voilà!
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 5.0.2 (07.09.2013:1)
OS: Windows 7 Home Premium x64
Ran by Admin on 09/07/2013 at 18:55:59,86
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\sweetim
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\sweetim
~~~ Files
~~~ Folders
Successfully deleted: [Empty Folder] C:\Users\Admin\appdata\local\{33710C25-7719-45A1-9B5C-36E69C64166F}
~~~ FireFox
Successfully deleted: [File] C:\Users\Admin\AppData\Roaming\mozilla\firefox\profiles\hph5sjan.default\invalidprefs.js
Successfully deleted the following from C:\Users\Admin\AppData\Roaming\mozilla\firefox\profiles\hph5sjan.default\prefs.js
user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.33036.backgroundjs", "\n\n/****************************************************
user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.33036.internaldb.cache/530e52021dc20843b1aa62957edeb9f8.value", "%22var%20adsDe
user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.33036.internaldb.cache/d5baae4ef839769f8eb7e9f9d82d8a40_FR.value", "%22var%20ca
user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.33036.js", "\n\n /************************************************************
user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.33036.plugins.plugin_1.code", "appAPI._cr_config={appID:function(){var a=appAPI
user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.33036.plugins.plugin_102.code", "if (typeof appAPI.internal.monetization === \"
user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.33036.plugins.plugin_119.code", "if (typeof appAPI.internal.monetization === \"
user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.33036.plugins.plugin_120.code", "if (typeof appAPI.internal.monetization === \"
user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.33036.plugins.plugin_123.code", "if (typeof appAPI.internal.monetization === \"
user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.33036.plugins.plugin_14.name", "CrossriderUtils");
user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.33036.plugins.plugin_21.code", "var CrossriderDebugManager=(function(h){var f={
user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.33036.plugins.plugin_22.code", "(function(a){appAPI.queueManager={queue:[],regi
user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.33036.plugins.plugin_28.code", "var CrossriderInitializerPlugin=(function(e){va
user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.33036.plugins.plugin_47.code", "(function(){appAPI.ready=function(a){appAPI.res
user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.33036.plugins.plugin_78.name", "CrossriderInfo");
user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.33036.plugins.plugin_87.code", "var CROSSRIDER_PLATFORM=true;var JQ=bbrsJQ=$jqu
user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.33036.plugins.plugin_91.code", "(function(e){var l=(function(){var N=0;var V=\"
user_pref("extensions.a4fdacf00e9c44ad5b4cfbf9800f184f63685711674e04973936f860cd2a102a9com33036.33036.plugins.plugin_92.code", "if(typeof appAPI.internal.monetization===\"unde
user_pref("extensions.crossrider.bic", "13f0133d0bcff7f476ead1a800ccb16f");
Emptied folder: C:\Users\Admin\AppData\Roaming\mozilla\firefox\profiles\hph5sjan.default\minidumps [412 files]
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 09/07/2013 at 19:00:25,56
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
FRST Logfile:
FRST Logfile:
FRST Logfile:
Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 09-07-2013 01
Ran by Admin (administrator) on 09-07-2013 19:42:48
Running from C:\Users\Admin\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: French Standard
Internet Explorer Version 10
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(AMD) C:\Windows\system32\atiesrxx.exe
(AMD) C:\Windows\system32\atieclxx.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
() C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE
(Microsoft Corporation) C:\Program Files (x86)\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
(Analog Devices, Inc.) C:\Program Files (x86)\Analog Devices\Core\smax4pnp.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\OUTLOOK.EXE
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [Kernel and Hardware Abstraction Layer] - KHALMNPR.EXE [x]
HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,
Winlogon\Notify\klogon: %SystemRoot%\System32\klogon.dll (Kaspersky Lab ZAO)
HKCU\...\Policies\system: [LogonHoursAction] 2
HKCU\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKCU\...\Policies\system: [DisableRegistryTools] 0
HKCU\...\Policies\system: [DisableTaskMgr] 0
MountPoints2: {40948ce1-f1fb-11de-a88d-0024819f1d68} - F:\NokiaPCIA_Autorun.exe
MountPoints2: {5ac33e38-8991-11df-999b-0024819f1d68} - "F:\WD SmartWare.exe" autoplay=true
HKLM-x32\...\Run: [SoundMAXPnP] - C:\Program Files (x86)\Analog Devices\Core\smax4pnp.exe [1310720 2008-07-08] (Analog Devices, Inc.)
