Guten Abend,
hier die Ergebnisse vom FRST und JRT.
Die anderen Ergebnisse sind gespeichert, der Rechner macht sie aber nicht auf. Daher als Anhang :-). Hoffe das ist ok.
Grüßeund schon ml danke.
Marta
Anhang 76413 Anhang 76414 Anhang 76415
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 7.6.4 (09.28.2015:1)
OS: Windows 8.1 x64
Ran by Anna on 21.10.2015 at 21:58:54,85
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
Successfully deleted: [Service] 0182011433594614mcinstcleanup [Reboot required]
~~~ Tasks
~~~ Registry Values
Successfully deleted: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\GoogleChromeAutoLaunch_12C6C396F9F079F593189BD3E5EB8A5F
~~~ Registry Keys
~~~ Files
Successfully deleted: [File] C:\Program Files (x86)\GUTCC5A.tmp
Successfully deleted: [File] C:\Users\Public\Desktop\hotspot shield.lnk
~~~ Folders
Successfully deleted: [Folder] C:\Users\Anna\Appdata\Local\f2b887f9-45e4-41ec-9686-5c03e8200cda
~~~ FireFox
Emptied folder: C:\Users\Anna\AppData\Roaming\mozilla\firefox\profiles\874oevxq.default\minidumps [20 files]
~~~ Chrome
[C:\Users\Anna\Appdata\Local\Google\Chrome\User Data\Default\Preferences] - default search provider reset
[C:\Users\Anna\Appdata\Local\Google\Chrome\User Data\Default\Preferences] - Extensions Deleted:
[C:\Users\Anna\Appdata\Local\Google\Chrome\User Data\Default\Secure Preferences] - default search provider reset
[C:\Users\Anna\Appdata\Local\Google\Chrome\User Data\Default\Secure Preferences] - Extensions Deleted:
[]
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 21.10.2015 at 22:28:37,96
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 7.6.4 (09.28.2015:1)
OS: Windows 8.1 x64
Ran by Anna on 21.10.2015 at 21:58:54,85
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
Successfully deleted: [Service] 0182011433594614mcinstcleanup [Reboot required]
~~~ Tasks
~~~ Registry Values
Successfully deleted: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\GoogleChromeAutoLaunch_12C6C396F9F079F593189BD3E5EB8A5F
~~~ Registry Keys
~~~ Files
Successfully deleted: [File] C:\Program Files (x86)\GUTCC5A.tmp
Successfully deleted: [File] C:\Users\Public\Desktop\hotspot shield.lnk
~~~ Folders
Successfully deleted: [Folder] C:\Users\Anna\Appdata\Local\f2b887f9-45e4-41ec-9686-5c03e8200cda
~~~ FireFox
Emptied folder: C:\Users\Anna\AppData\Roaming\mozilla\firefox\profiles\874oevxq.default\minidumps [20 files]
~~~ Chrome
[C:\Users\Anna\Appdata\Local\Google\Chrome\User Data\Default\Preferences] - default search provider reset
[C:\Users\Anna\Appdata\Local\Google\Chrome\User Data\Default\Preferences] - Extensions Deleted:
[C:\Users\Anna\Appdata\Local\Google\Chrome\User Data\Default\Secure Preferences] - default search provider reset
[C:\Users\Anna\Appdata\Local\Google\Chrome\User Data\Default\Secure Preferences] - Extensions Deleted:
[]
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 21.10.2015 at 22:28:37,96
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Code:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 7.6.4 (09.28.2015:1)
OS: Windows 8.1 x64
Ran by Anna on 21.10.2015 at 21:58:54,85
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
Successfully deleted: [Service] 0182011433594614mcinstcleanup [Reboot required]
~~~ Tasks
~~~ Registry Values
Successfully deleted: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\GoogleChromeAutoLaunch_12C6C396F9F079F593189BD3E5EB8A5F
~~~ Registry Keys
~~~ Files
Successfully deleted: [File] C:\Program Files (x86)\GUTCC5A.tmp
Successfully deleted: [File] C:\Users\Public\Desktop\hotspot shield.lnk
~~~ Folders
Successfully deleted: [Folder] C:\Users\Anna\Appdata\Local\f2b887f9-45e4-41ec-9686-5c03e8200cda
~~~ FireFox
Emptied folder: C:\Users\Anna\AppData\Roaming\mozilla\firefox\profiles\874oevxq.default\minidumps [20 files]
~~~ Chrome
[C:\Users\Anna\Appdata\Local\Google\Chrome\User Data\Default\Preferences] - default search provider reset
[C:\Users\Anna\Appdata\Local\Google\Chrome\User Data\Default\Preferences] - Extensions Deleted:
[C:\Users\Anna\Appdata\Local\Google\Chrome\User Data\Default\Secure Preferences] - default search provider reset
[C:\Users\Anna\Appdata\Local\Google\Chrome\User Data\Default\Secure Preferences] - Extensions Deleted:
[]
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 21.10.2015 at 22:28:37,96
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Code:
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:21-10-2015 01
durchgeführt von Anna (Administrator) auf SHARKBARK (21-10-2015 22:45:10)
Gestartet von C:\Users\Anna\Desktop
Geladene Profile: Anna (Verfügbare Profile: Anna)
Platform: Windows 8.1 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: Chrome)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Prozesse (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)
(Check Point Software Technologies Ltd.) C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe
(Check Point Software Technologies, Ltd.) C:\Program Files (x86)\CheckPoint\ZoneAlarm\ZAPrivacyService.exe
(Apache Software Foundation) C:\Desktop\OpenOffice\program\soffice.bin
(Check Point Software Technologies Ltd.) C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe
(Apache Software Foundation) C:\Desktop\OpenOffice\program\soffice.bin
(Apache Software Foundation) C:\Desktop\OpenOffice\program\soffice.bin
(Apache Software Foundation) C:\Desktop\OpenOffice\program\soffice.bin
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\McChHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe
==================== Registry (Nicht auf der Ausnahmeliste) ===========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1647616 2012-06-13] (Conexant Systems, Inc.)
HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [887968 2012-06-14] (Conexant Systems, Inc.)
HKLM\...\Run: [Energy Management] => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [17079376 2013-03-08] (Lenovo (Beijing) Limited)
HKLM\...\Run: [EnergyUtility] => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [191568 2013-03-08] (Lenovo(beijing) Limited)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2916152 2012-08-27] (Synaptics Incorporated)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [170256 2015-09-15] (Apple Inc.)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766688 2014-07-04] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [Dolby Advanced Audio v2] => C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe [508656 2012-07-25] (Dolby Laboratories Inc.)
HKLM-x32\...\Run: [YouCam Mirage] => C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [136488 2012-07-27] (CyberLink)
HKLM-x32\...\Run: [YouCam Tray] => C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe [167024 2012-07-27] (CyberLink Corp.)
HKLM-x32\...\Run: [UpdateP2GShortCut] => C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [217088 2012-04-18] (CyberLink Corp.)
HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe [91432 2012-03-28] (CyberLink Corp.)
HKLM-x32\...\Run: [Intel AppUp(SM) center] => C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [155488 2012-07-12] (Intel Corporation)
HKLM-x32\...\Run: [ZoneAlarm] => C:\Program Files (x86)\CheckPoint\ZoneAlarm\zatray.exe [137352 2014-08-13] (Check Point Software Technologies Ltd.)
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKU\S-1-5-21-3388536396-2537886813-2508632830-1002\...\Run: [Steam] => C:\Program Files (x86)\Steam\Steam.exe [2899136 2015-08-19] (Valve Corporation)
HKU\S-1-5-21-3388536396-2537886813-2508632830-1002\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\Ribbons.scr [132608 2014-10-29] (Microsoft Corporation)
HKU\S-1-5-18\...\Run: [ZoneAlarm Windows 10 Upgrader] => "C:\ProgramData\CheckPoint\ZoneAlarm\Data\Updates\unpacked==win10=update_win10.zip\upgrade.exe" /delay
ShellIconOverlayIdentifiers: [SugarSyncBackedUp] -> {0C4A258A-3F3B-4FFF-80A7-9B3BEC139472} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncPending] -> {62CCD8E3-9C21-41E1-B55E-1E26DFC68511} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncRoot] -> {A759AFF6-5851-457D-A540-F4ECED148351} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)
ShellIconOverlayIdentifiers: [SugarSyncShared] -> {1574C9EF-7D58-488F-B358-8B78C1538F51} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.)
==================== Internet (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{AFFED46F-ACEA-4FB2-9304-B2ADD1940391}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{B8C27A3E-8EC4-4186-999B-8AB516C2C3A6}: [DhcpNameServer] 8.8.8.8
Tcpip\..\Interfaces\{BCBD4167-91CF-4FE4-8FE7-8C443182D21E}: [NameServer] 8.8.8.8
Tcpip\..\Interfaces\{D17B84CD-7D36-4CFC-AAC3-0E1A588FABE0}: [DhcpNameServer] 192.168.0.1
Internet Explorer:
==================
HKU\S-1-5-21-3388536396-2537886813-2508632830-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://lenovo13.msn.com
HKU\S-1-5-21-3388536396-2537886813-2508632830-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo13.msn.com
HKU\S-1-5-21-3388536396-2537886813-2508632830-1002\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com
HKU\S-1-5-21-3388536396-2537886813-2508632830-1002\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com
SearchScopes: HKU\S-1-5-21-3388536396-2537886813-2508632830-1002 -> DefaultScope {ADC80AB5-9A99-4D05-9162-5A7EC038A3A5} URL = hxxps://de.search.yahoo.com/search?fr=mcafee&type=B014DE0D19700101&p={searchTerms}
SearchScopes: HKU\S-1-5-21-3388536396-2537886813-2508632830-1002 -> {ADC80AB5-9A99-4D05-9162-5A7EC038A3A5} URL = hxxps://de.search.yahoo.com/search?fr=mcafee&type=B014DE0D19700101&p={searchTerms}
BHO: McAfee SiteAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2015-09-15] (McAfee, Inc.)
