Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: Windows 8.1: Bitdefender Fund "gen.variant.symmi.[NUMMER]" Kann nicht entfernt werden.

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML

Antwort
Alt 16.02.2014, 22:00   #1
Mosurft
 
Windows 8.1: Bitdefender Fund "gen.variant.symmi.[NUMMER]" Kann nicht entfernt werden. - Standard

Windows 8.1: Bitdefender Fund "gen.variant.symmi.[NUMMER]" Kann nicht entfernt werden.



Guten Abend!

Vor ein paar Tagen meldete sich mein Bitdefender AntiVirus Plus 2014 und meldete folgenden Fund: Eine .tmp Datei im Temp - Folder meines Benutzers sei mit "gen.variant.symmi.XXXX" infiziert. Eine Bereinigung sei nicht möglich, der PC sei nicht virenfrei.

Die fragliche Datei WXXXXX.tmp war allerdings nicht auffindbar.

Ein Scan mit Bitdefender brachte kein Ergebnis, ebenso ESET Online fand nichts.

Ich poste die erforderlichen Logs unten, ich möchte ausschließen, ob nicht doch eine Infektion stattfand oder ob es nur falscher Alarm war.

FRST.txt

Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-02-2014 01
Ran by USER (administrator) on MORITZ-NB on 16-02-2014 17:58:39
Running from D:\Downloads
Windows 8.1 Pro (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: hxxp://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ 
Download link for 64-Bit Version: hxxp://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ 
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\vsserv.exe
() C:\Program Files (x86)\Akademische Arbeitsgemeinschaft\AAVUpdateManager\aavus.exe
(Samsung Electronics CO., LTD.) C:\Program Files (x86)\Samsung\Settings\CmdServer\EasyLauncher.exe
(Microsoft Corporation) C:\Windows\system32\dashost.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(Infineon Technologies AG) C:\Program Files (x86)\Infineon\Security Platform Software\ifxspmgt.exe
(Infineon Technologies AG) C:\Program Files (x86)\Infineon\Security Platform Software\ifxtcs.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe
(Infineon Technologies AG) C:\Program Files (x86)\Infineon\Security Platform Software\IfxPsdSv.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\updatesrv.exe
() C:\Program Files (x86)\Samsung\Settings\CmdServer\EasySettingsCmdServer.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Infineon Technologies AG) C:\Program Files (x86)\Infineon\Security Platform Software\PSDrt.exe
(Infineon Technologies AG) C:\Program Files (x86)\Infineon\Security Platform Software\SpTna.exe
(Intel Corporation) C:\Windows\system32\igfxext.exe
(Samsung Electronics CO., LTD.) C:\Program Files (x86)\Samsung\Settings\sSettings.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\system32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\bdagent.exe
() C:\Program Files (x86)\ownCloud\owncloud.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(HexaD) C:\Program Files\Duplicati\Duplicati.exe
(Microsoft Corporation) C:\Program Files (x86)\EMET 4.1\EMET_Agent.exe
(AgileBits) C:\Program Files (x86)\1Password 4\Agile1pAgent.exe
(Samsung Electronics CO., LTD.) C:\Program Files\Samsung\S Agent\CommonAgent.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Intel Corporation) C:\Windows\SysWow64\IntelCpHeciSvc.exe
(Microsoft Corporation) C:\Windows\system32\wwahost.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_44.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [RtHDVBg_SRSSA] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1353432 2013-09-26] (Realtek Semiconductor)
HKLM\...\Run: [ETDCtrl] - C:\Program Files\Elantech\ETDCtrl.exe [2889072 2013-03-25] (ELAN Microelectronics Corp.)
HKLM\...\Run: [Bdagent] - C:\Program Files\Bitdefender\Bitdefender\bdagent.exe [1737920 2014-01-15] (Bitdefender)
HKLM\...\Run: [BTMTrayAgent] - C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [7818040 2013-10-09] (Motorola Solutions, Inc.)
HKLM-x32\...\Run: [EMET 4.1 Agent] - C:\Program Files (x86)\EMET 4.1\EMET_agent.exe [78992 2013-11-21] (Microsoft Corporation)
HKLM-x32\...\Run: [Agile1pAgent] - C:\Program Files (x86)\1Password 4\Agile1pAgent.exe [3314960 2014-02-13] (AgileBits)
HKLM-x32\...\Run: [] - [X]
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\.DEFAULT\...\Run: [Bitdefender-Geldbörse-Agent] - C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe [567888 2014-02-11] (Bitdefender)
HKU\.DEFAULT\...\Run: [Bitdefender-Geldbörse] - C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe [1001536 2014-02-11] (Bitdefender)
HKU\.DEFAULT\...\Run: [Bitdefender-Geldbörse-Anwendungs-Agent] - C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe [614232 2014-02-11] (Bitdefender)
HKU\S-1-5-21-2416040642-2930148554-25356005-1001\...\Run: [ownCloud] - C:\Program Files (x86)\ownCloud\owncloud.exe [16978503 2014-02-13] ()
HKU\S-1-5-21-2416040642-2930148554-25356005-1001\...\RunOnce: [Uninstall C:\Users\USER\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811] - C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\USER\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811"
Startup: C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\iSyncr.lnk
ShortcutTarget: iSyncr.lnk -> C:\Users\USER\AppData\Roaming\Microsoft\Installer\{FF4CBD74-F9CE-4F9B-A212-0E11812995B6}\_8666F4C83B965F21088367.exe ()

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://t.de.msn.com/
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x12828136302ACF01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE
BHO: 1Password - {037C06D5-3893-49E8-9AC0-41F7524AFBF5} - C:\Program Files (x86)\1Password 4\x64\Agile1pIE4.dll (AgileBits)
BHO: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: 1Password - {037C06D5-3893-49E8-9AC0-41F7524AFBF5} - C:\Program Files (x86)\1Password 4\x86\Agile1pIE4.dll (AgileBits)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF ProfilePath: C:\Users\USER\AppData\Roaming\Mozilla\Firefox\Profiles\39vickqp.default
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_44.dll ()
FF Plugin: @videolan.org/vlc,version=2.1.3 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_44.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll No File
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: Disconnect - C:\Users\USER\AppData\Roaming\Mozilla\Firefox\Profiles\39vickqp.default\Extensions\2.0@disconnect.me.xpi [2014-02-04]
FF Extension: Self-Destructing Cookies - C:\Users\USER\AppData\Roaming\Mozilla\Firefox\Profiles\39vickqp.default\Extensions\jid0-9XfBwUWnvPx4wWsfBWMCm4Jj69E@jetpack.xpi [2014-02-15]
FF Extension: 1Password - C:\Users\USER\AppData\Roaming\Mozilla\Firefox\Profiles\39vickqp.default\Extensions\onepassword4@agilebits.com.xpi [2014-02-04]
FF Extension: NoScript - C:\Users\USER\AppData\Roaming\Mozilla\Firefox\Profiles\39vickqp.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2014-02-04]
FF Extension: Adblock Plus - C:\Users\USER\AppData\Roaming\Mozilla\Firefox\Profiles\39vickqp.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-02-04]
FF HKLM-x32\...\Firefox\Extensions: [ffpwdman@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender\Antispam32\ffpwdman\
FF Extension: Bitdefender Wallet - C:\Program Files\Bitdefender\Bitdefender\Antispam32\ffpwdman\ []

==================== Services (Whitelisted) =================

R2 AAV UpdateService; C:\Program Files (x86)\Akademische Arbeitsgemeinschaft\AAVUpdateManager\aavus.exe [128296 2008-10-24] ()
R2 Easy Launcher; C:\Program Files (x86)\Samsung\Settings\CmdServer\EasyLauncher.exe [1594568 2013-01-03] (Samsung Electronics CO., LTD.)
R2 ETDService; C:\Program Files\Elantech\ETDService.exe [99184 2013-03-25] (ELAN Microelectronics Corp.)
R2 IFXSpMgtSrv; C:\Program Files (x86)\Infineon\Security Platform Software\ifxspmgt.exe [1141656 2012-08-05] (Infineon Technologies AG)
R2 IFXTCS; C:\Program Files (x86)\Infineon\Security Platform Software\ifxtcs.exe [994200 2012-08-05] (Infineon Technologies AG)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128896 2012-07-17] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-17] (Intel Corporation)
R2 OfficeSvc; C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [1907896 2013-10-31] (Microsoft Corporation)
R2 PersonalSecureDriveService; C:\Program Files (x86)\Infineon\Security Platform Software\IfxPsdSv.exe [212888 2012-08-05] (Infineon Technologies AG)
S3 ReflectService.exe; C:\Program Files\Macrium\Reflect\ReflectService.exe [1142768 2014-01-24] (Paramount Software UK Ltd)
S3 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1229528 2013-12-06] (Secunia)
S3 SWUpdateService; C:\ProgramData\Samsung\SW Update Service\SWMAgent.exe [3018800 2013-10-21] (Samsung Electronics CO., LTD.)
R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender\updatesrv.exe [67320 2013-10-07] (Bitdefender)
R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender\vsserv.exe [1507248 2014-01-23] (Bitdefender)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

S0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra)
S3 andnetadb; C:\Windows\System32\Drivers\lgandnetadb.sys [31744 2013-04-18] (Google Inc)
R0 avc3; C:\Windows\System32\DRIVERS\avc3.sys [893440 2013-12-02] (BitDefender)
R3 avchv; C:\Windows\system32\DRIVERS\avchv.sys [261056 2014-02-04] (BitDefender)
R3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [635392 2013-12-02] (BitDefender)
R3 AXMount; C:\Windows\System32\drivers\AXMount.sys [82232 2014-02-05] (Windows (R) Win 7 DDK provider)
R0 AXTrack; C:\Windows\System32\DRIVERS\AXTrack.sys [60096 2014-02-05] (Windows (R) Win 7 DDK provider)
S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows (R) Win 7 DDK provider)
S0 bdelam; C:\Windows\System32\drivers\bdelam.sys [23568 2013-09-08] (Bitdefender)
R1 bdfwfpf; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys [107008 2013-07-29] (BitDefender LLC)
S3 BDSandBox; C:\Windows\system32\drivers\bdsandbox.sys [82824 2013-11-04] (BitDefender SRL)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [224768 2013-08-22] (Microsoft Corporation)
R3 btmaux; C:\Windows\system32\DRIVERS\btmaux.sys [140600 2013-07-22] (Motorola Solutions, Inc.)
R3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [1408824 2013-10-18] (Motorola Solutions, Inc.)
R3 ETDSMBus; C:\Windows\System32\drivers\ETDSMBus.sys [21840 2013-03-25] (ELAN Microelectronic Corp.)
R0 gzflt; C:\Windows\System32\DRIVERS\gzflt.sys [150256 2013-08-23] (BitDefender LLC)
S3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation)
S3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation)
S0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation)
R0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2013-11-11] (Microsoft Corporation)
S3 kbldfltr; C:\Windows\System32\drivers\kbldfltr.sys [22272 2013-09-30] (Microsoft Corporation)
S0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation)
R3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation)
S3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation)
R3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew00.sys [3346912 2013-10-31] (Intel Corporation)
R1 PersonalSecureDrive; C:\Windows\System32\drivers\psd.sys [44576 2012-02-03] (Infineon Technologies AG)
S3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2013-12-06] (Secunia)
R3 RadioHIDMini; C:\Windows\System32\drivers\RadioHIDMini.sys [23408 2012-07-27] (Windows (R) Win 7 DDK provider)
S3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924512 2013-08-22] (Microsoft Corporation)
R3 SensorsAlsDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [230912 2013-08-22] (Microsoft Corporation)
S3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2013-10-26] (Microsoft Corporation)
S0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2013-10-05] (Microsoft Corporation)
R0 trufos; C:\Windows\System32\DRIVERS\trufos.sys [389240 2013-08-07] (BitDefender S.R.L.)
S3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation)
S1 UimBus; C:\Windows\System32\drivers\UimBus.sys [102664 2013-12-16] ()
S1 Uim_DEVIM; C:\Windows\System32\drivers\uim_devim.sys [25992 2013-12-16] ()
S1 Uim_IM; C:\Windows\System32\drivers\uim_im.sys [700680 2013-12-16] ()
R3 usb3Hub; C:\Windows\System32\drivers\usb3Hub.sys [47072 2012-10-09] (Windows (R) Win 7 DDK provider)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation)
R3 XHCIPort; C:\Windows\System32\drivers\XHCIPort.sys [188896 2012-10-09] (Windows (R) Win 7 DDK provider)

