Code:
46 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-02-06 16:46 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-02-06 16:46 - 2014-11-21 06:14 - 00064216 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-02-06 16:46 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-02-06 16:45 - 2015-02-06 16:59 - 00000000 ____D () C:\Program Files (x86)\MyTubeTheater
2015-02-06 16:45 - 2015-02-06 16:45 - 00001992 _____ () C:\Users\Yuumura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyTubeTheater.lnk
2015-02-06 16:45 - 2015-02-06 16:45 - 00000000 ____D () C:\Users\Yuumura\AppData\Local\mtt_de_4
2015-02-06 16:40 - 2015-02-06 17:06 - 00000000 ____D () C:\Users\Yuumura\AppData\Roaming\Opera Software
2015-02-06 16:40 - 2015-02-06 17:06 - 00000000 ____D () C:\Users\Yuumura\AppData\Local\Opera Software
2015-02-06 16:39 - 2015-02-06 17:18 - 00000000 ____D () C:\Program Files (x86)\Opera
2015-02-06 16:35 - 2015-02-06 16:35 - 00000000 ____D () C:\Users\Yuumura\AppData\Local\Google
2015-02-06 16:34 - 2015-02-06 16:34 - 00003886 _____ () C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2015-02-06 16:33 - 2015-02-03 20:31 - 00714720 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-02-06 16:33 - 2015-02-03 20:31 - 00106976 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-02-06 08:45 - 2015-02-06 20:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-02-06 08:45 - 2015-02-06 08:45 - 00000000 ____D () C:\Program Files\Common Files\DESIGNER
2015-02-06 08:45 - 2015-02-06 08:45 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server
2015-02-06 08:44 - 2015-02-06 08:45 - 00000000 ____D () C:\Program Files\Microsoft SQL Server
2015-02-06 08:44 - 2015-02-06 08:44 - 00000000 ____D () C:\Windows\PCHEALTH
2015-02-06 08:42 - 2015-02-06 20:20 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-02-06 08:42 - 2015-02-06 08:44 - 00000000 ____D () C:\Program Files\Microsoft Office
2015-02-06 08:42 - 2015-02-06 08:42 - 00000000 __RHD () C:\MSOCache
2015-02-06 08:42 - 2015-02-06 08:42 - 00000000 ____D () C:\Users\Yuumura\AppData\Local\Microsoft Help
2015-02-06 08:42 - 2015-02-06 08:42 - 00000000 ____D () C:\Program Files\Microsoft Analysis Services
2015-02-06 08:42 - 2015-02-06 08:42 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2015-02-06 08:42 - 2015-02-06 08:42 - 00000000 ____D () C:\Program Files (x86)\Microsoft Analysis Services
2015-02-06 08:41 - 2015-02-06 08:42 - 00000000 ____D () C:\Users\Yuumura\AppData\Roaming\DAEMON Tools Lite
2015-02-06 08:41 - 2015-02-06 08:41 - 00283064 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys
2015-02-06 08:41 - 2015-02-06 08:41 - 00001962 _____ () C:\Users\Public\Desktop\DAEMON Tools Lite.lnk
2015-02-06 08:41 - 2015-02-06 08:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2015-02-06 08:41 - 2015-02-06 08:41 - 00000000 ____D () C:\Program Files (x86)\DAEMON Tools Lite
2015-02-06 08:40 - 2015-02-06 08:42 - 00000000 ____D () C:\ProgramData\DAEMON Tools Lite
2015-02-06 08:37 - 2015-02-07 09:35 - 00000000 ____D () C:\Users\Yuumura\AppData\Roaming\WinRAR
2015-02-06 08:21 - 2015-02-06 17:00 - 00000000 ____D () C:\ProgramData\7e4df1c2-17ef-43f5-93e3-fbd2eceaa42c
2015-02-06 07:50 - 2015-02-06 07:52 - 00000000 ____D () C:\ProgramData\Adobe
2015-02-06 07:50 - 2015-02-06 07:50 - 00002457 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2015-02-06 07:50 - 2015-02-06 07:50 - 00002039 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk
2015-02-06 07:50 - 2015-02-06 07:50 - 00000000 ____D () C:\Program Files (x86)\Adobe
2015-02-06 07:43 - 2015-02-06 07:43 - 00002049 _____ () C:\Users\Yuumura\Desktop\JDownloader.lnk
2015-02-06 07:43 - 2015-02-06 07:43 - 00002013 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JDownloader.lnk
2015-02-06 07:43 - 2015-02-06 07:43 - 00002002 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JDownloader Deinstallationsprogramm.lnk
2015-02-06 07:43 - 2015-02-06 07:43 - 00001936 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JDownloader Update.lnk
2015-02-06 07:42 - 2015-02-07 09:01 - 00000000 ____D () C:\Program Files (x86)\JDownloader
2015-02-06 07:42 - 2015-02-06 07:41 - 00272296 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2015-02-06 07:42 - 2015-02-06 07:41 - 00176552 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2015-02-06 07:42 - 2015-02-06 07:41 - 00176552 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2015-02-06 07:41 - 2015-02-06 07:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-02-06 07:41 - 2015-02-06 07:42 - 00000000 ____D () C:\Program Files (x86)\Java
2015-02-06 07:41 - 2015-02-06 07:41 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-02-06 07:41 - 2015-02-06 07:41 - 00000000 ____D () C:\ProgramData\Sun
2015-02-06 07:41 - 2015-02-06 07:41 - 00000000 ____D () C:\ProgramData\Oracle
2015-02-06 07:34 - 2014-04-16 00:35 - 00028352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aspnet_counters.dll
2015-02-06 07:34 - 2014-04-16 00:34 - 00029888 _____ (Microsoft Corporation) C:\Windows\system32\aspnet_counters.dll
2015-02-06 07:32 - 2014-03-20 04:41 - 00376152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys
2015-02-06 07:32 - 2014-03-13 13:35 - 00157016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wof.sys
2015-02-06 07:32 - 2014-03-06 10:24 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2015-02-06 07:32 - 2014-03-06 10:24 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys
2015-02-06 07:32 - 2014-03-06 10:22 - 00134144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys
2015-02-06 07:32 - 2014-03-06 10:19 - 00283648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-02-06 07:32 - 2014-03-06 10:19 - 00049152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys
2015-02-06 07:32 - 2014-02-08 02:08 - 00139600 _____ () C:\Windows\system32\systemsf.ebd
2015-02-06 07:31 - 2014-02-22 17:00 - 00249688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdyboost.sys
2015-02-06 07:31 - 2014-02-22 16:55 - 01435304 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll
2015-02-06 07:31 - 2014-02-22 16:55 - 00244848 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll
2015-02-06 07:31 - 2014-02-22 13:20 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-system-events.dll
2015-02-06 07:31 - 2014-02-22 12:57 - 00156672 _____ (Microsoft Corporation) C:\Windows\system32\slc.dll
2015-02-06 07:31 - 2014-02-22 12:54 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\sppc.dll
