aleinter12 | 30.05.2014 22:07 | Windows 8.1: Avira meldet TR/Crypt.XPACK.Gen7 Guten Abend allerseits
Ich bin neu hier und möchte euch wegen folgendem Problem um Hilfe bitten:
Als ich über google eine Website mit Praktika für Studenten aufrufen wollte, meldete mir der Avira Echtzeit-Scanner einen Fund: TR/Crypt.XPACK.Gen7 mit der URL bo.prodigymsnteregala.com
Ich habe den Fund in die Quarantäne verschieben lassen. Jedoch bin ich mir ziemlich sicher, dass das Problem somit noch nicht gelöst ist. Auch wenn ich bis jetzt keine "offensichtliche Symptome" eines Befalls oder sonstige Störungen feststellen konnte.
Ein Scan mit Malwarebytes hat keine Resultate erziehlt. (Siehe Log)
Einen Scan mit FRST habe ich ebenfalls durchegführt (Siehe Log von FRST und Addition)
Einen Scan mit Avira werde ich noch durchführen und dann sofort hinzufügen.
Einen Scan mit GMER konnte ich nicht durchführen, da es Probleme bei der Ausführung gab. Ich werde es jedoch falls nötig nochmals versuchen oder allenfalls einen Scan mit einem ähnlichen, von euch empfohlenen Programm durchführen.
EDIT: Fehlermeldung beim Start von GMER lautet Der Prozess kann nicht auf die Datei zugreifen, da sie von einem anderen Prozess verwendet wird.
Ist ein Scan mit defog auch notwendig, wenn keine DVD-Emulatoren vorhanden sind?
Malwarebytes: Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlauf Datum: 30.05.2014
Suchlauf-Zeit: 21:41:08
Logdatei: Malwarebytes.txt
Administrator: Ja
Version: 2.00.1.1004
Malware Datenbank: v2014.05.30.08
Rootkit Datenbank: v2014.05.21.01
Lizenz: Kostenlos
Malware Schutz: Deaktiviert
Bösartiger Webseiten Schutz: Deaktiviert
Chameleon: Deaktiviert
Betriebssystem: Windows 8.1
CPU: x64
Dateisystem: NTFS
Benutzer: Ale
Suchlauf-Art: Benutzerdefinierter Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 390317
Verstrichene Zeit: 1 Std, 7 Min, 23 Sek
Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Shuriken: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 0
(No malicious items detected)
Module: 0
(No malicious items detected)
Registrierungsschlüssel: 0
(No malicious items detected)
Registrierungswerte: 0
(No malicious items detected)
Registrierungsdaten: 0
(No malicious items detected)
Ordner: 0
(No malicious items detected)
Dateien: 0
(No malicious items detected)
Physische Sektoren: 0
(No malicious items detected)
(end) FRST:
FRST Logfile:
FRST Logfile:
FRST Logfile:
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 30-05-2014
Ran by Ale (administrator) on ALE-PC on 30-05-2014 22:22:04
Running from C:\Users\Ale\Downloads
Platform: Windows 8.1 (Update 1) (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(ASUS) C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe
() C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe
(Intel Corporation) C:\Windows\System32\DptfParticipantProcessorService.exe
(Intel Corporation) C:\Windows\System32\DptfPolicyConfigTDPService.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Diskeeper Corporation) C:\Program Files\Diskeeper Corporation\ExpressCache\ExpressCache.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Windows\SysWOW64\irstrtsv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(ASUS) C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnWMI.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
(ASUS) C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnCfg.exe
(ASUS) C:\Program Files\ASUS\P4G\BatteryLife.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe
(AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
(Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
(Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Farbar) C:\Users\Ale\Downloads\FRST64(1).exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13197456 2012-09-28] (Realtek Semiconductor)
HKLM\...\Run: [BTMTrayAgent] => C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [11582848 2012-09-30] (Motorola Solutions, Inc.)
HKLM\...\Run: [ACMON] => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [107192 2012-08-24] (ASUS)
HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [161984 2014-04-20] (IvoSoft)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] => C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [40312 2013-12-18] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [ASUSPRP] => C:\Program Files (x86)\ASUS\APRP\APRP.EXE [3187360 2013-04-26] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [ASUSWebStorage] => C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSPanel.exe [3576784 2012-12-19] (ASUS Cloud Corporation)
HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [91432 2012-03-28] (CyberLink Corp.)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [737872 2014-05-22] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [49208 2010-06-09] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk
ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.ch/
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus13.msn.com
SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=ASU2JS
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=ASU2JS
SearchScopes: HKLM-x32 - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=ASU2JS
SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=ASU2JS
SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft)
BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO: ClassicIEBHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIEDLL_64.dll (IvoSoft)
BHO-x32: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO-x32: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft)
BHO-x32: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: ClassicIEBHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll (IvoSoft)
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll (IvoSoft)
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll (IvoSoft)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF ProfilePath: C:\Users\Ale\AppData\Roaming\Mozilla\Firefox\Profiles\v75zn2z6.default
FF Homepage: hxxp://www.google.ch/
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll ()
FF Plugin-x32: @adobe.com/FlashPlayer - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 - C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.0.6 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: Adblock Plus - C:\Users\Ale\AppData\Roaming\Mozilla\Firefox\Profiles\v75zn2z6.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-05-06]
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
==================== Services (Whitelisted) =================
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [430160 2014-05-22] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [430160 2014-05-22] (Avira Operations GmbH & Co. KG)
R2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1039952 2014-05-22] (Avira Operations GmbH & Co. KG)
R2 ASUS InstantOn; C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe [277120 2012-04-13] (ASUS)
R2 Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe [72192 2012-12-19] ()
R2 DptfParticipantProcessorService; C:\Windows\system32\DptfParticipantProcessorService.exe [30080 2012-10-01] (Intel Corporation)
R2 DptfPolicyConfigTDPService; C:\Windows\system32\DptfPolicyConfigTDPService.exe [31616 2012-10-01] (Intel Corporation)
R2 ExpressCache; C:\Program Files\Diskeeper Corporation\ExpressCache\ExpressCache.exe [79664 2012-03-30] (Diskeeper Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [129856 2012-06-27] (Intel Corporation)
R2 irstrtsv; C:\Windows\SysWOW64\irstrtsv.exe [193576 2012-07-30] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-06-25] (Intel Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273136 2013-08-28] ()
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-03-24] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-03-24] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3378416 2013-08-28] (Intel® Corporation)
==================== Drivers (Whitelisted) ====================
S0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra)
R3 ATP; C:\Windows\System32\drivers\AsusTP.sys [61824 2012-10-31] (ASUS Corporation)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [112080 2014-05-22] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [130584 2014-05-22] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2013-12-01] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [84720 2013-12-17] (Avira Operations GmbH & Co. KG)
S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows (R) Win 7 DDK provider)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-03-18] (Microsoft Corporation)
R3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [1337216 2012-10-01] (Motorola Solutions, Inc.)
