Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Malware.Packer.Krunchy was ist das?

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 11.12.2013, 16:50   #16
MightyMarc
 
Malware.Packer.Krunchy was ist das? - Standard

Malware.Packer.Krunchy was ist das?



Zitat:
Zitat von cosinus Beitrag anzeigen
Wie kommst du überhaupt darauf Marc?
Log + Google

Die Stadt habe ich schon mal richtig. Beim Vornamen habe ich mich verwirren lassen, beim Familiennamen habe ich einen guten Anhaltspunkt.

MM
__________________
When you contact tech support, a lot of people feel like they're either talking to an idiot or being treated like one.

Alt 11.12.2013, 17:17   #17
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Malware.Packer.Krunchy was ist das? - Icon30

Malware.Packer.Krunchy was ist das?



Zitat:
Zitat von MightyMarc Beitrag anzeigen
Log + Google

Die Stadt habe ich schon mal richtig. Beim Vornamen habe ich mich verwirren lassen, beim Familiennamen habe ich einen guten Anhaltspunkt.

MM
Hast du dich schon bei der NSA beworben? Aber bitte nicht als Backup-Operator
__________________

__________________

Alt 11.12.2013, 17:50   #18
saufbiene
 
Malware.Packer.Krunchy was ist das? - Standard

Malware.Packer.Krunchy was ist das?



Code:
ATTFilter
# AdwCleaner v3.015 - Bericht erstellt am 11/12/2013 um 16:40:50
# Updated 10/12/2013 von Xplode
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits)
# Benutzername : Daniel - MEDION
# Gestartet von : C:\Users\Daniel\Desktop\adwcleaner.exe
# Option : Löschen

***** [ Dienste ] *****


***** [ Dateien / Ordner ] *****

Ordner Gelöscht : C:\ProgramData\WinterSoft
Ordner Gelöscht : C:\Program Files (x86)\GreenTree Applications

***** [ Verknüpfungen ] *****


***** [ Registrierungsdatenbank ] *****

Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{C66F0B7A-BD67-4982-AF71-C6CA6E7F016F}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}

***** [ Browser ] *****

-\\ Internet Explorer v11.0.9600.16428


-\\ Google Chrome v31.0.1650.63

[ Datei : C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [1096 octets] - [11/12/2013 16:39:20]
AdwCleaner[S0].txt - [1014 octets] - [11/12/2013 16:40:50]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1074 octets] ##########
         
Code:
ATTFilter
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.8 (11.05.2013:1)
OS: Windows 7 Home Premium x64
Ran by Daniel on 11.12.2013 at 16:54:21,24
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys



~~~ Files



~~~ Folders



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 11.12.2013 at 17:01:44,57
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
         
jetzt bin ich gerade etwas verwirrt von marc seiner aussage rofl
und marc ich heiße Kai-Daniel ^^
und was zum guguck heißt OT ?

FRST Logfile:

FRST Logfile:

FRST Logfile:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 10-12-2013 01
Ran by Daniel (administrator) on MEDION on 11-12-2013 17:32:40
Running from C:\Users\Daniel\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(Microsoft Corporation) C:\Windows\System32\lpksetup.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Hewlett-Packard Company) C:\Program Files (x86)\HP\HP Color LaserJet CM1312 MFP Series\hppfaxprintersrv.exe
(Reimage®) C:\Program Files\AntiToolbar\ReiGuard.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Firebird Project) C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbguard.exe
(Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(MagicISO, Inc.) C:\Program Files (x86)\MagicDisc\MagicDisc.exe
(Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
(CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Wistron) C:\Program Files (x86)\Launch Manager\HotkeyApp.exe
(Wistron Corp.) C:\Program Files (x86)\Launch Manager\OSD.exe
(Wistron Corp.) C:\Program Files (x86)\Launch Manager\WButton.exe
(Hewlett-Packard Company) C:\Program Files (x86)\HP\HP UT\bin\hppusg.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
(Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
() C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Protexis Inc.) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(arvato digital services llc) C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(X10) C:\Program Files (x86)\Common Files\X10\Common\X10nets.exe
(Opera Software) C:\Program Files (x86)\Opera\opera.exe
(Microsoft Corporation) C:\Windows\System32\wermgr.exe
(Firebird Project) C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbserver.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Wistron Corp.) C:\Program Files (x86)\Launch Manager\WisLMSvc.exe
(Microsoft Corporation) C:\Windows\System32\lpksetup.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11548264 2010-11-11] (Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1890088 2009-12-11] (Synaptics Incorporated)
HKLM\...\Run: [HP Color LaserJet CM1312 MFP Series Fax] - C:\Program Files (x86)\HP\HP Color LaserJet CM1312 MFP Series\hppfaxprintersrv.exe [3700736 2009-09-22] (Hewlett-Packard Company)
HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] ()
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [20549280 2013-10-21] (Skype Technologies S.A.)
HKCU\...\Run: [Personal ID] - C:\Program Files (x86)\coolspot AG\Personal ID\pid.exe [1132984 2013-08-01] (coolspot AG, Düsseldorf)
HKCU\...\Run: [AdobeBridge] - [x]
MountPoints2: {dc86d06a-fa04-11e2-b7d0-806e6f6e6963} - E:\Autorun.exe
HKLM-x32\...\Run: [NUSB3MON] - C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-11] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [CLMLServer] - C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [103720 2009-11-02] (CyberLink)
HKLM-x32\...\Run: [YouCam Mirage] - C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [136488 2010-10-28] (CyberLink)
HKLM-x32\...\Run: [YouCam Tray] - C:\Program Files (x86)\CyberLink\YouCam\YouCam.exe [224352 2010-10-28] (CyberLink Corp.)
HKLM-x32\...\Run: [DivXMediaServer] - C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [450560 2013-09-11] (DivX, LLC)
HKLM-x32\...\Run: [HotkeyApp] - C:\Program Files (x86)\Launch Manager\HotkeyApp.exe [200704 2009-12-14] (Wistron)
HKLM-x32\...\Run: [LMgrVolOSD] - C:\Program Files (x86)\Launch Manager\OSD.exe [348960 2009-12-11] (Wistron Corp.)
HKLM-x32\...\Run: [Wbutton] - C:\Program Files (x86)\Launch Manager\WButton.exe [436264 2010-06-21] (Wistron Corp.)
HKLM-x32\...\Run: [] - [x]
HKLM-x32\...\Run: [HPUsageTracking] - C:\Program Files (x86)\HP\HP UT\bin\hppusg.exe [24576 2009-05-11] (Hewlett-Packard Company)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-11] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [AdobeCS4ServiceManager] - C:\Program Files (x86)\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [611712 2008-08-14] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] - C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrobat_sl.exe [44128 2013-05-08] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Acrobat Assistant 8.0] - C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe [642664 2013-05-08] (Adobe Systems Inc.)
HKLM-x32\...\Run: [Adobe_ID0ENQBO] - C:\Program Files (x86)\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4Tray.exe [378224 2008-08-15] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [DivXUpdate] - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1861968 2013-08-29] ()
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3568312 2013-12-09] (AVAST Software)
Startup: C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MagicDisc.lnk
ShortcutTarget: MagicDisc.lnk -> C:\Program Files (x86)\MagicDisc\MagicDisc.exe (MagicISO, Inc.)

==================== Internet (Whitelisted) ====================

BHO: avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: SmartSelect Class - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKLM - avast! Online Security - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKLM-x32 - avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\Ole DB\MSDAIPP.DLL (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Filter: text/xml - {807553E5-5146-11D5-A672-00B0D022E945} -  No File
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1

Chrome: 
=======
CHR HomePage: 
CHR RestoreOnStartup: "hxxp://www.google.com/"
CHR DefaultSearchKeyword: google.de
CHR DefaultSearchProvider: Google
CHR DefaultSearchURL: {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
CHR DefaultNewTabURL: {google:baseURL}_/chrome/newtab?{google:RLZ}{google:instantExtendedEnabledParameter}{google:ntpIsThemedParameter}ie={inputEncoding}
CHR Extension: (Google Docs) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0
CHR Extension: (Google Drive) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0
CHR Extension: (Turn Off the Lights) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfbmjmiodbnnpllbbbfblcplfjjepjdn\2.2.0.28_0
CHR Extension: (YouTube) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Cake Mania Main Street) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\bohogdkongdgejlnndnnhamjgfnbfoon\0.1_0
CHR Extension: (tattoo girl) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\bolmkphclbnmjlbmibfcnfggbakghpck\1_0
CHR Extension: (Comics and Manga online) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\chmidfbpiiicmkfimcbcoagpmchgmkpl\1.4.3_0
CHR Extension: (Monster Dash) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\cknghehebaconkajgiobncfleofebcog\2.2_0
CHR Extension: (Google Search) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (Search by Image (by Google)) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\dajedkncpodkggklbegccjpmnglmnflm\1.5.0_0
CHR Extension: (avast! Online Security) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki\9.0.2005.45_0
CHR Extension: (TinEye Reverse Image Search) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\haebnnbpedcbhciplfhjjkbafijpncjl\1.1.3_0
CHR Extension: (Cake Mania) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\kckjnbilaljpiclmpmnomoapakjmoapj\0.1_0
CHR Extension: (SparkChess 6) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\khgabmflimjjbclkmljlpmgaleanedem\6.4.5.1_0
CHR Extension: (Sand 2) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\klicmgamjpclmbhppmdeamffedflmkcn\1.1_0
CHR Extension: (Google Wallet) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0
CHR Extension: (Gmail) - C:\Users\Daniel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx

