AdwCleaner Logfile:
Code:
# AdwCleaner v4.102 - Bericht erstellt am 26/11/2014 um 10:03:04
# Aktualisiert 23/11/2014 von Xplode
# Database : 2014-11-25.1 [Live]
# Betriebssystem : Windows 8.1 (64 bits)
# Benutzername : Frank - ASUS-PC
# Gestartet von : C:\Users\Frank\Downloads\AdwCleaner_4.102.exe
# Option : Löschen
***** [ Dienste ] *****
Dienst Gelöscht : APNMCP
***** [ Dateien / Ordner ] *****
Ordner Gelöscht : C:\ProgramData\AskPartnerNetwork
Ordner Gelöscht : C:\ProgramData\simplitec
Ordner Gelöscht : C:\ProgramData\Systweak
Ordner Gelöscht : C:\ProgramData\WPM
Ordner Gelöscht : C:\Program Files (x86)\AskPartnerNetwork
Ordner Gelöscht : C:\Program Files (x86)\MyPC Backup
Ordner Gelöscht : C:\Users\Frank\AppData\Local\AskPartnerNetwork
Ordner Gelöscht : C:\Users\Frank\AppData\Local\Mobogenie
Ordner Gelöscht : C:\Users\Frank\AppData\Local\Temp\webget
Ordner Gelöscht : C:\Users\Frank\AppData\Roaming\Systweak
Datei Gelöscht : C:\WINDOWS\System32\roboot64.exe
Datei Gelöscht : C:\Users\Frank\daemonprocess.txt
***** [ Tasks ] *****
Task Gelöscht : Advanced System Protector
Task Gelöscht : Advanced System Protector_startup
Task Gelöscht : Dealply
Task Gelöscht : DealPlyUpdate
Task Gelöscht : RegClean Pro
***** [ Verknüpfungen ] *****
***** [ Registrierungsdatenbank ] *****
Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaacalgebmfelllfiaoknifldpngjh
Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\bmiabdepfhhiieiipmeecdmeljggmfee
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\bmiabdepfhhiieiipmeecdmeljggmfee
Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\mkcedibhemacmilmkpndpkoidlnmgngg
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [mobilegeni daemon]
Schlüssel Gelöscht : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\IePluginService
Schlüssel Gelöscht : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Wpm
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{44CBC005-6243-4502-8A02-3A096A282664}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{80703783-E415-4EE3-AB60-D36981C5A6F1}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{D8278076-BC68-4484-9233-6E7F1628B56C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{F297534D-7B06-459D-BC19-2DD8EF69297B}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{459DD0F7-0D55-D3DC-67BC-E6BE37E9D762}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{80703783-E415-4EE3-AB60-D36981C5A6F1}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{9945959C-AAD8-4312-8B57-2DE11927E770}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{41564952-412D-5637-00A7-7A786E7484D7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6978F29A-3493-40B2-8CDC-9C13A02F85A4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D7949A66-D936-4028-9552-14F7DC50F38D}
Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{41564952-412D-5637-00A7-7A786E7484D7}]
Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{41564952-412D-5637-00A7-7A786E7484D7}]
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
Schlüssel Gelöscht : HKCU\Software\AskPartnerNetwork
Schlüssel Gelöscht : HKCU\Software\OCS
Schlüssel Gelöscht : HKCU\Software\systweak
Schlüssel Gelöscht : HKCU\Software\UpdateStar
Schlüssel Gelöscht : HKLM\SOFTWARE\AskPartnerNetwork
Schlüssel Gelöscht : HKLM\SOFTWARE\simplitec
Schlüssel Gelöscht : HKLM\SOFTWARE\SupTab
Schlüssel Gelöscht : HKLM\SOFTWARE\systweak
Schlüssel Gelöscht : HKLM\SOFTWARE\Wpm
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\cashcrawler.de
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.cashcrawler.de
***** [ Browser ] *****
-\\ Internet Explorer v11.0.9600.17416
-\\ Mozilla Firefox v33.1 (x86 de)
[0huhfyxc.default\prefs.js] - Zeile gelöscht : user_pref("extensions.ade82a7c2f70c45c4bbb565be9d6b051f003473663e234ef19f33b4e42aefcd6acom58374.58374.internaldb.Resources_meta.value", "%7B%22css/iframe.css%22%3A%7B%22id%22%3A857465%2C%22ver%22%3A61[...]
[0huhfyxc.default\prefs.js] - Zeile gelöscht : user_pref("extensions.ade82a7c2f70c45c4bbb565be9d6b051f003473663e234ef19f33b4e42aefcd6acom58374.58374.internaldb.Resources_resource_857471.value", "%22data%3Aimage/png%3Bbase64%2CiVBORw0KGgoAAAANSUhEU[...]
[0huhfyxc.default\prefs.js] - Zeile gelöscht : user_pref("extensions.ade82a7c2f70c45c4bbb565be9d6b051f003473663e234ef19f33b4e42aefcd6acom58374.58374.internaldb.Resources_resource_857476.value", "%22data%3Aimage/png%3Bbase64%2CiVBORw0KGgoAAAANSUhEU[...]