HKLM-x32\...\Run: [StartCCC] - "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun [98304 2009-07-14] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [AVP] - "C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe" [206448 2012-10-31] (Kaspersky Lab ZAO)
HKU\Default\...\RunOnce: [mctadmin] - C:\Windows\System32\mctadmin.exe [97280 2009-07-14] (Microsoft Corporation)
HKU\Default User\...\RunOnce: [mctadmin] - C:\Windows\System32\mctadmin.exe [97280 2009-07-14] (Microsoft Corporation)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = WEB.DE - E-Mail-Adresse kostenlos, FreeMail, Nachrichten & Services
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = MSN.fr - Actualités, magazines people & féminin, Outlook et Hotmail
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - {483830EE-A4CD-4b71-B0A3-3D82E62A6909} URL =
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
BHO: IEVkbdBHO Class - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\x64\ievkbd.dll (Kaspersky Lab ZAO)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: FilterBHO Class - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\x64\klwtbbho.dll (Kaspersky Lab ZAO)
BHO-x32: IEVkbdBHO Class - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\ievkbd.dll (Kaspersky Lab ZAO)
BHO-x32: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files (x86)\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO-x32: FilterBHO Class - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\klwtbbho.dll (Kaspersky Lab ZAO)
Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
DPF: HKLM-x32 {02BCC737-B171-4746-94C9-0D8A0B2C0089} hxxp://office.microsoft.com/sites/production/ieawsdc32.cab
DPF: HKLM-x32 {41EF3CD2-D8CC-4438-84B1-280BB4E77C8E} C:\Users\Admin\AppData\Local\Temp\f5tmp\f5tunsrv.cab
DPF: HKLM-x32 {45B69029-F3AB-4204-92DE-D5140C3E8E74} C:\Users\Admin\AppData\Local\Temp\f5tmp\InstallerControl.cab
DPF: HKLM-x32 {5D637FAD-E202-48D1-8F18-5B9C459BD1E3} hxxp://www.extrafilm.fr/ImageUploader5.cab
DPF: HKLM-x32 {CC85ACDF-B277-486F-8C70-2C9B2ED2A4E7} C:\Users\Admin\AppData\Local\Temp\f5tmp\urxshost.cab
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
DPF: HKLM-x32 {E0FF21FA-B857-45C5-8621-F120A0C17FF2} C:\Users\Admin\AppData\Local\Temp\f5tmp\urxhost.cab
DPF: HKLM-x32 {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF ProfilePath: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\hph5sjan.default
FF Homepage: Google
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_224.dll ()
FF Plugin: @java.com/DTPlugin,version=10.6.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.6.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @java.com/JavaPlugin - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.149\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.149\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @facebook.com/FBPlugin,version=1.0.3 - C:\Users\Admin\AppData\Roaming\Facebook\npfbplugin_1_0_3.dll No File
FF Extension: No Name - C:\Users\Admin\AppData\Roaming\Mozilla\Extensions\home2@tomtom.com
FF Extension: No Name - C:\Users\Admin\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}
FF Extension: No Name - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\hph5sjan.default\Extensions\4fdacf00-e9c4-4ad5-b4cf-bf9800f184f6@36857116-74e0-4973-936f-860cd2a102a9.com
FF Extension: F5 Networks Host Plugin - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\hph5sjan.default\Extensions\{DBBB3167-6E81-400f-BBFD-BD8921726F52}
FF Extension: No Name - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\hph5sjan.default\Extensions\{097d3191-e6fa-4728-9826-b533d755359d}.xpi
FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF HKLM-x32\...\Firefox\Extensions: [linkfilter@kaspersky.ru] C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\FFExt\linkfilter@kaspersky.ru
FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\FFExt\linkfilter@kaspersky.ru
FF HKLM-x32\...\Firefox\Extensions: [virtualKeyboard@kaspersky.ru] C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\FFExt\virtualKeyboard@kaspersky.ru
FF Extension: Kaspersky Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\FFExt\virtualKeyboard@kaspersky.ru
==================== Services (Whitelisted) =================
S4 AEADIFilters; C:\Windows\system32\AEADISRV.EXE [109056 2008-05-28] (Andrea Electronics Corporation)
R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 2012\avp.exe [206448 2012-10-31] (Kaspersky Lab ZAO)
S4 EFUploadSrv; C:\Extrafilm Designer FR\EFUploadSrv.exe [1716224 2009-07-09] (Textalk AB)
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [116104 2010-04-05] ()
==================== Drivers (Whitelisted) ====================
R0 KL1; C:\Windows\System32\DRIVERS\kl1.sys [460888 2011-03-04] (Kaspersky Lab ZAO)
R1 kl2; C:\Windows\System32\DRIVERS\kl2.sys [11864 2011-03-04] (Kaspersky Lab ZAO)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [637272 2012-10-31] (Kaspersky Lab)
R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [29488 2011-03-10] (Kaspersky Lab ZAO)
R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [22544 2009-11-02] (Kaspersky Lab)
R0 Lbd; C:\Windows\System32\DRIVERS\Lbd.sys [69152 2010-07-12] (Lavasoft AB)
R3 LVPr2M64; C:\Windows\System32\DRIVERS\LVPr2M64.sys [30232 2009-10-07] ()
S3 LVPr2Mon; C:\Windows\System32\DRIVERS\LVPr2M64.sys [30232 2009-10-07] ()
S3 RimUsb; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [27520 2007-05-14] (Research In Motion Limited)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-07-09 19:06 - 2013-07-09 19:06 - 00000000 ____D C:\FRST
2013-07-09 19:00 - 2013-07-09 19:00 - 00004463 ____A C:\Users\Admin\Desktop\JRT.txt
2013-07-09 18:55 - 2013-07-09 18:55 - 00000000 ____D C:\Windows\ERUNT
2013-07-09 18:54 - 2013-07-09 18:54 - 00552389 ____A (Oleg N. Scherbakov) C:\Users\Admin\Desktop\JRT.exe
2013-07-09 18:45 - 2013-07-09 18:45 - 00007930 ____A C:\AdwCleaner[S1].txt
2013-07-09 18:43 - 2013-07-09 18:43 - 00007679 ____A C:\AdwCleaner[R1].txt
2013-07-09 18:42 - 2013-07-09 18:42 - 00650027 ____A C:\Users\Admin\Desktop\adwcleaner.exe
2013-07-09 18:24 - 2013-07-09 18:24 - 00023579 ____A C:\Users\Admin\Desktop\Addition.txt
2013-07-09 17:46 - 2013-07-09 17:46 - 01776221 ____A (Farbar) C:\Users\Admin\Desktop\FRST64.exe
2013-07-09 17:07 - 2013-07-09 18:47 - 00000280 ____A C:\Windows\setupact.log
2013-07-09 17:07 - 2013-07-09 18:46 - 00001462 ____A C:\Windows\PFRO.log
2013-07-09 17:07 - 2013-07-09 17:07 - 00000000 ____A C:\Windows\setuperr.log
2013-07-09 16:54 - 2013-07-09 17:09 - 00000472 ____A C:\Users\Admin\Desktop\defogger_disable.log
2013-07-09 16:54 - 2013-07-09 16:54 - 00000000 ____A C:\Users\Admin\defogger_reenable
2013-07-09 16:49 - 2013-07-09 16:49 - 00050477 ____A C:\Users\Admin\Desktop\Defogger.exe
2013-07-09 16:47 - 2013-07-09 16:47 - 01062184 ____A C:\Users\Admin\Desktop\GMER Setup.exe
2013-07-09 16:47 - 2013-07-09 16:47 - 00656952 ____A C:\Users\Admin\Desktop\setup.exe
2013-07-09 16:45 - 2013-07-09 16:45 - 00602112 ____A (OldTimer Tools) C:\Users\Admin\Desktop\OTL.exe
2013-07-09 16:24 - 2013-07-09 16:24 - 00000000 ___HD C:\ProgramData\CanonIJEGV
2013-07-03 08:25 - 2013-07-03 08:25 - 00000000 ___HD C:\ProgramData\CanonIJSolutionMenuEX
2013-07-02 22:41 - 2013-07-02 22:41 - 00000000 ____D C:\ProgramData\CanonIJ
2013-07-02 22:36 - 2013-07-02 22:36 - 00000000 ___HD C:\ProgramData\CanonIJScan
2013-07-02 22:36 - 2013-07-02 22:36 - 00000000 ____D C:\Users\Admin\AppData\Roaming\Canon
2013-07-02 22:34 - 2013-07-09 16:24 - 00000000 ____D C:\ProgramData\CanonIJPLM
2013-07-02 22:33 - 2013-07-02 22:33 - 00002039 ____A C:\Users\Public\Desktop\Canon Solution Menu EX.lnk
