FIXlog
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 08-01-2014
Ran by Munfrosch at 2014-01-08 17:29:58 Run:1
Running from C:\Users\Munfrosch\Downloads
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
HKLM\...\Run: [a474c6d2b75d64b3ed1078b377b83c48] - "C:\Windows\svchost.exe" ..
C:\Windows\svchost.exe
Winsock: Catalog5 01 C:\Windows\SysWOW64\mswsock.dll [232448] (Microsoft Corporation) ATTENTION: The LibraryPath should be "%SystemRoot%\system32\NLAapi.dll"
Winsock: Catalog5-x64 01 %SystemRoot%\System32\mswsock.dll [326144] (Microsoft Corporation) ATTENTION: The LibraryPath should be "%SystemRoot%\system32\NLAapi.dll"
*****************
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\a474c6d2b75d64b3ed1078b377b83c48 => Value deleted successfully.
"C:\Windows\svchost.exe" => File/Directory not found.
Winsock: Catalog5 entry 000000000001\\LibraryPath was set successfully to %SystemRoot%\system32\NLAapi.dll
Winsock: Catalog5-x64 entry 000000000001\\LibraryPath was set successfully to %SystemRoot%\system32\NLAapi.dll
==== End of Fixlog ====
Malware AM habe beide Logs genommen
Malwarebytes Anti-Malware (Test) 1.75.0.1300
www.malwarebytes.org
Datenbank Version: v2014.01.08.04
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 9.0.8112.16421
Munfrosch :: USG [Administrator]
Schutz: Deaktiviert
08.01.2014 17:34:28
mbam-log-2014-01-08 (17-34-28).txt
Art des Suchlaufs: Quick-Scan
Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM
Deaktivierte Suchlaufeinstellungen: P2P
Durchsuchte Objekte: 243823
Laufzeit: 5 Minute(n), 59 Sekunde(n)
Infizierte Speicherprozesse: 0
(Keine bösartigen Objekte gefunden)
Infizierte Speichermodule: 0
(Keine bösartigen Objekte gefunden)
Infizierte Registrierungsschlüssel: 1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1D2ABF6A-2B19-3E94-0991-5B5BDB7134DA} (PUP.Optional.ShoppingChip) -> Erfolgreich gelöscht und in Quarantäne gestellt.
Infizierte Registrierungswerte: 0
(Keine bösartigen Objekte gefunden)
Infizierte Dateiobjekte der Registrierung: 0
(Keine bösartigen Objekte gefunden)
Infizierte Verzeichnisse: 0
(Keine bösartigen Objekte gefunden)
Infizierte Dateien: 9
C:\Users\Munfrosch\AppData\Roaming\eRObqcvcmht7.exe (Trojan.MSIL.Gen) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\Munfrosch\Downloads\Babylon10_setup.exe (PUP.Optional.Babylon.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\Munfrosch\Downloads\Facebook Account Hacker v3 Setup.exe (Spyware.Password) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\Munfrosch\Downloads\Facebook Hacker v1.8 Pro + Key.rar (Spyware.Password) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\Munfrosch\Downloads\Facebook Password Hacker V4.0.exe (Spyware.Password) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\Munfrosch\Downloads\freevideocallrecorder.exe (PUP.Optional.OpenCandy) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\Munfrosch\Downloads\SoftonicDownloader_fuer_ashampoo-burning-studio.exe (PUP.Optional.Softonic) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\Munfrosch\Downloads\SoftonicDownloader_fuer_oront-burning-kit.exe (PUP.Optional.Softonic) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\Munfrosch\Downloads\Ultimate-Facebook-Hack-4.201.exe (Trojan.Facebook) -> Erfolgreich gelöscht und in Quarantäne gestellt.
(Ende)
2014/01/08 17:31:09 +0100 USG Munfrosch MESSAGE Starting protection
2014/01/08 17:31:09 +0100 USG Munfrosch MESSAGE Protection started successfully
2014/01/08 17:31:09 +0100 USG Munfrosch MESSAGE Starting IP protection
2014/01/08 17:31:26 +0100 USG Munfrosch MESSAGE IP Protection started successfully
2014/01/08 17:31:31 +0100 USG Munfrosch MESSAGE Starting database refresh
2014/01/08 17:31:31 +0100 USG Munfrosch MESSAGE Stopping IP protection
2014/01/08 17:31:34 +0100 USG Munfrosch MESSAGE IP Protection stopped successfully
2014/01/08 17:31:37 +0100 USG Munfrosch MESSAGE Database refreshed successfully
2014/01/08 17:31:37 +0100 USG Munfrosch MESSAGE Starting IP protection
2014/01/08 17:31:39 +0100 USG Munfrosch MESSAGE IP Protection started successfully
2014/01/08 17:31:54 +0100 USG Munfrosch MESSAGE Stopping protection
2014/01/08 17:31:54 +0100 USG Munfrosch MESSAGE Protection stopped successfully
2014/01/08 17:31:54 +0100 USG Munfrosch MESSAGE Stopping IP protection
2014/01/08 17:31:54 +0100 USG Munfrosch MESSAGE IP Protection stopped successfully
2014/01/08 17:31:54 +0100 USG Munfrosch MESSAGE Protection stopped
2014/01/08 17:47:02 +0100 USG (null) MESSAGE Starting protection
2014/01/08 17:47:02 +0100 USG (null) MESSAGE Protection started successfully
2014/01/08 17:47:02 +0100 USG (null) MESSAGE Starting IP protection
2014/01/08 17:47:05 +0100 USG (null) MESSAGE IP Protection started successfully
2014/01/08 17:53:50 +0100 USG Munfrosch MESSAGE Executing scheduled update: Daily
2014/01/08 17:53:52 +0100 USG Munfrosch MESSAGE Database already up-to-date
2014/01/08 18:06:39 +0100 USG Munfrosch DETECTION C:\AdwCleaner\Quarantine\C\Program Files (x86)\Movies Toolbar\SafetyNut\safetynut.dll.vir PUP.Optional.SafetyNut.A QUARANTINE
2014/01/08 18:06:39 +0100 USG Munfrosch DETECTION C:\AdwCleaner\Quarantine\C\Program Files (x86)\Movies Toolbar\SafetyNut\safetynut.exe.vir PUP.Optional.SafetyNut.A QUARANTINE
2014/01/08 18:06:40 +0100 USG Munfrosch DETECTION C:\AdwCleaner\Quarantine\C\Program Files (x86)\Movies Toolbar\SafetyNut\SafetyNutManager.exe.vir PUP.Optional.SafetyNut.A QUARANTINE
2014/01/08 18:06:40 +0100 USG Munfrosch DETECTION C:\AdwCleaner\Quarantine\C\Program Files (x86)\Movies Toolbar\SafetyNut\safetynut_ie.dll.vir PUP.Optional.SafetyNut.A QUARANTINE
2014/01/08 18:06:40 +0100 USG Munfrosch DETECTION C:\AdwCleaner\Quarantine\C\Program Files (x86)\Movies Toolbar\SafetyNut\x64\safetynut.dll.vir PUP.Optional.SafetyNut.A QUARANTINE
2014/01/08 18:06:40 +0100 USG Munfrosch DETECTION C:\AdwCleaner\Quarantine\C\Program Files (x86)\Movies Toolbar\SafetyNut\x64\safetynut_ie.dll.vir PUP.Optional.SafetyNut.A QUARANTINE
2014/01/08 18:07:32 +0100 USG Munfrosch MESSAGE Stopping protection
2014/01/08 18:07:32 +0100 USG Munfrosch MESSAGE Protection stopped successfully
2014/01/08 18:07:32 +0100 USG Munfrosch MESSAGE Stopping IP protection
2014/01/08 18:07:32 +0100 USG Munfrosch MESSAGE IP Protection stopped successfully
