GrinGoSysTem | 19.01.2014 01:22 | hab diesen Trojaner jetz auch drauf...und kann ihn nicht löschen.
Norton findet nix
hab diesen Thread durchgelesen und hier ein Log von dem einen programmOTL Logfile: Code:
OTL logfile created on: 19.01.2014 00:59:42 - Run 2
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Manuel\Downloads
Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.16476)
Locale: 00000c07 | Country: Österreich | Language: DEA | Date Format: dd.MM.yyyy
2,00 Gb Total Physical Memory | 0,39 Gb Available Physical Memory | 19,35% Memory free
4,00 Gb Paging File | 1,87 Gb Available in Paging File | 46,79% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files
Drive C: | 465,66 Gb Total Space | 405,92 Gb Free Space | 87,17% Space Free | Partition Type: NTFS
Drive D: | 931,50 Gb Total Space | 91,61 Gb Free Space | 9,83% Space Free | Partition Type: NTFS
Drive F: | 961,72 Mb Total Space | 745,11 Mb Free Space | 77,48% Space Free | Partition Type: FAT
Computer Name: MANUEL-PC | User Name: Manuel | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2014.01.19 00:16:54 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Manuel\Downloads\OTL.exe
PRC - [2014.01.15 20:55:04 | 000,780,688 | ---- | M] () -- C:\Users\Manuel\AppData\Local\Installer\Install_20670\ytd_aff.exe
PRC - [2014.01.11 11:29:23 | 000,866,584 | ---- | M] (Google Inc.) -- C:\Programme\Google\Chrome\Application\chrome.exe
PRC - [2014.01.04 14:20:20 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe
PRC - [2013.12.21 07:04:16 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) -- C:\Programme\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2013.12.19 19:37:25 | 001,819,936 | ---- | M] (NVIDIA Corporation) -- C:\Programme\NVIDIA Corporation\Display\nvtray.exe
PRC - [2013.12.19 19:37:25 | 000,930,592 | ---- | M] (NVIDIA Corporation) -- C:\Programme\NVIDIA Corporation\Display\nvxdsync.exe
PRC - [2013.12.19 12:20:16 | 000,411,936 | ---- | M] (NVIDIA Corporation) -- C:\Programme\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
PRC - [2013.12.10 03:22:32 | 002,279,712 | ---- | M] (NVIDIA Corporation) -- C:\Programme\NVIDIA Corporation\Update Core\NvBackend.exe
PRC - [2013.12.10 03:21:14 | 001,494,304 | ---- | M] (NVIDIA Corporation) -- C:\Programme\NVIDIA Corporation\NetService\NvNetworkService.exe
PRC - [2013.12.10 03:20:56 | 014,658,848 | ---- | M] (NVIDIA Corporation) -- C:\Programme\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
PRC - [2013.12.04 18:23:36 | 004,161,512 | ---- | M] (Emsisoft GmbH) -- C:\Programme\Emsisoft Anti-Malware\a2service.exe
PRC - [2013.10.15 12:27:38 | 003,921,880 | ---- | M] (Safer-Networking Ltd.) -- C:\Programme\Spybot - Search & Destroy 2\SDFSSvc.exe
PRC - [2013.10.08 13:28:15 | 000,275,696 | R--- | M] (Symantec Corporation) -- C:\Programme\Norton Internet Security\Engine\21.1.0.18\NIS.exe
PRC - [2013.09.20 10:57:26 | 001,042,272 | ---- | M] (Safer-Networking Ltd.) -- C:\Programme\Spybot - Search & Destroy 2\SDUpdSvc.exe
PRC - [2013.09.13 10:38:30 | 000,171,416 | ---- | M] (Safer-Networking Ltd.) -- C:\Programme\Spybot - Search & Destroy 2\SDWSCSvc.exe
PRC - [2013.08.02 01:52:57 | 000,271,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\conhost.exe
PRC - [2013.07.25 11:19:26 | 005,624,784 | ---- | M] (Safer-Networking Ltd.) -- C:\Programme\Spybot - Search & Destroy 2\SDTray.exe
PRC - [2012.06.11 18:15:00 | 002,387,496 | ---- | M] (Frogster) -- C:\Programme\TERA\TERA-Launcher.exe
PRC - [2012.04.13 10:20:08 | 000,118,784 | ---- | M] () -- C:\Programme\HSPA USB MODEM\BackgroundService\ModemListener.exe
PRC - [2012.03.14 12:05:10 | 000,053,312 | ---- | M] () -- C:\Programme\HSPA USB MODEM\BackgroundService\ServiceManager.exe
PRC - [2011.02.25 06:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2010.11.20 22:29:49 | 001,121,792 | ---- | M] (Microsoft Corporation) -- C:\Programme\Windows Media Player\wmpnetwk.exe
PRC - [2010.11.20 22:29:41 | 001,174,016 | ---- | M] (Microsoft Corporation) -- C:\Programme\Windows Sidebar\sidebar.exe
PRC - [2010.05.20 15:27:26 | 000,762,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\vVX3000.exe
PRC - [2010.05.20 15:27:24 | 000,139,632 | ---- | M] (Microsoft Corporation) -- C:\Programme\Microsoft LifeCam\MSCamS32.exe
PRC - [2009.06.04 15:10:56 | 005,777,408 | ---- | M] () -- C:\Programme\ASUS\EPU-4 Engine\FourEngine.exe
PRC - [2009.06.02 17:10:00 | 001,968,640 | ---- | M] () -- C:\Programme\ASUS\AI Suite\Q-Button\QButton.exe
PRC - [2009.04.02 05:27:28 | 000,090,112 | R--- | M] () -- C:\Programme\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe
PRC - [2006.10.27 00:47:42 | 000,031,016 | ---- | M] (Microsoft Corporation) -- C:\Programme\Microsoft Office\Office12\GrooveMonitor.exe
========== Modules (No Company Name) ==========
MOD - [2014.01.15 20:55:04 | 000,780,688 | ---- | M] () -- C:\Users\Manuel\AppData\Local\Installer\Install_20670\ytd_aff.exe
MOD - [2014.01.11 11:29:21 | 000,399,640 | ---- | M] () -- C:\Programme\Google\Chrome\Application\32.0.1700.76\ppgooglenaclpluginchrome.dll
MOD - [2014.01.11 11:29:19 | 013,615,896 | ---- | M] () -- C:\Programme\Google\Chrome\Application\32.0.1700.76\PepperFlash\pepflashplayer.dll
MOD - [2014.01.11 11:29:17 | 004,055,320 | ---- | M] () -- C:\Programme\Google\Chrome\Application\32.0.1700.76\pdf.dll
MOD - [2014.01.11 11:28:15 | 000,715,544 | ---- | M] () -- C:\Programme\Google\Chrome\Application\32.0.1700.76\libglesv2.dll
MOD - [2014.01.11 11:28:14 | 000,100,120 | ---- | M] () -- C:\Programme\Google\Chrome\Application\32.0.1700.76\libegl.dll
MOD - [2014.01.11 11:28:11 | 001,634,584 | ---- | M] () -- C:\Programme\Google\Chrome\Application\32.0.1700.76\ffmpegsumo.dll
MOD - [2014.01.07 16:13:18 | 001,051,136 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\9a1bc983c28c695729b3e46acdc6933e\System.Management.ni.dll
MOD - [2014.01.07 15:57:45 | 007,989,760 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\5d22a30e587e2cac106b81fb351e7c08\System.ni.dll
MOD - [2014.01.07 15:57:33 | 011,499,520 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\9a6c1b7af18b4d5a91dc7f8d6617522f\mscorlib.ni.dll
MOD - [2013.05.16 10:55:26 | 000,113,496 | ---- | M] () -- C:\Programme\Spybot - Search & Destroy 2\snlThirdParty150.bpl
MOD - [2013.05.16 10:55:24 | 000,416,600 | ---- | M] () -- C:\Programme\Spybot - Search & Destroy 2\DEC150.bpl
MOD - [2012.06.11 18:15:00 | 000,115,296 | ---- | M] () -- C:\Programme\TERA\CopyCub.dll
MOD - [2012.04.30 15:35:00 | 019,656,816 | ---- | M] () -- C:\Programme\TERA\libcef.dll
MOD - [2012.04.13 10:20:08 | 000,118,784 | ---- | M] () -- C:\Programme\HSPA USB MODEM\BackgroundService\ModemListener.exe
MOD - [2009.06.04 15:10:56 | 005,777,408 | ---- | M] () -- C:\Programme\ASUS\EPU-4 Engine\FourEngine.exe
MOD - [2009.06.02 17:10:00 | 001,968,640 | ---- | M] () -- C:\Programme\ASUS\AI Suite\Q-Button\QButton.exe
MOD - [2009.01.15 14:55:10 | 000,565,248 | ---- | M] () -- C:\Programme\ASUS\EPU-4 Engine\pngio.dll
MOD - [2008.12.10 20:04:58 | 000,008,704 | ---- | M] () -- C:\Programme\ASUS\AI Suite\Q-Button\vvc.dll
MOD - [2008.12.10 20:04:56 | 000,253,952 | ---- | M] () -- C:\Programme\ASUS\AI Suite\Q-Button\pngio.dll
MOD - [2008.12.10 20:04:56 | 000,208,896 | ---- | M] () -- C:\Programme\ASUS\AI Suite\Q-Button\AiNap.dll
MOD - [2006.01.10 09:50:20 | 000,024,576 | R--- | M] () -- C:\Windows\System32\AsIO.dll
========== Services (SafeList) ==========
SRV - File not found [Auto | Running] -- C:\Program Files\Spybot -- (SDWSCService)
SRV - File not found [Auto | Running] -- C:\Program Files\Spybot -- (SDUpdateService)
SRV - File not found [Auto | Running] -- C:\Program Files\Spybot -- (SDScannerService)
SRV - [2014.01.16 19:37:47 | 000,257,928 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2014.01.07 16:08:50 | 001,343,400 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\Wat\WatAdminSvc.exe -- (WatAdminSvc)
SRV - [2013.12.21 07:04:16 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Programme\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2013.12.19 12:20:16 | 000,411,936 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Programme\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service)
SRV - [2013.12.10 03:21:14 | 001,494,304 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Programme\NVIDIA Corporation\NetService\NvNetworkService.exe -- (NvNetworkService)
SRV - [2013.12.10 03:20:56 | 014,658,848 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Programme\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe -- (NvStreamSvc)
SRV - [2013.12.05 20:36:33 | 000,119,408 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Programme\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013.12.04 18:23:36 | 004,161,512 | ---- | M] (Emsisoft GmbH) [Auto | Running] -- C:\Programme\Emsisoft Anti-Malware\a2service.exe -- (a2AntiMalware)
SRV - [2013.11.26 09:29:52 | 000,108,032 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV - [2013.10.23 08:15:08 | 000,172,192 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Programme\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2013.10.08 13:28:15 | 000,275,696 | R--- | M] (Symantec Corporation) [Auto | Running] -- C:\Program Files\Norton Internet Security\Engine\21.1.0.18\NIS.exe -- (NIS)
SRV - [2013.05.27 05:57:27 | 000,680,960 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Programme\Windows Defender\MpSvc.dll -- (WinDefend)
SRV - [2012.03.14 12:05:10 | 000,053,312 | ---- | M] () [Auto | Running] -- C:\Programme\HSPA USB MODEM\BackgroundService\ServiceManager.exe -- (Retail_Austria Imola Modem Device Helper)
SRV - [2010.11.20 22:29:49 | 001,121,792 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Programme\Windows Media Player\wmpnetwk.exe -- (WMPNetworkSvc)
SRV - [2010.05.20 15:27:24 | 000,139,632 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Programme\Microsoft LifeCam\MSCamS32.exe -- (MSCamSvc)
SRV - [2009.07.14 02:16:15 | 000,016,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\StorSvc.dll -- (StorSvc)
SRV - [2009.07.14 02:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc)
SRV - [2009.07.14 02:16:12 | 001,004,544 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\PeerDistSvc.dll -- (PeerDistSvc)
SRV - [2009.04.02 05:27:28 | 000,090,112 | R--- | M] () [Auto | Running] -- C:\Programme\ASUS\AsSysCtrlService\1.00.02\AsSysCtrlService.exe -- (AsSysCtrlService)
SRV - [2006.10.27 00:47:54 | 000,065,824 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Programme\Microsoft Office\Office12\GrooveAuditService.exe -- (Microsoft Office Groove Audit Service)
