Das letzte Logfile von Malewarebytes sieht so aus:
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
Datenbank Version: v2013.08.23.07
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 10.0.9200.16660
LoeUw :: EA-NB-01 [Administrator]
23.08.2013 23:14:16
mbam-log-2013-08-23 (23-14-16).txt
Art des Suchlaufs: Vollständiger Suchlauf (C:\|D:\|)
Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM
Deaktivierte Suchlaufeinstellungen: P2P
Durchsuchte Objekte: 426137
Laufzeit: 49 Minute(n), 55 Sekunde(n)
Infizierte Speicherprozesse: 0
(Keine bösartigen Objekte gefunden)
Infizierte Speichermodule: 0
(Keine bösartigen Objekte gefunden)
Infizierte Registrierungsschlüssel: 0
(Keine bösartigen Objekte gefunden)
Infizierte Registrierungswerte: 0
(Keine bösartigen Objekte gefunden)
Infizierte Dateiobjekte der Registrierung: 1
HKLM\SOFTWARE\Policies\Microsoft\Windows NT\SystemRestore|DisableConfig (Windows.Tool.Disabled) -> Bösartig: (1) Gut: (0) -> Erfolgreich ersetzt und in Quarantäne gestellt.
Infizierte Verzeichnisse: 0
(Keine bösartigen Objekte gefunden)
Infizierte Dateien: 0
(Keine bösartigen Objekte gefunden)
(Ende)
Die Datei FRST.txt hat folgenden Inhalt
FRST Logfile:
Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 23-08-2013 01
Ran by LoeUw (administrator) on 24-08-2013 12:52:18
Running from C:\Users\LoeUw\Downloads
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(Salfeld Computer) C:\windows\SysWOW64\cc32\webtmr.exe
(The Eraser Project) C:\Program Files\Eraser\Eraser.exe
() C:\Windows\System32\spool\drivers\x64\3\WrtMon.exe
() C:\Windows\System32\spool\drivers\x64\3\WrtProc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Salfeld Computer) C:\windows\tray\wintmr.exe
(SUPERAntiSpyware) C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE
(Secunia) C:\Program Files (x86)\Secunia\PSI\psi_tray.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe
(CyberLink) C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbam.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [Eraser] - C:\PROGRA~1\Eraser\Eraser.exe [980368 2010-11-04] (The Eraser Project)
HKLM\...\Run: [WrtMon.exe] - C:\windows\system32\spool\drivers\x64\3\WrtMon.exe [20480 2007-07-18] ()
HKCU\...\Run: [CCWinTray] - C:\windows\tray\wintmr.exe [6377088 2009-07-14] (Salfeld Computer)
HKCU\...\Run: [SUPERAntiSpyware] - C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [6581488 2013-08-18] (SUPERAntiSpyware)
HKCU\...\Run: [Spybot-S&D Cleaning] - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [3713032 2012-11-13] (Safer-Networking Ltd.)
HKCU\...\Policies\system: [DisableClock] 0
HKCU\...\Policies\system: [LogonHoursAction] 2
HKCU\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284696 2010-03-03] (Intel Corporation)
HKLM-x32\...\Run: [ChicoSys] - C:\windows\SysWOW64\cc32\webtmr.exe [6113408 2009-07-14] (Salfeld Computer)
HKLM-x32\...\Run: [SDTray] - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [3825176 2012-11-13] (Safer-Networking Ltd.)
HKLM-x32\...\Run: [AVP] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe [356376 2013-03-02] (Kaspersky Lab ZAO)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-11] (Adobe Systems Incorporated)
HKU\LoeKa\...\Run: [BrowserMask] - C:\Program Files (x86)\AntiBrowserSpy\AntiBrowserSpyBrowserMaske.exe [101280 2011-06-21] (Microsoft)
HKU\LoeKa\...\Run: [BuildNotification] - C:\Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\BuildNotification.exe [252912 2012-07-26] (Microsoft Corporation)
HKU\LoeKa\...\Policies\system: [DisableClock] 1
HKU\LoeKa\...\Policies\system: [LogonHoursAction] 2
HKU\LoeKa\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\LoeKa\...\Policies\system: [DisableLockWorkstation] 0
HKU\UpdatusUser\...\Policies\system: [DisableClock] 1
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Secunia PSI Tray.lnk
ShortcutTarget: Secunia PSI Tray.lnk -> C:\Program Files (x86)\Secunia\PSI\psi_tray.exe (Secunia)
BootExecute: autocheck autochk * sdnclean64.exe
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com/
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com/
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=LENDF8&pc=MALN&src=IE-SearchBox
BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
BHO-x32: CBAbzockschutz.InitToolbarBHO - {2e250b90-0e7a-42a3-9d65-e39f9f227fa4} - C:\Windows\\SysWOW64\mscoree.dll (Microsoft Corporation)
BHO-x32: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDHelper.dll (Safer-Networking Ltd.)
BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
Toolbar: HKLM-x32 - COMPUTERBILD-Abzockschutz - {353e2a48-6254-4bd3-88f4-3b51a0ca7870} - C:\Windows\\SysWOW64\mscoree.dll (Microsoft Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - No File
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
FireFox:
========
FF ProfilePath: C:\Users\LoeUw\AppData\Roaming\Mozilla\Firefox\Profiles\ic454oi8.default
FF SelectedSearchEngine: Ixquick HTTPS
FF Homepage: www.greenpeace.de
FF Keyword.URL: hxxp://rs.mediapimp.com/s/?src=addrbar&browser=ff&category=web&partner_id=229&toolbar_id=7&toolbar_version=3.4&q=
FF Plugin: @adobe.com/FlashPlayer - C:\windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll ()
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 - C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\LoeUw\AppData\Roaming\Mozilla\Firefox\Profiles\ic454oi8.default\searchplugins\ixquick-https.xml
FF Extension: Download Youtube Videos + - C:\Users\LoeUw\AppData\Roaming\Mozilla\Firefox\Profiles\ic454oi8.default\Extensions\video.downloader.plugin@ffpimp.com
FF Extension: DownloadHelper - C:\Users\LoeUw\AppData\Roaming\Mozilla\Firefox\Profiles\ic454oi8.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}
FF Extension: No Name - C:\Users\LoeUw\AppData\Roaming\Mozilla\Firefox\Profiles\ic454oi8.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi
FF Extension: No Name - C:\Users\LoeUw\AppData\Roaming\Mozilla\Firefox\Profiles\ic454oi8.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
FF Extension: No Name - C:\Users\LoeUw\AppData\Roaming\Mozilla\Firefox\Profiles\ic454oi8.default\Extensions\{d49175b3-3fd8-43b8-b28e-da5d47f3c398}.xpi
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF HKLM-x32\...\Firefox\Extensions: C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\url_advisor@kaspersky.com
FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\url_advisor@kaspersky.com
FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\virtual_keyboard@kaspersky.com
FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\virtual_keyboard@kaspersky.com
FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\content_blocker@kaspersky.com
FF Extension: Content Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\content_blocker@kaspersky.com
FF HKLM-x32\...\Firefox\Extensions: [anti_banner@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\anti_banner@kaspersky.com
FF Extension: Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\anti_banner@kaspersky.com
FF HKLM-x32\...\Firefox\Extensions: [online_banking@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\online_banking@kaspersky.com
FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\online_banking@kaspersky.com
==================== Services (Whitelisted) =================
R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE [140672 2012-11-25] (SUPERAntiSpyware.com)
R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe [356376 2013-03-02] (Kaspersky Lab ZAO)
R2 btwdins; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [864032 2009-08-11] (Broadcom Corporation.)
S2 ksupmgr; C:\windows\SysWOW64\ksupmgr.exe [765592 2010-08-25] (Salfeld Computer)
R2 lmab_device; C:\windows\system32\LMabcoms.exe [1048576 2010-09-16] ( )
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1103392 2012-11-13] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1369624 2012-11-13] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [168384 2012-11-13] (Safer-Networking Ltd.)
