FRST Code:
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x86) Version:16-08-2015
durchgeführt von G.S (Administrator) auf GS-PC (16-08-2015 20:03:31)
Gestartet von C:\Users\G.S\Desktop
Geladene Profile: G.S (Verfügbare Profile: G.S & DefaultAppPool)
Platform: Microsoft Windows 10 Pro (X86) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: Edge)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Prozesse (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)
(IObit) C:\Program Files\IObit\Advanced SystemCare 8\ASCService.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Adobe Systems Incorporated) C:\Program Files\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe
() C:\Program Files\Free Desktop Clock\timeserv.exe
(IObit) C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe
(Microsoft Corporation) C:\Windows\System32\mqsvc.exe
(Symantec Corporation) C:\Program Files\Norton 360\Engine\22.5.2.15\N360.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe
() C:\Windows\System32\PnkBstrA.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe
(SigmaTel, Inc.) C:\Program Files\SigmaTel\C-Major Audio\WDM\stacsv.exe
(IObit) C:\Program Files\IObit\Advanced SystemCare 8\Monitor.exe
(Google Inc.) C:\Program Files\Google\Update\1.3.28.1\GoogleCrashHandler.exe
(Symantec Corporation) C:\Program Files\Norton 360\Engine\22.5.2.15\N360.exe
(Microsoft Corporation) C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(SigmaTel, Inc.) C:\Windows\sttray.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(Drive Software Company) C:\Program Files\Free Desktop Clock\FreeDesktopClock.exe
(Microsoft Corporation) C:\Users\G.S\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
==================== Registry (Nicht auf der Ausnahmeliste) ===========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Run: [StartCCC] => C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\x86\CLIStart.exe [748744 2015-07-15] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [SigmatelSysTrayApp] => C:\WINDOWS\sttray.exe [303104 2007-01-12] (SigmaTel, Inc.)
HKLM\...\Run: [SDTray] => C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [334896 2015-06-08] (Oracle Corporation)
Winlogon\Notify\SDWinLogon: SDWinLogon.dll [X]
HKU\S-1-5-19\...\Run: [OneDriveSetup] => C:\Windows\System32\OneDriveSetup.exe [7805120 2015-07-10] (Microsoft Corporation)
HKU\S-1-5-20\...\Run: [OneDriveSetup] => C:\Windows\System32\OneDriveSetup.exe [7805120 2015-07-10] (Microsoft Corporation)
HKU\S-1-5-21-1041671278-1757929836-1891683304-1000\...\Run: [AtomicAlarmClock6] => C:\Program Files\Free Desktop Clock\FreeDesktopClock.exe [3085824 2013-06-27] (Drive Software Company)
HKU\S-1-5-21-1041671278-1757929836-1891683304-1000\...\Run: [OneDrive] => C:\Users\G.S\AppData\Local\Microsoft\OneDrive\OneDrive.exe [402632 2015-08-06] (Microsoft Corporation)
HKU\S-1-5-21-1041671278-1757929836-1891683304-1000\...\Run: [Advanced SystemCare 8] => C:\Program Files\IObit\Advanced SystemCare 8\ASCTray.exe [2428704 2015-01-20] (IObit)
HKU\S-1-5-21-1041671278-1757929836-1891683304-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [6278424 2015-04-23] (Piriform Ltd)
ShellIconOverlayIdentifiers: [ OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files\Norton 360\Engine\22.5.2.15\buShell.dll [2015-07-13] (Symantec Corporation)
ShellIconOverlayIdentifiers: [ OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files\Norton 360\Engine\22.5.2.15\buShell.dll [2015-07-13] (Symantec Corporation)
ShellIconOverlayIdentifiers: [ OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files\Norton 360\Engine\22.5.2.15\buShell.dll [2015-07-13] (Symantec Corporation)
ShellIconOverlayIdentifiers: [ SkyDrive1] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\G.S\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\FileSyncShell.dll [2015-08-06] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrive2] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\G.S\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\FileSyncShell.dll [2015-08-06] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ SkyDrive3] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\G.S\AppData\Local\Microsoft\OneDrive\17.3.5907.0716\FileSyncShell.dll [2015-08-06] (Microsoft Corporation)
BootExecute: autocheck autochk * sdnclean.exe
==================== Internet (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt..)
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.symantec.com/redirects/security_response/fix_homepage/index.jsp?lg=de&pid=N360&pvid=21.6.0.32
HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
HKU\S-1-5-21-1041671278-1757929836-1891683304-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/de-de/?pc=UP97&ocid=UP97DHP
HKU\S-1-5-21-1041671278-1757929836-1891683304-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.dell.com
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\.DEFAULT -> {e4a1ece8-ed94-4f93-80ea-75f978ceaf24} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1041671278-1757929836-1891683304-1000 -> {e4a1ece8-ed94-4f93-80ea-75f978ceaf24} URL =
BHO: Norton Identity Protection -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files\Norton 360\Engine\22.5.2.15\coIEPlg.dll [2015-07-10] (Symantec Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_51\bin\ssv.dll [2015-08-13] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_51\bin\jp2ssv.dll [2015-08-13] (Oracle Corporation)
Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton 360\Engine\22.5.2.15\coIEPlg.dll [2015-07-10] (Symantec Corporation)
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxps://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{41792810-eabe-43a5-8064-f00209ef9334}: [DhcpNameServer] 192.168.0.1
FireFox:
========
FF ProfilePath: C:\Users\G.S\AppData\Roaming\Mozilla\Firefox\Profiles\ugsc1pl5.default
FF SearchEngineOrder.3: Bing
FF Homepage: about:home
FF DefaultSearchEngine: Google
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_18_0_0_232.dll [2015-08-12] ()
FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2015-06-08] (Tracker Software Products (Canada) Ltd.)
FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google)
FF Plugin: @java.com/DTPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\dtplugin\npDeployJava1.dll [2015-08-13] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.51.2 -> C:\Program Files\Java\jre1.8.0_51\bin\plugin2\npjp2.dll [2015-08-13] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation)
FF Plugin: @ngm.nexoneu.com/NxGame -> C:\ProgramData\NexonEU\NGM\npNxGameEU.dll [2015-03-08] (Nexon)
FF Plugin: @nullsoft.com/winampDetector;version=1 -> C:\Program Files\Winamp Detect\npwachk.dll [2013-12-13] (Nullsoft, Inc.)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-16] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-16] (Google Inc.)
FF Plugin HKU\S-1-5-21-1041671278-1757929836-1891683304-1000: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2015-06-08] (Tracker Software Products (Canada) Ltd.)
