Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Deinstallation von Iminent und SpyHunter

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 29.06.2013, 21:49   #1
AlexHarvey
 
Deinstallation von Iminent und SpyHunter - Standard

Deinstallation von Iminent und SpyHunter



Hallo,

seit ich vor ein paar Tagen ein Audiobearbeitungsprogramm runtergeladen habe, erscheint bei Facebook immer Werbung von Iminent. Das habe ich nun schon deinstalliert, aber es ist immernoch drauf. Die Werbung bei Facebook ist zwar verschwunden, doch wenn ich dort etwas posten will, dann erscheint dort immernoch eine Smiley-Toolbar. Nun habe ich mich belseb´n wie ich es deinstallieren kann und auf hxxp://www.2-removevirus.com fand ich einen Artikel, in dem SpyHunter empfohlen wurde. Mittlerweile habe ich in eurem Forum gelesen das auch das eine gefährliche Software ist. Wie krieg ich den ganzen Mist jetzt wieder los??? Und wie schlimm ist der Schaden jetzt ohnehin schon? Brauche dringend Hilfe!

*Greetz Alex

Alt 29.06.2013, 21:59   #2
aharonov
/// TB-Ausbilder
 
Deinstallation von Iminent und SpyHunter - Standard

Deinstallation von Iminent und SpyHunter



Hallo Alex,

der SpyHunter ist nicht gefährlich, sondern einfach Mist (genauso wie diese verschienen Anleitungen, die man im Internet findet).
Lass uns mal in dein System reinschauen:


Downloade dir bitte die für dein System passende Version (32-bit/64-bit) von Farbar Recovery Scan Tool (FRST) und speichere es auf den Desktop.
(Wenn du nicht sicher bist, welche du benötigst: Start -> Computer (Rechtsklick) -> Eigenschaften)
  • Starte dann FRST.
  • Ändere keine der Voreinstellungen und drücke auf Scan.
  • Wenn der Scan abgeschlossen ist, werden zwei Logfiles FRST.txt und Addition.txt erstellt und auf dem Desktop gespeichert.
  • Poste den Inhalt dieser beiden Logfiles bitte hier in deinen Thread.
__________________

__________________

Alt 29.06.2013, 22:09   #3
AlexHarvey
 
Deinstallation von Iminent und SpyHunter - Standard

Deinstallation von Iminent und SpyHunter



Danke für die Antwort Leo!

Editor:
FRST Logfile:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 29-06-2013 01
Ran by User (administrator) on 29-06-2013 23:04:55
Running from C:\Users\User\Downloads
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(AMD) C:\Windows\system32\atiesrxx.exe
(AMD) C:\Windows\system32\atieclxx.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
() C:\Users\User\AppData\Roaming\OCS\SM\SearchAnonymizerHelper.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
() C:\Program Files (x86)\1&1 Surf-Stick\AssistantServices.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
() C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
() C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Nullsoft, Inc.) C:\Program Files (x86)\Winamp\winampa.exe
(Ask) C:\Program Files (x86)\Ask.com\Updater\Updater.exe
() C:\Program Files (x86)\1&1 Surf-Stick\UIExec.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
(Enigma Software Group USA, LLC.) C:\Program Files\Enigma Software Group\SpyHunter\SpyHunter4.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [AtherosBtStack] "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe" [613024 2010-09-27] (Atheros Communications)
HKLM\...\Run: [AthBtTray] "C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe" [379040 2010-09-27] (Atheros Commnucations)
HKLM\...\Run: [Ocs_SM] C:\Users\User\AppData\Roaming\OCS\SM\SearchAnonymizer.exe [106496 2013-03-29] (OCS)
HKCU\...\Run: [Facebook Update] "C:\Users\User\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver [138096 2013-03-31] (Facebook Inc.)
MountPoints2: {cb91d5cb-81e8-11e2-a29c-806e6f6e6963} - D:\Bin\ASSETUP.exe
HKLM-x32\...\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r [2439072 2010-05-24] (VIA)
HKLM-x32\...\Run: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" [113288 2010-11-17] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min [345312 2013-06-07] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [WinampAgent] "C:\Program Files (x86)\Winamp\winampa.exe" [74752 2012-06-20] (Nullsoft, Inc.)
HKLM-x32\...\Run: []  [x]
HKLM-x32\...\Run: [ApnUpdater] "C:\Program Files (x86)\Ask.com\Updater\Updater.exe" [1718920 2013-02-02] (Ask)
HKLM-x32\...\Run: [UIExec] "C:\Program Files (x86)\1&1 Surf-Stick\UIExec.exe" [139088 2010-09-30] ()

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
HKLM SearchScopes: DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
HKLM-x32 SearchScopes: DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://www.delta-search.com/?q={searchTerms}&babsrc=SP_ss&mntrId=6CAEBC5FF48CE7DE&affID=119357&tt=250613_gr4&tsp=4928
SearchScopes: HKCU - {2977ACDA-ADA8-4FF2-BF2E-F2D52BE35425} URL = hxxp://www.pricerunner.de.anonymize-me.de/?to=707269636572756E6E65722E6465&st={searchTerms}&clid=182dddef-2fcf-4632-9678-3251e32b58ea&pid=freewarede&mode=bounce&k=0
SearchScopes: HKCU - {6059A698-7335-4B8D-9863-F3CD4455F23B} URL = hxxp://www.amazon.de.anonymize-me.de/?to=616D617A6F6E2E6465&st={searchTerms}&clid=182dddef-2fcf-4632-9678-3251e32b58ea&pid=freewarede&mode=bounce&k=0
SearchScopes: HKCU - {8DA97F7F-4C38-427D-B711-55C4B8950E4F} URL = hxxp://www.otto.de.anonymize-me.de/?to=6F74746F2E6465&st={searchTerms}&clid=182dddef-2fcf-4632-9678-3251e32b58ea&pid=freewarede&mode=bounce&k=0
SearchScopes: HKCU - {B5A68B82-9467-4FC9-9827-4C53CE309483} URL = hxxp://de.wikipedia.org.anonymize-me.de/?to=64652E77696B6970656469612E6F7267&st={searchTerms}&clid=182dddef-2fcf-4632-9678-3251e32b58ea&pid=freewarede&mode=bounce&k=0
SearchScopes: HKCU - {BE98FA11-D86F-4B96-8064-2EFB1EE6AD2C} URL = hxxp://www.myvideo.de.anonymize-me.de/?to=6D79766964656F2E6465&st={searchTerms}&clid=182dddef-2fcf-4632-9678-3251e32b58ea&pid=freewarede&mode=bounce&k=0
SearchScopes: HKCU - {F2DEE67F-BA6A-42C9-B3E2-4F3C7C048B0B} URL = hxxp://search.ebay.de.anonymize-me.de/?to=656261792E6465&st={searchTerms}&clid=182dddef-2fcf-4632-9678-3251e32b58ea&pid=freewarede&mode=bounce&k=0
BHO-x32: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
BHO-x32: Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask)
Toolbar: HKLM-x32 - Ask Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll (Ask)
Toolbar: HKCU - No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} -  No File
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1

FireFox:
========
FF ProfilePath: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\ib6a3ewj.default
FF user.js: detected! => C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\ib6a3ewj.default\user.js
FF Homepage: hxxp://www.google.de/
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_224.dll ()
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 - C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Extension: FireJump - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\ib6a3ewj.default\Extensions\firejump@firejump.net
FF Extension: Spartipps von SparPilot.com - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\ib6a3ewj.default\Extensions\sparpilot@sparpilot.com
FF Extension: VirtualDJ Toolbar - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\ib6a3ewj.default\Extensions\toolbar@ask.com
FF Extension: webbooster - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\ib6a3ewj.default\Extensions\webbooster@iminent.com.xpi
FF HKCU\...\Firefox\Extensions: [sparpilot@sparpilot.com] C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\ib6a3ewj.default\extensions\sparpilot@sparpilot.com
FF Extension: <?xml version="1.0" encoding="utf-8"?><!-- This Source Code Form is subject to the terms of the Mozilla Public
   - License, v. 2.0. If a copy of the MPL was not distributed with this
   - file, You can obtain one at hxxp://mozilla.org/MPL/2.0/. --><RDF xmlns="hxxp://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:em="hxxp://www.mozilla.org/2004/em-rdf#">
  <Description about="urn:mozilla:install-manifest">
    <em:id>sparpilot@sparpilot.com</em:id>
    <em:version>2.0.8</em:version>
    <em:type>2</em:type>
    <em:bootstrap>true</em:bootstrap>
    <em:unpack>true</em:unpack>

    <!-- Firefox -->
    <em:targetApplication>
      <Description>
        <em:id>{ec8030f7-c20a-464f-9b0e-13a3a9e97384}</em:id>
        <em:minVersion>15.0</em:minVersion>
        <em:maxVersion>16.*</em:maxVersion>
      </Description>
    </em:targetApplication>

    <!-- Front End MetaData -->
    <em:name>Spartipps von SparPilot.com</em:name>
    <em:description>Ganz einfach beim Online-Shopping bares Geld sparen. Täglich aktuelle Spartipps von SparPilot.com. 

Und so einfach funktioniert es:
--------------------------
Sie nutzen wie gewohnt Ihre bevorzugten Onlineshops und Versandhäuser. Wir blenden automatisch passende Gutscheine und Rabatte in unserer übersichtlichen Toolbar ein. Sie können unsere Spartipps direkt aufrufen und mit nur einem Klick nutzen um bares Geld zu sparen.

Wir wünschen viel Spaß beim günstigen Online-Shopping!</em:description>
    <em:creator>sparpilot.com</em:creator>
    <em:homepageURL>hxxp://www.sparpilot.com</em:homepageURL>
    <em:optionsType>2</em:optionsType>
    
  </Description>
</RDF> - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\ib6a3ewj.default\extensions\sparpilot@sparpilot.com
FF HKCU\...\Firefox\Extensions: [firejump@firejump.net] C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\ib6a3ewj.default\extensions\firejump@firejump.net
FF Extension: FireJump - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\ib6a3ewj.default\extensions\firejump@firejump.net

==================== Services (Whitelisted) =================

R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [86752 2013-04-10] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [110816 2013-04-10] (Avira Operations GmbH & Co. KG)
R2 ForceWare Intelligent Application Manager (IAM); C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe [496232 2010-01-21] ()
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 nSvcIp; C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe [209000 2010-01-21] ()
R2 SearchAnonymizer; C:\Users\User\AppData\Roaming\OCS\SM\SearchAnonymizerHelper.exe [40960 2013-03-29] ()
R2 UI Assistant Service; C:\Program Files (x86)\1&1 Surf-Stick\AssistantServices.exe [253264 2010-09-30] ()