BHO-x32: McAfee SiteAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2015-09-15] (McAfee, Inc.)
Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2015-09-15] (McAfee, Inc.)
Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2015-09-15] (McAfee, Inc.)
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2015-09-15] (McAfee, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2015-09-15] (McAfee, Inc.)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2015-09-15] (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2015-09-15] (McAfee, Inc.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
FireFox:
========
FF ProfilePath: C:\Users\Anna\AppData\Roaming\Mozilla\Firefox\Profiles\874oevxq.default
FF DefaultSearchEngine: Google
FF SearchEngineOrder.1: Sichere Suche
FF SelectedSearchEngine: Google
FF Homepage: hxxp://www.tumblr.com/dashboard
FF Keyword.URL: hxxp://de.search.yahoo.com/search?fr=mcafee&type=A112DE80003&p=
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_117.dll [2013-10-28] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] ()
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2013-02-05] (Microsoft Corporation)
FF Plugin-x32: @nitropdf.com/NitroPDF -> C:\Program Files (x86)\Nitro\Pro 8\npnitromozilla.dll [2012-12-13] (Nitro PDF)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-18] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-18] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-09-27] (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\McSiteAdvisor.xml [2014-01-02]
FF Extension: Stylish - C:\Users\Anna\AppData\Roaming\Mozilla\Firefox\Profiles\874oevxq.default\Extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}.xpi [2014-05-22] [ist nicht signiert]
FF Extension: Hotspot Shield Extension - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\afproxy@anchorfree.com [2015-05-15] [ist nicht signiert]
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF Extension: Kein Name - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [2015-09-07] [ist nicht signiert]
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK => nicht gefunden
Chrome:
=======
CHR StartupUrls: Default -> "hxxp://www.google.de/","hxxp://www.tumblr.com/dashboard"
CHR Profile: C:\Users\Anna\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\Anna\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-08]
CHR Extension: (Google Drive) - C:\Users\Anna\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21]
CHR Extension: (YouTube) - C:\Users\Anna\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-01]
CHR Extension: (Google-Suche) - C:\Users\Anna\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-04-05]
CHR Extension: (SiteAdvisor) - C:\Users\Anna\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2015-07-11]
CHR Extension: (Google Text & Tabellen Offline) - C:\Users\Anna\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-09-13]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Anna\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-08-07]
CHR Extension: (Google Mail) - C:\Users\Anna\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-05]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2015-09-18]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2015-09-18]
==================== Dienste (Nicht auf der Ausnahmeliste) ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
S2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2014-07-04] (Advanced Micro Devices, Inc.) [Datei ist nicht signiert]
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104 2015-09-02] (Apple Inc.)
S3 HssTrayService; C:\Program Files (x86)\Hotspot Shield\bin\HssTrayService.EXE [96600 2015-06-04] ()
S2 HssWd; C:\Program Files (x86)\Hotspot Shield\bin\hsswd.exe [589520 2015-06-04] ()
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes)
R2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [157928 2015-09-15] (McAfee, Inc.)
S2 NitroDriverReadSpool8; C:\Program Files\Common Files\Nitro\Pro\8.0\NitroPDFDriverService8x64.exe [230408 2012-12-13] (Nitro PDF Software)
S2 UCManSvc; C:\Program Files (x86)\SoftDenchi\UCManSvc.exe [241808 2010-03-12] (Paltiosoft Inc.) [Datei ist nicht signiert]
R2 vsmon; C:\Program Files (x86)\CheckPoint\ZoneAlarm\vsmon.exe [3596752 2014-08-13] (Check Point Software Technologies Ltd.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation)
R2 ZAPrivacyService; C:\Program Files (x86)\CheckPoint\ZoneAlarm\ZaPrivacyService.exe [96272 2014-08-13] (Check Point Software Technologies, Ltd.)
===================== Treiber (Nicht auf der Ausnahmeliste) ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [8536752 2013-07-01] (Broadcom Corporation)
S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation)
R1 HssDRV6; C:\Windows\system32\DRIVERS\hssdrv6.sys [44744 2014-05-17] (AnchorFree Inc.)
R0 KL1; C:\Windows\System32\DRIVERS\kl1.sys [7717984 2014-06-11] (Kaspersky Lab ZAO)
S0 klelam; C:\Windows\System32\DRIVERS\klelam.sys [29616 2014-06-11] (Kaspersky Lab)
U5 klflt; C:\Windows\System32\Drivers\klflt.sys [92768 2014-06-11] (Kaspersky Lab ZAO)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [490080 2014-06-11] (Kaspersky Lab ZAO)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-10-05] (Malwarebytes Corporation)
R3 mfesapsn; C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [37960 2015-09-15] (McAfee, Inc.)
R3 rtsuvc; C:\Windows\system32\DRIVERS\rtsuvc.sys [8222736 2012-06-15] (Realtek Semiconductor Corp.)
R3 taphss6; C:\Windows\system32\DRIVERS\taphss6.sys [42184 2014-05-17] (Anchorfree Inc.)
