MBAM
#Malwarebytes Anti-Malware
Malwarebytes | Free Anti-Malware & Internet Security Software
Suchlauf Datum: 06.01.2015
Suchlauf-Zeit: 14:03:52
Logdatei: txtt.txt
Administrator: Ja
Version: 2.00.4.1028
Malware Datenbank: v2015.01.06.04
Rootkit Datenbank: v2014.12.30.01
Lizenz: Kostenlos
Malware Schutz: Deaktiviert
Bösartiger Webseiten Schutz: Deaktiviert
Selbstschutz: Deaktiviert
Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: Torte
Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 336276
Verstrichene Zeit: 25 Min, 29 Sek
Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 1
PUP.Optional.Recover.A, C:\Program Files (x86)\rec_de_5\rec_de_5.exe, 4440, Löschen bei Neustart, [e14b13e12a5f45f13277ce968083e11f]
Module: 0
(Keine schädliche Elemente erkannt)
Registrierungsschlüssel: 5
PUP.Optional.ASPackage.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\ASPackage, In Quarantäne, [e448965ec1c891a5c80a263f04ffa45c],
PUP.Optional.ClickCaption.A, HKLM\SOFTWARE\WOW6432NODE\ClickCaption_1.10.0.5, In Quarantäne, [de4eec08abded75f0b57ff6e09fa758b],
PUP.Optional.ClickCaption.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\ccnfd_1_10_0_5, In Quarantäne, [fa3293619bee70c6b8a8591439ca9c64],
PUP.Optional.Tuto4PC.A, HKU\S-1-5-21-394672473-2120923872-2817331485-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\TutoTag, In Quarantäne, [a5874aaaa4e50036ebe37171fe0635cb],
PUP.Optional.Iminent.A, HKU\S-1-5-21-394672473-2120923872-2817331485-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOWREGISTRY\Iminent, In Quarantäne, [bb718b697e0bdc5abfd5d2c370930df3],
Registrierungswerte: 1
PUP.Optional.Recover.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|rec_de_5, "C:\Program Files (x86)\rec_de_5\rec_de_5.exe", In Quarantäne, [e14b13e12a5f45f13277ce968083e11f]
Registrierungsdaten: 0
(Keine schädliche Elemente erkannt)
Ordner: 6
PUP.Optional.ASPackage.A, C:\Users\Torte\AppData\Roaming\ASPackage, In Quarantäne, [e448965ec1c891a5c80a263f04ffa45c],
PUP.Optional.ASPackage.A, C:\Users\Torte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASPackage, In Quarantäne, [d25ac232eb9e9f97597ac5a0a063c63a],
PUP.Optional.Recover.A, C:\Users\Torte\AppData\Local\rec_de_5, In Quarantäne, [1616af456326f73f88e87ee6e61d22de],
PUP.Optional.Recover.A, C:\Users\Torte\AppData\Local\rec_de_5\rec_de_5, In Quarantäne, [1616af456326f73f88e87ee6e61d22de],
PUP.Optional.Recover.A, C:\Users\Torte\AppData\Local\rec_de_5\rec_de_5\1.20, In Quarantäne, [1616af456326f73f88e87ee6e61d22de],
PUP.Optional.Recover.A, C:\Program Files (x86)\rec_de_5, Löschen bei Neustart, [c7652bc93d4c0432a0d164002fd4a15f],
Dateien: 11
PUP.Optional.ASPackage.A, C:\Users\Torte\AppData\Roaming\ASPackage\Uninstall.exe, In Quarantäne, [e448965ec1c891a5c80a263f04ffa45c],
PUP.Optional.ASPackage.A, C:\Users\Torte\AppData\Roaming\ASPackage\ASPackage.exe, In Quarantäne, [e448965ec1c891a5c80a263f04ffa45c],
PUP.Optional.ASPackage.A, C:\Users\Torte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASPackage\Configure.lnk, In Quarantäne, [d25ac232eb9e9f97597ac5a0a063c63a],
PUP.Optional.Iminent.A, C:\Users\Torte\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ehhlaekjfiiojlddgndcnefflngfmhen_0.localstorage, In Quarantäne, [ae7e767ee3a634026cb895e508fbd828],
PUP.Optional.Iminent.A, C:\Users\Torte\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_jdkokpcldhneihjdhigfjmoeojkdcbmg_0.localstorage, In Quarantäne, [ff2dee06296089ad8a0cceb4db28f60a],
PUP.Optional.Iminent.A, C:\Users\Torte\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_start.iminent.com_0.localstorage, In Quarantäne, [5fcd14e08702290d63558856f410d42c],
PUP.Optional.Iminent.A, C:\Users\Torte\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_start.iminent.com_0.localstorage-journal, In Quarantäne, [59d30ee69ced7bbb8632de007490e11f],
PUP.Optional.Recover.A, C:\Program Files (x86)\rec_de_5\rec_de_5.exe, Löschen bei Neustart, [e14b13e12a5f45f13277ce968083e11f],
PUP.Optional.Recover.A, C:\Users\Torte\AppData\Local\rec_de_5\rec_de_5\1.20\cnf.cyl, In Quarantäne, [1616af456326f73f88e87ee6e61d22de],
PUP.Optional.Recover.A, C:\Users\Torte\AppData\Local\rec_de_5\rec_de_5\1.20\eorezo.cyl, In Quarantäne, [1616af456326f73f88e87ee6e61d22de],
PUP.Optional.Recover.A, C:\Program Files (x86)\rec_de_5\predm.exe, In Quarantäne, [c7652bc93d4c0432a0d164002fd4a15f],
Physische Sektoren: 0
(Keine schädliche Elemente erkannt)
(end)
Addwanclear
#AdwCleaner Logfile:
Code:
# AdwCleaner v4.106 - Bericht erstellt am 06/01/2015 um 18:01:21
# Aktualisiert 21/12/2014 von Xplode
# Database : 2015-01-03.1 [Live]
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits)
# Benutzername : Torte - TORTE-HP
# Gestartet von : C:\Users\Torte\Desktop\adwcleaner_4.106.exe
# Option : Löschen
***** [ Dienste ] *****
***** [ Dateien / Ordner ] *****
Ordner Gelöscht : C:\Program Files (x86)\predm
***** [ Tasks ] *****
***** [ Verknüpfungen ] *****
***** [ Registrierungsdatenbank ] *****
Schlüssel Gelöscht : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFBCB7E0-F91A-4951-9F31-58FEE57A25C4}
***** [ Browser ] *****
-\\ Internet Explorer v9.0.8112.16421
-\\ Google Chrome v39.0.2171.95
[C:\Users\Torte\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Gelöscht [Search Provider] : hxxp://start.iminent.com/?appId=EE5B8D8F-4B04-42E6-B736-D9F6FE10EFB7&ref=toolbox&q={searchTerms}
[C:\Users\Torte\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Gelöscht [Search Provider] : hxxp://eu.ask.com/web?q={searchterms}&l=dis&o=HPNTDF
[C:\Users\Torte\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Gelöscht [Search Provider] : hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1419862535&from=tugs&uid=HitachiXHTS543232A7A384_E20342331B5B5P1B5B5PX&q={searchTerms}