[0huhfyxc.default\prefs.js] - Zeile gelöscht : user_pref("extensions.crossrider.bic", "146ce5a55a25c22aab37880e42527116");
[0huhfyxc.default\prefs.js] - Zeile gelöscht : user_pref("extensions.quick_start.enable_search1", false);
[0huhfyxc.default\prefs.js] - Zeile gelöscht : user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false);
[0huhfyxc.default\prefs.js] - Zeile gelöscht : user_pref("extensions.safesearch.MP_DISTINCT_ID", "\"147aad7216e110-0123818a1ed7ae-42504336-0-147aad7216f35e\"");
[0huhfyxc.default\prefs.js] - Zeile gelöscht : user_pref("extensions.safesearch.SAUTH_expires_at", "1408288332");
[0huhfyxc.default\prefs.js] - Zeile gelöscht : user_pref("extensions.safesearch.SAUTH_rndsnr", "\"2b3ccea98e50f96133e8cbc489d6b9eaab6c3cd2\"");
[0huhfyxc.default\prefs.js] - Zeile gelöscht : user_pref("extensions.safesearch.SAUTH_userid", "4238876723");
[0huhfyxc.default\prefs.js] - Zeile gelöscht : user_pref("extensions.safesearch.SAUTH_utoken", "\"cbc43c98e82b92125790a486d5ba3e9d6e7e5472\"");
[0huhfyxc.default\prefs.js] - Zeile gelöscht : user_pref("extensions.safesearch.install", "1407320531327");
-\\ Google Chrome v
*************************
AdwCleaner[R0].txt - [6546 octets] - [26/11/2014 09:58:01]
AdwCleaner[S0].txt - [6357 octets] - [26/11/2014 10:03:04]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [6417 octets] ##########
--- --- ---
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.3.9 (11.15.2014:2)
OS: Windows 8.1 x64
Ran by Frank on 26.11.2014 at 10:12:02,14
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Eventlog\Application\util webget
~~~ Files
~~~ Folders
~~~ FireFox
Successfully deleted: [File] C:\Users\Frank\AppData\Roaming\mozilla\firefox\profiles\0huhfyxc.default\searchplugins\avira-safesearch.xml
Successfully deleted the following from C:\Users\Frank\AppData\Roaming\mozilla\firefox\profiles\0huhfyxc.default\prefs.js
user_pref("avira.safe_search.search_was_active", "false");
user_pref("extensions.ade82a7c2f70c45c4bbb565be9d6b051f003473663e234ef19f33b4e42aefcd6acom58374.58374.internaldb.Resources_resource_857468.value", "%22data%3Aimage/png%3Bbase6
user_pref("extensions.ade82a7c2f70c45c4bbb565be9d6b051f003473663e234ef19f33b4e42aefcd6acom58374.58374.internaldb.Resources_resource_857469.value", "%22data%3Aimage/png%3Bbase6
user_pref("extensions.ade82a7c2f70c45c4bbb565be9d6b051f003473663e234ef19f33b4e42aefcd6acom58374.58374.internaldb.Resources_resource_857470.value", "%22data%3Aimage/png%3Bbase6
user_pref("extensions.ade82a7c2f70c45c4bbb565be9d6b051f003473663e234ef19f33b4e42aefcd6acom58374.58374.internaldb.Resources_resource_857472.value", "%22data%3Aimage/png%3Bbase6
user_pref("extensions.ade82a7c2f70c45c4bbb565be9d6b051f003473663e234ef19f33b4e42aefcd6acom58374.58374.internaldb.Resources_resource_857473.value", "%22data%3Aimage/png%3Bbase6
user_pref("extensions.ade82a7c2f70c45c4bbb565be9d6b051f003473663e234ef19f33b4e42aefcd6acom58374.58374.internaldb.Resources_resource_857474.value", "%22data%3Aimage/png%3Bbase6
user_pref("extensions.ade82a7c2f70c45c4bbb565be9d6b051f003473663e234ef19f33b4e42aefcd6acom58374.58374.internaldb.Resources_resource_857475.value", "%22data%3Aimage/png%3Bbase6
user_pref("extensions.ade82a7c2f70c45c4bbb565be9d6b051f003473663e234ef19f33b4e42aefcd6acom58374.58374.internaldb.Resources_resource_857477.value", "%22data%3Aimage/png%3Bbase6
Emptied folder: C:\Users\Frank\AppData\Roaming\mozilla\firefox\profiles\0huhfyxc.default\minidumps [89 files]
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 26.11.2014 at 10:13:45,18
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
FRST Logfile:
FRST Logfile:
Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 23-11-2014 01
Ran by Frank (administrator) on ASUS-PC on 26-11-2014 10:20:14
Running from C:\Users\Frank\Downloads
Loaded Profile: Frank (Available profiles: UpdatusUser & Frank)
Platform: Windows 8.1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
() C:\Program Files (x86)\Akademische Arbeitsgemeinschaft\AAVUpdateManager\aavus.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe
(Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BBSvc.EXE
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_WT50RP.EXE
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Star Finanz-Software Entwicklung und Vertriebs GmbH) C:\Program Files (x86)\StarMoney 9.0\ouservice\StarMoneyOnlineUpdate.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
(Samsung) C:\Program Files (x86)\Samsung\PC Auto Backup\WiselinkPro.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
() C:\Program Files (x86)\Samsung\PC Auto Backup\http_ss_win_pro.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Key Suite\AsKeySuite.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_w32.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\tv_x64.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_YATIHVE.EXE
(SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_YATIHVE.EXE
(Dropbox, Inc.) C:\Users\Frank\AppData\Roaming\Dropbox\bin\Dropbox.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Easy Update\ALU.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Ai Charger\AiChargerAP.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
(Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
(Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
(MAGIX AG) C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avcenter.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\SeaPort.EXE
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6839952 2012-09-13] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1218704 2012-09-26] (Realtek Semiconductor)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [277504 2012-07-09] (Intel Corporation)
HKLM-x32\...\Run: [ASUS Easy Update] => C:\Program Files (x86)\ASUS\ASUS Easy Update\ALU.exe [195200 2012-05-24] (ASUSTeK Computer Inc.)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [ASUSPRP] => C:\Program Files (x86)\ASUS\APRP\APRP.EXE [3187360 2012-11-08] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [ASUS Ai Charger] => C:\Program Files (x86)\ASUS\ASUS Ai Charger\AiChargerAP.exe [547984 2012-08-13] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [91432 2012-03-29] (CyberLink Corp.)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-26] (Microsoft Corporation)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [703736 2014-11-18] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [TrayServer] => D:\Program Files (x86)\MAGIX\Video_deluxe_17_Plus\TrayServer.exe [90112 2008-08-07] (MAGIX AG)
HKLM-x32\...\Run: [Ulead AutoDetector v2] => C:\Program Files (x86)\Common Files\Ulead Systems\AutoDetector\monitor.exe [90112 2004-11-26] (Ulead Systems, Inc.)
HKLM-x32\...\Run: [NeroFilterCheck] => C:\WINDOWS\SysWOW64\NeroCheck.exe [155648 2001-07-09] (Ahead Software Gmbh)
HKLM-x32\...\Run: [InCD] => d:\Program Files (x86)\Ahead\InCD\InCD.exe [1237042 2003-12-05] (Ahead Software AG)
HKLM-x32\...\Run: [IR_SERVER] => C:\PROGRA~1\Realtek\REALTE~1\IR_SERVER.exe
HKLM-x32\...\Run: [Cashcrawler_Surfbar] => D:\Program Files (x86)\Tools\cc\Cashcrawler_Surfbar.exe [1994752 2014-02-16] (LKTechnik & Michael Dewitz)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [124208 2014-10-22] (Avira Operations GmbH & Co. KG)
Winlogon\Notify\igfxcui: igfxdev.dll [X]
Winlogon\Notify\ScCertProp: wlnotify.dll [X]
HKU\S-1-5-21-348412604-1390753195-2502655749-1002\...\Run: [EPLTarget\P0000000000000000] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATIHVE.EXE [241280 2012-07-12] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-348412604-1390753195-2502655749-1002\...\Run: [EPLTarget\P0000000000000003] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATIHVE.EXE [241280 2012-07-12] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-348412604-1390753195-2502655749-1002\...\Policies\Explorer: [DisallowRun] 1
HKU\S-1-5-21-348412604-1390753195-2502655749-1002\...\MountPoints2: {93f7af59-14b1-11e3-be7d-08606e07ad67} - "G:\iLinker.exe"
HKU\S-1-5-18\...\Run: [EPLTarget\P0000000000000000] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_YATIHVE.EXE [241280 2012-07-12] (SEIKO EPSON CORPORATION)
AppInit_DLLs: C:\WINDOWS\system32\nvinitx.dll => C:\WINDOWS\system32\nvinitx.dll [168616 2013-09-05] (NVIDIA Corporation)
AppInit_DLLs: , C:\PROGRA~2\NVIDIA~1\3DVISI~1\NVSTIN~1.DLL => C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvStInit64.dll [18856 2012-10-02] (NVIDIA Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma Loader.exe.lnk
ShortcutTarget: Adobe Gamma Loader.exe.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\CIB image Speedlauncher.lnk
ShortcutTarget: CIB image Speedlauncher.lnk -> C:\Program Files (x86)\CIB software GmbH\CIB image\CibImage.exe (CIB Software GmbH)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\PC Auto Backup.lnk
ShortcutTarget: PC Auto Backup.lnk -> C:\Program Files (x86)\Samsung\PC Auto Backup\AutoBackup.exe (Samsung)
Startup: C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\2013-09-13.log ()
Startup: C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\2013-09-14.log ()
Startup: C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\2013-09-16.log ()
Startup: C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\2013-09-18.log ()
Startup: C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\2013-09-19.log ()
Startup: C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\2013-09-20.log ()
Startup: C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\cashcrawler.exe ()
Startup: C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Frank\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\GLS Reminder.lnk
ShortcutTarget: GLS Reminder.lnk -> D:\Program Files (x86)\GLS Vereinsmeister\BIN32\vminder.exe (GLS Software & Systeme)
Startup: C:\Users\Frank\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk
ShortcutTarget: OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk -> C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-348412604-1390753195-2502655749-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.klamm.de/
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=ASU2JS
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=ASU2JS
SearchScopes: HKU\S-1-5-21-348412604-1390753195-2502655749-1002 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-348412604-1390753195-2502655749-1002 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\amd64\BingExt.dll (Microsoft Corporation.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BingExt.dll (Microsoft Corporation.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\amd64\BingExt.dll (Microsoft Corporation.)