S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-09-25] (Windows (R) Win 7 DDK provider)
S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-09-25] (Windows (R) Win 7 DDK provider)
R3 DptfDevDram; C:\Windows\system32\DRIVERS\DptfDevDram.sys [107328 2012-10-01] (Intel Corporation)
R3 DptfDevFan; C:\Windows\system32\DRIVERS\DptfDevFan.sys [42816 2012-10-01] (Intel Corporation)
R3 DptfDevGen; C:\Windows\system32\DRIVERS\DptfDevGen.sys [64832 2012-10-01] (Intel Corporation)
R3 DptfDevPch; C:\Windows\system32\DRIVERS\DptfDevPch.sys [96576 2012-10-01] (Intel Corporation)
R3 DptfDevProc; C:\Windows\system32\DRIVERS\DptfDevProc.sys [229184 2012-10-01] (Intel Corporation)
R3 DptfManager; C:\Windows\system32\DRIVERS\DptfManager.sys [363328 2012-10-01] (Intel Corporation)
R1 excfs; C:\Windows\System32\DRIVERS\excfs.sys [23344 2012-03-30] (Diskeeper Corporation)
R0 excsd; C:\Windows\System32\DRIVERS\excsd.sys [95024 2012-03-30] (Diskeeper Corporation)
S3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation)
S3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation)
S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation)
R0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2014-03-18] (Microsoft Corporation)
R3 irstrtdv; C:\Windows\System32\drivers\irstrtdv.sys [43800 2012-07-30] (Intel Corporation)
R3 kbfiltr; C:\Windows\System32\drivers\kbfiltr.sys [14992 2012-08-02] ( )
S0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation)
R3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation)
S3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation)
R3 NETwNe64; C:\Windows\system32\DRIVERS\Netwew00.sys [3345376 2013-10-08] (Intel Corporation)
S3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924504 2014-03-18] (Microsoft Corporation)
S3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2014-03-18] (Microsoft Corporation)
S0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2014-03-18] (Microsoft Corporation)
S3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation)
R3 usb3Hub; C:\Windows\System32\drivers\usb3Hub.sys [47072 2012-10-09] (Windows (R) Win 7 DDK provider)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-03-24] (Microsoft Corporation)
R0 Wof; C:\Windows\System32\Drivers\Wof.sys [157016 2014-05-08] (Microsoft Corporation)
R3 XHCIPort; C:\Windows\System32\drivers\XHCIPort.sys [188896 2012-10-09] (Windows (R) Win 7 DDK provider)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-05-30 22:22 - 2014-05-30 22:22 - 00018021 _____ () C:\Users\Ale\Downloads\FRST.txt
2014-05-30 22:21 - 2014-05-30 22:22 - 00000000 ____D () C:\FRST
2014-05-30 22:21 - 2014-05-30 22:21 - 02066944 _____ (Farbar) C:\Users\Ale\Downloads\FRST64(1).exe
2014-05-30 22:20 - 2014-05-30 22:20 - 02066944 _____ (Farbar) C:\Users\Ale\Downloads\FRST64.exe
2014-05-30 21:43 - 2014-05-30 21:43 - 00001159 _____ () C:\Users\Ale\Desktop\Malwarebytes.txt
2014-05-30 19:38 - 2014-05-30 19:38 - 00000856 _____ () C:\WINDOWS\PFRO.log
2014-05-22 10:31 - 2014-05-30 21:13 - 00501360 _____ () C:\WINDOWS\WindowsUpdate.log
2014-05-15 21:33 - 2014-05-15 21:33 - 00000000 __SHD () C:\Users\Ale\AppData\Local\EmieUserList
2014-05-15 21:33 - 2014-05-15 21:33 - 00000000 __SHD () C:\Users\Ale\AppData\Local\EmieSiteList
2014-05-14 20:23 - 2014-03-24 04:30 - 00257880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys
2014-05-14 20:23 - 2014-03-24 04:30 - 00123224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys
2014-05-14 20:23 - 2014-03-24 04:27 - 00035856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys
2014-05-14 20:21 - 2014-04-09 00:46 - 00086688 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt_map.dll
2014-05-14 20:21 - 2014-04-09 00:46 - 00028320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mrt100.dll
2014-05-14 20:21 - 2014-04-08 20:54 - 00080032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mrt_map.dll
2014-05-14 20:21 - 2014-04-08 20:54 - 00026784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mrt100.dll
2014-05-14 20:21 - 2014-03-13 09:42 - 00308224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wusa.exe
2014-05-14 20:21 - 2014-03-13 08:51 - 00305152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wusa.exe
2014-05-14 15:16 - 2014-05-14 15:16 - 00000000 ____D () C:\WINDOWS\PCHEALTH
2014-05-14 12:39 - 2014-04-11 12:03 - 00555736 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2014-05-14 12:39 - 2014-04-11 12:03 - 00054776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2014-05-14 12:39 - 2014-04-11 10:25 - 00419928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2014-05-14 12:39 - 2014-04-11 08:04 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2014-05-14 12:39 - 2014-04-11 07:53 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSReset.exe
2014-05-14 12:39 - 2014-04-11 07:22 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2014-05-14 12:39 - 2014-04-11 05:54 - 00201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2014-05-14 12:39 - 2014-04-11 05:36 - 11792384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2014-05-14 12:39 - 2014-04-11 05:24 - 13288960 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2014-05-14 12:39 - 2014-04-11 05:06 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe
2014-05-14 12:39 - 2014-04-11 05:05 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-05-14 12:39 - 2014-04-11 05:05 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll
2014-05-14 12:39 - 2014-04-11 05:02 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-05-14 12:39 - 2014-04-11 05:02 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe
2014-05-14 12:39 - 2014-04-11 05:01 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll
2014-05-14 12:39 - 2014-04-11 05:00 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2014-05-14 12:39 - 2014-04-11 04:59 - 00666624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2014-05-14 12:39 - 2014-04-11 04:57 - 00190976 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2014-05-14 12:39 - 2014-04-11 04:56 - 00381440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
2014-05-14 12:39 - 2014-04-11 04:55 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2014-05-14 12:39 - 2014-04-11 04:53 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2014-05-14 12:39 - 2014-04-11 04:52 - 03464192 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2014-05-14 12:39 - 2014-04-11 04:46 - 01705472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
2014-05-14 12:39 - 2014-04-11 04:36 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2014-05-14 12:39 - 2014-04-11 04:34 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2014-05-14 12:39 - 2014-04-11 04:29 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2014-05-14 12:39 - 2014-04-11 04:25 - 00921088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2014-05-14 12:38 - 2014-05-06 06:40 - 23544320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-05-14 12:38 - 2014-05-06 05:25 - 17382912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2014-05-14 12:38 - 2014-05-06 05:00 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2014-05-14 12:38 - 2014-05-06 04:10 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2014-05-14 12:38 - 2014-03-27 11:12 - 21225584 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2014-05-14 12:38 - 2014-03-27 09:48 - 18679728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2014-05-12 16:29 - 2014-05-12 16:29 - 00000000 ___RD () C:\WINDOWS\BrowserChoice