SRV - [2006.10.26 19:49:34 | 000,441,136 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Programme\Common Files\microsoft shared\OFFICE12\ODSERV.EXE -- (odserv)
SRV - [2006.10.26 14:03:08 | 000,145,184 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Programme\Common Files\microsoft shared\Source Engine\OSE.EXE -- (ose)
========== Driver Services (SafeList) ==========
DRV - [2014.01.04 17:03:26 | 000,142,936 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\SYMEVENT.SYS -- (SymEvent)
DRV - [2014.01.03 18:14:41 | 001,612,376 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Programme\Norton Internet Security\NortonData\21.1.0.18\Definitions\VirusDefs\20140117.021\NAVEX15.SYS -- (NAVEX15)
DRV - [2014.01.03 18:14:41 | 000,376,920 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Programme\Common Files\Symantec Shared\EENGINE\eeCtrl.sys -- (eeCtrl)
DRV - [2014.01.03 18:14:41 | 000,108,120 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Programme\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys -- (EraserUtilRebootDrv)
DRV - [2014.01.03 18:14:41 | 000,093,272 | ---- | M] (Symantec Corporation) [Kernel | On_Demand | Running] -- C:\Programme\Norton Internet Security\NortonData\21.1.0.18\Definitions\VirusDefs\20140117.021\NAVENG.SYS -- (NAVENG)
DRV - [2014.01.03 18:00:08 | 000,394,456 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Programme\Norton Internet Security\NortonData\21.1.0.18\Definitions\IPSDefs\20140117.001\IDSvix86.sys -- (IDSVix86)
DRV - [2013.12.19 21:26:04 | 010,471,712 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm)
DRV - [2013.12.18 01:32:11 | 001,098,968 | ---- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Programme\Norton Internet Security\NortonData\21.1.0.18\Definitions\BASHDefs\20140110.001\BHDrvx86.sys -- (BHDrvx86)
DRV - [2013.12.05 09:42:30 | 000,034,080 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvvad32v.sys -- (nvvad_WaveExtensible)
DRV - [2013.12.04 18:23:36 | 000,050,200 | ---- | M] (Emsisoft GmbH) [File_System | On_Demand | Stopped] -- C:\Programme\Emsisoft Anti-Malware\cleanhlp32.sys -- (cleanhlp)
DRV - [2013.09.27 04:18:30 | 000,935,512 | R--- | M] (Symantec Corporation) [File_System | Boot | Running] -- C:\Windows\System32\drivers\NIS\1501000.012\SymEFA.sys -- (SymEFA)
DRV - [2013.09.27 03:45:56 | 000,206,936 | R--- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\NIS\1501000.012\Ironx86.sys -- (SymIRON)
DRV - [2013.09.27 03:26:03 | 000,651,352 | R--- | M] (Symantec Corporation) [File_System | On_Demand | Running] -- C:\Windows\System32\drivers\NIS\1501000.012\srtsp.sys -- (SRTSP)
DRV - [2013.09.26 04:28:00 | 000,446,552 | R--- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\NIS\1501000.012\symnets.sys -- (SymNetS)
DRV - [2013.09.26 03:50:25 | 000,127,064 | R--- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\NIS\1501000.012\ccSetx86.sys -- (ccSet_NIS)
DRV - [2013.09.10 03:47:26 | 000,367,704 | R--- | M] (Symantec Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\NIS\1501000.012\SymDS.sys -- (SymDS)
DRV - [2013.09.10 02:49:48 | 000,032,344 | R--- | M] (Symantec Corporation) [Kernel | System | Running] -- C:\Windows\System32\drivers\NIS\1501000.012\srtspx.sys -- (SRTSPX)
DRV - [2013.08.24 17:22:58 | 000,057,944 | ---- | M] (Emsisoft GmbH) [File_System | On_Demand | Stopped] -- C:\Programme\Emsisoft Anti-Malware\a2accx86.sys -- (a2acc)
DRV - [2013.03.28 18:03:02 | 000,022,056 | ---- | M] (Emsisoft GmbH) [File_System | System | Running] -- C:\Programme\Emsisoft Anti-Malware\a2ddax86.sys -- (A2DDA)
DRV - [2013.03.25 14:41:44 | 000,065,200 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\dc3d.sys -- (dc3d)
DRV - [2012.12.13 16:41:10 | 000,024,424 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\dfx11_1.sys -- (DFX11_1)
DRV - [2012.08.23 15:44:32 | 000,014,848 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV - [2012.08.23 15:41:34 | 000,027,136 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV - [2012.08.23 15:40:25 | 000,049,664 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV - [2011.06.20 09:00:46 | 000,106,112 | ---- | M] (TCT International Mobile Ltd) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\jrdusbser.sys -- (jrdusbser)
DRV - [2010.11.20 22:29:03 | 000,175,360 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vmbus.sys -- (vmbus)
DRV - [2010.11.20 22:29:03 | 000,062,464 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\dmvsc.sys -- (dmvsc)
DRV - [2010.11.20 22:29:03 | 000,040,704 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\System32\drivers\vmstorfl.sys -- (storflt)
DRV - [2010.11.20 22:29:03 | 000,028,032 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\storvsc.sys -- (storvsc)
DRV - [2010.11.20 22:29:03 | 000,017,920 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\VMBusHID.sys -- (VMBusHID)
DRV - [2010.11.20 22:29:03 | 000,005,632 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\vms3cap.sys -- (s3cap)
DRV - [2010.10.09 14:48:36 | 000,072,576 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\ew_jubusenum.sys -- (huawei_enumerator)
DRV - [2010.08.12 12:07:48 | 000,298,216 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvmf6232.sys -- (NVNET)
DRV - [2010.05.20 15:27:26 | 001,961,328 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\VX3000.sys -- (VX3000)
DRV - [2010.03.02 13:57:42 | 000,105,856 | ---- | M] (ZTE Incorporated) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ZTEusbser6k.sys -- (ZTEusbser6k)
DRV - [2010.03.02 13:57:42 | 000,105,856 | ---- | M] (ZTE Incorporated) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ZTEusbnmea.sys -- (ZTEusbnmea)
DRV - [2010.03.02 13:57:42 | 000,105,856 | ---- | M] (ZTE Incorporated) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ZTEusbmdm6k.sys -- (ZTEusbmdm6k)
DRV - [2010.02.22 09:06:42 | 000,009,216 | ---- | M] (MBB Incorporated) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\massfilter.sys -- (massfilter)
DRV - [2009.07.13 23:02:52 | 000,347,264 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\nvm62x32.sys -- (NVENETFD)
DRV - [2009.05.13 12:11:34 | 000,006,504 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\ASACPI.sys -- (MTsensor)
DRV - [2007.12.17 10:14:06 | 000,012,400 | R--- | M] () [Kernel | System | Running] -- C:\Windows\System32\drivers\AsIO.sys -- (AsIO)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://at.msn.com/?ocid=iehp
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-at
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = E0 B1 D2 90 4E 09 CF 01 [binary data]
IE - HKCU\..\SearchScopes,DefaultScope =
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR
IE - HKCU\..\SearchScopes\{4D4B344F-4664-444F-ACEA-388EC03BDD67}: "URL" = hxxp://search.softonic.com/MOY00006/tb_v1?q={searchTerms}&SearchSource=4&cc=&mi=d0ced12300000000000090e6ba361812&toi=16085&r=116
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:26.0
FF - user.js - File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF32_12_0_0_43.dll ()
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.2: C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{BBDA0591-3099-440a-AA10-41764D9DB4DB}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.1.0.18\IPSFF [2014.01.04 17:04:05 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}: C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.1.0.18\coFFPlgn\ [2014.01.19 00:30:13 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 26.0\extensions\\Components: C:\Program Files\Mozilla Firefox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 26.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins
[2014.01.07 16:27:09 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Manuel\AppData\Roaming\mozilla\Extensions
[2014.01.15 20:58:21 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Manuel\AppData\Roaming\mozilla\Firefox\Profiles\uvj4bayx.default\extensions
[2014.01.07 16:26:50 | 000,000,000 | ---D | M] (No name found) -- C:\Programme\Mozilla Firefox\browser\extensions
[2014.01.07 16:26:50 | 000,000,000 | ---D | M] (Default) -- C:\Programme\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
========== Chrome ==========
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&xssi=t&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}{google:pageClassification}sugkey={google:suggestAPIKeyParameter},
CHR - homepage:
CHR - Extension: Google Docs = C:\Users\Manuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0\
CHR - Extension: Google Drive = C:\Users\Manuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\
CHR - Extension: YouTube = C:\Users\Manuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: Adblock Plus = C:\Users\Manuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.7.2_0\
CHR - Extension: Google-Suche = C:\Users\Manuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: Norton Identity Protection = C:\Users\Manuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk\2014.6.2.3_1\
CHR - Extension: Google Wallet = C:\Users\Manuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\
CHR - Extension: Google Mail = C:\Users\Manuel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
O1 HOSTS File: ([2009.06.10 22:39:37 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O2 - BHO: (Norton Identity Protection) - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Programme\Norton Internet Security\Engine\21.1.0.18\coieplg.dll (Symantec Corporation)
O2 - BHO: (Norton Vulnerability Protection) - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Programme\Norton Internet Security\Engine\21.1.0.18\IPS\ipsbho.dll (Symantec Corporation)
O2 - BHO: (Groove GFS Browser Helper) - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Programme\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O3 - HKLM\..\Toolbar: (Norton Toolbar) - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Programme\Norton Internet Security\Engine\21.1.0.18\coieplg.dll (Symantec Corporation)
O4 - HKLM..\Run: [Ai Nap] C:\Program Files\ASUS\AI Suite\Q-Button\QButton.exe ()
O4 - HKLM..\Run: [Cpu Level Up help] C:\Program Files\ASUS\AI Suite\CpuLevelUpHelp.exe ()
O4 - HKLM..\Run: [LifeCam] C:\Program Files\Microsoft LifeCam\LifeExp.exe (Microsoft Corporation)
O4 - HKLM..\Run: [NvBackend] C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation)
O4 - HKLM..\Run: [QFan Help] C:\Program Files\ASUS\AI Suite\QFan3\QFanHelp.exe ()
O4 - HKLM..\Run: [Retail_Austria Imola ModemListener] C:\Program Files\HSPA USB MODEM\BackgroundService\ModemListener.exe ()
O4 - HKLM..\Run: [SDTray] C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe (Safer-Networking Ltd.)