R1 Vsdatant; C:\Windows\System32\drivers\vsdatant.sys [450456 2014-08-13] (Check Point Software Technologies Ltd.)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation)
S3 wsvd; C:\Windows\system32\DRIVERS\wsvd.sys [102376 2012-06-13] ("CyberLink)
S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [X]
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
==================== Ein Monat: Erstellte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2015-10-21 22:45 - 2015-10-21 22:45 - 00000000 ____D C:\Users\Anna\Desktop\FRST-OlderVersion
2015-10-21 22:28 - 2015-10-21 22:28 - 00001663 _____ C:\Users\Anna\Desktop\JRT.txt
2015-10-21 21:58 - 2015-10-05 23:23 - 01801288 _____ (Malwarebytes) C:\Users\Anna\Desktop\JRT.exe
2015-10-21 21:55 - 2015-10-21 21:55 - 01798976 _____ (Malwarebytes) C:\Users\Anna\Downloads\JRT.exe
2015-10-21 21:47 - 2015-10-21 20:59 - 00008068 _____ C:\Users\Anna\Desktop\AdwCleaner[C1].txt
2015-10-21 21:47 - 2015-10-21 20:49 - 00007552 _____ C:\Users\Anna\Desktop\AdwCleaner[S1].txt
2015-10-21 20:47 - 2015-10-21 20:58 - 00000000 ____D C:\AdwCleaner
2015-10-21 20:35 - 2015-10-21 20:35 - 01691648 _____ C:\Users\Anna\Downloads\AdwCleaner_5.014.exe
2015-10-21 18:48 - 2015-10-21 20:29 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2015-10-21 18:43 - 2015-10-21 18:43 - 00001129 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-10-21 18:43 - 2015-10-21 18:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-10-21 18:43 - 2015-10-21 18:43 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-10-21 18:43 - 2015-10-05 09:50 - 00109272 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2015-10-21 18:43 - 2015-10-05 09:50 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2015-10-21 18:43 - 2015-10-05 09:50 - 00025816 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2015-10-21 18:41 - 2015-10-21 18:41 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-10-21 18:36 - 2015-10-21 18:37 - 22908888 _____ (Malwarebytes ) C:\Users\Anna\Downloads\mbam-setup-2.2.0.1024.exe
2015-10-20 22:48 - 2015-10-20 22:48 - 00000754 _____ C:\Users\Anna\Desktop\Revo Uninstaller.lnk
2015-10-20 22:41 - 2015-10-20 22:42 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Anna\Downloads\revosetup95.exe
2015-10-19 17:40 - 2015-10-19 17:40 - 00000107 ____H C:\Users\Anna\Desktop\.~lock.Addition.txt#
2015-10-19 00:44 - 2015-10-19 00:44 - 00000000 ___RD C:\Program Files (x86)\Skype
2015-10-19 00:44 - 2015-10-19 00:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-10-18 22:15 - 2015-10-18 22:15 - 00002175 _____ C:\Users\Anna\Desktop\Gmer.txt
2015-10-18 21:25 - 2015-10-18 21:25 - 00380416 _____ C:\Users\Anna\Downloads\Gmer-19357.exe
2015-10-18 21:14 - 2015-10-18 21:42 - 00033505 _____ C:\Users\Anna\Desktop\Addition.txt
2015-10-18 20:59 - 2015-10-21 22:45 - 00016565 _____ C:\Users\Anna\Desktop\FRST.txt
2015-10-18 20:54 - 2015-10-21 22:45 - 00000000 ____D C:\FRST
2015-10-18 20:52 - 2015-10-21 22:45 - 02196480 _____ (Farbar) C:\Users\Anna\Desktop\FRST64.exe
2015-10-18 20:50 - 2015-10-18 20:50 - 00000470 _____ C:\Users\Anna\Desktop\defogger_disable.log
2015-10-18 20:50 - 2015-10-18 20:50 - 00000000 _____ C:\Users\Anna\defogger_reenable
2015-10-18 20:48 - 2015-10-18 20:49 - 00050477 _____ C:\Users\Anna\Desktop\Defogger.exe
2015-10-18 19:37 - 2015-08-07 23:40 - 01134752 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2015-10-18 19:37 - 2015-08-07 23:40 - 00686960 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2015-10-18 19:37 - 2015-08-07 23:40 - 00507176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
2015-10-18 19:37 - 2015-08-07 16:13 - 00862720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2015-10-18 19:37 - 2015-08-06 18:47 - 04710400 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2015-10-18 19:37 - 2015-08-06 18:18 - 04068352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2015-10-18 19:36 - 2015-09-29 14:31 - 07457624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-10-18 19:36 - 2015-09-29 14:31 - 01658536 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2015-10-18 19:36 - 2015-09-29 14:31 - 01519592 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2015-10-18 19:36 - 2015-09-29 14:31 - 01487008 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2015-10-18 19:36 - 2015-09-29 14:31 - 01355848 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2015-10-18 19:36 - 2015-09-24 18:42 - 00348672 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2015-10-18 19:36 - 2015-09-24 18:40 - 00737280 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2015-10-18 19:36 - 2015-08-27 04:43 - 22372152 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2015-10-18 19:36 - 2015-08-27 04:42 - 19795904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2015-10-18 19:36 - 2015-08-07 23:40 - 01736520 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2015-10-18 19:36 - 2015-08-07 23:40 - 01499920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2015-10-18 19:36 - 2015-08-06 19:05 - 00669184 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx
2015-10-18 19:36 - 2015-08-06 18:37 - 00536576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx
2015-10-18 19:35 - 2015-09-19 05:18 - 00035384 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2015-10-18 19:35 - 2015-09-18 15:42 - 01290752 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2015-10-18 19:35 - 2015-09-18 15:42 - 01163776 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2015-10-18 19:35 - 2015-09-18 15:42 - 00766464 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2015-10-18 19:35 - 2015-09-18 15:42 - 00699904 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2015-10-18 19:35 - 2015-09-18 15:42 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2015-10-18 19:35 - 2015-09-18 15:42 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2015-10-18 19:34 - 2015-09-10 20:02 - 25851392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-10-18 19:34 - 2015-09-10 19:09 - 20358144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-10-18 19:33 - 2015-09-10 19:19 - 00585728 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-10-18 19:33 - 2015-09-10 19:18 - 02886656 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-10-18 19:33 - 2015-09-10 19:18 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll
2015-10-18 19:33 - 2015-09-10 19:14 - 05990400 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-10-18 19:33 - 2015-09-10 19:06 - 00616960 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll
2015-10-18 19:33 - 2015-09-10 19:04 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-10-18 19:33 - 2015-09-10 18:51 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
2015-10-18 19:33 - 2015-09-10 18:39 - 00504832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2015-10-18 19:33 - 2015-09-10 18:37 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2015-10-18 19:33 - 2015-09-10 18:37 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
2015-10-18 19:33 - 2015-09-10 18:35 - 00315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2015-10-18 19:33 - 2015-09-10 18:33 - 02279936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-10-18 19:33 - 2015-09-10 18:28 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2015-10-18 19:33 - 2015-09-10 18:28 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieui.dll
2015-10-18 19:33 - 2015-09-10 18:27 - 00663552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-10-18 19:33 - 2015-09-10 18:24 - 14456832 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-10-18 19:33 - 2015-09-10 18:21 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2015-10-18 19:33 - 2015-09-10 18:19 - 00801280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2015-10-18 19:33 - 2015-09-10 18:19 - 00720896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2015-10-18 19:33 - 2015-09-10 18:19 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2015-10-18 19:33 - 2015-09-10 18:17 - 02126336 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2015-10-18 19:33 - 2015-09-10 18:17 - 00416256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll
2015-10-18 19:33 - 2015-09-10 18:07 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2015-10-18 19:33 - 2015-09-10 18:05 - 00279040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2015-10-18 19:33 - 2015-09-10 18:02 - 04527616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2015-10-18 19:33 - 2015-09-10 18:01 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2015-10-18 19:33 - 2015-09-10 18:00 - 12853760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-10-18 19:33 - 2015-09-10 17:57 - 02487808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-10-18 19:33 - 2015-09-10 17:57 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
2015-10-18 19:33 - 2015-09-10 17:55 - 02052608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2015-10-18 19:33 - 2015-09-10 17:55 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2015-10-18 19:33 - 2015-09-10 17:55 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2015-10-18 19:33 - 2015-09-10 17:45 - 01546752 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-10-18 19:33 - 2015-09-10 17:34 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2015-10-18 19:33 - 2015-09-10 17:31 - 02011136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2015-10-18 19:33 - 2015-09-10 17:27 - 01311232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-10-18 19:33 - 2015-09-10 17:26 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2015-10-18 19:32 - 2015-09-29 14:29 - 00136904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2015-10-18 19:32 - 2015-09-28 20:45 - 03705344 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2015-10-18 19:32 - 2015-09-28 20:26 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
2015-10-18 19:32 - 2015-09-28 20:25 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll
2015-10-18 19:32 - 2015-09-28 20:25 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2015-10-18 19:32 - 2015-09-28 20:25 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe
2015-10-18 19:32 - 2015-09-28 20:22 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll
2015-10-18 19:32 - 2015-09-28 20:22 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2015-10-18 19:32 - 2015-09-28 20:22 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe
2015-10-18 19:32 - 2015-09-28 20:15 - 02243072 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
2015-10-18 19:32 - 2015-09-28 20:13 - 00891904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2015-10-18 19:32 - 2015-09-28 20:12 - 00721920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2015-10-18 19:32 - 2015-07-16 20:58 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\NcdAutoSetup.dll
2015-10-18 19:31 - 2015-08-22 15:42 - 00901264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2015-10-18 19:31 - 2015-08-22 15:42 - 00066400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-private-l1-1-0.dll
2015-10-18 19:31 - 2015-08-22 15:42 - 00022368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-math-l1-1-0.dll
2015-10-18 19:31 - 2015-08-22 15:42 - 00019808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2015-10-18 19:31 - 2015-08-22 15:42 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-string-l1-1-0.dll
2015-10-18 19:31 - 2015-08-22 15:42 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2015-10-18 19:31 - 2015-08-22 15:42 - 00016224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2015-10-18 19:31 - 2015-08-22 15:42 - 00015712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll
2015-10-18 19:31 - 2015-08-22 15:42 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-time-l1-1-0.dll
2015-10-18 19:31 - 2015-08-22 15:42 - 00013664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2015-10-18 19:31 - 2015-08-22 15:42 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-process-l1-1-0.dll
2015-10-18 19:31 - 2015-08-22 15:42 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll
2015-10-18 19:31 - 2015-08-22 15:42 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll
2015-10-18 19:31 - 2015-08-22 15:42 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll
2015-10-18 19:31 - 2015-08-22 15:42 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll
2015-10-18 19:31 - 2015-08-22 15:42 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll
2015-10-18 19:31 - 2015-08-22 15:35 - 00984448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2015-10-18 19:31 - 2015-08-22 15:35 - 00063840 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-private-l1-1-0.dll
2015-10-18 19:31 - 2015-08-22 15:35 - 00020832 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-math-l1-1-0.dll
2015-10-18 19:31 - 2015-08-22 15:35 - 00019808 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2015-10-18 19:31 - 2015-08-22 15:35 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-string-l1-1-0.dll
2015-10-18 19:31 - 2015-08-22 15:35 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-stdio-l1-1-0.dll
2015-10-18 19:31 - 2015-08-22 15:35 - 00016224 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-runtime-l1-1-0.dll
