Casey Jones | 14.03.2014 19:59 | Danke, Schrauber, dass Du Dich offensichtlich meiner annehmen willst.
Dass die Logs, wenn möglich, als CODE-Tags gepostet werden sollen, habe ich natürlich vorher wiederholt gelesen. Aber in meiner Unbedarftheit habe ich dann die Logs alle nacheinander direkt mit in meine Nachricht hineinkopiert. Da kam dann die Rückmeldung, dass ich die Nachricht kürzen und die Logs als Zip senden müsse. Das habe ich dann auch brav gemacht...
Ich schicke die Logs jetzt einzeln. Gmer enthält wie bereits gesagt, keine Daten. Code:
defogger_disable by jpshortstuff (23.02.10.1)
Log created at 22:04 on 12/03/2014 (Holger)
Checking for autostart values...
HKCU\~\Run values retrieved.
HKLM\~\Run values retrieved.
Checking for services/drivers...
-=E.O.F=-
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 12-03-2014
Ran by Holger (administrator) on HOLGER-MAIN on 12-03-2014 22:07:57
Running from C:\Users\Holger\Downloads\Trojaner-Hilfe
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(AMD) C:\Windows\system32\atiesrxx.exe
(AMD) C:\Windows\system32\atieclxx.exe
(Adobe Systems Incorporated) c:\Users\Holger\Adobe Version Cue CS2\bin\VersionCueCS2.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(AMD) C:\Program Files (x86)\AMD\RAIDXpert\bin\RAIDXpertService.exe
() C:\Program Files (x86)\AMD\RAIDXpert\bin\RAIDXpert.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe
(PC Tools) C:\Program Files (x86)\PC Tools Utilities\Tools\Defrag\DMDefragSrv.exe
(PC Tools) C:\Program Files (x86)\PC Tools Utilities\Tools\Repair\DMRepairSrv.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(McAfee, Inc.) C:\Windows\system32\mfevtps.exe
(PC Tools) C:\Program Files (x86)\Common Files\PC Tools\sMonitor\StartManSvc.exe
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect\HelperService.exe
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect\ConversionService.exe
(Seagate) C:\Program Files (x86)\Common Files\Seagate\Schedule2\schedul2.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(McAfee, Inc.) C:\Program Files\McAfee\MSC\McAPExe.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
() c:\Users\Holger\Adobe Version Cue CS2\data\database\bin\mysqld-nt.exe
(PC Tools Software) C:\Program Files (x86)\PC Tools Utilities\Tools\Defrag\DMDefragSrvProxy.exe
(PC Tools Software) C:\Program Files (x86)\PC Tools Utilities\Tools\Repair\DMRepairSrvProxy.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\EPU-4 Engine\FourEngine.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe
() C:\Program Files (x86)\ATI Technologies\HydraVision\HydraGrd.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
(PC Utilities Software Limited) C:\Program Files (x86)\Optimizer Pro\OptProSchedule.exe
(Dropbox, Inc.) C:\Users\Holger\AppData\Roaming\Dropbox\bin\Dropbox.exe
(ASUSTeK Computer Inc.) C:\Program Files\ASUS\Turbo Key\TurboKey.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE
() C:\Program Files (x86)\Seagate\DiscWizard\DiscWizardMonitor.exe
(Adobe Sytems Incorporated) C:\Users\Holger\Adobe Version Cue CS2\ControlPanel\VersionCueCS2Tray.exe
(PC Utilities Software Limited) C:\Program Files (x86)\Optimizer Pro\OptProGuard.exe
(AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\Grid64.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(AMD) C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM64.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(O&O Software GmbH) C:\Program Files\OO Software\AutoBackup\ooab.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSTE08.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
(Microsoft Corporation) C:\Windows\System32\vds.exe
(Microsoft Corporation) C:\Windows\System32\vdsldr.exe
() C:\Windows\SysWOW64\WinMsgBalloonServer.exe
() C:\Windows\SysWOW64\WinMsgBalloonClient.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\KBD\kbd.exe
(McAfee, Inc.) C:\Program Files\McAfee\MAT\McPvTray.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\saUI.exe
() C:\Program Files (x86)\FindRight\updateFindRight.exe
() C:\Program Files (x86)\FindRight\bin\utilFindRight.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\mcuicnt.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7204568 2013-11-04] (Realtek Semiconductor)
HKLM-x32\...\Run: [Turbo Key] - C:\Program Files\ASUS\Turbo Key\TurboKey.exe [1874432 2009-11-24] (ASUSTeK Computer Inc.)
HKLM-x32\...\Run: [mcpltui_exe] - C:\Program Files\McAfee.com\Agent\mcagent.exe [537992 2014-01-28] (McAfee, Inc.)
HKLM-x32\...\Run: [DiscWizardMonitor.exe] - C:\Program Files (x86)\Seagate\DiscWizard\DiscWizardMonitor.exe [2674104 2011-06-30] ()
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.)
HKLM-x32\...\Run: [Adobe Version Cue CS2] - c:\Users\Holger\Adobe Version Cue CS2\ControlPanel\VersionCueCS2Tray.exe [856064 2005-04-06] (Adobe Sytems Incorporated)
HKLM-x32\...\Run: [hpqSRMon] - C:\Program Files (x86)\HP\Digital Imaging\bin\hpqSRMon.exe [150528 2008-07-22] (Hewlett-Packard)
HKLM-x32\...\Run: [KBD] - C:\Program Files (x86)\Hewlett-Packard\KBD\KbdStub.EXE [12288 2008-07-21] (Microsoft)
HKLM-x32\...\Run: [HP Software Update] - C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [49208 2011-10-28] (Hewlett-Packard)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766208 2013-12-20] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [QuickTime Task] - C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2014-01-17] (Apple Inc.)