2014-05-10 12:14 - 2014-05-10 12:14 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-05-08 00:42 - 2014-05-19 12:38 - 00000000 ___DC () C:\WINDOWS\Panther
2014-05-08 00:42 - 2014-05-08 00:42 - 00000000 __SHD () C:\Recovery
2014-05-08 00:40 - 2014-05-08 00:40 - 16875520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 12732416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 08653824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 07425368 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2014-05-08 00:40 - 2014-05-08 00:40 - 06641152 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 05833728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 05770752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 04268544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 02900992 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 02641920 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 02519384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 02479616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 02373784 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2014-05-08 00:40 - 2014-05-08 00:40 - 02331000 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 02317824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 02270208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 02141912 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 02133504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 02088160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2014-05-08 00:40 - 2014-05-08 00:40 - 02030080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 02013016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 01843712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01816576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Display.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01779800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01764864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01679128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01656832 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01557848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 01542768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01527296 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01466864 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01411584 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01351168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01339240 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01306624 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01291200 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01230336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01200296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01129472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01112536 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01095488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01066496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01063424 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2014-05-08 00:40 - 2014-05-08 00:40 - 01057280 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01036288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01023488 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01015808 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00958464 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00950784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00939520 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00924160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00887296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aclui.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
2014-05-08 00:40 - 2014-05-08 00:40 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00839168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00836096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00834560 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2014-05-08 00:40 - 2014-05-08 00:40 - 00801792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00800256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adtschema.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00721408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00717312 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00679424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00669696 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00655360 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00621568 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
2014-05-08 00:40 - 2014-05-08 00:40 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00565536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00518552 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00492256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00488280 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00467800 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2014-05-08 00:40 - 2014-05-08 00:40 - 00467504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00463264 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlangpui.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00443392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00428888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2014-05-08 00:40 - 2014-05-08 00:40 - 00425984 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2014-05-08 00:40 - 2014-05-08 00:40 - 00406912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00406512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00402944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00390488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netcfgx.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00388408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00387210 _____ () C:\WINDOWS\system32\ApnDatabase.xml
2014-05-08 00:40 - 2014-05-08 00:40 - 00386560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlangpui.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00379224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00376152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00364640 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00360512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00356848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00355832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00337752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00334848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2014-05-08 00:40 - 2014-05-08 00:40 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00325632 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00305768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanmsm.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDMon.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\spp.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00264192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL
