Hallo Schrauber,
hier das erste log file:
FRST Logfile:
Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 14-04-2014
Ran by Kolki (administrator) on KOLKI-PC on 15-04-2014 15:25:46
Running from D:\Downloads
Windows 7 Professional Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe
(IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe
() C:\Program Files (x86)\ASUS\AXSP\1.01.01\atkexComSvc.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) C:\Windows\system32\igfxsrvc.exe
(Dropbox, Inc.) C:\Users\Kolki\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Wondershare) C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(Geek Software GmbH) D:\Tools\PDF24\pdf24.exe
(Genie9) D:\Tools\Genie Timeline\GenieTimelineService.exe
(Malwarebytes Corporation) D:\Tools\Malwarebytes Anti-Malware\mbamscheduler.exe
(Symantec Corporation) D:\Programme\Norton Internet Security\Engine\21.2.0.38\NIS.exe
(TuneUp Software) D:\Tools\TuneUp Utilities\TuneUpUtilitiesService64.exe
(Symantec Corporation) D:\Programme\Norton Internet Security\Engine\21.2.0.38\NIS.exe
(Microsoft Corporation) C:\Windows\System32\alg.exe
(Genie9) D:\Tools\Genie Timeline\GenieTimelineAgent.exe
(TuneUp Software) D:\Tools\TuneUp Utilities\TuneUpUtilitiesApp64.exe
(IObit) C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe
(Malwarebytes Corporation) D:\Tools\Malwarebytes Anti-Malware\mbam.exe
(Malwarebytes Corporation) D:\Tools\Malwarebytes Anti-Malware\mbamservice.exe
(Mozilla Corporation) D:\Programme\Firefox\firefox.exe
(Mozilla Corporation) D:\Programme\Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_77.exe
(Ghisler Software GmbH) D:\Tools\totalcmd\TOTALCMD64.EXE
(Microsoft Corporation) c:\program files\windows defender\MpCmdRun.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\System32\LogiLDA.dll [1832760 2012-09-20] (Logitech, Inc.)
HKLM\...\Run: [IgfxTray] => C:\Windows\system32\igfxtray.exe [391128 2014-01-25] (Intel Corporation)
HKLM\...\Run: [HotKeysCmds] => C:\Windows\system32\hkcmd.exe [771544 2014-01-25] (Intel Corporation)
HKLM\...\Run: [Persistence] => C:\Windows\system32\igfxpers.exe [770520 2014-01-25] (Intel Corporation)
HKLM-x32\...\Run: [IObit Malware Fighter] => C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe [1566528 2014-01-24] (IObit)
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [1985824 2013-07-25] (Wondershare)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-04-26] (Intel Corporation)
HKLM-x32\...\Run: [PDFPrint] => D:\Tools\PDF24\pdf24.exe [189480 2014-02-06] (Geek Software GmbH)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\.DEFAULT\...\RunOnce: [FlashPlayerUpdate] - C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_12_0_0_44_ActiveX.exe [840584 2014-02-14] (Adobe Systems Incorporated)
HKU\S-1-5-19\...\Run: [Sidebar] => C:\Program Files\Windows Sidebar\Sidebar.exe [1475584 2010-11-21] (Microsoft Corporation)
HKU\S-1-5-20\...\Run: [Sidebar] => C:\Program Files\Windows Sidebar\Sidebar.exe [1475584 2010-11-21] (Microsoft Corporation)
HKU\S-1-5-21-4072658579-1215342442-2827123583-1000\...\Policies\Explorer: [DisallowRun] 1
HKU\S-1-5-21-4072658579-1215342442-2827123583-1000\...\MountPoints2: {6fabb228-b7ea-11e3-8e74-d850e64cace3} - G:\LaunchU3.exe -a
IFEO: [Debugger] "D:\Tools\TuneUp Utilities\TUAutoReactivator64.exe"
IFEO\databasecompare.exe: [Debugger] "D:\Tools\TuneUp Utilities\TUAutoReactivator64.exe"
IFEO\driverbooster.exe: [Debugger] "D:\Tools\TuneUp Utilities\TUAutoReactivator64.exe"
IFEO\excel.exe: [Debugger] "D:\Tools\TuneUp Utilities\TUAutoReactivator64.exe"
IFEO\lync.exe: [Debugger] "D:\Tools\TuneUp Utilities\TUAutoReactivator64.exe"
IFEO\misc.exe: [Debugger] "D:\Tools\TuneUp Utilities\TUAutoReactivator64.exe"
IFEO\msaccess.exe: [Debugger] "D:\Tools\TuneUp Utilities\TUAutoReactivator64.exe"
IFEO\msoev.exe: [Debugger] "D:\Tools\TuneUp Utilities\TUAutoReactivator64.exe"
IFEO\msotd.exe: [Debugger] "D:\Tools\TuneUp Utilities\TUAutoReactivator64.exe"
IFEO\msoxmled.exe: [Debugger] "D:\Tools\TuneUp Utilities\TUAutoReactivator64.exe"
IFEO\ocpubmgr.exe: [Debugger] "D:\Tools\TuneUp Utilities\TUAutoReactivator64.exe"
IFEO\pdf24-creator.exe: [Debugger] "D:\Tools\TuneUp Utilities\TUAutoReactivator64.exe"
IFEO\pdf24-fax.exe: [Debugger] "D:\Tools\TuneUp Utilities\TUAutoReactivator64.exe"
IFEO\powerpnt.exe: [Debugger] "D:\Tools\TuneUp Utilities\TUAutoReactivator64.exe"
IFEO\smartdefrag.exe: [Debugger] "D:\Tools\TuneUp Utilities\TUAutoReactivator64.exe"
IFEO\spreadsheetcompare.exe: [Debugger] "D:\Tools\TuneUp Utilities\TUAutoReactivator64.exe"
IFEO\unins000.exe: [Debugger] "D:\Tools\TuneUp Utilities\TUAutoReactivator64.exe"
IFEO\winword.exe: [Debugger] "D:\Tools\TuneUp Utilities\TUAutoReactivator64.exe"
Startup: C:\Users\Kolki\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\StartUp\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Kolki\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xA541E720A829CF01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de
HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.giga.de/
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe
SearchScopes: HKCU - DefaultScope {A6071557-AFE7-4689-B9FD-CEB4454C886E} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=vc_trans_8140&type=securitascout
SearchScopes: HKCU - 8C2B784B6A8A4B0EB8CD5E539763E884 URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=vc_trans_8140&type=securitascout
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - {A6071557-AFE7-4689-B9FD-CEB4454C886E} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=vc_trans_8140&type=securitascout
BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll (IObit)
BHO: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - D:\Programme\Microsoft_Office_2013\Office15\OCHelper.dll (Microsoft Corporation)
BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - D:\Programme\Norton Internet Security\Engine64\21.2.0.38\coIEPlg.dll (Symantec Corporation)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - D:\Programme\Microsoft_Office_2013\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO-x32: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - D:\Programme\Norton Internet Security\Engine\21.2.0.38\coIEPlg.dll (Symantec Corporation)
BHO-x32: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - D:\Programme\Norton Internet Security\Engine\21.2.0.38\IPS\IPSBHO.DLL (Symantec Corporation)
BHO-x32: Ads Removal - {9D974C8C-6D92-44FB-BEAF-B45A1C0CF17F} - C:\Program Files (x86)\IObit\IObit Malware Fighter\adsremoval\IE\Adblock.dll (Adblock)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\Program Files (x86)\IObit\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll (IObit)
BHO-x32: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - D:\Programme\Norton Internet Security\Engine64\21.2.0.38\coIEPlg.dll (Symantec Corporation)
Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - D:\Programme\Norton Internet Security\Engine\21.2.0.38\coIEPlg.dll (Symantec Corporation)
Toolbar: HKCU - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - D:\Programme\Norton Internet Security\Engine64\21.2.0.38\coIEPlg.dll (Symantec Corporation)
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} https://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - D:\Programme\Microsoft_Office_2013\Office15\MSOSB.DLL (Microsoft Corporation)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
FireFox:
========
FF ProfilePath: C:\Users\Kolki\AppData\Roaming\Mozilla\Firefox\Profiles\s222q0ld.default
FF DefaultSearchEngine: Conduit Search
FF SelectedSearchEngine: Conduit Search
FF Homepage: https://www.google.de/
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_77.dll ()
FF Plugin: @microsoft.com/SharePoint,version=14.0 - D:\Programme\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.1.3 - D:\Tools\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.4 - D:\Tools\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll ()
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf - D:\Programme\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf - D:\Programme\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 - C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\4.0.60310.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll (Microsoft Corporation)
FF SearchPlugin: C:\Users\Kolki\AppData\Roaming\Mozilla\Firefox\Profiles\s222q0ld.default\searchplugins\search_engine.xml
FF SearchPlugin: C:\Users\Kolki\AppData\Roaming\Mozilla\Firefox\Profiles\s222q0ld.default\searchplugins\yahoo_ff.xml
FF Extension: Flash Video Downloader - Full HD Download - C:\Users\Kolki\AppData\Roaming\Mozilla\Firefox\Profiles\s222q0ld.default\Extensions\artur.dubovoy@gmail.com [2014-03-25]
FF Extension: Advanced SystemCare Surfing Protection - C:\Users\Kolki\AppData\Roaming\Mozilla\Firefox\Profiles\s222q0ld.default\Extensions\ascsurfingprotection@iobit.com [2014-03-03]
FF Extension: Flagfox - C:\Users\Kolki\AppData\Roaming\Mozilla\Firefox\Profiles\s222q0ld.default\Extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b}.xpi [2014-03-08]