2014/01/08 18:07:32 +0100 USG Munfrosch MESSAGE Protection stopped
ESET
ESETSmartInstaller@High as downloader log:
all ok
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6920
# api_version=3.0.2
# EOSSerial=14aca2f16006dd4c9fe6df265674953c
# engine=16562
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=false
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2014-01-08 08:27:38
# local_time=2014-01-08 09:27:38 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# lang=1033
# osver=6.1.7601 NT Service Pack 1
# compatibility_mode=5893 16776573 100 94 17082 140842708 0 0
# scanned=386259
# found=5
# cleaned=0
# scan_time=12488
sh=3AEF532A0211CE7869F0EB51E940D9E0C7CAE321 ft=1 fh=c7560653d3ee2314 vn="a variant of Win32/Adware.Yontoo.B application" ac=I fn="C:\AdwCleaner\Quarantine\C\ProgramData\Tarma Installer\{361E80BE-388B-4270-BF54-A10C2B756504}\_Setupx.dll.vir"
sh=5B498370198DBA6708D5718827A04FC4DF44EF6E ft=1 fh=6642299480f65a60 vn="probably a variant of Win32/KeyLogger.Refog.B application" ac=I fn="C:\Lokaler Datenträger\Programme\KGB\MPKView.exe"
sh=06F4792D1C27FC9CC6CAC78E2F0AFAF234BBF780 ft=1 fh=b8978c1f52bab1d5 vn="a variant of MSIL/Injector.CBD trojan" ac=I fn="C:\Qoobox\Quarantine\C\Users\Munfrosch\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\a474c6d2b75d64b3ed1078b377b83c48.exe.vir"
sh=06F4792D1C27FC9CC6CAC78E2F0AFAF234BBF780 ft=1 fh=b8978c1f52bab1d5 vn="a variant of MSIL/Injector.CBD trojan" ac=I fn="C:\Qoobox\Quarantine\C\Windows\svchost.exe.vir"
sh=675F7CFBE0D96F10D8ADCC4FF390C5F2AA58ABB5 ft=1 fh=62f13d4db626b490 vn="multiple threats" ac=I fn="C:\Users\Munfrosch\Downloads\Facebook Hacker v1.8 Pro + Key\Facebook Hacker v1.8 Pro\Facebook Hacker v1.8 Pro By Anonymous.exe"
FRST
FRST Logfile:
FRST Logfile:
Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 08-01-2014 01
Ran by Munfrosch (administrator) on USG on 09-01-2014 17:44:12
Running from C:\Users\Munfrosch\Downloads
Windows 7 Ultimate Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(ATI Technologies Inc.) C:\Windows\System32\Ati2evxx.exe
() C:\Program Files (x86)\Gigabyte\EasySaver\essvr.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
() C:\Windows\SysWOW64\XSrvSetup.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
(StarWind Software) C:\Program Files (x86)\Alcohol 120\StarWind\StarWindServiceAE.exe
(ATI Technologies Inc.) C:\Windows\System32\Ati2evxx.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(NEC Electronics Corporation) C:\Program Files (x86)\NEC Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\System32\taskmgr.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_170.exe
(OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\scalc.exe
(OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe
(OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(VideoLAN) C:\Program Files (x86)\VLC\vlc.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [10144288 2010-04-06] (Realtek Semiconductor)
HKLM-x32\...\Run: [] - [x]
HKLM-x32\...\Run: [NUSB3MON] - C:\Program Files (x86)\NEC Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [106496 2009-11-20] (NEC Electronics Corporation)
HKLM-x32\...\Run: [JMB36X IDE Setup] - C:\Windows\RaidTool\xInsIDE.exe [43632 2010-01-19] ()
HKLM-x32\...\Run: [HP Software Update] - C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe [49208 2011-05-10] (Hewlett-Packard)
HKLM-x32\...\Run: [CloneCDTray] - C:\Program Files (x86)\SlySoft\CloneCD\CloneCDTray.exe [57344 2009-01-29] (SlySoft, Inc.)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-11] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKCU\...\Run: [ISUSPM Startup] - C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe [221184 2005-02-17] (InstallShield Software Corporation)
HKCU\...\Run: [AlcoholAutomount] - C:\Program Files (x86)\Alcohol 120\AxAutoMntSrv.exe [33120 2010-08-20] (Alcohol Soft Development Team)
HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd)
HKCU\...\Run: [icq] - C:\Users\Munfrosch\AppData\Roaming\ICQM\icq.exe [28773224 2013-05-23] (ICQ)
HKCU\...\Run: [Steam] - C:\Program Files (x86)\Steam\Steam.exe [1815464 2014-01-07] (Valve Corporation)
HKCU\...\Policies\Explorer: [NoDriveTypeAutoRun] 0x95000000
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.google.de/
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x01A970B010BBCB01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\smart web printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\smart web printing\hpswp_BHO.dll (Hewlett-Packard Co.)
DPF: HKLM-x32 {1E54D648-B804-468d-BC78-4AFFED8E262F} hxxp://www.nvidia.com/content/DriverDownload/srl/3.0.0.4/srl_bin/sysreqlab_nvd.cab
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
FireFox:
========
FF ProfilePath: C:\Users\Munfrosch\AppData\Roaming\Mozilla\Firefox\Profiles\p85aww12.default
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll ()
FF Plugin: @java.com/DTPlugin,version=10.25.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @videolan.org/vlc,version=2.0.7 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.8 - C:\Program Files (x86)\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.2 - C:\Program Files (x86)\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\fcmdSrchddr.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: German Dictionary - C:\Users\Munfrosch\AppData\Roaming\Mozilla\Firefox\Profiles\p85aww12.default\Extensions\de-DE@dictionaries.addons.mozilla.org
FF Extension: Adblock Plus - C:\Users\Munfrosch\AppData\Roaming\Mozilla\Firefox\Profiles\p85aww12.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1}
FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}
FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF HKCU\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
==================== Services (Whitelisted) =================
S3 AppleChargerSrv; C:\Windows\System32\AppleChargerSrv.exe [31272 2010-04-06] ()
S3 CGVPNCliSrvc; C:\Program Files\CyberGhost VPN\CGVPNCliService.exe [2438696 2012-04-26] (mobile concepts GmbH)
R2 ES lite Service; C:\Program Files (x86)\Gigabyte\EasySaver\ESSVR.EXE [68136 2009-08-24] ()
S2 HDDlife HDD Access service; C:\Program Files (x86)\Common Files\BinarySense\hldasvc.exe [1836912 2012-11-27] (BinarySense, Inc.)
