Users\User\AppData\Local\iLivid
Ordner Gelöscht : C:\Users\User\AppData\Local\lollipop
Ordner Gelöscht : C:\Users\User\AppData\Local\Mobogenie
Ordner Gelöscht : C:\Users\User\AppData\Local\Temp\AskSearch
Ordner Gelöscht : C:\Users\User\AppData\Local\Temp\OCS
Ordner Gelöscht : C:\Users\User\AppData\Local\Temp\OpenCandy
Ordner Gelöscht : C:\Users\User\AppData\LocalLow\AskToolbar
Ordner Gelöscht : C:\Users\User\AppData\LocalLow\Delta
Ordner Gelöscht : C:\Users\User\AppData\Roaming\BabSolution
Ordner Gelöscht : C:\Users\User\AppData\Roaming\Babylon
Ordner Gelöscht : C:\Users\User\AppData\Roaming\DesktopIconForAmazon
Ordner Gelöscht : C:\Users\User\AppData\Roaming\DSite
Ordner Gelöscht : C:\Users\User\AppData\Roaming\goforfiles
Ordner Gelöscht : C:\Users\User\AppData\Roaming\OCS
Ordner Gelöscht : C:\Users\User\AppData\Roaming\pdfforge
Ordner Gelöscht : C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FTDownloader.com
Ordner Gelöscht : C:\Users\User\Documents\Mobogenie
Ordner Gelöscht : C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\ib6a3ewj.default\Extensions\{94CD2CC3-083F-49BA-A218-4CDA4B4829FD}
Ordner Gelöscht : C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\ib6a3ewj.default\Extensions\firejump@firejump.net
Ordner Gelöscht : C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\ib6a3ewj.default\Extensions\toolbar@ask.com
Datei Gelöscht : C:\END
Datei Gelöscht : C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\iLivid.lnk
Datei Gelöscht : C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\ib6a3ewj.default\invalidprefs.js
Datei Gelöscht : C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\ib6a3ewj.default\searchplugins\Babylon.xml
Datei Gelöscht : C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\ib6a3ewj.default\searchplugins\delta.xml
Datei Gelöscht : C:\Program Files (x86)\Mozilla Firefox\searchplugins\nationzoom.xml
Datei Gelöscht : C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\ib6a3ewj.default\user.js
Datei Gelöscht : C:\Windows\System32\Tasks\GoforFilesUpdate
Datei Gelöscht : C:\Windows\System32\Tasks\Scheduled Update for Ask Toolbar
***** [ Verknüpfungen ] *****
Verknüpfung Desinfiziert : C:\Users\Public\Desktop\Mozilla Firefox.lnk
Verknüpfung Desinfiziert : C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
Verknüpfung Desinfiziert : C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk
Verknüpfung Desinfiziert : C:\Users\User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
Verknüpfung Desinfiziert : C:\Users\User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk
Verknüpfung Desinfiziert : C:\Users\User\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk
***** [ Registrierungsdatenbank ] *****
Schlüssel Gelöscht : HKCU\Software\Classes\Applications\lollipop.exe
Schlüssel Gelöscht : HKCU\Software\Classes\iLivid.torrent
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\conduit.com
Wert Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [iLivid]
Wert Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [NextLive]
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [mobilegeni daemon]
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{00000001-4FEF-40D3-B3FA-E0531B897F98}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{5C3B5DAA-0AFF-4808-90FB-0F2F2D760E36}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{64697678-0000-0010-8000-00AA00389B71}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{FD501041-8EBE-11CE-8183-00AA00577DA2}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{DCABB943-792E-44C4-9029-ECBEE6265AF9}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1631550F-191D-4826-B069-D9439253D926}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{25A3A431-30BB-47C8-AD6A-E1063801134F}]
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Daten Wiederhergestellt : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command
Daten Wiederhergestellt : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\open\command
Schlüssel Gelöscht : HKCU\Software\1ClickDownload
Schlüssel Gelöscht : HKCU\Software\Conduit
Schlüssel Gelöscht : HKCU\Software\dsiteproducts
Schlüssel Gelöscht : HKCU\Software\GoforFiles
Schlüssel Gelöscht : HKCU\Software\ilivid
Schlüssel Gelöscht : HKCU\Software\lollipop
Schlüssel Gelöscht : HKCU\Software\Myfree Codec
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Crossrider
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\DynConIE
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\PriceGong
Schlüssel Gelöscht : HKLM\Software\GoforFiles
Schlüssel Gelöscht : HKLM\Software\Myfree Codec
Schlüssel Gelöscht : HKLM\Software\nationzoomSoftware
Schlüssel Gelöscht : HKLM\Software\supWPM
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec
***** [ Browser ] *****
-\\ Internet Explorer v11.0.9600.16428
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
-\\ Mozilla Firefox v26.0 (de)
[ Datei : C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\ib6a3ewj.default\prefs.js ]
Zeile gelöscht : user_pref("avg.install.userHPSettings", "hxxp://www.delta-search.com/?affID=119828&babsrc=HP_ss&mntrId=6CAEBC5FF48CE7DE");
Zeile gelöscht : user_pref("avg.install.userSPSettings", "Delta Search");
Zeile gelöscht : user_pref("extensions.crossrider.bic", "142ce7254b13d90af0467e6d5769f6c8");
Zeile gelöscht : user_pref("extensions.delta.admin", false);
Zeile gelöscht : user_pref("extensions.delta.aflt", "babsst");
Zeile gelöscht : user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}");
Zeile gelöscht : user_pref("extensions.delta.autoRvrt", "false");
Zeile gelöscht : user_pref("extensions.delta.dfltLng", "de");
Zeile gelöscht : user_pref("extensions.delta.excTlbr", false);
Zeile gelöscht : user_pref("extensions.delta.ffxUnstlRst", true);
Zeile gelöscht : user_pref("extensions.delta.id", "6cae971d000000000000bc5ff48ce7de");
Zeile gelöscht : user_pref("extensions.delta.instlDay", "15885");
Zeile gelöscht : user_pref("extensions.delta.instlRef", "sst");
Zeile gelöscht : user_pref("extensions.delta.newTab", false);
Zeile gelöscht : user_pref("extensions.delta.prdct", "delta");
Zeile gelöscht : user_pref("extensions.delta.prtnrId", "delta");
Zeile gelöscht : user_pref("extensions.delta.rvrt", "false");
Zeile gelöscht : user_pref("extensions.delta.smplGrp", "none");
Zeile gelöscht : user_pref("extensions.delta.tlbrId", "base");
Zeile gelöscht : user_pref("extensions.delta.tlbrSrchUrl", "");
Zeile gelöscht : user_pref("extensions.delta.vrsn", "1.8.21.5");
Zeile gelöscht : user_pref("extensions.delta.vrsnTs", "1.8.21.519:15:51");
Zeile gelöscht : user_pref("extensions.delta.vrsni", "1.8.21.5");
Zeile gelöscht : user_pref("extensions.delta_i.babExt", "");
Zeile gelöscht : user_pref("extensions.delta_i.babTrack", "affID=119357&tt=250613_gr4&tsp=4928");
Zeile gelöscht : user_pref("extensions.delta_i.srcExt", "ss");
Zeile gelöscht : user_pref("extensions.dynconff.cache.www.nationzoom.com.content", "<package expire=\"3600\" es=\"914\" pcdids=\"_1520_1521_1619_1717\">\r\n <content id=\"MB_P1\">\r\n <newjs><![CDATA[(function() {[...]