==================== Drivers (Whitelisted) ====================

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [100712 2013-04-10] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [130016 2013-04-10] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-04-10] (Avira Operations GmbH & Co. KG)
R3 esgiguard; C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [13088 2011-03-02] ()
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
S3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [15416 2009-07-16] ()
S3 RTL85n64; C:\Windows\System32\DRIVERS\RTL85n64.sys [378368 2009-06-10] (Realtek)
S3 RtlWlanu; C:\Windows\System32\DRIVERS\rtwlanu.sys [1476752 2012-11-07] (Realtek Semiconductor Corporation                           )
S3 rusb3hub; C:\Windows\System32\DRIVERS\rusb3hub.sys [104448 2012-11-09] (Renesas Electronics Corporation)
S3 rusb3xhc; C:\Windows\System32\DRIVERS\rusb3xhc.sys [221184 2012-11-09] (Renesas Electronics Corporation)
S3 VUSB3HUB; C:\Windows\System32\DRIVERS\ViaHub3.sys [137728 2011-03-08] (VIA Technologies, Inc.)
S3 xhcdrv; C:\Windows\System32\DRIVERS\xhcdrv.sys [198144 2011-03-08] (VIA Technologies, Inc.)
S3 NTIOLib_1_0_C; \??\D:\NTIOLib_X64.sys [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-06-29 23:04 - 2013-06-29 23:04 - 00000000 ____D C:\FRST
2013-06-29 23:03 - 2013-06-29 23:03 - 01933592 ____A (Farbar) C:\Users\User\Downloads\FRST64.exe
2013-06-29 20:19 - 2013-06-29 20:19 - 00000000 ____A C:\autoexec.bat
2013-06-29 20:18 - 2013-06-29 20:19 - 00000000 ____D C:\sh4ldr
2013-06-29 20:18 - 2013-06-29 20:18 - 00002264 ____A C:\Users\User\Desktop\SpyHunter.lnk
2013-06-29 20:18 - 2013-06-29 20:18 - 00000000 ____D C:\Program Files\Enigma Software Group
2013-06-29 20:17 - 2013-06-29 22:17 - 00000000 ____D C:\Windows\BCD5545077AC4347B24F654B1189F8D4.TMP
2013-06-29 20:15 - 2013-06-29 20:15 - 00000005 ____A C:\Users\User\AppData\Roaming\WBPU-TTL.DAT
2013-06-29 19:15 - 2013-06-29 22:15 - 00000282 ____A C:\Windows\Tasks\DSite.job
2013-06-29 19:15 - 2013-06-29 19:15 - 00000000 ____D C:\Users\User\AppData\Roaming\DSite
2013-06-29 19:15 - 2013-06-29 19:15 - 00000000 ____D C:\Users\User\AppData\Roaming\BabSolution
2013-06-29 19:15 - 2013-06-29 19:15 - 00000000 ____D C:\Program Files (x86)\OpenIt
2013-06-29 19:11 - 2013-06-29 19:11 - 00793536 ____A C:\Users\User\Downloads\ZipOpenerSetup.exe
2013-06-29 17:13 - 2013-06-29 17:13 - 00001121 ____A C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2013-06-29 17:13 - 2013-06-29 17:13 - 00000000 ____D C:\Users\User\AppData\Roaming\Malwarebytes
2013-06-29 17:13 - 2013-06-29 17:13 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-06-29 17:13 - 2013-06-29 17:13 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-06-29 17:13 - 2013-04-04 14:50 - 00025928 ____A (Malwarebytes Corporation) C:\Windows\System32\Drivers\mbam.sys
2013-06-29 17:12 - 2013-06-29 17:12 - 10285040 ____A (Malwarebytes Corporation                                    ) C:\Users\User\Downloads\mbam-setup-1.75.0.1300.exe
2013-06-27 19:36 - 2013-06-29 19:15 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-06-26 23:43 - 2013-06-26 23:43 - 00001019 ____A C:\Users\User\Desktop\Audacity.lnk
2013-06-26 23:43 - 2013-06-26 23:43 - 00000000 ____D C:\Program Files (x86)\Audacity
2013-06-26 23:42 - 2013-06-26 23:42 - 21281052 ____A (Audacity Team                                               ) C:\Users\User\Downloads\audacity-win-2.0.3(1).exe
2013-06-24 22:00 - 2013-06-24 22:19 - 104857380 ____A C:\Users\User\Downloads\Cooler-Onkel.01-18.part2.rar
2013-06-24 21:52 - 2013-06-24 22:12 - 104857380 ____A C:\Users\User\Downloads\Cooler-Onkel.01-18.part1.rar
2013-06-24 21:51 - 2007-06-03 13:31 - 409284608 ____A C:\Users\User\Downloads\Die.Klimakatastrophe.von.1816.avi
2013-06-24 21:45 - 2013-06-24 22:36 - 42958020 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0304.part1.rar.part
2013-06-24 21:45 - 2013-06-24 21:51 - 103796000 ____A C:\Users\User\Downloads\klima1816.part4.rar
2013-06-23 23:40 - 2013-06-23 23:46 - 104857600 ____A C:\Users\User\Downloads\klima1816.part3.rar
2013-06-23 22:51 - 2013-01-19 19:53 - 00000000 ____D C:\Users\User\Downloads\SJ.SL.2AAHM0303
2013-06-23 22:40 - 2013-06-23 22:46 - 104857600 ____A C:\Users\User\Downloads\klima1816.part2.rar
2013-06-23 22:05 - 2013-06-23 22:51 - 54793125 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0303.part3.rar
2013-06-23 21:40 - 2013-06-23 21:46 - 104857600 ____A C:\Users\User\Downloads\klima1816.part1.rar
2013-06-23 21:39 - 2011-01-21 19:30 - 00000000 ____D C:\Users\User\Downloads\jk102
2013-06-23 21:35 - 2013-06-23 21:39 - 72887670 ____A C:\Users\User\Downloads\jk102.part2.rar
2013-06-23 20:35 - 2013-06-23 22:05 - 107857603 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0303.part2.rar
2013-06-23 20:35 - 2013-06-23 20:42 - 115000000 ____A C:\Users\User\Downloads\jk102.part1.rar
2013-06-23 13:00 - 2006-05-31 08:23 - 340183040 ____A C:\Users\User\Downloads\Pop2000 07 Popper Punks & Pershing.avi
2013-06-23 12:58 - 2013-06-23 13:00 - 36032900 ____A C:\Users\User\Downloads\DJPop2000_07_Popper_Punks.part4.rar
2013-06-23 08:09 - 2013-06-23 08:15 - 104857600 ____A C:\Users\User\Downloads\DJPop2000_07_Popper_Punks.part3.rar
2013-06-23 07:09 - 2013-06-23 07:15 - 104857600 ____A C:\Users\User\Downloads\DJPop2000_07_Popper_Punks.part2.rar
2013-06-23 06:09 - 2013-06-23 06:15 - 104857600 ____A C:\Users\User\Downloads\DJPop2000_07_Popper_Punks.part1.rar
2013-06-23 06:08 - 2009-11-12 10:57 - 606902272 ____A C:\Users\User\Downloads\Number.One.E003.Depeche.Mode.dTV.XViD.avi
2013-06-23 06:03 - 2013-06-23 06:08 - 101178920 ____A C:\Users\User\Downloads\Free.Nr.Zwei.003.part6.rar
2013-06-23 05:03 - 2013-06-23 05:08 - 104857600 ____A C:\Users\User\Downloads\Free.Nr.Zwei.003.part5.rar
2013-06-23 04:46 - 2013-06-23 04:52 - 104857600 ____A C:\Users\User\Downloads\Free.Nr.Zwei.003.part4.rar
2013-06-23 03:46 - 2013-06-23 03:52 - 104857600 ____A C:\Users\User\Downloads\Free.Nr.Zwei.003.part3.rar
2013-06-23 02:46 - 2013-06-23 02:52 - 104857600 ____A C:\Users\User\Downloads\Free.Nr.Zwei.003.part2.rar
2013-06-23 01:46 - 2013-06-23 01:52 - 104857600 ____A C:\Users\User\Downloads\Free.Nr.Zwei.003.part1.rar
2013-06-23 01:45 - 2010-05-02 10:43 - 1257936896 ____A C:\Users\User\Downloads\Between.the.Devil.and.the.Wide.Blue.Sea.FS.dTV.XViD-BeN.avi
2013-06-23 01:43 - 2013-06-23 01:45 - 38259062 ____A C:\Users\User\Downloads\Free.GPL.Devil.part13.rar
2013-06-23 00:43 - 2013-06-23 00:50 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part12.rar
2013-06-22 23:43 - 2013-06-22 23:49 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part11.rar
2013-06-22 22:43 - 2013-06-22 22:49 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part10.rar
2013-06-22 22:25 - 2013-06-22 23:10 - 107857603 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0303.part1.rar
2013-06-22 21:55 - 2013-06-22 22:18 - 55022299 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0301.part3.rar
2013-06-22 21:43 - 2013-06-22 21:50 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part09.rar
2013-06-22 21:09 - 2013-06-22 21:54 - 107857606 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0301.part2.rar
2013-06-22 21:09 - 2013-06-22 21:17 - 123961464 ____A C:\Users\User\Downloads\fcl - It's You (MikiDjFashion deep mix).wav
2013-06-22 21:06 - 2013-01-19 19:53 - 00000000 ____D C:\Users\User\Downloads\SJ.SL.2AAHM0306
2013-06-22 20:46 - 2013-06-22 20:47 - 06118921 ____A C:\Users\User\Downloads\Lana Del Rey - Young And Beautiful (elektromekanik & happy gutenberg remix).wav
2013-06-22 20:43 - 2013-06-22 20:53 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part08.rar
2013-06-20 23:25 - 2013-06-22 21:06 - 55360389 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0306.part3.rar
2013-06-20 22:48 - 2013-06-20 23:24 - 107857603 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0306.part2.rar
2013-06-20 22:44 - 2013-06-20 23:01 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part07.rar
2013-06-20 22:11 - 2013-06-20 22:47 - 107857603 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0306.part1.rar
2013-06-20 22:10 - 2013-01-19 19:53 - 00000000 ____D C:\Users\User\Downloads\SJ.SL.2AAHM0312
2013-06-20 22:01 - 2006-04-02 16:06 - 246503424 ____A C:\Users\User\Downloads\itg-stromberg-s02e06.avi
2013-06-20 21:51 - 2013-06-20 22:10 - 55396360 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0312.part3.rar
2013-06-20 21:07 - 2013-06-20 21:43 - 107857603 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0312.part2.rar
2013-06-20 20:40 - 2013-06-20 22:00 - 246503517 ____A C:\Users\User\Downloads\itg-stromberg-s02e06.avi.rar
2013-06-20 20:31 - 2013-06-20 21:07 - 107857603 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0312.part1.rar
2013-06-20 20:28 - 2013-06-20 20:35 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part06.rar
2013-06-20 20:24 - 2013-06-20 21:51 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part05.rar
2013-06-19 23:09 - 2013-06-19 23:15 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part04.rar
2013-06-19 22:23 - 2013-06-19 22:29 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part03.rar
2013-06-19 22:15 - 2013-06-19 22:16 - 55072724 ____A C:\Users\User\Downloads\Robyn - With Every Heartbeat (Frank LaFunk's Full Afterhour Edit).wav
2013-06-19 00:40 - 2013-06-19 00:45 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part02.rar
2013-06-18 23:40 - 2013-06-18 23:45 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part01.rar
2013-06-18 23:39 - 2009-06-21 17:18 - 405963400 ____A C:\Users\User\Downloads\Falco. Stil-Ikone der 1980er Jahre.avi
2013-06-18 23:38 - 2013-06-18 23:39 - 19219560 ____A C:\Users\User\Downloads\FREE.FalkIkon.part5.rar
2013-06-18 22:38 - 2013-06-18 22:44 - 107857600 ____A C:\Users\User\Downloads\FREE.FalkIkon.part4.rar
2013-06-18 21:38 - 2013-06-18 21:44 - 107857600 ____A C:\Users\User\Downloads\FREE.FalkIkon.part3.rar
2013-06-18 20:12 - 2013-06-18 20:13 - 60681644 ____A C:\Users\User\Downloads\FAUL - Changes (Feat Wad Ad).wav
2013-06-18 19:44 - 2013-06-18 19:45 - 36263414 ____A C:\Users\User\Downloads\Artenvielfalt MashUp.zip
2013-06-18 19:38 - 2013-06-18 20:43 - 107857600 ____A C:\Users\User\Downloads\FREE.FalkIkon.part2.rar
2013-06-18 18:14 - 2013-06-18 18:17 - 71442044 ____A C:\Users\User\Downloads\I Would Die For You (Mono Anubis Edit_Remix).wav
2013-06-18 18:07 - 2013-06-18 18:09 - 47980844 ____A C:\Users\User\Downloads\CocoRosie - Sunshine (David B. Edit)3.wav
2013-06-16 19:56 - 2013-06-16 20:02 - 107857600 ____A C:\Users\User\Downloads\FREE.FalkIkon.part1.rar
2013-06-16 19:56 - 2009-12-25 16:43 - 00000000 ____D C:\Users\User\Downloads\BBC.Hey.Joe.Das.kurze.wilde.Leben.des.Jimi.Hendrix.German.DOKU.dTV.XViD-SYSTEM
2013-06-16 19:55 - 2013-06-16 19:56 - 17916977 ____A C:\Users\User\Downloads\jimhen.part8.rar
2013-06-16 18:54 - 2013-06-16 19:00 - 104857600 ____A C:\Users\User\Downloads\jimhen.part7.rar
2013-06-16 18:46 - 2013-01-28 19:04 - 00000000 ____D C:\Users\User\Downloads\sinister.5.1.xvid-derschuft
2013-06-16 17:54 - 2013-06-16 18:00 - 104857600 ____A C:\Users\User\Downloads\jimhen.part6.rar
2013-06-16 16:54 - 2013-06-16 17:00 - 104857600 ____A C:\Users\User\Downloads\jimhen.part5.rar
2013-06-16 15:54 - 2013-06-16 16:00 - 104857600 ____A C:\Users\User\Downloads\jimhen.part4.rar
2013-06-16 15:25 - 2013-05-18 01:34 - 00008874 ____A C:\Users\User\Downloads\aoe-evil.nfo
2013-06-16 15:24 - 2013-06-16 18:46 - 317718528 ____A C:\Users\User\Downloads\sinister.5.1.xvid-derschuft.part1.rar
2013-06-16 14:54 - 2013-06-16 15:01 - 104857600 ____A C:\Users\User\Downloads\jimhen.part3.rar
2013-06-15 21:57 - 2009-07-25 04:07 - 496764438 ____A C:\Users\User\Downloads\Johnny Cash - The Last American Hero.avi
2013-06-15 21:25 - 2013-06-15 21:57 - 100000000 ____A C:\Users\User\Downloads\JohnnyCash.part4.rar
2013-06-15 21:25 - 2013-06-15 21:31 - 104857600 ____A C:\Users\User\Downloads\jimhen.part2.rar
2013-06-15 18:14 - 2013-06-15 18:14 - 00000000 ____D C:\Users\User\AppData\Local\CrashDumps
2013-06-15 15:35 - 2013-06-08 16:08 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2013-06-15 15:35 - 2013-06-08 16:07 - 19233792 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2013-06-15 15:35 - 2013-06-08 16:06 - 15404544 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2013-06-15 15:35 - 2013-06-08 16:06 - 02648064 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2013-06-15 15:35 - 2013-06-08 16:06 - 00526336 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2013-06-15 15:35 - 2013-06-08 14:28 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2013-06-15 15:35 - 2013-06-08 13:42 - 01141248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-06-15 15:35 - 2013-06-08 13:40 - 14327808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-06-15 15:35 - 2013-06-08 13:40 - 13760512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-06-15 15:35 - 2013-06-08 13:40 - 02046976 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-06-15 15:35 - 2013-06-08 13:40 - 00391168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-06-15 15:35 - 2013-06-08 13:13 - 02706432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-06-12 23:18 - 2013-05-17 03:25 - 02877440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-06-12 23:18 - 2013-05-17 03:25 - 01767936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-06-12 23:18 - 2013-05-17 03:25 - 00690688 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-06-12 23:18 - 2013-05-17 03:25 - 00493056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-06-12 23:18 - 2013-05-17 03:25 - 00109056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-06-12 23:18 - 2013-05-17 03:25 - 00061440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-06-12 23:18 - 2013-05-17 03:25 - 00039424 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-06-12 23:18 - 2013-05-17 03:25 - 00033280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-06-12 23:18 - 2013-05-17 02:59 - 02241024 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2013-06-12 23:18 - 2013-05-17 02:59 - 00051712 ____A (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe
2013-06-12 23:18 - 2013-05-17 02:58 - 03958784 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2013-06-12 23:18 - 2013-05-17 02:58 - 00855552 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
2013-06-12 23:18 - 2013-05-17 02:58 - 00603136 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll
2013-06-12 23:18 - 2013-05-17 02:58 - 00136704 ____A (Microsoft Corporation) C:\Windows\System32\iesysprep.dll
2013-06-12 23:18 - 2013-05-17 02:58 - 00067072 ____A (Microsoft Corporation) C:\Windows\System32\iesetup.dll
2013-06-12 23:18 - 2013-05-17 02:58 - 00053248 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2013-06-12 23:18 - 2013-05-17 02:58 - 00039936 ____A (Microsoft Corporation) C:\Windows\System32\iernonce.dll
2013-06-12 23:18 - 2013-05-14 14:23 - 00089600 ____A (Microsoft Corporation) C:\Windows\System32\RegisterIEPKEYs.exe
2013-06-12 23:18 - 2013-05-14 10:40 - 00071680 ____A (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-06-12 22:50 - 2013-06-12 22:55 - 104857600 ____A C:\Users\User\Downloads\jimhen.part1.rar
2013-06-12 22:50 - 2011-05-20 18:38 - 00000000 ____D C:\Users\User\Downloads\Disco.Love.Machine.-.Im.Beat.liegt.die.Sehnsucht.GERMAN.DOKU.FS.dTV.XViD-SiTiN
2013-06-12 22:48 - 2013-06-12 22:49 - 11257334 ____A C:\Users\User\Downloads\DiscoLove.part15.rar
2013-06-12 21:48 - 2013-06-12 21:54 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part14.rar
2013-06-12 21:37 - 2013-01-19 19:54 - 00000000 ____D C:\Users\User\Downloads\SJ.SL.2AAHM0323
2013-06-12 21:18 - 2013-06-12 21:37 - 55358333 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0323.part3.rar
2013-06-12 21:16 - 2013-05-13 07:51 - 01464320 ____A (Microsoft Corporation) C:\Windows\System32\crypt32.dll
2013-06-12 21:16 - 2013-05-13 07:51 - 00184320 ____A (Microsoft Corporation) C:\Windows\System32\cryptsvc.dll
2013-06-12 21:16 - 2013-05-13 07:51 - 00139776 ____A (Microsoft Corporation) C:\Windows\System32\cryptnet.dll
2013-06-12 21:16 - 2013-05-13 07:50 - 00052224 ____A (Microsoft Corporation) C:\Windows\System32\certenc.dll
2013-06-12 21:16 - 2013-05-13 06:45 - 01160192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2013-06-12 21:16 - 2013-05-13 06:45 - 00140288 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2013-06-12 21:16 - 2013-05-13 06:45 - 00103936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2013-06-12 21:16 - 2013-05-13 05:43 - 01192448 ____A (Microsoft Corporation) C:\Windows\System32\certutil.exe
2013-06-12 21:16 - 2013-05-13 05:08 - 00903168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe
2013-06-12 21:16 - 2013-05-13 05:08 - 00043008 ____A (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll
2013-06-12 21:16 - 2013-05-10 07:49 - 00030720 ____A (Microsoft Corporation) C:\Windows\System32\cryptdlg.dll
2013-06-12 21:16 - 2013-05-10 05:20 - 00024576 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll
2013-06-12 21:16 - 2013-05-08 08:39 - 01910632 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys
2013-06-12 21:16 - 2013-04-26 07:51 - 00751104 ____A (Microsoft Corporation) C:\Windows\System32\win32spl.dll
2013-06-12 21:16 - 2013-04-26 06:55 - 00492544 ____A (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll
2013-06-12 21:16 - 2013-04-26 01:30 - 01505280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2013-06-12 21:16 - 2013-04-17 09:02 - 01230336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2013-06-12 21:16 - 2013-04-17 08:24 - 01424384 ____A (Microsoft Corporation) C:\Windows\System32\WindowsCodecs.dll
2013-06-12 21:16 - 2013-04-01 00:52 - 01887232 ____A (Microsoft Corporation) C:\Windows\System32\d3d11.dll
2013-06-12 20:48 - 2013-06-12 20:54 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part13.rar
2013-06-12 20:42 - 2013-06-12 21:18 - 107857606 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0323.part2.rar
2013-06-12 20:05 - 2013-06-12 20:41 - 107857603 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0323.part1.rar
2013-06-12 19:48 - 2013-06-12 20:20 - 100000000 ____A C:\Users\User\Downloads\JohnnyCash.part3.rar
2013-06-12 19:48 - 2013-06-12 19:54 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part12.rar
2013-06-11 00:23 - 2013-06-11 00:29 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part11.rar
2013-06-10 23:23 - 2013-06-10 23:29 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part10.rar
2013-06-10 22:23 - 2013-06-10 22:30 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part09.rar
2013-06-10 21:24 - 2013-06-10 21:53 - 88878132 ____A C:\Users\User\Downloads\JohnnyCash.part5.rar
2013-06-10 21:23 - 2013-06-10 21:29 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part08.rar
2013-06-09 22:31 - 2013-06-09 22:37 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part07.rar
2013-06-09 21:53 - 2013-06-09 23:10 - 184066555 ____A C:\Users\User\Downloads\Rothwald.part2.rar.part
2013-06-09 21:31 - 2013-06-09 21:37 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part06.rar
2013-06-09 20:31 - 2013-06-09 20:37 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part05.rar
2013-06-09 20:25 - 2013-06-09 21:52 - 209715200 ____A C:\Users\User\Downloads\Rothwald.part1.rar
2013-06-09 20:01 - 2013-04-12 06:42 - 00010125 ____A C:\Users\User\Downloads\xf-savage_love_2012.nfo
2013-06-09 20:01 - 2013-04-11 22:56 - 940148736 ____A C:\Users\User\Downloads\xf-savagelove.avi
2013-06-09 19:32 - 2013-06-09 20:06 - 100000000 ____A C:\Users\User\Downloads\JohnnyCash.part2.rar
2013-06-09 19:31 - 2013-06-09 20:01 - 70533744 ____A C:\Users\User\Downloads\xf-savagelove.part09.rar
2013-06-09 19:31 - 2013-06-09 19:37 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part04.rar
2013-06-09 00:39 - 2013-06-09 01:01 - 110000002 ____A C:\Users\User\Downloads\xf-savagelove.part08.rar
2013-06-09 00:25 - 2013-06-09 00:31 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part03.rar
2013-06-09 00:16 - 2013-06-09 00:38 - 110000002 ____A C:\Users\User\Downloads\xf-savagelove.part07.rar
2013-06-08 23:39 - 2013-06-09 00:15 - 110000002 ____A C:\Users\User\Downloads\xf-savagelove.part06.rar
2013-06-08 23:25 - 2013-06-08 23:31 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part02.rar
2013-06-08 22:51 - 2013-06-08 23:24 - 100000000 ____A C:\Users\User\Downloads\JohnnyCash.part1.rar
2013-06-08 22:21 - 2013-06-08 22:27 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part01.rar
2013-06-08 22:13 - 2013-06-08 23:38 - 110000002 ____A C:\Users\User\Downloads\xf-savagelove.part05.rar
2013-06-07 12:33 - 2013-06-07 12:33 - 00083160 ____A (Avira GmbH) C:\Windows\System32\Drivers\avnetflt.sys
2013-06-06 19:35 - 2013-06-06 19:36 - 48140220 ____A C:\Users\User\Downloads\searching.wav
2013-06-06 17:34 - 2013-06-06 17:57 - 254778288 ____A C:\Users\User\Downloads\Teens Try Anal CD1.flv
2013-06-06 17:25 - 2013-06-06 17:32 - 82995335 ____A C:\Users\User\Downloads\Very_Young_Girl_Being_Fucked_Very_Brutally.rar
2013-06-06 15:41 - 2013-06-06 15:45 - 149896018 ____A C:\Users\User\Downloads\Suzy Gets Fucked.mp4
2013-06-04 20:57 - 2013-06-04 20:57 - 00002220 ____A C:\Users\Public\Desktop\Google Earth.lnk
2013-06-04 20:55 - 2013-06-04 20:56 - 25406864 ____A C:\Users\User\Downloads\GoogleEarthWin_7.1.exe
2013-06-01 18:28 - 2012-02-01 22:09 - 00000000 ____D C:\Users\User\Downloads\Cocaine.Bandits.2.2009.DOKU.BDRip.AC3.German.XviD-MB
2013-06-01 18:23 - 2013-06-01 18:28 - 91240637 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part15.rar
2013-06-01 17:23 - 2013-06-01 19:20 - 106954752 ____A C:\Users\User\Downloads\cia-pr1vt3ss-xvid.part04.rar
2013-06-01 17:23 - 2013-06-01 17:29 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part14.rar
2013-05-31 00:24 - 2013-05-31 00:30 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part13.rar
2013-05-30 23:24 - 2013-05-30 23:29 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part12.rar
2013-05-30 22:50 - 2013-05-31 00:02 - 110000002 ____A C:\Users\User\Downloads\xf-savagelove.part04.rar
2013-05-30 22:24 - 2013-05-30 22:29 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part11.rar
2013-05-30 21:24 - 2013-05-30 21:29 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part10.rar
2013-05-30 20:24 - 2013-05-30 20:29 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part09.rar
2013-05-30 19:23 - 2013-05-30 19:29 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part08.rar
2013-05-30 18:23 - 2013-05-30 18:29 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part07.rar
2013-05-30 17:23 - 2013-05-30 17:29 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part06.rar
2013-05-30 16:23 - 2013-05-30 16:29 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part05.rar
2013-05-30 15:23 - 2013-05-30 15:51 - 96204655 ____A C:\Users\User\Downloads\cia-pr1vt3ss-xvid.part09.rar
2013-05-30 15:23 - 2013-05-30 15:29 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part04.rar
2013-05-30 00:37 - 2013-05-30 00:47 - 340892178 ____A C:\Users\User\Downloads\Justice live @ Coachella 2012(720p_H.264-AAC).mp4
2013-05-30 00:34 - 2013-05-30 00:37 - 85611568 ____A C:\Users\User\Downloads\Justice live @ Coachella 2012(360p_H.264-AAC).mp4
2013-05-30 00:28 - 2013-05-30 00:55 - 106954752 ____A C:\Users\User\Downloads\cia-pr1vt3ss-xvid.part08.rar
2013-05-30 00:00 - 2013-05-30 00:27 - 106954752 ____A C:\Users\User\Downloads\cia-pr1vt3ss-xvid.part07.rar