2015-10-18 19:31 - 2015-08-22 15:35 - 00015712 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-convert-l1-1-0.dll
2015-10-18 19:31 - 2015-08-22 15:35 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-time-l1-1-0.dll
2015-10-18 19:31 - 2015-08-22 15:35 - 00013664 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2015-10-18 19:31 - 2015-08-22 15:35 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-process-l1-1-0.dll
2015-10-18 19:31 - 2015-08-22 15:35 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-heap-l1-1-0.dll
2015-10-18 19:31 - 2015-08-22 15:35 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-conio-l1-1-0.dll
2015-10-18 19:31 - 2015-08-22 15:35 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-utility-l1-1-0.dll
2015-10-18 19:31 - 2015-08-22 15:35 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-locale-l1-1-0.dll
2015-10-18 19:31 - 2015-08-22 15:35 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-environment-l1-1-0.dll
2015-09-22 19:21 - 2015-09-22 19:28 - 00000000 ____D C:\Users\Anna\AppData\Roaming\Apple Computer
2015-09-22 19:21 - 2015-09-22 19:21 - 00000000 ____D C:\Users\Anna\AppData\Local\Apple Computer
2015-09-22 19:20 - 2015-09-22 19:20 - 00001776 _____ C:\Users\Public\Desktop\iTunes.lnk
2015-09-22 19:20 - 2015-09-22 19:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2015-09-22 19:15 - 2015-09-22 19:15 - 00000000 ____D C:\Program Files\iPod
2015-09-22 19:15 - 2015-09-22 19:15 - 00000000 ____D C:\Program Files (x86)\iTunes
2015-09-22 19:14 - 2015-09-22 19:19 - 00000000 ____D C:\Program Files\iTunes
2015-09-22 19:14 - 2015-09-22 19:14 - 00000000 ____D C:\ProgramData\Apple Computer
2015-09-22 19:05 - 2015-09-22 19:05 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2015-09-22 19:05 - 2015-09-22 19:05 - 00000000 ____D C:\Users\Anna\AppData\Local\Apple
2015-09-22 19:05 - 2015-09-22 19:05 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2015-09-22 19:03 - 2015-09-22 19:03 - 00000000 ____D C:\Program Files\Bonjour
2015-09-22 19:03 - 2015-09-22 19:03 - 00000000 ____D C:\Program Files (x86)\Bonjour
2015-09-22 19:02 - 2015-09-22 19:15 - 00000000 ____D C:\Program Files\Common Files\Apple
2015-09-22 19:00 - 2015-09-22 19:05 - 00000000 ____D C:\ProgramData\Apple
2015-09-22 18:51 - 2015-09-22 18:53 - 167601944 _____ (Apple Inc.) C:\Users\Anna\Downloads\iTunes6464Setup.exe
==================== Ein Monat: Geänderte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2015-10-21 22:33 - 2014-10-31 14:48 - 00000000 ___RD C:\Users\Anna\OneDrive
2015-10-21 22:25 - 2013-11-28 00:04 - 00001138 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-10-21 22:25 - 2013-11-28 00:04 - 00001134 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-10-21 22:01 - 2014-10-31 12:39 - 02090830 _____ C:\WINDOWS\WindowsUpdate.log
2015-10-21 22:00 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sru
2015-10-21 21:51 - 2013-06-09 12:31 - 00000000 ____D C:\Users\Anna\AppData\Roaming\Nitro PDF
2015-10-21 21:43 - 2014-09-03 23:11 - 00000000 ____D C:\Program Files (x86)\Steam
2015-10-21 21:39 - 2013-11-27 00:09 - 00000470 ____H C:\WINDOWS\Tasks\Sk-Enhancer-S-5902107913.job
2015-10-21 21:34 - 2013-08-22 16:46 - 00300843 _____ C:\WINDOWS\setupact.log
2015-10-21 21:34 - 2013-08-22 16:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-10-21 21:33 - 2014-09-23 23:06 - 00104360 _____ C:\WINDOWS\PFRO.log
2015-10-21 21:04 - 2013-06-09 14:55 - 00003600 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3388536396-2537886813-2508632830-1002
2015-10-21 20:58 - 2013-03-08 07:28 - 00000000 ____D C:\Program Files (x86)\Amazon
2015-10-21 20:28 - 2014-09-24 08:17 - 01776918 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-10-21 20:28 - 2014-09-24 07:43 - 00765582 _____ C:\WINDOWS\system32\perfh007.dat
2015-10-21 20:28 - 2014-09-24 07:43 - 00159366 _____ C:\WINDOWS\system32\perfc007.dat
2015-10-21 20:19 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\Cursors
2015-10-21 20:18 - 2013-08-22 15:25 - 00786432 ___SH C:\WINDOWS\system32\config\BBI
2015-10-21 20:15 - 2014-10-31 12:53 - 00000000 ____D C:\Users\Anna
2015-10-20 23:49 - 2012-07-26 09:59 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-10-19 17:36 - 2015-05-15 16:09 - 00000000 __SHD C:\Users\Anna\AppData\Local\EmieUserList
2015-10-19 17:36 - 2015-05-15 16:09 - 00000000 __SHD C:\Users\Anna\AppData\Local\EmieSiteList
2015-10-19 17:36 - 2015-05-15 16:09 - 00000000 __SHD C:\Users\Anna\AppData\Local\EmieBrowserModeList
2015-10-19 17:35 - 2015-05-15 16:12 - 00000000 __SHD C:\Users\Anna\AppData\LocalLow\EmieUserList
2015-10-19 17:35 - 2015-05-15 16:12 - 00000000 __SHD C:\Users\Anna\AppData\LocalLow\EmieBrowserModeList
2015-10-19 17:35 - 2015-05-15 16:04 - 00000000 __SHD C:\Users\Anna\AppData\LocalLow\EmieSiteList
2015-10-19 06:07 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\rescache
2015-10-19 02:17 - 2015-04-20 19:46 - 00000000 ____D C:\WINDOWS\system32\appraiser
2015-10-19 02:17 - 2013-08-22 17:36 - 00000000 ___RD C:\WINDOWS\ToastData
2015-10-19 02:00 - 2013-06-09 18:10 - 00000000 ____D C:\Users\Anna\AppData\Roaming\Skype
2015-10-19 00:45 - 2013-06-09 18:08 - 00000000 ____D C:\ProgramData\Skype
2015-10-18 21:06 - 2013-07-19 18:30 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-10-18 20:18 - 2013-06-09 16:42 - 143481208 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-10-18 20:08 - 2013-10-02 20:48 - 00047609 ____H C:\WINDOWS\SysWOW64\BTImages.dat
2015-10-18 17:03 - 2014-05-04 12:06 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2015-10-18 16:59 - 2015-01-05 16:56 - 00003886 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
2015-10-16 06:51 - 2015-03-24 03:36 - 00810488 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2015-10-16 06:51 - 2015-03-24 03:36 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2015-10-09 21:56 - 2015-04-11 18:48 - 00000000 ___SD C:\WINDOWS\SysWOW64\GWX
2015-10-09 21:56 - 2015-04-11 18:48 - 00000000 ___SD C:\WINDOWS\system32\GWX
==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======
2013-09-22 21:43 - 2008-03-09 12:13 - 0416256 _____ (Burak Uysaler) C:\Program Files (x86)\ScreenRecorder.exe
2013-08-22 20:31 - 2014-11-15 01:37 - 0000087 _____ () C:\Users\Anna\AppData\Roaming\WB.CFG
2014-01-02 21:31 - 2014-01-03 01:57 - 0000005 _____ () C:\Users\Anna\AppData\Roaming\WBPU-Q5-TTL.DAT
2013-08-22 20:31 - 2014-01-15 01:31 - 0000005 _____ () C:\Users\Anna\AppData\Roaming\WBPU-TTL.DAT
2015-04-07 02:33 - 2015-04-07 03:07 - 0655360 _____ () C:\Users\Anna\AppData\Local\02B9DD16_stp.CIS
2015-04-07 02:33 - 2015-04-07 02:33 - 0000290 _____ () C:\Users\Anna\AppData\Local\02B9DD16_stp.CIS.part