R2 JMB36X; C:\Windows\SysWOW64\XSrvSetup.exe [72304 2010-01-19] ()
S2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 StarWindServiceAE; C:\Program Files (x86)\Alcohol 120\StarWind\StarWindServiceAE.exe [370688 2009-12-23] (StarWind Software)
==================== Drivers (Whitelisted) ====================
R3 AnyDVD; C:\Windows\System32\Drivers\AnyDVD.sys [138400 2012-08-26] (SlySoft, Inc.)
R3 AnyDVD; C:\Windows\SysWow64\Drivers\AnyDVD.sys [138400 2012-08-26] (SlySoft, Inc.)
R1 AppleCharger; C:\Windows\System32\DRIVERS\AppleCharger.sys [21544 2010-04-27] ()
R3 ElbyCDFL; C:\Windows\System32\Drivers\ElbyCDFL.sys [40648 2007-02-16] (SlySoft, Inc.)
R3 ElbyCDFL; C:\Windows\SysWow64\Drivers\ElbyCDFL.sys [40648 2007-02-16] (SlySoft, Inc.)
S3 ewusbnet; C:\Windows\System32\DRIVERS\ewusbnet.sys [132608 2009-06-29] (Huawei Technologies Co., Ltd.)
S3 GVTDrv64; C:\Windows\GVTDrv64.sys [30528 2011-01-28] ()
S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [564824 2012-11-30] (Duplex Secure Ltd.)
S1 UimBus; C:\Windows\System32\DRIVERS\uimx64.sys [59184 2011-11-17] (Windows (R) 2000 DDK provider)
S1 Uim_IM; C:\Windows\System32\Drivers\Uim_IMx64.sys [572336 2011-11-17] (Paragon)
S1 Uim_VIM; C:\Windows\System32\Drivers\uim_vimx64.sys [352816 2011-11-17] (Paragon)
U3 alt08szi; C:\Windows\System32\Drivers\alt08szi.sys [0 ] (Advanced Micro Devices)
S3 ALSysIO; \??\C:\Users\MUNFRO~1\AppData\Local\Temp\ALSysIO64.sys [x]
S3 catchme; \??\C:\ComboFix\catchme.sys [x]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [x]
S3 tsusbhub; system32\drivers\tsusbhub.sys [x]
S3 VGPU; System32\drivers\rdvgkmd.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-01-09 17:44 - 2014-01-09 17:44 - 00012358 _____ C:\Users\Munfrosch\Downloads\FRST.txt
2014-01-09 17:43 - 2014-01-09 17:43 - 00000679 _____ C:\Users\Munfrosch\Downloads\eset.txt
2014-01-08 18:13 - 2014-01-09 17:07 - 00000096 ____H C:\Users\Munfrosch\Documents\.~lock.grepo.ods#
2014-01-08 17:57 - 2014-01-08 17:57 - 00000000 ____D C:\Program Files (x86)\ESET
2014-01-08 17:30 - 2014-01-08 17:30 - 00001109 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-01-08 17:30 - 2014-01-08 17:30 - 00000000 ____D C:\Users\Munfrosch\AppData\Roaming\Malwarebytes
2014-01-08 17:30 - 2014-01-08 17:30 - 00000000 ____D C:\ProgramData\Malwarebytes
2014-01-08 17:30 - 2014-01-08 17:30 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-01-08 17:30 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-01-08 17:29 - 2014-01-09 17:44 - 00000000 ____D C:\Users\Munfrosch\Downloads\FRST-OlderVersion
2014-01-08 17:26 - 2014-01-08 17:26 - 02347384 _____ (ESET) C:\Users\Munfrosch\Downloads\esetsmartinstaller_enu.exe
2014-01-08 17:25 - 2014-01-08 17:25 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Munfrosch\Downloads\mbam-setup-1.75.0.1300.exe
2014-01-07 23:53 - 2013-05-10 06:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2014-01-07 23:53 - 2013-05-10 06:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2014-01-07 23:53 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2014-01-07 23:53 - 2013-05-10 05:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 19271168 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 15404032 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 14356992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 13761536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 03959808 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 02877952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-01-07 23:28 - 2014-01-07 23:28 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-01-07 23:28 - 2014-01-07 23:28 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 02241536 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 02049024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 01509376 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-01-07 23:28 - 2014-01-07 23:28 - 01441280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-01-07 23:28 - 2014-01-07 23:28 - 01400416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2014-01-07 23:28 - 2014-01-07 23:28 - 01400416 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2014-01-07 23:28 - 2014-01-07 23:28 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 01140736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 01054720 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-01-07 23:28 - 2014-01-07 23:28 - 00905728 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00762368 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00719360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00629248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00599552 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00523264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-01-07 23:28 - 2014-01-07 23:28 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00361984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-01-07 23:28 - 2014-01-07 23:28 - 00357888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00270848 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00247296 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00242200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00232960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00204800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00185344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00173568 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-01-07 23:28 - 2014-01-07 23:28 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-01-07 23:28 - 2014-01-07 23:28 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00150528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2014-01-07 23:28 - 2014-01-07 23:28 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-01-07 23:28 - 2014-01-07 23:28 - 00138752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2014-01-07 23:28 - 2014-01-07 23:28 - 00137216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-01-07 23:28 - 2014-01-07 23:28 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00125440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2014-01-07 23:28 - 2014-01-07 23:28 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2014-01-07 23:28 - 2014-01-07 23:28 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-01-07 23:28 - 2014-01-07 23:28 - 00073728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2014-01-07 23:28 - 2014-01-07 23:28 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2014-01-07 23:28 - 2014-01-07 23:28 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2014-01-07 23:28 - 2014-01-07 23:28 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-01-07 23:28 - 2014-01-07 23:28 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-01-07 23:28 - 2014-01-07 23:28 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2014-01-07 23:28 - 2014-01-07 23:28 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-01-07 23:28 - 2014-01-07 23:28 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2014-01-07 23:26 - 2014-01-07 23:33 - 00009963 _____ C:\Windows\IE10_main.log
2014-01-07 23:10 - 2014-01-07 23:10 - 00000000 ____D C:\Windows\system32\MRT