R2 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [994360 2011-07-29] (Secunia)
R2 Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [399416 2011-07-29] (Secunia)
==================== Drivers (Whitelisted) ====================
R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [88480 2012-10-29] ()
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458584 2012-06-19] (Kaspersky Lab ZAO)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [620128 2013-04-29] (Kaspersky Lab ZAO)
R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [28504 2012-08-02] (Kaspersky Lab ZAO)
R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [29016 2012-10-25] (Kaspersky Lab)
R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29528 2012-10-25] (Kaspersky Lab)
R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [54368 2013-07-06] (Kaspersky Lab ZAO)
R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [178448 2013-04-29] (Kaspersky Lab ZAO)
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [46400 2012-10-29] ()
S3 mbamchameleon; C:\windows\system32\drivers\mbamchameleon.sys [36680 2013-08-22] ()
S3 mbamchameleon; C:\windows\system32\drivers\mbamchameleon.sys [36680 2013-08-22] ()
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
S3 USBTINSP; C:\Windows\System32\DRIVERS\tinspusb.sys [142848 2010-03-29] (Texas Instruments)
U3 BcmSqlStartupSvc;
U4 bdselfpr;
S3 catchme; \??\C:\ComboFix\catchme.sys [x]
U3 IGRS;
U2 IviRegMgr;
U2 ReadyComm.DirectRouter;
U2 RichVideo;
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-08-24 12:50 - 2013-08-24 12:50 - 01576584 _____ (Farbar) C:\Users\LoeUw\Downloads\FRST64.exe
2013-08-23 23:12 - 2013-08-23 23:12 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
2013-08-23 22:22 - 2013-08-23 22:22 - 01312504 _____ C:\ComboFix.txt
2013-08-23 22:14 - 2013-08-23 22:22 - 00000000 ____D C:\ComboFix
2013-08-23 22:14 - 2011-06-26 08:45 - 00256000 _____ C:\windows\PEV.exe
2013-08-23 22:14 - 2010-11-07 19:20 - 00208896 _____ C:\windows\MBR.exe
2013-08-23 22:14 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\windows\NIRCMD.exe
2013-08-23 22:14 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\windows\SWREG.exe
2013-08-23 22:14 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\windows\SWSC.exe
2013-08-23 22:14 - 2000-08-31 02:00 - 00098816 _____ C:\windows\sed.exe
2013-08-23 22:14 - 2000-08-31 02:00 - 00080412 _____ C:\windows\grep.exe
2013-08-23 22:14 - 2000-08-31 02:00 - 00068096 _____ C:\windows\zip.exe
2013-08-23 22:06 - 2013-08-23 22:22 - 00000000 ____D C:\Qoobox
2013-08-23 22:06 - 2013-08-23 22:20 - 00000000 ____D C:\windows\erdnt
2013-08-23 22:00 - 2013-08-23 22:00 - 00001112 _____ C:\Users\Public\Desktop\OpenOffice 4.0.0.lnk
2013-08-23 22:00 - 2013-08-23 22:00 - 00000000 ____D C:\Program Files (x86)\OpenOffice 4
2013-08-23 21:58 - 2013-08-23 21:58 - 00281776 _____ (Mozilla) C:\Users\LoeUw\Downloads\Firefox Setup Stub 23.0.1.exe
2013-08-23 21:45 - 2013-08-23 21:45 - 18101248 _____ C:\Users\LoeUw\Downloads\AdobeFlashPlayer_11.8.800.94_NPAPI_SPS.exe
2013-08-23 21:44 - 2013-08-23 21:46 - 133664256 _____ C:\Users\LoeUw\Downloads\OpenOffice_4.0.0_en-US_SPS.exe
2013-08-23 21:44 - 2013-08-23 21:45 - 17498624 _____ C:\Users\LoeUw\Downloads\AdobeFlashPlayer_11.8.800.94_ActiveX_SPS.exe
2013-08-23 21:44 - 2013-08-23 21:44 - 22584832 _____ C:\Users\LoeUw\Downloads\Firefox_23.0_en-US_SPS.exe
2013-08-23 21:42 - 2013-08-23 21:43 - 05111180 ____R (Swearware) C:\Users\LoeUw\Downloads\ComboFix.exe
2013-08-23 21:42 - 2013-07-09 08:03 - 05550528 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2013-08-23 21:42 - 2013-07-09 07:54 - 01732032 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll
2013-08-23 21:42 - 2013-07-09 07:53 - 00243712 _____ (Microsoft Corporation) C:\windows\system32\wow64.dll
2013-08-23 21:42 - 2013-07-09 07:03 - 03968960 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntkrnlpa.exe
2013-08-23 21:42 - 2013-07-09 07:03 - 03913664 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntoskrnl.exe
2013-08-23 21:42 - 2013-07-09 06:53 - 01292192 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntdll.dll
2013-08-23 21:42 - 2013-07-09 06:52 - 00005120 _____ (Microsoft Corporation) C:\windows\SysWOW64\wow32.dll
2013-08-23 21:42 - 2013-07-09 04:49 - 00025600 _____ (Microsoft Corporation) C:\windows\SysWOW64\setup16.exe
2013-08-23 21:42 - 2013-07-09 04:49 - 00014336 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntvdm64.dll
2013-08-23 21:42 - 2013-07-09 04:49 - 00007680 _____ (Microsoft Corporation) C:\windows\SysWOW64\instnm.exe
2013-08-23 21:42 - 2013-07-09 04:49 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\user.exe
2013-08-23 00:48 - 2013-08-23 00:48 - 00001008 _____ C:\Users\LoeUw\Desktop\JRT.txt
2013-08-23 00:29 - 2013-08-23 00:29 - 00000000 ____D C:\windows\ERUNT
2013-08-23 00:25 - 2013-08-23 00:25 - 01021434 _____ (Thisisu) C:\Users\LoeUw\Downloads\JRT.exe
2013-08-22 22:26 - 2013-08-22 22:26 - 520879605 _____ C:\windows\MEMORY.DMP
2013-08-22 22:26 - 2013-08-22 22:26 - 00481416 _____ C:\windows\Minidump\082213-15927-01.dmp
2013-08-22 22:26 - 2013-08-22 22:26 - 00000000 ____D C:\windows\Minidump
2013-08-22 21:06 - 2013-08-22 21:27 - 00000000 ____D C:\AdwCleaner
2013-08-22 07:17 - 2013-08-23 21:26 - 00000000 ____D C:\Users\LoeUw\Desktop\mbar
2013-08-22 07:17 - 2013-08-23 21:26 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2013-08-22 07:17 - 2013-08-22 07:17 - 00036680 _____ C:\windows\system32\Drivers\mbamchameleon.sys
2013-08-22 07:16 - 2013-08-22 07:17 - 12081912 _____ (Malwarebytes Corp.) C:\Users\LoeUw\Downloads\mbar-1.06.1.1005.exe
2013-08-20 06:42 - 2013-08-20 06:43 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\LoeUw\Downloads\mbam-setup-1.75.0.1300.exe
2013-08-20 06:37 - 2013-08-20 06:38 - 00002274 _____ C:\AdwCleaner[S2].txt
2013-08-19 22:00 - 2013-08-19 22:00 - 00000335 _____ C:\AdwCleaner[S1].txt
2013-08-19 21:59 - 2013-08-19 21:59 - 00002153 _____ C:\AdwCleaner[R1].txt
2013-08-19 21:58 - 2013-08-19 21:59 - 00666633 _____ C:\Users\LoeUw\Downloads\adwcleaner.exe
2013-08-19 20:40 - 2013-08-19 20:40 - 02347384 _____ (ESET) C:\Users\LoeUw\Downloads\esetsmartinstaller_enu.exe
2013-08-18 20:02 - 2013-04-17 09:02 - 01230336 _____ (Microsoft Corporation) C:\windows\SysWOW64\WindowsCodecs.dll
2013-08-18 20:02 - 2013-04-17 08:24 - 01424384 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecs.dll
2013-08-18 15:39 - 2013-08-24 12:40 - 00001693 _____ C:\windows\setupact.log
2013-08-18 03:30 - 2013-04-10 01:34 - 01247744 _____ (Microsoft Corporation) C:\windows\SysWOW64\DWrite.dll
2013-08-18 03:30 - 2013-04-03 00:51 - 01643520 _____ (Microsoft Corporation) C:\windows\system32\DWrite.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 19239424 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 15405056 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 14329344 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 13761024 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 03958784 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 02877440 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 02706432 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2013-08-18 03:06 - 2013-08-18 03:06 - 02706432 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2013-08-18 03:06 - 2013-08-18 03:06 - 02647040 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 02241024 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 02048512 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 01767936 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 01509376 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2013-08-18 03:06 - 2013-08-18 03:06 - 01441280 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2013-08-18 03:06 - 2013-08-18 03:06 - 01400416 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dat
2013-08-18 03:06 - 2013-08-18 03:06 - 01400416 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dat
2013-08-18 03:06 - 2013-08-18 03:06 - 01365504 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 01141248 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 01054720 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2013-08-18 03:06 - 2013-08-18 03:06 - 00905728 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00855552 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00762368 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00719360 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00690688 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00629248 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00603136 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00599552 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00526336 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00523264 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00493056 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00452096 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00441856 _____ (Microsoft Corporation) C:\windows\system32\html.iec