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKU\.DEFAULT\...\RunOnce: [{90140000-003D-0000-0000-0000000FF1CE}] - C:\Windows\system32\cmd.exe /C del "C:\ProgramData\Microsoft Help\Rgstrtn.lck" /Q /A:H
HKU\.DEFAULT\...\RunOnce: [{90140000-0018-0407-0000-0000000FF1CE}] - C:\Windows\system32\cmd.exe /C del "C:\ProgramData\Microsoft Help\Rgstrtn.lck" /Q /A:H
HKU\S-1-5-21-4046429842-4286820832-101313032-1000\...\Run: [HydraVisionDesktopManager] - C:\Program Files (x86)\ATI Technologies\HydraVision\HydraDM.exe [389120 2013-03-06] (AMD)
HKU\S-1-5-21-4046429842-4286820832-101313032-1000\...\Run: [Grid] - C:\Program Files (x86)\ATI Technologies\HydraVision\HydraGrd.exe [401408 2013-03-06] ()
HKU\S-1-5-21-4046429842-4286820832-101313032-1000\...\Run: [Optimizer Pro] - C:\Program Files (x86)\Optimizer Pro\OptProLauncher.exe [135160 2014-01-28] (PC Utilities Software Limited)
HKU\S-1-5-21-4046429842-4286820832-101313032-1000\...\Policies\system: [NoDispCPL] 0
HKU\S-1-5-21-4046429842-4286820832-101313032-1000\...\Policies\Explorer: [NoDriveTypeAutoRun] 0x00000000
HKU\S-1-5-21-4046429842-4286820832-101313032-1000\...\Policies\Explorer: [NoInstrumentation] 1
HKU\S-1-5-21-4046429842-4286820832-101313032-1000\...\Policies\Explorer: [NoSetTaskbar] 0
AppInit_DLLs: C:\PROGRA~2\OPTIMI~1\OPTPRO~2.DLL => C:\Program Files (x86)\Optimizer Pro\OptProCrash_x64.dll [2681648 2014-02-15] ()
AppInit_DLLs-x32: c:\progra~2\optimi~1\optpro~1.dll => C:\Program Files (x86)\Optimizer Pro\OptProCrash.dll [2961368 2014-02-15] ()
Startup: C:\Users\Holger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Holger\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\Holger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk
ShortcutTarget: OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk -> C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft Corporation)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://start.mysearchdial.com/?f=1&a=file0202ff&cd=2XzuyEtN2Y1L1QzutAtDzzyD0AzyyEtByDyCtCtA0FtB0A0DtN0D0Tzu0SyBzytDtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1CzutBtAtDtC1N1R&cr=169514594&ir=
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://start.mysearchdial.com/?f=1&a=file0202ff&cd=2XzuyEtN2Y1L1QzutAtDzzyD0AzyyEtByDyCtCtA0FtB0A0DtN0D0Tzu0SyBzytDtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1CzutBtAtDtC1N1R&cr=169514594&ir=
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://start.mysearchdial.com/?f=1&a=file0202ff&cd=2XzuyEtN2Y1L1QzutAtDzzyD0AzyyEtByDyCtCtA0FtB0A0DtN0D0Tzu0SyBzytDtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1CzutBtAtDtC1N1R&cr=169514594&ir=
SearchScopes: HKLM - {77AA745B-F4F8-45DA-9B14-61D2D95054C8} URL =
SearchScopes: HKCU - DefaultScope {77AA745B-F4F8-45DA-9B14-61D2D95054C8} URL = hxxp://de.search.yahoo.com/search?fr=mcafee&p={SearchTerms}
SearchScopes: HKCU - {77AA745B-F4F8-45DA-9B14-61D2D95054C8} URL = hxxp://de.search.yahoo.com/search?fr=mcafee&p={SearchTerms}
SearchScopes: HKCU - {7DD9348E-6128-4DEB-84D0-ECECF4388300} URL = hxxp://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=file0202ff&cd=2XzuyEtN2Y1L1QzutAtDzzyD0AzyyEtByDyCtCtA0FtB0A0DtN0D0Tzu0SyBzytDtN1L2XzutBtFtBtFtCyDtFtCyCtAtCtN1L1CzutBtAtDtC1N1R&cr=169514594&ir=
SearchScopes: HKCU - {C6198EE7-E5B3-4D82-8F69-45CF9DA0D826} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=ORJ&o=&src=kw&q={searchTerms}&locale=&apn_ptnrs=U3&apn_dtid=OSJ000YYDE&apn_uid=E56F1528-6490-4199-B4F3-2E0D40C0CA3B&apn_sauid=74925467-CDB0-4D2E-91EE-A9EDC75CC365
BHO: savinshopp - {2EDE1C3F-AB2E-2650-0DEA-83E824569FAD} - C:\ProgramData\savinshopp\snZYQFY.x64.dll ()
BHO: Speed Test Analysis - {310D38FE-EB4C-467C-8781-B7C2AEB7847D} - C:\Program Files (x86)\Speed Test Analysis\ScriptHost64.dll (SpeedAnalysis.com)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
BHO-x32: Promt IE Helper - {1F13CE11-4FAC-49A9-8155-D4F3F0F91A33} - C:\Program Files (x86)\PRMT9\PRMTIE\prmtie.dll (PROMT Ltd.)
BHO-x32: Speed Test Analysis - {310D38FE-EB4C-467C-8781-B7C2AEB7847D} - C:\Program Files (x86)\Speed Test Analysis\ScriptHost.dll (SpeedAnalysis.com)
BHO-x32: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll (pdfforge GmbH)
BHO-x32: SaveSense - {71e129ff-6c2a-4984-818c-7e2c998b8d99} - C:\Users\Holger\AppData\Local\SaveSense\SaveSenseIE.dll (SaveSense)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: mysearchdial Helper Object - {EF5625A3-37AB-4BDB-9875-2A3D91CD0DFD} - C:\Program Files (x86)\Mysearchdial\1.8.21.0\bh\mysearchdial.dll (MySearchDial)
BHO-x32: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Toolbar: HKLM-x32 - PDF Architect Toolbar - {25A3A431-30BB-47C8-AD6A-E1063801134F} - C:\Program Files (x86)\PDF Architect\PDFIEPlugin.dll (pdfforge GmbH)
Toolbar: HKLM-x32 - PROMT-Übersetzer - {C7DDDD27-F303-42A5-B979-51559F7DC0F0} - C:\Program Files (x86)\PRMT9\PRMTIE\prmtie.dll (PROMT Ltd.)
Toolbar: HKLM-x32 - mysearchdial Toolbar - {3004627E-F8E9-4E8B-909D-316753CBA923} - C:\Program Files (x86)\Mysearchdial\1.8.21.0\mysearchdialTlbr.dll (MySearchDial)
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll (McAfee, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - C:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll (McAfee, Inc.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files\McAfee\MSC\McSnIePl64.dll (McAfee, Inc.)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - C:\Program Files (x86)\McAfee\MSC\McSnIePl.dll (McAfee, Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
FireFox:
========
FF ProfilePath: C:\Users\Holger\AppData\Roaming\Mozilla\Firefox\Profiles\5uj57wfh.default
FF user.js: detected! => C:\Users\Holger\AppData\Roaming\Mozilla\Firefox\Profiles\5uj57wfh.default\user.js
FF DefaultSearchEngine: Sichere Suche
FF SearchEngineOrder.1: Sichere Suche
FF SelectedSearchEngine: Sichere Suche
FF Homepage: hxxp://www.tagesspiegel.de
FF Keyword.URL: hxxp://de.search.yahoo.com/search?fr=mcafee&type=A111DE0&p=
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_77.dll ()
FF Plugin: @mcafee.com/MSC,version=10 - c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1207148.dll (Adobe Systems, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @mcafee.com/MSC,version=10 - c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL ()
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.updaterss.com/SaveSenseLive Update;version=3 - C:\Program Files (x86)\SaveSenseLive\Update\1.3.23.0\npGoogleUpdate3.dll (SaveSense)
FF Plugin-x32: @tools.updaterss.com/SaveSenseLive Update;version=9 - C:\Program Files (x86)\SaveSenseLive\Update\1.3.23.0\npGoogleUpdate3.dll (SaveSense)
FF Plugin-x32: @videolan.org/vlc,version=2.0.5 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.0.6 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.0.7 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.0.8 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.1 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.2 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)
FF SearchPlugin: C:\Users\Holger\AppData\Roaming\Mozilla\Firefox\Profiles\5uj57wfh.default\searchplugins\ask-search.xml
FF SearchPlugin: C:\Users\Holger\AppData\Roaming\Mozilla\Firefox\Profiles\5uj57wfh.default\searchplugins\askcom.xml