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2015-05-01]
FF HKLM\...\Firefox\Extensions: [{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_22.5.2.15\coFFPlgn
FF Extension: Norton Toolbar - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_22.5.2.15\coFFPlgn [2015-08-16]
FF Extension: Kein Name - C:\Users\G.S\AppData\Roaming\Mozilla\Firefox\Profiles\ugsc1pl5.default\extensions\iobitascsurfingprotection@iobit.com [nicht gefunden]
Chrome:
=======
CHR Profile: C:\Users\G.S\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Drive) - C:\Users\G.S\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-06-01]
CHR Extension: (YouTube) - C:\Users\G.S\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-06-01]
CHR Extension: (Google Search) - C:\Users\G.S\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-06-01]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\G.S\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-06-01]
CHR Extension: (Chrome Web Store Payments) - C:\Users\G.S\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-06-01]
CHR Extension: (Late Night) - C:\Users\G.S\AppData\Local\Google\Chrome\User Data\Default\Extensions\pgbdhkpacgdhfabeceekiafonfkipohm [2015-06-01]
CHR Extension: (Gmail) - C:\Users\G.S\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-06-01]
CHR HKLM\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files\Norton 360\Engine\22.5.2.15\Exts\Chrome.crx [2015-08-07]
CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - https://clients2.google.com/service/update2/crx
==================== Dienste (Nicht auf der Ausnahmeliste) ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R2 AdobeActiveFileMonitor7.0; C:\Program Files\Adobe\Photoshop Elements 7.0\PhotoshopElementsFileAgent.exe [169312 2008-09-16] (Adobe Systems Incorporated)
R2 AdvancedSystemCareService8; C:\Program Files\IObit\Advanced SystemCare 8\ASCService.exe [815392 2014-11-04] (IObit)
R2 AtomicAlarmClock; C:\Program Files\Free Desktop Clock\timeserv.exe [2007040 2013-04-24] () [Datei ist nicht signiert]
S3 BEService; C:\Program Files\Common Files\BattlEye\BEService.exe [921088 2015-08-01] ()
R2 CoreMessagingRegistrar; C:\WINDOWS\system32\coremessaging.dll [588800 2015-08-06] (Microsoft Corporation)
S3 diagnosticshub.standardcollector.service; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [23040 2015-07-10] (Microsoft Corporation)
S3 DmEnrollmentSvc; C:\WINDOWS\system32\Windows.Internal.Management.dll [193024 2015-07-10] (Microsoft Corporation)
S3 FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [651720 2014-12-19] (Macrovision Europe Ltd.) [Datei ist nicht signiert]
R2 LiveUpdateSvc; C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe [2909472 2015-08-09] (IObit)
R2 MSMQ; C:\WINDOWS\system32\mqsvc.exe [24576 2015-08-06] (Microsoft Corporation)
R2 N360; C:\Program Files\Norton 360\Engine\22.5.2.15\N360.exe [282016 2015-07-16] (Symantec Corporation)
R2 OneSyncSvc_Session1; C:\WINDOWS\system32\svchost.exe [35176 2015-07-10] (Microsoft Corporation)
S3 PimIndexMaintenanceSvc_Session1; C:\WINDOWS\system32\svchost.exe [35176 2015-07-10] (Microsoft Corporation)
R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76888 2014-11-09] ()
S3 SandraAgentSrv; C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2014.SP3\RpcAgentSrv.exe [73712 2014-08-16] (SiSoftware) [Datei ist nicht signiert]
R2 SDScannerService; C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)
S3 SensorDataService; C:\WINDOWS\System32\SensorDataService.exe [669696 2015-08-06] (Microsoft Corporation)
R2 STacSV; C:\Program Files\SigmaTel\C-Major Audio\WDM\STacSV.exe [90112 2007-01-12] (SigmaTel, Inc.) [Datei ist nicht signiert]
S3 UnistoreSvc_Session1; C:\WINDOWS\System32\svchost.exe [35176 2015-07-10] (Microsoft Corporation)
S3 UserDataSvc_Session1; C:\WINDOWS\system32\svchost.exe [35176 2015-07-10] (Microsoft Corporation)
S3 w3logsvc; C:\WINDOWS\system32\inetsrv\w3logsvc.dll [72192 2015-08-06] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [277760 2015-07-10] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23264 2015-07-10] (Microsoft Corporation)
===================== Treiber (Nicht auf der Ausnahmeliste) ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R3 AtiHDAudioService; C:\WINDOWS\system32\drivers\AtihdWT3.sys [82432 2015-05-28] (Advanced Micro Devices)
R1 BasicRender; C:\WINDOWS\System32\drivers\BasicRender.sys [30720 2015-07-10] (Microsoft Corporation)
R1 BHDrvx86; C:\Program Files\Norton 360\NortonData\22.5.2.15\Definitions\BASHDefs\20150810.001_9b5\BHDrvx86.sys [1181936 2015-08-10] (Symantec Corporation)
S3 buttonconverter; C:\WINDOWS\System32\drivers\buttonconverter.sys [23552 2015-07-10] (Microsoft Corporation)
S3 CapImg; C:\WINDOWS\System32\drivers\capimg.sys [96768 2015-07-10] (Microsoft Corporation)
R1 ccSet_N360; C:\WINDOWS\system32\drivers\N360\1605020.00F\ccSetx86.sys [137456 2015-07-11] (Symantec Corporation)
R3 CompositeBus; C:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_x86_a4832450a7024d49\CompositeBus.sys [31232 2015-07-10] (Microsoft Corporation)
R1 eeCtrl; C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [389456 2015-07-27] (Symantec Corporation)
R3 EraserUtilRebootDrv; C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [122192 2015-07-27] (Symantec Corporation)
S3 EsgScanner; C:\WINDOWS\System32\DRIVERS\EsgScanner.sys [19984 2015-08-09] ()
S3 fcvsc; C:\WINDOWS\System32\drivers\fcvsc.sys [24064 2015-07-10] (Microsoft Corporation)
R1 FileCrypt; C:\WINDOWS\System32\drivers\filecrypt.sys [74240 2015-07-10] (Microsoft Corporation)
S3 genericusbfn; C:\WINDOWS\System32\drivers\genericusbfn.sys [17408 2015-07-10] (Microsoft Corporation)
S3 GPIO; C:\WINDOWS\System32\drivers\iaiogpio.sys [22016 2015-07-10] (Intel Corporation)
R1 GpuEnergyDrv; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [7680 2015-07-10] (Microsoft Corporation)
S3 hidinterrupt; C:\WINDOWS\System32\drivers\hidinterrupt.sys [37728 2015-07-10] (Microsoft Corporation)
R1 IDSVix86; C:\Program Files\Norton 360\NortonData\22.5.2.15\Definitions\IPSDefs\20150814.002\IDSvix86.sys [523512 2015-08-07] (Symantec Corporation)
S3 IoQos; C:\WINDOWS\System32\drivers\ioqos.sys [23040 2015-07-10] (Microsoft Corporation)
R2 lirsgt; C:\WINDOWS\System32\DRIVERS\lirsgt.sys [18048 2015-05-17] () [Datei ist nicht signiert]
S0 LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [88928 2015-07-10] (LSI Corporation)
S0 LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [83296 2015-07-10] (Avago Technologies)
S0 megasas; C:\WINDOWS\System32\drivers\megasas.sys [52064 2015-07-10] (Avago Technologies)
R2 MMCSS; C:\WINDOWS\system32\drivers\mmcss.sys [37376 2015-07-10] (Microsoft Corporation)
R3 MQAC; C:\WINDOWS\System32\drivers\mqac.sys [130048 2015-08-06] (Microsoft Corporation)
R3 NAVENG; C:\Program Files\Norton 360\NortonData\22.5.2.15\Definitions\VirusDefs\20150816.002\NAVENG.SYS [104440 2015-08-12] (Symantec Corporation)
R3 NAVEX15; C:\Program Files\Norton 360\NortonData\22.5.2.15\Definitions\VirusDefs\20150816.002\NAVEX15.SYS [1645432 2015-08-12] (Symantec Corporation)
S3 netvsc; C:\WINDOWS\System32\drivers\netvsc.sys [80384 2015-07-10] (Microsoft Corporation)
S3 PDNMp50; C:\Windows\system32\drivers\PDNMp50.sys [28224 2006-11-28] (Printing Communications Assoc., Inc. (PCAUSA))
S3 PDNSp50; C:\Windows\system32\drivers\PDNSp50.sys [27072 2006-11-28] (Printing Communications Assoc., Inc. (PCAUSA))
S0 percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [51040 2015-07-10] (LSI Corporation)
S0 percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [51552 2015-07-10] (Avago Technologies)
S3 SANDRA; C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2014.SP3\WNt500x86\Sandra.sys [23112 2009-08-07] (SiSoftware)
R3 SRTSP; C:\WINDOWS\system32\drivers\N360\1605020.00F\SRTSP.SYS [711408 2015-07-11] (Symantec Corporation)
R1 SRTSPX; C:\WINDOWS\system32\drivers\N360\1605020.00F\SRTSPX.SYS [44792 2015-07-11] (Symantec Corporation)
R3 STHDA; C:\WINDOWS\system32\drivers\stwrt.sys [647680 2007-01-12] (SigmaTel, Inc.)