Zeile gelöscht : user_pref("extensions.dynconff.cache.www.nationzoom.com.expires", "1389027089037");
Zeile gelöscht : user_pref("iminent.webbooster.scripts.minibar.LayoutId", "1");
Zeile gelöscht : user_pref("iminent.webbooster.scripts.minibar.ROOTEXTENSION", "chrome://iminentwebbooster/content/minibar");
Zeile gelöscht : user_pref("iminent.webbooster.scripts.minibar.Services.BHPCode", "01");
Zeile gelöscht : user_pref("iminent.webbooster.scripts.minibar.Services.DefaultEvent", "000");
Zeile gelöscht : user_pref("iminent.webbooster.scripts.minibar.Services.DefaultWebSite", "000");
Zeile gelöscht : user_pref("iminent.webbooster.scripts.minibar.Services.IminentClientCode", "11");
Zeile gelöscht : user_pref("iminent.webbooster.scripts.minibar.Services.SmartFavCode", "02");
Zeile gelöscht : user_pref("iminent.webbooster.scripts.minibar.ShowThankyouPixel", "0");
Zeile gelöscht : user_pref("iminent.webbooster.scripts.minibar.displayFavLinks", "1");
Zeile gelöscht : user_pref("iminent.webbooster.scripts.minibar.enabledAds", "false");
Zeile gelöscht : user_pref("iminent.webbooster.scripts.minibar.registerToolbarEvent102", "1372518281852");
Zeile gelöscht : user_pref("iminent.webbooster.scripts.minibar.registerToolbarEvent109", "1372520467622");
Zeile gelöscht : user_pref("iminent.webbooster.scripts.minibar.registerToolbarEvent111", "1372520467626");
Zeile gelöscht : user_pref("iminent.webbooster.scripts.minibar.registerToolbarEvent122", "1372520467629");
Zeile gelöscht : user_pref("iminent.webbooster.scripts.minibar.registerToolbarEvent129", "1372520980173");
Zeile gelöscht : user_pref("iminent.webbooster.scripts.sslminibar.LayoutId", "1");
Zeile gelöscht : user_pref("iminent.webbooster.scripts.sslminibar.ROOTEXTENSION", "chrome://iminentwebbooster/content/minibar");
Zeile gelöscht : user_pref("iminent.webbooster.scripts.sslminibar.Services.BHPCode", "01");
Zeile gelöscht : user_pref("iminent.webbooster.scripts.sslminibar.Services.DefaultEvent", "000");
Zeile gelöscht : user_pref("iminent.webbooster.scripts.sslminibar.Services.DefaultWebSite", "000");
Zeile gelöscht : user_pref("iminent.webbooster.scripts.sslminibar.Services.IminentClientCode", "11");
Zeile gelöscht : user_pref("iminent.webbooster.scripts.sslminibar.Services.SmartFavCode", "02");
Zeile gelöscht : user_pref("iminent.webbooster.scripts.sslminibar.ShowThankyouPixel", "0");
Zeile gelöscht : user_pref("iminent.webbooster.scripts.sslminibar.displayFavLinks", "0");
Zeile gelöscht : user_pref("iminent.webbooster.scripts.sslminibar.enabledAds", "false");
Zeile gelöscht : user_pref("iminent.webbooster.scripts.sslminibar.registerToolbarEvent102", "1372517135571");
Zeile gelöscht : user_pref("iminent.webbooster.scripts.sslminibar.registerToolbarEvent109", "1372517155179");
Zeile gelöscht : user_pref("iminent.webbooster.scripts.sslminibar.registerToolbarEvent110", "1372518107663");
Zeile gelöscht : user_pref("iminent.webbooster.scripts.sslminibar.registerToolbarEvent111", "1372517155187");
Zeile gelöscht : user_pref("iminent.webbooster.scripts.sslminibar.registerToolbarEvent112", "1372517158412");
Zeile gelöscht : user_pref("iminent.webbooster.scripts.sslminibar.registerToolbarEvent122", "1372517155195");
*************************
AdwCleaner[R0].txt - [19531 octets] - [06/01/2014 17:01:52]
AdwCleaner[R1].txt - [18103 octets] - [06/01/2014 17:10:08]
AdwCleaner[R2].txt - [17131 octets] - [06/01/2014 22:09:54]
AdwCleaner[S0].txt - [948 octets] - [06/01/2014 17:04:10]
AdwCleaner[S1].txt - [14817 octets] - [06/01/2014 22:10:32]
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [14878 octets] ########## --- --- ---
FRST Logfile:
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 05-01-2014
Ran by User (administrator) on USER-PC on 06-01-2014 22:15:18
Running from C:\Users\User\Downloads
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect\HelperService.exe
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect\ConversionService.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(TomTom) C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
() C:\Program Files (x86)\1&1 Surf-Stick\AssistantServices.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
() C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
() C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe
(Samsung) C:\Program Files (x86)\Samsung\Kies\Kies.exe
(Samsung) C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(TomTom) C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe
(Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(Nullsoft, Inc.) C:\Program Files (x86)\Winamp\winampa.exe
() C:\Program Files (x86)\1&1 Surf-Stick\UIExec.exe
(Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
(Farbar) C:\Users\User\Downloads\FRST64(1).exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [AtherosBtStack] - C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [613024 2010-09-27] (Atheros Communications)
HKLM\...\Run: [AthBtTray] - C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [379040 2010-09-27] (Atheros Commnucations)
HKLM-x32\...\Run: [HDAudDeck] - C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [2439072 2010-05-24] (VIA)
HKLM-x32\...\Run: [NUSB3MON] - C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [WinampAgent] - C:\Program Files (x86)\Winamp\winampa.exe [74752 2012-06-20] (Nullsoft, Inc.)
HKLM-x32\...\Run: [] - [x]
HKLM-x32\...\Run: [UIExec] - C:\Program Files (x86)\1&1 Surf-Stick\UIExec.exe [139088 2010-09-30] ()
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-11] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [KiesTrayAgent] - C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe [311152 2013-09-04] (Samsung Electronics Co., Ltd.)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [684600 2013-12-18] (Avira Operations GmbH & Co. KG)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKCU\...\Run: [Facebook Update] - C:\Users\User\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2013-03-31] (Facebook Inc.)
HKCU\...\Run: [KiesPreload] - C:\Program Files (x86)\Samsung\Kies\Kies.exe [1564528 2013-09-04] (Samsung)
HKCU\...\Run: [KiesAirMessage] - C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup
HKCU\...\Run: [] - C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [844656 2013-09-04] (Samsung)
HKCU\...\Run: [TomTomHOME.exe] - C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe [248208 2013-08-27] (TomTom)
MountPoints2: {cb91d5cb-81e8-11e2-a29c-806e6f6e6963} - D:\Bin\ASSETUP.exe
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x93CE974BA525CE01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM - {438CB363-A94D-4AE3-8F99-E93393D46036} URL = hxxp://www.bing.com/?cc=de
SearchScopes: HKLM-x32 - {50742086-32D3-4D7F-A73C-DDB2FBE0C4B3} URL = hxxp://www.bing.com/?cc=de
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll (pdfforge GmbH)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
FireFox:
========
FF ProfilePath: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\ib6a3ewj.default
FF Homepage: https://www.google.de/|
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll ()
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 - C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @lightspark.github.com/Lightspark;version=1 - C:\Program Files (x86)\Lightspark 0.5.3-git\nplightsparkplugin.dll No File
FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\User\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: Adblock Plus - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\ib6a3ewj.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
FF HKLM-x32\...\Firefox\Extensions: [ext@flash-Enhancer.com] - C:\Program Files (x86)\AmiExt\flashEnhancer\ff
==================== Services (Whitelisted) =================
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440376 2013-12-18] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440376 2013-11-19] (Avira Operations GmbH & Co. KG)
S4 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1011768 2013-12-18] (Avira Operations GmbH & Co. KG)
R2 ForceWare Intelligent Application Manager (IAM); C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe [496232 2010-01-21] ()
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 nSvcIp; C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe [209000 2010-01-21] ()
R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH)
R2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH)
R2 UI Assistant Service; C:\Program Files (x86)\1&1 Surf-Stick\AssistantServices.exe [253264 2010-09-30] ()
==================== Drivers (Whitelisted) ====================
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2013-12-18] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131576 2013-12-18] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-10-10] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\System32\DRIVERS\avnetflt.sys [84720 2013-12-18] (Avira Operations GmbH & Co. KG)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
S3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [15416 2009-07-16] ()
S3 RTL85n64; C:\Windows\System32\DRIVERS\RTL85n64.sys [378368 2009-06-10] (Realtek)
S3 RtlWlanu; C:\Windows\System32\DRIVERS\rtwlanu.sys [1476752 2012-11-07] (Realtek Semiconductor Corporation )
S3 rusb3hub; C:\Windows\System32\DRIVERS\rusb3hub.sys [104448 2012-11-09] (Renesas Electronics Corporation)
S3 rusb3xhc; C:\Windows\System32\DRIVERS\rusb3xhc.sys [221184 2012-11-09] (Renesas Electronics Corporation)
S3 VUSB3HUB; C:\Windows\System32\DRIVERS\ViaHub3.sys [137728 2011-03-08] (VIA Technologies, Inc.)
S3 xhcdrv; C:\Windows\System32\DRIVERS\xhcdrv.sys [198144 2011-03-08] (VIA Technologies, Inc.)