2015-04-07 02:31 - 2015-04-07 02:31 - 0069441 _____ () C:\Users\Anna\AppData\Local\1DC8B7A7_stp.CIS
2015-04-07 02:31 - 2015-04-07 02:31 - 0000309 _____ () C:\Users\Anna\AppData\Local\1DC8B7A7_stp.CIS.part
2015-04-07 02:32 - 2015-04-07 02:33 - 0195069 _____ () C:\Users\Anna\AppData\Local\38C2540F_stp.CIS
2015-04-07 02:33 - 2015-04-07 02:33 - 0000290 _____ () C:\Users\Anna\AppData\Local\38C2540F_stp.CIS.part
2015-04-07 02:31 - 2015-04-07 02:31 - 0385602 _____ () C:\Users\Anna\AppData\Local\5D515C96_stp.CIS
2015-04-07 02:31 - 2015-04-07 02:31 - 0000220 _____ () C:\Users\Anna\AppData\Local\5D515C96_stp.CIS.part
2015-09-04 20:07 - 2015-09-04 20:07 - 0000000 ____H () C:\Users\Anna\AppData\Local\BIT304A.tmp
2015-07-27 22:38 - 2015-07-30 21:05 - 0017408 _____ () C:\Users\Anna\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-03-08 07:01 - 2013-03-08 07:01 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
Einige Dateien in TEMP:
====================
C:\Users\Anna\AppData\Local\Temp\HssInstaller64.exe
C:\Users\Anna\AppData\Local\Temp\rt1nuK3FA3.exe
C:\Users\Anna\AppData\Local\Temp\rt8PhG7jI0.exe
C:\Users\Anna\AppData\Local\Temp\rtf1RLraNJ.exe
C:\Users\Anna\AppData\Local\Temp\rtuCkLtYzl.exe
C:\Users\Anna\AppData\Local\Temp\rtUW17D8Jr.exe
C:\Users\Anna\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Anna\AppData\Local\Temp\sqlite3.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite10656.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite11783.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite11825.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite11914.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite12297.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite12501.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite12724.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite13189.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite13380.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite15157.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite17144.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite18029.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite18551.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite18622.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite19071.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite19529.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite20472.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite20630.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite20998.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite21184.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite21504.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite21548.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite22485.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite22574.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite22819.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite23156.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite23266.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite23385.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite24034.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite24098.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite24115.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite24432.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite26006.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite27491.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite28059.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite28196.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite28311.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite28643.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite28871.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite29658.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite29873.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite30362.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite30382.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite31722.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite31818.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite32078.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite34422.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite34692.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite34881.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite35571.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite37540.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite37909.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite38591.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite38632.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite41355.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite41572.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite42408.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite42585.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite44064.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite44161.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite44178.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite44744.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite45272.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite46317.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite46351.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite46581.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite46734.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite46841.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite47214.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite47992.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite48156.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite48168.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite48199.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite48426.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite48534.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite48769.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite48787.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite49503.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite49815.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite50402.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite50424.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite50882.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite51072.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite51344.