FF SearchPlugin: C:\Users\Holger\AppData\Roaming\Mozilla\Firefox\Profiles\5uj57wfh.default\searchplugins\Mysearchdial.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\McSiteAdvisor.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\McSiteAdvisor.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: Flash Video Downloader - Full HD Download - C:\Users\Holger\AppData\Roaming\Mozilla\Firefox\Profiles\5uj57wfh.default\Extensions\artur.dubovoy@gmail.com [2014-03-11]
FF Extension: savinshopp - C:\Users\Holger\AppData\Roaming\Mozilla\Firefox\Profiles\5uj57wfh.default\Extensions\brxk1l1w@qsyaewbaq.net [2014-03-06]
FF Extension: Redirect Bypasser - C:\Users\Holger\AppData\Roaming\Mozilla\Firefox\Profiles\5uj57wfh.default\Extensions\redirectbypasser@moonlight21.com [2013-11-02]
FF Extension: SaveSense - C:\Users\Holger\AppData\Roaming\Mozilla\Firefox\Profiles\5uj57wfh.default\Extensions\{2d7886a0-85bb-4bf2-b684-ba92b4b21d23} [2014-01-27]
FF Extension: Universal Downloader - C:\Users\Holger\AppData\Roaming\Mozilla\Firefox\Profiles\5uj57wfh.default\Extensions\{9051303c-7e41-4311-a783-d6fe5ef2832d} [2013-06-21]
FF Extension: WOT - C:\Users\Holger\AppData\Roaming\Mozilla\Firefox\Profiles\5uj57wfh.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} [2013-11-29]
FF Extension: Block site - C:\Users\Holger\AppData\Roaming\Mozilla\Firefox\Profiles\5uj57wfh.default\Extensions\{dd3d7613-0246-469d-bc65-2a3cc1668adc} [2013-12-14]
FF Extension: Adblock Plus Pop-up Addon - C:\Users\Holger\AppData\Roaming\Mozilla\Firefox\Profiles\5uj57wfh.default\Extensions\adblockpopups@jessehakanen.net.xpi [2013-04-13]
FF Extension: InvisibleHand - C:\Users\Holger\AppData\Roaming\Mozilla\Firefox\Profiles\5uj57wfh.default\Extensions\canitbecheaper@trafficbroker.co.uk.xpi [2013-04-13]
FF Extension: anonymoX - C:\Users\Holger\AppData\Roaming\Mozilla\Firefox\Profiles\5uj57wfh.default\Extensions\client@anonymox.net.xpi [2013-12-14]
FF Extension: Ghostery - C:\Users\Holger\AppData\Roaming\Mozilla\Firefox\Profiles\5uj57wfh.default\Extensions\firefox@ghostery.com.xpi [2013-11-02]
FF Extension: Official My JDownloader Add-On - C:\Users\Holger\AppData\Roaming\Mozilla\Firefox\Profiles\5uj57wfh.default\Extensions\jid1-OY8Xu5BsKZQa6A@jetpack.xpi [2013-11-02]
FF Extension: Speed Test Analysis - C:\Users\Holger\AppData\Roaming\Mozilla\Firefox\Profiles\5uj57wfh.default\Extensions\speedtestanalysis@SpeedAnalysis.com.xpi [2014-01-04]
FF Extension: Flagfox - C:\Users\Holger\AppData\Roaming\Mozilla\Firefox\Profiles\5uj57wfh.default\Extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b}.xpi [2014-03-08]
FF Extension: FlashGot - C:\Users\Holger\AppData\Roaming\Mozilla\Firefox\Profiles\5uj57wfh.default\Extensions\{19503e42-ca3c-4c27-b1e2-9cdb2170ee34}.xpi [2013-04-13]
FF Extension: NoScript - C:\Users\Holger\AppData\Roaming\Mozilla\Firefox\Profiles\5uj57wfh.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2013-04-13]
FF Extension: ImTranslator - C:\Users\Holger\AppData\Roaming\Mozilla\Firefox\Profiles\5uj57wfh.default\Extensions\{9AA46F4F-4DC7-4c06-97AF-5035170634FE}.xpi [2013-04-13]
FF Extension: Easy YouTube Video Downloader - C:\Users\Holger\AppData\Roaming\Mozilla\Firefox\Profiles\5uj57wfh.default\Extensions\{c0c9a2c7-2e5c-4447-bc53-97718bc91e1b}.xpi [2013-04-13]
FF Extension: Adblock Plus - C:\Users\Holger\AppData\Roaming\Mozilla\Firefox\Profiles\5uj57wfh.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-04-13]
FF Extension: BetterPrivacy - C:\Users\Holger\AppData\Roaming\Mozilla\Firefox\Profiles\5uj57wfh.default\Extensions\{d40f5e7b-d2cf-4856-b441-cc613eeffbe3}.xpi [2013-04-13]
FF Extension: DownThemAll! - C:\Users\Holger\AppData\Roaming\Mozilla\Firefox\Profiles\5uj57wfh.default\Extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi [2013-04-13]
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor
FF Extension: McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor [2013-04-08]
FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2013-05-18]
FF HKLM-x32\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt
FF Extension: PDF Architect Converter For Firefox - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt [2013-05-21]
FF HKLM-x32\...\Firefox\Extensions: [{20d1f7b3-7721-4da0-b6f3-78bb4d7248f4}] - C:\Program Files (x86)\Browser Guard\browserguard.xpi
FF Extension: No Name - C:\Program Files (x86)\Browser Guard\browserguard.xpi [2014-02-24]
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2013-04-08]
FF HKCU\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2013-05-18]
==================== Services (Whitelisted) =================
R2 70e6ca8c; C:\Program Files (x86)\Optimizer Pro\OptProCrashSvc.dll [186496 2014-02-15] ()
S3 Adobe LM Service; C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [72704 2013-04-13] (Adobe Systems)
R2 Adobe Version Cue CS2; c:\Users\Holger\Adobe Version Cue CS2\bin\VersionCueCS2.exe [163840 2005-04-06] (Adobe Systems Incorporated)
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2013-12-20] (Advanced Micro Devices, Inc.)
S4 APNMCP; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [166352 2014-02-08] ()
R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe [96896 2009-12-29] (ASUSTeK Computer Inc.)
R2 DMDefragService; C:\Program Files (x86)\PC Tools Utilities\Tools\Defrag\DMDefragSrv.exe [1034208 2010-08-26] (PC Tools)
R2 DMRepairService; C:\Program Files (x86)\PC Tools Utilities\Tools\Repair\DMRepairSrv.exe [1021920 2010-08-26] (PC Tools)
R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 HPSLPSVC; C:\Users\Holger\AppData\Local\Temp\7zS3717\hpslpsvc64.dll [1039360 2013-02-06] (Hewlett-Packard Co.)
R2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe [123384 2014-01-22] (McAfee, Inc.)
R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [178528 2014-01-28] (McAfee, Inc.)
R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 McNaiAnn; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
S3 McODS; C:\Program Files\McAfee\VirusScan\mcods.exe [602944 2013-08-02] (McAfee, Inc.)
R2 mcpltsvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 McProxy; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 mfecore; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [1025232 2013-12-11] (McAfee, Inc.)
R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [219752 2014-01-27] (McAfee, Inc.)
R2 mfevtp; C:\Windows\system32\mfevtps.exe [185792 2014-01-27] (McAfee, Inc.)
R2 MOBKbackup; C:\Program Files (x86)\McAfee Online Backup\MOBKbackup.exe [231224 2010-04-13] (McAfee, Inc.)
R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [328928 2013-07-30] (McAfee, Inc.)
R2 PCToolsSSDMonitorSvc; C:\Program Files (x86)\Common Files\PC Tools\sMonitor\StartManSvc.exe [583648 2010-08-26] (PC Tools)
R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH)
R2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH)
S2 savesenselive; C:\Program Files (x86)\SaveSenseLive\Update\SaveSenseLive.exe [146920 2014-01-27] (SaveSense)
S3 savesenselivem; C:\Program Files (x86)\SaveSenseLive\Update\SaveSenseLive.exe [146920 2014-01-27] (SaveSense)
R2 Update FindRight; C:\Program Files (x86)\FindRight\updateFindRight.exe [112416 2014-03-12] ()
R2 Util FindRight; C:\Program Files (x86)\FindRight\bin\utilFindRight.exe [112416 2014-03-12] ()
==================== Drivers (Whitelisted) ====================
R0 amdide64; C:\Windows\System32\DRIVERS\amdide64.sys [11904 2011-12-18] (Advanced Micro Devices Inc.)
