Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Traffic ausgelastet - Schadsoftware oder anderes Problem? #Part 2

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 09.05.2014, 19:42   #1
newTBuser
 
Traffic ausgelastet - Schadsoftware oder anderes Problem? #Part 2 - Standard

Traffic ausgelastet - Schadsoftware oder anderes Problem? #Part 2



Hallo TB-Gemeinde,

da sich mein ursprünglicher Thread inzwischen um die Bitte einer Logfile-Auswertung ergänzt hat mache ich hier noch einen Thread auf.

http://www.trojaner-board.de/153602-...s-problem.html

Problem ist noch immer das alte, bitte lest doch in oben verlinktem Beitrag nach worum es geht und postet dann hier.

Danke

Alt 10.05.2014, 10:30   #2
schrauber
/// the machine
/// TB-Ausbilder
 

Traffic ausgelastet - Schadsoftware oder anderes Problem? #Part 2 - Standard

Traffic ausgelastet - Schadsoftware oder anderes Problem? #Part 2



hi,

Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)

__________________

__________________

Alt 13.05.2014, 22:29   #3
newTBuser
 
Traffic ausgelastet - Schadsoftware oder anderes Problem? #Part 2 - Standard

Traffic ausgelastet - Schadsoftware oder anderes Problem? #Part 2



War schon in oben verlinktem Beitrag aber ich poste es nochmal:


FRST Logfile:

FRST Logfile:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 08-05-2014 02
Ran by Lex (administrator) on LEX-PC on 08-05-2014 21:07:52
Running from C:\Users\Lex\Downloads
Windows 7 Ultimate Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal



==================== Processes (Whitelisted) =================

(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgrsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgcsrva.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgfws.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
() C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareTray.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Foxit Corporation) C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe
() C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareService.exe
(SeriousBit) C:\Program Files\NetBalancer\SeriousBit.NetBalancer.Service.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler.exe
() C:\Program Files (x86)\AVG Secure Search\vprot.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgui.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgnsa.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgemca.exe
() C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler64.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgcsrva.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
(AVG Secure Search) C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.0\ToolbarUpdater.exe
() C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.0\loggingserver.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(PortableApps.com) C:\Users\Lex\Desktop\Neuer Ordner\GoogleChromePortable\GoogleChromePortable.exe
(Google Inc.) C:\Users\Lex\Desktop\Neuer Ordner\GoogleChromePortable\App\Chrome-bin\chrome.exe
(Google Inc.) C:\Users\Lex\Desktop\Neuer Ordner\GoogleChromePortable\App\Chrome-bin\chrome.exe
(Google Inc.) C:\Users\Lex\Desktop\Neuer Ordner\GoogleChromePortable\App\Chrome-bin\chrome.exe
(Google Inc.) C:\Users\Lex\Desktop\Neuer Ordner\GoogleChromePortable\App\Chrome-bin\chrome.exe
(Google Inc.) C:\Users\Lex\Desktop\Neuer Ordner\GoogleChromePortable\App\Chrome-bin\chrome.exe
(Google Inc.) C:\Users\Lex\Desktop\Neuer Ordner\GoogleChromePortable\App\Chrome-bin\chrome.exe
(SeriousBit) D:\Program Files\NetBalancer\SeriousBit.NetBalancer.UI.exe
(Trend Micro Inc.) C:\Users\Lex\Downloads\HijackThis.exe
(Google Inc.) C:\Users\Lex\Desktop\Neuer Ordner\GoogleChromePortable\App\Chrome-bin\chrome.exe
() D:\Users\Alex\Desktop\DisConnect.exe
(Google Inc.) C:\Users\Lex\Desktop\Neuer Ordner\GoogleChromePortable\App\Chrome-bin\chrome.exe
(Google Inc.) C:\Users\Lex\Desktop\Neuer Ordner\GoogleChromePortable\App\Chrome-bin\chrome.exe
(Google Inc.) C:\Users\Lex\Desktop\Neuer Ordner\GoogleChromePortable\App\Chrome-bin\chrome.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13662936 2013-10-24] (Realtek Semiconductor)
HKLM\...\Run: [] => [X]
HKLM\...\Run: [AdAwareTray] => C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareTray.exe [4114264 2014-01-23] ()
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642656 2013-03-28] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [vProt] => C:\Program Files (x86)\AVG Secure Search\vprot.exe [2557976 2014-04-29] ()
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\AVG2014\avgui.exe [5180432 2014-04-06] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [amd_dc_opt] => C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe [77824 2008-07-22] (AMD)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101584 2014-04-25] (Safer-Networking Ltd.)
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
HKU\S-1-5-21-1850565094-2237497682-2204916963-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [1825984 2014-04-24] (Valve Corporation)
HKU\S-1-5-21-1850565094-2237497682-2204916963-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd)
HKU\S-1-5-21-1850565094-2237497682-2204916963-1000\...\Run: [EPSON Stylus D78 Series] => C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIBGE.EXE [213504 2007-10-29] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-1850565094-2237497682-2204916963-1000\...\Run: [Spybot-S&D Cleaning] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [4566984 2014-04-25] (Safer-Networking Ltd.)
HKU\S-1-5-21-1850565094-2237497682-2204916963-1000\...\MountPoints2: {04c1e4c0-4a93-11e2-a2d1-806e6f6e6963} - K:\setup.exe
HKU\S-1-5-21-1850565094-2237497682-2204916963-1000\...\MountPoints2: {3673e7dc-35ba-11e3-a9aa-6cf049034604} - H:\AutoRun.exe
HKU\S-1-5-21-1850565094-2237497682-2204916963-1000\...\MountPoints2: {ea383f96-f2f5-11e2-904d-6cf049034604} - H:\iLinker.exe

==================== Internet (Whitelisted) ====================

ProxyServer: localhost:8080
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x1309AA8F4C5ECF01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: No Name - {95B7759C-8C7F-4BF1-B163-73684A933233} -  No File
BHO-x32: Free Download Manager - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files (x86)\Free Download Manager\iefdm2.dll (FreeDownloadManager.ORG)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM-x32 - No Name - {95B7759C-8C7F-4BF1-B163-73684A933233} -  No File
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Handler-x32: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\18.1.0\ViProtocol.dll (AVG Secure Search)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1

FireFox:
========
FF ProfilePath: C:\Users\Lex\AppData\Roaming\Mozilla\Firefox\C:\Users\Lex\AppData\Roaming\Mozilla\Profiles\jzfrxa7d.Standard-Benutzer
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_206.dll ()
FF Plugin: @microsoft.com/GENUINE - C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.0.6 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.0.7 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.4 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_206.dll ()
FF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin - C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\18.1.0\\npsitesafety.dll No File
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll (Ubisoft)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\avg-secure-search.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF HKLM-x32\...\Firefox\Extensions: [avg@toolbar] - C:\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443
FF Extension: AVG Security Toolbar - C:\ProgramData\AVG Secure Search\FireFoxExt\18.1.0.443 [2014-04-29]

==================== Services (Whitelisted) =================

R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984 2013-03-28] (Advanced Micro Devices, Inc.)
R2 avgfws; C:\Program Files (x86)\AVG\AVG2014\avgfws.exe [1473280 2014-04-03] (AVG Technologies CZ, s.r.o.)
R2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe [3645456 2014-04-18] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe [291912 2014-03-27] (AVG Technologies CZ, s.r.o.)
R2 FoxitCloudUpdateService; C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe [239680 2014-02-19] (Foxit Corporation)
R2 LavasoftAdAwareService11; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareService.exe [702744 2014-01-23] ()
R2 NetBalancerService; C:\Program Files\NetBalancer\SeriousBit.NetBalancer.Service.exe [10240 2012-08-03] (SeriousBit)
R2 PassThru Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [167424 2012-12-07] ()
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738200 2014-04-25] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2081752 2014-04-25] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)
R2 vToolbarUpdater18.1.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.0\ToolbarUpdater.exe [1801240 2014-04-29] (AVG Secure Search)