S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x]
S3 NTIOLib_1_0_C; \??\D:\NTIOLib_X64.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-01-06 22:07 - 2014-01-06 22:07 - 01233962 _____ C:\Users\User\Downloads\adwcleaner.exe
2014-01-06 21:58 - 2014-01-06 21:58 - 00021444 _____ C:\Users\User\Downloads\Addition.txt
2014-01-06 20:20 - 2014-01-06 20:20 - 01931762 _____ (Farbar) C:\Users\User\Downloads\FRST64(1).exe
2014-01-06 20:19 - 2014-01-06 20:19 - 01064805 _____ (Farbar) C:\Users\User\Downloads\FRST.exe
2014-01-06 17:16 - 2014-01-06 17:16 - 00001121 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-01-06 17:16 - 2014-01-06 17:16 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-01-06 17:16 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-01-06 17:15 - 2014-01-06 17:15 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\User\Downloads\mbam-setup-1.75.0.1300(1).exe
2014-01-06 17:01 - 2014-01-06 22:11 - 00000000 ____D C:\AdwCleaner
2014-01-06 17:01 - 2014-01-06 17:01 - 01233962 _____ C:\Users\User\Downloads\adwcleaner_3.016.exe
2014-01-06 16:45 - 2014-01-06 20:53 - 00000000 ____D C:\Users\User\AppData\Roaming\newnext.me
2014-01-06 16:45 - 2014-01-06 18:20 - 00000000 ____D C:\ProgramData\Updater
2014-01-06 16:45 - 2014-01-06 16:52 - 00000000 ____D C:\Program Files (x86)\AmiExt
2014-01-06 16:45 - 2014-01-06 16:45 - 00000000 ____D C:\Users\User\AppData\Local\genienext
2014-01-06 16:45 - 2014-01-06 16:45 - 00000000 ____D C:\ProgramData\RHelpers
2014-01-06 16:43 - 2014-01-06 16:43 - 00336424 _____ (Amônétízé Ltd) C:\Users\User\Downloads\FlashPlayersetup__5047_i238488553_il3.exe
2014-01-06 16:14 - 2014-01-06 16:56 - 128974854 _____ C:\Users\User\Downloads\0230.Tdd.part10.rar
2014-01-06 15:45 - 2014-01-06 16:35 - 110000000 _____ C:\Users\User\Downloads\lxd-whosnext-bdrip.part04.rar
2014-01-06 14:51 - 2014-01-06 14:53 - 69597740 _____ C:\Users\User\Downloads\Fran - The Totalistic Ark.zip
2014-01-06 13:49 - 2014-01-03 16:59 - 00000000 ____D C:\Users\User\Downloads\The.Awakening.German.2011.AC3.BDRiP.XviD-XF
2014-01-06 13:46 - 2014-01-06 13:49 - 104857600 _____ C:\Users\User\Downloads\The.Awa.dfsfsefwegf.part01.rar
2014-01-06 13:42 - 2014-01-06 13:45 - 104857600 _____ C:\Users\User\Downloads\The.Awa.dfsfsefwegf.part02.rar
2014-01-06 13:36 - 2014-01-06 13:38 - 104857600 _____ C:\Users\User\Downloads\The.Awa.dfsfsefwegf.part03.rar
2014-01-06 13:33 - 2014-01-06 13:35 - 104857600 _____ C:\Users\User\Downloads\The.Awa.dfsfsefwegf.part04.rar
2014-01-06 13:29 - 2014-01-06 14:04 - 106954752 _____ C:\Users\User\Downloads\Der.letzte.Exorzismus.The.Next.Chapter.x.part04.rar
2014-01-06 13:29 - 2014-01-06 13:32 - 104857600 _____ C:\Users\User\Downloads\The.Awa.dfsfsefwegf.part05.rar
2014-01-06 13:00 - 2014-01-06 13:27 - 106954752 _____ C:\Users\User\Downloads\Der.letzte.Exorzismus.The.Next.Chapter.x.part03.rar
2014-01-06 12:59 - 2014-01-06 13:02 - 104857600 _____ C:\Users\User\Downloads\The.Awa.dfsfsefwegf.part06.rar
2014-01-06 12:42 - 2014-01-06 12:45 - 104857600 _____ C:\Users\User\Downloads\The.Awa.dfsfsefwegf.part07.rar
2014-01-06 12:35 - 2014-01-06 12:39 - 104857600 _____ C:\Users\User\Downloads\The.Awa.dfsfsefwegf.part08.rar
2014-01-06 12:35 - 2014-01-06 12:35 - 09508809 _____ C:\Users\User\Downloads\The.Awa.dfsfsefwegf.part09.rar
2014-01-06 12:31 - 2014-01-06 12:58 - 106954752 _____ C:\Users\User\Downloads\Der.letzte.Exorzismus.The.Next.Chapter.x.part02.rar
2014-01-06 12:29 - 2014-01-06 13:11 - 128974854 _____ C:\Users\User\Downloads\0230.Tdd.part09.rar
2014-01-06 12:05 - 2014-01-06 12:05 - 00001816 _____ C:\Users\Public\Desktop\SUPERAntiSpyware Professional.lnk
2014-01-06 12:00 - 2014-01-06 12:01 - 29118680 _____ (SUPERAntiSpyware) C:\Users\User\Downloads\SUPERAntiSpyware_5.7.1016.exe
2014-01-05 18:07 - 2012-08-22 04:27 - 00000000 ____D C:\Users\User\Downloads\Coyote.Ugly.German.2000.UNCUT.DVDRiP.XviD-GVD
2014-01-05 17:34 - 2014-01-05 18:07 - 100969564 _____ C:\Users\User\Downloads\cu.part7.rar
2014-01-05 17:33 - 2014-01-05 17:56 - 00000000 ____D C:\Program Files (x86)\PDFCreator
2014-01-05 17:33 - 2014-01-05 17:33 - 00001043 _____ C:\Users\Public\Desktop\PDFCreator.lnk
2014-01-05 17:33 - 2014-01-05 17:33 - 00001005 _____ C:\Users\User\Desktop\PDF Architect.lnk
2014-01-05 17:33 - 2014-01-05 17:33 - 00000000 ____D C:\Users\User\Documents\PDF Architect Files
2014-01-05 17:33 - 2014-01-05 17:33 - 00000000 ____D C:\Program Files (x86)\PDF Architect
2014-01-05 17:33 - 2013-04-09 14:13 - 00110264 _____ (pdfforge GmbH) C:\Windows\system32\pdfcmon.dll
2014-01-05 17:33 - 2012-05-05 10:54 - 00662288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCOMCT2.OCX
2014-01-05 17:33 - 2012-05-05 10:54 - 00137000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSMAPI32.OCX
2014-01-05 17:33 - 2012-05-05 10:54 - 00023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSMPIDE.DLL
2014-01-05 17:33 - 1998-07-06 17:56 - 00125712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VB6DE.DLL
2014-01-05 17:33 - 1998-07-06 17:55 - 00158208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCMCDE.DLL
2014-01-05 17:33 - 1998-07-06 17:55 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCC2DE.DLL
2014-01-05 17:30 - 2014-01-05 17:32 - 69734576 _____ (pdfforge ) C:\Users\User\Downloads\PDFCreator-1_7_2_setup_offline.exe
2014-01-05 16:59 - 2014-01-05 17:33 - 104857600 _____ C:\Users\User\Downloads\cu.part6.rar
2014-01-05 16:12 - 2014-01-05 16:46 - 104857600 _____ C:\Users\User\Downloads\cu.part5.rar
2014-01-05 15:41 - 2013-11-10 15:51 - 00000000 ____D C:\Users\User\Downloads\Wolverine.Weg.des.Kriegers.EXTENDED.German.BDRiP.x264-EXQUiSiTE
2014-01-05 15:06 - 2014-01-05 15:41 - 108003328 _____ C:\Users\User\Downloads\exq-wolverine2-sd.part12.rar
2014-01-05 15:06 - 2014-01-05 15:40 - 104857600 _____ C:\Users\User\Downloads\cu.part4.rar
2014-01-05 13:56 - 2014-01-05 14:31 - 108003328 _____ C:\Users\User\Downloads\exq-wolverine2-sd.part11.rar
2014-01-05 13:56 - 2014-01-05 14:30 - 104857600 _____ C:\Users\User\Downloads\cu.part3.rar
2014-01-05 10:30 - 2014-01-05 11:05 - 108003328 _____ C:\Users\User\Downloads\exq-wolverine2-sd.part10.rar
2014-01-05 10:30 - 2014-01-05 11:04 - 104857600 _____ C:\Users\User\Downloads\cu.part2.rar
2014-01-05 09:54 - 2014-01-05 10:28 - 104857600 _____ C:\Users\User\Downloads\cu.part1.rar
2014-01-05 09:53 - 2014-01-05 10:28 - 108003328 _____ C:\Users\User\Downloads\exq-wolverine2-sd.part07.rar
2014-01-03 21:08 - 2014-01-03 21:44 - 110000000 _____ C:\Users\User\Downloads\lxd-whosnext-bdrip.part12.rar
2014-01-03 20:09 - 2014-01-03 20:46 - 110000000 _____ C:\Users\User\Downloads\lxd-whosnext-bdrip.part07.rar
2014-01-03 19:13 - 2014-01-03 19:13 - 00001296 _____ C:\Users\User\Desktop\Continue App of the Day.lnk