R2 storqosflt; C:\WINDOWS\System32\drivers\storqosflt.sys [52736 2015-07-10] (Microsoft Corporation)
S0 storufs; C:\WINDOWS\System32\drivers\storufs.sys [33632 2015-07-10] (Microsoft Corporation)
R3 swenum; C:\WINDOWS\System32\DriverStore\FileRepository\swenum.inf_x86_b6707c73599dd1b6\swenum.sys [16224 2015-07-10] (Microsoft Corporation)
R0 SymEFASI; C:\WINDOWS\System32\drivers\N360\1605020.00F\SYMEFASI.SYS [1286896 2015-07-11] (Symantec Corporation)
S0 SymELAM; C:\WINDOWS\System32\drivers\N360\1605020.00F\SYMELAM.SYS [22144 2015-07-11] (Symantec Corporation)
R3 SymEvent; C:\WINDOWS\system32\Drivers\SYMEVENT.SYS [103152 2015-08-07] (Symantec Corporation)
R1 SymIRON; C:\WINDOWS\system32\drivers\N360\1605020.00F\Ironx86.SYS [234744 2015-07-11] (Symantec Corporation)
R1 SymNetS; C:\WINDOWS\system32\drivers\N360\1605020.00F\SYMNETS.SYS [429816 2015-07-11] (Symantec Corporation)
S3 tap0901; C:\WINDOWS\System32\DRIVERS\tap0901.sys [35288 2013-09-10] (The OpenVPN Project)
S3 UcmCx0101; C:\WINDOWS\System32\Drivers\UcmCx.sys [45056 2015-07-10] (Microsoft Corporation)
S3 UcmUcsi; C:\WINDOWS\System32\drivers\UcmUcsi.sys [32768 2015-08-06] (Microsoft Corporation)
S3 UdeCx; C:\WINDOWS\System32\drivers\udecx.sys [31744 2015-07-10] ()
S3 Ufx01000; C:\WINDOWS\System32\drivers\ufx01000.sys [190816 2015-07-10] (Microsoft Corporation)
S3 UfxChipidea; C:\WINDOWS\System32\drivers\UfxChipidea.sys [73568 2015-07-10] (Microsoft Corporation)
S3 ufxsynopsys; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [100704 2015-07-10] (Microsoft Corporation)
S3 UrsChipidea; C:\WINDOWS\System32\drivers\urschipidea.sys [21856 2015-07-10] (Microsoft Corporation)
S3 UrsCx01000; C:\WINDOWS\System32\drivers\urscx01000.sys [42848 2015-07-10] (Microsoft Corporation)
S3 UrsSynopsys; C:\WINDOWS\System32\drivers\urssynopsys.sys [21856 2015-07-10] (Microsoft Corporation)
S3 VASDeviceDrm; C:\WINDOWS\System32\drivers\vasdDev.sys [1449536 2011-02-11] (ShiningMorning Inc.)
S3 vhf; C:\WINDOWS\System32\drivers\vhf.sys [24064 2015-07-10] (Microsoft Corporation)
S3 wdiwifi; C:\WINDOWS\System32\DRIVERS\wdiwifi.sys [488960 2015-08-12] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [97632 2015-07-10] (Microsoft Corporation)
R0 WindowsTrustedRT; C:\WINDOWS\System32\drivers\WindowsTrustedRT.sys [86552 2015-07-10] (Microsoft Corporation)
R0 WindowsTrustedRTProxy; C:\WINDOWS\System32\drivers\WindowsTrustedRTProxy.sys [15384 2015-07-10] (Microsoft Corporation)
R0 Wof; C:\WINDOWS\system32\Drivers\Wof.sys [173408 2015-08-12] (Microsoft Corporation)
S3 xboxgip; C:\WINDOWS\System32\drivers\xboxgip.sys [186368 2015-07-10] (Microsoft Corporation)
S3 xinputhid; C:\WINDOWS\System32\drivers\xinputhid.sys [18432 2015-07-10] (Microsoft Corporation)
S3 eapihdrv; \??\C:\Users\G.S\AppData\Local\Temp\ehdrv.sys [X]
S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [X]
U3 idsvc; kein ImagePath
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
U3 wpcsvc; kein ImagePath
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
NETSVC: XboxNetApiSvc -> C:\Windows\system32\XboxNetApiSvc.dll (Microsoft Corporation)
==================== Ein Monat: Erstellte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2015-08-16 20:03 - 2015-08-16 20:04 - 00022322 _____ C:\Users\G.S\Desktop\FRST.txt
2015-08-16 20:02 - 2015-08-16 20:03 - 01676800 _____ (Farbar) C:\Users\G.S\Desktop\FRST.exe
2015-08-16 19:59 - 2015-08-16 19:59 - 00016148 _____ C:\WINDOWS\system32\GS-PC_G.S_HistoryPrediction.bin
2015-08-16 18:36 - 2015-08-16 18:36 - 00000812 _____ C:\AdwCleaner[C17].txt
2015-08-16 18:34 - 2015-08-16 18:36 - 00000658 _____ C:\AdwCleaner[S23].txt
2015-08-16 18:34 - 2015-08-16 18:34 - 00000000 ____D C:\AdwCleaner
2015-08-16 18:32 - 2015-08-16 18:34 - 01563648 _____ C:\Users\G.S\Desktop\AdwCleaner_5.000.exe
2015-08-14 15:20 - 2015-08-14 15:20 - 00000000 ____D C:\Users\G.S\AppData\Roaming\ProductData
2015-08-14 15:19 - 2015-08-14 15:19 - 00000000 ____D C:\ProgramData\ProductData
2015-08-14 15:03 - 2015-08-14 15:03 - 00001451 _____ C:\Users\G.S\Desktop\JRT.txt
2015-08-14 13:33 - 2015-08-14 14:58 - 01791580 _____ (Malwarebytes Corporation) C:\Users\G.S\Desktop\JRT.exe
2015-08-14 12:53 - 2015-08-16 19:59 - 00000275 _____ C:\WINDOWS\WindowsUpdate.log
2015-08-14 12:52 - 2015-08-14 12:52 - 00000328 _____ C:\WINDOWS\PFRO.log
2015-08-13 22:50 - 2015-08-16 20:03 - 00000000 ____D C:\FRST
2015-08-13 22:08 - 2015-08-13 22:08 - 00000666 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-08-13 22:08 - 2015-06-18 08:41 - 00094936 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2015-08-13 22:08 - 2015-06-18 08:41 - 00051928 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2015-08-13 22:08 - 2015-06-18 08:41 - 00023256 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2015-08-13 20:43 - 2015-08-13 20:43 - 00001258 _____ C:\Users\Public\Desktop\PDF-Viewer.lnk
2015-08-13 20:43 - 2015-08-13 20:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF-XChange PDF Viewer
2015-08-13 20:43 - 2015-08-13 20:43 - 00000000 ____D C:\Program Files\Tracker Software
2015-08-13 20:40 - 2015-08-13 20:41 - 17294728 _____ (Tracker Software Products Ltd ) C:\WINDOWS\system32\PDFXVwer.exe
2015-08-13 18:21 - 2015-08-13 18:21 - 00000020 ___SH C:\Users\DefaultAppPool\ntuser.ini
2015-08-13 18:21 - 2015-08-13 18:21 - 00000000 _SHDL C:\Users\DefaultAppPool\Startmenü
2015-08-13 18:21 - 2015-08-13 18:21 - 00000000 _SHDL C:\Users\DefaultAppPool\Netzwerkumgebung
2015-08-13 18:21 - 2015-08-13 18:21 - 00000000 _SHDL C:\Users\DefaultAppPool\Druckumgebung
2015-08-13 18:21 - 2015-08-13 18:21 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Eigene Musik
2015-08-13 18:21 - 2015-08-13 18:21 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Eigene Bilder
2015-08-13 18:21 - 2015-08-13 18:21 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-08-13 18:21 - 2015-08-13 18:21 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Verlauf
2015-08-13 18:21 - 2015-08-13 18:21 - 00000000 ____D C:\Users\DefaultAppPool
2015-08-13 18:21 - 2015-08-12 19:06 - 00000000 ___RD C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-13 18:21 - 2015-08-06 19:43 - 00000000 ____D C:\Users\DefaultAppPool\Documents\Visual Studio 2008
2015-08-13 18:21 - 2015-08-06 19:43 - 00000000 ____D C:\Users\DefaultAppPool\AppData\Local\Microsoft Help
2015-08-13 18:21 - 2015-07-10 10:28 - 00000000 __RSD C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell
2015-08-13 18:21 - 2015-07-10 10:28 - 00000000 ___RD C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-08-13 18:21 - 2015-07-10 10:28 - 00000000 ___RD C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-08-13 18:21 - 2015-07-10 10:28 - 00000000 ____D C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-08-13 18:21 - 2014-08-05 20:34 - 00002082 _____ C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk
2015-08-13 16:58 - 2015-08-13 16:58 - 00000000 ____D C:\Program Files\Common Files\Java
2015-08-13 16:58 - 2015-08-13 16:57 - 00096352 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll
2015-08-13 01:41 - 2015-08-08 17:38 - 00794088 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2015-08-13 01:41 - 2015-08-08 17:38 - 00179688 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2015-08-12 21:58 - 2015-08-12 22:56 - 00000000 ____D C:\ProgramData\F-Secure
2015-08-12 21:58 - 2015-08-12 21:58 - 00000000 ____D C:\Users\G.S\AppData\Local\F-Secure
2015-08-12 21:17 - 2015-08-12 21:17 - 00002204 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2015-08-12 21:17 - 2015-08-12 21:17 - 00002192 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2015-08-12 21:17 - 2015-08-12 21:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
2015-08-12 21:17 - 2013-09-20 10:49 - 00018968 _____ (Safer Networking Limited) C:\WINDOWS\system32\sdnclean.exe
2015-08-12 18:02 - 2015-08-12 18:02 - 00002259 _____ C:\WINDOWS\epplauncher.mif
