Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: OTL.exe hängt sich bei scanning Firefox settings auf(habe schon 30 min gewartet)

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.

Antwort
Alt 15.01.2014, 14:12   #16
ghostertaker
 
OTL.exe hängt sich bei scanning Firefox settings auf(habe schon 30 min gewartet) - Standard

OTL.exe hängt sich bei scanning Firefox settings auf(habe schon 30 min gewartet)



FRST log Teil 3:
Code:
ATTFilter
2014-01-10 17:43 - 2014-01-10 17:43 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-01-10 17:43 - 2014-01-10 17:43 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00361984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-01-10 17:43 - 2014-01-10 17:43 - 00357888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00270848 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00247296 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00242200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00232960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00204800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00185344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00173568 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-01-10 17:43 - 2014-01-10 17:43 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-01-10 17:43 - 2014-01-10 17:43 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00150528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2014-01-10 17:43 - 2014-01-10 17:43 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-01-10 17:43 - 2014-01-10 17:43 - 00138752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2014-01-10 17:43 - 2014-01-10 17:43 - 00137216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-01-10 17:43 - 2014-01-10 17:43 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00125440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2014-01-10 17:43 - 2014-01-10 17:43 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2014-01-10 17:43 - 2014-01-10 17:43 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-01-10 17:43 - 2014-01-10 17:43 - 00073728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2014-01-10 17:43 - 2014-01-10 17:43 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2014-01-10 17:43 - 2014-01-10 17:43 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2014-01-10 17:43 - 2014-01-10 17:43 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-01-10 17:43 - 2014-01-10 17:43 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2014-01-10 17:43 - 2014-01-10 17:43 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-01-10 17:43 - 2014-01-10 17:43 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2014-01-10 17:43 - 2014-01-10 17:43 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-01-10 17:43 - 2014-01-10 17:43 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2014-01-10 17:29 - 2014-01-10 17:29 - 00016896 _____ (ASUS) C:\Windows\AsTaskSched.dll
2014-01-10 17:23 - 2014-01-10 17:23 - 00000000 ____H C:\ProgramData\DP45977C.lfl
2014-01-10 17:23 - 2014-01-10 17:23 - 00000000 ____D C:\Windows\SysWOW64\RTCOM
2014-01-10 17:23 - 2014-01-10 17:23 - 00000000 ____D C:\Program Files\Realtek
2014-01-10 17:22 - 2014-01-10 16:34 - 00000000 ____D C:\Program Files (x86)\Realtek
2014-01-10 17:11 - 2014-01-10 17:10 - 00000000 ____D C:\Windows\system32\MRT
2014-01-10 17:08 - 2014-01-10 17:08 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-01-10 17:08 - 2014-01-10 17:08 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-01-10 17:08 - 2014-01-10 17:08 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-01-10 17:08 - 2014-01-10 17:08 - 00000000 ____D C:\Windows\SysWOW64\Macromed
2014-01-10 17:08 - 2014-01-10 17:08 - 00000000 ____D C:\Windows\system32\Macromed
2014-01-10 17:07 - 2014-01-10 17:07 - 00066505 _____ C:\Windows\SysWOW64\CCCInstall_201401101707250607.log
2014-01-10 17:07 - 2014-01-10 17:07 - 00000000 ____D C:\ProgramData\AMD
2014-01-10 17:07 - 2014-01-10 17:07 - 00000000 ____D C:\Program Files (x86)\AMD AVT
2014-01-10 17:07 - 2014-01-10 17:07 - 00000000 ____D C:\Program Files (x86)\AMD
2014-01-10 17:07 - 2014-01-10 17:06 - 00000000 ____D C:\Program Files\AMD
2014-01-10 17:07 - 2014-01-10 17:02 - 00000000 ____D C:\Program Files\ATI Technologies
2014-01-10 17:06 - 2014-01-10 17:06 - 00000000 ____D C:\Program Files\Common Files\ATI Technologies
2014-01-10 17:06 - 2014-01-10 17:06 - 00000000 ____D C:\Program Files (x86)\ATI Technologies
2014-01-10 17:06 - 2014-01-10 17:03 - 00000000 ____D C:\ProgramData\Package Cache
2014-01-10 17:05 - 2014-01-10 17:05 - 00000000 ___SD C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.0.0
2014-01-10 17:05 - 2014-01-10 17:05 - 00000000 ___RD C:\Users\Tobias\SkyDrive
2014-01-10 17:05 - 2014-01-10 17:05 - 00000000 ___RD C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenOffice.org 3.1
2014-01-10 17:05 - 2014-01-10 17:05 - 00000000 ____D C:\Users\Tobias\Tracing
2014-01-10 17:05 - 2014-01-10 17:05 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ventrilo
2014-01-10 17:05 - 2014-01-10 17:05 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker
2014-01-10 17:05 - 2014-01-10 17:05 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
2014-01-10 17:05 - 2014-01-10 17:05 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
2014-01-10 17:05 - 2014-01-10 17:05 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SIM MAX
2014-01-10 17:05 - 2014-01-10 17:05 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner
2014-01-10 17:05 - 2014-01-10 17:05 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-01-10 17:05 - 2014-01-10 17:05 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2014-01-10 17:05 - 2014-01-10 17:05 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake
2014-01-10 17:05 - 2014-01-10 17:05 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EPSON
2014-01-10 17:05 - 2014-01-10 17:05 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-01-10 17:05 - 2014-01-10 17:05 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BF2SP64
2014-01-10 17:05 - 2014-01-10 17:05 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASUS
2014-01-10 17:05 - 2014-01-10 17:05 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AMD
2014-01-10 17:05 - 2014-01-10 16:01 - 00000000 ____D C:\Users\Tobias
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\World in Conflict
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\Witcher 2
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\Visual Studio 2010
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\Ubisoft
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\TV Jukebox
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\The War Z
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\Take On Helicopters Demo
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\Stronghold Legends
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\Stronghold Crusader
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\Stronghold 3
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\Stronghold 2
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\StreamTransport
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\Square Enix
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\Spiele
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\Sniper - Ghost Warrior
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\Shiner
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\Shadow Warrior
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\Rockstar Games
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\PrintScreen Files
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\Paradox Interactive
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\ORDER OF WAR
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\Orcs Must Die
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\NFS SHIFT
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\My Games
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\Mount&Blade With Fire and Sword
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\Mount&Blade Warband
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\MOHW
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\Messenger Plus
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\MeinSpore-Kreationen
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\Meine empfangenen Dateien
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\MAGIX
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\Madden NFL 08
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\LG PC Suite IV
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\LG OSP
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\Kalypso Media
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\id Software
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\ICQ
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\Hunting Unlimited 2010
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\Hitman Blood Money
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\HdR Die Rückkehr des Königs tm-Daten
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\GTA San Andreas User Files
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\gegl-0.0
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\FUSSBALL MANAGER 12
2014-01-10 17:04 - 2014-01-10 17:04 - 00000000 ____D C:\Users\Tobias\Documents\Freemake
2014-01-10 17:03 - 2014-01-10 17:03 - 00000000 ____D C:\Users\Tobias\Documents\Forgottenhp 2
2014-01-10 17:03 - 2014-01-10 17:03 - 00000000 ____D C:\Users\Tobias\Documents\FIFA 14 Demo
2014-01-10 17:03 - 2014-01-10 17:03 - 00000000 ____D C:\Users\Tobias\Documents\FIFA 13
2014-01-10 17:03 - 2014-01-10 17:03 - 00000000 ____D C:\Users\Tobias\Documents\FIFA 12
2014-01-10 17:03 - 2014-01-10 17:03 - 00000000 ____D C:\Users\Tobias\Documents\Fax
2014-01-10 17:03 - 2014-01-10 17:03 - 00000000 ____D C:\Users\Tobias\Documents\Electrontic Arts
2014-01-10 17:03 - 2014-01-10 17:03 - 00000000 ____D C:\Users\Tobias\Documents\Electronic Arts
2014-01-10 17:03 - 2014-01-10 17:03 - 00000000 ____D C:\Users\Tobias\Documents\EA Games
2014-01-10 17:03 - 2014-01-10 17:03 - 00000000 ____D C:\Users\Tobias\Documents\Duke Nukem Forever Demo
2014-01-10 17:02 - 2014-01-10 17:02 - 00000000 ____D C:\Users\Tobias\Documents\DonationCoder
2014-01-10 17:02 - 2014-01-10 17:02 - 00000000 ____D C:\Users\Tobias\Documents\DeadIsland
2014-01-10 17:02 - 2014-01-10 17:02 - 00000000 ____D C:\Users\Tobias\Documents\Cities In Motion
2014-01-10 17:02 - 2014-01-10 17:02 - 00000000 ____D C:\Users\Tobias\Documents\CASIO
2014-01-10 17:02 - 2014-01-10 17:02 - 00000000 ____D C:\Users\Tobias\Documents\BloodBowlLegendary
2014-01-10 17:02 - 2014-01-10 17:02 - 00000000 ____D C:\Users\Tobias\Documents\Bitmart
2014-01-10 17:02 - 2014-01-10 17:02 - 00000000 ____D C:\Users\Tobias\Documents\BioWare
2014-01-10 17:02 - 2014-01-10 17:02 - 00000000 ____D C:\Users\Tobias\Documents\BFBC2
2014-01-10 17:02 - 2014-01-10 17:02 - 00000000 ____D C:\Users\Tobias\Documents\Battlestations-Pacific
2014-01-10 17:02 - 2014-01-10 17:02 - 00000000 ____D C:\Users\Tobias\Documents\Battlefield 3
2014-01-10 17:02 - 2014-01-10 17:02 - 00000000 ____D C:\Users\Tobias\Documents\Battlefield 2142 Demo
2014-01-10 17:02 - 2014-01-10 17:02 - 00000000 ____D C:\Users\Tobias\Documents\Battlefield 2
2014-01-10 17:02 - 2014-01-10 17:02 - 00000000 ____D C:\Users\Tobias\Documents\Audible
2014-01-10 17:02 - 2014-01-10 17:02 - 00000000 ____D C:\Users\Tobias\Documents\ATI Stream
2014-01-10 17:02 - 2014-01-10 17:02 - 00000000 ____D C:\Users\Tobias\Documents\Atari
2014-01-10 17:02 - 2014-01-10 17:02 - 00000000 ____D C:\Users\Tobias\Documents\ASUS Remote GO!
2014-01-10 17:02 - 2014-01-10 17:02 - 00000000 ____D C:\Users\Tobias\Documents\Assassin's Creed Revelations
2014-01-10 17:02 - 2014-01-10 17:02 - 00000000 ____D C:\Users\Tobias\Documents\Assassin's Creed III
2014-01-10 17:02 - 2014-01-10 17:02 - 00000000 ____D C:\Users\Tobias\Documents\Arma 3
2014-01-10 17:02 - 2014-01-10 17:02 - 00000000 ____D C:\Users\Tobias\Documents\ArmA 2 OA Demo
2014-01-10 17:02 - 2014-01-10 17:02 - 00000000 ____D C:\Users\Tobias\Documents\Arktos
2014-01-10 17:02 - 2014-01-10 17:02 - 00000000 ____D C:\Users\Tobias\Documents\ArcaniA - Gothic 4 Demo
2014-01-10 17:02 - 2014-01-10 17:02 - 00000000 ____D C:\Users\Tobias\Documents\APOX
2014-01-10 17:02 - 2014-01-10 17:02 - 00000000 ____D C:\Users\Tobias\Documents\Alpha Protocol
2014-01-10 17:02 - 2014-01-10 17:02 - 00000000 ____D C:\Users\Tobias\Documents\Activision
2014-01-10 17:02 - 2014-01-10 17:02 - 00000000 ____D C:\Users\Tobias\Documents\4A Games
2014-01-10 17:02 - 2014-01-10 17:02 - 00000000 ____D C:\Users\Tobias\DoctorWeb
2014-01-10 17:02 - 2014-01-10 17:02 - 00000000 ____D C:\Users\Tobias\Doctor Web
2014-01-10 17:02 - 2014-01-10 17:02 - 00000000 ____D C:\Program Files\ATI
2014-01-10 17:02 - 2014-01-10 17:02 - 00000000 ____D C:\AMD
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 __RHD C:\Users\Tobias\AppData\Roaming\SecuROM
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\TeamSpeak 3 Client
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\WinRAR
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Winamp
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\wargaming.net
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Vidalia
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Ubisoft
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\TuneUp Software
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Tropico 3
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Tor
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\TL-Player
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\TeamViewer
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\SUPERAntiSpyware.com
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\SPORE
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\SolForge
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\SOCCC
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Skype
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\RealNetworks
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Real
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\PunkBuster
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Process Hacker 2
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\PlagiarismFinder
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Party
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Origin
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\OpenOffice.org
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\OpenOffice
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\NVIDIA
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Natural Selection 2
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\NationRed
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\MultiBit
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Mozilla-Cache
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Mount&Blade With Fire and Sword
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Mount&Blade Warband
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\MKKE
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Malwarebytes
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\MAGIX
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Macromedia
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\LolClient
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Kalypso Media
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\IObit
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\InstallShield
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\gtk-2.0
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\gsmartcontrol
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\gnupg
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\globalip
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\FreeHideIP
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\EPSON
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\DynaGeo
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Download Manager
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\DonationCoder
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\DivX
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\COMODO
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\CASIO
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Canneverbe Limited
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Bitmart
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Bitdefender
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\backbeat
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\AVG
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\AutoHideIP
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Auslogics
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\AtomZombieData
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\ATI
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Atari
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\ASUS
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\ASCOMP Software
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Artweaver Free
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Arrowhead
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Applian FLV and Media Player
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Apple Computer
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\APOX
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Adobe
2014-01-10 16:57 - 2014-01-10 16:57 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\2K Sports
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\Mozilla
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\.Nitrous
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\.mono
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\Zattoo
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\World in Conflict
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\Wings of Prey
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\WindowsUpdate
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\Windows Live Writer
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\Windows Live
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\WB Games
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\Ubisoft Game Launcher
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\THQ
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\The Witcher 2
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\TeamSpeak 3 Client
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\Take On Helicopters Demo
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\Spotify
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\SniperV2 Demo
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\SniperV2
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\Sniper Elite Zombie Army
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\Skyrim
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\signal studios
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\Rockstar Games
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\PunkBuster
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\PMB Files
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\PictureConverter
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\PAYDAY
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\Overwolf
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\Origin
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\My Games
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\Mozilla
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\MicrosoftStore
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\mcpatcher
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\Matt_Chambers
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\Macromedia
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\LogMeIn Hamachi
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\LogMeIn
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\Introversion
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\id Software
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\Users\Tobias\AppData\Local\GRAW2
2014-01-10 16:56 - 2014-01-10 16:56 - 00000000 ____D C:\ProgramData\Mozilla
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\AppData\Local\Google
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\AppData\Local\Gas Powered Games
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\AppData\Local\Focus Home Interactive
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\AppData\Local\FalloutNV
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\AppData\Local\ESN Sonar
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\AppData\Local\ESN
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\AppData\Local\Electronic Arts
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\AppData\Local\dxhr
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\AppData\Local\Downloaded Installations
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\AppData\Local\Desura
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\AppData\Local\Criterion Games
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\AppData\Local\CrashRpt
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\AppData\Local\Chromium
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\AppData\Local\bizarre creations
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\AppData\Local\Audible
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\AppData\Local\ATI
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\AppData\Local\Atari
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\AppData\Local\ashampoo
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\AppData\Local\Arma 3
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\AppData\Local\ArmA 2 OA DEMO
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\AppData\Local\Arktos
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\AppData\Local\Apps\2.0
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\AppData\Local\Apple Computer
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\AppData\Local\Apple
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\AppData\Local\AOL
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\AppData\Local\AMD
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\AppData\Local\Activision
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\AppData\Local\Abelssoft
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\AppData\Local\76561198000124388
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\AppData\Local\4A Games
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\AppData\Local\2K Games
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\AppData\Local\2DBoy
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\AppData\Local\28050
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\.thumbnails
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\.swt
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\.mediathek3
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\.gimp-2.6
2014-01-10 16:55 - 2014-01-10 16:55 - 00000000 ____D C:\Users\Tobias\.freemind
2014-01-10 16:55 - 2014-01-10 16:36 - 00000000 ____D C:\Users\Tobias\AppData\Local\Avg2014
2014-01-10 16:51 - 2014-01-10 16:51 - 00000000 ____D C:\Program Files (x86)\ASM104xUSB3
2014-01-10 16:45 - 2014-01-10 16:45 - 00000000 ____D C:\Users\Tobias\AppData\Roaming\AVG2014
2014-01-10 16:45 - 2014-01-10 16:44 - 00000000 ____D C:\ProgramData\AVG2014
2014-01-10 16:44 - 2014-01-10 16:44 - 00000000 ____D C:\Program Files (x86)\AVG
2014-01-10 16:44 - 2014-01-10 16:44 - 00000000 ____D C:\$AVG
2014-01-10 16:36 - 2014-01-10 16:36 - 00000000 ____D C:\Users\Tobias\AppData\Local\MFAData
2014-01-10 16:34 - 2014-01-10 16:34 - 00001769 _____ C:\Windows\Language_trs.ini
2014-01-10 16:34 - 2009-07-14 06:32 - 00000000 ____D C:\Windows\system32\restore
2014-01-10 16:04 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\Users\Tobias\Vorlagen
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\Users\Tobias\Startmenü
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\Users\Tobias\Netzwerkumgebung
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\Users\Tobias\Lokale Einstellungen
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\Users\Tobias\Eigene Dateien
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\Users\Tobias\Druckumgebung
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\Users\Tobias\Documents\Eigene Musik
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\Users\Tobias\Documents\Eigene Bilder
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\Users\Tobias\AppData\Local\Verlauf
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\Users\Tobias\AppData\Local\Anwendungsdaten
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\Users\Tobias\Anwendungsdaten
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\Users\Default\Vorlagen
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\Users\Default\Startmenü
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\Users\Default\Eigene Dateien
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\Users\Default\Druckumgebung
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\ProgramData\Vorlagen
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\ProgramData\Startmenü
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\ProgramData\Favoriten
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\ProgramData\Dokumente
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien
2014-01-10 16:01 - 2014-01-10 16:01 - 00000000 ____D C:\Recovery
2014-01-10 16:01 - 2009-07-14 04:20 - 00000000 __RHD C:\Users\Default
2014-01-10 16:01 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Windows NT
2014-01-10 15:36 - 2010-11-21 08:17 - 00000000 ____D C:\Windows\CSC
2013-12-29 09:14 - 2014-01-10 17:04 - 29118680 _____ (SUPERAntiSpyware) C:\Users\Tobias\Downloads\SUPERAntiSpyware.exe
2013-12-29 06:25 - 2014-01-10 17:04 - 29040552 _____ (Oracle Corporation) C:\Users\Tobias\Downloads\jre-7u45-windows-i586(1).exe
2013-12-29 06:24 - 2014-01-10 17:04 - 00000033 _____ C:\Users\Tobias\Downloads\j2se
2013-12-29 06:20 - 2014-01-10 17:04 - 16987920 _____ (Sun Microsystems, Inc.) C:\Users\Tobias\Downloads\java-se-runtime-environment_7850.exe
2013-12-28 04:43 - 2014-01-10 17:04 - 26356152 _____ (PortableApps.com) C:\Users\Tobias\Downloads\FirefoxPortable_26.0_English.paf.exe
2013-12-28 04:30 - 2014-01-10 17:04 - 24185920 _____ C:\Users\Tobias\Downloads\torbrowser-install-3.5_de.exe
2013-12-28 03:18 - 2014-01-10 17:04 - 12855384 _____ (Nullsoft, Inc.) C:\Users\Tobias\Downloads\winamp5666_full_de-de_b3516.exe
2013-12-25 01:16 - 2014-01-10 17:04 - 05032470 _____ (Geeks3D                                                     ) C:\Users\Tobias\Downloads\FurMark_1.12.0_Setup.exe
2013-12-24 02:51 - 2014-01-10 17:04 - 02304092 _____ () C:\Users\Tobias\Downloads\TechnicLauncher(1).exe
2013-12-23 17:35 - 2014-01-10 17:04 - 255373753 _____ (YGOPro DevPro Online                                        ) C:\Users\Tobias\Downloads\SetupDevPro1.9.8r1.exe
2013-12-19 21:16 - 2014-01-10 17:04 - 04436952 _____ (AVG Technologies) C:\Users\Tobias\Downloads\avg_isct_stb_all_2014_4259.exe
2013-12-16 04:27 - 2014-01-10 17:04 - 00836416 _____ C:\Users\Tobias\Downloads\pidsetup.exe