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BingExt.dll (Microsoft Corporation.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
FireFox:
========
FF ProfilePath: C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\0huhfyxc.default
FF DefaultSearchEngine: benefind
FF SelectedSearchEngine: benefind
FF Homepage: hxxp://www.klamm.de/
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_15_0_0_239.dll ()
FF Plugin: @cib.de/CibImage -> C:\Program Files (x86)\CIB software GmbH\CIB image\npCibImageFirefox32.dll (CIB software GmbH, München)
FF Plugin: @java.com/DTPlugin,version=10.45.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.45.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_239.dll ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @TrendMicro.com/FFExtension -> C:\Program Files\Trend Micro\Titanium\UIFramework\Toolbar\firefoxextension\components\npToolbarChrome.dll No File
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-348412604-1390753195-2502655749-1002: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Frank\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF SearchPlugin: C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\0huhfyxc.default\searchplugins\benefind.xml
FF Extension: Avira Browser Safety - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\0huhfyxc.default\Extensions\abs@avira.com [2014-11-19]
FF Extension: German Dictionary - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\0huhfyxc.default\Extensions\de-DE@dictionaries.addons.mozilla.org [2014-10-08]
FF Extension: No Name - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\0huhfyxc.default\Extensions\de82a7c2-f70c-45c4-bbb5-65be9d6b051f@00347366-3e23-4ef1-9f33-b4e42aefcd6a.com [2014-11-26]
FF Extension: Gooding Toolbar - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\0huhfyxc.default\Extensions\gooding-toolbar@gooding.de [2014-09-01]
FF Extension: benefind-shop-addon - C:\Users\Frank\AppData\Roaming\Mozilla\Firefox\Profiles\0huhfyxc.default\Extensions\kontakt@benefind.de.xpi [2014-06-26]
Chrome:
=======
CHR Profile: C:\Users\Frank\AppData\Local\Google\Chrome\User Data\Default
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AAV UpdateService; C:\Program Files (x86)\Akademische Arbeitsgemeinschaft\AAVUpdateManager\aavus.exe [128296 2008-10-24] ()
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [432888 2014-11-18] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [432888 2014-11-18] (Avira Operations GmbH & Co. KG)
R2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [995064 2014-11-18] (Avira Operations GmbH & Co. KG)
R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe [149120 2012-02-17] (ASUSTeK Computer Inc.)
R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [164656 2014-10-22] (Avira Operations GmbH & Co. KG)
R2 Fabs; C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe [1840128 2011-05-24] (MAGIX AG) [File not signed]
S3 FirebirdServerMAGIXInstance; C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe [2702848 2011-04-26] (MAGIX®) [File not signed]
R2 IAStorDataMgrSvc; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [7168 2012-07-09] (Intel Corporation) [File not signed]
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [314696 2014-05-20] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-18] (Intel Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [272176 2012-07-18] ()
S2 StarMoney 8.0 OnlineUpdate; C:\Program Files (x86)\StarMoney 8.0 S-Edition\ouservice\StarMoneyOnlineUpdate.exe [699680 2012-12-21] (Star Finanz - Software Entwicklung und Vertriebs GmbH)
R2 StarMoney 9.0 OnlineUpdate; C:\Program Files (x86)\StarMoney 9.0\ouservice\StarMoneyOnlineUpdate.exe [697488 2014-07-04] (Star Finanz-Software Entwicklung und Vertriebs GmbH)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-09-22] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-09-22] (Microsoft Corporation)
R2 WiselinkPro; C:\Program Files (x86)\Samsung\PC Auto Backup\WiselinkPro.exe [7278657 2013-02-08] (Samsung) [File not signed]
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [2699568 2012-07-18] (Intel® Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R3 AiCharger; C:\Windows\SysWow64\drivers\AiCharger.sys [14848 2012-03-23] (ASUSTek Computer Inc.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2012-08-22] ()
R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2010-08-03] ()
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [119272 2014-10-09] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [131608 2014-10-09] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2013-10-01] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [43064 2014-10-09] (Avira Operations GmbH & Co. KG)
R3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew00.sys [3344352 2013-07-08] (Intel Corporation)
R3 S332x64; C:\Windows\system32\DRIVERS\S332x64.sys [78080 2012-02-27] (Identive )
U5 TMUSB; C:\Windows\System32\DRIVERS\TMUSB64.SYS [63096 2014-03-19] (Seiko Epson Corporation)
R3 usb3Hub; C:\Windows\System32\drivers\usb3Hub.sys [47072 2012-11-29] (Windows (R) Win 7 DDK provider)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-09-22] (Microsoft Corporation)
R3 XHCIPort; C:\Windows\System32\drivers\XHCIPort.sys [188896 2012-10-10] (Windows (R) Win 7 DDK provider)
S3 NTIDrvr; \??\C:\Program Files (x86)\Common Files\muvee Technologies\071203\NTIDrvr.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-11-26 10:13 - 2014-11-26 10:13 - 00002611 _____ () C:\Users\Frank\Desktop\JRT.txt
2014-11-26 10:10 - 2014-11-26 10:10 - 01707532 _____ (Thisisu) C:\Users\Frank\Downloads\JRT.exe
2014-11-26 09:57 - 2014-11-26 10:03 - 00000000 ____D () C:\AdwCleaner
2014-11-26 09:35 - 2014-11-26 09:35 - 02148864 _____ () C:\Users\Frank\Downloads\AdwCleaner_4.102.exe
2014-11-25 11:43 - 2014-11-26 10:20 - 00021940 _____ () C:\Users\Frank\Downloads\FRST.txt
2014-11-25 11:42 - 2014-11-26 10:20 - 00000000 ____D () C:\FRST
2014-11-25 11:40 - 2014-11-25 11:40 - 02118144 _____ (Farbar) C:\Users\Frank\Downloads\FRST64.exe
2014-11-23 09:30 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_33.dll
2014-11-23 09:28 - 2014-11-23 10:04 - 00000000 ____D () C:\Users\Frank\AppData\Local\PhotoGenie
2014-11-23 09:14 - 2014-11-23 09:14 - 00000867 _____ () C:\Users\Frank\Desktop\Lidl-Fotos.lnk
2014-11-23 09:14 - 2014-11-23 09:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lidl-Fotos
2014-11-23 09:13 - 2014-11-23 09:13 - 00000000 ____D () C:\ProgramData\PhotoGenie
2014-11-23 09:06 - 2014-11-23 09:12 - 191698064 _____ ( ) C:\Users\Frank\Downloads\Lidl_Fotos_Setup.exe
2014-11-22 15:09 - 2014-11-22 15:13 - 91561567 _____ () C:\Users\Frank\Downloads\ElLiOrGrHiiVoTw.rar
2014-11-22 15:02 - 2014-11-22 15:02 - 00000000 ____D () C:\Users\Frank\Downloads\BeGeBeOf