2015-08-12 17:57 - 2015-08-12 17:57 - 20857848 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 19323392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 18805248 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 13025792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 11262464 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 06878256 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 06264160 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-08-12 17:57 - 2015-08-12 17:57 - 03025408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 02987008 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2015-08-12 17:57 - 2015-08-12 17:57 - 02151208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 01985024 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 01917440 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 01916416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 01823232 _____ C:\WINDOWS\system32\InputService.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 01709920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2015-08-12 17:57 - 2015-08-12 17:57 - 01593856 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 01535032 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 01499136 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 01391104 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 01162240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 01134592 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2015-08-12 17:57 - 2015-08-12 17:57 - 00995840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 00990720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 00898560 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 00864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 00821248 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfuimanager.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 00719360 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 00700256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2015-08-12 17:57 - 2015-08-12 17:57 - 00673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 00644128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 00539728 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2015-08-12 17:57 - 2015-08-12 17:57 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdbui.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 00503600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 00488960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2015-08-12 17:57 - 2015-08-12 17:57 - 00445952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 00436064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2015-08-12 17:57 - 2015-08-12 17:57 - 00415072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2015-08-12 17:57 - 2015-08-12 17:57 - 00388096 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 00334176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2015-08-12 17:57 - 2015-08-12 17:57 - 00311808 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\configmanager2.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationObjFactory.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 00261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionCenter.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 00217088 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\system32\notepad.exe
2015-08-12 17:57 - 2015-08-12 17:57 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\notepad.exe
2015-08-12 17:57 - 2015-08-12 17:57 - 00200704 _____ C:\WINDOWS\system32\TextInputFramework.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 00197472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdyboost.sys
2015-08-12 17:57 - 2015-08-12 17:57 - 00195072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 00189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_UserAccount.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 00173408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys
2015-08-12 17:57 - 2015-08-12 17:57 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModelShim.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\coredpus.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 00132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 00130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkStatus.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 00085344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys
2015-08-12 17:57 - 2015-08-12 17:57 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll
2015-08-12 17:57 - 2015-08-12 17:57 - 00042904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wpcfltr.sys
2015-08-12 17:57 - 2015-08-12 17:57 - 00036704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msgpiowin32.sys
2015-08-12 17:35 - 2015-08-13 17:23 - 00000000 ____D C:\Users\G.S\Desktop\Neuer Ordner (2)
2015-08-12 17:22 - 2015-08-12 17:22 - 53415936 _____ C:\WINDOWS\system32\config\SOFTWARE.iobit
2015-08-12 17:22 - 2015-08-12 17:22 - 00344064 _____ C:\WINDOWS\system32\config\DEFAULT.iobit
2015-08-12 17:22 - 2015-08-12 17:22 - 00069632 _____ C:\WINDOWS\system32\config\SAM.iobit
2015-08-12 17:22 - 2015-08-12 17:22 - 00024576 _____ C:\WINDOWS\system32\config\SECURITY.iobit
2015-08-12 16:41 - 2015-08-12 16:41 - 00000000 __SHD C:\found.000
2015-08-10 20:10 - 2015-08-10 20:10 - 00000000 ___RD C:\Users\G.S\3D Objects
2015-08-10 02:22 - 2015-08-12 17:37 - 00000000 ____D C:\Users\G.S\Desktop\Neuer Ordner
2015-08-09 23:15 - 2015-08-13 17:32 - 00000000 ____D C:\WINDOWS\Minidump
2015-08-09 22:17 - 2015-08-09 22:17 - 00000000 ____D C:\sh4ldr
2015-08-09 22:14 - 2015-08-09 22:14 - 00019984 _____ C:\WINDOWS\system32\Drivers\EsgScanner.sys
2015-08-09 22:14 - 2015-08-09 22:14 - 00000000 ____D C:\Program Files\Enigma Software Group
2015-08-09 15:37 - 2015-08-13 23:35 - 00098520 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2015-08-09 15:37 - 2015-08-13 22:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-08-09 14:30 - 2015-08-09 14:30 - 00000000 ____D C:\Users\G.S\AppData\Roaming\dlg
2015-08-09 14:14 - 2015-08-09 14:24 - 223334912 _____ C:\WINDOWS\system32\SafenSoft_SysWatch.msi
2015-08-09 14:13 - 2015-08-15 12:43 - 00002204 _____ C:\Users\Public\Desktop\Advanced SystemCare 8.lnk
2015-08-09 14:13 - 2015-08-12 17:02 - 00000000 ____D C:\ProgramData\{BAF091CA-86C4-4627-ADA1-897E2621C1B0}
2015-08-09 14:13 - 2015-08-09 14:28 - 00000000 ____D C:\Program Files\IObit
2015-08-09 14:13 - 2015-08-09 14:18 - 00000000 ____D C:\ProgramData\IObit
2015-08-09 14:13 - 2015-08-09 14:14 - 00000000 ____D C:\Users\G.S\AppData\Roaming\IObit
2015-08-09 14:13 - 2015-08-09 14:13 - 00000000 ____D C:\WINDOWS\Tasks\ImCleanDisabled
2015-08-09 14:13 - 2015-08-09 14:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare 8
2015-08-09 14:13 - 2015-08-09 14:13 - 00000000 ____D C:\Program Files\Common Files\IObit
2015-08-09 13:50 - 2015-08-09 13:50 - 00380416 _____ C:\WINDOWS\system32\e73f19hl.exe
2015-08-09 13:49 - 2015-08-09 13:49 - 00000000 ____D C:\Users\G.S\AppData\Roaming\AVG
2015-08-09 13:49 - 2015-08-09 13:49 - 00000000 ____D C:\Users\G.S\AppData\Local\Avg
2015-08-09 13:49 - 2015-08-09 13:49 - 00000000 ____D C:\Program Files\AVG
2015-08-09 13:48 - 2015-08-09 14:07 - 00000000 ____D C:\ProgramData\AVG
2015-08-08 00:28 - 2015-08-08 00:28 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2015-08-07 23:57 - 2015-08-07 23:57 - 00000000 ____D C:\Users\G.S\AppData\Local\PeerDistRepub
2015-08-07 17:02 - 2015-08-07 23:59 - 00000000 ____D C:\Program Files\Common Files\Symantec Shared
2015-08-07 17:01 - 2015-08-07 17:01 - 00002324 _____ C:\Users\Public\Desktop\Norton 360.LNK
2015-08-07 17:00 - 2015-08-07 17:01 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton 360
2015-08-07 17:00 - 2015-08-07 17:00 - 00000000 ____D C:\Program Files\Norton 360
2015-08-07 16:39 - 2015-08-07 16:39 - 00000000 ____D C:\Users\Public\Downloads\Norton
2015-08-07 16:37 - 2015-08-07 16:38 - 00000000 ____D C:\Users\G.S\AppData\Local\Comms
2015-08-06 23:01 - 2015-08-06 23:01 - 00000000 ____D C:\ProgramData\Kaspersky Lab Setup Files
2015-08-06 22:59 - 2015-08-06 22:59 - 170403328 _____ C:\Users\G.S\AppData\Local\Tempkis2015.exe
2015-08-06 22:59 - 2015-08-06 22:59 - 170245952 _____ (Kaspersky Lab) C:\Users\G.S\AppData\Local\Tempkis15_0_0_463fr_6152.exe
2015-08-06 20:23 - 2015-08-09 14:33 - 00000000 ___DC C:\WINDOWS\Panther
2015-08-06 20:22 - 2015-08-06 19:31 - 00000000 __SHD C:\Recovery
2015-08-06 20:18 - 2015-08-06 20:19 - 00000000 ____D C:\Windows.old