2014-01-03 19:13 - 2014-01-03 19:13 - 00000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Lollipop
2014-01-03 19:12 - 2014-01-03 19:12 - 06615464 _____ (hxxp://www.goforfiles.com/) C:\Users\User\Downloads\Die_Arzte,_Ist_Das_Alles__full_album_zip_downloader.exe
2014-01-03 19:12 - 2014-01-03 19:12 - 00001929 _____ C:\Users\Public\Desktop\GoforFiles.lnk
2014-01-03 18:45 - 2014-01-03 19:21 - 110000000 _____ C:\Users\User\Downloads\lxd-whosnext-bdrip.part08.rar
2014-01-03 11:55 - 2014-01-03 12:13 - 104857600 _____ C:\Users\User\Downloads\hortri1010.part3.rar
2014-01-03 11:54 - 2014-01-03 12:36 - 128974854 _____ C:\Users\User\Downloads\0230.Tdd.part08.rar
2014-01-03 11:54 - 2014-01-03 12:29 - 108003328 _____ C:\Users\User\Downloads\exq-wolverine2-sd.part01.rar
2014-01-01 19:59 - 2013-07-23 11:48 - 00007544 _____ C:\Users\User\Downloads\rsg-happiness-xvid.nfo
2014-01-01 19:59 - 2011-09-08 00:28 - 1465956352 _____ C:\Users\User\Downloads\rsg-happiness-xvid.avi
2014-01-01 19:20 - 2014-01-01 19:58 - 75553565 _____ C:\Users\User\Downloads\rsg-happiness-xvid.part14.rar
2014-01-01 19:19 - 2014-01-01 20:05 - 128974854 _____ C:\Users\User\Downloads\0230.Tdd.part07.rar
2014-01-01 15:50 - 2014-01-01 16:21 - 106954752 _____ C:\Users\User\Downloads\rsg-happiness-xvid.part13.rar
2014-01-01 15:48 - 2014-01-01 16:30 - 128974854 _____ C:\Users\User\Downloads\0230.Tdd.part06.rar
2014-01-01 15:48 - 2014-01-01 15:55 - 20079486 _____ C:\Users\User\Downloads\exq-wolverine2-sd.part13.rar
2013-12-30 12:15 - 2013-12-30 12:33 - 106954752 _____ C:\Users\User\Downloads\rsg-happiness-xvid.part12.rar
2013-12-30 11:51 - 2013-12-30 12:08 - 106954752 _____ C:\Users\User\Downloads\rsg-happiness-xvid.part11.rar
2013-12-30 10:09 - 2013-12-30 10:27 - 106954752 _____ C:\Users\User\Downloads\rsg-happiness-xvid.part10.rar
2013-12-30 10:07 - 2013-12-30 10:49 - 128974854 _____ C:\Users\User\Downloads\0230.Tdd.part05.rar
2013-12-30 10:07 - 2013-12-30 10:43 - 108003328 _____ C:\Users\User\Downloads\exq-wolverine2-sd.part04.rar
2013-12-29 22:27 - 2013-12-29 22:34 - 115000000 _____ C:\Users\User\Downloads\MetW-s02e01.part2.rar
2013-12-29 21:27 - 2013-12-29 21:34 - 115000000 _____ C:\Users\User\Downloads\MetW-s02e01.part1.rar
2013-12-29 18:39 - 2013-12-29 19:24 - 106954752 _____ C:\Users\User\Downloads\rsg-happiness-xvid.part08.rar
2013-12-29 18:39 - 2013-12-05 00:58 - 00000000 ____D C:\Users\User\Downloads\www.spicy-amateurs.com_4699
2013-12-29 17:33 - 2013-12-29 18:17 - 104857600 _____ C:\Users\User\Downloads\hortri1010.part2.rar
2013-12-29 17:32 - 2013-12-29 18:39 - 204480414 _____ C:\Users\User\Downloads\www.spicy-amateurs.com_4699.rar
2013-12-29 17:31 - 2013-12-29 18:07 - 108003328 _____ C:\Users\User\Downloads\exq-wolverine2-sd.part06.rar
2013-12-21 01:12 - 2013-12-21 01:12 - 08872563 _____ C:\Users\User\Downloads\facebook-tinchen9028.zip
2013-12-21 01:00 - 2013-12-21 01:12 - 00000000 ____D C:\Users\User\Documents\Facebook
2013-12-21 00:55 - 2013-12-21 00:56 - 22898466 _____ C:\Users\User\Downloads\facebook-alexandererfurt5.zip
2013-12-20 22:34 - 2013-12-21 00:13 - 250257955 _____ C:\Users\User\Downloads\tvs-2bg-dl-ithd-sd-209.rar
2013-12-20 18:16 - 2013-12-20 18:17 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-12-19 21:57 - 2013-12-29 23:16 - 128974854 _____ C:\Users\User\Downloads\0230.Tdd.part04.rar
2013-12-19 21:56 - 2013-12-23 00:46 - 108003328 _____ C:\Users\User\Downloads\exq-wolverine2-sd.part03.rar
2013-12-19 20:49 - 2013-12-19 20:49 - 00000000 ____D C:\Users\Public\Documents\CrashDump
2013-12-19 20:46 - 2013-12-19 21:28 - 128974854 _____ C:\Users\User\Downloads\0230.Tdd.part03.rar
2013-12-19 20:45 - 2009-12-18 22:28 - 00000000 ____D C:\Users\User\Downloads\Das singende klingende BÀumchen
2013-12-19 18:45 - 2013-11-17 17:44 - 00022481 _____ C:\Users\User\Downloads\pso-fjg-repack.nfo
2013-12-19 18:45 - 2013-11-17 16:03 - 1013978674 _____ C:\Users\User\Downloads\pso-fjg-repack.mkv
2013-12-19 17:36 - 2013-12-19 18:12 - 108003328 _____ C:\Users\User\Downloads\exq-wolverine2-sd.part08.rar
2013-12-19 15:32 - 2013-12-19 16:42 - 238520663 _____ C:\Users\User\Downloads\tvs-2bg-dl-ithd-sd-203.rar
2013-12-19 14:59 - 2013-12-13 19:21 - 00000944 _____ C:\Users\User\Downloads\exq-millers-sd.nfo
2013-12-19 14:13 - 2013-12-19 14:55 - 128974854 _____ C:\Users\User\Downloads\0230.Tdd.part02.rar
2013-12-19 14:12 - 2013-12-19 14:47 - 108003328 _____ C:\Users\User\Downloads\exq-wolverine2-sd.part09.rar
2013-12-19 12:59 - 2013-12-19 13:41 - 128974854 _____ C:\Users\User\Downloads\0230.Tdd.part01.rar
2013-12-19 12:58 - 2013-12-19 13:33 - 108003328 _____ C:\Users\User\Downloads\exq-wolverine2-sd.part02.rar
2013-12-15 15:17 - 2013-12-15 16:01 - 104857600 _____ C:\Users\User\Downloads\hortri1010.part1.rar
2013-12-15 14:52 - 2013-12-15 15:28 - 108003328 _____ C:\Users\User\Downloads\exq-wolverine2-sd.part05.rar
2013-12-15 03:56 - 2013-10-13 10:59 - 1139809832 _____ C:\Users\User\Downloads\Sawney.Menschenfleisch.2012.German.HDRip.AC3.XviD-SMY.avi
2013-12-14 22:04 - 2013-12-14 22:50 - 110000000 _____ C:\Users\User\Downloads\lxd-whosnext-bdrip.part11.rar
2013-12-14 21:48 - 2013-12-14 22:04 - 38845761 _____ C:\Users\User\Downloads\lxd-whosnext-bdrip.part15.rar
2013-12-14 20:54 - 2013-12-14 21:40 - 110000000 _____ C:\Users\User\Downloads\lxd-whosnext-bdrip.part02.rar
2013-12-14 19:56 - 2013-12-14 20:39 - 102823185 _____ C:\Users\User\Downloads\Crawl.Home.Killing.Home.2011-SMY.part13.rar
2013-12-14 19:25 - 2013-10-31 15:32 - 00000000 ____D C:\Users\User\Downloads\Alpen.GERMAN.DOKU.WS.BDRip.x264-TVP
2013-12-14 19:06 - 2013-12-14 19:51 - 106954752 _____ C:\Users\User\Downloads\rsg-happiness-xvid.part09.rar
2013-12-13 03:03 - 2013-05-10 06:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2013-12-13 03:03 - 2013-05-10 06:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2013-12-13 03:03 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2013-12-13 03:03 - 2013-05-10 05:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2013-12-13 03:01 - 2013-11-26 12:54 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-12-13 03:01 - 2013-11-26 11:19 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-12-13 03:01 - 2013-11-26 11:18 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2013-12-13 03:01 - 2013-11-26 11:11 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-12-13 03:01 - 2013-11-26 10:48 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-12-13 03:01 - 2013-11-26 10:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2013-12-13 03:01 - 2013-11-26 10:41 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-12-13 03:01 - 2013-11-26 10:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-12-13 03:01 - 2013-11-26 10:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-12-13 03:01 - 2013-11-26 