==================== One Month Modified Files and Folders =======

2013-06-29 23:04 - 2013-06-29 23:04 - 00000000 ____D C:\FRST
2013-06-29 23:03 - 2013-06-29 23:03 - 01933592 ____A (Farbar) C:\Users\User\Downloads\FRST64.exe
2013-06-29 22:26 - 2013-03-20 23:43 - 00000884 ____A C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-06-29 22:17 - 2013-06-29 20:17 - 00000000 ____D C:\Windows\BCD5545077AC4347B24F654B1189F8D4.TMP
2013-06-29 22:15 - 2013-06-29 19:15 - 00000282 ____A C:\Windows\Tasks\DSite.job
2013-06-29 21:43 - 2011-05-07 01:46 - 01838660 ____A C:\Windows\WindowsUpdate.log
2013-06-29 21:01 - 2013-03-31 17:56 - 00000924 ____A C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2260964575-2753946872-1401531445-1001UA.job
2013-06-29 20:19 - 2013-06-29 20:19 - 00000000 ____A C:\autoexec.bat
2013-06-29 20:19 - 2013-06-29 20:18 - 00000000 ____D C:\sh4ldr
2013-06-29 20:18 - 2013-06-29 20:18 - 00002264 ____A C:\Users\User\Desktop\SpyHunter.lnk
2013-06-29 20:18 - 2013-06-29 20:18 - 00000000 ____D C:\Program Files\Enigma Software Group
2013-06-29 20:15 - 2013-06-29 20:15 - 00000005 ____A C:\Users\User\AppData\Roaming\WBPU-TTL.DAT
2013-06-29 19:55 - 2009-07-14 06:45 - 00026464 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-06-29 19:55 - 2009-07-14 06:45 - 00026464 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-06-29 19:52 - 2010-11-21 08:50 - 00654372 ____A C:\Windows\System32\perfh007.dat
2013-06-29 19:52 - 2010-11-21 08:50 - 00129986 ____A C:\Windows\System32\perfc007.dat
2013-06-29 19:52 - 2009-07-14 07:13 - 01500018 ____A C:\Windows\System32\PerfStringBackup.INI
2013-06-29 19:48 - 2013-02-28 18:56 - 00000035 ____A C:\Users\Public\Documents\AtherosServiceConfig.ini
2013-06-29 19:47 - 2011-05-16 01:38 - 00000000 ____D C:\ProgramData\NVIDIA
2013-06-29 19:47 - 2010-11-21 05:47 - 00102248 ____A C:\Windows\PFRO.log
2013-06-29 19:47 - 2009-07-14 07:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT
2013-06-29 19:47 - 2009-07-14 06:51 - 00063019 ____A C:\Windows\setupact.log
2013-06-29 19:15 - 2013-06-29 19:15 - 00000000 ____D C:\Users\User\AppData\Roaming\DSite
2013-06-29 19:15 - 2013-06-29 19:15 - 00000000 ____D C:\Users\User\AppData\Roaming\BabSolution
2013-06-29 19:15 - 2013-06-29 19:15 - 00000000 ____D C:\Program Files (x86)\OpenIt
2013-06-29 19:15 - 2013-06-27 19:36 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-06-29 19:11 - 2013-06-29 19:11 - 00793536 ____A C:\Users\User\Downloads\ZipOpenerSetup.exe
2013-06-29 18:01 - 2013-03-31 17:56 - 00000902 ____A C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2260964575-2753946872-1401531445-1001Core.job
2013-06-29 17:13 - 2013-06-29 17:13 - 00001121 ____A C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2013-06-29 17:13 - 2013-06-29 17:13 - 00000000 ____D C:\Users\User\AppData\Roaming\Malwarebytes
2013-06-29 17:13 - 2013-06-29 17:13 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-06-29 17:13 - 2013-06-29 17:13 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-06-29 17:12 - 2013-06-29 17:12 - 10285040 ____A (Malwarebytes Corporation                                    ) C:\Users\User\Downloads\mbam-setup-1.75.0.1300.exe
2013-06-29 17:01 - 2013-03-29 20:10 - 00000898 ____A C:\Windows\SysWOW64\InstallUtil.InstallLog
2013-06-29 16:38 - 2013-03-20 22:13 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-06-27 00:10 - 2013-03-24 13:26 - 00000000 ____D C:\Users\User\AppData\Roaming\Audacity
2013-06-26 23:43 - 2013-06-26 23:43 - 00001019 ____A C:\Users\User\Desktop\Audacity.lnk
2013-06-26 23:43 - 2013-06-26 23:43 - 00000000 ____D C:\Program Files (x86)\Audacity
2013-06-26 23:42 - 2013-06-26 23:42 - 21281052 ____A (Audacity Team                                               ) C:\Users\User\Downloads\audacity-win-2.0.3(1).exe
2013-06-26 22:07 - 2013-03-21 21:11 - 00000000 ____D C:\Users\User\AppData\Roaming\Winamp
2013-06-26 00:57 - 2013-03-25 22:52 - 00000000 ____D C:\Users\User\AppData\Roaming\SoftGrid Client
2013-06-24 22:47 - 2013-03-21 21:33 - 00000000 ____D C:\Users\User\AppData\Roaming\vlc
2013-06-24 22:36 - 2013-06-24 21:45 - 42958020 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0304.part1.rar.part
2013-06-24 22:19 - 2013-06-24 22:00 - 104857380 ____A C:\Users\User\Downloads\Cooler-Onkel.01-18.part2.rar
2013-06-24 22:12 - 2013-06-24 21:52 - 104857380 ____A C:\Users\User\Downloads\Cooler-Onkel.01-18.part1.rar
2013-06-24 21:51 - 2013-06-24 21:45 - 103796000 ____A C:\Users\User\Downloads\klima1816.part4.rar
2013-06-23 23:46 - 2013-06-23 23:40 - 104857600 ____A C:\Users\User\Downloads\klima1816.part3.rar
2013-06-23 23:21 - 2013-03-21 23:43 - 00000000 ____D C:\Users\User\Documents\VirtualDJ
2013-06-23 22:51 - 2013-06-23 22:05 - 54793125 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0303.part3.rar
2013-06-23 22:46 - 2013-06-23 22:40 - 104857600 ____A C:\Users\User\Downloads\klima1816.part2.rar
2013-06-23 22:05 - 2013-06-23 20:35 - 107857603 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0303.part2.rar
2013-06-23 21:46 - 2013-06-23 21:40 - 104857600 ____A C:\Users\User\Downloads\klima1816.part1.rar
2013-06-23 21:39 - 2013-06-23 21:35 - 72887670 ____A C:\Users\User\Downloads\jk102.part2.rar
2013-06-23 20:42 - 2013-06-23 20:35 - 115000000 ____A C:\Users\User\Downloads\jk102.part1.rar
2013-06-23 13:00 - 2013-06-23 12:58 - 36032900 ____A C:\Users\User\Downloads\DJPop2000_07_Popper_Punks.part4.rar
2013-06-23 08:15 - 2013-06-23 08:09 - 104857600 ____A C:\Users\User\Downloads\DJPop2000_07_Popper_Punks.part3.rar
2013-06-23 07:15 - 2013-06-23 07:09 - 104857600 ____A C:\Users\User\Downloads\DJPop2000_07_Popper_Punks.part2.rar
2013-06-23 06:15 - 2013-06-23 06:09 - 104857600 ____A C:\Users\User\Downloads\DJPop2000_07_Popper_Punks.part1.rar
2013-06-23 06:08 - 2013-06-23 06:03 - 101178920 ____A C:\Users\User\Downloads\Free.Nr.Zwei.003.part6.rar
2013-06-23 05:08 - 2013-06-23 05:03 - 104857600 ____A C:\Users\User\Downloads\Free.Nr.Zwei.003.part5.rar
2013-06-23 04:52 - 2013-06-23 04:46 - 104857600 ____A C:\Users\User\Downloads\Free.Nr.Zwei.003.part4.rar
2013-06-23 03:52 - 2013-06-23 03:46 - 104857600 ____A C:\Users\User\Downloads\Free.Nr.Zwei.003.part3.rar
2013-06-23 02:52 - 2013-06-23 02:46 - 104857600 ____A C:\Users\User\Downloads\Free.Nr.Zwei.003.part2.rar
2013-06-23 01:52 - 2013-06-23 01:46 - 104857600 ____A C:\Users\User\Downloads\Free.Nr.Zwei.003.part1.rar
2013-06-23 01:45 - 2013-06-23 01:43 - 38259062 ____A C:\Users\User\Downloads\Free.GPL.Devil.part13.rar
2013-06-23 00:50 - 2013-06-23 00:43 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part12.rar
2013-06-22 23:49 - 2013-06-22 23:43 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part11.rar
2013-06-22 23:10 - 2013-06-22 22:25 - 107857603 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0303.part1.rar
2013-06-22 22:49 - 2013-06-22 22:43 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part10.rar
2013-06-22 22:18 - 2013-06-22 21:55 - 55022299 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0301.part3.rar
2013-06-22 21:54 - 2013-06-22 21:09 - 107857606 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0301.part2.rar
2013-06-22 21:50 - 2013-06-22 21:43 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part09.rar
2013-06-22 21:17 - 2013-06-22 21:09 - 123961464 ____A C:\Users\User\Downloads\fcl - It's You (MikiDjFashion deep mix).wav
2013-06-22 21:06 - 2013-06-20 23:25 - 55360389 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0306.part3.rar
2013-06-22 20:53 - 2013-06-22 20:43 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part08.rar
2013-06-22 20:47 - 2013-06-22 20:46 - 06118921 ____A C:\Users\User\Downloads\Lana Del Rey - Young And Beautiful (elektromekanik & happy gutenberg remix).wav
2013-06-22 19:14 - 2013-03-22 22:11 - 00000000 ____D C:\Program Files (x86)\JDownloader
2013-06-20 23:24 - 2013-06-20 22:48 - 107857603 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0306.part2.rar
2013-06-20 23:01 - 2013-06-20 22:44 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part07.rar
2013-06-20 22:47 - 2013-06-20 22:11 - 107857603 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0306.part1.rar
2013-06-20 22:10 - 2013-06-20 21:51 - 55396360 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0312.part3.rar
2013-06-20 22:00 - 2013-06-20 20:40 - 246503517 ____A C:\Users\User\Downloads\itg-stromberg-s02e06.avi.rar
2013-06-20 21:51 - 2013-06-20 20:24 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part05.rar
2013-06-20 21:43 - 2013-06-20 21:07 - 107857603 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0312.part2.rar
2013-06-20 21:07 - 2013-06-20 20:31 - 107857603 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0312.part1.rar
2013-06-20 20:35 - 2013-06-20 20:28 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part06.rar
2013-06-19 23:15 - 2013-06-19 23:09 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part04.rar
2013-06-19 22:29 - 2013-06-19 22:23 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part03.rar
2013-06-19 22:16 - 2013-06-19 22:15 - 55072724 ____A C:\Users\User\Downloads\Robyn - With Every Heartbeat (Frank LaFunk's Full Afterhour Edit).wav
2013-06-19 00:45 - 2013-06-19 00:40 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part02.rar
2013-06-18 23:45 - 2013-06-18 23:40 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part01.rar
2013-06-18 23:39 - 2013-06-18 23:38 - 19219560 ____A C:\Users\User\Downloads\FREE.FalkIkon.part5.rar
2013-06-18 22:44 - 2013-06-18 22:38 - 107857600 ____A C:\Users\User\Downloads\FREE.FalkIkon.part4.rar
2013-06-18 21:44 - 2013-06-18 21:38 - 107857600 ____A C:\Users\User\Downloads\FREE.FalkIkon.part3.rar
2013-06-18 20:43 - 2013-06-18 19:38 - 107857600 ____A C:\Users\User\Downloads\FREE.FalkIkon.part2.rar
2013-06-18 20:13 - 2013-06-18 20:12 - 60681644 ____A C:\Users\User\Downloads\FAUL - Changes (Feat Wad Ad).wav
2013-06-18 19:45 - 2013-06-18 19:44 - 36263414 ____A C:\Users\User\Downloads\Artenvielfalt MashUp.zip
2013-06-18 18:17 - 2013-06-18 18:14 - 71442044 ____A C:\Users\User\Downloads\I Would Die For You (Mono Anubis Edit_Remix).wav
2013-06-18 18:09 - 2013-06-18 18:07 - 47980844 ____A C:\Users\User\Downloads\CocoRosie - Sunshine (David B. Edit)3.wav
2013-06-16 20:02 - 2013-06-16 19:56 - 107857600 ____A C:\Users\User\Downloads\FREE.FalkIkon.part1.rar
2013-06-16 19:56 - 2013-06-16 19:55 - 17916977 ____A C:\Users\User\Downloads\jimhen.part8.rar
2013-06-16 19:00 - 2013-06-16 18:54 - 104857600 ____A C:\Users\User\Downloads\jimhen.part7.rar
2013-06-16 18:46 - 2013-06-16 15:24 - 317718528 ____A C:\Users\User\Downloads\sinister.5.1.xvid-derschuft.part1.rar
2013-06-16 18:00 - 2013-06-16 17:54 - 104857600 ____A C:\Users\User\Downloads\jimhen.part6.rar
2013-06-16 17:00 - 2013-06-16 16:54 - 104857600 ____A C:\Users\User\Downloads\jimhen.part5.rar
2013-06-16 16:00 - 2013-06-16 15:54 - 104857600 ____A C:\Users\User\Downloads\jimhen.part4.rar
2013-06-16 15:01 - 2013-06-16 14:54 - 104857600 ____A C:\Users\User\Downloads\jimhen.part3.rar
2013-06-15 21:57 - 2013-06-15 21:25 - 100000000 ____A C:\Users\User\Downloads\JohnnyCash.part4.rar
2013-06-15 21:31 - 2013-06-15 21:25 - 104857600 ____A C:\Users\User\Downloads\jimhen.part2.rar
2013-06-15 19:58 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache
2013-06-15 18:14 - 2013-06-15 18:14 - 00000000 ____D C:\Users\User\AppData\Local\CrashDumps
2013-06-13 13:02 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\System32\NDF
2013-06-12 23:19 - 2013-03-22 21:19 - 75825640 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe
2013-06-12 22:55 - 2013-06-12 22:50 - 104857600 ____A C:\Users\User\Downloads\jimhen.part1.rar
2013-06-12 22:49 - 2013-06-12 22:48 - 11257334 ____A C:\Users\User\Downloads\DiscoLove.part15.rar
2013-06-12 21:54 - 2013-06-12 21:48 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part14.rar
2013-06-12 21:37 - 2013-06-12 21:18 - 55358333 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0323.part3.rar
2013-06-12 21:18 - 2013-06-12 20:42 - 107857606 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0323.part2.rar
2013-06-12 20:54 - 2013-06-12 20:48 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part13.rar
2013-06-12 20:41 - 2013-06-12 20:05 - 107857603 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0323.part1.rar
2013-06-12 20:26 - 2013-03-20 23:43 - 00692104 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-06-12 20:26 - 2013-03-20 23:43 - 00071048 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-06-12 20:20 - 2013-06-12 19:48 - 100000000 ____A C:\Users\User\Downloads\JohnnyCash.part3.rar
2013-06-12 19:54 - 2013-06-12 19:48 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part12.rar
2013-06-11 00:29 - 2013-06-11 00:23 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part11.rar
2013-06-10 23:29 - 2013-06-10 23:23 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part10.rar
2013-06-10 22:30 - 2013-06-10 22:23 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part09.rar
2013-06-10 21:53 - 2013-06-10 21:24 - 88878132 ____A C:\Users\User\Downloads\JohnnyCash.part5.rar
2013-06-10 21:29 - 2013-06-10 21:23 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part08.rar
2013-06-09 23:10 - 2013-06-09 21:53 - 184066555 ____A C:\Users\User\Downloads\Rothwald.part2.rar.part
2013-06-09 22:37 - 2013-06-09 22:31 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part07.rar
2013-06-09 21:52 - 2013-06-09 20:25 - 209715200 ____A C:\Users\User\Downloads\Rothwald.part1.rar
2013-06-09 21:37 - 2013-06-09 21:31 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part06.rar
2013-06-09 20:37 - 2013-06-09 20:31 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part05.rar
2013-06-09 20:06 - 2013-06-09 19:32 - 100000000 ____A C:\Users\User\Downloads\JohnnyCash.part2.rar
2013-06-09 20:01 - 2013-06-09 19:31 - 70533744 ____A C:\Users\User\Downloads\xf-savagelove.part09.rar
2013-06-09 19:37 - 2013-06-09 19:31 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part04.rar
2013-06-09 01:01 - 2013-06-09 00:39 - 110000002 ____A C:\Users\User\Downloads\xf-savagelove.part08.rar
2013-06-09 00:38 - 2013-06-09 00:16 - 110000002 ____A C:\Users\User\Downloads\xf-savagelove.part07.rar
2013-06-09 00:31 - 2013-06-09 00:25 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part03.rar
2013-06-09 00:15 - 2013-06-08 23:39 - 110000002 ____A C:\Users\User\Downloads\xf-savagelove.part06.rar
2013-06-08 23:38 - 2013-06-08 22:13 - 110000002 ____A C:\Users\User\Downloads\xf-savagelove.part05.rar
2013-06-08 23:31 - 2013-06-08 23:25 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part02.rar
2013-06-08 23:24 - 2013-06-08 22:51 - 100000000 ____A C:\Users\User\Downloads\JohnnyCash.part1.rar
2013-06-08 22:27 - 2013-06-08 22:21 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part01.rar
2013-06-08 16:08 - 2013-06-15 15:35 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2013-06-08 16:07 - 2013-06-15 15:35 - 19233792 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2013-06-08 16:06 - 2013-06-15 15:35 - 15404544 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2013-06-08 16:06 - 2013-06-15 15:35 - 02648064 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2013-06-08 16:06 - 2013-06-15 15:35 - 00526336 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2013-06-08 14:28 - 2013-06-15 15:35 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2013-06-08 13:42 - 2013-06-15 15:35 - 01141248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-06-08 13:40 - 2013-06-15 15:35 - 14327808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-06-08 13:40 - 2013-06-15 15:35 - 13760512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-06-08 13:40 - 2013-06-15 15:35 - 02046976 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-06-08 13:40 - 2013-06-15 15:35 - 00391168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-06-08 13:13 - 2013-06-15 15:35 - 02706432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-06-07 12:33 - 2013-06-07 12:33 - 00083160 ____A (Avira GmbH) C:\Windows\System32\Drivers\avnetflt.sys
2013-06-06 19:36 - 2013-06-06 19:35 - 48140220 ____A C:\Users\User\Downloads\searching.wav
2013-06-06 17:57 - 2013-06-06 17:34 - 254778288 ____A C:\Users\User\Downloads\Teens Try Anal CD1.flv
2013-06-06 17:32 - 2013-06-06 17:25 - 82995335 ____A C:\Users\User\Downloads\Very_Young_Girl_Being_Fucked_Very_Brutally.rar
2013-06-06 15:45 - 2013-06-06 15:41 - 149896018 ____A C:\Users\User\Downloads\Suzy Gets Fucked.mp4
2013-06-04 20:57 - 2013-06-04 20:57 - 00002220 ____A C:\Users\Public\Desktop\Google Earth.lnk
2013-06-04 20:57 - 2013-03-24 20:07 - 00000000 ____D C:\Users\User\AppData\Local\Google
2013-06-04 20:57 - 2013-03-24 20:07 - 00000000 ____D C:\Program Files (x86)\Google
2013-06-04 20:56 - 2013-06-04 20:55 - 25406864 ____A C:\Users\User\Downloads\GoogleEarthWin_7.1.exe
2013-06-01 19:20 - 2013-06-01 17:23 - 106954752 ____A C:\Users\User\Downloads\cia-pr1vt3ss-xvid.part04.rar
2013-06-01 18:28 - 2013-06-01 18:23 - 91240637 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part15.rar
2013-06-01 17:29 - 2013-06-01 17:23 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part14.rar
2013-05-31 00:30 - 2013-05-31 00:24 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part13.rar
2013-05-31 00:02 - 2013-05-30 22:50 - 110000002 ____A C:\Users\User\Downloads\xf-savagelove.part04.rar
2013-05-30 23:29 - 2013-05-30 23:24 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part12.rar
2013-05-30 22:29 - 2013-05-30 22:24 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part11.rar
2013-05-30 21:29 - 2013-05-30 21:24 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part10.rar
2013-05-30 20:29 - 2013-05-30 20:24 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part09.rar
2013-05-30 19:29 - 2013-05-30 19:23 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part08.rar
2013-05-30 18:29 - 2013-05-30 18:23 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part07.rar
2013-05-30 17:29 - 2013-05-30 17:23 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part06.rar
2013-05-30 16:29 - 2013-05-30 16:23 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part05.rar
2013-05-30 15:51 - 2013-05-30 15:23 - 96204655 ____A C:\Users\User\Downloads\cia-pr1vt3ss-xvid.part09.rar
2013-05-30 15:29 - 2013-05-30 15:23 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part04.rar
2013-05-30 00:55 - 2013-05-30 00:28 - 106954752 ____A C:\Users\User\Downloads\cia-pr1vt3ss-xvid.part08.rar
2013-05-30 00:47 - 2013-05-30 00:37 - 340892178 ____A C:\Users\User\Downloads\Justice live @ Coachella 2012(720p_H.264-AAC).mp4
2013-05-30 00:37 - 2013-05-30 00:34 - 85611568 ____A C:\Users\User\Downloads\Justice live @ Coachella 2012(360p_H.264-AAC).mp4
2013-05-30 00:27 - 2013-05-30 00:00 - 106954752 ____A C:\Users\User\Downloads\cia-pr1vt3ss-xvid.part07.rar
2013-05-30 00:02 - 2013-05-29 23:56 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part03.rar
2013-05-30 00:00 - 2013-05-29 23:33 - 106954752 ____A C:\Users\User\Downloads\cia-pr1vt3ss-xvid.part06.rar