O4 - HKLM..\Run: [ShadowPlay] C:\Windows\System32\nvspcap.dll (NVIDIA Corporation)
O4 - HKLM..\Run: [VX3000] C:\Windows\vVX3000.exe (Microsoft Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: LogonHoursAction = 2
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DontDisplayLogonHoursWarnings = 1
O8 - Extra context menu item: Nach Microsoft E&xel exportieren - C:\Programme\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
O9 - Extra Button: An OneNote senden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programme\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : An OneNote s&enden - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Programme\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Programme\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 10.0.0.138
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{E9DD026C-4AD3-457F-85D9-19B03134105A}: DhcpNameServer = 10.0.0.138
O18 - Protocol\Handler\grooveLocalGWS {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Programme\Microsoft Office\Office12\GrooveSystemServices.dll (Microsoft Corporation)
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Programme\Common Files\microsoft shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Programme\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Programme\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O20 - Winlogon\Notify\SDWinLogon: DllName - (SDWinLogon.dll) - File not found
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O28 - HKLM ShellExecuteHooks: {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Programme\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009.06.10 22:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O33 - MountPoints2\{4f70d48c-7ae6-11e3-a8d0-90e6ba361812}\Shell - "" = AutoRun
O33 - MountPoints2\{4f70d48c-7ae6-11e3-a8d0-90e6ba361812}\Shell\AutoRun\command - "" = F:\Autorun.exe
O33 - MountPoints2\{4f70d48e-7ae6-11e3-a8d0-90e6ba361812}\Shell - "" = AutoRun
O33 - MountPoints2\{4f70d48e-7ae6-11e3-a8d0-90e6ba361812}\Shell\AutoRun\command - "" = F:\autorun.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
========== Files/Folders - Created Within 30 Days ==========
[2014.01.19 00:25:09 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2014.01.18 23:35:44 | 000,000,000 | ---D | C] -- C:\Windows\System32\DRVSTORE
[2014.01.18 23:35:37 | 000,106,928 | ---- | C] (GEAR Software Inc.) -- C:\Windows\System32\GEARAspi.dll
[2014.01.18 23:35:26 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\NBRTWizard
[2014.01.18 23:35:26 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\NBRTWizard\0600000.04A
[2014.01.18 23:35:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Bootable Recovery Tool Wizard
[2014.01.18 23:35:24 | 000,000,000 | ---D | C] -- C:\Program Files\Norton Bootable Recovery Tool Wizard
[2014.01.18 23:30:58 | 000,000,000 | ---D | C] -- C:\Users\Manuel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Norton
[2014.01.18 22:59:15 | 000,000,000 | ---D | C] -- C:\Users\Manuel\AppData\Local\NPE
[2014.01.17 22:06:39 | 000,000,000 | ---D | C] -- C:\Users\Manuel\AppData\Local\Microsoft Games
[2014.01.17 22:02:16 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Games
[2014.01.17 16:06:53 | 000,000,000 | ---D | C] -- C:\ProgramData\TERA
[2014.01.17 16:00:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TERA
[2014.01.17 15:11:47 | 000,000,000 | ---D | C] -- C:\Program Files\TERA
[2014.01.16 19:11:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Oracle
[2014.01.16 19:02:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Sun
[2014.01.16 19:02:31 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Java
[2014.01.16 19:01:11 | 000,000,000 | ---D | C] -- C:\Program Files\Java
[2014.01.16 18:36:17 | 000,072,704 | ---- | C] (Emsisoft GmbH) -- C:\Windows\System32\eamclean.exe
[2014.01.15 22:23:45 | 000,000,000 | ---D | C] -- C:\Windows\System32\RTCOM
[2014.01.15 21:42:52 | 001,784,352 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\WavesLib.dll
[2014.01.15 21:42:51 | 000,339,968 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\System32\SRSTSXT.dll
[2014.01.15 21:42:51 | 000,185,776 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\System32\SRSTSHD.dll
[2014.01.15 21:42:51 | 000,167,936 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\System32\SRSHP360.dll
[2014.01.15 21:42:51 | 000,135,168 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\System32\SRSWOW.dll
[2014.01.15 21:42:49 | 002,897,440 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\System32\RtkAPO.dll
[2014.01.15 21:42:49 | 001,157,664 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\System32\RtkPgExt.dll
[2014.01.15 21:42:49 | 000,326,176 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\System32\RtkApoApi.dll
[2014.01.15 21:42:49 | 000,048,672 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\System32\RtkCoInst.dll
[2014.01.15 21:42:47 | 000,551,456 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\System32\RTSndMgr.cpl
[2014.01.15 21:42:46 | 000,290,304 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RP3DHT32.dll
[2014.01.15 21:42:46 | 000,290,304 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\System32\RP3DAA32.dll
[2014.01.15 21:42:45 | 001,933,312 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxAudioEQ.dll
[2014.01.15 21:42:45 | 000,159,744 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxAudioAPO20.dll
[2014.01.15 21:42:45 | 000,126,976 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\System32\MaxxAudioAPO.dll
[2014.01.15 21:42:43 | 000,159,232 | ---- | C] (Windows (R) Codename Longhorn DDK provider) -- C:\Windows\System32\FMAPO.dll
[2014.01.15 21:42:42 | 000,142,848 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\System32\AERTACap.dll
[2014.01.15 21:42:42 | 000,125,952 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\System32\AERTARen.dll
[2014.01.15 21:42:42 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek
[2014.01.15 21:42:40 | 000,540,672 | R--- | C] (Realtek Semiconductor Corp.) -- C:\Windows\RtlExUpd.dll
[2014.01.15 21:06:20 | 000,000,000 | ---D | C] -- C:\ProgramData\eMule
[2014.01.15 21:05:55 | 000,000,000 | ---D | C] -- C:\Users\Manuel\AppData\Local\eMule
[2014.01.15 21:05:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eMule
[2014.01.15 21:05:54 | 000,000,000 | ---D | C] -- C:\Program Files\eMule
[2014.01.15 20:56:11 | 000,000,000 | ---D | C] -- C:\ProgramData\TEMP
[2014.01.15 20:56:03 | 000,000,000 | ---D | C] -- C:\Users\Manuel\AppData\Local\CRE
[2014.01.15 20:55:58 | 000,000,000 | ---D | C] -- C:\Program Files\YouTube Accelerator
[2014.01.15 20:55:56 | 000,172,032 | ---- | C] (Jin Hui E-mail: jinhui@jcomsoft.com Web: hxxp://www.jcomsoft.com) -- C:\Windows\System32\AniGIF.ocx
[2014.01.15 20:55:56 | 000,000,000 | ---D | C] -- C:\Users\Manuel\AppData\Local\Installer
[2014.01.15 20:55:44 | 000,000,000 | ---D | C] -- C:\Program Files\ShopperPro
[2014.01.15 20:55:25 | 000,000,000 | ---D | C] -- C:\Program Files\DCE
[2014.01.15 20:55:20 | 000,000,000 | ---D | C] -- C:\Users\Manuel\AppData\Local\CrashRpt
[2014.01.15 20:53:46 | 000,000,000 | ---D | C] -- C:\Users\Manuel\AppData\Roaming\uTorrent
[2014.01.15 20:11:23 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Adobe
[2014.01.15 20:11:23 | 000,000,000 | ---D | C] -- C:\Program Files\Adobe
[2014.01.15 20:10:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Adobe
[2014.01.15 12:05:02 | 000,000,000 | ---D | C] -- C:\Users\Manuel\AppData\Roaming\Skype
[2014.01.15 12:04:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
[2014.01.15 12:04:11 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Skype
[2014.01.15 12:04:10 | 000,000,000 | R--D | C] -- C:\Program Files\Skype
[2014.01.15 12:04:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Skype
[2014.01.15 11:56:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft LifeCam
[2014.01.15 11:55:07 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft LifeCam
[2014.01.15 11:55:01 | 001,974,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DCompiler_42.dll
[2014.01.15 11:55:01 | 001,892,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_42.dll
[2014.01.15 11:42:17 | 000,000,000 | ---D | C] -- C:\Users\Manuel\Desktop\Crack
[2014.01.15 11:35:39 | 000,000,000 | ---D | C] -- C:\Users\Manuel\.android
[2014.01.15 11:35:37 | 000,000,000 | ---D | C] -- C:\Users\Manuel\AppData\Local\cache
[2014.01.15 11:35:09 | 000,000,000 | ---D | C] -- C:\Users\Manuel\AppData\Local\DFX
[2014.01.15 11:34:37 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\G-Force
[2014.01.15 11:34:28 | 000,000,000 | ---D | C] -- C:\Program Files\SoundSpectrum
[2014.01.15 11:26:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
[2014.01.15 11:26:39 | 000,000,000 | ---D | C] -- C:\Users\Manuel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
[2014.01.15 11:23:18 | 000,000,000 | ---D | C] -- C:\Users\Manuel\AppData\Roaming\WinRAR
[2014.01.15 11:23:09 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
[2014.01.15 11:21:21 | 000,000,000 | ---D | C] -- C:\Users\Manuel\AppData\Local\NVIDIA Corporation
[2014.01.15 11:19:50 | 001,998,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\D3DX9_43.dll
[2014.01.15 11:19:50 | 000,470,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx10_43.dll
[2014.01.15 11:19:50 | 000,248,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3dx11_43.dll
[2014.01.15 11:19:21 | 000,982,232 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvspcap.dll
[2014.01.15 11:18:29 | 000,000,000 | ---D | C] -- C:\Users\Manuel\AppData\Local\NVIDIA
[2014.01.15 11:18:13 | 000,000,000 | ---D | C] -- C:\Program Files\AGEIA Technologies
[2014.01.15 11:17:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
[2014.01.15 11:13:25 | 000,034,080 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\drivers\nvvad32v.sys
[2014.01.15 11:13:24 | 000,032,544 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvaudcap32v.dll
[2014.01.15 11:13:22 | 022,960,416 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvoglv32.dll
[2014.01.15 11:13:22 | 010,471,712 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\drivers\nvlddmkm.sys
[2014.01.15 11:13:22 | 009,657,464 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvopencl.dll
[2014.01.15 11:13:21 | 001,049,888 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvdispco3233221.dll
[2014.01.15 11:13:21 | 000,893,728 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvdispgenco3233221.dll
[2014.01.15 11:13:21 | 000,852,768 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvIFR.dll
[2014.01.15 11:13:21 | 000,847,648 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NvFBC.dll
[2014.01.15 11:13:20 | 009,700,224 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcuda.dll
[2014.01.15 11:13:20 | 002,947,872 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcuvid.dll
[2014.01.15 11:13:20 | 002,747,680 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcuvenc.dll
