Hier die Logs:
Gmer Code:
GMER 2.1.19163 - hxxp://www.gmer.net
Rootkit scan 2013-12-29 12:51:21
Windows 6.2.9200 x64 \Device\Harddisk0\DR0 -> \Device\00000035 ST1000LM024_HN-M101MBB rev.2AR10001 931,51GB
Running: gmer_2.1.19163.exe; Driver: C:\Users\Tobias\AppData\Local\Temp\uxlyipod.sys
---- Kernel code sections - GMER 2.1 ----
.text C:\WINDOWS\System32\win32k.sys!W32pServiceTable fffff9600022c700 15 bytes [00, EA, 0F, 02, 00, 7F, 6F, ...]
.text C:\WINDOWS\System32\win32k.sys!W32pServiceTable + 16 fffff9600022c710 11 bytes [00, 1F, FC, FF, 80, 52, DE, ...]
---- User code sections - GMER 2.1 ----
.text C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe[2188] C:\WINDOWS\system32\PsApi.dll!GetModuleBaseNameA + 506 00007ffd64e2169a 4 bytes [E2, 64, FD, 7F]
.text C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe[2188] C:\WINDOWS\system32\PsApi.dll!GetModuleBaseNameA + 514 00007ffd64e216a2 4 bytes [E2, 64, FD, 7F]
.text C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe[2188] C:\WINDOWS\system32\PsApi.dll!QueryWorkingSet + 118 00007ffd64e2181a 4 bytes [E2, 64, FD, 7F]
.text C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe[2188] C:\WINDOWS\system32\PsApi.dll!QueryWorkingSet + 142 00007ffd64e21832 4 bytes [E2, 64, FD, 7F]
.text C:\WINDOWS\system32\nvvsvc.exe[3596] C:\WINDOWS\system32\PSAPI.DLL!GetModuleBaseNameA + 506 00007ffd64e2169a 4 bytes [E2, 64, FD, 7F]
.text C:\WINDOWS\system32\nvvsvc.exe[3596] C:\WINDOWS\system32\PSAPI.DLL!GetModuleBaseNameA + 514 00007ffd64e216a2 4 bytes [E2, 64, FD, 7F]
.text C:\WINDOWS\system32\nvvsvc.exe[3596] C:\WINDOWS\system32\PSAPI.DLL!QueryWorkingSet + 118 00007ffd64e2181a 4 bytes [E2, 64, FD, 7F]
.text C:\WINDOWS\system32\nvvsvc.exe[3596] C:\WINDOWS\system32\PSAPI.DLL!QueryWorkingSet + 142 00007ffd64e21832 4 bytes [E2, 64, FD, 7F]
.text C:\WINDOWS\Explorer.EXE[2276] C:\WINDOWS\SYSTEM32\WSOCK32.dll!setsockopt + 194 00007ffd5b5e1f6a 4 bytes [5E, 5B, FD, 7F]
.text C:\WINDOWS\Explorer.EXE[2276] C:\WINDOWS\SYSTEM32\WSOCK32.dll!setsockopt + 218 00007ffd5b5e1f82 4 bytes [5E, 5B, FD, 7F]
.text C:\Windows\System32\igfxpers.exe[5928] C:\WINDOWS\system32\PSAPI.DLL!GetModuleBaseNameA + 506 00007ffd64e2169a 4 bytes [E2, 64, FD, 7F]
.text C:\Windows\System32\igfxpers.exe[5928] C:\WINDOWS\system32\PSAPI.DLL!GetModuleBaseNameA + 514 00007ffd64e216a2 4 bytes [E2, 64, FD, 7F]
.text C:\Windows\System32\igfxpers.exe[5928] C:\WINDOWS\system32\PSAPI.DLL!QueryWorkingSet + 118 00007ffd64e2181a 4 bytes [E2, 64, FD, 7F]
.text C:\Windows\System32\igfxpers.exe[5928] C:\WINDOWS\system32\PSAPI.DLL!QueryWorkingSet + 142 00007ffd64e21832 4 bytes [E2, 64, FD, 7F]
---- Threads - GMER 2.1 ----
Thread C:\WINDOWS\system32\csrss.exe [1308:4984] fffff960008c04d0
---- Disk sectors - GMER 2.1 ----
Disk \Device\Harddisk0\DR0 unknown MBR code
---- EOF - GMER 2.1 ---- FRST und Addition muss ich jeweils aufteilen:
FRST TEIL1 Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 29-12-2013
Ran by Tobias (administrator) on TOBIAS-PC on 29-12-2013 12:33:18
Running from C:\Users\Tobias\Desktop
Windows 8.1 (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgrsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgcsrva.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
() C:\Program Files (x86)\PHotkey\GFNEXSrv.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe
(CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD10\Device\MediaServer\CLMSMonitorService.exe
(CyberLink) C:\Program Files (x86)\CyberLink\PowerDVD10\Device\MediaServer\CLMSServer.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
() C:\Program Files\CyberLink\Shared files\RichVideo64.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
(VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe
(VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
() C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgnsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgemca.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
() C:\Program Files (x86)\PHotkey\PHotkey.exe
() C:\Program Files (x86)\PHotkey\Atouch64.exe
() C:\Program Files (x86)\PHotkey\POsd.exe
() C:\Program Files (x86)\PHotkey\GPMTray.exe
(TODO: <Company name>) C:\Program Files (x86)\PHotkey\HCSynApi.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Akamai Technologies, Inc.) C:\Users\Tobias\AppData\Local\Akamai\netsession_win.exe
(Akamai Technologies, Inc.) C:\Users\Tobias\AppData\Local\Akamai\netsession_win.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgui.exe
(Microsoft Corporation) C:\Windows\System32\WWAHost.exe
(Microsoft Corporation) C:\Windows\WinStore\WSHost.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Reader_6.3.9600.16422_x64__8wekyb3d8bbwe\glcnd.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [HotKeysCmds] - "C:\WINDOWS\system32\hkcmd.exe"
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13571656 2013-06-05] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1311304 2013-06-05] (Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [286704 2013-04-30] (Intel Corporation)
HKLM\...\Run: [BTMTrayAgent] - rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2994928 2013-06-04] (Synaptics Incorporated)
HKLM\...\Run: [AdobeAAMUpdater-1.0] - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe [472984 2013-09-25] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [CLMLServer_For_P2G8] - C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [110144 2013-03-05] (CyberLink)
HKLM-x32\...\Run: [CLVirtualDrive] - C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [492248 2012-12-26] (CyberLink Corp.)
HKLM-x32\...\Run: [RemoteControl10] - C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [95192 2013-03-11] (CyberLink Corp.)
HKLM-x32\...\Run: [YouCam Service] - C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe [263128 2013-03-05] (CyberLink Corp.)
HKLM-x32\...\Run: [AVG_UI] - C:\Program Files (x86)\AVG\AVG2014\avgui.exe [4956176 2013-11-07] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [Adobe Creative Cloud] - C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2237328 2013-11-05] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM-x32\...\Run: [QuickTime Task] - C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)
HKLM-x32\...\Run: [vmware-tray.exe] - C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe [111696 2013-10-18] (VMware, Inc.)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [3806544 2013-11-29] (LogMeIn Inc.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer: [ConfirmFileDelete] 1
HKCU\...\Run: [Clownfish] - C:\Program Files (x86)\Clownfish\Clownfish.exe [1278712 2013-10-01] (Bogdan Sharkov)
HKCU\...\Run: [Akamai NetSession Interface] - C:\Users\Tobias\AppData\Local\Akamai\netsession_win.exe [4489472 2013-06-05] (Akamai Technologies, Inc.)