==================== Services (Whitelisted) =================

S3 Adobe Version Cue CS4; C:\Program Files (x86)\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe [284016 2008-08-15] (Adobe Systems Incorporated)
R2 AntiToolbarProtector; C:\Program Files\AntiToolbar\ReiGuard.exe [4389224 2013-09-15] (Reimage®)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2013-12-09] (AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [116776 2013-12-09] (AVAST Software)
R2 FirebirdGuardianDefaultInstance; C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbguard.exe [98304 2010-09-17] (Firebird Project)
R3 FirebirdServerDefaultInstance; C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbserver.exe [3735552 2010-09-17] (Firebird Project)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-08-24] ()
R2 PSI_SVC_2_x64; c:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe [336824 2010-11-30] (arvato digital services llc)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [244904 2010-02-10] ()
R3 WisLMSvc; C:\Program Files (x86)\Launch Manager\WisLMSvc.exe [118560 2009-10-22] (Wistron Corp.)
R2 x10nets; C:\Program Files (x86)\Common Files\X10\Common\X10nets.exe [20480 2009-11-07] (X10)

==================== Drivers (Whitelisted) ====================

R2 aswFsBlk; C:\Windows\system32\drivers\aswFsBlk.sys [38984 2013-12-09] (AVAST Software)
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [28184 2013-12-09] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [84328 2013-12-09] (AVAST Software)
R1 aswNdisFlt; C:\Windows\System32\DRIVERS\aswNdisFlt.sys [447888 2013-12-09] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [92544 2013-12-09] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2013-12-09] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1032416 2013-12-09] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [409832 2013-12-09] (AVAST Software)
R1 aswTdi; C:\Windows\system32\drivers\aswTdi.sys [65264 2013-12-09] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [205320 2013-12-09] ()
R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [88480 2013-10-10] ()
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [46400 2013-10-10] ()
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
S3 mod7764; C:\Windows\System32\DRIVERS\mod77-64.sys [913888 2009-09-24] (DiBcom SA)
S3 Serial; C:\Windows\system32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [871408 2013-10-21] ()
R3 X10Hid; C:\Windows\System32\Drivers\x10hid.sys [15896 2009-05-13] (X10 Wireless Technology, Inc.)
S2 {09BB444F-B2E2-4009-BAF2-7B727681223E}; C:\Program Files (x86)\VMLaunch\BuddyVM.sys [15872 2004-10-05] (Interlex Inc.)
U3 DfSdkS; 
S3 dgderdrv; System32\drivers\dgderdrv.sys [x]
S3 ewusbnet; system32\DRIVERS\ewusbnet.sys [x]
S3 hwdatacard; system32\DRIVERS\ewusbmdm.sys [x]
S3 hwusbdev; system32\DRIVERS\ewusbdev.sys [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-12-11 17:01 - 2013-12-11 17:01 - 00000626 ____C C:\Users\Daniel\Desktop\JRT.txt
2013-12-11 16:51 - 2013-12-11 16:51 - 01034531 ____C (Thisisu) C:\Users\Daniel\Desktop\JRT.exe
2013-12-11 16:39 - 2013-12-11 16:40 - 00000000 ___DC C:\AdwCleaner
2013-12-11 16:30 - 2013-12-11 16:30 - 01226802 ____C C:\Users\Daniel\Desktop\adwcleaner.exe
2013-12-11 15:36 - 2013-12-11 15:36 - 00049250 ____C C:\Users\Daniel\Desktop\Addition.txt
2013-12-11 15:24 - 2013-12-11 17:32 - 00016982 ____C C:\Users\Daniel\Desktop\FRST.txt
2013-12-11 15:23 - 2013-12-11 15:23 - 00000000 ___DC C:\FRST
2013-12-11 14:17 - 2013-12-11 14:17 - 01928212 ____C (Farbar) C:\Users\Daniel\Desktop\FRST64.exe
2013-12-10 20:34 - 2013-12-10 20:34 - 00000154 ____C C:\Users\Daniel\Desktop\Netzvideoschau- Der Erotik-Streich der fast nackten Freundinnen - Video - Netzvideoschau - FOCUS Online.url
2013-12-10 14:14 - 2013-12-10 14:14 - 00072035 ____C C:\Users\Daniel\Desktop\VID-20131102-WA0000.mp4
2013-12-10 04:00 - 2013-12-10 04:01 - 09897448 ____C C:\Users\Daniel\Desktop\CHIPLockOutlookPro4.exe
2013-12-09 17:07 - 2009-08-24 21:13 - 00034304 ____C (mst software GmbH, Germany) C:\Windows\system32\DfSdkBt.exe
2013-12-09 01:55 - 2013-12-09 01:55 - 00000000 ___DC C:\Users\Daniel\AppData\Roaming\AVAST Software
2013-12-09 01:50 - 2013-12-09 01:50 - 00002036 ____C C:\Users\Public\Desktop\avast! SafeZone.lnk
2013-12-09 01:50 - 2013-12-09 01:50 - 00001976 ____C C:\Users\Public\Desktop\avast! Internet Security.lnk
2013-12-09 01:49 - 2013-12-09 01:49 - 01032416 ____C (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2013-12-09 01:49 - 2013-12-09 01:49 - 00409832 ____C (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2013-12-09 01:49 - 2013-12-09 01:49 - 00334648 ____C (AVAST Software) C:\Windows\system32\aswBoot.exe
2013-12-09 01:49 - 2013-12-09 01:49 - 00205320 ____C C:\Windows\system32\Drivers\aswVmm.sys
2013-12-09 01:49 - 2013-12-09 01:49 - 00092544 ____C (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2013-12-09 01:49 - 2013-12-09 01:49 - 00084328 ____C (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2013-12-09 01:49 - 2013-12-09 01:49 - 00065776 ____C C:\Windows\system32\Drivers\aswRvrt.sys
2013-12-09 01:49 - 2013-12-09 01:49 - 00065264 ____C (AVAST Software) C:\Windows\system32\Drivers\aswTdi.sys
2013-12-09 01:49 - 2013-12-09 01:49 - 00043152 ____C (AVAST Software) C:\Windows\avastSS.scr
2013-12-09 01:49 - 2013-12-09 01:49 - 00038984 ____C (AVAST Software) C:\Windows\system32\Drivers\aswFsBlk.sys
2013-12-09 01:49 - 2013-12-09 01:49 - 00028184 ____C (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2013-12-09 01:49 - 2013-12-09 01:49 - 00003924 ____C C:\Windows\System32\Tasks\avast! Emergency Update
2013-12-09 01:48 - 2013-12-09 01:48 - 00447888 ____C (AVAST Software) C:\Windows\system32\Drivers\aswNdisFlt.sys
2013-12-09 01:48 - 2013-12-09 01:48 - 00000000 ___DC C:\Program Files\AVAST Software
2013-12-09 01:47 - 2013-12-09 01:47 - 00000000 ___DC C:\ProgramData\AVAST Software
2013-12-08 20:28 - 2013-12-09 18:41 - 00000000 ___DC C:\Users\Daniel\Desktop\programme
2013-12-07 21:43 - 2013-12-07 21:43 - 00000000 ___DC C:\Users\Daniel\AppData\Local\Aurora Software
2013-12-07 21:41 - 2013-12-07 21:41 - 00000000 ___DC C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aurora Blu-ray Media Player
2013-12-07 21:41 - 2013-12-07 21:41 - 00000000 ___DC C:\Program Files (x86)\Aurora Software
2013-12-07 18:04 - 2013-12-07 18:06 - 95963136 ____C C:\Users\Daniel\Cake mania.iso
2013-12-07 18:02 - 2013-12-07 18:02 - 00000101 ____C C:\Windows\msxmlcab.log
2013-12-07 18:02 - 2013-12-07 18:02 - 00000000 ___DC C:\ProgramData\Sandlot Games
2013-12-07 17:17 - 2013-12-07 17:17 - 00000000 ___DC C:\Program Files (x86)\eGames
2013-12-07 17:16 - 2013-12-07 17:16 - 00000000 ___DC C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\rondomedia
2013-12-07 17:16 - 2013-12-07 17:16 - 00000000 ___DC C:\Program Files (x86)\rondomedia
2013-12-07 17:14 - 2013-12-07 17:15 - 00000801 ____C C:\Windows\DirectX.log
2013-12-07 17:14 - 2000-08-19 20:29 - 00268048 ____C (MetaCreations Corporation) C:\Windows\SysWOW64\dxtmeta2.dll
2013-12-05 21:24 - 2013-12-05 21:24 - 00002952 ____C C:\Windows\System32\Tasks\{E8DB0424-DD34-4B5E-ABA1-8F87BA189D0B}
2013-12-05 21:04 - 2013-12-07 04:16 - 00000000 ___DC C:\Program Files\FileViewPro
2013-12-05 21:04 - 2013-12-05 21:04 - 00000000 ___DC C:\Users\Daniel\AppData\Roaming\IsolatedStorage
2013-12-05 21:04 - 2013-12-05 21:04 - 00000000 ___DC C:\Users\Daniel\AppData\Local\FileViewPro
2013-12-05 21:04 - 2013-12-05 21:04 - 00000000 ___DC C:\ProgramData\IsolatedStorage
2013-12-03 12:47 - 2013-12-03 12:47 - 00015360 ____C C:\Users\Daniel\Downloads\inspektionskosten0308ams.xls
2013-12-02 00:59 - 2013-12-07 02:13 - 01592824 ____C C:\Windows\SysWOW64\PerfStringBackup.INI
2013-11-30 14:03 - 2013-11-30 14:03 - 00000000 ___DC C:\Program Files (x86)\Franzis
2013-11-29 17:49 - 2013-11-29 17:49 - 00000000 ___DC C:\ProgramData\PopCap Games
2013-11-29 17:49 - 2013-11-29 17:49 - 00000000 ___DC C:\Program Files (x86)\PopCap Games
2013-11-28 22:06 - 2013-11-28 22:06 - 00000000 ___DC C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Firaxis Games
2013-11-28 22:02 - 2013-11-28 22:02 - 00000000 ___DC C:\Program Files (x86)\Firaxis Games
2013-11-28 18:43 - 2013-12-11 16:05 - 00000000 ___DC C:\Users\Daniel\Downloads\All 51 PopCap Games as of 2011-02-24
2013-11-27 16:31 - 2013-11-27 16:32 - 00000000 ___DC C:\Program Files (x86)\Nutella EstaThe Snack and Drink
2013-11-21 01:34 - 2013-11-21 01:34 - 00000000 ___DC C:\Users\Daniel\AppData\Roaming\Hive Cluster
2013-11-21 00:43 - 2013-12-04 21:03 - 00000000 ___DC C:\Users\Daniel\Desktop\bilder
2013-11-21 00:43 - 2013-11-21 00:43 - 00000000 ___DC C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Antichamber
2013-11-21 00:40 - 2013-11-21 00:41 - 00000000 ___DC C:\Program Files (x86)\Antichamber
2013-11-20 00:00 - 2013-12-09 06:33 - 00115058 ____C C:\Windows\PFRO.log
2013-11-19 18:45 - 2013-12-08 20:27 - 00000000 ___DC C:\Users\Daniel\Desktop\sims
2013-11-19 16:01 - 2013-12-08 02:52 - 00195160 ____C C:\Users\Daniel\AppData\Local\GDIPFONTCACHEV1.DAT
2013-11-19 00:16 - 2013-11-19 00:18 - 00000000 ___DC C:\Users\Daniel\Downloads\The Watchmen (OST) - 2009
2013-11-18 10:37 - 2013-12-11 17:24 - 00001456 ____C C:\Windows\setupact.log
2013-11-18 10:37 - 2013-12-08 03:24 - 03215552 ____C C:\Windows\system32\FNTCACHE.DAT
2013-11-18 10:37 - 2013-11-18 10:37 - 00000000 ____C C:\Windows\setuperr.log
2013-11-17 19:33 - 2013-11-17 19:35 - 00113646 ____C C:\Users\Daniel\Documents\cc_20131117_193346.reg
2013-11-16 18:13 - 2013-11-16 18:13 - 00002566 ____C C:\Windows\diagwrn.xml
2013-11-16 18:13 - 2013-11-16 18:13 - 00001908 ____C C:\Windows\diagerr.xml
2013-11-15 13:02 - 2013-11-15 13:03 - 00001755 ____C C:\DelFix.txt
2013-11-15 01:42 - 2013-10-14 18:00 - 00028368 ____C (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE
2013-11-15 01:38 - 2013-11-15 01:38 - 23212032 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 17142784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 12995584 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 11220992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 05765120 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 04240384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-11-15 01:38 - 2013-11-15 01:38 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-11-15 01:38 - 2013-11-15 01:38 - 02332160 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 02166272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 01993728 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-11-15 01:38 - 2013-11-15 01:38 - 01926656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2013-11-15 01:38 - 2013-11-15 01:38 - 01818112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 01394176 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 01156608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2013-11-15 01:38 - 2013-11-15 01:38 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2013-11-15 01:38 - 2013-11-15 01:38 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2013-11-15 01:38 - 2013-11-15 01:38 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2013-11-15 01:38 - 2013-11-15 01:38 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2013-11-15 01:38 - 2013-11-15 01:38 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-11-15 01:38 - 2013-11-15 01:38 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2013-11-15 01:38 - 2013-11-15 01:38 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2013-11-15 01:38 - 2013-11-15 01:38 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2013-11-15 01:38 - 2013-11-15 01:38 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2013-11-15 01:38 - 2013-11-15 01:38 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-11-15 01:38 - 2013-11-15 01:38 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2013-11-15 01:38 - 2013-11-15 01:38 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2013-11-15 01:38 - 2013-11-15 01:38 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2013-11-15 01:38 - 2013-11-15 01:38 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-11-15 01:38 - 2013-11-15 01:38 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2013-11-15 01:38 - 2013-11-15 01:38 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2013-11-15 01:38 - 2013-11-15 01:38 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-11-15 01:38 - 2013-11-15 01:38 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2013-11-15 01:38 - 2013-11-15 01:38 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2013-11-15 01:38 - 2013-11-15 01:38 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2013-11-15 01:38 - 2013-11-15 01:38 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2013-11-15 01:38 - 2013-11-15 01:38 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2013-11-15 01:38 - 2013-11-15 01:38 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2013-11-14 23:24 - 2013-11-14 23:25 - 06578176 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2013-11-14 23:24 - 2013-11-14 23:25 - 05698048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2013-11-14 23:24 - 2013-11-14 23:25 - 01147392 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2013-11-14 23:24 - 2013-11-14 23:25 - 01068544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2013-11-14 23:24 - 2013-11-14 23:25 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2013-11-14 23:24 - 2013-11-14 23:25 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
2013-11-14 23:24 - 2013-11-14 23:25 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2013-11-14 23:24 - 2013-11-14 23:25 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2013-11-14 23:24 - 2013-11-14 23:25 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2013-11-14 23:24 - 2013-11-14 23:25 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll
2013-11-14 23:24 - 2013-11-14 23:25 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2013-11-14 23:24 - 2013-11-14 23:25 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2013-11-14 23:24 - 2013-11-14 23:25 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll
2013-11-14 23:24 - 2013-11-14 23:25 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2013-11-14 23:24 - 2013-11-14 23:25 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2013-11-14 23:24 - 2013-11-14 23:25 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll
2013-11-14 23:24 - 2013-11-14 23:25 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2013-11-14 23:24 - 2013-11-14 23:25 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2013-11-14 23:23 - 2013-11-14 23:24 - 01030144 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2013-11-14 23:23 - 2013-11-14 23:24 - 00792576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2013-11-14 14:34 - 2013-11-14 14:34 - 00004143 ____C C:\Users\Daniel\Downloads\scheide.htm
2013-11-13 23:54 - 2013-11-14 03:06 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2013-11-13 23:54 - 2013-11-14 03:06 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2013-11-13 23:53 - 2013-11-14 03:06 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2013-11-13 23:53 - 2013-11-14 03:06 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2013-11-13 23:53 - 2013-11-14 03:06 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2013-11-13 23:53 - 2013-11-14 03:06 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2013-11-13 23:53 - 2013-11-14 03:06 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2013-11-13 23:53 - 2013-11-14 03:06 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2013-11-13 23:53 - 2013-11-14 03:06 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2013-11-13 23:53 - 2013-11-14 03:06 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2013-11-13 23:53 - 2013-11-14 03:06 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2013-11-13 23:53 - 2013-11-14 03:06 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll
2013-11-13 23:53 - 2013-11-14 03:06 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
2013-11-13 23:53 - 2013-11-14 03:06 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll
2013-11-13 23:53 - 2013-11-14 03:06 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2013-11-13 23:53 - 2013-11-14 03:06 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll
2013-11-13 23:53 - 2013-11-14 03:06 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2013-11-13 23:53 - 2013-11-14 03:06 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2013-11-13 23:53 - 2013-11-14 03:06 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2013-11-13 23:53 - 2013-11-14 03:06 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2013-11-13 23:53 - 2013-11-14 03:06 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2013-11-13 23:53 - 2013-11-14 03:06 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2013-11-13 23:53 - 2013-11-14 03:06 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2013-11-13 23:53 - 2013-11-14 03:01 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2013-11-13 23:53 - 2013-11-14 03:01 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2013-11-13 23:53 - 2013-11-14 03:00 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2013-11-13 23:53 - 2013-11-14 03:00 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2013-11-13 23:53 - 2013-11-14 03:00 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2013-11-13 23:53 - 2013-11-14 03:00 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2013-11-13 23:53 - 2013-11-14 03:00 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2013-11-13 17:46 - 2013-11-13 18:36 - 00000000 ___DC C:\Users\Daniel\AppData\Local\Samsung
2013-11-13 17:46 - 2013-11-13 17:46 - 00000000 ___DC C:\Users\Daniel\Documents\samsung
2013-11-13 17:35 - 2013-11-13 17:35 - 00000000 ___DC C:\Program Files (x86)\MarkAny
2013-11-13 17:35 - 2011-01-05 22:23 - 00025960 ____C (Teruten Inc) C:\Windows\system32\FsExService64.exe
2013-11-13 17:35 - 2011-01-04 16:11 - 04659712 ____C (Dmitry Streblechenko) C:\Windows\SysWOW64\Redemption.dll
2013-11-13 17:35 - 2011-01-04 16:11 - 00016392 ____C (Teruten Inc) C:\Windows\system32\Drivers\TFsExDisk.sys
2013-11-13 17:34 - 2013-11-13 18:38 - 00000000 ___DC C:\Program Files (x86)\Samsung
2013-11-13 17:34 - 2013-11-13 18:36 - 00000000 ___DC C:\Users\Daniel\AppData\Roaming\Samsung
2013-11-13 17:33 - 2013-11-13 17:33 - 00000000 ___DC C:\Users\Daniel\AppData\Local\Downloaded Installations
2013-11-13 17:02 - 2013-11-13 17:02 - 00000000 ___DC C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
2013-11-13 16:48 - 2013-11-13 16:48 - 00000000 ___DC C:\Users\Daniel\AppData\Roaming\RapidCRC
2013-11-13 16:37 - 2013-11-13 16:37 - 00000000 ___DC C:\Program Files (x86)\RapidCRC
2013-11-13 16:28 - 2010-12-19 14:52 - 00000000 ___DC C:\adb-tools
2013-11-13 16:13 - 2013-11-13 16:13 - 00000000 ___HC C:\Windows\system32\Drivers\Msft_Kernel_WinUsb_01007.Wdf
2013-11-13 16:10 - 2013-11-13 16:10 - 00000000 ___HC C:\Windows\system32\Drivers\Msft_Kernel_WinUsb_01009.Wdf
2013-11-13 15:40 - 2013-11-13 15:40 - 00000000 ___HC C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2013-11-11 16:48 - 2013-12-06 00:00 - 00002139 ____C C:\Users\Public\Desktop\Google Chrome.lnk
2013-11-11 16:47 - 2013-12-11 17:26 - 00001106 ____C C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-11-11 16:47 - 2013-12-11 16:57 - 00001110 ____C C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-11-11 16:47 - 2013-12-03 09:52 - 00004106 ____C C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-11-11 16:47 - 2013-12-03 09:52 - 00003854 ____C C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-11-11 16:26 - 2013-11-11 16:26 - 00001228 ____C C:\Users\Daniel\Desktop\Revo Uninstaller.lnk
2013-11-11 16:26 - 2013-11-11 16:26 - 00000000 ___DC C:\Program Files (x86)\VS Revo Group
2013-11-11 16:25 - 2013-11-11 16:25 - 00367448 ____C C:\Users\Daniel\Documents\bookmarks_11.11.13.html