==================== Drivers (Whitelisted) ====================

R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [153368 2014-03-27] (AVG Technologies CZ, s.r.o.)
R1 Avgfwfd; C:\Windows\System32\DRIVERS\avgfwd6a.sys [57144 2013-09-26] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [237336 2014-04-18] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [192792 2014-03-27] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [236824 2014-03-27] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [324376 2014-03-27] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [130840 2014-03-31] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [32536 2014-03-27] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [274200 2014-03-31] (AVG Technologies CZ, s.r.o.)
R1 avgtp; C:\Windows\system32\drivers\avgtpx64.sys [50464 2014-04-29] (AVG Technologies)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-01-28] (Disc Soft Ltd)
R3 Nbdrv; C:\Windows\System32\DRIVERS\nbdrv.sys [41256 2011-05-18] (SeriousBit)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [381440 2013-11-10] (Duplex Secure Ltd.)
R3 Trufos; C:\Windows\System32\DRIVERS\Trufos.sys [329800 2013-07-17] (BitDefender S.R.L.)
U3 a4ns7mbf; C:\Windows\System32\Drivers\a4ns7mbf.sys [0 ] (Advanced Micro Devices)
S3 ATICDSDr; \??\C:\Users\Lex\AppData\Local\Temp\ATICDSDr.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
S3 X6va017; \??\C:\Windows\SysWOW64\Drivers\X6va017 [X]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-05-08 21:07 - 2014-05-08 21:07 - 00014877 _____ () C:\Users\Lex\Downloads\FRST.txt
2014-05-08 21:03 - 2014-05-08 21:07 - 00000000 ____D () C:\FRST
2014-05-08 21:02 - 2014-05-08 21:03 - 02063872 _____ (Farbar) C:\Users\Lex\Downloads\FRST64.exe
2014-05-08 20:21 - 2014-05-08 20:21 - 00010325 _____ () C:\Users\Lex\Desktop\hijackthis.log
2014-05-04 18:23 - 2014-03-06 10:15 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-05-04 18:15 - 2014-05-04 18:15 - 00001395 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2014-05-04 18:15 - 2014-05-04 18:15 - 00001383 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2014-05-04 18:15 - 2014-05-04 18:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
2014-05-04 18:15 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe
2014-05-04 18:14 - 2014-05-08 18:44 - 00000168 _____ () C:\Windows\setupact.log
2014-05-04 18:14 - 2014-05-04 18:14 - 00003096 _____ () C:\Windows\PFRO.log
2014-05-04 18:14 - 2014-05-04 18:14 - 00000000 _____ () C:\Windows\setuperr.log
2014-05-04 18:12 - 2014-05-04 18:12 - 00000085 _____ () C:\Windows\wininit.ini
2014-05-04 18:08 - 2014-05-04 18:12 - 46392680 _____ (Safer-Networking Ltd. ) C:\Users\Lex\Downloads\spybot-2.3.exe
2014-05-04 14:12 - 2014-05-04 14:12 - 00023636 _____ () C:\Users\Lex\Downloads\heartbleed_ext-3.0-fx.xpi.zip
2014-05-04 01:51 - 2014-05-08 18:44 - 00002305 _____ () C:\Users\Public\Desktop\Ad-Aware Antivirus.lnk
2014-05-04 01:51 - 2014-05-04 01:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ad-Aware Antivirus
2014-05-04 01:46 - 2014-05-04 01:46 - 00000000 ____D () C:\Program Files\Lavasoft
2014-05-04 01:45 - 2014-05-04 01:45 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\Lavasoft
2014-05-04 01:41 - 2014-05-04 01:41 - 00003126 _____ () C:\Windows\System32\Tasks\{D43BBE67-9423-4B58-9961-F0F8ADDD0629}
2014-05-04 01:41 - 2014-05-04 01:41 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\LavasoftStatistics
2014-05-04 01:40 - 2014-05-04 01:40 - 00000000 ____D () C:\Program Files\Common Files\Lavasoft
2014-05-04 01:37 - 2014-05-04 01:37 - 01727624 _____ () C:\Users\Lex\Downloads\Adaware_Installer.exe
2014-05-04 01:37 - 2014-05-04 01:37 - 00000000 ____D () C:\ProgramData\Lavasoft
2014-05-04 01:25 - 2014-05-04 01:49 - 00000000 ____D () C:\Users\Lex\Downloads\backups
2014-05-01 19:56 - 2014-05-01 19:56 - 00004096 _____ () C:\Users\Lex\Documents\mm.db
2014-05-01 19:49 - 2014-05-01 19:49 - 00004096 _____ () C:\Users\Lex\Documents\öö.db
2014-05-01 19:44 - 2014-05-08 21:07 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\NetSpeedMonitor
2014-05-01 19:43 - 2014-05-01 19:43 - 00000000 ____D () C:\Program Files\NetSpeedMonitor
2014-05-01 19:42 - 2014-05-01 19:42 - 03652608 _____ () C:\Users\Lex\Downloads\netspeedmonitor_2_5_4_0_x64_setup.msi
2014-05-01 19:35 - 2014-03-06 23:53 - 02925760 _____ (Sysinternals - www.sysinternals.com) C:\Users\Lex\Desktop\procexp.exe
2014-05-01 19:29 - 2014-05-01 19:29 - 01243655 _____ () C:\Users\Lex\Downloads\ProcessExplorer_16.02.zip
2014-05-01 19:28 - 2014-05-01 19:28 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-05-01 19:28 - 2014-05-01 19:28 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-05-01 16:48 - 2014-05-01 16:19 - 00000848 _____ () C:\Users\Lex\Documents\indexfile.txt
2014-05-01 16:46 - 2014-05-01 16:46 - 00001163 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-05-01 16:46 - 2014-05-01 16:46 - 00001151 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-05-01 16:44 - 2014-05-01 16:44 - 00283376 _____ (Mozilla) C:\Users\Lex\Downloads\Firefox Setup Stub 29.0.exe
2014-05-01 16:36 - 2014-05-01 16:36 - 00001479 _____ () C:\Users\Lex\Desktop\GoogleChromePortable - Verknüpfung.lnk
2014-05-01 16:32 - 2013-12-25 01:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2014-05-01 16:32 - 2013-12-25 00:48 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-05-01 16:32 - 2013-11-26 10:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2014-05-01 16:32 - 2013-11-23 00:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2014-05-01 16:27 - 2014-05-01 16:29 - 00189473 _____ () C:\Users\Lex\Downloads\fw_speedport_w500v_v1.37.bin.part
2014-05-01 16:19 - 2014-05-01 16:19 - 13060357 _____ () C:\Users\Lex\Documents\Firefox 29.0 (de) - 2014-05-01.pcv
2014-05-01 16:19 - 2014-05-01 16:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MozBackup
2014-05-01 16:19 - 2014-05-01 16:19 - 00000000 ____D () C:\Program Files (x86)\MozBackup
2014-05-01 16:18 - 2014-05-01 16:18 - 00000000 ____D () C:\Users\Lex\Desktop\Neuer Ordner
2014-05-01 16:16 - 2014-05-01 16:18 - 01035926 _____ () C:\Users\Lex\Downloads\MozBackup-1.5.1-EN.exe
2014-05-01 16:16 - 2014-05-01 16:17 - 01416144 _____ (PortableApps.com) C:\Users\Lex\Downloads\GoogleChromePortable_34.0.1847.131_online.paf.exe
2014-04-29 20:21 - 2014-04-29 20:26 - 07995486 _____ () C:\Users\Lex\Downloads\qotrdecoder-win32-0.0.247-r1132.zip
2014-04-29 17:23 - 2014-04-29 17:23 - 00001112 _____ () C:\Users\Lex\Downloads\Attack_the_Block_14.04.13_22-25_pro7_100_TVOON_DE.mpg.HQ.avi.cutlist
2014-04-29 16:44 - 2014-04-29 16:45 - 00000000 ____D () C:\ProgramData\AVG Secure Search
2014-04-28 00:02 - 2014-04-28 00:02 - 00000000 __SHD () C:\Users\Lex\AppData\Local\EmieUserList
2014-04-28 00:02 - 2014-04-28 00:02 - 00000000 __SHD () C:\Users\Lex\AppData\Local\EmieSiteList
2014-04-26 18:40 - 2009-06-10 23:00 - 00000824 _____ () C:\Windows\system32\Drivers\etc\hosts.20140426-184007.backup
2014-04-26 18:23 - 2014-04-26 18:23 - 00000110 ___RH () C:\Users\Lex\Downloads\Stinger.opt
2014-04-26 18:23 - 2014-04-26 18:23 - 00000000 ____D () C:\Quarantine
2014-04-26 18:14 - 2014-04-26 18:23 - 00000000 ____D () C:\Program Files (x86)\stinger
2014-04-26 18:14 - 2014-04-26 18:15 - 00000852 _____ () C:\Users\Lex\Downloads\Stinger_26042014_181415.html
2014-04-26 18:13 - 2014-04-26 18:13 - 10642792 _____ (McAfee Inc) C:\Users\Lex\Downloads\stinger32.exe
2014-04-26 17:48 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE
2014-04-26 17:41 - 2014-04-26 17:41 - 23549440 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 17387008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 13551104 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 11745792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 05784064 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 04254720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 02767360 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-04-26 17:41 - 2014-04-26 17:41 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-04-26 17:41 - 2014-04-26 17:41 - 02260480 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 02178048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 02043904 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-04-26 17:41 - 2014-04-26 17:41 - 01967104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-04-26 17:41 - 2014-04-26 17:41 - 01789440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 01400832 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 01143808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00628736 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2014-04-26 17:41 - 2014-04-26 17:41 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2014-04-26 17:41 - 2014-04-26 17:41 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-04-26 17:41 - 2014-04-26 17:41 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-04-26 17:41 - 2014-04-26 17:41 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00244224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-04-26 17:41 - 2014-04-26 17:41 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2014-04-26 17:41 - 2014-04-26 17:41 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-04-26 17:27 - 2014-04-26 17:27 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-04-26 17:27 - 2014-04-26 17:27 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2014-04-26 17:27 - 2014-04-26 17:27 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2014-04-26 17:27 - 2014-04-26 17:27 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2014-04-26 17:27 - 2014-04-26 17:27 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2014-04-26 17:27 - 2014-04-26 17:27 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2014-04-26 17:27 - 2014-04-26 17:27 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2014-04-26 17:27 - 2014-04-26 17:27 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2014-04-26 17:27 - 2014-04-26 17:27 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2014-04-26 17:26 - 2014-04-26 17:26 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2014-04-26 17:26 - 2014-04-26 17:26 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2014-04-26 17:26 - 2014-04-26 17:26 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-04-26 17:22 - 2014-04-26 17:22 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2014-04-26 17:22 - 2014-04-26 17:22 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2014-04-26 17:19 - 2014-04-26 17:19 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking
2014-04-26 17:16 - 2014-05-04 18:15 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2014-04-26 17:16 - 2014-05-04 18:15 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-04-26 17:03 - 2014-04-26 17:07 - 11582218 _____ () C:\Users\Lex\Downloads\stinger64-12.1.0.877.exe
2014-04-26 16:59 - 2014-05-08 20:19 - 00010325 _____ () C:\Users\Lex\Downloads\hijackthis.log
2014-04-26 16:57 - 2014-04-26 16:57 - 00585431 _____ () C:\Users\Lex\Downloads\AntiBundestrojaner.zip
2014-04-26 16:55 - 2014-04-26 16:55 - 00388608 _____ (Trend Micro Inc.) C:\Users\Lex\Downloads\HijackThis.exe
2014-04-26 16:53 - 2014-04-26 17:10 - 40658208 _____ (Safer-Networking Ltd. ) C:\Users\Lex\Downloads\spybot-2.2.exe
2014-04-26 16:50 - 2014-04-26 16:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-04-26 16:50 - 2014-04-14 20:13 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-04-26 16:50 - 2014-04-14 20:05 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-04-26 16:50 - 2014-04-14 20:05 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-04-26 16:50 - 2014-04-14 20:04 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-04-26 16:49 - 2014-04-26 16:50 - 00005449 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_55-b14.log
2014-04-26 16:48 - 2014-04-26 16:49 - 00000000 ____D () C:\Windows\system32\MRT
2014-04-26 16:42 - 2014-04-26 16:42 - 00002054 _____ () C:\Users\Public\Desktop\Foxit Reader.lnk
2014-04-26 16:42 - 2014-04-26 16:42 - 00000000 ____D () C:\Users\Public\Foxit Software
2014-04-26 16:42 - 2014-04-26 16:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader
2014-04-26 15:18 - 2013-07-09 07:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2014-04-26 15:18 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2014-04-26 15:18 - 2013-02-15 08:08 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2014-04-26 15:18 - 2013-02-15 08:06 - 03717632 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-04-26 15:18 - 2013-02-15 08:02 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll
2014-04-26 15:18 - 2013-02-15 06:37 - 03217408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2014-04-26 15:18 - 2013-02-15 06:34 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
2014-04-26 15:18 - 2013-02-15 05:25 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2014-04-26 15:17 - 2014-03-04 11:44 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2014-04-26 15:17 - 2014-03-04 11:44 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2014-04-26 15:17 - 2014-03-04 11:44 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2014-04-26 15:17 - 2014-03-04 11:44 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2014-04-26 15:17 - 2014-03-04 11:44 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2014-04-26 15:17 - 2014-03-04 11:17 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2014-04-26 15:17 - 2014-03-04 11:16 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2014-04-26 15:17 - 2014-03-04 11:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2014-04-26 15:17 - 2014-03-04 11:16 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2014-04-26 15:17 - 2014-03-04 10:09 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2014-04-26 15:17 - 2014-03-04 10:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2014-04-26 15:17 - 2013-10-12 04:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2014-04-26 15:17 - 2013-10-12 04:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2014-04-26 15:17 - 2013-10-12 04:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2014-04-26 15:17 - 2013-10-12 04:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2014-04-26 15:17 - 2013-10-12 04:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2014-04-26 15:17 - 2013-10-05 22:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2014-04-26 15:17 - 2013-10-05 21:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2014-04-26 15:17 - 2013-08-02 04:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2014-04-26 15:17 - 2013-08-02 04:13 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:50 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2014-04-26 15:17 - 2013-08-02 02:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 02:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 02:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 02:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2014-04-26 15:17 - 2013-07-09 07:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2014-04-26 15:17 - 2013-07-09 07:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2014-04-26 15:17 - 2013-07-09 06:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2014-04-26 15:17 - 2013-07-09 06:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2014-04-26 15:17 - 2013-02-27 08:02 - 00111448 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2014-04-26 15:17 - 2013-02-27 07:48 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2014-04-26 15:17 - 2013-02-27 07:47 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2014-04-26 15:17 - 2013-02-27 06:49 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2014-04-26 15:16 - 2013-11-12 04:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-04-26 15:16 - 2013-11-12 04:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-04-26 15:16 - 2013-09-25 04:26 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-04-26 15:16 - 2013-09-25 04:26 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2014-04-26 15:16 - 2013-09-25 04:23 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2014-04-26 15:16 - 2013-09-25 04:23 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2014-04-26 15:16 - 2013-09-25 04:23 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2014-04-26 15:16 - 2013-09-25 04:22 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-04-26 15:16 - 2013-09-25 04:21 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-04-26 15:16 - 2013-09-25 04:21 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-04-26 15:16 - 2013-09-25 03:58 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-04-26 15:16 - 2013-09-25 03:57 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-04-26 15:16 - 2013-09-25 03:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-04-26 15:16 - 2013-09-25 03:56 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2014-04-26 15:16 - 2013-09-25 03:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2014-04-26 15:16 - 2013-07-04 14:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2014-04-26 15:15 - 2013-05-13 07:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll
2014-04-26 15:15 - 2013-05-13 05:43 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe
2014-04-26 15:15 - 2013-05-13 05:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe
2014-04-26 15:15 - 2013-05-13 05:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll
2014-04-26 15:14 - 2013-08-02 04:12 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2014-04-26 15:14 - 2013-08-02 04:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2014-04-26 15:14 - 2013-08-02 03:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2014-04-26 15:14 - 2013-08-02 02:59 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2014-04-26 15:14 - 2013-07-26 04:24 - 14172672 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-04-26 15:14 - 2013-07-26 04:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2014-04-26 15:14 - 2013-07-26 03:55 - 12872704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2014-04-26 15:14 - 2013-07-26 03:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll
2014-04-26 15:13 - 2013-07-25 11:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2014-04-26 15:13 - 2013-07-25 10:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2014-04-26 15:13 - 2013-04-12 16:45 - 01656680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2014-04-26 15:10 - 2013-10-04 04:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2014-04-26 15:10 - 2013-10-04 03:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2014-04-26 15:10 - 2013-06-26 00:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2014-04-26 15:10 - 2012-11-29 00:56 - 00054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys
2014-04-26 15:10 - 2012-11-29 00:56 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll
2014-04-26 15:10 - 2012-11-29 00:56 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
2014-04-26 15:10 - 2012-11-01 07:43 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2014-04-26 15:10 - 2012-11-01 06:47 - 01389568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2014-04-26 15:09 - 2013-09-28 03:09 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2014-04-26 15:09 - 2013-07-09 07:51 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2014-04-26 15:09 - 2013-07-09 06:52 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2014-04-26 15:09 - 2013-07-03 06:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2014-04-26 15:09 - 2013-07-03 06:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2014-04-26 15:09 - 2013-01-03 08:00 - 00288088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2014-04-26 15:09 - 2012-08-22 20:12 - 00376688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2014-04-26 15:08 - 2014-02-07 03:23 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-04-26 15:08 - 2014-02-04 04:32 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2014-04-26 15:08 - 2014-02-04 04:04 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2014-04-26 15:08 - 2013-10-12 04:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2014-04-26 15:08 - 2013-10-12 04:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2014-04-26 15:08 - 2013-10-12 04:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx
2014-04-26 15:08 - 2013-10-12 04:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2014-04-26 15:08 - 2013-10-12 03:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2014-04-26 15:08 - 2013-10-12 03:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2014-04-26 15:08 - 2013-10-12 03:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe
2014-04-26 15:08 - 2013-10-12 03:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe
2014-04-26 15:08 - 2013-10-03 04:23 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-04-26 15:08 - 2013-10-03 04:00 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-04-26 15:08 - 2013-04-26 07:51 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2014-04-26 15:08 - 2013-04-26 06:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll
2014-04-26 15:08 - 2013-02-12 06:12 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys
2014-04-26 15:07 - 2013-12-06 04:30 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-04-26 15:07 - 2013-12-06 04:30 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-04-26 15:07 - 2013-12-06 04:02 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-04-26 15:07 - 2013-12-06 04:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-04-26 15:07 - 2013-10-19 04:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2014-04-26 15:07 - 2013-10-19 03:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2014-04-26 15:07 - 2013-07-04 14:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2014-04-26 15:07 - 2013-07-04 13:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2014-04-26 15:06 - 2014-01-29 04:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2014-04-26 15:06 - 2014-01-29 04:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2014-04-26 15:06 - 2013-11-27 03:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2014-04-26 15:06 - 2013-11-27 03:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2014-04-26 15:06 - 2013-11-27 03:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2014-04-26 15:06 - 2013-11-27 03:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2014-04-26 15:06 - 2013-11-27 03:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2014-04-26 15:06 - 2013-11-27 03:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2014-04-26 15:06 - 2013-11-27 03:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2014-04-26 15:06 - 2013-08-01 14:09 - 00983488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2014-04-26 15:06 - 2013-07-20 12:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2014-04-26 15:06 - 2013-07-20 12:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-04-26 15:06 - 2013-07-12 12:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2014-04-26 15:06 - 2013-06-06 07:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2014-04-26 15:06 - 2013-06-06 07:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2014-04-26 15:06 - 2013-06-06 07:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2014-04-26 15:06 - 2013-06-06 07:47 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2014-04-26 15:06 - 2013-06-06 06:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2014-04-26 15:06 - 2013-06-06 06:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2014-04-26 15:06 - 2013-06-06 06:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2014-04-26 15:06 - 2013-06-06 05:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2014-04-26 15:06 - 2013-06-06 05:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2014-04-26 15:06 - 2013-06-06 05:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2014-04-26 15:06 - 2013-04-10 08:01 - 00265064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2014-04-26 15:06 - 2011-02-03 13:25 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2014-04-26 15:05 - 2012-11-23 05:13 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe
2014-04-26 15:04 - 2013-06-15 06:35 - 01111552 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-04-26 15:04 - 2013-06-15 06:32 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2014-04-25 00:44 - 2014-04-25 00:44 - 00013775 _____ () C:\Users\Lex\Downloads\Ihr Gutschein.html
2014-04-21 18:05 - 2014-04-21 18:05 - 00000000 ____D () C:\Users\Lex\Desktop\GodMode.{ED7BA470-8E54-465E-825C-99712043E01C}
2014-04-19 14:03 - 2014-04-19 14:04 - 01134665 _____ () C:\Users\Lex\Downloads\Fachaufgabe.7z
2014-04-18 15:01 - 2014-04-18 15:01 - 00237336 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsdrivera.sys
2014-04-18 13:48 - 2014-04-18 13:49 - 16926908 _____ () C:\Users\Lex\Downloads\CityMaps2Go-playLite-release.apk
2014-04-18 01:28 - 2014-04-18 01:30 - 23963686 _____ () C:\Users\Lex\Downloads\hdnezwbshdhz6574jf764hf637dh.zip
2014-04-17 22:25 - 2014-04-25 19:54 - 00000000 ____D () C:\CFLog
2014-04-17 22:25 - 2014-04-17 22:28 - 00000000 ____D () C:\Users\Lex\Documents\Cross Fire
2014-04-17 21:40 - 2014-04-17 21:40 - 00000828 _____ () C:\Users\Lex\Desktop\Crossfire Europe.lnk
2014-04-17 21:40 - 2014-04-17 21:40 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Crossfire Europe
2014-04-17 21:40 - 2014-04-17 21:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crossfire Europe
2014-04-17 21:36 - 2014-04-17 21:36 - 00000000 ____D () C:\SG Interactive
2014-04-17 19:56 - 2014-04-17 19:56 - 00000176 _____ () C:\console.log
2014-04-17 19:56 - 2014-04-17 19:56 - 00000000 ____D () C:\Users\Lex\Desktop\CrossFire
2014-04-17 19:50 - 2014-04-17 19:51 - 02523688 _____ () C:\Users\Lex\Downloads\Crossfire_downloader.exe
2014-04-16 23:30 - 2014-04-16 23:31 - 00000000 ____D () C:\Users\Lex\Documents\LearningModules
2014-04-16 23:30 - 2014-04-16 23:30 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\LearnLift
2014-04-16 23:30 - 2014-04-16 23:30 - 00000000 ____D () C:\Users\Lex\AppData\Local\LearnLift
2014-04-16 23:21 - 2014-04-16 23:21 - 01062288 _____ () C:\Users\Lex\Downloads\MemoryLifter-lnstall.exe
2014-04-16 23:20 - 2014-04-16 23:20 - 00000000 _____ () C:\Users\Lex\Downloads\memorylifter_21362.exe
2014-04-16 23:10 - 2014-04-16 23:23 - 00544768 _____ () C:\Users\Lex\Documents\Formeln.mlx
2014-04-16 23:08 - 2014-04-16 23:08 - 00000000 ____D () C:\Program Files\Microsoft Synchronization Services
2014-04-16 23:08 - 2014-04-16 23:08 - 00000000 ____D () C:\Program Files\Microsoft SQL Server Compact Edition
2014-04-16 23:08 - 2014-04-16 23:08 - 00000000 ____D () C:\Program Files (x86)\Microsoft Synchronization Services
2014-04-16 23:08 - 2014-04-16 23:08 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2014-04-16 23:02 - 2014-04-16 23:06 - 14608706 _____ (Igor Pavlov) C:\Users\Lex\Downloads\MemoryLifter-Setup.exe
2014-04-13 15:13 - 2014-04-21 18:47 - 00000000 ____D () C:\Program Files (x86)\SP-Downloader
2014-04-13 15:13 - 2014-04-13 15:13 - 00000941 _____ () C:\Users\Public\Desktop\SP-Downloader.lnk
2014-04-13 15:13 - 2014-04-13 15:13 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\SP-Download
2014-04-13 15:13 - 2014-04-13 15:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SP-Downloader
2014-04-13 15:13 - 2014-03-14 09:27 - 14903590 _____ (SP-Download) C:\Users\Lex\Desktop\SPD_v1.9.8_setup.exe
2014-04-13 15:04 - 2014-04-13 15:11 - 20146998 _____ () C:\Users\Lex\Downloads\SPD_v1.9.8.rar
2014-04-12 21:02 - 2014-04-12 21:07 - 13429504 _____ (Disc Soft Ltd) C:\Users\Lex\Downloads\DTLite4491-0356.exe