HKCU\...\Run: [Spotify Web Helper] - C:\Users\Tobias\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1168896 2013-12-14] (Spotify Ltd)
HKCU\...\Run: [AVG-Secure-Search-Update_1213b] - C:\Users\Tobias\AppData\Roaming\AVG 1213b Campaign\AVG-Secure-Search-Update-1213b.exe /PROMPT /mid=f8378a614fb747d39d24ddc2bbce9bc3-97b08f28a2098072b9b3a4d0bef860b7e8d4e98e /CMPID=1213b
Startup: C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Tobias\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://lenovo13.msn.com/?pc=LCJB
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo13.msn.com/?pc=LCJB
SearchScopes: HKCU - {B85A229F-EF4B-45CA-97E1-E3AE9DCA3A73} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=LCJB
BHO: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
FireFox:
========
FF ProfilePath: C:\Users\Tobias\AppData\Roaming\Mozilla\Firefox\Profiles\t9yodejy.default
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll ()
FF Plugin: @java.com/DTPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~1\MICROS~2\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 - C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~3\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll (Adobe Systems)
FF SearchPlugin: C:\Users\Tobias\AppData\Roaming\Mozilla\Firefox\Profiles\t9yodejy.default\searchplugins\ecosia.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: grreaaTSaver - C:\Users\Tobias\AppData\Roaming\Mozilla\Firefox\Profiles\t9yodejy.default\Extensions\rpiz6bh@zldwn-i.org
FF Extension: ColorZilla - C:\Users\Tobias\AppData\Roaming\Mozilla\Firefox\Profiles\t9yodejy.default\Extensions\{6AC85730-7D0F-4de0-B3FA-21142DD85326}
FF Extension: anonymoX - C:\Users\Tobias\AppData\Roaming\Mozilla\Firefox\Profiles\t9yodejy.default\Extensions\client@anonymox.net.xpi
FF Extension: New Tab Tools - C:\Users\Tobias\AppData\Roaming\Mozilla\Firefox\Profiles\t9yodejy.default\Extensions\newtabtools@darktrojan.net.xpi
FF Extension: Personas Plus - C:\Users\Tobias\AppData\Roaming\Mozilla\Firefox\Profiles\t9yodejy.default\Extensions\personas@christopher.beard.xpi
FF Extension: X-notifier - C:\Users\Tobias\AppData\Roaming\Mozilla\Firefox\Profiles\t9yodejy.default\Extensions\{37fa1426-b82d-11db-8314-0800200c9a66}.xpi
FF Extension: Stylish - C:\Users\Tobias\AppData\Roaming\Mozilla\Firefox\Profiles\t9yodejy.default\Extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}.xpi
FF Extension: No Name - C:\Users\Tobias\AppData\Roaming\Mozilla\Firefox\Profiles\t9yodejy.default\Extensions\{891f0410-aaa2-11e0-9f1c-0800200c9a66}.xpi
FF Extension: Ecosia - The search engine that plants trees - C:\Users\Tobias\AppData\Roaming\Mozilla\Firefox\Profiles\t9yodejy.default\Extensions\{d04b0b40-3dab-4f0b-97a6-04ec3eddbfb0}.xpi
FF Extension: Adblock Plus - C:\Users\Tobias\AppData\Roaming\Mozilla\Firefox\Profiles\t9yodejy.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
FF Extension: Disable Anti-Adblock - C:\Users\Tobias\AppData\Roaming\Mozilla\Firefox\Profiles\t9yodejy.default\Extensions\{d49a148e-817e-4025-bee3-5d541376de3b}.xpi
Chrome:
=======
Error reading preferences. Please check "preferences" file for possible corruption. <======= ATTENTION
CHR Extension: (grreaaTSaver) - C:\Users\Tobias\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihhkmealpkdipdiogohdgeklafcpmikc\2.7
==================== Services (Whitelisted) =================
R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe [3478544 2013-11-11] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe [348008 2013-09-24] (AVG Technologies CZ, s.r.o.)
R2 CyberLink PowerDVD 10 MS Monitor Service; C:\Program Files (x86)\CyberLink\PowerDVD10\Device\MediaServer\CLMSMonitorService.exe [74712 2013-03-11] (CyberLink)
R2 CyberLink PowerDVD 10 MS Service; C:\Program Files (x86)\CyberLink\PowerDVD10\Device\MediaServer\CLMSServer.exe [316376 2013-03-11] (CyberLink)
R2 GFNEXSrv; C:\Program Files (x86)\PHotkey\GFNEXSrv.exe [160256 2013-01-19] ()
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15344 2013-04-30] (Intel Corporation)
R2 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [156616 2013-06-26] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-17] (Intel Corporation)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [377104 2013-10-11] (LogMeIn, Inc.)
R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [386344 2010-08-19] ()
R2 VMwareHostd; C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe [14405200 2013-10-18] ()
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
S0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra)
S0 Avgboota; C:\Windows\System32\DRIVERS\avgboota.sys [20496 2013-09-04] (AVG Technologies CZ, s.r.o.)
R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [150808 2013-11-05] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [240920 2013-11-04] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [194872 2013-10-24] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [212280 2013-10-31] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [294712 2013-10-31] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [123704 2013-10-01] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [31544 2013-09-10] (AVG Technologies CZ, s.r.o.)
R1 Avgwfpa; C:\Windows\system32\DRIVERS\avgwfpa.sys [252728 2013-10-21] (AVG Technologies CZ, s.r.o.)
S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows (R) Win 7 DDK provider)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [224768 2013-08-22] (Microsoft Corporation)
R3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [1385272 2013-04-23] (Motorola Solutions, Inc.)
R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [91712 2013-03-05] (CyberLink)
R3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [46136 2013-11-29] (LogMeIn Inc.)
S3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation)
S3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation)
S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation)
R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [115656 2013-06-03] (Intel Corporation)
R0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2013-11-11] (Microsoft Corporation)
S0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation)
R3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation)
S3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation)
R3 NETwNb64; C:\Windows\system32\DRIVERS\NETwbw02.sys [3589600 2013-09-25] (Intel Corporation)
S3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew02.sys [3597792 2013-05-14] (Intel Corporation)
R2 PEGAGFN; C:\Program Files (x86)\PHotkey\PEGAGFN.sys [14344 2009-09-11] (PEGATRON)
R3 PegaRadioSwitch; C:\Windows\System32\drivers\PegaRadioSwitch.sys [23552 2013-03-06] (Windows (R) Win 7 DDK provider)
S3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924512 2013-08-22] (Microsoft Corporation)
S3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2013-10-26] (Microsoft Corporation)
S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [29424 2013-06-04] (Synaptics Incorporated)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [33008 2013-06-04] (Synaptics Incorporated)
S0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2013-11-29] (Microsoft Corporation)
S3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation)
R0 vsock; C:\Windows\System32\drivers\vsock.sys [73296 2013-10-08] (VMware, Inc.)