2013-08-18 03:06 - 2013-08-18 03:06 - 00391168 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00361984 _____ (Microsoft Corporation) C:\windows\SysWOW64\html.iec
2013-08-18 03:06 - 2013-08-18 03:06 - 00357888 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00281600 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00270848 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00247296 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00242200 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00235008 _____ (Microsoft Corporation) C:\windows\system32\url.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00232960 _____ (Microsoft Corporation) C:\windows\SysWOW64\url.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00226816 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00226304 _____ (Microsoft Corporation) C:\windows\system32\elshyph.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00216064 _____ (Microsoft Corporation) C:\windows\system32\msls31.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00204800 _____ (Microsoft Corporation) C:\windows\SysWOW64\webcheck.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00197120 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00185344 _____ (Microsoft Corporation) C:\windows\SysWOW64\elshyph.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00173568 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2013-08-18 03:06 - 2013-08-18 03:06 - 00167424 _____ (Microsoft Corporation) C:\windows\system32\iexpress.exe
2013-08-18 03:06 - 2013-08-18 03:06 - 00163840 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00158720 _____ (Microsoft Corporation) C:\windows\SysWOW64\msls31.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00150528 _____ (Microsoft Corporation) C:\windows\SysWOW64\iexpress.exe
2013-08-18 03:06 - 2013-08-18 03:06 - 00149504 _____ (Microsoft Corporation) C:\windows\system32\occache.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00144896 _____ (Microsoft Corporation) C:\windows\system32\wextract.exe
2013-08-18 03:06 - 2013-08-18 03:06 - 00138752 _____ (Microsoft Corporation) C:\windows\SysWOW64\wextract.exe
2013-08-18 03:06 - 2013-08-18 03:06 - 00137216 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2013-08-18 03:06 - 2013-08-18 03:06 - 00136704 _____ (Microsoft Corporation) C:\windows\system32\iesysprep.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00136192 _____ (Microsoft Corporation) C:\windows\system32\iepeers.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00135680 _____ (Microsoft Corporation) C:\windows\system32\IEAdvpack.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00125440 _____ (Microsoft Corporation) C:\windows\SysWOW64\occache.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00117248 _____ (Microsoft Corporation) C:\windows\SysWOW64\iepeers.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00110592 _____ (Microsoft Corporation) C:\windows\SysWOW64\IEAdvpack.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00109056 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesysprep.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00102912 _____ (Microsoft Corporation) C:\windows\system32\inseng.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00097280 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00092160 _____ (Microsoft Corporation) C:\windows\system32\SetIEInstalledDate.exe
2013-08-18 03:06 - 2013-08-18 03:06 - 00089600 _____ (Microsoft Corporation) C:\windows\system32\RegisterIEPKEYs.exe
2013-08-18 03:06 - 2013-08-18 03:06 - 00082432 _____ (Microsoft Corporation) C:\windows\SysWOW64\inseng.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00081408 _____ (Microsoft Corporation) C:\windows\system32\icardie.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00079872 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00077312 _____ (Microsoft Corporation) C:\windows\system32\tdc.ocx
2013-08-18 03:06 - 2013-08-18 03:06 - 00073728 _____ (Microsoft Corporation) C:\windows\SysWOW64\SetIEInstalledDate.exe
2013-08-18 03:06 - 2013-08-18 03:06 - 00071680 _____ (Microsoft Corporation) C:\windows\SysWOW64\RegisterIEPKEYs.exe
2013-08-18 03:06 - 2013-08-18 03:06 - 00069120 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardie.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00067072 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00062976 _____ (Microsoft Corporation) C:\windows\system32\pngfilt.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdc.ocx
2013-08-18 03:06 - 2013-08-18 03:06 - 00061440 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00057344 _____ (Microsoft Corporation) C:\windows\SysWOW64\pngfilt.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00053760 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00052224 _____ (Microsoft Corporation) C:\windows\system32\msfeedsbs.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00051712 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2013-08-18 03:06 - 2013-08-18 03:06 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\imgutil.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00048640 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmler.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\mshtmler.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00041984 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedsbs.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00039936 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00038400 _____ (Microsoft Corporation) C:\windows\SysWOW64\imgutil.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00033280 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00027648 _____ (Microsoft Corporation) C:\windows\system32\licmgr10.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00023040 _____ (Microsoft Corporation) C:\windows\SysWOW64\licmgr10.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00013824 _____ (Microsoft Corporation) C:\windows\system32\mshta.exe
2013-08-18 03:06 - 2013-08-18 03:06 - 00012800 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshta.exe
2013-08-18 03:06 - 2013-08-18 03:06 - 00012800 _____ (Microsoft Corporation) C:\windows\system32\msfeedssync.exe
2013-08-18 03:06 - 2013-08-18 03:06 - 00011776 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedssync.exe
2013-08-18 03:05 - 2013-08-18 03:05 - 03928064 _____ (Microsoft Corporation) C:\windows\system32\d2d1.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 03419136 _____ (Microsoft Corporation) C:\windows\SysWOW64\d2d1.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 02776576 _____ (Microsoft Corporation) C:\windows\system32\msmpeg2vdec.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 02565120 _____ (Microsoft Corporation) C:\windows\system32\d3d10warp.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 02284544 _____ (Microsoft Corporation) C:\windows\SysWOW64\msmpeg2vdec.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 01988096 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10warp.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 01682432 _____ (Microsoft Corporation) C:\windows\system32\XpsPrint.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 01238528 _____ (Microsoft Corporation) C:\windows\system32\d3d10.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 01175552 _____ (Microsoft Corporation) C:\windows\system32\FntCache.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 01158144 _____ (Microsoft Corporation) C:\windows\SysWOW64\XpsPrint.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 01080832 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00648192 _____ (Microsoft Corporation) C:\windows\system32\d3d10level9.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00604160 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10level9.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00522752 _____ (Microsoft Corporation) C:\windows\system32\XpsGdiConverter.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00465920 _____ (Microsoft Corporation) C:\windows\system32\WMPhoto.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00417792 _____ (Microsoft Corporation) C:\windows\SysWOW64\WMPhoto.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00364544 _____ (Microsoft Corporation) C:\windows\SysWOW64\XpsGdiConverter.