FF Extension: Adblock Plus - C:\Users\Kolki\AppData\Roaming\Mozilla\Firefox\Profiles\s222q0ld.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-02-15]
FF HKLM-x32\...\Firefox\Extensions: [{BBDA0591-3099-440a-AA10-41764D9DB4DB}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.1.0.18\IPSFF
FF Extension: Norton Vulnerability Protection - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.1.0.18\IPSFF [2014-02-14]
FF HKLM-x32\...\Firefox\Extensions: [{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.1.0.18\coFFPlgn\
FF Extension: Norton Toolbar - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.1.0.18\coFFPlgn\ []
FF StartMenuInternet: FIREFOX.EXE - D:\Programme\Firefox\firefox.exe
Chrome:
=======
Error reading preferences. Please check "preferences" file for possible corruption. <======= ATTENTION
CHR Extension: (Advanced SystemCare Surfing Protection) - C:\Users\Kolki\AppData\Local\Google\Chrome\User Data\Default\Extensions\bbmegnmpleoagolcnjnejdacakedpcgd [2014-03-03]
CHR Extension: (Ads Removal) - C:\Users\Kolki\AppData\Local\Google\Chrome\User Data\Default\Extensions\fopdddcinljmpmioaklghcalngfhbaen [2014-02-25]
CHR Extension: (Advanced SystemCare Surfing Protection) - C:\Users\Kolki\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfengeggddojhakldhlpjdlddgkkjkdd [2014-02-24]
CHR HKLM-x32\...\Chrome\Extension: [mkcedibhemacmilmkpndpkoidlnmgngg] - C:\Users\Kolki\ChromeExtensions\mkcedibhemacmilmkpndpkoidlnmgngg\amazon.crx [2014-03-08]
CHR HKLM-x32\...\Chrome\Extension: [mkfokfffehpeedafpekjeddnmnjhmcmk] - D:\Programme\Norton Internet Security\Engine\21.2.0.38\Exts\Chrome.crx [2014-03-25]
==================== Services (Whitelisted) =================
R2 AdvancedSystemCareService7; C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe [881952 2014-01-14] (IObit)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.01.01\atkexComSvc.exe [927232 2012-10-29] ()
R2 GenieTimelineService; D:\Tools\Genie Timeline\GenieTimelineService.exe [678976 2013-12-29] (Genie9)
R2 IMFservice; C:\Program Files (x86)\IObit\IObit Malware Fighter\IMFsrv.exe [342336 2014-01-24] (IObit)
S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2153792 2014-03-25] (IObit)
R2 MBAMScheduler; D:\Tools\Malwarebytes Anti-Malware\mbamscheduler.exe [1809720 2014-04-03] (Malwarebytes Corporation)
R2 MBAMService; D:\Tools\Malwarebytes Anti-Malware\mbamservice.exe [857912 2014-04-03] (Malwarebytes Corporation)
R2 NIS; D:\Programme\Norton Internet Security\Engine\21.2.0.38\NIS.exe [276376 2014-03-12] (Symantec Corporation)
R2 TuneUp.UtilitiesSvc; D:\Tools\TuneUp Utilities\TuneUpUtilitiesService64.exe [2138936 2014-03-20] (TuneUp Software)
==================== Drivers (Whitelisted) ====================
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2012-08-21] ()
R1 BHDrvx64; D:\Programme\Norton Internet Security\NortonData\21.1.0.18\Definitions\BASHDefs\20140319.001\BHDrvx64.sys [1525976 2014-03-19] (Symantec Corporation)
R1 ccSet_NIS; C:\Windows\system32\drivers\NISx64\1502000.026\ccSetx64.sys [162392 2013-09-26] (Symantec Corporation)
R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484952 2014-02-14] (Symantec Corporation)
R3 FileMonitor; C:\Program Files (x86)\IObit\IObit Malware Fighter\Drivers\win7_amd64\FileMonitor.sys [23048 2013-03-23] (IObit)
R1 IDSVia64; D:\Programme\Norton Internet Security\NortonData\21.1.0.18\Definitions\IPSDefs\20140414.001\IDSvia64.sys [525016 2014-03-26] (Symantec Corporation)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-04-03] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [119512 2014-04-15] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63192 2014-04-03] (Malwarebytes Corporation)
R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [99800 2014-02-15] (Intel Corporation)
R3 NAVENG; D:\Programme\Norton Internet Security\NortonData\21.1.0.18\Definitions\VirusDefs\20140414.032\ENG64.SYS [126040 2014-03-25] (Symantec Corporation)
R3 NAVEX15; D:\Programme\Norton Internet Security\NortonData\21.1.0.18\Definitions\VirusDefs\20140414.032\EX64.SYS [2099288 2014-03-25] (Symantec Corporation)
R3 RegFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\regfilter.sys [34848 2013-11-19] (IObit.com)
S3 RTL8192cu; C:\Windows\System32\DRIVERS\RTL8192cu.sys [926824 2012-10-25] (Realtek Semiconductor Corporation )
R3 RtlWlanu; C:\Windows\System32\DRIVERS\rtwlanu.sys [2976472 2014-02-15] (Realtek Semiconductor Corporation )
S3 RTTEAMPT; C:\Windows\System32\DRIVERS\RtTeam620.sys [58512 2012-07-03] (Realtek Corporation)
R0 SmartDefragDriver; C:\Windows\System32\Drivers\SmartDefragDriver.sys [21184 2013-12-24] (IObit)
R3 SRTSP; C:\Windows\System32\Drivers\NISx64\1502000.026\SRTSP64.SYS [875736 2014-02-13] (Symantec Corporation)
R1 SRTSPX; C:\Windows\system32\drivers\NISx64\1502000.026\SRTSPX64.SYS [36952 2013-09-10] (Symantec Corporation)
R0 SymDS; C:\Windows\System32\drivers\NISx64\1502000.026\SYMDS64.SYS [493656 2013-09-10] (Symantec Corporation)
R0 SymEFA; C:\Windows\System32\drivers\NISx64\1502000.026\SYMEFA64.SYS [1148120 2014-03-04] (Symantec Corporation)
R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [177752 2014-02-14] (Symantec Corporation)
R1 SymIRON; C:\Windows\system32\drivers\NISx64\1502000.026\Ironx64.SYS [264280 2013-09-27] (Symantec Corporation)
R1 SymNetS; C:\Windows\System32\Drivers\NISx64\1502000.026\SYMNETS.SYS [593112 2014-02-18] (Symantec Corporation)
R3 TuneUpUtilitiesDrv; D:\Tools\TuneUp Utilities\TuneUpUtilitiesDriver64.sys [14112 2013-12-16] (TuneUp Software)
R3 UrlFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win7_amd64\UrlFilter.sys [23016 2013-11-19] (IObit.com)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-04-15 12:42 - 2014-04-15 12:42 - 00382720 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-04-15 12:40 - 2014-04-15 12:40 - 00093864 _____ () C:\Users\Kolki\AppData\Local\GDIPFONTCACHEV1.DAT
2014-04-15 12:36 - 2014-04-15 12:36 - 00000000 __SHD () C:\Users\Kolki\AppData\Local\EmieUserList
2014-04-15 12:36 - 2014-04-15 12:36 - 00000000 __SHD () C:\Users\Kolki\AppData\Local\EmieSiteList
2014-04-14 17:35 - 2014-04-14 17:35 - 00000689 _____ () C:\Users\Public\Desktop\PDF24 Creator.lnk
2014-04-14 17:35 - 2014-04-14 17:35 - 00000677 _____ () C:\Users\Public\Desktop\PDF24 Fax.lnk
2014-04-14 17:01 - 2014-04-15 12:52 - 00044476 _____ () C:\Windows\WindowsUpdate.log
2014-04-14 16:59 - 2014-04-15 12:49 - 00000280 _____ () C:\Windows\setupact.log
2014-04-14 16:59 - 2014-04-15 12:42 - 00213320 _____ () C:\Windows\PFRO.log
2014-04-14 16:59 - 2014-04-14 16:59 - 00000000 _____ () C:\Windows\setuperr.log
2014-04-13 14:14 - 2014-04-13 14:14 - 23549440 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 17387008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 13551104 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 11745792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 05784064 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 04254720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 02767360 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-04-13 14:14 - 2014-04-13 14:14 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-04-13 14:14 - 2014-04-13 14:14 - 02260480 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 02178048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 02043904 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-04-13 14:14 - 2014-04-13 14:14 - 01967104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-04-13 14:14 - 2014-04-13 14:14 - 01789440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 01400832 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 01143808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-04-13 14:14 - 2014-04-13 14:14 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00628736 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-04-13 14:14 - 2014-04-13 14:14 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00244224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-04-13 14:14 - 2014-04-13 14:14 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-04-13 14:14 - 2014-04-13 14:14 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-04-13 14:14 - 2014-04-13 14:14 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-04-11 12:02 - 2014-04-11 12:02 - 00000000 ____D () C:\Windows\system32\x
2014-04-11 12:02 - 2014-04-11 12:02 - 00000000 ____D () C:\Windows\system32\Ȱ
2014-04-11 12:02 - 2014-04-11 12:02 - 00000000 ____D () C:\Windows\system32\3쀀
2014-04-11 11:52 - 2014-04-11 11:52 - 00000000 ____D () C:\RegBackup
2014-04-11 11:46 - 2014-04-11 11:46 - 00003304 ____N () C:\bootsqm.dat
2014-04-10 21:48 - 2014-04-10 21:48 - 00000775 _____ () C:\Users\Kolki\AppData\Roaming\Microsoft\Windows\Start Menu\BVS Solitaire Collection.LNK
2014-04-10 18:10 - 2014-04-13 18:32 - 00005124 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for Kolki-PC-Kolki Kolki-PC
2014-04-10 16:48 - 2014-04-10 16:48 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\Software Informer