2015-02-06 07:31 - 2014-02-22 12:06 - 00148992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\slc.dll
2015-02-06 07:31 - 2014-02-22 12:05 - 00095232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppc.dll
2015-02-06 07:31 - 2014-02-22 11:18 - 00722432 _____ (Microsoft Corporation) C:\Windows\system32\WindowsAnytimeUpgradeui.exe
2015-02-06 07:31 - 2014-02-22 10:36 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\Dism.exe
2015-02-06 07:31 - 2014-02-22 10:33 - 00653312 _____ (Microsoft Corporation) C:\Windows\system32\DismApi.dll
2015-02-06 07:31 - 2014-02-22 10:15 - 00211968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Dism.exe
2015-02-06 07:31 - 2014-02-22 10:12 - 00459776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DismApi.dll
2015-02-06 07:31 - 2014-02-22 05:33 - 00262335 _____ () C:\Windows\system32\dfpinc.dat
2015-02-06 07:30 - 2014-02-22 17:15 - 00071888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpfve.sys
2015-02-06 07:30 - 2014-02-22 17:00 - 00079192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fileinfo.sys
2015-02-06 07:30 - 2014-02-22 16:49 - 00079192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdstor.sys
2015-02-06 07:30 - 2014-02-22 16:43 - 00142576 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-02-06 07:30 - 2014-02-22 13:20 - 00128512 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-kernel-power-events.dll
2015-02-06 07:30 - 2014-02-22 13:17 - 00890880 _____ (Microsoft Corporation) C:\Windows\system32\autochk.exe
2015-02-06 07:30 - 2014-02-22 13:17 - 00874496 _____ (Microsoft Corporation) C:\Windows\system32\autofmt.exe
2015-02-06 07:30 - 2014-02-22 13:17 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\f3ahvoas.dll
2015-02-06 07:30 - 2014-02-22 13:17 - 00008192 ____H (Microsoft Corporation) C:\Windows\system32\ext-ms-win-ntuser-private-l1-1-1.dll
2015-02-06 07:30 - 2014-02-22 13:17 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\ext-ms-win-session-winsta-l1-1-0.dll
2015-02-06 07:30 - 2014-02-22 13:17 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\ext-ms-win-ntuser-private-l1-1-0.dll
2015-02-06 07:30 - 2014-02-22 13:17 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\ext-ms-win-kernel32-package-l1-1-1.dll
2015-02-06 07:30 - 2014-02-22 13:14 - 00124416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\luafv.sys
2015-02-06 07:30 - 2014-02-22 13:14 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\watchdog.sys
2015-02-06 07:30 - 2014-02-22 13:14 - 00033280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BasicRender.sys
2015-02-06 07:30 - 2014-02-22 13:09 - 00663040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\PEAuth.sys
2015-02-06 07:30 - 2014-02-22 13:07 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\clrhost.dll
2015-02-06 07:30 - 2014-02-22 13:01 - 00094720 _____ (Microsoft Corporation) C:\Windows\system32\spcompat.dll
2015-02-06 07:30 - 2014-02-22 12:59 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\WindowsAnytimeUpgrade.exe
2015-02-06 07:30 - 2014-02-22 12:25 - 00028160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\f3ahvoas.dll
2015-02-06 07:30 - 2014-02-22 12:25 - 00008192 ____H (Microsoft Corporation) C:\Windows\SysWOW64\ext-ms-win-ntuser-private-l1-1-1.dll
2015-02-06 07:30 - 2014-02-22 12:25 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\ext-ms-win-ntuser-private-l1-1-0.dll
2015-02-06 07:30 - 2014-02-22 12:24 - 00792576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autochk.exe
2015-02-06 07:30 - 2014-02-22 12:24 - 00780288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autofmt.exe
2015-02-06 07:30 - 2014-02-22 12:24 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\ext-ms-win-session-winsta-l1-1-0.dll
2015-02-06 07:30 - 2014-02-22 12:24 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\ext-ms-win-networking-wcmapi-l1-1-0.dll
2015-02-06 07:30 - 2014-02-22 12:24 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\ext-ms-win-kernel32-package-l1-1-1.dll
2015-02-06 07:30 - 2014-02-22 12:16 - 00012288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clrhost.dll
2015-02-06 07:30 - 2014-02-22 11:47 - 00127488 _____ (Microsoft Corporation) C:\Windows\system32\migisol.dll
2015-02-06 07:30 - 2014-02-22 11:34 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\WindowsAnytimeUpgradeResults.exe
2015-02-06 07:30 - 2014-02-22 11:09 - 00097280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\migisol.dll
2015-02-06 07:30 - 2014-02-22 05:43 - 00002440 ___RS () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileManager.lnk
2015-02-06 07:30 - 2014-02-22 05:37 - 00000369 _____ () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2015-02-06 07:30 - 2014-02-22 05:37 - 00000369 _____ () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2015-02-06 07:30 - 2014-02-22 05:37 - 00000369 _____ () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2015-02-06 07:30 - 2014-02-22 05:37 - 00000369 _____ () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2015-02-06 07:30 - 2014-02-08 02:08 - 00100197 _____ () C:\Windows\SysWOW64\RacRules.xml
2015-02-06 07:30 - 2014-02-08 02:08 - 00100197 _____ () C:\Windows\system32\RacRules.xml
2015-02-06 07:30 - 2014-02-01 07:00 - 00011109 _____ () C:\Windows\SysWOW64\connectedsearch-results.searchconnector-ms
2015-02-06 07:30 - 2014-02-01 07:00 - 00011109 _____ () C:\Windows\system32\connectedsearch-results.searchconnector-ms
2015-02-06 07:30 - 2014-02-01 07:00 - 00007762 _____ () C:\Windows\SysWOW64\connectedsearch-suggestions.searchconnector-ms
2015-02-06 07:30 - 2014-02-01 07:00 - 00007762 _____ () C:\Windows\system32\connectedsearch-suggestions.searchconnector-ms
2015-02-06 07:30 - 2014-02-01 07:00 - 00007130 _____ () C:\Windows\SysWOW64\connectedsearch-zeroinput.searchconnector-ms
2015-02-06 07:30 - 2014-02-01 07:00 - 00007130 _____ () C:\Windows\system32\connectedsearch-zeroinput.searchconnector-ms
2015-02-06 07:30 - 2014-02-01 07:00 - 00002255 _____ () C:\Windows\SysWOW64\WimBootCompress.ini
2015-02-06 07:30 - 2014-02-01 07:00 - 00002255 _____ () C:\Windows\system32\WimBootCompress.ini
2015-02-06 07:30 - 2014-01-29 09:40 - 00994136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2015-02-06 07:30 - 2014-01-27 20:53 - 00413184 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2015-02-06 07:30 - 2014-01-27 20:48 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rfcomm.sys
2015-02-05 22:23 - 2015-02-05 22:23 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Printers