Some content of TEMP:
====================
C:\Users\Tobias\AppData\Local\Temp\Quarantine.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2014-01-11 04:22

==================== End Of Log ============================
         
OTL Funktionstest:

Ich habe heute seit ca. 14:40 wieder OTL am laufen(lasse es mal die nächsten Stunden weiter laufen) bin jetzt wieder bei der 30 Min Wartegrenze . Habt ihr bei euch im Team einen(oder bost du ein) OTL Experten oder ähnliches der eine Erklärung dafür haben könnte warum OTL nicht läuft bzw. bei "Scanning Firefox Settings" hängen bleibt. Ich habe ja immernoch eine dunkle Befürchtung das ein Trojaner,Virus etc. seine Finger mit im Spiel hat .
mfg Tobias =)

Alt 15.01.2014, 15:26   #17
ghostertaker
 
OTL.exe hängt sich bei scanning Firefox settings auf(habe schon 30 min gewartet) - Standard

OTL.exe hängt sich bei scanning Firefox settings auf(habe schon 30 min gewartet)



Hey doch noch eine positive Nachricht kurz nach dem ich geantwortet hatte war OTL weiter gekommen(vorher war OTL auch noch nach 1 Stunde oder 1,5 Stunden hängen geblieben und erstellte einfach keinen log =) und hat nen log erstellt ich kann jetzt nicht rausfiltern welche Masnahme geholfen hat denke aber igrendeins der benutzten Programme .
DANKE DANKE DANKE