2014-04-09 11:58 - 2014-03-04 11:44 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2014-04-09 11:58 - 2014-03-04 11:44 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2014-04-09 11:58 - 2014-03-04 11:44 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2014-04-09 11:58 - 2014-03-04 11:44 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2014-04-09 11:58 - 2014-03-04 11:44 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2014-04-09 11:58 - 2014-03-04 11:17 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2014-04-09 11:58 - 2014-03-04 11:16 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2014-04-09 11:58 - 2014-03-04 11:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2014-04-09 11:58 - 2014-03-04 11:16 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2014-04-09 11:58 - 2014-03-04 10:09 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2014-04-09 11:58 - 2014-03-04 10:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2014-04-09 11:58 - 2014-02-04 04:35 - 00274880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2014-04-09 11:58 - 2014-02-04 04:35 - 00190912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2014-04-09 11:58 - 2014-02-04 04:35 - 00027584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2014-04-09 11:58 - 2014-02-04 04:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll
2014-04-09 11:58 - 2014-02-04 04:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iologmsg.dll
2014-04-09 11:58 - 2014-01-24 04:37 - 01684928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2014-04-08 18:42 - 2014-04-08 18:42 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\UnH Solutions
2014-04-08 18:28 - 2014-04-15 15:25 - 00000000 ____D () C:\FRST
2014-04-08 10:58 - 2014-04-08 11:00 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\BVS Video Poker
2014-04-08 10:58 - 2014-04-08 10:58 - 00000678 _____ () C:\Users\Kolki\Desktop\BVS Video Poker.lnk
2014-04-08 10:04 - 2014-04-08 10:04 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\abelhadigital.com
2014-04-08 10:04 - 2014-04-08 10:04 - 00000000 ____D () C:\ProgramData\abelhadigital.com
2014-04-07 23:14 - 2014-04-07 23:14 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\GameHouse
2014-04-07 23:14 - 2014-04-07 23:14 - 00000000 ____D () C:\ProgramData\n7-89-o9-3r-4t-r9
2014-04-07 22:06 - 2014-04-07 22:06 - 00003704 _____ () C:\Windows\System32\Tasks\Java Update Scheduler
2014-04-06 12:51 - 2014-04-06 12:55 - 00090819 _____ () C:\Windows\system32\activity.txt
2014-04-06 12:43 - 2014-04-06 12:46 - 00157662 _____ () C:\Windows\system32\aactivity.txt
2014-04-06 12:42 - 2014-04-06 12:42 - 00000000 _____ () C:\Windows\system32\.activity.txt
2014-04-05 14:51 - 2014-04-09 14:55 - 00000000 ____D () C:\Windows\ERUNT
2014-04-05 14:46 - 2014-04-05 14:47 - 00000000 ____D () C:\Users\Kolki\AppData\Local\Adobe
2014-04-05 14:44 - 2014-04-05 14:44 - 00000000 ____D () C:\ProgramData\Oracle
2014-04-05 14:40 - 2014-04-05 14:40 - 00000000 ___HD () C:\Windows\msdownld.tmp
2014-04-05 12:39 - 2014-04-05 12:39 - 00002948 _____ () C:\Windows\System32\Tasks\{E3170F08-F3E8-42C8-A8D6-428997C82BF6}
2014-04-04 15:28 - 2014-04-04 15:28 - 00000771 _____ () C:\Users\Public\Desktop\WinX DVD Ripper Platinum.lnk
2014-04-04 15:28 - 2014-04-04 15:28 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\Digiarty
2014-04-04 10:45 - 2014-04-04 10:45 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\LULU_Software_Limited
2014-04-04 10:04 - 2014-04-04 10:04 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\AMozilla
2014-04-04 10:04 - 2014-04-04 10:04 - 00000000 ____D () C:\Users\Kolki\AppData\Local\AMozilla
2014-04-03 23:35 - 2014-04-03 23:35 - 00001435 _____ () C:\Users\Kolki\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-04-03 23:31 - 2014-04-03 23:31 - 00000000 ____D () C:\Users\Kolki\AppData\Local\Apple Computer
2014-04-03 23:24 - 2014-04-03 23:24 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\Opera Software
2014-04-03 23:24 - 2014-04-03 23:24 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\FreeFLVConverter
2014-04-03 23:24 - 2014-04-03 23:24 - 00000000 ____D () C:\Users\Kolki\AppData\Local\Opera Software
2014-04-03 21:56 - 2014-04-03 21:56 - 00000000 ____D () C:\Programm Files\\Software Informer
2014-04-03 21:55 - 2014-04-03 21:55 - 00000622 _____ () C:\Users\Kolki\Desktop\SIW GOTD.lnk
2014-04-03 16:59 - 2014-04-09 18:11 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\mIRC
2014-04-03 14:20 - 2014-04-15 14:02 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-04-03 14:19 - 2014-04-05 12:21 - 00000712 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-04-03 14:19 - 2014-04-03 09:51 - 00088280 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-04-03 14:19 - 2014-04-03 09:51 - 00063192 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-04-03 14:19 - 2014-04-03 09:50 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-04-01 23:08 - 2014-04-01 23:08 - 00018143 _____ () C:\Users\Kolki\AppData\Local\recently-used.xbel
2014-04-01 19:36 - 2014-04-01 19:36 - 00000000 ____D () C:\Users\Kolki\AppData\Local\Wondershare
2014-04-01 19:35 - 2014-04-01 19:35 - 00000696 _____ () C:\Users\Public\Desktop\Wondershare Video Editor.lnk
2014-04-01 16:52 - 2014-04-01 16:52 - 00000000 ____D () C:\Users\Public\CyberLink
2014-04-01 16:52 - 2014-04-01 16:52 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\CyberLink
2014-04-01 16:51 - 2014-04-01 16:51 - 00000000 ____D () C:\Windows\System32\Tasks\Apple
2014-04-01 16:51 - 2014-04-01 16:51 - 00000000 ____D () C:\Users\Kolki\AppData\Local\Apple
2014-04-01 16:51 - 2014-04-01 16:51 - 00000000 ____D () C:\ProgramData\Apple Computer
2014-04-01 16:51 - 2014-04-01 16:51 - 00000000 ____D () C:\ProgramData\Apple
2014-04-01 16:48 - 2014-04-15 12:31 - 00000000 ____D () C:\ProgramData\install_clap
2014-04-01 16:44 - 2014-04-01 16:52 - 00000000 ____D () C:\ProgramData\CyberLink
2014-04-01 11:43 - 2013-10-31 02:26 - 00397312 _____ (Koyote-Lab Inc) C:\Windows\SysWOW64\TubeFinder.exe
2014-04-01 11:43 - 2011-09-28 09:18 - 00364544 _____ () C:\Windows\SysWOW64\PropertyGrid.ocx
2014-04-01 11:43 - 2011-09-28 09:18 - 00208500 _____ () C:\Windows\SysWOW64\ReyXpBasics.tlb
2014-04-01 11:43 - 2011-09-28 09:18 - 00152848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\COMDLG32.OCX
2014-04-01 11:43 - 2011-09-28 09:18 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCMCFR.DLL
2014-04-01 11:43 - 2011-09-28 09:18 - 00119568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VB6FR.DLL
2014-04-01 11:43 - 2011-09-28 09:18 - 00101888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VB6STKIT.DLL
2014-04-01 11:43 - 2011-09-28 09:18 - 00084512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PICCLP32.OCX
2014-04-01 11:43 - 2011-09-28 09:18 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CMDLGFR.DLL
2014-04-01 11:43 - 2011-09-28 09:18 - 00024576 _____ () C:\Windows\SysWOW64\ControlSubX.ocx
2014-04-01 11:43 - 2011-09-28 09:18 - 00009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PCCLPFR.DLL
2014-04-01 10:28 - 2014-04-01 10:28 - 00000000 ____D () C:\Users\Kolki\AppData\Local\WSHelper
2014-03-31 15:47 - 2014-03-31 15:47 - 00000000 ____D () C:\ProgramData\Ashampoo
2014-03-31 15:39 - 2014-03-31 15:39 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\QuickScan
2014-03-31 12:32 - 2014-03-31 12:32 - 00000000 ____D () C:\Users\Kolki\AppData\Local\Movavi
2014-03-31 12:32 - 2014-03-31 12:32 - 00000000 ____D () C:\ProgramData\Movavi
2014-03-31 12:19 - 2013-08-22 20:09 - 00217176 _____ () C:\Windows\SysWOW64\unrar.dll
2014-03-30 19:38 - 2014-03-30 19:38 - 00000000 ____D () C:\Windows\System32\Tasks\Norton Internet Security
2014-03-29 13:36 - 2014-04-15 12:49 - 00000374 _____ () C:\Windows\system32\Drivers\etc\hosts.ics
2014-03-29 13:01 - 2014-04-02 15:25 - 00000000 ____D () C:\Users\Kolki\AppData\Local\Samsung
2014-03-29 13:00 - 2014-01-23 19:23 - 04659712 _____ (Dmitry Streblechenko) C:\Windows\SysWOW64\Redemption.dll
2014-03-29 13:00 - 2014-01-23 19:23 - 00144664 _____ (MAPILab Ltd. & Add-in Express Ltd.) C:\Windows\SysWOW64\secman.dll
2014-03-28 17:44 - 2014-03-28 17:44 - 00000664 _____ () C:\Users\Kolki\Desktop\IrfanView.lnk
2014-03-28 17:44 - 2014-03-28 17:44 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IrfanView
2014-03-26 16:18 - 2014-03-26 16:18 - 00003226 _____ () C:\Windows\System32\Tasks\{9C955A1A-8622-4FEC-A6A1-B72E00DD1320}
2014-03-26 13:24 - 2014-03-26 13:28 - 00000000 ____D () C:\Windows\uninstall
2014-03-25 16:46 - 2014-03-25 16:46 - 00000000 ____D () C:\Users\Public\ABBYY FineReader Engine 9.0
2014-03-25 16:46 - 2014-03-25 16:46 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\ABBYY FineReader Engine 9.0
2014-03-25 16:46 - 2014-03-25 16:46 - 00000000 ____D () C:\Users\Kolki\AppData\Local\ABBYY FineReader Engine 9.0
2014-03-25 16:19 - 2014-03-25 16:19 - 00000825 _____ () C:\Users\Public\Desktop\TraXEx-Schredder.lnk
2014-03-25 16:19 - 2014-03-25 16:19 - 00000803 _____ () C:\Users\Public\Desktop\TraXEx-Löschautomat.lnk
2014-03-25 16:19 - 2014-03-25 16:19 - 00000795 _____ () C:\Users\Public\Desktop\TraXEx PC-Putzer.lnk
2014-03-25 15:43 - 2014-03-31 12:38 - 00000000 ____D () C:\ProgramData\Movavi Video Editor 9 SE
2014-03-25 15:37 - 2014-03-25 15:37 - 00000000 ____D () C:\Users\Kolki\AppData\Local\TuneUp Software