2015-02-05 22:23 - 2015-02-05 22:23 - 00000000 ____D () C:\Users\Yuumura\AppData\Roaming\Samsung
2015-02-05 22:23 - 2015-02-05 22:23 - 00000000 ____D () C:\Program Files\Common Files\Common Desktop Agent
2015-02-05 22:23 - 2015-02-05 22:23 - 00000000 ____D () C:\Program Files (x86)\Samsung
2015-02-05 22:14 - 2015-02-05 22:14 - 00000000 ____D () C:\Users\Yuumura\AppData\Local\IPVanish.com
2015-02-05 22:14 - 2015-02-05 22:14 - 00000000 ____D () C:\Users\Yuumura\AppData\Local\IPVanish
2015-02-05 22:13 - 2015-02-05 22:14 - 00000000 ____D () C:\Program Files (x86)\IPVanish
2015-02-05 22:13 - 2015-02-05 22:13 - 00000954 _____ () C:\Users\Public\Desktop\IPVanish.lnk
2015-02-05 22:13 - 2015-02-05 22:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IPVanish
2015-02-05 22:02 - 2015-02-07 10:14 - 00000000 ____D () C:\Users\Yuumura\AppData\Roaming\ClassicShell
2015-02-05 22:02 - 2015-02-05 22:02 - 00000000 ____D () C:\ProgramData\ClassicShell
2015-02-05 22:01 - 2015-02-05 22:01 - 00002167 _____ () C:\Users\Yuumura\Desktop\Classic Shell - CHIP Downloader.lnk
2015-02-05 22:01 - 2015-02-05 22:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Classic Shell
2015-02-05 22:01 - 2015-02-05 22:01 - 00000000 ____D () C:\Program Files\Classic Shell
2015-02-05 22:00 - 2015-02-05 22:05 - 00000000 ____D () C:\ProgramData\Stardock
2015-02-05 22:00 - 2015-02-05 22:00 - 00000000 ____D () C:\Users\Yuumura\Downloads\Stardock
2015-02-05 22:00 - 2015-02-05 22:00 - 00000000 ____D () C:\Users\Yuumura\AppData\Local\Stardock
2015-02-05 22:00 - 2015-02-05 22:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Stardock
2015-02-05 22:00 - 2015-02-05 22:00 - 00000000 ____D () C:\Program Files (x86)\Stardock
2015-02-05 09:52 - 2015-02-05 22:23 - 00000000 ____D () C:\ProgramData\Samsung
2015-02-05 09:52 - 2015-02-05 09:52 - 00001439 _____ () C:\Users\Public\Desktop\Samsung SSD 840 EVO Performance Restoration.lnk
2015-02-05 09:52 - 2015-02-05 09:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung SSD 840 EVO Performance Restoration
2015-02-05 09:52 - 2015-02-05 09:52 - 00000000 ____D () C:\Program Files (x86)\Samsung SSD 840 EVO Performance Restoration
2015-02-05 09:43 - 2015-02-05 09:43 - 00000000 ____D () C:\Users\Yuumura\AppData\Roaming\fltk.org
2015-02-05 09:43 - 2015-02-05 09:43 - 00000000 ____D () C:\ProgramData\fltk.org
2015-02-05 08:56 - 2015-02-05 08:57 - 00000000 ____D () C:\Windows\system32\MRT
2015-02-05 08:56 - 2014-12-31 13:12 - 113365784 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-02-05 08:09 - 2015-02-05 08:09 - 00000000 ____D () C:\Users\Yuumura\AppData\Local\Macromedia
2015-02-05 08:08 - 2015-02-07 11:01 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2015-02-05 08:08 - 2015-02-05 09:01 - 00003772 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2015-02-05 08:07 - 2015-02-06 08:54 - 00000000 ____D () C:\Users\Yuumura\AppData\Local\Adobe
2015-02-05 08:03 - 2015-02-05 08:03 - 00000000 ____D () C:\Users\Yuumura\AppData\Roaming\ATI
2015-02-05 08:03 - 2015-02-05 08:03 - 00000000 ____D () C:\Users\Yuumura\AppData\Local\ATI
2015-02-05 08:03 - 2015-02-05 08:03 - 00000000 ____D () C:\ProgramData\ATI
2015-02-04 22:18 - 2013-11-27 13:02 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ipnat.sys
2015-02-04 22:18 - 2013-11-23 08:13 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BtaMPM.sys
2015-02-04 22:15 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-02-04 22:15 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-02-04 22:15 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-02-04 22:14 - 2014-12-31 12:14 - 00298120 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2015-02-04 22:13 - 2013-12-21 15:51 - 06353960 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe
2015-02-04 22:13 - 2013-12-21 09:54 - 00447488 _____ (Microsoft Corporation) C:\Windows\system32\sppcomapi.dll
2015-02-04 22:10 - 2013-10-05 16:25 - 00057176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\stornvme.sys
2015-02-04 22:09 - 2013-12-17 08:21 - 00408576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2015-02-04 22:08 - 2013-10-26 02:54 - 00146776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\SerCx2.sys
2015-02-04 22:07 - 2013-09-19 08:19 - 00117760 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersRes.dll
2015-02-04 22:07 - 2013-09-19 07:23 - 00117760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WorkFoldersRes.dll
2015-02-04 22:07 - 2013-09-14 15:06 - 00175960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\VerifierExt.sys
2015-02-04 22:07 - 2013-09-14 15:06 - 00066904 _____ (Microsoft Corporation) C:\Windows\system32\PSHED.DLL
2015-02-04 22:05 - 2015-02-04 22:14 - 00000000 ___DC () C:\Users\Yuumura\AppData\Local\MigWiz
2015-02-04 22:01 - 2015-02-04 22:01 - 00000000 ____D () C:\Program Files (x86)\Intel
2015-02-04 22:01 - 2015-02-04 22:01 - 00000000 ____D () C:\Intel
2015-02-04 21:59 - 2015-02-04 21:59 - 00060817 _____ () C:\Windows\SysWOW64\CCCInstall_201502042159115510.log
2015-02-04 21:59 - 2015-02-04 21:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
2015-02-04 21:58 - 2015-02-05 22:13 - 00000000 ____D () C:\ProgramData\Package Cache
2015-02-04 21:58 - 2015-02-04 21:58 - 00001171 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-02-04 21:58 - 2015-02-04 21:58 - 00001159 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2015-02-04 21:58 - 2015-02-04 21:58 - 00000000 ____D () C:\Users\Yuumura\AppData\Roaming\Mozilla
2015-02-04 21:58 - 2015-02-04 21:58 - 00000000 ____D () C:\Users\Yuumura\AppData\Local\Mozilla
2015-02-04 21:58 - 2015-02-04 21:58 - 00000000 ____D () C:\ProgramData\Mozilla
2015-02-04 21:58 - 2015-02-04 21:58 - 00000000 ____D () C:\Program Files\ATI Technologies
2015-02-04 21:58 - 2015-02-04 21:58 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2015-02-04 21:58 - 2015-02-04 21:58 - 00000000 ____D () C:\Program Files (x86)\ATI Technologies
2015-02-04 21:57 - 2015-02-07 11:24 - 00000000 ___RD () C:\Users\Yuumura\Dropbox
2015-02-04 21:57 - 2015-02-06 08:44 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2015-02-04 21:57 - 2015-02-04 21:57 - 00001180 _____ () C:\Users\Yuumura\Desktop\Dropbox.lnk
2015-02-04 21:57 - 2015-02-04 21:57 - 00000000 ____D () C:\Program Files\AMD
2015-02-04 21:57 - 2015-02-04 21:57 - 00000000 ____D () C:\AMD
2015-02-04 21:57 - 2015-02-04 21:57 - 00000000 _____ () C:\Windows\ativpsrm.bin