Anmeerkung:
Vor dem OTL Scan hatte ich 4 frische Windows 7 64 bit Sicherheitsupdates(für den Januar 2014) installiert.Falls dies relevant sein sollte =).

noch zu letzt der OTL log Teil 1:
Code:
ATTFilter
OTL logfile created on: 15.01.2014 14:41:25 - Run 1
OTL by OldTimer - Version 3.2.69.0     Folder = D:\Desktop\Tobias\Antivirus
64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16750)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
 
3,90 Gb Total Physical Memory | 2,41 Gb Available Physical Memory | 61,77% Memory free
7,80 Gb Paging File | 6,06 Gb Available in Paging File | 77,73% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 232,79 Gb Total Space | 170,51 Gb Free Space | 73,25% Space Free | Partition Type: NTFS
Drive D: | 2794,39 Gb Total Space | 2239,10 Gb Free Space | 80,13% Space Free | Partition Type: NTFS
 
Computer Name: TOBIAS-PC | User Name: Tobias | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
========== Processes (SafeList) ==========
 
PRC - [2014.01.12 19:54:09 | 000,602,112 | ---- | M] (OldTimer Tools) -- D:\Desktop\Tobias\Antivirus\OTL.exe
PRC - [2014.01.12 18:41:31 | 000,223,112 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Update\1.3.22.3\GoogleCrashHandler.exe
PRC - [2014.01.07 22:00:22 | 000,569,768 | ---- | M] (Valve Corporation) -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe
PRC - [2014.01.07 22:00:20 | 001,815,464 | ---- | M] (Valve Corporation) -- D:\Programme\Steam\Steam.exe
PRC - [2013.11.11 22:02:14 | 003,478,544 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe
PRC - [2013.11.07 22:03:50 | 004,956,176 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG2014\avgui.exe
PRC - [2013.10.25 16:38:20 | 000,552,960 | ---- | M] (ROCCAT GmbH) -- C:\Program Files (x86)\ROCCAT\Kone XTD Mouse\KoneXTDMonitor.exe
PRC - [2013.09.24 01:35:44 | 001,358,944 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG2014\avgfws.exe
PRC - [2013.09.24 01:33:08 | 000,348,008 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe
PRC - [2013.09.17 18:58:56 | 000,951,936 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe
PRC - [2013.09.17 18:58:56 | 000,920,736 | ---- | M] () -- C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe
PRC - [2013.09.05 15:04:00 | 000,065,640 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2013.08.19 17:21:40 | 001,108,992 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\TurboVHelp.exe
PRC - [2013.01.28 15:58:52 | 000,550,272 | ---- | M] (ASUSTek Computer Inc.) -- C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe
PRC - [2013.01.14 20:04:14 | 001,199,416 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files (x86)\ASUS\AI Suite II\DIGI+ Power Control\PowerControlHelp.exe
PRC - [2012.10.15 11:03:30 | 000,408,960 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files (x86)\ASUS\AsusFanControlService\1.01.19\AsusFanControlService.exe
PRC - [2012.09.23 20:43:40 | 000,040,592 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Reader_sl.exe
PRC - [2012.08.07 13:42:12 | 001,504,640 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files (x86)\ASUS\AI Suite II\AI Suite II.exe
PRC - [2012.03.13 12:34:12 | 002,935,424 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files (x86)\ASUS\AI Suite II\AsRoutineController.exe
PRC - [2012.02.17 14:26:00 | 000,149,120 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe
PRC - [2011.09.08 21:29:12 | 001,112,704 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\AlertHelper.exe
 
 
========== Modules (No Company Name) ==========
 
MOD - [2014.01.07 22:00:22 | 001,138,088 | ---- | M] () -- D:\Programme\Steam\bin\chromehtml.dll
MOD - [2013.12.12 23:19:40 | 000,142,848 | ---- | M] () -- D:\Programme\Steam\libavresample-1.dll
MOD - [2013.12.12 23:04:18 | 020,625,832 | ---- | M] () -- D:\Programme\Steam\bin\libcef.dll
MOD - [2013.12.12 23:04:14 | 000,716,800 | ---- | M] () -- D:\Programme\Steam\SDL2.dll
MOD - [2013.12.04 11:57:20 | 000,870,912 | ---- | M] () -- C:\Program Files (x86)\ASUS\AI Suite II\AI Charger+\AIChargerPlus.dll
MOD - [2013.11.05 02:12:06 | 000,890,592 | ---- | M] () -- D:\Programme\Steam\libavutil-52.dll
MOD - [2013.08.19 17:23:16 | 000,043,520 | ---- | M] () -- C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\HookKey32.dll
MOD - [2013.08.19 17:21:40 | 000,253,952 | ---- | M] () -- C:\Program Files (x86)\ASUS\AI Suite II\TurboV EVO\pngio.dll
MOD - [2013.06.15 00:49:12 | 001,100,800 | ---- | M] () -- D:\Programme\Steam\bin\avcodec-53.dll
MOD - [2013.06.15 00:49:12 | 000,192,000 | ---- | M] () -- D:\Programme\Steam\bin\avformat-53.dll
MOD - [2013.06.15 00:49:12 | 000,124,416 | ---- | M] () -- D:\Programme\Steam\bin\avutil-51.dll
MOD - [2013.05.08 16:22:48 | 001,040,896 | ---- | M] () -- C:\Program Files (x86)\ASUS\AI Suite II\EasyUpdate\EasyUpdt.dll
MOD - [2013.04.15 14:19:46 | 000,883,712 | ---- | M] () -- C:\Program Files (x86)\ASUS\AI Suite II\Sensor\Sensor.dll
MOD - [2012.10.08 17:07:46 | 000,972,288 | ---- | M] () -- C:\Program Files (x86)\ASUS\AI Suite II\BarGadget\BarGadget.dll
MOD - [2012.08.29 18:09:00 | 000,875,520 | ---- | M] () -- C:\Program Files (x86)\ASUS\AI Suite II\TabGadget\TabGadget.dll
MOD - [2012.06.19 12:56:22 | 001,305,600 | ---- | M] () -- C:\Program Files (x86)\ASUS\AI Suite II\MyLogo\MyLogo.dll
MOD - [2012.06.17 11:20:28 | 000,061,440 | ---- | M] () -- C:\Program Files (x86)\ROCCAT\Kone XTD Mouse\hiddriver.dll
MOD - [2012.05.28 21:27:04 | 001,622,528 | ---- | M] () -- C:\Program Files (x86)\ASUS\AI Suite II\Sensor Graph\SensorGraph.dll
MOD - [2012.01.19 09:39:30 | 000,028,672 | ---- | M] () -- C:\Program Files (x86)\ASUS\AI Suite II\USB BIOS Flashback\PEInfo.dll
MOD - [2011.09.19 20:18:20 | 001,243,136 | ---- | M] () -- C:\Program Files (x86)\ASUS\AI Suite II\Settings\Settings.dll
MOD - [2011.07.21 09:06:44 | 000,846,848 | ---- | M] () -- C:\Program Files (x86)\ASUS\AI Suite II\Splitter\Splitter.dll
MOD - [2011.07.12 19:14:52 | 000,147,456 | ---- | M] () -- C:\Program Files (x86)\ASUS\AI Suite II\AssistFunc.dll
MOD - [2011.06.08 11:15:44 | 000,651,264 | ---- | M] () -- C:\Program Files (x86)\ASUS\AI Suite II\Thermal Radar\ThermalRadar.dll
MOD - [2010.10.05 08:22:50 | 000,253,952 | ---- | M] () -- C:\Program Files (x86)\ASUS\AI Suite II\pngio.dll
MOD - [2010.10.05 08:22:50 | 000,208,896 | ---- | M] () -- C:\Program Files (x86)\ASUS\AI Suite II\ImageHelper.dll
MOD - [2010.08.23 10:17:40 | 000,662,016 | ---- | M] () -- C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMLib.dll
MOD - [2009.08.12 20:15:52 | 000,253,952 | ---- | M] () -- C:\Program Files (x86)\ASUS\AI Suite II\Sensor\AlertHelper\pngio.dll
 
 
========== Services (SafeList) ==========
 
SRV:64bit: - [2013.12.06 21:52:10 | 000,239,616 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV:64bit: - [2013.12.06 16:06:06 | 000,344,064 | ---- | M] (Advanced Micro Devices, Inc.) [Auto | Running] -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe -- (AMD FUEL Service)
SRV:64bit: - [2013.10.16 14:08:06 | 000,186,056 | ---- | M] (Sandboxie Holdings, LLC) [Auto | Running] -- C:\Program Files\Sandboxie\SbieSvc.exe -- (SbieSvc)
SRV:64bit: - [2013.10.10 23:54:28 | 000,144,152 | ---- | M] (SUPERAntiSpyware.com) [Disabled | Stopped] -- C:\Program Files\SUPERAntiSpyware\SASCORE64.EXE -- (!SASCORE)
SRV:64bit: - [2013.05.27 06:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\mpsvc.dll -- (WinDefend)
SRV:64bit: - [2009.07.14 02:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV - [2014.01.10 20:00:23 | 000,131,912 | ---- | M] (Desura Pty Ltd) [Disabled | Stopped] -- C:\Program Files (x86)\Common Files\Desura\desura_service.exe -- (Desura Install Service)
SRV - [2014.01.10 17:08:36 | 000,257,416 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2014.01.07 22:00:22 | 000,569,768 | ---- | M] (Valve Corporation) [On_Demand | Running] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2013.12.17 11:38:33 | 005,341,536 | ---- | M] (TeamViewer GmbH) [Disabled | Stopped] -- C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe -- (TeamViewer9)
SRV - [2013.12.05 20:36:33 | 000,119,408 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013.11.11 22:02:14 | 003,478,544 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files (x86)\AVG\AVG2014\avgidsagent.exe -- (AVGIDSAgent)
SRV - [2013.09.24 01:35:44 | 001,358,944 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files (x86)\AVG\AVG2014\avgfws.exe -- (avgfws)
SRV - [2013.09.24 01:33:08 | 000,348,008 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files (x86)\AVG\AVG2014\avgwdsvc.exe -- (avgwd)
SRV - [2013.09.17 18:58:56 | 000,951,936 | ---- | M] (ASUSTeK Computer Inc.) [Auto | Running] -- C:\Program Files (x86)\ASUS\AAHM\1.00.20\aaHMSvc.exe -- (asHmComSvc)
SRV - [2013.09.17 18:58:56 | 000,920,736 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\ASUS\AXSP\1.00.19\atkexComSvc.exe -- (asComSvc)
SRV - [2013.09.11 21:21:54 | 000,105,144 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2013.09.05 15:04:00 | 000,065,640 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2012.10.15 11:03:30 | 000,408,960 | ---- | M] (ASUSTeK Computer Inc.) [Auto | Running] -- C:\Program Files (x86)\ASUS\AsusFanControlService\1.01.19\AsusFanControlService.exe -- (AsusFanControlService)
SRV - [2012.02.17 14:26:00 | 000,149,120 | ---- | M] (ASUSTeK Computer Inc.) [Auto | Running] -- C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.13\AsSysCtrlService.exe -- (AsSysCtrlService)
SRV - [2009.06.10 22:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
 