2014-05-08 00:40 - 2014-05-08 00:40 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LocationApi.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00254976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pdh.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00247296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00244888 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2014-05-08 00:40 - 2014-05-08 00:40 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spp.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00220160 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00212992 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00197632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00180056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReInfo.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00157016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00136024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00134144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpnpmgr.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevPropMgr.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00113648 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00111616 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe
2014-05-08 00:40 - 2014-05-08 00:40 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvinst.exe
2014-05-08 00:40 - 2014-05-08 00:40 - 00094016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userenv.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\davclnt.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxproxy.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32tm.exe
2014-05-08 00:40 - 2014-05-08 00:40 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IPMIDrv.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\w32tm.exe
2014-05-08 00:40 - 2014-05-08 00:40 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\l2gpstore.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\l2gpstore.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvcfg.exe
2014-05-08 00:40 - 2014-05-08 00:40 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpipreg.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SetNetworkLocation.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Shell.Search.UriHandler.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxproxy.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00033280 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredentialMigrationHandler.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanhlp.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll
2014-05-08 00:39 - 2014-05-08 00:39 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2014-05-08 00:39 - 2014-05-08 00:39 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2014-05-08 00:39 - 2014-05-08 00:39 - 00918528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2014-05-08 00:39 - 2014-05-08 00:39 - 00629760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2014-05-08 00:39 - 2014-05-08 00:39 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff
2014-05-08 00:37 - 2014-05-08 00:37 - 00000000 ____D () C:\WINDOWS\SysWOW64\XPSViewer
2014-05-08 00:37 - 2014-05-08 00:37 - 00000000 ____D () C:\Program Files\Reference Assemblies
2014-05-08 00:37 - 2014-05-08 00:37 - 00000000 ____D () C:\Program Files\MSBuild
2014-05-08 00:37 - 2014-05-08 00:37 - 00000000 ____D () C:\Program Files (x86)\Reference Assemblies
2014-05-08 00:37 - 2014-05-08 00:37 - 00000000 ____D () C:\Program Files (x86)\MSBuild
2014-05-08 00:36 - 2014-05-08 00:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell
2014-05-08 00:36 - 2013-08-03 06:48 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2014-05-08 00:36 - 2013-08-03 06:48 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2014-05-08 00:36 - 2013-08-03 06:48 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2014-05-08 00:36 - 2013-08-03 06:41 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2014-05-08 00:36 - 2013-08-03 06:41 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-05-08 00:36 - 2013-08-03 06:41 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2014-05-08 00:34 - 2014-05-08 00:35 - 06791360 _____ (IvoSoft) C:\Users\Ale\Downloads\ClassicShellSetup_4_1_0.exe
2014-05-08 00:25 - 2014-05-30 19:41 - 00000000 __RDO () C:\Users\Ale\OneDrive
2014-05-08 00:24 - 2014-05-08 00:24 - 00001456 _____ () C:\Users\Ale\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-05-08 00:23 - 2014-05-08 00:23 - 00000020 ___SH () C:\Users\Ale\ntuser.ini
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Vorlagen
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Startmenü
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Druckumgebung
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Programme
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\ProgramData\Vorlagen
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\ProgramData\Startmenü
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\ProgramData\Dokumente
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Dokumente und Einstellungen
2014-05-08 00:06 - 2014-05-08 00:06 - 00022960 _____ () C:\WINDOWS\system32\emptyregdb.dat
2014-05-07 23:56 - 2014-05-07 23:56 - 00001547 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2014-05-07 23:56 - 2014-05-07 23:56 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Intel
2014-05-07 23:56 - 2014-05-07 23:56 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help
2014-05-07 23:56 - 2014-05-07 23:56 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Intel
2014-05-07 23:56 - 2014-05-07 23:56 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help
2014-05-07 23:51 - 2014-05-07 23:51 - 00000000 ____D () C:\WINDOWS\system32\config\bbimigrate
2014-05-07 23:50 - 2014-05-30 22:22 - 00000000 ____D () C:\Users\Ale\AppData\Local\Temp
2014-05-07 23:50 - 2014-05-30 19:39 - 00000000 ____D () C:\Users\Ale
2014-05-07 23:50 - 2014-05-08 00:06 - 00024768 _____ () C:\WINDOWS\diagwrn.xml
2014-05-07 23:50 - 2014-05-08 00:06 - 00024768 _____ () C:\WINDOWS\diagerr.xml
2014-05-07 23:50 - 2014-05-07 23:51 - 00000000 ___RD () C:\Users\Ale\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-05-07 23:50 - 2014-05-07 23:51 - 00000000 ___RD () C:\Users\Ale\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Vorlagen
2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Startmenü
2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Netzwerkumgebung
2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Lokale Einstellungen
2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Eigene Dateien
2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Druckumgebung
2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Documents\Eigene Musik
2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Documents\Eigene Bilder
2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\AppData\Local\Verlauf
2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\AppData\Local\Anwendungsdaten
2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Anwendungsdaten
2014-05-07 23:50 - 2014-03-18 12:11 - 00000369 _____ () C:\Users\Ale\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2014-05-07 23:50 - 2014-03-18 12:11 - 00000369 _____ () C:\Users\Ale\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2014-05-07 23:50 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Ale\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-05-07 23:50 - 2013-08-22 17:36 - 00000000 ____D () C:\Users\Ale\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-05-07 23:45 - 2014-05-07 23:45 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_iBtFltCoex_01009.Wdf