==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2013-06-23 00:41

==================== End Of Log ============================
         
--- --- ---

Addition:FRST Additions Logfile:
Code:
ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 29-06-2013 01
Ran by User at 2013-06-29 23:05:41
Running from C:\Users\User\Downloads
Boot Mode: Normal
==========================================================


==================== Installed Programs =======================

1&1 Surf-Stick (x32 Version: 1.0.0.2)
Adobe Flash Player 11 ActiveX (x32 Version: 11.7.700.224)
Adobe Flash Player 11 Plugin (x32 Version: 11.7.700.224)
AMD Catalyst Install Manager (Version: 3.0.838.0)
AMD Drag and Drop Transcoding (Version: 2.00.0000)
Audacity 2.0.3 (x32 Version: 2.0.3)
Avira Free Antivirus (x32 Version: 13.0.0.3640)
AVS Audio Editor 7.1 (x32 Version: 7.1.5.479)
AVS Audio Recorder version 4.0 (x32 Version: 4.0.1.21)
Bluetooth Win7 Suite (64) (Version: 7.2.0.34)
Catalyst Control Center InstallProxy (x32 Version: 2011.0728.1756.30366)
CDBurnerXP (Version: 4.3.8.2523)
Delta Chrome Toolbar (x32)
Desktop Icon für Amazon (Version: 1.0.1 (de))
doPDF 7.2 printer
Facebook Video Calling 1.2.0.287 (x32 Version: 1.2.287)
FireJump (x32 Version: 1.0.2.5)
Google Earth (x32 Version: 7.1.1.1580)
Intel(R) Processor Graphics (x32 Version: 8.15.10.2266)
ITE Infrared Transceiver (x32 Version: 1.00.0000)
JDownloader 0.9 (x32 Version: 0.9)
LAME v3.99.3 (for Windows) (x32)
Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319)
Microsoft Office 2010 (x32 Version: 14.0.4763.1000)
Microsoft Office Klick-und-Los 2010 (Version: 14.0.4763.1000)
Microsoft Office Klick-und-Los 2010 (x32 Version: 14.0.4763.1000)
Microsoft Office Starter 2010 - Deutsch (x32 Version: 14.0.4763.1000)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219)
Mozilla Firefox 22.0 (x86 de) (x32 Version: 22.0)
Mozilla Maintenance Service (x32 Version: 22.0)
No23 Recorder (x32 Version: 2.1.0.3)
NVIDIA 3D Vision Treiber 275.33 (Version: 275.33)
NVIDIA Drivers (Version: 1.10.57.35)
NVIDIA ForceWare Network Access Manager (x32 Version: 1.00.7325.0)
NVIDIA Grafiktreiber 275.33 (Version: 275.33)
NVIDIA HD-Audiotreiber 1.2.22.1 (Version: 1.2.22.1)
NVIDIA Install Application (Version: 2.275.80.0)
NVIDIA PhysX (x32 Version: 9.10.0514)
NVIDIA PhysX-Systemsoftware 9.10.0514 (Version: 9.10.0514)
NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.12.7533)
NVIDIA Systemsteuerung 275.33 (Version: 275.33)
NVIDIA Update 1.3.5 (Version: 1.3.5)
NVIDIA Update Components (Version: 1.3.5)
Picasa 3 (x32 Version: 3.9)
Platform (x32 Version: 1.34)
Realtek Ethernet Controller Driver (x32 Version: 7.37.1229.2010)
Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.34.0)
SearchAnonymizer (Version: 1.0.1 (de))
SparPilot (x32 Version: 2.0.9)
SpyHunter (Version: 4.13.6.4253)
Steinberg WaveLab 5.01b (x32)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1)
Update for Zip Opener (HKCU)
VIA Plattform-Geräte-Manager (x32 Version: 1.34)
VirtualDJ Home FREE (x32 Version: 7.3)
VirtualDJ Toolbar (x32 Version: 1.17.3.0)
VirtualDJ Toolbar Updater (HKCU Version: 1.4.2.36670)
VLC media player 2.0.5 (x32 Version: 2.0.5)
Winamp (x32 Version: 5.63 )
Winamp Erkennungs-Plug-in (HKCU Version: 1.0.0.1)
WinRAR 4.00 (64-Bit) (Version: 4.00.0)
WMV9/VC-1 Video Playback (Version: 1.00.0000)

==================== Restore Points  =========================

22-06-2013 15:54:29 Geplanter Prüfpunkt
29-06-2013 16:36:42 Geplanter Prüfpunkt
29-06-2013 18:18:02 Installed SpyHunter
29-06-2013 20:16:11 Removed SpyHunter
29-06-2013 20:16:56 Removed SpyHunter
29-06-2013 20:17:43 Removed SpyHunter

==================== Scheduled Tasks (whitelisted) =============

Task: {12DDECDE-13C6-4B76-BC69-52B236313EC6} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2260964575-2753946872-1401531445-1001Core => C:\Users\User\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-03-31] (Facebook Inc.)
Task: {49A21289-D2C8-4C78-B5B1-F9789A6DE9D6} - System32\Tasks\SpyHunter4Startup => C:\Program Files\Enigma Software Group\SpyHunter\Spyhunter4.exe [2013-05-07] (Enigma Software Group USA, LLC.)
Task: {7F7221D0-00F8-4373-B339-7AD8C1F03512} - System32\Tasks\EPUpdater => C:\Users\User\AppData\Roaming\BABSOL~1\Shared\BabMaint.exe [2013-06-06] ()
Task: {8195CF65-E93C-4F2B-A52E-B04E80BC0A1F} - System32\Tasks\Microsoft\Windows\MUI\Lpksetup => C:\Windows\System32\lpksetup.exe [2010-11-21] (Microsoft Corporation)
Task: {99F0D37E-B1C9-4598-B92B-EA22F31B6713} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-06-12] (Adobe Systems Incorporated)
Task: {B3C848B0-9CEA-4CE7-A6AB-FBAD9F6A689B} - System32\Tasks\DSite => C:\Users\User\AppData\Roaming\DSite\UPDATE~1\UPDATE~1.EXE [2013-06-29] ()
Task: {DDA52F0C-774D-45D8-9BA8-CFFAAFA8055D} - System32\Tasks\Scheduled Update for Ask Toolbar => C:\Program Files (x86)\Ask.com\UpdateTask.exe [2013-02-02] ()
Task: {F386FCE7-F757-4E2E-B3DE-5CD05AD0501C} - System32\Tasks\FacebookUpdateTaskUserS-1-5-21-2260964575-2753946872-1401531445-1001UA => C:\Users\User\AppData\Local\Facebook\Update\FacebookUpdate.exe [2013-03-31] (Facebook Inc.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\DSite.job => ?
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2260964575-2753946872-1401531445-1001Core.job => C:\Users\User\AppData\Local\Facebook\Update\FacebookUpdate.exe
Task: C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2260964575-2753946872-1401531445-1001UA.job => C:\Users\User\AppData\Local\Facebook\Update\FacebookUpdate.exe

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (06/29/2013 07:49:18 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/29/2013 06:10:14 PM) (Source: CVHSVC) (User: )
Description: Nur zur Information.
(Patch task for {90140011-0066-0407-0000-0000000FF1CE}): DownloadLatest Failed: Der Servername oder die Serveradresse konnte nicht verarbeitet werden.

Error: (06/29/2013 06:03:19 PM) (Source: Google Update) (User: User-PC)
Description: Network Request Error.
Error: 0x80072ee7. Http status code: 0.
Url=https://www.facebook.com/omaha/update.php
Trying config: source=FireFox, direct connection.
trying CUP:WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying CUP:iexplore.
Send request returned 0x80004005. Http status code 0.
Trying config: source=IE, wpad=1, script=.
trying CUP:WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying CUP:iexplore.
Send request returned 0x80004005. Http status code 0.
Trying config: source=FireFox, direct connection.
trying CUP:WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying CUP:iexplore.
Send request returned 0x80004005. Http status code 0.
Trying config: source=IE, wpad=1, script=.
trying CUP:WinHTTP.
Send request returned 0x80

Error: (06/29/2013 06:01:38 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/29/2013 05:01:20 PM) (Source: Microsoft-Windows-RestartManager) (User: User-PC)
Description: Die Anwendung oder der Dienst "SProtection" konnte nicht neu gestartet werden.

Error: (06/29/2013 04:40:40 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/29/2013 04:40:04 PM) (Source: Iminent) (User: )
Description: Unexpected exception.

System.Reflection.TargetInvocationException: Ein Aufrufziel hat einen Ausnahmefehler verursacht. ---> System.NullReferenceException: Der Objektverweis wurde nicht auf eine Objektinstanz festgelegt.
   bei Iminent.Mediator.Server.ApplicationService.<>c__DisplayClassa.<WarmUp>b__9(Composite composite)
   --- Ende der internen Ausnahmestapelüberwachung ---
   bei System.RuntimeMethodHandle._InvokeMethodFast(IRuntimeMethodInfo method, Object target, Object[] arguments, SignatureStruct& sig, MethodAttributes methodAttributes, RuntimeType typeOwner)
   bei System.RuntimeMethodHandle.InvokeMethodFast(IRuntimeMethodInfo method, Object target, Object[] arguments, Signature sig, MethodAttributes methodAttributes, RuntimeType typeOwner)
   bei System.Reflection.RuntimeMethodInfo.Invoke(Object obj, BindingFlags invokeAttr, Binder binder, Object[] parameters, CultureInfo culture, Boolean skipVisibilityChecks)
   bei System.Delegate.DynamicInvokeImpl(Object[] args)
   bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(Delegate callback, Object args, Int32 numArgs)
   bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(Object source, Delegate method, Object args, Int32 numArgs, Delegate catchHandler)

Error: (06/28/2013 00:24:46 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/27/2013 06:44:05 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/27/2013 06:43:31 PM) (Source: Iminent) (User: )
Description: Unexpected exception.

System.Reflection.TargetInvocationException: Ein Aufrufziel hat einen Ausnahmefehler verursacht. ---> System.NullReferenceException: Der Objektverweis wurde nicht auf eine Objektinstanz festgelegt.
   bei Iminent.Mediator.Server.ApplicationService.<>c__DisplayClassa.<WarmUp>b__9(Composite composite)
   --- Ende der internen Ausnahmestapelüberwachung ---
   bei System.RuntimeMethodHandle._InvokeMethodFast(IRuntimeMethodInfo method, Object target, Object[] arguments, SignatureStruct& sig, MethodAttributes methodAttributes, RuntimeType typeOwner)
   bei System.RuntimeMethodHandle.InvokeMethodFast(IRuntimeMethodInfo method, Object target, Object[] arguments, Signature sig, MethodAttributes methodAttributes, RuntimeType typeOwner)
   bei System.Reflection.RuntimeMethodInfo.Invoke(Object obj, BindingFlags invokeAttr, Binder binder, Object[] parameters, CultureInfo culture, Boolean skipVisibilityChecks)
   bei System.Delegate.DynamicInvokeImpl(Object[] args)
   bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(Delegate callback, Object args, Int32 numArgs)
   bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(Object source, Delegate method, Object args, Int32 numArgs, Delegate catchHandler)


System errors:
=============
Error: (06/29/2013 07:46:49 PM) (Source: DCOM) (User: )
Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}

Error: (06/29/2013 05:59:00 PM) (Source: DCOM) (User: )
Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}

Error: (06/28/2013 01:26:31 PM) (Source: DCOM) (User: )
Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}

Error: (06/27/2013 09:52:44 PM) (Source: DCOM) (User: )
Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}

Error: (06/27/2013 01:11:37 AM) (Source: DCOM) (User: )
Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}

Error: (06/26/2013 01:32:58 PM) (Source: DCOM) (User: )
Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}

Error: (06/26/2013 00:19:34 PM) (Source: DCOM) (User: )
Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}

Error: (06/26/2013 00:57:03 AM) (Source: DCOM) (User: )
Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}

Error: (06/24/2013 10:47:53 PM) (Source: DCOM) (User: )
Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}

Error: (06/24/2013 00:11:39 AM) (Source: DCOM) (User: )
Description: {E10F6C3A-F1AE-4ADC-AA9D-2FE65525666E}


Microsoft Office Sessions:
=========================
Error: (06/29/2013 07:49:18 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/29/2013 06:10:14 PM) (Source: CVHSVC)(User: )
Description: (Patch task for {90140011-0066-0407-0000-0000000FF1CE}): DownloadLatest Failed: Der Servername oder die Serveradresse konnte nicht verarbeitet werden.