2014-03-25 15:37 - 2014-03-20 15:44 - 00043320 _____ (TuneUp Software) C:\Windows\system32\uxtuneup.dll
2014-03-25 15:37 - 2014-03-20 15:44 - 00036152 _____ (TuneUp Software) C:\Windows\SysWOW64\uxtuneup.dll
2014-03-25 13:34 - 2014-03-25 13:34 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\MOVAVI
2014-03-25 12:58 - 2014-03-26 16:09 - 00003172 _____ () C:\Windows\System32\Tasks\SmartDefrag3_Update
2014-03-25 12:58 - 2014-03-25 12:58 - 00888536 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys
2014-03-25 12:58 - 2014-03-25 12:58 - 00073800 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll
2014-03-25 12:52 - 2014-02-07 03:23 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-03-25 12:52 - 2014-01-29 04:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2014-03-25 12:52 - 2014-01-29 04:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2014-03-25 12:52 - 2014-01-28 04:32 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2014-03-25 12:51 - 2014-02-04 04:32 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-03-25 12:51 - 2014-02-04 04:32 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2014-03-25 12:51 - 2014-02-04 04:04 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2014-03-25 12:51 - 2014-02-04 04:04 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
==================== One Month Modified Files and Folders =======
2014-04-15 15:25 - 2014-04-08 18:28 - 00000000 ____D () C:\FRST
2014-04-15 14:02 - 2014-04-03 14:20 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-04-15 12:56 - 2009-07-14 06:45 - 00031808 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-04-15 12:56 - 2009-07-14 06:45 - 00031808 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-04-15 12:54 - 2011-04-12 09:43 - 00698688 _____ () C:\Windows\system32\perfh007.dat
2014-04-15 12:54 - 2011-04-12 09:43 - 00148828 _____ () C:\Windows\system32\perfc007.dat
2014-04-15 12:54 - 2009-07-14 07:13 - 01618320 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-04-15 12:52 - 2014-04-14 17:01 - 00044476 _____ () C:\Windows\WindowsUpdate.log
2014-04-15 12:50 - 2014-03-04 19:48 - 00000000 ___RD () C:\Users\Kolki\Dropbox
2014-04-15 12:50 - 2014-03-04 19:47 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\Dropbox
2014-04-15 12:49 - 2014-04-14 16:59 - 00000280 _____ () C:\Windows\setupact.log
2014-04-15 12:49 - 2014-03-29 13:36 - 00000374 _____ () C:\Windows\system32\Drivers\etc\hosts.ics
2014-04-15 12:49 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-04-15 12:42 - 2014-04-15 12:42 - 00382720 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-04-15 12:42 - 2014-04-14 16:59 - 00213320 _____ () C:\Windows\PFRO.log
2014-04-15 12:40 - 2014-04-15 12:40 - 00093864 _____ () C:\Users\Kolki\AppData\Local\GDIPFONTCACHEV1.DAT
2014-04-15 12:37 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-04-15 12:36 - 2014-04-15 12:36 - 00000000 __SHD () C:\Users\Kolki\AppData\Local\EmieUserList
2014-04-15 12:36 - 2014-04-15 12:36 - 00000000 __SHD () C:\Users\Kolki\AppData\Local\EmieSiteList
2014-04-15 12:31 - 2014-04-01 16:48 - 00000000 ____D () C:\ProgramData\install_clap
2014-04-15 10:52 - 2014-02-15 14:08 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\FileZilla
2014-04-14 17:35 - 2014-04-14 17:35 - 00000689 _____ () C:\Users\Public\Desktop\PDF24 Creator.lnk
2014-04-14 17:35 - 2014-04-14 17:35 - 00000677 _____ () C:\Users\Public\Desktop\PDF24 Fax.lnk
2014-04-14 16:59 - 2014-04-14 16:59 - 00000000 _____ () C:\Windows\setuperr.log
2014-04-13 23:26 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-04-13 18:32 - 2014-04-10 18:10 - 00005124 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for Kolki-PC-Kolki Kolki-PC
2014-04-13 18:04 - 2014-02-15 13:07 - 00000000 ____D () C:\Users\Kolki\AppData\Local\CrashDumps
2014-04-13 14:14 - 2014-04-13 14:14 - 23549440 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 17387008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 13551104 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 11745792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 05784064 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 04254720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 02767360 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-04-13 14:14 - 2014-04-13 14:14 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-04-13 14:14 - 2014-04-13 14:14 - 02260480 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 02178048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 02043904 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-04-13 14:14 - 2014-04-13 14:14 - 01967104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-04-13 14:14 - 2014-04-13 14:14 - 01789440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 01400832 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 01143808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-04-13 14:14 - 2014-04-13 14:14 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00628736 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-04-13 14:14 - 2014-04-13 14:14 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00244224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-04-13 14:14 - 2014-04-13 14:14 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-04-13 14:14 - 2014-04-13 14:14 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-04-13 14:14 - 2014-04-13 14:14 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-04-13 14:14 - 2014-04-13 14:14 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-04-11 12:33 - 2014-02-14 19:07 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\TP-LINK
2014-04-11 12:33 - 2014-02-14 18:47 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\GHISLER
2014-04-11 12:33 - 2014-02-14 18:41 - 00000000 ____D () C:\Users\Kolki
2014-04-11 12:33 - 2011-04-12 09:54 - 00000000 ___RD () C:\Users\Public\Recorded TV
2014-04-11 12:33 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\registration
2014-04-11 12:02 - 2014-04-11 12:02 - 00000000 ____D () C:\Windows\system32\x
2014-04-11 12:02 - 2014-04-11 12:02 - 00000000 ____D () C:\Windows\system32\Ȱ
2014-04-11 12:02 - 2014-04-11 12:02 - 00000000 ____D () C:\Windows\system32\3쀀
2014-04-11 11:52 - 2014-04-11 11:52 - 00000000 ____D () C:\RegBackup
2014-04-11 11:46 - 2014-04-11 11:46 - 00003304 ____N () C:\bootsqm.dat
2014-04-10 21:48 - 2014-04-10 21:48 - 00000775 _____ () C:\Users\Kolki\AppData\Roaming\Microsoft\Windows\Start Menu\BVS Solitaire Collection.LNK
2014-04-10 16:48 - 2014-04-10 16:48 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\Software Informer
2014-04-10 14:51 - 2014-03-04 19:47 - 00000000 ___RD () C:\Users\Kolki\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\StartUp
2014-04-09 20:41 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache
2014-04-09 18:11 - 2014-04-03 16:59 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\mIRC
2014-04-09 15:34 - 2014-02-15 15:23 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\vlc
2014-04-09 14:55 - 2014-04-05 14:51 - 00000000 ____D () C:\Windows\ERUNT
2014-04-09 12:41 - 2014-02-16 12:19 - 00000000 ____D () C:\Windows\system32\MRT
2014-04-09 12:40 - 2014-02-16 12:19 - 90655440 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-04-08 18:42 - 2014-04-08 18:42 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\UnH Solutions
2014-04-08 15:21 - 2014-02-15 12:54 - 00000000 ____D () C:\ProgramData\ProductData
2014-04-08 11:34 - 2014-02-15 12:37 - 00000072 _____ () C:\Users\Public\LMDebug.log
2014-04-08 11:00 - 2014-04-08 10:58 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\BVS Video Poker
2014-04-08 10:58 - 2014-04-08 10:58 - 00000678 _____ () C:\Users\Kolki\Desktop\BVS Video Poker.lnk
2014-04-08 10:04 - 2014-04-08 10:04 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\abelhadigital.com
2014-04-08 10:04 - 2014-04-08 10:04 - 00000000 ____D () C:\ProgramData\abelhadigital.com
2014-04-07 23:14 - 2014-04-07 23:14 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\GameHouse
2014-04-07 23:14 - 2014-04-07 23:14 - 00000000 ____D () C:\ProgramData\n7-89-o9-3r-4t-r9
2014-04-07 23:08 - 2014-02-19 11:45 - 00000000 ____D () C:\Windows\System32\Tasks\Games
2014-04-07 22:06 - 2014-04-07 22:06 - 00003704 _____ () C:\Windows\System32\Tasks\Java Update Scheduler
2014-04-06 12:55 - 2014-04-06 12:51 - 00090819 _____ () C:\Windows\system32\activity.txt
2014-04-06 12:46 - 2014-04-06 12:43 - 00157662 _____ () C:\Windows\system32\aactivity.txt
2014-04-06 12:42 - 2014-04-06 12:42 - 00000000 _____ () C:\Windows\system32\.activity.txt
2014-04-05 14:47 - 2014-04-05 14:46 - 00000000 ____D () C:\Users\Kolki\AppData\Local\Adobe
2014-04-05 14:47 - 2014-02-14 19:14 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-04-05 14:47 - 2014-02-14 19:14 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-04-05 14:44 - 2014-04-05 14:44 - 00000000 ____D () C:\ProgramData\Oracle
2014-04-05 14:40 - 2014-04-05 14:40 - 00000000 ___HD () C:\Windows\msdownld.tmp
2014-04-05 12:39 - 2014-04-05 12:39 - 00002948 _____ () C:\Windows\System32\Tasks\{E3170F08-F3E8-42C8-A8D6-428997C82BF6}