R2 AODDriver4.3; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59648 2013-12-16] (Advanced Micro Devices)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [13440 2010-08-25] ()
R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [13368 2009-07-07] ()
R1 AutoSave; C:\Windows\System32\DRIVERS\AutoSave.sys [36896 2009-08-13] (Avanquest)
R3 cfwids; C:\Windows\System32\drivers\cfwids.sys [70592 2014-01-27] (McAfee, Inc.)
S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197704 2013-09-23] (McAfee, Inc.)
R2 McPvDrv; C:\Windows\system32\drivers\McPvDrv.sys [74560 2013-09-09] (McAfee, Inc.)
R2 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [180272 2014-01-27] (McAfee, Inc.)
R2 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [311600 2014-01-27] (McAfee, Inc.)
R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [520696 2014-01-27] (McAfee, Inc.)
R2 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [783864 2014-01-27] (McAfee, Inc.)
R3 mfencbdc; C:\Windows\System32\DRIVERS\mfencbdc.sys [411944 2013-11-26] (McAfee, Inc.)
S3 mfencrk; C:\Windows\System32\DRIVERS\mfencrk.sys [96112 2013-11-26] (McAfee, Inc.)
R2 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [344688 2014-01-27] (McAfee, Inc.)
R1 MOBKFilter; C:\Windows\System32\DRIVERS\MOBK.sys [66040 2010-04-13] (Mozy, Inc.)
R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [15416 2009-07-18] ()
S3 PCTDMDefrag; C:\Windows\system32\drivers\PCTDMDefrag.sys [162264 2010-08-20] (PC Tools)
S3 PCTDMDefrag; C:\Windows\SysWOW64\drivers\PCTDMDefrag.sys [107992 2010-08-20] (PC Tools)
S3 PCTDSMon; C:\Windows\system32\drivers\PCTDSMon.sys [189976 2010-08-20] (PC Tools)
R3 Ps2; C:\Windows\System32\DRIVERS\PS2.sys [21504 2006-09-07] ()
R0 vidsflt53; C:\Windows\System32\DRIVERS\vsflt53.sys [141920 2013-04-12] (Acronis)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-03-12 22:07 - 2014-03-12 22:07 - 00000000 ____D () C:\FRST
2014-03-12 22:04 - 2014-03-12 22:04 - 00000000 _____ () C:\Users\Holger\defogger_reenable
2014-03-12 22:01 - 2014-03-12 22:07 - 00000000 ____D () C:\Users\Holger\Downloads\Trojaner-Hilfe
2014-03-12 04:02 - 2014-03-01 07:05 - 23133696 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-03-12 04:02 - 2014-03-01 06:17 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-03-12 04:02 - 2014-03-01 06:16 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-03-12 04:02 - 2014-03-01 05:58 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-03-12 04:02 - 2014-03-01 05:52 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-03-12 04:02 - 2014-03-01 05:51 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-03-12 04:02 - 2014-03-01 05:42 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-03-12 04:02 - 2014-03-01 05:40 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-03-12 04:02 - 2014-03-01 05:37 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-03-12 04:02 - 2014-03-01 05:33 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-03-12 04:02 - 2014-03-01 05:33 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-03-12 04:02 - 2014-03-01 05:32 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-03-12 04:02 - 2014-03-01 05:30 - 17074688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-03-12 04:02 - 2014-03-01 05:23 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-03-12 04:02 - 2014-03-01 05:17 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-03-12 04:02 - 2014-03-01 05:11 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-03-12 04:02 - 2014-03-01 05:02 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-03-12 04:02 - 2014-03-01 04:54 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-03-12 04:02 - 2014-03-01 04:52 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-03-12 04:02 - 2014-03-01 04:51 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-03-12 04:02 - 2014-03-01 04:47 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-03-12 04:02 - 2014-03-01 04:43 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-03-12 04:02 - 2014-03-01 04:43 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-03-12 04:02 - 2014-03-01 04:42 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-03-12 04:02 - 2014-03-01 04:40 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-03-12 04:02 - 2014-03-01 04:38 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-03-12 04:02 - 2014-03-01 04:37 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-03-12 04:02 - 2014-03-01 04:35 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-03-12 04:02 - 2014-03-01 04:18 - 13051904 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-03-12 04:02 - 2014-03-01 04:16 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-03-12 04:02 - 2014-03-01 04:14 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-03-12 04:02 - 2014-03-01 04:10 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-03-12 04:02 - 2014-03-01 04:03 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-03-12 04:02 - 2014-03-01 04:00 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-03-12 04:02 - 2014-03-01 03:57 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-03-12 04:02 - 2014-03-01 03:38 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-03-12 04:02 - 2014-03-01 03:32 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-03-12 04:02 - 2014-03-01 03:27 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-03-12 04:02 - 2014-03-01 03:25 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-03-12 04:02 - 2014-03-01 03:25 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-03-12 04:02 - 2014-02-07 02:23 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-03-12 04:02 - 2014-02-04 03:32 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-03-12 04:02 - 2014-02-04 03:32 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2014-03-12 04:02 - 2014-02-04 03:04 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2014-03-12 04:02 - 2014-02-04 03:04 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2014-03-12 04:02 - 2014-01-29 03:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2014-03-12 04:02 - 2014-01-29 03:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2014-03-12 04:02 - 2014-01-28 03:32 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2014-03-06 20:27 - 2014-03-06 22:12 - 00000000 ____D () C:\ProgramData\savinshopp
2014-03-06 20:27 - 2014-03-06 20:27 - 00000000 ____D () C:\Users\Holger\AppData\Local\Packages
2014-03-06 20:27 - 2014-03-06 20:27 - 00000000 ____D () C:\ProgramData\c3f5eef6d5f46c0e
2014-02-28 19:54 - 2014-02-28 19:54 - 00000000 ____D () C:\ProgramData\Apple Computer
2014-02-28 19:54 - 2014-02-28 19:54 - 00000000 ____D () C:\Program Files (x86)\QuickTime
2014-02-28 19:51 - 2014-02-28 19:51 - 41945432 _____ (Apple Inc.) C:\Users\Holger\Downloads\QuickTimeSetup.exe
2014-02-28 19:51 - 2014-02-28 19:51 - 00000000 ____D () C:\Program Files (x86)\Browser Guard
2014-02-26 13:23 - 2014-02-26 13:23 - 00000000 ____D () C:\Users\Holger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
2014-02-26 13:22 - 2014-02-26 13:22 - 00000000 ____D () C:\ProgramData\ATI
2014-02-25 21:28 - 2014-02-27 02:45 - 01594028 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-02-25 21:24 - 2014-02-25 21:24 - 01021432 _____ (Microsoft Corporation) C:\Users\Holger\Downloads\NDP451-KB2859818-Web.exe
2014-02-25 21:10 - 2014-01-09 03:22 - 05694464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2014-02-25 21:10 - 2014-01-03 23:44 - 06574592 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-02-21 23:00 - 2014-02-21 23:00 - 15173224 _____ (Ventis Media Inc. ) C:\Users\Holger\Downloads\MediaMonkey_4.1.0.1692.exe