==================== One Month Modified Files and Folders =======

2013-12-11 17:33 - 2013-12-11 15:24 - 00016982 ____C C:\Users\Daniel\Desktop\FRST.txt
2013-12-11 17:28 - 2013-08-01 16:23 - 00000000 ___DC C:\Users\Daniel\AppData\Roaming\Skype
2013-12-11 17:26 - 2013-11-11 16:47 - 00001106 ____C C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-12-11 17:25 - 2009-07-14 06:08 - 00000006 ___HC C:\Windows\Tasks\SA.DAT
2013-12-11 17:24 - 2013-11-18 10:37 - 00001456 ____C C:\Windows\setupact.log
2013-12-11 17:23 - 2013-08-14 08:41 - 01739499 ____C C:\Windows\WindowsUpdate.log
2013-12-11 17:08 - 2013-07-31 21:11 - 00000884 ____C C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-12-11 17:01 - 2013-12-11 17:01 - 00000626 ____C C:\Users\Daniel\Desktop\JRT.txt
2013-12-11 16:57 - 2013-11-11 16:47 - 00001110 ____C C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-12-11 16:57 - 2009-07-14 05:45 - 00009888 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-12-11 16:57 - 2009-07-14 05:45 - 00009888 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-12-11 16:51 - 2013-12-11 16:51 - 01034531 ____C (Thisisu) C:\Users\Daniel\Desktop\JRT.exe
2013-12-11 16:40 - 2013-12-11 16:39 - 00000000 ___DC C:\AdwCleaner
2013-12-11 16:30 - 2013-12-11 16:30 - 01226802 ____C C:\Users\Daniel\Desktop\adwcleaner.exe
2013-12-11 16:09 - 2013-07-31 21:11 - 00003822 ____C C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-12-11 16:08 - 2013-07-31 21:11 - 00692616 ____C (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-12-11 16:08 - 2013-07-31 21:11 - 00071048 ____C (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-12-11 16:05 - 2013-11-28 18:43 - 00000000 ___DC C:\Users\Daniel\Downloads\All 51 PopCap Games as of 2011-02-24
2013-12-11 15:36 - 2013-12-11 15:36 - 00049250 ____C C:\Users\Daniel\Desktop\Addition.txt
2013-12-11 15:23 - 2013-12-11 15:23 - 00000000 ___DC C:\FRST
2013-12-11 14:17 - 2013-12-11 14:17 - 01928212 ____C (Farbar) C:\Users\Daniel\Desktop\FRST64.exe
2013-12-11 12:34 - 2013-08-06 00:06 - 00000000 ___DC C:\ProgramData\firebird
2013-12-11 08:57 - 2013-08-13 17:16 - 00000000 ___DC C:\Users\Daniel\AppData\Local\SecondLife
2013-12-11 04:33 - 2013-07-31 20:43 - 00000000 __RDC C:\Users\Daniel\Desktop\Dj Musik
2013-12-10 20:34 - 2013-12-10 20:34 - 00000154 ____C C:\Users\Daniel\Desktop\Netzvideoschau- Der Erotik-Streich der fast nackten Freundinnen - Video - Netzvideoschau - FOCUS Online.url
2013-12-10 14:14 - 2013-12-10 14:14 - 00072035 ____C C:\Users\Daniel\Desktop\VID-20131102-WA0000.mp4
2013-12-10 13:58 - 2013-08-14 16:22 - 00000952 __SHC C:\ProgramData\KGyGaAvL.sys
2013-12-10 07:43 - 2013-08-19 06:16 - 00000000 ___DC C:\Users\Daniel\AppData\Roaming\vlc
2013-12-10 04:01 - 2013-12-10 04:00 - 09897448 ____C C:\Users\Daniel\Desktop\CHIPLockOutlookPro4.exe
2013-12-09 19:35 - 2013-08-01 16:01 - 00000826 ____C C:\Users\Public\Desktop\CCleaner.lnk
2013-12-09 19:35 - 2013-08-01 16:01 - 00000000 ___DC C:\Program Files\CCleaner
2013-12-09 18:41 - 2013-12-08 20:28 - 00000000 ___DC C:\Users\Daniel\Desktop\programme
2013-12-09 18:34 - 2013-08-07 16:05 - 00000000 ___DC C:\Users\Daniel\AppData\Roaming\Ashampoo
2013-12-09 18:34 - 2013-08-07 16:05 - 00000000 ___DC C:\Users\Daniel\AppData\Local\ashampoo
2013-12-09 18:32 - 2013-08-07 16:44 - 00000000 ___DC C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ashampoo
2013-12-09 18:31 - 2013-08-07 16:05 - 00000000 ___DC C:\ProgramData\ashampoo
2013-12-09 18:31 - 2013-08-07 16:04 - 00000000 ___DC C:\Program Files (x86)\Ashampoo
2013-12-09 17:11 - 2013-08-03 19:09 - 00000000 ___DC C:\Users\Daniel\AppData\Local\CrashDumps
2013-12-09 17:05 - 2013-07-31 20:39 - 00001120 ____C C:\Users\Public\Desktop\WinRAR.lnk
2013-12-09 17:05 - 2013-07-31 20:39 - 00000000 ___DC C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2013-12-09 17:05 - 2013-07-31 20:38 - 00000000 ___DC C:\Program Files\WinRAR
2013-12-09 06:33 - 2013-11-20 00:00 - 00115058 ____C C:\Windows\PFRO.log
2013-12-09 01:55 - 2013-12-09 01:55 - 00000000 ___DC C:\Users\Daniel\AppData\Roaming\AVAST Software
2013-12-09 01:50 - 2013-12-09 01:50 - 00002036 ____C C:\Users\Public\Desktop\avast! SafeZone.lnk
2013-12-09 01:50 - 2013-12-09 01:50 - 00001976 ____C C:\Users\Public\Desktop\avast! Internet Security.lnk
2013-12-09 01:49 - 2013-12-09 01:49 - 01032416 ____C (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2013-12-09 01:49 - 2013-12-09 01:49 - 00409832 ____C (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2013-12-09 01:49 - 2013-12-09 01:49 - 00334648 ____C (AVAST Software) C:\Windows\system32\aswBoot.exe
2013-12-09 01:49 - 2013-12-09 01:49 - 00205320 ____C C:\Windows\system32\Drivers\aswVmm.sys
2013-12-09 01:49 - 2013-12-09 01:49 - 00092544 ____C (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2013-12-09 01:49 - 2013-12-09 01:49 - 00084328 ____C (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2013-12-09 01:49 - 2013-12-09 01:49 - 00065776 ____C C:\Windows\system32\Drivers\aswRvrt.sys
2013-12-09 01:49 - 2013-12-09 01:49 - 00065264 ____C (AVAST Software) C:\Windows\system32\Drivers\aswTdi.sys
2013-12-09 01:49 - 2013-12-09 01:49 - 00043152 ____C (AVAST Software) C:\Windows\avastSS.scr
2013-12-09 01:49 - 2013-12-09 01:49 - 00038984 ____C (AVAST Software) C:\Windows\system32\Drivers\aswFsBlk.sys
2013-12-09 01:49 - 2013-12-09 01:49 - 00028184 ____C (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2013-12-09 01:49 - 2013-12-09 01:49 - 00003924 ____C C:\Windows\System32\Tasks\avast! Emergency Update
2013-12-09 01:48 - 2013-12-09 01:48 - 00447888 ____C (AVAST Software) C:\Windows\system32\Drivers\aswNdisFlt.sys
2013-12-09 01:48 - 2013-12-09 01:48 - 00000000 ___DC C:\Program Files\AVAST Software
2013-12-09 01:47 - 2013-12-09 01:47 - 00000000 ___DC C:\ProgramData\AVAST Software
2013-12-09 01:46 - 2013-11-01 16:13 - 00000000 ___DC C:\Users\Daniel\Downloads\programe
2013-12-09 00:17 - 2013-08-01 22:45 - 00000000 ___DC C:\Users\Daniel\AppData\Roaming\Utherverse
2013-12-08 20:27 - 2013-11-19 18:45 - 00000000 ___DC C:\Users\Daniel\Desktop\sims
2013-12-08 20:27 - 2013-08-21 22:22 - 00000000 ___DC C:\Users\Daniel\Desktop\spiele
2013-12-08 03:24 - 2013-11-18 10:37 - 03215552 ____C C:\Windows\system32\FNTCACHE.DAT
2013-12-08 02:52 - 2013-11-19 16:01 - 00195160 ____C C:\Users\Daniel\AppData\Local\GDIPFONTCACHEV1.DAT
2013-12-08 02:47 - 2013-07-31 18:47 - 00000000 ___DC C:\Users\Daniel
2013-12-07 21:43 - 2013-12-07 21:43 - 00000000 ___DC C:\Users\Daniel\AppData\Local\Aurora Software
2013-12-07 21:41 - 2013-12-07 21:41 - 00000000 ___DC C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aurora Blu-ray Media Player
2013-12-07 21:41 - 2013-12-07 21:41 - 00000000 ___DC C:\Program Files (x86)\Aurora Software
2013-12-07 18:06 - 2013-12-07 18:04 - 95963136 ____C C:\Users\Daniel\Cake mania.iso
2013-12-07 18:02 - 2013-12-07 18:02 - 00000101 ____C C:\Windows\msxmlcab.log
2013-12-07 18:02 - 2013-12-07 18:02 - 00000000 ___DC C:\ProgramData\Sandlot Games
2013-12-07 17:17 - 2013-12-07 17:17 - 00000000 ___DC C:\Program Files (x86)\eGames
2013-12-07 17:16 - 2013-12-07 17:16 - 00000000 ___DC C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\rondomedia
2013-12-07 17:16 - 2013-12-07 17:16 - 00000000 ___DC C:\Program Files (x86)\rondomedia
2013-12-07 17:15 - 2013-12-07 17:14 - 00000801 ____C C:\Windows\DirectX.log
2013-12-07 04:16 - 2013-12-05 21:04 - 00000000 ___DC C:\Program Files\FileViewPro
2013-12-07 02:13 - 2013-12-02 00:59 - 01592824 ____C C:\Windows\SysWOW64\PerfStringBackup.INI
2013-12-07 02:13 - 2010-05-12 09:18 - 00699160 ____C C:\Windows\system32\perfh007.dat
2013-12-07 02:13 - 2010-05-12 09:18 - 00149268 ____C C:\Windows\system32\perfc007.dat
2013-12-07 02:13 - 2009-07-14 06:13 - 01592824 ____C C:\Windows\system32\PerfStringBackup.INI
2013-12-06 00:00 - 2013-11-11 16:48 - 00002139 ____C C:\Users\Public\Desktop\Google Chrome.lnk
2013-12-05 21:24 - 2013-12-05 21:24 - 00002952 ____C C:\Windows\System32\Tasks\{E8DB0424-DD34-4B5E-ABA1-8F87BA189D0B}
2013-12-05 21:04 - 2013-12-05 21:04 - 00000000 ___DC C:\Users\Daniel\AppData\Roaming\IsolatedStorage
2013-12-05 21:04 - 2013-12-05 21:04 - 00000000 ___DC C:\Users\Daniel\AppData\Local\FileViewPro
2013-12-05 21:04 - 2013-12-05 21:04 - 00000000 ___DC C:\ProgramData\IsolatedStorage
2013-12-04 21:03 - 2013-11-21 00:43 - 00000000 ___DC C:\Users\Daniel\Desktop\bilder
2013-12-03 12:47 - 2013-12-03 12:47 - 00015360 ____C C:\Users\Daniel\Downloads\inspektionskosten0308ams.xls
2013-12-03 09:52 - 2013-11-11 16:47 - 00004106 ____C C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-12-03 09:52 - 2013-11-11 16:47 - 00003854 ____C C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-12-02 16:51 - 2013-08-03 15:10 - 00000000 __RDC C:\Users\Daniel\Dropbox
2013-12-02 16:51 - 2013-08-03 15:06 - 00000000 ___DC C:\Users\Daniel\AppData\Roaming\Dropbox
2013-12-01 23:40 - 2013-11-01 16:12 - 00000000 ___DC C:\Users\Daniel\Downloads\rar verzeichnisse
2013-11-30 14:03 - 2013-11-30 14:03 - 00000000 ___DC C:\Program Files (x86)\Franzis
2013-11-29 17:49 - 2013-11-29 17:49 - 00000000 ___DC C:\ProgramData\PopCap Games
2013-11-29 17:49 - 2013-11-29 17:49 - 00000000 ___DC C:\Program Files (x86)\PopCap Games
2013-11-28 22:15 - 2013-09-20 20:07 - 00000000 ___DC C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2013-11-28 22:07 - 2013-07-31 18:53 - 00000000 __HDC C:\Program Files (x86)\InstallShield Installation Information
2013-11-28 22:06 - 2013-11-28 22:06 - 00000000 ___DC C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Firaxis Games
2013-11-28 22:06 - 2013-08-01 16:05 - 00000000 ___DC C:\Users\Daniel\Documents\My Games
2013-11-28 22:02 - 2013-11-28 22:02 - 00000000 ___DC C:\Program Files (x86)\Firaxis Games
2013-11-27 16:32 - 2013-11-27 16:31 - 00000000 ___DC C:\Program Files (x86)\Nutella EstaThe Snack and Drink
2013-11-25 19:29 - 2013-08-13 09:16 - 00000000 ___DC C:\Users\Daniel\AppData\Local\PhoenixViewer
2013-11-24 18:09 - 2013-09-20 13:36 - 00000000 ___DC C:\Program Files (x86)\Opera
2013-11-21 01:34 - 2013-11-21 01:34 - 00000000 ___DC C:\Users\Daniel\AppData\Roaming\Hive Cluster
2013-11-21 00:43 - 2013-11-21 00:43 - 00000000 ___DC C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Antichamber
2013-11-21 00:41 - 2013-11-21 00:40 - 00000000 ___DC C:\Program Files (x86)\Antichamber
2013-11-20 07:22 - 2013-08-19 06:16 - 00001028 ____C C:\Users\Public\Desktop\VLC media player.lnk
2013-11-19 00:18 - 2013-11-19 00:16 - 00000000 ___DC C:\Users\Daniel\Downloads\The Watchmen (OST) - 2009
2013-11-18 16:51 - 2009-07-14 04:20 - 00000000 ___DC C:\Windows\system32\NDF
2013-11-18 11:56 - 2013-07-31 21:10 - 00000000 ___DC C:\Users\Daniel\AppData\Local\Adobe
2013-11-18 10:37 - 2013-11-18 10:37 - 00000000 ____C C:\Windows\setuperr.log
2013-11-17 20:17 - 2013-08-03 15:32 - 00000000 ___DC C:\Users\Daniel\AppData\Roaming\Winamp
2013-11-17 20:16 - 2013-08-07 14:08 - 00000000 ___DC C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FreeRIP MP3 Converter
2013-11-17 20:16 - 2013-08-01 04:15 - 00000000 ___DC C:\Windows\Panther
2013-11-17 19:35 - 2013-11-17 19:33 - 00113646 ____C C:\Users\Daniel\Documents\cc_20131117_193346.reg