R2 vstor2-mntapi20-shared; C:\Windows\SysWow64\drivers\vstor2-mntapi20-shared.sys [33872 2013-02-22] (VMware, Inc.)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2030-11-12 02:49 - 2030-11-12 02:49 - 00003306 _____ C:\WINDOWS\System32\Tasks\Dolby Selector
2030-11-12 02:49 - 2030-11-12 02:49 - 00000000 ____D C:\Program Files (x86)\Dolby Home Theater v4
2030-11-12 02:41 - 2013-11-29 15:31 - 00000000 ____D C:\Users\Public\Documents\CyberLink
2030-11-12 02:34 - 2030-11-12 02:34 - 00002324 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3922482432-2313349242-445825814-500
2013-12-29 12:33 - 2013-12-29 12:33 - 00019332 _____ C:\Users\Tobias\Desktop\FRST.txt
2013-12-29 12:14 - 2013-12-29 12:14 - 00000000 ____D C:\FRST
2013-12-29 12:12 - 2013-12-29 12:12 - 01931262 _____ (Farbar) C:\Users\Tobias\Desktop\FRST64.exe
2013-12-29 12:04 - 2013-12-29 12:04 - 00000474 _____ C:\Users\Tobias\Desktop\defogger_disable.log
2013-12-29 12:04 - 2013-12-29 12:04 - 00000000 _____ C:\Users\Tobias\defogger_reenable
2013-12-29 12:03 - 2013-12-29 12:03 - 00050477 _____ C:\Users\Tobias\Desktop\Defogger.exe
2013-12-27 16:56 - 2013-12-27 16:57 - 00000000 ____D C:\Program Files (x86)\GS Supporter
2013-12-27 16:56 - 2013-12-27 16:56 - 00000000 ____D C:\Users\UpdatusUser\AppData\Local\Torch
2013-12-27 16:56 - 2013-12-27 16:56 - 00000000 ____D C:\Users\UpdatusUser\AppData\Local\Google
2013-12-27 16:56 - 2013-12-27 16:56 - 00000000 ____D C:\Users\UpdatusUser\AppData\Local\Comodo
2013-12-27 16:56 - 2013-12-27 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\Torch
2013-12-27 16:56 - 2013-12-27 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\Google
2013-12-27 16:56 - 2013-12-27 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\Comodo
2013-12-27 16:56 - 2013-12-27 16:56 - 00000000 ____D C:\Users\Gast\AppData\Local\Torch
2013-12-27 16:56 - 2013-12-27 16:56 - 00000000 ____D C:\Users\Gast\AppData\Local\Google
2013-12-27 16:56 - 2013-12-27 16:56 - 00000000 ____D C:\Users\Gast\AppData\Local\Comodo
2013-12-27 16:56 - 2013-12-27 16:56 - 00000000 ____D C:\Users\Gast
2013-12-27 16:56 - 2013-12-27 16:56 - 00000000 ____D C:\Users\Administrator\AppData\Local\Torch
2013-12-27 16:56 - 2013-12-27 16:56 - 00000000 ____D C:\Users\Administrator\AppData\Local\Google
2013-12-27 16:56 - 2013-12-27 16:56 - 00000000 ____D C:\Users\Administrator\AppData\Local\Comodo
2013-12-27 16:56 - 2013-12-27 16:56 - 00000000 ____D C:\Users\Administrator
2013-12-27 16:56 - 2013-12-27 16:56 - 00000000 ____D C:\ProgramData\QuickSet
2013-12-27 16:56 - 2013-12-27 16:56 - 00000000 ____D C:\ProgramData\InstallMate
2013-12-27 16:56 - 2013-12-27 16:56 - 00000000 ____D C:\ProgramData\8975d47662e73285
2013-12-24 16:58 - 2013-12-24 16:58 - 00000846 _____ C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk
2013-12-24 16:57 - 2013-12-24 17:44 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\uTorrent
2013-12-24 16:57 - 2013-12-24 16:57 - 01142864 _____ (BitTorrent Inc.) C:\Users\Tobias\Downloads\utorrent_3.3.2b30416.exe
2013-12-24 10:11 - 2013-12-24 10:11 - 00000000 ____D C:\Users\Tobias\Documents\Podcast Studio
2013-12-24 10:09 - 2013-12-24 10:16 - 00000000 ____D C:\Users\Tobias\Documents\onlineTV 8
2013-12-24 10:09 - 2013-12-24 10:11 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\concept design
2013-12-24 10:09 - 2013-12-24 10:09 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\concept design
2013-12-24 10:09 - 2013-12-24 10:09 - 00000000 ____D C:\Program Files (x86)\FRANZIS
2013-12-24 10:09 - 2013-12-24 10:09 - 00000000 ____D C:\Program Files (x86)\concept design
2013-12-24 10:09 - 2012-03-01 11:08 - 00966144 _____ (Online Media Technologies Ltd.) C:\WINDOWS\SysWOW64\NCTAudioInformation2.dll
2013-12-24 10:09 - 2012-03-01 11:08 - 00877568 _____ (NCT Company Ltd.) C:\WINDOWS\SysWOW64\NCTAudioFile2.dll
2013-12-24 10:09 - 2012-03-01 11:08 - 00634880 _____ (Online Media Technologies Ltd.) C:\WINDOWS\SysWOW64\NCTAudioEditor2.dll
2013-12-24 10:09 - 2012-03-01 11:08 - 00522752 _____ (Online Media Technologies Ltd.) C:\WINDOWS\SysWOW64\NCTAudioTransform2.dll
2013-12-24 10:09 - 2012-03-01 11:08 - 00467968 _____ (Online Media Technologies Ltd.) C:\WINDOWS\SysWOW64\NCTAudioRecord2.dll
2013-12-24 10:09 - 2012-03-01 11:08 - 00467456 _____ (Online Media Technologies Ltd.) C:\WINDOWS\SysWOW64\NCTAudioPlayer2.dll
2013-12-24 10:09 - 2012-03-01 11:08 - 00307200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr70.dll
2013-12-24 10:09 - 2012-02-11 21:07 - 00413696 _____ (Gabest) C:\WINDOWS\SysWOW64\flvsplitter.ax
2013-12-24 10:09 - 2011-03-29 12:52 - 00962560 _____ (East Wind Software) C:\WINDOWS\SysWOW64\advdaudio.ocx
2013-12-24 10:09 - 2011-03-29 12:52 - 00110080 _____ C:\WINDOWS\SysWOW64\advd.dll
2013-12-24 10:09 - 2011-03-29 12:52 - 00023040 _____ C:\WINDOWS\SysWOW64\auth.dll
2013-12-24 10:09 - 2003-08-07 14:01 - 00237568 _____ C:\WINDOWS\SysWOW64\lame_enc.dll
2013-12-24 09:58 - 2013-12-24 09:58 - 25335488 _____ C:\Users\Tobias\Downloads\OnlineTV8-worldwide_CHIP-Adventskalender.exe
2013-12-23 15:00 - 2013-12-24 13:39 - 00000000 ____D C:\Users\Tobias\AppData\Local\LogMeIn Hamachi
2013-12-23 15:00 - 2013-12-23 15:00 - 00000000 ____D C:\Users\Tobias\AppData\Local\LogMeIn
2013-12-23 15:00 - 2013-12-23 15:00 - 00000000 ____D C:\ProgramData\LogMeIn
2013-12-23 14:59 - 2013-12-23 14:59 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi
2013-12-23 14:58 - 2013-12-23 14:58 - 06373376 _____ C:\Users\Tobias\Downloads\hamachi09.msi
2013-12-23 14:46 - 2013-12-24 13:06 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\.technic
2013-12-23 14:45 - 2013-12-24 10:36 - 02304092 _____ () C:\Users\Tobias\Desktop\TechnicLauncher.exe
2013-12-20 20:44 - 2013-12-20 20:44 - 00000000 ____D C:\Users\Tobias\AppData\Local\Apple Computer
2013-12-20 20:40 - 2013-02-12 17:38 - 00000000 ____D C:\Users\Tobias\Desktop\Cartoon Character
2013-12-19 15:07 - 2013-12-19 15:07 - 00003044 _____ C:\WINDOWS\windefendam.log
2013-12-19 15:07 - 2013-12-19 15:07 - 00000020 _____ C:\WINDOWS\capsys184523.log
2013-12-18 21:42 - 2013-12-18 21:42 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Need for Speed World
2013-12-18 21:22 - 2013-12-18 21:22 - 00002239 _____ C:\Users\Public\Desktop\Need For Speed World.lnk
2013-12-18 21:22 - 2013-12-18 21:22 - 00000000 ____D C:\Users\Tobias\AppData\Local\Electronic_Arts_Inc
2013-12-18 21:22 - 2013-12-18 21:22 - 00000000 ____D C:\ProgramData\Electronic Arts
2013-12-18 21:22 - 2013-12-18 21:22 - 00000000 ____D C:\Program Files (x86)\Electronic Arts
2013-12-18 21:21 - 2013-12-18 21:21 - 06400680 _____ (Electronic Arts ) C:\Users\Tobias\Downloads\setup_nfsw.exe
2013-12-18 19:10 - 2013-10-18 12:46 - 00064080 _____ (VMware, Inc.) C:\WINDOWS\system32\Drivers\vmx86.sys
2013-12-18 19:10 - 2013-10-08 18:21 - 00073296 _____ (VMware, Inc.) C:\WINDOWS\system32\Drivers\vsock.sys
2013-12-18 19:10 - 2013-10-08 18:21 - 00067664 _____ (VMware, Inc.) C:\WINDOWS\system32\vsocklib.dll
2013-12-18 19:10 - 2013-10-08 18:21 - 00063568 _____ (VMware, Inc.) C:\WINDOWS\SysWOW64\vsocklib.dll