2015-08-06 20:16 - 2015-08-06 20:16 - 12589056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 09889792 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 06101504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 05454848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 05118024 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 05076480 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 04398080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 04350464 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 04047288 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2015-08-06 20:16 - 2015-08-06 20:16 - 03687936 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 03579904 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 03443200 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbon.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 02878000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 02646528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 02606080 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 02207744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 02112512 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 01964544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 01867160 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 01829376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 01808224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2015-08-06 20:16 - 2015-08-06 20:16 - 01769056 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 01714176 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 01611264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 01506816 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 01395568 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 01380864 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 01356368 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 01341920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 01275392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 01181536 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 01153536 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2015-08-06 20:16 - 2015-08-06 20:16 - 01125888 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 01112064 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 01084416 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 01043968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 01030416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2015-08-06 20:16 - 2015-08-06 20:16 - 00987072 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2015-08-06 20:16 - 2015-08-06 20:16 - 00962400 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00925696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00923648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00920576 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00918880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2015-08-06 20:16 - 2015-08-06 20:16 - 00916800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00902320 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2015-08-06 20:16 - 2015-08-06 20:16 - 00896144 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00877016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00868752 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2015-08-06 20:16 - 2015-08-06 20:16 - 00850784 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2015-08-06 20:16 - 2015-08-06 20:16 - 00845664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00828416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00823336 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00821248 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00798208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00794888 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00762896 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00751520 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2015-08-06 20:16 - 2015-08-06 20:16 - 00750592 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00741376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00729088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpccpl.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00713312 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00712192 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2015-08-06 20:16 - 2015-08-06 20:16 - 00677888 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00675328 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00669696 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorDataService.exe
2015-08-06 20:16 - 2015-08-06 20:16 - 00667136 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00623616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00588800 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00587264 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00585728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00584544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Import.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00548616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00520640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00507696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00506200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2015-08-06 20:16 - 2015-08-06 20:16 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2015-08-06 20:16 - 2015-08-06 20:16 - 00484864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00476672 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00473088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00469856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2015-08-06 20:16 - 2015-08-06 20:16 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00452608 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00445240 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00442720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2015-08-06 20:16 - 2015-08-06 20:16 - 00441344 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00437248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00420352 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
2015-08-06 20:16 - 2015-08-06 20:16 - 00419328 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcomapi.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00417280 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00407616 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00397312 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00373248 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00371200 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00369504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbhub.sys
2015-08-06 20:16 - 2015-08-06 20:16 - 00363520 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe
2015-08-06 20:16 - 2015-08-06 20:16 - 00351072 _____ (Microsoft Corporation) C:\WINDOWS\system32\halmacpi.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00351072 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00335360 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00328704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00301056 _____ C:\WINDOWS\system32\diagtrack_wininternal.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00296448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00294912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00285632 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFPlay.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00284672 _____ C:\WINDOWS\system32\diagtrack_win.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00283136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemcpl.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2015-08-06 20:16 - 2015-08-06 20:16 - 00268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConhostV2.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00265480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00257888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2015-08-06 20:16 - 2015-08-06 20:16 - 00257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00251392 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00247808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00242264 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2015-08-06 20:16 - 2015-08-06 20:16 - 00241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00211456 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00198144 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00196096 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00193888 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00191488 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00191144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe
2015-08-06 20:16 - 2015-08-06 20:16 - 00189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00181088 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\srumsvc.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00165888 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00153088 _____ (Microsoft Corporation) C:\WINDOWS\system32\OmaDmAgent.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdboot.exe