10:23 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-12-13 03:01 - 2013-11-26 10:21 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-12-13 03:01 - 2013-11-26 10:18 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-12-13 03:01 - 2013-11-26 10:18 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2013-12-13 03:01 - 2013-11-26 10:16 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2013-12-13 03:01 - 2013-11-26 09:57 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-12-13 03:01 - 2013-11-26 09:38 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-12-13 03:01 - 2013-11-26 09:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-12-13 03:01 - 2013-11-26 09:35 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-12-13 03:01 - 2013-11-26 09:32 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-12-13 03:01 - 2013-11-26 09:28 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2013-12-13 03:01 - 2013-11-26 09:16 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-12-13 03:01 - 2013-11-26 09:02 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-12-13 03:01 - 2013-11-26 08:48 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-12-13 03:01 - 2013-11-26 08:32 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2013-12-13 03:01 - 2013-11-26 08:26 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-12-13 03:01 - 2013-11-26 08:07 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-12-13 03:01 - 2013-11-26 07:40 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-12-13 03:01 - 2013-11-26 07:34 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2013-12-13 03:01 - 2013-11-26 07:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2013-12-13 03:01 - 2013-11-26 07:33 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-12-13 03:01 - 2013-11-26 07:27 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-12-12 22:40 - 2013-12-12 22:42 - 30186191 _____ C:\Users\User\Downloads\LexyRoxx_-_Er_wollte_nur_helfen_doch_dann_zerst__rte_er_mich_fast_anal_.part3.rar
2013-12-12 22:38 - 2013-12-12 23:14 - 106954752 _____ C:\Users\User\Downloads\rsg-happiness-xvid.part07.rar
2013-12-12 19:41 - 2013-11-23 19:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2013-12-12 19:41 - 2013-11-23 18:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2013-12-12 19:41 - 2013-11-12 03:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2013-12-12 19:41 - 2013-11-12 03:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2013-12-12 19:41 - 2013-10-30 03:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2013-12-12 19:41 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll
2013-12-12 19:41 - 2013-10-30 02:24 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-12-12 19:41 - 2013-10-19 03:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2013-12-12 19:41 - 2013-10-19 02:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2013-12-12 19:41 - 2013-10-12 03:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2013-12-12 19:41 - 2013-10-12 03:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2013-12-12 19:41 - 2013-10-12 03:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx
2013-12-12 19:41 - 2013-10-12 03:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2013-12-12 19:41 - 2013-10-12 02:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2013-12-12 19:41 - 2013-10-12 02:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2013-12-12 19:41 - 2013-10-12 02:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe
2013-12-12 19:41 - 2013-10-12 02:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe
2013-12-12 19:41 - 2013-10-04 03:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2013-12-12 19:41 - 2013-10-04 02:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2013-12-10 23:32 - 2013-12-12 22:37 - 106954752 _____ C:\Users\User\Downloads\rsg-happiness-xvid.part06.rar
2013-12-10 22:55 - 2013-12-10 23:31 - 106954752 _____ C:\Users\User\Downloads\rsg-happiness-xvid.part05.rar
2013-12-10 22:19 - 2013-12-10 22:54 - 106954752 _____ C:\Users\User\Downloads\Der.letzte.Exorzismus.The.Next.Chapter.x.part01.rar
2013-12-10 21:42 - 2013-12-10 22:18 - 106954752 _____ C:\Users\User\Downloads\rsg-happiness-xvid.part04.rar
2013-12-10 21:06 - 2013-12-10 21:41 - 106954752 _____ C:\Users\User\Downloads\rsg-happiness-xvid.part03.rar
2013-12-10 20:29 - 2013-12-10 21:05 - 106954752 _____ C:\Users\User\Downloads\rsg-happiness-xvid.part02.rar
2013-12-10 19:53 - 2013-12-10 20:28 - 106954752 _____ C:\Users\User\Downloads\rsg-happiness-xvid.part01.rar
2013-12-08 22:44 - 2013-12-08 22:45 - 29738734 _____ C:\Users\User\Downloads\LexyRoxx_-_Fickerchen_statt_Nickerchen_-_Ehefotze_im_Nachbarzimmer_betrogen.part2.rar
2013-12-08 22:36 - 2013-12-08 22:42 - 104857600 _____ C:\Users\User\Downloads\mcocdldvd-s05e02.part3.rar
2013-12-08 20:48 - 2013-12-09 00:59 - 208192988 _____ C:\Users\User\Downloads\tt_Demi.part1.rar.part
2013-12-08 20:44 - 2013-12-08 20:47 - 52428800 _____ C:\Users\User\Downloads\LexyRoxx_-_Fickerchen_statt_Nickerchen_-_Ehefotze_im_Nachbarzimmer_betrogen.part1.rar
2013-12-08 20:27 - 2013-12-08 20:32 - 104857600 _____ C:\Users\User\Downloads\mcocdldvd-s05e02.part2.rar
2013-12-08 17:33 - 2013-12-08 17:36 - 52428800 _____ C:\Users\User\Downloads\LexyRoxx_-_Er_wollte_nur_helfen_doch_dann_zerst__rte_er_mich_fast_anal_.part2.rar
2013-12-08 16:21 - 2013-12-08 16:24 - 52428800 _____ C:\Users\User\Downloads\LexyRoxx_-_Er_wollte_nur_helfen_doch_dann_zerst__rte_er_mich_fast_anal_.part1.rar
2013-12-08 15:08 - 2013-12-08 15:09 - 28323928 _____ (SUPERAntiSpyware) C:\Users\User\Downloads\SUPERAntiSpyware.exe
2013-12-08 14:52 - 2013-12-08 20:26 - 524288064 _____ C:\Users\User\Downloads\lr.part4.rar
2013-12-08 14:51 - 2013-12-08 14:54 - 52428800 _____ C:\Users\User\Downloads\LexyRoxx_-_W__hrend_ihr_Freund_mich_fickte_heulte_sie_sich_am_Telefon_aus.part2.rar
2013-12-08 13:55 - 2013-12-08 14:01 - 104857600 _____ C:\Users\User\Downloads\mcocdldvd-s05e02.part1.rar
2013-12-08 13:41 - 2013-12-08 13:44 - 52428800 _____ C:\Users\User\Downloads\LexyRoxx_-_W__hrend_ihr_Freund_mich_fickte_heulte_sie_sich_am_Telefon_aus.part1.rar
2013-12-08 12:55 - 2013-12-08 13:01 - 104857600 _____ C:\Users\User\Downloads\mcocdldvd-s05e01.part3.rar
2013-12-08 11:55 - 2013-12-08 12:01 - 104857600 _____ C:\Users\User\Downloads\mcocdldvd-s05e01.part2.rar
2013-12-08 11:11 - 2013-08-20 18:41 - 141806208 _____ C:\Users\User\Downloads\LexyRoxx - Papi wie konntest du nur.flv
2013-12-08 11:03 - 2013-12-08 11:11 - 141806306 _____ C:\Users\User\Downloads\LexyRoxx---Papi-wie-konntest-du-nur.rar
2013-12-08 10:55 - 2013-12-08 11:00 - 104857600 _____ C:\Users\User\Downloads\mcocdldvd-s05e01.part1.rar
2013-12-07 23:05 - 2013-06-23 07:32 - 1171231037 _____ C:\Users\User\Downloads\Attenti Arrivano Le Collegiali (1975).mkv