2013-07-02 22:33 - 2013-07-02 22:33 - 00000000 ____D C:\ProgramData\CanonIJWSpt
2013-07-02 22:33 - 2013-07-02 22:33 - 00000000 ____D C:\Program Files\Common Files\CANON
2013-07-02 22:32 - 2013-07-02 22:32 - 00002336 ____A C:\Users\Public\Desktop\Canon CanoScan LiDE 110 Manuel en ligne.lnk
2013-07-02 22:32 - 2013-07-02 22:32 - 00000000 ___HD C:\Windows\System32\CanonIJ Uninstaller Information
2013-07-02 22:32 - 2013-07-02 22:32 - 00000000 ___HD C:\Program Files\CanonBJ
2013-07-02 22:32 - 2012-07-04 11:55 - 01354240 ____A (CANON INC.) C:\Windows\System32\CNQ2414C.dll
2013-07-02 22:32 - 2012-07-04 11:55 - 00112128 ____A (CANON INC.) C:\Windows\System32\CNQ2414I.dll
2013-07-02 22:32 - 2012-07-04 11:29 - 00106496 ____A (CANON INC.) C:\Windows\SysWOW64\CNQ2414U.dll
2013-07-02 22:32 - 2012-04-18 15:24 - 00103424 ____A (Canon Inc.) C:\Windows\System32\CNQ2414O.dll
2013-07-02 22:32 - 2010-12-17 14:49 - 00515072 ____A (CANON INC.) C:\Windows\System32\CNQ2414L.dll
2013-07-02 22:32 - 2010-12-17 14:49 - 00438272 ____A (CANON INC.) C:\Windows\SysWOW64\CNQ2414L.dll
2013-07-02 22:32 - 2010-03-19 10:04 - 00393256 ____A C:\Windows\SysWOW64\CNQ2414N.DAT
2013-07-02 22:32 - 2010-03-19 10:04 - 00393256 ____A C:\Windows\System32\CNQ2414N.DAT
2013-07-02 22:32 - 2010-03-11 09:57 - 00248320 ____A (CANON INC.) C:\Windows\System32\CNQ2414Y.dll
2013-07-02 22:32 - 2008-08-25 18:02 - 00017920 ____A (CANON INC.) C:\Windows\System32\CNHMCA6.dll
2013-07-02 22:32 - 2008-08-25 18:02 - 00015872 ____A (CANON INC.) C:\Windows\SysWOW64\CNHMCA.dll
2013-07-02 22:31 - 2013-07-02 22:33 - 00000000 ____D C:\Program Files (x86)\Canon
2013-07-02 08:51 - 2012-08-23 16:13 - 00243200 ____A (Microsoft Corporation) C:\Windows\System32\rdpudd.dll
2013-07-02 08:51 - 2012-08-23 16:10 - 00019456 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\rdpvideominiport.sys
2013-07-02 08:51 - 2012-08-23 16:07 - 00057856 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\TsUsbFlt.sys
2013-07-02 08:51 - 2012-08-23 15:47 - 00046592 ____A (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll
2013-07-02 08:51 - 2012-08-23 15:46 - 00016896 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll
2013-07-02 08:51 - 2012-08-23 15:41 - 00013312 ____A (Microsoft Corporation) C:\Windows\System32\TsUsbRedirectionGroupPolicyControl.exe
2013-07-02 08:51 - 2012-08-23 15:40 - 00013312 ____A (Microsoft Corporation) C:\Windows\System32\TsUsbRedirectionGroupPolicyExtension.dll
2013-07-02 08:51 - 2012-08-23 15:24 - 00015360 ____A (Microsoft Corporation) C:\Windows\System32\RdpGroupPolicyExtension.dll
2013-07-02 08:51 - 2012-08-23 15:20 - 00054272 ____A (Microsoft Corporation) C:\Windows\System32\MsRdpWebAccess.dll
2013-07-02 08:51 - 2012-08-23 15:18 - 00037376 ____A (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2013-07-02 08:51 - 2012-08-23 15:17 - 00018432 ____A (Microsoft Corporation) C:\Windows\System32\wksprtPS.dll
2013-07-02 08:51 - 2012-08-23 15:06 - 00043520 ____A (Microsoft Corporation) C:\Windows\System32\TsUsbGDCoInstaller.dll
2013-07-02 08:51 - 2012-08-23 14:52 - 00044032 ____A (Microsoft Corporation) C:\Windows\System32\tsgqec.dll
2013-07-02 08:51 - 2012-08-23 13:20 - 00062976 ____A (Microsoft Corporation) C:\Windows\System32\TSWbPrxy.exe
2013-07-02 08:51 - 2012-08-23 13:15 - 00269312 ____A (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
2013-07-02 08:51 - 2012-08-23 13:14 - 00384000 ____A (Microsoft Corporation) C:\Windows\System32\wksprt.exe
2013-07-02 08:51 - 2012-08-23 13:12 - 00192000 ____A (Microsoft Corporation) C:\Windows\SysWOW64\rdpendp_winip.dll
2013-07-02 08:51 - 2012-08-23 12:54 - 00322560 ____A (Microsoft Corporation) C:\Windows\System32\aaclient.dll
2013-07-02 08:51 - 2012-08-23 12:51 - 00228864 ____A (Microsoft Corporation) C:\Windows\System32\rdpendp_winip.dll