2014-02-21 21:29 - 2014-02-21 21:29 - 00000000 ____D () C:\Program Files (x86)\AmUStor
2014-02-21 21:24 - 2014-02-21 21:24 - 00066765 _____ () C:\Windows\SysWOW64\CCCInstall_201402212124221241.log
2014-02-21 21:24 - 2012-08-28 13:27 - 00058536 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\usbfilter.sys
2014-02-21 21:17 - 2014-02-21 21:18 - 00000000 ____D () C:\ProgramData\Package Cache
2014-02-21 21:05 - 2014-02-21 21:05 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM
2014-02-21 21:05 - 2014-02-21 21:05 - 00000000 ____D () C:\Program Files\Realtek
2014-02-21 21:04 - 2013-11-05 19:47 - 03707864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2014-02-21 21:04 - 2013-11-05 18:54 - 38385664 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat
2014-02-21 21:04 - 2013-11-05 15:48 - 00681905 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT
2014-02-21 21:04 - 2013-11-04 19:26 - 00153304 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2014-02-21 21:04 - 2013-11-04 11:11 - 02587864 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll
2014-02-21 21:04 - 2013-10-28 17:29 - 01021656 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2014-02-21 21:04 - 2013-10-18 16:41 - 01286360 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2014-02-21 21:04 - 2013-10-11 11:31 - 00947760 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll
2014-02-21 21:04 - 2013-10-09 20:12 - 02103040 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll
2014-02-21 21:04 - 2013-10-07 11:05 - 02810072 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2014-02-21 21:04 - 2013-10-02 17:10 - 00617176 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2014-02-21 21:04 - 2013-09-09 15:32 - 05681192 _____ () C:\Windows\system32\Drivers\rtvienna.dat
2014-02-21 21:04 - 2013-08-24 03:14 - 01014016 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll
2014-02-21 21:04 - 2013-08-24 03:14 - 00897792 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll
2014-02-21 21:04 - 2013-08-24 03:14 - 00722688 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll
2014-02-21 21:04 - 2013-08-24 03:14 - 00244480 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll
2014-02-21 21:04 - 2013-06-25 12:47 - 00871856 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll
2014-02-21 21:04 - 2013-06-25 12:47 - 00162224 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll
2014-02-21 21:04 - 2013-06-25 12:46 - 00582056 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll
2014-02-21 21:04 - 2013-04-24 17:16 - 01662024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2014-02-21 21:04 - 2012-08-31 19:18 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll
2014-02-21 21:04 - 2012-08-31 19:17 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll
2014-02-21 21:04 - 2012-08-31 19:17 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll
2014-02-21 21:04 - 2012-08-31 19:17 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll
2014-02-21 21:04 - 2012-08-31 19:17 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll
2014-02-21 21:04 - 2012-01-30 11:43 - 00836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll
2014-02-21 21:04 - 2012-01-10 10:20 - 00065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll
2014-02-21 21:04 - 2011-12-20 15:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2014-02-21 21:04 - 2011-11-22 16:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2014-02-21 21:04 - 2011-09-02 14:21 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll
2014-02-21 21:04 - 2011-09-02 14:21 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll
2014-02-21 21:04 - 2011-09-02 14:21 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll
2014-02-21 21:04 - 2011-03-17 12:17 - 01361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll
2014-02-21 21:04 - 2011-03-07 17:11 - 00148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll
2014-02-21 21:04 - 2010-11-08 07:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2014-02-21 21:04 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2014-02-21 21:04 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2014-02-21 21:04 - 2010-11-08 07:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2014-02-21 21:04 - 2010-11-08 07:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2014-02-21 21:04 - 2010-11-08 07:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2014-02-21 21:04 - 2010-11-03 18:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2014-02-21 21:04 - 2010-07-22 16:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll
2014-02-21 21:04 - 2009-11-24 09:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2014-02-21 21:04 - 2009-11-24 09:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2014-02-21 21:04 - 2009-11-24 09:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2014-02-21 21:04 - 2009-11-24 09:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2014-02-21 21:03 - 2013-10-30 16:31 - 00929080 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOSettingsIPC.dll
2014-02-21 21:03 - 2013-10-25 10:49 - 05751576 _____ (Nahimic Inc) C:\Windows\system32\NAHIMICAPOlfx.dll
2014-02-21 21:03 - 2013-10-16 03:43 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2014-02-21 21:03 - 2013-10-11 12:47 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2014-02-21 21:03 - 2013-10-09 20:13 - 01921792 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll
2014-02-21 21:03 - 2013-10-09 20:13 - 01345280 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll
2014-02-21 21:03 - 2013-10-09 20:13 - 01286400 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll
2014-02-21 21:03 - 2013-10-09 20:12 - 27644160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnA64.dll
2014-02-21 21:03 - 2013-10-09 20:12 - 14152960 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll
2014-02-21 21:03 - 2013-10-09 20:12 - 03714304 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnN64.dll
2014-02-21 21:03 - 2013-10-09 20:12 - 02036992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll
2014-02-21 21:03 - 2013-10-09 20:12 - 01012992 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll
2014-02-21 21:03 - 2013-10-07 00:26 - 00501184 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll
2014-02-21 21:03 - 2013-10-07 00:26 - 00487360 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll
2014-02-21 21:03 - 2013-10-07 00:26 - 00415680 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll
2014-02-21 21:03 - 2013-09-10 04:02 - 06217904 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll
2014-02-21 21:03 - 2013-09-10 04:02 - 00313520 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll
2014-02-21 21:03 - 2013-09-10 04:01 - 01938608 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll
2014-02-21 21:03 - 2013-09-10 04:01 - 00260272 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll
2014-02-21 21:03 - 2013-08-20 17:37 - 00605496 _____ () C:\Windows\system32\audioLibVc.dll
2014-02-21 21:03 - 2013-08-14 16:36 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll
2014-02-21 21:03 - 2013-08-14 16:35 - 01084160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll
2014-02-21 21:03 - 2013-08-14 16:35 - 00907008 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll
2014-02-21 21:03 - 2013-08-14 16:35 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll
2014-02-21 21:03 - 2013-08-05 18:11 - 02743328 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2014-02-21 21:03 - 2013-07-23 15:39 - 00790272 _____ (Waves Audio Ltd.) C:\Windows\SysWOW64\MaxxAudioAPOShell.dll
2014-02-21 21:03 - 2013-06-21 11:01 - 00109848 _____ () C:\Windows\system32\AcpiServiceVnA64.dll
2014-02-21 21:03 - 2013-04-03 14:13 - 00906800 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll
2014-02-21 21:03 - 2012-03-08 11:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2014-02-21 21:03 - 2011-08-23 17:00 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll
2014-02-21 21:03 - 2011-05-31 09:42 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll
2014-02-21 21:03 - 2011-05-31 09:42 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2014-02-21 21:03 - 2011-05-31 09:42 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll
2014-02-21 21:03 - 2011-05-31 09:42 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll
2014-02-21 21:03 - 2011-05-31 09:42 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll
2014-02-21 21:03 - 2011-05-31 09:42 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll
2014-02-21 21:03 - 2011-05-31 09:42 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll
2014-02-21 21:03 - 2011-05-31 09:42 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll
2014-02-21 21:03 - 2011-05-31 09:42 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll
2014-02-21 21:03 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll
2014-02-21 21:03 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll
2014-02-21 21:03 - 2011-05-31 09:42 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll
2014-02-21 21:03 - 2010-09-27 09:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
2014-02-21 20:35 - 2014-02-21 20:35 - 00000000 ____H () C:\ProgramData\DP45977C.lfl
2014-02-21 20:24 - 2014-02-21 20:24 - 00000000 ____D () C:\SWSetup
2014-02-21 19:55 - 2014-02-21 19:55 - 00000000 ____D () C:\Program Files\SAMSUNG
2014-02-21 19:45 - 2014-02-21 21:29 - 00000000 ____D () C:\ProgramData\AmUStor
2014-02-21 19:45 - 2014-02-21 19:45 - 00000000 ____D () C:\Program Files (x86)\AmIcoSingLun
2014-02-19 17:39 - 2014-02-19 17:39 - 00000000 _____ () C:\Windows\SysWOW64\㩃啜敳獲䡜汯敧屲灁䑰瑡屡潒浡湩屧潍楺汬屡楆敲潦屸牐景汩獥㕜橵㜵晷敤慦汵屴潣歯敩煳楬整
2014-02-16 23:03 - 2014-02-15 03:32 - 00000426 _____ () C:\AVScanner.ini
2014-02-15 19:12 - 2014-02-15 19:12 - 00000000 ____D () C:\Users\Holger\AppData\Local\Avanquest
2014-02-15 19:12 - 2014-02-15 19:12 - 00000000 ____D () C:\ProgramData\BVRP Software
2014-02-15 19:11 - 2014-02-15 19:11 - 00002153 _____ () C:\Users\Public\Desktop\AutoSave Essentials.lnk
2014-02-15 19:11 - 2014-02-15 19:11 - 00000000 ____D () C:\Users\Public\Documents\BVRP Software
2014-02-15 19:11 - 2014-02-15 19:11 - 00000000 ____D () C:\ProgramData\Avanquest Software
2014-02-15 19:11 - 2014-02-15 19:11 - 00000000 ____D () C:\Program Files (x86)\Avanquest
2014-02-15 19:04 - 2014-02-15 19:07 - 11958256 _____ (Avanquest Software ) C:\Users\Holger\Downloads\AutoSaveEssentials.exe
2014-02-15 03:10 - 2014-03-11 20:47 - 00000000 ____D () C:\Users\Holger\AppData\Roaming\Driver Pro
2014-02-15 03:10 - 2014-02-15 03:10 - 00001083 _____ () C:\Users\Holger\Desktop\Driver Pro.lnk
2014-02-15 03:10 - 2014-02-15 03:10 - 00000000 ____D () C:\Program Files (x86)\Driver Pro
2014-02-15 01:01 - 2014-03-12 21:49 - 00000000 ____D () C:\Users\Holger\Documents\Optimizer Pro
2014-02-15 01:01 - 2014-02-15 01:01 - 00000000 ____D () C:\Users\Holger\AppData\Roaming\Optimizer Pro
2014-02-15 00:57 - 2014-02-28 19:51 - 00000000 ____D () C:\Users\Holger\AppData\Roaming\1O1L1I1PtF1F1C1N
2014-02-15 00:57 - 2014-02-15 00:57 - 00001204 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-02-15 00:56 - 2014-03-12 21:51 - 00000296 _____ () C:\Windows\Tasks\MySearchDial.job
2014-02-15 00:56 - 2014-02-28 19:51 - 00003244 _____ () C:\Windows\System32\Tasks\MySearchDial
2014-02-15 00:56 - 2014-02-15 15:36 - 00000000 ____D () C:\Program Files (x86)\FindRight
2014-02-15 00:56 - 2014-02-15 00:56 - 00000000 ____D () C:\Users\Holger\AppData\Roaming\mysearchdial
2014-02-15 00:56 - 2014-02-15 00:56 - 00000000 ____D () C:\Program Files (x86)\Mysearchdial
2014-02-14 18:11 - 2013-10-02 02:10 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2014-02-14 18:10 - 2013-10-02 03:22 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2014-02-14 18:10 - 2013-10-02 03:11 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2014-02-14 18:10 - 2013-10-02 03:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2014-02-14 18:10 - 2013-10-02 02:48 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll
2014-02-14 18:10 - 2013-10-02 02:48 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2014-02-14 18:10 - 2013-10-02 02:29 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2014-02-14 18:10 - 2013-10-02 01:15 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2014-02-14 18:10 - 2013-10-02 01:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll
2014-02-14 18:10 - 2013-10-02 01:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll
2014-02-14 18:10 - 2013-10-02 01:08 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2014-02-14 18:10 - 2013-10-02 01:01 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2014-02-14 18:10 - 2013-10-02 00:58 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2014-02-14 18:10 - 2013-10-02 00:31 - 01147392 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2014-02-14 18:10 - 2013-10-02 00:08 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
2014-02-14 18:10 - 2013-10-01 23:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2014-02-14 18:04 - 2013-12-21 10:53 - 00548864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-02-14 18:04 - 2013-12-21 09:56 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-02-14 18:03 - 2013-09-25 03:23 - 01030144 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2014-02-14 18:03 - 2013-09-25 02:57 - 00792576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2014-02-14 17:47 - 2014-02-14 17:47 - 00985600 _____ () C:\Users\Holger\Downloads\MicrosoftFixit50123.msi
2014-02-14 17:44 - 2014-01-01 00:05 - 00420008 _____ () C:\Windows\SysWOW64\locale.nls
2014-02-14 17:44 - 2014-01-01 00:04 - 00420008 _____ () C:\Windows\system32\locale.nls
2014-02-14 17:44 - 2013-12-06 03:30 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-02-14 17:44 - 2013-12-06 03:30 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-02-14 17:44 - 2013-12-06 03:02 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-02-14 17:44 - 2013-12-06 03:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-02-14 17:44 - 2013-12-04 03:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2014-02-14 17:44 - 2013-12-04 03:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2014-02-14 17:44 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2014-02-14 17:44 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2014-02-14 17:44 - 2013-12-04 03:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2014-02-14 17:44 - 2013-12-04 03:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2014-02-14 17:44 - 2013-12-04 03:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2014-02-14 17:44 - 2013-12-04 03:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2014-02-14 17:44 - 2013-12-04 03:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2014-02-14 17:44 - 2013-12-04 03:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll
2014-02-14 17:44 - 2013-12-04 03:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll
2014-02-14 17:44 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll
2014-02-14 17:44 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll
2014-02-14 17:44 - 2013-12-04 03:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll
2014-02-14 17:44 - 2013-12-04 02:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe
2014-02-14 17:44 - 2013-12-04 02:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe
2014-02-14 17:44 - 2013-12-04 02:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe
2014-02-14 17:44 - 2013-12-04 02:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
2014-02-14 17:43 - 2013-12-25 00:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2014-02-14 17:43 - 2013-12-24 23:48 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-02-14 17:43 - 2013-11-26 09:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2014-02-14 17:43 - 2013-11-22 23:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2014-02-14 02:56 - 2014-02-14 02:56 - 22152872 _____ (Mozilla) C:\Users\Holger\Downloads\ThunderbirdSetup.exe
2014-02-13 19:46 - 2014-02-13 19:46 - 00003364 _____ () C:\Windows\System32\Tasks\AutoBackup
2014-02-13 19:30 - 2014-02-13 19:30 - 11660072 _____ () C:\Users\Holger\Downloads\OOAutoBackup364Ger.exe
2014-02-13 19:12 - 2014-02-14 02:56 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird
==================== One Month Modified Files and Folders =======
2014-03-12 22:07 - 2014-03-12 22:07 - 00000000 ____D () C:\FRST
2014-03-12 22:07 - 2014-03-12 22:01 - 00000000 ____D () C:\Users\Holger\Downloads\Trojaner-Hilfe
2014-03-12 22:04 - 2014-03-12 22:04 - 00000000 _____ () C:\Users\Holger\defogger_reenable
2014-03-12 22:04 - 2013-04-07 19:21 - 00000000 ____D () C:\Users\Holger
2014-03-12 22:02 - 2013-04-07 18:11 - 01482388 _____ () C:\Windows\WindowsUpdate.log
2014-03-12 21:58 - 2013-04-12 23:29 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-03-12 21:51 - 2014-02-15 00:56 - 00000296 _____ () C:\Windows\Tasks\MySearchDial.job
2014-03-12 21:49 - 2014-02-15 01:01 - 00000000 ____D () C:\Users\Holger\Documents\Optimizer Pro
2014-03-12 21:35 - 2014-01-27 00:30 - 00000932 _____ () C:\Windows\Tasks\SaveSenseLiveUpdateTaskMachineUA.job
2014-03-12 21:30 - 2014-01-27 00:30 - 00000296 _____ () C:\Windows\Tasks\SaveSense.job
2014-03-12 21:02 - 2009-07-14 05:45 - 00021664 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-03-12 21:02 - 2009-07-14 05:45 - 00021664 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-03-12 20:04 - 2013-11-02 21:04 - 00000000 ____D () C:\Program Files (x86)\JDownloader
2014-03-12 19:37 - 2013-04-08 00:19 - 00000000 __RSD () C:\Users\Holger\Documents\McAfee-Tresore
2014-03-12 19:36 - 2013-04-12 23:54 - 00000000 ___RD () C:\Users\Holger\Dropbox
2014-03-12 19:36 - 2013-04-12 23:44 - 00000000 ____D () C:\Users\Holger\AppData\Roaming\Dropbox
2014-03-12 19:35 - 2014-01-27 00:30 - 00000928 _____ () C:\Windows\Tasks\SaveSenseLiveUpdateTaskMachineCore.job
2014-03-12 19:35 - 2014-01-22 00:15 - 00000394 _____ () C:\Windows\Tasks\FinalTorrent Update Checker.job
2014-03-12 19:35 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-03-12 19:35 - 2009-07-14 05:51 - 00071321 _____ () C:\Windows\setupact.log
2014-03-12 18:27 - 2009-07-14 05:45 - 00345088 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-03-12 18:26 - 2013-04-19 20:35 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-03-12 18:26 - 2013-04-19 20:35 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-03-12 07:32 - 2013-04-19 19:26 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-03-12 01:58 - 2013-04-12 23:29 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-03-12 01:58 - 2013-04-12 23:29 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-03-12 01:58 - 2013-04-12 23:29 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-03-12 00:17 - 2014-01-22 00:15 - 00000000 ____D () C:\Program Files (x86)\File Type Assistant
2014-03-11 22:06 - 2013-04-13 01:45 - 00000000 ____D () C:\Users\Holger\AppData\Roaming\vlc
2014-03-11 20:47 - 2014-02-15 03:10 - 00000000 ____D () C:\Users\Holger\AppData\Roaming\Driver Pro
2014-03-08 20:34 - 2013-04-07 20:59 - 00000000 ____D () C:\Users\Holger\AppData\Roaming\Adobe
2014-03-07 18:35 - 2010-11-21 04:47 - 00287674 _____ () C:\Windows\PFRO.log
2014-03-06 22:12 - 2014-03-06 20:27 - 00000000 ____D () C:\ProgramData\savinshopp
2014-03-06 20:27 - 2014-03-06 20:27 - 00000000 ____D () C:\Users\Holger\AppData\Local\Packages
2014-03-06 20:27 - 2014-03-06 20:27 - 00000000 ____D () C:\ProgramData\c3f5eef6d5f46c0e
2014-03-03 00:59 - 2011-04-12 08:43 - 00699432 _____ () C:\Windows\system32\perfh007.dat
2014-03-03 00:59 - 2011-04-12 08:43 - 00149572 _____ () C:\Windows\system32\perfc007.dat
2014-03-03 00:59 - 2009-07-14 06:13 - 01620684 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-03-02 19:03 - 2013-04-14 16:16 - 00000000 ____D () C:\Users\Holger\AppData\Roaming\MediaMonkey
2014-03-01 07:05 - 2014-03-12 04:02 - 23133696 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-03-01 06:17 - 2014-03-12 04:02 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-03-01 06:16 - 2014-03-12 04:02 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-03-01 05:58 - 2014-03-12 04:02 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-03-01 05:52 - 2014-03-12 04:02 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-03-01 05:51 - 2014-03-12 04:02 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-03-01 05:42 - 2014-03-12 04:02 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-03-01 05:40 - 2014-03-12 04:02 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-03-01 05:37 - 2014-03-12 04:02 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-03-01 05:33 - 2014-03-12 04:02 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-03-01 05:33 - 2014-03-12 04:02 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-03-01 05:32 - 2014-03-12 04:02 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-03-01 05:30 - 2014-03-12 04:02 - 17074688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-03-01 05:23 - 2014-03-12 04:02 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-03-01 05:17 - 2014-03-12 04:02 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-03-01 05:11 - 2014-03-12 04:02 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-03-01 05:02 - 2014-03-12 04:02 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-03-01 04:54 - 2014-03-12 04:02 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-03-01 04:52 - 2014-03-12 04:02 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-03-01 04:51 - 2014-03-12 04:02 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-03-01 04:47 - 2014-03-12 04:02 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-03-01 04:43 - 2014-03-12 04:02 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-03-01 04:43 - 2014-03-12 04:02 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-03-01 04:42 - 2014-03-12 04:02 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-03-01 04:40 - 2014-03-12 04:02 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-03-01 04:38 - 2014-03-12 04:02 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-03-01 04:37 - 2014-03-12 04:02 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-03-01 04:35 - 2014-03-12 04:02 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-03-01 04:18 - 2014-03-12 04:02 - 13051904 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-03-01 04:16 - 2014-03-12 04:02 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-03-01 04:14 - 2014-03-12 04:02 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-03-01 04:10 - 2014-03-12 04:02 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-03-01 04:03 - 2014-03-12 04:02 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-03-01 04:00 - 2014-03-12 04:02 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-03-01 03:57 - 2014-03-12 04:02 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-03-01 03:38 - 2014-03-12 04:02 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-03-01 03:32 - 2014-03-12 04:02 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-03-01 03:27 - 2014-03-12 04:02 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-03-01 03:25 - 2014-03-12 04:02 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-03-01 03:25 - 2014-03-12 04:02 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-02-28 19:54 - 2014-02-28 19:54 - 00000000 ____D () C:\ProgramData\Apple Computer