2013-12-18 19:09 - 2013-12-18 19:09 - 00002149 _____ C:\Users\Public\Desktop\VMware Workstation.lnk
2013-12-18 19:09 - 2013-10-18 12:45 - 00930384 _____ (VMware, Inc.) C:\WINDOWS\system32\vnetlib64.dll
2013-12-18 19:09 - 2013-10-18 12:45 - 00437328 _____ (VMware, Inc.) C:\WINDOWS\SysWOW64\vmnat.exe
2013-12-18 19:09 - 2013-10-18 12:45 - 00358480 _____ (VMware, Inc.) C:\WINDOWS\SysWOW64\vmnetdhcp.exe
2013-12-18 19:09 - 2013-10-18 12:45 - 00030800 _____ (VMware, Inc.) C:\WINDOWS\system32\Drivers\vmnetuserif.sys
2013-12-18 19:09 - 2013-10-09 08:04 - 00053816 _____ (VMware, Inc.) C:\WINDOWS\system32\Drivers\hcmon.sys
2013-12-18 18:50 - 2013-12-18 18:56 - 514092024 _____ (VMware, Inc.) C:\Users\Tobias\Downloads\VMware-workstation-full-10.0.1-1379776.exe
2013-12-18 14:36 - 2013-12-18 14:36 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Apple Computer
2013-12-18 06:35 - 2012-07-09 12:47 - 00000000 ____D C:\Users\Tobias\Desktop\LogoTeck David
2013-12-18 06:28 - 2013-12-18 06:28 - 00000000 ____D C:\ProgramData\Apple Computer
2013-12-18 06:28 - 2013-12-18 06:28 - 00000000 ____D C:\Program Files (x86)\QuickTime
2013-12-18 06:27 - 2013-12-18 06:27 - 00000000 ____D C:\WINDOWS\System32\Tasks\Apple
2013-12-18 06:27 - 2013-12-18 06:27 - 00000000 ____D C:\Users\Tobias\AppData\Local\Apple
2013-12-18 06:27 - 2013-12-18 06:27 - 00000000 ____D C:\ProgramData\Apple
2013-12-18 06:27 - 2013-12-18 06:27 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2013-12-17 20:25 - 2013-06-18 16:12 - 00000000 ____D C:\Users\Tobias\Desktop\Free After Effects Template - Glitch Intro
2013-12-16 10:35 - 2013-12-17 16:49 - 00000000 ___RD C:\Users\Tobias\Dropbox
2013-12-16 10:31 - 2013-12-17 16:48 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Dropbox
2013-12-16 10:31 - 2013-12-16 10:31 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2013-12-14 14:48 - 2013-12-14 14:48 - 00675988 _____ C:\Users\Tobias\Desktop\Minecraft.exe
2013-12-13 20:03 - 2013-12-13 20:03 - 00000000 ____D C:\Users\Tobias\AppData\Local\Apps\2.0
2013-12-13 18:30 - 2013-12-13 18:30 - 00000000 ____D C:\Users\Tobias\Documents\Meine empfangenen Dateien
2013-12-13 18:27 - 2013-12-13 18:27 - 00000000 _____ C:\WINDOWS\setuperr.log
2013-12-13 18:27 - 2013-12-13 18:27 - 00000000 _____ C:\WINDOWS\setupact.log
2013-12-13 17:45 - 2013-12-23 22:40 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Spotify
2013-12-13 17:45 - 2013-12-19 19:57 - 00000000 ____D C:\Users\Tobias\AppData\Local\Spotify
2013-12-13 17:45 - 2013-12-14 11:19 - 00001810 _____ C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk
2013-12-13 13:50 - 2013-12-28 11:25 - 00002630 _____ C:\WINDOWS\PFRO.log
2013-12-12 20:23 - 2013-12-12 20:24 - 00001500 _____ C:\Users\Tobias\Desktop\lol.bat
2013-12-10 21:17 - 2013-11-12 00:41 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2013-12-10 21:17 - 2013-11-12 00:40 - 00249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2013-12-10 21:17 - 2013-11-12 00:27 - 00701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2013-12-10 21:17 - 2013-11-12 00:24 - 00840704 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2013-12-10 21:17 - 2013-11-11 03:48 - 00039768 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2013-12-10 21:17 - 2013-11-09 12:55 - 00325464 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2013-12-10 21:17 - 2013-11-09 07:37 - 01756160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2013-12-10 21:17 - 2013-11-09 06:56 - 01391104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
2013-12-10 21:17 - 2013-11-08 11:26 - 00358896 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2013-12-10 21:17 - 2013-11-08 05:43 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2013-12-10 21:17 - 2013-11-08 05:28 - 13177344 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2013-12-10 21:17 - 2013-11-08 05:26 - 11674624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2013-12-10 21:17 - 2013-11-08 05:16 - 00225792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2013-12-10 21:17 - 2013-11-08 05:15 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2013-12-10 21:17 - 2013-11-08 05:07 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbici.dll
2013-12-10 21:17 - 2013-11-08 04:41 - 01302528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2013-12-10 21:17 - 2013-11-08 04:14 - 00922624 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2013-12-10 21:17 - 2013-11-05 15:19 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2013-12-10 21:17 - 2013-11-05 15:03 - 00637952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2013-12-10 21:17 - 2013-11-05 14:57 - 00479744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2013-12-10 21:17 - 2013-11-05 14:33 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2013-12-10 21:17 - 2013-11-05 14:32 - 00744448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2013-12-10 21:17 - 2013-11-04 18:13 - 01530200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2013-12-10 21:17 - 2013-11-04 18:13 - 00382808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2013-12-10 21:17 - 2013-11-04 14:07 - 01843712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll
2013-12-10 21:17 - 2013-11-04 12:50 - 02143744 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2013-12-10 21:17 - 2013-11-04 11:32 - 02570240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
2013-12-10 21:17 - 2013-11-04 03:28 - 01816576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Display.dll
2013-12-10 21:17 - 2013-11-04 02:30 - 01765376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2013-12-10 21:17 - 2013-11-01 12:39 - 00086872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2013-12-10 21:17 - 2013-11-01 07:08 - 00747008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcli.dll
2013-12-10 21:17 - 2013-11-01 06:57 - 00544768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcli.dll
2013-12-10 21:17 - 2013-10-31 01:58 - 00372568 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2013-12-10 21:17 - 2013-10-31 01:42 - 07399256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2013-12-10 21:17 - 2013-10-31 01:33 - 01642016 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2013-12-10 21:17 - 2013-10-31 01:33 - 01506680 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2013-12-10 21:17 - 2013-10-31 01:33 - 01476184 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2013-12-10 21:17 - 2013-10-31 01:33 - 01345536 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2013-12-10 21:17 - 2013-10-26 02:54 - 00146776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\SerCx2.sys
2013-12-10 21:17 - 2013-10-24 10:31 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll
2013-12-10 21:17 - 2013-10-24 10:12 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredentialMigrationHandler.dll