2013-12-07 20:40 - 2013-12-07 20:52 - 55055337 _____ C:\Users\User\Downloads\Two_very_young_girl_in_one_bed_one_enjoy_sex.wmv
2013-12-07 20:17 - 2014-01-06 16:45 - 00000000 ____D C:\Users\User\AppData\Local\cache
2013-12-07 20:17 - 2013-12-08 21:23 - 00000334 _____ C:\Users\User\daemonprocess.txt
2013-12-07 20:17 - 2013-12-07 20:17 - 00000000 ____D C:\Users\User\.android
2013-12-07 20:15 - 2013-12-07 20:15 - 00317224 _____ C:\Users\User\Downloads\3_boys_14_years_and_1_girl_15_years_by__SeX-xXx__120.exe
2013-12-07 20:11 - 2013-12-07 20:17 - 90277977 _____ C:\Users\User\Downloads\LexyRoxx---Verficktes-Berlin---Sperma-statt-Kultur.rar
2013-12-07 20:07 - 2013-12-07 20:07 - 01645424 _____ (Bandoo Media Inc) C:\Users\User\Downloads\iLividSetup-r394-n-bf.exe
2013-12-07 20:03 - 2013-12-07 20:03 - 00000000 ____D C:\ProgramData\APN
2013-12-07 20:02 - 2013-12-07 20:15 - 00001099 _____ C:\Users\User\Desktop\FTDownloader.lnk
2013-12-07 20:02 - 2013-12-07 20:02 - 00317128 _____ C:\Users\User\Downloads\LexyRoxx---Verficktes-Berlin---Sperma-statt-Kultur_299.exe
==================== One Month Modified Files and Folders =======
2014-01-06 22:15 - 2013-06-29 22:43 - 00012806 _____ C:\Users\User\Downloads\FRST.txt
2014-01-06 22:13 - 2013-02-28 17:56 - 00000035 _____ C:\Users\Public\Documents\AtherosServiceConfig.ini
2014-01-06 22:12 - 2011-05-16 00:38 - 00000000 ____D C:\ProgramData\NVIDIA
2014-01-06 22:12 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2014-01-06 22:12 - 2009-07-14 05:51 - 00079370 _____ C:\Windows\setupact.log
2014-01-06 22:11 - 2014-01-06 17:01 - 00000000 ____D C:\AdwCleaner
2014-01-06 22:11 - 2013-03-20 21:13 - 00001061 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-01-06 22:11 - 2012-03-13 10:15 - 00001001 _____ C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-01-06 22:11 - 2011-05-07 00:46 - 01807899 _____ C:\Windows\WindowsUpdate.log
2014-01-06 22:07 - 2014-01-06 22:07 - 01233962 _____ C:\Users\User\Downloads\adwcleaner.exe
2014-01-06 21:58 - 2014-01-06 21:58 - 00021444 _____ C:\Users\User\Downloads\Addition.txt
2014-01-06 21:26 - 2013-03-20 22:43 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-01-06 21:01 - 2013-03-31 16:56 - 00000924 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2260964575-2753946872-1401531445-1001UA.job
2014-01-06 21:00 - 2009-07-14 05:45 - 00026464 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-01-06 21:00 - 2009-07-14 05:45 - 00026464 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-01-06 20:58 - 2010-11-21 07:50 - 00654594 _____ C:\Windows\system32\perfh007.dat
2014-01-06 20:58 - 2010-11-21 07:50 - 00130208 _____ C:\Windows\system32\perfc007.dat
2014-01-06 20:58 - 2009-07-14 06:13 - 01500254 _____ C:\Windows\system32\PerfStringBackup.INI
2014-01-06 20:53 - 2014-01-06 16:45 - 00000000 ____D C:\Users\User\AppData\Roaming\newnext.me
2014-01-06 20:20 - 2014-01-06 20:20 - 01931762 _____ (Farbar) C:\Users\User\Downloads\FRST64(1).exe
2014-01-06 20:19 - 2014-01-06 20:19 - 01064805 _____ (Farbar) C:\Users\User\Downloads\FRST.exe
2014-01-06 18:22 - 2010-11-21 04:47 - 00292360 _____ C:\Windows\PFRO.log
2014-01-06 18:20 - 2014-01-06 16:45 - 00000000 ____D C:\ProgramData\Updater
2014-01-06 18:01 - 2013-03-31 16:56 - 00000902 _____ C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2260964575-2753946872-1401531445-1001Core.job
2014-01-06 17:16 - 2014-01-06 17:16 - 00001121 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-01-06 17:16 - 2014-01-06 17:16 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-01-06 17:15 - 2014-01-06 17:15 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\User\Downloads\mbam-setup-1.75.0.1300(1).exe
2014-01-06 17:04 - 2013-03-25 21:52 - 00000000 ____D C:\Users\User\AppData\Roaming\SoftGrid Client
2014-01-06 17:01 - 2014-01-06 17:01 - 01233962 _____ C:\Users\User\Downloads\adwcleaner_3.016.exe
2014-01-06 16:56 - 2014-01-06 16:14 - 128974854 _____ C:\Users\User\Downloads\0230.Tdd.part10.rar
2014-01-06 16:52 - 2014-01-06 16:45 - 00000000 ____D C:\Program Files (x86)\AmiExt
2014-01-06 16:45 - 2014-01-06 16:45 - 00000000 ____D C:\Users\User\AppData\Local\genienext
2014-01-06 16:45 - 2014-01-06 16:45 - 00000000 ____D C:\ProgramData\RHelpers
2014-01-06 16:45 - 2013-12-07 20:17 - 00000000 ____D C:\Users\User\AppData\Local\cache
2014-01-06 16:43 - 2014-01-06 16:43 - 00336424 _____ (Amônétízé Ltd) C:\Users\User\Downloads\FlashPlayersetup__5047_i238488553_il3.exe
2014-01-06 16:42 - 2013-06-15 17:14 - 00000000 ____D C:\Users\User\AppData\Local\CrashDumps
2014-01-06 16:35 - 2014-01-06 15:45 - 110000000 _____ C:\Users\User\Downloads\lxd-whosnext-bdrip.part04.rar
2014-01-06 15:46 - 2013-03-21 20:11 - 00000000 ____D C:\Users\User\AppData\Roaming\Winamp
2014-01-06 14:53 - 2014-01-06 14:51 - 69597740 _____ C:\Users\User\Downloads\Fran - The Totalistic Ark.zip
2014-01-06 14:35 - 2013-03-21 20:33 - 00000000 ____D C:\Users\User\AppData\Roaming\vlc
2014-01-06 14:04 - 2014-01-06 13:29 - 106954752 _____ C:\Users\User\Downloads\Der.letzte.Exorzismus.The.Next.Chapter.x.part04.rar
2014-01-06 13:49 - 2014-01-06 13:46 - 104857600 _____ C:\Users\User\Downloads\The.Awa.dfsfsefwegf.part01.rar
2014-01-06 13:45 - 2014-01-06 13:42 - 104857600 _____ C:\Users\User\Downloads\The.Awa.dfsfsefwegf.part02.rar
2014-01-06 13:38 - 2014-01-06 13:36 - 104857600 _____ C:\Users\User\Downloads\The.Awa.dfsfsefwegf.part03.rar
2014-01-06 13:35 - 2014-01-06 13:33 - 104857600 _____ C:\Users\User\Downloads\The.Awa.dfsfsefwegf.part04.rar
2014-01-06 13:32 - 2014-01-06 13:29 - 104857600 _____ C:\Users\User\Downloads\The.Awa.dfsfsefwegf.part05.rar
2014-01-06 13:27 - 2014-01-06 13:00 - 106954752 _____ C:\Users\User\Downloads\Der.letzte.Exorzismus.The.Next.Chapter.x.part03.rar
2014-01-06 13:11 - 2014-01-06 12:29 - 128974854 _____ C:\Users\User\Downloads\0230.Tdd.part09.rar
2014-01-06 13:02 - 2014-01-06 12:59 - 104857600 _____ C:\Users\User\Downloads\The.Awa.dfsfsefwegf.part06.rar
2014-01-06 12:58 - 2014-01-06 12:31 - 106954752 _____ C:\Users\User\Downloads\Der.letzte.Exorzismus.The.Next.Chapter.x.part02.rar
2014-01-06 12:45 - 2014-01-06 12:42 - 104857600 _____ C:\Users\User\Downloads\The.Awa.dfsfsefwegf.part07.rar
2014-01-06 12:39 - 2014-01-06 12:35 - 104857600 _____ C:\Users\User\Downloads\The.Awa.dfsfsefwegf.part08.rar
2014-01-06 12:35 - 2014-01-06 12:35 - 09508809 _____ C:\Users\User\Downloads\The.Awa.dfsfsefwegf.part09.rar
2014-01-06 12:05 - 2014-01-06 12:05 - 00001816 _____ C:\Users\Public\Desktop\SUPERAntiSpyware Professional.lnk
2014-01-06 12:01 - 2014-01-06 12:00 - 29118680 _____ (SUPERAntiSpyware) C:\Users\User\Downloads\SUPERAntiSpyware_5.7.1016.exe
2014-01-05 18:07 - 2014-01-05 17:34 - 100969564 _____ C:\Users\User\Downloads\cu.part7.rar