2014-11-22 14:50 - 2014-11-22 14:51 - 00000000 ____D () C:\Users\Frank\Downloads\Santana_20-_20Borboletta_20_281974%29
2014-11-22 14:44 - 2014-11-22 14:51 - 108869278 _____ () C:\Users\Frank\Downloads\BeGeBeOf.rar
2014-11-22 14:40 - 2014-11-22 14:51 - 203121010 _____ () C:\Users\Frank\Downloads\Carlos_Santana--Original_Album_Classics-3CD-2010-OMA-CannaPower.rar
2014-11-22 14:38 - 2014-11-22 14:44 - 111040551 _____ () C:\Users\Frank\Downloads\Santana%20-%20Borboletta%20%281974%29.rar
2014-11-21 10:06 - 2014-11-21 10:07 - 10995296 _____ (Deutsche Telekom AG, Marmiko IT-Solutions GmbH ) C:\Users\Frank\Downloads\netzmanager_setup(1).exe
2014-11-19 12:04 - 2014-11-10 00:19 - 00991232 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2014-11-19 12:04 - 2014-11-10 00:19 - 00806400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2014-11-19 12:04 - 2014-11-10 00:18 - 00259584 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll
2014-11-19 12:04 - 2014-11-10 00:18 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pku2u.dll
2014-11-19 09:35 - 2014-11-19 09:36 - 00000000 ____D () C:\Users\Frank\Downloads\fck
2014-11-19 09:35 - 2014-11-19 09:35 - 00000000 ____D () C:\Users\Frank\Downloads\Eric_Clapton-Unplugged-_28Deluxe_Edition%29-2CD-2013-404
2014-11-19 09:34 - 2014-11-19 09:37 - 00000000 ____D () C:\Users\Frank\Downloads\Chopin-PianoConcerto
2014-11-19 09:34 - 2014-11-19 09:36 - 00000000 ____D () C:\Users\Frank\Downloads\Manfred_20Manns_20Earthband_1992_20_20Years_20_281971-1991%29
2014-11-17 13:15 - 2014-11-17 13:21 - 185873472 _____ () C:\Users\Frank\Downloads\Eric_Clapton-Unplugged-%28Deluxe_Edition%29-2CD-2013-404.rar
2014-11-17 13:09 - 2014-11-17 13:14 - 52922197 _____ () C:\Users\Frank\Downloads\Manfred%20Manns%20Earthband_1992_20%20Years%20%281971-1991%29.rar
2014-11-17 13:08 - 2014-11-17 13:13 - 60941943 _____ () C:\Users\Frank\Downloads\Chopin-PianoConcerto-CannaPower.zip
2014-11-17 13:04 - 2014-11-17 13:14 - 207739751 _____ () C:\Users\Frank\Downloads\fck.rar
2014-11-17 12:23 - 2014-09-27 08:13 - 00104336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll
2014-11-17 12:23 - 2014-09-27 06:24 - 00088800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll
2014-11-17 12:23 - 2014-09-27 04:38 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2014-11-17 12:23 - 2014-09-27 04:30 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2014-11-17 12:23 - 2014-09-27 04:17 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2014-11-17 12:22 - 2014-09-04 03:22 - 00670384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2014-11-17 12:22 - 2014-09-04 01:32 - 00334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll
2014-11-17 12:22 - 2014-08-30 23:59 - 18723112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2014-11-17 12:22 - 2014-08-30 21:53 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FXSAPI.dll
2014-11-17 12:22 - 2014-08-30 21:17 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2014-11-17 12:22 - 2014-08-28 01:06 - 02030592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2014-11-17 12:22 - 2014-08-23 06:04 - 11820544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2014-11-17 12:22 - 2014-08-02 01:35 - 00485376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\untfs.dll
2014-11-17 12:21 - 2014-09-10 07:25 - 00474432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2014-11-17 12:21 - 2014-09-08 04:07 - 02497344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2014-11-17 12:21 - 2014-09-08 04:07 - 00428864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2014-11-17 12:21 - 2014-09-07 23:08 - 00389176 _____ () C:\WINDOWS\system32\ApnDatabase.xml
2014-11-17 12:21 - 2014-09-04 23:30 - 00822272 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2014-11-17 12:21 - 2014-09-04 23:21 - 01053184 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2014-11-17 12:21 - 2014-09-04 04:05 - 00836176 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2014-11-17 12:21 - 2014-09-04 02:01 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2014-11-17 12:21 - 2014-08-31 01:17 - 00148800 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS
2014-11-17 12:21 - 2014-08-31 01:15 - 21197152 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2014-11-17 12:21 - 2014-08-30 23:05 - 00615424 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSCOMEX.dll
2014-11-17 12:21 - 2014-08-30 22:58 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSAPI.dll
2014-11-17 12:21 - 2014-08-30 22:04 - 00941568 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2014-11-17 12:21 - 2014-08-28 03:55 - 07484224 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2014-11-17 12:21 - 2014-08-28 01:21 - 02480128 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2014-11-17 12:21 - 2014-08-23 06:14 - 13424128 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2014-11-17 12:21 - 2014-08-23 05:50 - 02714112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
2014-11-17 12:21 - 2014-08-02 01:51 - 00545792 _____ (Microsoft Corporation) C:\WINDOWS\system32\untfs.dll
2014-11-17 12:20 - 2014-10-13 03:33 - 00116032 _____ (Microsoft Corporation) C:\WINDOWS\system32\consent.exe
2014-11-17 12:20 - 2014-10-11 01:58 - 03320320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2014-11-17 12:20 - 2014-10-11 01:53 - 03607040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2014-11-17 12:20 - 2014-10-08 08:30 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2014-11-17 12:20 - 2014-10-08 08:09 - 00428032 _____ (Microsoft Corporation) C:\WINDOWS\system32\msihnd.dll
2014-11-17 12:20 - 2014-10-08 07:27 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msihnd.dll
2014-11-17 12:20 - 2014-10-08 06:32 - 02773504 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2014-11-17 12:20 - 2014-10-08 06:19 - 02459136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2014-11-17 12:20 - 2014-09-22 05:38 - 01519488 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2014-11-17 12:20 - 2014-09-22 04:06 - 00258368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys
2014-11-17 12:20 - 2014-09-22 04:06 - 00114496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys
2014-11-17 12:20 - 2014-09-22 03:49 - 00035320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys
2014-11-17 12:20 - 2014-09-19 01:16 - 01346048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2014-11-17 12:20 - 2014-09-02 23:08 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\winshfhc.dll
2014-11-17 12:20 - 2014-09-02 23:08 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winshfhc.dll