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00363008 _____ (Microsoft Corporation) C:\windows\system32\dxgi.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00333312 _____ (Microsoft Corporation) C:\windows\system32\d3d10_1core.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00296960 _____ (Microsoft Corporation) C:\windows\system32\d3d10core.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00293376 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxgi.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00249856 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10_1core.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00245248 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecsExt.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00221184 _____ (Microsoft Corporation) C:\windows\system32\UIAnimation.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00220160 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10core.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00207872 _____ (Microsoft Corporation) C:\windows\SysWOW64\WindowsCodecsExt.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00194560 _____ (Microsoft Corporation) C:\windows\system32\d3d10_1.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00187392 _____ (Microsoft Corporation) C:\windows\SysWOW64\UIAnimation.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00161792 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10_1.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00010752 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00010752 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00009728 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00009728 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00005632 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00005632 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00005632 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00005632 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00002560 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00002560 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-08-18 03:03 - 2013-08-18 03:11 - 00011050 _____ C:\windows\IE10_main.log
2013-08-18 03:01 - 2013-08-18 03:03 - 00000000 ____D C:\windows\system32\MRT
2013-08-18 02:37 - 2013-08-23 22:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-08-18 01:54 - 2013-08-18 01:54 - 00002212 _____ C:\Users\Public\Desktop\Google Earth.lnk
2013-08-18 01:46 - 2013-07-19 03:58 - 00002048 _____ (Microsoft Corporation) C:\windows\system32\tzres.dll
2013-08-18 01:46 - 2013-07-19 03:41 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\tzres.dll
2013-08-18 01:46 - 2013-07-09 07:52 - 00224256 _____ (Microsoft Corporation) C:\windows\system32\wintrust.dll
2013-08-18 01:46 - 2013-07-09 07:46 - 01472512 _____ (Microsoft Corporation) C:\windows\system32\crypt32.dll
2013-08-18 01:46 - 2013-07-09 07:46 - 00184320 _____ (Microsoft Corporation) C:\windows\system32\cryptsvc.dll
2013-08-18 01:46 - 2013-07-09 07:46 - 00139776 _____ (Microsoft Corporation) C:\windows\system32\cryptnet.dll
2013-08-18 01:46 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\windows\SysWOW64\wintrust.dll
2013-08-18 01:46 - 2013-07-09 06:46 - 01166848 _____ (Microsoft Corporation) C:\windows\SysWOW64\crypt32.dll
2013-08-18 01:46 - 2013-07-09 06:46 - 00140288 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptsvc.dll
2013-08-18 01:46 - 2013-07-09 06:46 - 00103936 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptnet.dll
2013-08-18 01:45 - 2013-07-25 11:25 - 01888768 _____ (Microsoft Corporation) C:\windows\system32\WMVDECOD.DLL
2013-08-18 01:45 - 2013-07-25 10:57 - 01620992 _____ (Microsoft Corporation) C:\windows\SysWOW64\WMVDECOD.DLL
2013-08-18 01:45 - 2013-07-09 07:51 - 01217024 _____ (Microsoft Corporation) C:\windows\system32\rpcrt4.dll
2013-08-18 01:45 - 2013-07-09 06:52 - 00663552 _____ (Microsoft Corporation) C:\windows\SysWOW64\rpcrt4.dll
2013-08-18 01:43 - 2013-07-06 08:03 - 01910208 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tcpip.sys
2013-08-18 01:43 - 2013-06-15 06:32 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tssecsrv.sys
==================== One Month Modified Files and Folders =======
2013-08-24 12:50 - 2013-08-24 12:50 - 01576584 _____ (Farbar) C:\Users\LoeUw\Downloads\FRST64.exe
2013-08-24 12:48 - 2009-07-14 06:45 - 00021280 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-08-24 12:48 - 2009-07-14 06:45 - 00021280 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-08-24 12:45 - 2011-07-21 02:38 - 01412379 _____ C:\windows\WindowsUpdate.log
2013-08-24 12:43 - 2013-01-03 01:13 - 00000000 ____D C:\ProgramData\Kaspersky Lab
2013-08-24 12:43 - 2011-09-06 21:31 - 00001268 _____ C:\windows\SysWOW64\excltmp~.dat
2013-08-24 12:43 - 2011-07-21 03:33 - 00001120 _____ C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-08-24 12:42 - 2011-07-21 03:33 - 00001124 _____ C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-08-24 12:40 - 2013-08-18 15:39 - 00001693 _____ C:\windows\setupact.log
2013-08-24 12:40 - 2012-06-02 20:08 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-08-24 12:40 - 2011-07-21 02:58 - 00000000 ____D C:\ProgramData\NVIDIA
2013-08-24 12:40 - 2009-07-14 07:08 - 00000006 ____H C:\windows\Tasks\SA.DAT
2013-08-24 06:05 - 2012-08-26 19:15 - 00000884 _____ C:\windows\Tasks\Adobe Flash Player Updater.job
2013-08-24 00:02 - 2013-06-15 13:20 - 00002455 _____ C:\windows\SysWOW64\cchservice.err
2013-08-24 00:02 - 2013-03-02 07:48 - 00000000 ___HD C:\ProgramData\Device
2013-08-24 00:02 - 2011-09-06 21:30 - 00000000 ____D C:\windows\SysWOW64\scurl
2013-08-23 23:12 - 2013-08-23 23:12 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
2013-08-23 23:09 - 2011-08-17 03:59 - 00089616 _____ C:\Users\LoeUw\AppData\Local\GDIPFONTCACHEV1.DAT
2013-08-23 22:24 - 2013-08-18 02:37 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-08-23 22:24 - 2013-02-03 02:39 - 00587586 _____ C:\windows\PFRO.log
2013-08-23 22:24 - 2009-07-14 06:45 - 00427232 _____ C:\windows\system32\FNTCACHE.DAT
2013-08-23 22:22 - 2013-08-23 22:22 - 01312504 _____ C:\ComboFix.txt
2013-08-23 22:22 - 2013-08-23 22:14 - 00000000 ____D C:\ComboFix
2013-08-23 22:22 - 2013-08-23 22:06 - 00000000 ____D C:\Qoobox
2013-08-23 22:20 - 2013-08-23 22:06 - 00000000 ____D C:\windows\erdnt
2013-08-23 22:20 - 2009-07-14 04:34 - 00000215 _____ C:\windows\system.ini
2013-08-23 22:00 - 2013-08-23 22:00 - 00001112 _____ C:\Users\Public\Desktop\OpenOffice 4.0.0.lnk
2013-08-23 22:00 - 2013-08-23 22:00 - 00000000 ____D C:\Program Files (x86)\OpenOffice 4
2013-08-23 22:00 - 2011-08-17 01:25 - 00000000 ____D C:\Program Files (x86)\OpenOffice.org 3
2013-08-23 21:59 - 2011-08-17 03:31 - 00001147 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2013-08-23 21:58 - 2013-08-23 21:58 - 00281776 _____ (Mozilla) C:\Users\LoeUw\Downloads\Firefox Setup Stub 23.0.1.exe
2013-08-23 21:46 - 2013-08-23 21:44 - 133664256 _____ C:\Users\LoeUw\Downloads\OpenOffice_4.0.0_en-US_SPS.exe
2013-08-23 21:46 - 2012-08-26 19:15 - 00003822 _____ C:\windows\System32\Tasks\Adobe Flash Player Updater
2013-08-23 21:46 - 2012-04-11 20:05 - 00692104 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe
2013-08-23 21:46 - 2011-08-17 00:16 - 00071048 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-08-23 21:45 - 2013-08-23 21:45 - 18101248 _____ C:\Users\LoeUw\Downloads\AdobeFlashPlayer_11.8.800.94_NPAPI_SPS.exe
2013-08-23 21:45 - 2013-08-23 21:44 - 17498624 _____ C:\Users\LoeUw\Downloads\AdobeFlashPlayer_11.8.800.94_ActiveX_SPS.exe
2013-08-23 21:44 - 2013-08-23 21:44 - 22584832 _____ C:\Users\LoeUw\Downloads\Firefox_23.0_en-US_SPS.exe
2013-08-23 21:43 - 2013-08-23 21:42 - 05111180 ____R (Swearware) C:\Users\LoeUw\Downloads\ComboFix.exe
2013-08-23 21:26 - 2013-08-22 07:17 - 00000000 ____D C:\Users\LoeUw\Desktop\mbar
2013-08-23 21:26 - 2013-08-22 07:17 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2013-08-23 00:48 - 2013-08-23 00:48 - 00001008 _____ C:\Users\LoeUw\Desktop\JRT.txt
2013-08-23 00:29 - 2013-08-23 00:29 - 00000000 ____D C:\windows\ERUNT
2013-08-23 00:25 - 2013-08-23 00:25 - 01021434 _____ (Thisisu) C:\Users\LoeUw\Downloads\JRT.exe
2013-08-22 23:54 - 2013-03-02 16:26 - 00000000 ____D C:\Users\LoeUw\AppData\Local\CrashDumps
2013-08-22 22:26 - 2013-08-22 22:26 - 520879605 _____ C:\windows\MEMORY.DMP
2013-08-22 22:26 - 2013-08-22 22:26 - 00481416 _____ C:\windows\Minidump\082213-15927-01.dmp
2013-08-22 22:26 - 2013-08-22 22:26 - 00000000 ____D C:\windows\Minidump
2013-08-22 21:27 - 2013-08-22 21:06 - 00000000 ____D C:\AdwCleaner