2014-01-07 23:08 - 2013-01-13 22:17 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-01-07 23:08 - 2013-01-13 22:17 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-01-07 23:08 - 2013-01-13 22:16 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-01-07 23:08 - 2013-01-13 22:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-01-07 23:08 - 2013-01-13 22:11 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-01-07 23:08 - 2013-01-13 22:11 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-01-07 23:08 - 2013-01-13 22:11 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2014-01-07 23:08 - 2013-01-13 22:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2014-01-07 23:08 - 2013-01-13 22:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-01-07 23:08 - 2013-01-13 21:35 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-01-07 23:08 - 2013-01-13 21:35 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-01-07 23:08 - 2013-01-13 21:35 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-01-07 23:08 - 2013-01-13 21:32 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-01-07 23:08 - 2013-01-13 21:31 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2014-01-07 23:08 - 2013-01-13 21:31 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-01-07 23:08 - 2013-01-13 21:31 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-01-07 23:08 - 2013-01-13 21:31 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2014-01-07 23:08 - 2013-01-13 21:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2014-01-07 23:08 - 2013-01-13 21:31 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-01-07 23:08 - 2013-01-13 21:22 - 01988096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2014-01-07 23:08 - 2013-01-13 21:20 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2014-01-07 23:08 - 2013-01-13 21:09 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll
2014-01-07 23:08 - 2013-01-13 21:08 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll
2014-01-07 23:08 - 2013-01-13 20:59 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2014-01-07 23:08 - 2013-01-13 20:58 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2014-01-07 23:08 - 2013-01-13 20:54 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2014-01-07 23:08 - 2013-01-13 20:53 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll
2014-01-07 23:08 - 2013-01-13 20:53 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2014-01-07 23:08 - 2013-01-13 20:51 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-01-07 23:08 - 2013-01-13 20:49 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2014-01-07 23:08 - 2013-01-13 20:48 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll
2014-01-07 23:08 - 2013-01-13 20:46 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll
2014-01-07 23:08 - 2013-01-13 20:43 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2014-01-07 23:08 - 2013-01-13 20:38 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2014-01-07 23:08 - 2013-01-13 20:38 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2014-01-07 23:08 - 2013-01-13 20:37 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2014-01-07 23:08 - 2013-01-13 20:25 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
2014-01-07 23:08 - 2013-01-13 20:24 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2014-01-07 23:08 - 2013-01-13 20:24 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2014-01-07 23:08 - 2013-01-13 20:20 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2014-01-07 23:08 - 2013-01-13 20:20 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2014-01-07 23:08 - 2013-01-13 20:15 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-01-07 23:08 - 2013-01-13 20:10 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2014-01-07 23:08 - 2013-01-13 20:02 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2014-01-07 23:08 - 2013-01-13 19:34 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2014-01-07 23:08 - 2013-01-13 19:32 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2014-01-07 23:08 - 2013-01-13 19:09 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2014-01-07 23:08 - 2013-01-13 18:26 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2014-01-07 23:08 - 2013-01-13 18:05 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2014-01-07 23:08 - 2013-01-04 07:11 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2014-01-07 23:08 - 2013-01-04 07:11 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2014-01-07 23:03 - 2013-08-02 03:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2014-01-07 23:03 - 2013-08-02 03:13 - 01161216 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2014-01-07 23:03 - 2013-08-02 03:13 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2014-01-07 23:03 - 2013-08-02 03:12 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2014-01-07 23:03 - 2013-08-02 03:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2014-01-07 23:03 - 2013-08-02 03:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 03:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 03:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 03:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 02:50 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2014-01-07 23:03 - 2013-08-02 02:50 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2014-01-07 23:03 - 2013-08-02 02:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2014-01-07 23:03 - 2013-08-02 02:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 02:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 02:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2014-01-07 23:03 - 2013-08-02 01:59 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2014-01-07 23:03 - 2013-08-02 01:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 01:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 01:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2014-01-07 23:03 - 2013-08-02 01:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2014-01-07 23:02 - 2013-09-08 03:30 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2014-01-07 23:02 - 2013-09-08 03:27 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2014-01-07 23:02 - 2013-09-08 03:03 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2014-01-07 23:02 - 2013-08-29 03:17 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-01-07 23:02 - 2013-08-29 03:16 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2014-01-07 23:02 - 2013-08-29 03:16 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2014-01-07 23:02 - 2013-08-29 03:16 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2014-01-07 23:02 - 2013-08-29 03:13 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2014-01-07 23:02 - 2013-08-29 02:51 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2014-01-07 23:02 - 2013-08-29 02:51 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2014-01-07 23:02 - 2013-08-29 02:50 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2014-01-07 23:02 - 2013-08-29 02:50 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2014-01-07 23:02 - 2013-08-29 02:50 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2014-01-07 23:02 - 2013-08-29 02:48 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2014-01-07 23:02 - 2013-08-29 01:49 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2014-01-07 23:02 - 2013-08-29 01:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2014-01-07 23:02 - 2013-08-29 01:49 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2014-01-07 23:02 - 2013-08-29 01:49 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2014-01-07 23:02 - 2013-07-09 06:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2014-01-07 23:02 - 2013-07-09 05:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2014-01-07 23:02 - 2013-04-26 00:30 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2014-01-07 23:02 - 2013-03-31 23:52 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2014-01-07 23:02 - 2013-02-27 07:02 - 00111448 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2014-01-07 23:02 - 2013-02-27 06:47 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2014-01-07 23:01 - 2013-11-12 03:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-01-07 23:01 - 2013-11-12 03:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-01-07 23:01 - 2013-10-30 02:24 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-01-07 23:01 - 2013-10-05 21:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2014-01-07 23:01 - 2013-10-05 20:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2014-01-07 23:01 - 2013-10-04 03:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