2014-04-05 12:21 - 2014-04-03 14:19 - 00000712 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-04-04 15:42 - 2014-02-15 14:08 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client
2014-04-04 15:28 - 2014-04-04 15:28 - 00000771 _____ () C:\Users\Public\Desktop\WinX DVD Ripper Platinum.lnk
2014-04-04 15:28 - 2014-04-04 15:28 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\Digiarty
2014-04-04 10:45 - 2014-04-04 10:45 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\LULU_Software_Limited
2014-04-04 10:04 - 2014-04-04 10:04 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\AMozilla
2014-04-04 10:04 - 2014-04-04 10:04 - 00000000 ____D () C:\Users\Kolki\AppData\Local\AMozilla
2014-04-03 23:35 - 2014-04-03 23:35 - 00001435 _____ () C:\Users\Kolki\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-04-03 23:31 - 2014-04-03 23:31 - 00000000 ____D () C:\Users\Kolki\AppData\Local\Apple Computer
2014-04-03 23:24 - 2014-04-03 23:24 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\Opera Software
2014-04-03 23:24 - 2014-04-03 23:24 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\FreeFLVConverter
2014-04-03 23:24 - 2014-04-03 23:24 - 00000000 ____D () C:\Users\Kolki\AppData\Local\Opera Software
2014-04-03 22:17 - 2014-03-04 19:48 - 00001021 _____ () C:\Users\Kolki\Desktop\Dropbox.lnk
2014-04-03 22:17 - 2014-03-04 19:47 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2014-04-03 21:56 - 2014-04-03 21:56 - 00000000 ____D () C:\Programm Files\\Software Informer
2014-04-03 21:56 - 2014-03-03 14:44 - 00000000 ___RD () C:\Programm Files
2014-04-03 21:55 - 2014-04-03 21:55 - 00000622 _____ () C:\Users\Kolki\Desktop\SIW GOTD.lnk
2014-04-03 14:34 - 2009-07-14 05:20 - 00000000 ___HD () C:\Windows\system32\GroupPolicy
2014-04-03 14:19 - 2014-02-19 00:01 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-04-03 14:10 - 2014-03-03 00:30 - 00002886 _____ () C:\Windows\System32\Tasks\Uninstaller_SkipUac_Administrator
2014-04-03 09:51 - 2014-04-03 14:19 - 00088280 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-04-03 09:51 - 2014-04-03 14:19 - 00063192 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-04-03 09:50 - 2014-04-03 14:19 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-04-02 15:25 - 2014-03-29 13:01 - 00000000 ____D () C:\Users\Kolki\AppData\Local\Samsung
2014-04-02 15:25 - 2014-03-04 17:39 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\Samsung
2014-04-02 15:25 - 2014-02-15 12:36 - 00000000 ____D () C:\ProgramData\Samsung
2014-04-02 15:15 - 2014-02-16 13:58 - 00000000 ____D () C:\Users\Kolki\.thumbnails
2014-04-02 14:28 - 2014-02-24 23:37 - 00000000 ____D () C:\Users\Kolki\AppData\Local\GHISLER
2014-04-01 23:08 - 2014-04-01 23:08 - 00018143 _____ () C:\Users\Kolki\AppData\Local\recently-used.xbel
2014-04-01 23:08 - 2014-03-04 12:26 - 00000000 ____D () C:\Users\Kolki\AppData\Local\gtk-2.0
2014-04-01 19:36 - 2014-04-01 19:36 - 00000000 ____D () C:\Users\Kolki\AppData\Local\Wondershare
2014-04-01 19:35 - 2014-04-01 19:35 - 00000696 _____ () C:\Users\Public\Desktop\Wondershare Video Editor.lnk
2014-04-01 17:45 - 2014-02-15 12:54 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\Apple Computer
2014-04-01 16:52 - 2014-04-01 16:52 - 00000000 ____D () C:\Users\Public\CyberLink
2014-04-01 16:52 - 2014-04-01 16:52 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\CyberLink
2014-04-01 16:52 - 2014-04-01 16:44 - 00000000 ____D () C:\ProgramData\CyberLink
2014-04-01 16:51 - 2014-04-01 16:51 - 00000000 ____D () C:\Windows\System32\Tasks\Apple
2014-04-01 16:51 - 2014-04-01 16:51 - 00000000 ____D () C:\Users\Kolki\AppData\Local\Apple
2014-04-01 16:51 - 2014-04-01 16:51 - 00000000 ____D () C:\ProgramData\Apple Computer
2014-04-01 16:51 - 2014-04-01 16:51 - 00000000 ____D () C:\ProgramData\Apple
2014-04-01 13:04 - 2014-03-04 17:39 - 00000000 ____D () C:\Users\Kolki\AppData\Local\Downloaded Installations
2014-04-01 10:28 - 2014-04-01 10:28 - 00000000 ____D () C:\Users\Kolki\AppData\Local\WSHelper
2014-03-31 15:47 - 2014-03-31 15:47 - 00000000 ____D () C:\ProgramData\Ashampoo
2014-03-31 15:39 - 2014-03-31 15:39 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\QuickScan
2014-03-31 12:38 - 2014-03-25 15:43 - 00000000 ____D () C:\ProgramData\Movavi Video Editor 9 SE
2014-03-31 12:32 - 2014-03-31 12:32 - 00000000 ____D () C:\Users\Kolki\AppData\Local\Movavi
2014-03-31 12:32 - 2014-03-31 12:32 - 00000000 ____D () C:\ProgramData\Movavi
2014-03-30 19:38 - 2014-03-30 19:38 - 00000000 ____D () C:\Windows\System32\Tasks\Norton Internet Security
2014-03-30 19:30 - 2014-02-14 19:40 - 00003214 _____ () C:\Windows\System32\Tasks\Norton WSC Integration
2014-03-30 19:30 - 2014-02-14 19:40 - 00000000 ____D () C:\Windows\system32\Drivers\NISx64
2014-03-28 17:44 - 2014-03-28 17:44 - 00000664 _____ () C:\Users\Kolki\Desktop\IrfanView.lnk
2014-03-28 17:44 - 2014-03-28 17:44 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IrfanView
2014-03-27 15:13 - 2009-07-14 07:08 - 00032632 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-03-26 19:46 - 2014-03-08 00:17 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\calibre
2014-03-26 16:18 - 2014-03-26 16:18 - 00003226 _____ () C:\Windows\System32\Tasks\{9C955A1A-8622-4FEC-A6A1-B72E00DD1320}
2014-03-26 16:10 - 2014-02-15 12:54 - 00003222 _____ () C:\Windows\System32\Tasks\Driver Booster Scan
2014-03-26 16:09 - 2014-03-25 12:58 - 00003172 _____ () C:\Windows\System32\Tasks\SmartDefrag3_Update
2014-03-26 13:28 - 2014-03-26 13:24 - 00000000 ____D () C:\Windows\uninstall
2014-03-25 18:57 - 2014-02-16 13:01 - 00000000 ____D () C:\Users\Kolki\Canon Scan
2014-03-25 16:46 - 2014-03-25 16:46 - 00000000 ____D () C:\Users\Public\ABBYY FineReader Engine 9.0
2014-03-25 16:46 - 2014-03-25 16:46 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\ABBYY FineReader Engine 9.0
2014-03-25 16:46 - 2014-03-25 16:46 - 00000000 ____D () C:\Users\Kolki\AppData\Local\ABBYY FineReader Engine 9.0
2014-03-25 16:34 - 2014-02-17 17:31 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\Canon
2014-03-25 16:19 - 2014-03-25 16:19 - 00000825 _____ () C:\Users\Public\Desktop\TraXEx-Schredder.lnk
2014-03-25 16:19 - 2014-03-25 16:19 - 00000803 _____ () C:\Users\Public\Desktop\TraXEx-Löschautomat.lnk
2014-03-25 16:19 - 2014-03-25 16:19 - 00000795 _____ () C:\Users\Public\Desktop\TraXEx PC-Putzer.lnk
2014-03-25 15:55 - 2014-02-18 23:31 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\Genie9
2014-03-25 15:37 - 2014-03-25 15:37 - 00000000 ____D () C:\Users\Kolki\AppData\Local\TuneUp Software
2014-03-25 13:34 - 2014-03-25 13:34 - 00000000 ____D () C:\Users\Kolki\AppData\Roaming\MOVAVI
2014-03-25 12:58 - 2014-03-25 12:58 - 00888536 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys
2014-03-25 12:58 - 2014-03-25 12:58 - 00073800 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll
2014-03-25 12:58 - 2014-02-14 18:58 - 00107552 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll
2014-03-20 15:44 - 2014-03-25 15:37 - 00043320 _____ (TuneUp Software) C:\Windows\system32\uxtuneup.dll
2014-03-20 15:44 - 2014-03-25 15:37 - 00036152 _____ (TuneUp Software) C:\Windows\SysWOW64\uxtuneup.dll
2014-03-20 15:44 - 2014-02-15 15:26 - 00040760 _____ (TuneUp Software) C:\Windows\system32\TURegOpt.exe
2014-03-20 15:44 - 2014-02-15 15:26 - 00029496 _____ (TuneUp Software) C:\Windows\system32\authuitu.dll
2014-03-20 15:44 - 2014-02-15 15:26 - 00025400 _____ (TuneUp Software) C:\Windows\SysWOW64\authuitu.dll
Some content of TEMP:
====================
C:\Users\Kolki\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpwnlfie.dll
C:\Users\Kolki\AppData\Local\Temp\Foxit Reader Updater.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-04-09 20:34
==================== End Of Log ============================
--- --- ---
und hier das Addtition log:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 14-04-2014
Ran by Kolki at 2014-04-15 15:25:57
Running from D:\Downloads
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Norton Internet Security (Enabled - Up to date) {D87FA2C0-F526-77B1-D6EC-0EDF3936CEDB}
AS: Norton Internet Security (Enabled - Up to date) {631E4324-D31C-783F-EC5C-35AD42B18466}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: IObit Malware Fighter (Enabled - Up to date) {A751AC20-3B48-5237-898A-78C4436BB78D}
FW: Norton Internet Security (Enabled) {E04423E5-BF49-76E9-FDB3-A7EAC7E589A0}
==================== Installed Programs ======================
Adobe Flash Player 12 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 12.0.0.77 - Adobe Systems Incorporated)
Apple Application Support (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
BVS Video Poker version 2.1 (HKLM-x32\...\BVSPOK_is1) (Version: 2.1 - BVS Development Corporation)
calibre (HKLM-x32\...\{FEFD4E74-85EE-4BA6-AD02-E0F99BC3F51E}) (Version: 1.31.0 - Kovid Goyal)
CanoScan LiDE 110 Scanner Driver (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_cnq2414) (Version: - )
Driver Booster (HKLM-x32\...\Driver Booster_is1) (Version: 1.2 - IObit)
Dropbox (HKCU\...\Dropbox) (Version: 2.6.26 - Dropbox, Inc.)
ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version: - )
FileZilla Client 3.8.0 (HKCU\...\FileZilla Client) (Version: 3.8.0 - Tim Kosse)
Genie Timeline (HKLM-x32\...\Genie Timeline) (Version: 5.0 - Genie9)
IObit Uninstaller (HKLM-x32\...\IObitUninstall) (Version: 3.2.9.10 - IObit)
IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.37 - Irfan Skiljan)
Malwarebytes Anti-Malware Version 2.0.1.1004 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.1.1004 - Malwarebytes Corporation)
Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Access MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft DCF MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Excel MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Groove MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft InfoPath MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Lync MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office 32-bit Components 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Korrekturhilfen 2013 - Deutsch (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office OSM MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office OSM UX MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4420.1017 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Proofing (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - English (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - Italiano (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Shared 32-bit MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft OneNote MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Outlook MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft PowerPoint MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Primary Interoperability Assemblies 2005 (HKLM-x32\...\{2C303EE0-A595-3543-A71A-931C7AC40EDE}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Publisher MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 4.0.60310.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Word MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
Mozilla Firefox 28.0 (x86 de) (HKCU\...\Mozilla Firefox 28.0 (x86 de)) (Version: 28.0 - Mozilla)
Norton Internet Security (HKLM-x32\...\NIS) (Version: 21.2.0.38 - Symantec Corporation)
Outils de vérification linguistique 2013 de Microsoft Office*- Français (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden
PDF24 Creator 6.3.2 (HKLM-x32\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version: - PDF24.org)
QuickTime 7 (HKLM-x32\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: 7.75.80.95 - Apple Inc.)
SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.33.0 - SAMSUNG Electronics Co., Ltd.)
SIW Pro Edition (GOTD) (HKLM-x32\...\{AB67580-257C-45FF-B8F4-C8C30682091A}_is1) (Version: 2014.01.30 - Topala Software Solutions)
Smart Defrag 3 (HKLM-x32\...\Smart Defrag 3_is1) (Version: 3.0 - IObit)
Software Informer 1.2 (HKLM\...\Software Informer_is1) (Version: - Informer Technologies, Inc.)
SWF Opener (HKLM-x32\...\{01386D1F-ADE7-43B4-A4E9-312FC5BC726F}_is1) (Version: 1.3 - UnH Solutions)
TextPad 7 (HKLM\...\{52C23381-8FED-4DB0-A07F-CCE9C9061475}) (Version: 7.1.0 - Helios)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.01 - Ghisler Software GmbH)
TraXEx 6.0 (HKLM-x32\...\TraXEx_is1) (Version: 6.0.0.0 - Alexander Miehlke Softwareentwicklung)
TuneUp Utilities 2014 (de-DE) (x32 Version: 14.0.1000.275 - TuneUp Software) Hidden
TuneUp Utilities 2014 (HKLM-x32\...\TuneUp Utilities) (Version: 14.0.1000.275 - TuneUp Software)
TuneUp Utilities 2014 (x32 Version: 14.0.1000.275 - TuneUp Software) Hidden
Update for Microsoft Office 2013 (KB2726961) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{F0316FE0-38FC-4F3E-81FA-8B51BB649901}) (Version: - Microsoft)
Update for Microsoft Office 2013 (KB2752100) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{3D68A478-00CE-4052-87D7-C976EC83CB9D}) (Version: - Microsoft)
Update for Microsoft Office 2013 (KB2752100) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{3D68A478-00CE-4052-87D7-C976EC83CB9D}) (Version: - Microsoft)
Update for Microsoft Office 2013 (KB2752101) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{8449754F-577E-4EC3-B9D4-108395B1680E}) (Version: - Microsoft)
Update for Microsoft Office 2013 (KB2760311) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{997008C6-AFBB-4671-830E-D4291DB4EE8F}) (Version: - Microsoft)
Update for Microsoft Office 2013 (KB2760621) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{E285B62C-A9CC-495A-8FFE-ED9BCA9C118F}) (Version: - Microsoft)
Update for Microsoft Office 2013 (KB2760621) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{E285B62C-A9CC-495A-8FFE-ED9BCA9C118F}) (Version: - Microsoft)
Update for Microsoft Office 2013 (KB2760624) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{CC352B49-75F0-457F-AED0-3879CC1CB95E}) (Version: - Microsoft)
Update for Microsoft Office 2013 (KB2760624) 64-Bit Edition (HKLM\...\{90150000-006E-0407-1000-0000000FF1CE}_Office15.PROPLUS_{7CE43D68-795A-47B4-8DC6-BF103F33BB38}) (Version: - Microsoft)
Update for Microsoft Office 2013 (KB2760624) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{CC352B49-75F0-457F-AED0-3879CC1CB95E}) (Version: - Microsoft)
Update for Microsoft PowerPoint 2013 (KB2726947) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{ACA1C952-1AB5-4E21-ABF3-FAB8481E7297}) (Version: - Microsoft)
Update for Microsoft PowerPoint 2013 (KB2726947) 64-Bit Edition (HKLM\...\{90150000-0018-0407-1000-0000000FF1CE}_Office15.PROPLUS_{ECC41633-387D-4BA9-A47B-9E112DD85474}) (Version: - Microsoft)
Update for Microsoft SharePoint Workspace 2013 (KB2760358) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{35715E39-DD87-4540-A25E-3C5E2123C34A}) (Version: - Microsoft)
Update for Microsoft SharePoint Workspace 2013 (KB2760358) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{35715E39-DD87-4540-A25E-3C5E2123C34A}) (Version: - Microsoft)
Update for Microsoft Visio Viewer 2013 (KB2751994) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{847C8335-DE78-4777-9A43-673313C07D40}) (Version: - Microsoft)
Update for Microsoft Word 2013 (KB2738044) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{1B150902-ECBA-42C9-838A-1CDFE416D0E2}) (Version: - Microsoft)
Update for Microsoft Word 2013 (KB2752073) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{BF07EA99-74F1-41D9-8778-474666DE9C08}) (Version: - Microsoft)
Update for Microsoft Word 2013 (KB2752073) 64-Bit Edition (HKLM\...\{90150000-001A-0407-1000-0000000FF1CE}_Office15.PROPLUS_{61A51BD0-52A2-4A78-831C-DBB839432C7B}) (Version: - Microsoft)
Update for Microsoft Word 2013 (KB2752073) 64-Bit Edition (HKLM\...\{90150000-001B-0407-1000-0000000FF1CE}_Office15.PROPLUS_{61A51BD0-52A2-4A78-831C-DBB839432C7B}) (Version: - Microsoft)
Update for Microsoft Word 2013 (KB2752073) 64-Bit Edition (HKLM\...\{90150000-012B-0407-1000-0000000FF1CE}_Office15.PROPLUS_{61A51BD0-52A2-4A78-831C-DBB839432C7B}) (Version: - Microsoft)
VLC media player 2.1.4 (HKLM\...\VLC media player) (Version: 2.1.4 - VideoLAN)
WinRAR 5.01 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH)
WinX DVD Ripper Platinum 7.5.4 (HKLM-x32\...\WinX DVD Ripper Platinum_is1) (Version: - Digiarty Software, Inc.)
Wondershare Video Editor(Build 3.5.1) (HKLM-x32\...\Wondershare Video Editor_is1) (Version: - Wondershare Software)
==================== Restore Points =========================
08-04-2014 08:25:05 Installed calibre
08-04-2014 13:58:32 Removed Java 7 Update 51
08-04-2014 21:05:12 Installed Microsoft Primary Interoperability Assemblies 2005
08-04-2014 21:05:22 Installed STK 10.