[C:\Users\Torte\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Gelöscht [Search Provider] : hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1419862535&from=tugs&uid=HitachiXHTS543232A7A384_E20342331B5B5P1B5B5PX&q={searchTerms}
*************************
AdwCleaner[R0].txt - [24198 octets] - [05/01/2015 06:21:34]
AdwCleaner[R1].txt - [3865 octets] - [05/01/2015 06:40:35]
AdwCleaner[S0].txt - [19284 octets] - [05/01/2015 06:25:13]
AdwCleaner[S1].txt - [1816 octets] - [06/01/2015 18:01:21]
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [1876 octets] ##########
--- --- ---
Dieses removejunkey
#~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.4.1 (12.28.2014:1)
OS: Windows 7 Home Premium x64
Ran by Torte on 06.01.2015 at 18:06:22,03
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{B7FCA997-D0FB-4FE0-8AFD-255E89CF9671}
~~~ Files
~~~ Folders
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 06.01.2015 at 18:12:13,45
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Und nochmal n neue frst
#
FRST Logfile:
Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 06-01-2015
Ran by Torte (administrator) on TORTE-HP on 06-01-2015 18:18:29
Running from C:\Users\Torte\Downloads
Loaded Profile: Torte (Available profiles: Torte)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 9 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: FRST Tutorial - How to use Farbar Recovery Scan Tool - Malware Removal Guides and Tutorials
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
(EasyBits Software AS) C:\Windows\SysWOW64\ezSharedSvcHost.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Client Services\HPClientServices.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\HPDrvMntSvc.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
(Symantec Corporation) C:\Program Files (x86)\Norton 360\Engine\21.6.0.32\N360.exe
() C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
(Razer Inc.) C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Hewlett-Packard) C:\Program Files\Hewlett-Packard\HP Auto\HPAuto.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Symantec Corporation) C:\Program Files (x86)\Norton 360\Engine\21.6.0.32\N360.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
() C:\Program Files\Hewlett-Packard\HP LaunchBox\HPTaskBar1.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP LaunchBox\HPTaskBar2.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
(Razer Inc.) C:\Program Files (x86)\Razer\Razer Cortex\main.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(TeamSpeak Systems GmbH) C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2799912 2011-06-10] (Synaptics Incorporated)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1424896 2011-09-08] (IDT, Inc.)
HKLM\...\Run: [SetDefault] => C:\Program Files\Hewlett-Packard\HP LaunchBox\SetDefault.exe [43320 2011-09-30] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [343168 2011-08-18] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [HPQuickWebProxy] => C:\Program Files (x86)\Hewlett-Packard\HP QuickWeb\hpqwutils.exe [169528 2011-10-08] (Hewlett-Packard Company)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [937920 2011-06-06] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [HPOSD] => C:\Program Files (x86)\Hewlett-Packard\HP On Screen Display\HPOSD.exe [379960 2011-08-19] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [Easybits Recovery] => C:\Program Files (x86)\EasyBits For Kids\ezRecover.exe [61112 2011-09-15] (EasyBits Software AS)
HKLM-x32\...\Run: [RazerCortex] => C:\Program Files (x86)\Razer\Razer Cortex\RazerCortex.exe [60640 2014-12-06] (Razer Inc.)
HKLM-x32\...\Run: [HP Quick Launch] => C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [578944 2012-03-05] (Hewlett-Packard Development Company, L.P.)
HKLM\...\RunOnce: [NCPluginUpdater] => c:\program files (x86)\hewlett-packard\hp health check\activecheck\product_line\NCPluginUpdater.exe [21720 2014-12-16] (Hewlett-Packard)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1
HKU\S-1-5-21-394672473-2120923872-2817331485-1000\...\Run: [Spotify] => C:\Users\Torte\AppData\Roaming\Spotify\Spotify.exe [6737976 2014-12-29] (Spotify Ltd)
HKU\S-1-5-21-394672473-2120923872-2817331485-1000\...\Run: [Spotify Web Helper] => C:\Users\Torte\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1676344 2014-12-29] (Spotify Ltd)
HKU\S-1-5-21-394672473-2120923872-2817331485-1000\...\Run: [SpybotSD TeaTimer] => C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe [2144088 2009-01-26] (Safer Networking Limited)
ShellIconOverlayIdentifiers: [OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files (x86)\Norton 360\Engine64\21.6.0.32\buShell.dll (Symantec Corporation)
ShellIconOverlayIdentifiers: [OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files (x86)\Norton 360\Engine64\21.6.0.32\buShell.dll (Symantec Corporation)
ShellIconOverlayIdentifiers: [OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files (x86)\Norton 360\Engine64\21.6.0.32\buShell.dll (Symantec Corporation)
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-394672473-2120923872-2817331485-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Google
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = Google
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = Google
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = Google
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = Google
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-394672473-2120923872-2817331485-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM -> {708FC5A0-357D-40E4-91BB-B89780EE0166} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-111076-19270-3/4?mpre=hxxp://www.ebay.de/sch/i.html?_nkw={searchTerms}
SearchScopes: HKLM-x32 -> {708FC5A0-357D-40E4-91BB-B89780EE0166} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKLM-x32 -> {d43b3890-80c7-4010-a95d-1e77b5924dc3} URL = hxxp://de.wikipedia.org/wiki/Special:Search?search={searchTerms}