2013-11-17 19:28 - 2013-11-04 13:31 - 00000000 ___DC C:\Users\Daniel\Downloads\Windows 7 x86-x64
2013-11-16 18:13 - 2013-11-16 18:13 - 00002566 ____C C:\Windows\diagwrn.xml
2013-11-16 18:13 - 2013-11-16 18:13 - 00001908 ____C C:\Windows\diagerr.xml
2013-11-15 13:30 - 2013-08-03 15:52 - 00000000 ___DC C:\Users\Daniel\Desktop\tevion usb stick daten
2013-11-15 13:10 - 2013-08-01 16:23 - 00000000 __RDC C:\Program Files (x86)\Skype
2013-11-15 13:10 - 2013-08-01 16:23 - 00000000 ___DC C:\ProgramData\Skype
2013-11-15 13:03 - 2013-11-15 13:02 - 00001755 ____C C:\DelFix.txt
2013-11-15 13:02 - 2013-11-08 11:32 - 00000000 ___DC C:\Windows\ERUNT
2013-11-15 02:36 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache
2013-11-15 01:49 - 2013-07-31 18:47 - 00001425 ____C C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-11-15 01:45 - 2009-07-14 04:20 - 00000000 ___DC C:\Windows\SysWOW64\tr-TR
2013-11-15 01:45 - 2009-07-14 04:20 - 00000000 ___DC C:\Windows\SysWOW64\sl-SI
2013-11-15 01:45 - 2009-07-14 04:20 - 00000000 ___DC C:\Windows\system32\tr-TR
2013-11-15 01:45 - 2009-07-14 04:20 - 00000000 ___DC C:\Windows\system32\sl-SI
2013-11-15 01:45 - 2009-07-14 04:20 - 00000000 ___DC C:\Windows\PolicyDefinitions
2013-11-15 01:38 - 2013-11-15 01:38 - 23212032 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 17142784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 12995584 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 11220992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 05765120 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 04240384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-11-15 01:38 - 2013-11-15 01:38 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-11-15 01:38 - 2013-11-15 01:38 - 02332160 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 02166272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 01993728 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-11-15 01:38 - 2013-11-15 01:38 - 01926656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2013-11-15 01:38 - 2013-11-15 01:38 - 01818112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 01394176 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 01156608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2013-11-15 01:38 - 2013-11-15 01:38 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2013-11-15 01:38 - 2013-11-15 01:38 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2013-11-15 01:38 - 2013-11-15 01:38 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2013-11-15 01:38 - 2013-11-15 01:38 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2013-11-15 01:38 - 2013-11-15 01:38 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-11-15 01:38 - 2013-11-15 01:38 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2013-11-15 01:38 - 2013-11-15 01:38 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2013-11-15 01:38 - 2013-11-15 01:38 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2013-11-15 01:38 - 2013-11-15 01:38 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2013-11-15 01:38 - 2013-11-15 01:38 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-11-15 01:38 - 2013-11-15 01:38 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2013-11-15 01:38 - 2013-11-15 01:38 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2013-11-15 01:38 - 2013-11-15 01:38 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2013-11-15 01:38 - 2013-11-15 01:38 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-11-15 01:38 - 2013-11-15 01:38 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2013-11-15 01:38 - 2013-11-15 01:38 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2013-11-15 01:38 - 2013-11-15 01:38 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-11-15 01:38 - 2013-11-15 01:38 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2013-11-15 01:38 - 2013-11-15 01:38 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2013-11-15 01:38 - 2013-11-15 01:38 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2013-11-15 01:38 - 2013-11-15 01:38 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2013-11-15 01:38 - 2013-11-15 01:38 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2013-11-15 01:38 - 2013-11-15 01:38 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2013-11-15 01:38 - 2013-11-15 01:38 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2013-11-14 23:25 - 2013-11-14 23:24 - 06578176 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2013-11-14 23:25 - 2013-11-14 23:24 - 05698048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2013-11-14 23:25 - 2013-11-14 23:24 - 01147392 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2013-11-14 23:25 - 2013-11-14 23:24 - 01068544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2013-11-14 23:25 - 2013-11-14 23:24 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2013-11-14 23:25 - 2013-11-14 23:24 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
2013-11-14 23:25 - 2013-11-14 23:24 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2013-11-14 23:25 - 2013-11-14 23:24 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2013-11-14 23:25 - 2013-11-14 23:24 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2013-11-14 23:25 - 2013-11-14 23:24 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll
2013-11-14 23:25 - 2013-11-14 23:24 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2013-11-14 23:25 - 2013-11-14 23:24 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2013-11-14 23:25 - 2013-11-14 23:24 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll
2013-11-14 23:25 - 2013-11-14 23:24 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2013-11-14 23:25 - 2013-11-14 23:24 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2013-11-14 23:25 - 2013-11-14 23:24 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll
2013-11-14 23:25 - 2013-11-14 23:24 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2013-11-14 23:25 - 2013-11-14 23:24 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2013-11-14 23:24 - 2013-11-14 23:23 - 01030144 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2013-11-14 23:24 - 2013-11-14 23:23 - 00792576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2013-11-14 17:37 - 2013-08-01 16:06 - 00000000 ___DC C:\Users\Daniel\Documents\Youcam
2013-11-14 14:34 - 2013-11-14 14:34 - 00004143 ____C C:\Users\Daniel\Downloads\scheide.htm
2013-11-14 03:07 - 2009-07-14 03:34 - 00000634 ____C C:\Windows\win.ini
2013-11-14 03:06 - 2013-11-13 23:54 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2013-11-14 03:06 - 2013-11-13 23:54 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2013-11-14 03:06 - 2013-11-13 23:53 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2013-11-14 03:06 - 2013-11-13 23:53 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2013-11-14 03:06 - 2013-11-13 23:53 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2013-11-14 03:06 - 2013-11-13 23:53 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2013-11-14 03:06 - 2013-11-13 23:53 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2013-11-14 03:06 - 2013-11-13 23:53 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2013-11-14 03:06 - 2013-11-13 23:53 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2013-11-14 03:06 - 2013-11-13 23:53 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2013-11-14 03:06 - 2013-11-13 23:53 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2013-11-14 03:06 - 2013-11-13 23:53 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll
2013-11-14 03:06 - 2013-11-13 23:53 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
2013-11-14 03:06 - 2013-11-13 23:53 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll
2013-11-14 03:06 - 2013-11-13 23:53 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2013-11-14 03:06 - 2013-11-13 23:53 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll
2013-11-14 03:06 - 2013-11-13 23:53 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2013-11-14 03:06 - 2013-11-13 23:53 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2013-11-14 03:06 - 2013-11-13 23:53 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2013-11-14 03:06 - 2013-11-13 23:53 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2013-11-14 03:06 - 2013-11-13 23:53 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2013-11-14 03:06 - 2013-11-13 23:53 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2013-11-14 03:06 - 2013-11-13 23:53 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2013-11-14 03:05 - 2013-08-01 10:11 - 00000000 ___DC C:\Windows\system32\MRT
2013-11-14 03:01 - 2013-11-13 23:53 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2013-11-14 03:01 - 2013-11-13 23:53 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2013-11-14 03:01 - 2013-07-31 22:46 - 82896128 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-11-14 03:00 - 2013-11-13 23:53 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2013-11-14 03:00 - 2013-11-13 23:53 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2013-11-14 03:00 - 2013-11-13 23:53 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2013-11-14 03:00 - 2013-11-13 23:53 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2013-11-14 03:00 - 2013-11-13 23:53 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2013-11-13 18:38 - 2013-11-13 17:34 - 00000000 ___DC C:\Program Files (x86)\Samsung
2013-11-13 18:36 - 2013-11-13 17:46 - 00000000 ___DC C:\Users\Daniel\AppData\Local\Samsung
2013-11-13 18:36 - 2013-11-13 17:34 - 00000000 ___DC C:\Users\Daniel\AppData\Roaming\Samsung
2013-11-13 17:46 - 2013-11-13 17:46 - 00000000 ___DC C:\Users\Daniel\Documents\samsung
2013-11-13 17:35 - 2013-11-13 17:35 - 00000000 ___DC C:\Program Files (x86)\MarkAny
2013-11-13 17:33 - 2013-11-13 17:33 - 00000000 ___DC C:\Users\Daniel\AppData\Local\Downloaded Installations
2013-11-13 17:07 - 2013-10-26 17:48 - 00000000 ___DC C:\Users\Daniel\AppData\Roaming\Notepad++
2013-11-13 17:02 - 2013-11-13 17:02 - 00000000 ___DC C:\Users\Daniel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++
2013-11-13 17:02 - 2013-10-26 17:48 - 00000000 ___DC C:\Program Files (x86)\Notepad++
2013-11-13 16:48 - 2013-11-13 16:48 - 00000000 ___DC C:\Users\Daniel\AppData\Roaming\RapidCRC
2013-11-13 16:37 - 2013-11-13 16:37 - 00000000 ___DC C:\Program Files (x86)\RapidCRC
2013-11-13 16:13 - 2013-11-13 16:13 - 00000000 ___HC C:\Windows\system32\Drivers\Msft_Kernel_WinUsb_01007.Wdf
2013-11-13 16:10 - 2013-11-13 16:10 - 00000000 ___HC C:\Windows\system32\Drivers\Msft_Kernel_WinUsb_01009.Wdf
2013-11-13 15:40 - 2013-11-13 15:40 - 00000000 ___HC C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2013-11-11 16:47 - 2013-07-31 19:50 - 00000000 ___DC C:\Program Files (x86)\Google
2013-11-11 16:26 - 2013-11-11 16:26 - 00001228 ____C C:\Users\Daniel\Desktop\Revo Uninstaller.lnk
2013-11-11 16:26 - 2013-11-11 16:26 - 00000000 ___DC C:\Program Files (x86)\VS Revo Group
2013-11-11 16:25 - 2013-11-11 16:25 - 00367448 ____C C:\Users\Daniel\Documents\bookmarks_11.11.13.html
2013-11-11 05:50 - 2013-07-31 19:02 - 00267936 ____C (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe

Some content of TEMP:
====================
C:\Users\Daniel\AppData\Local\Temp\AntiToolbarPackage.exe
C:\Users\Daniel\AppData\Local\Temp\CmdLineExt02.dll
C:\Users\Daniel\AppData\Local\Temp\comver.dll
C:\Users\Daniel\AppData\Local\Temp\DataCard_Setup64.exe
C:\Users\Daniel\AppData\Local\Temp\DivXSetup.exe
C:\Users\Daniel\AppData\Local\Temp\drm_dialogs.dll
C:\Users\Daniel\AppData\Local\Temp\drm_dyndata_7270007.dll
C:\Users\Daniel\AppData\Local\Temp\drm_dyndata_7370012.dll
C:\Users\Daniel\AppData\Local\Temp\drm_dyndata_7400006.dll
C:\Users\Daniel\AppData\Local\Temp\i4jdel0.exe
C:\Users\Daniel\AppData\Local\Temp\i4jdel1.exe
C:\Users\Daniel\AppData\Local\Temp\installerdll26202707.dll
C:\Users\Daniel\AppData\Local\Temp\jansi-64-git-Bukkit-1.5.2-R1.0-b2788jnks.dll
C:\Users\Daniel\AppData\Local\Temp\jre-7u45-windows-i586-iftw.exe
C:\Users\Daniel\AppData\Local\Temp\Mobogenie_Setup_2.1.23_515.exe
C:\Users\Daniel\AppData\Local\Temp\MP3_Launcher_1_27_0_0.exe
C:\Users\Daniel\AppData\Local\Temp\Quarantine.exe
C:\Users\Daniel\AppData\Local\Temp\reieyn3k.dll
C:\Users\Daniel\AppData\Local\Temp\ResetDevice.exe
C:\Users\Daniel\AppData\Local\Temp\Second_Life_3_6_12_284506_i686_Setup.exe
C:\Users\Daniel\AppData\Local\Temp\Show-Password_1030-8101.exe
C:\Users\Daniel\AppData\Local\Temp\SIntf16.dll
C:\Users\Daniel\AppData\Local\Temp\SIntf32.dll
C:\Users\Daniel\AppData\Local\Temp\SIntfNT.dll
C:\Users\Daniel\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Daniel\AppData\Local\Temp\SpeedUpMyComputer.exe
C:\Users\Daniel\AppData\Local\Temp\UninstallEADM.dll
C:\Users\Daniel\AppData\Local\Temp\xmlUpdater.exe
C:\Users\Daniel\AppData\Local\Temp\_is22F5.exe
C:\Users\Daniel\AppData\Local\Temp\_is3432.exe
C:\Users\Daniel\AppData\Local\Temp\_is9C38.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2013-12-10 03:44