09-04-2014 10:40:38 Windows Update
09-04-2014 16:13:25 Removed STK 10.
09-04-2014 16:13:59 Removed STK License Manager.
09-04-2014 16:14:10 Removed STK Parallel Computing 10.
11-04-2014 09:52:32 Tweaking.com - Windows Repair
11-04-2014 10:31:44 Wiederherstellungsvorgang
13-04-2014 12:14:13 Windows Modules Installer
13-04-2014 17:00:03 Windows-Sicherung
==================== Hosts content: ==========================
2009-07-14 04:34 - 2014-04-08 10:06 - 17207124 ____A C:\Windows\system32\Drivers\etc\hosts
0.0.0.0 asy.a8ww.net
0.0.0.0 cl21.v4.adaction.se
0.0.0.0 wad.adbasket.net
0.0.0.0 show.adclick.lv
0.0.0.0 222-33544_999.pub.adfirmative.com
0.0.0.0 c.adfirmative.com
0.0.0.0 rc.de.adlink.net #[Tracking.Cookie]
0.0.0.0 tr.de.adlink.net
0.0.0.0 admedien.com
0.0.0.0 www.admedien.com
0.0.0.0 ads.admodus.com #[Tracking.Cookie]
0.0.0.0 tt11.adobe.com #[adobe.tcliveus.com]
0.0.0.0 ad02.adonspot.com
0.0.0.0 e.adpower.bg
0.0.0.0 img.ads-click.com
0.0.0.0 ads.adtube.de
0.0.0.0 www.adultcommercial.net
0.0.0.0 www.adult-tracker.de
0.0.0.0 counterimg1.adultrevenueservice.com
0.0.0.0 images.adviews.de
0.0.0.0 www.adviews.de
0.0.0.0 ads.afraccess.com
0.0.0.0 atd.agencytradingdesk.net #[server down?]
0.0.0.0 www.almightytraffic.com
0.0.0.0 bokee.allyes.com
0.0.0.0 eastmoney.allyes.com
0.0.0.0 sroomafp.allyes.com
0.0.0.0 tom.allyes.com
0.0.0.0 advloc.alice.it
There are 1000 more lines.
==================== Scheduled Tasks (whitelisted) =============
Task: {148ACE6F-7D46-465A-9A33-24DFFB33546F} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => D:\Programme\Microsoft_Office_2013\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)
Task: {1DC8F93E-26CC-4D3F-B65B-7D50947A9CEA} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2012-10-01] (Microsoft Corporation)
Task: {3C5174CF-A9BE-4F24-ADDF-8F5E7987C646} - System32\Tasks\SmartDefrag3_Update => C:\Program Files (x86)\IObit\Smart Defrag 3\AutoUpdate.exe [2014-01-09] (IObit)
Task: {59D28A75-4988-45F1-8A84-D2E90C3497AA} - \ParetoLogic Registration3 ATTENTION ====> No Task File
Task: {69BA3281-C3AB-49E6-9449-2BE603EC5E18} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 => D:\Tools\TuneUp Utilities\OneClick.exe [2014-03-20] (TuneUp Software)
Task: {6EBD02A2-1167-4A1B-A2CB-00A67D02D0F6} - System32\Tasks\Microsoft Office 15 Sync Maintenance for Kolki-PC-Kolki Kolki-PC => D:\Programme\Microsoft_Office_2013\Office15\MsoSync.exe [2012-10-01] (Microsoft Corporation)
Task: {778F6D5E-5C72-44B6-9F0B-96CB375CC6E6} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => Rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup
Task: {78CD7A6A-8D9B-446D-A427-81CC1B113891} - System32\Tasks\Norton Internet Security\Norton Error Processor => D:\Programme\Norton Internet Security\Engine\21.2.0.38\SymErr.exe [2014-01-30] (Symantec Corporation)
Task: {7B1E1289-D174-429A-8383-F86CD5BC91B0} - \Driver Booster Update ATTENTION ====> No Task File
Task: {86560DCD-0328-4B6A-ADCD-794BB9C98B89} - System32\Tasks\ASC7_SkipUac_Kolki => C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASC.exe [2014-03-10] (IObit)
Task: {885300E5-1CDF-4774-9441-30437BEBEDC0} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {9FF227B7-4EF9-4788-B1AF-FC20B9BBF5CB} - System32\Tasks\Games\UpdateCheck_S-1-5-21-4072658579-1215342442-2827123583-1000
Task: {AD2F2FDE-0177-42E9-AE88-F301F867E17D} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => D:\Programme\Microsoft_Office_2013\Office15\msoia.exe [2012-10-01] (Microsoft Corporation)
Task: {C413977B-8EB3-4B86-80C6-56764B07C2C8} - System32\Tasks\Driver Booster Scan => C:\Program Files (x86)\IObit\Driver Booster\Scheduler.exe [2014-01-16] (IObit)
Task: {CDB44D16-5610-443A-A4A8-DA46D1EF0853} - \ParetoLogic Update Version3 ATTENTION ====> No Task File
Task: {D62CC0D7-C075-4B4E-8A21-C50C80A17DE7} - System32\Tasks\Java Update Scheduler => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
Task: {E704E0B7-5C4D-40FC-8112-9FC3E849D954} - System32\Tasks\Norton WSC Integration => D:\Programme\Norton Internet Security\Engine\21.2.0.38\WSCStub.exe [2014-03-12] (Symantec Corporation)
Task: {ECCBF1DC-DBD2-48F2-87A8-D13D3E6C215C} - System32\Tasks\Uninstaller_SkipUac_Administrator => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [2014-03-25] (IObit)
Task: {F9076C05-D0C5-4D0F-A476-85CEB74484FA} - System32\Tasks\{E3170F08-F3E8-42C8-A8D6-428997C82BF6} => D:\Programme\Video Editor\VideoEditor.exe [2014-01-02] (Wondershare Software)
Task: {F9D5E2DB-7799-4749-84DD-8A58AD30F5C2} - System32\Tasks\Norton Internet Security\Norton Error Analyzer => D:\Programme\Norton Internet Security\Engine\21.2.0.38\SymErr.exe [2014-01-30] (Symantec Corporation)
==================== Loaded Modules (whitelisted) =============
2014-02-15 12:34 - 2011-04-11 07:26 - 00034304 _____ () C:\Windows\System32\spe__l.dll
2014-03-25 17:02 - 2013-12-29 12:18 - 00163328 _____ () D:\Tools\Genie Timeline\GSTimelineIconOverlay.gtl
2014-03-25 17:02 - 2013-11-20 09:39 - 00045568 _____ () D:\Tools\Genie Timeline\GSLogging.gtl
2014-03-25 17:02 - 2013-12-29 12:18 - 00211968 _____ () D:\Tools\Genie Timeline\Settings.gtl
2014-03-25 17:02 - 2013-11-20 09:39 - 00089600 _____ () D:\Tools\Genie Timeline\GSEncryption.gtl
2010-01-02 16:42 - 2010-01-02 16:42 - 00098304 _____ () D:\Tools\FileZilla FTP Client\fzshellext_64.dll
2014-02-14 18:50 - 2012-10-29 09:48 - 00927232 _____ () C:\Program Files (x86)\ASUS\AXSP\1.01.01\atkexComSvc.exe
2013-12-29 12:18 - 2013-12-29 12:18 - 00332800 _____ () D:\Tools\Genie Timeline\OnlineHandler.dll
2013-11-20 09:39 - 2013-11-20 09:39 - 00045568 _____ () D:\Tools\Genie Timeline\GSLogging.dll
2013-12-29 12:18 - 2013-12-29 12:18 - 00491520 _____ () D:\Tools\Genie Timeline\GSIndexDB.dll
2012-02-02 11:16 - 2012-02-02 11:16 - 00740864 _____ () D:\Tools\Genie Timeline\sqlite3.dll
2012-04-24 11:29 - 2012-04-24 11:29 - 00011264 _____ () D:\Tools\Genie Timeline\RWLock.dll
2013-12-29 12:18 - 2013-12-29 12:18 - 00211968 _____ () D:\Tools\Genie Timeline\Settings.dll
2013-11-20 09:39 - 2013-11-20 09:39 - 00089600 _____ () D:\Tools\Genie Timeline\GSEncryption.dll
2013-12-29 12:18 - 2013-12-29 12:18 - 00087040 _____ () D:\Tools\Genie Timeline\QueueManager.dll
2013-12-29 12:18 - 2013-12-29 12:18 - 00722944 _____ () D:\Tools\Genie Timeline\GSBackupManager.dll
2013-12-29 12:18 - 2013-12-29 12:18 - 00371200 _____ () D:\Tools\Genie Timeline\GSWatcher4.dll
2013-02-11 13:34 - 2013-02-11 13:34 - 00045056 _____ () D:\Tools\Genie Timeline\pcre.dll
2013-02-11 13:34 - 2013-02-11 13:34 - 00097792 _____ () D:\Tools\Genie Timeline\pcrebase.dll
2013-12-29 12:18 - 2013-12-29 12:18 - 00054784 _____ () D:\Tools\Genie Timeline\GSLogManager.dll
2012-02-02 11:16 - 2012-02-02 11:16 - 00010752 _____ () D:\Tools\Genie Timeline\VSSEngine_Proxy.dll
2013-11-20 09:39 - 2013-11-20 09:39 - 00058368 _____ () D:\Tools\Genie Timeline\GSLibrariesManager.dll
2012-02-02 11:16 - 2012-02-02 11:16 - 00031232 _____ () D:\Tools\Genie Timeline\VSSEngine_W2K3.dll
2014-03-20 15:44 - 2014-03-20 15:44 - 00675640 _____ () D:\Tools\TuneUp Utilities\avgrepliba.dll
2013-12-29 12:18 - 2013-12-29 12:18 - 00063488 _____ () D:\Tools\Genie Timeline\XBalloonMsgDll.dll
2013-11-20 09:39 - 2013-11-20 09:39 - 00093696 _____ () D:\Tools\Genie Timeline\GSCurl.dll
2014-02-15 12:54 - 2013-10-25 13:08 - 00517408 _____ () C:\Program Files (x86)\IObit\Advanced SystemCare 7\sqlite3.dll
2014-02-14 18:50 - 2014-04-15 12:49 - 00027136 _____ () C:\Program Files (x86)\ASUS\AXSP\1.01.01\PEbiosinterface32.dll
2014-02-14 18:50 - 2012-05-07 18:04 - 00104448 _____ () C:\Program Files (x86)\ASUS\AXSP\1.01.01\ATKEX.dll
2014-04-15 12:49 - 2014-04-15 12:49 - 00041984 _____ () c:\users\kolki\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpwnlfie.dll
2013-08-23 21:01 - 2013-08-23 21:01 - 25100288 _____ () C:\Users\Kolki\AppData\Roaming\Dropbox\bin\libcef.dll