2015-02-04 21:52 - 2015-02-04 21:52 - 00000000 ____D () C:\Users\Yuumura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2015-02-04 21:50 - 2015-02-07 11:24 - 00000000 ____D () C:\Users\Yuumura\AppData\Roaming\Dropbox
2015-02-04 21:50 - 2014-10-30 23:37 - 00129536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2015-02-04 21:50 - 2014-10-30 23:34 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2015-02-04 21:49 - 2015-02-07 10:18 - 00003594 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-521291417-663230543-2468249756-1001
2015-02-04 21:45 - 2015-02-04 21:45 - 00000000 ____D () C:\Users\Yuumura\AppData\Roaming\Macromedia
2015-02-04 21:44 - 2015-02-07 11:23 - 00000000 __RDO () C:\Users\Yuumura\SkyDrive
2015-02-04 21:38 - 2015-02-07 10:19 - 01686150 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-02-04 21:37 - 2015-02-07 11:26 - 00000000 ____D () C:\Users\Yuumura
2015-02-04 21:37 - 2015-02-06 07:52 - 00000000 ____D () C:\Users\Yuumura\AppData\Roaming\Adobe
2015-02-04 21:37 - 2015-02-05 22:26 - 00000000 ____D () C:\Users\Yuumura\AppData\Local\Packages
2015-02-04 21:37 - 2015-02-04 21:37 - 00001450 _____ () C:\Users\Yuumura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-02-04 21:37 - 2015-02-04 21:37 - 00000020 ___SH () C:\Users\Yuumura\ntuser.ini
2015-02-04 21:37 - 2015-02-04 21:37 - 00000000 _SHDL () C:\Users\Yuumura\Vorlagen
2015-02-04 21:37 - 2015-02-04 21:37 - 00000000 _SHDL () C:\Users\Yuumura\Startmenü
2015-02-04 21:37 - 2015-02-04 21:37 - 00000000 _SHDL () C:\Users\Yuumura\Netzwerkumgebung
2015-02-04 21:37 - 2015-02-04 21:37 - 00000000 _SHDL () C:\Users\Yuumura\Lokale Einstellungen
2015-02-04 21:37 - 2015-02-04 21:37 - 00000000 _SHDL () C:\Users\Yuumura\Eigene Dateien
2015-02-04 21:37 - 2015-02-04 21:37 - 00000000 _SHDL () C:\Users\Yuumura\Druckumgebung
2015-02-04 21:37 - 2015-02-04 21:37 - 00000000 _SHDL () C:\Users\Yuumura\Documents\Eigene Musik
2015-02-04 21:37 - 2015-02-04 21:37 - 00000000 _SHDL () C:\Users\Yuumura\Documents\Eigene Bilder
2015-02-04 21:37 - 2015-02-04 21:37 - 00000000 _SHDL () C:\Users\Yuumura\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-02-04 21:37 - 2015-02-04 21:37 - 00000000 _SHDL () C:\Users\Yuumura\AppData\Local\Verlauf
2015-02-04 21:37 - 2015-02-04 21:37 - 00000000 _SHDL () C:\Users\Yuumura\AppData\Local\Anwendungsdaten
2015-02-04 21:37 - 2015-02-04 21:37 - 00000000 _SHDL () C:\Users\Yuumura\Anwendungsdaten
2015-02-04 21:37 - 2015-02-04 21:37 - 00000000 ____D () C:\Users\Yuumura\AppData\Local\VirtualStore
2015-02-04 21:37 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Yuumura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-02-04 21:37 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Yuumura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-02-04 21:37 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Yuumura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-02-04 21:37 - 2013-08-22 16:36 - 00000000 ____D () C:\Users\Yuumura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-02-04 21:35 - 2015-02-07 11:25 - 01258430 _____ () C:\Windows\WindowsUpdate.log
2015-02-04 21:35 - 2015-02-04 21:35 - 00000000 ____D () C:\Windows\CSC
2015-02-04 21:35 - 2014-11-04 06:58 - 02472960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2015-02-04 21:32 - 2015-02-04 21:32 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik
2015-02-04 21:32 - 2015-02-04 21:32 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder
2015-02-04 21:32 - 2015-02-04 21:32 - 00000000 _SHDL () C:\Users\Default\Vorlagen
2015-02-04 21:32 - 2015-02-04 21:32 - 00000000 _SHDL () C:\Users\Default\Startmenü
2015-02-04 21:32 - 2015-02-04 21:32 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung
2015-02-04 21:32 - 2015-02-04 21:32 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen
2015-02-04 21:32 - 2015-02-04 21:32 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien
2015-02-04 21:32 - 2015-02-04 21:32 - 00000000 _SHDL () C:\Users\Default\Druckumgebung
2015-02-04 21:32 - 2015-02-04 21:32 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik
2015-02-04 21:32 - 2015-02-04 21:32 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder
2015-02-04 21:32 - 2015-02-04 21:32 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-02-04 21:32 - 2015-02-04 21:32 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf
2015-02-04 21:32 - 2015-02-04 21:32 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten
2015-02-04 21:32 - 2015-02-04 21:32 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten
2015-02-04 21:32 - 2015-02-04 21:32 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik
2015-02-04 21:32 - 2015-02-04 21:32 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder
2015-02-04 21:32 - 2015-02-04 21:32 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-02-04 21:32 - 2015-02-04 21:32 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf
2015-02-04 21:32 - 2015-02-04 21:32 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten
2015-02-04 21:32 - 2015-02-04 21:32 - 00000000 _SHDL () C:\Programme
2015-02-04 21:32 - 2015-02-04 21:32 - 00000000 _SHDL () C:\ProgramData\Vorlagen
2015-02-04 21:32 - 2015-02-04 21:32 - 00000000 _SHDL () C:\ProgramData\Startmenü
2015-02-04 21:32 - 2015-02-04 21:32 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme
2015-02-04 21:32 - 2015-02-04 21:32 - 00000000 _SHDL () C:\ProgramData\Dokumente
2015-02-04 21:32 - 2015-02-04 21:32 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten
2015-02-04 21:32 - 2015-02-04 21:32 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien
2015-02-04 21:32 - 2015-02-04 21:32 - 00000000 _SHDL () C:\Dokumente und Einstellungen
2015-02-04 21:31 - 2015-02-06 22:27 - 00132314 _____ () C:\Windows\PFRO.log
2015-02-04 21:30 - 2015-02-04 21:37 - 00000000 ____D () C:\Windows\Panther
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-02-07 11:23 - 2013-08-22 16:37 - 00002044 _____ () C:\Windows\DtcInstall.log
2015-02-07 11:22 - 2013-08-22 15:46 - 00012771 _____ () C:\Windows\setupact.log
2015-02-07 11:22 - 2013-08-22 15:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-02-07 11:22 - 2013-08-22 15:44 - 00482216 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-02-07 11:22 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\BBI
2015-02-07 11:20 - 2013-08-23 00:26 - 00000000 __SHD () C:\Windows\BitLockerDiscoveryVolumeContents
2015-02-07 11:20 - 2013-08-23 00:26 - 00000000 ____D () C:\Program Files\Windows Journal