2013-07-02 08:51 - 2012-08-23 12:39 - 01048064 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2013-07-02 08:51 - 2012-08-23 12:22 - 01123840 ____A (Microsoft Corporation) C:\Windows\System32\mstsc.exe
2013-07-02 08:51 - 2012-08-23 11:51 - 03174912 ____A (Microsoft Corporation) C:\Windows\System32\rdpcorets.dll
2013-07-02 08:51 - 2012-08-23 10:19 - 04916224 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2013-07-02 08:51 - 2012-08-23 10:13 - 05773824 ____A (Microsoft Corporation) C:\Windows\System32\mstscax.dll
2013-07-02 08:50 - 2012-08-24 20:13 - 00154480 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\ksecpkg.sys
2013-07-02 08:50 - 2012-08-24 20:09 - 00458712 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\cng.sys
2013-07-02 08:50 - 2012-08-24 20:05 - 00340992 ____A (Microsoft Corporation) C:\Windows\System32\schannel.dll
2013-07-02 08:50 - 2012-08-24 20:03 - 01448448 ____A (Microsoft Corporation) C:\Windows\System32\lsasrv.dll
2013-07-02 08:50 - 2012-08-24 18:57 - 00247808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2013-07-02 08:50 - 2012-08-24 18:57 - 00022016 ____A (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2013-07-02 08:50 - 2012-08-24 18:53 - 00096768 ____A (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2013-07-02 08:50 - 2012-05-04 13:00 - 00366592 ____A (Microsoft Corporation) C:\Windows\System32\qdvd.dll
2013-07-02 08:50 - 2012-05-04 11:59 - 00514560 ____A (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2013-06-25 19:04 - 2013-06-25 19:04 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-06-25 19:04 - 2013-06-25 19:04 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2013-06-20 14:21 - 2013-06-20 14:21 - 00109296 ____A C:\Users\Admin\AppData\Local\GDIPFONTCACHEV1.DAT
2013-06-18 11:27 - 2013-06-18 11:27 - 00002107 ____A C:\Users\Public\Desktop\Logiciel de caméra Web Logitech.lnk
2013-06-18 11:27 - 2013-06-18 11:27 - 00000000 ____D C:\Program Files\Logitech
2013-06-18 11:26 - 2013-06-23 22:01 - 00000000 ____D C:\Users\Admin\AppData\Roaming\Skype
2013-06-18 11:25 - 2013-06-19 14:37 - 00000000 ____D C:\ProgramData\Skype
2013-06-18 11:25 - 2013-06-19 14:36 - 00002517 ____A C:\Users\Public\Desktop\Skype.lnk
2013-06-18 11:25 - 2013-06-18 11:27 - 00000000 ____D C:\Program Files\Common Files\logishrd
2013-06-18 11:25 - 2013-06-18 11:25 - 00000000 ___RD C:\Program Files (x86)\Skype
2013-06-16 15:25 - 2013-06-16 15:27 - 00000000 ____D C:\Users\Admin\AppData\Roaming\DVDVideoSoft
2013-06-16 15:25 - 2013-06-16 15:25 - 00001362 ____A C:\Users\Public\Desktop\Free YouTube to MP3 Converter.lnk
2013-06-16 15:25 - 2013-06-16 15:25 - 00000000 ____D C:\Program Files (x86)\DVDVideoSoft
2013-06-15 20:01 - 2013-06-08 16:08 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2013-06-15 20:01 - 2013-06-08 16:07 - 19233792 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2013-06-15 20:01 - 2013-06-08 16:06 - 15404544 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2013-06-15 20:01 - 2013-06-08 16:06 - 02648064 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2013-06-15 20:01 - 2013-06-08 16:06 - 00526336 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2013-06-15 20:01 - 2013-06-08 14:28 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2013-06-15 20:01 - 2013-06-08 13:42 - 01141248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-06-15 20:01 - 2013-06-08 13:40 - 14327808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-06-15 20:01 - 2013-06-08 13:40 - 13760512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-06-15 20:01 - 2013-06-08 13:40 - 02046976 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-06-15 20:01 - 2013-06-08 13:40 - 00391168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-06-15 20:01 - 2013-06-08 