==================== One Month Modified Files and Folders =======

2014-05-08 21:07 - 2014-05-08 21:07 - 00014877 _____ () C:\Users\Lex\Downloads\FRST.txt
2014-05-08 21:07 - 2014-05-08 21:03 - 00000000 ____D () C:\FRST
2014-05-08 21:07 - 2014-05-01 19:44 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\NetSpeedMonitor
2014-05-08 21:03 - 2014-05-08 21:02 - 02063872 _____ (Farbar) C:\Users\Lex\Downloads\FRST64.exe
2014-05-08 21:03 - 2013-05-15 17:37 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\vlc
2014-05-08 20:49 - 2012-10-23 22:12 - 01620002 _____ () C:\Windows\WindowsUpdate.log
2014-05-08 20:28 - 2013-06-13 17:37 - 00001104 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-05-08 20:21 - 2014-05-08 20:21 - 00010325 _____ () C:\Users\Lex\Desktop\hijackthis.log
2014-05-08 20:19 - 2014-04-26 16:59 - 00010325 _____ () C:\Users\Lex\Downloads\hijackthis.log
2014-05-08 19:33 - 2013-09-06 19:47 - 00000000 ____D () C:\ProgramData\MFAData
2014-05-08 18:51 - 2009-07-14 19:58 - 00696832 _____ () C:\Windows\system32\perfh007.dat
2014-05-08 18:51 - 2009-07-14 19:58 - 00148128 _____ () C:\Windows\system32\perfc007.dat
2014-05-08 18:51 - 2009-07-14 07:13 - 01613340 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-05-08 18:51 - 2009-07-14 06:45 - 00014224 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-05-08 18:51 - 2009-07-14 06:45 - 00014224 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-05-08 18:44 - 2014-05-04 18:14 - 00000168 _____ () C:\Windows\setupact.log
2014-05-08 18:44 - 2014-05-04 01:51 - 00002305 _____ () C:\Users\Public\Desktop\Ad-Aware Antivirus.lnk
2014-05-08 18:44 - 2013-08-12 22:11 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-05-08 18:44 - 2013-06-13 17:37 - 00001100 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-05-08 18:44 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-05-07 17:23 - 2013-06-13 17:37 - 00004100 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-05-07 17:23 - 2013-06-13 17:37 - 00003848 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-05-04 18:15 - 2014-05-04 18:15 - 00001395 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2014-05-04 18:15 - 2014-05-04 18:15 - 00001383 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2014-05-04 18:15 - 2014-05-04 18:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
2014-05-04 18:15 - 2014-04-26 17:16 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2014-05-04 18:15 - 2014-04-26 17:16 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-05-04 18:14 - 2014-05-04 18:14 - 00003096 _____ () C:\Windows\PFRO.log
2014-05-04 18:14 - 2014-05-04 18:14 - 00000000 _____ () C:\Windows\setuperr.log
2014-05-04 18:12 - 2014-05-04 18:12 - 00000085 _____ () C:\Windows\wininit.ini
2014-05-04 18:12 - 2014-05-04 18:08 - 46392680 _____ (Safer-Networking Ltd. ) C:\Users\Lex\Downloads\spybot-2.3.exe
2014-05-04 16:37 - 2013-11-09 22:53 - 00000000 ____D () C:\Users\Lex\Downloads\TreeSizeFreePortable
2014-05-04 15:33 - 2013-09-06 19:50 - 00000000 ____D () C:\ProgramData\AVG2014
2014-05-04 14:22 - 2013-05-10 23:51 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\Free Download Manager
2014-05-04 14:12 - 2014-05-04 14:12 - 00023636 _____ () C:\Users\Lex\Downloads\heartbleed_ext-3.0-fx.xpi.zip
2014-05-04 01:51 - 2014-05-04 01:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ad-Aware Antivirus
2014-05-04 01:49 - 2014-05-04 01:25 - 00000000 ____D () C:\Users\Lex\Downloads\backups
2014-05-04 01:46 - 2014-05-04 01:46 - 00000000 ____D () C:\Program Files\Lavasoft
2014-05-04 01:45 - 2014-05-04 01:45 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\Lavasoft
2014-05-04 01:41 - 2014-05-04 01:41 - 00003126 _____ () C:\Windows\System32\Tasks\{D43BBE67-9423-4B58-9961-F0F8ADDD0629}
2014-05-04 01:41 - 2014-05-04 01:41 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\LavasoftStatistics
2014-05-04 01:40 - 2014-05-04 01:40 - 00000000 ____D () C:\Program Files\Common Files\Lavasoft
2014-05-04 01:37 - 2014-05-04 01:37 - 01727624 _____ () C:\Users\Lex\Downloads\Adaware_Installer.exe
2014-05-04 01:37 - 2014-05-04 01:37 - 00000000 ____D () C:\ProgramData\Lavasoft
2014-05-01 19:56 - 2014-05-01 19:56 - 00004096 _____ () C:\Users\Lex\Documents\mm.db
2014-05-01 19:49 - 2014-05-01 19:49 - 00004096 _____ () C:\Users\Lex\Documents\öö.db
2014-05-01 19:46 - 2013-06-29 18:26 - 00000000 ____D () C:\Users\Lex\AppData\Local\Adobe
2014-05-01 19:43 - 2014-05-01 19:43 - 00000000 ____D () C:\Program Files\NetSpeedMonitor
2014-05-01 19:42 - 2014-05-01 19:42 - 03652608 _____ () C:\Users\Lex\Downloads\netspeedmonitor_2_5_4_0_x64_setup.msi
2014-05-01 19:29 - 2014-05-01 19:29 - 01243655 _____ () C:\Users\Lex\Downloads\ProcessExplorer_16.02.zip
2014-05-01 19:28 - 2014-05-01 19:28 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-05-01 19:28 - 2014-05-01 19:28 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-05-01 16:48 - 2013-01-29 17:39 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\Mozilla
2014-05-01 16:46 - 2014-05-01 16:46 - 00001163 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-05-01 16:46 - 2014-05-01 16:46 - 00001151 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-05-01 16:46 - 2013-11-16 15:10 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-05-01 16:44 - 2014-05-01 16:44 - 00283376 _____ (Mozilla) C:\Users\Lex\Downloads\Firefox Setup Stub 29.0.exe
2014-05-01 16:36 - 2014-05-01 16:36 - 00001479 _____ () C:\Users\Lex\Desktop\GoogleChromePortable - Verknüpfung.lnk
2014-05-01 16:29 - 2014-05-01 16:27 - 00189473 _____ () C:\Users\Lex\Downloads\fw_speedport_w500v_v1.37.bin.part
2014-05-01 16:19 - 2014-05-01 16:48 - 00000848 _____ () C:\Users\Lex\Documents\indexfile.txt
2014-05-01 16:19 - 2014-05-01 16:19 - 13060357 _____ () C:\Users\Lex\Documents\Firefox 29.0 (de) - 2014-05-01.pcv
2014-05-01 16:19 - 2014-05-01 16:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MozBackup
2014-05-01 16:19 - 2014-05-01 16:19 - 00000000 ____D () C:\Program Files (x86)\MozBackup
2014-05-01 16:18 - 2014-05-01 16:18 - 00000000 ____D () C:\Users\Lex\Desktop\Neuer Ordner
2014-05-01 16:18 - 2014-05-01 16:16 - 01035926 _____ () C:\Users\Lex\Downloads\MozBackup-1.5.1-EN.exe
2014-05-01 16:17 - 2014-05-01 16:16 - 01416144 _____ (PortableApps.com) C:\Users\Lex\Downloads\GoogleChromePortable_34.0.1847.131_online.paf.exe
2014-04-30 23:00 - 2013-10-15 18:52 - 00344864 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-04-29 20:26 - 2014-04-29 20:21 - 07995486 _____ () C:\Users\Lex\Downloads\qotrdecoder-win32-0.0.247-r1132.zip
2014-04-29 17:23 - 2014-04-29 17:23 - 00001112 _____ () C:\Users\Lex\Downloads\Attack_the_Block_14.04.13_22-25_pro7_100_TVOON_DE.mpg.HQ.avi.cutlist
2014-04-29 16:45 - 2014-04-29 16:44 - 00000000 ____D () C:\ProgramData\AVG Secure Search
2014-04-29 16:45 - 2013-09-06 19:52 - 00003728 _____ () C:\Program Files (x86)\Mozilla Firefoxavg-secure-search.xml
2014-04-29 16:44 - 2013-09-06 19:52 - 00050464 _____ (AVG Technologies) C:\Windows\system32\Drivers\avgtpx64.sys
2014-04-29 16:44 - 2013-09-06 19:52 - 00000000 ____D () C:\Program Files (x86)\AVG Secure Search
2014-04-28 00:02 - 2014-04-28 00:02 - 00000000 __SHD () C:\Users\Lex\AppData\Local\EmieUserList
2014-04-28 00:02 - 2014-04-28 00:02 - 00000000 __SHD () C:\Users\Lex\AppData\Local\EmieSiteList
2014-04-26 21:49 - 2013-09-30 20:28 - 00084136 _____ () C:\Users\Lex\AppData\Local\GDIPFONTCACHEV1.DAT
2014-04-26 18:40 - 2009-07-14 04:34 - 00000824 ____R () C:\Windows\system32\Drivers\etc\hosts.20140504-182607.backup
2014-04-26 18:23 - 2014-04-26 18:23 - 00000110 ___RH () C:\Users\Lex\Downloads\Stinger.opt
2014-04-26 18:23 - 2014-04-26 18:23 - 00000000 ____D () C:\Quarantine
2014-04-26 18:23 - 2014-04-26 18:14 - 00000000 ____D () C:\Program Files (x86)\stinger
2014-04-26 18:15 - 2014-04-26 18:14 - 00000852 _____ () C:\Users\Lex\Downloads\Stinger_26042014_181415.html
2014-04-26 18:15 - 2012-12-20 12:48 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\DAEMON Tools Lite
2014-04-26 18:15 - 2012-10-23 23:04 - 00000000 ____D () C:\Windows\Panther
2014-04-26 18:13 - 2014-04-26 18:13 - 10642792 _____ (McAfee Inc) C:\Users\Lex\Downloads\stinger32.exe
2014-04-26 18:06 - 2013-01-24 20:17 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\Skype
2014-04-26 18:05 - 2014-02-06 20:30 - 00000000 ____D () C:\Users\Lex\AppData\Local\Htc
2014-04-26 18:05 - 2012-10-23 22:10 - 00001425 _____ () C:\Users\Lex\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-04-26 18:05 - 2012-10-23 22:10 - 00000000 ___RD () C:\Users\Lex\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-04-26 18:05 - 2012-10-23 22:10 - 00000000 ___RD () C:\Users\Lex\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-04-26 17:59 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files\Windows Defender
2014-04-26 17:59 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2014-04-26 17:59 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\zh-HK
2014-04-26 17:59 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\tr-TR
2014-04-26 17:59 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\zh-HK
2014-04-26 17:59 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\tr-TR
2014-04-26 17:59 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-04-26 17:58 - 2009-07-14 20:18 - 00000000 ____D () C:\Program Files\Windows Journal
2014-04-26 17:41 - 2014-04-26 17:41 - 23549440 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 17387008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 13551104 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 11745792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 05784064 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 04254720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 02767360 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-04-26 17:41 - 2014-04-26 17:41 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-04-26 17:41 - 2014-04-26 17:41 - 02260480 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 02178048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 02043904 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-04-26 17:41 - 2014-04-26 17:41 - 01967104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-04-26 17:41 - 2014-04-26 17:41 - 01789440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 01400832 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 01143808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00628736 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2014-04-26 17:41 - 2014-04-26 17:41 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2014-04-26 17:41 - 2014-04-26 17:41 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-04-26 17:41 - 2014-04-26 17:41 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-04-26 17:41 - 2014-04-26 17:41 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00244224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-04-26 17:41 - 2014-04-26 17:41 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2014-04-26 17:41 - 2014-04-26 17:41 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-04-26 17:27 - 2014-04-26 17:27 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-04-26 17:27 - 2014-04-26 17:27 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2014-04-26 17:27 - 2014-04-26 17:27 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2014-04-26 17:27 - 2014-04-26 17:27 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2014-04-26 17:27 - 2014-04-26 17:27 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2014-04-26 17:27 - 2014-04-26 17:27 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2014-04-26 17:27 - 2014-04-26 17:27 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2014-04-26 17:27 - 2014-04-26 17:27 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2014-04-26 17:27 - 2014-04-26 17:27 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2014-04-26 17:26 - 2014-04-26 17:26 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2014-04-26 17:26 - 2014-04-26 17:26 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2014-04-26 17:26 - 2014-04-26 17:26 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-04-26 17:22 - 2014-04-26 17:22 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2014-04-26 17:22 - 2014-04-26 17:22 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2014-04-26 17:19 - 2014-04-26 17:19 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking
2014-04-26 17:10 - 2014-04-26 16:53 - 40658208 _____ (Safer-Networking Ltd. ) C:\Users\Lex\Downloads\spybot-2.2.exe
2014-04-26 17:07 - 2014-04-26 17:03 - 11582218 _____ () C:\Users\Lex\Downloads\stinger64-12.1.0.877.exe
2014-04-26 17:05 - 2013-08-16 14:34 - 00000000 ____D () C:\Windows\system32\appmgmt
2014-04-26 16:59 - 2012-10-23 22:10 - 00000000 ____D () C:\Users\Lex\AppData\Local\VirtualStore
2014-04-26 16:57 - 2014-04-26 16:57 - 00585431 _____ () C:\Users\Lex\Downloads\AntBT.zip
2014-04-26 16:55 - 2014-04-26 16:55 - 00388608 _____ (Trend Micro Inc.) C:\Users\Lex\Downloads\HijackThis.exe
2014-04-26 16:55 - 2014-03-21 21:47 - 01590298 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-04-26 16:50 - 2014-04-26 16:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-04-26 16:50 - 2014-04-26 16:49 - 00005449 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_55-b14.log
2014-04-26 16:50 - 2013-11-24 20:17 - 00000000 ____D () C:\ProgramData\Oracle
2014-04-26 16:50 - 2013-11-24 20:17 - 00000000 ____D () C:\Program Files (x86)\Java
2014-04-26 16:49 - 2014-04-26 16:48 - 00000000 ____D () C:\Windows\system32\MRT
2014-04-26 16:42 - 2014-04-26 16:42 - 00002054 _____ () C:\Users\Public\Desktop\Foxit Reader.lnk
2014-04-26 16:42 - 2014-04-26 16:42 - 00000000 ____D () C:\Users\Public\Foxit Software
2014-04-26 16:42 - 2014-04-26 16:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader
2014-04-26 16:42 - 2013-06-13 17:59 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\Foxit Software
2014-04-25 19:54 - 2014-04-17 22:25 - 00000000 ____D () C:\CFLog
2014-04-25 19:16 - 2013-09-06 19:52 - 00000981 _____ () C:\Users\Public\Desktop\AVG 2014.lnk
2014-04-25 00:44 - 2014-04-25 00:44 - 00013775 _____ () C:\Users\Lex\Downloads\Ihr Gutschein von Meinungsstudie.html
2014-04-21 18:47 - 2014-04-13 15:13 - 00000000 ____D () C:\Program Files (x86)\SP-Downloader
2014-04-21 18:05 - 2014-04-21 18:05 - 00000000 ____D () C:\Users\Lex\Desktop\GodMode.{ED7BA470-8E54-465E-825C-99712043E01C}
2014-04-19 14:04 - 2014-04-19 14:03 - 01134665 _____ () C:\Users\Lex\Downloads\Fachbericht.7z
2014-04-18 15:01 - 2014-04-18 15:01 - 00237336 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsdrivera.sys
2014-04-18 13:49 - 2014-04-18 13:48 - 16926908 _____ () C:\Users\Lex\Downloads\CityMaps2Go-playLite-release.apk
2014-04-18 01:30 - 2014-04-18 01:28 - 23963686 _____ () C:\Users\Lex\Downloads\hdnezwbshdhz6574jf764hf637dh.zip
2014-04-17 22:28 - 2014-04-17 22:25 - 00000000 ____D () C:\Users\Lex\Documents\Cross Fire
2014-04-17 21:40 - 2014-04-17 21:40 - 00000828 _____ () C:\Users\Lex\Desktop\Crossfire Europe.lnk
2014-04-17 21:40 - 2014-04-17 21:40 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Crossfire Europe
2014-04-17 21:40 - 2014-04-17 21:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crossfire Europe
2014-04-17 21:36 - 2014-04-17 21:36 - 00000000 ____D () C:\SG Interactive
2014-04-17 19:56 - 2014-04-17 19:56 - 00000176 _____ () C:\console.log
2014-04-17 19:56 - 2014-04-17 19:56 - 00000000 ____D () C:\Users\Lex\Desktop\CrossFire
2014-04-17 19:51 - 2014-04-17 19:50 - 02523688 _____ () C:\Users\Lex\Downloads\Crossfire_downloader.exe
2014-04-16 23:31 - 2014-04-16 23:30 - 00000000 ____D () C:\Users\Lex\Documents\LearningModules
2014-04-16 23:30 - 2014-04-16 23:30 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\LearnLift
2014-04-16 23:30 - 2014-04-16 23:30 - 00000000 ____D () C:\Users\Lex\AppData\Local\LearnLift
2014-04-16 23:23 - 2014-04-16 23:10 - 00544768 _____ () C:\Users\Lex\Documents\Formeln.mlx
2014-04-16 23:21 - 2014-04-16 23:21 - 01062288 _____ () C:\Users\Lex\Downloads\MemoryLifter-lnstall.exe
2014-04-16 23:20 - 2014-04-16 23:20 - 00000000 _____ () C:\Users\Lex\Downloads\memorylifter_21362.exe
2014-04-16 23:08 - 2014-04-16 23:08 - 00000000 ____D () C:\Program Files\Microsoft Synchronization Services
2014-04-16 23:08 - 2014-04-16 23:08 - 00000000 ____D () C:\Program Files\Microsoft SQL Server Compact Edition
2014-04-16 23:08 - 2014-04-16 23:08 - 00000000 ____D () C:\Program Files (x86)\Microsoft Synchronization Services
2014-04-16 23:08 - 2014-04-16 23:08 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2014-04-16 23:06 - 2014-04-16 23:02 - 14608706 _____ (Igor Pavlov) C:\Users\Lex\Downloads\MemoryLifter-Setup.exe
2014-04-15 16:25 - 2013-07-22 19:48 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\XnView
2014-04-14 20:13 - 2014-04-26 16:50 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-04-14 20:05 - 2014-04-26 16:50 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-04-14 20:05 - 2014-04-26 16:50 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-04-14 20:04 - 2014-04-26 16:50 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-04-13 15:17 - 2013-08-24 14:10 - 00000473 _____ () C:\Users\Lex\.swfinfo
2014-04-13 15:13 - 2014-04-13 15:13 - 00000941 _____ () C:\Users\Public\Desktop\SP-Downloader.lnk
2014-04-13 15:13 - 2014-04-13 15:13 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\SP-Download
2014-04-13 15:13 - 2014-04-13 15:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SP-Downloader
2014-04-13 15:11 - 2014-04-13 15:04 - 20146998 _____ () C:\Users\Lex\Downloads\SPD_v1.9.8.rar
2014-04-12 21:07 - 2014-04-12 21:02 - 13429504 _____ (Disc Soft Ltd) C:\Users\Lex\Downloads\DTLite4491-0356.exe
2014-04-12 21:06 - 2013-08-16 16:44 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\dvdcss
2014-04-11 22:24 - 2013-05-12 00:45 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\TS3Client

Some content of TEMP:
====================
C:\Users\Lex\AppData\Local\Temp\Foxit Reader Updater.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2014-05-02 18:43

==================== End Of Log ============================
         
--- --- ---

--- --- ---
__________________

Alt 13.05.2014, 22:32   #4
newTBuser
 
Traffic ausgelastet - Schadsoftware oder anderes Problem? #Part 2 - Standard

Traffic ausgelastet - Schadsoftware oder anderes Problem? #Part 2



Und noch einmal (da die Zeichenanzahl den Rahmen sprengt) die Addition-Datei:

Code:
ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 08-05-2014 02
Ran by Lex at 2014-05-08 21:08:14
Running from C:\Users\Lex\Downloads
Boot Mode: Normal
==========================================================


==================== Security Center ========================

AV: AVG Internet Security 2014 (Enabled - Up to date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
AV: Ad-Aware Antivirus (Disabled - Out of date) {D87B6541-12A1-DAEA-0033-9B8057AAB996}
AS: Ad-Aware Antivirus (Disabled - Out of date) {631A84A5-349B-D564-3A83-A0F22C2DF32B}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Spybot - Search and Destroy (Enabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
AS: AVG Internet Security 2014 (Enabled - Up to date) {B5F5C120-2089-702E-0001-553BB0D5A664}
FW: Ad-Aware Firewall (Disabled) {E040E464-58CE-DBB2-2B6C-32B5A979FEED}
FW: AVG Internet Security 2014 (Enabled) {36AFA1E1-4CDC-7EF8-11EE-C77C3581ABA2}