2014-05-07 23:45 - 2014-05-07 23:45 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_DptfDevGen_01009.Wdf
2014-05-07 23:45 - 2014-05-07 23:45 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_DptfDevFan_01009.Wdf
2014-05-07 23:45 - 2014-05-07 23:45 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_DptfDevDram_01009.Wdf
2014-05-07 23:45 - 2014-05-07 23:45 - 00000000 ____D () C:\WINDOWS\SysWOW64\RTCOM
2014-05-07 23:45 - 2014-05-07 23:45 - 00000000 ____D () C:\Program Files\Realtek
2014-05-07 23:44 - 2014-05-07 23:54 - 00000000 ____D () C:\Program Files (x86)\Intel
2014-05-07 23:44 - 2014-05-07 23:44 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_DptfManager_01009.Wdf
2014-05-07 23:44 - 2014-05-07 23:44 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_DptfDevProc_01009.Wdf
2014-05-07 23:44 - 2014-05-07 23:44 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_DptfDevPch_01009.Wdf
2014-05-07 23:44 - 2013-10-01 13:02 - 00064000 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL
2014-05-07 23:44 - 2013-10-01 13:02 - 00060416 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL
2014-05-07 18:20 - 2014-05-07 18:20 - 00075514 _____ () C:\Users\Ale\Documents\cc_20140507_182052.reg
2014-05-06 00:44 - 2014-05-30 20:33 - 00119512 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2014-05-06 00:15 - 2014-05-07 23:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-05-06 00:15 - 2014-05-06 00:15 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-05-06 00:15 - 2014-05-06 00:15 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-05-06 00:15 - 2014-04-03 09:51 - 00088280 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2014-05-06 00:15 - 2014-04-03 09:51 - 00063192 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2014-05-06 00:15 - 2014-04-03 09:50 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2014-05-06 00:07 - 2014-05-06 00:10 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Ale\Downloads\mbam-setup-2.0.1.1004.exe
==================== One Month Modified Files and Folders =======
2014-05-30 22:22 - 2014-05-30 22:22 - 00018021 _____ () C:\Users\Ale\Downloads\FRST.txt
2014-05-30 22:22 - 2014-05-30 22:21 - 00000000 ____D () C:\FRST
2014-05-30 22:22 - 2014-05-07 23:50 - 00000000 ____D () C:\Users\Ale\AppData\Local\Temp
2014-05-30 22:21 - 2014-05-30 22:21 - 02066944 _____ (Farbar) C:\Users\Ale\Downloads\FRST64(1).exe
2014-05-30 22:20 - 2014-05-30 22:20 - 02066944 _____ (Farbar) C:\Users\Ale\Downloads\FRST64.exe
2014-05-30 22:19 - 2013-09-18 13:35 - 00000884 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-05-30 22:00 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2014-05-30 21:43 - 2014-05-30 21:43 - 00001159 _____ () C:\Users\Ale\Desktop\Malwarebytes.txt
2014-05-30 21:16 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\rescache
2014-05-30 21:13 - 2014-05-22 10:31 - 00501360 _____ () C:\WINDOWS\WindowsUpdate.log
2014-05-30 20:50 - 2013-09-16 15:08 - 00003600 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2990060037-2151254000-1159204869-1001
2014-05-30 20:33 - 2014-05-06 00:44 - 00119512 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2014-05-30 20:28 - 2013-11-13 13:59 - 00000000 ____D () C:\Users\Ale\AppData\Roaming\ClassicShell
2014-05-30 20:08 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2014-05-30 19:45 - 2014-03-18 12:03 - 01776918 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-05-30 19:45 - 2014-03-18 11:25 - 00773008 _____ () C:\WINDOWS\system32\perfh007.dat
2014-05-30 19:45 - 2014-03-18 11:25 - 00162310 _____ () C:\WINDOWS\system32\perfc007.dat
2014-05-30 19:41 - 2014-05-08 00:25 - 00000000 __RDO () C:\Users\Ale\OneDrive
2014-05-30 19:40 - 2013-09-15 17:27 - 00000408 _____ () C:\Users\Ale\AppData\Roaming\sp_data.sys
2014-05-30 19:39 - 2014-05-07 23:50 - 00000000 ____D () C:\Users\Ale
2014-05-30 19:38 - 2014-05-30 19:38 - 00000856 _____ () C:\WINDOWS\PFRO.log
2014-05-30 19:38 - 2013-08-22 16:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-05-29 16:15 - 2013-09-15 17:25 - 00000000 ____D () C:\Users\Ale\AppData\Local\Packages
2014-05-27 14:13 - 2013-09-18 13:16 - 00271360 _____ () C:\Users\Ale\Desktop\Meine Outlook-Datendatei(1).pst
2014-05-22 11:16 - 2013-09-15 17:26 - 00000000 ____D () C:\Users\Ale\AppData\Roaming\Adobe
2014-05-22 11:16 - 2013-04-26 01:15 - 00000000 ____D () C:\Program Files (x86)\Adobe
2014-05-22 10:55 - 2013-09-17 20:53 - 00000000 ____D () C:\Users\Ale\AppData\Local\Adobe
2014-05-22 10:55 - 2013-04-26 01:15 - 00000000 ____D () C:\ProgramData\Adobe
2014-05-22 10:54 - 2013-11-22 13:18 - 00000000 ____D () C:\ProgramData\Package Cache
2014-05-22 10:32 - 2013-09-16 15:16 - 00130584 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys
2014-05-22 10:32 - 2013-09-16 15:16 - 00112080 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys
2014-05-19 12:38 - 2014-05-08 00:42 - 00000000 ___DC () C:\WINDOWS\Panther
2014-05-18 14:04 - 2013-09-16 12:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2014-05-18 14:04 - 2013-09-16 12:31 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-05-18 13:49 - 2013-09-16 15:05 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-05-16 21:13 - 2013-08-22 17:36 - 00000000 ___RD () C:\WINDOWS\ToastData
2014-05-16 21:13 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-05-16 21:13 - 2013-08-22 17:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-05-16 21:13 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\WinStore
2014-05-16 21:13 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files\Windows Defender
2014-05-16 21:13 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2014-05-16 21:13 - 2013-08-22 15:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2014-05-16 14:32 - 2012-07-26 07:26 - 00000234 _____ () C:\WINDOWS\win.ini
2014-05-16 13:14 - 2012-07-26 09:59 - 00000000 ____D () C:\WINDOWS\CbsTemp
2014-05-16 12:08 - 2013-08-22 15:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM
2014-05-16 11:40 - 2013-09-15 17:27 - 00000000 ___RD () C:\Users\Ale\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-05-16 11:40 - 2013-09-15 17:27 - 00000000 ___RD () C:\Users\Ale\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-05-15 23:00 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\SecureBootUpdates
2014-05-15 22:53 - 2013-09-17 22:06 - 00000000 ____D () C:\WINDOWS\system32\MRT
2014-05-15 22:50 - 2013-09-17 22:06 - 93223848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-05-15 21:33 - 2014-05-15 21:33 - 00000000 __SHD () C:\Users\Ale\AppData\Local\EmieUserList
2014-05-15 21:33 - 2014-05-15 21:33 - 00000000 __SHD () C:\Users\Ale\AppData\Local\EmieSiteList
2014-05-14 15:16 - 2014-05-14 15:16 - 00000000 ____D () C:\WINDOWS\PCHEALTH
2014-05-13 20:19 - 2013-09-18 13:35 - 00003772 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2014-05-12 16:29 - 2014-05-12 16:29 - 00000000 ___RD () C:\WINDOWS\BrowserChoice
2014-05-10 12:14 - 2014-05-10 12:14 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-05-10 10:48 - 2013-09-30 08:54 - 00208737 _____ () C:\WINDOWS\hpoins21.dat
2014-05-10 10:48 - 2013-09-30 08:54 - 00001756 _____ () C:\ProgramData\hpzinstall.log
2014-05-10 10:44 - 2013-10-07 11:47 - 00002041 _____ () C:\Users\Public\Desktop\Adobe Reader X.lnk