13:13 - 02706432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-06-12 20:02 - 2013-05-17 03:25 - 02877440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-06-12 20:02 - 2013-05-17 03:25 - 01767936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-06-12 20:02 - 2013-05-17 03:25 - 00690688 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-06-12 20:02 - 2013-05-17 03:25 - 00493056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-06-12 20:02 - 2013-05-17 03:25 - 00109056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-06-12 20:02 - 2013-05-17 03:25 - 00061440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-06-12 20:02 - 2013-05-17 03:25 - 00039424 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-06-12 20:02 - 2013-05-17 03:25 - 00033280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-06-12 20:02 - 2013-05-17 02:59 - 02241024 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2013-06-12 20:02 - 2013-05-17 02:59 - 00051712 ____A (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe
2013-06-12 20:02 - 2013-05-17 02:58 - 03958784 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2013-06-12 20:02 - 2013-05-17 02:58 - 00855552 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
2013-06-12 20:02 - 2013-05-17 02:58 - 00603136 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll
2013-06-12 20:02 - 2013-05-17 02:58 - 00136704 ____A (Microsoft Corporation) C:\Windows\System32\iesysprep.dll
2013-06-12 20:02 - 2013-05-17 02:58 - 00067072 ____A (Microsoft Corporation) C:\Windows\System32\iesetup.dll
2013-06-12 20:02 - 2013-05-17 02:58 - 00053248 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2013-06-12 20:02 - 2013-05-17 02:58 - 00039936 ____A (Microsoft Corporation) C:\Windows\System32\iernonce.dll
2013-06-12 20:02 - 2013-05-14 14:23 - 00089600 ____A (Microsoft Corporation) C:\Windows\System32\RegisterIEPKEYs.exe
2013-06-12 20:02 - 2013-05-14 10:40 - 00071680 ____A (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-06-12 11:08 - 2013-06-12 11:08 - 00001743 ____A C:\Users\Public\Desktop\iTunes.lnk
2013-06-12 11:07 - 2013-06-12 11:08 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2013-06-12 11:07 - 2013-06-12 11:08 - 00000000 ____D C:\Program Files\iTunes
2013-06-12 11:07 - 2013-06-12 11:07 - 00000000 ____D C:\Program Files\iPod
2013-06-12 09:42 - 2013-05-13 07:51 - 01464320 ____A (Microsoft Corporation) C:\Windows\System32\crypt32.dll
2013-06-12 09:42 - 2013-05-13 07:51 - 00184320 ____A (Microsoft Corporation) C:\Windows\System32\cryptsvc.dll
2013-06-12 09:42 - 2013-05-13 07:51 - 00139776 ____A (Microsoft Corporation) C:\Windows\System32\cryptnet.dll
2013-06-12 09:42 - 2013-05-13 07:50 - 00052224 ____A (Microsoft Corporation) C:\Windows\System32\certenc.dll
2013-06-12 09:42 - 2013-05-13 06:45 - 01160192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2013-06-12 09:42 - 2013-05-13 06:45 - 00140288 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2013-06-12 09:42 - 2013-05-13 06:45 - 00103936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2013-06-12 09:42 - 2013-05-13 05:43 - 01192448 ____A (Microsoft Corporation) C:\Windows\System32\certutil.exe
2013-06-12 09:42 - 2013-05-13 05:08 - 00903168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe
2013-06-12 09:42 - 2013-05-13 05:08 - 00043008 ____A (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll
2013-06-12 09:42 - 2013-05-10 07:49 - 00030720 ____A (Microsoft Corporation) C:\Windows\System32\cryptdlg.dll
2013-06-12 09:42 - 2013-05-10 05:20 - 00024576 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll
2013-06-12 09:42 - 2013-05-08 08:39 - 01910632 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys
2013-06-12 09:42 - 2013-04-26 07:51 - 00751104 ____A (Microsoft Corporation) C:\Windows\System32\win32spl.dll