 
========== Driver Services (SafeList) ==========
 
DRV:64bit: - [2013.12.06 22:52:14 | 013,207,552 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2013.12.06 21:21:44 | 000,626,176 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2013.11.05 21:55:48 | 000,150,808 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\SysNative\drivers\avgdiska.sys -- (Avgdiska)
DRV:64bit: - [2013.11.04 21:52:42 | 000,240,920 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\SysNative\drivers\avgidsdrivera.sys -- (AVGIDSDriver)
DRV:64bit: - [2013.10.31 23:00:18 | 000,212,280 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\SysNative\drivers\avgldx64.sys -- (Avgldx64)
DRV:64bit: - [2013.10.31 22:49:46 | 000,294,712 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\avgloga.sys -- (Avgloga)
DRV:64bit: - [2013.10.24 22:25:58 | 000,194,872 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\avgidsha.sys -- (AVGIDSHA)
DRV:64bit: - [2013.10.16 14:08:04 | 000,200,552 | ---- | M] (Sandboxie Holdings, LLC) [Kernel | On_Demand | Running] -- C:\Program Files\Sandboxie\SbieDrv.sys -- (SbieDrv)
DRV:64bit: - [2013.10.01 00:52:08 | 000,123,704 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\avgmfx64.sys -- (Avgmfx64)
DRV:64bit: - [2013.09.26 09:44:54 | 000,057,144 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgfwd6a.sys -- (Avgfwfd)
DRV:64bit: - [2013.09.24 15:53:50 | 000,094,208 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AtihdW76.sys -- (AtiHDAudioService)
DRV:64bit: - [2013.09.19 23:05:02 | 000,059,648 | ---- | M] (Advanced Micro Devices) [Kernel | Auto | Running] -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys -- (AODDriver4.2.0)
DRV:64bit: - [2013.09.10 00:43:02 | 000,031,544 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\avgrkx64.sys -- (Avgrkx64)
DRV:64bit: - [2013.08.16 15:37:12 | 000,424,192 | ---- | M] (ASMedia Technology Inc) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\asmtxhci.sys -- (asmtxhci)
DRV:64bit: - [2013.08.16 15:37:12 | 000,140,032 | ---- | M] (ASMedia Technology Inc) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\asmthub3.sys -- (asmthub3)
DRV:64bit: - [2013.08.01 16:07:06 | 000,251,192 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avgtdia.sys -- (Avgtdia)
DRV:64bit: - [2012.12.27 01:26:12 | 000,805,088 | ---- | M] (Realtek                                            ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2012.08.23 15:10:20 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2012.08.23 15:08:26 | 000,030,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:64bit: - [2012.08.23 15:07:35 | 000,057,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2012.08.21 13:01:20 | 000,033,240 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2012.03.01 07:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2011.07.22 17:26:56 | 000,014,928 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\SASDIFSV64.SYS -- (SASDIFSV)
DRV:64bit: - [2011.07.12 22:55:18 | 000,012,368 | ---- | M] (SUPERAdBlocker.com and SUPERAntiSpyware.com) [Kernel | System | Running] -- C:\Program Files\SUPERAntiSpyware\SASKUTIL64.SYS -- (SASKUTIL)
DRV:64bit: - [2011.03.11 07:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011.03.11 07:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2010.11.21 04:23:48 | 000,071,168 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\dmvsc.sys -- (dmvsc)
DRV:64bit: - [2010.11.21 04:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010.09.30 20:00:06 | 000,180,736 | ---- | M] (Renesas Electronics Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nusb3xhc.sys -- (nusb3xhc)
DRV:64bit: - [2010.09.30 20:00:06 | 000,080,384 | ---- | M] (Renesas Electronics Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nusb3hub.sys -- (nusb3hub)
DRV:64bit: - [2010.04.27 16:57:20 | 000,016,200 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WmVirHid.sys -- (WmVirHid)
DRV:64bit: - [2010.04.27 16:57:12 | 000,026,440 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WmBEnum.sys -- (WmBEnum)
DRV:64bit: - [2010.04.27 14:03:12 | 000,077,512 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WmXlCore.sys -- (WmXlCore)
DRV:64bit: - [2010.04.27 14:02:42 | 000,043,976 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WmFilter.sys -- (WmFilter)
DRV:64bit: - [2009.08.21 01:52:10 | 000,079,976 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\xusb21.sys -- (xusb21)
DRV:64bit: - [2009.07.14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009.07.14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009.07.14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009.06.10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009.06.10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009.06.10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009.06.10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV - [2009.07.14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
 
 
========== Standard Registry (SafeList) ==========
 
 
========== Internet Explorer ==========
 
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = 
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
 
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = https://www.google.de/
IE - HKCU\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
 
========== FireFox ==========
 
FF - prefs.js..browser.search.defaultengine: "www.google.de"
FF - prefs.js..browser.search.order.2: "Google"
FF - prefs.js..browser.search.param.yahoo-fr: "chr-greentree_ff&ilc=12&type=937811"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "hxxp://www.google.de/"
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:26.0
FF - prefs.js..keyword.URL: "hxxp://de.search.yahoo.com/search?fr=greentree_ff1&ei=utf-8&ilc=12&type=902615&p="
FF - prefs.js..network.proxy.autoconfig_url: "data:text/javascript,function%20FindProxyForURL(url%2C%20host)%20%7Bif%20(shExpMatch(url%2C%20'http%3A%2F%2Fplay.spotify.com*')%20%7C%7C%20shExpMatch(url%2C%20'https%3A%2F%2Fplay.spotify.com*')%20%7C%7C%20shExpMatch(url%2C%20'https%3A%2F%2Fwww.spotify.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fwww.spotify.com*')%20%7C%7C%20url.indexOf('southparkstudios.com')%20!%3D%20-1%20%7C%7C%20host%20%3D%3D%20's.hulu.com'%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fwww.iheart.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fwww.mtv.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fmedia.mtvnservices.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fgrooveshark.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fretro.grooveshark.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fhtml5.grooveshark.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Flisten.grooveshark.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fwww.grooveshark.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fsongza.com*')%20%7C%7C%20shExpMatch(url%2C%20'https%3A%2F%2Fwww.daisuki.net*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fpiki.fm*')%20%7C%7C%20shExpMatch(url%2C%20'https%3A%2F%2Fpiki.fm*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fwww.last.fm*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fext.last.fm*')%20%7C%7C%20(url.indexOf('proxmate%3Dactive')%20!%3D%20-1%20%26%26%20url.indexOf('amazonaws.com')%20%3D%3D%20-1)%20%7C%7C%20(url.indexOf('proxmate%3Dus')%20!%3D%20-1)%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fwww.funimation.com*')%20%7C%7C%20shExpMatch(url%2C%20'https%3A%2F%2Fsecure.funimation.com*')%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fwww.rdio.com*')%20%7C%7C%20url.indexOf('discoverymedia.com')%20!%3D%20-1%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fdsc.discovery.com%2F*')%20%7C%7C%20url.indexOf('vevo.com')%20!%3D%20-1%20%7C%7C%20url.indexOf('play.google.com')%20!%3D%20-1%20%7C%7C%20(url.indexOf('youtube.com%2Fvideoplayback')%20!%3D%20-1%20%26%26%20url.indexOf('%26gcr%3Dus')%20!%3D%20-1%20%26%26%20url.indexOf('%26ptchn')%20!%3D%20-1)%20%7C%7C%20shExpMatch(url%2C%20'http%3A%2F%2Fwww.crunchyroll.com*')%20%7C%7C%20host%20%3D%3D%20'www.pandora.com')%20%7B%20return%20'PROXY%20nq-us12.personalitycores.com%3A8000%3B%20PROXY%20nq-us09.personalitycores.com%3A8000%3B%20PROXY%20nq-us04.personalitycores.com%3A8000%3B%20PROXY%20nq-us05.personalitycores.com%3A8000%3B%20PROXY%20nq-us06.personalitycores.com%3A8000%3B%20PROXY%20nq-us07.personalitycores.com%3A8000%3B%20PROXY%20nq-us11.personalitycores.com%3A8000%3B%20PROXY%20nq-us10.personalitycores.com%3A8000%3B%20PROXY%20nq-us08.personalitycores.com%3A8000'%3B%7D%20%20else%20%7B%20return%20'DIRECT'%3B%20%7D%7D"
FF - prefs.js..network.proxy.ftp: "64.34.197.103"
FF - prefs.js..network.proxy.ftp_port: 8118
FF - prefs.js..network.proxy.http: "109.232.224.132 	"
FF - prefs.js..network.proxy.http_port: 3128
FF - prefs.js..network.proxy.socks: "64.34.197.103"
FF - prefs.js..network.proxy.socks_port: 8118
FF - prefs.js..network.proxy.ssl: "64.34.197.103"
FF - prefs.js..network.proxy.ssl_port: 8118
FF - prefs.js..network.proxy.type: 2
FF - user.js - File not found
 
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.45.2: C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.45.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=:  File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
 
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 26.0\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2014.01.10 17:17:18 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 26.0\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins [2014.01.11 11:26:18 | 000,000,000 | ---D | M]
 
[2014.01.10 16:57:14 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Tobias\AppData\Roaming\mozilla\Extensions
[2014.01.12 20:44:34 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Tobias\AppData\Roaming\mozilla\Firefox\Profiles\bu1fqu6x.default\extensions
[2014.01.10 17:05:56 | 000,000,000 | ---D | M] (Flash and Video Download) -- C:\Users\Tobias\AppData\Roaming\mozilla\Firefox\Profiles\bu1fqu6x.default\extensions\{bee6eb20-01e0-ebd1-da83-080329fb9a3a}
[2014.01.10 17:05:58 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Tobias\AppData\Roaming\mozilla\Firefox\Profiles\tcitasmi.default\extensions
[2013.08.30 12:47:41 | 000,355,782 | ---- | M] () (No name found) -- C:\Users\Tobias\AppData\Roaming\mozilla\firefox\profiles\bu1fqu6x.default\extensions\client@anonymox.net.xpi
[2013.09.18 17:45:47 | 000,377,153 | ---- | M] () (No name found) -- C:\Users\Tobias\AppData\Roaming\mozilla\firefox\profiles\bu1fqu6x.default\extensions\jid1-QpHD8URtZWJC2A@jetpack.xpi
[2012.03.15 10:49:03 | 000,004,525 | ---- | M] () (No name found) -- C:\Users\Tobias\AppData\Roaming\mozilla\firefox\profiles\bu1fqu6x.default\extensions\support@auto-hide-ip.com.xpi
[2013.11.20 23:18:19 | 000,619,291 | ---- | M] () (No name found) -- C:\Users\Tobias\AppData\Roaming\mozilla\firefox\profiles\bu1fqu6x.default\extensions\testpilot@labs.mozilla.com.xpi
[2012.12.11 21:56:23 | 000,036,098 | ---- | M] () (No name found) -- C:\Users\Tobias\AppData\Roaming\mozilla\firefox\profiles\bu1fqu6x.default\extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}.xpi
[2013.10.24 11:54:23 | 000,915,554 | ---- | M] () (No name found) -- C:\Users\Tobias\AppData\Roaming\mozilla\firefox\profiles\bu1fqu6x.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
[2011.12.28 15:33:53 | 000,588,526 | ---- | M] () (No name found) -- C:\Users\Tobias\AppData\Roaming\mozilla\firefox\profiles\tcitasmi.default\extensions\testpilot@labs.mozilla.com.xpi
[2011.12.28 15:41:32 | 000,644,196 | ---- | M] () (No name found) -- C:\Users\Tobias\AppData\Roaming\mozilla\firefox\profiles\tcitasmi.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
[2014.01.10 17:17:18 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions
[2014.01.10 17:17:18 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions\{AB2CE124-6272-4b12-94A9-7303C7397BD1}
[2014.01.10 17:17:18 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}
[2014.01.10 19:09:21 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\browser\extensions
[2014.01.10 19:09:21 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\mozilla firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2014.01.10 17:17:18 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\browser\distribution\extensions
[2013.02.09 17:41:53 | 000,124,056 | ---- | M] (RealPlayer) -- C:\Program Files (x86)\mozilla firefox\plugins\nprpplugin.dll
 