2013-08-22 20:53 - 2011-07-20 18:27 - 00699682 _____ C:\windows\system32\perfh007.dat
2013-08-22 20:53 - 2011-07-20 18:27 - 00149790 _____ C:\windows\system32\perfc007.dat
2013-08-22 20:53 - 2009-07-14 07:13 - 01620684 _____ C:\windows\system32\PerfStringBackup.INI
2013-08-22 07:17 - 2013-08-22 07:17 - 00036680 _____ C:\windows\system32\Drivers\mbamchameleon.sys
2013-08-22 07:17 - 2013-08-22 07:16 - 12081912 _____ (Malwarebytes Corp.) C:\Users\LoeUw\Downloads\mbar-1.06.1.1005.exe
2013-08-20 06:43 - 2013-08-20 06:42 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\LoeUw\Downloads\mbam-setup-1.75.0.1300.exe
2013-08-20 06:43 - 2012-01-15 18:04 - 00001109 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-08-20 06:43 - 2011-11-19 23:24 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-08-20 06:38 - 2013-08-20 06:37 - 00002274 _____ C:\AdwCleaner[S2].txt
2013-08-19 22:00 - 2013-08-19 22:00 - 00000335 _____ C:\AdwCleaner[S1].txt
2013-08-19 21:59 - 2013-08-19 21:59 - 00002153 _____ C:\AdwCleaner[R1].txt
2013-08-19 21:59 - 2013-08-19 21:58 - 00666633 _____ C:\Users\LoeUw\Downloads\adwcleaner.exe
2013-08-19 20:40 - 2013-08-19 20:40 - 02347384 _____ (ESET) C:\Users\LoeUw\Downloads\esetsmartinstaller_enu.exe
2013-08-18 10:54 - 2011-07-21 02:48 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2013-08-18 10:41 - 2012-04-11 19:21 - 00000000 ____D C:\Program Files\SUPERAntiSpyware
2013-08-18 09:46 - 2011-08-17 03:59 - 00001421 _____ C:\Users\LoeUw\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-08-18 04:22 - 2009-07-14 05:20 - 00000000 ____D C:\windows\rescache
2013-08-18 03:34 - 2011-02-22 13:19 - 00000000 ____D C:\windows\Panther
2013-08-18 03:31 - 2009-07-14 05:20 - 00000000 ____D C:\windows\SysWOW64\zh-HK
2013-08-18 03:31 - 2009-07-14 05:20 - 00000000 ____D C:\windows\SysWOW64\tr-TR
2013-08-18 03:31 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\zh-HK
2013-08-18 03:31 - 2009-07-14 05:20 - 00000000 ____D C:\windows\system32\tr-TR
2013-08-18 03:31 - 2009-07-14 05:20 - 00000000 ____D C:\windows\PolicyDefinitions
2013-08-18 03:11 - 2013-08-18 03:03 - 00011050 _____ C:\windows\IE10_main.log
2013-08-18 03:06 - 2013-08-18 03:06 - 19239424 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 15405056 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 14329344 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 13761024 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 03958784 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 02877440 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 02706432 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2013-08-18 03:06 - 2013-08-18 03:06 - 02706432 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2013-08-18 03:06 - 2013-08-18 03:06 - 02647040 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 02241024 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 02048512 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 01767936 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 01509376 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2013-08-18 03:06 - 2013-08-18 03:06 - 01441280 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2013-08-18 03:06 - 2013-08-18 03:06 - 01400416 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dat
2013-08-18 03:06 - 2013-08-18 03:06 - 01400416 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dat
2013-08-18 03:06 - 2013-08-18 03:06 - 01365504 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 01141248 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 01054720 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2013-08-18 03:06 - 2013-08-18 03:06 - 00905728 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00855552 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00762368 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00719360 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00690688 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00629248 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00603136 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00599552 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00526336 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00523264 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00493056 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00452096 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00441856 _____ (Microsoft Corporation) C:\windows\system32\html.iec
2013-08-18 03:06 - 2013-08-18 03:06 - 00391168 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00361984 _____ (Microsoft Corporation) C:\windows\SysWOW64\html.iec
2013-08-18 03:06 - 2013-08-18 03:06 - 00357888 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00281600 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00270848 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00247296 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00242200 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00235008 _____ (Microsoft Corporation) C:\windows\system32\url.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00232960 _____ (Microsoft Corporation) C:\windows\SysWOW64\url.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00226816 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00226304 _____ (Microsoft Corporation) C:\windows\system32\elshyph.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00216064 _____ (Microsoft Corporation) C:\windows\system32\msls31.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00204800 _____ (Microsoft Corporation) C:\windows\SysWOW64\webcheck.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00197120 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00185344 _____ (Microsoft Corporation) C:\windows\SysWOW64\elshyph.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00173568 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2013-08-18 03:06 - 2013-08-18 03:06 - 00167424 _____ (Microsoft Corporation) C:\windows\system32\iexpress.exe
2013-08-18 03:06 - 2013-08-18 03:06 - 00163840 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00158720 _____ (Microsoft Corporation) C:\windows\SysWOW64\msls31.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00150528 _____ (Microsoft Corporation) C:\windows\SysWOW64\iexpress.exe
2013-08-18 03:06 - 2013-08-18 03:06 - 00149504 _____ (Microsoft Corporation) C:\windows\system32\occache.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00144896 _____ (Microsoft Corporation) C:\windows\system32\wextract.exe
2013-08-18 03:06 - 2013-08-18 03:06 - 00138752 _____ (Microsoft Corporation) C:\windows\SysWOW64\wextract.exe
2013-08-18 03:06 - 2013-08-18 03:06 - 00137216 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2013-08-18 03:06 - 2013-08-18 03:06 - 00136704 _____ (Microsoft Corporation) C:\windows\system32\iesysprep.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00136192 _____ (Microsoft Corporation) C:\windows\system32\iepeers.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00135680 _____ (Microsoft Corporation) C:\windows\system32\IEAdvpack.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00125440 _____ (Microsoft Corporation) C:\windows\SysWOW64\occache.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00117248 _____ (Microsoft Corporation) C:\windows\SysWOW64\iepeers.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00110592 _____ (Microsoft Corporation) C:\windows\SysWOW64\IEAdvpack.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00109056 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesysprep.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00102912 _____ (Microsoft Corporation) C:\windows\system32\inseng.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00097280 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00092160 _____ (Microsoft Corporation) C:\windows\system32\SetIEInstalledDate.exe
2013-08-18 03:06 - 2013-08-18 03:06 - 00089600 _____ (Microsoft Corporation) C:\windows\system32\RegisterIEPKEYs.exe
2013-08-18 03:06 - 2013-08-18 03:06 - 00082432 _____ (Microsoft Corporation) C:\windows\SysWOW64\inseng.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00081408 _____ (Microsoft Corporation) C:\windows\system32\icardie.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00079872 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00077312 _____ (Microsoft Corporation) C:\windows\system32\tdc.ocx
2013-08-18 03:06 - 2013-08-18 03:06 - 00073728 _____ (Microsoft Corporation) C:\windows\SysWOW64\SetIEInstalledDate.exe
2013-08-18 03:06 - 2013-08-18 03:06 - 00071680 _____ (Microsoft Corporation) C:\windows\SysWOW64\RegisterIEPKEYs.exe