2013-06-12 09:42 - 2013-04-26 06:55 - 00492544 ____A (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll
2013-06-12 09:42 - 2013-04-26 01:30 - 01505280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2013-06-12 09:42 - 2013-04-17 09:02 - 01230336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2013-06-12 09:42 - 2013-04-17 08:24 - 01424384 ____A (Microsoft Corporation) C:\Windows\System32\WindowsCodecs.dll
2013-06-12 09:42 - 2013-04-01 00:52 - 01887232 ____A (Microsoft Corporation) C:\Windows\System32\d3d11.dll
==================== One Month Modified Files and Folders =======
2013-07-09 19:26 - 2011-05-21 14:56 - 00001066 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-07-09 19:17 - 2012-05-13 14:55 - 00001002 ____A C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-07-09 19:06 - 2013-07-09 19:06 - 00000000 ____D C:\FRST
2013-07-09 19:04 - 2013-03-06 12:00 - 01327412 ____A C:\Windows\WindowsUpdate.log
2013-07-09 19:04 - 2012-05-11 10:14 - 00000000 ____D C:\ProgramData\Kaspersky Lab
2013-07-09 19:00 - 2013-07-09 19:00 - 00004463 ____A C:\Users\Admin\Desktop\JRT.txt
2013-07-09 18:55 - 2013-07-09 18:55 - 00000000 ____D C:\Windows\ERUNT
2013-07-09 18:54 - 2013-07-09 18:54 - 00552389 ____A (Oleg N. Scherbakov) C:\Users\Admin\Desktop\JRT.exe
2013-07-09 18:54 - 2009-07-14 06:45 - 00015008 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-07-09 18:54 - 2009-07-14 06:45 - 00015008 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-07-09 18:49 - 2011-05-21 14:56 - 00001062 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-07-09 18:47 - 2013-07-09 17:07 - 00000280 ____A C:\Windows\setupact.log
2013-07-09 18:47 - 2009-07-14 07:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT
2013-07-09 18:46 - 2013-07-09 17:07 - 00001462 ____A C:\Windows\PFRO.log
2013-07-09 18:45 - 2013-07-09 18:45 - 00007930 ____A C:\AdwCleaner[S1].txt
2013-07-09 18:43 - 2013-07-09 18:43 - 00007679 ____A C:\AdwCleaner[R1].txt
2013-07-09 18:42 - 2013-07-09 18:42 - 00650027 ____A C:\Users\Admin\Desktop\adwcleaner.exe
2013-07-09 18:24 - 2013-07-09 18:24 - 00023579 ____A C:\Users\Admin\Desktop\Addition.txt
2013-07-09 17:46 - 2013-07-09 17:46 - 01776221 ____A (Farbar) C:\Users\Admin\Desktop\FRST64.exe
2013-07-09 17:46 - 2009-07-14 17:24 - 00707220 ____A C:\Windows\System32\perfh00C.dat
2013-07-09 17:46 - 2009-07-14 17:24 - 00131648 ____A C:\Windows\System32\perfc00C.dat
2013-07-09 17:46 - 2009-07-14 07:13 - 01557714 ____A C:\Windows\System32\PerfStringBackup.INI
2013-07-09 17:09 - 2013-07-09 16:54 - 00000472 ____A C:\Users\Admin\Desktop\defogger_disable.log
2013-07-09 17:07 - 2013-07-09 17:07 - 00000000 ____A C:\Windows\setuperr.log
2013-07-09 16:54 - 2013-07-09 16:54 - 00000000 ____A C:\Users\Admin\defogger_reenable
2013-07-09 16:54 - 2009-08-30 17:15 - 00000000 ____D C:\users\Admin
2013-07-09 16:49 - 2013-07-09 16:49 - 00050477 ____A C:\Users\Admin\Desktop\Defogger.exe
2013-07-09 16:47 - 2013-07-09 16:47 - 01062184 ____A C:\Users\Admin\Desktop\GMER Setup.exe
2013-07-09 16:47 - 2013-07-09 16:47 - 00656952 ____A C:\Users\Admin\Desktop\setup.exe
2013-07-09 16:45 - 2013-07-09 16:45 - 00602112 ____A (OldTimer Tools) C:\Users\Admin\Desktop\OTL.exe
2013-07-09 16:24 - 2013-07-09 16:24 - 00000000 ___HD C:\ProgramData\CanonIJEGV
2013-07-09 16:24 - 2013-07-02 22:34 - 00000000 ____D C:\ProgramData\CanonIJPLM
2013-07-09 08:16 - 2009-10-03 22:27 - 00000000 ____D C:\Users\Admin\AppData\Local\Adobe
2013-07-09 08:15 - 2012-05-12 16:16 - 00692104 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-07-09 08:15 - 2011-05-20 22:32 - 00071048 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-07-03 08:54 - 2013-02-06 12:51 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-07-03 08:25 - 2013-07-03 08:25 - 00000000 ___HD C:\ProgramData\CanonIJSolutionMenuEX