==================== Installed Programs ======================

Ad-Aware Antivirus (HKLM\...\{6A16ADA5-0B30-4893-84AB-961B1340D14A}_AdAwareUpdater) (Version: 11.1.5354.0 - Lavasoft)
AdAwareInstaller (Version: 11.1.5354.0 - Lavasoft) Hidden
AdAwareUpdater (Version: 11.1.5354.0 - Lavasoft) Hidden
Adobe Flash Player 13 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 13.0.0.206 - Adobe Systems Incorporated)
AMD Accelerated Video Transcoding (Version: 12.10.100.30328 - Advanced Micro Devices, Inc.) Hidden
AMD APP SDK Runtime (Version: 10.0.1084.2 - Advanced Micro Devices Inc.) Hidden
AMD Catalyst Install Manager (HKLM\...\{9AB0D5B6-4779-8C4F-CA91-A1FEDB56D7EC}) (Version: 8.0.911.0 - Advanced Micro Devices, Inc.)
AMD Drag and Drop Transcoding (Version: 2.00.0000 - Advanced Micro Devices, Inc.) Hidden
AMD Fuel (Version: 2013.0328.2218.38225 - Ihr Firmenname) Hidden
AMD Media Foundation Decoders (Version: 1.0.80328.2204 - Advanced Micro Devices, Inc.) Hidden
AMD USB Filter Driver (x32 Version: 1.0.11.86 - Advanced Micro Devices, Inc.) Hidden
AMD VISION Engine Control Center (x32 Version: 2013.0328.2218.38225 - Ihr Firmenname) Hidden
AntimalwareEngine (Version: 2.6.0.0 - Lavasoft) Hidden
ATI - Dienstprogramm zur Deinstallation der Software (HKLM-x32\...\All ATI Software) (Version: 6.14.10.1022 - )
AVG 2014 (HKLM\...\AVG) (Version: 2014.0.4570 - AVG Technologies)
AVG 2014 (Version: 14.0.3931 - AVG Technologies) Hidden
AVG 2014 (Version: 14.0.4570 - AVG Technologies) Hidden
AVG Security Toolbar (HKLM-x32\...\AVG Secure Search) (Version: 18.1.0.443 - AVG Technologies)
Capsule (HKLM-x32\...\Capsule) (Version: 1.0.000 - Green Man Gaming Limited)
Catalyst Control Center - Branding (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Graphics Previews Common (x32 Version: 2013.0328.2218.38225 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center InstallProxy (x32 Version: 2013.0328.2218.38225 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Localization All (x32 Version: 2013.0328.2218.38225 - Advanced Micro Devices, Inc.) Hidden
CCC Help Chinese Standard (x32 Version: 2013.0328.2217.38225 - Advanced Micro Devices, Inc.) Hidden
CCC Help Chinese Traditional (x32 Version: 2013.0328.2217.38225 - Advanced Micro Devices, Inc.) Hidden
CCC Help Czech (x32 Version: 2013.0328.2217.38225 - Advanced Micro Devices, Inc.) Hidden
CCC Help Danish (x32 Version: 2013.0328.2217.38225 - Advanced Micro Devices, Inc.) Hidden
CCC Help Dutch (x32 Version: 2013.0328.2217.38225 - Advanced Micro Devices, Inc.) Hidden
CCC Help English (x32 Version: 2013.0328.2217.38225 - Advanced Micro Devices, Inc.) Hidden
CCC Help Finnish (x32 Version: 2013.0328.2217.38225 - Advanced Micro Devices, Inc.) Hidden
CCC Help French (x32 Version: 2013.0328.2217.38225 - Advanced Micro Devices, Inc.) Hidden
CCC Help German (x32 Version: 2013.0328.2217.38225 - Advanced Micro Devices, Inc.) Hidden
CCC Help Greek (x32 Version: 2013.0328.2217.38225 - Advanced Micro Devices, Inc.) Hidden
CCC Help Hungarian (x32 Version: 2013.0328.2217.38225 - Advanced Micro Devices, Inc.) Hidden
CCC Help Italian (x32 Version: 2013.0328.2217.38225 - Advanced Micro Devices, Inc.) Hidden
CCC Help Japanese (x32 Version: 2013.0328.2217.38225 - Advanced Micro Devices, Inc.) Hidden
CCC Help Korean (x32 Version: 2013.0328.2217.38225 - Advanced Micro Devices, Inc.) Hidden
CCC Help Norwegian (x32 Version: 2013.0328.2217.38225 - Advanced Micro Devices, Inc.) Hidden
CCC Help Polish (x32 Version: 2013.0328.2217.38225 - Advanced Micro Devices, Inc.) Hidden
CCC Help Portuguese (x32 Version: 2013.0328.2217.38225 - Advanced Micro Devices, Inc.) Hidden
CCC Help Russian (x32 Version: 2013.0328.2217.38225 - Advanced Micro Devices, Inc.) Hidden
CCC Help Spanish (x32 Version: 2013.0328.2217.38225 - Advanced Micro Devices, Inc.) Hidden
CCC Help Swedish (x32 Version: 2013.0328.2217.38225 - Advanced Micro Devices, Inc.) Hidden
CCC Help Thai (x32 Version: 2013.0328.2217.38225 - Advanced Micro Devices, Inc.) Hidden
CCC Help Turkish (x32 Version: 2013.0328.2217.38225 - Advanced Micro Devices, Inc.) Hidden
ccc-utility64 (Version: 2013.0328.2218.38225 - Advanced Micro Devices, Inc.) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 4.07 - Piriform)
Company of Heroes (New Steam Version) (HKLM-x32\...\Steam App 228200) (Version:  - Relic)
Crossfire Europe (HKLM-x32\...\Crossfire Europe) (Version: 1197 - SG INTERACTIVE)
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.48.1.0347 - Disc Soft Ltd)
Dual-Core Optimizer (HKLM-x32\...\{9FD6F1A8-5550-46AF-8509-271DF0E768B5}) (Version: 1.1.4.0169 - AMD)
EPSON-Drucker-Software (HKLM\...\EPSON Printer and Utilities) (Version:  - SEIKO EPSON Corporation)
Foxit Cloud (HKLM-x32\...\{41914D8B-9D6E-4764-A1F9-BC43FB6782C1}_is1) (Version: 1.2.75.126 - Foxit Corporation)
Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 6.1.4.217 - Foxit Corporation)
Free Download Manager 3.9.2 (HKLM-x32\...\Free Download Manager_is1) (Version:  - FreeDownloadManager.ORG)
Google Earth (HKLM-x32\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Update Helper (x32 Version: 1.3.24.7 - Google Inc.) Hidden
HTC BMP USB Driver (HKLM-x32\...\{31A559C1-9E4D-423B-9DD3-34A6C5398752}) (Version: 1.0.5375 - HTC)
HTC Driver Installer (HKLM-x32\...\{4CEEE5D0-F905-4688-B9F9-ECC710507796}) (Version: 4.5.0.001 - HTC Corporation)
HTC Sync (HKLM-x32\...\{CBDAE89D-8ABD-4DC5-9309-C2C58696B371}) (Version: 3.3.63 - HTC Corporation)
IPTInstaller (HKLM-x32\...\{08208143-777D-4A06-BB54-71BF0AD1BB70}) (Version: 4.0.8 - HTC)
Java 7 Update 55 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217045FF}) (Version: 7.0.550 - Oracle)
Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden
JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4 Client Profile DEU Language Pack (HKLM\...\Microsoft .NET Framework 4 Client Profile DEU Language Pack) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4 Extended DEU Language Pack (HKLM\...\Microsoft .NET Framework 4 Extended DEU Language Pack) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft Office Access MUI (German) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft Office Enterprise 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (German) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Groove MUI (German) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office InfoPath MUI (German) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Office 64-bit Components 2007 (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (German) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Outlook MUI (German) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (German) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Proof (English) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Proof (French) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Proof (Italian) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Proofing (German) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Publisher MUI (German) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (German) 2007 (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (German) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (German) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft SQL Server Compact 3.5 SP2 ENU (HKLM-x32\...\{3A9FC03D-C685-4831-94CF-4EDFD3749497}) (Version: 3.5.8080.0 - Microsoft Corporation)
Microsoft SQL Server Compact 3.5 SP2 x64 ENU (HKLM\...\{D4AD39AD-091E-4D33-BB2B-59F6FCB8ADC3}) (Version: 3.5.8080.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
MozBackup 1.5.1 (HKLM-x32\...\MozBackup) (Version:  - Pavel Cvrcek)
Mozilla Firefox 29.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 29.0 (x86 de)) (Version: 29.0 - Mozilla)
MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
NetBalancer (HKLM\...\NetBalancer_is1) (Version:  - SeriousBit)
NetSpeedMonitor 2.5.4.0 x64 (HKLM\...\{88F41EE2-949B-4B52-933D-C7F8F67BC1D2}) (Version: 2.5.4.0 - Florian Gilles)
NVIDIA PhysX (HKLM-x32\...\{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}) (Version: 9.12.1031 - NVIDIA Corporation)
PAYDAY 2 (HKLM-x32\...\Steam App 218620) (Version:  - OVERKILL - a Starbreeze Studio.)
PDF24 Creator 6.3.2 (HKLM-x32\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version:  - PDF24.org)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7083 - Realtek Semiconductor Corp.)
Skype™ 6.11 (HKLM-x32\...\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}) (Version: 6.11.102 - Skype Technologies S.A.)
SP-Downloader (HKLM-x32\...\{B129D940-9D21-4636-9A71-34112BCA2204}) (Version: 1.9.8.0 - SP-Download)
Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.3.39 - Safer-Networking Ltd.)
Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.13.1 - TeamSpeak Systems GmbH)
Tomb Raider (HKLM-x32\...\Steam App 203160) (Version:  - Crystal Dynamics)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2836939v3) (Version: 3 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Extended (KB2836939v3) (HKLM-x32\...\{8E34682C-8118-31F1-BC4C-98CD9675E1C2}.KB2836939v3) (Version: 3 - Microsoft Corporation)
Uplay (HKLM-x32\...\Uplay) (Version: 2.0 - Ubisoft)
Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies)
Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.)
VLC media player 2.1.4 (HKLM\...\VLC media player) (Version: 2.1.4 - VideoLAN)
VLC Setup Helper (HKLM-x32\...\VLC Setup Helper_is1) (Version:  - )
WinImage (HKLM-x32\...\WinImage) (Version:  - )
WinRAR 4.20 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH)
XnView 2.04 (HKLM-x32\...\XnView_is1) (Version: 2.04 - Gougelet Pierre-e)

==================== Restore Points  =========================


==================== Hosts content: ==========================

2009-07-14 04:34 - 2014-05-04 18:26 - 00450709 ____R C:\Windows\system32\Drivers\etc\hosts
127.0.0.1	www.007guard.com
127.0.0.1	007guard.com
127.0.0.1	008i.com
127.0.0.1	www.008k.com
127.0.0.1	008k.com
127.0.0.1	www.00hq.com
127.0.0.1	00hq.com
127.0.0.1	010402.com
127.0.0.1	www.032439.com
127.0.0.1	032439.com
127.0.0.1	www.0scan.com
127.0.0.1	0scan.com
127.0.0.1	1000gratisproben.com
127.0.0.1	www.1000gratisproben.com
127.0.0.1	1001namen.com
127.0.0.1	www.1001namen.com
127.0.0.1	100888290cs.com
127.0.0.1	www.100888290cs.com
127.0.0.1	www.100sexlinks.com
127.0.0.1	100sexlinks.com
127.0.0.1	10sek.com
127.0.0.1	www.10sek.com
127.0.0.1	www.1-2005-search.com
127.0.0.1	1-2005-search.com
127.0.0.1	123fporn.info
127.0.0.1	www.123fporn.info
127.0.0.1	123haustiereundmehr.com
127.0.0.1	www.123haustiereundmehr.com
127.0.0.1	123moviedownload.com

There are 1000 more lines.


==================== Scheduled Tasks (whitelisted) =============

Task: {0C6B13DF-4A4C-4D28-8E79-7E594F737ABC} - System32\Tasks\{C61870F8-9A07-442F-83B4-1D18FEB8B2E8} => C:\Users\Lex\Downloads\epson375644eu.exe
Task: {37330A0C-B55F-4C79-B762-553AFB3488DF} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe
Task: {4CB681FC-F724-4216-B318-2375BF99D668} - System32\Tasks\{19566234-DACE-4284-816D-725342EDF8AE} => C:\Users\Lex\Downloads\South Park Der Stab der Wahrheit \Sou.Par_M2.exe
Task: {5F7B6150-9D98-41CF-8BE3-3F505DC13A39} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-10-22] (Piriform Ltd)
Task: {67F4BF85-53DF-4CB9-B435-4772F060FBC8} - System32\Tasks\{2227891D-9BE9-47E4-B612-04E3362494FF} => C:\Users\Lex\Downloads\South Park Der Stab der Wahrheit Incl Ultimate Fellowship Pack MULTI - 2 - x.X.RIDDICK.X.x\Sou.Par_M2.exe
Task: {7C924ABE-CC85-49B6-8FE4-BDA0399A4339} - System32\Tasks\{DDFF833F-D5DD-41AF-9B71-E02FEB40319C} => C:\Program Files (x86)\State of Decay\StateOfDecay.exe
Task: {939317AC-6081-4B8E-9643-97381658D4A9} - System32\Tasks\{4187987C-AD05-444F-9F42-F03175E63E76} => C:\Program Files (x86)\State of Decay\StateOfDecay.exe
Task: {9825C926-6EB0-4118-9F71-B83F89FE97B2} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-13] (Google Inc.)
Task: {A38295D2-69CD-4A98-B4E0-5D53FFB5D92D} - System32\Tasks\{4A1AD5DD-B7E1-4206-A903-F3F96DF65B83} => C:\Program Files (x86)\State of Decay\StateOfDecay.exe
Task: {A9BA2C5F-1F5E-4113-BF78-8BA19F93338E} - System32\Tasks\{7569A1FA-7087-465A-BA21-FA5F9E092F84} => C:\Program Files (x86)\State of Decay\StateOfDecay.exe
Task: {B46A1186-8B3D-4423-A166-EC291E4C76A5} - System32\Tasks\Launch HTC Sync Loader => C:\Program Files (x86)\HTC\HTC Sync 3.0\htcUPCTLoader.exe [2013-09-03] ()
Task: {B527501F-1F38-4BAF-ADF9-76A47CA9D990} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe
Task: {B89B760A-FB68-4B47-950D-CB838A4A570B} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-06-13] (Google Inc.)
Task: {CA2C1F9B-E2B7-4176-BDB2-E17E6475AA1A} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe
Task: {F516112B-4C3C-442F-B496-2279FCAE99AC} - System32\Tasks\{C513CFD9-FF92-4016-92FF-60BD43B59584} => C:\Program Files (x86)\State of Decay\StateOfDecay.exe
Task: {F7E7B3B6-5213-4A77-BFA1-FBEDA02DD3EC} - System32\Tasks\{3B51134D-14E8-4AC8-A320-2C4AFFD7BA28} => C:\Users\Lex\Downloads\epson375644eu.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) =============

2013-03-28 22:31 - 2013-03-28 22:31 - 00210944 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.PerformanceTuning.dll
2012-09-23 13:53 - 2012-09-23 13:53 - 00748544 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Device.dll
2012-09-23 13:53 - 2012-09-23 13:53 - 03645952 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Platform.dll
2013-03-28 22:30 - 2013-03-28 22:30 - 00073728 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 04114264 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareTray.exe
2014-01-23 16:30 - 2014-01-23 16:30 - 00158032 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\pugixml.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 02595144 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\RCF.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 00123776 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\boost_filesystem-vc100-mt-1_55.dll
2014-01-23 16:30 - 2014-01-23 16:30 - 00024440 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\boost_system-vc100-mt-1_55.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 00055680 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\boost_date_time-vc100-mt-1_55.dll
2014-01-23 16:30 - 2014-01-23 16:30 - 00103800 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\boost_thread-vc100-mt-1_55.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 00033656 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\boost_chrono-vc100-mt-1_55.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 00500088 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\boost_locale-vc100-mt-1_55.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 00361824 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\HtmlFramework.dll
2014-01-23 16:30 - 2014-01-23 16:30 - 00149840 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\libssh2.dll
2014-01-23 16:30 - 2014-01-23 16:30 - 00106824 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\zlib.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 00066904 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\DllStorage.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 00788848 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareTrayDefaultSkin.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 00139608 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\Localization.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 00685904 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\SQLite.dll
2014-01-23 16:09 - 2014-01-23 16:09 - 00702744 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareService.exe
2014-01-23 16:29 - 2014-01-23 16:29 - 03720040 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareServiceKernel.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 00788856 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\boost_regex-vc100-mt-1_55.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 00602984 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareActivation.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 00291192 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareApplicationUpdater.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 00142696 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareGamingMode.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 00098648 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareReset.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 00120152 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareTime.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 00268152 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareDefinitionsUpdater.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 00198024 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareDefinitionsUpdaterScheduler.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 00417128 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareIgnoreList.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 00253800 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareQuarantine.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 00293744 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareAntiMalwareEngine.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 00212336 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareAntiRootkitEngine.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 00509808 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareScannerHistory.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 00607584 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareScanner.dll
2014-01-23 16:30 - 2014-01-23 16:30 - 00035192 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\boost_timer-vc100-mt-1_55.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 00325488 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareScannerScheduler.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 00333688 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareRealTimeProtection.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 00227688 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareIncompatibles.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 00219488 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareAntiSpam.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 00129896 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareAntiPhishing.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 00599920 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareParentalControl.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 01926504 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareWebProtection.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 00263536 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareEmailProtection.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 00650608 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareNetworkProtection.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 00490848 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareInstaller.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 00358744 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwarePromo.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 00291680 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareFeedback.dll
2014-01-23 16:29 - 2014-01-23 16:29 - 00154464 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\SecurityCenter.dll
2013-07-17 17:10 - 2013-07-17 17:10 - 00777296 _____ () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Antimalware Engine\2.6.0.0\BDSmartDB.dll
2013-05-11 00:53 - 2012-08-03 13:21 - 00132608 _____ () C:\Program Files\NetBalancer\PacketDotNet.dll
2013-09-06 19:52 - 2014-04-29 16:44 - 02557976 _____ () C:\Program Files (x86)\AVG Secure Search\vprot.exe
2014-02-06 20:28 - 2012-12-07 18:26 - 00167424 _____ () C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe
2013-03-28 22:30 - 2013-03-28 22:30 - 00103424 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll
2014-04-29 16:44 - 2014-04-29 16:44 - 00159768 _____ () C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.0\loggingserver.exe
2012-10-20 12:54 - 2012-08-03 13:22 - 00314880 _____ () D:\Program Files\NetBalancer\ZedGraph.dll
2012-08-28 19:53 - 2006-11-03 17:24 - 00028672 _____ () D:\Users\Alex\Desktop\DisConnect.exe
2014-01-10 00:44 - 2014-04-22 00:55 - 00340480 _____ () C:\Program Files (x86)\Steam\libavresample-1.dll
2014-04-26 14:58 - 2014-04-22 00:55 - 00471552 _____ () C:\Program Files (x86)\Steam\libavutil-53.dll
2013-07-01 08:20 - 2014-04-01 00:09 - 00754688 _____ () C:\Program Files (x86)\Steam\SDL2.dll
2013-07-26 14:46 - 2014-04-24 00:01 - 01092288 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
2013-07-15 14:32 - 2014-03-03 21:15 - 20626624 _____ () C:\Program Files (x86)\Steam\bin\libcef.dll
2013-06-14 15:49 - 2013-06-15 01:49 - 01100800 _____ () C:\Program Files (x86)\Steam\bin\avcodec-53.dll
2013-06-14 15:49 - 2013-06-15 01:49 - 00124416 _____ () C:\Program Files (x86)\Steam\bin\avutil-51.dll
2013-06-14 15:49 - 2013-06-15 01:49 - 00192000 _____ () C:\Program Files (x86)\Steam\bin\avformat-53.dll
2014-04-29 16:44 - 2014-04-29 16:44 - 00519704 _____ () C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.0\log4cplusU.dll
2013-12-09 21:48 - 2014-03-20 23:24 - 01603608 _____ () C:\Program Files (x86)\AVG Secure Search\TBAPI.dll
2014-05-04 18:15 - 2014-04-25 14:11 - 00109400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl
2014-05-04 18:15 - 2014-04-25 14:11 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl
2014-05-04 18:15 - 2014-04-25 14:11 - 00167768 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl
2014-05-04 18:15 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll
2014-05-04 18:15 - 2012-04-03 17:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll
2014-05-08 18:50 - 2014-05-08 18:50 - 00016384 _____ () C:\Users\Lex\AppData\Local\Temp\nsc8D62.tmp\registry.dll
2014-05-01 16:34 - 2014-04-24 02:33 - 00065352 _____ () C:\Users\Lex\Desktop\Neuer Ordner\GoogleChromePortable\App\Chrome-bin\34.0.1847.131\chrome_elf.dll
2014-05-01 16:34 - 2014-04-24 02:33 - 00674632 _____ () C:\Users\Lex\Desktop\Neuer Ordner\GoogleChromePortable\App\Chrome-bin\34.0.1847.131\libglesv2.dll
2014-05-01 16:34 - 2014-04-24 02:33 - 00093000 _____ () C:\Users\Lex\Desktop\Neuer Ordner\GoogleChromePortable\App\Chrome-bin\34.0.1847.131\libegl.dll
2014-05-01 16:34 - 2014-04-24 02:33 - 04081480 _____ () C:\Users\Lex\Desktop\Neuer Ordner\GoogleChromePortable\App\Chrome-bin\34.0.1847.131\pdf.dll
2014-05-01 16:34 - 2014-04-24 02:33 - 00390472 _____ () C:\Users\Lex\Desktop\Neuer Ordner\GoogleChromePortable\App\Chrome-bin\34.0.1847.131\ppGoogleNaClPluginChrome.dll
2014-05-01 16:34 - 2014-04-24 02:33 - 01647432 _____ () C:\Users\Lex\Desktop\Neuer Ordner\GoogleChromePortable\App\Chrome-bin\34.0.1847.131\ffmpegsumo.dll
2014-05-01 16:34 - 2014-04-24 02:33 - 13692232 _____ () C:\Users\Lex\Desktop\Neuer Ordner\GoogleChromePortable\App\Chrome-bin\34.0.1847.131\PepperFlash\pepflashplayer.dll