2013-12-10 21:17 - 2013-10-17 12:21 - 02896896 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2013-12-10 21:17 - 2013-10-17 11:36 - 02266624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2013-12-10 21:17 - 2013-10-05 15:21 - 02140888 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2013-12-10 21:17 - 2013-10-05 15:21 - 00516496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2013-12-10 21:17 - 2013-10-05 13:05 - 01765384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2013-12-10 21:17 - 2013-10-05 13:05 - 00406400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2013-12-10 21:15 - 2013-11-26 12:54 - 23183360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2013-12-10 21:15 - 2013-11-26 11:11 - 17112576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2013-12-10 21:15 - 2013-11-26 10:41 - 02764288 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2013-12-10 21:15 - 2013-11-26 09:57 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2013-12-10 21:15 - 2013-11-26 09:38 - 02166784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2013-12-10 21:15 - 2013-11-26 09:35 - 05769216 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2013-12-10 21:15 - 2013-11-26 09:16 - 04243968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2013-12-10 21:15 - 2013-11-26 09:02 - 01995264 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2013-12-10 21:15 - 2013-11-26 08:48 - 12996608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2013-12-10 21:15 - 2013-11-26 08:32 - 01928192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2013-12-10 21:15 - 2013-11-26 08:26 - 11221504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2013-12-10 21:15 - 2013-11-26 08:07 - 02334208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2013-12-10 21:15 - 2013-11-26 07:40 - 01395200 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2013-12-10 21:15 - 2013-11-26 07:34 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2013-12-10 21:15 - 2013-11-26 07:34 - 00703488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2013-12-10 21:15 - 2013-11-26 07:33 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2013-12-10 21:15 - 2013-11-26 07:27 - 01157632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2013-12-10 21:15 - 2013-11-23 05:34 - 00393216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
2013-12-10 21:15 - 2013-11-23 05:13 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll
2013-12-10 21:15 - 2013-11-23 04:32 - 04105728 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
2013-12-10 21:15 - 2013-11-23 04:10 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
2013-12-10 21:15 - 2013-11-09 07:34 - 00615936 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
2013-12-10 21:15 - 2013-11-09 07:34 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2013-12-10 21:15 - 2013-11-09 06:52 - 00240128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2013-12-10 21:15 - 2013-11-08 08:21 - 04191744 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2013-12-10 21:15 - 2013-10-19 09:53 - 00075360 _____ (Microsoft Corporation) C:\WINDOWS\system32\imagehlp.dll
2013-12-10 21:15 - 2013-10-19 08:14 - 00070680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imagehlp.dll
2013-12-10 21:15 - 2013-10-15 09:54 - 00197120 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrrun.dll
2013-12-10 21:15 - 2013-10-15 09:03 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrrun.dll
2013-12-10 21:10 - 2013-12-27 18:29 - 01169917 _____ C:\WINDOWS\WindowsUpdate.log
2013-12-09 18:42 - 2013-12-15 14:50 - 00001456 _____ C:\Users\Tobias\AppData\Local\Adobe Für Web speichern 13.0 Prefs
2013-12-09 16:34 - 2013-12-09 16:34 - 00001306 _____ C:\Users\Public\Desktop\Paint.NET.lnk
2013-12-09 16:33 - 2013-12-09 16:34 - 00000000 ____D C:\Users\Tobias\AppData\Local\Paint.NET
2013-12-09 16:33 - 2013-12-09 16:34 - 00000000 ____D C:\Program Files\Paint.NET
2013-12-08 17:13 - 2013-12-08 17:13 - 00000000 ____D C:\Users\Tobias\Documents\Benutzerdefinierte Office-Vorlagen
2013-12-07 20:32 - 2013-12-07 20:32 - 00000000 ____D C:\NVIDIA
2013-12-07 15:24 - 2013-12-18 22:18 - 00000000 ____D C:\WINDOWS\Minidump
2013-12-06 22:20 - 2013-12-23 15:27 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\TeamViewer
2013-12-05 18:44 - 2013-12-24 17:47 - 00000000 ____D C:\Users\Tobias\Documents\Virtual Machines
2013-12-05 18:21 - 2013-12-28 13:37 - 00000000 ____D C:\Users\Tobias\Downloads\isos
2013-12-05 18:15 - 2013-12-24 23:15 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\VMware
2013-12-05 18:15 - 2013-12-24 23:15 - 00000000 ____D C:\Users\Tobias\AppData\Local\VMware
2013-12-05 18:06 - 2013-12-05 18:06 - 00000000 ____D C:\Program Files\Common Files\VMware
2013-12-05 18:05 - 2013-12-28 11:25 - 00000000 ____D C:\ProgramData\VMware
2013-12-05 18:05 - 2013-12-05 18:05 - 00000000 ____D C:\Users\Public\Documents\Shared Virtual Machines
2013-12-05 18:05 - 2013-12-05 18:05 - 00000000 ____D C:\Program Files (x86)\VMware
2013-12-05 09:09 - 2013-12-25 12:19 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\.minecraft
2013-12-04 17:57 - 2013-12-04 17:57 - 22965448 _____ (Mirillis Ltd.) C:\Users\Tobias\Downloads\action_1_16_3_setup.exe
2013-12-03 20:04 - 2013-12-03 20:04 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2013-12-03 20:04 - 2013-12-03 20:04 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2013-12-03 19:50 - 2013-12-03 19:50 - 00000000 ____D C:\Program Files\Common Files\DESIGNER
2013-12-03 19:50 - 2013-12-03 19:50 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server
2013-12-03 19:49 - 2013-12-03 19:50 - 00000000 ____D C:\Program Files\Microsoft SQL Server
2013-12-03 19:49 - 2013-12-03 19:49 - 00000000 ____D C:\WINDOWS\PCHEALTH
2013-12-03 19:46 - 2013-12-03 19:46 - 00000000 ____D C:\Program Files\Microsoft Analysis Services
2013-12-03 19:46 - 2013-12-03 19:46 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2013-12-03 19:45 - 2013-12-12 18:21 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-12-03 19:45 - 2013-12-07 17:46 - 00000000 ____D C:\Program Files\Microsoft Office
2013-12-03 19:45 - 2013-12-03 19:55 - 00000000 ____D C:\Users\Tobias\AppData\Local\Microsoft Help
2013-12-03 19:45 - 2013-12-03 19:45 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2013-12-03 19:44 - 2013-12-03 19:44 - 00000000 __RHD C:\MSOCache
2013-12-03 19:01 - 2013-12-03 19:01 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Ashampoo
2013-12-03 19:01 - 2013-12-03 19:01 - 00000000 ____D C:\Program Files (x86)\Ashampoo
2013-12-03 18:59 - 2013-12-03 19:00 - 81738984 _____ (Ashampoo GmbH & Co. KG ) C:\Users\Tobias\Downloads\ashampoo_burning_studio_2013_11.0.6_12630.exe
2013-12-03 18:44 - 2013-12-18 22:18 - 00000000 ____D C:\Users\Tobias\AppData\Local\Akamai
2013-12-03 18:44 - 2013-12-03 18:54 - 820998144 _____ C:\Users\Tobias\Documents\OfficeProfessionalPlus_x64_de-de.img
2013-12-03 18:43 - 2013-12-03 18:43 - 10025728 _____ (Akamai Technologies, Inc.) C:\Users\Tobias\Downloads\my_downloader_installer.exe
2013-12-02 21:45 - 2013-12-02 21:45 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Mirillis
2013-12-02 21:45 - 2013-12-02 21:45 - 00000000 ____D C:\ProgramData\Mirillis
2013-12-02 21:44 - 2013-12-02 21:45 - 00000000 ____D C:\Users\Tobias\AppData\Local\Mirillis
2013-12-02 21:44 - 2013-12-02 21:44 - 00000000 ____D C:\Action!