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-02-15 23:07 - 2014-02-15 23:07 - 00003584 _____ () C:\Users\USER\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-02-15 20:15 - 2014-02-15 20:15 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-02-15 20:15 - 2014-02-15 20:15 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-02-15 20:15 - 2014-02-15 20:15 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-02-15 20:15 - 2014-02-15 20:15 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-02-15 20:15 - 2014-02-15 20:15 - 00000000 ____D () C:\Program Files (x86)\Java
2014-02-15 17:15 - 2014-02-15 17:15 - 00000000 ____D () C:\Users\USER\AppData\Roaming\7882
2014-02-15 17:07 - 2014-02-15 17:08 - 00000000 ____D () C:\ProgramData\AAV
2014-02-15 17:07 - 2014-02-15 17:08 - 00000000 ____D () C:\Program Files (x86)\Akademische Arbeitsgemeinschaft
2014-02-15 17:07 - 2014-02-15 17:07 - 00000000 ____D () C:\Users\USER\AppData\Local\AAV
2014-02-15 17:02 - 2014-02-15 17:02 - 00000000 ____D () C:\Users\USER\AppData\Roaming\DVDFab9
2014-02-15 17:01 - 2014-02-15 17:02 - 00000000 ____D () C:\Program Files (x86)\DVDFab 9
2014-02-15 16:33 - 2014-02-15 22:44 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-02-15 16:33 - 2014-02-15 16:33 - 00003772 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-02-15 16:31 - 2014-02-15 16:31 - 00000000 _____ () C:\Windows\setuperr.log
2014-02-15 16:31 - 2014-02-15 16:31 - 00000000 _____ () C:\Windows\setupact.log
2014-02-15 16:13 - 2014-02-15 16:13 - 00002794 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-02-15 16:13 - 2014-02-15 16:13 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-02-15 16:12 - 2014-02-15 16:13 - 00000000 ____D () C:\Program Files\CCleaner
2014-02-15 10:38 - 2014-02-15 10:41 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Spotify
2014-02-15 10:38 - 2014-02-15 10:39 - 00000000 ____D () C:\Users\USER\AppData\Local\Spotify
2014-02-15 10:38 - 2014-02-15 10:38 - 00004621 _____ () C:\Users\USER\AppData\Local\recently-used.xbel
2014-02-15 10:38 - 2014-02-15 10:38 - 00001893 _____ () C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk
2014-02-15 10:30 - 2014-01-08 02:46 - 00325464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS
2014-02-15 10:30 - 2014-01-08 02:41 - 01530712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2014-02-15 10:30 - 2014-01-08 02:41 - 00382808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2014-02-15 10:30 - 2014-01-04 16:54 - 00138240 _____ () C:\Windows\system32\OEMLicense.dll
2014-02-15 10:30 - 2014-01-04 16:08 - 00103936 _____ () C:\Windows\SysWOW64\OEMLicense.dll
2014-02-15 10:30 - 2014-01-04 15:08 - 00206336 _____ (Microsoft Corporation) C:\Windows\system32\WSClient.dll
2014-02-15 10:30 - 2014-01-04 14:53 - 00174592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSClient.dll
2014-02-15 10:30 - 2014-01-03 00:54 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2014-02-15 10:30 - 2014-01-03 00:48 - 00336896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2014-02-15 10:30 - 2014-01-03 00:40 - 05770752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2014-02-15 10:30 - 2014-01-03 00:38 - 06640640 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-02-15 10:30 - 2014-01-01 02:55 - 01720560 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2014-02-15 10:30 - 2014-01-01 02:52 - 00481944 _____ (Microsoft Corporation) C:\Windows\system32\mfsvr.dll
2014-02-15 10:30 - 2014-01-01 01:56 - 01472048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2014-02-15 10:30 - 2014-01-01 01:55 - 00381168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfsvr.dll
2014-02-15 10:30 - 2014-01-01 00:59 - 00802816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2014-02-15 10:30 - 2014-01-01 00:57 - 01214976 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2014-02-15 10:30 - 2014-01-01 00:56 - 00960512 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2014-02-15 10:30 - 2013-12-31 00:34 - 00218112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sti.dll
2014-02-15 10:30 - 2013-12-31 00:33 - 00770560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ReAgent.dll
2014-02-15 10:30 - 2013-12-31 00:32 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\sti.dll
2014-02-15 10:30 - 2013-12-31 00:31 - 00947712 _____ (Microsoft Corporation) C:\Windows\system32\reseteng.dll
2014-02-15 10:30 - 2013-12-31 00:31 - 00914944 _____ (Microsoft Corporation) C:\Windows\system32\ReAgent.dll
2014-02-15 10:30 - 2013-12-27 16:09 - 00419160 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2014-02-15 10:30 - 2013-12-27 11:38 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2014-02-15 10:30 - 2013-12-27 09:57 - 00842752 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.dll
2014-02-15 10:30 - 2013-12-27 09:57 - 00628736 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncHost.exe
2014-02-15 10:30 - 2013-12-27 09:23 - 00749056 _____ (Microsoft Corporation) C:\Windows\system32\SettingSyncCore.dll
2014-02-15 10:30 - 2013-12-27 09:16 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
2014-02-15 10:30 - 2013-12-27 08:03 - 00630272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsSpellCheckingFacility.dll
2014-02-15 10:30 - 2013-12-27 08:03 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncHost.exe
2014-02-15 10:30 - 2013-12-27 07:37 - 00588800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SettingSyncCore.dll
2014-02-15 10:30 - 2013-12-21 08:21 - 00376320 _____ (Microsoft Corporation) C:\Windows\system32\pnrpsvc.dll
2014-02-15 10:30 - 2013-12-17 08:21 - 00408576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2014-02-15 10:30 - 2013-12-14 07:31 - 13949440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Xaml.dll
2014-02-15 10:30 - 2013-12-14 07:19 - 18576384 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Xaml.dll
2014-02-15 10:30 - 2013-12-13 11:54 - 00131160 _____ (Microsoft Corporation) C:\Windows\system32\easinvoker.exe
2014-02-15 10:30 - 2013-12-13 07:36 - 00178176 _____ (Microsoft Corporation) C:\Windows\system32\easwrt.dll
2014-02-15 10:30 - 2013-12-13 06:32 - 00140800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\easwrt.dll
2014-02-15 10:30 - 2013-12-09 09:05 - 21199256 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-02-15 10:30 - 2013-12-09 05:51 - 18643560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2014-02-15 10:30 - 2013-12-09 04:25 - 04190720 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-02-15 10:17 - 2014-02-15 10:17 - 00000000 ____D () C:\Users\USER\AppData\Local\Secunia PSI
2014-02-15 10:17 - 2014-02-15 10:17 - 00000000 ____D () C:\Program Files (x86)\Secunia
2014-02-14 10:34 - 2014-02-16 17:58 - 00000000 ____D () C:\FRST
2014-02-13 20:24 - 2014-01-04 21:50 - 01462216 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll
2014-02-13 20:24 - 2014-01-04 20:22 - 01202888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll
2014-02-13 20:24 - 2014-01-04 15:30 - 13209088 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2014-02-13 20:24 - 2014-01-04 15:23 - 11702272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2014-02-13 20:24 - 2014-01-04 14:42 - 01105408 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll
2014-02-13 20:24 - 2014-01-04 14:40 - 07416832 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Search.dll
2014-02-13 20:24 - 2014-01-04 14:36 - 00830976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll
2014-02-13 20:24 - 2014-01-04 14:28 - 04961792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Search.dll
2014-02-13 20:24 - 2013-12-21 03:10 - 00009701 _____ () C:\Windows\SysWOW64\connectedsearch-results.searchconnector-ms
2014-02-13 20:24 - 2013-12-21 03:10 - 00009701 _____ () C:\Windows\system32\connectedsearch-results.searchconnector-ms
2014-02-13 20:24 - 2013-12-09 01:19 - 00570880 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2014-02-13 20:24 - 2013-12-09 00:55 - 00444928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll
2014-02-13 20:23 - 2014-01-09 09:25 - 02804224 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2014-02-13 20:23 - 2014-01-09 08:59 - 01020928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2014-02-13 20:23 - 2014-01-09 08:59 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\winbici.dll
2014-02-13 20:23 - 2014-01-09 08:49 - 00919040 _____ (Microsoft Corporation) C:\Windows\system32\MrmCoreR.dll
2014-02-13 20:23 - 2014-01-09 08:44 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveTelemetry.dll
2014-02-13 20:23 - 2014-01-09 08:43 - 00121344 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveShell.dll
2014-02-13 20:23 - 2014-01-09 08:29 - 00105984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SkyDriveShell.dll
2014-02-13 20:23 - 2014-01-09 08:28 - 04217344 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll
2014-02-13 20:23 - 2014-01-09 08:28 - 00628736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MrmCoreR.dll
2014-02-13 20:23 - 2014-01-09 08:18 - 00870912 _____ (Microsoft Corporation) C:\Windows\system32\SkyDrive.exe
2014-02-13 20:23 - 2014-01-07 08:03 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\pcaui.exe
2014-02-13 20:23 - 2014-01-07 06:59 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pcaui.exe
2014-02-13 20:23 - 2013-12-20 11:10 - 01113040 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2014-02-13 20:23 - 2013-12-20 07:13 - 00835584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2014-02-13 11:46 - 2014-02-06 13:16 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-02-13 11:46 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-02-13 11:46 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-02-13 11:46 - 2014-02-06 12:12 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-02-13 11:46 - 2014-02-06 12:07 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-02-13 11:46 - 2014-02-06 12:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-02-13 11:46 - 2014-02-06 11:57 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-02-13 11:46 - 2014-02-06 11:56 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-02-13 11:46 - 2014-02-06 11:49 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-02-13 11:46 - 2014-02-06 11:48 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-02-13 11:46 - 2014-02-06 11:48 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-02-13 11:46 - 2014-02-06 11:38 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-02-13 11:46 - 2014-02-06 11:32 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-02-13 11:46 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-02-13 11:46 - 2014-02-06 11:17 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-02-13 11:46 - 2014-02-06 11:11 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-02-13 11:46 - 2014-02-06 11:01 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-02-13 11:46 - 2014-02-06 11:00 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-02-13 11:46 - 2014-02-06 10:57 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-02-13 11:46 - 2014-02-06 10:57 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-02-13 11:46 - 2014-02-06 10:52 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-02-13 11:46 - 2014-02-06 10:52 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-02-13 11:46 - 2014-02-06 10:50 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-02-13 11:46 - 2014-02-06 10:47 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-02-13 11:46 - 2014-02-06 10:46 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-02-13 11:46 - 2014-02-06 10:25 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-02-13 11:46 - 2014-02-06 10:25 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-02-13 11:46 - 2014-02-06 10:24 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-02-13 11:46 - 2014-02-06 10:22 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-02-13 11:46 - 2014-02-06 10:13 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-02-13 11:46 - 2014-02-06 10:09 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-02-13 11:46 - 2014-02-06 10:03 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-02-13 11:46 - 2014-02-06 09:55 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-02-13 11:46 - 2014-02-06 09:41 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-02-13 11:46 - 2014-02-06 09:40 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-02-13 11:46 - 2014-02-06 09:36 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-02-13 11:46 - 2014-02-06 09:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-02-13 11:46 - 2014-01-07 06:00 - 02397184 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-02-13 11:46 - 2014-01-07 05:30 - 02071552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2014-02-13 11:46 - 2013-12-09 01:27 - 02152448 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-02-13 11:46 - 2013-12-09 00:54 - 01317376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-02-13 11:46 - 2013-11-21 07:42 - 04604416 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2014-02-13 11:46 - 2013-11-21 06:44 - 03936256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2014-02-13 11:45 - 2013-12-09 03:57 - 00548864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-02-13 11:45 - 2013-12-09 02:51 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-02-13 10:41 - 2014-02-15 16:03 - 00000000 ____D () C:\Users\USER\AppData\Local\Google
2014-02-13 10:41 - 2014-02-15 16:03 - 00000000 ____D () C:\Program Files (x86)\Google
2014-02-13 10:38 - 2014-02-13 10:38 - 00000000 ____D () C:\Program Files (x86)\LG Electronics
2014-02-13 10:38 - 2013-04-18 16:12 - 00031744 _____ (Google Inc) C:\Windows\system32\Drivers\lgandnetadb.sys
2014-02-13 10:38 - 2011-07-18 06:03 - 01919968 _____ (Microsoft Corporation) C:\Windows\system32\wdfcoinstaller01005.dll
2014-02-13 10:34 - 2014-02-13 10:34 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2014-02-12 23:47 - 2014-02-13 10:37 - 00000000 ____D () C:\Users\USER\AppData\Roaming\HpUpdate
2014-02-12 23:47 - 2014-02-12 23:48 - 00000000 ____D () C:\Users\USER\AppData\Local\HP
2014-02-12 23:47 - 2014-02-12 23:47 - 00000057 _____ () C:\ProgramData\Ament.ini
2014-02-12 23:47 - 2014-02-12 23:47 - 00000000 ____D () C:\ProgramData\HP
2014-02-12 23:47 - 2014-02-12 23:47 - 00000000 ____D () C:\Program Files\HP
2014-02-12 23:47 - 2014-02-12 23:47 - 00000000 ____D () C:\Program Files (x86)\HP
2014-02-12 23:47 - 2012-11-01 13:38 - 00741480 ____N (Hewlett-Packard Co.) C:\Windows\system32\HPDiscoPM5B12.dll
2014-02-12 21:46 - 2014-02-12 21:46 - 00000000 ___HD () C:\Windows\system32\CanonIJ Uninstaller Information
2014-02-12 21:46 - 2014-02-12 21:46 - 00000000 ___HD () C:\ProgramData\CanonBJ
2014-02-12 21:46 - 2010-04-24 05:00 - 00336896 _____ (CANON INC.) C:\Windows\system32\CNMLMA1.DLL
2014-02-08 15:42 - 2014-02-08 15:42 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-02-08 15:42 - 2014-02-08 15:42 - 00000000 ____D () C:\Program Files\iTunes
2014-02-08 15:42 - 2014-02-08 15:42 - 00000000 ____D () C:\Program Files\iPod
2014-02-08 15:42 - 2014-02-08 15:42 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-02-07 06:27 - 2014-02-07 06:27 - 00000990 __RSH () C:\ProgramData\ntuser.pol
2014-02-06 16:30 - 2014-02-06 16:30 - 00003288 _____ () C:\Windows\System32\Tasks\Bvckup 2
2014-02-06 15:58 - 2014-02-15 17:10 - 00000000 ____D () C:\Users\USER\AppData\Local\Bvckup2
2014-02-06 15:58 - 2014-02-06 15:58 - 00000000 ____D () C:\Program Files\Bvckup 2
2014-02-06 15:52 - 2014-02-06 15:54 - 00000000 ____D () C:\Users\USER\AppData\Roaming\KeePass
2014-02-06 15:52 - 2014-02-06 15:52 - 00000000 ____D () C:\Users\USER\AppData\Local\KeePass
2014-02-06 15:24 - 2014-02-06 15:24 - 00000000 ____D () C:\Program Files\Macrium
2014-02-06 15:19 - 2014-02-06 15:54 - 00000000 ____D () C:\Program Files (x86)\KeePass Password Safe 2
2014-02-06 15:15 - 2014-02-06 15:24 - 00000000 ____D () C:\ProgramData\Macrium
2014-02-06 15:10 - 2014-02-06 15:10 - 00001997 _____ () C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Banking 4W.lnk
2014-02-06 15:10 - 2014-02-06 15:10 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Subsembly
2014-02-06 15:10 - 2014-02-06 15:10 - 00000000 ____D () C:\Users\USER\AppData\Local\Subsembly
2014-02-06 15:10 - 2014-02-06 15:10 - 00000000 ____D () C:\Program Files (x86)\TopBanking
2014-02-06 06:28 - 2014-02-06 06:28 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Acronis
2014-02-06 06:21 - 2014-02-06 06:21 - 00000000 ____D () C:\ProgramData\managecapsule
2014-02-05 23:49 - 2014-02-05 23:49 - 00000000 ____D () C:\Users\USER\.gnome2
2014-02-05 23:48 - 2014-02-05 23:48 - 00000000 ____D () C:\Users\USER\AppData\Local\Apps\2.0
2014-02-05 23:47 - 2014-02-05 23:47 - 00002973 _____ () C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Evince.lnk
2014-02-05 23:47 - 2014-02-05 23:47 - 00000000 ____D () C:\Users\USER\AppData\Local\Apps\Evince-2.32.0.145
2014-02-05 23:47 - 2014-02-05 23:47 - 00000000 ____D () C:\Program Files (x86)\Foxit Software
2014-02-05 18:46 - 2014-02-05 18:46 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Foxit Software
2014-02-05 18:21 - 2014-02-05 18:21 - 00000000 ____D () C:\Users\USER\AppData\Roaming\JRT Studio
2014-02-05 17:54 - 2014-02-05 17:54 - 00000000 ____D () C:\Users\USER\SystemRequirementsLab
2014-02-05 17:54 - 2014-02-05 17:54 - 00000000 ____D () C:\Program Files (x86)\SystemRequirementsLab
2014-02-05 17:50 - 2014-02-15 20:16 - 00000000 ____D () C:\ProgramData\Oracle
2014-02-05 17:49 - 2014-02-05 17:49 - 00000000 ____D () C:\ProgramData\Sun
2014-02-05 17:22 - 2014-02-05 17:23 - 00000000 ____D () C:\Users\USER\AppData\Local\ownCloud
2014-02-05 17:05 - 2014-02-05 17:05 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JRT Studio
2014-02-05 17:05 - 2014-02-05 17:05 - 00000000 ____D () C:\Program Files (x86)\JRT Studio
2014-02-05 16:03 - 2014-02-16 17:56 - 00000600 _____ () C:\Users\USER\AppData\Local\PUTTY.RND
2014-02-05 14:53 - 2014-02-05 14:53 - 00000000 ____D () C:\Users\USER\AppData\Roaming\MORITZ-NB
2014-02-05 14:52 - 2014-02-05 14:52 - 00000000 ____D () C:\Users\USER\AppData\Local\Duplicati
2014-02-05 14:48 - 2014-02-15 21:04 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Duplicati
2014-02-05 14:47 - 2014-02-05 14:47 - 00082232 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\AXMount.sys
2014-02-05 14:47 - 2014-02-05 14:47 - 00060096 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\AXTrack.sys
2014-02-05 14:47 - 2014-02-05 14:47 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AX64 Time Machine
2014-02-05 14:47 - 2014-02-05 14:47 - 00000000 ____D () C:\Program Files\AXTM
2014-02-05 06:28 - 2014-02-05 06:28 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2014-02-05 06:28 - 2014-02-05 06:28 - 00000000 ____D () C:\Program Files (x86)\Origin Games
2014-02-05 06:25 - 2014-02-05 06:26 - 00000000 ____D () C:\Program Files (x86)\ClipGrab
2014-02-05 06:19 - 2014-02-05 06:19 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Macromedia
2014-02-05 06:19 - 2014-02-05 06:19 - 00000000 ____D () C:\Users\USER\AppData\Local\Macromedia
2014-02-05 06:18 - 2014-02-05 06:18 - 00000000 ____D () C:\Program Files (x86)\EMET 4.1
2014-02-05 06:17 - 2014-02-15 16:33 - 00000000 ____D () C:\Users\USER\AppData\Local\Adobe
2014-02-04 23:12 - 2014-02-04 23:12 - 00000000 ____D () C:\Program Files\Duplicati
2014-02-04 23:11 - 2014-02-04 23:11 - 00000000 ____D () C:\Windows\SysWOW64\XPSViewer
2014-02-04 23:11 - 2014-02-04 23:11 - 00000000 ____D () C:\Program Files\Reference Assemblies
2014-02-04 23:11 - 2014-02-04 23:11 - 00000000 ____D () C:\Program Files\MSBuild
2014-02-04 23:11 - 2014-02-04 23:11 - 00000000 ____D () C:\Program Files (x86)\Reference Assemblies
2014-02-04 23:11 - 2014-02-04 23:11 - 00000000 ____D () C:\Program Files (x86)\MSBuild
2014-02-04 23:09 - 2014-02-06 06:26 - 00000000 ____D () C:\Windows\system32\appmgmt
2014-02-04 23:09 - 2013-08-03 05:48 - 01166520 _____ (Microsoft Corporation) C:\Windows\system32\PresentationNative_v0300.dll
2014-02-04 23:09 - 2013-08-03 05:48 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2014-02-04 23:09 - 2013-08-03 05:48 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2014-02-04 23:09 - 2013-08-03 05:41 - 00778936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationNative_v0300.dll
2014-02-04 23:09 - 2013-08-03 05:41 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-02-04 23:09 - 2013-08-03 05:41 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2014-02-04 23:08 - 2014-02-08 15:43 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Apple Computer
2014-02-04 23:08 - 2014-02-04 23:08 - 00000000 ____D () C:\Windows\System32\Tasks\Apple