2014-01-07 23:01 - 2013-10-04 03:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll
2014-01-07 23:01 - 2013-10-04 03:24 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2014-01-07 23:01 - 2013-10-04 02:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll
2014-01-07 23:01 - 2013-10-04 02:56 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2014-01-07 23:01 - 2013-10-04 02:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll
2014-01-07 23:01 - 2013-09-28 02:09 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2014-01-07 23:01 - 2013-09-25 03:26 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-01-07 23:01 - 2013-09-25 03:26 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2014-01-07 23:01 - 2013-09-25 03:23 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2014-01-07 23:01 - 2013-09-25 03:23 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2014-01-07 23:01 - 2013-09-25 03:23 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2014-01-07 23:01 - 2013-09-25 03:22 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-01-07 23:01 - 2013-09-25 03:21 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-01-07 23:01 - 2013-09-25 03:21 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-01-07 23:01 - 2013-09-25 02:58 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-01-07 23:01 - 2013-09-25 02:57 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-01-07 23:01 - 2013-09-25 02:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-01-07 23:01 - 2013-09-25 02:56 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2014-01-07 23:01 - 2013-09-25 02:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2014-01-07 23:01 - 2013-07-26 03:24 - 14172672 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-01-07 23:01 - 2013-07-26 03:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2014-01-07 23:01 - 2013-07-26 02:55 - 12872704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2014-01-07 23:01 - 2013-07-26 02:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll
2014-01-07 23:01 - 2013-07-25 10:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2014-01-07 23:01 - 2013-07-25 09:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2014-01-07 23:01 - 2013-07-12 11:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2014-01-07 23:01 - 2013-07-09 06:51 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2014-01-07 23:01 - 2013-07-09 06:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2014-01-07 23:01 - 2013-07-09 06:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2014-01-07 23:01 - 2013-07-09 05:52 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2014-01-07 23:01 - 2013-07-09 05:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2014-01-07 23:01 - 2013-07-09 05:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2014-01-07 23:01 - 2013-07-04 13:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll
2014-01-07 23:01 - 2013-07-04 13:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2014-01-07 23:01 - 2013-07-04 13:50 - 00102400 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll
2014-01-07 23:01 - 2013-07-04 13:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2014-01-07 23:01 - 2013-07-04 12:57 - 00205824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll
2014-01-07 23:01 - 2013-07-04 12:51 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll
2014-01-07 23:01 - 2013-07-04 12:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2014-01-07 23:01 - 2013-07-04 11:11 - 00140800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxdav.sys
2014-01-07 23:01 - 2013-07-03 05:40 - 00042496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbscan.sys
2014-01-07 23:01 - 2013-07-03 05:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2014-01-07 23:01 - 2013-07-03 05:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2014-01-07 23:01 - 2013-06-25 23:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2014-01-07 23:01 - 2013-06-15 05:32 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2014-01-07 23:01 - 2013-06-06 06:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2014-01-07 23:01 - 2013-06-06 06:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2014-01-07 23:01 - 2013-06-06 06:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2014-01-07 23:01 - 2013-06-06 06:47 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2014-01-07 23:01 - 2013-06-06 05:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2014-01-07 23:01 - 2013-06-06 05:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2014-01-07 23:01 - 2013-06-06 05:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2014-01-07 23:01 - 2013-06-06 04:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2014-01-07 23:01 - 2013-06-06 04:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2014-01-07 23:01 - 2013-06-06 04:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2014-01-07 23:01 - 2013-04-12 15:45 - 01656680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2014-01-07 23:01 - 2013-03-19 06:53 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll
2014-01-07 23:01 - 2013-03-19 06:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wwanprotdim.dll
2014-01-07 23:01 - 2013-02-12 05:12 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys
2014-01-07 23:00 - 2013-10-30 03:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2014-01-07 23:00 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll
2014-01-07 23:00 - 2013-10-19 03:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2014-01-07 23:00 - 2013-10-19 02:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2014-01-07 23:00 - 2013-10-04 03:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2014-01-07 23:00 - 2013-10-04 02:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2014-01-07 23:00 - 2013-08-05 03:25 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys
2014-01-07 23:00 - 2013-06-04 07:00 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2014-01-07 23:00 - 2013-06-04 05:53 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2014-01-07 23:00 - 2013-05-13 06:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll
2014-01-07 23:00 - 2013-05-13 04:43 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe
2014-01-07 23:00 - 2013-05-13 04:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe
2014-01-07 23:00 - 2013-05-13 04:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll
2014-01-07 23:00 - 2013-05-10 06:49 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\cryptdlg.dll
2014-01-07 23:00 - 2013-05-10 04:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll
2014-01-07 23:00 - 2013-04-26 06:51 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2014-01-07 23:00 - 2013-04-26 05:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll
2014-01-07 22:54 - 2013-10-12 03:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2014-01-07 22:54 - 2013-10-12 03:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2014-01-07 22:54 - 2013-10-12 03:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx
2014-01-07 22:54 - 2013-10-12 03:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2014-01-07 22:54 - 2013-10-12 02:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2014-01-07 22:54 - 2013-10-12 02:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2014-01-07 22:54 - 2013-10-12 02:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe
2014-01-07 22:54 - 2013-10-12 02:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe
2014-01-07 22:54 - 2013-10-03 03:23 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-01-07 22:54 - 2013-10-03 03:00 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-01-07 22:54 - 2013-08-28 02:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2014-01-07 22:53 - 2013-10-12 03:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2014-01-07 22:53 - 2013-10-12 03:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2014-01-07 22:53 - 2013-10-12 03:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2014-01-07 22:53 - 2013-10-12 03:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2014-01-07 22:53 - 2013-10-12 03:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2014-01-07 22:53 - 2013-08-01 13:09 - 00983488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2014-01-07 22:53 - 2013-07-20 11:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2014-01-07 22:53 - 2013-07-20 11:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-01-07 22:53 - 2013-04-10 07:01 - 00265064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2014-01-07 22:53 - 2013-01-24 07:01 - 00223752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2014-01-07 22:53 - 2011-02-03 12:25 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2014-01-07 18:22 - 2014-01-07 18:22 - 00011374 _____ C:\DeQuarantine.txt
2014-01-07 18:22 - 2014-01-07 18:22 - 00000000 ____D C:\Users\Munfrosch\8gb
2014-01-07 18:22 - 2014-01-07 18:22 - 00000000 ____D C:\Users\Munfrosch\4gb
2014-01-07 18:21 - 2014-01-07 18:22 - 00000000 ___SD C:\ComboFix
2014-01-07 16:10 - 2011-06-26 07:45 - 00256000 _____ C:\Windows\PEV.exe
2014-01-07 16:10 - 2010-11-07 18:20 - 00208896 _____ C:\Windows\MBR.exe
2014-01-07 16:10 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2014-01-07 16:10 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2014-01-07 16:10 - 2000-08-31 01:00 - 00098816 _____ C:\Windows\sed.exe
2014-01-07 16:10 - 2000-08-31 01:00 - 00080412 _____ C:\Windows\grep.exe
2014-01-07 16:10 - 2000-08-31 01:00 - 00068096 _____ C:\Windows\zip.exe
2014-01-07 16:08 - 2014-01-07 18:22 - 00000000 ____D C:\Qoobox
2014-01-07 16:07 - 2014-01-07 16:28 - 00000000 ____D C:\Windows\erdnt
2014-01-07 16:01 - 2014-01-07 16:02 - 00000000 ____D C:\AdwCleaner
2014-01-07 15:58 - 2014-01-07 18:01 - 05160001 ____R (Swearware) C:\Users\Munfrosch\Desktop\ComboFix.exe
2014-01-07 15:58 - 2014-01-07 15:58 - 01233962 _____ C:\Users\Munfrosch\Downloads\adwcleaner.exe
2014-01-06 23:33 - 2014-01-06 23:33 - 04101441 _____ C:\Users\Munfrosch\Downloads\tdsskiller.zip
2014-01-06 23:33 - 2014-01-06 23:33 - 00000000 ____D C:\Users\Munfrosch\Downloads\tdsskiller
2014-01-06 23:32 - 2014-01-06 23:32 - 02237968 _____ (Kaspersky Lab ZAO) C:\Users\Munfrosch\Downloads\tdsskiller.exe
2014-01-06 23:15 - 2014-01-09 17:44 - 01931770 _____ (Farbar) C:\Users\Munfrosch\Downloads\FRST64.exe
2014-01-06 23:15 - 2014-01-09 17:44 - 00000000 ____D C:\FRST
2014-01-01 14:16 - 2014-01-01 14:26 - 3268147200 _____ C:\Users\Munfrosch\Downloads\X17-59885.iso
2014-01-01 03:19 - 2014-01-01 03:19 - 01283094 _____ C:\Users\Munfrosch\Documents\Geiles We.bmp
2014-01-01 03:18 - 2014-01-01 03:19 - 02084934 _____ C:\Users\Munfrosch\Documents\Hübsche Maus.bmp
2014-01-01 03:18 - 2014-01-01 03:19 - 01066038 _____ C:\Users\Munfrosch\Documents\Sex Spass.bmp
2014-01-01 03:18 - 2014-01-01 03:18 - 00532950 _____ C:\Users\Munfrosch\Documents\Rauch Spass.bmp
2013-12-29 21:07 - 2014-01-04 19:08 - 00018944 _____ C:\Users\Munfrosch\Documents\panzermodelle.xls
2013-12-20 13:49 - 2013-12-20 13:49 - 00002324 _____ C:\Users\Munfrosch\Documents\karten.rar
2013-12-17 21:45 - 2013-12-17 21:45 - 00013824 _____ C:\Users\Munfrosch\Documents\modellliste.xls
2013-12-17 19:15 - 2013-12-17 21:14 - 00012376 _____ C:\Users\Munfrosch\Documents\modellliste.ods
2013-12-17 16:44 - 2013-12-17 16:44 - 03462033 _____ C:\Users\Munfrosch\Downloads\pci_filerecovery.exe
2013-12-17 16:44 - 2013-12-17 16:44 - 00001207 _____ C:\Users\Munfrosch\Desktop\PC Inspector File Recovery.lnk
2013-12-17 16:44 - 2013-12-17 16:44 - 00000000 ____D C:\Users\Munfrosch\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Convar
2013-12-17 16:44 - 2013-12-17 16:44 - 00000000 ____D C:\Program Files (x86)\PC Inspector File Recovery
2013-12-17 16:41 - 2013-12-17 19:14 - 00000000 ____D C:\rescuee
2013-12-17 16:17 - 2013-12-17 16:17 - 00614784 _____ C:\Users\Munfrosch\Downloads\Recuva - CHIP-Downloader.exe
2013-12-16 14:15 - 2013-12-16 14:15 - 00002062 _____ C:\Users\Munfrosch\Downloads\install.xpi
2013-12-15 17:33 - 2013-12-15 17:33 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2013-12-15 17:33 - 2013-12-15 17:33 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2013-12-15 17:33 - 2013-12-15 17:33 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2013-12-15 17:33 - 2013-12-15 17:33 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2013-12-15 17:33 - 2013-12-15 17:33 - 00003088 _____ C:\Windows\System32\Tasks\RegOrganizerQuickLaunch
2013-12-15 17:33 - 2013-12-15 17:33 - 00001584 _____ C:\Windows\system32\rrr.lnk
2013-12-15 17:33 - 2013-12-15 17:33 - 00001170 _____ C:\Users\Munfrosch\Desktop\Reg Organizer - a PC performance improvement utility.lnk
2013-12-15 17:33 - 2013-12-15 17:33 - 00000000 ____D C:\Users\Munfrosch\AppData\Roaming\ChemTable Software
2013-12-15 17:33 - 2013-12-15 17:33 - 00000000 ____D C:\Users\Munfrosch\AppData\Local\ChemTable Software
2013-12-15 17:33 - 2013-12-15 17:33 - 00000000 ____D C:\ProgramData\Oracle
2013-12-15 17:33 - 2013-12-15 17:33 - 00000000 ____D C:\Program Files (x86)\Reg Organizer
2013-12-15 17:33 - 2013-12-15 17:33 - 00000000 ____D C:\Program Files (x86)\Java
2013-12-15 17:27 - 2013-12-15 17:28 - 24097311 _____ C:\Users\Munfrosch\Downloads\vlc-2.1.2-win32.exe
2013-12-15 17:26 - 2013-12-15 17:27 - 29040552 _____ (Oracle Corporation) C:\Users\Munfrosch\Downloads\jre-7u45-windows-i586.exe
2013-12-15 17:16 - 2013-12-15 17:38 - 00000000 ____D C:\Users\Munfrosch\AppData\Local\AnVir
2013-12-15 17:16 - 2013-12-15 17:16 - 09062640 _____ C:\Users\Munfrosch\Downloads\AnVirTaskManager.exe
2013-12-15 17:16 - 2013-12-15 17:16 - 00001082 _____ C:\Users\Munfrosch\AppData\Roaming\Microsoft\Windows\Start Menu\AnVir Task Manager.lnk
2013-12-15 17:16 - 2013-12-15 17:16 - 00001058 _____ C:\Users\UpdatusUser\Desktop\AnVir Task Manager.lnk
2013-12-15 17:16 - 2013-12-15 17:16 - 00001058 _____ C:\Users\Munfrosch\Desktop\AnVir Task Manager.lnk
2013-12-15 17:16 - 2013-12-15 17:16 - 00000000 ____D C:\Users\Munfrosch\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnVir Task Manager
2013-12-15 17:16 - 2013-12-15 17:16 - 00000000 ____D C:\Program Files (x86)\AnVir Task Manager