SearchScopes: HKLM-x32 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-111076-19270-3/4?mpre=hxxp://www.ebay.de/sch/i.html?_nkw={searchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-394672473-2120923872-2817331485-1000 -> {708FC5A0-357D-40E4-91BB-B89780EE0166} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms}
SearchScopes: HKU\S-1-5-21-394672473-2120923872-2817331485-1000 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-111076-19270-3/4?mpre=hxxp://www.ebay.de/sch/i.html?_nkw={searchTerms}
BHO: Norton Identity Protection -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton 360\Engine64\21.6.0.32\coIEPlg.dll (Symantec Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: Norton Identity Protection -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files (x86)\Norton 360\Engine\21.6.0.32\coIEPlg.dll (Symantec Corporation)
BHO-x32: Norton Vulnerability Protection -> {6D53EC84-6AAE-4787-AEEE-F4628F01010C} -> C:\Program Files (x86)\Norton 360\Engine\21.6.0.32\IPS\IPSBHO.DLL (Symantec Corporation)
BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine64\21.6.0.32\coIEPlg.dll (Symantec Corporation)
Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton 360\Engine\21.6.0.32\coIEPlg.dll (Symantec Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
ShellExecuteHooks-x32: EasyBits ShellExecute Hook - {E54729E8-BB3D-4270-9D49-7389EA579090} - C:\Windows\SysWOW64\ezUPBHook.dll [52920 2011-10-21] (EasyBits Software Corp.)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
FireFox:
========
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw.dll No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF HKLM-x32\...\Firefox\Extensions: [{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_21.6.0.32\coFFPlgn
FF Extension: Norton Toolbar - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_21.6.0.32\coFFPlgn [2015-01-06]
Chrome:
=======
CHR HomePage: Default -> hxxp://start.iminent.com/?appId=EE5B8D8F-4B04-42E6-B736-D9F6FE10EFB7
CHR StartupUrls: Default -> "https://www.youtube.com/", "https://www.facebook.com/", "https://twitter.com/"
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
CHR Profile: C:\Users\Torte\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Präsentationen) - C:\Users\Torte\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-12-29]
CHR Extension: (Google Docs) - C:\Users\Torte\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-12-29]
CHR Extension: (Google Drive) - C:\Users\Torte\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-12-29]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Torte\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-12-31]
CHR Extension: (YouTube) - C:\Users\Torte\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-12-29]
CHR Extension: (Adblock Plus) - C:\Users\Torte\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-12-31]
CHR Extension: (Google-Suche) - C:\Users\Torte\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-12-29]
CHR Extension: (Google Tabellen) - C:\Users\Torte\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-12-29]
CHR Extension: (AdBlock) - C:\Users\Torte\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-12-29]
CHR Extension: (Norton Identity Safe) - C:\Users\Torte\AppData\Local\Google\Chrome\User Data\Default\Extensions\iikflkcanblccfahdhdonehdalibjnif [2014-12-29]
CHR Extension: (Google Wallet) - C:\Users\Torte\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-12-29]
CHR Extension: (Google Mail) - C:\Users\Torte\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-12-29]
CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - No Path
CHR HKLM\...\Chrome\Extension: [mkfokfffehpeedafpekjeddnmnjhmcmk] - C:\Program Files (x86)\Norton 360\Engine\21.6.0.32\Exts\Chrome.crx [2014-12-29]
CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - No Path
CHR HKLM-x32\...\Chrome\Extension: [mkfokfffehpeedafpekjeddnmnjhmcmk] - C:\Program Files (x86)\Norton 360\Engine\21.6.0.32\Exts\Chrome.crx [2014-12-29]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 ezSharedSvc; C:\Windows\SysWOW64\ezSharedSvcHost.exe [514232 2010-04-23] (EasyBits Software AS) [File not signed]
R2 HPAuto; C:\Program Files\Hewlett-Packard\HP Auto\HPAuto.exe [682040 2011-02-16] (Hewlett-Packard)
R2 N360; C:\Program Files (x86)\Norton 360\Engine\21.6.0.32\N360.exe [265040 2014-09-21] (Symantec Corporation)
S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [3398544 2014-11-11] (INCA Internet Co., Ltd.)
R2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [186048 2014-12-09] ()
R2 RzKLService; C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe [105448 2014-12-06] (Razer Inc.)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R1 BHDrvx64; C:\Program Files (x86)\Norton 360\NortonData\21.6.0.32\Definitions\BASHDefs\20141209.001\BHDrvx64.sys [1587416 2014-12-09] (Symantec Corporation)
R1 ccSet_N360; C:\Windows\system32\drivers\N360x64\1506000.020\ccSetx64.sys [162392 2014-02-21] (Symantec Corporation)
R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [487216 2014-11-25] (Symantec Corporation)
R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [142640 2014-11-25] (Symantec Corporation)
R1 IDSVia64; C:\Program Files (x86)\Norton 360\NortonData\21.6.0.32\Definitions\IPSDefs\20150105.001\IDSvia64.sys [637656 2014-12-29] (Symantec Corporation)
R3 NAVENG; C:\Program Files (x86)\Norton 360\NortonData\21.6.0.32\Definitions\VirusDefs\20150105.019\ENG64.SYS [129752 2015-01-04] (Symantec Corporation)
R3 NAVEX15; C:\Program Files (x86)\Norton 360\NortonData\21.6.0.32\Definitions\VirusDefs\20150105.019\EX64.SYS [2137304 2015-01-04] (Symantec Corporation)
R2 rzpmgrk; C:\Windows\system32\drivers\rzpmgrk.sys [37184 2014-12-09] (Razer, Inc.)