[2014.01.15 11:13:19 | 017,560,352 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcompiler.dll
[2014.01.15 11:04:50 | 000,000,000 | ---D | C] -- C:\Users\Manuel\AppData\Roaming\vlc
[2014.01.15 11:04:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
[2014.01.15 11:04:09 | 000,000,000 | ---D | C] -- C:\Program Files\VideoLAN
[2014.01.15 10:58:34 | 000,000,000 | ---D | C] -- C:\NVIDIA
[2014.01.15 10:49:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
[2014.01.15 10:46:59 | 000,000,000 | ---D | C] -- C:\Program Files\Google
[2014.01.15 10:46:44 | 000,000,000 | ---D | C] -- C:\Users\Manuel\AppData\Local\Google
[2014.01.15 10:15:37 | 002,349,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\win32k.sys
[2014.01.15 10:15:36 | 000,240,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\netio.sys
[2014.01.15 10:15:35 | 000,284,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\usbport.sys
[2014.01.15 10:15:35 | 000,006,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\usbd.sys
[2014.01.14 19:41:20 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
[2014.01.14 19:40:52 | 000,032,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msonpmon.dll
[2014.01.14 19:38:10 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Works
[2014.01.14 19:37:39 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Visual Studio
[2014.01.14 19:37:39 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\DESIGNER
[2014.01.14 19:37:07 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH
[2014.01.14 19:35:06 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Visual Studio 8
[2014.01.14 19:34:18 | 000,000,000 | ---D | C] -- C:\Users\Manuel\AppData\Local\Microsoft Help
[2014.01.14 19:34:09 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Office
[2014.01.14 19:34:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft Help
[2014.01.14 19:33:30 | 000,000,000 | RH-D | C] -- C:\MSOCache
[2014.01.13 20:24:45 | 000,457,248 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\NVUNINST.EXE
[2014.01.12 02:15:44 | 000,434,252 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MSVCRTD.DLL
[2014.01.12 02:15:43 | 000,962,612 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfc42d.dll
[2014.01.12 02:14:59 | 000,000,000 | ---D | C] -- C:\ProgramData\ASUS OC Profiles
[2014.01.12 02:03:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS
[2014.01.12 02:03:40 | 000,000,000 | ---D | C] -- C:\Program Files\ASUS
[2014.01.12 02:02:58 | 000,000,000 | -H-D | C] -- C:\Program Files\Temp
[2014.01.12 02:02:58 | 000,000,000 | -H-D | C] -- C:\Program Files\InstallShield Installation Information
[2014.01.12 02:02:45 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\InstallShield
[2014.01.12 01:53:30 | 000,000,000 | ---D | C] -- C:\Users\Manuel\AppData\Local\ElevatedDiagnostics
[2014.01.11 19:01:58 | 000,106,112 | ---- | C] (TCT International Mobile Ltd) -- C:\Windows\System32\drivers\jrdusbser.sys
[2014.01.11 19:01:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HSPA USB MODEM
[2014.01.11 19:01:56 | 000,000,000 | ---D | C] -- C:\Program Files\HSPA USB MODEM
[2014.01.11 18:57:51 | 000,000,000 | ---D | C] -- C:\ProgramData\mquadr.at
[2014.01.11 18:57:28 | 000,114,688 | ---- | C] (ZTE Corporation) -- C:\Windows\System32\drivers\ZTEusbnet.sys
[2014.01.11 18:57:28 | 000,105,856 | ---- | C] (ZTE Incorporated) -- C:\Windows\System32\drivers\ZTEusbser6k.sys
[2014.01.11 18:57:28 | 000,105,856 | ---- | C] (ZTE Incorporated) -- C:\Windows\System32\drivers\ZTEusbnmea.sys
[2014.01.11 18:57:28 | 000,105,856 | ---- | C] (ZTE Incorporated) -- C:\Windows\System32\drivers\ZTEusbmdm6k.sys
[2014.01.11 18:57:28 | 000,009,216 | ---- | C] (MBB Incorporated) -- C:\Windows\System32\drivers\massfilter.sys
[2014.01.11 18:57:21 | 001,112,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WdfCoInstaller01007.dll
[2014.01.11 18:57:21 | 001,112,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\WdfCoInstaller01007.dll
[2014.01.11 18:57:21 | 000,168,960 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\Windows\System32\drivers\ew_juwwanecm.sys
[2014.01.11 18:57:21 | 000,085,248 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\Windows\System32\drivers\ew_jucdcacm.sys
[2014.01.11 18:57:21 | 000,072,576 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\Windows\System32\drivers\ew_jubusenum.sys
[2014.01.11 18:57:21 | 000,051,456 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\Windows\System32\drivers\ew_jucdcecm.sys
[2014.01.11 18:57:21 | 000,026,496 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\Windows\System32\drivers\ew_juextctrl.sys
[2014.01.11 18:57:16 | 000,860,928 | ---- | C] (DiBcom SA) -- C:\Windows\System32\drivers\mod7700.sys
[2014.01.11 18:57:16 | 000,208,896 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\Windows\System32\drivers\ewusbnet.sys
[2014.01.11 18:57:16 | 000,106,880 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\Windows\System32\drivers\ewusbmdm.sys
[2014.01.11 18:57:16 | 000,027,136 | ---- | C] (Huawei Tech. Co., Ltd.) -- C:\Windows\System32\drivers\ewdcsc.sys
[2014.01.11 18:57:16 | 000,011,136 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\Windows\System32\drivers\ew_usbenumfilter.sys
[2014.01.11 18:57:09 | 000,102,784 | ---- | C] (Huawei Technologies Co., Ltd.) -- C:\Windows\System32\drivers\ew_hwusbdev.sys
[2014.01.11 18:57:06 | 000,000,000 | -H-D | C] -- C:\ProgramData\{0594BEF1-12CE-4053-A10C-630DD69A5F94}
[2014.01.11 18:57:04 | 000,000,000 | ---D | C] -- C:\Program Files\A1 Dashboard
[2014.01.11 18:57:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\A1
[2014.01.11 18:43:08 | 000,000,000 | ---D | C] -- C:\Users\Manuel\AppData\Local\CrashDumps
[2014.01.09 15:00:57 | 000,000,000 | ---D | C] -- C:\Users\Manuel\AppData\Roaming\Macromedia
[2014.01.09 15:00:57 | 000,000,000 | ---D | C] -- C:\Users\Manuel\AppData\Local\Macromedia
[2014.01.09 15:00:49 | 000,692,616 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerApp.exe
[2014.01.09 15:00:49 | 000,071,048 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl
[2014.01.09 15:00:48 | 000,000,000 | ---D | C] -- C:\Windows\System32\Macromed
[2014.01.09 15:00:22 | 000,000,000 | ---D | C] -- C:\Users\Manuel\AppData\Local\Adobe
[2014.01.09 14:13:11 | 002,616,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\explorer.exe
[2014.01.07 17:14:19 | 000,000,000 | ---D | C] -- C:\Windows\Migration
[2014.01.07 16:36:51 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft.NET
[2014.01.07 16:35:21 | 000,758,784 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\cohelper.dll
[2014.01.07 16:34:52 | 000,014,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\rdpvideominiport.sys
[2014.01.07 16:34:52 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\TsUsbRedirectionGroupPolicyExtension.dll
[2014.01.07 16:34:52 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RdpGroupPolicyExtension.dll
[2014.01.07 16:34:52 | 000,012,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\TsUsbRedirectionGroupPolicyControl.exe
[2014.01.07 16:34:51 | 000,049,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\TsUsbFlt.sys
[2014.01.07 16:34:51 | 000,027,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\TsUsbGD.sys
[2014.01.07 16:34:50 | 000,269,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\aaclient.dll
[2014.01.07 16:34:50 | 000,056,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\TSWbPrxy.exe
[2014.01.07 16:34:50 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MsRdpWebAccess.dll
[2014.01.07 16:34:50 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tsgqec.dll
[2014.01.07 16:34:50 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\TsUsbGDCoInstaller.dll
[2014.01.07 16:34:50 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wksprtPS.dll
[2014.01.07 16:34:49 | 002,739,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpcorets.dll
[2014.01.07 16:34:49 | 000,317,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wksprt.exe
[2014.01.07 16:34:49 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpudd.dll
[2014.01.07 16:34:49 | 000,192,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpendp_winip.dll
[2014.01.07 16:30:16 | 000,514,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\qdvd.dll
[2014.01.07 16:27:03 | 000,000,000 | ---D | C] -- C:\Users\Manuel\AppData\Roaming\Mozilla
[2014.01.07 16:27:03 | 000,000,000 | ---D | C] -- C:\Users\Manuel\AppData\Local\Mozilla
[2014.01.07 16:26:51 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Maintenance Service
[2014.01.07 16:26:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Mozilla
[2014.01.07 16:26:49 | 000,000,000 | ---D | C] -- C:\Program Files\Mozilla Firefox
[2014.01.07 16:20:52 | 000,000,000 | ---D | C] -- C:\Windows\System32\Wat
[2014.01.07 16:16:58 | 002,724,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtml.tlb
[2014.01.07 16:16:58 | 000,208,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ie4uinit.exe
[2014.01.07 16:16:57 | 000,703,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieapfltr.dll
[2014.01.07 16:16:57 | 000,553,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jscript9diag.dll
[2014.01.07 16:16:57 | 000,440,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieui.dll
[2014.01.07 16:16:57 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iesetup.dll
[2014.01.07 16:16:57 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsproxy.dll
[2014.01.07 16:16:57 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iernonce.dll
[2014.01.07 16:16:57 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieetwcollectorres.dll
[2014.01.07 16:16:56 | 000,112,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieUnatt.exe
[2014.01.07 16:16:56 | 000,108,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieetwcollector.exe
[2014.01.07 16:16:56 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieetwproxystub.dll
[2014.01.07 16:16:55 | 001,928,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inetcpl.cpl
[2014.01.07 16:16:53 | 004,243,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jscript9.dll
[2014.01.07 16:11:28 | 000,000,000 | ---D | C] -- C:\Windows\System32\MRT
[2014.01.07 16:10:27 | 000,172,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WUDFPlatform.dll
[2014.01.07 16:10:26 | 000,613,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WUDFx.dll
[2014.01.07 16:10:26 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WUDFCoinstaller.dll
[2014.01.07 16:10:05 | 000,293,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\browserchoice.exe
[2014.01.07 16:09:09 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wmploc.DLL
[2014.01.07 16:07:48 | 000,656,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\nshwfp.dll
[2014.01.07 16:07:48 | 000,216,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\FWPUCLNT.DLL
[2014.01.07 16:07:27 | 000,417,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WMPhoto.dll
[2014.01.07 16:07:25 | 000,148,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\storport.sys