2013-08-18 03:06 - 2013-08-18 03:06 - 00069120 _____ (Microsoft Corporation) C:\windows\SysWOW64\icardie.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00067072 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00062976 _____ (Microsoft Corporation) C:\windows\system32\pngfilt.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00061952 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdc.ocx
2013-08-18 03:06 - 2013-08-18 03:06 - 00061440 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00057344 _____ (Microsoft Corporation) C:\windows\SysWOW64\pngfilt.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00053760 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00052224 _____ (Microsoft Corporation) C:\windows\system32\msfeedsbs.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00051712 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2013-08-18 03:06 - 2013-08-18 03:06 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\imgutil.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00048640 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmler.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\mshtmler.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00041984 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedsbs.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00039936 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00038400 _____ (Microsoft Corporation) C:\windows\SysWOW64\imgutil.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00033280 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00027648 _____ (Microsoft Corporation) C:\windows\system32\licmgr10.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00023040 _____ (Microsoft Corporation) C:\windows\SysWOW64\licmgr10.dll
2013-08-18 03:06 - 2013-08-18 03:06 - 00013824 _____ (Microsoft Corporation) C:\windows\system32\mshta.exe
2013-08-18 03:06 - 2013-08-18 03:06 - 00012800 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshta.exe
2013-08-18 03:06 - 2013-08-18 03:06 - 00012800 _____ (Microsoft Corporation) C:\windows\system32\msfeedssync.exe
2013-08-18 03:06 - 2013-08-18 03:06 - 00011776 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeedssync.exe
2013-08-18 03:05 - 2013-08-18 03:05 - 03928064 _____ (Microsoft Corporation) C:\windows\system32\d2d1.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 03419136 _____ (Microsoft Corporation) C:\windows\SysWOW64\d2d1.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 02776576 _____ (Microsoft Corporation) C:\windows\system32\msmpeg2vdec.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 02565120 _____ (Microsoft Corporation) C:\windows\system32\d3d10warp.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 02284544 _____ (Microsoft Corporation) C:\windows\SysWOW64\msmpeg2vdec.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 01988096 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10warp.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 01682432 _____ (Microsoft Corporation) C:\windows\system32\XpsPrint.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 01238528 _____ (Microsoft Corporation) C:\windows\system32\d3d10.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 01175552 _____ (Microsoft Corporation) C:\windows\system32\FntCache.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 01158144 _____ (Microsoft Corporation) C:\windows\SysWOW64\XpsPrint.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 01080832 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00648192 _____ (Microsoft Corporation) C:\windows\system32\d3d10level9.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00604160 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10level9.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00522752 _____ (Microsoft Corporation) C:\windows\system32\XpsGdiConverter.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00465920 _____ (Microsoft Corporation) C:\windows\system32\WMPhoto.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00417792 _____ (Microsoft Corporation) C:\windows\SysWOW64\WMPhoto.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00364544 _____ (Microsoft Corporation) C:\windows\SysWOW64\XpsGdiConverter.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00363008 _____ (Microsoft Corporation) C:\windows\system32\dxgi.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00333312 _____ (Microsoft Corporation) C:\windows\system32\d3d10_1core.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00296960 _____ (Microsoft Corporation) C:\windows\system32\d3d10core.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00293376 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxgi.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00249856 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10_1core.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00245248 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecsExt.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00221184 _____ (Microsoft Corporation) C:\windows\system32\UIAnimation.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00220160 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10core.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00207872 _____ (Microsoft Corporation) C:\windows\SysWOW64\WindowsCodecsExt.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00194560 _____ (Microsoft Corporation) C:\windows\system32\d3d10_1.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00187392 _____ (Microsoft Corporation) C:\windows\SysWOW64\UIAnimation.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00161792 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10_1.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00010752 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00010752 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00009728 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00009728 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00005632 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00005632 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00005632 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00005632 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00002560 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-08-18 03:05 - 2013-08-18 03:05 - 00002560 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-08-18 03:03 - 2013-08-18 03:01 - 00000000 ____D C:\windows\system32\MRT
2013-08-18 03:01 - 2011-12-31 12:06 - 78161360 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2013-08-18 01:54 - 2013-08-18 01:54 - 00002212 _____ C:\Users\Public\Desktop\Google Earth.lnk
2013-08-18 01:54 - 2011-07-21 03:33 - 00000000 ____D C:\Program Files (x86)\Google
2013-08-18 01:37 - 2011-07-21 03:33 - 00004120 _____ C:\windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-08-18 01:37 - 2011-07-21 03:33 - 00003868 _____ C:\windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-08-18 01:32 - 2011-09-06 21:30 - 00000000 ____D C:\windows\SysWOW64\wdrv
2013-08-18 01:26 - 2012-05-11 15:55 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-08-18 01:26 - 2012-05-11 15:55 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2013-08-18 01:26 - 2011-02-22 13:42 - 00000000 ____D C:\Program Files\Windows Journal
2013-08-18 01:26 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Defender
2013-08-18 01:26 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2013-07-25 11:25 - 2013-08-18 01:45 - 01888768 _____ (Microsoft Corporation) C:\windows\system32\WMVDECOD.DLL
2013-07-25 10:57 - 2013-08-18 01:45 - 01620992 _____ (Microsoft Corporation) C:\windows\SysWOW64\WMVDECOD.DLL
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-08-22 09:53
==================== End Of Log ============================
--- --- ---
Die Datei Addition.txt hat folgenden InhaltFRST Additions Logfile:
Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 23-08-2013 01
Ran by LoeUw at 2013-08-24 12:52:45
Running from C:\Users\LoeUw\Downloads
Boot Mode: Normal
==========================================================
==================== Installed Programs =======================
ABBYY FineReader 6.0 Sprint (x32 Version: 6.00.1990.41618)
Adobe Flash Player 11 ActiveX (x32 Version: 11.8.800.94)
Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.94)
Adobe Reader XI (11.0.03) (x32 Version: 11.0.03)
AntiBrowserSpy (x32 Version: 3.6.106)
Audacity 2.0 (x32)
Auslogics Disk Defrag (x32 Version: version 3.3)
AVS DVD Player version 2.4 (x32)
AVS Media Player 4.1.6.80 (x32)
AVS Update Manager 1.0 (x32)
Beyond Compare Version 3.3.1 (x32)
Broadcom 802.11 Wireless Driver (x32 Version: 1.0.0.0)