2013-12-02 21:43 - 2013-12-02 21:43 - 00002057 _____ C:\Users\Public\Desktop\Action!.lnk
2013-12-02 21:43 - 2013-12-02 21:43 - 00000000 ____D C:\Program Files (x86)\Mirillis
2013-12-02 20:50 - 2013-12-02 20:50 - 00001729 _____ C:\Users\Tobias\Desktop\Dreamweaver CC.lnk
2013-12-02 20:49 - 2013-12-02 20:49 - 00001873 _____ C:\Users\Tobias\Desktop\After Effects CC.lnk
2013-12-02 20:49 - 2013-12-02 20:49 - 00001726 _____ C:\Users\Tobias\Desktop\Photoshop CC.lnk
2013-12-02 17:12 - 2013-12-02 17:12 - 00000000 ____D C:\Users\Tobias\Documents\Adobe
2013-12-01 21:33 - 2013-12-01 21:33 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\WinRAR
2013-12-01 21:23 - 2013-12-01 21:23 - 00003506 _____ C:\WINDOWS\System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-tobias-******@hotmail.com
2013-12-01 21:22 - 2013-12-01 21:23 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\NVIDIA
2013-12-01 21:21 - 2013-12-02 17:12 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2013-12-01 21:21 - 2013-12-01 21:21 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\PDAppFlex
2013-12-01 21:16 - 2013-12-02 16:25 - 00000000 ____D C:\Program Files\Adobe
2013-12-01 21:13 - 2013-12-02 16:25 - 00000000 ____D C:\Program Files\Common Files\Adobe
2013-12-01 20:51 - 2013-12-01 21:16 - 00000000 ____D C:\ProgramData\Adobe
2013-12-01 20:47 - 2013-12-01 20:47 - 00001090 _____ C:\Users\Public\Desktop\Adobe Creative Cloud.lnk
2013-12-01 20:45 - 2013-12-02 16:53 - 00000000 ____D C:\Program Files (x86)\Adobe
2013-12-01 19:23 - 2013-12-01 19:23 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2013-12-01 19:23 - 2013-12-01 19:23 - 00000000 ____D C:\Program Files\WinRAR
2013-12-01 19:20 - 2013-12-24 23:16 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\FileZilla
2013-12-01 19:20 - 2013-12-01 19:20 - 00000000 ____D C:\Program Files (x86)\FileZilla FTP Client
2013-12-01 19:15 - 2013-12-01 19:15 - 00002774 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
2013-12-01 19:15 - 2013-12-01 19:15 - 00000000 ____D C:\Program Files\CCleaner
2013-12-01 18:34 - 2013-12-01 18:33 - 00001091 _____ C:\Users\Tobias\Desktop\Notepad++.lnk
2013-12-01 18:33 - 2013-12-05 10:04 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Notepad++
2013-12-01 18:33 - 2013-12-01 18:33 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
2013-12-01 18:33 - 2013-12-01 18:33 - 00000000 ____D C:\Program Files (x86)\Notepad++
2013-12-01 16:21 - 2013-12-29 11:03 - 00000000 __RDO C:\Users\Tobias\SkyDrive
2013-12-01 14:46 - 2013-12-01 14:46 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2013-11-30 22:18 - 2013-11-30 22:18 - 10485760 _____ C:\Users\Tobias\Documents\pwddotit.xss
2013-11-30 19:34 - 2013-11-30 22:19 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\TrueCrypt
2013-11-30 19:34 - 2013-11-30 19:35 - 00000000 ____D C:\Program Files\TrueCrypt
2013-11-30 19:34 - 2013-11-30 19:34 - 00231376 _____ (TrueCrypt Foundation) C:\WINDOWS\system32\Drivers\truecrypt.sys
2013-11-30 19:05 - 2013-12-18 18:49 - 00000000 ___RD C:\Users\Tobias\Desktop\Schule
2013-11-30 19:05 - 2013-11-27 20:57 - 00007446 _____ C:\Users\Tobias\Documents\Lieder.txt
2013-11-30 19:05 - 2013-11-17 12:23 - 00000119 _____ C:\Users\Tobias\Documents\MoreRamMC.bat
2013-11-30 19:04 - 2013-05-11 21:44 - 104857600 _____ C:\Users\Tobias\Documents\container.txt
2013-11-30 18:56 - 2013-11-30 18:56 - 00000000 ____H C:\Users\Tobias\Documents\Default.rdp
2013-11-30 18:54 - 2013-11-30 18:54 - 00003197 _____ C:\Users\Tobias\Desktop\Eclipse.lnk
2013-11-30 18:52 - 2013-12-16 09:43 - 00000000 ____D C:\Users\Tobias\Documents\eclipse
2013-11-30 18:43 - 2013-11-30 18:42 - 00312744 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe
2013-11-30 18:43 - 2013-11-30 18:42 - 00189352 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe
2013-11-30 18:43 - 2013-11-30 18:42 - 00189352 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe
2013-11-30 18:43 - 2013-11-30 18:42 - 00108968 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll
2013-11-30 18:42 - 2013-11-30 18:42 - 00000000 ____D C:\Program Files\Java
2013-11-30 17:11 - 2013-11-30 17:11 - 00000000 ____D C:\Users\Tobias\AppData\Local\Intel_Corporation
2013-11-30 15:10 - 2013-11-30 14:06 - 00000686 _____ C:\Users\Tobias\Documents\indexfile.txt
2013-11-30 12:28 - 2013-11-30 12:28 - 00000000 ____D C:\Users\Tobias\AppData\Local\Macromedia
2013-11-30 12:26 - 2013-12-29 12:32 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2013-11-30 12:26 - 2013-12-10 16:50 - 00003772 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2013-11-30 12:25 - 2013-12-29 11:05 - 00000000 ____D C:\Users\Tobias\AppData\Local\Adobe
2013-11-30 12:11 - 2013-12-23 14:48 - 00000000 ____D C:\Program Files (x86)\TeamViewer
2013-11-30 12:03 - 2013-11-30 12:03 - 00000000 ____D C:\Users\Tobias\Documents\Skype Voice Records
2013-11-30 12:03 - 2013-11-30 12:03 - 00000000 ____D C:\Users\Tobias\Documents\Clownfish Avatars
2013-11-30 12:03 - 2013-11-30 12:03 - 00000000 ____D C:\Program Files (x86)\Clownfish
2013-11-30 11:49 - 2013-11-30 11:49 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\TuneUp Software
2013-11-30 11:49 - 2013-11-30 11:49 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\AVG2014
2013-11-30 11:48 - 2013-12-27 16:56 - 00000000 ____D C:\ProgramData\AVG2014
2013-11-30 11:48 - 2013-11-30 11:48 - 00000000 ___HD C:\$AVG
2013-11-30 11:47 - 2013-11-30 11:47 - 00000000 ____D C:\Program Files (x86)\AVG
2013-11-30 11:46 - 2013-12-29 11:07 - 00000000 ____D C:\ProgramData\MFAData
2013-11-30 11:46 - 2013-11-30 11:55 - 00000000 ____D C:\Users\Tobias\AppData\Local\Avg2014
2013-11-30 11:46 - 2013-11-30 11:46 - 00000000 ____D C:\Users\Tobias\AppData\Local\MFAData
2013-11-30 11:30 - 2013-12-29 11:46 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Skype
2013-11-30 11:30 - 2013-11-30 11:30 - 00000000 ___RD C:\Program Files (x86)\Skype
2013-11-30 11:30 - 2013-11-30 11:30 - 00000000 ____D C:\ProgramData\Skype
2013-11-30 11:24 - 2013-12-10 21:55 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-11-30 11:24 - 2013-12-10 16:43 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-11-30 11:24 - 2013-12-10 16:36 - 00000000 ____D C:\Users\Tobias\AppData\Local\Mozilla
2013-11-30 11:24 - 2013-11-30 11:24 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Mozilla
2013-11-30 11:24 - 2013-11-30 11:24 - 00000000 ____D C:\ProgramData\Mozilla
2013-11-30 10:54 - 2013-11-30 10:54 - 00000000 ___RD C:\WINDOWS\BrowserChoice
2013-11-30 10:47 - 2013-12-03 19:01 - 00000000 ____D C:\Users\Tobias\AppData\Local\Ashampoo
2013-11-30 00:11 - 2013-11-30 00:11 - 00001454 _____ C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-11-30 00:11 - 2013-11-30 00:11 - 00000020 ___SH C:\Users\Tobias\ntuser.ini
2013-11-30 00:08 - 2013-11-30 00:08 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik
2013-11-30 00:08 - 2013-11-30 00:08 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder
2013-11-30 00:08 - 2013-11-30 00:08 - 00000000 _SHDL C:\Users\Default\Vorlagen
2013-11-30 00:08 - 2013-11-30 00:08 - 00000000 _SHDL C:\Users\Default\Startmenü
2013-11-30 00:08 - 2013-11-30 00:08 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung
2013-11-30 00:08 - 2013-11-30 00:08 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen
2013-11-30 00:08 - 2013-11-30 00:08 - 00000000 _SHDL C:\Users\Default\Eigene Dateien
2013-11-30 00:08 - 2013-11-30 00:08 - 00000000 _SHDL C:\Users\Default\Druckumgebung
2013-11-30 00:08 - 2013-11-30 00:08 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik
2013-11-30 00:08 - 2013-11-30 00:08 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder
2013-11-30 00:08 - 2013-11-30 00:08 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-11-30 00:08 - 2013-11-30 00:08 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf
2013-11-30 00:08 - 2013-11-30 00:08 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten
2013-11-30 00:08 - 2013-11-30 00:08 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten
2013-11-30 00:08 - 2013-11-30 00:08 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik
2013-11-30 00:08 - 2013-11-30 00:08 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder
2013-11-30 00:08 - 2013-11-30 00:08 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-11-30 00:08 - 2013-11-30 00:08 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf
2013-11-30 00:08 - 2013-11-30 00:08 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten
2013-11-30 00:08 - 2013-11-30 00:08 - 00000000 _SHDL C:\Programme
2013-11-30 00:08 - 2013-11-30 00:08 - 00000000 _SHDL C:\ProgramData\Vorlagen
2013-11-30 00:08 - 2013-11-30 00:08 - 00000000 _SHDL C:\ProgramData\Startmenü
2013-11-30 00:08 - 2013-11-30 00:08 - 00000000 _SHDL C:\ProgramData\Dokumente
2013-11-30 00:08 - 2013-11-30 00:08 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten
2013-11-30 00:08 - 2013-11-30 00:08 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien
2013-11-30 00:08 - 2013-11-30 00:08 - 00000000 _SHDL C:\Dokumente und Einstellungen
2013-11-30 00:07 - 2013-11-30 00:07 - 00022960 _____ C:\WINDOWS\system32\emptyregdb.dat
2013-11-30 00:04 - 2013-11-30 00:04 - 00000020 ___SH C:\Users\UpdatusUser\ntuser.ini
2013-11-29 23:53 - 2013-11-29 23:53 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate
2013-11-29 23:52 - 2013-12-29 12:04 - 00000000 ____D C:\Users\Tobias
2013-11-29 23:52 - 2013-11-29 23:52 - 00000000 _SHDL C:\Users\UpdatusUser\Vorlagen
2013-11-29 23:52 - 2013-11-29 23:52 - 00000000 _SHDL C:\Users\UpdatusUser\Startmenü
2013-11-29 23:52 - 2013-11-29 23:52 - 00000000 _SHDL C:\Users\UpdatusUser\Netzwerkumgebung
2013-11-29 23:52 - 2013-11-29 23:52 - 00000000 _SHDL C:\Users\UpdatusUser\Lokale Einstellungen
2013-11-29 23:52 - 2013-11-29 23:52 - 00000000 _SHDL C:\Users\UpdatusUser\Eigene Dateien
2013-11-29 23:52 - 2013-11-29 23:52 - 00000000 _SHDL C:\Users\UpdatusUser\Druckumgebung
2013-11-29 23:52 - 2013-11-29 23:52 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Musik
2013-11-29 23:52 - 2013-11-29 23:52 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Bilder
2013-11-29 23:52 - 2013-11-29 23:52 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-11-29 23:52 - 2013-11-29 23:52 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Verlauf
2013-11-29 23:52 - 2013-11-29 23:52 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Anwendungsdaten
2013-11-29 23:52 - 2013-11-29 23:52 - 00000000 _SHDL C:\Users\UpdatusUser\Anwendungsdaten
2013-11-29 23:52 - 2013-11-29 23:52 - 00000000 _SHDL C:\Users\Tobias\Vorlagen
2013-11-29 23:52 - 2013-11-29 23:52 - 00000000 _SHDL C:\Users\Tobias\Startmenü
2013-11-29 23:52 - 2013-11-29 23:52 - 00000000 _SHDL C:\Users\Tobias\Netzwerkumgebung
2013-11-29 23:52 - 2013-11-29 23:52 - 00000000 _SHDL C:\Users\Tobias\Lokale Einstellungen
2013-11-29 23:52 - 2013-11-29 23:52 - 00000000 _SHDL C:\Users\Tobias\Eigene Dateien
2013-11-29 23:52 - 2013-11-29 23:52 - 00000000 _SHDL C:\Users\Tobias\Druckumgebung
2013-11-29 23:52 - 2013-11-29 23:52 - 00000000 _SHDL C:\Users\Tobias\Documents\Eigene Musik
2013-11-29 23:52 - 2013-11-29 23:52 - 00000000 _SHDL C:\Users\Tobias\Documents\Eigene Bilder
2013-11-29 23:52 - 2013-11-29 23:52 - 00000000 _SHDL C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-11-29 23:52 - 2013-11-29 23:52 - 00000000 _SHDL C:\Users\Tobias\AppData\Local\Verlauf
2013-11-29 23:52 - 2013-11-29 23:52 - 00000000 _SHDL C:\Users\Tobias\AppData\Local\Anwendungsdaten
2013-11-29 23:52 - 2013-11-29 23:52 - 00000000 _SHDL C:\Users\Tobias\Anwendungsdaten
2013-11-29 23:52 - 2013-11-29 23:52 - 00000000 ___RD C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2013-11-29 23:52 - 2013-11-29 23:52 - 00000000 ___RD C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2013-11-29 23:52 - 2013-11-29 23:52 - 00000000 ___RD C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2013-11-29 23:52 - 2013-11-29 23:52 - 00000000 ___RD C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2013-11-29 23:52 - 2013-08-22 16:36 - 00000000 ___RD C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2013-11-29 23:52 - 2013-08-22 16:36 - 00000000 ___RD C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2013-11-29 23:52 - 2013-08-22 16:36 - 00000000 ____D C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2013-11-29 23:52 - 2013-08-22 16:36 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2013-11-29 23:51 - 2013-11-30 00:07 - 00028578 _____ C:\WINDOWS\diagwrn.xml
2013-11-29 23:51 - 2013-11-30 00:07 - 00028578 _____ C:\WINDOWS\diagerr.xml
2013-11-29 23:47 - 2013-11-29 23:57 - 00000000 ____D C:\Program Files\Intel
2013-11-29 23:47 - 2013-11-29 23:57 - 00000000 ____D C:\Program Files (x86)\Intel
2013-11-29 23:47 - 2013-11-29 23:47 - 00000264 _____ C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job
2013-11-29 23:47 - 2013-11-29 23:47 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_SynTP_01009.Wdf
2013-11-29 23:47 - 2013-11-29 23:47 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_btmhsf_01011.Wdf
2013-11-29 23:47 - 2013-11-29 23:47 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2013-11-29 23:47 - 2013-11-29 23:47 - 00000000 ____D C:\Program Files\Realtek
2013-11-29 23:47 - 2013-10-03 23:43 - 00064000 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL
2013-11-29 23:47 - 2013-10-03 23:43 - 00060416 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL
2013-11-29 23:46 - 2013-12-18 22:19 - 00000000 ____D C:\ProgramData\NVIDIA
2013-11-29 23:46 - 2013-12-18 22:18 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2013-11-29 23:46 - 2013-12-07 17:46 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2013-11-29 23:46 - 2013-12-06 19:55 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2013-11-29 23:46 - 2013-11-29 23:46 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01009.Wdf
2013-11-29 23:46 - 2013-11-29 23:46 - 00000000 ____D C:\Program Files\Synaptics
2013-11-29 23:46 - 2013-05-24 09:38 - 06415648 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2013-11-29 23:46 - 2013-05-24 09:38 - 03461920 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2013-11-29 23:46 - 2013-05-24 09:37 - 03182005 _____ C:\WINDOWS\system32\nvcoproc.bin
2013-11-29 23:46 - 2013-05-24 09:37 - 02558240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2013-11-29 23:46 - 2013-05-24 09:37 - 01001760 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2013-11-29 23:46 - 2013-05-24 09:37 - 00884512 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe
2013-11-29 23:46 - 2013-05-24 09:37 - 00118560 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2013-11-29 23:46 - 2013-05-24 09:37 - 00076064 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll
2013-11-29 23:46 - 2013-05-24 09:37 - 00063776 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2013-11-29 23:44 - 2013-12-10 16:59 - 00000000 ___DC C:\WINDOWS\Panther
2013-11-29 23:44 - 2013-11-29 23:44 - 00000000 __SHD C:\Recovery
2013-11-29 23:43 - 2013-11-29 23:43 - 01341288 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2013-11-29 23:43 - 2013-11-29 23:43 - 01067008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2013-11-29 23:42 - 2013-11-29 23:42 - 21196664 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2013-11-29 23:42 - 2013-11-29 23:42 - 18642504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2013-11-29 23:42 - 2013-11-29 23:42 - 18577408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2013-11-29 23:42 - 2013-11-29 23:42 - 13925888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2013-11-29 23:42 - 2013-11-29 23:42 - 01286552 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2013-11-29 23:42 - 2013-11-29 23:42 - 01217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2013-11-29 23:42 - 2013-11-29 23:42 - 01018960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2013-11-29 23:42 - 2013-11-29 23:42 - 00977408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2013-11-29 23:42 - 2013-11-29 23:42 - 00872840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2013-11-29 23:42 - 2013-11-29 23:42 - 00698232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2013-11-29 23:42 - 2013-11-29 23:42 - 00294400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2013-11-29 23:42 - 2013-11-29 23:42 - 00225792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Sensors.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 06639616 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 05769728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 04599808 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 03934208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 03532288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 03395920 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 02801664 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 02617344 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 02551640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2013-11-29 23:41 - 2013-11-29 23:41 - 02328872 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2013-11-29 23:41 - 2013-11-29 23:41 - 02295808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 02134120 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 02065448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2013-11-29 23:41 - 2013-11-29 23:41 - 01799944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 01704448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 01584128 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 01399176 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 01373872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 01362944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 01287064 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 01231360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 01204968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 01200640 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2013-11-29 23:41 - 2013-11-29 23:41 - 01160704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 01147904 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 01085952 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 01067080 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 01036288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 01019392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 01011712 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00920064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00909312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00903168 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00888832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00883184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00869888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00830464 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00795648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00762368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.Http.