2014-05-10 10:44 - 2013-04-26 01:15 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk
2014-05-08 00:42 - 2014-05-08 00:42 - 00000000 __SHD () C:\Recovery
2014-05-08 00:41 - 2013-08-22 17:36 - 00262144 _____ () C:\WINDOWS\system32\config\BCD-Template
2014-05-08 00:41 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\setup
2014-05-08 00:40 - 2014-05-08 00:40 - 16875520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 12732416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 08653824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 07425368 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2014-05-08 00:40 - 2014-05-08 00:40 - 06641152 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 05833728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 05770752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 04268544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 02900992 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 02641920 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 02519384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 02479616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 02373784 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2014-05-08 00:40 - 2014-05-08 00:40 - 02331000 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 02317824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 02270208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 02141912 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 02133504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 02088160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2014-05-08 00:40 - 2014-05-08 00:40 - 02030080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 02013016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 01843712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01816576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Display.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01779800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01764864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01679128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01656832 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01557848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 01542768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01527296 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01466864 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01411584 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01351168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01339240 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01306624 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01291200 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01230336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01200296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01129472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01112536 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01095488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01066496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01063424 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2014-05-08 00:40 - 2014-05-08 00:40 - 01057280 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01036288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01023488 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 01015808 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00958464 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00950784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00939520 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00924160 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00888320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00887296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aclui.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
2014-05-08 00:40 - 2014-05-08 00:40 - 00855552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00839168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00836096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00834560 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2014-05-08 00:40 - 2014-05-08 00:40 - 00801792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00800256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adtschema.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00731648 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00721408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00717312 _____ (Microsoft Corporation) C:\WINDOWS\system32\nshwfp.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00679424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00669696 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00655360 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00621568 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
2014-05-08 00:40 - 2014-05-08 00:40 - 00605184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00567296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nshwfp.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00565536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00518552 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00492256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00488280 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00467800 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2014-05-08 00:40 - 2014-05-08 00:40 - 00467504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00463264 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlangpui.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00443392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00428888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2014-05-08 00:40 - 2014-05-08 00:40 - 00425984 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2014-05-08 00:40 - 2014-05-08 00:40 - 00406912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00406512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00402944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00390488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netcfgx.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00388408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00387210 _____ () C:\WINDOWS\system32\ApnDatabase.xml
2014-05-08 00:40 - 2014-05-08 00:40 - 00386560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlangpui.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00379224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00376152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00370176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00364640 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00360512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00356848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00355832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00337752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00334848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2014-05-08 00:40 - 2014-05-08 00:40 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00325632 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationApi.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00313344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00305768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00300544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanmsm.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\system32\pdh.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDMon.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00291840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmWmiPl.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\spp.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00264192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FWPUCLNT.DLL