Error: (06/29/2013 06:03:19 PM) (Source: Google Update)(User: User-PC)
Description: Network Request Error.
Error: 0x80072ee7. Http status code: 0.
Url=https://www.facebook.com/omaha/update.php
Trying config: source=FireFox, direct connection.
trying CUP:WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying CUP:iexplore.
Send request returned 0x80004005. Http status code 0.
Trying config: source=IE, wpad=1, script=.
trying CUP:WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying CUP:iexplore.
Send request returned 0x80004005. Http status code 0.
Trying config: source=FireFox, direct connection.
trying CUP:WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying WinHTTP.
Send request returned 0x80072ee7. Http status code 0.
trying CUP:iexplore.
Send request returned 0x80004005. Http status code 0.
Trying config: source=IE, wpad=1, script=.
trying CUP:WinHTTP.
Send request returned 0x80

Error: (06/29/2013 06:01:38 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/29/2013 05:01:20 PM) (Source: Microsoft-Windows-RestartManager)(User: User-PC)
Description: 0C:\Program Files (x86)\Common Files\Umbrella\umbrella.exeSProtection03026217826720

Error: (06/29/2013 04:40:40 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/29/2013 04:40:04 PM) (Source: Iminent)(User: )
Description: Unexpected exception.

System.Reflection.TargetInvocationException: Ein Aufrufziel hat einen Ausnahmefehler verursacht. ---> System.NullReferenceException: Der Objektverweis wurde nicht auf eine Objektinstanz festgelegt.
   bei Iminent.Mediator.Server.ApplicationService.<>c__DisplayClassa.<WarmUp>b__9(Composite composite)
   --- Ende der internen Ausnahmestapelüberwachung ---
   bei System.RuntimeMethodHandle._InvokeMethodFast(IRuntimeMethodInfo method, Object target, Object[] arguments, SignatureStruct& sig, MethodAttributes methodAttributes, RuntimeType typeOwner)
   bei System.RuntimeMethodHandle.InvokeMethodFast(IRuntimeMethodInfo method, Object target, Object[] arguments, Signature sig, MethodAttributes methodAttributes, RuntimeType typeOwner)
   bei System.Reflection.RuntimeMethodInfo.Invoke(Object obj, BindingFlags invokeAttr, Binder binder, Object[] parameters, CultureInfo culture, Boolean skipVisibilityChecks)
   bei System.Delegate.DynamicInvokeImpl(Object[] args)
   bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(Delegate callback, Object args, Int32 numArgs)
   bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(Object source, Delegate method, Object args, Int32 numArgs, Delegate catchHandler)

Error: (06/28/2013 00:24:46 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/27/2013 06:44:05 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (06/27/2013 06:43:31 PM) (Source: Iminent)(User: )
Description: Unexpected exception.

System.Reflection.TargetInvocationException: Ein Aufrufziel hat einen Ausnahmefehler verursacht. ---> System.NullReferenceException: Der Objektverweis wurde nicht auf eine Objektinstanz festgelegt.
   bei Iminent.Mediator.Server.ApplicationService.<>c__DisplayClassa.<WarmUp>b__9(Composite composite)
   --- Ende der internen Ausnahmestapelüberwachung ---
   bei System.RuntimeMethodHandle._InvokeMethodFast(IRuntimeMethodInfo method, Object target, Object[] arguments, SignatureStruct& sig, MethodAttributes methodAttributes, RuntimeType typeOwner)
   bei System.RuntimeMethodHandle.InvokeMethodFast(IRuntimeMethodInfo method, Object target, Object[] arguments, Signature sig, MethodAttributes methodAttributes, RuntimeType typeOwner)
   bei System.Reflection.RuntimeMethodInfo.Invoke(Object obj, BindingFlags invokeAttr, Binder binder, Object[] parameters, CultureInfo culture, Boolean skipVisibilityChecks)
   bei System.Delegate.DynamicInvokeImpl(Object[] args)
   bei System.Windows.Threading.ExceptionWrapper.InternalRealCall(Delegate callback, Object args, Int32 numArgs)
   bei MS.Internal.Threading.ExceptionFilterHelper.TryCatchWhen(Object source, Delegate method, Object args, Int32 numArgs, Delegate catchHandler)


==================== Memory info =========================== 

Percentage of memory in use: 37%
Total physical RAM: 7915.78 MB
Available physical RAM: 4926.28 MB
Total Pagefile: 15829.75 MB
Available Pagefile: 12746.69 MB
Total Virtual: 8192 MB
Available Virtual: 8191.83 MB

==================== Drives ================================

Drive c: (Windows7) (Fixed) (Total:698.54 GB) (Free:601.27 GB) NTFS (Disk=0 Partition=2)
Drive e: (CLASSIC SL) (Fixed) (Total:232.88 GB) (Free:22.7 GB) NTFS (Disk=1 Partition=1)

==================== MBR & Partition Table ==================

==================== End Of Log ============================
         
--- --- ---
__________________

Alt 29.06.2013, 22:13   #4
aharonov
/// TB-Ausbilder
 
Deinstallation von Iminent und SpyHunter - Standard

Deinstallation von Iminent und SpyHunter



Ok, dann los:


Schritt 1
  • Gehe zu Start --> Systemsteuerung und öffne Programme und Funktionen.
  • Suche und deinstalliere dort der Reihe nach folgende Einträge:
    • Delta Chrome Toolbar
    • SearchAnonymizer
    • SpyHunter
  • Schliesse das Fenster wieder und führe einen Neustart durch, wenn das gefordert wurde.



Schritt 2

Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).



Schritt 3

Starte noch einmal FRST.
  • Ändere keine der Voreinstellungen und drücke auf Scan.
  • Wenn der Scan abgeschlossen ist, werden ein neues Logfile FRST.txt erstellt und auf dem Desktop gespeichert.
  • Poste den Inhalt dieses Logfiles bitte hier in deinen Thread.



Bitte poste in deiner nächsten Antwort:
  • Log von AdwCleaner
  • Log von FRST
__________________
cheers,
Leo

Alt 29.06.2013, 22:20   #5
AlexHarvey
 
Deinstallation von Iminent und SpyHunter - Standard

Deinstallation von Iminent und SpyHunter



Zu Schritt 1:

Da steht beim deinstallieren folgendes: Sie verfügen nicht über ausreichende Berechtigung um Delta Chrome Toolbar zu deinstalieren. Wenden sie sich an den Systemadministartor.


Alt 29.06.2013, 22:25   #6
aharonov
/// TB-Ausbilder
 
Deinstallation von Iminent und SpyHunter - Standard

Deinstallation von Iminent und SpyHunter



Dann mach einfach mit dem nächsten Punkt weiter.
__________________
--> Deinstallation von Iminent und SpyHunter

Alt 29.06.2013, 22:40   #7
AlexHarvey
 
Deinstallation von Iminent und SpyHunter - Standard

Deinstallation von Iminent und SpyHunter



AdwCleaner Logfile:
Code:
ATTFilter
# AdwCleaner v2.303 - Datei am 29/06/2013 um 23:28:48 erstellt
# Aktualisiert am 08/06/2013 von Xplode
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits)
# Benutzer : User - USER-PC
# Bootmodus : Normal
# Ausgeführt unter : C:\Users\User\Downloads\adwcleaner.exe
# Option [Löschen]


**** [Dienste] ****


***** [Dateien / Ordner] *****

Datei Gelöscht : C:\Windows\Tasks\DSite.job
Ordner Gelöscht : C:\Program Files (x86)\Ask.com
Ordner Gelöscht : C:\ProgramData\Babylon
Ordner Gelöscht : C:\Windows\Installer\{86D4B82A-ABED-442A-BE86-96357B70F4FE}

***** [Registrierungsdatenbank] *****

Schlüssel Gelöscht : HKCU\Software\APN
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\AskToolbar
Schlüssel Gelöscht : HKCU\Software\Ask.com
Schlüssel Gelöscht : HKCU\Software\BabSolution
Schlüssel Gelöscht : HKCU\Software\DataMngr
Schlüssel Gelöscht : HKCU\Software\DataMngr_Toolbar
Schlüssel Gelöscht : HKCU\Software\Iminent
Schlüssel Gelöscht : HKCU\Software\InstallCore
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D4027C7F-154A-4066-A1AD-4243D8127440}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{79A765E1-C399-405B-85AF-466F52E918B0}
Schlüssel Gelöscht : HKCU\Software\OCS
Schlüssel Gelöscht : HKCU\Software\5d558f8cbd3bed15
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Schlüssel Gelöscht : HKLM\Software\APN
Schlüssel Gelöscht : HKLM\Software\AskToolbar
Schlüssel Gelöscht : HKLM\Software\Babylon
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{9B0CB95C-933A-4B8C-B6D4-EDCD19A43874}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\GenericAskToolbar.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\GenericAskToolbar.ToolbarWnd.1
Schlüssel Gelöscht : HKLM\Software\Classes\Installer\Features\A28B4D68DEBAA244EB686953B7074FEF
Schlüssel Gelöscht : HKLM\Software\Classes\Installer\Products\A28B4D68DEBAA244EB686953B7074FEF
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Prod.cap
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{2996F0E7-292B-4CAE-893F-47B8B1C05B56}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF}
Schlüssel Gelöscht : HKLM\Software\DataMngr
Schlüssel Gelöscht : HKLM\Software\Iminent
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\5d558f8cbd3bed15
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{00000000-6E41-4FD3-8538-502F5495E5FC}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{D4027C7F-154A-4066-A1AD-4243D8127440}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\eooncjejnppfjjklapaamhcdmjbilmde
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A5AA24EA-11B8-4113-95AE-9ED71DEAF12A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48D2-9061-8BBD4899EB08}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D4027C7F-154A-4066-A1AD-4243D8127440}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{86D4B82A-ABED-442A-BE86-96357B70F4FE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{D85FFE92-BF14-4E9B-BCCD-E5C16069E65F}_is1
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Delta Chrome Toolbar
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{6C434537-053E-486D-B62A-160059D9D456}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{91CF619A-4686-4CA4-9232-3B2E6B63AA92}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{AC71B60E-94C9-4EDE-BA46-E146747BB67E}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A28B4D68DEBAA244EB686953B7074FEF
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DesktopIconAmazon
Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{D4027C7F-154A-4066-A1AD-4243D8127440}]
Wert Gelöscht : HKCU\Software\Mozilla\Firefox\extensions [firejump@firejump.net]
Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [ApnUpdater]
Wert Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{D4027C7F-154A-4066-A1AD-4243D8127440}]

***** [Internet Browser] *****

-\\ Internet Explorer v10.0.9200.16611

[OK] Die Registrierungsdatenbank ist sauber.

-\\ Mozilla Firefox v22.0 (de)

*************************

AdwCleaner[S1].txt - [14710 octets] - [29/06/2013 23:28:48]

########## EOF - C:\AdwCleaner[S1].txt - [14771 octets] ##########
         
--- --- ---


FRST Editor:
FRST Logfile:

FRST Logfile:

FRST Logfile:

FRST Logfile:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 29-06-2013 01
Ran by User (administrator) on 29-06-2013 23:43:11
Running from C:\Users\User\Downloads
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(AMD) C:\Windows\system32\atiesrxx.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(AMD) C:\Windows\system32\atieclxx.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(Enigma Software Group USA, LLC.) C:\Program Files\Enigma Software Group\SpyHunter\Spyhunter4.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
() C:\Program Files (x86)\1&1 Surf-Stick\AssistantServices.exe
(Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Nullsoft, Inc.) C:\Program Files (x86)\Winamp\winampa.exe
() C:\Program Files (x86)\1&1 Surf-Stick\UIExec.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
() C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe
() C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
(Microsoft Corporation) C:\Windows\system32\msiexec.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_7_700_224.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [AtherosBtStack] "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe" [613024 2010-09-27] (Atheros Communications)
HKLM\...\Run: [AthBtTray] "C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe" [379040 2010-09-27] (Atheros Commnucations)
HKCU\...\Run: [Facebook Update] "C:\Users\User\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver [138096 2013-03-31] (Facebook Inc.)
MountPoints2: {cb91d5cb-81e8-11e2-a29c-806e6f6e6963} - D:\Bin\ASSETUP.exe
HKLM-x32\...\Run: [HDAudDeck] C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe -r [2439072 2010-05-24] (VIA)
HKLM-x32\...\Run: [NUSB3MON] "C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" [113288 2010-11-17] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min [345312 2013-06-07] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [WinampAgent] "C:\Program Files (x86)\Winamp\winampa.exe" [74752 2012-06-20] (Nullsoft, Inc.)
HKLM-x32\...\Run: []  [x]
HKLM-x32\...\Run: [UIExec] "C:\Program Files (x86)\1&1 Surf-Stick\UIExec.exe" [139088 2010-09-30] ()

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = MSN Deutschland: Aktuelle Nachrichten, Outlook.com Email und Skype Login.
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKLM-x32 - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
BHO-x32: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1

FireFox:
========
FF ProfilePath: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\ib6a3ewj.default
FF user.js: detected! => C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\ib6a3ewj.default\user.js
FF Homepage: hxxp://www.google.de/
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_224.dll ()
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 - C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Extension: FireJump - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\ib6a3ewj.default\Extensions\firejump@firejump.net
FF Extension: Spartipps von SparPilot.com - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\ib6a3ewj.default\Extensions\sparpilot@sparpilot.com
FF Extension: VirtualDJ Toolbar - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\ib6a3ewj.default\Extensions\toolbar@ask.com
FF Extension: webbooster - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\ib6a3ewj.default\Extensions\webbooster@iminent.com.xpi
FF HKCU\...\Firefox\Extensions: [sparpilot@sparpilot.com] C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\ib6a3ewj.default\extensions\sparpilot@sparpilot.com
FF Extension: <?xml version="1.0" encoding="utf-8"?><!-- This Source Code Form is subject to the terms of the Mozilla Public
   - License, v. 2.0. If a copy of the MPL was not distributed with this
   - file, You can obtain one at Mozilla Public License, version 2.0. --><RDF xmlns="hxxp://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:em="hxxp://www.mozilla.org/2004/em-rdf#">
  <Description about="urn:mozilla:install-manifest">
    <em:id>sparpilot@sparpilot.com</em:id>
    <em:version>2.0.8</em:version>
    <em:type>2</em:type>
    <em:bootstrap>true</em:bootstrap>
    <em:unpack>true</em:unpack>

    <!-- Firefox -->
    <em:targetApplication>
      <Description>
        <em:id>{ec8030f7-c20a-464f-9b0e-13a3a9e97384}</em:id>
        <em:minVersion>15.0</em:minVersion>
        <em:maxVersion>16.*</em:maxVersion>
      </Description>
    </em:targetApplication>

    <!-- Front End MetaData -->
    <em:name>Spartipps von SparPilot.com</em:name>
    <em:description>Ganz einfach beim Online-Shopping bares Geld sparen. Täglich aktuelle Spartipps von SparPilot.com. 

Und so einfach funktioniert es:
--------------------------
Sie nutzen wie gewohnt Ihre bevorzugten Onlineshops und Versandhäuser. Wir blenden automatisch passende Gutscheine und Rabatte in unserer übersichtlichen Toolbar ein. Sie können unsere Spartipps direkt aufrufen und mit nur einem Klick nutzen um bares Geld zu sparen.

Wir wünschen viel Spaß beim günstigen Online-Shopping!</em:description>
    <em:creator>sparpilot.com</em:creator>
    <em:homepageURL>hxxp://www.sparpilot.com</em:homepageURL>
    <em:optionsType>2</em:optionsType>
    
  </Description>
</RDF> - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\ib6a3ewj.default\extensions\sparpilot@sparpilot.com

==================== Services (Whitelisted) =================

R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [86752 2013-04-10] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [110816 2013-04-10] (Avira Operations GmbH & Co. KG)
R2 ForceWare Intelligent Application Manager (IAM); C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcAppFlt.exe [496232 2010-01-21] ()
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 nSvcIp; C:\Program Files\NVIDIA Corporation\NetworkAccessManager\bin32\nSvcIp.exe [209000 2010-01-21] ()
R2 UI Assistant Service; C:\Program Files (x86)\1&1 Surf-Stick\AssistantServices.exe [253264 2010-09-30] ()