2014-02-04 23:08 - 2014-02-04 23:08 - 00000000 ____D () C:\Users\USER\AppData\Local\Apple Computer
2014-02-04 23:08 - 2014-02-04 23:08 - 00000000 ____D () C:\Users\USER\AppData\Local\Apple
2014-02-04 23:08 - 2014-02-04 23:08 - 00000000 ____D () C:\ProgramData\Apple Computer
2014-02-04 23:08 - 2014-02-04 23:08 - 00000000 ____D () C:\Program Files (x86)\Apple Software Update
2014-02-04 23:08 - 2012-08-21 13:01 - 00033240 _____ (GEAR Software Inc.) C:\Windows\system32\Drivers\GEARAspiWDM.sys
2014-02-04 23:07 - 2014-02-04 23:07 - 00000000 ____D () C:\ProgramData\Apple
2014-02-04 23:03 - 2014-02-04 23:03 - 00000000 ____D () C:\Program Files (x86)\ownCloud
2014-02-04 23:00 - 2014-02-05 06:28 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Origin
2014-02-04 23:00 - 2014-02-05 06:28 - 00000000 ____D () C:\Users\USER\AppData\Local\Origin
2014-02-04 22:59 - 2014-02-15 16:18 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-02-04 22:59 - 2014-02-05 06:28 - 00000000 ____D () C:\ProgramData\Origin
2014-02-04 22:59 - 2014-02-05 06:28 - 00000000 ____D () C:\Program Files (x86)\Origin
2014-02-04 22:59 - 2014-02-04 22:59 - 00000000 ____D () C:\ProgramData\Electronic Arts
2014-02-04 22:58 - 2014-02-04 22:58 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IrfanView
2014-02-04 22:58 - 2014-02-04 22:58 - 00000000 ____D () C:\Users\USER\AppData\Roaming\IrfanView
2014-02-04 22:58 - 2014-02-04 22:58 - 00000000 ____D () C:\Program Files (x86)\IrfanView
2014-02-04 22:56 - 2014-02-04 22:56 - 00000000 ____D () C:\Program Files (x86)\WinSCP
2014-02-04 22:55 - 2014-02-04 22:55 - 00000000 ____D () C:\Program Files (x86)\PuTTY
2014-02-04 22:53 - 2014-02-04 22:53 - 00000385 _____ () C:\Users\USER\AppData\Roaminguser_gensett.xml
2014-02-04 22:50 - 2014-02-04 22:50 - 00000000 ____D () C:\Users\USER\AppData\Roaming\vlc
2014-02-04 22:49 - 2014-02-04 22:49 - 00000000 ____D () C:\Program Files\VideoLAN
2014-02-04 22:49 - 2014-02-04 22:49 - 00000000 ____D () C:\Program Files\7-Zip
2014-02-04 22:48 - 2014-02-04 22:48 - 00000000 ___RD () C:\Users\USER\SkyDrive
2014-02-04 22:48 - 2014-02-04 22:48 - 00000000 ____D () C:\ProgramData\Microsoft SkyDrive
2014-02-04 22:43 - 2014-02-04 22:43 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Agile Web Solutions
2014-02-04 22:43 - 2014-02-04 22:43 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2014-02-04 22:40 - 2014-02-04 22:40 - 00000000 ____D () C:\Program Files\Microsoft Office 15
2014-02-04 22:34 - 2014-02-15 15:55 - 00000000 ____D () C:\Program Files (x86)\1Password 4
2014-02-04 22:34 - 2013-08-15 15:50 - 01769984 _____ (Chilkat Software, Inc.) C:\Windows\SysWOW64\ChilkatCert.dll
2014-02-04 22:34 - 2013-08-15 15:49 - 02403328 _____ (Chilkat Software, Inc.) C:\Windows\SysWOW64\ChilkatSocket.dll
2014-02-04 22:34 - 2013-02-09 10:54 - 01593096 _____ (Chilkat Software, Inc.) C:\Windows\SysWOW64\ChilkatCrypt2.dll
2014-02-04 22:34 - 2011-03-03 06:03 - 02371584 _____ (Chilkat Software, Inc.) C:\Windows\SysWOW64\ChilkatZip2.dll
2014-02-04 22:20 - 2014-02-15 17:44 - 00000000 ____D () C:\Users\USER\AppData\Roaming\eM Client
2014-02-04 22:20 - 2014-02-04 22:20 - 00000000 ____D () C:\Program Files (x86)\eM Client
2014-02-04 22:16 - 2014-02-04 22:16 - 00079192 _____ (BitDefender) C:\Windows\system32\Drivers\bdvedisk.sys
2014-02-04 22:08 - 2014-02-14 23:44 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-02-04 22:08 - 2014-02-14 10:41 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-02-04 22:08 - 2014-02-04 22:08 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Mozilla
2014-02-04 22:08 - 2014-02-04 22:08 - 00000000 ____D () C:\Users\USER\AppData\Local\Mozilla
2014-02-04 22:08 - 2014-02-04 22:08 - 00000000 ____D () C:\ProgramData\Mozilla
2014-02-04 22:01 - 2014-02-04 22:01 - 00000000 _____ () C:\Users\USER\agent.log
2014-02-04 21:58 - 2014-02-04 21:58 - 00000000 ____D () C:\ProgramData\ftw
2014-02-04 21:57 - 2014-02-04 21:57 - 00000000 ____D () C:\ProgramData\newrestore
2014-02-04 21:57 - 2014-02-04 21:57 - 00000000 ____D () C:\ProgramData\launcher
2014-02-04 21:57 - 2014-02-04 21:57 - 00000000 ____D () C:\ProgramData\explauncher
2014-02-04 21:57 - 2014-02-04 21:57 - 00000000 ____D () C:\Program Files\Paragon Software
2014-02-04 21:40 - 2014-02-04 21:40 - 00500244 _____ () C:\ProgramData\1391546189.bdinstall.bin
2014-02-04 21:39 - 2014-02-16 10:46 - 00003576 _____ () C:\Windows\System32\Tasks\Bitdefender Auto-Scan
2014-02-04 21:39 - 2014-02-04 22:16 - 00261056 _____ (BitDefender) C:\Windows\system32\Drivers\avchv.sys
2014-02-04 21:39 - 2014-02-04 22:16 - 00074512 _____ (BitDefender SRL) C:\Windows\SysWOW64\bdsandboxuiskin32.dll
2014-02-04 21:39 - 2014-02-04 21:39 - 00000385 _____ () C:\Windows\system32\user_gensett.xml
2014-02-04 21:39 - 2014-02-04 21:39 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_avchv_01009.Wdf
2014-02-04 21:39 - 2014-02-04 21:39 - 00000000 ____D () C:\ProgramData\BDLogging
2014-02-04 21:39 - 2013-12-02 11:58 - 00635392 _____ (BitDefender) C:\Windows\system32\Drivers\avckf.sys
2014-02-04 21:39 - 2013-12-02 11:56 - 00893440 _____ (BitDefender) C:\Windows\system32\Drivers\avc3.sys
2014-02-04 21:39 - 2013-11-04 15:47 - 00082824 _____ (BitDefender SRL) C:\Windows\system32\Drivers\bdsandbox.sys
2014-02-04 21:39 - 2013-09-08 19:04 - 00023568 _____ (Bitdefender) C:\Windows\system32\Drivers\bdelam.sys
2014-02-04 21:39 - 2007-04-11 10:11 - 00511328 _____ (Microsoft Corporation) C:\Windows\capicom.dll
2014-02-04 21:38 - 2014-02-04 21:38 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Bitdefender
2014-02-04 21:36 - 2014-02-04 22:16 - 00074512 _____ (BitDefender SRL) C:\Windows\system32\bdsandboxuiskin32.dll
2014-02-04 21:36 - 2014-02-04 21:39 - 00000000 ____D () C:\ProgramData\Bitdefender
2014-02-04 21:36 - 2014-02-04 21:36 - 00000000 ____D () C:\Users\USER\AppData\Roaming\QuickScan
2014-02-04 21:36 - 2014-02-04 21:36 - 00000000 ____D () C:\Program Files\Common Files\Bitdefender
2014-02-04 21:36 - 2014-02-04 21:36 - 00000000 ____D () C:\Program Files\Bitdefender
2014-02-04 21:36 - 2013-11-04 15:47 - 00084848 _____ (BitDefender SRL) C:\Windows\system32\BDSandBoxUISkin.dll
2014-02-04 21:36 - 2013-11-04 15:46 - 00034384 _____ (BitDefender SRL) C:\Windows\system32\BDSandBoxUH.dll
2014-02-04 21:36 - 2013-08-23 12:48 - 00150256 _____ (BitDefender LLC) C:\Windows\system32\Drivers\gzflt.sys
2014-02-04 21:36 - 2013-08-07 12:46 - 00389240 _____ (BitDefender S.R.L.) C:\Windows\system32\Drivers\trufos.sys
2014-02-04 21:32 - 2014-02-04 21:32 - 00000000 ____D () C:\Program Files\Intel Corporation
2014-02-04 21:31 - 2014-02-14 12:00 - 00000368 _____ () C:\Windows\Tasks\Security Platform Backup Schedule.job
2014-02-04 21:31 - 2014-02-04 21:31 - 00002944 _____ () C:\Windows\System32\Tasks\Security Platform Backup Schedule
2014-02-04 21:29 - 2014-02-04 21:29 - 00000000 ____D () C:\Program Files\Elantech
2014-02-04 21:28 - 2013-03-25 18:58 - 00021840 _____ (ELAN Microelectronic Corp.) C:\Windows\system32\Drivers\ETDSMBus.sys
2014-02-04 21:26 - 2014-02-04 21:26 - 00000000 ____H () C:\ProgramData\DP45977C.lfl
2014-02-04 21:26 - 2013-10-02 21:37 - 03678680 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2014-02-04 21:26 - 2013-10-02 17:28 - 02586840 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll
2014-02-04 21:26 - 2013-10-02 17:10 - 00617176 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2014-02-04 21:26 - 2013-10-02 14:07 - 00653829 _____ () C:\Windows\system32\Drivers\RTAIODAT.DAT
2014-02-04 21:26 - 2013-10-02 14:04 - 33917440 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat
2014-02-04 21:26 - 2013-10-01 18:17 - 00150744 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2014-02-04 21:26 - 2013-09-28 00:50 - 00209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2014-02-04 21:26 - 2013-09-26 16:11 - 01021656 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2014-02-04 21:26 - 2013-09-10 04:02 - 06217904 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll
2014-02-04 21:26 - 2013-09-10 04:02 - 00313520 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll
2014-02-04 21:26 - 2013-09-10 04:01 - 01938608 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll
2014-02-04 21:26 - 2013-09-10 04:01 - 00260272 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll
2014-02-04 21:26 - 2013-09-09 15:32 - 05681192 _____ () C:\Windows\system32\Drivers\rtvienna.dat
2014-02-04 21:26 - 2013-08-20 20:17 - 02809048 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2014-02-04 21:26 - 2013-08-14 16:36 - 00662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll
2014-02-04 21:26 - 2013-08-14 16:35 - 00663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll
2014-02-04 21:26 - 2013-08-07 17:41 - 00113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2014-02-04 21:26 - 2013-08-06 09:47 - 00947248 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll
2014-02-04 21:26 - 2013-08-05 18:11 - 02743328 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll
2014-02-04 21:26 - 2013-07-24 10:07 - 02032896 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll
2014-02-04 21:26 - 2013-07-23 15:40 - 02103040 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll
2014-02-04 21:26 - 2013-07-23 15:39 - 14048512 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll
2014-02-04 21:26 - 2013-07-23 15:39 - 00922880 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll
2014-02-04 21:26 - 2013-04-24 17:16 - 01662024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2014-02-04 21:26 - 2013-02-20 18:55 - 01284680 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2014-02-04 21:24 - 2014-02-04 21:24 - 00003434 _____ () C:\Windows\System32\Tasks\Settings
2014-02-04 21:24 - 2013-02-21 16:59 - 02063240 _____ (Samsung Electronics) C:\ProgramData\MakeMarkerFile.exe
2014-02-04 21:24 - 2013-01-12 23:51 - 00003004 _____ () C:\ProgramData\MakeMarkerFile.xml
2014-02-04 21:24 - 2012-08-29 08:14 - 02212208 _____ (ELAN Microelectronics Corp.) C:\Windows\ETDUninst.dll
2014-02-04 21:23 - 2014-02-04 21:23 - 00001214 _____ () C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\S Agent.lnk
2014-02-04 21:19 - 2014-02-04 21:19 - 00000000 ____D () C:\Users\USER\AppData\Local\Samsung
2014-02-04 21:15 - 2014-02-04 21:15 - 00003038 _____ () C:\Windows\System32\Tasks\SAgent
2014-02-04 21:15 - 2014-02-04 21:15 - 00000000 ____D () C:\Program Files\Samsung
2014-02-04 21:15 - 2014-02-04 21:15 - 00000000 ____D () C:\Program Files (x86)\Samsung
2014-02-04 21:15 - 2012-10-19 16:34 - 00024968 _____ (Samsung Electronics Co. Ltd.) C:\Windows\SysWOW64\wsabi.dll
2014-02-04 21:15 - 2012-10-19 16:34 - 00008072 _____ (Windows (R) Win 7 DDK provider) C:\Windows\SysWOW64\wmof64.dll
2014-02-04 21:14 - 2014-02-04 21:14 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Infineon
2014-02-04 21:14 - 2014-02-04 21:14 - 00000000 ____D () C:\ProgramData\Infineon
2014-02-04 21:14 - 2014-02-04 21:14 - 00000000 ____D () C:\Program Files (x86)\Infineon
2014-02-04 21:11 - 2014-02-04 21:11 - 00000000 ____D () C:\ProgramData\ColorMode
2014-02-04 21:11 - 2014-02-04 21:11 - 00000000 ____D () C:\Program Files\DIFX
2014-02-04 21:09 - 2014-02-04 21:09 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_iBtFltCoex_01009.Wdf
2014-02-04 21:09 - 2014-02-04 21:09 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_btmaux_01009.Wdf
2014-02-04 21:08 - 2014-02-04 21:56 - 00000000 ____D () C:\Users\USER\AppData\Local\Downloaded Installations
2014-02-04 21:08 - 2014-02-04 21:26 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM
2014-02-04 21:08 - 2014-02-04 21:08 - 00000000 ____D () C:\Windows\system32\SRSLabs
2014-02-04 21:08 - 2014-02-04 21:08 - 00000000 ____D () C:\ProgramData\SRS Labs
2014-02-04 21:08 - 2014-02-04 21:08 - 00000000 ____D () C:\Program Files\Realtek
2014-02-04 21:07 - 2014-02-04 21:26 - 00002738 _____ () C:\RHDSetup.log
2014-02-04 21:07 - 2014-02-04 21:26 - 00000206 _____ () C:\setup.log
2014-02-04 21:07 - 2013-09-13 18:44 - 02080472 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll
2014-02-04 21:07 - 2012-08-31 19:18 - 07164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll
2014-02-04 21:07 - 2012-08-31 19:17 - 00434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll
2014-02-04 21:07 - 2012-08-31 19:17 - 00141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll
2014-02-04 21:07 - 2012-08-31 19:17 - 00124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll
2014-02-04 21:07 - 2012-08-31 19:17 - 00075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll
2014-02-04 21:07 - 2012-03-08 11:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2014-02-04 21:07 - 2011-12-20 15:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2014-02-04 21:07 - 2011-11-22 16:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2014-02-04 21:07 - 2011-09-02 14:21 - 00221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll
2014-02-04 21:07 - 2011-09-02 14:21 - 00081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll
2014-02-04 21:07 - 2011-09-02 14:21 - 00078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll
2014-02-04 21:07 - 2011-08-23 17:00 - 00603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll
2014-02-04 21:07 - 2011-05-31 09:42 - 01756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll
2014-02-04 21:07 - 2011-05-31 09:42 - 01568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll
2014-02-04 21:07 - 2011-05-31 09:42 - 01486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll
2014-02-04 21:07 - 2011-05-31 09:42 - 00728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll
2014-02-04 21:07 - 2011-05-31 09:42 - 00712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll
2014-02-04 21:07 - 2011-05-31 09:42 - 00693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll
2014-02-04 21:07 - 2011-05-31 09:42 - 00491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll
2014-02-04 21:07 - 2011-05-31 09:42 - 00432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll
2014-02-04 21:07 - 2011-05-31 09:42 - 00428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll
2014-02-04 21:07 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll
2014-02-04 21:07 - 2011-05-31 09:42 - 00242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll
2014-02-04 21:07 - 2011-05-31 09:42 - 00241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll
2014-02-04 21:07 - 2010-11-08 07:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2014-02-04 21:07 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2014-02-04 21:07 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2014-02-04 21:07 - 2010-11-08 07:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2014-02-04 21:07 - 2010-11-08 07:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2014-02-04 21:07 - 2010-11-08 07:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2014-02-04 21:07 - 2010-11-03 18:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2014-02-04 21:07 - 2010-09-27 09:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll
2014-02-04 21:07 - 2010-07-22 16:48 - 00074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll
2014-02-04 21:07 - 2009-11-24 09:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2014-02-04 21:07 - 2009-11-24 09:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll
2014-02-04 21:07 - 2009-11-24 09:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll
2014-02-04 21:07 - 2009-11-24 09:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2014-02-04 21:06 - 2014-02-04 21:07 - 00000000 ____D () C:\Program Files (x86)\Realtek
2014-02-04 21:06 - 2012-06-12 21:41 - 00683664 _____ (Realtek ) C:\Windows\system32\Drivers\Rt630x64.sys
2014-02-04 21:06 - 2012-06-12 21:41 - 00074344 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll
2014-02-04 21:05 - 2014-02-13 10:38 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-02-04 21:05 - 2014-02-04 21:05 - 00000000 ____D () C:\Users\USER\AppData\Roaming\InstallShield
2014-02-04 21:05 - 2012-09-01 18:01 - 00647736 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorA.sys
2014-02-04 21:03 - 2014-02-04 21:03 - 00003932 _____ () C:\Windows\System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d
2014-02-04 21:03 - 2014-02-04 21:03 - 00003684 _____ () C:\Windows\System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon
2014-02-04 21:03 - 2014-02-04 21:03 - 00000000 _____ () C:\Windows\SysWOW64\agent.log
2014-02-04 21:03 - 2012-06-21 17:13 - 00015168 _____ (Intel Corporation) C:\Windows\system32\Drivers\IntelMEFWVer.dll
2014-02-04 21:02 - 2014-02-04 21:32 - 00000000 ____D () C:\ProgramData\Intel
2014-02-04 21:01 - 2012-07-04 10:55 - 00053248 _____ (Windows XP Bundled build C-Centric Single User) C:\Windows\SysWOW64\CSVer.dll
2014-02-04 20:59 - 2014-02-04 21:18 - 00000000 ____D () C:\ProgramData\Samsung
2014-02-04 20:41 - 2012-07-27 21:00 - 00023408 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\RadioHIDMini.sys
2014-02-04 20:16 - 2014-02-04 20:16 - 00003574 _____ () C:\Windows\System32\Tasks\CreateChoiceProcessTask
2014-02-04 20:16 - 2014-02-04 20:16 - 00000000 ___RD () C:\Windows\BrowserChoice
2014-02-04 20:07 - 2014-02-15 10:31 - 00000000 ____D () C:\Windows\system32\MRT
2014-02-04 20:07 - 2014-02-15 10:30 - 88567024 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-02-04 20:07 - 2013-12-09 01:34 - 01227264 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll
2014-02-04 20:07 - 2013-12-09 01:04 - 00980480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mispace.dll
2014-02-04 20:07 - 2013-11-27 16:34 - 03210528 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2014-02-04 20:07 - 2013-11-27 16:27 - 00809872 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll
2014-02-04 20:07 - 2013-11-27 15:00 - 00663680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll
2014-02-04 20:07 - 2013-11-27 14:47 - 02804528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2014-02-04 20:07 - 2013-11-27 13:02 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ipnat.sys
2014-02-04 20:07 - 2013-11-27 11:24 - 00306688 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2014-02-04 20:07 - 2013-11-27 10:46 - 00273920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll
2014-02-04 20:07 - 2013-11-27 10:41 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\psmsrv.dll
2014-02-04 20:07 - 2013-11-27 10:17 - 00263168 _____ (Microsoft Corporation) C:\Windows\system32\bisrv.dll
2014-02-04 20:07 - 2013-11-27 10:10 - 00273408 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.dll
2014-02-04 20:07 - 2013-11-27 09:58 - 01503232 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
2014-02-04 20:07 - 2013-11-27 09:56 - 00218112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.dll
2014-02-04 20:07 - 2013-11-27 05:01 - 00385614 _____ () C:\Windows\system32\ApnDatabase.xml
2014-02-04 20:07 - 2013-11-26 14:22 - 01928144 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll
2014-02-04 20:07 - 2013-11-26 14:20 - 02131120 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2014-02-04 20:07 - 2013-11-26 14:20 - 01399176 _____ (Microsoft Corporation) C:\Windows\system32\winmde.dll
2014-02-04 20:07 - 2013-11-26 14:20 - 01374384 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll
2014-02-04 20:07 - 2013-11-26 12:50 - 01371312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll
2014-02-04 20:07 - 2013-11-26 12:44 - 02142936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2014-02-04 20:07 - 2013-11-26 12:44 - 01204968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmde.dll
2014-02-04 20:07 - 2013-11-25 02:45 - 00142680 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
2014-02-04 20:07 - 2013-11-25 02:32 - 01119064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2014-02-04 20:07 - 2013-11-25 00:30 - 00513536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2014-02-04 20:07 - 2013-11-25 00:28 - 00589824 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2014-02-04 20:07 - 2013-11-23 13:47 - 00032088 _____ (Microsoft Corporation) C:\Windows\system32\ploptin.dll
2014-02-04 20:07 - 2013-11-23 08:13 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\bi.dll
2014-02-04 20:07 - 2013-11-23 08:13 - 00019456 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\BtaMPM.sys
2014-02-04 20:07 - 2013-11-23 08:08 - 00403456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2014-02-04 20:07 - 2013-11-23 05:50 - 00282112 _____ (Microsoft Corporation) C:\Windows\system32\SystemEventsBrokerServer.dll