2014-11-17 12:19 - 2014-10-31 06:28 - 25110016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-11-17 12:19 - 2014-10-31 04:42 - 19781632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2014-11-17 12:19 - 2014-10-07 07:28 - 00500016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2014-11-17 12:19 - 2014-10-07 07:27 - 00482872 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2014-11-17 12:19 - 2014-10-07 07:27 - 00394120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2014-11-17 12:19 - 2014-10-07 07:27 - 00272248 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2014-11-17 12:19 - 2014-10-07 07:27 - 00108432 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDump.dll
2014-11-17 12:19 - 2014-10-07 04:34 - 00370424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2014-11-17 12:19 - 2014-10-07 04:34 - 00344536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2014-11-17 12:19 - 2014-10-07 04:33 - 00424544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2014-11-17 12:19 - 2014-10-07 02:54 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2014-11-17 12:19 - 2014-10-07 02:46 - 00911360 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2014-11-17 12:19 - 2014-08-23 06:18 - 02149376 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2014-11-17 12:19 - 2014-08-23 06:03 - 01346048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2014-11-17 12:18 - 2014-10-31 06:12 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wextract.exe
2014-11-17 12:18 - 2014-10-31 06:12 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshta.exe
2014-11-17 12:18 - 2014-10-31 06:10 - 00167424 _____ (Microsoft Corporation) C:\WINDOWS\system32\iexpress.exe
2014-11-17 12:18 - 2014-10-31 06:09 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\pngfilt.dll
2014-11-17 12:18 - 2014-10-31 06:08 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedssync.exe
2014-11-17 12:18 - 2014-10-31 06:06 - 00580096 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2014-11-17 12:18 - 2014-10-31 06:06 - 00237568 _____ (Microsoft Corporation) C:\WINDOWS\system32\url.dll
2014-11-17 12:18 - 2014-10-31 06:06 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll
2014-11-17 12:18 - 2014-10-31 06:06 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll
2014-11-17 12:18 - 2014-10-31 06:05 - 02884096 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2014-11-17 12:18 - 2014-10-31 06:05 - 00417280 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec
2014-11-17 12:18 - 2014-10-31 06:04 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll
2014-11-17 12:18 - 2014-10-31 05:57 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2014-11-17 12:18 - 2014-10-31 05:56 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll
2014-11-17 12:18 - 2014-10-31 05:54 - 00132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\IEAdvpack.dll
2014-11-17 12:18 - 2014-10-31 05:53 - 00633856 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll
2014-11-17 12:18 - 2014-10-31 05:52 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\hlink.dll
2014-11-17 12:18 - 2014-10-31 05:51 - 00812544 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2014-11-17 12:18 - 2014-10-31 05:51 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe
2014-11-17 12:18 - 2014-10-31 05:51 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe
2014-11-17 12:18 - 2014-10-31 05:50 - 06040064 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2014-11-17 12:18 - 2014-10-31 05:50 - 00814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2014-11-17 12:18 - 2014-10-31 05:40 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\licmgr10.dll
2014-11-17 12:18 - 2014-10-31 05:38 - 00490496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
2014-11-17 12:18 - 2014-10-31 05:30 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\JavaScriptCollectionAgent.dll
2014-11-17 12:18 - 2014-10-31 05:29 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesysprep.dll
2014-11-17 12:18 - 2014-10-31 05:29 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx
2014-11-17 12:18 - 2014-10-31 05:28 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\inseng.dll
2014-11-17 12:18 - 2014-10-31 05:25 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll
2014-11-17 12:18 - 2014-10-31 05:24 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2014-11-17 12:18 - 2014-10-31 05:24 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedsbs.dll
2014-11-17 12:18 - 2014-10-31 05:23 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2014-11-17 12:18 - 2014-10-31 05:21 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2014-11-17 12:18 - 2014-10-31 05:19 - 00152064 _____ (Microsoft Corporation) C:\WINDOWS\system32\occache.dll
2014-11-17 12:18 - 2014-10-31 05:15 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2014-11-17 12:18 - 2014-10-31 05:08 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2014-11-17 12:18 - 2014-10-31 05:06 - 00372736 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2014-11-17 12:18 - 2014-10-31 05:05 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2014-11-17 12:18 - 2014-10-31 05:05 - 00716800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2014-11-17 12:18 - 2014-10-31 05:03 - 02124288 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2014-11-17 12:18 - 2014-10-31 04:59 - 14390272 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2014-11-17 12:18 - 2014-10-31 04:45 - 02365440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2014-11-17 12:18 - 2014-10-31 04:44 - 02865152 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2014-11-17 12:18 - 2014-10-31 04:42 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\imgutil.dll
2014-11-17 12:18 - 2014-10-31 04:32 - 01550336 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2014-11-17 12:18 - 2014-10-31 04:28 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wextract.exe
2014-11-17 12:18 - 2014-10-31 04:28 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshta.exe
2014-11-17 12:18 - 2014-10-31 04:27 - 00152064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iexpress.exe
2014-11-17 12:18 - 2014-10-31 04:26 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pngfilt.dll
2014-11-17 12:18 - 2014-10-31 04:25 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeedssync.exe
2014-11-17 12:18 - 2014-10-31 04:24 - 00501248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2014-11-17 12:18 - 2014-10-31 04:24 - 00235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\url.dll
2014-11-17 12:18 - 2014-10-31 04:24 - 00062464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll
2014-11-17 12:18 - 2014-10-31 04:23 - 00340992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\html.iec
2014-11-17 12:18 - 2014-10-31 04:23 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll
2014-11-17 12:18 - 2014-10-31 04:22 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