========== Chrome  ==========
 
CHR - default_search_provider: Google (Enabled)
CHR - default_search_provider: search_url = {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:bookmarkBarPinned}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}{google:omniboxStartMarginParameter}ie={inputEncoding}
CHR - default_search_provider: suggest_url = {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}{google:pageClassification}sugkey={google:suggestAPIKeyParameter},
CHR - Extension: Google Docs = C:\Users\Tobias\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_1\
CHR - Extension: Google Drive = C:\Users\Tobias\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_1\
CHR - Extension: YouTube = C:\Users\Tobias\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_1\
CHR - Extension: Google-Suche = C:\Users\Tobias\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_1\
CHR - Extension: AdBlock = C:\Users\Tobias\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.16_0\
CHR - Extension: AdBlock = C:\Users\Tobias\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.18_0\
CHR - Extension: Google Wallet = C:\Users\Tobias\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_0\
CHR - Extension: Google Wallet = C:\Users\Tobias\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\
CHR - Extension: Google Mail = C:\Users\Tobias\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_2\
 
O1 HOSTS File: ([2014.01.12 22:52:49 | 000,000,698 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2:64bit: - BHO: (no name) - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - No CLSID value found.
O2:64bit: - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2:64bit: - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O4:64bit: - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Realtek Semiconductor)
O4:64bit: - HKLM..\Run: [XboxStat] C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe (Microsoft Corporation)
O4 - HKLM..\Run: [ASUS AiChargerPlus Execute] C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe (ASUSTek Computer Inc.)
O4 - HKLM..\Run: [AVG_UI] C:\Program Files (x86)\AVG\AVG2014\avgui.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [RoccatKoneXTD] C:\Program Files (x86)\ROCCAT\Kone XTD Mouse\KoneXTDMonitor.EXE (ROCCAT GmbH)
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKCU..\Run: [SandboxieControl] C:\Program Files\Sandboxie\SbieCtrl.exe (Sandboxie Holdings, LLC)
O4 - HKCU..\Run: [Steam] D:\Programme\Steam\steam.exe (Valve Corporation)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000009 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.178.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{71DF25D8-544E-4BDC-9399-A1F500A0B7A8}: DhcpNameServer = 192.168.178.1
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
 