2014-02-04 20:07 - 2013-11-23 04:19 - 02617344 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2014-02-04 20:07 - 2013-11-23 04:15 - 02295808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2014-02-04 20:07 - 2013-11-21 07:58 - 00207872 _____ (Microsoft Corporation) C:\Windows\system32\deviceregistration.dll
2014-02-04 20:07 - 2013-11-21 07:26 - 01415680 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-02-04 20:07 - 2013-11-16 06:11 - 00764856 _____ (Microsoft Corporation) C:\Windows\system32\mfmpeg2srcsnk.dll
2014-02-04 20:07 - 2013-11-15 19:19 - 00669344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmpeg2srcsnk.dll
2014-02-04 20:07 - 2013-11-15 15:59 - 00470016 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll
2014-02-04 20:07 - 2013-11-15 15:25 - 00433664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfds.dll
2014-02-04 20:07 - 2013-11-15 15:08 - 00202240 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2014-02-04 20:07 - 2013-11-15 14:24 - 00834048 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2014-02-04 20:07 - 2013-11-05 21:12 - 02551128 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2014-02-04 20:07 - 2013-10-31 01:29 - 00745336 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2014-02-04 20:07 - 2013-10-31 00:41 - 00552624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2014-02-04 20:06 - 2013-11-11 03:48 - 00039768 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys
2014-02-04 20:06 - 2013-11-08 04:41 - 01302528 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2014-02-04 20:06 - 2013-11-04 12:50 - 02143744 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2014-02-04 20:06 - 2013-11-04 11:32 - 02570240 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers.dll
2014-02-04 20:06 - 2013-11-04 02:30 - 01765376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2014-02-04 20:06 - 2013-10-31 01:58 - 00372568 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys
2014-02-04 20:06 - 2013-10-31 01:42 - 07399256 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-02-04 20:06 - 2013-10-23 12:29 - 00044936 _____ (Microsoft Corporation) C:\Windows\system32\wldp.dll
2014-02-04 20:06 - 2013-10-23 12:21 - 00155480 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2014-02-04 20:06 - 2013-10-23 12:13 - 00171864 _____ (Microsoft Corporation) C:\Windows\system32\kd_02_8086.dll
2014-02-04 20:06 - 2013-10-22 09:18 - 01287064 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2014-02-04 20:06 - 2013-10-22 09:18 - 00096088 _____ (Microsoft Corporation) C:\Windows\system32\embeddedapplauncher.exe
2014-02-04 20:06 - 2013-10-22 08:55 - 02328872 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2014-02-04 20:06 - 2013-10-22 07:03 - 02065448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2014-02-04 20:06 - 2013-10-22 06:15 - 00558080 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll
2014-02-04 20:06 - 2013-10-22 05:04 - 00618496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apphelp.dll
2014-02-04 20:06 - 2013-10-22 05:02 - 01036288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2014-02-04 20:06 - 2013-10-22 04:56 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\WorkFoldersShell.dll
2014-02-04 20:06 - 2013-10-22 04:44 - 00761856 _____ (Microsoft Corporation) C:\Windows\system32\WorkfoldersControl.dll
2014-02-04 20:06 - 2013-10-22 03:38 - 01362944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2014-02-04 20:06 - 2013-10-22 03:22 - 00381952 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll
2014-02-04 20:06 - 2013-10-22 03:13 - 01704448 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2014-02-04 20:06 - 2013-10-22 02:53 - 01584128 _____ (Microsoft Corporation) C:\Windows\system32\workfolderssvc.dll
2014-02-04 20:06 - 2013-10-19 05:48 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll
2014-02-04 20:06 - 2013-10-19 05:03 - 00531968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll
2014-02-04 20:06 - 2013-10-19 04:26 - 01231360 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.dll
2014-02-04 20:06 - 2013-10-19 04:14 - 00888832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.dll
2014-02-04 20:06 - 2013-10-16 10:34 - 00518656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe
2014-02-04 20:06 - 2013-10-16 10:33 - 00631296 _____ (Microsoft Corporation) C:\Windows\system32\WWAHost.exe
2014-02-04 20:06 - 2013-10-13 04:06 - 00258904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdyboost.sys
2014-02-04 20:06 - 2013-10-13 03:43 - 00708616 _____ (Microsoft Corporation) C:\Windows\system32\iuilp.dll
2014-02-04 20:06 - 2013-10-10 17:26 - 00317616 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2014-02-04 20:06 - 2013-10-10 17:26 - 00104320 _____ (Microsoft Corporation) C:\Windows\system32\ncryptsslp.dll
2014-02-04 20:06 - 2013-10-10 15:53 - 00235960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2014-02-04 20:06 - 2013-10-10 15:53 - 00088272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptsslp.dll
2014-02-04 20:06 - 2013-10-10 12:38 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2014-02-04 20:06 - 2013-10-08 11:28 - 00523096 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys
2014-02-04 20:06 - 2013-10-08 07:46 - 00113152 _____ (Microsoft Corporation) C:\Windows\system32\shsetup.dll
2014-02-04 20:06 - 2013-10-08 06:58 - 00094208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shsetup.dll
2014-02-04 20:06 - 2013-10-08 06:50 - 00656384 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll
2014-02-04 20:06 - 2013-10-08 06:48 - 00255488 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll
2014-02-04 20:06 - 2013-10-08 06:15 - 00492544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll
2014-02-04 20:06 - 2013-10-08 06:09 - 01160704 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.Http.dll
2014-02-04 20:06 - 2013-10-08 05:50 - 00903168 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2014-02-04 20:06 - 2013-10-08 05:50 - 00762368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.Http.dll
2014-02-04 20:06 - 2013-10-07 08:21 - 00054776 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2014-02-04 20:06 - 2013-10-07 03:13 - 03532288 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2014-02-04 20:06 - 2013-10-05 16:25 - 00057176 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\stornvme.sys
2014-02-04 20:06 - 2013-10-05 15:21 - 02140888 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2014-02-04 20:06 - 2013-10-05 15:21 - 00699840 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2014-02-04 20:06 - 2013-10-05 15:21 - 00516496 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2014-02-04 20:06 - 2013-10-05 13:05 - 01765384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2014-02-04 20:06 - 2013-10-05 13:05 - 00578952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2014-02-04 20:06 - 2013-10-05 13:05 - 00406400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2014-02-04 20:06 - 2013-10-05 12:01 - 00454656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2014-02-04 20:06 - 2013-10-05 12:01 - 00081920 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS
2014-02-04 20:06 - 2013-10-05 12:00 - 01200640 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2014-02-04 20:06 - 2013-10-05 10:36 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2014-02-04 20:06 - 2013-10-05 10:18 - 01011712 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2014-02-04 20:06 - 2013-10-05 10:07 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2014-02-04 20:06 - 2013-10-05 09:56 - 01147904 _____ (Microsoft Corporation) C:\Windows\system32\UIAutomationCore.dll
2014-02-04 20:06 - 2013-10-05 09:55 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\miutils.dll
2014-02-04 20:06 - 2013-10-05 09:40 - 00795648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2014-02-04 20:06 - 2013-10-05 09:24 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\miutils.dll
2014-02-04 20:06 - 2013-10-05 09:21 - 00920064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAutomationCore.dll
2014-02-04 20:06 - 2013-10-05 09:15 - 00286208 _____ (Microsoft Corporation) C:\Windows\system32\pcsvDevice.dll
2014-02-04 20:06 - 2013-10-05 08:43 - 00578560 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.BackgroundTransfer.dll
2014-02-04 20:06 - 2013-10-05 08:35 - 00411648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2014-02-04 20:06 - 2013-10-04 09:10 - 00533504 _____ (Microsoft Corporation) C:\Windows\system32\AppReadiness.dll
2014-02-04 20:06 - 2013-10-03 10:16 - 00294400 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Devices.Sensors.dll
2014-02-04 20:06 - 2013-10-03 10:02 - 00225792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Devices.Sensors.dll
2014-02-04 20:06 - 2013-10-02 12:00 - 01286552 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2014-02-04 20:06 - 2013-10-02 10:47 - 01018960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2014-02-04 20:06 - 2013-10-01 04:42 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Streaming.dll
2014-02-04 20:06 - 2013-10-01 04:36 - 00977408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Streaming.dll
2014-02-04 20:06 - 2013-09-17 10:06 - 01067080 _____ (Microsoft Corporation) C:\Windows\system32\mfasfsrcsnk.dll
2014-02-04 20:06 - 2013-09-17 10:06 - 00465960 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2014-02-04 20:06 - 2013-09-17 08:01 - 00270848 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2014-02-04 20:06 - 2013-09-17 07:31 - 00883184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfasfsrcsnk.dll
2014-02-04 20:06 - 2013-09-17 07:31 - 00326024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2014-02-04 20:06 - 2013-09-17 05:37 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\dafBth.dll
2014-02-04 20:06 - 2013-09-14 15:07 - 02134120 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll
2014-02-04 20:06 - 2013-09-14 15:00 - 00391512 _____ (Microsoft Corporation) C:\Windows\system32\tsmf.dll
2014-02-04 20:06 - 2013-09-14 13:39 - 01799944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll
2014-02-04 20:06 - 2013-09-14 13:33 - 00345552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsmf.dll
2014-02-04 20:06 - 2013-09-14 11:05 - 00338944 _____ (Microsoft Corporation) C:\Windows\system32\rdpclip.exe
2014-02-04 20:06 - 2013-09-14 10:11 - 00433664 _____ (Microsoft Corporation) C:\Windows\system32\ipnathlp.dll
2014-02-04 20:06 - 2013-09-13 09:22 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\ftp.exe
2014-02-04 20:06 - 2013-09-13 08:47 - 00049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ftp.exe
2014-02-04 20:06 - 2013-09-12 09:45 - 00101888 _____ (Microsoft Corporation) C:\Windows\system32\eappgnui.dll
2014-02-04 20:06 - 2013-09-12 09:08 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\eapp3hst.dll
2014-02-04 20:06 - 2013-09-12 09:08 - 00103424 _____ (Microsoft Corporation) C:\Windows\system32\WiFiDisplay.dll
2014-02-04 20:06 - 2013-09-12 09:02 - 00093184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappgnui.dll
2014-02-04 20:06 - 2013-09-12 08:44 - 00331776 _____ (Microsoft Corporation) C:\Windows\system32\eapphost.dll
2014-02-04 20:06 - 2013-09-12 08:37 - 00245248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapp3hst.dll
2014-02-04 20:06 - 2013-09-12 08:37 - 00184832 _____ (Microsoft Corporation) C:\Windows\system32\dafWfdProvider.dll
2014-02-04 20:06 - 2013-09-12 08:21 - 00262144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapphost.dll
2014-02-04 20:06 - 2013-09-12 08:16 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\eappcfg.dll
2014-02-04 20:06 - 2013-09-12 08:01 - 00272896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eappcfg.dll
2014-02-04 20:06 - 2013-09-10 05:52 - 00132608 _____ (Microsoft Corporation) C:\Windows\system32\msched.dll
2014-02-04 20:05 - 2014-02-05 17:57 - 00000000 ____D () C:\Program Files (x86)\Intel
2014-02-04 20:05 - 2014-02-04 21:02 - 00000000 ____D () C:\Program Files\Intel
2014-02-04 20:05 - 2014-02-04 20:05 - 00000000 ____D () C:\Intel
2014-02-04 20:05 - 2013-12-21 00:02 - 00064000 _____ (Khronos Group) C:\Windows\system32\OpenCL.DLL
2014-02-04 20:05 - 2013-12-21 00:02 - 00060416 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.DLL
2014-02-04 20:05 - 2013-11-09 07:37 - 01756160 _____ (Microsoft Corporation) C:\Windows\system32\WMPDMC.exe
2014-02-04 20:05 - 2013-11-09 06:56 - 01391104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPDMC.exe
2014-02-04 20:05 - 2013-11-08 11:26 - 00358896 _____ (Microsoft Corporation) C:\Windows\system32\dcomp.dll
2014-02-04 20:05 - 2013-11-08 06:23 - 00449024 _____ (Microsoft Corporation) C:\Windows\system32\appmgr.dll
2014-02-04 20:05 - 2013-11-08 05:43 - 00254464 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll
2014-02-04 20:05 - 2013-11-08 05:42 - 00366080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appmgr.dll
2014-02-04 20:05 - 2013-11-08 05:16 - 00225792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dcomp.dll
2014-02-04 20:05 - 2013-11-08 05:15 - 00198656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll
2014-02-04 20:05 - 2013-11-08 04:14 - 00922624 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.dll
2014-02-04 20:05 - 2013-11-05 15:19 - 00566784 _____ (Microsoft Corporation) C:\Windows\system32\wpncore.dll
2014-02-04 20:05 - 2013-11-04 14:07 - 01843712 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll
2014-02-04 20:05 - 2013-11-04 03:28 - 01816576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Display.dll
2014-02-04 20:05 - 2013-11-01 12:39 - 00086872 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys
2014-02-04 20:05 - 2013-11-01 07:08 - 00747008 _____ (Microsoft Corporation) C:\Windows\system32\wlidcli.dll
2014-02-04 20:05 - 2013-11-01 06:57 - 00544768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidcli.dll
2014-02-04 20:05 - 2013-10-31 01:33 - 01642016 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2014-02-04 20:05 - 2013-10-31 01:33 - 01506680 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2014-02-04 20:05 - 2013-10-31 01:33 - 01476184 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2014-02-04 20:05 - 2013-10-31 01:33 - 01345536 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2014-02-04 20:05 - 2013-10-26 02:54 - 00146776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\SerCx2.sys
2014-02-04 20:05 - 2013-10-24 10:31 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\CredentialMigrationHandler.dll
2014-02-04 20:05 - 2013-10-24 10:12 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CredentialMigrationHandler.dll
2014-02-04 20:05 - 2013-10-17 12:21 - 02896896 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2014-02-04 20:05 - 2013-10-17 11:36 - 02266624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2014-02-04 20:04 - 2013-11-27 16:36 - 03395920 _____ (Microsoft Corporation) C:\Windows\system32\WSService.dll
2014-02-04 20:04 - 2013-11-27 12:41 - 00084480 _____ (Microsoft Corporation) C:\Windows\system32\WSCollect.exe
2014-02-04 20:04 - 2013-11-27 09:48 - 00249856 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-02-04 20:04 - 2013-11-27 09:40 - 00189952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-02-04 20:04 - 2013-11-27 09:17 - 00695808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll
2014-02-04 20:04 - 2013-11-27 09:12 - 00848384 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll
2014-02-04 20:04 - 2013-11-23 05:34 - 00393216 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2014-02-04 20:04 - 2013-11-23 05:13 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2014-02-04 20:04 - 2013-10-23 12:01 - 00872840 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2014-02-04 20:04 - 2013-10-23 09:59 - 00698232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2014-02-04 20:04 - 2013-10-19 09:53 - 00075360 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2014-02-04 20:04 - 2013-10-19 08:14 - 00070680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2014-02-04 20:04 - 2013-10-13 03:48 - 00136536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys
2014-02-04 20:04 - 2013-10-12 22:48 - 00828416 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2014-02-04 20:04 - 2013-10-12 22:34 - 01104384 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2014-02-04 20:04 - 2013-10-10 12:53 - 00160768 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll
2014-02-04 20:04 - 2013-10-10 12:21 - 00139776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxAllUserStore.dll
2014-02-04 20:04 - 2013-10-10 11:34 - 01085952 _____ (Microsoft Corporation) C:\Windows\system32\twinui.appcore.dll
2014-02-04 20:04 - 2013-10-10 11:27 - 00869888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.appcore.dll
2014-02-04 20:04 - 2013-10-05 15:21 - 01341288 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-02-04 20:04 - 2013-10-05 09:39 - 01067008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-02-04 20:03 - 2013-10-16 16:58 - 01943536 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2014-02-04 20:03 - 2013-10-16 14:54 - 01581968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2014-02-04 20:03 - 2013-10-15 09:54 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2014-02-04 20:03 - 2013-10-15 09:03 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2014-02-04 20:02 - 2013-12-09 01:15 - 00787968 _____ (Microsoft Corporation) C:\Windows\system32\uDWM.dll
2014-02-04 20:02 - 2013-11-09 07:34 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\MDMAgent.exe
2014-02-04 20:02 - 2013-11-09 07:34 - 00287744 _____ (Microsoft Corporation) C:\Windows\system32\mdmregistration.dll
2014-02-04 20:02 - 2013-11-09 06:52 - 00240128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mdmregistration.dll
2014-02-04 19:59 - 2014-02-16 11:30 - 00003596 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2416040642-2930148554-25356005-1001
2014-02-04 19:54 - 2014-02-15 16:19 - 00000000 ___RD () C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-02-04 19:54 - 2014-02-15 10:36 - 00000000 ____D () C:\Users\USER\AppData\Local\VirtualStore
2014-02-04 19:54 - 2014-02-15 10:33 - 00000000 ___RD () C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-02-04 19:54 - 2014-02-05 23:49 - 00000000 ____D () C:\Users\USER
2014-02-04 19:54 - 2014-02-04 20:16 - 00000000 ____D () C:\Users\USER\AppData\Local\Packages
2014-02-04 19:54 - 2014-02-04 19:54 - 00001450 _____ () C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-02-04 19:54 - 2014-02-04 19:54 - 00000020 ___SH () C:\Users\USER\ntuser.ini
2014-02-04 19:54 - 2014-02-04 19:54 - 00000000 _SHDL () C:\Users\USER\Vorlagen
2014-02-04 19:54 - 2014-02-04 19:54 - 00000000 _SHDL () C:\Users\USER\Startmenü
2014-02-04 19:54 - 2014-02-04 19:54 - 00000000 _SHDL () C:\Users\USER\Netzwerkumgebung
2014-02-04 19:54 - 2014-02-04 19:54 - 00000000 _SHDL () C:\Users\USER\Lokale Einstellungen
2014-02-04 19:54 - 2014-02-04 19:54 - 00000000 _SHDL () C:\Users\USER\Eigene Dateien
2014-02-04 19:54 - 2014-02-04 19:54 - 00000000 _SHDL () C:\Users\USER\Druckumgebung
2014-02-04 19:54 - 2014-02-04 19:54 - 00000000 _SHDL () C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-02-04 19:54 - 2014-02-04 19:54 - 00000000 _SHDL () C:\Users\USER\AppData\Local\Verlauf
2014-02-04 19:54 - 2014-02-04 19:54 - 00000000 _SHDL () C:\Users\USER\AppData\Local\Anwendungsdaten
2014-02-04 19:54 - 2014-02-04 19:54 - 00000000 _SHDL () C:\Users\USER\Anwendungsdaten
2014-02-04 19:54 - 2014-02-04 19:54 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Adobe
2014-02-04 19:54 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-02-04 19:54 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-02-04 19:54 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-02-04 19:54 - 2013-08-22 16:36 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-02-04 19:52 - 2014-02-16 10:57 - 01590706 _____ () C:\Windows\WindowsUpdate.log
2014-02-04 19:52 - 2014-02-04 19:52 - 00000000 ____D () C:\Windows\CSC
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\Users\Default\Vorlagen
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\Users\Default\Startmenü
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\Users\Default\Druckumgebung
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\Programme
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\ProgramData\Vorlagen
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\ProgramData\Startmenü
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\ProgramData\Dokumente
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\Dokumente und Einstellungen
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_SensorsAlsDriver_01_11_00.Wdf
2014-02-04 19:48 - 2014-02-15 16:18 - 00000000 ____D () C:\Windows\Panther