R3 SRTSP; C:\Windows\system32\drivers\N360x64\1506000.020\SRTSP64.SYS [876248 2014-08-26] (Symantec Corporation)
R1 SRTSPX; C:\Windows\system32\drivers\N360x64\1506000.020\SRTSPX64.SYS [37592 2014-08-26] (Symantec Corporation)
R0 SymDS; C:\Windows\System32\drivers\N360x64\1506000.020\SYMDS64.SYS [493656 2014-08-26] (Symantec Corporation)
R0 SymEFA; C:\Windows\System32\drivers\N360x64\1506000.020\SYMEFA64.SYS [1148120 2014-08-26] (Symantec Corporation)
R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [177752 2014-12-29] (Symantec Corporation)
R1 SymIRON; C:\Windows\system32\drivers\N360x64\1506000.020\Ironx64.SYS [266968 2014-08-06] (Symantec Corporation)
R1 SymNetS; C:\Windows\system32\drivers\N360x64\1506000.020\SYMNETS.SYS [593112 2014-08-26] (Symantec Corporation)
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 WinRing0_1_2_0; \??\C:\Program Files (x86)\Razer\Razer Game Booster\Driver\WinRing0x64.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-06 18:18 - 2015-01-06 18:18 - 02123776 _____ (Farbar) C:\Users\Torte\Downloads\FRST64.exe
2015-01-06 18:16 - 2015-01-06 18:16 - 00003186 _____ () C:\Windows\System32\Tasks\HPCeeScheduleForTorte
2015-01-06 18:16 - 2015-01-06 18:16 - 00000332 _____ () C:\Windows\Tasks\HPCeeScheduleForTorte.job
2015-01-06 18:12 - 2015-01-06 18:14 - 00000773 _____ () C:\Users\Torte\Desktop\JRT.txt
2015-01-06 18:06 - 2015-01-06 18:06 - 00000000 ____D () C:\Windows\ERUNT
2015-01-06 18:05 - 2015-01-06 18:05 - 01707939 _____ (Thisisu) C:\Users\Torte\Downloads\JRT.exe
2015-01-06 18:03 - 2015-01-06 18:03 - 00001960 _____ () C:\Users\Torte\Desktop\AdwCleaner[S1].txt
2015-01-06 17:58 - 2015-01-06 17:58 - 00004754 _____ () C:\Users\Torte\Desktop\txtt.txt
2015-01-06 13:33 - 2015-01-06 17:57 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-01-06 13:33 - 2015-01-06 16:47 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-01-06 13:33 - 2015-01-06 13:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-01-06 13:33 - 2015-01-06 13:33 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-01-06 13:33 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-01-06 13:33 - 2014-11-21 06:14 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-01-06 13:33 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-01-06 13:32 - 2015-01-06 13:32 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Torte\Downloads\mbam-setup-2.0.4.1028.exe
2015-01-05 21:26 - 2015-01-05 21:26 - 00021738 _____ () C:\ComboFix.txt
2015-01-05 19:41 - 2011-06-26 07:45 - 00256000 _____ () C:\Windows\PEV.exe
2015-01-05 19:41 - 2010-11-07 18:20 - 00208896 _____ () C:\Windows\MBR.exe
2015-01-05 19:41 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2015-01-05 19:41 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2015-01-05 19:41 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2015-01-05 19:41 - 2000-08-31 01:00 - 00098816 _____ () C:\Windows\sed.exe
2015-01-05 19:41 - 2000-08-31 01:00 - 00080412 _____ () C:\Windows\grep.exe
2015-01-05 19:41 - 2000-08-31 01:00 - 00068096 _____ () C:\Windows\zip.exe
2015-01-05 19:38 - 2015-01-05 21:26 - 00000000 ____D () C:\Qoobox
2015-01-05 19:37 - 2015-01-05 21:23 - 00000000 ____D () C:\Windows\erdnt
2015-01-05 19:37 - 2015-01-05 19:37 - 05609498 ____R (Swearware) C:\Users\Torte\Desktop\ComboFix.exe
2015-01-05 19:37 - 2015-01-05 19:37 - 05609498 _____ (Swearware) C:\Users\Torte\Downloads\ComboFix.exe
2015-01-05 19:31 - 2015-01-05 19:31 - 00000000 ____D () C:\Users\Torte\Downloads\RevoUninstallerPortable
2015-01-05 19:30 - 2015-01-05 19:30 - 02785665 _____ (PortableApps.com) C:\Users\Torte\Downloads\RevoUninstallerPortable_1.95_Rev_2.paf.exe
2015-01-05 16:51 - 2015-01-05 16:52 - 00028857 _____ () C:\Users\Torte\Downloads\Addition.txt
2015-01-05 16:50 - 2015-01-06 18:18 - 00020047 _____ () C:\Users\Torte\Downloads\FRST.txt
2015-01-05 16:49 - 2015-01-06 18:18 - 00000000 ____D () C:\FRST
2015-01-05 16:00 - 2015-01-05 18:36 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2015-01-05 16:00 - 2015-01-05 16:31 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy
2015-01-05 06:21 - 2015-01-06 18:01 - 00000000 ____D () C:\AdwCleaner
2015-01-05 05:29 - 2015-01-05 05:29 - 00000000 ____D () C:\Users\Torte\AppData\Local\NPE
2015-01-03 17:31 - 2015-01-03 17:31 - 00000000 ____D () C:\Users\Torte\AppData\Roaming\LolClient
2015-01-02 00:38 - 2015-01-02 00:38 - 00000000 ____D () C:\ProgramData\Sun
2015-01-02 00:37 - 2015-01-02 00:37 - 00000000 ____D () C:\ProgramData\Oracle
2015-01-02 00:37 - 2015-01-02 00:37 - 00000000 ____D () C:\Program Files (x86)\Java
2014-12-31 15:43 - 2014-12-31 15:43 - 00000000 ____D () C:\2d559fb1a73f174de54af2dd842f
2014-12-31 15:42 - 2014-12-31 15:43 - 00000000 ____D () C:\1a727188a70ae81d50d7d1
2014-12-31 13:33 - 2015-01-05 21:32 - 00000000 ____D () C:\Windows\SysWOW64\DCS
2014-12-31 09:12 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE
2014-12-31 08:45 - 2014-12-31 09:12 - 00015448 _____ () C:\Windows\IE11_main.log
2014-12-31 04:47 - 2015-01-05 16:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-12-31 04:47 - 2014-12-31 04:47 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-12-30 19:03 - 2015-01-06 18:13 - 00000052 _____ () C:\Windows\SysWOW64\DOErrors.log
2014-12-30 17:54 - 2014-12-30 17:54 - 00000000 ____D () C:\Users\Torte\AppData\Local\Razer_Inc
2014-12-30 17:52 - 2014-12-30 17:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer
2014-12-30 17:52 - 2014-12-30 17:52 - 00000000 ____D () C:\Program Files (x86)\Razer
2014-12-30 17:52 - 2014-12-09 23:21 - 00037184 _____ (Razer, Inc.) C:\Windows\system32\Drivers\rzpmgrk.sys
2014-12-30 17:51 - 2014-12-30 17:51 - 00000150 _____ () C:\autoupdate.log
2014-12-30 17:33 - 2014-12-30 17:53 - 00000000 ____D () C:\Users\Torte\Documents\Razer
2014-12-30 17:33 - 2014-12-30 17:33 - 00003172 _____ () C:\Windows\System32\Tasks\Razer_Game_Booster_AutoUpdate
2014-12-30 17:31 - 2014-12-30 17:51 - 00000000 ____D () C:\Users\Torte\AppData\Local\Razer
2014-12-30 17:30 - 2014-12-30 17:52 - 00000000 ____D () C:\ProgramData\Razer
2014-12-30 17:26 - 2014-12-31 09:25 - 01593748 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-12-30 17:14 - 2014-12-30 17:14 - 23832608 _____ (Razer USA Ltd ) C:\Users\Torte\Downloads\Game_Booster_v3.7.0.11.exe
2014-12-30 14:40 - 2014-12-30 14:40 - 00000000 ____D () C:\5a5e37564c0f5c318716d5
2014-12-30 04:17 - 2015-01-05 16:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2014-12-30 04:16 - 2014-12-30 04:16 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-12-30 04:16 - 2014-12-30 04:16 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-12-30 04:03 - 2014-06-30 23:24 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll
2014-12-30 04:03 - 2014-06-30 23:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardres.dll
2014-12-30 04:03 - 2014-03-09 22:48 - 01389208 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe
2014-12-30 04:03 - 2014-03-09 22:48 - 00171160 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll
2014-12-30 04:03 - 2014-03-09 22:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardagt.exe
2014-12-30 04:03 - 2014-03-09 22:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\infocardapi.dll
2014-12-30 04:03 - 2011-04-09 07:58 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2014-12-30 04:03 - 2011-04-09 06:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2014-12-30 04:02 - 2014-06-06 07:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2014-12-30 04:02 - 2014-06-06 07:12 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2014-12-30 01:47 - 2014-11-11 16:29 - 03398544 _____ (INCA Internet Co., Ltd.) C:\Windows\SysWOW64\GameMon.des