2015-08-06 20:16 - 2015-08-06 20:16 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00141312 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00135680 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2015-08-06 20:16 - 2015-08-06 20:16 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\TabSvc.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SignInOptions.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tunnel.sys
2015-08-06 20:16 - 2015-08-06 20:16 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Privacy.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2015-08-06 20:16 - 2015-08-06 20:16 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\sendmail.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2015-08-06 20:16 - 2015-08-06 20:16 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00082616 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcd.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\spbcd.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe
2015-08-06 20:16 - 2015-08-06 20:16 - 00056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\setbcdlocale.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00054112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys
2015-08-06 20:16 - 2015-08-06 20:16 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\unenrollhook.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthhfenum.sys
2015-08-06 20:16 - 2015-08-06 20:16 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys
2015-08-06 20:16 - 2015-08-06 20:16 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2015-08-06 20:16 - 2015-08-06 20:16 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.PAL.Desktop.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\hmkd.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmprc.exe
2015-08-06 20:16 - 2015-08-06 20:16 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.ProxyStub.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00037376 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\VoiceActivationManager.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmUcsi.sys
2015-08-06 20:16 - 2015-08-06 20:16 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\calc.exe
2015-08-06 20:16 - 2015-08-06 20:16 - 00025088 _____ C:\WINDOWS\system32\LicenseManagerApi.dll
2015-08-06 20:16 - 2015-08-06 20:16 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerShellext.exe
2015-08-06 20:16 - 2015-08-06 20:16 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2015-08-06 20:12 - 2015-08-06 20:12 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2015-08-06 20:09 - 2015-08-07 00:05 - 00000000 ____D C:\Users\G.S\AppData\Local\MicrosoftEdge
2015-08-06 20:09 - 2015-08-06 20:09 - 00000000 ____D C:\WINDOWS\system32\XPSViewer
2015-08-06 20:09 - 2015-08-06 20:09 - 00000000 ____D C:\WINDOWS\system32\msmq
2015-08-06 20:09 - 2015-08-06 20:09 - 00000000 ____D C:\WINDOWS\system32\BestPractices
2015-08-06 20:09 - 2015-08-06 20:09 - 00000000 ____D C:\Program Files\Reference Assemblies
2015-08-06 20:09 - 2015-08-06 20:09 - 00000000 ____D C:\Program Files\MSBuild
2015-08-06 20:09 - 2015-08-06 20:09 - 00000000 ____D C:\inetpub
2015-08-06 20:09 - 2015-05-29 22:07 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-08-06 20:09 - 2015-05-29 22:07 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-08-06 20:09 - 2015-05-29 22:07 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2015-08-06 20:08 - 2015-08-06 20:09 - 00002387 _____ C:\Users\G.S\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2015-08-06 20:06 - 2015-07-09 20:39 - 04847104 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0009.dll
2015-08-06 20:06 - 2015-07-09 20:36 - 05739520 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0009.dll
2015-08-06 20:06 - 2015-07-09 20:36 - 02629632 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons0009.dll
2015-08-06 20:05 - 2015-08-06 20:05 - 00001051 _____ C:\Users\G.S\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Optionale Features.lnk
2015-08-06 20:05 - 2015-08-06 20:05 - 00000000 ____D C:\ProgramData\ATI
2015-08-06 20:03 - 2015-08-06 20:03 - 00000000 ____D C:\Users\G.S\AppData\Local\Publishers
2015-08-06 20:00 - 2015-08-06 20:00 - 00000020 ___SH C:\Users\G.S\ntuser.ini
2015-08-06 20:00 - 2015-08-06 20:00 - 00000000 ____D C:\Users\G.S\AppData\Local\TileDataLayer
2015-08-06 19:55 - 2015-08-06 19:55 - 00000000 _SHDL C:\Users\Default\Startmenü
2015-08-06 19:55 - 2015-08-06 19:55 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung
2015-08-06 19:55 - 2015-08-06 19:55 - 00000000 _SHDL C:\Users\Default\Druckumgebung
2015-08-06 19:55 - 2015-08-06 19:55 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik
2015-08-06 19:55 - 2015-08-06 19:55 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder
2015-08-06 19:55 - 2015-08-06 19:55 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-08-06 19:55 - 2015-08-06 19:55 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf
2015-08-06 19:55 - 2015-08-06 19:55 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik
2015-08-06 19:55 - 2015-08-06 19:55 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder
2015-08-06 19:55 - 2015-08-06 19:55 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-08-06 19:55 - 2015-08-06 19:55 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf
2015-08-06 19:55 - 2015-08-06 19:55 - 00000000 _SHDL C:\Programme
2015-08-06 19:53 - 2015-08-06 19:53 - 00021532 _____ C:\WINDOWS\system32\emptyregdb.dat
2015-08-06 19:43 - 2015-08-06 19:43 - 00000000 ____D C:\Users\Default\Documents\Visual Studio 2008
2015-08-06 19:43 - 2015-08-06 19:43 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2015-08-06 19:43 - 2015-08-06 19:43 - 00000000 ____D C:\Users\Default User\Documents\Visual Studio 2008
2015-08-06 19:43 - 2015-08-06 19:43 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2015-08-06 19:42 - 2015-08-06 19:42 - 00001544 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2015-08-06 19:37 - 2015-08-06 19:37 - 00000000 ____D C:\Program Files\Common Files\SpeechEngines
2015-08-06 19:34 - 2015-08-12 19:09 - 00000000 ____D C:\Users\G.S
2015-08-06 19:34 - 2015-08-06 20:00 - 00000000 ___RD C:\Users\G.S\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-06 19:34 - 2015-08-06 19:34 - 00000000 _SHDL C:\Users\G.S\Startmenü
2015-08-06 19:34 - 2015-08-06 19:34 - 00000000 _SHDL C:\Users\G.S\Netzwerkumgebung
2015-08-06 19:34 - 2015-08-06 19:34 - 00000000 _SHDL C:\Users\G.S\Druckumgebung
2015-08-06 19:34 - 2015-08-06 19:34 - 00000000 _SHDL C:\Users\G.S\Documents\Eigene Musik
2015-08-06 19:34 - 2015-08-06 19:34 - 00000000 _SHDL C:\Users\G.S\Documents\Eigene Bilder
2015-08-06 19:34 - 2015-08-06 19:34 - 00000000 _SHDL C:\Users\G.S\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-08-06 19:34 - 2015-08-06 19:34 - 00000000 _SHDL C:\Users\G.S\AppData\Local\Verlauf
2015-08-06 19:34 - 2015-07-10 10:28 - 00000000 __RSD C:\Users\G.S\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell
2015-08-06 19:34 - 2015-07-10 10:28 - 00000000 ___RD C:\Users\G.S\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-08-06 19:34 - 2015-07-10 10:28 - 00000000 ___RD C:\Users\G.S\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-08-06 19:34 - 2015-07-10 10:28 - 00000000 ____D C:\Users\G.S\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-08-06 19:31 - 2015-08-07 16:59 - 02030034 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-08-06 19:29 - 2015-08-06 19:29 - 00060329 _____ C:\WINDOWS\system32\CCCInstall_201508061929391634.log
2015-08-06 19:29 - 2015-08-06 19:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
2015-08-06 19:28 - 2015-08-06 19:38 - 00000000 ____D C:\ProgramData\Package Cache
2015-08-06 19:28 - 2015-08-06 19:28 - 00000000 ____D C:\Program Files\ATI Technologies
2015-08-06 19:27 - 2015-08-06 19:27 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
2015-08-06 19:27 - 2015-08-06 19:27 - 00000000 ____D C:\Program Files\AMD
2015-08-06 19:27 - 2015-08-06 19:27 - 00000000 _____ C:\WINDOWS\ativpsrm.bin
2015-08-06 19:26 - 2015-08-06 19:26 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2015-08-06 19:25 - 2015-08-06 19:25 - 00020585 _____ C:\WINDOWS\system32\NetSetupMig.log
2015-08-06 18:57 - 2015-07-10 10:25 - 00000001 ___SH C:\BOOTNXT