2014-11-17 12:18 - 2014-10-31 04:20 - 00799232 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2014-11-17 12:18 - 2014-10-31 04:18 - 02277376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2014-11-17 12:18 - 2014-10-31 04:16 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2014-11-17 12:18 - 2014-10-31 04:15 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll
2014-11-17 12:18 - 2014-10-31 04:14 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IEAdvpack.dll
2014-11-17 12:18 - 2014-10-31 04:13 - 00478208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieui.dll
2014-11-17 12:18 - 2014-10-31 04:13 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hlink.dll
2014-11-17 12:18 - 2014-10-31 04:12 - 00661504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2014-11-17 12:18 - 2014-10-31 04:12 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe
2014-11-17 12:18 - 2014-10-31 04:11 - 00620032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2014-11-17 12:18 - 2014-10-31 04:03 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\licmgr10.dll
2014-11-17 12:18 - 2014-10-31 04:02 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll
2014-11-17 12:18 - 2014-10-31 03:57 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JavaScriptCollectionAgent.dll
2014-11-17 12:18 - 2014-10-31 03:56 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inseng.dll
2014-11-17 12:18 - 2014-10-31 03:56 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesysprep.dll
2014-11-17 12:18 - 2014-10-31 03:56 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx
2014-11-17 12:18 - 2014-10-31 03:53 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll
2014-11-17 12:18 - 2014-10-31 03:53 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeedsbs.dll
2014-11-17 12:18 - 2014-10-31 03:52 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2014-11-17 12:18 - 2014-10-31 03:51 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll
2014-11-17 12:18 - 2014-10-31 03:50 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2014-11-17 12:18 - 2014-10-31 03:48 - 00130048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\occache.dll
2014-11-17 12:18 - 2014-10-31 03:46 - 04298240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2014-11-17 12:18 - 2014-10-31 03:46 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2014-11-17 12:18 - 2014-10-31 03:42 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
2014-11-17 12:18 - 2014-10-31 03:40 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2014-11-17 12:18 - 2014-10-31 03:40 - 00325632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2014-11-17 12:18 - 2014-10-31 03:39 - 02051072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2014-11-17 12:18 - 2014-10-31 03:30 - 12819456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2014-11-17 12:18 - 2014-10-31 03:26 - 01042944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2014-11-17 12:18 - 2014-10-31 03:24 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imgutil.dll
2014-11-17 12:18 - 2014-10-31 03:17 - 01892864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2014-11-17 12:18 - 2014-10-31 03:13 - 01310208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2014-11-17 12:18 - 2014-10-31 03:11 - 00708096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2014-11-17 12:18 - 2014-10-23 06:48 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\packager.dll
2014-11-17 12:18 - 2014-10-23 06:05 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\packager.dll
2014-11-17 12:18 - 2014-10-17 08:01 - 00789184 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2014-11-17 12:18 - 2014-10-17 07:58 - 00602768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2014-11-17 12:18 - 2014-10-10 02:58 - 00177472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2014-11-17 12:18 - 2014-10-10 02:58 - 00027456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpvideominiport.sys
2014-11-17 12:18 - 2014-10-10 02:44 - 00563976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2014-11-17 12:18 - 2014-10-08 08:37 - 00736768 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll
2014-11-17 12:18 - 2014-10-08 08:37 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msaudite.dll
2014-11-17 12:18 - 2014-10-08 08:34 - 00131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2014-11-17 12:18 - 2014-10-08 08:24 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\rfxvmt.dll
2014-11-17 12:18 - 2014-10-08 07:56 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2014-11-17 12:18 - 2014-10-08 07:51 - 00736768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adtschema.dll
2014-11-17 12:18 - 2014-10-08 07:51 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msaudite.dll
2014-11-17 12:18 - 2014-10-08 07:18 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2014-11-17 12:18 - 2014-10-08 07:17 - 01441792 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2014-11-17 12:18 - 2014-10-08 06:23 - 03547648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2014-11-17 12:18 - 2014-10-07 04:30 - 04182016 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2014-11-17 12:17 - 2014-10-18 10:55 - 00055776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2014-11-17 12:17 - 2014-10-18 09:09 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2014-11-17 12:17 - 2014-10-18 09:09 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2014-11-17 12:17 - 2014-10-18 08:25 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2014-11-17 12:17 - 2014-10-18 07:50 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaext.dll
2014-11-17 12:17 - 2014-10-18 07:38 - 03557376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2014-11-17 12:17 - 2014-10-18 07:27 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe
2014-11-17 12:17 - 2014-10-18 07:26 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll
2014-11-17 12:17 - 2014-10-18 07:23 - 00407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
2014-11-17 12:17 - 2014-10-18 07:23 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2014-11-17 12:17 - 2014-10-18 07:21 - 00894976 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2014-11-17 12:17 - 2014-10-18 07:20 - 01714176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
2014-11-17 12:17 - 2014-10-18 07:14 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll
2014-11-17 12:17 - 2014-10-18 07:14 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe
2014-11-17 12:17 - 2014-10-18 07:12 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2014-11-17 12:17 - 2014-10-18 07:11 - 00723968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2014-11-15 19:18 - 2014-11-15 19:18 - 00017388 _____ () C:\Users\Frank\Downloads\Formular(1).zip