==================== End Of Log ============================
         
--- --- ---

--- --- ---

--- --- ---
__________________

Geändert von saufbiene (11.12.2013 um 18:44 Uhr)

Alt 11.12.2013, 21:39   #19
Darklord666
 
Malware.Packer.Krunchy was ist das? - Standard

Malware.Packer.Krunchy was ist das?



OT = Off topic

Alt 11.12.2013, 22:07   #20
saufbiene
 
Malware.Packer.Krunchy was ist das? - Standard

Malware.Packer.Krunchy was ist das?



achsooo danköö


Alt 11.12.2013, 23:14   #21
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Malware.Packer.Krunchy was ist das? - Standard

Malware.Packer.Krunchy was ist das?



Sieht ok aus. Wir sollten fast durch sein. Mach bitte zur Kontrolle einen Quickscan mit Malwarebytes Anti-Malware (MBAM)

Hinweis: Denk bitte vorher daran, Malwarebytes Anti-Malware über den Updatebutton zu aktualisieren!

Anschließend über den OnlineScanner von ESET eine zusätzliche Meinung zu holen ist auch nicht verkehrt:


ESET Online Scanner

  • Hier findest du eine bebilderte Anleitung zu ESET Online Scanner
  • Lade und starte Eset Online Scanner
  • Setze einen Haken bei Ja, ich bin mit den Nutzungsbedingungen einverstanden und klicke auf Starten.
  • Aktiviere die "Erkennung von eventuell unerwünschten Anwendungen" und wähle folgende Einstellungen.
  • Klicke auf Starten.
  • Die Signaturen werden heruntergeladen, der Scan beginnt automatisch.
  • Klicke am Ende des Suchlaufs auf Fertig stellen.
  • Schließe das Fenster von ESET.
  • Explorer öffnen.
  • C:\Programme\Eset\EsetOnlineScanner\log.txt (bei 64 Bit auch C:\Programme (x86)\Eset\EsetOnlineScanner\log.txt) suchen und mit Deinem Editor öffnen (bebildert).
  • Logfile hier posten.
  • Deinstallation: Systemsteuerung => Software / Programme deinstallieren => Eset Online Scanner V3 entfernen.
  • Manuell folgenden Ordner löschen und Papierkorb leeren => C:\Programme\Eset

__________________
--> Malware.Packer.Krunchy was ist das?

Alt 12.12.2013, 13:57   #22
saufbiene
 
Malware.Packer.Krunchy was ist das? - Standard

Malware.Packer.Krunchy was ist das?