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite51395.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite51774.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite51805.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite53579.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite54374.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite54734.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite54785.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite55257.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite55530.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite55848.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite56051.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite56697.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite56772.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite56868.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite56869.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite57078.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite57311.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite58039.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite59301.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite60540.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite61284.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite61434.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite62732.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite62817.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite62838.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite63001.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite63639.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite64384.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite64490.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite65955.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite66190.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite66254.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite66497.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite66865.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite67069.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite67230.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite67882.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite68116.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite68613.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite68829.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite69100.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite69183.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite69432.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite69458.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite69896.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite70649.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite72952.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite73496.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite73601.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite74252.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite75211.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite75721.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite78365.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite78566.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite78754.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite79588.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite80395.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite82038.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite82309.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite82978.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite83504.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite83989.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite84008.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite84191.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite84842.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite84856.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite85056.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite85157.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite86263.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite86524.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite86710.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite87069.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite88071.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite89660.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite89918.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite91481.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite91714.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite92240.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite92506.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite92633.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite93573.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite94937.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite95860.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite96068.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite96271.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite96467.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite96656.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite97432.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite98032.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLite98782.dll
C:\Users\Anna\AppData\Local\Temp\System.Data.SQLitef2b887f9-45e4-41ec-9686-5c03e8200cda.dll
C:\Users\Anna\AppData\Local\Temp\tmd_34011200.exe
C:\Users\Anna\AppData\Local\Temp\tmd_34012302.exe
C:\Users\Anna\AppData\Local\Temp\updatecertmanager.exe
==================== Bamital & volsnap =================
(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)
C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert
C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert
C:\WINDOWS\explorer.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert
C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert
C:\WINDOWS\system32\services.exe => Datei ist digital signiert
C:\WINDOWS\system32\User32.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert
C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert
C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert
C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert
LastRegBack: 2015-10-21 22:34
==================== Ende von FRST.txt ============================