==================== One Month Modified Files and Folders =======
2014-01-09 17:44 - 2014-01-09 17:44 - 00012358 _____ C:\Users\Munfrosch\Downloads\FRST.txt
2014-01-09 17:44 - 2014-01-08 17:29 - 00000000 ____D C:\Users\Munfrosch\Downloads\FRST-OlderVersion
2014-01-09 17:44 - 2014-01-06 23:15 - 01931770 _____ (Farbar) C:\Users\Munfrosch\Downloads\FRST64.exe
2014-01-09 17:44 - 2014-01-06 23:15 - 00000000 ____D C:\FRST
2014-01-09 17:43 - 2014-01-09 17:43 - 00000679 _____ C:\Users\Munfrosch\Downloads\eset.txt
2014-01-09 17:39 - 2011-03-29 20:13 - 00000000 ____D C:\Users\Munfrosch\AppData\Roaming\Skype
2014-01-09 17:08 - 2011-05-27 08:02 - 00001116 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-01-09 17:07 - 2014-01-08 18:13 - 00000096 ____H C:\Users\Munfrosch\Documents\.~lock.grepo.ods#
2014-01-09 17:07 - 2013-11-30 08:30 - 00011475 _____ C:\Users\Munfrosch\Documents\grepo.ods
2014-01-09 09:10 - 2011-02-19 23:40 - 00000000 ____D C:\Users\Munfrosch\AppData\Roaming\vlc
2014-01-09 07:08 - 2011-05-27 08:02 - 00001112 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-01-08 18:01 - 2011-01-23 15:48 - 01564009 _____ C:\Windows\WindowsUpdate.log
2014-01-08 17:57 - 2014-01-08 17:57 - 00000000 ____D C:\Program Files (x86)\ESET
2014-01-08 17:54 - 2009-07-14 18:58 - 12365068 _____ C:\Windows\system32\perfh007.dat
2014-01-08 17:54 - 2009-07-14 18:58 - 03806032 _____ C:\Windows\system32\perfc007.dat
2014-01-08 17:54 - 2009-07-14 06:13 - 00006118 _____ C:\Windows\system32\PerfStringBackup.INI
2014-01-08 17:53 - 2009-07-14 05:45 - 00017136 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-01-08 17:53 - 2009-07-14 05:45 - 00017136 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-01-08 17:52 - 2013-07-30 13:50 - 00000000 ____D C:\Program Files (x86)\Steam
2014-01-08 17:51 - 2011-01-23 15:53 - 00000000 ___RD C:\Users\Munfrosch\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-01-08 17:51 - 2011-01-23 15:53 - 00000000 ___RD C:\Users\Munfrosch\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-01-08 17:50 - 2011-01-23 15:53 - 00001309 _____ C:\Users\Munfrosch\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-01-08 17:49 - 2011-01-28 13:25 - 00000000 ____D C:\ProgramData\NVIDIA
2014-01-08 17:47 - 2011-01-23 16:01 - 00000144 _____ C:\service.log
2014-01-08 17:46 - 2011-06-26 17:16 - 00142502 _____ C:\Windows\PFRO.log
2014-01-08 17:46 - 2011-01-23 16:13 - 00025640 _____ (Windows (R) Server 2003 DDK provider) C:\Windows\gdrv.sys
2014-01-08 17:46 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2014-01-08 17:46 - 2009-07-14 05:51 - 00092303 _____ C:\Windows\setupact.log
2014-01-08 17:46 - 2009-07-14 05:45 - 00307072 _____ C:\Windows\system32\FNTCACHE.DAT
2014-01-08 17:42 - 2009-07-14 19:18 - 00000000 ____D C:\Program Files\Windows Journal
2014-01-08 17:42 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files\Windows Defender
2014-01-08 17:42 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2014-01-08 17:42 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\SysWOW64\zh-HK
2014-01-08 17:42 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\SysWOW64\tr-TR
2014-01-08 17:42 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\zh-HK
2014-01-08 17:42 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\tr-TR
2014-01-08 17:42 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\PolicyDefinitions
2014-01-08 17:30 - 2014-01-08 17:30 - 00001109 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-01-08 17:30 - 2014-01-08 17:30 - 00000000 ____D C:\Users\Munfrosch\AppData\Roaming\Malwarebytes
2014-01-08 17:30 - 2014-01-08 17:30 - 00000000 ____D C:\ProgramData\Malwarebytes
2014-01-08 17:30 - 2014-01-08 17:30 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-01-08 17:26 - 2014-01-08 17:26 - 02347384 _____ (ESET) C:\Users\Munfrosch\Downloads\esetsmartinstaller_enu.exe
2014-01-08 17:25 - 2014-01-08 17:25 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Munfrosch\Downloads\mbam-setup-1.75.0.1300.exe
2014-01-07 23:41 - 2011-01-28 13:25 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2014-01-07 23:41 - 2011-01-28 13:24 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2014-01-07 23:39 - 2011-01-28 13:22 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2014-01-07 23:33 - 2014-01-07 23:26 - 00009963 _____ C:\Windows\IE10_main.log
2014-01-07 23:28 - 2014-01-07 23:28 - 19271168 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 15404032 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 14356992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 13761536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 03959808 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 02877952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-01-07 23:28 - 2014-01-07 23:28 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-01-07 23:28 - 2014-01-07 23:28 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 02241536 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 02049024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 01509376 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-01-07 23:28 - 2014-01-07 23:28 - 01441280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-01-07 23:28 - 2014-01-07 23:28 - 01400416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2014-01-07 23:28 - 2014-01-07 23:28 - 01400416 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2014-01-07 23:28 - 2014-01-07 23:28 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 01140736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 01054720 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-01-07 23:28 - 2014-01-07 23:28 - 00905728 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00762368 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00719360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00629248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00599552 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00523264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-01-07 23:28 - 2014-01-07 23:28 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00361984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-01-07 23:28 - 2014-01-07 23:28 - 00357888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00270848 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00247296 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00242200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00232960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00204800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00185344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00173568 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-01-07 23:28 - 2014-01-07 23:28 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-01-07 23:28 - 2014-01-07 23:28 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00150528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2014-01-07 23:28 - 2014-01-07 23:28 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-01-07 23:28 - 2014-01-07 23:28 - 00138752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2014-01-07 23:28 - 2014-01-07 23:28 - 00137216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-01-07 23:28 - 2014-01-07 23:28 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00125440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2014-01-07 23:28 - 2014-01-07 23:28 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2014-01-07 23:28 - 2014-01-07 23:28 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-01-07 23:28 - 2014-01-07 23:28 - 00073728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2014-01-07 23:28 - 2014-01-07 23:28 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2014-01-07 23:28 - 2014-01-07 23:28 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2014-01-07 23:28 - 2014-01-07 23:28 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-01-07 23:28 - 2014-01-07 23:28 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2014-01-07 23:28 - 2014-01-07 23:28 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-01-07 23:28 - 2014-01-07 23:28 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2014-01-07 23:28 - 2014-01-07 23:28 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-01-07 23:28 - 2014-01-07 23:28 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2014-01-07 23:12 - 2014-01-07 23:10 - 00000000 ____D C:\Windows\system32\MRT