CCleaner (Version: 3.26)
COMPUTERBILD-Abzockschutz (x32 Version: 1.0.34)
Conexant HD Audio (Version: 4.130.0.62)
D3DX10 (x32 Version: 15.4.2368.0902)
dows-Treiberpaket - Lenovo (ACPIVPC) System (10/19/2009 5.4.0.1) (Version: 10/19/2009 5.4.0.1)
Energy Management (x32 Version: 5.4.0.8)
Entity Framework Designer for Visual Studio 2012 - enu (x32 Version: 11.1.21009.00)
Eraser 6.0.8.2273 (Version: 6.0.2273)
Erforderliche Komponenten für SSDT (x32 Version: 11.0.2100.60)
ETDWare PS/2-x64 7.0.4.18_WHQL (Version: 7.0.4.18)
Geheimakte 2 - Puritas Cordis (x32 Version: 1.02)
Google Earth (x32 Version: 7.1.1.1888)
Google Update Helper (x32 Version: 1.3.21.153)
Intel(R) Control Center (x32 Version: 1.2.1.1007)
Intel(R) Management Engine Components (x32 Version: 6.0.0.1179)
Intel(R) Rapid Storage Technology (x32 Version: 9.6.0.1014)
Intel(R) Turbo Boost Technology Driver (x32 Version: 01.02.00.1002)
Java 7 Update 25 (x32 Version: 7.0.250)
Junk Mail filter update (x32 Version: 15.4.3502.0922)
Kaspersky Internet Security 2013 (x32 Version: 13.0.1.4190)
Kindersicherung 2013 (x32)
Lenovo Bluetooth with Enhanced Data Rate Software (Version: 6.2.1.100)
Lenovo EasyCamera (x32 Version: 6.96.2018.21)
Lenovo OneKey Recovery (Version: 7.0.1230)
Lenovo OneKey Recovery (x32 Version: 7.0.1230)
Lenovo YouCam (x32 Version: 3.1.3728)
Lexmark Scan Center (x32 Version: 1.10.00)
Lexmark Software deinstallieren
Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300)
Mesh Runtime (x32 Version: 15.4.5722.2)
Microsoft .NET Framework 4 Multi-Targeting Pack (x32 Version: 4.0.30319)
Microsoft .NET Framework 4.5 (Version: 4.5.50709)
Microsoft .NET Framework 4.5 DEU Language Pack (Version: 4.5.50709)
Microsoft .NET Framework 4.5 Multi-Targeting Pack (x32 Version: 4.5.50709)
Microsoft .NET Framework 4.5 SDK - DEU Lang Pack (x32 Version: 4.5.50709)
Microsoft .NET Framework 4.5 SDK (x32 Version: 4.5.50709)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft CAPICOM 2.1.0.2 SDK (x32 Version: 2.1.0.2)
Microsoft Help Viewer 2.0 (x32 Version: 2.0.50727)
Microsoft Help Viewer 2.0 Language Pack - DEU (x32 Version: 2.0.50727)
Microsoft NuGet - Visual Studio Express 2012 for Windows Desktop (x32 Version: 2.0.30717.9005)
Microsoft Office 2010 (x32 Version: 14.0.4763.1000)
Microsoft Silverlight (Version: 5.1.20513.0)
Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000)
Microsoft SQL Server 2012 Command Line Utilities (Version: 11.0.2100.60)
Microsoft SQL Server 2012 Data-Tier App Framework (Version: 11.0.2316.0)
Microsoft SQL Server 2012 Data-Tier App Framework (x32 Version: 11.0.2316.0)
Microsoft SQL Server 2012 Express LocalDB (Version: 11.0.2100.60)
Microsoft SQL Server 2012 Management Objects (x32 Version: 11.0.2100.60)
Microsoft SQL Server 2012 Management Objects (x64) (Version: 11.0.2100.60)
Microsoft SQL Server 2012 Native Client (Version: 11.0.2100.60)
Microsoft SQL Server 2012 Transact-SQL Compiler Service (Version: 11.0.2100.60)
Microsoft SQL Server 2012 Transact-SQL ScriptDom (Version: 11.0.2100.60)
Microsoft SQL Server 2012 T-SQL Language Service (x32 Version: 11.0.2100.60)
Microsoft SQL Server Compact 4.0 SP1 x64 DEU (Version: 4.0.8876.1)
Microsoft SQL Server Data Tools - DEU (11.1.20828.01) (x32 Version: 11.1.20828.01)
Microsoft SQL Server Data Tools Build Utilities - DEU (11.1.20828.01) (x32 Version: 11.1.20828.01)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (x32 Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219)
Microsoft Visual C++ 2012 32bit Compilers - DEU Resources (x32 Version: 11.0.51106)
Microsoft Visual C++ 2012 Core Libraries (x32 Version: 11.0.51106)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.51106 (Version: 11.0.51106)
Microsoft Visual C++ 2012 x64 Debug Runtime - 11.0.51106 (Version: 11.0.51106)
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.51106 (Version: 11.0.51106)
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.51106 (x32 Version: 11.0.51106)
Microsoft Visual C++ 2012 x86 Debug Runtime - 11.0.51106 (x32 Version: 11.0.51106)
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.51106 (x32 Version: 11.0.51106)
Microsoft Visual C++ 2012 x86-x64 Compilers (x32 Version: 11.0.51106)
Microsoft Visual Studio 2012 Express Prerequisites x64 - DEU (Version: 11.0.50727)
Microsoft Visual Studio 2012 Shell (Minimum) (x32 Version: 11.0.50727)
Microsoft Visual Studio 2012 Shell (Minimum) Interop Assemblies (x32 Version: 11.0.50727)
Microsoft Visual Studio 2012 Shell-(Mindest)-Ressourcen (x32 Version: 11.0.50727)
Microsoft Visual Studio 2012 Tools für SQL Server Compact 4.0 SP1 DEU (x32 Version: 4.0.8876.1)
Microsoft Visual Studio 2012-Vorbereitung (x32 Version: 11.0.50727)
Microsoft Visual Studio Express 2012 for Windows Desktop (x32 Version: 11.0.50727)
Microsoft Visual Studio Express 2012 für Windows Desktop - DEU (x32 Version: 11.0.50727)
Microsoft Visual Studio Express 2012 für Windows Desktop - DEU (x32 Version: 11.0.50727.42)
Microsoft Visual Studio Team Foundation Server 2012 Object Model (Version: 11.0.51106)
Microsoft Visual Studio Team Foundation Server 2012 Object Model Language Pack - DEU (Version: 11.0.51106)
Microsoft Visual Studio Team Foundation Server 2012 Team Explorer (x32 Version: 11.0.50727)
Microsoft Visual Studio Team Foundation Server 2012 Team Explorer Language Pack - DEU (x32 Version: 11.0.50727)
Microsoft Visual Studio Ultimate 2012 XAML UI Designer Core (x32 Version: 11.0.50727)
Microsoft Visual Studio Ultimate 2012 XAML UI Designer deu Resources (x32 Version: 11.0.50727)
Microsoft-System-CLR-Typen für SQL Server 2012 (x32 Version: 11.0.2100.60)
Microsoft-System-CLR-Typen für SQL Server 2012 (x64) (Version: 11.0.2100.60)
Mozilla Firefox 23.0.1 (x86 en-US) (x32 Version: 23.0.1)
Mozilla Maintenance Service (x32 Version: 17.0.8)
Mozilla Thunderbird 17.0.8 (x86 en-GB) (x32 Version: 17.0.8)
MSVCRT (x32 Version: 15.4.2862.0708)
MSVCRT_amd64 (x32 Version: 15.4.2862.0708)
NVIDIA 3D Vision Treiber 314.07 (Version: 314.07)
NVIDIA Grafiktreiber 314.07 (Version: 314.07)
NVIDIA HD-Audiotreiber 1.3.23.1 (Version: 1.3.23.1)
NVIDIA Install Application (Version: 2.1002.109.706)
NVIDIA PhysX (x32 Version: 9.12.1031)
NVIDIA PhysX-Systemsoftware 9.12.1031 (Version: 9.12.1031)
NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.1407)
NVIDIA Systemsteuerung 314.07 (Version: 314.07)
NVIDIA Update 1.12.12 (Version: 1.12.12)
NVIDIA Update Components (Version: 1.12.12)
Onekey Theater (x32 Version: 2.0.1.7)
OpenOffice 4.0.0 (x32 Version: 4.00.9702)
PhotoFiltre 7 (HKCU)
Picasa 3 (x32 Version: 3.9)
Power2Go (x32 Version: 5.6.0.7303)
Presto! PageManager 7.12.31 (x32 Version: 7.12.31)
Realtek Ethernet Controller Driver For Windows Vista and Later (x32 Version: 1.00.0009)
Realtek USB 2.0 Card Reader (x32 Version: 6.1.7600.30116)
Secunia PSI (2.0.0.4002) (x32)
Skype Click to Call (x32 Version: 5.11.9874)
Skype™ 6.6 (x32 Version: 6.6.106)
Spybot - Search & Destroy (x32 Version: 2.0.12)
StarMoney (x32 Version: 4.0.0.203)
SUPERAntiSpyware (Version: 5.0.1146)
TI-Nspire CAS Student Software (x32 Version: 3.1.0.392)
TrueCrypt (x32 Version: 7.1a)
Update for (KB2504637) (x32 Version: 1)
Update for Microsoft .NET Framework 4.5 (KB2750147) (x32 Version: 1)
Update for Microsoft .NET Framework 4.5 (KB2805221) (x32 Version: 1)
Update for Microsoft .NET Framework 4.5 (KB2805226) (x32 Version: 1)
Update for Microsoft Visual Studio 2012 (KB2781514) (x32 Version: 11.0.50727)
Visual Studio 2012 Update 1 (KB2707250) (x32 Version: 11.0.51106)
Windows Driver Package - Broadcom Bluetooth (06/15/2009 6.2.0.9000) (Version: 06/15/2009 6.2.0.9000)
Windows Driver Package - Broadcom Bluetooth (07/30/2009 6.2.0.9405) (Version: 07/30/2009 6.2.0.9405)
Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800) (Version: 07/28/2009 6.2.0.9800)
Windows Live Communications Platform (x32 Version: 15.4.3502.0922)
Windows Live Essentials (x32 Version: 15.4.3502.0922)
Windows Live Essentials (x32 Version: 15.4.3508.1109)
Windows Live Fotogalerie (x32 Version: 15.4.3502.0922)
Windows Live ID Sign-in Assistant (Version: 7.250.4225.0)
Windows Live Installer (x32 Version: 15.4.3502.0922)
Windows Live Language Selector (Version: 15.4.3508.1109)
Windows Live Mail (x32 Version: 15.4.3502.0922)
Windows Live Mesh (x32 Version: 15.4.3502.0922)
Windows Live Mesh ActiveX control for remote connections (x32 Version: 15.4.5722.2)
Windows Live Messenger (x32 Version: 15.4.3502.0922)
Windows Live MIME IFilter (Version: 15.4.3502.0922)
Windows Live Movie Maker (x32 Version: 15.4.3502.0922)
Windows Live Photo Common (x32 Version: 15.4.3502.0922)
Windows Live Photo Gallery (x32 Version: 15.4.3502.0922)