2015-02-07 11:20 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ToastData
2015-02-07 11:20 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ImmersiveControlPanel
2015-02-07 11:20 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-02-07 11:20 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-02-07 11:20 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-02-07 11:20 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-02-07 11:20 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-02-07 11:20 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-02-07 11:20 - 2013-08-22 16:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools
2015-02-07 11:20 - 2013-08-22 16:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-02-07 11:20 - 2013-08-22 16:36 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-02-07 11:20 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\WinStore
2015-02-07 11:20 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\sppui
2015-02-07 11:20 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\setup
2015-02-07 11:20 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\migwiz
2015-02-07 11:20 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\Com
2015-02-07 11:20 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\setup
2015-02-07 11:20 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\MediaViewer
2015-02-07 11:20 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\FileManager
2015-02-07 11:20 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\Camera
2015-02-07 11:20 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Portable Devices
2015-02-07 11:20 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Photo Viewer
2015-02-07 11:20 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Multimedia Platform
2015-02-07 11:20 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\System
2015-02-07 11:20 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\SysWOW64\oobe
2015-02-07 11:20 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\SysWOW64\Dism
2015-02-07 11:20 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\servicing
2015-02-07 11:19 - 2013-08-22 16:36 - 00000000 ___SD () C:\Windows\system32\dsc
2015-02-07 11:19 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\WinBioPlugIns
2015-02-07 11:19 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\SystemResetPlatform
2015-02-07 11:19 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sppui
2015-02-07 11:19 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\migwiz
2015-02-07 11:19 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\Com
2015-02-07 11:19 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\PolicyDefinitions
2015-02-07 11:19 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\IME
2015-02-07 11:19 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\WindowsPowerShell
2015-02-07 11:19 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Portable Devices
2015-02-07 11:19 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Photo Viewer
2015-02-07 11:19 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Multimedia Platform
2015-02-07 11:19 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\system32\Sysprep
2015-02-07 11:19 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\system32\oobe
2015-02-07 11:19 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\system32\Dism
2015-02-07 11:00 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sru
2015-02-07 10:59 - 2013-08-22 16:20 - 00000000 ____D () C:\Windows\CbsTemp
2015-02-07 10:51 - 2013-08-22 16:36 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\msclmd.dll
2015-02-07 10:51 - 2013-08-22 16:36 - 00195072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msclmd.dll
2015-02-07 10:19 - 2013-08-23 00:24 - 00727930 _____ () C:\Windows\system32\perfh007.dat
2015-02-07 10:19 - 2013-08-23 00:24 - 00151586 _____ () C:\Windows\system32\perfc007.dat
2015-02-07 10:18 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppReadiness
2015-02-07 09:02 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2015-02-06 22:27 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\InputMethod
2015-02-06 20:32 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-RS
2015-02-06 20:32 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sr-Latn-CS
2015-02-06 20:32 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Defender
2015-02-06 20:32 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2015-02-06 20:00 - 2013-08-22 14:25 - 00000269 _____ () C:\Windows\win.ini
2015-02-06 17:00 - 2013-08-22 16:43 - 00000000 ____D () C:\Windows\DigitalLocker
2015-02-06 09:17 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\zh-HK
2015-02-06 09:17 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\uk-UA
2015-02-06 09:17 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\tr-TR
2015-02-06 09:17 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\th-TH
2015-02-06 09:17 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sl-SI
2015-02-06 09:17 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sk-SK
2015-02-06 09:17 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\ro-RO
2015-02-06 09:17 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\lv-LV
2015-02-06 09:17 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\lt-LT
2015-02-06 09:17 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\hr-HR
2015-02-06 09:17 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\he-IL
2015-02-06 09:17 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\et-EE
2015-02-06 09:17 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\en-GB
2015-02-06 09:17 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\bg-BG
2015-02-06 09:17 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\ar-SA
2015-02-06 08:45 - 2013-08-23 00:26 - 00000000 ____D () C:\Windows\ShellNew
2015-02-05 09:25 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\SecureBootUpdates
2015-02-04 22:15 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\ELAM
2015-02-04 21:57 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\restore
2015-02-04 21:32 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows NT
2015-02-04 21:32 - 2013-08-22 14:36 - 00000000 __RHD () C:\Users\Default
2015-02-04 21:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\Recovery
2015-02-04 21:30 - 2013-08-22 16:36 - 00262144 _____ () C:\Windows\system32\config\BCD-Template
Some content of TEMP:
====================