Code:
ATTFilter
 Malwarebytes Anti-Malware  (PRO) 1.75.0.1300
www.malwarebytes.org

Datenbank Version: v2013.12.12.04

Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 11.0.9600.16476
Daniel :: MEDION [Administrator]

Schutz: Aktiviert

12.12.2013 13:33:27
mbam-log-2013-12-12 (13-33-27).txt

Art des Suchlaufs: Quick-Scan
Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM
Deaktivierte Suchlaufeinstellungen: P2P
Durchsuchte Objekte: 259854
Laufzeit: 23 Minute(n), 26 Sekunde(n)

Infizierte Speicherprozesse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Speichermodule: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungsschlüssel: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungswerte: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateiobjekte der Registrierung: 0
(Keine bösartigen Objekte gefunden)

Infizierte Verzeichnisse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateien: 0
(Keine bösartigen Objekte gefunden)

(Ende)
         
Code:
ATTFilter
ESETSmartInstaller@High as downloader log:
all ok
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6920
# api_version=3.0.2
# EOSSerial=a37a664c38115042b1a74b6c25e14e5a
# engine=16238
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=false
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2013-12-12 10:18:59
# local_time=2013-12-12 11:18:59 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# lang=1031
# osver=6.1.7601 NT Service Pack 1
# compatibility_mode=772 16777213 66 82 296952 297015 0 0
# compatibility_mode=5893 16776573 100 94 16744 138473389 0 0
# scanned=647258
# found=2
# cleaned=0
# scan_time=12806
sh=B8DC58B31872FE93FB1821512FA184EF31AA62EB ft=1 fh=d273424dbb2e1449 vn="Mehrere Bedrohungen" ac=I fn="C:\Users\Daniel\AppData\Local\Temp\Show-Password_1030-8101.exe"
sh=C513DDE65EE06D8741EE7093623DD1264810A39F ft=0 fh=0000000000000000 vn="JS/Exploit.Pdfka.PNY Trojaner" ac=I fn="C:\Users\Daniel\Documents\My 3D Models\Deep Exploration 5 Example Files\Feature Examples\Example PDF Output\Transmission with Steps, Realited and Compressed.pdf"
         

Alt 12.12.2013, 14:54   #23
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Malware.Packer.Krunchy was ist das? - Standard

Malware.Packer.Krunchy was ist das?



Sagen dir die Dateien was, die ESET gefunden hat?
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 12.12.2013, 15:00   #24
saufbiene
 
Malware.Packer.Krunchy was ist das? - Standard

Malware.Packer.Krunchy was ist das?



nein die sind nicht von mir runtergeladen worden
das 2 ist eine datei aus dem setup was übrig blieb das meldet eset immer aber mbam meinte es sei keine bedrohung

-.-*

Alt 12.12.2013, 15:05   #25
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Malware.Packer.Krunchy was ist das? - Standard

Malware.Packer.Krunchy was ist das?



TFC - Temp File Cleaner

Lade dir TFC (TempFileCleaner von Oldtimer) herunter und speichere es auf den Desktop.
  • Öffne die TFC.exe.
    Vista und Win 7 User mit Rechtsklick "als Administrator starten".
  • Schließe alle anderen Programme.
  • Drücke auf den Button Start.
  • Falls du zu einem Neustart aufgefordert wirst, bestätige diesen.




Sieht sonst soweit ok aus

Wegen Cookies und anderer Dinge im Web: Um die Pest von vornherein zu blocken (also TrackingCookies, Werbebanner etc.) müsstest du dir mal sowas wie MVPS Hosts File anschauen => Blocking Unwanted Parasites with a Hosts File - sinnvollerweise solltest du alle 4 Wochen mal bei MVPS nachsehen, ob er eine neue Hosts Datei herausgebracht hat.

Info: Cookies sind keine Schädlinge direkt, aber es besteht die Gefahr der missbräuchlichen Verwendung (eindeutige Wiedererkennung zB für gezielte Werbung o.ä. => HTTP-Cookie )

Ansonsten gibt es noch gute Cookiemanager, Erweiterungen für den Firefox zB wäre da CookieCuller
Wenn du aber damit leben kannst, dich bei jeder Browsersession überall neu einzuloggen (zB Facebook, Ebay, GMX, oder auch Trojaner-Board) dann stell den Browser einfach so ein, dass einfach alles beim Beenden des Browser inkl. Cookies gelöscht wird.

Ist dein System nun wieder in Ordnung oder gibt's noch andere Funde oder Probleme?
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 12.12.2013, 15:33   #26
saufbiene
 
Malware.Packer.Krunchy was ist das? - Standard

Malware.Packer.Krunchy was ist das?



Total Files Cleaned = 7.954,00 mb

so temp ordner gecleaned

da ist nix mehr

aber jetzt ne kleine frage am rande was ist ein malware.packer.krunchy?

aber ein problem habe ich jetzt bei anno2070 wird beim start angezeigt fehlercode 2000

es kann keine verbindung zum server von ubisoft hergestellt werden überprüfen sie ob sie mit dem internet verbunden sind und versuchen sie es erneut.

keine ahnung was das heißt

Alt 12.12.2013, 17:48   #27
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Malware.Packer.Krunchy was ist das? - Standard

Malware.Packer.Krunchy was ist das?



Was das ist? Müsstest du wissen

All 51 PopCap Games as of 2011-02-24\PopCap.zip (Malware.Packer.Krunchy)
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 12.12.2013, 17:52   #28
saufbiene
 
Malware.Packer.Krunchy was ist das? - Standard

Malware.Packer.Krunchy was ist das?



ich wolte wissen was das ist als definition ^^

im netz wird ja nicht angegeben was es ist also um was es sich handelt XD

achso herzlichen glückwunsch zum burzeltag ^^

Alt 12.12.2013, 18:05   #29
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Malware.Packer.Krunchy was ist das? - Standard

Malware.Packer.Krunchy was ist das?



Danke

Du weißt schon, dass verschiedene Virenscannerhersteller den selben Schädling unterschiedlich bezeichnen?
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 12.12.2013, 18:12   #30
saufbiene
 
Malware.Packer.Krunchy was ist das? - Standard

Malware.Packer.Krunchy was ist das?



ähm nöööö
wusste ich nicht ^^

gerne nicht dafür ^^
nur jetzt bleibt die frage wie ich die host dateien wieder fixe die sind wieder mal im eimer grml -.-*

Antwort

Themen zu Malware.Packer.Krunchy was ist das?
avast, frage, gelöscht, heute, kleine, laufe, laufen, malware.packer.krunchy, melde, mobogenie, mobogenie entfernen, namen, pup.hacktool.hotkeyshook, quara, quarantäne, verschoben



Ähnliche Themen: Malware.Packer.Krunchy was ist das?


  1. Malware.Packer.ORPC und search.ueep.com
    Plagegeister aller Art und deren Bekämpfung - 25.09.2013 (24)
  2. Viren mit Malwarebytes gefunden (Malware.Packer.Gen, PUP.InstallBrain)
    Log-Analyse und Auswertung - 18.05.2013 (20)
  3. Malware.Packer.SGX3 und andere gefunden
    Plagegeister aller Art und deren Bekämpfung - 13.03.2013 (9)
  4. Malware.packer
    Plagegeister aller Art und deren Bekämpfung - 16.10.2012 (7)
  5. Malware.Packer.GenX bei Alcohol 120% Testversion
    Log-Analyse und Auswertung - 01.10.2012 (23)
  6. Malware.Packer.Gen
    Plagegeister aller Art und deren Bekämpfung - 03.02.2012 (2)
  7. EXP/CVE-2010-4452.F, Trojan.Agent.CK und Malware.Packer.Gen vom Rechner entfernen
    Plagegeister aller Art und deren Bekämpfung - 22.01.2012 (1)
  8. Google-Link-Problem -- Acht Malware.Packer
    Log-Analyse und Auswertung - 14.11.2011 (4)
  9. Malware.Packer.Gen - Objekt: WinRAR\Zip.SFX
    Log-Analyse und Auswertung - 28.04.2011 (2)
  10. Rätselhafter Mailversand - Malware.Packer.Gen, Trojan.Patched und Malware.Trace
    Plagegeister aller Art und deren Bekämpfung - 03.11.2010 (25)
  11. Malware.Packer.Gen & Trojan.DNSChanger
    Plagegeister aller Art und deren Bekämpfung - 27.10.2010 (1)
  12. TR/Dropper.Gen + Malware.Packer.Gen auf meinem PC
    Plagegeister aller Art und deren Bekämpfung - 02.10.2010 (18)
  13. Malware.Packer.Gen nach Skype Installation
    Plagegeister aller Art und deren Bekämpfung - 30.09.2010 (1)
  14. Antimalware Doctor, Adware.BHO, Malware.Packer.Gen entfernen
    Plagegeister aller Art und deren Bekämpfung - 06.09.2010 (32)
  15. FraudTool, Malware.Packer.Gen, Rogue.ARManager...logfiles inside
    Plagegeister aller Art und deren Bekämpfung - 08.05.2010 (7)
  16. Trojan.StartPage, Malware.Packer.Gen und Hijack.DisplayProperties
    Plagegeister aller Art und deren Bekämpfung - 15.04.2010 (17)
  17. Scheinbar Malware Packer - PC langsam
    Log-Analyse und Auswertung - 14.08.2009 (3)

Zum Thema Malware.Packer.Krunchy was ist das? - Zitat: Zitat von cosinus Wie kommst du überhaupt darauf Marc? Log + Google Die Stadt habe ich schon mal richtig. Beim Vornamen habe ich mich verwirren lassen, beim Familiennamen habe - Malware.Packer.Krunchy was ist das?...
Archiv
Du betrachtest: Malware.Packer.Krunchy was ist das? auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.