==================== Drivers (Whitelisted) ====================

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [100712 2013-04-10] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [130016 2013-04-10] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-04-10] (Avira Operations GmbH & Co. KG)
R3 esgiguard; C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [13088 2011-03-02] ()
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
S3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [15416 2009-07-16] ()
S3 RTL85n64; C:\Windows\System32\DRIVERS\RTL85n64.sys [378368 2009-06-10] (Realtek)
S3 RtlWlanu; C:\Windows\System32\DRIVERS\rtwlanu.sys [1476752 2012-11-07] (Realtek Semiconductor Corporation                           )
S3 rusb3hub; C:\Windows\System32\DRIVERS\rusb3hub.sys [104448 2012-11-09] (Renesas Electronics Corporation)
S3 rusb3xhc; C:\Windows\System32\DRIVERS\rusb3xhc.sys [221184 2012-11-09] (Renesas Electronics Corporation)
S3 VUSB3HUB; C:\Windows\System32\DRIVERS\ViaHub3.sys [137728 2011-03-08] (VIA Technologies, Inc.)
S3 xhcdrv; C:\Windows\System32\DRIVERS\xhcdrv.sys [198144 2011-03-08] (VIA Technologies, Inc.)
S3 NTIOLib_1_0_C; \??\D:\NTIOLib_X64.sys [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-06-29 23:28 - 2013-06-29 23:29 - 00014741 ____A C:\AdwCleaner[S1].txt
2013-06-29 23:27 - 2013-06-29 23:27 - 00648201 ____A C:\Users\User\Downloads\adwcleaner.exe
2013-06-29 23:26 - 2013-06-29 23:26 - 00000000 ____D C:\Windows\System32\IO
2013-06-29 23:05 - 2013-06-29 23:06 - 00018916 ____A C:\Users\User\Downloads\Addition.txt
2013-06-29 23:04 - 2013-06-29 23:04 - 00000000 ____D C:\FRST
2013-06-29 23:03 - 2013-06-29 23:03 - 01933592 ____A (Farbar) C:\Users\User\Downloads\FRST64.exe
2013-06-29 20:19 - 2013-06-29 20:19 - 00000000 ____A C:\autoexec.bat
2013-06-29 20:18 - 2013-06-29 20:19 - 00000000 ____D C:\sh4ldr
2013-06-29 20:18 - 2013-06-29 20:18 - 00002264 ____A C:\Users\User\Desktop\SpyHunter.lnk
2013-06-29 20:18 - 2013-06-29 20:18 - 00000000 ____D C:\Program Files\Enigma Software Group
2013-06-29 20:17 - 2013-06-29 22:17 - 00000000 ____D C:\Windows\BCD5545077AC4347B24F654B1189F8D4.TMP
2013-06-29 20:15 - 2013-06-29 20:15 - 00000005 ____A C:\Users\User\AppData\Roaming\WBPU-TTL.DAT
2013-06-29 19:15 - 2013-06-29 19:15 - 00000000 ____D C:\Users\User\AppData\Roaming\DSite
2013-06-29 19:15 - 2013-06-29 19:15 - 00000000 ____D C:\Users\User\AppData\Roaming\BabSolution
2013-06-29 19:15 - 2013-06-29 19:15 - 00000000 ____D C:\Program Files (x86)\OpenIt
2013-06-29 19:11 - 2013-06-29 19:11 - 00793536 ____A C:\Users\User\Downloads\ZipOpenerSetup.exe
2013-06-29 17:13 - 2013-06-29 17:13 - 00001121 ____A C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2013-06-29 17:13 - 2013-06-29 17:13 - 00000000 ____D C:\Users\User\AppData\Roaming\Malwarebytes
2013-06-29 17:13 - 2013-06-29 17:13 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-06-29 17:13 - 2013-06-29 17:13 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-06-29 17:13 - 2013-04-04 14:50 - 00025928 ____A (Malwarebytes Corporation) C:\Windows\System32\Drivers\mbam.sys
2013-06-29 17:12 - 2013-06-29 17:12 - 10285040 ____A (Malwarebytes Corporation                                    ) C:\Users\User\Downloads\mbam-setup-1.75.0.1300.exe
2013-06-27 19:36 - 2013-06-29 19:15 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-06-26 23:43 - 2013-06-26 23:43 - 00001019 ____A C:\Users\User\Desktop\Audacity.lnk
2013-06-26 23:43 - 2013-06-26 23:43 - 00000000 ____D C:\Program Files (x86)\Audacity
2013-06-26 23:42 - 2013-06-26 23:42 - 21281052 ____A (Audacity Team                                               ) C:\Users\User\Downloads\audacity-win-2.0.3(1).exe
2013-06-24 22:00 - 2013-06-24 22:19 - 104857380 ____A C:\Users\User\Downloads\Cooler-Onkel.01-18.part2.rar
2013-06-24 21:52 - 2013-06-24 22:12 - 104857380 ____A C:\Users\User\Downloads\Cooler-Onkel.01-18.part1.rar
2013-06-24 21:51 - 2007-06-03 13:31 - 409284608 ____A C:\Users\User\Downloads\Die.Klimakatastrophe.von.1816.avi
2013-06-24 21:45 - 2013-06-24 22:36 - 42958020 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0304.part1.rar.part
2013-06-24 21:45 - 2013-06-24 21:51 - 103796000 ____A C:\Users\User\Downloads\klima1816.part4.rar
2013-06-23 23:40 - 2013-06-23 23:46 - 104857600 ____A C:\Users\User\Downloads\klima1816.part3.rar
2013-06-23 22:51 - 2013-01-19 19:53 - 00000000 ____D C:\Users\User\Downloads\SJ.SL.2AAHM0303
2013-06-23 22:40 - 2013-06-23 22:46 - 104857600 ____A C:\Users\User\Downloads\klima1816.part2.rar
2013-06-23 22:05 - 2013-06-23 22:51 - 54793125 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0303.part3.rar
2013-06-23 21:40 - 2013-06-23 21:46 - 104857600 ____A C:\Users\User\Downloads\klima1816.part1.rar
2013-06-23 21:39 - 2011-01-21 19:30 - 00000000 ____D C:\Users\User\Downloads\jk102
2013-06-23 21:35 - 2013-06-23 21:39 - 72887670 ____A C:\Users\User\Downloads\jk102.part2.rar
2013-06-23 20:35 - 2013-06-23 22:05 - 107857603 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0303.part2.rar
2013-06-23 20:35 - 2013-06-23 20:42 - 115000000 ____A C:\Users\User\Downloads\jk102.part1.rar
2013-06-23 13:00 - 2006-05-31 08:23 - 340183040 ____A C:\Users\User\Downloads\Pop2000 07 Popper Punks & Pershing.avi
2013-06-23 12:58 - 2013-06-23 13:00 - 36032900 ____A C:\Users\User\Downloads\DJPop2000_07_Popper_Punks.part4.rar
2013-06-23 08:09 - 2013-06-23 08:15 - 104857600 ____A C:\Users\User\Downloads\DJPop2000_07_Popper_Punks.part3.rar
2013-06-23 07:09 - 2013-06-23 07:15 - 104857600 ____A C:\Users\User\Downloads\DJPop2000_07_Popper_Punks.part2.rar
2013-06-23 06:09 - 2013-06-23 06:15 - 104857600 ____A C:\Users\User\Downloads\DJPop2000_07_Popper_Punks.part1.rar
2013-06-23 06:08 - 2009-11-12 10:57 - 606902272 ____A C:\Users\User\Downloads\Number.One.E003.Depeche.Mode.dTV.XViD.avi
2013-06-23 06:03 - 2013-06-23 06:08 - 101178920 ____A C:\Users\User\Downloads\Free.Nr.Zwei.003.part6.rar
2013-06-23 05:03 - 2013-06-23 05:08 - 104857600 ____A C:\Users\User\Downloads\Free.Nr.Zwei.003.part5.rar
2013-06-23 04:46 - 2013-06-23 04:52 - 104857600 ____A C:\Users\User\Downloads\Free.Nr.Zwei.003.part4.rar
2013-06-23 03:46 - 2013-06-23 03:52 - 104857600 ____A C:\Users\User\Downloads\Free.Nr.Zwei.003.part3.rar
2013-06-23 02:46 - 2013-06-23 02:52 - 104857600 ____A C:\Users\User\Downloads\Free.Nr.Zwei.003.part2.rar
2013-06-23 01:46 - 2013-06-23 01:52 - 104857600 ____A C:\Users\User\Downloads\Free.Nr.Zwei.003.part1.rar
2013-06-23 01:45 - 2010-05-02 10:43 - 1257936896 ____A C:\Users\User\Downloads\Between.the.Devil.and.the.Wide.Blue.Sea.FS.dTV.XViD-BeN.avi
2013-06-23 01:43 - 2013-06-23 01:45 - 38259062 ____A C:\Users\User\Downloads\Free.GPL.Devil.part13.rar
2013-06-23 00:43 - 2013-06-23 00:50 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part12.rar
2013-06-22 23:43 - 2013-06-22 23:49 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part11.rar
2013-06-22 22:43 - 2013-06-22 22:49 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part10.rar
2013-06-22 22:25 - 2013-06-22 23:10 - 107857603 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0303.part1.rar
2013-06-22 21:55 - 2013-06-22 22:18 - 55022299 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0301.part3.rar
2013-06-22 21:43 - 2013-06-22 21:50 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part09.rar
2013-06-22 21:09 - 2013-06-22 21:54 - 107857606 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0301.part2.rar
2013-06-22 21:09 - 2013-06-22 21:17 - 123961464 ____A C:\Users\User\Downloads\fcl - It's You (MikiDjFashion deep mix).wav
2013-06-22 21:06 - 2013-01-19 19:53 - 00000000 ____D C:\Users\User\Downloads\SJ.SL.2AAHM0306
2013-06-22 20:46 - 2013-06-22 20:47 - 06118921 ____A C:\Users\User\Downloads\Lana Del Rey - Young And Beautiful (elektromekanik & happy gutenberg remix).wav
2013-06-22 20:43 - 2013-06-22 20:53 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part08.rar
2013-06-20 23:25 - 2013-06-22 21:06 - 55360389 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0306.part3.rar
2013-06-20 22:48 - 2013-06-20 23:24 - 107857603 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0306.part2.rar
2013-06-20 22:44 - 2013-06-20 23:01 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part07.rar
2013-06-20 22:11 - 2013-06-20 22:47 - 107857603 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0306.part1.rar
2013-06-20 22:10 - 2013-01-19 19:53 - 00000000 ____D C:\Users\User\Downloads\SJ.SL.2AAHM0312
2013-06-20 22:01 - 2006-04-02 16:06 - 246503424 ____A C:\Users\User\Downloads\itg-stromberg-s02e06.avi
2013-06-20 21:51 - 2013-06-20 22:10 - 55396360 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0312.part3.rar
2013-06-20 21:07 - 2013-06-20 21:43 - 107857603 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0312.part2.rar
2013-06-20 20:40 - 2013-06-20 22:00 - 246503517 ____A C:\Users\User\Downloads\itg-stromberg-s02e06.avi.rar
2013-06-20 20:31 - 2013-06-20 21:07 - 107857603 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0312.part1.rar
2013-06-20 20:28 - 2013-06-20 20:35 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part06.rar
2013-06-20 20:24 - 2013-06-20 21:51 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part05.rar
2013-06-19 23:09 - 2013-06-19 23:15 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part04.rar
2013-06-19 22:23 - 2013-06-19 22:29 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part03.rar
2013-06-19 22:15 - 2013-06-19 22:16 - 55072724 ____A C:\Users\User\Downloads\Robyn - With Every Heartbeat (Frank LaFunk's Full Afterhour Edit).wav
2013-06-19 00:40 - 2013-06-19 00:45 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part02.rar
2013-06-18 23:40 - 2013-06-18 23:45 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part01.rar
2013-06-18 23:39 - 2009-06-21 17:18 - 405963400 ____A C:\Users\User\Downloads\Falco. Stil-Ikone der 1980er Jahre.avi
2013-06-18 23:38 - 2013-06-18 23:39 - 19219560 ____A C:\Users\User\Downloads\FREE.FalkIkon.part5.rar
2013-06-18 22:38 - 2013-06-18 22:44 - 107857600 ____A C:\Users\User\Downloads\FREE.FalkIkon.part4.rar
2013-06-18 21:38 - 2013-06-18 21:44 - 107857600 ____A C:\Users\User\Downloads\FREE.FalkIkon.part3.rar
2013-06-18 20:12 - 2013-06-18 20:13 - 60681644 ____A C:\Users\User\Downloads\FAUL - Changes (Feat Wad Ad).wav
2013-06-18 19:44 - 2013-06-18 19:45 - 36263414 ____A C:\Users\User\Downloads\Artenvielfalt MashUp.zip
2013-06-18 19:38 - 2013-06-18 20:43 - 107857600 ____A C:\Users\User\Downloads\FREE.FalkIkon.part2.rar
2013-06-18 18:14 - 2013-06-18 18:17 - 71442044 ____A C:\Users\User\Downloads\I Would Die For You (Mono Anubis Edit_Remix).wav
2013-06-18 18:07 - 2013-06-18 18:09 - 47980844 ____A C:\Users\User\Downloads\CocoRosie - Sunshine (David B. Edit)3.wav
2013-06-16 19:56 - 2013-06-16 20:02 - 107857600 ____A C:\Users\User\Downloads\FREE.FalkIkon.part1.rar
2013-06-16 19:56 - 2009-12-25 16:43 - 00000000 ____D C:\Users\User\Downloads\BBC.Hey.Joe.Das.kurze.wilde.Leben.des.Jimi.Hendrix.German.DOKU.dTV.XViD-SYSTEM
2013-06-16 19:55 - 2013-06-16 19:56 - 17916977 ____A C:\Users\User\Downloads\jimhen.part8.rar
2013-06-16 18:54 - 2013-06-16 19:00 - 104857600 ____A C:\Users\User\Downloads\jimhen.part7.rar
2013-06-16 18:46 - 2013-01-28 19:04 - 00000000 ____D C:\Users\User\Downloads\sinister.5.1.xvid-derschuft
2013-06-16 17:54 - 2013-06-16 18:00 - 104857600 ____A C:\Users\User\Downloads\jimhen.part6.rar
2013-06-16 16:54 - 2013-06-16 17:00 - 104857600 ____A C:\Users\User\Downloads\jimhen.part5.rar
2013-06-16 15:54 - 2013-06-16 16:00 - 104857600 ____A C:\Users\User\Downloads\jimhen.part4.rar
2013-06-16 15:25 - 2013-05-18 01:34 - 00008874 ____A C:\Users\User\Downloads\aoe-evil.nfo
2013-06-16 15:24 - 2013-06-16 18:46 - 317718528 ____A C:\Users\User\Downloads\sinister.5.1.xvid-derschuft.part1.rar
2013-06-16 14:54 - 2013-06-16 15:01 - 104857600 ____A C:\Users\User\Downloads\jimhen.part3.rar
2013-06-15 21:57 - 2009-07-25 04:07 - 496764438 ____A C:\Users\User\Downloads\Johnny Cash - The Last American Hero.avi
2013-06-15 21:25 - 2013-06-15 21:57 - 100000000 ____A C:\Users\User\Downloads\JohnnyCash.part4.rar
2013-06-15 21:25 - 2013-06-15 21:31 - 104857600 ____A C:\Users\User\Downloads\jimhen.part2.rar
2013-06-15 18:14 - 2013-06-15 18:14 - 00000000 ____D C:\Users\User\AppData\Local\CrashDumps
2013-06-15 15:35 - 2013-06-08 16:08 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2013-06-15 15:35 - 2013-06-08 16:07 - 19233792 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2013-06-15 15:35 - 2013-06-08 16:06 - 15404544 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2013-06-15 15:35 - 2013-06-08 16:06 - 02648064 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2013-06-15 15:35 - 2013-06-08 16:06 - 00526336 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2013-06-15 15:35 - 2013-06-08 14:28 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2013-06-15 15:35 - 2013-06-08 13:42 - 01141248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-06-15 15:35 - 2013-06-08 13:40 - 14327808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-06-15 15:35 - 2013-06-08 13:40 - 13760512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-06-15 15:35 - 2013-06-08 13:40 - 02046976 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-06-15 15:35 - 2013-06-08 13:40 - 00391168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-06-15 15:35 - 2013-06-08 13:13 - 02706432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-06-12 23:18 - 2013-05-17 03:25 - 02877440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-06-12 23:18 - 2013-05-17 03:25 - 01767936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-06-12 23:18 - 2013-05-17 03:25 - 00690688 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-06-12 23:18 - 2013-05-17 03:25 - 00493056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-06-12 23:18 - 2013-05-17 03:25 - 00109056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-06-12 23:18 - 2013-05-17 03:25 - 00061440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-06-12 23:18 - 2013-05-17 03:25 - 00039424 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-06-12 23:18 - 2013-05-17 03:25 - 00033280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-06-12 23:18 - 2013-05-17 02:59 - 02241024 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2013-06-12 23:18 - 2013-05-17 02:59 - 00051712 ____A (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe
2013-06-12 23:18 - 2013-05-17 02:58 - 03958784 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2013-06-12 23:18 - 2013-05-17 02:58 - 00855552 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
2013-06-12 23:18 - 2013-05-17 02:58 - 00603136 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll
2013-06-12 23:18 - 2013-05-17 02:58 - 00136704 ____A (Microsoft Corporation) C:\Windows\System32\iesysprep.dll
2013-06-12 23:18 - 2013-05-17 02:58 - 00067072 ____A (Microsoft Corporation) C:\Windows\System32\iesetup.dll
2013-06-12 23:18 - 2013-05-17 02:58 - 00053248 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2013-06-12 23:18 - 2013-05-17 02:58 - 00039936 ____A (Microsoft Corporation) C:\Windows\System32\iernonce.dll
2013-06-12 23:18 - 2013-05-14 14:23 - 00089600 ____A (Microsoft Corporation) C:\Windows\System32\RegisterIEPKEYs.exe
2013-06-12 23:18 - 2013-05-14 10:40 - 00071680 ____A (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-06-12 22:50 - 2013-06-12 22:55 - 104857600 ____A C:\Users\User\Downloads\jimhen.part1.rar
2013-06-12 22:50 - 2011-05-20 18:38 - 00000000 ____D C:\Users\User\Downloads\Disco.Love.Machine.-.Im.Beat.liegt.die.Sehnsucht.GERMAN.DOKU.FS.dTV.XViD-SiTiN
2013-06-12 22:48 - 2013-06-12 22:49 - 11257334 ____A C:\Users\User\Downloads\DiscoLove.part15.rar
2013-06-12 21:48 - 2013-06-12 21:54 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part14.rar
2013-06-12 21:37 - 2013-01-19 19:54 - 00000000 ____D C:\Users\User\Downloads\SJ.SL.2AAHM0323
2013-06-12 21:18 - 2013-06-12 21:37 - 55358333 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0323.part3.rar
2013-06-12 21:16 - 2013-05-13 07:51 - 01464320 ____A (Microsoft Corporation) C:\Windows\System32\crypt32.dll
2013-06-12 21:16 - 2013-05-13 07:51 - 00184320 ____A (Microsoft Corporation) C:\Windows\System32\cryptsvc.dll
2013-06-12 21:16 - 2013-05-13 07:51 - 00139776 ____A (Microsoft Corporation) C:\Windows\System32\cryptnet.dll
2013-06-12 21:16 - 2013-05-13 07:50 - 00052224 ____A (Microsoft Corporation) C:\Windows\System32\certenc.dll
2013-06-12 21:16 - 2013-05-13 06:45 - 01160192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2013-06-12 21:16 - 2013-05-13 06:45 - 00140288 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2013-06-12 21:16 - 2013-05-13 06:45 - 00103936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2013-06-12 21:16 - 2013-05-13 05:43 - 01192448 ____A (Microsoft Corporation) C:\Windows\System32\certutil.exe
2013-06-12 21:16 - 2013-05-13 05:08 - 00903168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe
2013-06-12 21:16 - 2013-05-13 05:08 - 00043008 ____A (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll
2013-06-12 21:16 - 2013-05-10 07:49 - 00030720 ____A (Microsoft Corporation) C:\Windows\System32\cryptdlg.dll
2013-06-12 21:16 - 2013-05-10 05:20 - 00024576 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll
2013-06-12 21:16 - 2013-05-08 08:39 - 01910632 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys
2013-06-12 21:16 - 2013-04-26 07:51 - 00751104 ____A (Microsoft Corporation) C:\Windows\System32\win32spl.dll
2013-06-12 21:16 - 2013-04-26 06:55 - 00492544 ____A (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll
2013-06-12 21:16 - 2013-04-26 01:30 - 01505280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2013-06-12 21:16 - 2013-04-17 09:02 - 01230336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2013-06-12 21:16 - 2013-04-17 08:24 - 01424384 ____A (Microsoft Corporation) C:\Windows\System32\WindowsCodecs.dll
2013-06-12 21:16 - 2013-04-01 00:52 - 01887232 ____A (Microsoft Corporation) C:\Windows\System32\d3d11.dll
2013-06-12 20:48 - 2013-06-12 20:54 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part13.rar
2013-06-12 20:42 - 2013-06-12 21:18 - 107857606 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0323.part2.rar
2013-06-12 20:05 - 2013-06-12 20:41 - 107857603 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0323.part1.rar
2013-06-12 19:48 - 2013-06-12 20:20 - 100000000 ____A C:\Users\User\Downloads\JohnnyCash.part3.rar
2013-06-12 19:48 - 2013-06-12 19:54 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part12.rar
2013-06-11 00:23 - 2013-06-11 00:29 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part11.rar
2013-06-10 23:23 - 2013-06-10 23:29 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part10.rar
2013-06-10 22:23 - 2013-06-10 22:30 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part09.rar
2013-06-10 21:24 - 2013-06-10 21:53 - 88878132 ____A C:\Users\User\Downloads\JohnnyCash.part5.rar
2013-06-10 21:23 - 2013-06-10 21:29 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part08.rar
2013-06-09 22:31 - 2013-06-09 22:37 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part07.rar
2013-06-09 21:53 - 2013-06-09 23:10 - 184066555 ____A C:\Users\User\Downloads\Rothwald.part2.rar.part
2013-06-09 21:31 - 2013-06-09 21:37 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part06.rar
2013-06-09 20:31 - 2013-06-09 20:37 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part05.rar
2013-06-09 20:25 - 2013-06-09 21:52 - 209715200 ____A C:\Users\User\Downloads\Rothwald.part1.rar
2013-06-09 20:01 - 2013-04-12 06:42 - 00010125 ____A C:\Users\User\Downloads\xf-savage_love_2012.nfo
2013-06-09 20:01 - 2013-04-11 22:56 - 940148736 ____A C:\Users\User\Downloads\xf-savagelove.avi
2013-06-09 19:32 - 2013-06-09 20:06 - 100000000 ____A C:\Users\User\Downloads\JohnnyCash.part2.rar
2013-06-09 19:31 - 2013-06-09 20:01 - 70533744 ____A C:\Users\User\Downloads\xf-savagelove.part09.rar
2013-06-09 19:31 - 2013-06-09 19:37 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part04.rar
2013-06-09 00:39 - 2013-06-09 01:01 - 110000002 ____A C:\Users\User\Downloads\xf-savagelove.part08.rar
2013-06-09 00:25 - 2013-06-09 00:31 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part03.rar
2013-06-09 00:16 - 2013-06-09 00:38 - 110000002 ____A C:\Users\User\Downloads\xf-savagelove.part07.rar
2013-06-08 23:39 - 2013-06-09 00:15 - 110000002 ____A C:\Users\User\Downloads\xf-savagelove.part06.rar
2013-06-08 23:25 - 2013-06-08 23:31 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part02.rar
2013-06-08 22:51 - 2013-06-08 23:24 - 100000000 ____A C:\Users\User\Downloads\JohnnyCash.part1.rar
2013-06-08 22:21 - 2013-06-08 22:27 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part01.rar
2013-06-08 22:13 - 2013-06-08 23:38 - 110000002 ____A C:\Users\User\Downloads\xf-savagelove.part05.rar
2013-06-07 12:33 - 2013-06-07 12:33 - 00083160 ____A (Avira GmbH) C:\Windows\System32\Drivers\avnetflt.sys
2013-06-06 19:35 - 2013-06-06 19:36 - 48140220 ____A C:\Users\User\Downloads\searching.wav
2013-06-06 17:34 - 2013-06-06 17:57 - 254778288 ____A C:\Users\User\Downloads\Teens Try Anal CD1.flv
2013-06-06 17:25 - 2013-06-06 17:32 - 82995335 ____A C:\Users\User\Downloads\Very_Young_Girl_Being_Fucked_Very_Brutally.rar
2013-06-06 15:41 - 2013-06-06 15:45 - 149896018 ____A C:\Users\User\Downloads\Suzy Gets Fucked.mp4
2013-06-04 20:57 - 2013-06-04 20:57 - 00002220 ____A C:\Users\Public\Desktop\Google Earth.lnk
2013-06-04 20:55 - 2013-06-04 20:56 - 25406864 ____A C:\Users\User\Downloads\GoogleEarthWin_7.1.exe
2013-06-01 18:28 - 2012-02-01 22:09 - 00000000 ____D C:\Users\User\Downloads\Cocaine.Bandits.2.2009.DOKU.BDRip.AC3.German.XviD-MB
2013-06-01 18:23 - 2013-06-01 18:28 - 91240637 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part15.rar
2013-06-01 17:23 - 2013-06-01 19:20 - 106954752 ____A C:\Users\User\Downloads\cia-pr1vt3ss-xvid.part04.rar
2013-06-01 17:23 - 2013-06-01 17:29 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part14.rar
2013-05-31 00:24 - 2013-05-31 00:30 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part13.rar
2013-05-30 23:24 - 2013-05-30 23:29 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part12.rar
2013-05-30 22:50 - 2013-05-31 00:02 - 110000002 ____A C:\Users\User\Downloads\xf-savagelove.part04.rar
2013-05-30 22:24 - 2013-05-30 22:29 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part11.rar
2013-05-30 21:24 - 2013-05-30 21:29 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part10.rar
2013-05-30 20:24 - 2013-05-30 20:29 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part09.rar
2013-05-30 19:23 - 2013-05-30 19:29 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part08.rar
2013-05-30 18:23 - 2013-05-30 18:29 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part07.rar
2013-05-30 17:23 - 2013-05-30 17:29 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part06.rar
2013-05-30 16:23 - 2013-05-30 16:29 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part05.rar
2013-05-30 15:23 - 2013-05-30 15:51 - 96204655 ____A C:\Users\User\Downloads\cia-pr1vt3ss-xvid.part09.rar
2013-05-30 15:23 - 2013-05-30 15:29 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part04.rar
2013-05-30 00:37 - 2013-05-30 00:47 - 340892178 ____A C:\Users\User\Downloads\Justice live @ Coachella 2012(720p_H.264-AAC).mp4
2013-05-30 00:34 - 2013-05-30 00:37 - 85611568 ____A C:\Users\User\Downloads\Justice live @ Coachella 2012(360p_H.264-AAC).mp4
2013-05-30 00:28 - 2013-05-30 00:55 - 106954752 ____A C:\Users\User\Downloads\cia-pr1vt3ss-xvid.part08.rar
2013-05-30 00:00 - 2013-05-30 00:27 - 106954752 ____A C:\Users\User\Downloads\cia-pr1vt3ss-xvid.part07.rar