2015-08-03 18:53 - 2015-08-03 18:53 - 00000000 ____D C:\Users\G.S\AppData\Local\Bohemia_Interactive
2015-08-03 18:52 - 2015-08-03 19:57 - 00000000 ____D C:\Users\G.S\AppData\Local\Arma 3 Launcher
2015-08-03 16:24 - 2015-08-03 16:25 - 00450560 _____ (RAD Game Tools, Inc.) C:\WINDOWS\system32\mss32.dll
2015-08-02 21:07 - 2015-08-06 19:54 - 00012354 _____ C:\WINDOWS\diagerr.xml
2015-08-02 21:07 - 2015-08-06 19:54 - 00011433 _____ C:\WINDOWS\diagwrn.xml
2015-08-02 18:59 - 2015-08-02 18:59 - 00000000 ___HD C:\$Windows.~WS
2015-07-31 22:19 - 2015-08-06 19:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-07-31 22:19 - 2015-07-31 22:19 - 00000000 ____D C:\Program Files\Common Files\Skype
2015-07-31 22:10 - 2015-08-07 17:00 - 00000000 ____D C:\WINDOWS\system32\Drivers\N360
2015-07-30 22:25 - 2015-07-30 22:25 - 00000000 ____D C:\Users\G.S\Tracing
2015-07-30 21:18 - 2015-07-30 21:18 - 00000000 ____D C:\Program Files\ESET
2015-07-30 13:11 - 2015-07-30 13:11 - 00000000 ____D C:\Users\G.S\AppData\Local\CEF
2015-07-29 19:46 - 2015-07-31 22:19 - 00000000 ___RD C:\Program Files\Skype
==================== Ein Monat: Geänderte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2015-08-16 20:03 - 2014-12-10 23:43 - 00000000 ____D C:\Program Files\Opera
2015-08-16 19:59 - 2014-08-05 19:42 - 00001094 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-08-16 19:58 - 2015-07-10 11:55 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-08-16 19:57 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\sru
2015-08-16 19:57 - 2015-07-10 08:59 - 00131072 ___SH C:\WINDOWS\system32\config\BBI
2015-08-16 19:12 - 2014-08-07 00:38 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-08-16 19:07 - 2014-08-05 19:42 - 00001098 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2015-08-16 19:01 - 2015-06-08 18:34 - 00000000 ____D C:\Program Files\Mozilla Thunderbird
2015-08-16 15:16 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\Microsoft.NET
2015-08-15 19:30 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\rescache
2015-08-15 12:53 - 2015-07-10 10:20 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-08-14 12:56 - 2015-07-10 08:59 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2015-08-14 12:42 - 2015-05-17 14:37 - 00000000 ____D C:\Users\G.S\Desktop\ich
2015-08-13 16:58 - 2014-08-06 16:31 - 00000000 __SHD C:\Users\G.S\AppData\Local\EmieUserList
2015-08-13 16:58 - 2014-08-06 16:31 - 00000000 __SHD C:\Users\G.S\AppData\Local\EmieSiteList
2015-08-13 16:58 - 2014-08-05 22:09 - 00000000 ____D C:\ProgramData\Oracle
2015-08-13 16:57 - 2014-10-16 14:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2015-08-13 16:57 - 2014-10-16 14:23 - 00000000 ____D C:\Program Files\Java
2015-08-13 00:47 - 2015-06-01 18:15 - 00002198 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-08-12 21:24 - 2015-05-29 00:51 - 00000000 ____D C:\Program Files\Spybot - Search & Destroy 2
2015-08-12 21:17 - 2015-05-29 00:51 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2015-08-12 19:09 - 2015-07-10 11:53 - 00327768 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-08-12 19:06 - 2015-07-10 15:12 - 00000000 ____D C:\WINDOWS\system32\Drivers\de-DE
2015-08-12 19:06 - 2015-07-10 10:28 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-12 19:06 - 2015-07-10 10:28 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-12 19:06 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\de-DE
2015-08-12 19:06 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\appraiser
2015-08-12 17:45 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\LogFiles
2015-08-12 17:02 - 2014-08-05 18:59 - 00000000 ____D C:\ProgramData\Norton
2015-08-12 16:58 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\registration
2015-08-10 19:45 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2015-08-09 14:42 - 2014-08-24 14:21 - 00000000 ____D C:\Users\G.S\AppData\Local\CrashDumps
2015-08-09 14:33 - 2015-01-03 19:52 - 00000000 ____D C:\Users\G.S\Desktop\kevin
2015-08-09 14:33 - 2014-08-07 08:03 - 00000000 ___RD C:\Users\G.S\ich
2015-08-09 14:32 - 2015-06-30 18:31 - 00000000 ____D C:\Program Files\Steam
2015-08-08 15:11 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-08-07 17:02 - 2015-07-10 10:28 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2015-08-07 17:02 - 2014-08-05 19:01 - 00103152 _____ (Symantec Corporation) C:\WINDOWS\system32\Drivers\SYMEVENT.SYS
2015-08-07 17:02 - 2014-08-05 19:01 - 00008178 _____ C:\WINDOWS\system32\Drivers\SYMEVENT.CAT
2015-08-07 13:11 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\AppCompat
2015-08-06 21:00 - 2015-07-10 10:28 - 00000000 ___RD C:\Users\Public
2015-08-06 21:00 - 2009-07-14 04:37 - 00000000 ____D C:\Users\Default.migrated
2015-08-06 20:25 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\restore
2015-08-06 20:23 - 2015-07-10 10:28 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2015-08-06 20:17 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2015-08-06 20:17 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\Provisioning
2015-08-06 20:09 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\MUI
2015-08-06 20:09 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\inetsrv
2015-08-06 20:09 - 2015-07-10 10:25 - 01014272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqqm.dll
2015-08-06 20:09 - 2015-07-10 10:25 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsnap.dll
2015-08-06 20:09 - 2015-07-10 10:25 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqutil.dll
2015-08-06 20:09 - 2015-07-10 10:25 - 00265728 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.dll
2015-08-06 20:09 - 2015-07-10 10:25 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll
2015-08-06 20:09 - 2015-07-10 10:25 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqrt.dll
2015-08-06 20:09 - 2015-07-10 10:25 - 00130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mqac.sys
2015-08-06 20:09 - 2015-07-10 10:25 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqlogmgr.dll
2015-08-06 20:09 - 2015-07-10 10:25 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.tlb
2015-08-06 20:09 - 2015-07-10 10:25 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa30.tlb
2015-08-06 20:09 - 2015-07-10 10:25 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa20.tlb
2015-08-06 20:09 - 2015-07-10 10:25 - 00050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll
2015-08-06 20:09 - 2015-07-10 10:25 - 00044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqbkup.exe
2015-08-06 20:09 - 2015-07-10 10:25 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa10.tlb
2015-08-06 20:09 - 2015-07-10 10:25 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll
2015-08-06 20:09 - 2015-07-10 10:25 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsvc.exe
2015-08-06 20:09 - 2015-07-10 10:25 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe
2015-08-06 20:09 - 2015-07-10 10:25 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqcertui.dll
2015-08-06 20:09 - 2015-07-10 10:25 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll
2015-08-06 20:09 - 2015-07-10 10:25 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll
2015-08-06 20:09 - 2015-07-10 10:25 - 00009096 _____ C:\WINDOWS\system32\msmqtrc.mof
2015-08-06 20:09 - 2014-08-05 20:34 - 00000000 ___RD C:\Users\G.S\OneDrive
2015-08-06 20:06 - 2015-07-10 15:13 - 00000000 ____D C:\WINDOWS\OCR
2015-08-06 20:02 - 2015-07-10 10:28 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
2015-08-06 20:02 - 2015-07-10 10:28 - 00000000 ___RD C:\WINDOWS\PrintDialog
2015-08-06 20:02 - 2015-07-10 10:28 - 00000000 ___RD C:\WINDOWS\MiracastView
2015-08-06 20:01 - 2015-07-10 10:28 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2015-08-06 19:55 - 2015-07-10 10:28 - 00000000 ____D C:\Program Files\Windows NT
2015-08-06 19:55 - 2015-07-10 08:59 - 00000000 __RHD C:\Users\Default
2015-08-06 19:52 - 2015-07-10 10:28 - 00000000 __RSD C:\WINDOWS\Media
2015-08-06 19:52 - 2015-07-10 10:28 - 00000000 __RHD C:\Users\Public\Libraries
2015-08-06 19:44 - 2015-07-10 10:28 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-06 19:44 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\Web
2015-08-06 19:44 - 2015-06-08 18:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
2015-08-06 19:44 - 2015-06-01 18:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2015-08-06 19:44 - 2015-05-14 22:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ballerburg