2014-04-01 19:36 - 2013-07-24 09:24 - 00137728 _____ () C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\CBSCreateVC.dll
2014-03-28 11:35 - 2014-03-28 11:35 - 00093696 _____ () D:\Tools\FileZilla FTP Client\fzshellext.dll
2014-02-15 12:57 - 2013-01-15 19:48 - 00348992 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\madExcept_.bpl
2014-02-15 12:57 - 2013-01-15 19:48 - 00183616 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\madBasic_.bpl
2014-02-15 12:57 - 2013-01-15 19:48 - 00051008 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\madDisAsm_.bpl
2014-02-15 12:57 - 2013-12-12 19:46 - 08001344 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\WebUI.dll
2014-02-15 12:57 - 2013-10-16 23:17 - 00185168 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\libcurl-4.dll
2014-02-15 12:57 - 2013-05-16 20:26 - 00182080 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\unrar.dll
2014-02-15 12:57 - 2013-05-16 20:26 - 00145216 _____ () C:\Program Files (x86)\IObit\IObit Malware Fighter\zlibwapi.dll
2014-03-30 12:33 - 2014-03-30 12:33 - 03642480 _____ () D:\Programme\Firefox\mozjs.dll
2014-04-05 14:47 - 2014-04-05 14:47 - 16276872 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_77.dll
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\IMFservice => ""="Service"
==================== Disabled items from MSCONFIG ==============
MSCONFIG\Services: TuneUp.UtilitiesSvc => 2
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (04/15/2014 00:51:35 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (04/15/2014 00:47:06 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (04/15/2014 00:44:05 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (04/15/2014 11:26:04 AM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: firefox.exe, Version: 28.0.0.5186, Zeitstempel: 0x53240e37
Name des fehlerhaften Moduls: xul.dll, Version: 28.0.0.5186, Zeitstempel: 0x53240e04
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00184729
ID des fehlerhaften Prozesses: 0x970
Startzeit der fehlerhaften Anwendung: 0xfirefox.exe0
Pfad der fehlerhaften Anwendung: firefox.exe1
Pfad des fehlerhaften Moduls: firefox.exe2
Berichtskennung: firefox.exe3
Error: (04/15/2014 10:18:44 AM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: firefox.exe, Version: 28.0.0.5186, Zeitstempel: 0x53240e37
Name des fehlerhaften Moduls: xul.dll, Version: 28.0.0.5186, Zeitstempel: 0x53240e04
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00184729
ID des fehlerhaften Prozesses: 0xd48
Startzeit der fehlerhaften Anwendung: 0xfirefox.exe0
Pfad der fehlerhaften Anwendung: firefox.exe1
Pfad des fehlerhaften Moduls: firefox.exe2
Berichtskennung: firefox.exe3
Error: (04/15/2014 10:13:03 AM) (Source: Office 2013 Licensing Service) (User: )
Description: Subscription licensing service failed: -2147023838
Error: (04/15/2014 10:04:56 AM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (04/14/2014 10:03:49 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Error: (04/14/2014 10:03:46 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
Error: (04/14/2014 05:50:03 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: firefox.exe, Version: 28.0.0.5186, Zeitstempel: 0x53240e37
Name des fehlerhaften Moduls: xul.dll, Version: 28.0.0.5186, Zeitstempel: 0x53240e04
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00184729
ID des fehlerhaften Prozesses: 0x1454
Startzeit der fehlerhaften Anwendung: 0xfirefox.exe0
Pfad der fehlerhaften Anwendung: firefox.exe1
Pfad des fehlerhaften Moduls: firefox.exe2
Berichtskennung: firefox.exe3
System errors:
=============
Error: (04/15/2014 00:49:52 PM) (Source: ipnathlp) (User: )
Description: 0
Error: (04/15/2014 00:49:49 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (User: NT-AUTORITÄT)
Description: Das WLAN-Erweiterungsmodul konnte nicht gestartet werden.
Modulpfad: C:\Windows\system32\Rtlihvs.dll
Fehlercode: 126
Error: (04/15/2014 00:49:48 PM) (Source: DCOM) (User: NT-AUTORITÄT)
Description: ComputerstandardLokalAktivierung{BC50CF2A-E12C-4F18-90CE-714CC8600CEE}{BC50CF2A-E12C-4F18-90CE-714CC8600CEE}NT-AUTORITÄTLOKALER DIENSTS-1-5-19LocalHost (unter Verwendung von LRPC)
Error: (04/15/2014 00:45:27 PM) (Source: ipnathlp) (User: )
Description: 0
Error: (04/15/2014 00:45:26 PM) (Source: ipnathlp) (User: )
Description: 0
Error: (04/15/2014 00:45:20 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (User: NT-AUTORITÄT)
Description: Das WLAN-Erweiterungsmodul konnte nicht gestartet werden.
Modulpfad: C:\Windows\system32\Rtlihvs.dll
Fehlercode: 126
Error: (04/15/2014 00:45:19 PM) (Source: DCOM) (User: NT-AUTORITÄT)
Description: ComputerstandardLokalAktivierung{BC50CF2A-E12C-4F18-90CE-714CC8600CEE}{BC50CF2A-E12C-4F18-90CE-714CC8600CEE}NT-AUTORITÄTLOKALER DIENSTS-1-5-19LocalHost (unter Verwendung von LRPC)
Error: (04/15/2014 00:42:26 PM) (Source: DCOM) (User: NT-AUTORITÄT)
Description: ComputerstandardLokalAktivierung{BC50CF2A-E12C-4F18-90CE-714CC8600CEE}{BC50CF2A-E12C-4F18-90CE-714CC8600CEE}NT-AUTORITÄTLOKALER DIENSTS-1-5-19LocalHost (unter Verwendung von LRPC)
Error: (04/15/2014 00:42:20 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (User: NT-AUTORITÄT)
Description: Das WLAN-Erweiterungsmodul konnte nicht gestartet werden.
Modulpfad: C:\Windows\system32\Rtlihvs.dll
Fehlercode: 126
Error: (04/15/2014 10:03:16 AM) (Source: ipnathlp) (User: )
Description: 0
Microsoft Office Sessions:
=========================
Error: (04/15/2014 00:51:35 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (04/15/2014 00:47:06 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (04/15/2014 00:44:05 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (04/15/2014 11:26:04 AM) (Source: Application Error)(User: )
Description: firefox.exe28.0.0.518653240e37xul.dll28.0.0.518653240e04c00000050018472997001cf588caa5dfbf5D:\Programme\Firefox\firefox.exeD:\Programme\Firefox\xul.dl lf6e7e452-c47f-11e3-a17a-d850e64cace3
Error: (04/15/2014 10:18:44 AM) (Source: Application Error)(User: )
Description: firefox.exe28.0.0.518653240e37xul.dll28.0.0.518653240e04c000000500184729d4801cf58816cb92a18D:\Programme\Firefox\firefox.exeD:\Programme\Firefox\xul.dl l8efcd101-c476-11e3-a17a-d850e64cace3
Error: (04/15/2014 10:13:03 AM) (Source: Office 2013 Licensing Service)(User: )
Description: Subscription licensing service failed: -2147023838
Error: (04/15/2014 10:04:56 AM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (04/14/2014 10:03:49 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestd:\Tools\genie timeline\x86\GenieTimeLineAgent.exe
Error: (04/14/2014 10:03:46 PM) (Source: SideBySide)(User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestc:\program files (x86)\ESET\eset online scanner\ESETSmartInstaller.exe
Error: (04/14/2014 05:50:03 PM) (Source: Application Error)(User: )
Description: firefox.exe28.0.0.518653240e37xul.dll28.0.0.518653240e04c000000500184729145401cf57f918ff5fd8D:\Programme\Firefox\firefox.exeD:\Programme\Firefox\xul.d ll70df0ea6-c3ec-11e3-955a-d850e64cace3
==================== Memory info ===========================
Percentage of memory in use: 21%
Total physical RAM: 16031.7 MB
Available physical RAM: 12632.23 MB
Total Pagefile: 32061.57 MB
Available Pagefile: 28608.18 MB
Total Virtual: 8192 MB
Available Virtual: 8191.82 MB
==================== Drives ================================
Drive c: (Start) (Fixed) (Total:111.45 GB) (Free:58.64 GB) NTFS
Drive d: (Daten) (Fixed) (Total:1863.01 GB) (Free:1677.28 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: 0A24532E)
Partition: GPT Partition Type.
========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 112 GB) (Disk ID: 842D90D7)
Partition 1: (Active) - (Size=350 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=111 GB) - (Type=07 NTFS)
==================== End Of Log ============================
Danke,
Vauh