[2014.01.07 16:07:25 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fsutil.exe
[2014.01.07 16:07:21 | 000,123,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\poqexec.exe
[2014.01.07 16:07:08 | 000,400,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\srcore.dll
[2014.01.07 16:07:07 | 000,245,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\OxpsConverter.exe
[2014.01.07 16:07:06 | 001,549,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tquery.dll
[2014.01.07 16:07:06 | 001,401,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mssrch.dll
[2014.01.07 16:07:06 | 000,666,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mssvp.dll
[2014.01.07 16:07:06 | 000,337,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mssph.dll
[2014.01.07 16:07:06 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mssphtb.dll
[2014.01.07 16:07:06 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msscntrs.dll
[2014.01.07 16:07:05 | 000,175,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\netcorehc.dll
[2014.01.07 16:07:05 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ncsi.dll
[2014.01.07 16:07:05 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\netevent.dll
[2014.01.07 16:07:02 | 002,576,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\gameux.dll
[2014.01.07 16:07:02 | 000,308,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\Wpc.dll
[2014.01.07 16:07:02 | 000,055,296 | ---- | C] (Microsoft) -- C:\Windows\System32\cero.rs
[2014.01.07 16:07:02 | 000,051,712 | ---- | C] (Microsoft) -- C:\Windows\System32\esrb.rs
[2014.01.07 16:07:02 | 000,046,592 | ---- | C] (Microsoft) -- C:\Windows\System32\fpb.rs
[2014.01.07 16:07:02 | 000,045,568 | ---- | C] (Microsoft) -- C:\Windows\System32\oflc-nz.rs
[2014.01.07 16:07:02 | 000,044,544 | ---- | C] (Microsoft) -- C:\Windows\System32\pegibbfc.rs
[2014.01.07 16:07:02 | 000,043,520 | ---- | C] (Microsoft) -- C:\Windows\System32\csrr.rs
[2014.01.07 16:07:02 | 000,040,960 | ---- | C] (Microsoft) -- C:\Windows\System32\cob-au.rs
[2014.01.07 16:07:02 | 000,030,720 | ---- | C] (Microsoft) -- C:\Windows\System32\usk.rs
[2014.01.07 16:07:02 | 000,023,552 | ---- | C] (Microsoft) -- C:\Windows\System32\oflc.rs
[2014.01.07 16:07:02 | 000,021,504 | ---- | C] (Microsoft) -- C:\Windows\System32\grb.rs
[2014.01.07 16:07:02 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\System32\pegi-pt.rs
[2014.01.07 16:07:02 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\System32\pegi-fi.rs
[2014.01.07 16:07:02 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\System32\pegi.rs
[2014.01.07 16:07:02 | 000,015,360 | ---- | C] (Microsoft) -- C:\Windows\System32\djctq.rs
[2014.01.07 16:06:53 | 000,101,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\consent.exe
[2014.01.07 16:06:47 | 000,220,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ncrypt.dll
[2014.01.07 16:06:47 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sspisrv.dll
[2014.01.07 16:06:45 | 000,434,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\scavengeui.dll
[2014.01.07 16:06:44 | 000,478,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\timedate.cpl
[2014.01.07 16:06:43 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\cryptdlg.dll
[2014.01.07 16:06:32 | 000,040,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wwanprotdim.dll
[2014.01.07 16:06:14 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dhcpcore6.dll
[2014.01.07 16:06:14 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dhcpcsvc6.dll
[2014.01.07 16:06:08 | 000,133,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\ataport.sys
[2014.01.07 16:06:03 | 001,796,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\authui.dll
[2014.01.07 16:06:03 | 000,152,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SmartcardCredentialProvider.dll
[2014.01.07 16:05:56 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\RNDISMP.sys
[2014.01.07 16:05:54 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\prevhost.exe
[2014.01.07 16:05:50 | 000,027,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\Diskdump.sys
[2014.01.07 16:05:31 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tzres.dll
[2014.01.07 16:05:24 | 000,126,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\cscript.exe
[2014.01.07 16:05:19 | 000,102,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\PresentationCFFRasterizerNative_v0300.dll
[2014.01.07 16:05:18 | 000,218,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\dxgmms1.sys
[2014.01.07 16:05:15 | 000,177,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\portcls.sys
[2014.01.07 16:05:15 | 000,081,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\drmk.sys
[2014.01.04 20:20:45 | 000,000,000 | ---D | C] -- C:\9c0e3bde39a25e22918d26f5fd
[2014.01.04 20:07:14 | 000,047,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\WdfLdr.sys
[2014.01.04 20:07:14 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\Wdfres.dll
[2014.01.04 19:54:26 | 000,055,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\hidclass.sys
[2014.01.04 19:54:26 | 000,025,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\hidparse.sys
[2014.01.04 19:28:49 | 000,295,424 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\System32\atmfd.dll
[2014.01.04 19:28:49 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\fontsub.dll
[2014.01.04 19:28:49 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\Windows\System32\atmlib.dll
[2014.01.04 19:28:49 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dciman32.dll
[2014.01.04 19:15:38 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-io-l1-1-0.dll
[2014.01.04 19:15:38 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-console-l1-1-0.dll
[2014.01.04 19:15:37 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-localization-l1-1-0.dll
[2014.01.04 19:15:37 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-processenvironment-l1-1-0.dll
[2014.01.04 19:15:37 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
[2014.01.04 19:15:37 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-util-l1-1-0.dll
[2014.01.04 19:15:37 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-string-l1-1-0.dll
[2014.01.04 19:15:37 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-rtlsupport-l1-1-0.dll
[2014.01.04 19:15:37 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-profile-l1-1-0.dll
[2014.01.04 19:15:37 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-handle-l1-1-0.dll
[2014.01.04 19:15:37 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-fibers-l1-1-0.dll
[2014.01.04 19:15:37 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-errorhandling-l1-1-0.dll
[2014.01.04 19:15:37 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-delayload-l1-1-0.dll
[2014.01.04 19:15:37 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-debug-l1-1-0.dll
[2014.01.04 19:15:37 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-datetime-l1-1-0.dll
[2014.01.04 19:15:36 | 000,271,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\conhost.exe
[2014.01.04 19:15:36 | 000,169,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\winsrv.dll
[2014.01.04 19:15:36 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-security-base-l1-1-0.dll
[2014.01.04 19:15:36 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-file-l1-1-0.dll
[2014.01.04 19:15:36 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-threadpool-l1-1-0.dll
[2014.01.04 19:15:36 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-processthreads-l1-1-0.dll
[2014.01.04 19:15:36 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-sysinfo-l1-1-0.dll
[2014.01.04 19:15:36 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-synch-l1-1-0.dll
[2014.01.04 19:15:36 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-misc-l1-1-0.dll
[2014.01.04 19:15:36 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-localregistry-l1-1-0.dll
[2014.01.04 19:15:36 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-xstate-l1-1-0.dll
[2014.01.04 19:15:36 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-namedpipe-l1-1-0.dll
[2014.01.04 19:15:36 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-memory-l1-1-0.dll
[2014.01.04 19:15:36 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-interlocked-l1-1-0.dll
[2014.01.04 19:15:36 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-core-heap-l1-1-0.dll
[2014.01.04 18:36:50 | 001,620,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WMVDECOD.DLL
[2014.01.04 17:19:35 | 000,509,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\qedit.dll
[2014.01.04 17:14:08 | 000,000,000 | R--D | C] -- C:\Users\Manuel\Desktop\Sicherheit
[2014.01.04 17:10:11 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
[2014.01.04 17:10:06 | 000,018,968 | ---- | C] (Safer Networking Limited) -- C:\Windows\System32\sdnclean.exe
[2014.01.04 17:10:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Spybot - Search & Destroy
[2014.01.04 17:09:59 | 000,000,000 | ---D | C] -- C:\Program Files\Spybot - Search & Destroy 2
[2014.01.04 17:09:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Emsisoft Anti-Malware
[2014.01.04 17:09:27 | 000,000,000 | ---D | C] -- C:\Program Files\Emsisoft Anti-Malware
[2014.01.04 17:09:27 | 000,000,000 | ---D | C] -- C:\Users\Manuel\Documents\Anti-Malware
[2014.01.04 17:09:23 | 000,000,000 | ---D | C] -- C:\Users\Manuel\AppData\Local\Programs
[2014.01.04 17:03:26 | 000,142,936 | ---- | C] (Symantec Corporation) -- C:\Windows\System32\drivers\SYMEVENT.SYS
[2014.01.04 17:03:26 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Symantec Shared
[2014.01.04 17:03:09 | 000,935,512 | R--- | C] (Symantec Corporation) -- C:\Windows\System32\drivers\NIS\1501000.012\SymEFA.sys
[2014.01.04 17:03:09 | 000,651,352 | R--- | C] (Symantec Corporation) -- C:\Windows\System32\drivers\NIS\1501000.012\srtsp.sys
[2014.01.04 17:03:09 | 000,446,552 | R--- | C] (Symantec Corporation) -- C:\Windows\System32\drivers\NIS\1501000.012\symnets.sys
[2014.01.04 17:03:09 | 000,367,704 | R--- | C] (Symantec Corporation) -- C:\Windows\System32\drivers\NIS\1501000.012\SymDS.sys
[2014.01.04 17:03:09 | 000,206,936 | R--- | C] (Symantec Corporation) -- C:\Windows\System32\drivers\NIS\1501000.012\Ironx86.sys
[2014.01.04 17:03:09 | 000,127,064 | R--- | C] (Symantec Corporation) -- C:\Windows\System32\drivers\NIS\1501000.012\ccSetx86.sys
[2014.01.04 17:03:09 | 000,032,344 | R--- | C] (Symantec Corporation) -- C:\Windows\System32\drivers\NIS\1501000.012\srtspx.sys
[2014.01.04 17:03:09 | 000,021,520 | R--- | C] (Symantec Corporation) -- C:\Windows\System32\drivers\NIS\1501000.012\SymELAM.sys
[2014.01.04 17:02:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\NIS
[2014.01.04 17:02:43 | 000,000,000 | ---D | C] -- C:\Windows\System32\drivers\NIS\1501000.012
[2014.01.04 17:02:41 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Internet Security
[2014.01.04 17:02:41 | 000,000,000 | ---D | C] -- C:\Program Files\Norton Internet Security