========== Files/Folders - Created Within 30 Days ==========
 
[2014.01.15 07:36:11 | 000,325,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usbport.sys
[2014.01.15 07:36:11 | 000,007,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usbd.sys
[2014.01.15 07:36:10 | 000,376,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\netio.sys
[2014.01.14 18:21:05 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
[2014.01.14 18:21:03 | 000,033,240 | ---- | C] (GEAR Software Inc.) -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys
[2014.01.14 18:21:03 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\DRVSTORE
[2014.01.14 18:20:52 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2014.01.14 18:20:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\iTunes
[2014.01.14 18:20:52 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2014.01.14 18:20:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple Computer
[2014.01.14 18:20:52 | 000,000,000 | ---D | C] -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
[2014.01.14 18:20:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Apple Software Update
[2014.01.14 18:19:55 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Apple
[2014.01.14 18:19:49 | 000,000,000 | ---D | C] -- C:\Program Files\Bonjour
[2014.01.14 18:19:49 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Bonjour
[2014.01.14 18:19:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Apple
[2014.01.14 18:19:45 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Apple
[2014.01.13 20:38:25 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2014.01.13 20:38:21 | 000,000,000 | ---D | C] -- C:\Windows\temp
[2014.01.13 17:44:13 | 000,000,000 | ---D | C] -- C:\ComboFix
[2014.01.12 23:04:40 | 000,000,000 | ---D | C] -- C:\ProgramData\HitmanPro
[2014.01.12 22:50:25 | 000,464,384 | ---- | C] (Seiko Epson Corporation) -- C:\Windows\SysNative\esxw2ud.dll
[2014.01.12 22:50:25 | 000,132,560 | ---- | C] (Seiko Epson Corporation) -- C:\Windows\SysNative\esdevapp.exe
[2014.01.12 22:50:25 | 000,013,824 | ---- | C] (Seiko Epson Corporation) -- C:\Windows\SysNative\esxcdev.dll
[2014.01.12 22:39:38 | 000,000,000 | ---D | C] -- C:\ProgramData\EPSON
[2014.01.12 22:39:38 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\EPSON
[2014.01.12 22:39:34 | 000,010,752 | ---- | C] (SEIKO EPSON CORP.) -- C:\Windows\SysNative\E_GCINST.DLL
[2014.01.12 22:39:33 | 000,118,784 | ---- | C] (SEIKO EPSON CORPORATION) -- C:\Windows\SysNative\E_ILMHBE.DLL
[2014.01.12 22:39:33 | 000,088,064 | ---- | C] (SEIKO EPSON CORPORATION) -- C:\Windows\SysNative\E_IBCBHBE.DLL
[2014.01.12 22:14:14 | 000,000,000 | ---D | C] -- C:\Windows\ERUNT
[2014.01.12 21:03:44 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Trend Micro
[2014.01.12 21:03:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HijackThis
[2014.01.12 20:14:02 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2014.01.12 20:09:05 | 000,000,000 | ---D | C] -- C:\FRST
[2014.01.12 19:55:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware
[2014.01.12 19:54:58 | 000,000,000 | ---D | C] -- C:\ProgramData\SUPERAntiSpyware.com
[2014.01.12 19:54:58 | 000,000,000 | ---D | C] -- C:\Program Files\SUPERAntiSpyware
[2014.01.12 18:45:01 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2014.01.12 18:45:01 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2014.01.12 18:45:01 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2014.01.12 18:36:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
[2014.01.12 18:36:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Google
[2014.01.12 13:58:33 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\MercurySteam
[2014.01.11 16:24:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Thrustmaster FFB Wheel
[2014.01.11 16:24:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Thrustmaster
[2014.01.11 13:07:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
[2014.01.11 13:07:35 | 000,000,000 | ---D | C] -- C:\Program Files\CPUID
[2014.01.11 11:24:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Adobe
[2014.01.11 11:24:15 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Adobe
[2014.01.11 11:24:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Adobe
[2014.01.11 01:35:26 | 000,000,000 | ---D | C] -- C:\ProgramData\ROCCAT
[2014.01.11 01:30:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ROCCAT
[2014.01.11 01:30:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ROCCAT
[2014.01.11 00:57:54 | 000,000,000 | R--D | C] -- C:\Sandbox
[2014.01.11 00:54:36 | 000,000,000 | ---D | C] -- D:\Desktop\deck
[2014.01.11 00:39:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Xbox 360 Accessories
[2014.01.11 00:39:06 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Xbox 360 Accessories
[2014.01.11 00:35:55 | 000,000,000 | ---D | C] -- C:\Windows\Panther
[2014.01.11 00:35:36 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\OEM
[2014.01.11 00:35:36 | 000,000,000 | ---D | C] -- C:\Hotfix
[2014.01.11 00:35:36 | 000,000,000 | ---D | C] -- C:\Drivers
[2014.01.11 00:34:33 | 000,000,000 | ---D | C] -- C:\Windows\de-DE
[2014.01.11 00:34:32 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\XPSViewer
[2014.01.11 00:34:32 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\drivers\de-DE
[2014.01.11 00:34:32 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\de-DE
[2014.01.11 00:34:32 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\de
[2014.01.11 00:34:32 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\de
[2014.01.11 00:34:32 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\0407
[2014.01.11 00:34:32 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0407
[2014.01.11 00:33:23 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\rdpwd.sys.mui
[2014.01.11 00:33:20 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\NV_AGP.SYS.mui
[2014.01.11 00:33:19 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\pci.sys.mui
[2014.01.11 00:33:18 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\msdsm.sys.mui
[2014.01.11 00:33:18 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\mssmbios.sys.mui
[2014.01.11 00:33:17 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\tunnel.sys.mui
[2014.01.11 00:33:16 | 000,025,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\usbport.sys.mui
[2014.01.11 00:33:16 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\usbhub.sys.mui
[2014.01.11 00:33:16 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\vdrvroot.sys.mui
[2014.01.11 00:33:16 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\ULIAGPKX.SYS.mui
[2014.01.11 00:33:12 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\disk.sys.mui
[2014.01.11 00:33:12 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\AGP440.sys.mui
[2014.01.11 00:33:11 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\battc.sys.mui
[2014.01.11 00:33:06 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\isapnp.sys.mui
[2014.01.11 00:32:53 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drivers\de-DE\tcpip.sys.mui
[2014.01.11 00:32:53 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drivers\de-DE\bfe.dll.mui
[2014.01.11 00:32:51 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drivers\de-DE\scfilter.sys.mui
[2014.01.11 00:32:50 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drivers\de-DE\qwavedrv.sys.mui
[2014.01.11 00:32:37 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drivers\de-DE\pacer.sys.mui
[2014.01.11 00:32:35 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drivers\de-DE\ndiscap.sys.mui
[2014.01.11 00:32:28 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\volsnap.sys.mui
[2014.01.11 00:32:28 | 000,004,096 | ---- | C] (SCM Microsystems, Inc.) -- C:\Windows\SysNative\drivers\de-DE\pscr.sys.mui
[2014.01.11 00:32:28 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\vhdmp.sys.mui
[2014.01.11 00:32:28 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\tpm.sys.mui
[2014.01.11 00:32:28 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\portcls.sys.mui
[2014.01.11 00:32:28 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\umbus.sys.mui
[2014.01.11 00:32:28 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\serscan.sys.mui
[2014.01.11 00:32:28 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\wd.sys.mui
[2014.01.11 00:32:26 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\pcmcia.sys.mui
[2014.01.11 00:32:26 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\rndismpx.sys.mui
[2014.01.11 00:32:26 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\rndismp6.sys.mui
[2014.01.11 00:32:26 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\vwifibus.sys.mui
[2014.01.11 00:32:25 | 000,038,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\mpio.sys.mui
[2014.01.11 00:32:25 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\serial.sys.mui
[2014.01.11 00:32:25 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\i8042prt.sys.mui
[2014.01.11 00:32:25 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\sermouse.sys.mui
[2014.01.11 00:32:25 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\mouclass.sys.mui
[2014.01.11 00:32:25 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\parport.sys.mui
[2014.01.11 00:32:25 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\ataport.sys.mui
[2014.01.11 00:32:25 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\scsiport.sys.mui
[2014.01.11 00:32:25 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\mouhid.sys.mui
[2014.01.11 00:32:25 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\MTConfig.sys.mui
[2014.01.11 00:32:25 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\amdide.sys.mui
[2014.01.11 00:32:23 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\afd.sys.mui
[2014.01.11 00:32:21 | 000,029,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\bfe.dll.mui
[2014.01.11 00:32:21 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\ws2ifsl.sys.mui
[2014.01.11 00:32:20 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\tcpip.sys.mui
[2014.01.11 00:32:20 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\modem.sys.mui
[2014.01.11 00:32:20 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\usbrpm.sys.mui
[2014.01.11 00:32:16 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\srv.sys.mui
[2014.01.11 00:32:15 | 000,017,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\fvevol.sys.mui
[2014.01.11 00:32:14 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\scfilter.sys.mui
[2014.01.11 00:32:04 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\pacer.sys.mui
[2014.01.11 00:32:04 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\rdbss.sys.mui
[2014.01.11 00:32:04 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\RNDISMP.sys.mui
[2014.01.11 00:32:04 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\qwavedrv.sys.mui
[2014.01.11 00:32:03 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\partmgr.sys.mui
[2014.01.11 00:32:01 | 000,072,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\ntfs.sys.mui
[2014.01.11 00:32:01 | 000,017,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\nwifi.sys.mui
[2014.01.11 00:32:00 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\ndis.sys.mui
[2014.01.11 00:32:00 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\ndisuio.sys.mui
[2014.01.11 00:31:59 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\ndiscap.sys.mui
[2014.01.11 00:31:57 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\mountmgr.sys.mui
[2014.01.11 00:31:56 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\luafv.sys.mui
[2014.01.11 00:31:55 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\ipnat.sys.mui
[2014.01.11 00:31:54 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\http.sys.mui
[2014.01.11 00:31:48 | 000,005,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\fltmgr.sys.mui
[2014.01.11 00:31:47 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\volmgrx.sys.mui
[2014.01.11 00:31:46 | 000,011,776 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\SysNative\drivers\de-DE\BrSerIb.sys.mui
[2014.01.11 00:31:46 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\IPMIDrv.sys.mui
[2014.01.11 00:31:46 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\kbdclass.sys.mui
[2014.01.11 00:31:46 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\pnpmem.sys.mui
[2014.01.11 00:31:46 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\kbdhid.sys.mui
[2014.01.11 00:31:45 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\processr.sys.mui
[2014.01.11 00:31:45 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\intelppm.sys.mui
[2014.01.11 00:31:45 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\amdppm.sys.mui
[2014.01.11 00:31:45 | 000,020,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\amdk8.sys.mui
[2014.01.11 00:31:45 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\ohci1394.sys.mui
[2014.01.11 00:31:45 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\1394ohci.sys.mui
[2014.01.11 00:31:45 | 000,011,776 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\SysNative\drivers\de-DE\BrSerId.sys.mui
[2014.01.11 00:31:45 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\acpi.sys.mui
[2014.01.11 00:31:45 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\bthport.sys.mui
[2014.01.11 00:31:45 | 000,004,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\bthpan.sys.mui
[2014.01.11 00:31:45 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\wacompen.sys.mui
[2014.01.11 00:31:45 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\hdaudbus.sys.mui
[2014.01.11 00:31:45 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\HdAudio.sys.mui
[2014.01.11 00:31:45 | 000,003,584 | ---- | C] (ATI Technologies Inc.) -- C:\Windows\SysNative\drivers\de-DE\atikmdag.sys.mui
[2014.01.11 00:31:45 | 000,003,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\hidbth.sys.mui
[2014.01.11 00:31:45 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\UAGP35.SYS.mui
[2014.01.11 00:31:45 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\GAGP30KX.SYS.mui
[2014.01.11 00:31:45 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\Dot4usb.sys.mui
[2014.01.11 00:31:45 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\BTHUSB.SYS.mui
[2014.01.11 00:31:45 | 000,002,560 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\SysNative\drivers\de-DE\BrParwdm.sys.mui
[2014.01.11 00:31:45 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\cdrom.sys.mui
[2014.01.11 00:31:45 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\bthenum.sys.mui
[2014.01.11 00:28:20 | 000,000,000 | ---D | C] -- C:\Windows\pss
[2014.01.10 23:59:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Magician
[2014.01.10 23:59:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Samsung
[2014.01.10 23:59:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung
[2014.01.10 23:59:00 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Samsung
[2014.01.10 23:44:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SSD Tweaker
[2014.01.10 23:44:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SSD Tweaker
[2014.01.10 23:27:03 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Tune
[2014.01.10 23:27:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\HD Tune
[2014.01.10 23:25:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo
[2014.01.10 23:25:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\CrystalDiskInfo
[2014.01.10 23:24:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CheckDrive
[2014.01.10 23:24:38 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\CheckDrive
[2014.01.10 23:20:42 | 000,000,000 | ---D | C] -- C:\ProgramData\VS
[2014.01.10 23:15:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\TeamViewer
[2014.01.10 23:15:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavalys
[2014.01.10 23:15:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Lavalys
[2014.01.10 23:13:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Driver Cleaner Pro
[2014.01.10 23:03:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
[2014.01.10 23:02:20 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Silverlight
[2014.01.10 23:02:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Silverlight
[2014.01.10 22:52:49 | 000,000,000 | ---D | C] -- C:\ProgramData\ASUS OC Profiles
[2014.01.10 22:52:44 | 000,000,000 | ---D | C] -- C:\ProgramData\ASUS PowerControl Profiles
[2014.01.10 22:46:30 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Logitech
[2014.01.10 22:44:15 | 000,000,000 | ---D | C] -- C:\Program Files\ASUS
[2014.01.10 22:44:14 | 000,046,152 | ---- | C] (MCCI Corporation) -- C:\Windows\SysWow64\drivers\ASUSFILTER.sys
[2014.01.10 22:40:45 | 000,014,848 | ---- | C] (ASUSTek Computer Inc.) -- C:\Windows\SysWow64\drivers\AiChargerPlus.sys
[2014.01.10 22:40:27 | 000,184,320 | ---- | C] (ASUSTeK) -- C:\Windows\SysWow64\drivers\UpdateHelper.dll
[2014.01.10 22:40:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS
[2014.01.10 22:37:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DevPro
[2014.01.10 22:36:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DevPro
[2014.01.10 22:35:26 | 000,000,000 | ---D | C] -- C:\ProgramData\ASUS
[2014.01.10 22:35:20 | 000,028,672 | ---- | C] (ASUSTek Computer Inc.) -- C:\Windows\SysWow64\AsIO.dll