2014-01-05 17:56 - 2014-01-05 17:33 - 00000000 ____D C:\Program Files (x86)\PDFCreator
2014-01-05 17:33 - 2014-01-05 17:33 - 00001043 _____ C:\Users\Public\Desktop\PDFCreator.lnk
2014-01-05 17:33 - 2014-01-05 17:33 - 00001005 _____ C:\Users\User\Desktop\PDF Architect.lnk
2014-01-05 17:33 - 2014-01-05 17:33 - 00000000 ____D C:\Users\User\Documents\PDF Architect Files
2014-01-05 17:33 - 2014-01-05 17:33 - 00000000 ____D C:\Program Files (x86)\PDF Architect
2014-01-05 17:33 - 2014-01-05 16:59 - 104857600 _____ C:\Users\User\Downloads\cu.part6.rar
2014-01-05 17:32 - 2014-01-05 17:30 - 69734576 _____ (pdfforge ) C:\Users\User\Downloads\PDFCreator-1_7_2_setup_offline.exe
2014-01-05 16:46 - 2014-01-05 16:12 - 104857600 _____ C:\Users\User\Downloads\cu.part5.rar
2014-01-05 15:41 - 2014-01-05 15:06 - 108003328 _____ C:\Users\User\Downloads\exq-wolverine2-sd.part12.rar
2014-01-05 15:40 - 2014-01-05 15:06 - 104857600 _____ C:\Users\User\Downloads\cu.part4.rar
2014-01-05 14:31 - 2014-01-05 13:56 - 108003328 _____ C:\Users\User\Downloads\exq-wolverine2-sd.part11.rar
2014-01-05 14:30 - 2014-01-05 13:56 - 104857600 _____ C:\Users\User\Downloads\cu.part3.rar
2014-01-05 11:05 - 2014-01-05 10:30 - 108003328 _____ C:\Users\User\Downloads\exq-wolverine2-sd.part10.rar
2014-01-05 11:04 - 2014-01-05 10:30 - 104857600 _____ C:\Users\User\Downloads\cu.part2.rar
2014-01-05 10:28 - 2014-01-05 09:54 - 104857600 _____ C:\Users\User\Downloads\cu.part1.rar
2014-01-05 10:28 - 2014-01-05 09:53 - 108003328 _____ C:\Users\User\Downloads\exq-wolverine2-sd.part07.rar
2014-01-04 16:41 - 2009-07-14 06:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD
2014-01-03 21:44 - 2014-01-03 21:08 - 110000000 _____ C:\Users\User\Downloads\lxd-whosnext-bdrip.part12.rar
2014-01-03 20:46 - 2014-01-03 20:09 - 110000000 _____ C:\Users\User\Downloads\lxd-whosnext-bdrip.part07.rar
2014-01-03 19:21 - 2014-01-03 18:45 - 110000000 _____ C:\Users\User\Downloads\lxd-whosnext-bdrip.part08.rar
2014-01-03 19:13 - 2014-01-03 19:13 - 00001296 _____ C:\Users\User\Desktop\Continue App of the Day.lnk
2014-01-03 19:13 - 2014-01-03 19:13 - 00000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Lollipop
2014-01-03 19:12 - 2014-01-03 19:12 - 06615464 _____ (hxxp://www.goforfiles.com/) C:\Users\User\Downloads\Die_Arzte,_Ist_Das_Alles__full_album_zip_downloader.exe
2014-01-03 19:12 - 2014-01-03 19:12 - 00001929 _____ C:\Users\Public\Desktop\GoforFiles.lnk
2014-01-03 16:59 - 2014-01-06 13:49 - 00000000 ____D C:\Users\User\Downloads\The.Awakening.German.2011.AC3.BDRiP.XviD-XF
2014-01-03 12:36 - 2014-01-03 11:54 - 128974854 _____ C:\Users\User\Downloads\0230.Tdd.part08.rar
2014-01-03 12:29 - 2014-01-03 11:54 - 108003328 _____ C:\Users\User\Downloads\exq-wolverine2-sd.part01.rar
2014-01-03 12:13 - 2014-01-03 11:55 - 104857600 _____ C:\Users\User\Downloads\hortri1010.part3.rar
2014-01-01 20:05 - 2014-01-01 19:19 - 128974854 _____ C:\Users\User\Downloads\0230.Tdd.part07.rar
2014-01-01 19:58 - 2014-01-01 19:20 - 75553565 _____ C:\Users\User\Downloads\rsg-happiness-xvid.part14.rar
2014-01-01 16:30 - 2014-01-01 15:48 - 128974854 _____ C:\Users\User\Downloads\0230.Tdd.part06.rar
2014-01-01 16:21 - 2014-01-01 15:50 - 106954752 _____ C:\Users\User\Downloads\rsg-happiness-xvid.part13.rar
2014-01-01 15:55 - 2014-01-01 15:48 - 20079486 _____ C:\Users\User\Downloads\exq-wolverine2-sd.part13.rar
2013-12-30 12:33 - 2013-12-30 12:15 - 106954752 _____ C:\Users\User\Downloads\rsg-happiness-xvid.part12.rar
2013-12-30 12:08 - 2013-12-30 11:51 - 106954752 _____ C:\Users\User\Downloads\rsg-happiness-xvid.part11.rar
2013-12-30 10:49 - 2013-12-30 10:07 - 128974854 _____ C:\Users\User\Downloads\0230.Tdd.part05.rar
2013-12-30 10:43 - 2013-12-30 10:07 - 108003328 _____ C:\Users\User\Downloads\exq-wolverine2-sd.part04.rar
2013-12-30 10:27 - 2013-12-30 10:09 - 106954752 _____ C:\Users\User\Downloads\rsg-happiness-xvid.part10.rar
2013-12-29 23:16 - 2013-12-19 21:57 - 128974854 _____ C:\Users\User\Downloads\0230.Tdd.part04.rar
2013-12-29 22:34 - 2013-12-29 22:27 - 115000000 _____ C:\Users\User\Downloads\MetW-s02e01.part2.rar
2013-12-29 21:34 - 2013-12-29 21:27 - 115000000 _____ C:\Users\User\Downloads\MetW-s02e01.part1.rar
2013-12-29 19:24 - 2013-12-29 18:39 - 106954752 _____ C:\Users\User\Downloads\rsg-happiness-xvid.part08.rar
2013-12-29 18:39 - 2013-12-29 17:32 - 204480414 _____ C:\Users\User\Downloads\www.spicy-amateurs.com_4699.rar
2013-12-29 18:17 - 2013-12-29 17:33 - 104857600 _____ C:\Users\User\Downloads\hortri1010.part2.rar
2013-12-29 18:07 - 2013-12-29 17:31 - 108003328 _____ C:\Users\User\Downloads\exq-wolverine2-sd.part06.rar
2013-12-23 00:46 - 2013-12-19 21:56 - 108003328 _____ C:\Users\User\Downloads\exq-wolverine2-sd.part03.rar
2013-12-22 15:37 - 2013-03-20 21:13 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-12-21 01:12 - 2013-12-21 01:12 - 08872563 _____ C:\Users\User\Downloads\facebook-tinchen9028.zip
2013-12-21 01:12 - 2013-12-21 01:00 - 00000000 ____D C:\Users\User\Documents\Facebook
2013-12-21 00:56 - 2013-12-21 00:55 - 22898466 _____ C:\Users\User\Downloads\facebook-alexandererfurt5.zip
2013-12-21 00:13 - 2013-12-20 22:34 - 250257955 _____ C:\Users\User\Downloads\tvs-2bg-dl-ithd-sd-209.rar
2013-12-20 18:17 - 2013-12-20 18:16 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-12-19 21:28 - 2013-12-19 20:46 - 128974854 _____ C:\Users\User\Downloads\0230.Tdd.part03.rar
2013-12-19 20:49 - 2013-12-19 20:49 - 00000000 ____D C:\Users\Public\Documents\CrashDump
2013-12-19 20:49 - 2013-10-04 19:33 - 00000000 ____D C:\Users\User\AppData\Roaming\Samsung
2013-12-19 18:12 - 2013-12-19 17:36 - 108003328 _____ C:\Users\User\Downloads\exq-wolverine2-sd.part08.rar
2013-12-19 16:42 - 2013-12-19 15:32 - 238520663 _____ C:\Users\User\Downloads\tvs-2bg-dl-ithd-sd-203.rar
2013-12-19 14:55 - 2013-12-19 14:13 - 128974854 _____ C:\Users\User\Downloads\0230.Tdd.part02.rar
2013-12-19 14:47 - 2013-12-19 14:12 - 108003328 _____ C:\Users\User\Downloads\exq-wolverine2-sd.part09.rar
2013-12-19 13:41 - 2013-12-19 12:59 - 128974854 _____ C:\Users\User\Downloads\0230.Tdd.part01.rar
2013-12-19 13:33 - 2013-12-19 12:58 - 108003328 _____ C:\Users\User\Downloads\exq-wolverine2-sd.part02.rar
2013-12-18 20:09 - 2013-10-21 22:48 - 00131576 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2013-12-18 20:09 - 2013-10-21 22:48 - 00108440 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2013-12-18 20:09 - 2013-10-21 22:48 - 00084720 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2013-12-15 16:01 - 2013-12-15 15:17 - 104857600 _____ C:\Users\User\Downloads\hortri1010.part1.rar
2013-12-15 15:28 - 2013-12-15 14:52 - 108003328 _____ C:\Users\User\Downloads\exq-wolverine2-sd.part05.rar
2013-12-15 05:27 - 2013-07-18 00:26 - 00000000 ____D C:\Windows\system32\MRT