C:\Users\Yuumura\AppData\Local\Temp\130676783475419515.exe
C:\Users\Yuumura\AppData\Local\Temp\7F325CD4-3325-754F-8813-5C153EBAA825.dll
C:\Users\Yuumura\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp2nqqwo.dll
C:\Users\Yuumura\AppData\Local\Temp\install_reader11_de_mssd_aaa_aih.exe
C:\Users\Yuumura\AppData\Local\Temp\nsn5AEE.exe
C:\Users\Yuumura\AppData\Local\Temp\ose00000.exe
C:\Users\Yuumura\AppData\Local\Temp\Quarantine.exe
C:\Users\Yuumura\AppData\Local\Temp\setup.exe
C:\Users\Yuumura\AppData\Local\Temp\SpOrder.dll
C:\Users\Yuumura\AppData\Local\Temp\sqlite3.dll
C:\Users\Yuumura\AppData\Local\Temp\vcredist_x64.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-02-04 21:31
==================== End Of Log ============================ Code:
ESETSmartInstaller@High as downloader log:
all ok
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.7623
# api_version=3.0.2
# EOSSerial=9c08962840e8bf4cb692eea80f37ca4d
# engine=22344
# end=finished
# remove_checked=true
# archives_checked=false
# unwanted_checked=false
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2015-02-06 04:46:52
# local_time=2015-02-06 05:46:52 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# lang=1031
# osver=6.2.9200 NT
# compatibility_mode_1=''
# compatibility_mode=5893 16776573 100 94 41293 40557509 0 0
# scanned=188666
# found=13
# cleaned=13
# scan_time=1530
sh=EE16FEB32F86AB42C20B9508EE0445E1023ECF84 ft=1 fh=86c24ea3aff17162 vn="Variante von Win32/Adware.AddLyrics.DR Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Microsoft\Windows\INetCache\IE\3K4O22F4\BlockAndSurf_2222-5510[1].exe"
sh=88849C2AC0F262B72E9AF3B5A7944EE5724C172B ft=1 fh=d7266f7a63d6b55a vn="Variante von Win32/AdWare.Vitruvian.D Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Microsoft\Windows\INetCache\IE\3K4O22F4\wordproser-setup-1.10.0.6[1].exe"
sh=4A85705DAB52816F3592B75093EDDA6E7399602F ft=1 fh=4e5a9df975726588 vn="Win32/Adware.ConvertAd.W Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Microsoft\Windows\INetCache\IE\H80KKZDX\ConvertAdSetup[1].exe"
sh=98E91E51ED33269ACFBBC969CD28EF06B18A8824 ft=1 fh=fa0c4d690672143b vn="Win32/Adware.ConvertAd.W Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Microsoft\Windows\INetCache\IE\H80KKZDX\count_wp_ign[1].htm"
sh=CBAC293999C04910D3047D9056939DFBD80C91F2 ft=1 fh=c71c0011fc7ff0d1 vn="Variante von Win32/Adware.ConvertAd.X Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Microsoft\Windows\INetCache\IE\HWD1T27U\dl[2].htm"
sh=0464E1335A50E598D7C3F93E2BE8FAD61FE23368 ft=1 fh=55214456ddbed602 vn="Mehrere Bedrohungen (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Microsoft\Windows\INetCache\IE\HWD1T27U\setup_gmsd_de[1].exe"
sh=A75E95BE1BEB13FF84B33BCC64DB763E7F7909D5 ft=1 fh=bc9d466a14960a26 vn="Win32/Adware.ConvertAd.V Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Microsoft\Windows\INetCache\IE\HWD1T27U\WinCheckSetup[1].exe"
sh=0E9D21190AA18326DD8B4CDF756406C9ED236DD8 ft=1 fh=c71c00116dbd99d5 vn="Variante von Win32/Adware.AddLyrics.DQ Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Temp\10C5041E-2553-B920-F903-20A94DB1EB81.exe"
sh=8AA625370DC52676AA1547C868350788FF30CFD0 ft=1 fh=c71c0011d4be3acc vn="Variante von Win32/Adware.AddLyrics.DR Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Temp\7F325CD4-3325-754F-8813-5C153EBAA825.exe"
sh=A75E95BE1BEB13FF84B33BCC64DB763E7F7909D5 ft=1 fh=bc9d466a14960a26 vn="Win32/Adware.ConvertAd.V Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Temp\nsaC3F2.tmp"
sh=4A85705DAB52816F3592B75093EDDA6E7399602F ft=1 fh=4e5a9df975726588 vn="Win32/Adware.ConvertAd.W Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Temp\nssF906.tmp"
sh=7136BED1AAACB94FC4FD93DA6BD636FC67573F68 ft=1 fh=020376c4f42b5ad5 vn="Mehrere Bedrohungen (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Temp\optprosetup.exe"
sh=700C7797A22E9E027DA17F0F617879EDF3AB923F ft=1 fh=ae18c28dc4390819 vn="Win32/Adware.SpeedingUpMyPC.P Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Temp\is45637729\126021_stp\OptimizerPro.exe"
ESETSmartInstaller@High as downloader log:
all ok
ESETSmartInstaller@High as downloader log:
all ok
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.7623
# api_version=3.0.2
# EOSSerial=9c08962840e8bf4cb692eea80f37ca4d
# engine=22350
# end=finished
# remove_checked=true
# archives_checked=true
# unwanted_checked=true
# unsafe_checked=true
# antistealth_checked=true
# utc_time=2015-02-07 09:06:45
# local_time=2015-02-07 10:06:45 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# lang=1031
# osver=6.2.9200 NT
# compatibility_mode_1=''
# compatibility_mode=5893 16776573 100 94 46007 13604324 0 0
# scanned=203475
# found=28
# cleaned=25
# scan_time=4253
sh=BCA63256076571E545E2642DA8C7C0E159233378 ft=1 fh=a3be484f7899bd76 vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Yuumura\Downloads\Classic Shell - CHIP-Installer.exe"
sh=05969E3D2848CF9C4312A2498E442CEB821644C1 ft=1 fh=f6eb1255d7810fde vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Yuumura\Downloads\Sandboxie - CHIP-Installer.exe"
sh=CE68E09BEDC8D30D5D7BDB5D525EE3409837FC1C ft=0 fh=0000000000000000 vn="Variante von MSIL/HackTool.IdleKMS.E potenziell unsichere Anwendung" ac=I fn="C:\Users\Yuumura\Downloads\UL457\Microsoft.Office.2013.GERMAN.PRO.SP1.x64.AUGUST.2014-FKY\fky-office13-sp1-x64-pro-1408.iso"
sh=45C4511F0EC1A01CC992DBF11E232CA2C13062F4 ft=1 fh=183e6b613625d607 vn="Win32/VOPackage.BC evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\nsk2F61.tmp"
sh=FC2C8ACE36EA560B6498ED39C07D6F556505A9EC ft=1 fh=d219dbefbda12e0c vn="Win32/InstallMonetizer.BD evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Microsoft\Windows\INetCache\IE\3K4O22F4\20150206108907[1].exe"
sh=40CE0A58E99858007E5DCD0BB5BF6A122686A917 ft=1 fh=f92770b35775886c vn="Win32/Somoto.C evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Microsoft\Windows\INetCache\IE\3K4O22F4\BiTool[1].dll"
sh=F97B980B4FE2AEA3DA107257522445962424DC09 ft=1 fh=d4dec027ddd6d392 vn="Variante von Win32/BrowseFox.AE evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Microsoft\Windows\INetCache\IE\3K4O22F4\FollowRules[1].dll"
sh=1827B32DD474F48FA076553B2276A2CD01DFA56C ft=1 fh=8d11eb99a68b357c vn="Variante von Win32/InstallCore.PL evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Microsoft\Windows\INetCache\IE\3K4O22F4\Setup[1].exe"
sh=348402D992E8B3780EDDD749E005682C6E970E5C ft=1 fh=b0ea94c03e102b25 vn="Variante von Win32/InstallCore.PK evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Microsoft\Windows\INetCache\IE\3K4O22F4\Setup[2].exe"