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00761856 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00708616 _____ (Microsoft Corporation) C:\WINDOWS\system32\iuilp.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00699840 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d10level9.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00656384 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00631296 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2013-11-29 23:41 - 2013-11-29 23:41 - 00621056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00618496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apphelp.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00607744 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00578952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d10level9.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\apphelp.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00533504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00531968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00523096 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2013-11-29 23:41 - 2013-11-29 23:41 - 00518656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2013-11-29 23:41 - 2013-11-29 23:41 - 00492544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00481392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00465960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00454656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2013-11-29 23:41 - 2013-11-29 23:41 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00391512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00385528 _____ C:\WINDOWS\system32\ApnDatabase.xml
2013-11-29 23:41 - 2013-11-29 23:41 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00380656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00345552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00338944 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe
2013-11-29 23:41 - 2013-11-29 23:41 - 00335360 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappcfg.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00331776 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapphost.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00326024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\system32\eapp3hst.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00317616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcsvDevice.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00272896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappcfg.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00270848 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys
2013-11-29 23:41 - 2013-11-29 23:41 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapphost.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00258904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdyboost.sys
2013-11-29 23:41 - 2013-11-29 23:41 - 00255488 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00245248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eapp3hst.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00235960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\miutils.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWfdProvider.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00180224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\miutils.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00171864 _____ (Microsoft Corporation) C:\WINDOWS\system32\kd_02_8086.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\msched.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00113152 _____ (Microsoft Corporation) C:\WINDOWS\system32\shsetup.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe
2013-11-29 23:41 - 2013-11-29 23:41 - 00104320 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\eappgnui.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shsetup.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00093184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\eappgnui.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00088272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWbPrxy.exe
2013-11-29 23:41 - 2013-11-29 23:41 - 00081920 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
2013-11-29 23:41 - 2013-11-29 23:41 - 00057176 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2013-11-29 23:41 - 2013-11-29 23:41 - 00054776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2013-11-29 23:41 - 2013-11-29 23:41 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ftp.exe
2013-11-29 23:41 - 2013-11-29 23:41 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ftp.exe
2013-11-29 23:41 - 2013-11-29 23:41 - 00044936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll
2013-11-29 23:41 - 2013-11-29 23:41 - 00031064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ploptin.dll
2013-11-29 23:39 - 2013-11-29 23:39 - 01943536 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2013-11-29 23:39 - 2013-11-29 23:39 - 01581968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2013-11-29 23:39 - 2013-11-29 23:39 - 01104384 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2013-11-29 23:39 - 2013-11-29 23:39 - 00828416 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2013-11-29 23:39 - 2013-11-29 23:39 - 00262144 _____ C:\WINDOWS\system32\config\userdiff
2013-11-29 23:39 - 2013-11-29 23:39 - 00136536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys
2013-11-29 23:36 - 2013-11-29 23:59 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2013-11-29 23:36 - 2013-11-29 23:36 - 00155480 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbccgp.sys
2013-11-29 23:36 - 2013-11-29 23:36 - 00000000 ____D C:\Program Files\Reference Assemblies
2013-11-29 23:36 - 2013-11-29 23:36 - 00000000 ____D C:\Program Files\MSBuild
2013-11-29 23:36 - 2013-11-29 23:36 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2013-11-29 23:36 - 2013-11-29 23:36 - 00000000 ____D C:\Program Files (x86)\MSBuild
2013-11-29 23:36 - 2013-08-03 05:48 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2013-11-29 23:36 - 2013-08-03 05:48 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2013-11-29 23:36 - 2013-08-03 05:48 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2013-11-29 23:36 - 2013-08-03 05:41 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2013-11-29 23:36 - 2013-08-03 05:41 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-11-29 23:36 - 2013-08-03 05:41 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2013-11-29 20:24 - 2013-11-29 20:24 - 00003554 _____ C:\WINDOWS\System32\Tasks\CreateChoiceProcessTask
2013-11-29 20:07 - 2013-12-10 21:40 - 00000000 ____D C:\WINDOWS\system32\MRT
2013-11-29 16:19 - 2013-11-29 16:19 - 00046136 ____H (LogMeIn Inc.) C:\WINDOWS\system32\Drivers\Hamdrv.sys
2013-11-29 15:49 - 2013-11-29 15:49 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf
2013-11-29 15:46 - 2013-11-29 15:46 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Macromedia
2013-11-29 15:38 - 2013-12-28 12:52 - 00003598 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-931761489-1796348092-2382460023-1002
2013-11-29 15:28 - 2013-11-30 12:43 - 00000000 ____D C:\Users\Tobias\Documents\Youcam
2013-11-29 15:28 - 2013-11-29 15:28 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Intel Corporation
2013-11-29 15:27 - 2013-11-29 15:27 - 00000000 ____D C:\Users\Tobias\AppData\Local\CyberLink
2013-11-29 15:26 - 2013-12-16 10:32 - 00000000 ___RD C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-11-29 15:26 - 2013-11-30 00:11 - 00000000 ___RD C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2013-11-29 15:26 - 2013-11-29 15:26 - 00000000 ____D C:\Users\Tobias\AppData\Local\Power2Go8
2013-11-29 15:25 - 2013-12-13 16:53 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Adobe
2013-11-29 15:25 - 2012-10-17 14:13 - 00001655 _____ C:\Users\Default\Desktop\LIFESTORE.lnk
2013-11-29 15:25 - 2012-10-17 14:13 - 00001655 _____ C:\Users\Default User\Desktop\LIFESTORE.lnk
2013-11-29 15:25 - 2012-09-21 04:40 - 00001021 _____ C:\Users\Default\Desktop\Gutscheine bei coupons4u.lnk
2013-11-29 15:25 - 2012-09-21 04:40 - 00001021 _____ C:\Users\Default User\Desktop\Gutscheine bei coupons4u.lnk
2013-11-29 15:25 - 2012-09-15 19:55 - 00002786 _____ C:\Users\Default\Desktop\MEDIONmail.lnk
2013-11-29 15:25 - 2012-09-15 19:55 - 00002786 _____ C:\Users\Default User\Desktop\MEDIONmail.lnk
2013-11-29 15:25 - 2012-09-15 19:55 - 00001779 _____ C:\Users\Default\Desktop\MEDION Serviceportal.lnk
2013-11-29 15:25 - 2012-09-15 19:55 - 00001779 _____ C:\Users\Default User\Desktop\MEDION Serviceportal.lnk
2013-11-29 15:24 - 2013-12-16 10:20 - 00000000 ____D C:\Users\Tobias\AppData\Local\Packages
2013-11-29 15:24 - 2013-12-07 17:59 - 00000000 ____D C:\Users\Tobias\AppData\Local\VirtualStore |