[2014.01.10 22:35:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ASUS
[2014.01.10 22:35:19 | 001,028,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drivers\MFDLL\MFC42.DLL
[2014.01.10 22:35:19 | 000,929,844 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drivers\MFDLL\MFC42D.DLL
[2014.01.10 22:35:19 | 000,385,100 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drivers\MFDLL\MSVCRTD.DLL
[2014.01.10 22:35:19 | 000,343,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drivers\MFDLL\msvcrt.dll
[2014.01.10 22:35:19 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\drivers\MFDLL
[2014.01.10 22:32:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fraps
[2014.01.10 22:32:49 | 000,000,000 | ---D | C] -- C:\Fraps
[2014.01.10 22:21:59 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gadwin Systems
[2014.01.10 22:21:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Gadwin Systems
[2014.01.10 22:21:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
[2014.01.10 22:21:56 | 000,021,040 | ---- | C] (Safer Networking Limited) -- C:\Windows\SysNative\sdnclean64.exe
[2014.01.10 22:21:55 | 000,000,000 | ---D | C] -- C:\ProgramData\Spybot - Search & Destroy
[2014.01.10 22:21:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Spybot - Search & Destroy 2
[2014.01.10 22:17:41 | 000,025,928 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2014.01.10 22:17:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2014.01.10 22:17:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2014.01.10 22:17:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2014.01.10 22:07:35 | 000,000,000 | ---D | C] -- C:\Qoobox
[2014.01.10 22:07:26 | 000,000,000 | ---D | C] -- C:\Windows\erdnt
[2014.01.10 21:57:55 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\xlive
[2014.01.10 21:57:54 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games for Windows Marketplace
[2014.01.10 21:57:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Games for Windows - LIVE
[2014.01.10 21:51:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
[2014.01.10 21:51:19 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DVDVideoSoft
[2014.01.10 21:51:19 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\DVDVideoSoft
[2014.01.10 21:48:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Ashampoo
[2014.01.10 21:48:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Ashampoo
[2014.01.10 21:47:14 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Process Hacker 2
[2014.01.10 21:47:13 | 000,000,000 | ---D | C] -- C:\Program Files\Process Hacker 2
[2014.01.10 21:16:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ScreenshotCaptor
[2014.01.10 21:16:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ScreenshotCaptor
[2014.01.10 21:16:06 | 000,000,000 | ---D | C] -- C:\ProgramData\DonationCoder
[2014.01.10 21:11:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON
[2014.01.10 21:11:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\epson
[2014.01.10 20:59:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
[2014.01.10 20:59:26 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR
[2014.01.10 20:30:57 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\.technic
[2014.01.10 20:30:40 | 000,312,744 | ---- | C] (Oracle Corporation) -- C:\Windows\SysNative\javaws.exe
[2014.01.10 20:30:38 | 000,189,352 | ---- | C] (Oracle Corporation) -- C:\Windows\SysNative\javaw.exe
[2014.01.10 20:30:38 | 000,189,352 | ---- | C] (Oracle Corporation) -- C:\Windows\SysNative\java.exe
[2014.01.10 20:30:38 | 000,108,968 | ---- | C] (Oracle Corporation) -- C:\Windows\SysNative\WindowsAccessBridge-64.dll
[2014.01.10 20:30:38 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
[2014.01.10 20:30:34 | 000,000,000 | ---D | C] -- C:\Program Files\Java
[2014.01.10 20:29:49 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\appmgmt
[2014.01.10 20:17:36 | 000,388,608 | ---- | C] (Trend Micro Inc.) -- D:\Desktop\HiJackThis204.exe
[2014.01.10 20:17:30 | 000,000,000 | ---D | C] -- D:\Desktop\Tor Browser
[2014.01.10 20:17:30 | 000,000,000 | ---D | C] -- D:\Desktop\Tobias
[2014.01.10 20:17:30 | 000,000,000 | ---D | C] -- D:\Desktop\Minecraft Hexxit Server
[2014.01.10 20:17:30 | 000,000,000 | ---D | C] -- D:\Desktop\backups
[2014.01.10 20:06:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Oracle
[2014.01.10 20:06:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Sun
[2014.01.10 20:05:12 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Synchronization Services
[2014.01.10 20:05:12 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft SQL Server Compact Edition
[2014.01.10 20:05:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Synchronization Services
[2014.01.10 20:05:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
[2014.01.10 20:04:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Visual Studio 2010 Express
[2014.01.10 20:04:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Visual Studio 10.0
[2014.01.10 20:04:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Merge Modules
[2014.01.10 20:03:44 | 000,000,000 | ---D | C] -- C:\Windows\symbols
[2014.01.10 20:03:43 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Visual Studio 10.0
[2014.01.10 20:03:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft SDKs
[2014.01.10 20:03:43 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Help Viewer
[2014.01.10 20:03:33 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH
[2014.01.10 20:02:26 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Desura
[2014.01.10 19:59:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Desura
[2014.01.10 19:59:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Desura
[2014.01.10 19:51:20 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sandboxie
[2014.01.10 19:51:20 | 000,000,000 | ---D | C] -- C:\Program Files\Sandboxie
[2014.01.10 19:48:59 | 000,000,000 | --SD | C] -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.0.1
[2014.01.10 19:48:46 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\OpenOffice 4
[2014.01.10 19:46:46 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\Common Files\EAInstaller
[2014.01.10 19:46:40 | 005,631,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_40.dll
[2014.01.10 19:46:40 | 004,379,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_40.dll
[2014.01.10 19:46:40 | 002,605,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_40.dll
[2014.01.10 19:46:40 | 002,036,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_40.dll
[2014.01.10 19:46:40 | 000,519,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_40.dll
[2014.01.10 19:46:40 | 000,452,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_40.dll
[2014.01.10 19:44:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Electronic Arts
[2014.01.10 19:38:48 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
[2014.01.10 19:27:48 | 002,871,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\explorer.exe
[2014.01.10 19:27:48 | 002,616,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\explorer.exe
[2014.01.10 19:27:47 | 000,465,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMPhoto.dll
[2014.01.10 19:27:47 | 000,417,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMPhoto.dll
[2014.01.10 19:27:46 | 002,565,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\esent.dll
[2014.01.10 19:27:46 | 000,096,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fsutil.exe
[2014.01.10 19:27:46 | 000,027,008 | ---- | C] (Advanced Micro Devices) -- C:\Windows\SysNative\drivers\amdxata.sys
[2014.01.10 19:27:45 | 001,699,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\esent.dll
[2014.01.10 19:27:45 | 000,189,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\storport.sys
[2014.01.10 19:27:45 | 000,107,904 | ---- | C] (Advanced Micro Devices) -- C:\Windows\SysNative\drivers\amdsata.sys
[2014.01.10 19:27:45 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fsutil.exe
[2014.01.10 19:27:44 | 001,424,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsCodecs.dll
[2014.01.10 19:27:43 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\splwow64.exe
[2014.01.10 19:21:58 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner
[2014.01.10 19:17:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Steam
[2014.01.10 19:16:58 | 000,527,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_7.dll
[2014.01.10 19:16:58 | 000,518,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_7.dll
[2014.01.10 19:16:58 | 000,077,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_5.dll
[2014.01.10 19:16:58 | 000,074,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_5.dll
[2014.01.10 19:16:57 | 000,239,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_7.dll
[2014.01.10 19:16:57 | 000,176,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_7.dll
[2014.01.10 19:16:56 | 002,526,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_43.dll
[2014.01.10 19:16:56 | 002,106,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_43.dll
[2014.01.10 19:16:56 | 001,907,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dcsx_43.dll
[2014.01.10 19:16:56 | 001,868,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dcsx_43.dll
[2014.01.10 19:16:55 | 000,276,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx11_43.dll
[2014.01.10 19:16:55 | 000,248,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx11_43.dll
[2014.01.10 19:16:54 | 000,511,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_43.dll
[2014.01.10 19:16:54 | 000,470,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_43.dll
[2014.01.10 19:16:53 | 002,401,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_43.dll
[2014.01.10 19:16:53 | 001,998,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_43.dll
[2014.01.10 19:16:52 | 000,530,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_6.dll
[2014.01.10 19:16:52 | 000,528,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_6.dll
[2014.01.10 19:16:52 | 000,078,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_4.dll
[2014.01.10 19:16:52 | 000,074,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_4.dll
[2014.01.10 19:16:51 | 000,238,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_6.dll
[2014.01.10 19:16:51 | 000,176,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_6.dll
[2014.01.10 19:16:51 | 000,024,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_7.dll
[2014.01.10 19:16:51 | 000,022,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_7.dll
[2014.01.10 19:16:49 | 000,517,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_5.dll
[2014.01.10 19:16:49 | 000,515,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_5.dll
[2014.01.10 19:16:49 | 000,238,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_5.dll
[2014.01.10 19:16:49 | 000,176,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_5.dll
[2014.01.10 19:16:48 | 002,582,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_42.dll
[2014.01.10 19:16:48 | 001,974,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_42.dll
[2014.01.10 19:16:47 | 005,554,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dcsx_42.dll
[2014.01.10 19:16:47 | 005,501,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dcsx_42.dll
[2014.01.10 19:16:46 | 000,285,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx11_42.dll
[2014.01.10 19:16:46 | 000,235,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx11_42.dll
[2014.01.10 19:16:45 | 000,523,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_42.dll
[2014.01.10 19:16:45 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_42.dll
[2014.01.10 19:16:44 | 002,475,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_42.dll
[2014.01.10 19:16:44 | 001,892,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_42.dll
[2014.01.10 19:16:43 | 002,430,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_41.dll
[2014.01.10 19:16:43 | 001,846,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_41.dll
[2014.01.10 19:16:43 | 000,520,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_41.dll
[2014.01.10 19:16:43 | 000,453,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_41.dll
[2014.01.10 19:16:42 | 005,425,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_41.dll
[2014.01.10 19:16:42 | 004,178,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_41.dll
[2014.01.10 19:16:41 | 000,521,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_4.dll
[2014.01.10 19:16:41 | 000,517,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_4.dll
[2014.01.10 19:16:41 | 000,073,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_3.dll
[2014.01.10 19:16:41 | 000,069,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_3.dll
[2014.01.10 19:16:40 | 000,235,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_4.dll
[2014.01.10 19:16:40 | 000,174,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_4.dll
[2014.01.10 19:16:40 | 000,024,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_6.dll
[2014.01.10 19:16:40 | 000,022,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_6.dll
[2014.01.10 19:16:36 | 000,518,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_3.dll
[2014.01.10 19:16:36 | 000,514,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_3.dll
[2014.01.10 19:16:36 | 000,074,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_2.dll
[2014.01.10 19:16:36 | 000,070,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_2.dll
[2014.01.10 19:16:35 | 000,235,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_3.dll
[2014.01.10 19:16:35 | 000,175,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_3.dll
[2014.01.10 19:16:35 | 000,025,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_5.dll
[2014.01.10 19:16:35 | 000,023,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_5.dll
[2014.01.10 19:16:34 | 000,513,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_2.dll
[2014.01.10 19:16:34 | 000,509,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_2.dll
[2014.01.10 19:16:34 | 000,072,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_1.dll
[2014.01.10 19:16:34 | 000,068,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_1.dll
[2014.01.10 19:16:33 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_2.dll
[2014.01.10 19:16:33 | 000,177,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_2.dll
[2014.01.10 19:16:32 | 001,942,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_39.dll
[2014.01.10 19:16:32 | 001,493,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_39.dll
[2014.01.10 19:16:32 | 000,540,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_39.dll
[2014.01.10 19:16:32 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_39.dll
[2014.01.10 19:16:31 | 004,992,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_39.dll
[2014.01.10 19:16:31 | 003,851,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_39.dll
[2014.01.10 19:16:29 | 000,511,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_1.dll
[2014.01.10 19:16:29 | 000,507,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_1.dll
[2014.01.10 19:16:29 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_1.dll
[2014.01.10 19:16:29 | 000,177,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_1.dll
[2014.01.10 19:16:29 | 000,068,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAPOFX1_0.dll
[2014.01.10 19:16:29 | 000,065,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAPOFX1_0.dll
[2014.01.10 19:16:28 | 000,028,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_4.dll
[2014.01.10 19:16:28 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_4.dll
[2014.01.10 19:16:27 | 001,941,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_38.dll
[2014.01.10 19:16:27 | 001,491,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_38.dll
[2014.01.10 19:16:27 | 000,540,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_38.dll
[2014.01.10 19:16:27 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_38.dll
[2014.01.10 19:16:26 | 004,991,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_38.dll
[2014.01.10 19:16:26 | 003,850,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_38.dll
[2014.01.10 19:16:25 | 000,489,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XAudio2_0.dll
[2014.01.10 19:16:25 | 000,479,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XAudio2_0.dll
[2014.01.10 19:16:24 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine3_0.dll
[2014.01.10 19:16:24 | 000,177,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine3_0.dll
[2014.01.10 19:16:24 | 000,028,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_3.dll
[2014.01.10 19:16:24 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_3.dll
[2014.01.10 19:16:22 | 001,860,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_37.dll
[2014.01.10 19:16:22 | 001,420,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_37.dll
[2014.01.10 19:16:22 | 000,529,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_37.dll
[2014.01.10 19:16:22 | 000,462,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_37.dll
[2014.01.10 19:16:21 | 004,910,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DX9_37.dll
[2014.01.10 19:16:21 | 003,786,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DX9_37.dll