2014-05-08 00:40 - 2014-05-08 00:40 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LocationApi.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00254976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pdh.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00247296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00244888 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2014-05-08 00:40 - 2014-05-08 00:40 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spp.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00220160 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00212992 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00197632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00186368 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00180056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00172544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReInfo.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00157016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00136024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00134144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpnpmgr.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevPropMgr.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00113648 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00111616 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe
2014-05-08 00:40 - 2014-05-08 00:40 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\drvinst.exe
2014-05-08 00:40 - 2014-05-08 00:40 - 00094016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userenv.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\davclnt.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxproxy.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32tm.exe
2014-05-08 00:40 - 2014-05-08 00:40 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\IPMIDrv.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\w32tm.exe
2014-05-08 00:40 - 2014-05-08 00:40 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\l2gpstore.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\l2gpstore.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvcfg.exe
2014-05-08 00:40 - 2014-05-08 00:40 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpipreg.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SetNetworkLocation.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Shell.Search.UriHandler.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxproxy.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00033280 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys
2014-05-08 00:40 - 2014-05-08 00:40 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredentialMigrationHandler.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanhlp.dll
2014-05-08 00:40 - 2014-05-08 00:40 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll
2014-05-08 00:39 - 2014-05-08 00:39 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2014-05-08 00:39 - 2014-05-08 00:39 - 02724864 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2014-05-08 00:39 - 2014-05-08 00:39 - 00918528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2014-05-08 00:39 - 2014-05-08 00:39 - 00629760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2014-05-08 00:39 - 2014-05-08 00:39 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff
2014-05-08 00:37 - 2014-05-08 00:37 - 00000000 ____D () C:\WINDOWS\SysWOW64\XPSViewer
2014-05-08 00:37 - 2014-05-08 00:37 - 00000000 ____D () C:\Program Files\Reference Assemblies
2014-05-08 00:37 - 2014-05-08 00:37 - 00000000 ____D () C:\Program Files\MSBuild
2014-05-08 00:37 - 2014-05-08 00:37 - 00000000 ____D () C:\Program Files (x86)\Reference Assemblies
2014-05-08 00:37 - 2014-05-08 00:37 - 00000000 ____D () C:\Program Files (x86)\MSBuild
2014-05-08 00:36 - 2014-05-08 00:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell
2014-05-08 00:36 - 2013-12-05 17:20 - 00000000 ____D () C:\ProgramData\ClassicShell
2014-05-08 00:36 - 2013-11-13 13:58 - 00000000 ____D () C:\Program Files\Classic Shell
2014-05-08 00:35 - 2014-05-08 00:34 - 06791360 _____ (IvoSoft) C:\Users\Ale\Downloads\ClassicShellSetup_4_1_0.exe
2014-05-08 00:35 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\restore
2014-05-08 00:24 - 2014-05-08 00:24 - 00001456 _____ () C:\Users\Ale\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-05-08 00:24 - 2013-09-15 17:27 - 00000000 ____D () C:\WINDOWS\System32\Tasks\WPD
2014-05-08 00:23 - 2014-05-08 00:23 - 00000020 ___SH () C:\Users\Ale\ntuser.ini
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Vorlagen
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Startmenü
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Druckumgebung
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Programme
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\ProgramData\Vorlagen
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\ProgramData\Startmenü
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\ProgramData\Dokumente
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien
2014-05-08 00:07 - 2014-05-08 00:07 - 00000000 _SHDL () C:\Dokumente und Einstellungen
2014-05-08 00:07 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files\Windows NT
2014-05-08 00:07 - 2013-08-22 15:36 - 00000000 __RHD () C:\Users\Default
2014-05-08 00:06 - 2014-05-08 00:06 - 00022960 _____ () C:\WINDOWS\system32\emptyregdb.dat
2014-05-08 00:06 - 2014-05-07 23:50 - 00024768 _____ () C:\WINDOWS\diagwrn.xml
2014-05-08 00:06 - 2014-05-07 23:50 - 00024768 _____ () C:\WINDOWS\diagerr.xml
2014-05-08 00:06 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\Registration
2014-05-08 00:03 - 2013-08-22 17:36 - 00000000 __RSD () C:\WINDOWS\Media
2014-05-08 00:02 - 2013-08-22 17:36 - 00000000 __RHD () C:\Users\Public\Libraries
2014-05-07 23:58 - 2013-08-22 16:44 - 00482104 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-05-07 23:57 - 2014-05-06 00:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-05-07 23:57 - 2014-03-18 11:40 - 00000000 ____D () C:\WINDOWS\ShellNew
2014-05-07 23:57 - 2013-11-22 13:19 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel PROSet Wireless
2014-05-07 23:57 - 2013-09-30 09:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2014-05-07 23:57 - 2013-09-16 15:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-05-07 23:57 - 2013-09-16 15:20 - 00000000 ____D () C:\Users\Ale\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-05-07 23:57 - 2013-09-16 15:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-05-07 23:57 - 2013-08-22 17:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp
2014-05-07 23:57 - 2013-08-22 15:36 - 00000000 ____D () C:\WINDOWS\system32\Sysprep