2013-12-15 05:26 - 2013-03-22 20:19 - 90708896 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-12-14 22:50 - 2013-12-14 22:04 - 110000000 _____ C:\Users\User\Downloads\lxd-whosnext-bdrip.part11.rar
2013-12-14 22:04 - 2013-12-14 21:48 - 38845761 _____ C:\Users\User\Downloads\lxd-whosnext-bdrip.part15.rar
2013-12-14 21:40 - 2013-12-14 20:54 - 110000000 _____ C:\Users\User\Downloads\lxd-whosnext-bdrip.part02.rar
2013-12-14 20:39 - 2013-12-14 19:56 - 102823185 _____ C:\Users\User\Downloads\Crawl.Home.Killing.Home.2011-SMY.part13.rar
2013-12-14 19:51 - 2013-12-14 19:06 - 106954752 _____ C:\Users\User\Downloads\rsg-happiness-xvid.part09.rar
2013-12-13 19:21 - 2013-12-19 14:59 - 00000944 _____ C:\Users\User\Downloads\exq-millers-sd.nfo
2013-12-13 03:58 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache
2013-12-13 03:21 - 2009-07-14 05:45 - 00279624 _____ C:\Windows\system32\FNTCACHE.DAT
2013-12-12 23:14 - 2013-12-12 22:38 - 106954752 _____ C:\Users\User\Downloads\rsg-happiness-xvid.part07.rar
2013-12-12 22:42 - 2013-12-12 22:40 - 30186191 _____ C:\Users\User\Downloads\LexyRoxx_-_Er_wollte_nur_helfen_doch_dann_zerst__rte_er_mich_fast_anal_.part3.rar
2013-12-12 22:37 - 2013-12-10 23:32 - 106954752 _____ C:\Users\User\Downloads\rsg-happiness-xvid.part06.rar
2013-12-12 21:26 - 2013-03-20 22:43 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-12-12 21:26 - 2013-03-20 22:43 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-12-12 21:26 - 2013-03-20 22:43 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-12-10 23:31 - 2013-12-10 22:55 - 106954752 _____ C:\Users\User\Downloads\rsg-happiness-xvid.part05.rar
2013-12-10 22:54 - 2013-12-10 22:19 - 106954752 _____ C:\Users\User\Downloads\Der.letzte.Exorzismus.The.Next.Chapter.x.part01.rar
2013-12-10 22:18 - 2013-12-10 21:42 - 106954752 _____ C:\Users\User\Downloads\rsg-happiness-xvid.part04.rar
2013-12-10 21:41 - 2013-12-10 21:06 - 106954752 _____ C:\Users\User\Downloads\rsg-happiness-xvid.part03.rar
2013-12-10 21:05 - 2013-12-10 20:29 - 106954752 _____ C:\Users\User\Downloads\rsg-happiness-xvid.part02.rar
2013-12-10 20:28 - 2013-12-10 19:53 - 106954752 _____ C:\Users\User\Downloads\rsg-happiness-xvid.part01.rar
2013-12-09 00:59 - 2013-12-08 20:48 - 208192988 _____ C:\Users\User\Downloads\tt_Demi.part1.rar.part
2013-12-08 22:45 - 2013-12-08 22:44 - 29738734 _____ C:\Users\User\Downloads\LexyRoxx_-_Fickerchen_statt_Nickerchen_-_Ehefotze_im_Nachbarzimmer_betrogen.part2.rar
2013-12-08 22:42 - 2013-12-08 22:36 - 104857600 _____ C:\Users\User\Downloads\mcocdldvd-s05e02.part3.rar
2013-12-08 21:24 - 2011-05-07 01:06 - 00000000 ____D C:\Program Files\CDBurnerXP
2013-12-08 21:23 - 2013-12-07 20:17 - 00000334 _____ C:\Users\User\daemonprocess.txt
2013-12-08 20:47 - 2013-12-08 20:44 - 52428800 _____ C:\Users\User\Downloads\LexyRoxx_-_Fickerchen_statt_Nickerchen_-_Ehefotze_im_Nachbarzimmer_betrogen.part1.rar
2013-12-08 20:32 - 2013-12-08 20:27 - 104857600 _____ C:\Users\User\Downloads\mcocdldvd-s05e02.part2.rar
2013-12-08 20:26 - 2013-12-08 14:52 - 524288064 _____ C:\Users\User\Downloads\lr.part4.rar
2013-12-08 17:36 - 2013-12-08 17:33 - 52428800 _____ C:\Users\User\Downloads\LexyRoxx_-_Er_wollte_nur_helfen_doch_dann_zerst__rte_er_mich_fast_anal_.part2.rar
2013-12-08 16:24 - 2013-12-08 16:21 - 52428800 _____ C:\Users\User\Downloads\LexyRoxx_-_Er_wollte_nur_helfen_doch_dann_zerst__rte_er_mich_fast_anal_.part1.rar
2013-12-08 15:09 - 2013-12-08 15:08 - 28323928 _____ (SUPERAntiSpyware) C:\Users\User\Downloads\SUPERAntiSpyware.exe
2013-12-08 14:54 - 2013-12-08 14:51 - 52428800 _____ C:\Users\User\Downloads\LexyRoxx_-_W__hrend_ihr_Freund_mich_fickte_heulte_sie_sich_am_Telefon_aus.part2.rar
2013-12-08 14:01 - 2013-12-08 13:55 - 104857600 _____ C:\Users\User\Downloads\mcocdldvd-s05e02.part1.rar
2013-12-08 13:44 - 2013-12-08 13:41 - 52428800 _____ C:\Users\User\Downloads\LexyRoxx_-_W__hrend_ihr_Freund_mich_fickte_heulte_sie_sich_am_Telefon_aus.part1.rar
2013-12-08 13:01 - 2013-12-08 12:55 - 104857600 _____ C:\Users\User\Downloads\mcocdldvd-s05e01.part3.rar
2013-12-08 12:01 - 2013-12-08 11:55 - 104857600 _____ C:\Users\User\Downloads\mcocdldvd-s05e01.part2.rar
2013-12-08 11:11 - 2013-12-08 11:03 - 141806306 _____ C:\Users\User\Downloads\LexyRoxx---Papi-wie-konntest-du-nur.rar
2013-12-08 11:00 - 2013-12-08 10:55 - 104857600 _____ C:\Users\User\Downloads\mcocdldvd-s05e01.part1.rar
2013-12-08 10:48 - 2011-05-07 01:06 - 00001750 _____ C:\Users\Public\Desktop\CDBurnerXP.lnk
2013-12-07 20:52 - 2013-12-07 20:40 - 55055337 _____ C:\Users\User\Downloads\Two_very_young_girl_in_one_bed_one_enjoy_sex.wmv
2013-12-07 20:17 - 2013-12-07 20:17 - 00000000 ____D C:\Users\User\.android
2013-12-07 20:17 - 2013-12-07 20:11 - 90277977 _____ C:\Users\User\Downloads\LexyRoxx---Verficktes-Berlin---Sperma-statt-Kultur.rar
2013-12-07 20:15 - 2013-12-07 20:15 - 00317224 _____ C:\Users\User\Downloads\3_boys_14_years_and_1_girl_15_years_by__SeX-xXx__120.exe
2013-12-07 20:15 - 2013-12-07 20:02 - 00001099 _____ C:\Users\User\Desktop\FTDownloader.lnk
2013-12-07 20:07 - 2013-12-07 20:07 - 01645424 _____ (Bandoo Media Inc) C:\Users\User\Downloads\iLividSetup-r394-n-bf.exe
2013-12-07 20:03 - 2013-12-07 20:03 - 00000000 ____D C:\ProgramData\APN
2013-12-07 20:02 - 2013-12-07 20:02 - 00317128 _____ C:\Users\User\Downloads\LexyRoxx---Verficktes-Berlin---Sperma-statt-Kultur_299.exe
2013-12-07 18:59 - 2013-03-22 21:11 - 00000000 ____D C:\Program Files (x86)\JDownloader
Some content of TEMP:
====================
C:\Users\User\AppData\Local\Temp\AskSLib.dll
C:\Users\User\AppData\Local\Temp\avgnt.exe
C:\Users\User\AppData\Local\Temp\c1qkunyu.dll
C:\Users\User\AppData\Local\Temp\dlLogic.exe
C:\Users\User\AppData\Local\Temp\DownloadManager.exe
C:\Users\User\AppData\Local\Temp\EnableExtDll.dll
C:\Users\User\AppData\Local\Temp\fpi4mkex.dll
C:\Users\User\AppData\Local\Temp\htmlayout.dll
C:\Users\User\AppData\Local\Temp\IMsetup.exe
C:\Users\User\AppData\Local\Temp\jre-7u45-windows-i586-iftw.exe
C:\Users\User\AppData\Local\Temp\Launcher_i231223709.exe
C:\Users\User\AppData\Local\Temp\mgsqlite3.dll
C:\Users\User\AppData\Local\Temp\Quarantine.exe
C:\Users\User\AppData\Local\Temp\setupA9_.exe
C:\Users\User\AppData\Local\Temp\setup{B8150E82-B4C0-4837-8A5A-A298131AE894}.exe
C:\Users\User\AppData\Local\Temp\SHSetup.exe
C:\Users\User\AppData\Local\Temp\toolbar35137290.exe
C:\Users\User\AppData\Local\Temp\toolbar35177679.exe
C:\Users\User\AppData\Local\Temp\uninst1.exe
C:\Users\User\AppData\Local\Temp\vlc-2.0.5-win32.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-12-30 10:31
==================== End Of Log ============================ --- --- ---
--- --- ---
--- --- ---
Addition.txt auch nochmal? Hab nämlich den Haaken wieder vergessen! |