==================== One Month Modified Files and Folders =======

2013-06-29 23:39 - 2009-07-14 06:45 - 00026464 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-06-29 23:39 - 2009-07-14 06:45 - 00026464 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-06-29 23:36 - 2010-11-21 08:50 - 00654372 ____A C:\Windows\System32\perfh007.dat
2013-06-29 23:36 - 2010-11-21 08:50 - 00129986 ____A C:\Windows\System32\perfc007.dat
2013-06-29 23:36 - 2009-07-14 07:13 - 01500018 ____A C:\Windows\System32\PerfStringBackup.INI
2013-06-29 23:31 - 2013-02-28 18:56 - 00000035 ____A C:\Users\Public\Documents\AtherosServiceConfig.ini
2013-06-29 23:31 - 2011-05-16 01:38 - 00000000 ____D C:\ProgramData\NVIDIA
2013-06-29 23:31 - 2009-07-14 07:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT
2013-06-29 23:31 - 2009-07-14 06:51 - 00063075 ____A C:\Windows\setupact.log
2013-06-29 23:30 - 2011-05-07 01:46 - 01842768 ____A C:\Windows\WindowsUpdate.log
2013-06-29 23:29 - 2013-06-29 23:28 - 00014741 ____A C:\AdwCleaner[S1].txt
2013-06-29 23:27 - 2013-06-29 23:27 - 00648201 ____A C:\Users\User\Downloads\adwcleaner.exe
2013-06-29 23:26 - 2013-06-29 23:26 - 00000000 ____D C:\Windows\System32\IO
2013-06-29 23:26 - 2013-03-20 23:43 - 00000884 ____A C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-06-29 23:06 - 2013-06-29 23:05 - 00018916 ____A C:\Users\User\Downloads\Addition.txt
2013-06-29 23:04 - 2013-06-29 23:04 - 00000000 ____D C:\FRST
2013-06-29 23:03 - 2013-06-29 23:03 - 01933592 ____A (Farbar) C:\Users\User\Downloads\FRST64.exe
2013-06-29 22:17 - 2013-06-29 20:17 - 00000000 ____D C:\Windows\BCD5545077AC4347B24F654B1189F8D4.TMP
2013-06-29 21:01 - 2013-03-31 17:56 - 00000924 ____A C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2260964575-2753946872-1401531445-1001UA.job
2013-06-29 20:19 - 2013-06-29 20:19 - 00000000 ____A C:\autoexec.bat
2013-06-29 20:19 - 2013-06-29 20:18 - 00000000 ____D C:\sh4ldr
2013-06-29 20:18 - 2013-06-29 20:18 - 00002264 ____A C:\Users\User\Desktop\SpyHunter.lnk
2013-06-29 20:18 - 2013-06-29 20:18 - 00000000 ____D C:\Program Files\Enigma Software Group
2013-06-29 20:15 - 2013-06-29 20:15 - 00000005 ____A C:\Users\User\AppData\Roaming\WBPU-TTL.DAT
2013-06-29 19:47 - 2010-11-21 05:47 - 00102248 ____A C:\Windows\PFRO.log
2013-06-29 19:15 - 2013-06-29 19:15 - 00000000 ____D C:\Users\User\AppData\Roaming\DSite
2013-06-29 19:15 - 2013-06-29 19:15 - 00000000 ____D C:\Users\User\AppData\Roaming\BabSolution
2013-06-29 19:15 - 2013-06-29 19:15 - 00000000 ____D C:\Program Files (x86)\OpenIt
2013-06-29 19:15 - 2013-06-27 19:36 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-06-29 19:11 - 2013-06-29 19:11 - 00793536 ____A C:\Users\User\Downloads\ZipOpenerSetup.exe
2013-06-29 18:01 - 2013-03-31 17:56 - 00000902 ____A C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2260964575-2753946872-1401531445-1001Core.job
2013-06-29 17:13 - 2013-06-29 17:13 - 00001121 ____A C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2013-06-29 17:13 - 2013-06-29 17:13 - 00000000 ____D C:\Users\User\AppData\Roaming\Malwarebytes
2013-06-29 17:13 - 2013-06-29 17:13 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-06-29 17:13 - 2013-06-29 17:13 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-06-29 17:12 - 2013-06-29 17:12 - 10285040 ____A (Malwarebytes Corporation                                    ) C:\Users\User\Downloads\mbam-setup-1.75.0.1300.exe
2013-06-29 17:01 - 2013-03-29 20:10 - 00000898 ____A C:\Windows\SysWOW64\InstallUtil.InstallLog
2013-06-29 16:38 - 2013-03-20 22:13 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-06-27 00:10 - 2013-03-24 13:26 - 00000000 ____D C:\Users\User\AppData\Roaming\Audacity
2013-06-26 23:43 - 2013-06-26 23:43 - 00001019 ____A C:\Users\User\Desktop\Audacity.lnk
2013-06-26 23:43 - 2013-06-26 23:43 - 00000000 ____D C:\Program Files (x86)\Audacity
2013-06-26 23:42 - 2013-06-26 23:42 - 21281052 ____A (Audacity Team                                               ) C:\Users\User\Downloads\audacity-win-2.0.3(1).exe
2013-06-26 22:07 - 2013-03-21 21:11 - 00000000 ____D C:\Users\User\AppData\Roaming\Winamp
2013-06-26 00:57 - 2013-03-25 22:52 - 00000000 ____D C:\Users\User\AppData\Roaming\SoftGrid Client
2013-06-24 22:47 - 2013-03-21 21:33 - 00000000 ____D C:\Users\User\AppData\Roaming\vlc
2013-06-24 22:36 - 2013-06-24 21:45 - 42958020 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0304.part1.rar.part
2013-06-24 22:19 - 2013-06-24 22:00 - 104857380 ____A C:\Users\User\Downloads\Cooler-Onkel.01-18.part2.rar
2013-06-24 22:12 - 2013-06-24 21:52 - 104857380 ____A C:\Users\User\Downloads\Cooler-Onkel.01-18.part1.rar
2013-06-24 21:51 - 2013-06-24 21:45 - 103796000 ____A C:\Users\User\Downloads\klima1816.part4.rar
2013-06-23 23:46 - 2013-06-23 23:40 - 104857600 ____A C:\Users\User\Downloads\klima1816.part3.rar
2013-06-23 23:21 - 2013-03-21 23:43 - 00000000 ____D C:\Users\User\Documents\VirtualDJ
2013-06-23 22:51 - 2013-06-23 22:05 - 54793125 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0303.part3.rar
2013-06-23 22:46 - 2013-06-23 22:40 - 104857600 ____A C:\Users\User\Downloads\klima1816.part2.rar
2013-06-23 22:05 - 2013-06-23 20:35 - 107857603 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0303.part2.rar
2013-06-23 21:46 - 2013-06-23 21:40 - 104857600 ____A C:\Users\User\Downloads\klima1816.part1.rar
2013-06-23 21:39 - 2013-06-23 21:35 - 72887670 ____A C:\Users\User\Downloads\jk102.part2.rar
2013-06-23 20:42 - 2013-06-23 20:35 - 115000000 ____A C:\Users\User\Downloads\jk102.part1.rar
2013-06-23 13:00 - 2013-06-23 12:58 - 36032900 ____A C:\Users\User\Downloads\DJPop2000_07_Popper_Punks.part4.rar
2013-06-23 08:15 - 2013-06-23 08:09 - 104857600 ____A C:\Users\User\Downloads\DJPop2000_07_Popper_Punks.part3.rar
2013-06-23 07:15 - 2013-06-23 07:09 - 104857600 ____A C:\Users\User\Downloads\DJPop2000_07_Popper_Punks.part2.rar
2013-06-23 06:15 - 2013-06-23 06:09 - 104857600 ____A C:\Users\User\Downloads\DJPop2000_07_Popper_Punks.part1.rar
2013-06-23 06:08 - 2013-06-23 06:03 - 101178920 ____A C:\Users\User\Downloads\Free.Nr.Zwei.003.part6.rar
2013-06-23 05:08 - 2013-06-23 05:03 - 104857600 ____A C:\Users\User\Downloads\Free.Nr.Zwei.003.part5.rar
2013-06-23 04:52 - 2013-06-23 04:46 - 104857600 ____A C:\Users\User\Downloads\Free.Nr.Zwei.003.part4.rar
2013-06-23 03:52 - 2013-06-23 03:46 - 104857600 ____A C:\Users\User\Downloads\Free.Nr.Zwei.003.part3.rar
2013-06-23 02:52 - 2013-06-23 02:46 - 104857600 ____A C:\Users\User\Downloads\Free.Nr.Zwei.003.part2.rar
2013-06-23 01:52 - 2013-06-23 01:46 - 104857600 ____A C:\Users\User\Downloads\Free.Nr.Zwei.003.part1.rar
2013-06-23 01:45 - 2013-06-23 01:43 - 38259062 ____A C:\Users\User\Downloads\Free.GPL.Devil.part13.rar
2013-06-23 00:50 - 2013-06-23 00:43 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part12.rar
2013-06-22 23:49 - 2013-06-22 23:43 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part11.rar
2013-06-22 23:10 - 2013-06-22 22:25 - 107857603 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0303.part1.rar
2013-06-22 22:49 - 2013-06-22 22:43 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part10.rar
2013-06-22 22:18 - 2013-06-22 21:55 - 55022299 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0301.part3.rar
2013-06-22 21:54 - 2013-06-22 21:09 - 107857606 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0301.part2.rar
2013-06-22 21:50 - 2013-06-22 21:43 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part09.rar
2013-06-22 21:17 - 2013-06-22 21:09 - 123961464 ____A C:\Users\User\Downloads\fcl - It's You (MikiDjFashion deep mix).wav
2013-06-22 21:06 - 2013-06-20 23:25 - 55360389 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0306.part3.rar
2013-06-22 20:53 - 2013-06-22 20:43 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part08.rar
2013-06-22 20:47 - 2013-06-22 20:46 - 06118921 ____A C:\Users\User\Downloads\Lana Del Rey - Young And Beautiful (elektromekanik & happy gutenberg remix).wav
2013-06-22 19:14 - 2013-03-22 22:11 - 00000000 ____D C:\Program Files (x86)\JDownloader
2013-06-20 23:24 - 2013-06-20 22:48 - 107857603 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0306.part2.rar
2013-06-20 23:01 - 2013-06-20 22:44 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part07.rar
2013-06-20 22:47 - 2013-06-20 22:11 - 107857603 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0306.part1.rar
2013-06-20 22:10 - 2013-06-20 21:51 - 55396360 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0312.part3.rar
2013-06-20 22:00 - 2013-06-20 20:40 - 246503517 ____A C:\Users\User\Downloads\itg-stromberg-s02e06.avi.rar
2013-06-20 21:51 - 2013-06-20 20:24 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part05.rar
2013-06-20 21:43 - 2013-06-20 21:07 - 107857603 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0312.part2.rar
2013-06-20 21:07 - 2013-06-20 20:31 - 107857603 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0312.part1.rar
2013-06-20 20:35 - 2013-06-20 20:28 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part06.rar
2013-06-19 23:15 - 2013-06-19 23:09 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part04.rar
2013-06-19 22:29 - 2013-06-19 22:23 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part03.rar
2013-06-19 22:16 - 2013-06-19 22:15 - 55072724 ____A C:\Users\User\Downloads\Robyn - With Every Heartbeat (Frank LaFunk's Full Afterhour Edit).wav
2013-06-19 00:45 - 2013-06-19 00:40 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part02.rar
2013-06-18 23:45 - 2013-06-18 23:40 - 104857600 ____A C:\Users\User\Downloads\Free.GPL.Devil.part01.rar
2013-06-18 23:39 - 2013-06-18 23:38 - 19219560 ____A C:\Users\User\Downloads\FREE.FalkIkon.part5.rar
2013-06-18 22:44 - 2013-06-18 22:38 - 107857600 ____A C:\Users\User\Downloads\FREE.FalkIkon.part4.rar
2013-06-18 21:44 - 2013-06-18 21:38 - 107857600 ____A C:\Users\User\Downloads\FREE.FalkIkon.part3.rar
2013-06-18 20:43 - 2013-06-18 19:38 - 107857600 ____A C:\Users\User\Downloads\FREE.FalkIkon.part2.rar
2013-06-18 20:13 - 2013-06-18 20:12 - 60681644 ____A C:\Users\User\Downloads\FAUL - Changes (Feat Wad Ad).wav
2013-06-18 19:45 - 2013-06-18 19:44 - 36263414 ____A C:\Users\User\Downloads\Artenvielfalt MashUp.zip
2013-06-18 18:17 - 2013-06-18 18:14 - 71442044 ____A C:\Users\User\Downloads\I Would Die For You (Mono Anubis Edit_Remix).wav
2013-06-18 18:09 - 2013-06-18 18:07 - 47980844 ____A C:\Users\User\Downloads\CocoRosie - Sunshine (David B. Edit)3.wav
2013-06-16 20:02 - 2013-06-16 19:56 - 107857600 ____A C:\Users\User\Downloads\FREE.FalkIkon.part1.rar
2013-06-16 19:56 - 2013-06-16 19:55 - 17916977 ____A C:\Users\User\Downloads\jimhen.part8.rar
2013-06-16 19:00 - 2013-06-16 18:54 - 104857600 ____A C:\Users\User\Downloads\jimhen.part7.rar
2013-06-16 18:46 - 2013-06-16 15:24 - 317718528 ____A C:\Users\User\Downloads\sinister.5.1.xvid-derschuft.part1.rar
2013-06-16 18:00 - 2013-06-16 17:54 - 104857600 ____A C:\Users\User\Downloads\jimhen.part6.rar
2013-06-16 17:00 - 2013-06-16 16:54 - 104857600 ____A C:\Users\User\Downloads\jimhen.part5.rar
2013-06-16 16:00 - 2013-06-16 15:54 - 104857600 ____A C:\Users\User\Downloads\jimhen.part4.rar
2013-06-16 15:01 - 2013-06-16 14:54 - 104857600 ____A C:\Users\User\Downloads\jimhen.part3.rar
2013-06-15 21:57 - 2013-06-15 21:25 - 100000000 ____A C:\Users\User\Downloads\JohnnyCash.part4.rar
2013-06-15 21:31 - 2013-06-15 21:25 - 104857600 ____A C:\Users\User\Downloads\jimhen.part2.rar
2013-06-15 19:58 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache
2013-06-15 18:14 - 2013-06-15 18:14 - 00000000 ____D C:\Users\User\AppData\Local\CrashDumps
2013-06-13 13:02 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\System32\NDF
2013-06-12 23:19 - 2013-03-22 21:19 - 75825640 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe
2013-06-12 22:55 - 2013-06-12 22:50 - 104857600 ____A C:\Users\User\Downloads\jimhen.part1.rar
2013-06-12 22:49 - 2013-06-12 22:48 - 11257334 ____A C:\Users\User\Downloads\DiscoLove.part15.rar
2013-06-12 21:54 - 2013-06-12 21:48 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part14.rar
2013-06-12 21:37 - 2013-06-12 21:18 - 55358333 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0323.part3.rar
2013-06-12 21:18 - 2013-06-12 20:42 - 107857606 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0323.part2.rar
2013-06-12 20:54 - 2013-06-12 20:48 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part13.rar