==================== Alternate Data Streams (whitelisted) =========


==================== Safe Mode (whitelisted) ===================


==================== EXE Association (whitelisted) =============


==================== Disabled items from MSCONFIG ==============

MSCONFIG\startupreg: Free Download Manager => C:\Program Files (x86)\Free Download Manager\fdm.exe -autorun
MSCONFIG\startupreg: HTC Sync Loader => "C:\Program Files (x86)\HTC\HTC Sync 3.0\htcUPCTLoader.exe" -startup
MSCONFIG\startupreg: PDFPrint => C:\Program Files (x86)\PDF24\pdf24.exe
MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (05/04/2014 06:15:05 PM) (Source: Windows Search Service) (User: ) (EventID: 7010)
Description: Der Index kann nicht initialisiert werden.


Details:
	Der Inhaltsindexkatalog ist fehlerhaft.  (HRESULT : 0xc0041801) (0xc0041801)

Error: (05/04/2014 06:15:05 PM) (Source: Windows Search Service) (User: ) (EventID: 3058)
Description: Die Anwendung kann nicht initialisiert werden.

Kontext: Windows Anwendung


Details:
	Der Inhaltsindexkatalog ist fehlerhaft.  (HRESULT : 0xc0041801) (0xc0041801)

Error: (05/04/2014 06:15:05 PM) (Source: Windows Search Service) (User: ) (EventID: 3028)
Description: Das Gatherer-Objekt kann nicht initialisiert werden.

Kontext: Windows Anwendung, SystemIndex Katalog


Details:
	Der Inhaltsindexkatalog ist fehlerhaft.  (HRESULT : 0xc0041801) (0xc0041801)

Error: (05/04/2014 06:15:05 PM) (Source: Windows Search Service) (User: ) (EventID: 3029)
Description: Plug-In in <Search.TripoliIndexer> kann nicht initialisiert werden.

Kontext: Windows Anwendung, SystemIndex Katalog


Details:
	Element nicht gefunden.  (HRESULT : 0x80070490) (0x80070490)

Error: (05/04/2014 06:15:05 PM) (Source: Windows Search Service) (User: ) (EventID: 3029)
Description: Plug-In in <Search.JetPropStore> kann nicht initialisiert werden.

Kontext: Windows Anwendung, SystemIndex Katalog


Details:
	Der Inhaltsindexkatalog ist fehlerhaft.  (HRESULT : 0xc0041801) (0xc0041801)

Error: (05/04/2014 06:15:05 PM) (Source: Windows Search Service) (User: ) (EventID: 9002)
Description: Die Eigenschaftenspeicherdaten können von Windows Search nicht geladen werden.

Kontext: Windows Anwendung, SystemIndex Katalog


Details:
	Die Inhaltsindexdatenbank ist fehlerhaft.  (HRESULT : 0xc0041800) (0xc0041800)

Error: (05/04/2014 06:15:05 PM) (Source: Windows Search Service) (User: ) (EventID: 7042)
Description: Windows Search wird aufgrund eines Problems bei der Indizierung The catalog is corrupt beendet.


Details:
	Der Inhaltsindexkatalog ist fehlerhaft.  (HRESULT : 0xc0041801) (0xc0041801)

Error: (05/04/2014 06:15:05 PM) (Source: Windows Search Service) (User: ) (EventID: 7040)
Description: Vom Suchdienst wurden beschädigte Datendateien im Index {id=4700} erkannt. Vom Dienst wird versucht, dieses Problem durch Neuerstellung des Indexes automatisch zu beheben.


Details:
	Der Inhaltsindexkatalog ist fehlerhaft.  (HRESULT : 0xc0041801) (0xc0041801)

Error: (05/04/2014 06:15:05 PM) (Source: Windows Search Service) (User: ) (EventID: 9000)
Description: Der Jet-Eigenschaftenspeicher kann von Windows Search nicht geöffnet werden.


Details:
	0x%08x (0xc0041800 - Die Inhaltsindexdatenbank ist fehlerhaft.  (HRESULT : 0xc0041800))

Error: (05/04/2014 06:15:05 PM) (Source: ESENT) (User: ) (EventID: 455)
Description: Windows (2980) Windows: Fehler -1811 beim Öffnen von Protokolldatei C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSS00064.log.


System errors:
=============
Error: (05/08/2014 06:44:29 PM) (Source: EventLog) (User: ) (EventID: 6008)
Description: Das System wurde zuvor am ‎08.‎05.‎2014 um 18:42:35 unerwartet heruntergefahren.

Error: (05/06/2014 02:55:12 PM) (Source: volsnap) (User: ) (EventID: 36)
Description: Die Schattenkopien von Volume "C:" wurden abgebrochen, weil der Schattenkopiespeicher nicht auf ein benutzerdefiniertes Limit vergrößert werden konnte.

Error: (05/04/2014 06:15:05 PM) (Source: Service Control Manager) (User: ) (EventID: 7031)
Description: Der Dienst "Windows Search" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (05/04/2014 06:15:05 PM) (Source: Service Control Manager) (User: ) (EventID: 7024)
Description: Der Dienst "Windows Search" wurde mit folgendem dienstspezifischem Fehler beendet: %%-1073473535.

Error: (05/04/2014 02:50:07 PM) (Source: volsnap) (User: ) (EventID: 36)
Description: Die Schattenkopien von Volume "C:" wurden abgebrochen, weil der Schattenkopiespeicher nicht auf ein benutzerdefiniertes Limit vergrößert werden konnte.

Error: (04/30/2014 10:58:32 PM) (Source: DCOM) (User: ) (EventID: 10010)
Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF}

Error: (04/26/2014 06:56:02 PM) (Source: volsnap) (User: ) (EventID: 36)
Description: Die Schattenkopien von Volume "C:" wurden abgebrochen, weil der Schattenkopiespeicher nicht auf ein benutzerdefiniertes Limit vergrößert werden konnte.

Error: (04/26/2014 06:14:15 PM) (Source: Service Control Manager) (User: ) (EventID: 7031)
Description: Der Dienst "Spybot-S&D 2 Security Center Service" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 60000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (04/26/2014 06:14:15 PM) (Source: Service Control Manager) (User: ) (EventID: 7031)
Description: Der Dienst "Spybot-S&D 2 Scanner Service" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 60000 Millisekunden durchgeführt: Neustart des Diensts.

Error: (04/26/2014 06:10:33 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT-AUTORITÄT) (EventID: 20)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Sicherheitsupdate für Microsoft .NET Framework 4 unter Windows XP, Windows Server 2003, Windows Vista, Windows 7, Windows Server 2008, Windows Server 2008 R2 für x64-basierte Systeme (KB2901110)


Microsoft Office Sessions:
=========================

==================== Memory info =========================== 

Percentage of memory in use: 31%
Total physical RAM: 8189.49 MB
Available physical RAM: 5589.74 MB
Total Pagefile: 16377.16 MB
Available Pagefile: 13188.07 MB
Total Virtual: 8192 MB
Available Virtual: 8191.83 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:119.24 GB) (Free:7.08 GB) NTFS
Drive d: () (Fixed) (Total:156.15 GB) (Free:23.68 GB) NTFS
Drive e: () (Fixed) (Total:309.51 GB) (Free:99.07 GB) NTFS
Drive f: (DHW 948) (CDROM) (Total:7.25 GB) (Free:0 GB) UDF
Drive j: (Verbatim HDD) (Fixed) (Total:1863.01 GB) (Free:804.34 GB) NTFS
Drive k: (State of Decay) (CDROM) (Total:1.69 GB) (Free:0 GB) CDFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: B9A9CD10)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=156 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=310 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 119 GB) (Disk ID: 3E39D186)
Partition 1: (Not Active) - (Size=119 GB) - (Type=07 NTFS)

========================================================
Disk: 2 (Size: 1863 GB) (Disk ID: F0511563)
Partition 1: (Not Active) - (Size=-198629564928) - (Type=07 NTFS)

==================== End Of Log ============================
         

Alt 14.05.2014, 19:17   #5
schrauber
/// the machine
/// TB-Ausbilder
 

Traffic ausgelastet - Schadsoftware oder anderes Problem? #Part 2 - Standard

Traffic ausgelastet - Schadsoftware oder anderes Problem? #Part 2



Nur en bissl Adware.

Downloade Dir bitte Malwarebytes Anti-Malware
  • Installiere das Programm in den vorgegebenen Pfad. (Bebilderte Anleitung zu MBAM)
  • Starte Malwarebytes' Anti-Malware (MBAM).
  • Klicke im Anschluss auf Scannen, wähle den Bedrohungssuchlauf aus und klicke auf Suchlauf starten.
  • Lass am Ende des Suchlaufs alle Funde (falls vorhanden) in die Quarantäne verschieben. Klicke dazu auf Auswahl entfernen.
  • Lass deinen Rechner ggf. neu starten, um die Bereinigung abzuschließen.
  • Starte MBAM, klicke auf Verlauf und dann auf Anwendungsprotokolle.
  • Wähle das neueste Scan-Protokoll aus und klicke auf Export. Wähle Textdatei (.txt) aus und speichere die Datei als mbam.txt auf dem Desktop ab. Das Logfile von MBAM findest du hier.
  • Füge den Inhalt der mbam.txt mit deiner nächsten Antwort hinzu.


Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade Junkware Removal Tool auf Deinen Desktop

  • Starte das Tool mit Doppelklick. Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten.
  • Drücke eine beliebige Taste, um das Tool zu starten.
  • Je nach System kann der Scan eine Weile dauern.
  • Wenn das Tool fertig ist wird das Logfile (JRT.txt) auf dem Desktop gespeichert und automatisch geöffnet.
  • Bitte poste den Inhalt der JRT.txt in Deiner nächsten Antwort.


und ein frisches FRST log bitte.

__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 15.05.2014, 18:59   #6
newTBuser
 
Traffic ausgelastet - Schadsoftware oder anderes Problem? #Part 2 - Standard

Traffic ausgelastet - Schadsoftware oder anderes Problem? #Part 2



So, bitte:

Code:
ATTFilter
 Malwarebytes Anti-Malware 
www.malwarebytes.org

Suchlauf Datum: 15.05.2014
Suchlauf-Zeit: 19:27:52
Logdatei: mbam.txt
Administrator: Ja

Version: 2.00.1.1004
Malware Datenbank: v2014.05.15.09
Rootkit Datenbank: v2014.03.27.01
Lizenz: Kostenlos
Malware Schutz: Deaktiviert
Bösartiger Webseiten Schutz: Deaktiviert
Chameleon: Deaktiviert

Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: Lex

Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 260729
Verstrichene Zeit: 5 Min, 59 Sek

Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Shuriken: Aktiviert
PUP: Aktiviert
PUM: Aktiviert

Prozesse: 0
(No malicious items detected)

Module: 0
(No malicious items detected)

Registrierungsschlüssel: 1
PUP.Optional.Softonic.A, HKU\S-1-5-21-1850565094-2237497682-2204916963-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SOFTONIC\Universal Downloader, In Quarantäne, [ac0983ce7902d561e056ee9bbd454fb1], 

Registrierungswerte: 0
(No malicious items detected)

Registrierungsdaten: 0
(No malicious items detected)

Ordner: 0
(No malicious items detected)

Dateien: 1
PUP.Optional.OpenCandy, C:\Users\Lex\Downloads\DTLite4491-0356.exe, In Quarantäne, [843185cca7d4e254d68172fb6f956a96], 

Physische Sektoren: 0
(No malicious items detected)


(end)
         

Code:
ATTFilter
# AdwCleaner v3.208 - Bericht erstellt am 15/05/2014 um 19:41:18
# Aktualisiert 11/05/2014 von Xplode
# Betriebssystem : Windows 7 Ultimate Service Pack 1 (64 bits)
# Benutzername : Lex - LEX-PC
# Gestartet von : C:\Users\Lex\Downloads\adwcleaner_3.208.exe
# Option : Löschen

***** [ Dienste ] *****


***** [ Dateien / Ordner ] *****

Ordner Gelöscht : C:\ProgramData\AVG Secure Search
Ordner Gelöscht : C:\Program Files (x86)\AVG Secure Search
Ordner Gelöscht : C:\Program Files (x86)\Common Files\AVG Secure Search
Ordner Gelöscht : C:\Users\Lex\AppData\Local\AVG Secure Search
Ordner Gelöscht : C:\Users\Lex\AppData\LocalLow\AVG Secure Search
Datei Gelöscht : C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\avg-secure-search.xml

***** [ Verknüpfungen ] *****


***** [ Registrierungsdatenbank ] *****

Wert Gelöscht : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [Avg@toolbar]
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\protocols\handler\viprotocol
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\avg-secure-search-installer_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\avg-secure-search-installer_RASMANCS
Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [vProt]
Schlüssel Gelöscht : HKLM\SOFTWARE\MozillaPlugins\@avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_foxit-pdf-reader_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_foxit-pdf-reader_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{408CFAD9-8F13-4747-8EC7-770A339C7237}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{933B95E2-E7B7-4AD9-B952-7AC336682AE3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{B658800C-F66E-4EF3-AB85-6C0C227862A9}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{F25AF245-4A81-40DC-92F9-E9021F207706}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{07CAC314-E962-4F78-89AB-DD002F2490EE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C6FDD0C3-266A-4DC3-B459-28C697C44CDC}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F25AF245-4A81-40DC-92F9-E9021F207706}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706}
Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{95B7759C-8C7F-4BF1-B163-73684A933233}]
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706}
Schlüssel Gelöscht : HKCU\Software\APN PIP
Schlüssel Gelöscht : HKCU\Software\AVG Secure Search
Schlüssel Gelöscht : HKCU\Software\OCS
Schlüssel Gelöscht : HKCU\Software\Softonic
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\adawarebp
Schlüssel Gelöscht : HKLM\Software\AVG Secure Search
Schlüssel Gelöscht : HKLM\Software\AVG Security Toolbar
Schlüssel Gelöscht : HKLM\Software\PIP
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG Secure Search

***** [ Browser ] *****

-\\ Internet Explorer v11.0.9600.17041


*************************

AdwCleaner[R0].txt - [5604 octets] - [15/05/2014 19:39:47]
AdwCleaner[S0].txt - [5298 octets] - [15/05/2014 19:41:18]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [5358 octets] ##########
         
Code:
ATTFilter
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 7 Ultimate x64
Ran by Lex on 15.05.2014 at 19:47:53,37
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\adawarebp



~~~ Files



~~~ Folders



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 15.05.2014 at 19:52:21,30
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
         

FRST Logfile:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 14-05-2014
Ran by Lex (administrator) on LEX-PC on 15-05-2014 20:02:07
Running from C:\Users\Lex\Downloads
Platform: Windows 7 Ultimate Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal


==================== Processes (Whitelisted) =================

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgfws.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
() C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareTray.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe
(Foxit Corporation) C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe
() C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareService.exe
(SeriousBit) C:\Program Files\NetBalancer\SeriousBit.NetBalancer.Service.exe
() C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgui.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler64.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Thisisu) C:\Users\Lex\Desktop\JRT.exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG2014\avgcfgex.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13662936 2013-10-24] (Realtek Semiconductor)
HKLM\...\Run: [] => [X]
HKLM\...\Run: [AdAwareTray] => C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareTray.exe [4114264 2014-01-23] ()
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642656 2013-03-28] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\AVG2014\avgui.exe [5180432 2014-04-06] (AVG Technologies CZ, s.r.o.)
HKLM-x32\...\Run: [amd_dc_opt] => C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe [77824 2008-07-22] (AMD)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101584 2014-04-25] (Safer-Networking Ltd.)
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
HKU\S-1-5-21-1850565094-2237497682-2204916963-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [1825984 2014-04-24] (Valve Corporation)
HKU\S-1-5-21-1850565094-2237497682-2204916963-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd)
HKU\S-1-5-21-1850565094-2237497682-2204916963-1000\...\Run: [EPSON Stylus D78 Series] => C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIBGE.EXE [213504 2007-10-29] (SEIKO EPSON CORPORATION)
HKU\S-1-5-21-1850565094-2237497682-2204916963-1000\...\Run: [Spybot-S&D Cleaning] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [4566984 2014-04-25] (Safer-Networking Ltd.)
HKU\S-1-5-21-1850565094-2237497682-2204916963-1000\...\MountPoints2: {04c1e4c0-4a93-11e2-a2d1-806e6f6e6963} - K:\Autorun.exe
HKU\S-1-5-21-1850565094-2237497682-2204916963-1000\...\MountPoints2: {3673e7dc-35ba-11e3-a9aa-6cf049034604} - H:\AutoRun.exe
HKU\S-1-5-21-1850565094-2237497682-2204916963-1000\...\MountPoints2: {ea383f96-f2f5-11e2-904d-6cf049034604} - H:\iLinker.exe

==================== Internet (Whitelisted) ====================

ProxyServer: localhost:8080
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x1309AA8F4C5ECF01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Free Download Manager - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files (x86)\Free Download Manager\iefdm2.dll (FreeDownloadManager.ORG)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1

FireFox:
========
FF ProfilePath: C:\Users\Lex\AppData\Roaming\Mozilla\Firefox\C:\Users\Lex\AppData\Roaming\Mozilla\Profiles\jzfrxa7d.Standard-Benutzer
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_206.dll ()
FF Plugin: @microsoft.com/GENUINE - C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.0.6 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.0.7 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.4 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_206.dll ()
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation)
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - C:\Windows\system32\Wat\npWatWeb.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll (Ubisoft)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml

==================== Services (Whitelisted) =================

R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984 2013-03-28] (Advanced Micro Devices, Inc.)
R2 avgfws; C:\Program Files (x86)\AVG\AVG2014\avgfws.exe [1473280 2014-04-03] (AVG Technologies CZ, s.r.o.)
S2 AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe [3645456 2014-04-18] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe [291912 2014-03-27] (AVG Technologies CZ, s.r.o.)
R2 FoxitCloudUpdateService; C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe [239680 2014-02-19] (Foxit Corporation)
R2 LavasoftAdAwareService11; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5354.0\AdAwareService.exe [702744 2014-01-23] ()
R2 NetBalancerService; C:\Program Files\NetBalancer\SeriousBit.NetBalancer.Service.exe [10240 2012-08-03] (SeriousBit)
R2 PassThru Service; C:\Program Files (x86)\HTC\Internet Pass-Through\PassThruSvr.exe [167424 2012-12-07] ()
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738200 2014-04-25] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2081752 2014-04-25] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)
S2 vToolbarUpdater18.1.0; C:\Program Files (x86)\Common Files\AVG Secure Search\vToolbarUpdater\18.1.0\ToolbarUpdater.exe [X]

==================== Drivers (Whitelisted) ====================

R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [153368 2014-03-27] (AVG Technologies CZ, s.r.o.)
R1 Avgfwfd; C:\Windows\System32\DRIVERS\avgfwd6a.sys [57144 2013-09-26] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [237336 2014-04-18] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [192792 2014-03-27] (AVG Technologies CZ, s.r.o.)
R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [236824 2014-03-27] (AVG Technologies CZ, s.r.o.)
R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [324376 2014-03-27] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [130840 2014-03-31] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [32536 2014-03-27] (AVG Technologies CZ, s.r.o.)
R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [274200 2014-03-31] (AVG Technologies CZ, s.r.o.)
R1 avgtp; C:\Windows\system32\drivers\avgtpx64.sys [50464 2014-04-29] (AVG Technologies)
R3 Nbdrv; C:\Windows\System32\DRIVERS\nbdrv.sys [41256 2011-05-18] (SeriousBit)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [381440 2013-11-10] (Duplex Secure Ltd.)
R3 Trufos; C:\Windows\System32\DRIVERS\Trufos.sys [329800 2013-07-17] (BitDefender S.R.L.)
U3 a3xzfyui; C:\Windows\System32\Drivers\a3xzfyui.sys [0 ] (Advanced Micro Devices)
S3 ATICDSDr; \??\C:\Users\Lex\AppData\Local\Temp\ATICDSDr.sys [X]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X]
S3 tsusbhub; system32\drivers\tsusbhub.sys [X]
S3 VGPU; System32\drivers\rdvgkmd.sys [X]
S3 X6va017; \??\C:\Windows\SysWOW64\Drivers\X6va017 [X]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-05-15 20:00 - 2014-05-15 20:00 - 00000000 ____D () C:\Users\Lex\Downloads\FRST-OlderVersion
2014-05-15 19:52 - 2014-05-15 19:52 - 00000716 _____ () C:\Users\Lex\Desktop\JRT.txt
2014-05-15 19:47 - 2014-05-15 19:47 - 00000000 ____D () C:\Windows\ERUNT
2014-05-15 19:37 - 2014-05-15 19:41 - 00000000 ____D () C:\AdwCleaner
2014-05-15 19:37 - 2014-05-15 19:37 - 00001417 _____ () C:\Users\Lex\Desktop\mbam.txt
2014-05-15 19:29 - 2014-05-15 19:43 - 00000648 _____ () C:\Windows\PFRO.log
2014-05-15 19:18 - 2014-05-15 19:36 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-05-15 19:17 - 2014-05-15 19:17 - 00001106 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2014-05-15 19:17 - 2014-05-15 19:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2014-05-15 19:17 - 2014-05-15 19:17 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-05-15 19:17 - 2014-05-15 19:17 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 
2014-05-15 19:17 - 2014-04-03 09:51 - 00088280 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-05-15 19:17 - 2014-04-03 09:51 - 00063192 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-05-15 19:17 - 2014-04-03 09:50 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-05-15 17:45 - 2014-05-15 17:46 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Lex\Downloads\mbam-setup-2.0.1.1004.exe
2014-05-15 17:45 - 2014-05-15 17:45 - 01325827 _____ () C:\Users\Lex\Downloads\adwcleaner_3.208.exe
2014-05-15 17:45 - 2014-05-15 17:45 - 01016261 _____ (Thisisu) C:\Users\Lex\Desktop\JRT.exe
2014-05-14 22:55 - 2014-05-15 19:43 - 00000224 _____ () C:\Windows\setupact.log
2014-05-14 22:55 - 2014-05-14 22:55 - 00000000 _____ () C:\Windows\setuperr.log
2014-05-13 22:04 - 2014-05-13 22:12 - 00000000 ____D () C:\Users\Lex\Documents\Stronghold Crusader
2014-05-13 22:03 - 2014-05-13 22:03 - 00000000 ____D () C:\Program Files (x86)\Firefly Studios
2014-05-11 20:34 - 2014-05-13 20:14 - 00000000 ____D () C:\Users\Lex\AppData\Local\Daedalic Entertainment
2014-05-11 20:28 - 2014-05-13 20:41 - 00000000 ____D () C:\Program Files (x86)\Daedalic Entertainment
2014-05-08 21:07 - 2014-05-15 20:02 - 00011976 _____ () C:\Users\Lex\Downloads\FRST.txt
2014-05-08 21:03 - 2014-05-15 20:02 - 00000000 ____D () C:\FRST
2014-05-08 21:02 - 2014-05-15 20:00 - 02066944 _____ (Farbar) C:\Users\Lex\Downloads\FRST64.exe
2014-05-08 20:21 - 2014-05-08 20:21 - 00010325 _____ () C:\Users\Lex\Desktop\hijackthis.log
2014-05-04 18:23 - 2014-03-06 10:15 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-05-04 18:15 - 2014-05-04 18:15 - 00001395 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2014-05-04 18:15 - 2014-05-04 18:15 - 00001383 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2014-05-04 18:15 - 2014-05-04 18:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
2014-05-04 18:15 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe
2014-05-04 18:12 - 2014-05-04 18:12 - 00000085 _____ () C:\Windows\wininit.ini
2014-05-04 14:12 - 2014-05-04 14:12 - 00023636 _____ () C:\Users\Lex\Downloads\heartbleed_ext-3.0-fx.xpi.zip
2014-05-04 01:51 - 2014-05-15 19:43 - 00002305 _____ () C:\Users\Public\Desktop\Ad-Aware Antivirus.lnk
2014-05-04 01:51 - 2014-05-04 01:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ad-Aware Antivirus
2014-05-04 01:46 - 2014-05-04 01:46 - 00000000 ____D () C:\Program Files\Lavasoft
2014-05-04 01:45 - 2014-05-04 01:45 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\Lavasoft
2014-05-04 01:41 - 2014-05-04 01:41 - 00003126 _____ () C:\Windows\System32\Tasks\{D43BBE67-9423-4B58-9961-F0F8ADDD0629}
2014-05-04 01:41 - 2014-05-04 01:41 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\LavasoftStatistics
2014-05-04 01:40 - 2014-05-04 01:40 - 00000000 ____D () C:\Program Files\Common Files\Lavasoft
2014-05-04 01:37 - 2014-05-04 01:37 - 01727624 _____ () C:\Users\Lex\Downloads\Adaware_Installer.exe
2014-05-04 01:37 - 2014-05-04 01:37 - 00000000 ____D () C:\ProgramData\Lavasoft
2014-05-04 01:25 - 2014-05-04 01:49 - 00000000 ____D () C:\Users\Lex\Downloads\backups
2014-05-01 19:56 - 2014-05-01 19:56 - 00004096 _____ () C:\Users\Lex\Documents\mm.db
2014-05-01 19:49 - 2014-05-01 19:49 - 00004096 _____ () C:\Users\Lex\Documents\öö.db
2014-05-01 19:44 - 2014-05-15 20:01 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\NetSpeedMonitor
2014-05-01 19:43 - 2014-05-01 19:43 - 00000000 ____D () C:\Program Files\NetSpeedMonitor
2014-05-01 19:42 - 2014-05-01 19:42 - 03652608 _____ () C:\Users\Lex\Downloads\netspeedmonitor_2_5_4_0_x64_setup.msi
2014-05-01 19:35 - 2014-03-06 23:53 - 02925760 _____ (Sysinternals - www.sysinternals.com) C:\Users\Lex\Desktop\procexp.exe
2014-05-01 19:29 - 2014-05-01 19:29 - 01243655 _____ () C:\Users\Lex\Downloads\ProcessExplorer_16.02.zip
2014-05-01 19:28 - 2014-05-01 19:28 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-05-01 19:28 - 2014-05-01 19:28 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-05-01 16:48 - 2014-05-01 16:19 - 00000848 _____ () C:\Users\Lex\Documents\indexfile.txt
2014-05-01 16:46 - 2014-05-01 16:46 - 00001163 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-05-01 16:46 - 2014-05-01 16:46 - 00001151 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-05-01 16:44 - 2014-05-01 16:44 - 00283376 _____ (Mozilla) C:\Users\Lex\Downloads\Firefox Setup Stub 29.0.exe
2014-05-01 16:36 - 2014-05-01 16:36 - 00001479 _____ () C:\Users\Lex\Desktop\GoogleChromePortable - Verknüpfung.lnk
2014-05-01 16:32 - 2013-12-25 01:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2014-05-01 16:32 - 2013-12-25 00:48 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-05-01 16:32 - 2013-11-26 10:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2014-05-01 16:32 - 2013-11-23 00:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2014-05-01 16:27 - 2014-05-01 16:29 - 00189473 _____ () C:\Users\Lex\Downloads\fw_speedport_w500v_v1.37.bin.part
2014-05-01 16:19 - 2014-05-01 16:19 - 13060357 _____ () C:\Users\Lex\Documents\Firefox 29.0 (de) - 2014-05-01.pcv
2014-05-01 16:19 - 2014-05-01 16:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MozBackup
2014-05-01 16:19 - 2014-05-01 16:19 - 00000000 ____D () C:\Program Files (x86)\MozBackup
2014-05-01 16:18 - 2014-05-01 16:18 - 00000000 ____D () C:\Users\Lex\Desktop\Neuer Ordner
2014-05-01 16:16 - 2014-05-01 16:18 - 01035926 _____ () C:\Users\Lex\Downloads\MozBackup-1.5.1-EN.exe
2014-05-01 16:16 - 2014-05-01 16:17 - 01416144 _____ (PortableApps.com) C:\Users\Lex\Downloads\GoogleChromePortable_34.0.1847.131_online.paf.exe
2014-04-29 20:21 - 2014-04-29 20:26 - 07995486 _____ () C:\Users\Lex\Downloads\qotrdecoder-win32-0.0.247-r1132.zip
2014-04-29 17:23 - 2014-04-29 17:23 - 00001112 _____ () C:\Users\Lex\Downloads\Attack_the_Block_14.04.13_22-25_pro7_100_TVOON_DE.mpg.HQ.avi.cutlist
2014-04-28 00:02 - 2014-04-28 00:02 - 00000000 __SHD () C:\Users\Lex\AppData\Local\EmieUserList
2014-04-28 00:02 - 2014-04-28 00:02 - 00000000 __SHD () C:\Users\Lex\AppData\Local\EmieSiteList
2014-04-26 18:40 - 2009-06-10 23:00 - 00000824 _____ () C:\Windows\system32\Drivers\etc\hosts.20140426-184007.backup
2014-04-26 18:23 - 2014-04-26 18:23 - 00000110 ___RH () C:\Users\Lex\Downloads\Stinger.opt
2014-04-26 18:23 - 2014-04-26 18:23 - 00000000 ____D () C:\Quarantine
2014-04-26 18:14 - 2014-04-26 18:23 - 00000000 ____D () C:\Program Files (x86)\stinger
2014-04-26 18:14 - 2014-04-26 18:15 - 00000852 _____ () C:\Users\Lex\Downloads\Stinger_26042014_181415.html
2014-04-26 18:13 - 2014-04-26 18:13 - 10642792 _____ (McAfee Inc) C:\Users\Lex\Downloads\stinger32.exe
2014-04-26 17:48 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE
2014-04-26 17:41 - 2014-04-26 17:41 - 23549440 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 17387008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 13551104 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 11745792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 05784064 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 04254720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 02767360 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-04-26 17:41 - 2014-04-26 17:41 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-04-26 17:41 - 2014-04-26 17:41 - 02260480 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 02178048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 02043904 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-04-26 17:41 - 2014-04-26 17:41 - 01967104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-04-26 17:41 - 2014-04-26 17:41 - 01789440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 01400832 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 01143808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00628736 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2014-04-26 17:41 - 2014-04-26 17:41 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2014-04-26 17:41 - 2014-04-26 17:41 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-04-26 17:41 - 2014-04-26 17:41 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-04-26 17:41 - 2014-04-26 17:41 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00244224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-04-26 17:41 - 2014-04-26 17:41 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2014-04-26 17:41 - 2014-04-26 17:41 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-04-26 17:27 - 2014-04-26 17:27 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-04-26 17:27 - 2014-04-26 17:27 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2014-04-26 17:27 - 2014-04-26 17:27 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2014-04-26 17:27 - 2014-04-26 17:27 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2014-04-26 17:27 - 2014-04-26 17:27 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2014-04-26 17:27 - 2014-04-26 17:27 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2014-04-26 17:27 - 2014-04-26 17:27 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2014-04-26 17:27 - 2014-04-26 17:27 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2014-04-26 17:27 - 2014-04-26 17:27 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2014-04-26 17:26 - 2014-04-26 17:26 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2014-04-26 17:26 - 2014-04-26 17:26 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2014-04-26 17:26 - 2014-04-26 17:26 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-04-26 17:22 - 2014-04-26 17:22 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2014-04-26 17:22 - 2014-04-26 17:22 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2014-04-26 17:19 - 2014-04-26 17:19 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking
2014-04-26 17:16 - 2014-05-04 18:15 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2014-04-26 17:16 - 2014-05-04 18:15 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-04-26 17:03 - 2014-04-26 17:07 - 11582218 _____ () C:\Users\Lex\Downloads\stinger64-12.1.0.877.exe
2014-04-26 16:59 - 2014-05-08 20:19 - 00010325 _____ () C:\Users\Lex\Downloads\hijackthis.log
2014-04-26 16:57 - 2014-04-26 16:57 - 00585431 _____ () C:\Users\Lex\Downloads\AntiBundestrojaner.zip
2014-04-26 16:55 - 2014-04-26 16:55 - 00388608 _____ (Trend Micro Inc.) C:\Users\Lex\Downloads\HijackThis.exe
2014-04-26 16:50 - 2014-04-26 16:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-04-26 16:50 - 2014-04-14 20:13 - 00096168 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-04-26 16:50 - 2014-04-14 20:05 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-04-26 16:50 - 2014-04-14 20:05 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-04-26 16:50 - 2014-04-14 20:04 - 00175016 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-04-26 16:49 - 2014-04-26 16:50 - 00005449 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_55-b14.log
2014-04-26 16:48 - 2014-04-26 16:49 - 00000000 ____D () C:\Windows\system32\MRT
2014-04-26 16:42 - 2014-04-26 16:42 - 00002054 _____ () C:\Users\Public\Desktop\Foxit Reader.lnk
2014-04-26 16:42 - 2014-04-26 16:42 - 00000000 ____D () C:\Users\Public\Foxit Software
2014-04-26 16:42 - 2014-04-26 16:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader
2014-04-26 15:18 - 2013-07-09 07:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2014-04-26 15:18 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2014-04-26 15:18 - 2013-02-15 08:08 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2014-04-26 15:18 - 2013-02-15 08:06 - 03717632 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-04-26 15:18 - 2013-02-15 08:02 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll
2014-04-26 15:18 - 2013-02-15 06:37 - 03217408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2014-04-26 15:18 - 2013-02-15 06:34 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
2014-04-26 15:18 - 2013-02-15 05:25 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2014-04-26 15:17 - 2014-03-04 11:44 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2014-04-26 15:17 - 2014-03-04 11:44 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2014-04-26 15:17 - 2014-03-04 11:44 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2014-04-26 15:17 - 2014-03-04 11:44 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2014-04-26 15:17 - 2014-03-04 11:44 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2014-04-26 15:17 - 2014-03-04 11:17 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2014-04-26 15:17 - 2014-03-04 11:16 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2014-04-26 15:17 - 2014-03-04 11:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2014-04-26 15:17 - 2014-03-04 11:16 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2014-04-26 15:17 - 2014-03-04 10:09 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2014-04-26 15:17 - 2014-03-04 10:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2014-04-26 15:17 - 2013-10-12 04:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2014-04-26 15:17 - 2013-10-12 04:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2014-04-26 15:17 - 2013-10-12 04:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2014-04-26 15:17 - 2013-10-12 04:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2014-04-26 15:17 - 2013-10-12 04:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2014-04-26 15:17 - 2013-10-05 22:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2014-04-26 15:17 - 2013-10-05 21:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2014-04-26 15:17 - 2013-08-02 04:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2014-04-26 15:17 - 2013-08-02 04:13 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 04:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:50 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 03:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2014-04-26 15:17 - 2013-08-02 02:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 02:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 02:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2014-04-26 15:17 - 2013-08-02 02:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2014-04-26 15:17 - 2013-07-09 07:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2014-04-26 15:17 - 2013-07-09 07:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2014-04-26 15:17 - 2013-07-09 06:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2014-04-26 15:17 - 2013-07-09 06:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2014-04-26 15:17 - 2013-02-27 08:02 - 00111448 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2014-04-26 15:17 - 2013-02-27 07:48 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2014-04-26 15:17 - 2013-02-27 07:47 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2014-04-26 15:17 - 2013-02-27 06:49 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2014-04-26 15:16 - 2013-11-12 04:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-04-26 15:16 - 2013-11-12 04:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-04-26 15:16 - 2013-09-25 04:26 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-04-26 15:16 - 2013-09-25 04:26 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2014-04-26 15:16 - 2013-09-25 04:23 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2014-04-26 15:16 - 2013-09-25 04:23 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2014-04-26 15:16 - 2013-09-25 04:23 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2014-04-26 15:16 - 2013-09-25 04:22 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-04-26 15:16 - 2013-09-25 04:21 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-04-26 15:16 - 2013-09-25 04:21 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-04-26 15:16 - 2013-09-25 03:58 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-04-26 15:16 - 2013-09-25 03:57 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-04-26 15:16 - 2013-09-25 03:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-04-26 15:16 - 2013-09-25 03:56 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2014-04-26 15:16 - 2013-09-25 03:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2014-04-26 15:16 - 2013-07-04 14:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2014-04-26 15:15 - 2013-05-13 07:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll
2014-04-26 15:15 - 2013-05-13 05:43 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe
2014-04-26 15:15 - 2013-05-13 05:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe
2014-04-26 15:15 - 2013-05-13 05:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll
2014-04-26 15:14 - 2013-08-02 04:12 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2014-04-26 15:14 - 2013-08-02 04:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2014-04-26 15:14 - 2013-08-02 03:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2014-04-26 15:14 - 2013-08-02 02:59 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2014-04-26 15:14 - 2013-07-26 04:24 - 14172672 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-04-26 15:14 - 2013-07-26 04:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2014-04-26 15:14 - 2013-07-26 03:55 - 12872704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2014-04-26 15:14 - 2013-07-26 03:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll
2014-04-26 15:13 - 2013-07-25 11:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2014-04-26 15:13 - 2013-07-25 10:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2014-04-26 15:13 - 2013-04-12 16:45 - 01656680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2014-04-26 15:10 - 2013-10-04 04:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2014-04-26 15:10 - 2013-10-04 03:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2014-04-26 15:10 - 2013-06-26 00:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2014-04-26 15:10 - 2012-11-29 00:56 - 00054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys
2014-04-26 15:10 - 2012-11-29 00:56 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll
2014-04-26 15:10 - 2012-11-29 00:56 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
2014-04-26 15:10 - 2012-11-01 07:43 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2014-04-26 15:10 - 2012-11-01 06:47 - 01389568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2014-04-26 15:09 - 2013-09-28 03:09 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2014-04-26 15:09 - 2013-07-09 07:51 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2014-04-26 15:09 - 2013-07-09 06:52 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2014-04-26 15:09 - 2013-07-03 06:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2014-04-26 15:09 - 2013-07-03 06:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2014-04-26 15:09 - 2013-01-03 08:00 - 00288088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2014-04-26 15:09 - 2012-08-22 20:12 - 00376688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2014-04-26 15:08 - 2014-02-07 03:23 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-04-26 15:08 - 2014-02-04 04:32 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2014-04-26 15:08 - 2014-02-04 04:04 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2014-04-26 15:08 - 2013-10-12 04:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2014-04-26 15:08 - 2013-10-12 04:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2014-04-26 15:08 - 2013-10-12 04:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx
2014-04-26 15:08 - 2013-10-12 04:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2014-04-26 15:08 - 2013-10-12 03:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2014-04-26 15:08 - 2013-10-12 03:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2014-04-26 15:08 - 2013-10-12 03:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe
2014-04-26 15:08 - 2013-10-12 03:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe
2014-04-26 15:08 - 2013-10-03 04:23 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-04-26 15:08 - 2013-10-03 04:00 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-04-26 15:08 - 2013-04-26 07:51 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2014-04-26 15:08 - 2013-04-26 06:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll
2014-04-26 15:08 - 2013-02-12 06:12 - 00019968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys
2014-04-26 15:07 - 2013-12-06 04:30 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-04-26 15:07 - 2013-12-06 04:30 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-04-26 15:07 - 2013-12-06 04:02 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-04-26 15:07 - 2013-12-06 04:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-04-26 15:07 - 2013-10-19 04:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2014-04-26 15:07 - 2013-10-19 03:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2014-04-26 15:07 - 2013-07-04 14:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2014-04-26 15:07 - 2013-07-04 13:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2014-04-26 15:06 - 2014-01-29 04:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2014-04-26 15:06 - 2014-01-29 04:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2014-04-26 15:06 - 2013-11-27 03:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2014-04-26 15:06 - 2013-11-27 03:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2014-04-26 15:06 - 2013-11-27 03:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2014-04-26 15:06 - 2013-11-27 03:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2014-04-26 15:06 - 2013-11-27 03:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2014-04-26 15:06 - 2013-11-27 03:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2014-04-26 15:06 - 2013-11-27 03:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2014-04-26 15:06 - 2013-08-01 14:09 - 00983488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2014-04-26 15:06 - 2013-07-20 12:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2014-04-26 15:06 - 2013-07-20 12:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-04-26 15:06 - 2013-07-12 12:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2014-04-26 15:06 - 2013-06-06 07:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2014-04-26 15:06 - 2013-06-06 07:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2014-04-26 15:06 - 2013-06-06 07:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2014-04-26 15:06 - 2013-06-06 07:47 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2014-04-26 15:06 - 2013-06-06 06:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2014-04-26 15:06 - 2013-06-06 06:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2014-04-26 15:06 - 2013-06-06 06:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2014-04-26 15:06 - 2013-06-06 05:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2014-04-26 15:06 - 2013-06-06 05:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2014-04-26 15:06 - 2013-06-06 05:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2014-04-26 15:06 - 2013-04-10 08:01 - 00265064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2014-04-26 15:06 - 2011-02-03 13:25 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2014-04-26 15:05 - 2012-11-23 05:13 - 00068608 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe
2014-04-26 15:04 - 2013-06-15 06:35 - 01111552 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-04-26 15:04 - 2013-06-15 06:32 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2014-04-25 00:44 - 2014-04-25 00:44 - 00013775 _____ () C:\Users\Lex\Downloads\Ihr Gutschein von Meinungsstudie.html
2014-04-21 18:05 - 2014-04-21 18:05 - 00000000 ____D () C:\Users\Lex\Desktop\GodMode.{ED7BA470-8E54-465E-825C-99712043E01C}
2014-04-19 14:03 - 2014-04-19 14:04 - 01134665 _____ () C:\Users\Lex\Downloads\Fachaufgabe.7z
2014-04-18 15:01 - 2014-04-18 15:01 - 00237336 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsdrivera.sys
2014-04-18 13:48 - 2014-04-18 13:49 - 16926908 _____ () C:\Users\Lex\Downloads\CityMaps2Go-playLite-release.apk
2014-04-18 01:28 - 2014-04-18 01:30 - 23963686 _____ () C:\Users\Lex\Downloads\hdnezwbshdhz6574jf764hf637dh.zip
2014-04-17 22:25 - 2014-05-11 18:36 - 00000000 ____D () C:\Users\Lex\Documents\Cross Fire
2014-04-17 22:25 - 2014-04-25 19:54 - 00000000 ____D () C:\CFLog
2014-04-17 21:40 - 2014-04-17 21:40 - 00000828 _____ () C:\Users\Lex\Desktop\Crossfire Europe.lnk
2014-04-17 21:40 - 2014-04-17 21:40 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Crossfire Europe
2014-04-17 21:40 - 2014-04-17 21:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crossfire Europe
2014-04-17 21:36 - 2014-04-17 21:36 - 00000000 ____D () C:\SG Interactive
2014-04-17 19:56 - 2014-04-17 19:56 - 00000176 _____ () C:\console.log
2014-04-17 19:56 - 2014-04-17 19:56 - 00000000 ____D () C:\Users\Lex\Desktop\CrossFire
2014-04-16 23:30 - 2014-04-16 23:31 - 00000000 ____D () C:\Users\Lex\Documents\LearningModules
2014-04-16 23:30 - 2014-04-16 23:30 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\LearnLift
2014-04-16 23:30 - 2014-04-16 23:30 - 00000000 ____D () C:\Users\Lex\AppData\Local\LearnLift
2014-04-16 23:21 - 2014-04-16 23:21 - 01062288 _____ () C:\Users\Lex\Downloads\MemoryLifter-lnstall.exe
2014-04-16 23:20 - 2014-04-16 23:20 - 00000000 _____ () C:\Users\Lex\Downloads\memorylifter_21362.exe
2014-04-16 23:10 - 2014-04-16 23:23 - 00544768 _____ () C:\Users\Lex\Documents\Formeln.mlx
2014-04-16 23:08 - 2014-04-16 23:08 - 00000000 ____D () C:\Program Files\Microsoft Synchronization Services
2014-04-16 23:08 - 2014-04-16 23:08 - 00000000 ____D () C:\Program Files\Microsoft SQL Server Compact Edition
2014-04-16 23:08 - 2014-04-16 23:08 - 00000000 ____D () C:\Program Files (x86)\Microsoft Synchronization Services
2014-04-16 23:08 - 2014-04-16 23:08 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2014-04-16 23:02 - 2014-04-16 23:06 - 14608706 _____ (Igor Pavlov) C:\Users\Lex\Downloads\MemoryLifter-Setup.exe