2014-05-07 23:57 - 2013-06-26 10:09 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2014-05-07 23:57 - 2013-04-26 01:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2014-05-07 23:57 - 2013-04-26 01:17 - 00000000 ____D () C:\WINDOWS\nl
2014-05-07 23:57 - 2013-04-26 01:17 - 00000000 ____D () C:\WINDOWS\it
2014-05-07 23:57 - 2013-04-26 01:17 - 00000000 ____D () C:\WINDOWS\fr
2014-05-07 23:57 - 2013-04-26 01:17 - 00000000 ____D () C:\WINDOWS\de
2014-05-07 23:57 - 2013-04-26 01:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS
2014-05-07 23:57 - 2012-07-26 11:43 - 00000000 ____D () C:\WINDOWS\en-GB
2014-05-07 23:56 - 2014-05-07 23:56 - 00001547 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2014-05-07 23:56 - 2014-05-07 23:56 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Intel
2014-05-07 23:56 - 2014-05-07 23:56 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help
2014-05-07 23:56 - 2014-05-07 23:56 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Intel
2014-05-07 23:56 - 2014-05-07 23:56 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help
2014-05-07 23:56 - 2014-03-18 11:25 - 00000000 ____D () C:\WINDOWS\SysWOW64\WCN
2014-05-07 23:56 - 2014-03-18 11:25 - 00000000 ____D () C:\WINDOWS\SysWOW64\sysprep
2014-05-07 23:56 - 2014-03-18 11:25 - 00000000 ____D () C:\WINDOWS\system32\WCN
2014-05-07 23:56 - 2013-09-30 09:06 - 00000000 ____D () C:\WINDOWS\SysWOW64\spool
2014-05-07 23:56 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\MUI
2014-05-07 23:56 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\migwiz
2014-05-07 23:56 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\IME
2014-05-07 23:56 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\WinBioPlugIns
2014-05-07 23:56 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\spool
2014-05-07 23:56 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\NDF
2014-05-07 23:56 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\MUI
2014-05-07 23:56 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\IME
2014-05-07 23:56 - 2013-08-22 15:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\SMI
2014-05-07 23:56 - 2013-08-22 15:36 - 00000000 ____D () C:\WINDOWS\system32\oobe
2014-05-07 23:56 - 2013-06-26 10:12 - 00000000 ____D () C:\WINDOWS\SysWOW64\sda
2014-05-07 23:56 - 2012-07-26 07:37 - 00000000 ____D () C:\Users\Default.migrated
2014-05-07 23:54 - 2014-05-07 23:44 - 00000000 ____D () C:\Program Files (x86)\Intel
2014-05-07 23:54 - 2013-09-16 15:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2014-05-07 23:54 - 2013-08-22 17:43 - 00000000 ____D () C:\WINDOWS\DigitalLocker
2014-05-07 23:54 - 2013-08-22 17:36 - 00000000 __SHD () C:\Program Files\Windows Sidebar
2014-05-07 23:54 - 2013-08-22 17:36 - 00000000 __SHD () C:\Program Files (x86)\Windows Sidebar
2014-05-07 23:54 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\PolicyDefinitions
2014-05-07 23:54 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\IME
2014-05-07 23:54 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\Help
2014-05-07 23:54 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files\Common Files\System
2014-05-07 23:54 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2014-05-07 23:54 - 2013-06-26 10:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Corporation
2014-05-07 23:54 - 2013-06-26 10:24 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUSDVD
2014-05-07 23:54 - 2012-08-02 15:28 - 00000000 ____D () C:\ProgramData\PRICache
2014-05-07 23:51 - 2014-05-07 23:51 - 00000000 ____D () C:\WINDOWS\system32\config\bbimigrate
2014-05-07 23:51 - 2014-05-07 23:50 - 00000000 ___RD () C:\Users\Ale\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-05-07 23:51 - 2014-05-07 23:50 - 00000000 ___RD () C:\Users\Ale\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-05-07 23:51 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\Recovery
2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Vorlagen
2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Startmenü
2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Netzwerkumgebung
2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Lokale Einstellungen
2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Eigene Dateien
2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Druckumgebung
2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Documents\Eigene Musik
2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Documents\Eigene Bilder
2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\AppData\Local\Verlauf
2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\AppData\Local\Anwendungsdaten
2014-05-07 23:50 - 2014-05-07 23:50 - 00000000 _SHDL () C:\Users\Ale\Anwendungsdaten
2014-05-07 23:45 - 2014-05-07 23:45 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_iBtFltCoex_01009.Wdf
2014-05-07 23:45 - 2014-05-07 23:45 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_DptfDevGen_01009.Wdf
2014-05-07 23:45 - 2014-05-07 23:45 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_DptfDevFan_01009.Wdf
2014-05-07 23:45 - 2014-05-07 23:45 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_DptfDevDram_01009.Wdf
2014-05-07 23:45 - 2014-05-07 23:45 - 00000000 ____D () C:\WINDOWS\SysWOW64\RTCOM
2014-05-07 23:45 - 2014-05-07 23:45 - 00000000 ____D () C:\Program Files\Realtek
2014-05-07 23:44 - 2014-05-07 23:44 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_DptfManager_01009.Wdf
2014-05-07 23:44 - 2014-05-07 23:44 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_DptfDevProc_01009.Wdf
2014-05-07 23:44 - 2014-05-07 23:44 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_DptfDevPch_01009.Wdf
2014-05-07 22:37 - 2012-07-26 10:12 - 00000000 ____D () C:\WINDOWS\AUInstallAgent
2014-05-07 18:20 - 2014-05-07 18:20 - 00075514 _____ () C:\Users\Ale\Documents\cc_20140507_182052.reg
2014-05-07 15:39 - 2013-09-19 19:11 - 00111104 ___SH () C:\Users\Ale\Desktop\Thumbs.db
2014-05-06 06:40 - 2014-05-14 12:38 - 23544320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-05-06 05:25 - 2014-05-14 12:38 - 17382912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2014-05-06 05:00 - 2014-05-14 12:38 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2014-05-06 04:10 - 2014-05-14 12:38 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2014-05-06 00:15 - 2014-05-06 00:15 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-05-06 00:15 - 2014-05-06 00:15 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-05-06 00:10 - 2014-05-06 00:07 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Ale\Downloads\mbam-setup-2.0.1.1004.exe
2014-05-01 22:30 - 2013-08-22 17:38 - 00693240 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2014-05-01 22:30 - 2013-08-22 17:38 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
Files to move or delete:
====================
C:\ProgramData\SetStretch.exe
C:\ProgramData\SetStretch.VBS
Some content of TEMP:
====================
C:\Users\Ale\AppData\Local\Temp\avgnt.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-05-30 20:07
==================== End Of Log ============================ --- --- ---
--- --- ---
--- --- ---
--- --- ---
--- --- ---
EDIT: Addition-Log wird als Anhang hinzugefügt (Text war zu lang)
Die restlichen Logs werde ich hinzufügen, sobald die Scans fertig sind.
Ich hoffe ihr könnt mir bei meinem Problem behilflich sein und bitte zögert nicht mir mitzuteilen, falls ihr noch weitere Infos braucht.
Ich danke euch bereits im Voraus! |