[2014.01.04 17:02:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Norton
[2014.01.04 17:02:32 | 000,000,000 | ---D | C] -- C:\ProgramData\NortonInstaller
[2014.01.04 17:02:32 | 000,000,000 | ---D | C] -- C:\Program Files\NortonInstaller
[2014.01.04 17:00:06 | 001,247,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\DWrite.dll
[2014.01.04 16:42:13 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\certenc.dll
[2014.01.04 16:42:11 | 000,903,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\certutil.exe
[2014.01.04 16:20:13 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\usb8023.sys
[2014.01.04 15:50:54 | 000,000,000 | -HSD | C] -- C:\Windows\Installer
[2014.01.04 15:50:31 | 000,376,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dpnet.dll
[2014.01.04 15:38:39 | 000,078,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\synceng.dll
[2014.01.04 15:27:58 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\browcli.dll
[2014.01.04 15:15:28 | 000,805,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\cdosys.dll
[2014.01.04 15:13:20 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msxml3r.dll
[2014.01.04 15:09:14 | 000,129,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpcorekmts.dll
[2014.01.04 15:09:14 | 000,058,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpwsx.dll
[2014.01.04 15:09:14 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdrmemptylst.exe
[2014.01.04 14:55:22 | 000,314,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\webio.dll
[2014.01.04 14:54:08 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\packager.dll
[2014.01.04 14:51:45 | 001,328,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\quartz.dll
[2014.01.04 14:50:35 | 000,534,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\EncDec.dll
[2014.01.04 14:47:11 | 000,465,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\psisdecd.dll
[2014.01.04 14:47:10 | 000,075,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\psisrndr.ax
[2014.01.04 14:43:55 | 000,319,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\odbcjt32.dll
[2014.01.04 14:43:55 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\odbctrac.dll
[2014.01.04 14:43:55 | 000,122,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\odbccp32.dll
[2014.01.04 14:43:55 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\odbccu32.dll
[2014.01.04 14:43:55 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\odbccr32.dll
[2014.01.04 14:36:31 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dnscacheugc.exe
[2014.01.04 14:34:55 | 001,164,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfc42u.dll
[2014.01.04 14:34:55 | 001,137,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mfc42.dll
[2014.01.04 14:34:13 | 000,191,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\FXSCOVER.exe
[2014.01.04 14:32:28 | 000,850,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\sbe.dll
[2014.01.04 14:32:28 | 000,642,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\CPFilters.dll
[2014.01.04 14:32:27 | 000,199,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mpg2splt.ax
[2014.01.04 14:25:02 | 000,000,000 | ---D | C] -- C:\Users\Manuel\AppData\Roaming\Adobe
[2014.01.04 14:20:58 | 001,051,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtmlmedia.dll
[2014.01.04 14:20:58 | 000,646,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MsSpellCheckingFacility.exe
[2014.01.04 14:20:58 | 000,645,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\jsIntl.dll
[2014.01.04 14:20:58 | 000,616,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ieapfltr.dat
[2014.01.04 14:20:58 | 000,523,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeeds.dll
[2014.01.04 14:20:58 | 000,367,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxtmsft.dll
[2014.01.04 14:20:58 | 000,337,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\html.iec
[2014.01.04 14:20:58 | 000,244,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxtrans.dll
[2014.01.04 14:20:58 | 000,238,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iedkcs32.dll
[2014.01.04 14:20:58 | 000,233,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\url.dll
[2014.01.04 14:20:58 | 000,194,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\elshyph.dll
[2014.01.04 14:20:58 | 000,182,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msls31.dll
[2014.01.04 14:20:58 | 000,164,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msrating.dll
[2014.01.04 14:20:58 | 000,151,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iexpress.exe
[2014.01.04 14:20:58 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wextract.exe
[2014.01.04 14:20:58 | 000,083,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\inseng.dll
[2014.01.04 14:20:58 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\RegisterIEPKEYs.exe
[2014.01.04 14:20:58 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\pngfilt.dll
[2014.01.04 14:20:58 | 000,034,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\JavaScriptCollectionAgent.dll
[2014.01.04 14:20:58 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\licmgr10.dll
[2014.01.04 14:20:57 | 000,116,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iepeers.dll
[2014.01.04 14:20:57 | 000,111,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\IEAdvpack.dll
[2014.01.04 14:20:57 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\iesysprep.dll
[2014.01.04 14:20:57 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\SetIEInstalledDate.exe
[2014.01.04 14:20:57 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\MshtmlDac.dll
[2014.01.04 14:20:57 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\mshtmler.dll
[2014.01.04 14:20:57 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedsbs.dll
[2014.01.04 14:20:57 | 000,036,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\imgutil.dll
[2014.01.04 14:20:57 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msfeedssync.exe
[2014.01.04 14:20:36 | 003,969,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntkrnlpa.exe
[2014.01.04 14:20:36 | 003,914,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\ntoskrnl.exe
[2014.01.04 14:20:36 | 000,619,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\tdh.dll
[2014.01.04 14:20:36 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\csrsrv.dll
[2014.01.04 14:20:27 | 000,187,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\drivers\FWPKCLNT.SYS
[2014.01.04 14:20:20 | 000,049,152 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe
[2014.01.04 14:19:31 | 003,419,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d2d1.dll
[2014.01.04 14:19:31 | 002,284,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\msmpeg2vdec.dll
[2014.01.04 14:19:31 | 001,988,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10warp.dll
[2014.01.04 14:19:31 | 001,158,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XpsPrint.dll
[2014.01.04 14:19:31 | 001,080,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10.dll
[2014.01.04 14:19:31 | 000,604,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10level9.dll
[2014.01.04 14:19:31 | 000,364,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\XpsGdiConverter.dll
[2014.01.04 14:19:31 | 000,293,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\dxgi.dll
[2014.01.04 14:19:31 | 000,249,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10_1core.dll
[2014.01.04 14:19:31 | 000,220,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10core.dll
[2014.01.04 14:19:31 | 000,207,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\WindowsCodecsExt.dll
[2014.01.04 14:19:31 | 000,187,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\UIAnimation.dll
[2014.01.04 14:19:31 | 000,161,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d10_1.dll
[2014.01.04 14:19:31 | 000,010,752 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-advapi32-l1-1-0.dll
[2014.01.04 14:19:31 | 000,009,728 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
[2014.01.04 14:19:31 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
[2014.01.04 14:19:31 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-ole32-l1-1-0.dll
[2014.01.04 14:19:31 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-user32-l1-1-0.dll
[2014.01.04 14:19:31 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dll
[2014.01.04 14:19:31 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-version-l1-1-0.dll
[2014.01.04 14:19:31 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dll
[2014.01.04 14:19:31 | 000,002,560 | -H-- | C] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-normaliz-l1-1-0.dll
[2014.01.04 14:18:28 | 001,505,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\d3d11.dll
[2014.01.04 14:17:56 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA
[2014.01.04 14:17:48 | 004,317,984 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvcpl.dll
[2014.01.04 14:17:48 | 003,036,960 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvsvc.dll
[2014.01.04 14:17:48 | 002,555,168 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvsvcr.dll
[2014.01.04 14:17:48 | 000,376,096 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvmctray.dll
[2014.01.04 14:17:48 | 000,062,752 | ---- | C] (NVIDIA Corporation) -- C:\Windows\System32\nvshext.dll
[2014.01.04 14:17:30 | 000,053,024 | ---- | C] (Khronos Group) -- C:\Windows\System32\OpenCL.dll
[2014.01.04 14:17:08 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA Corporation
[2014.01.04 14:17:02 | 000,000,000 | ---D | C] -- C:\Program Files\NVIDIA Corporation
[2014.01.04 14:14:40 | 000,826,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\rdpcore.dll
[2014.01.04 14:11:51 | 000,000,000 | R--D | C] -- C:\Users\Manuel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
[2014.01.04 14:11:51 | 000,000,000 | R--D | C] -- C:\Users\Manuel\Searches
[2014.01.04 14:11:51 | 000,000,000 | R--D | C] -- C:\Users\Manuel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
[2014.01.04 14:11:42 | 000,000,000 | ---D | C] -- C:\Users\Manuel\AppData\Roaming\Identities
[2014.01.04 14:11:41 | 000,000,000 | R--D | C] -- C:\Users\Manuel\Contacts
[2014.01.04 14:11:28 | 002,422,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wucltux.dll
[2014.01.04 14:11:28 | 000,045,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wups2.dll
[2014.01.04 14:11:22 | 000,577,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuapi.dll
[2014.01.04 14:11:22 | 000,088,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wudriver.dll
[2014.01.04 14:11:22 | 000,035,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wups.dll
[2014.01.04 14:11:17 | 000,171,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuwebv.dll
[2014.01.04 14:11:17 | 000,033,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\System32\wuapp.exe
[2014.01.04 14:11:09 | 000,000,000 | ---D | C] -- C:\Users\Manuel\AppData\Local\VirtualStore
[2014.01.04 14:11:08 | 000,000,000 | --SD | C] -- C:\Users\Manuel\AppData\Roaming\Microsoft