2014-11-15 16:49 - 2014-11-17 11:30 - 00000000 ____D () C:\ProgramData\Intel.sav
2014-11-15 16:43 - 2014-11-15 16:43 - 00664768 _____ (Copyright© 2012-2013 Intel Corporation. All rights reserved.) C:\Users\Frank\Downloads\Intel(R) WiDi Update Tool(1).exe
2014-11-15 16:41 - 2014-11-15 16:41 - 05353024 _____ () C:\Users\Frank\Downloads\SETUP_Win81_Updater_02(1).exe
2014-11-11 09:01 - 2014-11-11 09:01 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-11-10 10:37 - 2014-11-10 10:37 - 11666104 _____ () C:\Users\Frank\Downloads\moziloCMS_Backup_Include_catpage_layouts_plugins_docu_2014_11_10_10-37-11.zip
2014-11-10 10:36 - 2014-11-10 10:36 - 02361037 _____ () C:\Users\Frank\Downloads\moziloCMS_Backup_Include_layouts_2014_11_10_10-36-49.zip
2014-11-09 18:17 - 2014-11-09 18:52 - 176370030 _____ () C:\Users\Frank\Downloads\Kamera-Uploads.zip
2014-11-08 11:21 - 2014-11-08 11:22 - 00001734 _____ () C:\Users\Frank\Desktop\BVB.lnk
2014-11-07 14:32 - 2014-11-07 14:32 - 00000000 ____D () C:\Users\Frank\AppData\Local\GHISLER
2014-11-07 14:30 - 2014-11-07 17:06 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\GHISLER
2014-11-07 14:30 - 2014-11-07 14:30 - 00000811 _____ () C:\Users\Public\Desktop\Total Commander 64 bit.lnk
2014-11-07 14:30 - 2014-11-07 14:30 - 00000799 _____ () C:\Users\Public\Desktop\Total Commander.lnk
2014-11-07 14:30 - 2014-11-07 14:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Total Commander
2014-11-07 14:27 - 2014-11-07 14:27 - 01125200 _____ () C:\Users\Frank\Downloads\Total Commander - CHIP-Installer.exe
2014-11-06 17:52 - 2014-11-06 17:52 - 00000000 ____D () C:\Users\Frank\Downloads\1.12_collektion(1)
2014-11-06 17:51 - 2014-11-06 17:52 - 04519421 _____ () C:\Users\Frank\Downloads\1.12_collektion(1).zip
2014-11-06 09:34 - 2014-11-06 09:34 - 00007269 _____ () C:\Users\Frank\Downloads\jQbackstretch.zip
2014-11-05 11:45 - 2014-11-05 11:45 - 10995296 _____ (Deutsche Telekom AG, Marmiko IT-Solutions GmbH ) C:\Users\Frank\Downloads\netzmanager_setup.exe
2014-11-04 16:36 - 2014-11-04 16:36 - 00000000 ____D () C:\Users\Frank\Documents\NewBlueFX
2014-11-04 16:36 - 2014-11-04 16:36 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Titler
2014-11-04 09:54 - 2014-11-04 09:54 - 00000000 ____D () C:\WINDOWS\system32\config\RegBack 2014-11-04 09-30-30
2014-11-04 09:54 - 2014-11-04 09:54 - 00000000 ____D () C:\Users\UpdatusUser\RegBack 2014-11-04 09-30-30
2014-11-04 09:54 - 2014-11-04 09:54 - 00000000 ____D () C:\Users\Frank\RegBack 2014-11-04 09-30-30
2014-11-04 09:48 - 2014-11-04 09:48 - 00070152 _____ (simplitec GmbH) C:\WINDOWS\system32\RegDefragNT.exe
2014-11-04 09:25 - 2014-11-04 09:25 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NewBlue
2014-11-03 18:33 - 2014-11-03 18:38 - 139167091 _____ () C:\Users\Frank\Downloads\Mit dem Rollstuhl duch den Harz_ Teil 1 - Torfhaus.mp4
2014-11-03 16:45 - 2014-11-03 16:45 - 00000000 ____D () C:\Users\Public\Documents\MAGIX
2014-11-03 15:40 - 2014-11-03 15:40 - 03033136 _____ (MAGIX Software GmbH) C:\Users\Frank\Downloads\videodeluxe2015plus_dlm.exe
2014-10-31 12:01 - 2014-10-31 12:02 - 06126536 _____ (Tim Kosse) C:\Users\Frank\Downloads\FileZilla_3.9.0.6_win32-setup.exe
2014-10-30 17:27 - 2014-10-30 17:27 - 00000000 ____D () C:\Program Files\Common Files\MAGIX Shared
2014-10-30 17:02 - 2014-11-06 08:37 - 00000376 _____ () C:\WINDOWS\Tasks\simplitec Power Suite.job
2014-10-30 17:02 - 2014-10-30 17:02 - 00002746 _____ () C:\WINDOWS\System32\Tasks\simplitec Power Suite
2014-10-30 13:48 - 2014-10-30 13:49 - 00000000 ____D () C:\Users\Frank\Downloads\Video_Deluxe_2015_Plus_x86_x64
2014-10-30 12:54 - 2014-10-30 13:22 - 851036253 _____ () C:\Users\Frank\Downloads\Video_Deluxe_2015_Plus_x86_x64.zip
2014-10-30 11:07 - 2014-10-30 11:07 - 05425008 _____ (MAGIX AG) C:\Users\Frank\Downloads\vdx17plus_videoplugins_de.exe
2014-10-30 09:05 - 2014-10-30 09:09 - 00000000 ____D () C:\Program Files (x86)\CHIP Updater
2014-10-30 09:02 - 2014-10-30 09:02 - 01125200 _____ () C:\Users\Frank\Downloads\PSPad - CHIP-Installer.exe
2014-10-29 18:23 - 2014-10-29 18:26 - 91670064 _____ (The GIMP Team ) C:\Users\Frank\Downloads\gimp-2.8.14-setup.exe
2014-10-29 18:18 - 2014-10-29 18:18 - 01125200 _____ () C:\Users\Frank\Downloads\Facebook Timeline PSD Template - CHIP-Installer.exe
2014-10-29 16:41 - 2014-10-29 20:09 - 00000000 ____D () C:\Users\Frank\Downloads\IBP-Facebook-Titelbild-Vorlage.psd_
2014-10-29 16:35 - 2014-10-29 16:35 - 03572237 _____ () C:\Users\Frank\Downloads\IBP-Facebook-Titelbild-Vorlage.psd_.zip
2014-10-29 13:55 - 2014-10-29 13:55 - 00162770 _____ () C:\Users\Frank\Downloads\HTMLTag_plugin_v0.50_unicode.zip
2014-10-27 18:32 - 2014-10-27 18:32 - 00000000 ____D () C:\Users\Frank\Documents\Speedport
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-11-26 10:11 - 2013-12-29 13:30 - 01305999 _____ () C:\WINDOWS\WindowsUpdate.log
2014-11-26 10:08 - 2014-03-12 17:39 - 00000000 ___DO () C:\Users\Frank\SkyDrive
2014-11-26 10:08 - 2013-08-02 10:44 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Dropbox
2014-11-26 10:06 - 2013-08-22 15:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-11-26 10:06 - 2013-07-14 07:48 - 00000884 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-11-26 10:05 - 2013-12-29 13:30 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-11-26 10:05 - 2013-11-13 23:18 - 00093416 _____ () C:\WINDOWS\PFRO.log
2014-11-26 10:05 - 2013-08-22 14:25 - 00524288 ___SH () C:\WINDOWS\system32\config\BBI
2014-11-26 10:03 - 2013-12-29 13:34 - 00000000 ____D () C:\Users\Frank
2014-11-26 10:00 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2014-11-26 09:56 - 2014-01-07 18:43 - 00000000 ____D () C:\Users\Frank\Documents\2014
2014-11-26 09:40 - 2013-07-14 07:48 - 00003772 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2014-11-26 08:48 - 2012-07-26 08:59 - 00000000 ____D () C:\WINDOWS\CbsTemp
2014-11-26 08:47 - 2013-11-14 08:27 - 01789004 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-11-26 08:47 - 2013-11-14 08:11 - 00768888 _____ () C:\WINDOWS\system32\perfh007.dat
2014-11-26 08:47 - 2013-11-14 08:11 - 00160706 _____ () C:\WINDOWS\system32\perfc007.dat
2014-11-26 08:47 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2014-11-25 18:57 - 2013-07-17 08:45 - 00000000 ____D () C:\Users\Frank\Documents\1 Exel Tabellen
2014-11-25 17:55 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\FxsTmp
2014-11-25 14:59 - 2013-09-26 15:00 - 00000000 ____D () C:\Program Files (x86)\StarMoney 9.0
2014-11-25 12:31 - 2013-07-21 11:43 - 00000000 ____D () C:\Users\Frank\Documents\PDF
2014-11-25 11:15 - 2013-07-18 09:29 - 00033792 _____ () C:\Users\Frank\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-11-25 10:10 - 2013-07-13 18:09 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-348412604-1390753195-2502655749-1002