sh=F4D8D577EE1E3DAD017A1EA99D57FF57F984F8A8 ft=1 fh=e94731da1fb49e69 vn="Variante von Win32/InstallCore.VD evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Microsoft\Windows\INetCache\IE\H80KKZDX\JDownloaderSetup[1].exe"
sh=836358F7A45F1DFD9DE2F38DD1A73CAE1059FE9E ft=1 fh=3910fa053e102b25 vn="Variante von Win32/InstallCore.PK evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Microsoft\Windows\INetCache\IE\H80KKZDX\Setup[2].exe"
sh=1AA97E63ABBB08E9E3E06C3FED249D8FD7B4CFB2 ft=0 fh=0000000000000000 vn="JS/Toolbar.Crossrider.B evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Microsoft\Windows\INetCache\IE\HWD1T27U\91[1].js"
sh=45C4511F0EC1A01CC992DBF11E232CA2C13062F4 ft=1 fh=183e6b613625d607 vn="Win32/VOPackage.BC evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Microsoft\Windows\INetCache\IE\HWD1T27U\AnyProtectSetup[1].exe"
sh=F0145CBE3AF08977B4394809FFBEC5F0BD3657CF ft=1 fh=0e0d0a792374bf44 vn="Variante von Win32/InstallCore.OZ evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Microsoft\Windows\INetCache\IE\HWD1T27U\Setup[1].exe"
sh=45C4511F0EC1A01CC992DBF11E232CA2C13062F4 ft=1 fh=183e6b613625d607 vn="Win32/VOPackage.BC evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Microsoft\Windows\INetCache\IE\XHQHJ3K2\AnyProtectSetup[1].exe"
sh=2DA36ACAB8A7709C4252A5B1A7FF24C5CC075B5B ft=1 fh=328c65467f17be8f vn="Win32/Somoto.G evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Microsoft\Windows\INetCache\IE\XHQHJ3K2\setup[1].exe"
sh=26B272A2E8C583CB6F7FCC087B260CD0FA94B279 ft=1 fh=1249f569a640872d vn="Variante von Win32/PriceGong.C evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Microsoft\Windows\INetCache\IE\XHQHJ3K2\SmartWebInstaller[1].exe"
sh=71142BD153C8D14B2DBAF0CD0C31137E1EB3F45E ft=1 fh=a8adfcff69c3747a vn="Win32/Wajam.K evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Microsoft\Windows\INetCache\IE\XHQHJ3K2\WIE_2.23.2.15[1].exe"
sh=ABB923ADB6E1CC273F01C12876474B58190AEB1C ft=0 fh=0000000000000000 vn="JS/Kryptik.I Trojaner (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Mozilla\Firefox\Profiles\v9uosye0.default\cache2\entries\EEE0156BB378597D0A0C3E17AA4EB979F37E7894"
sh=F4D8D577EE1E3DAD017A1EA99D57FF57F984F8A8 ft=1 fh=e94731da1fb49e69 vn="Variante von Win32/InstallCore.VD evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Temp\13067678369005329087.exe"
sh=1827B32DD474F48FA076553B2276A2CD01DFA56C ft=1 fh=8d11eb99a68b357c vn="Variante von Win32/InstallCore.PL evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Temp\ICReinstall_nsyD036.tmp"
sh=45C4511F0EC1A01CC992DBF11E232CA2C13062F4 ft=1 fh=183e6b613625d607 vn="Win32/VOPackage.BC evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Temp\nsrC6E2.tmp"
sh=348402D992E8B3780EDDD749E005682C6E970E5C ft=1 fh=b0ea94c03e102b25 vn="Variante von Win32/InstallCore.PK evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Temp\nsy983B.tmp"
sh=836358F7A45F1DFD9DE2F38DD1A73CAE1059FE9E ft=1 fh=3910fa053e102b25 vn="Variante von Win32/InstallCore.PK evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Temp\nsyC440.tmp"
sh=1827B32DD474F48FA076553B2276A2CD01DFA56C ft=1 fh=8d11eb99a68b357c vn="Variante von Win32/InstallCore.PL evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Temp\nsyD036.tmp"
sh=0432F7A52B9C9D9D7EBD3318DC465431E1611518 ft=1 fh=f837b0cf54e67dd3 vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Temp\DMR\dmr_72.exe"
sh=C93C5226EE5FF9A60DD942D21CE98EB06F4398D7 ft=1 fh=f8b0c31d6e63e912 vn="Variante von Win32/LiMo.C evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Temp\is1201216051\15011885_stp\Jan7_cor_vi-view.exe"
sh=C93C5226EE5FF9A60DD942D21CE98EB06F4398D7 ft=1 fh=f8b0c31d6e63e912 vn="Variante von Win32/LiMo.C evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Users\Yuumura\AppData\Local\Temp\is45637729\125952_stp\Jan7_cor_vi-view.exe"
ESETSmartInstaller@High as downloader log:
all ok Malware antibyte log finde ich nicht. Code:
alwarebytes Anti-Malware
www.malwarebytes.org
Update, 07.02.2015 08:16:02, SYSTEM, VAIO, Scheduler, Failed, Unable to access update server,
Protection, 07.02.2015 08:16:05, SYSTEM, VAIO, Protection, Malware Protection, Starting,
Protection, 07.02.2015 08:16:05, SYSTEM, VAIO, Protection, Malware Protection, Started,
Protection, 07.02.2015 08:16:05, SYSTEM, VAIO, Protection, Malicious Website Protection, Starting,
Protection, 07.02.2015 08:16:06, SYSTEM, VAIO, Protection, Malicious Website Protection, Started,
Scan, 07.02.2015 08:21:54, SYSTEM, VAIO, Manual, Start:07.02.2015 08:16:02, Duration:5 min 51 sec, Threat Scan, Completed, 0 Malware Detections, 0 Non-Malware Detections,
Update, 07.02.2015 09:00:14, SYSTEM, VAIO, Scheduler, Malware Database, 2015.2.6.7, 2015.2.7.3,
Protection, 07.02.2015 09:00:14, SYSTEM, VAIO, Protection, Refresh, Starting,
Protection, 07.02.2015 09:00:14, SYSTEM, VAIO, Protection, Malicious Website Protection, Stopping,
Protection, 07.02.2015 09:00:14, SYSTEM, VAIO, Protection, Malicious Website Protection, Stopped,
Protection, 07.02.2015 09:00:24, SYSTEM, VAIO, Protection, Refresh, Success,
Protection, 07.02.2015 09:00:24, SYSTEM, VAIO, Protection, Malicious Website Protection, Starting,
Protection, 07.02.2015 09:00:25, SYSTEM, VAIO, Protection, Malicious Website Protection, Started,
Update, 07.02.2015 09:50:26, SYSTEM, VAIO, Scheduler, Malware Database, 2015.2.7.3, 2015.2.7.4,
Protection, 07.02.2015 09:50:26, SYSTEM, VAIO, Protection, Refresh, Starting,
Protection, 07.02.2015 09:50:26, SYSTEM, VAIO, Protection, Malicious Website Protection, Stopping,
Protection, 07.02.2015 09:50:26, SYSTEM, VAIO, Protection, Malicious Website Protection, Stopped,
Protection, 07.02.2015 09:50:35, SYSTEM, VAIO, Protection, Refresh, Success,
Protection, 07.02.2015 09:50:35, SYSTEM, VAIO, Protection, Malicious Website Protection, Starting,
Protection, 07.02.2015 09:50:36, SYSTEM, VAIO, Protection, Malicious Website Protection, Started,
Protection, 07.02.2015 10:13:35, SYSTEM, VAIO, Protection, Malware Protection, Starting,
Protection, 07.02.2015 10:13:35, SYSTEM, VAIO, Protection, Malware Protection, Started,
Protection, 07.02.2015 10:13:35, SYSTEM, VAIO, Protection, Malicious Website Protection, Starting,
Protection, 07.02.2015 10:13:35, SYSTEM, VAIO, Protection, Malicious Website Protection, Started,
Update, 07.02.2015 11:03:26, SYSTEM, VAIO, Scheduler, Failed, Unable to access update server,