[2014.01.04 14:11:08 | 000,000,000 | R--D | C] -- C:\Users\Manuel\Videos
[2014.01.04 14:11:08 | 000,000,000 | R--D | C] -- C:\Users\Manuel\Saved Games
[2014.01.04 14:11:08 | 000,000,000 | R--D | C] -- C:\Users\Manuel\Pictures
[2014.01.04 14:11:08 | 000,000,000 | R--D | C] -- C:\Users\Manuel\Music
[2014.01.04 14:11:08 | 000,000,000 | R--D | C] -- C:\Users\Manuel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
[2014.01.04 14:11:08 | 000,000,000 | R--D | C] -- C:\Users\Manuel\Links
[2014.01.04 14:11:08 | 000,000,000 | R--D | C] -- C:\Users\Manuel\Favorites
[2014.01.04 14:11:08 | 000,000,000 | R--D | C] -- C:\Users\Manuel\Downloads
[2014.01.04 14:11:08 | 000,000,000 | R--D | C] -- C:\Users\Manuel\Documents
[2014.01.04 14:11:08 | 000,000,000 | R--D | C] -- C:\Users\Manuel\Desktop
[2014.01.04 14:11:08 | 000,000,000 | R--D | C] -- C:\Users\Manuel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
[2014.01.04 14:11:08 | 000,000,000 | -HSD | C] -- C:\Users\Manuel\Vorlagen
[2014.01.04 14:11:08 | 000,000,000 | -HSD | C] -- C:\Users\Manuel\AppData\Local\Verlauf
[2014.01.04 14:11:08 | 000,000,000 | -HSD | C] -- C:\Users\Manuel\AppData\Local\Temporary Internet Files
[2014.01.04 14:11:08 | 000,000,000 | -HSD | C] -- C:\Users\Manuel\Startmenü
[2014.01.04 14:11:08 | 000,000,000 | -HSD | C] -- C:\Users\Manuel\SendTo
[2014.01.04 14:11:08 | 000,000,000 | -HSD | C] -- C:\Users\Manuel\Recent
[2014.01.04 14:11:08 | 000,000,000 | -HSD | C] -- C:\Users\Manuel\Netzwerkumgebung
[2014.01.04 14:11:08 | 000,000,000 | -HSD | C] -- C:\Users\Manuel\Lokale Einstellungen
[2014.01.04 14:11:08 | 000,000,000 | -HSD | C] -- C:\Users\Manuel\Documents\Eigene Videos
[2014.01.04 14:11:08 | 000,000,000 | -HSD | C] -- C:\Users\Manuel\Documents\Eigene Musik
[2014.01.04 14:11:08 | 000,000,000 | -HSD | C] -- C:\Users\Manuel\Eigene Dateien
[2014.01.04 14:11:08 | 000,000,000 | -HSD | C] -- C:\Users\Manuel\Documents\Eigene Bilder
[2014.01.04 14:11:08 | 000,000,000 | -HSD | C] -- C:\Users\Manuel\Druckumgebung
[2014.01.04 14:11:08 | 000,000,000 | -HSD | C] -- C:\Users\Manuel\Cookies
[2014.01.04 14:11:08 | 000,000,000 | -HSD | C] -- C:\Users\Manuel\AppData\Local\Anwendungsdaten
[2014.01.04 14:11:08 | 000,000,000 | -HSD | C] -- C:\Users\Manuel\Anwendungsdaten
[2014.01.04 14:11:08 | 000,000,000 | -H-D | C] -- C:\Users\Manuel\AppData
[2014.01.04 14:11:08 | 000,000,000 | ---D | C] -- C:\Users\Manuel\AppData\Local\Temp
[2014.01.04 14:11:08 | 000,000,000 | ---D | C] -- C:\Users\Manuel\AppData\Local\Microsoft
[2014.01.04 14:11:08 | 000,000,000 | ---D | C] -- C:\Users\Manuel\AppData\Roaming\Media Center Programs
[2014.01.04 14:10:59 | 000,000,000 | -HSD | C] -- C:\ProgramData\Vorlagen
[2014.01.04 14:10:59 | 000,000,000 | -HSD | C] -- C:\ProgramData\Startmenü
[2014.01.04 14:10:59 | 000,000,000 | -HSD | C] -- C:\Recovery
[2014.01.04 14:10:59 | 000,000,000 | -HSD | C] -- C:\Programme
[2014.01.04 14:10:59 | 000,000,000 | -HSD | C] -- C:\Program Files\Gemeinsame Dateien
[2014.01.04 14:10:59 | 000,000,000 | -HSD | C] -- C:\ProgramData\Favoriten
[2014.01.04 14:10:59 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Videos
[2014.01.04 14:10:59 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Musik
[2014.01.04 14:10:59 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Bilder
[2014.01.04 14:10:59 | 000,000,000 | -HSD | C] -- C:\Dokumente und Einstellungen
[2014.01.04 14:10:59 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dokumente
[2014.01.04 14:10:59 | 000,000,000 | -HSD | C] -- C:\ProgramData\Anwendungsdaten
========== Files - Modified Within 30 Days ==========
[2014.01.19 01:00:00 | 000,000,884 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014.01.19 00:58:00 | 000,001,098 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2014.01.19 00:48:22 | 000,021,680 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014.01.19 00:48:22 | 000,021,680 | -H-- | M] () -- C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014.01.19 00:28:16 | 000,001,094 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2014.01.19 00:28:06 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2014.01.19 00:27:50 | 1609,961,472 | -HS- | M] () -- C:\hiberfil.sys
[2014.01.18 23:54:42 | 000,698,688 | ---- | M] () -- C:\Windows\System32\perfh007.dat
[2014.01.18 23:54:42 | 000,653,526 | ---- | M] () -- C:\Windows\System32\perfh009.dat
[2014.01.18 23:54:42 | 000,148,828 | ---- | M] () -- C:\Windows\System32\perfc007.dat
[2014.01.18 23:54:42 | 000,121,398 | ---- | M] () -- C:\Windows\System32\perfc009.dat
[2014.01.18 23:35:46 | 001,736,322 | ---- | M] () -- C:\Windows\System32\drivers\NIS\1501000.012\Cat.DB
[2014.01.18 23:31:06 | 000,001,368 | ---- | M] () -- C:\Users\Manuel\Desktop\Norton Installation Files.lnk
[2014.01.18 18:34:02 | 000,033,498 | ---- | M] () -- C:\Users\Manuel\Documents\Einkaufsliste GETRÄNKE.rtf
[2014.01.17 16:00:08 | 000,001,796 | ---- | M] () -- C:\Users\Manuel\Desktop\TERA.lnk
[2014.01.16 21:33:03 | 000,024,908 | ---- | M] () -- C:\Windows\System32\drivers\NIS\1501000.012\VT20140116.020
[2014.01.16 19:37:47 | 000,692,616 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerApp.exe
[2014.01.16 19:37:47 | 000,071,048 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\System32\FlashPlayerCPLApp.cpl
[2014.01.16 18:36:17 | 000,072,704 | ---- | M] (Emsisoft GmbH) -- C:\Windows\System32\eamclean.exe
[2014.01.16 18:36:16 | 000,000,088 | ---- | M] () -- C:\Windows\System32\eamclean.dat
[2014.01.15 21:42:33 | 000,017,493 | ---- | M] () -- C:\Windows\Ascd_tmp.ini
[2014.01.15 21:05:59 | 000,000,961 | ---- | M] () -- C:\Users\Public\Desktop\eMule.lnk
[2014.01.15 20:58:18 | 000,000,196 | ---- | M] () -- C:\Windows\System32\Config.json
[2014.01.15 20:55:56 | 000,172,032 | ---- | M] (Jin Hui E-mail: jinhui@jcomsoft.com Web: hxxp://www.jcomsoft.com) -- C:\Windows\System32\AniGIF.ocx
[2014.01.15 20:54:59 | 000,000,853 | ---- | M] () -- C:\Users\Manuel\Desktop\µTorrent.lnk
[2014.01.15 20:11:45 | 000,001,989 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader XI.lnk
[2014.01.15 12:14:59 | 000,003,584 | ---- | M] () -- C:\Users\Manuel\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2014.01.15 12:04:15 | 000,002,687 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk
[2014.01.15 11:56:12 | 000,002,011 | ---- | M] () -- C:\Users\Public\Desktop\Microsoft LifeCam.lnk
[2014.01.15 11:46:32 | 000,414,120 | ---- | M] () -- C:\Windows\System32\FNTCACHE.DAT
[2014.01.15 11:26:39 | 000,001,015 | ---- | M] () -- C:\Users\Manuel\Desktop\WinRAR.lnk
[2014.01.15 11:04:34 | 000,001,024 | ---- | M] () -- C:\Users\Public\Desktop\VLC media player.lnk
[2014.01.14 19:41:24 | 000,002,697 | ---- | M] () -- C:\Users\Manuel\Desktop\Microsoft Office Word 2007.lnk
[2014.01.14 19:41:22 | 000,002,795 | ---- | M] () -- C:\Users\Manuel\Desktop\Microsoft Office Outlook 2007.lnk
[2014.01.13 21:33:14 | 000,000,928 | ---- | M] () -- C:\Users\Manuel\Documents\Einkaufsliste - täglich LEBENSMITTEL.rtf
[2014.01.13 21:18:13 | 000,001,025 | ---- | M] () -- C:\Users\Manuel\Documents\Einkaufsliste - täglich REINIGUNG.rtf
[2014.01.13 19:38:26 | 000,028,513 | ---- | M] () -- C:\Users\Manuel\AppData\Roaming\UserTile.png
[2014.01.13 19:36:29 | 000,000,667 | ---- | M] () -- C:\Users\Manuel\Desktop\Manuel - Verknüpfung.lnk
[2014.01.13 19:36:04 | 000,001,409 | ---- | M] () -- C:\Users\Manuel\Desktop\Internet Explorer.lnk
[2014.01.12 02:03:54 | 000,021,206 | ---- | M] () -- C:\Windows\Ascd_log.ini
[2014.01.12 02:03:30 | 000,000,674 | ---- | M] () -- C:\Windows\setup.iss
[2014.01.12 02:02:03 | 000,001,769 | ---- | M] () -- C:\Windows\Language_trs.ini
[2014.01.11 23:27:03 | 000,000,680 | RHS- | M] () -- C:\Users\Manuel\ntuser.pol
[2014.01.11 19:01:57 | 000,001,047 | ---- | M] () -- C:\Users\Public\Desktop\HSPA USB MODEM.lnk
[2014.01.11 19:01:32 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2014.01.11 18:57:42 | 000,000,974 | ---- | M] () -- C:\Users\Public\Desktop\A1 Dashboard.lnk
[2014.01.11 18:57:24 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_ew_jubusenum_01007.Wdf
[2014.01.11 18:38:25 | 000,000,355 | ---- | M] () -- C:\Users\Manuel\Desktop\Computer - Verknüpfung.lnk
[2014.01.09 14:36:03 | 000,000,000 | -H-- | M] () -- C:\Windows\System32\drivers\Msft_Kernel_dc3d_01011.Wdf
[2014.01.07 16:26:56 | 000,001,105 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2014.01.04 17:03:26 | 000,142,936 | ---- | M] (Symantec Corporation) -- C:\Windows\System32\drivers\SYMEVENT.SYS
[2014.01.04 17:03:26 | 000,008,194 | ---- | M] () -- C:\Windows\System32\drivers\SYMEVENT.CAT
[2014.01.04 17:03:26 | 000,000,805 | ---- | M] () -- C:\Windows\System32\drivers\SYMEVENT.INF
[2014.01.04 14:20:58 | 001,051,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\mshtmlmedia.dll
[2014.01.04 14:20:58 | 000,646,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\MsSpellCheckingFacility.exe
[2014.01.04 14:20:58 | 000,645,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\jsIntl.dll
[2014.01.04 14:20:58 | 000,616,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ieapfltr.dat
[2014.01.04 14:20:58 | 000,523,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msfeeds.dll
[2014.01.04 14:20:58 | 000,367,104 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\dxtmsft.dll
[2014.01.04 14:20:58 | 000,337,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\html.iec
[2014.01.04 14:20:58 | 000,244,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\dxtrans.dll
[2014.01.04 14:20:58 | 000,238,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\iedkcs32.dll
[2014.01.04 14:20:58 | 000,233,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\url.dll
[2014.01.04 14:20:58 | 000,194,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\elshyph.dll
[2014.01.04 14:20:58 | 000,182,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msls31.dll
[2014.01.04 14:20:58 | 000,164,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msrating.dll
[2014.01.04 14:20:58 | 000,151,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\iexpress.exe
[2014.01.04 14:20:58 | 000,139,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\wextract.exe
[2014.01.04 14:20:58 | 000,083,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\inseng.dll
[2014.01.04 14:20:58 | 000,071,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\RegisterIEPKEYs.exe
[2014.01.04 14:20:58 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\pngfilt.dll
[2014.01.04 14:20:58 | 000,034,816 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\JavaScriptCollectionAgent.dll
[2014.01.04 14:20:58 | 000,024,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\licmgr10.dll
[2014.01.04 14:20:58 | 000,016,284 | ---- | M] () -- C:\Windows\System32\ieuinit.inf
[2014.01.04 14:20:57 | 000,116,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\iepeers.dll
[2014.01.04 14:20:57 | 000,111,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\IEAdvpack.dll
[2014.01.04 14:20:57 | 000,086,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\iesysprep.dll