==================== One Month Modified Files and Folders =======

2014-02-16 17:58 - 2014-02-14 10:34 - 00000000 ____D () C:\FRST
2014-02-16 17:56 - 2014-02-05 16:03 - 00000600 _____ () C:\Users\USER\AppData\Local\PUTTY.RND
2014-02-16 17:30 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\sru
2014-02-16 11:30 - 2014-02-04 19:59 - 00003596 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2416040642-2930148554-25356005-1001
2014-02-16 10:57 - 2014-02-04 19:52 - 01590706 _____ () C:\Windows\WindowsUpdate.log
2014-02-16 10:46 - 2014-02-04 21:39 - 00003576 _____ () C:\Windows\System32\Tasks\Bitdefender Auto-Scan
2014-02-15 23:07 - 2014-02-15 23:07 - 00003584 _____ () C:\Users\USER\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-02-15 22:44 - 2014-02-15 16:33 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-02-15 21:04 - 2014-02-05 14:48 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Duplicati
2014-02-15 20:16 - 2014-02-05 17:50 - 00000000 ____D () C:\ProgramData\Oracle
2014-02-15 20:15 - 2014-02-15 20:15 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-02-15 20:15 - 2014-02-15 20:15 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-02-15 20:15 - 2014-02-15 20:15 - 00174504 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-02-15 20:15 - 2014-02-15 20:15 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-02-15 20:15 - 2014-02-15 20:15 - 00000000 ____D () C:\Program Files (x86)\Java
2014-02-15 17:44 - 2014-02-04 22:20 - 00000000 ____D () C:\Users\USER\AppData\Roaming\eM Client
2014-02-15 17:15 - 2014-02-15 17:15 - 00000000 ____D () C:\Users\USER\AppData\Roaming\7882
2014-02-15 17:15 - 2013-09-30 05:14 - 01776918 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-02-15 17:15 - 2013-09-30 04:56 - 00765582 _____ () C:\Windows\system32\perfh007.dat
2014-02-15 17:15 - 2013-09-30 04:56 - 00159366 _____ () C:\Windows\system32\perfc007.dat
2014-02-15 17:10 - 2014-02-06 15:58 - 00000000 ____D () C:\Users\USER\AppData\Local\Bvckup2
2014-02-15 17:10 - 2013-08-22 15:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-02-15 17:10 - 2013-08-22 15:44 - 00473704 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-02-15 17:08 - 2014-02-15 17:07 - 00000000 ____D () C:\ProgramData\AAV
2014-02-15 17:08 - 2014-02-15 17:07 - 00000000 ____D () C:\Program Files (x86)\Akademische Arbeitsgemeinschaft
2014-02-15 17:07 - 2014-02-15 17:07 - 00000000 ____D () C:\Users\USER\AppData\Local\AAV
2014-02-15 17:02 - 2014-02-15 17:02 - 00000000 ____D () C:\Users\USER\AppData\Roaming\DVDFab9
2014-02-15 17:02 - 2014-02-15 17:01 - 00000000 ____D () C:\Program Files (x86)\DVDFab 9
2014-02-15 16:33 - 2014-02-15 16:33 - 00003772 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-02-15 16:33 - 2014-02-05 06:17 - 00000000 ____D () C:\Users\USER\AppData\Local\Adobe
2014-02-15 16:31 - 2014-02-15 16:31 - 00000000 _____ () C:\Windows\setuperr.log
2014-02-15 16:31 - 2014-02-15 16:31 - 00000000 _____ () C:\Windows\setupact.log
2014-02-15 16:31 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\ELAM
2014-02-15 16:19 - 2014-02-04 19:54 - 00000000 ___RD () C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-02-15 16:18 - 2014-02-04 22:59 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-02-15 16:18 - 2014-02-04 19:48 - 00000000 ____D () C:\Windows\Panther
2014-02-15 16:13 - 2014-02-15 16:13 - 00002794 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-02-15 16:13 - 2014-02-15 16:13 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-02-15 16:13 - 2014-02-15 16:12 - 00000000 ____D () C:\Program Files\CCleaner
2014-02-15 16:03 - 2014-02-13 10:41 - 00000000 ____D () C:\Users\USER\AppData\Local\Google
2014-02-15 16:03 - 2014-02-13 10:41 - 00000000 ____D () C:\Program Files (x86)\Google
2014-02-15 15:55 - 2014-02-04 22:34 - 00000000 ____D () C:\Program Files (x86)\1Password 4
2014-02-15 10:41 - 2014-02-15 10:38 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Spotify
2014-02-15 10:39 - 2014-02-15 10:38 - 00000000 ____D () C:\Users\USER\AppData\Local\Spotify
2014-02-15 10:38 - 2014-02-15 10:38 - 00004621 _____ () C:\Users\USER\AppData\Local\recently-used.xbel
2014-02-15 10:38 - 2014-02-15 10:38 - 00001893 _____ () C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk
2014-02-15 10:36 - 2014-02-04 19:54 - 00000000 ____D () C:\Users\USER\AppData\Local\VirtualStore
2014-02-15 10:33 - 2014-02-04 19:54 - 00000000 ___RD () C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-02-15 10:32 - 2013-08-22 16:36 - 00000000 ___RD () C:\Windows\ToastData
2014-02-15 10:31 - 2014-02-04 20:07 - 00000000 ____D () C:\Windows\system32\MRT
2014-02-15 10:30 - 2014-02-04 20:07 - 88567024 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-02-15 10:24 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\MediaViewer
2014-02-15 10:24 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\FileManager
2014-02-15 10:24 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\Camera
2014-02-15 10:24 - 2013-08-22 14:25 - 00262144 ___SH () C:\Windows\system32\config\BBI
2014-02-15 10:17 - 2014-02-15 10:17 - 00000000 ____D () C:\Users\USER\AppData\Local\Secunia PSI
2014-02-15 10:17 - 2014-02-15 10:17 - 00000000 ____D () C:\Program Files (x86)\Secunia
2014-02-14 23:44 - 2014-02-04 22:08 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-02-14 12:00 - 2014-02-04 21:31 - 00000368 _____ () C:\Windows\Tasks\Security Platform Backup Schedule.job
2014-02-14 10:41 - 2014-02-04 22:08 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-02-13 20:31 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\AppReadiness
2014-02-13 11:30 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\LiveKernelReports
2014-02-13 10:38 - 2014-02-13 10:38 - 00000000 ____D () C:\Program Files (x86)\LG Electronics
2014-02-13 10:38 - 2014-02-04 21:05 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-02-13 10:37 - 2014-02-12 23:47 - 00000000 ____D () C:\Users\USER\AppData\Roaming\HpUpdate
2014-02-13 10:34 - 2014-02-13 10:34 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2014-02-12 23:48 - 2014-02-12 23:47 - 00000000 ____D () C:\Users\USER\AppData\Local\HP
2014-02-12 23:47 - 2014-02-12 23:47 - 00000057 _____ () C:\ProgramData\Ament.ini
2014-02-12 23:47 - 2014-02-12 23:47 - 00000000 ____D () C:\ProgramData\HP
2014-02-12 23:47 - 2014-02-12 23:47 - 00000000 ____D () C:\Program Files\HP
2014-02-12 23:47 - 2014-02-12 23:47 - 00000000 ____D () C:\Program Files (x86)\HP
2014-02-12 21:46 - 2014-02-12 21:46 - 00000000 ___HD () C:\Windows\system32\CanonIJ Uninstaller Information
2014-02-12 21:46 - 2014-02-12 21:46 - 00000000 ___HD () C:\ProgramData\CanonBJ
2014-02-08 15:50 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\rescache
2014-02-08 15:43 - 2014-02-04 23:08 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Apple Computer
2014-02-08 15:42 - 2014-02-08 15:42 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-02-08 15:42 - 2014-02-08 15:42 - 00000000 ____D () C:\Program Files\iTunes
2014-02-08 15:42 - 2014-02-08 15:42 - 00000000 ____D () C:\Program Files\iPod
2014-02-08 15:42 - 2014-02-08 15:42 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-02-07 06:27 - 2014-02-07 06:27 - 00000990 __RSH () C:\ProgramData\ntuser.pol
2014-02-07 06:25 - 2013-08-22 16:36 - 00000000 ___HD () C:\Windows\system32\GroupPolicy
2014-02-06 16:30 - 2014-02-06 16:30 - 00003288 _____ () C:\Windows\System32\Tasks\Bvckup 2
2014-02-06 15:58 - 2014-02-06 15:58 - 00000000 ____D () C:\Program Files\Bvckup 2
2014-02-06 15:54 - 2014-02-06 15:52 - 00000000 ____D () C:\Users\USER\AppData\Roaming\KeePass
2014-02-06 15:54 - 2014-02-06 15:19 - 00000000 ____D () C:\Program Files (x86)\KeePass Password Safe 2
2014-02-06 15:52 - 2014-02-06 15:52 - 00000000 ____D () C:\Users\USER\AppData\Local\KeePass
2014-02-06 15:24 - 2014-02-06 15:24 - 00000000 ____D () C:\Program Files\Macrium
2014-02-06 15:24 - 2014-02-06 15:15 - 00000000 ____D () C:\ProgramData\Macrium
2014-02-06 15:10 - 2014-02-06 15:10 - 00001997 _____ () C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Banking 4W.lnk
2014-02-06 15:10 - 2014-02-06 15:10 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Subsembly
2014-02-06 15:10 - 2014-02-06 15:10 - 00000000 ____D () C:\Users\USER\AppData\Local\Subsembly
2014-02-06 15:10 - 2014-02-06 15:10 - 00000000 ____D () C:\Program Files (x86)\TopBanking
2014-02-06 13:16 - 2014-02-13 11:46 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-02-06 12:30 - 2014-02-13 11:46 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-02-06 12:30 - 2014-02-13 11:46 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-02-06 12:12 - 2014-02-13 11:46 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-02-06 12:07 - 2014-02-13 11:46 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-02-06 12:06 - 2014-02-13 11:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-02-06 11:57 - 2014-02-13 11:46 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-02-06 11:56 - 2014-02-13 11:46 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-02-06 11:49 - 2014-02-13 11:46 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-02-06 11:48 - 2014-02-13 11:46 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-02-06 11:48 - 2014-02-13 11:46 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-02-06 11:38 - 2014-02-13 11:46 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-02-06 11:32 - 2014-02-13 11:46 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-02-06 11:20 - 2014-02-13 11:46 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-02-06 11:17 - 2014-02-13 11:46 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-02-06 11:11 - 2014-02-13 11:46 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-02-06 11:01 - 2014-02-13 11:46 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-02-06 11:00 - 2014-02-13 11:46 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-02-06 10:57 - 2014-02-13 11:46 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-02-06 10:57 - 2014-02-13 11:46 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-02-06 10:52 - 2014-02-13 11:46 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-02-06 10:52 - 2014-02-13 11:46 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-02-06 10:50 - 2014-02-13 11:46 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-02-06 10:47 - 2014-02-13 11:46 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-02-06 10:46 - 2014-02-13 11:46 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-02-06 10:25 - 2014-02-13 11:46 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-02-06 10:25 - 2014-02-13 11:46 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-02-06 10:24 - 2014-02-13 11:46 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-02-06 10:22 - 2014-02-13 11:46 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-02-06 10:13 - 2014-02-13 11:46 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-02-06 10:09 - 2014-02-13 11:46 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-02-06 10:03 - 2014-02-13 11:46 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-02-06 09:55 - 2014-02-13 11:46 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-02-06 09:41 - 2014-02-13 11:46 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-02-06 09:40 - 2014-02-13 11:46 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-02-06 09:36 - 2014-02-13 11:46 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-02-06 09:34 - 2014-02-13 11:46 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-02-06 06:28 - 2014-02-06 06:28 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Acronis
2014-02-06 06:26 - 2014-02-04 23:09 - 00000000 ____D () C:\Windows\system32\appmgmt
2014-02-06 06:21 - 2014-02-06 06:21 - 00000000 ____D () C:\ProgramData\managecapsule
2014-02-05 23:49 - 2014-02-05 23:49 - 00000000 ____D () C:\Users\USER\.gnome2
2014-02-05 23:49 - 2014-02-04 19:54 - 00000000 ____D () C:\Users\USER
2014-02-05 23:48 - 2014-02-05 23:48 - 00000000 ____D () C:\Users\USER\AppData\Local\Apps\2.0
2014-02-05 23:47 - 2014-02-05 23:47 - 00002973 _____ () C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Evince.lnk
2014-02-05 23:47 - 2014-02-05 23:47 - 00000000 ____D () C:\Users\USER\AppData\Local\Apps\Evince-2.32.0.145
2014-02-05 23:47 - 2014-02-05 23:47 - 00000000 ____D () C:\Program Files (x86)\Foxit Software
2014-02-05 18:46 - 2014-02-05 18:46 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Foxit Software
2014-02-05 18:21 - 2014-02-05 18:21 - 00000000 ____D () C:\Users\USER\AppData\Roaming\JRT Studio
2014-02-05 17:57 - 2014-02-04 20:05 - 00000000 ____D () C:\Program Files (x86)\Intel
2014-02-05 17:54 - 2014-02-05 17:54 - 00000000 ____D () C:\Users\USER\SystemRequirementsLab
2014-02-05 17:54 - 2014-02-05 17:54 - 00000000 ____D () C:\Program Files (x86)\SystemRequirementsLab
2014-02-05 17:49 - 2014-02-05 17:49 - 00000000 ____D () C:\ProgramData\Sun
2014-02-05 17:23 - 2014-02-05 17:22 - 00000000 ____D () C:\Users\USER\AppData\Local\ownCloud
2014-02-05 17:05 - 2014-02-05 17:05 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JRT Studio
2014-02-05 17:05 - 2014-02-05 17:05 - 00000000 ____D () C:\Program Files (x86)\JRT Studio
2014-02-05 14:53 - 2014-02-05 14:53 - 00000000 ____D () C:\Users\USER\AppData\Roaming\MORITZ-NB