2014-01-07 18:22 - 2014-01-07 18:22 - 00011374 _____ C:\DeQuarantine.txt
2014-01-07 18:22 - 2014-01-07 18:22 - 00000000 ____D C:\Users\Munfrosch\8gb
2014-01-07 18:22 - 2014-01-07 18:22 - 00000000 ____D C:\Users\Munfrosch\4gb
2014-01-07 18:22 - 2014-01-07 18:21 - 00000000 ___SD C:\ComboFix
2014-01-07 18:22 - 2014-01-07 16:08 - 00000000 ____D C:\Qoobox
2014-01-07 18:22 - 2011-01-23 15:53 - 00000000 ____D C:\Users\Munfrosch
2014-01-07 18:09 - 2009-07-14 03:34 - 00000215 _____ C:\Windows\system.ini
2014-01-07 18:01 - 2014-01-07 15:58 - 05160001 ____R (Swearware) C:\Users\Munfrosch\Desktop\ComboFix.exe
2014-01-07 16:29 - 2009-07-14 04:20 - 00000000 __RHD C:\Users\Default
2014-01-07 16:28 - 2014-01-07 16:07 - 00000000 ____D C:\Windows\erdnt
2014-01-07 16:08 - 2009-07-14 06:08 - 00032640 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2014-01-07 16:02 - 2014-01-07 16:01 - 00000000 ____D C:\AdwCleaner
2014-01-07 16:02 - 2011-01-23 16:19 - 00001049 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-01-07 15:58 - 2014-01-07 15:58 - 01233962 _____ C:\Users\Munfrosch\Downloads\adwcleaner.exe
2014-01-06 23:33 - 2014-01-06 23:33 - 04101441 _____ C:\Users\Munfrosch\Downloads\tdsskiller.zip
2014-01-06 23:33 - 2014-01-06 23:33 - 00000000 ____D C:\Users\Munfrosch\Downloads\tdsskiller
2014-01-06 23:32 - 2014-01-06 23:32 - 02237968 _____ (Kaspersky Lab ZAO) C:\Users\Munfrosch\Downloads\tdsskiller.exe
2014-01-04 19:08 - 2013-12-29 21:07 - 00018944 _____ C:\Users\Munfrosch\Documents\panzermodelle.xls
2014-01-02 18:54 - 2012-09-08 10:13 - 00000000 ____D C:\EBAY
2014-01-01 23:24 - 2013-02-05 15:16 - 00000000 ____D C:\Users\Munfrosch\Downloads\FILME
2014-01-01 14:26 - 2014-01-01 14:16 - 3268147200 _____ C:\Users\Munfrosch\Downloads\X17-59885.iso
2014-01-01 03:19 - 2014-01-01 03:19 - 01283094 _____ C:\Users\Munfrosch\Documents\Geiles We.bmp
2014-01-01 03:19 - 2014-01-01 03:18 - 02084934 _____ C:\Users\Munfrosch\Documents\Hübsche Maus.bmp
2014-01-01 03:19 - 2014-01-01 03:18 - 01066038 _____ C:\Users\Munfrosch\Documents\Sex Spass.bmp
2014-01-01 03:18 - 2014-01-01 03:18 - 00532950 _____ C:\Users\Munfrosch\Documents\Rauch Spass.bmp
2014-01-01 03:08 - 2012-11-04 13:07 - 00000000 ____D C:\DCIM
2013-12-29 17:04 - 2013-11-17 06:00 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-12-29 17:04 - 2012-11-03 12:31 - 00000000 ____D C:\Program Files\Recuva
2013-12-29 17:04 - 2012-10-02 15:18 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-12-20 13:49 - 2013-12-20 13:49 - 00002324 _____ C:\Users\Munfrosch\Documents\karten.rar
2013-12-17 21:45 - 2013-12-17 21:45 - 00013824 _____ C:\Users\Munfrosch\Documents\modellliste.xls
2013-12-17 21:14 - 2013-12-17 19:15 - 00012376 _____ C:\Users\Munfrosch\Documents\modellliste.ods
2013-12-17 19:14 - 2013-12-17 16:41 - 00000000 ____D C:\rescuee
2013-12-17 16:45 - 2013-04-15 16:52 - 00000000 ____D C:\Users\Munfrosch\Desktop\DESKTOP PICS
2013-12-17 16:44 - 2013-12-17 16:44 - 03462033 _____ C:\Users\Munfrosch\Downloads\pci_filerecovery.exe
2013-12-17 16:44 - 2013-12-17 16:44 - 00001207 _____ C:\Users\Munfrosch\Desktop\PC Inspector File Recovery.lnk
2013-12-17 16:44 - 2013-12-17 16:44 - 00000000 ____D C:\Users\Munfrosch\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Convar
2013-12-17 16:44 - 2013-12-17 16:44 - 00000000 ____D C:\Program Files (x86)\PC Inspector File Recovery
2013-12-17 16:18 - 2012-11-03 12:31 - 00001658 _____ C:\Users\Public\Desktop\Recuva.lnk
2013-12-17 16:17 - 2013-12-17 16:17 - 00614784 _____ C:\Users\Munfrosch\Downloads\Recuva - CHIP-Downloader.exe
2013-12-16 14:15 - 2013-12-16 14:15 - 00002062 _____ C:\Users\Munfrosch\Downloads\install.xpi
2013-12-15 17:38 - 2013-12-15 17:16 - 00000000 ____D C:\Users\Munfrosch\AppData\Local\AnVir
2013-12-15 17:33 - 2013-12-15 17:33 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2013-12-15 17:33 - 2013-12-15 17:33 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2013-12-15 17:33 - 2013-12-15 17:33 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2013-12-15 17:33 - 2013-12-15 17:33 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2013-12-15 17:33 - 2013-12-15 17:33 - 00003088 _____ C:\Windows\System32\Tasks\RegOrganizerQuickLaunch
2013-12-15 17:33 - 2013-12-15 17:33 - 00001584 _____ C:\Windows\system32\rrr.lnk
2013-12-15 17:33 - 2013-12-15 17:33 - 00001170 _____ C:\Users\Munfrosch\Desktop\Reg Organizer - a PC performance improvement utility.lnk
2013-12-15 17:33 - 2013-12-15 17:33 - 00000000 ____D C:\Users\Munfrosch\AppData\Roaming\ChemTable Software
2013-12-15 17:33 - 2013-12-15 17:33 - 00000000 ____D C:\Users\Munfrosch\AppData\Local\ChemTable Software
2013-12-15 17:33 - 2013-12-15 17:33 - 00000000 ____D C:\ProgramData\Oracle
2013-12-15 17:33 - 2013-12-15 17:33 - 00000000 ____D C:\Program Files (x86)\Reg Organizer
2013-12-15 17:33 - 2013-12-15 17:33 - 00000000 ____D C:\Program Files (x86)\Java
2013-12-15 17:29 - 2013-09-21 12:31 - 00000935 _____ C:\Users\Public\Desktop\VLC media player.lnk
2013-12-15 17:28 - 2013-12-15 17:27 - 24097311 _____ C:\Users\Munfrosch\Downloads\vlc-2.1.2-win32.exe
2013-12-15 17:28 - 2012-12-19 07:49 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-12-15 17:28 - 2011-06-07 18:09 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-12-15 17:28 - 2011-05-27 08:01 - 00000000 ____D C:\Users\Munfrosch\AppData\Local\Adobe
2013-12-15 17:27 - 2013-12-15 17:26 - 29040552 _____ (Oracle Corporation) C:\Users\Munfrosch\Downloads\jre-7u45-windows-i586.exe
2013-12-15 17:16 - 2013-12-15 17:16 - 09062640 _____ C:\Users\Munfrosch\Downloads\AnVirTaskManager.exe
2013-12-15 17:16 - 2013-12-15 17:16 - 00001082 _____ C:\Users\Munfrosch\AppData\Roaming\Microsoft\Windows\Start Menu\AnVir Task Manager.lnk
2013-12-15 17:16 - 2013-12-15 17:16 - 00001058 _____ C:\Users\UpdatusUser\Desktop\AnVir Task Manager.lnk
2013-12-15 17:16 - 2013-12-15 17:16 - 00001058 _____ C:\Users\Munfrosch\Desktop\AnVir Task Manager.lnk
2013-12-15 17:16 - 2013-12-15 17:16 - 00000000 ____D C:\Users\Munfrosch\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AnVir Task Manager
2013-12-15 17:16 - 2013-12-15 17:16 - 00000000 ____D C:\Program Files (x86)\AnVir Task Manager
2013-12-11 03:09 - 2012-10-10 17:29 - 00002212 _____ C:\Users\Public\Desktop\Google Earth.lnk
2013-12-11 03:09 - 2011-05-27 08:02 - 00000000 ____D C:\Program Files (x86)\Google
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-11-04 05:07
==================== End Of Log ============================
--- --- ---
--- --- ---
DANKE SOWEIT SCHON VIELMALS!!!!!!!! :daumenhoc