==================== One Month Modified Files and Folders =======

2014-05-15 20:02 - 2014-05-08 21:07 - 00011976 _____ () C:\Users\Lex\Downloads\FRST.txt
2014-05-15 20:02 - 2014-05-08 21:03 - 00000000 ____D () C:\FRST
2014-05-15 20:01 - 2014-05-01 19:44 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\NetSpeedMonitor
2014-05-15 20:00 - 2014-05-15 20:00 - 00000000 ____D () C:\Users\Lex\Downloads\FRST-OlderVersion
2014-05-15 20:00 - 2014-05-08 21:02 - 02066944 _____ (Farbar) C:\Users\Lex\Downloads\FRST64.exe
2014-05-15 19:52 - 2014-05-15 19:52 - 00000716 _____ () C:\Users\Lex\Desktop\JRT.txt
2014-05-15 19:50 - 2009-07-14 19:58 - 00696832 _____ () C:\Windows\system32\perfh007.dat
2014-05-15 19:50 - 2009-07-14 19:58 - 00148128 _____ () C:\Windows\system32\perfc007.dat
2014-05-15 19:50 - 2009-07-14 07:13 - 01613340 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-05-15 19:50 - 2009-07-14 06:45 - 00014224 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-05-15 19:50 - 2009-07-14 06:45 - 00014224 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-05-15 19:47 - 2014-05-15 19:47 - 00000000 ____D () C:\Windows\ERUNT
2014-05-15 19:46 - 2012-10-23 22:12 - 01632747 _____ () C:\Windows\WindowsUpdate.log
2014-05-15 19:43 - 2014-05-15 19:29 - 00000648 _____ () C:\Windows\PFRO.log
2014-05-15 19:43 - 2014-05-14 22:55 - 00000224 _____ () C:\Windows\setupact.log
2014-05-15 19:43 - 2014-05-04 01:51 - 00002305 _____ () C:\Users\Public\Desktop\Ad-Aware Antivirus.lnk
2014-05-15 19:43 - 2013-08-12 22:11 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-05-15 19:43 - 2013-06-13 17:37 - 00001100 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-05-15 19:43 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-05-15 19:41 - 2014-05-15 19:37 - 00000000 ____D () C:\AdwCleaner
2014-05-15 19:37 - 2014-05-15 19:37 - 00001417 _____ () C:\Users\Lex\Desktop\mbam.txt
2014-05-15 19:36 - 2014-05-15 19:18 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-05-15 19:32 - 2013-09-06 19:47 - 00000000 ____D () C:\ProgramData\MFAData
2014-05-15 19:28 - 2013-06-13 17:37 - 00001104 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-05-15 19:17 - 2014-05-15 19:17 - 00001106 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2014-05-15 19:17 - 2014-05-15 19:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2014-05-15 19:17 - 2014-05-15 19:17 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-05-15 19:17 - 2014-05-15 19:17 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 
2014-05-15 17:46 - 2014-05-15 17:45 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Lex\Downloads\mbam-setup-2.0.1.1004.exe
2014-05-15 17:45 - 2014-05-15 17:45 - 01325827 _____ () C:\Users\Lex\Downloads\adwcleaner_3.208.exe
2014-05-15 17:45 - 2014-05-15 17:45 - 01016261 _____ (Thisisu) C:\Users\Lex\Desktop\JRT.exe
2014-05-14 22:55 - 2014-05-14 22:55 - 00000000 _____ () C:\Windows\setuperr.log
2014-05-13 22:12 - 2014-05-13 22:04 - 00000000 ____D () C:\Users\Lex\Documents\Stronghold Crusader
2014-05-13 22:03 - 2014-05-13 22:03 - 00000000 ____D () C:\Program Files (x86)\Firefly Studios
2014-05-13 22:03 - 2012-10-23 22:29 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-05-13 22:03 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2014-05-13 22:02 - 2012-12-20 12:48 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\DAEMON Tools Lite
2014-05-13 20:41 - 2014-05-11 20:28 - 00000000 ____D () C:\Program Files (x86)\Daedalic Entertainment
2014-05-13 20:14 - 2014-05-11 20:34 - 00000000 ____D () C:\Users\Lex\AppData\Local\Daedalic Entertainment
2014-05-13 18:03 - 2013-05-15 17:37 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\vlc
2014-05-11 20:33 - 2014-03-21 21:47 - 01590298 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-05-11 20:28 - 2013-10-14 22:24 - 00000000 ____D () C:\Program Files (x86)\CapsuleGames
2014-05-11 20:21 - 2013-11-09 22:53 - 00000000 ____D () C:\Users\Lex\Downloads\TreeSizeFreePortable
2014-05-11 20:16 - 2013-05-10 23:51 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\Free Download Manager
2014-05-11 18:36 - 2014-04-17 22:25 - 00000000 ____D () C:\Users\Lex\Documents\Cross Fire
2014-05-08 20:21 - 2014-05-08 20:21 - 00010325 _____ () C:\Users\Lex\Desktop\hijackthis.log
2014-05-08 20:19 - 2014-04-26 16:59 - 00010325 _____ () C:\Users\Lex\Downloads\hijackthis.log
2014-05-07 17:23 - 2013-06-13 17:37 - 00004100 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-05-07 17:23 - 2013-06-13 17:37 - 00003848 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-05-04 18:15 - 2014-05-04 18:15 - 00001395 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2014-05-04 18:15 - 2014-05-04 18:15 - 00001383 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2014-05-04 18:15 - 2014-05-04 18:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
2014-05-04 18:15 - 2014-04-26 17:16 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2014-05-04 18:15 - 2014-04-26 17:16 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-05-04 18:12 - 2014-05-04 18:12 - 00000085 _____ () C:\Windows\wininit.ini
2014-05-04 15:33 - 2013-09-06 19:50 - 00000000 ____D () C:\ProgramData\AVG2014
2014-05-04 14:12 - 2014-05-04 14:12 - 00023636 _____ () C:\Users\Lex\Downloads\heartbleed_ext-3.0-fx.xpi.zip
2014-05-04 01:51 - 2014-05-04 01:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ad-Aware Antivirus
2014-05-04 01:49 - 2014-05-04 01:25 - 00000000 ____D () C:\Users\Lex\Downloads\backups
2014-05-04 01:46 - 2014-05-04 01:46 - 00000000 ____D () C:\Program Files\Lavasoft
2014-05-04 01:45 - 2014-05-04 01:45 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\Lavasoft
2014-05-04 01:41 - 2014-05-04 01:41 - 00003126 _____ () C:\Windows\System32\Tasks\{D43BBE67-9423-4B58-9961-F0F8ADDD0629}
2014-05-04 01:41 - 2014-05-04 01:41 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\LavasoftStatistics
2014-05-04 01:40 - 2014-05-04 01:40 - 00000000 ____D () C:\Program Files\Common Files\Lavasoft
2014-05-04 01:37 - 2014-05-04 01:37 - 01727624 _____ () C:\Users\Lex\Downloads\Adaware_Installer.exe
2014-05-04 01:37 - 2014-05-04 01:37 - 00000000 ____D () C:\ProgramData\Lavasoft
2014-05-01 19:56 - 2014-05-01 19:56 - 00004096 _____ () C:\Users\Lex\Documents\mm.db
2014-05-01 19:49 - 2014-05-01 19:49 - 00004096 _____ () C:\Users\Lex\Documents\öö.db
2014-05-01 19:46 - 2013-06-29 18:26 - 00000000 ____D () C:\Users\Lex\AppData\Local\Adobe
2014-05-01 19:43 - 2014-05-01 19:43 - 00000000 ____D () C:\Program Files\NetSpeedMonitor
2014-05-01 19:42 - 2014-05-01 19:42 - 03652608 _____ () C:\Users\Lex\Downloads\netspeedmonitor_2_5_4_0_x64_setup.msi
2014-05-01 19:29 - 2014-05-01 19:29 - 01243655 _____ () C:\Users\Lex\Downloads\ProcessExplorer_16.02.zip
2014-05-01 19:28 - 2014-05-01 19:28 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-05-01 19:28 - 2014-05-01 19:28 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-05-01 16:48 - 2013-01-29 17:39 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\Mozilla
2014-05-01 16:46 - 2014-05-01 16:46 - 00001163 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-05-01 16:46 - 2014-05-01 16:46 - 00001151 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-05-01 16:46 - 2013-11-16 15:10 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-05-01 16:44 - 2014-05-01 16:44 - 00283376 _____ (Mozilla) C:\Users\Lex\Downloads\Firefox Setup Stub 29.0.exe
2014-05-01 16:36 - 2014-05-01 16:36 - 00001479 _____ () C:\Users\Lex\Desktop\GoogleChromePortable - Verknüpfung.lnk
2014-05-01 16:29 - 2014-05-01 16:27 - 00189473 _____ () C:\Users\Lex\Downloads\fw_speedport_w500v_v1.37.bin.part
2014-05-01 16:19 - 2014-05-01 16:48 - 00000848 _____ () C:\Users\Lex\Documents\indexfile.txt
2014-05-01 16:19 - 2014-05-01 16:19 - 13060357 _____ () C:\Users\Lex\Documents\Firefox 29.0 (de) - 2014-05-01.pcv
2014-05-01 16:19 - 2014-05-01 16:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MozBackup
2014-05-01 16:19 - 2014-05-01 16:19 - 00000000 ____D () C:\Program Files (x86)\MozBackup
2014-05-01 16:18 - 2014-05-01 16:18 - 00000000 ____D () C:\Users\Lex\Desktop\Neuer Ordner
2014-05-01 16:18 - 2014-05-01 16:16 - 01035926 _____ () C:\Users\Lex\Downloads\MozBackup-1.5.1-EN.exe
2014-05-01 16:17 - 2014-05-01 16:16 - 01416144 _____ (PortableApps.com) C:\Users\Lex\Downloads\GoogleChromePortable_34.0.1847.131_online.paf.exe
2014-04-30 23:00 - 2013-10-15 18:52 - 00344864 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-04-29 20:26 - 2014-04-29 20:21 - 07995486 _____ () C:\Users\Lex\Downloads\qotrdecoder-win32-0.0.247-r1132.zip
2014-04-29 17:23 - 2014-04-29 17:23 - 00001112 _____ () C:\Users\Lex\Downloads\Attack_the_Block_14.04.13_22-25_pro7_100_TVOON_DE.mpg.HQ.avi.cutlist
2014-04-29 16:45 - 2013-09-06 19:52 - 00003728 _____ () C:\Program Files (x86)\Mozilla Firefoxavg-secure-search.xml
2014-04-29 16:44 - 2013-09-06 19:52 - 00050464 _____ (AVG Technologies) C:\Windows\system32\Drivers\avgtpx64.sys
2014-04-28 00:02 - 2014-04-28 00:02 - 00000000 __SHD () C:\Users\Lex\AppData\Local\EmieUserList
2014-04-28 00:02 - 2014-04-28 00:02 - 00000000 __SHD () C:\Users\Lex\AppData\Local\EmieSiteList
2014-04-26 21:49 - 2013-09-30 20:28 - 00084136 _____ () C:\Users\Lex\AppData\Local\GDIPFONTCACHEV1.DAT
2014-04-26 18:40 - 2009-07-14 04:34 - 00000824 ____R () C:\Windows\system32\Drivers\etc\hosts.20140504-182607.backup
2014-04-26 18:23 - 2014-04-26 18:23 - 00000110 ___RH () C:\Users\Lex\Downloads\Stinger.opt
2014-04-26 18:23 - 2014-04-26 18:23 - 00000000 ____D () C:\Quarantine
2014-04-26 18:23 - 2014-04-26 18:14 - 00000000 ____D () C:\Program Files (x86)\stinger
2014-04-26 18:15 - 2014-04-26 18:14 - 00000852 _____ () C:\Users\Lex\Downloads\Stinger_26042014_181415.html
2014-04-26 18:15 - 2012-10-23 23:04 - 00000000 ____D () C:\Windows\Panther
2014-04-26 18:13 - 2014-04-26 18:13 - 10642792 _____ (McAfee Inc) C:\Users\Lex\Downloads\stinger32.exe
2014-04-26 18:06 - 2013-01-24 20:17 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\Skype
2014-04-26 18:05 - 2014-02-06 20:30 - 00000000 ____D () C:\Users\Lex\AppData\Local\Htc
2014-04-26 18:05 - 2012-10-23 22:10 - 00001425 _____ () C:\Users\Lex\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-04-26 18:05 - 2012-10-23 22:10 - 00000000 ___RD () C:\Users\Lex\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-04-26 18:05 - 2012-10-23 22:10 - 00000000 ___RD () C:\Users\Lex\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-04-26 17:59 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files\Windows Defender
2014-04-26 17:59 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2014-04-26 17:59 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\zh-HK
2014-04-26 17:59 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\tr-TR
2014-04-26 17:59 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\zh-HK
2014-04-26 17:59 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\tr-TR
2014-04-26 17:59 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-04-26 17:58 - 2009-07-14 20:18 - 00000000 ____D () C:\Program Files\Windows Journal
2014-04-26 17:41 - 2014-04-26 17:41 - 23549440 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 17387008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 13551104 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 11745792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 05784064 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 04254720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 02767360 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-04-26 17:41 - 2014-04-26 17:41 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-04-26 17:41 - 2014-04-26 17:41 - 02260480 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 02178048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 02043904 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-04-26 17:41 - 2014-04-26 17:41 - 01967104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-04-26 17:41 - 2014-04-26 17:41 - 01789440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 01400832 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 01143808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00628736 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2014-04-26 17:41 - 2014-04-26 17:41 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2014-04-26 17:41 - 2014-04-26 17:41 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-04-26 17:41 - 2014-04-26 17:41 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-04-26 17:41 - 2014-04-26 17:41 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00244224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-04-26 17:41 - 2014-04-26 17:41 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2014-04-26 17:41 - 2014-04-26 17:41 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2014-04-26 17:41 - 2014-04-26 17:41 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2014-04-26 17:41 - 2014-04-26 17:41 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-04-26 17:27 - 2014-04-26 17:27 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-04-26 17:27 - 2014-04-26 17:27 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2014-04-26 17:27 - 2014-04-26 17:27 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2014-04-26 17:27 - 2014-04-26 17:27 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2014-04-26 17:27 - 2014-04-26 17:27 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2014-04-26 17:27 - 2014-04-26 17:27 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2014-04-26 17:27 - 2014-04-26 17:27 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2014-04-26 17:27 - 2014-04-26 17:27 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2014-04-26 17:27 - 2014-04-26 17:27 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2014-04-26 17:26 - 2014-04-26 17:26 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2014-04-26 17:26 - 2014-04-26 17:26 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2014-04-26 17:26 - 2014-04-26 17:26 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-04-26 17:24 - 2014-04-26 17:24 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-04-26 17:22 - 2014-04-26 17:22 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2014-04-26 17:22 - 2014-04-26 17:22 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2014-04-26 17:19 - 2014-04-26 17:19 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking
2014-04-26 17:07 - 2014-04-26 17:03 - 11582218 _____ () C:\Users\Lex\Downloads\stinger64-12.1.0.877.exe
2014-04-26 17:05 - 2013-08-16 14:34 - 00000000 ____D () C:\Windows\system32\appmgmt
2014-04-26 16:59 - 2012-10-23 22:10 - 00000000 ____D () C:\Users\Lex\AppData\Local\VirtualStore
2014-04-26 16:57 - 2014-04-26 16:57 - 00585431 _____ () C:\Users\Lex\Downloads\AntiBundestrojaner.zip
2014-04-26 16:55 - 2014-04-26 16:55 - 00388608 _____ (Trend Micro Inc.) C:\Users\Lex\Downloads\HijackThis.exe
2014-04-26 16:50 - 2014-04-26 16:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-04-26 16:50 - 2014-04-26 16:49 - 00005449 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_55-b14.log
2014-04-26 16:50 - 2013-11-24 20:17 - 00000000 ____D () C:\ProgramData\Oracle
2014-04-26 16:50 - 2013-11-24 20:17 - 00000000 ____D () C:\Program Files (x86)\Java
2014-04-26 16:49 - 2014-04-26 16:48 - 00000000 ____D () C:\Windows\system32\MRT
2014-04-26 16:42 - 2014-04-26 16:42 - 00002054 _____ () C:\Users\Public\Desktop\Foxit Reader.lnk
2014-04-26 16:42 - 2014-04-26 16:42 - 00000000 ____D () C:\Users\Public\Foxit Software
2014-04-26 16:42 - 2014-04-26 16:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader
2014-04-26 16:42 - 2013-06-13 17:59 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\Foxit Software
2014-04-25 19:54 - 2014-04-17 22:25 - 00000000 ____D () C:\CFLog
2014-04-25 19:16 - 2013-09-06 19:52 - 00000981 _____ () C:\Users\Public\Desktop\AVG 2014.lnk
2014-04-25 00:44 - 2014-04-25 00:44 - 00013775 _____ () C:\Users\Lex\Downloads\Ihr Gutschein.html
2014-04-21 18:47 - 2014-04-13 15:13 - 00000000 ____D () C:\Program Files (x86)\SP-Downloader
2014-04-21 18:05 - 2014-04-21 18:05 - 00000000 ____D () C:\Users\Lex\Desktop\GodMode.{ED7BA470-8E54-465E-825C-99712043E01C}
2014-04-19 14:04 - 2014-04-19 14:03 - 01134665 _____ () C:\Users\Lex\Downloads\Fachaufg.7z
2014-04-18 15:01 - 2014-04-18 15:01 - 00237336 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsdrivera.sys
2014-04-18 13:49 - 2014-04-18 13:48 - 16926908 _____ () C:\Users\Lex\Downloads\CityMaps2Go-playLite-release.apk
2014-04-18 01:30 - 2014-04-18 01:28 - 23963686 _____ () C:\Users\Lex\Downloads\hdnezwbshdhz6574jf764hf637dh.zip
2014-04-17 21:40 - 2014-04-17 21:40 - 00000828 _____ () C:\Users\Lex\Desktop\Crossfire Europe.lnk
2014-04-17 21:40 - 2014-04-17 21:40 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Crossfire Europe
2014-04-17 21:40 - 2014-04-17 21:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crossfire Europe
2014-04-17 21:36 - 2014-04-17 21:36 - 00000000 ____D () C:\SG Interactive
2014-04-17 19:56 - 2014-04-17 19:56 - 00000176 _____ () C:\console.log
2014-04-17 19:56 - 2014-04-17 19:56 - 00000000 ____D () C:\Users\Lex\Desktop\CrossFire
2014-04-16 23:31 - 2014-04-16 23:30 - 00000000 ____D () C:\Users\Lex\Documents\LearningModules
2014-04-16 23:30 - 2014-04-16 23:30 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\LearnLift
2014-04-16 23:30 - 2014-04-16 23:30 - 00000000 ____D () C:\Users\Lex\AppData\Local\LearnLift
2014-04-16 23:23 - 2014-04-16 23:10 - 00544768 _____ () C:\Users\Lex\Documents\Formeln.mlx
2014-04-16 23:21 - 2014-04-16 23:21 - 01062288 _____ () C:\Users\Lex\Downloads\MemoryLifter-lnstall.exe
2014-04-16 23:20 - 2014-04-16 23:20 - 00000000 _____ () C:\Users\Lex\Downloads\memorylifter_21362.exe
2014-04-16 23:08 - 2014-04-16 23:08 - 00000000 ____D () C:\Program Files\Microsoft Synchronization Services
2014-04-16 23:08 - 2014-04-16 23:08 - 00000000 ____D () C:\Program Files\Microsoft SQL Server Compact Edition
2014-04-16 23:08 - 2014-04-16 23:08 - 00000000 ____D () C:\Program Files (x86)\Microsoft Synchronization Services
2014-04-16 23:08 - 2014-04-16 23:08 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2014-04-16 23:06 - 2014-04-16 23:02 - 14608706 _____ (Igor Pavlov) C:\Users\Lex\Downloads\MemoryLifter-Setup.exe
2014-04-15 16:25 - 2013-07-22 19:48 - 00000000 ____D () C:\Users\Lex\AppData\Roaming\XnView

Some content of TEMP:
====================
C:\Users\Lex\AppData\Local\Temp\Quarantine.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2014-05-02 18:43

==================== End Of Log ============================
         
--- --- ---

Geändert von newTBuser (15.05.2014 um 19:11 Uhr)

Alt 16.05.2014, 11:49   #7
schrauber
/// the machine
/// TB-Ausbilder
 

Traffic ausgelastet - Schadsoftware oder anderes Problem? #Part 2 - Standard

Traffic ausgelastet - Schadsoftware oder anderes Problem? #Part 2




ESET Online Scanner

  • Hier findest du eine bebilderte Anleitung zu ESET Online Scanner
  • Lade und starte Eset Online Scanner
  • Setze einen Haken bei Ja, ich bin mit den Nutzungsbedingungen einverstanden und klicke auf Starten.
  • Aktiviere die "Erkennung von eventuell unerwünschten Anwendungen" und wähle folgende Einstellungen.
  • Klicke auf Starten.
  • Die Signaturen werden heruntergeladen, der Scan beginnt automatisch.
  • Klicke am Ende des Suchlaufs auf Fertig stellen.
  • Schließe das Fenster von ESET.
  • Explorer öffnen.
  • C:\Programme\Eset\EsetOnlineScanner\log.txt (bei 64 Bit auch C:\Programme (x86)\Eset\EsetOnlineScanner\log.txt) suchen und mit Deinem Editor öffnen (bebildert).
  • Logfile hier posten.
  • Deinstallation: Systemsteuerung => Software / Programme deinstallieren => Eset Online Scanner V3 entfernen.
  • Manuell folgenden Ordner löschen und Papierkorb leeren => C:\Programme\Eset


Downloade Dir bitte SecurityCheck und:

  • Speichere es auf dem Desktop.
  • Starte SecurityCheck.exe und folge den Anweisungen in der DOS-Box.
  • Wenn der Scan beendet wurde sollte sich ein Textdokument (checkup.txt) öffnen.
Poste den Inhalt bitte hier.

und ein frisches FRST log bitte. Noch Probleme?
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Antwort

Themen zu Traffic ausgelastet - Schadsoftware oder anderes Problem? #Part 2
anderes, ausgelastet, beitrag, poste, postet, problem, schadsoftware, thread, traffic, zwischen



Ähnliche Themen: Traffic ausgelastet - Schadsoftware oder anderes Problem? #Part 2


  1. Problem mit dem USB-Mikrofon - Liegts an einem Treiber oder an Schadsoftware?
    Alles rund um Windows - 25.09.2015 (1)
  2. AIVCUPlugin - Schadsoftware, oder nicht?
    Plagegeister aller Art und deren Bekämpfung - 12.09.2014 (2)
  3. Fehlermeldung bei Youtube und Facebook Virus ?oder anderes Problem?
    Alles rund um Windows - 01.07.2014 (4)
  4. Traffic ausgelastet - Schadsoftware oder anderes Problem?
    Überwachung, Datenschutz und Spam - 09.05.2014 (9)
  5. Fehlermeldung "Server ist ausgelastet" und anderes
    Log-Analyse und Auswertung - 02.11.2013 (1)
  6. Iminent oder andere Schadsoftware?
    Log-Analyse und Auswertung - 12.06.2013 (15)
  7. Schadsoftware eingefangen - ja oder nein?
    Plagegeister aller Art und deren Bekämpfung - 28.03.2013 (4)
  8. DNS Changer oder anderes Problem
    Log-Analyse und Auswertung - 26.12.2011 (11)
  9. Traffic Problem Wurm oder ähnliches
    Log-Analyse und Auswertung - 04.12.2011 (1)
  10. Trojaner, Virus oder anderes auf dem PC (XP)
    Plagegeister aller Art und deren Bekämpfung - 11.03.2011 (8)
  11. Grafikkarte oder Monitor defekt? Oder ganz was anderes?
    Netzwerk und Hardware - 09.06.2010 (3)
  12. Dropper.gen? oder anderes Problem
    Log-Analyse und Auswertung - 05.04.2009 (0)
  13. Trojaner oder anderes Problem?
    Log-Analyse und Auswertung - 17.08.2007 (2)
  14. trojaner oder doch was anderes??
    Plagegeister aller Art und deren Bekämpfung - 17.01.2007 (6)
  15. Errorsafe oder was anderes?!
    Log-Analyse und Auswertung - 31.03.2006 (10)
  16. mp3-virus? oder doch ein anderes problem?
    Plagegeister aller Art und deren Bekämpfung - 13.10.2005 (6)
  17. Trojaner ? oder was anderes ?
    Plagegeister aller Art und deren Bekämpfung - 02.04.2005 (2)

Zum Thema Traffic ausgelastet - Schadsoftware oder anderes Problem? #Part 2 - Hallo TB-Gemeinde, da sich mein ursprünglicher Thread inzwischen um die Bitte einer Logfile-Auswertung ergänzt hat mache ich hier noch einen Thread auf. http://www.trojaner-board.de/153602-...s-problem.html Problem ist noch immer das alte, bitte - Traffic ausgelastet - Schadsoftware oder anderes Problem? #Part 2...
Archiv
Du betrachtest: Traffic ausgelastet - Schadsoftware oder anderes Problem? #Part 2 auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.