2014-12-30 01:47 - 2004-12-30 13:43 - 00004682 _____ (INCA Internet Co., Ltd.) C:\Windows\SysWOW64\npptNT2.sys
2014-12-30 01:47 - 2003-07-15 22:17 - 00005174 _____ () C:\Windows\SysWOW64\nppt9x.vxd
2014-12-30 01:46 - 2014-12-30 01:46 - 00000000 ____D () C:\Program Files\Common Files\INCA Shared
2014-12-30 01:39 - 2015-01-05 16:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rumble Fighter
2014-12-30 01:39 - 2014-12-30 01:39 - 00001224 _____ () C:\Users\Torte\Desktop\Rumble Fighter.lnk
2014-12-30 01:37 - 2014-12-30 01:37 - 00000000 ____D () C:\Program Files (x86)\GamesCampus
2014-12-30 01:12 - 2014-12-30 01:12 - 00000178 _____ () C:\console.log
2014-12-30 01:11 - 2014-12-30 01:11 - 02177040 _____ (Reloaded Technologies) C:\Users\Torte\Downloads\Rumble_Fighter_Downloader (3).exe
2014-12-29 18:37 - 2014-12-29 18:37 - 00000000 ____D () C:\ProgramData\Riot Games
2014-12-29 18:27 - 2015-01-05 16:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\League of Legends
2014-12-29 18:27 - 2014-12-29 18:27 - 00001613 _____ () C:\Users\Public\Desktop\League of Legends.lnk
2014-12-29 18:27 - 2014-12-29 18:27 - 00000000 ____D () C:\Riot Games
2014-12-29 18:21 - 2014-12-29 18:35 - 00000000 ____D () C:\Users\Torte\AppData\Roaming\Riot Games
2014-12-29 18:20 - 2014-12-29 18:21 - 30668968 _____ (Riot Games) C:\Users\Torte\Downloads\LeagueofLegends_EUW_Installer_9_15_2014.exe
2014-12-29 17:15 - 2015-01-05 16:09 - 00000000 ____D () C:\Users\Torte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-12-29 17:15 - 2015-01-05 16:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-12-29 17:15 - 2014-12-29 17:15 - 01766152 _____ () C:\Users\Torte\Downloads\wrar520.exe
2014-12-29 17:15 - 2014-12-29 17:15 - 00000000 ____D () C:\Users\Torte\AppData\Roaming\WinRAR
2014-12-29 17:15 - 2014-12-29 17:15 - 00000000 ____D () C:\Program Files (x86)\WinRAR
2014-12-29 17:10 - 2010-06-02 04:55 - 00527192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_7.dll
2014-12-29 17:10 - 2010-06-02 04:55 - 00518488 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_7.dll
2014-12-29 17:10 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_7.dll
2014-12-29 17:10 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_7.dll
2014-12-29 17:10 - 2010-06-02 04:55 - 00077656 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_5.dll
2014-12-29 17:10 - 2010-06-02 04:55 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_5.dll
2014-12-29 17:10 - 2010-05-26 11:41 - 02526056 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_43.dll
2014-12-29 17:10 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_43.dll
2014-12-29 17:10 - 2010-05-26 11:41 - 02106216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_43.dll
2014-12-29 17:10 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_43.dll
2014-12-29 17:10 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_43.dll
2014-12-29 17:10 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_43.dll
2014-12-29 17:10 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_43.dll
2014-12-29 17:10 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_43.dll
2014-12-29 17:10 - 2010-05-26 11:41 - 00276832 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_43.dll
2014-12-29 17:10 - 2010-05-26 11:41 - 00248672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_43.dll
2014-12-29 17:10 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_6.dll
2014-12-29 17:10 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_6.dll
2014-12-29 17:10 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_6.dll
2014-12-29 17:10 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_6.dll
2014-12-29 17:10 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_4.dll
2014-12-29 17:10 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_4.dll
2014-12-29 17:10 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_7.dll
2014-12-29 17:10 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_7.dll
2014-12-29 17:10 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll
2014-12-29 17:10 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll
2014-12-29 17:10 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll
2014-12-29 17:10 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll
2014-12-29 17:10 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll
2014-12-29 17:10 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll
2014-12-29 17:10 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll
2014-12-29 17:10 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll
2014-12-29 17:10 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll
2014-12-29 17:10 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll
2014-12-29 17:10 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll
2014-12-29 17:10 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll
2014-12-29 17:10 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll
2014-12-29 17:10 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll
2014-12-29 17:10 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll
2014-12-29 17:10 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll
2014-12-29 17:10 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll
2014-12-29 17:10 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll
2014-12-29 17:10 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll
2014-12-29 17:10 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll
2014-12-29 17:10 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll
2014-12-29 17:10 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll
2014-12-29 17:10 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll
2014-12-29 17:10 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll
2014-12-29 17:10 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll
2014-12-29 17:10 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll
2014-12-29 17:10 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll
2014-12-29 17:10 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll
2014-12-29 17:10 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll
2014-12-29 17:10 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll
2014-12-29 17:10 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll
2014-12-29 17:10 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll
2014-12-29 17:10 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll
2014-12-29 17:10 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll
2014-12-29 17:10 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll
2014-12-29 17:10 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll
2014-12-29 17:10 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll
2014-12-29 17:10 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll
2014-12-29 17:10 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll
2014-12-29 17:10 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll
2014-12-29 17:10 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll
2014-12-29 17:10 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll
2014-12-29 17:10 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll
2014-12-29 17:10 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll
2014-12-29 17:10 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll
2014-12-29 17:10 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll
2014-12-29 17:10 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll
2014-12-29 17:10 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll
2014-12-29 17:10 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll
2014-12-29 17:10 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll
2014-12-29 17:10 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll
2014-12-29 17:10 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll
2014-12-29 17:10 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll
2014-12-29 17:10 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll
2014-12-29 17:10 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll
2014-12-29 17:10 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll
2014-12-29 17:10 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll
2014-12-29 17:10 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll
2014-12-29 17:10 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll
2014-12-29 17:10 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll
2014-12-29 17:10 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll
2014-12-29 17:10 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll
2014-12-29 17:10 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll
2014-12-29 17:10 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll
2014-12-29 17:10 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll
2014-12-29 17:10 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll
2014-12-29 17:10 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll
2014-12-29 17:10 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll
2014-12-29 17:10 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll
2014-12-29 17:10 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll
2014-12-29 17:10 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll
2014-12-29 17:10 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll
2014-12-29 17:10 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll
2014-12-29 17:10 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll
2014-12-29 17:10 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll
2014-12-29 17:10 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll
2014-12-29 17:10 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll
2014-12-29 17:10 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll
2014-12-29 17:10 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll
2014-12-29 17:10 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll
2014-12-29 17:10 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll
2014-12-29 17:10 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll
2014-12-29 17:10 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll
2014-12-29 17:10 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll
2014-12-29 17:10 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll
2014-12-29 17:10 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll
2014-12-29 17:10 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll
2014-12-29 17:10 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll
2014-12-29 17:10 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll
2014-12-29 17:10 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll
2014-12-29 17:10 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll
2014-12-29 17:10 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll
2014-12-29 17:10 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll
2014-12-29 17:10 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll
2014-12-29 17:10 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll
2014-12-29 17:10 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll
2014-12-29 17:10 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll
2014-12-29 17:10 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll
2014-12-29 17:10 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll
2014-12-29 17:10 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll
2014-12-29 17:10 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll
2014-12-29 17:10 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll
2014-12-29 17:10 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll
2014-12-29 17:10 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll
2014-12-29 17:10 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll
2014-12-29 17:10 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll
2014-12-29 17:10 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll
2014-12-29 17:10 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll
2014-12-29 17:10 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll
2014-12-29 17:10 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll
2014-12-29 17:10 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll
2014-12-29 17:10 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll
2014-12-29 17:10 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll
2014-12-29 17:10 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll
2014-12-29 17:10 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll
2014-12-29 17:10 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll
2014-12-29 17:10 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll
2014-12-29 17:10 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll
2014-12-29 17:10 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll
2014-12-29 17:10 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll
2014-12-29 17:10 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll
2014-12-29 17:10 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll
2014-12-29 17:10 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll
2014-12-29 17:10 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll
2014-12-29 17:10 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll
2014-12-29 17:10 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll
2014-12-29 17:10 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll
2014-12-29 17:10 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll
2014-12-29 17:10 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll
2014-12-29 17:10 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll
2014-12-29 17:10 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll
2014-12-29 17:10 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll
2014-12-29 17:10 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll
2014-12-29 17:10 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll
2014-12-29 17:10 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll
2014-12-29 17:10 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll
2014-12-29 17:10 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll
2014-12-29 17:10 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll
2014-12-29 17:09 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll
2014-12-29 17:09 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll
2014-12-29 17:09 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll
2014-12-29 17:09 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll
2014-12-29 17:09 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll
2014-12-29 17:09 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll
2014-12-29 17:09 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll
2014-12-29 17:09 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll
2014-12-29 17:09 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll
2014-12-29 17:09 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll
2014-12-29 17:09 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll
2014-12-29 17:09 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll
2014-12-29 17:09 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll
2014-12-29 17:09 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll
2014-12-29 17:09 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll
2014-12-29 17:09 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll
2014-12-29 17:09 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll
2014-12-29 17:09 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll
2014-12-29 16:53 - 2014-12-29 17:16 - 00004320 _____ () C:\Users\Torte\Downloads\bibanator config Dezember 2014.rar
2014-12-29 16:46 - 2014-12-29 16:46 - 02177040 _____ (Reloaded Technologies) C:\Users\Torte\Downloads\Rumble_Fighter_Downloader (2).exe
2014-12-29 16:45 - 2014-12-29 16:45 - 02177040 _____ (Reloaded Technologies) C:\Users\Torte\Downloads\Rumble_Fighter_Downloader (1).exe
2014-12-29 16:44 - 2014-12-29 16:44 - 00000113 _____ () C:\Users\Torte\Desktop\wunsch tasta.txt
2014-12-29 16:42 - 2014-12-29 16:42 - 02177040 _____ (Reloaded Technologies) C:\Users\Torte\Downloads\Rumble_Fighter_Downloader.exe
2014-12-29 16:37 - 2014-12-29 16:37 - 00000000 ____D () C:\Windows\System32\Tasks\Norton 360
2014-12-29 16:34 - 2014-12-29 16:34 - 00177752 _____ (Symantec Corporation) C:\Windows\system32\Drivers\SYMEVENT64x86.SYS
2014-12-29 16:34 - 2014-12-29 16:34 - 00008222 _____ () C:\Windows\system32\Drivers\SYMEVENT64x86.CAT
2014-12-29 16:34 - 2014-12-29 16:34 - 00003206 _____ () C:\Windows\System32\Tasks\Norton WSC Integration
2014-12-29 16:34 - 2014-12-29 16:34 - 00002391 _____ () C:\Users\Public\Desktop\Norton 360.lnk
2014-12-29 16:34 - 2014-12-29 16:34 - 00000000 ____D () C:\Program Files\Common Files\Symantec Shared
2014-12-29 16:33 - 2015-01-05 16:09 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton 360
2014-12-29 16:33 - 2014-12-29 16:33 - 00000000 ____D () C:\Windows\system32\Drivers\N360x64
2014-12-29 16:33 - 2014-12-29 16:33 - 00000000 ____D () C:\Program Files (x86)\Norton 360
2014-12-29 16:30 - 2012-02-17 07:38 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2014-12-29 16:30 - 2012-02-17 06:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2014-12-29 16:30 - 2012-02-17 05:58 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2014-12-29 16:30 - 2012-02-17 05:57 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys
2014-12-29 16:12 - 2015-01-05 16:09 - 00000000 ____D () C:\Users\Torte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Norton
2014-12-29 16:06 - 2015-01-06 18:04 - 00000000 ____D () C:\Users\Torte\AppData\Local\CrashDumps
2014-12-29 16:02 - 2014-12-29 16:02 - 00000000 ____D () C:\ProgramData\PCSettings
2014-12-29 15:53 - 2014-12-29 15:53 - 00000000 ____D () C:\Users\Public\Downloads\Norton
2014-12-29 15:51 - 2014-12-29 15:51 - 01021792 _____ (Symantec Corporation) C:\Users\Torte\Downloads\NortonN360Downloader.exe
2014-12-29 15:49 - 2014-12-30 16:44 - 00000000 ____D () C:\Users\Torte\AppData\Local\Spotify
2014-12-29 15:49 - 2014-12-29 15:49 - 00001805 _____ () C:\Users\Torte\Desktop\Spotify.lnk
2014-12-29 15:49 - 2014-12-29 15:49 - 00001791 _____ () C:\Users\Torte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk
2014-12-29 15:42 - 2015-01-06 18:18 - 00000000 ____D () C:\Users\Torte\AppData\Roaming\TS3Client
2014-12-29 15:42 - 2015-01-05 16:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
2014-12-29 15:42 - 2014-12-29 15:42 - 00000967 _____ () C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk
2014-12-29 15:42 - 2014-12-29 15:42 - 00000000 ____D () C:\Program Files\TeamSpeak 3 Client
2014-12-29 15:41 - 2015-01-06 18:03 - 00000000 ____D () C:\Users\Torte\AppData\Roaming\Spotify
2014-12-29 15:41 - 2014-12-29 15:41 - 00137888 _____ (Spotify Ltd) C:\Users\Torte\Downloads\SpotifySetup.exe
2014-12-29 15:35 - 2014-12-29 15:40 - 30014480 _____ (TeamSpeak Systems GmbH) C:\Users\Torte\Downloads\TeamSpeak3-Client-win64-3.0.16.exe
2014-12-29 15:28 - 2015-01-05 16:09 - 00000000 ____D () C:\Users\Torte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2014-12-29 15:28 - 2014-12-29 15:28 - 00000219 _____ () C:\Users\Torte\Desktop\Counter-Strike Global Offensive.url
2014-12-29 15:27 - 2014-12-29 15:28 - 00000000 ___HD () C:\Users\Torte\AppData\Roaming\GoldenGate
2014-12-29 15:27 - 2014-12-29 15:27 - 00000171 _____ () C:\Users\Torte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Play Games Online.url
2014-12-29 15:21 - 2015-01-06 17:55 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-12-29 15:21 - 2015-01-05 16:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2014-12-29 15:21 - 2014-12-29 15:21 - 00000963 _____ () C:\Users\Public\Desktop\Steam.lnk
2014-12-29 15:20 - 2014-12-29 15:20 - 01142392 _____ () C:\Users\Torte\Downloads\SteamSetup.exe
2014-12-29 15:16 - 2015-01-06 18:02 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-12-29 15:16 - 2015-01-06 17:27 - 00001110 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-12-29 15:16 - 2015-01-05 16:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-12-29 15:16 - 2014-12-29 16:15 - 00002175 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-12-29 15:16 - 2014-12-29 15:22 - 00004106 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-12-29 15:16 - 2014-12-29 15:22 - 00003854 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-12-29 15:15 - 2014-12-29 15:16 - 00000000 ____D () C:\Users\Torte\AppData\Local\Google
2014-12-29 15:15 - 2014-12-29 15:16 - 00000000 ____D () C:\Program Files (x86)\Google
2014-12-29 15:14 - 2014-12-29 15:14 - 00000000 ____D () C:\Users\Torte\AppData\Roaming\Macromedia
2014-12-29 15:14 - 2014-12-29 15:14 - 00000000 ____D () C:\Users\Torte\AppData\Roaming\Adobe
2014-12-29 15:13 - 2014-12-29 15:13 - 00057560 _____ () C:\Users\Torte\AppData\Local\GDIPFONTCACHEV1.DAT
2014-12-29 15:13 - 2014-12-29 15:13 - 00000000 ____D () C:\Users\Torte\Tracing
2014-12-29 15:13 - 2014-12-29 15:13 - 00000000 ____D () C:\Users\Torte\AppData\Roaming\ATI
2014-12-29 15:13 - 2014-12-29 15:13 - 00000000 ____D () C:\Users\Torte\AppData\Local\ATI
2014-12-29 15:12 - 2015-01-05 22:05 - 00003930 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{3FBEED56-E0C6-4FDA-ABE3-9D35E02AA564}
2014-12-29 15:12 - 2014-12-29 16:15 - 00001439 _____ () C:\Users\Torte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-12-29 15:12 - 2014-12-29 16:15 - 00001405 _____ () C:\Users\Torte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2014-12-29 15:12 - 2014-12-29 15:12 - 00000000 ____D () C:\Users\Torte\AppData\Roaming\Synaptics
2014-12-29 15:11 - 2014-12-30 19:27 - 00000000 ____D () C:\Users\Torte\AppData\Roaming\Hewlett-Packard
2014-12-29 15:10 - 2015-01-06 18:16 - 00000000 ____D () C:\Users\Torte\AppData\Local\Hewlett-Packard
2014-12-29 15:10 - 2015-01-05 16:09 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Shopping and Services
2014-12-29 15:10 - 2014-12-30 19:30 - 00000000 ____D () C:\Users\Torte\AppData\Roaming\hpqlog
2014-12-29 15:09 - 2014-12-29 15:11 - 00000000 ____D () C:\Users\Torte\AppData\Local\Hewlett-Packard_Company
2014-12-29 15:09 - 2014-12-29 15:09 - 00000000 ____D () C:\Users\Torte\AppData\Local\RemEngine
2014-12-29 15:08 - 2015-01-05 16:09 - 00000000 ___RD () C:\Users\Torte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-12-29 15:08 - 2015-01-05 16:09 - 00000000 ___RD () C:\Users\Torte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-12-29 15:08 - 2015-01-05 09:14 - 00000000 ____D () C:\Users\Torte
2014-12-29 15:08 - 2014-12-29 15:08 - 00000020 ___SH () C:\Users\Torte\ntuser.ini
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 _SHDL () C:\Users\Torte\Vorlagen
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 _SHDL () C:\Users\Torte\Startmenü
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 _SHDL () C:\Users\Torte\Netzwerkumgebung