2014-02-05 14:52 - 2014-02-05 14:52 - 00000000 ____D () C:\Users\USER\AppData\Local\Duplicati
2014-02-05 14:47 - 2014-02-05 14:47 - 00082232 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\AXMount.sys
2014-02-05 14:47 - 2014-02-05 14:47 - 00060096 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\AXTrack.sys
2014-02-05 14:47 - 2014-02-05 14:47 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AX64 Time Machine
2014-02-05 14:47 - 2014-02-05 14:47 - 00000000 ____D () C:\Program Files\AXTM
2014-02-05 06:28 - 2014-02-05 06:28 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2014-02-05 06:28 - 2014-02-05 06:28 - 00000000 ____D () C:\Program Files (x86)\Origin Games
2014-02-05 06:28 - 2014-02-04 23:00 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Origin
2014-02-05 06:28 - 2014-02-04 23:00 - 00000000 ____D () C:\Users\USER\AppData\Local\Origin
2014-02-05 06:28 - 2014-02-04 22:59 - 00000000 ____D () C:\ProgramData\Origin
2014-02-05 06:28 - 2014-02-04 22:59 - 00000000 ____D () C:\Program Files (x86)\Origin
2014-02-05 06:26 - 2014-02-05 06:25 - 00000000 ____D () C:\Program Files (x86)\ClipGrab
2014-02-05 06:19 - 2014-02-05 06:19 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Macromedia
2014-02-05 06:19 - 2014-02-05 06:19 - 00000000 ____D () C:\Users\USER\AppData\Local\Macromedia
2014-02-05 06:18 - 2014-02-05 06:18 - 00000000 ____D () C:\Program Files (x86)\EMET 4.1
2014-02-04 23:12 - 2014-02-04 23:12 - 00000000 ____D () C:\Program Files\Duplicati
2014-02-04 23:11 - 2014-02-04 23:11 - 00000000 ____D () C:\Windows\SysWOW64\XPSViewer
2014-02-04 23:11 - 2014-02-04 23:11 - 00000000 ____D () C:\Program Files\Reference Assemblies
2014-02-04 23:11 - 2014-02-04 23:11 - 00000000 ____D () C:\Program Files\MSBuild
2014-02-04 23:11 - 2014-02-04 23:11 - 00000000 ____D () C:\Program Files (x86)\Reference Assemblies
2014-02-04 23:11 - 2014-02-04 23:11 - 00000000 ____D () C:\Program Files (x86)\MSBuild
2014-02-04 23:11 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\SysWOW64\MUI
2014-02-04 23:11 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\MUI
2014-02-04 23:08 - 2014-02-04 23:08 - 00000000 ____D () C:\Windows\System32\Tasks\Apple
2014-02-04 23:08 - 2014-02-04 23:08 - 00000000 ____D () C:\Users\USER\AppData\Local\Apple Computer
2014-02-04 23:08 - 2014-02-04 23:08 - 00000000 ____D () C:\Users\USER\AppData\Local\Apple
2014-02-04 23:08 - 2014-02-04 23:08 - 00000000 ____D () C:\ProgramData\Apple Computer
2014-02-04 23:08 - 2014-02-04 23:08 - 00000000 ____D () C:\Program Files (x86)\Apple Software Update
2014-02-04 23:07 - 2014-02-04 23:07 - 00000000 ____D () C:\ProgramData\Apple
2014-02-04 23:03 - 2014-02-04 23:03 - 00000000 ____D () C:\Program Files (x86)\ownCloud
2014-02-04 22:59 - 2014-02-04 22:59 - 00000000 ____D () C:\ProgramData\Electronic Arts
2014-02-04 22:58 - 2014-02-04 22:58 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IrfanView
2014-02-04 22:58 - 2014-02-04 22:58 - 00000000 ____D () C:\Users\USER\AppData\Roaming\IrfanView
2014-02-04 22:58 - 2014-02-04 22:58 - 00000000 ____D () C:\Program Files (x86)\IrfanView
2014-02-04 22:56 - 2014-02-04 22:56 - 00000000 ____D () C:\Program Files (x86)\WinSCP
2014-02-04 22:55 - 2014-02-04 22:55 - 00000000 ____D () C:\Program Files (x86)\PuTTY
2014-02-04 22:53 - 2014-02-04 22:53 - 00000385 _____ () C:\Users\USER\AppData\Roaminguser_gensett.xml
2014-02-04 22:50 - 2014-02-04 22:50 - 00000000 ____D () C:\Users\USER\AppData\Roaming\vlc
2014-02-04 22:49 - 2014-02-04 22:49 - 00000000 ____D () C:\Program Files\VideoLAN
2014-02-04 22:49 - 2014-02-04 22:49 - 00000000 ____D () C:\Program Files\7-Zip
2014-02-04 22:48 - 2014-02-04 22:48 - 00000000 ___RD () C:\Users\USER\SkyDrive
2014-02-04 22:48 - 2014-02-04 22:48 - 00000000 ____D () C:\ProgramData\Microsoft SkyDrive
2014-02-04 22:43 - 2014-02-04 22:43 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Agile Web Solutions
2014-02-04 22:43 - 2014-02-04 22:43 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2014-02-04 22:40 - 2014-02-04 22:40 - 00000000 ____D () C:\Program Files\Microsoft Office 15
2014-02-04 22:20 - 2014-02-04 22:20 - 00000000 ____D () C:\Program Files (x86)\eM Client
2014-02-04 22:16 - 2014-02-04 22:16 - 00079192 _____ (BitDefender) C:\Windows\system32\Drivers\bdvedisk.sys
2014-02-04 22:16 - 2014-02-04 21:39 - 00261056 _____ (BitDefender) C:\Windows\system32\Drivers\avchv.sys
2014-02-04 22:16 - 2014-02-04 21:39 - 00074512 _____ (BitDefender SRL) C:\Windows\SysWOW64\bdsandboxuiskin32.dll
2014-02-04 22:16 - 2014-02-04 21:36 - 00074512 _____ (BitDefender SRL) C:\Windows\system32\bdsandboxuiskin32.dll
2014-02-04 22:08 - 2014-02-04 22:08 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Mozilla
2014-02-04 22:08 - 2014-02-04 22:08 - 00000000 ____D () C:\Users\USER\AppData\Local\Mozilla
2014-02-04 22:08 - 2014-02-04 22:08 - 00000000 ____D () C:\ProgramData\Mozilla
2014-02-04 22:01 - 2014-02-04 22:01 - 00000000 _____ () C:\Users\USER\agent.log
2014-02-04 21:58 - 2014-02-04 21:58 - 00000000 ____D () C:\ProgramData\ftw
2014-02-04 21:57 - 2014-02-04 21:57 - 00000000 ____D () C:\ProgramData\newrestore
2014-02-04 21:57 - 2014-02-04 21:57 - 00000000 ____D () C:\ProgramData\launcher
2014-02-04 21:57 - 2014-02-04 21:57 - 00000000 ____D () C:\ProgramData\explauncher
2014-02-04 21:57 - 2014-02-04 21:57 - 00000000 ____D () C:\Program Files\Paragon Software
2014-02-04 21:56 - 2014-02-04 21:08 - 00000000 ____D () C:\Users\USER\AppData\Local\Downloaded Installations
2014-02-04 21:40 - 2014-02-04 21:40 - 00500244 _____ () C:\ProgramData\1391546189.bdinstall.bin
2014-02-04 21:39 - 2014-02-04 21:39 - 00000385 _____ () C:\Windows\system32\user_gensett.xml
2014-02-04 21:39 - 2014-02-04 21:39 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_avchv_01009.Wdf
2014-02-04 21:39 - 2014-02-04 21:39 - 00000000 ____D () C:\ProgramData\BDLogging
2014-02-04 21:39 - 2014-02-04 21:36 - 00000000 ____D () C:\ProgramData\Bitdefender
2014-02-04 21:38 - 2014-02-04 21:38 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Bitdefender
2014-02-04 21:36 - 2014-02-04 21:36 - 00000000 ____D () C:\Users\USER\AppData\Roaming\QuickScan
2014-02-04 21:36 - 2014-02-04 21:36 - 00000000 ____D () C:\Program Files\Common Files\Bitdefender
2014-02-04 21:36 - 2014-02-04 21:36 - 00000000 ____D () C:\Program Files\Bitdefender
2014-02-04 21:32 - 2014-02-04 21:32 - 00000000 ____D () C:\Program Files\Intel Corporation
2014-02-04 21:32 - 2014-02-04 21:02 - 00000000 ____D () C:\ProgramData\Intel
2014-02-04 21:31 - 2014-02-04 21:31 - 00002944 _____ () C:\Windows\System32\Tasks\Security Platform Backup Schedule
2014-02-04 21:29 - 2014-02-04 21:29 - 00000000 ____D () C:\Program Files\Elantech
2014-02-04 21:26 - 2014-02-04 21:26 - 00000000 ____H () C:\ProgramData\DP45977C.lfl
2014-02-04 21:26 - 2014-02-04 21:08 - 00000000 ____D () C:\Windows\SysWOW64\RTCOM
2014-02-04 21:26 - 2014-02-04 21:07 - 00002738 _____ () C:\RHDSetup.log
2014-02-04 21:26 - 2014-02-04 21:07 - 00000206 _____ () C:\setup.log
2014-02-04 21:24 - 2014-02-04 21:24 - 00003434 _____ () C:\Windows\System32\Tasks\Settings
2014-02-04 21:23 - 2014-02-04 21:23 - 00001214 _____ () C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\S Agent.lnk
2014-02-04 21:19 - 2014-02-04 21:19 - 00000000 ____D () C:\Users\USER\AppData\Local\Samsung
2014-02-04 21:18 - 2014-02-04 20:59 - 00000000 ____D () C:\ProgramData\Samsung
2014-02-04 21:15 - 2014-02-04 21:15 - 00003038 _____ () C:\Windows\System32\Tasks\SAgent
2014-02-04 21:15 - 2014-02-04 21:15 - 00000000 ____D () C:\Program Files\Samsung
2014-02-04 21:15 - 2014-02-04 21:15 - 00000000 ____D () C:\Program Files (x86)\Samsung
2014-02-04 21:14 - 2014-02-04 21:14 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Infineon
2014-02-04 21:14 - 2014-02-04 21:14 - 00000000 ____D () C:\ProgramData\Infineon
2014-02-04 21:14 - 2014-02-04 21:14 - 00000000 ____D () C:\Program Files (x86)\Infineon
2014-02-04 21:14 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-02-04 21:11 - 2014-02-04 21:11 - 00000000 ____D () C:\ProgramData\ColorMode
2014-02-04 21:11 - 2014-02-04 21:11 - 00000000 ____D () C:\Program Files\DIFX
2014-02-04 21:09 - 2014-02-04 21:09 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_iBtFltCoex_01009.Wdf
2014-02-04 21:09 - 2014-02-04 21:09 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_btmaux_01009.Wdf
2014-02-04 21:08 - 2014-02-04 21:08 - 00000000 ____D () C:\Windows\system32\SRSLabs
2014-02-04 21:08 - 2014-02-04 21:08 - 00000000 ____D () C:\ProgramData\SRS Labs
2014-02-04 21:08 - 2014-02-04 21:08 - 00000000 ____D () C:\Program Files\Realtek
2014-02-04 21:07 - 2014-02-04 21:06 - 00000000 ____D () C:\Program Files (x86)\Realtek
2014-02-04 21:05 - 2014-02-04 21:05 - 00000000 ____D () C:\Users\USER\AppData\Roaming\InstallShield
2014-02-04 21:03 - 2014-02-04 21:03 - 00003932 _____ () C:\Windows\System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d
2014-02-04 21:03 - 2014-02-04 21:03 - 00003684 _____ () C:\Windows\System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon
2014-02-04 21:03 - 2014-02-04 21:03 - 00000000 _____ () C:\Windows\SysWOW64\agent.log
2014-02-04 21:02 - 2014-02-04 20:05 - 00000000 ____D () C:\Program Files\Intel
2014-02-04 21:02 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2014-02-04 20:22 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\SysWOW64\Dism
2014-02-04 20:22 - 2013-08-22 14:36 - 00000000 ____D () C:\Windows\system32\Dism
2014-02-04 20:16 - 2014-02-04 20:16 - 00003574 _____ () C:\Windows\System32\Tasks\CreateChoiceProcessTask
2014-02-04 20:16 - 2014-02-04 20:16 - 00000000 ___RD () C:\Windows\BrowserChoice
2014-02-04 20:16 - 2014-02-04 19:54 - 00000000 ____D () C:\Users\USER\AppData\Local\Packages
2014-02-04 20:16 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\WinStore
2014-02-04 20:16 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\migwiz
2014-02-04 20:05 - 2014-02-04 20:05 - 00000000 ____D () C:\Intel
2014-02-04 19:54 - 2014-02-04 19:54 - 00001450 _____ () C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-02-04 19:54 - 2014-02-04 19:54 - 00000020 ___SH () C:\Users\USER\ntuser.ini
2014-02-04 19:54 - 2014-02-04 19:54 - 00000000 _SHDL () C:\Users\USER\Vorlagen
2014-02-04 19:54 - 2014-02-04 19:54 - 00000000 _SHDL () C:\Users\USER\Startmenü
2014-02-04 19:54 - 2014-02-04 19:54 - 00000000 _SHDL () C:\Users\USER\Netzwerkumgebung
2014-02-04 19:54 - 2014-02-04 19:54 - 00000000 _SHDL () C:\Users\USER\Lokale Einstellungen
2014-02-04 19:54 - 2014-02-04 19:54 - 00000000 _SHDL () C:\Users\USER\Eigene Dateien
2014-02-04 19:54 - 2014-02-04 19:54 - 00000000 _SHDL () C:\Users\USER\Druckumgebung
2014-02-04 19:54 - 2014-02-04 19:54 - 00000000 _SHDL () C:\Users\USER\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-02-04 19:54 - 2014-02-04 19:54 - 00000000 _SHDL () C:\Users\USER\AppData\Local\Verlauf
2014-02-04 19:54 - 2014-02-04 19:54 - 00000000 _SHDL () C:\Users\USER\AppData\Local\Anwendungsdaten
2014-02-04 19:54 - 2014-02-04 19:54 - 00000000 _SHDL () C:\Users\USER\Anwendungsdaten
2014-02-04 19:54 - 2014-02-04 19:54 - 00000000 ____D () C:\Users\USER\AppData\Roaming\Adobe
2014-02-04 19:52 - 2014-02-04 19:52 - 00000000 ____D () C:\Windows\CSC
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\Users\Default\Vorlagen
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\Users\Default\Startmenü
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\Users\Default\Druckumgebung
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\Programme
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\ProgramData\Vorlagen
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\ProgramData\Startmenü
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\ProgramData\Dokumente
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 _SHDL () C:\Dokumente und Einstellungen
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2014-02-04 19:49 - 2014-02-04 19:49 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_SensorsAlsDriver_01_11_00.Wdf
2014-02-04 19:49 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\system32\Recovery
2014-02-04 19:49 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows NT
2014-02-04 19:49 - 2013-08-22 14:36 - 00000000 __RHD () C:\Users\Default
2014-02-04 19:47 - 2013-08-22 16:36 - 00262144 _____ () C:\Windows\system32\config\BCD-Template
2014-01-30 21:47 - 2013-08-22 16:38 - 00693240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-01-30 21:47 - 2013-08-22 16:38 - 00105464 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-01-29 18:09 - 2013-08-22 16:36 - 00000000 ____D () C:\Windows\ELAMBKUP

Files to move or delete:
====================
C:\ProgramData\MakeMarkerFile.exe


Some content of TEMP:
====================
C:\Users\USER\AppData\Local\Temp\1Password-4.0.0.BETA-439.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2014-02-14 12:22

==================== End Of Log ============================
         

Was meint ihr? Falscher Alarm? Vielen Dank schon mal!

Alt 16.02.2014, 22:00   #2
Mosurft
 
Windows 8.1: Bitdefender Fund "gen.variant.symmi.[NUMMER]" Kann nicht entfernt werden. - Standard

Windows 8.1: Bitdefender Fund "gen.variant.symmi.[NUMMER]" Kann nicht entfernt werden.