[2014.01.04 14:20:57 | 000,074,240 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\SetIEInstalledDate.exe
[2014.01.04 14:20:57 | 000,061,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\MshtmlDac.dll
[2014.01.04 14:20:57 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\mshtmler.dll
[2014.01.04 14:20:57 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msfeedsbs.dll
[2014.01.04 14:20:57 | 000,036,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\imgutil.dll
[2014.01.04 14:20:57 | 000,012,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msfeedssync.exe
[2014.01.04 14:20:36 | 003,969,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ntkrnlpa.exe
[2014.01.04 14:20:36 | 003,914,176 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\ntoskrnl.exe
[2014.01.04 14:20:36 | 000,619,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\tdh.dll
[2014.01.04 14:20:36 | 000,038,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\csrsrv.dll
[2014.01.04 14:20:27 | 000,187,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\drivers\FWPKCLNT.SYS
[2014.01.04 14:20:20 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe
[2014.01.04 14:19:31 | 003,419,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\d2d1.dll
[2014.01.04 14:19:31 | 002,284,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\msmpeg2vdec.dll
[2014.01.04 14:19:31 | 001,988,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\d3d10warp.dll
[2014.01.04 14:19:31 | 001,158,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\XpsPrint.dll
[2014.01.04 14:19:31 | 001,080,832 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\d3d10.dll
[2014.01.04 14:19:31 | 000,604,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\d3d10level9.dll
[2014.01.04 14:19:31 | 000,364,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\XpsGdiConverter.dll
[2014.01.04 14:19:31 | 000,293,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\dxgi.dll
[2014.01.04 14:19:31 | 000,249,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\d3d10_1core.dll
[2014.01.04 14:19:31 | 000,220,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\d3d10core.dll
[2014.01.04 14:19:31 | 000,207,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\WindowsCodecsExt.dll
[2014.01.04 14:19:31 | 000,187,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\UIAnimation.dll
[2014.01.04 14:19:31 | 000,161,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\d3d10_1.dll
[2014.01.04 14:19:31 | 000,010,752 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-advapi32-l1-1-0.dll
[2014.01.04 14:19:31 | 000,009,728 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
[2014.01.04 14:19:31 | 000,005,632 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
[2014.01.04 14:19:31 | 000,005,632 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-ole32-l1-1-0.dll
[2014.01.04 14:19:31 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-user32-l1-1-0.dll
[2014.01.04 14:19:31 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dll
[2014.01.04 14:19:31 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-version-l1-1-0.dll
[2014.01.04 14:19:31 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dll
[2014.01.04 14:19:31 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\System32\api-ms-win-downlevel-normaliz-l1-1-0.dll
[2014.01.04 14:18:28 | 001,505,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\d3d11.dll
========== Files Created - No Company Name ==========
[2014.01.18 23:35:26 | 000,000,172 | ---- | C] () -- C:\Windows\System32\drivers\NBRTWizard\0600000.04A\isolate.ini
[2014.01.18 23:30:58 | 000,001,368 | ---- | C] () -- C:\Users\Manuel\Desktop\Norton Installation Files.lnk
[2014.01.17 16:00:13 | 000,001,796 | ---- | C] () -- C:\Users\Manuel\Desktop\TERA.lnk
[2014.01.16 22:52:14 | 000,024,908 | ---- | C] () -- C:\Windows\System32\drivers\NIS\1501000.012\VT20140116.020
[2014.01.16 18:36:16 | 000,000,088 | ---- | C] () -- C:\Windows\System32\eamclean.dat
[2014.01.15 21:05:59 | 000,000,961 | ---- | C] () -- C:\Users\Public\Desktop\eMule.lnk
[2014.01.15 20:58:18 | 000,000,196 | ---- | C] () -- C:\Windows\System32\Config.json
[2014.01.15 20:54:59 | 000,000,853 | ---- | C] () -- C:\Users\Manuel\Desktop\µTorrent.lnk
[2014.01.15 20:11:45 | 000,001,989 | ---- | C] () -- C:\Users\Public\Desktop\Adobe Reader XI.lnk
[2014.01.15 20:11:40 | 000,002,441 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
[2014.01.15 12:14:59 | 000,003,584 | ---- | C] () -- C:\Users\Manuel\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2014.01.15 12:04:13 | 000,002,687 | ---- | C] () -- C:\Users\Public\Desktop\Skype.lnk
[2014.01.15 11:56:11 | 000,002,011 | ---- | C] () -- C:\Users\Public\Desktop\Microsoft LifeCam.lnk
[2014.01.15 11:26:39 | 000,001,015 | ---- | C] () -- C:\Users\Manuel\Desktop\WinRAR.lnk
[2014.01.15 11:04:33 | 000,001,024 | ---- | C] () -- C:\Users\Public\Desktop\VLC media player.lnk
[2014.01.15 10:47:09 | 000,001,098 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2014.01.15 10:47:06 | 000,001,094 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2014.01.14 19:41:24 | 000,002,697 | ---- | C] () -- C:\Users\Manuel\Desktop\Microsoft Office Word 2007.lnk
[2014.01.14 19:41:22 | 000,002,795 | ---- | C] () -- C:\Users\Manuel\Desktop\Microsoft Office Outlook 2007.lnk
[2014.01.13 21:42:20 | 000,033,498 | ---- | C] () -- C:\Users\Manuel\Documents\Einkaufsliste GETRÄNKE.rtf
[2014.01.13 21:28:51 | 000,000,928 | ---- | C] () -- C:\Users\Manuel\Documents\Einkaufsliste - täglich LEBENSMITTEL.rtf
[2014.01.13 21:18:13 | 000,001,025 | ---- | C] () -- C:\Users\Manuel\Documents\Einkaufsliste - täglich REINIGUNG.rtf
[2014.01.13 19:38:26 | 000,028,513 | ---- | C] () -- C:\Users\Manuel\AppData\Roaming\UserTile.png
[2014.01.13 19:36:29 | 000,000,667 | ---- | C] () -- C:\Users\Manuel\Desktop\Manuel - Verknüpfung.lnk
[2014.01.13 19:36:04 | 000,001,409 | ---- | C] () -- C:\Users\Manuel\Desktop\Internet Explorer.lnk
[2014.01.12 02:03:45 | 000,024,576 | R--- | C] () -- C:\Windows\System32\AsIO.dll
[2014.01.12 02:03:45 | 000,012,400 | R--- | C] () -- C:\Windows\System32\drivers\AsIO.sys
[2014.01.12 02:03:30 | 000,000,674 | ---- | C] () -- C:\Windows\setup.iss
[2014.01.12 02:02:39 | 000,021,206 | ---- | C] () -- C:\Windows\Ascd_log.ini
[2014.01.12 02:02:03 | 000,001,769 | ---- | C] () -- C:\Windows\Language_trs.ini
[2014.01.12 02:02:01 | 000,017,493 | ---- | C] () -- C:\Windows\Ascd_tmp.ini
[2014.01.11 23:22:23 | 000,000,680 | RHS- | C] () -- C:\Users\Manuel\ntuser.pol
[2014.01.11 19:01:57 | 000,001,047 | ---- | C] () -- C:\Users\Public\Desktop\HSPA USB MODEM.lnk
[2014.01.11 19:01:32 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_User_WpdFs_01_09_00.Wdf
[2014.01.11 18:57:24 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_ew_jubusenum_01007.Wdf
[2014.01.11 18:57:05 | 000,000,974 | ---- | C] () -- C:\Users\Public\Desktop\A1 Dashboard.lnk
[2014.01.11 18:38:25 | 000,000,355 | ---- | C] () -- C:\Users\Manuel\Desktop\Computer - Verknüpfung.lnk
[2014.01.09 15:00:50 | 000,000,884 | ---- | C] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014.01.09 14:36:03 | 000,000,000 | -H-- | C] () -- C:\Windows\System32\drivers\Msft_Kernel_dc3d_01011.Wdf
[2014.01.07 16:35:21 | 000,011,164 | ---- | C] () -- C:\Windows\System32\drivers\nvphy.bin
[2014.01.07 16:26:56 | 000,001,105 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2014.01.07 16:26:54 | 000,001,117 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[2014.01.07 16:10:26 | 000,000,003 | ---- | C] () -- C:\Windows\System32\drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
[2014.01.04 20:07:14 | 000,000,003 | ---- | C] () -- C:\Windows\System32\drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
[2014.01.04 17:10:12 | 000,002,131 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
[2014.01.04 17:03:34 | 001,736,322 | ---- | C] () -- C:\Windows\System32\drivers\NIS\1501000.012\Cat.DB
[2014.01.04 17:03:26 | 000,008,194 | ---- | C] () -- C:\Windows\System32\drivers\SYMEVENT.CAT
[2014.01.04 17:03:26 | 000,000,805 | ---- | C] () -- C:\Windows\System32\drivers\SYMEVENT.INF
[2014.01.04 17:02:54 | 000,003,433 | R--- | C] () -- C:\Windows\System32\drivers\NIS\1501000.012\SymEFA.inf
[2014.01.04 17:02:54 | 000,002,852 | R--- | C] () -- C:\Windows\System32\drivers\NIS\1501000.012\SymDS.inf
[2014.01.04 17:02:54 | 000,001,440 | R--- | C] () -- C:\Windows\System32\drivers\NIS\1501000.012\SymNet.inf
[2014.01.04 17:02:54 | 000,001,389 | R--- | C] () -- C:\Windows\System32\drivers\NIS\1501000.012\srtspx.inf
[2014.01.04 17:02:54 | 000,001,388 | R--- | C] () -- C:\Windows\System32\drivers\NIS\1501000.012\srtsp.inf
[2014.01.04 17:02:54 | 000,001,098 | R--- | C] () -- C:\Windows\System32\drivers\NIS\1501000.012\symELAM.inf
[2014.01.04 17:02:54 | 000,000,829 | R--- | C] () -- C:\Windows\System32\drivers\NIS\1501000.012\ccSetx86.inf
[2014.01.04 17:02:54 | 000,000,737 | R--- | C] () -- C:\Windows\System32\drivers\NIS\1501000.012\Iron.inf
[2014.01.04 17:02:43 | 000,014,818 | R--- | C] () -- C:\Windows\System32\drivers\NIS\1501000.012\SymVTcer.dat
[2014.01.04 17:02:43 | 000,009,931 | R--- | C] () -- C:\Windows\System32\drivers\NIS\1501000.012\SymELAM.cat
[2014.01.04 17:02:43 | 000,008,194 | R--- | C] () -- C:\Windows\System32\drivers\NIS\1501000.012\ccSetx86.cat
[2014.01.04 17:02:43 | 000,008,184 | R--- | C] () -- C:\Windows\System32\drivers\NIS\1501000.012\SymNet.cat
[2014.01.04 17:02:43 | 000,008,182 | R--- | C] () -- C:\Windows\System32\drivers\NIS\1501000.012\SymEFA.cat
[2014.01.04 17:02:43 | 000,008,180 | R--- | C] () -- C:\Windows\System32\drivers\NIS\1501000.012\srtspx.cat
[2014.01.04 17:02:43 | 000,008,176 | R--- | C] () -- C:\Windows\System32\drivers\NIS\1501000.012\SymDS.cat
[2014.01.04 17:02:43 | 000,008,176 | R--- | C] () -- C:\Windows\System32\drivers\NIS\1501000.012\srtsp.cat
[2014.01.04 17:02:43 | 000,008,176 | R--- | C] () -- C:\Windows\System32\drivers\NIS\1501000.012\iron.cat
[2014.01.04 17:02:43 | 000,000,172 | ---- | C] () -- C:\Windows\System32\drivers\NIS\1501000.012\isolate.ini
[2014.01.04 14:20:58 | 000,016,284 | ---- | C] () -- C:\Windows\System32\ieuinit.inf
[2014.01.04 14:11:52 | 000,001,409 | ---- | C] () -- C:\Users\Manuel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
========== ZeroAccess Check ==========
[2009.07.14 05:42:31 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013.07.26 02:55:59 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010.11.20 22:29:20 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = %systemroot%\system32\wbem\wbemess.dll -- [2009.07.14 02:16:17 | 000,342,528 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
========== LOP Check ==========
[2014.01.15 21:35:25 | 000,000,000 | ---D | M] -- C:\Users\Manuel\AppData\Roaming\uTorrent
========== Purity Check ==========
========== Alternate Data Streams ==========
@Alternate Data Stream - 146 bytes -> C:\ProgramData\TEMP:56E2E879
< End of report > --- --- --- |