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 _SHDL () C:\Users\Torte\Lokale Einstellungen
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 _SHDL () C:\Users\Torte\Eigene Dateien
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 _SHDL () C:\Users\Torte\Druckumgebung
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 _SHDL () C:\Users\Torte\Documents\Eigene Musik
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 _SHDL () C:\Users\Torte\Documents\Eigene Bilder
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 _SHDL () C:\Users\Torte\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 _SHDL () C:\Users\Torte\AppData\Local\Verlauf
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 _SHDL () C:\Users\Torte\AppData\Local\Anwendungsdaten
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 _SHDL () C:\Users\Torte\Anwendungsdaten
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 _SHDL () C:\Users\Default\Vorlagen
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 _SHDL () C:\Users\Default\Startmenü
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 _SHDL () C:\Users\Default\Druckumgebung
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 _SHDL () C:\Programme
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 _SHDL () C:\ProgramData\Vorlagen
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 _SHDL () C:\ProgramData\Startmenü
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 _SHDL () C:\ProgramData\Favoriten
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 _SHDL () C:\ProgramData\Dokumente
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 _SHDL () C:\Dokumente und Einstellungen
2014-12-29 15:08 - 2014-12-29 15:08 - 00000000 ____D () C:\Users\Torte\AppData\Local\VirtualStore
2014-12-29 15:08 - 2014-05-14 17:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2014-12-29 15:08 - 2014-05-14 17:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2014-12-29 15:08 - 2014-05-14 17:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2014-12-29 15:08 - 2014-05-14 17:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2014-12-29 15:08 - 2014-05-14 17:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2014-12-29 15:08 - 2014-05-14 17:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2014-12-29 15:08 - 2014-05-14 17:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2014-12-29 15:08 - 2014-05-14 17:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2014-12-29 15:08 - 2014-05-14 17:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2014-12-29 15:08 - 2014-05-14 17:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2014-12-29 15:08 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2014-12-29 15:08 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2014-12-29 15:08 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2014-12-29 15:08 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-01-06 18:09 - 2009-07-14 05:45 - 00031856 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-01-06 18:09 - 2009-07-14 05:45 - 00031856 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-01-06 18:02 - 2010-11-21 04:47 - 00959588 _____ () C:\Windows\PFRO.log
2015-01-06 18:02 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-01-06 18:02 - 2009-07-14 05:51 - 00047359 _____ () C:\Windows\setupact.log
2015-01-06 18:01 - 2013-05-06 12:20 - 01768625 _____ () C:\Windows\WindowsUpdate.log
2015-01-06 17:51 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system
2015-01-06 13:32 - 2011-10-22 01:35 - 00699568 _____ () C:\Windows\system32\perfh007.dat
2015-01-06 13:32 - 2011-10-22 01:35 - 00149676 _____ () C:\Windows\system32\perfc007.dat
2015-01-06 13:32 - 2009-07-14 06:13 - 01620196 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-01-05 21:14 - 2009-07-14 03:34 - 00000215 _____ () C:\Windows\system.ini
2015-01-05 16:09 - 2013-05-06 12:27 - 00000000 ____D () C:\ProgramData\Norton
2015-01-05 16:09 - 2013-05-06 12:19 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2015-01-05 16:09 - 2011-10-21 16:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
2015-01-05 16:09 - 2011-10-21 16:29 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Communication and Chat
2015-01-05 16:09 - 2011-10-21 16:26 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security and Protection
2015-01-05 16:09 - 2011-10-21 16:26 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
2015-01-05 16:09 - 2011-10-21 16:19 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Productivity and Tools
2015-01-05 16:09 - 2009-07-14 04:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-01-05 16:09 - 2009-07-14 04:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-01-05 16:09 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\AppCompat
2015-01-05 16:08 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\registration
2015-01-05 15:39 - 2009-07-14 06:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-01-05 08:22 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2014-12-31 10:11 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\zh-HK
2014-12-31 10:11 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\tr-TR
2014-12-31 10:11 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-12-31 10:10 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\zh-HK
2014-12-31 10:10 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\tr-TR
2014-12-31 10:09 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\Windows Defender
2014-12-31 10:09 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2014-12-31 10:09 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\Dism
2014-12-31 10:09 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\Dism
2014-12-31 04:47 - 2011-10-21 16:29 - 00000000 ____D () C:\ProgramData\Skype
2014-12-30 19:30 - 2011-10-21 16:15 - 00000000 ____D () C:\Program Files (x86)\Hewlett-Packard
2014-12-30 19:30 - 2011-02-10 20:23 - 00000000 ____D () C:\SWSetup
2014-12-30 01:02 - 2009-07-14 06:38 - 00029696 ___SH () C:\Windows\system32\config\BCD-Template.LOG
2014-12-30 01:02 - 2009-07-14 06:32 - 00032768 _____ () C:\Windows\system32\config\BCD-Template
2014-12-29 17:10 - 2011-10-21 16:30 - 00010358 _____ () C:\Windows\DirectX.log
2014-12-29 16:30 - 2009-07-14 06:32 - 00000000 ____D () C:\Windows\system32\restore
2014-12-29 15:10 - 2011-10-21 16:35 - 00000000 ___RD () C:\Program Files\Online Services
2014-12-29 15:10 - 2011-10-21 16:19 - 00000000 ___RD () C:\Program Files (x86)\Online Services
2014-12-29 15:10 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\Windows Sidebar
2014-12-29 15:10 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\Windows Sidebar
2014-12-29 15:09 - 2011-02-10 20:23 - 00000000 ____D () C:\SYSTEM.SAV
2014-12-29 15:08 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Public\Libraries
2014-12-29 15:08 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Default
2014-12-29 15:08 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\Recovery
2014-12-29 15:08 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Windows NT
2014-12-29 15:08 - 2007-01-02 02:32 - 00000000 ____D () C:\Recovery
2014-12-29 15:07 - 2013-05-06 12:13 - 00000056 ____H () C:\Windows\SysWOW64\ezsidmv.dat
2014-12-29 15:04 - 2007-01-02 02:25 - 00000000 ____D () C:\Windows\Panther
Some content of TEMP:
====================
C:\Users\Torte\AppData\Local\Temp\Quarantine.exe
C:\Users\Torte\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-01-04 06:48
==================== End Of Log ============================
--- --- ---
bis jetzt kam kein neues fenster mehr