Protection, 07.02.2015 11:23:02, SYSTEM, VAIO, Protection, Malware Protection, Starting,
Protection, 07.02.2015 11:23:02, SYSTEM, VAIO, Protection, Malware Protection, Started,
Protection, 07.02.2015 11:23:02, SYSTEM, VAIO, Protection, Malicious Website Protection, Starting,
Protection, 07.02.2015 11:23:03, SYSTEM, VAIO, Protection, Malicious Website Protection, Started,
Protection, 07.02.2015 11:29:20, SYSTEM, VAIO, Protection, Malicious Website Protection, Stopping,
Protection, 07.02.2015 11:29:20, SYSTEM, VAIO, Protection, Malicious Website Protection, Stopped,
Protection, 07.02.2015 11:29:22, SYSTEM, VAIO, Protection, Malware Protection, Stopping,
Protection, 07.02.2015 11:29:22, SYSTEM, VAIO, Protection, Malware Protection, Stopped,
Protection, 07.02.2015 11:32:21, SYSTEM, VAIO, Protection, Malware Protection, Starting,
Protection, 07.02.2015 11:32:21, SYSTEM, VAIO, Protection, Malware Protection, Started,
Protection, 07.02.2015 11:32:21, SYSTEM, VAIO, Protection, Malicious Website Protection, Starting,
Protection, 07.02.2015 11:32:21, SYSTEM, VAIO, Protection, Malicious Website Protection, Started,
Protection, 07.02.2015 11:33:29, SYSTEM, VAIO, Protection, Malware Protection, Starting,
Protection, 07.02.2015 11:33:29, SYSTEM, VAIO, Protection, Malware Protection, Started,
Protection, 07.02.2015 11:33:30, SYSTEM, VAIO, Protection, Malicious Website Protection, Starting,
Protection, 07.02.2015 11:33:31, SYSTEM, VAIO, Protection, Malicious Website Protection, Started,
(end) Code:
alwarebytes Anti-Malware
www.malwarebytes.org
Update, 07.02.2015 08:16:02, SYSTEM, VAIO, Scheduler, Failed, Unable to access update server,
Protection, 07.02.2015 08:16:05, SYSTEM, VAIO, Protection, Malware Protection, Starting,
Protection, 07.02.2015 08:16:05, SYSTEM, VAIO, Protection, Malware Protection, Started,
Protection, 07.02.2015 08:16:05, SYSTEM, VAIO, Protection, Malicious Website Protection, Starting,
Protection, 07.02.2015 08:16:06, SYSTEM, VAIO, Protection, Malicious Website Protection, Started,
Scan, 07.02.2015 08:21:54, SYSTEM, VAIO, Manual, Start:07.02.2015 08:16:02, Duration:5 min 51 sec, Threat Scan, Completed, 0 Malware Detections, 0 Non-Malware Detections,
Update, 07.02.2015 09:00:14, SYSTEM, VAIO, Scheduler, Malware Database, 2015.2.6.7, 2015.2.7.3,
Protection, 07.02.2015 09:00:14, SYSTEM, VAIO, Protection, Refresh, Starting,
Protection, 07.02.2015 09:00:14, SYSTEM, VAIO, Protection, Malicious Website Protection, Stopping,
Protection, 07.02.2015 09:00:14, SYSTEM, VAIO, Protection, Malicious Website Protection, Stopped,
Protection, 07.02.2015 09:00:24, SYSTEM, VAIO, Protection, Refresh, Success,
Protection, 07.02.2015 09:00:24, SYSTEM, VAIO, Protection, Malicious Website Protection, Starting,
Protection, 07.02.2015 09:00:25, SYSTEM, VAIO, Protection, Malicious Website Protection, Started,
Update, 07.02.2015 09:50:26, SYSTEM, VAIO, Scheduler, Malware Database, 2015.2.7.3, 2015.2.7.4,
Protection, 07.02.2015 09:50:26, SYSTEM, VAIO, Protection, Refresh, Starting,
Protection, 07.02.2015 09:50:26, SYSTEM, VAIO, Protection, Malicious Website Protection, Stopping,
Protection, 07.02.2015 09:50:26, SYSTEM, VAIO, Protection, Malicious Website Protection, Stopped,
Protection, 07.02.2015 09:50:35, SYSTEM, VAIO, Protection, Refresh, Success,
Protection, 07.02.2015 09:50:35, SYSTEM, VAIO, Protection, Malicious Website Protection, Starting,
Protection, 07.02.2015 09:50:36, SYSTEM, VAIO, Protection, Malicious Website Protection, Started,
Protection, 07.02.2015 10:13:35, SYSTEM, VAIO, Protection, Malware Protection, Starting,
Protection, 07.02.2015 10:13:35, SYSTEM, VAIO, Protection, Malware Protection, Started,
Protection, 07.02.2015 10:13:35, SYSTEM, VAIO, Protection, Malicious Website Protection, Starting,
Protection, 07.02.2015 10:13:35, SYSTEM, VAIO, Protection, Malicious Website Protection, Started,
Update, 07.02.2015 11:03:26, SYSTEM, VAIO, Scheduler, Failed, Unable to access update server,
Protection, 07.02.2015 11:23:02, SYSTEM, VAIO, Protection, Malware Protection, Starting,
Protection, 07.02.2015 11:23:02, SYSTEM, VAIO, Protection, Malware Protection, Started,
Protection, 07.02.2015 11:23:02, SYSTEM, VAIO, Protection, Malicious Website Protection, Starting,
Protection, 07.02.2015 11:23:03, SYSTEM, VAIO, Protection, Malicious Website Protection, Started,
Protection, 07.02.2015 11:29:20, SYSTEM, VAIO, Protection, Malicious Website Protection, Stopping,
Protection, 07.02.2015 11:29:20, SYSTEM, VAIO, Protection, Malicious Website Protection, Stopped,
Protection, 07.02.2015 11:29:22, SYSTEM, VAIO, Protection, Malware Protection, Stopping,
Protection, 07.02.2015 11:29:22, SYSTEM, VAIO, Protection, Malware Protection, Stopped,
Protection, 07.02.2015 11:32:21, SYSTEM, VAIO, Protection, Malware Protection, Starting,
Protection, 07.02.2015 11:32:21, SYSTEM, VAIO, Protection, Malware Protection, Started,
Protection, 07.02.2015 11:32:21, SYSTEM, VAIO, Protection, Malicious Website Protection, Starting,
Protection, 07.02.2015 11:32:21, SYSTEM, VAIO, Protection, Malicious Website Protection, Started,
Protection, 07.02.2015 11:33:29, SYSTEM, VAIO, Protection, Malware Protection, Starting,
Protection, 07.02.2015 11:33:29, SYSTEM, VAIO, Protection, Malware Protection, Started,
Protection, 07.02.2015 11:33:30, SYSTEM, VAIO, Protection, Malicious Website Protection, Starting,
Protection, 07.02.2015 11:33:31, SYSTEM, VAIO, Protection, Malicious Website Protection, Started,
(end)
Logs gefunden ;) Code:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.4.2 (02.02.2015:1)
OS: Windows 8.1 Pro x64
Ran by Yuumura on 07.02.2015 at 12:37:01,00
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
~~~ Files
~~~ Folders
~~~ FireFox
Successfully deleted the following from C:\Users\Yuumura\AppData\Roaming\mozilla\firefox\profiles\v9uosye0.default\prefs.js
user_pref("extensions.bootstrappedAddons", "{\"{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}\":{\"version\":\"2.6.7\",\"type\":\"extension\",\"descriptor\":\"C:\\\\Users\\\\Yuumura\
user_pref("extensions.xpiState", "{\"app-profile\":{\"{5c8aad28-fbbe-c1b8-42dd-35c00645f1b3}\":{\"d\":\"C:\\\\Users\\\\Yuumura\\\\AppData\\\\Roaming\\\\Mozilla\\\\Firefox\\\\
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 07.02.2015 at 12:40:25,61
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Eset findet dauernd diesen downloadsponsor.c kram
hab ich vielleicht im falschen forum gepostet ?? Soll ich den thread verschieben ? |