2014-11-24 16:49 - 2014-08-23 11:34 - 00122584 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2014-11-24 16:29 - 2013-08-22 15:46 - 00362370 _____ () C:\WINDOWS\setupact.log
2014-11-24 10:02 - 2013-07-18 10:50 - 04205568 ___SH () C:\Users\Frank\Downloads\Thumbs.db
2014-11-23 13:25 - 2013-07-19 11:07 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\FileZilla
2014-11-23 11:38 - 2013-07-21 10:40 - 00000000 ____D () C:\Users\Frank\Documents\2012
2014-11-23 09:30 - 2012-11-08 05:49 - 00038350 _____ () C:\WINDOWS\DirectX.log
2014-11-20 09:58 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\rescache
2014-11-20 09:26 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\NDF
2014-11-19 12:22 - 2013-07-17 17:32 - 00000000 ____D () C:\Users\Frank\Documents\BVB
2014-11-19 08:42 - 2013-08-22 15:44 - 00761792 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-11-18 20:09 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-11-18 20:09 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-11-18 20:09 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Defender
2014-11-18 20:09 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2014-11-18 20:08 - 2013-08-22 16:36 - 00000000 ___RD () C:\WINDOWS\ToastData
2014-11-18 20:08 - 2013-08-22 16:36 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel
2014-11-18 20:08 - 2013-07-19 09:25 - 00000000 ____D () C:\WINDOWS\system32\MRT
2014-11-18 20:05 - 2013-07-14 07:53 - 103374192 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-11-18 12:04 - 2013-09-27 08:45 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\GLS Vereinsmeister
2014-11-17 13:45 - 2013-07-25 16:00 - 00005607 _____ () C:\WirelessDiagLog.csv
2014-11-17 11:33 - 2014-08-23 11:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-11-17 11:31 - 2012-11-08 05:33 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel PROSet Wireless
2014-11-17 11:30 - 2014-08-23 11:34 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-11-17 11:30 - 2013-12-23 18:07 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-11-17 11:30 - 2013-07-31 18:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Corporation
2014-11-17 11:20 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\registration
2014-11-17 11:19 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\system32\Sysprep
2014-11-17 11:16 - 2014-08-06 11:20 - 00000000 ____D () C:\ProgramData\Package Cache
2014-11-17 11:16 - 2012-11-08 05:33 - 00000000 ____D () C:\ProgramData\Intel
2014-11-17 11:16 - 2012-11-08 05:33 - 00000000 ____D () C:\Program Files\Intel
2014-11-15 16:50 - 2013-08-30 18:59 - 00000000 ____D () C:\Users\RYU
2014-11-15 16:50 - 2012-07-26 06:37 - 00000000 ____D () C:\Users\Default.migrated
2014-11-15 16:49 - 2012-11-08 05:33 - 00025958 _____ () C:\WINDOWS\DPINST.LOG
2014-11-09 08:39 - 2012-12-04 07:45 - 00000000 ____D () C:\WINDOWS\SysWOW64\NV
2014-11-09 08:39 - 2012-12-04 07:45 - 00000000 ____D () C:\WINDOWS\system32\NV
2014-11-08 11:21 - 2013-07-31 13:57 - 00045568 ___SH () C:\Users\Frank\Desktop\Thumbs.db
2014-11-08 11:19 - 2014-07-07 16:33 - 00000000 ____D () C:\Users\Frank\AppData\Local\Adobe
2014-11-07 19:34 - 2014-08-06 11:20 - 00001160 _____ () C:\Users\Public\Desktop\Avira.lnk
2014-11-07 19:34 - 2013-07-14 17:33 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2014-11-07 19:34 - 2013-07-14 17:33 - 00000000 ____D () C:\Program Files (x86)\Avira
2014-11-06 10:58 - 2013-07-15 10:24 - 00247632 _____ () C:\Users\Frank\AppData\Local\GDIPFONTCACHEV1.DAT
2014-11-05 10:07 - 2013-07-14 15:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2014-11-05 10:07 - 2013-07-14 15:27 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-11-04 17:43 - 2013-07-18 09:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ACD Systems
2014-11-04 11:50 - 2012-07-26 06:26 - 00000167 _____ () C:\WINDOWS\win.ini
2014-11-04 09:55 - 2013-08-22 14:25 - 91750400 _____ () C:\WINDOWS\system32\config\SOFTWARE.bak
2014-11-04 09:55 - 2013-08-22 14:25 - 13893632 _____ () C:\WINDOWS\system32\config\SYSTEM.bak
2014-11-04 09:55 - 2013-08-22 14:25 - 00262144 _____ () C:\WINDOWS\system32\config\SECURITY.bak
2014-11-04 09:53 - 2013-08-22 14:25 - 00524288 _____ () C:\WINDOWS\system32\config\DEFAULT.bak
2014-11-04 09:53 - 2013-08-22 14:25 - 00262144 _____ () C:\WINDOWS\system32\config\SAM.bak
2014-11-04 09:30 - 2013-07-19 12:32 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\MAGIX
2014-11-04 09:30 - 2012-12-04 07:41 - 00000000 ____D () C:\ProgramData\MAGIX
2014-11-03 16:45 - 2013-07-19 12:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MAGIX
2014-10-31 12:02 - 2013-07-19 11:07 - 00001074 _____ () C:\Users\Public\Desktop\FileZilla Client.lnk
2014-10-30 17:51 - 2013-07-19 13:00 - 00000000 ___RD () C:\Users\Frank\Documents\MAGIX
2014-10-30 17:27 - 2013-08-05 10:05 - 00000000 ____D () C:\Users\Frank\AppData\Local\MAGIX
2014-10-30 17:03 - 2013-07-19 12:19 - 00000000 ____D () C:\Program Files (x86)\MAGIX
2014-10-30 09:09 - 2014-08-19 11:36 - 00000000 ____D () C:\WINDOWS\System32\Tasks\Abelssoft
2014-10-30 01:55 - 2013-08-22 16:38 - 00714208 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2014-10-30 01:55 - 2013-08-22 16:38 - 00106976 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2014-10-29 14:01 - 2014-07-12 12:32 - 00000901 _____ () C:\Users\UpdatusUser\Desktop\Notepad++.lnk
2014-10-29 14:01 - 2014-07-12 12:32 - 00000901 _____ () C:\Users\Frank\Desktop\Notepad++.lnk
2014-10-29 14:01 - 2013-11-25 19:06 - 00000000 ____D () C:\Users\Frank\AppData\Roaming\Notepad++
2014-10-27 15:26 - 2013-07-13 18:01 - 00000000 ____D () C:\Users\Frank\AppData\Local\VirtualStore
Some content of TEMP:
====================
C:\Users\Frank\AppData\Local\Temp\avgnt.exe
C:\Users\Frank\AppData\Local\Temp\ChangeIcon.exe
C:\Users\Frank\AppData\Local\Temp\CIB6CC4.tmp.exe
C:\Users\Frank\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpeyxbgv.dll
C:\Users\Frank\AppData\Local\Temp\icqsetup.exe
C:\Users\Frank\AppData\Local\Temp\mpam-54ba7f35.exe
C:\Users\Frank\AppData\Local\Temp\npp.6.5.4.Installer.exe
C:\Users\Frank\AppData\Local\Temp\npp.6.5.5.Installer.exe
C:\Users\Frank\AppData\Local\Temp\npp.6.6.6.Installer.exe
C:\Users\Frank\AppData\Local\Temp\npp.6.6.7.Installer.exe
C:\Users\Frank\AppData\Local\Temp\npp.6.6.9.Installer.exe
C:\Users\Frank\AppData\Local\Temp\Quarantine.exe
C:\Users\Frank\AppData\Local\Temp\sqlite3.dll
C:\Users\Frank\AppData\Local\Temp\Update_Simplitec_PowerSuite_1.5.2.2de_DE.exe
C:\Users\Frank\AppData\Local\Temp\xmlUpdater.exe
C:\Users\Frank\AppData\Local\Temp\_is84C7.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-11-23 10:09
==================== End Of Log ============================
--- --- ---
--- --- ---