2015-08-06 19:44 - 2015-02-16 16:29 - 00000000 ____D C:\Users\G.S\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PokerStars.EU
2015-08-06 19:44 - 2015-02-08 05:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++
2015-08-06 19:44 - 2015-01-30 20:25 - 00000000 ____D C:\Users\G.S\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Winamp Erkennungs-Plug-in
2015-08-06 19:44 - 2015-01-30 20:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free M4a to MP3 Converter
2015-08-06 19:44 - 2015-01-02 02:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2015-08-06 19:44 - 2014-12-10 21:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth
2015-08-06 19:44 - 2014-11-08 17:54 - 00000000 ____D C:\Users\G.S\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GameSpy Arcade
2015-08-06 19:44 - 2014-10-19 17:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XMedia Recode
2015-08-06 19:44 - 2014-09-14 16:09 - 00000000 ____D C:\Users\G.S\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2015-08-06 19:44 - 2014-09-01 19:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SiSoftware
2015-08-06 19:44 - 2014-08-09 21:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-08-06 19:44 - 2014-08-07 00:11 - 00000000 ____D C:\Program Files\Common Files\LogiShrd
2015-08-06 19:44 - 2014-08-06 21:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Desktop Clock
2015-08-06 19:44 - 2014-08-06 21:26 - 00000000 ____D C:\Users\G.S\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-08-06 19:44 - 2014-08-06 21:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-08-06 19:44 - 2014-08-05 19:08 - 00000000 ____D C:\Users\G.S\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NetConnect
2015-08-06 19:44 - 2009-07-14 06:52 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-08-06 19:39 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\twain_32
2015-08-06 19:39 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\zh-TW
2015-08-06 19:39 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\zh-HK
2015-08-06 19:39 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\zh-CN
2015-08-06 19:39 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2015-08-06 19:39 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\tr-TR
2015-08-06 19:39 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\sv-SE
2015-08-06 19:39 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\ru-RU
2015-08-06 19:39 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\pt-PT
2015-08-06 19:39 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\pt-BR
2015-08-06 19:39 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\pl-PL
2015-08-06 19:39 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\nl-NL
2015-08-06 19:39 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\nb-NO
2015-08-06 19:39 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\ko-KR
2015-08-06 19:39 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\ja-JP
2015-08-06 19:39 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\it-IT
2015-08-06 19:39 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\IME
2015-08-06 19:39 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\hu-HU
2015-08-06 19:39 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\fr-FR
2015-08-06 19:39 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\fi-FI
2015-08-06 19:39 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\el-GR
2015-08-06 19:38 - 2015-07-10 15:12 - 00000000 ____D C:\WINDOWS\DigitalLocker
2015-08-06 19:38 - 2015-07-10 10:28 - 00000000 __SHD C:\Program Files\Windows Sidebar
2015-08-06 19:38 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\schemas
2015-08-06 19:38 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2015-08-06 19:38 - 2015-07-10 10:28 - 00000000 ____D C:\Program Files\Microsoft.NET
2015-08-06 19:38 - 2015-06-07 20:02 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Auslogics
2015-08-06 19:38 - 2015-05-15 18:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glorylogic
2015-08-06 19:38 - 2015-05-15 16:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\THQ
2015-08-06 19:38 - 2014-12-28 23:45 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Atari
2015-08-06 19:38 - 2014-12-27 21:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA Games
2015-08-06 19:38 - 2014-11-08 17:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LucasArts
2015-08-06 19:38 - 2014-11-08 17:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameSpy Arcade
2015-08-06 19:38 - 2014-09-15 01:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zuxxez
2015-08-06 19:38 - 2014-08-15 17:49 - 00000000 ____D C:\WINDOWS\system32\appmgmt
2015-08-06 19:37 - 2015-07-10 10:28 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2015-08-06 19:37 - 2014-09-02 17:22 - 00000000 ____D C:\Program Files\AMD AVT
2015-08-06 19:37 - 2009-07-14 06:52 - 00000000 ____D C:\Program Files\DVD Maker
2015-08-06 19:35 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\Recovery
2015-08-06 19:35 - 2014-09-20 12:27 - 00000000 ____D C:\Users\G.S\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bohemia Interactive
2015-08-06 19:27 - 2014-08-06 16:15 - 00000000 ____D C:\AMD
2015-08-06 18:59 - 2009-07-14 06:34 - 00035936 ____H C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-08-06 18:59 - 2009-07-14 06:34 - 00035936 ____H C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-08-06 18:57 - 2014-08-05 18:25 - 00008192 __RSH C:\BOOTSECT.BAK
2015-08-06 18:48 - 2015-07-10 15:39 - 00000000 ___HD C:\$Windows.~BT
2015-08-06 18:48 - 2014-08-07 00:13 - 00028429 _____ C:\WINDOWS\system32\lvcoinst.log
2015-08-06 16:32 - 2014-12-28 17:48 - 00000000 ____D C:\Users\G.S\Documents\Command & Conquer Generäle Stunde Null Data
2015-08-06 16:32 - 2014-10-25 22:23 - 00000000 ____D C:\Users\G.S\Documents\Arma 3
2015-08-06 16:32 - 2014-10-25 22:23 - 00000000 ____D C:\Users\G.S\AppData\Local\Arma 3
2015-08-06 16:32 - 2014-09-20 19:46 - 00000000 ____D C:\Program Files\Common Files\BattlEye
2015-08-06 16:32 - 2014-09-20 19:37 - 00000000 ____D C:\Users\G.S\Documents\ArmA 2
2015-08-02 18:33 - 2014-08-06 16:56 - 00000000 ____D C:\Users\G.S\AppData\Roaming\Skype
2015-08-01 12:41 - 2014-09-20 19:37 - 00000000 ____D C:\Users\G.S\AppData\Local\ArmA 2 OA
2015-08-01 04:09 - 2014-08-06 21:50 - 00000000 ____D C:\Program Files\Free Desktop Clock
2015-08-01 04:09 - 2014-08-06 17:03 - 00000000 ____D C:\Program Files\Common Files\Steam
2015-07-31 22:50 - 2014-08-05 22:10 - 00000000 ____D C:\Users\G.S\AppData\Roaming\.minecraft
2015-07-31 22:19 - 2014-08-06 16:56 - 00000000 ____D C:\ProgramData\Skype
2015-07-31 22:02 - 2014-08-06 21:50 - 00000000 ____D C:\Users\G.S\AppData\Roaming\Free Desktop Clock 3
2015-07-31 22:00 - 2014-08-05 19:42 - 00000000 ____D C:\Program Files\Google
2015-07-31 21:24 - 2015-04-06 21:08 - 00156160 ___SH C:\Users\G.S\Desktop\Thumbs.db
2015-07-31 15:37 - 2014-12-11 06:13 - 00000000 ____D C:\Users\G.S\.gimp-2.8
==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======
2014-11-09 15:34 - 2015-04-06 21:39 - 0022328 _____ () C:\Users\G.S\AppData\Roaming\PnkBstrK.sys
2014-09-01 19:53 - 2014-09-02 17:31 - 14217216 _____ () C:\Users\G.S\AppData\Roaming\Sandra.mdb
2015-05-15 18:52 - 2015-05-15 18:56 - 0000026 _____ () C:\Users\G.S\AppData\Local\isoworkshop.ini
2014-08-14 22:26 - 2014-08-14 22:26 - 0001452 _____ () C:\Users\G.S\AppData\Local\RecConfig.xml
2014-12-14 07:23 - 2014-12-14 07:23 - 0018591 _____ () C:\Users\G.S\AppData\Local\recently-used.xbel
2015-08-06 22:59 - 2015-08-06 22:59 - 170245952 _____ (Kaspersky Lab) C:\Users\G.S\AppData\Local\Tempkis15_0_0_463fr_6152.exe
2015-08-06 22:59 - 2015-08-06 22:59 - 170403328 _____ () C:\Users\G.S\AppData\Local\Tempkis2015.exe
Einige Dateien in TEMP:
====================
C:\Users\G.S\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap =================
(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)
C:\WINDOWS\explorer.exe => Datei ist digital signiert
C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert
C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert
C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert
C:\WINDOWS\system32\services.exe => Datei ist digital signiert
C:\WINDOWS\system32\User32.dll => Datei ist digital signiert
C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert
C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert
C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert
LastRegBack: 2015-08-06 19:24
==================== Ende vom raportu ============================
|