2014-02-28 19:54 - 2014-02-28 19:54 - 00000000 ____D () C:\Program Files (x86)\QuickTime
2014-02-28 19:51 - 2014-02-28 19:51 - 41945432 _____ (Apple Inc.) C:\Users\Holger\Downloads\QuickTimeSetup.exe
2014-02-28 19:51 - 2014-02-28 19:51 - 00000000 ____D () C:\Program Files (x86)\Browser Guard
2014-02-28 19:51 - 2014-02-15 00:57 - 00000000 ____D () C:\Users\Holger\AppData\Roaming\1O1L1I1PtF1F1C1N
2014-02-28 19:51 - 2014-02-15 00:56 - 00003244 _____ () C:\Windows\System32\Tasks\MySearchDial
2014-02-27 23:42 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2014-02-27 02:45 - 2014-02-25 21:28 - 01594028 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-02-26 13:23 - 2014-02-26 13:23 - 00000000 ____D () C:\Users\Holger\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
2014-02-26 13:22 - 2014-02-26 13:22 - 00000000 ____D () C:\ProgramData\ATI
2014-02-26 13:19 - 2013-04-08 00:18 - 00000000 ____D () C:\Program Files (x86)\McAfee
2014-02-25 23:25 - 2013-04-08 00:09 - 00000000 ____D () C:\Program Files\Common Files\McAfee
2014-02-25 21:24 - 2014-02-25 21:24 - 01021432 _____ (Microsoft Corporation) C:\Users\Holger\Downloads\NDP451-KB2859818-Web.exe
2014-02-23 19:52 - 2013-05-26 15:33 - 00000000 ____D () C:\Users\Holger\Documents\Eigene Scans
2014-02-21 23:02 - 2013-04-14 16:15 - 00000000 ____D () C:\Program Files (x86)\MediaMonkey
2014-02-21 23:00 - 2014-02-21 23:00 - 15173224 _____ (Ventis Media Inc. ) C:\Users\Holger\Downloads\MediaMonkey_4.1.0.1692.exe
2014-02-21 21:29 - 2014-02-21 21:29 - 00000000 ____D () C:\Program Files (x86)\AmUStor
2014-02-21 21:29 - 2014-02-21 19:45 - 00000000 ____D () C:\ProgramData\AmUStor
2014-02-21 21:29 - 2013-04-07 19:37 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-02-21 21:24 - 2014-02-21 21:24 - 00066765 _____ () C:\Windows\SysWOW64\CCCInstall_201402212124221241.log
2014-02-21 21:23 - 2013-04-07 19:27 - 00000000 ____D () C:\Program Files\ATI Technologies
2014-02-21 21:22 - 2013-05-17 22:58 - 00000000 ____D () C:\ProgramData\AMD
2014-02-21 21:18 - 2014-02-21 21:17 - 00000000 ____D () C:\ProgramData\Package Cache
2014-02-21 21:13 - 2013-05-17 22:48 - 00000000 ____D () C:\AMD
2014-02-21 21:05 - 2014-02-21 21:05 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM
2014-02-21 21:05 - 2014-02-21 21:05 - 00000000 ____D () C:\Program Files\Realtek
2014-02-21 20:35 - 2014-02-21 20:35 - 00000000 ____H () C:\ProgramData\DP45977C.lfl
2014-02-21 20:24 - 2014-02-21 20:24 - 00000000 ____D () C:\SWSetup
2014-02-21 19:55 - 2014-02-21 19:55 - 00000000 ____D () C:\Program Files\SAMSUNG
2014-02-21 19:45 - 2014-02-21 19:45 - 00000000 ____D () C:\Program Files (x86)\AmIcoSingLun
2014-02-19 17:39 - 2014-02-19 17:39 - 00000000 _____ () C:\Windows\SysWOW64\㩃啜敳獲䡜汯敧屲灁䑰瑡屡潒浡湩屧潍楺汬屡楆敲潦屸牐景汩獥㕜橵㜵晷敤慦汵屴潣歯敩煳楬整
2014-02-16 23:20 - 2009-07-14 03:34 - 00000438 _____ () C:\Windows\win.ini
2014-02-15 22:36 - 2013-04-07 21:25 - 00000000 ____D () C:\Users\Holger\Documents\Privates
2014-02-15 19:12 - 2014-02-15 19:12 - 00000000 ____D () C:\Users\Holger\AppData\Local\Avanquest
2014-02-15 19:12 - 2014-02-15 19:12 - 00000000 ____D () C:\ProgramData\BVRP Software
2014-02-15 19:11 - 2014-02-15 19:11 - 00002153 _____ () C:\Users\Public\Desktop\AutoSave Essentials.lnk
2014-02-15 19:11 - 2014-02-15 19:11 - 00000000 ____D () C:\Users\Public\Documents\BVRP Software
2014-02-15 19:11 - 2014-02-15 19:11 - 00000000 ____D () C:\ProgramData\Avanquest Software
2014-02-15 19:11 - 2014-02-15 19:11 - 00000000 ____D () C:\Program Files (x86)\Avanquest
2014-02-15 19:07 - 2014-02-15 19:04 - 11958256 _____ (Avanquest Software ) C:\Users\Holger\Downloads\AutoSaveEssentials.exe
2014-02-15 15:36 - 2014-02-15 00:56 - 00000000 ____D () C:\Program Files (x86)\FindRight
2014-02-15 15:36 - 2013-04-13 01:14 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-02-15 03:32 - 2014-02-16 23:03 - 00000426 _____ () C:\AVScanner.ini
2014-02-15 03:10 - 2014-02-15 03:10 - 00001083 _____ () C:\Users\Holger\Desktop\Driver Pro.lnk
2014-02-15 03:10 - 2014-02-15 03:10 - 00000000 ____D () C:\Program Files (x86)\Driver Pro
2014-02-15 02:53 - 2013-04-07 20:59 - 00000000 ____D () C:\Users\Holger\AppData\Local\Adobe
2014-02-15 02:35 - 2013-04-07 19:57 - 00087632 _____ () C:\Users\Holger\AppData\Local\GDIPFONTCACHEV1.DAT
2014-02-15 01:46 - 2014-01-27 00:30 - 00000000 ____D () C:\Program Files (x86)\Optimizer Pro
2014-02-15 01:01 - 2014-02-15 01:01 - 00000000 ____D () C:\Users\Holger\AppData\Roaming\Optimizer Pro
2014-02-15 00:57 - 2014-02-15 00:57 - 00001204 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-02-15 00:57 - 2013-12-20 18:34 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-02-15 00:56 - 2014-02-15 00:56 - 00000000 ____D () C:\Users\Holger\AppData\Roaming\mysearchdial
2014-02-15 00:56 - 2014-02-15 00:56 - 00000000 ____D () C:\Program Files (x86)\Mysearchdial
2014-02-15 00:56 - 2014-01-27 00:30 - 00000149 _____ () C:\Users\Holger\AppData\Roaming\WB.CFG
2014-02-15 00:55 - 2014-02-05 00:34 - 24654088 _____ (Mozilla) C:\Users\Holger\Downloads\FirefoxSetup.exe
2014-02-14 17:49 - 2013-07-26 09:30 - 00000000 ____D () C:\Windows\system32\MRT
2014-02-14 17:47 - 2014-02-14 17:47 - 00985600 _____ () C:\Users\Holger\Downloads\MicrosoftFixit50123.msi
2014-02-14 17:46 - 2013-04-19 20:37 - 88567024 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-02-14 02:56 - 2014-02-14 02:56 - 22152872 _____ (Mozilla) C:\Users\Holger\Downloads\ThunderbirdSetup.exe
2014-02-14 02:56 - 2014-02-13 19:12 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird
2014-02-14 02:56 - 2013-04-08 01:00 - 00000000 ____D () C:\Users\Holger\AppData\Local\Thunderbird
2014-02-14 01:48 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-02-14 01:36 - 2014-01-22 00:16 - 00000000 ____D () C:\Users\Holger\AppData\Roaming\FinalTorrent
2014-02-14 01:36 - 2009-07-14 04:20 - 00000000 __RSD () C:\Windows\Media
2014-02-14 01:35 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\registration
2014-02-13 19:46 - 2014-02-13 19:46 - 00003364 _____ () C:\Windows\System32\Tasks\AutoBackup
2014-02-13 19:30 - 2014-02-13 19:30 - 11660072 _____ () C:\Users\Holger\Downloads\OOAutoBackup364Ger.exe
2014-02-13 19:30 - 2014-01-27 00:30 - 00003244 _____ () C:\Windows\System32\Tasks\SaveSense
Files to move or delete:
====================
C:\Users\Public\AlexaNSISPlugin.6340.dll
Some content of TEMP:
====================
C:\Users\Holger\AppData\Local\Temp\ginstall.dll
C:\Users\Holger\AppData\Local\Temp\ose00000.exe
C:\Users\Holger\AppData\Local\Temp\QuickTimeUpdateSetup.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-03-10 11:29
==================== End Of Log ============================ --- --- ---
--- --- --- |