Addition.txt (Datei Upload klappt aus irgendeinem Grunde nicht)

Code:
ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 13-02-2014 01
Ran by USER at 2014-02-16 17:59:30
Running from D:\Downloads
Boot Mode: Normal
==========================================================


==================== Security Center ========================

AV: Bitdefender Antivirus (Enabled - Up to date) {9A0813D8-CED6-F86B-072E-28D2AF25A83D}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Bitdefender Spyware-Schutz (Enabled - Up to date) {2169F23C-E8EC-F7E5-3D9E-13A0D4A2E280}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

1Password 4.0.0.439 (x32 Version: 4.0 - AgileBits)
7-Zip 9.20 (x64 edition) (Version: 9.20.00.0 - Igor Pavlov)
AAVUpdateManager (x32 Version: 18.00.0000 - Wolters Kluwer Deutschland GmbH)
Adobe Flash Player 12 Plugin (x32 Version: 12.0.0.44 - Adobe Systems Incorporated)
Apple Application Support (x32 Version: 3.0 - Apple Inc.)
Apple Software Update (x32 Version: 2.1.3.127 - Apple Inc.)
AX64 Time Machine (remove only) (Version:  - )
Banking 4W (x32 Version:  - Subsembly GmbH)
Bitdefender Antivirus Plus (Version: 17.25.0.1074 - Bitdefender)
Bvckup 2 (Beta release 59) (Version:  - )
Canon iP4700 series Printer Driver (Version:  - )
CCleaner (Version: 4.10 - Piriform)
ClipGrab 3.3.0.4 (x32 Version:  - Philipp Schmieder Medien)
Duplicati (x64) (Version: 1.3.4 - HexaD)
DVDFab 9.1.2.5 (22/01/2014) (x32 Version:  - Fengtao Software Inc.)
eM Client (x32 Version: 6.0.19861.0 - eM Client Inc.)
EMET 4.1 (x32 Version: 4.1 - Microsoft Corporation)
ETDWare X64 11.7.10.4_WHQL (Version: 11.7.10.4 - ELAN Microelectronic Corp.)
Evince 2.32.0.145 (x32 Version: 2.32.0.145 - (Custom build))
Foxit Reader (x32 Version: 6.0.10.1213 - Foxit Corporation)
HP Officejet Pro 8100 - Grundlegende Software für das Gerät (Version: 28.0.1321.0 - Hewlett-Packard Co.)
HP Update (x32 Version: 5.003.003.001 - Hewlett-Packard)
Infineon TPM Professional Package (Version: 4.3.000.3137 - Infineon Technologies AG)
Intel(R) Manageability Engine Firmware Recovery Agent (x32 Version: 1.0.0.36702 - Intel Corporation)
Intel(R) Management Engine Components (x32 Version: 8.1.0.1252 - Intel Corporation)
Intel(R) Processor Graphics (x32 Version: 10.18.10.3345 - Intel Corporation)
Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology(patch version 3.0.1342.2) (Version: 3.1.1311.0402 - Intel Corporation)
Intel(R) Rapid Storage Technology (x32 Version: 11.6.0.1030 - Intel Corporation)
Intel(R) WiDi (Version: 3.5.40.0 - Intel Corporation)
Intel® Trusted Connect Service Client (Version: 1.24.388.1 - Intel Corporation) Hidden
IrfanView (remove only) (x32 Version: 4.37 - Irfan Skiljan)
iSyncr (x32 Version: 4.2.2 - JRT Studio)
iTunes (Version: 11.1.4.62 - Apple Inc.)
Java 7 Update 51 (x32 Version: 7.0.510 - Oracle)
Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden
LG United Mobile Driver (x32 Version: 3.10.1.0 - LG Electronics)
Macrium Reflect Free Edition (Version: 5.2 - Paramount Software (UK) Ltd.)
Macrium Reflect Free Edition (Version: 5.2.6465 - Paramount Software (UK) Ltd.) Hidden
Microsoft Office 365 Home Premium - de-de (Version: 15.0.4551.1512 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219 - Microsoft Corporation)
Mozilla Firefox 27.0.1 (x86 de) (x32 Version: 27.0.1 - Mozilla)
Mozilla Maintenance Service (x32 Version: 27.0.1 - Mozilla)
Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4551.1512 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Licensing Component (Version: 15.0.4551.1512 - Microsoft Corporation) Hidden
Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4551.1512 - Microsoft Corporation) Hidden
Origin (x32 Version: 9.4.1.116 - Electronic Arts, Inc.)
ownCloud (x32 Version: 1.5.1.2337 - ownCloud)
PuTTY version 0.63 (x32 Version: 0.63 - Simon Tatham)
Realtek Ethernet Controller Driver (x32 Version: 8.2.612.2012 - Realtek)
Realtek High Definition Audio Driver (x32 Version: 6.0.1.7055 - Realtek Semiconductor Corp.)
S Agent (Version: 1.1.45 - Samsung Electronics CO., LTD.) Hidden
Secunia PSI (3.0.0.9016) (x32 Version: 3.0.0.9016 - Secunia)
Settings (x32 Version: 2.0.1 - Samsung Electronics CO., LTD.)
Spotify (HKCU Version: 0.9.7.16.g4b197456 - Spotify AB)
SRS Premium Sound (x32 Version: 1.00.4700 - DTS, Inc.)
Steam (x32 Version:  - Valve Corporation)
Steuer-Software 2014 (x32 Version: 19.06.72 - Akademische Arbeitsgemeinschaft)
SW Update (x32 Version: 2.1.21 - Samsung Electronics CO., LTD.)
System Requirements Lab for Intel (x32 Version: 4.5.22.0 - Husdawg, LLC)
VLC media player 2.1.3 (Version: 2.1.3 - VideoLAN)
Windows-Treiberpaket - Samsung Electronics Co. Ltd. (RadioHIDMini) HIDClass  (07/27/2012 20.57.1.735) (Version: 07/27/2012 20.57.1.735 - Samsung Electronics Co. Ltd.)
WinSCP 5.5.1 (x32 Version: 5.5.1 - Martin Prikryl)
You Need A Budget 4 (YNAB) (x32 Version:  - YouNeedABudget.com)

==================== Restore Points  =========================

15-02-2014 14:59:17 Removed Apple Mobile Device Support

==================== Hosts content: ==========================

2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask
Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList
Task: {10C6CAED-F9FB-4E00-82FA-E5A80CB1867F} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2012-06-14] (Intel Corporation)
Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate
Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation)
Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation)
Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance
Task: {4B7A8116-EA7C-4B65-BA8D-339F08ED8200} - System32\Tasks\Settings => C:\Program Files (x86)\Samsung\Settings\sSettings.exe [2013-01-03] (Samsung Electronics CO., LTD.)
Task: {4C25926A-5228-413D-A92A-546F0D743C4E} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-01-21] (Piriform Ltd)
Task: {67975D59-DD52-4F36-9A72-7CDB3EAA1959} - System32\Tasks\Bitdefender Auto-Scan => C:\Program Files\Bitdefender\Bitdefender\mtasklaunch.exe [2013-06-19] (Bitdefender)
Task: {6A5C7E4D-8E7A-4FB7-8BFF-F4B372E43635} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-02-15] (Adobe Systems Incorporated)
Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup
Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task
Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask
Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
Task: {816C8EA0-399C-4954-B981-C64EEE9B97FB} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2014-02-04] (Microsoft Corporation)
Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task
Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work
Task: {A127CCC4-F812-4B42-92AE-7BDCB72FE4F3} - System32\Tasks\Bvckup 2 => C:\Program Files\Bvckup 2\bvckup2.exe [2014-02-06] (Pipemetrics SA)
Task: {A42DFD94-DA48-4A48-BFBA-B050437E77D4} - System32\Tasks\SAgent => C:\Program Files\Samsung\S Agent\CommonAgent.exe [2013-10-16] (Samsung Electronics CO., LTD.)
Task: {B2429B51-9BBF-4DA8-A87F-AAB1551E8806} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {BED4EDEE-7E35-4382-A34D-9E74B0783ED8} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\Windows\system32\MRT.exe [2014-02-15] (Microsoft Corporation)
Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask
Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing
Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization
Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE
Task: {EAF6F7F4-2EB7-43E3-BC67-7C7A54015AC2} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon => C:\Program Files (x86)\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2012-06-14] (Intel Corporation)
Task: {F3FD4D0D-E06A-4C1C-B169-BB03D326CC0B} - System32\Tasks\Security Platform Backup Schedule => C:\Program Files (x86)\Infineon\Security Platform Software\SpBackupWz.exe [2012-08-05] (Infineon Technologies AG)
Task: {F8961B6C-5A05-4F13-B184-CAEF3AC6C3C3} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [2013-10-31] (Microsoft Corporation)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\Security Platform Backup Schedule.job => C:\Program Files (x86)\Infineon\Security Platform Software\SpBackupWz.exe

==================== Loaded Modules (whitelisted) =============

2013-11-21 10:14 - 2013-11-21 10:14 - 00089232 _____ () C:\Program Files (x86)\EMET 4.1\EMET_CE64.DLL
2013-12-21 00:02 - 2013-12-21 00:02 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2014-02-04 21:39 - 2013-06-19 11:45 - 00265080 _____ () C:\Program Files\Bitdefender\Bitdefender\txmlutil.dll
2014-02-13 19:10 - 2014-02-13 19:10 - 16978503 _____ () C:\Program Files (x86)\ownCloud\owncloud.exe
2012-05-21 20:41 - 2012-05-21 20:41 - 00131072 _____ () C:\Program Files\Duplicati\LightDatamodel.dll
2012-05-21 20:41 - 2012-05-21 20:41 - 00931840 _____ () C:\Program Files\Duplicati\SQLite\win64\System.Data.SQLite.dll
2013-01-31 15:12 - 2013-01-31 15:12 - 00446464 _____ () C:\Program Files\Duplicati\de-DE\Duplicati.resources.dll
2012-05-21 20:41 - 2012-05-21 20:41 - 00260608 _____ () C:\Program Files\Duplicati\AlphaFS.dll
2013-01-31 15:12 - 2013-01-31 15:12 - 00006144 _____ () C:\Program Files\Duplicati\de-DE\Duplicati.Library.Modules.Builtin.resources.dll
2013-01-31 15:12 - 2013-01-31 15:12 - 00069632 _____ () C:\Program Files\Duplicati\de-DE\Duplicati.Library.Main.resources.dll
2013-01-31 15:12 - 2013-01-31 15:12 - 00015872 _____ () C:\Program Files\Duplicati\de-DE\Duplicati.Library.Backend.SSH.resources.dll
2013-01-31 15:12 - 2013-01-31 15:12 - 00010752 _____ () C:\Program Files\Duplicati\de-DE\Duplicati.Library.Encryption.resources.dll
2013-01-31 15:12 - 2013-01-31 15:12 - 00004608 _____ () C:\Program Files\Duplicati\de-DE\Duplicati.Library.Compression.resources.dll
2013-01-31 15:12 - 2013-01-31 15:12 - 00007168 _____ () C:\Program Files\Duplicati\de-DE\Duplicati.Library.Utility.resources.dll
2013-11-21 10:14 - 2013-11-21 10:14 - 00114176 _____ () C:\Program Files (x86)\EMET 4.1\HelperLib.dll
2013-11-12 09:22 - 2013-11-12 09:22 - 00028672 _____ () C:\Program Files (x86)\EMET 4.1\ReportingSubsystem.dll
2013-11-21 10:14 - 2013-11-21 10:14 - 00348160 _____ () C:\Program Files (x86)\EMET 4.1\DevExpress.UserSkins.HighContrast.dll
2013-11-21 10:14 - 2013-11-21 10:14 - 00023040 _____ () C:\Program Files (x86)\EMET 4.1\TrayIconSubsystem.dll
2013-11-21 10:14 - 2013-11-21 10:14 - 00042496 _____ () C:\Program Files (x86)\EMET 4.1\PKIPinningSubsystem.dll
2013-10-16 19:15 - 2013-10-16 19:15 - 00088624 _____ () C:\Program Files\Samsung\S Agent\ToastX64.dll
2008-10-24 16:35 - 2008-10-24 16:35 - 00128296 _____ () C:\Program Files (x86)\Akademische Arbeitsgemeinschaft\AAVUpdateManager\aavus.exe
2013-01-03 23:08 - 2013-01-03 23:08 - 00085192 _____ () C:\Program Files (x86)\Samsung\Settings\CmdServer\EasySettingsCmdServer.exe
2013-01-03 23:08 - 2013-01-03 23:08 - 00029384 _____ () C:\Program Files (x86)\Samsung\Settings\CmdServer\EasySettingsCmdWrapper.dll
2013-01-03 23:09 - 2013-01-03 23:09 - 01080520 _____ () C:\Program Files (x86)\Samsung\Settings\CmdServer\EasySettingsCmd.dll
2013-01-03 23:08 - 2013-01-03 23:08 - 00111304 _____ () C:\Program Files (x86)\Samsung\Settings\CmdServer\EasySettingsBase.dll
2013-01-03 23:08 - 2013-01-03 23:08 - 00056440 _____ () C:\Program Files (x86)\Samsung\Settings\CmdServer\HookDllPS2.dll
2013-01-03 23:08 - 2013-01-03 23:08 - 00211064 _____ () C:\Program Files (x86)\Samsung\Settings\CmdServer\WinCRT.dll
2013-01-03 23:08 - 2013-01-03 23:08 - 00027336 _____ () C:\Program Files (x86)\Samsung\Settings\EasySettingsAPI.dll
2013-01-03 23:09 - 2013-01-03 23:09 - 00111304 _____ () C:\Program Files (x86)\Samsung\Settings\EasySettingsBase.dll
2013-01-03 23:08 - 2013-01-03 23:08 - 00061128 _____ () C:\Program Files (x86)\Samsung\Settings\EasyMovieEnhancer.dll
2013-01-03 23:08 - 2013-01-03 23:08 - 00103624 _____ () C:\Program Files (x86)\Samsung\Settings\EasySettingsCmdClient.dll
2013-09-24 11:29 - 2013-09-24 11:29 - 00117730 _____ () C:\Program Files (x86)\ownCloud\libgcc_s_sjlj-1.dll
2013-09-24 11:29 - 2013-09-24 11:29 - 00847985 _____ () C:\Program Files (x86)\ownCloud\libstdc++-6.dll
2014-02-13 19:09 - 2014-02-13 19:09 - 13338973 _____ () C:\Program Files (x86)\ownCloud\libowncloudsync.dll
2013-09-25 03:40 - 2013-09-25 03:40 - 00106234 _____ () C:\Program Files (x86)\ownCloud\zlib1.dll
2013-09-24 05:55 - 2013-09-24 05:55 - 00173623 _____ () C:\Program Files (x86)\ownCloud\libpng15-15.dll
2014-02-13 19:09 - 2014-02-13 19:09 - 00896403 _____ () C:\Program Files (x86)\ownCloud\libocsync.dll
2013-11-13 20:55 - 2013-11-13 20:55 - 00180055 _____ () C:\Program Files (x86)\ownCloud\libneon-27.dll
2013-11-13 00:56 - 2013-11-13 00:56 - 00070251 _____ () C:\Program Files (x86)\ownCloud\libqtkeychain.dll
2013-09-24 06:15 - 2013-09-24 06:15 - 00566268 _____ () C:\Program Files (x86)\ownCloud\libsqlite3-0.dll
2013-09-25 10:09 - 2013-09-25 10:09 - 00190770 _____ () C:\Program Files (x86)\ownCloud\libproxy.dll
2013-09-24 05:54 - 2013-09-24 05:54 - 01169897 _____ () C:\Program Files (x86)\ownCloud\libxml2-2.dll
2013-09-24 21:56 - 2013-09-24 21:56 - 00064659 _____ () C:\Program Files (x86)\ownCloud\libmodman.dll
2013-09-24 06:10 - 2013-09-24 06:10 - 00218650 _____ () C:\Program Files (x86)\ownCloud\libjpeg-8.dll
2014-02-04 22:34 - 2012-11-21 11:20 - 00376832 _____ () C:\Program Files (x86)\1Password 4\js3215R.dll
2014-02-04 21:02 - 2012-06-25 10:41 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll
2014-02-04 22:08 - 2014-02-14 10:41 - 03578992 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
2013-11-21 10:14 - 2013-11-21 10:14 - 00080528 _____ () C:\Program Files (x86)\EMET 4.1\EMET_CE.DLL

==================== Safe Mode (whitelisted) ===================


==================== Disabled items from MSCONFIG ==============


==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (02/15/2014 08:20:12 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: java.exe, Version: 7.0.510.13, Zeitstempel: 0x52b26621
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0xc0000005
Fehleroffset: 0x032706d7
ID des fehlerhaften Prozesses: 0x1430
Startzeit der fehlerhaften Anwendung: 0xjava.exe0
Pfad der fehlerhaften Anwendung: java.exe1
Pfad des fehlerhaften Moduls: java.exe2
Berichtskennung: java.exe3
Vollständiger Name des fehlerhaften Pakets: java.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: java.exe5

Error: (02/15/2014 08:18:15 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: firefox.exe, Version: 27.0.1.5156, Zeitstempel: 0x52fc0faa
Name des fehlerhaften Moduls: jvm.dll, Version: 24.51.0.3, Zeitstempel: 0x52b27d88
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00001485
ID des fehlerhaften Prozesses: 0xe74
Startzeit der fehlerhaften Anwendung: 0xfirefox.exe0
Pfad der fehlerhaften Anwendung: firefox.exe1
Pfad des fehlerhaften Moduls: firefox.exe2
Berichtskennung: firefox.exe3
Vollständiger Name des fehlerhaften Pakets: firefox.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: firefox.exe5