Windows Live PIMT Platform (x32 Version: 15.4.3508.1109)
Windows Live Remote Client (Version: 15.4.5722.2)
Windows Live Remote Client Resources (Version: 15.4.5722.2)
Windows Live Remote Service (Version: 15.4.5722.2)
Windows Live Remote Service Resources (Version: 15.4.5722.2)
Windows Live SOXE (x32 Version: 15.4.3502.0922)
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922)
Windows Live UX Platform (x32 Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109)
Windows Live Writer (x32 Version: 15.4.3502.0922)
Windows Live Writer Resources (x32 Version: 15.4.3502.0922)
Windows Software Development Kit (x32 Version: 8.59.25584)
Windows Software Development Kit DirectX x64 Remote (Version: 8.59.25584)
Windows Software Development Kit DirectX x86 Remote (x32 Version: 8.59.25584)
Windows Software Development Kit for Windows Store Apps (x32 Version: 8.59.25584)
Windows Software Development Kit for Windows Store Apps DirectX x64 Remote (Version: 8.59.25584)
Windows Software Development Kit for Windows Store Apps DirectX x86 Remote (x32 Version: 8.59.25584)
Windows XP Targeting with C++ (x32 Version: 11.0.51106)
WinRAR 4.01 (64-Bit) (Version: 4.01.0)
WISO Mein Geld 2013 Professional (x32 Version: 15.0.0.1)
WISO Mein Geld 2013 Professional (x32)
==================== Restore Points =========================
==================== Hosts content: ==========================
2009-07-14 04:34 - 2013-08-23 22:19 - 00000027 ____A C:\windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
==================== Scheduled Tasks (whitelisted) =============
Task: {0FF48815-5773-4E33-9F3D-72A2F8AFEB1E} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe No File
Task: {1E789C0C-3CBE-4E07-B307-17B75B8754E1} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe No File
Task: {4C6B4CE8-5226-408A-84C5-B469BA174A43} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2012-12-19] (Piriform Ltd)
Task: {50B5FDFC-AAE2-4680-B423-77B80D95C4B9} - System32\Tasks\MirageAgent => C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [2011-01-29] (CyberLink)
Task: {99794C18-4E9C-42A2-B0FD-70CA7C6BC885} - System32\Tasks\Adobe Flash Player Updater => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-08-23] (Adobe Systems Incorporated)
Task: {A29EBA06-2B57-4191-9390-E2DAE6C86617} - System32\Tasks\Microsoft\Windows\MUI\Lpksetup => C:\windows\System32\lpksetup.exe [2010-11-21] (Microsoft Corporation)
Task: {B0C7582B-B3E5-4C19-BC3E-0C2DE328CB28} - System32\Tasks\Microsoft\Windows Defender\MP Scheduled Scan => c:\program files\windows defender\MpCmdRun.exe [2009-07-14] (Microsoft Corporation)
Task: {C39016DD-DDF5-4984-9FD6-C18D2C4398DA} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task
Task: {CCAD84D3-F1B6-4423-BE31-F1235813D610} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-07-21] (Google Inc.)
Task: {FB241630-DB77-4976-A05E-E56B54134D4F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-07-21] (Google Inc.)
Task: {FCB1A13E-B5E7-4A46-9154-C5F277289F0F} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe No File
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (08/24/2013 00:41:36 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/23/2013 10:25:31 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/23/2013 09:49:48 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/23/2013 09:46:21 PM) (Source: MsiInstaller) (User: EA-NB-01)
Description: Product: Adobe Flash Player 11 Plugin -- Error 1500.Another installation is in progress. You must complete that installation before continuing this one.
Error: (08/23/2013 09:46:17 PM) (Source: MsiInstaller) (User: EA-NB-01)
Description: Product: Adobe Flash Player 11 Plugin -- Error 1500.Another installation is in progress. You must complete that installation before continuing this one.
Error: (08/23/2013 07:06:45 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/23/2013 07:46:13 AM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
System errors:
=============
Error: (08/24/2013 00:43:42 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1069
Error: (08/24/2013 00:43:42 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden:
%%1330
Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC).
Error: (08/23/2013 10:27:40 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1069
Error: (08/23/2013 10:27:40 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden:
%%1330
Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC).
Error: (08/23/2013 10:20:01 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "PEVSystemStart" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren.
Error: (08/23/2013 10:19:23 PM) (Source: Application Popup) (User: )
Description: Aufgrund der Inkompatibilität mit diesem System wurde \??\C:\ComboFix\catchme.sys nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten.
Error: (08/23/2013 10:17:32 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "PEVSystemStart" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren.
Error: (08/23/2013 09:51:54 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1069
Error: (08/23/2013 09:51:54 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden:
%%1330
Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC).
Error: (08/23/2013 09:48:28 PM) (Source: DCOM) (User: )
Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF}
Microsoft Office Sessions:
=========================
Error: (08/24/2013 00:41:36 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/23/2013 10:25:31 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/23/2013 09:49:48 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/23/2013 09:46:21 PM) (Source: MsiInstaller)(User: EA-NB-01)
Description: Product: Adobe Flash Player 11 Plugin -- Error 1500.Another installation is in progress. You must complete that installation before continuing this one.(NULL)(NULL)(NULL)(NULL)(NULL)
Error: (08/23/2013 09:46:17 PM) (Source: MsiInstaller)(User: EA-NB-01)
Description: Product: Adobe Flash Player 11 Plugin -- Error 1500.Another installation is in progress. You must complete that installation before continuing this one.(NULL)(NULL)(NULL)(NULL)(NULL)
Error: (08/23/2013 07:06:45 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/23/2013 07:46:13 AM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
CodeIntegrity Errors:
===================================
Date: 2013-08-24 06:14:37.392
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\wdrvtd64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-08-24 06:14:37.392
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\wdrvtd64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-08-24 06:14:37.392
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\wdrvtd64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-08-24 06:14:37.392
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\wdrvtd64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-08-24 06:05:54.895
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\wdrvtd64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-08-24 06:05:54.895
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\wdrvtd64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-08-24 06:05:54.895
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\wdrvtd64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-08-24 06:05:54.895
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\SysWOW64\wdrvtd64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-08-24 00:31:30.296
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2013-08-24 00:31:30.296
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
==================== Memory info ===========================
Percentage of memory in use: 52%
Total physical RAM: 3958.85 MB
Available physical RAM: 1889.02 MB
Total Pagefile: 7915.89 MB
Available Pagefile: 5199.66 MB
Total Virtual: 8192 MB
Available Virtual: 8191.79 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:552.22 GB) (Free:504.46 GB) NTFS
Drive d: (LENOVO) (Fixed) (Total:29 GB) (Free:18.03 GB) NTFS
Drive e: () (Removable) (Total:7.47 GB) (Free:6.9 GB) FAT32
Drive f: (buchdvd_einstieg_vb) (CDROM) (Total:2.01 GB) (Free:0 GB) UDF
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 596 GB) (Disk ID: 43333D53)
Partition 1: (Active) - (Size=200 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=552 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=29 GB) - (Type=OF Extended)
Partition 4: (Not Active) - (Size=15 GB) - (Type=12)
========================================================
Disk: 1 (Size: 7 GB) (Disk ID: 00000000)
Partition 1: (Not Active) - (Size=7 GB) - (Type=0B)
==================== End Of Log ============================
--- --- ---