2013-06-12 20:41 - 2013-06-12 20:05 - 107857603 ____A C:\Users\User\Downloads\SJ.SL.2AAHM0323.part1.rar
2013-06-12 20:26 - 2013-03-20 23:43 - 00692104 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-06-12 20:26 - 2013-03-20 23:43 - 00071048 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-06-12 20:20 - 2013-06-12 19:48 - 100000000 ____A C:\Users\User\Downloads\JohnnyCash.part3.rar
2013-06-12 19:54 - 2013-06-12 19:48 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part12.rar
2013-06-11 00:29 - 2013-06-11 00:23 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part11.rar
2013-06-10 23:29 - 2013-06-10 23:23 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part10.rar
2013-06-10 22:30 - 2013-06-10 22:23 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part09.rar
2013-06-10 21:53 - 2013-06-10 21:24 - 88878132 ____A C:\Users\User\Downloads\JohnnyCash.part5.rar
2013-06-10 21:29 - 2013-06-10 21:23 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part08.rar
2013-06-09 23:10 - 2013-06-09 21:53 - 184066555 ____A C:\Users\User\Downloads\Rothwald.part2.rar.part
2013-06-09 22:37 - 2013-06-09 22:31 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part07.rar
2013-06-09 21:52 - 2013-06-09 20:25 - 209715200 ____A C:\Users\User\Downloads\Rothwald.part1.rar
2013-06-09 21:37 - 2013-06-09 21:31 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part06.rar
2013-06-09 20:37 - 2013-06-09 20:31 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part05.rar
2013-06-09 20:06 - 2013-06-09 19:32 - 100000000 ____A C:\Users\User\Downloads\JohnnyCash.part2.rar
2013-06-09 20:01 - 2013-06-09 19:31 - 70533744 ____A C:\Users\User\Downloads\xf-savagelove.part09.rar
2013-06-09 19:37 - 2013-06-09 19:31 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part04.rar
2013-06-09 01:01 - 2013-06-09 00:39 - 110000002 ____A C:\Users\User\Downloads\xf-savagelove.part08.rar
2013-06-09 00:38 - 2013-06-09 00:16 - 110000002 ____A C:\Users\User\Downloads\xf-savagelove.part07.rar
2013-06-09 00:31 - 2013-06-09 00:25 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part03.rar
2013-06-09 00:15 - 2013-06-08 23:39 - 110000002 ____A C:\Users\User\Downloads\xf-savagelove.part06.rar
2013-06-08 23:38 - 2013-06-08 22:13 - 110000002 ____A C:\Users\User\Downloads\xf-savagelove.part05.rar
2013-06-08 23:31 - 2013-06-08 23:25 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part02.rar
2013-06-08 23:24 - 2013-06-08 22:51 - 100000000 ____A C:\Users\User\Downloads\JohnnyCash.part1.rar
2013-06-08 22:27 - 2013-06-08 22:21 - 110100480 ____A C:\Users\User\Downloads\DiscoLove.part01.rar
2013-06-08 16:08 - 2013-06-15 15:35 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2013-06-08 16:07 - 2013-06-15 15:35 - 19233792 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2013-06-08 16:06 - 2013-06-15 15:35 - 15404544 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2013-06-08 16:06 - 2013-06-15 15:35 - 02648064 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2013-06-08 16:06 - 2013-06-15 15:35 - 00526336 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2013-06-08 14:28 - 2013-06-15 15:35 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2013-06-08 13:42 - 2013-06-15 15:35 - 01141248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-06-08 13:40 - 2013-06-15 15:35 - 14327808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-06-08 13:40 - 2013-06-15 15:35 - 13760512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-06-08 13:40 - 2013-06-15 15:35 - 02046976 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-06-08 13:40 - 2013-06-15 15:35 - 00391168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-06-08 13:13 - 2013-06-15 15:35 - 02706432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-06-07 12:33 - 2013-06-07 12:33 - 00083160 ____A (Avira GmbH) C:\Windows\System32\Drivers\avnetflt.sys
2013-06-06 19:36 - 2013-06-06 19:35 - 48140220 ____A C:\Users\User\Downloads\searching.wav
2013-06-06 17:57 - 2013-06-06 17:34 - 254778288 ____A C:\Users\User\Downloads\Teens Try Anal CD1.flv
2013-06-06 17:32 - 2013-06-06 17:25 - 82995335 ____A C:\Users\User\Downloads\Very_Young_Girl_Being_Fucked_Very_Brutally.rar
2013-06-06 15:45 - 2013-06-06 15:41 - 149896018 ____A C:\Users\User\Downloads\Suzy Gets Fucked.mp4
2013-06-04 20:57 - 2013-06-04 20:57 - 00002220 ____A C:\Users\Public\Desktop\Google Earth.lnk
2013-06-04 20:57 - 2013-03-24 20:07 - 00000000 ____D C:\Users\User\AppData\Local\Google
2013-06-04 20:57 - 2013-03-24 20:07 - 00000000 ____D C:\Program Files (x86)\Google
2013-06-04 20:56 - 2013-06-04 20:55 - 25406864 ____A C:\Users\User\Downloads\GoogleEarthWin_7.1.exe
2013-06-01 19:20 - 2013-06-01 17:23 - 106954752 ____A C:\Users\User\Downloads\cia-pr1vt3ss-xvid.part04.rar
2013-06-01 18:28 - 2013-06-01 18:23 - 91240637 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part15.rar
2013-06-01 17:29 - 2013-06-01 17:23 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part14.rar
2013-05-31 00:30 - 2013-05-31 00:24 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part13.rar
2013-05-31 00:02 - 2013-05-30 22:50 - 110000002 ____A C:\Users\User\Downloads\xf-savagelove.part04.rar
2013-05-30 23:29 - 2013-05-30 23:24 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part12.rar
2013-05-30 22:29 - 2013-05-30 22:24 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part11.rar
2013-05-30 21:29 - 2013-05-30 21:24 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part10.rar
2013-05-30 20:29 - 2013-05-30 20:24 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part09.rar
2013-05-30 19:29 - 2013-05-30 19:23 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part08.rar
2013-05-30 18:29 - 2013-05-30 18:23 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part07.rar
2013-05-30 17:29 - 2013-05-30 17:23 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part06.rar
2013-05-30 16:29 - 2013-05-30 16:23 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part05.rar
2013-05-30 15:51 - 2013-05-30 15:23 - 96204655 ____A C:\Users\User\Downloads\cia-pr1vt3ss-xvid.part09.rar
2013-05-30 15:29 - 2013-05-30 15:23 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part04.rar
2013-05-30 00:55 - 2013-05-30 00:28 - 106954752 ____A C:\Users\User\Downloads\cia-pr1vt3ss-xvid.part08.rar
2013-05-30 00:47 - 2013-05-30 00:37 - 340892178 ____A C:\Users\User\Downloads\Justice live @ Coachella 2012(720p_H.264-AAC).mp4
2013-05-30 00:37 - 2013-05-30 00:34 - 85611568 ____A C:\Users\User\Downloads\Justice live @ Coachella 2012(360p_H.264-AAC).mp4
2013-05-30 00:27 - 2013-05-30 00:00 - 106954752 ____A C:\Users\User\Downloads\cia-pr1vt3ss-xvid.part07.rar
2013-05-30 00:02 - 2013-05-29 23:56 - 104857600 ____A C:\Users\User\Downloads\fgdgdfgfdgdrfrfgr.part03.rar
2013-05-30 00:00 - 2013-05-29 23:33 - 106954752 ____A C:\Users\User\Downloads\cia-pr1vt3ss-xvid.part06.rar

==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2013-06-23 00:41

==================== End Of Log ============================
         
--- --- ---

--- --- ---

--- --- ---

--- --- ---

Also SypHunter ist noch da und die Smiley-Toolbar wenn ich bei Facebook etwas posten will ist auch noch da.

Un nun???

Alt 29.06.2013, 23:32   #8
aharonov
/// TB-Ausbilder
 
Deinstallation von Iminent und SpyHunter - Standard

Deinstallation von Iminent und SpyHunter



Wie sieht es nach folgendem Fix aus?


Drücke die + R Taste und schreibe "notepad" in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument:
Code:
ATTFilter
FF Extension: VirtualDJ Toolbar - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\ib6a3ewj.default\Extensions\toolbar@ask.com
FF Extension: webbooster - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\ib6a3ewj.default\Extensions\webbooster@iminent.com.xpi
R3 esgiguard; C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [13088 2011-03-02] ()
2013-06-29 20:18 - 2013-06-29 20:19 - 00000000 ____D C:\sh4ldr
2013-06-29 20:18 - 2013-06-29 20:18 - 00002264 ____A C:\Users\User\Desktop\SpyHunter.lnk
2013-06-29 20:18 - 2013-06-29 20:18 - 00000000 ____D C:\Program Files\Enigma Software Group
2013-06-29 20:17 - 2013-06-29 22:17 - 00000000 ____D C:\Windows\BCD5545077AC4347B24F654B1189F8D4.TMP
2013-06-29 19:15 - 2013-06-29 19:15 - 00000000 ____D C:\Users\User\AppData\Roaming\DSite
         
Speichere dieses dann bitte unter dem Dateinamen Fixlist.txt ebenfalls auf deinen Desktop neben FRST.
  • Starte nun FRST und klicke den Fix Button.
  • Das Tool erstellt eine Fixlog.txt. Poste mir deren Inhalt.
__________________
cheers,
Leo

Alt 08.07.2013, 10:44   #9
aharonov
/// TB-Ausbilder
 
Deinstallation von Iminent und SpyHunter - Standard

Deinstallation von Iminent und SpyHunter



Hi,

ich hab schon länger keine Antwort mehr von dir erhalten. Brauchst du weiterhin noch Hilfe?

Wenn ich in den nächsten 24 Stunden nichts von dir höre, gehe ich davon aus, dass sich das Thema erledigt hat und lösche es aus meinen Abos.

Hinweis: Wir sind noch nicht fertig! Auch wenn die Symptome verschwunden sein sollten, kann dein System weiterhin infiziert sein und über Sicherheitslücken verfügen, welche eine erneute Infektion möglich machen.
__________________
cheers,
Leo

Alt 12.07.2013, 00:09   #10
aharonov
/// TB-Ausbilder
 
Deinstallation von Iminent und SpyHunter - Standard

Deinstallation von Iminent und SpyHunter



Fehlende Rückmeldung
Dieses Thema wurde aus meinen Abos gelöscht. Somit bekomme ich keine Benachrichtigung mehr über neue Antworten.
Schreib mir eine PM, falls du das Thema doch wieder fortsetzen möchtest. Dann machen wir hier weiter.

Hinweis: Das Verschwinden der Symptome bedeutet nicht, dass dein Rechner schon sauber ist.

Jeder andere bitte diese Anleitung lesen und einen eigenen Thread erstellen.
__________________
cheers,
Leo

Antwort

Themen zu Deinstallation von Iminent und SpyHunter
artikel, brauche, deinstallation, deinstalliere, deinstallieren, deinstalliert, dringend, empfohlen, erschein, erscheint, facebook, forum, gefährliche, immernoch, krieg, poste, posten, runtergeladen, schaden, schlimm, software, spyhunter, tagen, verschwunden, werbung




Ähnliche Themen: Deinstallation von Iminent und SpyHunter


  1. Deinstallation von PC Performer
    Plagegeister aller Art und deren Bekämpfung - 08.01.2015 (18)
  2. PROBLEME mit Spyhunter und mystart! Wie bekomme ich Spyhunter wieder weg?
    Plagegeister aller Art und deren Bekämpfung - 14.11.2014 (13)
  3. Search Protect (trovi.com, search.iminent.com), Fehler bei der Deinstallation.
    Plagegeister aller Art und deren Bekämpfung - 22.07.2014 (17)
  4. SoftwareUpdater deinstallation?
    Plagegeister aller Art und deren Bekämpfung - 06.04.2014 (7)
  5. Spyhunter 4-Nach Deinstallation Meldung im Dos-Stil:Enigma
    Log-Analyse und Auswertung - 10.01.2014 (13)
  6. Iminent auf Windows 7 unerklärlich installiert. Deinstallation nicht möglich...
    Log-Analyse und Auswertung - 28.10.2013 (13)
  7. Mit Spyhunter 47 Bedrohungen gefunden, Spyhunter wurde aber wieder deinstalliert.
    Log-Analyse und Auswertung - 25.10.2013 (9)
  8. Spyhunter installiert, wie bei Deinstallation vorgehen?
    Log-Analyse und Auswertung - 05.09.2013 (13)
  9. Iminent - Deinstallation erfolglos
    Plagegeister aller Art und deren Bekämpfung - 06.07.2013 (26)
  10. Langanhaltendes Fiepen und Probleme bei der Deinstallation von Spyhunter
    Plagegeister aller Art und deren Bekämpfung - 21.05.2013 (25)
  11. Spy-Hunter 4 unvollständige Deinstallation
    Log-Analyse und Auswertung - 09.05.2013 (18)
  12. BSI empfiehlt Deinstallation von Java
    Nachrichten - 11.01.2013 (0)
  13. ZoneAlarm Deinstallation
    Diskussionsforum - 01.06.2010 (1)
  14. McAfee Deinstallation automatisieren
    Antiviren-, Firewall- und andere Schutzprogramme - 27.05.2009 (4)
  15. AVG Deinstallation
    Antiviren-, Firewall- und andere Schutzprogramme - 20.12.2008 (5)
  16. Problem mit Deinstallation von AVG
    Antiviren-, Firewall- und andere Schutzprogramme - 20.05.2007 (7)
  17. Probleme mit Deinstallation
    Alles rund um Windows - 12.01.2007 (5)

Zum Thema Deinstallation von Iminent und SpyHunter - Hallo, seit ich vor ein paar Tagen ein Audiobearbeitungsprogramm runtergeladen habe, erscheint bei Facebook immer Werbung von Iminent. Das habe ich nun schon deinstalliert, aber es ist immernoch drauf. Die - Deinstallation von Iminent und SpyHunter...
Archiv
Du betrachtest: Deinstallation von Iminent und SpyHunter auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.