Error: (02/15/2014 08:18:03 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: java.exe, Version: 7.0.510.13, Zeitstempel: 0x52b26621
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0x80000002
Fehleroffset: 0x84e6ec10
ID des fehlerhaften Prozesses: 0x15c0
Startzeit der fehlerhaften Anwendung: 0xjava.exe0
Pfad der fehlerhaften Anwendung: java.exe1
Pfad des fehlerhaften Moduls: java.exe2
Berichtskennung: java.exe3
Vollständiger Name des fehlerhaften Pakets: java.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: java.exe5

Error: (02/15/2014 08:17:48 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: java.exe, Version: 7.0.510.13, Zeitstempel: 0x52b26621
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0xc0000005
Fehleroffset: 0x030f06d7
ID des fehlerhaften Prozesses: 0x15c0
Startzeit der fehlerhaften Anwendung: 0xjava.exe0
Pfad der fehlerhaften Anwendung: java.exe1
Pfad des fehlerhaften Moduls: java.exe2
Berichtskennung: java.exe3
Vollständiger Name des fehlerhaften Pakets: java.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: java.exe5

Error: (02/15/2014 05:11:12 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: DVDFab.exe, Version: 9.1.2.5, Zeitstempel: 0x52df474e
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0xc0000005
Fehleroffset: 0x34756701
ID des fehlerhaften Prozesses: 0x15cc
Startzeit der fehlerhaften Anwendung: 0xDVDFab.exe0
Pfad der fehlerhaften Anwendung: DVDFab.exe1
Pfad des fehlerhaften Moduls: DVDFab.exe2
Berichtskennung: DVDFab.exe3
Vollständiger Name des fehlerhaften Pakets: DVDFab.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: DVDFab.exe5

Error: (02/15/2014 05:03:57 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: FabCheck.exe, Version: 1.0.2.5, Zeitstempel: 0x52d749cf
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0xc00000fd
Fehleroffset: 0x74bb04f8
ID des fehlerhaften Prozesses: 0x1190
Startzeit der fehlerhaften Anwendung: 0xFabCheck.exe0
Pfad der fehlerhaften Anwendung: FabCheck.exe1
Pfad des fehlerhaften Moduls: FabCheck.exe2
Berichtskennung: FabCheck.exe3
Vollständiger Name des fehlerhaften Pakets: FabCheck.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: FabCheck.exe5

Error: (02/15/2014 05:03:55 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: DVDFab.exe, Version: 9.1.2.5, Zeitstempel: 0x52df474e
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0xc0000005
Fehleroffset: 0x34756701
ID des fehlerhaften Prozesses: 0xd84
Startzeit der fehlerhaften Anwendung: 0xDVDFab.exe0
Pfad der fehlerhaften Anwendung: DVDFab.exe1
Pfad des fehlerhaften Moduls: DVDFab.exe2
Berichtskennung: DVDFab.exe3
Vollständiger Name des fehlerhaften Pakets: DVDFab.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: DVDFab.exe5

Error: (02/15/2014 05:02:02 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: DVDFab.exe, Version: 9.1.2.5, Zeitstempel: 0x52df474e
Name des fehlerhaften Moduls: unknown, Version: 0.0.0.0, Zeitstempel: 0x00000000
Ausnahmecode: 0xc0000005
Fehleroffset: 0x34756701
ID des fehlerhaften Prozesses: 0xf70
Startzeit der fehlerhaften Anwendung: 0xDVDFab.exe0
Pfad der fehlerhaften Anwendung: DVDFab.exe1
Pfad des fehlerhaften Moduls: DVDFab.exe2
Berichtskennung: DVDFab.exe3
Vollständiger Name des fehlerhaften Pakets: DVDFab.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: DVDFab.exe5

Error: (02/15/2014 04:32:13 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: firefox.exe, Version: 27.0.1.5156, Zeitstempel: 0x52fc0faa
Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.3.9600.16496, Zeitstempel: 0x52b3e015
Ausnahmecode: 0xe06d7363
Fehleroffset: 0x00012eec
ID des fehlerhaften Prozesses: 0x1348
Startzeit der fehlerhaften Anwendung: 0xfirefox.exe0
Pfad der fehlerhaften Anwendung: firefox.exe1
Pfad des fehlerhaften Moduls: firefox.exe2
Berichtskennung: firefox.exe3
Vollständiger Name des fehlerhaften Pakets: firefox.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: firefox.exe5

Error: (02/15/2014 04:03:58 PM) (Source: Application Error) (User: )
Description: Name der fehlerhaften Anwendung: firefox.exe, Version: 27.0.1.5156, Zeitstempel: 0x52fc0faa
Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.3.9600.16496, Zeitstempel: 0x52b3e015
Ausnahmecode: 0xe06d7363
Fehleroffset: 0x00012eec
ID des fehlerhaften Prozesses: 0x1a98
Startzeit der fehlerhaften Anwendung: 0xfirefox.exe0
Pfad der fehlerhaften Anwendung: firefox.exe1
Pfad des fehlerhaften Moduls: firefox.exe2
Berichtskennung: firefox.exe3
Vollständiger Name des fehlerhaften Pakets: firefox.exe4
Anwendungs-ID, die relativ zum fehlerhaften Paket ist: firefox.exe5


System errors:
=============
Error: (02/16/2014 05:53:14 PM) (Source: DCOM) (User: moritz-nb)
Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001}

Error: (02/16/2014 05:52:44 PM) (Source: DCOM) (User: moritz-nb)
Description: {1B1F472E-3221-4826-97DB-2C2324D389AE}

Error: (02/16/2014 11:12:09 AM) (Source: NetBT) (User: )
Description: Der Name "WORKGROUP      :1d" konnte nicht auf der Schnittstelle mit IP-Adresse 192.168.1.29
registriert werden. Der Computer mit IP-Adresse 192.168.1.1 hat nicht
zugelassen, dass dieser Computer diesen Namen verwendet.

Error: (02/15/2014 05:48:51 PM) (Source: DCOM) (User: moritz-nb)
Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001}

Error: (02/15/2014 04:31:09 PM) (Source: bowser) (User: )
Description: Der Suchdiensttreiber erhielt zu viele nicht erlaubte Datagramme vom Remotecomputer "O2BOX" zum Namen "MORITZ-NB" auf Transport "NetBT_Tcpip_{1813FF15-C604-49CD-ADB4-256B267E22F6}". Das Datagramm steht in den Daten.
Es werden keine weiteren Ereignisse erzeugt, solange die Rücksetzfrequenz nicht abgelaufen ist.

Error: (02/15/2014 10:27:10 AM) (Source: bowser) (User: )
Description: Der Suchdiensttreiber erhielt zu viele nicht erlaubte Datagramme vom Remotecomputer "O2BOX" zum Namen "MORITZ-NB" auf Transport "NetBT_Tcpip_{1813FF15-C604-49CD-ADB4-256B267E22F6}". Das Datagramm steht in den Daten.
Es werden keine weiteren Ereignisse erzeugt, solange die Rücksetzfrequenz nicht abgelaufen ist.

Error: (02/14/2014 11:42:49 PM) (Source: disk) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk2\DR2 gefunden.

Error: (02/14/2014 00:23:55 PM) (Source: DCOM) (User: moritz-nb)
Description: {1B1F472E-3221-4826-97DB-2C2324D389AE}

Error: (02/14/2014 00:23:24 PM) (Source: DCOM) (User: moritz-nb)
Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001}

Error: (02/14/2014 11:33:11 AM) (Source: disk) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk2\DR2 gefunden.


Microsoft Office Sessions:
=========================
Error: (02/15/2014 08:20:12 PM) (Source: Application Error)(User: )
Description: java.exe7.0.510.1352b26621unknown0.0.0.000000000c0000005032706d7143001cf2a82ef219752C:\Program Files (x86)\Java\jre7\bin\java.exeunknown304d6b91-9676-11e3-826b-c48508c6ad26

Error: (02/15/2014 08:18:15 PM) (Source: Application Error)(User: )
Description: firefox.exe27.0.1.515652fc0faajvm.dll24.51.0.352b27d88c000000500001485e7401cf2a6bcba327c1C:\Program Files (x86)\Mozilla Firefox\firefox.exeC:\PROGRA~2\Java\jre7\bin\client\jvm.dllead2cbed-9675-11e3-826b-c48508c6ad26

Error: (02/15/2014 08:18:03 PM) (Source: Application Error)(User: )
Description: java.exe7.0.510.1352b26621unknown0.0.0.0000000008000000284e6ec1015c001cf2a829b229f52C:\Program Files (x86)\Java\jre7\bin\java.exeunknowne3d4364c-9675-11e3-826b-c48508c6ad26

Error: (02/15/2014 08:17:48 PM) (Source: Application Error)(User: )
Description: java.exe7.0.510.1352b26621unknown0.0.0.000000000c0000005030f06d715c001cf2a829b229f52C:\Program Files (x86)\Java\jre7\bin\java.exeunknownda668432-9675-11e3-826b-c48508c6ad26

Error: (02/15/2014 05:11:12 PM) (Source: Application Error)(User: )
Description: DVDFab.exe9.1.2.552df474eunknown0.0.0.000000000c00000053475670115cc01cf2a688bb8cfe7C:\Program Files (x86)\DVDFab 9\DVDFab.exeunknownc99c7c8f-965b-11e3-826b-c48508c6ad26

Error: (02/15/2014 05:03:57 PM) (Source: Application Error)(User: )
Description: FabCheck.exe1.0.2.552d749cfunknown0.0.0.000000000c00000fd74bb04f8119001cf2a6788529aa9C:\Program Files (x86)\DVDFab 9\FabCheck.exeunknownc63facc4-965a-11e3-826a-c48508c6ad26

Error: (02/15/2014 05:03:55 PM) (Source: Application Error)(User: )
Description: DVDFab.exe9.1.2.552df474eunknown0.0.0.000000000c000000534756701d8401cf2a678761c874C:\Program Files (x86)\DVDFab 9\DVDFab.exeunknownc51b57e7-965a-11e3-826a-c48508c6ad26

Error: (02/15/2014 05:02:02 PM) (Source: Application Error)(User: )
Description: DVDFab.exe9.1.2.552df474eunknown0.0.0.000000000c000000534756701f7001cf2a67436b4b28C:\Program Files (x86)\DVDFab 9\DVDFab.exeunknown81a2d341-965a-11e3-826a-c48508c6ad26

Error: (02/15/2014 04:32:13 PM) (Source: Application Error)(User: )
Description: firefox.exe27.0.1.515652fc0faaKERNELBASE.dll6.3.9600.1649652b3e015e06d736300012eec134801cf2a62f90569e1C:\Program Files (x86)\Mozilla Firefox\firefox.exeC:\Windows\SYSTEM32\KERNELBASE.dll5720bdc3-9656-11e3-826a-c48508c6ad26

Error: (02/15/2014 04:03:58 PM) (Source: Application Error)(User: )
Description: firefox.exe27.0.1.515652fc0faaKERNELBASE.dll6.3.9600.1649652b3e015e06d736300012eec1a9801cf2a5e84c05b62C:\Program Files (x86)\Mozilla Firefox\firefox.exeC:\Windows\SYSTEM32\KERNELBASE.dll651dfdc3-9652-11e3-8269-c48508c6ad26


==================== Memory info =========================== 

Percentage of memory in use: 71%
Total physical RAM: 3797.46 MB
Available physical RAM: 1067.29 MB
Total Pagefile: 4501.46 MB
Available Pagefile: 2073.35 MB
Total Virtual: 131072 MB
Available Virtual: 131071.82 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:50 GB) (Free:23.08 GB) NTFS
Drive d: () (Fixed) (Total:68.05 GB) (Free:41.16 GB) NTFS
Drive e: () (Removable) (Total:29.71 GB) (Free:3.25 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 119 GB) (Disk ID: BF0E4DC8)

Partition: GPT Partition Type
========================================================
Disk: 1 (Size: 30 GB) (Disk ID: 38ED458E)
Partition 1: (Not Active) - (Size=30 GB) - (Type=0C)

==================== End Of Log ============================
         
__________________


Alt 16.02.2014, 23:01   #3
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows 8.1: Bitdefender Fund "gen.variant.symmi.[NUMMER]" Kann nicht entfernt werden. - Standard

Windows 8.1: Bitdefender Fund "gen.variant.symmi.[NUMMER]" Kann nicht entfernt werden.



Hallo und

Hast du noch weitere Logs (mit Funden)? Malwarebytes und/oder andere Virenscanner, sind die mal fündig geworden?

Ich frage deswegen nach => http://www.trojaner-board.de/125889-...tml#post941520

Bitte keine neuen Virenscans machen sondern erst nur schon vorhandene Logs in CODE-Tags posten!
Relevant sind nur Logs der letzten 7 Tage bzw. seitdem das Problem besteht!




Lesestoff:
Posten in CODE-Tags
Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
  • Markiere das gesamte Logfile (geht meist mit STRG+A) und kopiere es in die Zwischenablage mit STRG+C.
  • Klicke im Editor auf das #-Symbol. Es erscheinen zwei Klammerausdrücke [CODE] [/CODE].
  • Setze den Curser zwischen die CODE-Tags und drücke STRG+V.
  • Klicke auf Erweitert/Vorschau, um so prüfen, ob du es richtig gemacht hast. Wenn alles stimmt ... auf Antworten.
__________________
__________________

Antwort

Themen zu Windows 8.1: Bitdefender Fund "gen.variant.symmi.[NUMMER]" Kann nicht entfernt werden.
administrator, adobe, adobe flash player, antivirus, browser, defender, duplicati, explorer, firefox, firewall, flash player, focus, google, mozilla, realtek, registry, scan, secunia psi, security, services.exe, software, svchost.exe, system, temp, usb, windows, windows xp, winlogon.exe




Ähnliche Themen: Windows 8.1: Bitdefender Fund "gen.variant.symmi.[NUMMER]" Kann nicht entfernt werden.


  1. Fund von Gen:Variant.Symmi.57621 (B)
    Plagegeister aller Art und deren Bekämpfung - 16.11.2015 (9)
  2. "not-a-virus:AdWare.Win64.Agent.y" - kann aber nicht entfernt werden
    Log-Analyse und Auswertung - 21.10.2015 (24)
  3. Fehleranzeige in Windows 7 : " Diese Seite kann nicht angezeigt werden "
    Log-Analyse und Auswertung - 20.07.2014 (3)
  4. Win 8.1 64x "awsomehp" kann nicht entfernt werden
    Log-Analyse und Auswertung - 20.02.2014 (7)
  5. "Server ist ausgelastet" - "Dieser Vorgang kann nicht ausgeführt werden,da die andere Anwendung aktiv ist.
    Log-Analyse und Auswertung - 29.11.2013 (23)
  6. "Server ist ausgelastet" - "Dieser Vorgang kann nicht ausgeführt werden,da die andere Anwendung aktiv ist.
    Diskussionsforum - 30.07.2013 (7)
  7. "Webseite kann nicht angezeigt werden" bei Windows 7 Boot
    Plagegeister aller Art und deren Bekämpfung - 03.12.2012 (2)
  8. "Diese Webseite kann nicht angezeigt werden" - Windows Vista 32 bit
    Plagegeister aller Art und deren Bekämpfung - 25.11.2012 (4)
  9. "Webseite kann nicht angezeigt werden" bei Windows 7 Boot
    Plagegeister aller Art und deren Bekämpfung - 29.10.2012 (25)
  10. "Mit windows update kann derzeit nicht nach updates gesucht werden" / Firewall nicht aktivierbar
    Plagegeister aller Art und deren Bekämpfung - 05.10.2012 (72)
  11. "C:\Windows\assembly\GAC_MSIL\Desktop.ini" kann nicht entfernt werden!
    Log-Analyse und Auswertung - 11.04.2012 (2)
  12. Firefox und IE öffnen automatisch "mediashifting" / Windows-Firewall kann nicht aktiviert werden
    Plagegeister aller Art und deren Bekämpfung - 18.02.2012 (19)
  13. Rechner lahmgelegt durch "kb.dll" - Wie kann der Trojaner entfernt werden? Arbeiten kaum möglich :-(
    Plagegeister aller Art und deren Bekämpfung - 07.01.2011 (17)
  14. "Trojan.Vundo-Variant/F" in Datei "C:\Windows\Syswow64\avsredirect.dll" + vorher weitere Schädlinge
    Plagegeister aller Art und deren Bekämpfung - 19.12.2010 (15)
  15. Nach Entfernung von Antivir SP findet antivir "zydxc.sys" - kann nicht entfernt werden
    Plagegeister aller Art und deren Bekämpfung - 17.08.2010 (26)
  16. "Trojan.Agent" kann nicht entfernt werden
    Plagegeister aller Art und deren Bekämpfung - 06.11.2009 (13)
  17. Trojaner "Trojan-Downloader.JS.Psyme.ap" kann nicht entfernt werden...
    Mülltonne - 05.06.2005 (0)

Zum Thema Windows 8.1: Bitdefender Fund "gen.variant.symmi.[NUMMER]" Kann nicht entfernt werden. - Guten Abend! Vor ein paar Tagen meldete sich mein Bitdefender AntiVirus Plus 2014 und meldete folgenden Fund: Eine .tmp Datei im Temp - Folder meines Benutzers sei mit "gen.variant.symmi.XXXX" infiziert. - Windows 8.1: Bitdefender Fund "gen.variant.symmi.[NUMMER]" Kann nicht entfernt werden....
Archiv
Du betrachtest: Windows 8.1: Bitdefender Fund "gen.variant.symmi.[NUMMER]" Kann nicht entfernt werden. auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.