2013-07-02 22:41 - 2013-07-02 22:41 - 00000000 ____D C:\ProgramData\CanonIJ
2013-07-02 22:36 - 2013-07-02 22:36 - 00000000 ___HD C:\ProgramData\CanonIJScan
2013-07-02 22:36 - 2013-07-02 22:36 - 00000000 ____D C:\Users\Admin\AppData\Roaming\Canon
2013-07-02 22:35 - 2009-07-14 05:20 - 00000000 __RSD C:\Windows\Media
2013-07-02 22:33 - 2013-07-02 22:33 - 00002039 ____A C:\Users\Public\Desktop\Canon Solution Menu EX.lnk
2013-07-02 22:33 - 2013-07-02 22:33 - 00000000 ____D C:\ProgramData\CanonIJWSpt
2013-07-02 22:33 - 2013-07-02 22:33 - 00000000 ____D C:\Program Files\Common Files\CANON
2013-07-02 22:33 - 2013-07-02 22:31 - 00000000 ____D C:\Program Files (x86)\Canon
2013-07-02 22:32 - 2013-07-02 22:32 - 00002336 ____A C:\Users\Public\Desktop\Canon CanoScan LiDE 110 Manuel en ligne.lnk
2013-07-02 22:32 - 2013-07-02 22:32 - 00000000 ___HD C:\Windows\System32\CanonIJ Uninstaller Information
2013-07-02 22:32 - 2013-07-02 22:32 - 00000000 ___HD C:\Program Files\CanonBJ
2013-07-02 21:45 - 2010-12-05 15:11 - 00000290 _RASH C:\ProgramData\ntuser.pol
2013-07-02 09:42 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache
2013-07-02 09:02 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\PolicyDefinitions
2013-06-25 19:04 - 2013-06-25 19:04 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-06-25 19:04 - 2013-06-25 19:04 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2013-06-24 08:46 - 2010-04-24 10:14 - 00000000 ____A C:\Windows\System32\Drivers\lvuvc.hs
2013-06-23 22:01 - 2013-06-18 11:26 - 00000000 ____D C:\Users\Admin\AppData\Roaming\Skype
2013-06-20 14:21 - 2013-06-20 14:21 - 00109296 ____A C:\Users\Admin\AppData\Local\GDIPFONTCACHEV1.DAT
2013-06-20 14:19 - 2010-01-16 11:04 - 00000000 ____D C:\Windows\pss
2013-06-19 14:37 - 2013-06-18 11:25 - 00000000 ____D C:\ProgramData\Skype
2013-06-19 14:36 - 2013-06-18 11:25 - 00002517 ____A C:\Users\Public\Desktop\Skype.lnk
2013-06-18 11:28 - 2010-04-24 10:16 - 00000000 ____D C:\Users\Admin\AppData\Local\LogiShrd
2013-06-18 11:27 - 2013-06-18 11:27 - 00002107 ____A C:\Users\Public\Desktop\Logiciel de caméra Web Logitech.lnk
2013-06-18 11:27 - 2013-06-18 11:27 - 00000000 ____D C:\Program Files\Logitech
2013-06-18 11:27 - 2013-06-18 11:25 - 00000000 ____D C:\Program Files\Common Files\logishrd
2013-06-18 11:27 - 2010-04-24 10:16 - 00000000 ____D C:\ProgramData\LogiShrd
2013-06-18 11:25 - 2013-06-18 11:25 - 00000000 ___RD C:\Program Files (x86)\Skype
2013-06-18 11:25 - 2010-04-24 10:14 - 00023192 ____A C:\Windows\System32\lvcoinst.log
2013-06-16 15:27 - 2013-06-16 15:25 - 00000000 ____D C:\Users\Admin\AppData\Roaming\DVDVideoSoft
2013-06-16 15:25 - 2013-06-16 15:25 - 00001362 ____A C:\Users\Public\Desktop\Free YouTube to MP3 Converter.lnk
2013-06-16 15:25 - 2013-06-16 15:25 - 00000000 ____D C:\Program Files (x86)\DVDVideoSoft
2013-06-15 20:29 - 2009-09-13 17:57 - 00000000 ____D C:\Users\Admin\AppData\Roaming\Apple Computer
2013-06-12 20:04 - 2009-08-30 15:19 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-06-12 20:02 - 2009-10-24 08:26 - 75825640 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe
2013-06-12 11:08 - 2013-06-12 11:08 - 00001743 ____A C:\Users\Public\Desktop\iTunes.lnk
2013-06-12 11:08 - 2013-06-12 11:07 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2013-06-12 11:08 - 2013-06-12 11:07 - 00000000 ____D C:\Program Files\iTunes
2013-06-12 11:08 - 2013-02-23 18:15 - 00000000 ____D C:\Program Files (x86)\iTunes
2013-06-12 11:07 - 2013-06-12 11:07 - 00000000 ____D C:\Program Files\iPod
2013-06-12 10:24 - 2009-08-30 13:01 - 00000000 ____D C:\Program Files\Common Files\Apple
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-07-04 21:13
==================== End Of Log ============================
--- --- ---
--- --- ---
--- --- ---
Hab ich etwas vergessen?