[2014.01.10 19:16:21 | 000,411,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_10.dll
[2014.01.10 19:16:21 | 000,267,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_10.dll
[2014.01.10 19:16:19 | 002,006,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_36.dll
[2014.01.10 19:16:19 | 001,374,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_36.dll
[2014.01.10 19:16:19 | 000,508,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_36.dll
[2014.01.10 19:16:19 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_36.dll
[2014.01.10 19:16:18 | 005,081,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_36.dll
[2014.01.10 19:16:18 | 003,734,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_36.dll
[2014.01.10 19:16:16 | 000,411,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_9.dll
[2014.01.10 19:16:16 | 000,267,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_9.dll
[2014.01.10 19:16:15 | 001,985,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_35.dll
[2014.01.10 19:16:15 | 001,358,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_35.dll
[2014.01.10 19:16:15 | 000,508,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_35.dll
[2014.01.10 19:16:15 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_35.dll
[2014.01.10 19:16:14 | 005,073,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_35.dll
[2014.01.10 19:16:14 | 003,727,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_35.dll
[2014.01.10 19:16:13 | 000,409,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_8.dll
[2014.01.10 19:16:13 | 000,266,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_8.dll
[2014.01.10 19:16:13 | 000,021,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\X3DAudio1_2.dll
[2014.01.10 19:16:13 | 000,017,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\X3DAudio1_2.dll
[2014.01.10 19:16:12 | 001,401,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_34.dll
[2014.01.10 19:16:12 | 001,124,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_34.dll
[2014.01.10 19:16:12 | 000,506,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_34.dll
[2014.01.10 19:16:12 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_34.dll
[2014.01.10 19:16:11 | 004,496,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_34.dll
[2014.01.10 19:16:11 | 003,497,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_34.dll
[2014.01.10 19:16:10 | 000,107,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xinput1_3.dll
[2014.01.10 19:16:10 | 000,081,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xinput1_3.dll
[2014.01.10 19:16:09 | 000,403,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_7.dll
[2014.01.10 19:16:09 | 000,261,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_7.dll
[2014.01.10 19:16:08 | 001,400,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\D3DCompiler_33.dll
[2014.01.10 19:16:08 | 001,123,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\D3DCompiler_33.dll
[2014.01.10 19:16:08 | 000,506,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10_33.dll
[2014.01.10 19:16:08 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10_33.dll
[2014.01.10 19:16:07 | 004,494,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_33.dll
[2014.01.10 19:16:07 | 003,495,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_33.dll
[2014.01.10 19:16:05 | 000,393,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_6.dll
[2014.01.10 19:16:05 | 000,255,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_6.dll
[2014.01.10 19:16:04 | 000,390,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_5.dll
[2014.01.10 19:16:04 | 000,251,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_5.dll
[2014.01.10 19:16:03 | 000,469,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx10.dll
[2014.01.10 19:16:03 | 000,440,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx10.dll
[2014.01.10 19:16:02 | 004,398,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_32.dll
[2014.01.10 19:16:02 | 003,426,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_32.dll
[2014.01.10 19:16:01 | 000,364,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_4.dll
[2014.01.10 19:16:01 | 000,237,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_4.dll
[2014.01.10 19:16:01 | 000,017,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\x3daudio1_1.dll
[2014.01.10 19:16:01 | 000,015,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\x3daudio1_1.dll
[2014.01.10 19:16:00 | 003,977,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_31.dll
[2014.01.10 19:16:00 | 002,414,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_31.dll
[2014.01.10 19:15:59 | 000,363,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_3.dll
[2014.01.10 19:15:59 | 000,236,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_3.dll
[2014.01.10 19:15:58 | 000,083,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xinput1_2.dll
[2014.01.10 19:15:58 | 000,062,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xinput1_2.dll
[2014.01.10 19:15:57 | 000,354,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_2.dll
[2014.01.10 19:15:57 | 000,230,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_2.dll
[2014.01.10 19:15:57 | 000,083,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xinput1_1.dll
[2014.01.10 19:15:57 | 000,062,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xinput1_1.dll
[2014.01.10 19:15:56 | 000,352,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_1.dll
[2014.01.10 19:15:56 | 000,229,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_1.dll
[2014.01.10 19:15:54 | 003,927,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_30.dll
[2014.01.10 19:15:54 | 002,388,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_30.dll
[2014.01.10 19:15:53 | 000,355,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xactengine2_0.dll
[2014.01.10 19:15:53 | 000,230,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\xactengine2_0.dll
[2014.01.10 19:15:53 | 000,016,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\x3daudio1_0.dll
[2014.01.10 19:15:53 | 000,014,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\x3daudio1_0.dll
[2014.01.10 19:15:52 | 003,830,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_29.dll
[2014.01.10 19:15:52 | 002,332,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_29.dll
[2014.01.10 19:15:51 | 003,815,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_28.dll
[2014.01.10 19:15:51 | 002,323,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_28.dll
[2014.01.10 19:15:50 | 003,807,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_27.dll
[2014.01.10 19:15:50 | 003,767,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_26.dll
[2014.01.10 19:15:50 | 002,319,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_27.dll
[2014.01.10 19:15:50 | 002,297,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_26.dll
[2014.01.10 19:15:49 | 003,823,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_25.dll
[2014.01.10 19:15:49 | 003,544,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3dx9_24.dll
[2014.01.10 19:15:49 | 002,337,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_25.dll
[2014.01.10 19:15:49 | 002,222,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3dx9_24.dll
[2014.01.10 19:15:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Origin
[2014.01.10 19:13:16 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\directx
[2014.01.10 19:10:37 | 000,000,000 | ---D | C] -- C:\Windows\Migration
[2014.01.10 19:09:42 | 000,028,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\IEUDINIT.EXE
[2014.01.10 19:09:22 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Maintenance Service
[2014.01.10 18:42:24 | 000,000,000 | ---D | C] -- C:\ProgramData\ATI
[2014.01.10 18:26:57 | 012,625,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmploc.DLL
[2014.01.10 18:26:57 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmploc.DLL
[2014.01.10 18:26:56 | 014,631,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wmp.dll
[2014.01.10 18:26:56 | 011,410,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wmp.dll
[2014.01.10 17:54:39 | 000,002,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\wdf01000.sys.mui
[2014.01.10 17:43:58 | 001,054,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe
[2014.01.10 17:43:58 | 000,719,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll
[2014.01.10 17:43:58 | 000,226,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\elshyph.dll
[2014.01.10 17:43:58 | 000,185,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\elshyph.dll
[2014.01.10 17:43:58 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2014.01.10 17:43:58 | 000,138,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wextract.exe
[2014.01.10 17:43:58 | 000,082,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inseng.dll
[2014.01.10 17:43:58 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RegisterIEPKEYs.exe
[2014.01.10 17:43:57 | 001,441,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2014.01.10 17:43:57 | 001,400,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dat
[2014.01.10 17:43:57 | 000,690,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2014.01.10 17:43:57 | 000,629,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
[2014.01.10 17:43:57 | 000,391,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2014.01.10 17:43:57 | 000,361,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec
[2014.01.10 17:43:57 | 000,232,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll
[2014.01.10 17:43:57 | 000,150,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iexpress.exe
[2014.01.10 17:43:57 | 000,137,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2014.01.10 17:43:57 | 000,125,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\occache.dll
[2014.01.10 17:43:57 | 000,117,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iepeers.dll
[2014.01.10 17:43:57 | 000,110,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\IEAdvpack.dll
[2014.01.10 17:43:57 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesysprep.dll
[2014.01.10 17:43:57 | 000,079,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2014.01.10 17:43:57 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SetIEInstalledDate.exe
[2014.01.10 17:43:57 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\icardie.dll
[2014.01.10 17:43:57 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tdc.ocx
[2014.01.10 17:43:57 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2014.01.10 17:43:57 | 000,057,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pngfilt.dll
[2014.01.10 17:43:57 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmler.dll
[2014.01.10 17:43:57 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2014.01.10 17:43:57 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\licmgr10.dll
[2014.01.10 17:43:57 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedssync.exe
[2014.01.10 17:43:56 | 001,509,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2014.01.10 17:43:56 | 001,400,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dat
[2014.01.10 17:43:56 | 000,905,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll
[2014.01.10 17:43:56 | 000,855,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2014.01.10 17:43:56 | 000,762,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
[2014.01.10 17:43:56 | 000,603,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2014.01.10 17:43:56 | 000,599,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2014.01.10 17:43:56 | 000,452,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
[2014.01.10 17:43:56 | 000,441,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\html.iec
[2014.01.10 17:43:56 | 000,281,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
[2014.01.10 17:43:56 | 000,235,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\url.dll
[2014.01.10 17:43:56 | 000,216,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msls31.dll
[2014.01.10 17:43:56 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll
[2014.01.10 17:43:56 | 000,173,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2014.01.10 17:43:56 | 000,167,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iexpress.exe
[2014.01.10 17:43:56 | 000,149,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\occache.dll
[2014.01.10 17:43:56 | 000,144,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wextract.exe
[2014.01.10 17:43:56 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iepeers.dll
[2014.01.10 17:43:56 | 000,135,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\IEAdvpack.dll
[2014.01.10 17:43:56 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inseng.dll
[2014.01.10 17:43:56 | 000,097,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2014.01.10 17:43:56 | 000,089,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RegisterIEPKEYs.exe
[2014.01.10 17:43:56 | 000,081,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\icardie.dll
[2014.01.10 17:43:56 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
[2014.01.10 17:43:56 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pngfilt.dll
[2014.01.10 17:43:56 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2014.01.10 17:43:56 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imgutil.dll
[2014.01.10 17:43:56 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
[2014.01.10 17:43:56 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\licmgr10.dll
[2014.01.10 17:43:56 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshta.exe
[2014.01.10 17:43:56 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeedssync.exe
[2014.01.10 17:43:55 | 003,959,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2014.01.10 17:43:55 | 000,526,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2014.01.10 17:43:55 | 000,136,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesysprep.dll
[2014.01.10 17:43:55 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SetIEInstalledDate.exe
[2014.01.10 17:43:55 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tdc.ocx
[2014.01.10 17:43:55 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmler.dll
[2014.01.10 17:36:19 | 000,015,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RdpGroupPolicyExtension.dll
[2014.01.10 17:36:19 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbRedirectionGroupPolicyExtension.dll
[2014.01.10 17:36:19 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbRedirectionGroupPolicyControl.exe
[2014.01.10 17:36:19 | 000,003,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\de-DE\tsusbflt.sys.mui
[2014.01.10 17:36:18 | 000,322,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aaclient.dll
[2014.01.10 17:36:18 | 000,269,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\aaclient.dll
[2014.01.10 17:36:18 | 000,192,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdpendp_winip.dll
[2014.01.10 17:36:18 | 000,057,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys
[2014.01.10 17:36:18 | 000,054,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MsRdpWebAccess.dll
[2014.01.10 17:36:18 | 000,046,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MsRdpWebAccess.dll
[2014.01.10 17:36:18 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tsgqec.dll
[2014.01.10 17:36:18 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsUsbGDCoInstaller.dll
[2014.01.10 17:36:18 | 000,037,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tsgqec.dll
[2014.01.10 17:36:18 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\TsUsbGD.sys
[2014.01.10 17:36:18 | 000,019,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\rdpvideominiport.sys
[2014.01.10 17:36:18 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wksprtPS.dll
[2014.01.10 17:36:18 | 000,016,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wksprtPS.dll
[2014.01.10 17:36:17 | 005,773,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstscax.dll
[2014.01.10 17:36:17 | 004,916,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstscax.dll
[2014.01.10 17:36:17 | 003,174,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcorets.dll
[2014.01.10 17:36:17 | 001,123,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstsc.exe
[2014.01.10 17:36:17 | 001,048,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstsc.exe
[2014.01.10 17:36:17 | 000,384,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wksprt.exe
[2014.01.10 17:36:17 | 000,243,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpudd.dll
[2014.01.10 17:36:17 | 000,228,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpendp_winip.dll
[2014.01.10 17:36:17 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TSWbPrxy.exe
[2014.01.10 17:29:39 | 000,016,896 | ---- | C] (ASUS) -- C:\Windows\AsTaskSched.dll
[2014.01.10 17:29:36 | 000,294,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\browserchoice.exe
[2014.01.10 17:23:14 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\RTCOM
[2014.01.10 17:23:14 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek
[2014.01.10 17:22:55 | 002,103,040 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\WavesGUILib64.dll
[2014.01.10 17:22:55 | 001,361,336 | ---- | C] (TOSHIBA Corporation) -- C:\Windows\SysNative\tosade.dll
[2014.01.10 17:22:55 | 000,871,856 | ---- | C] (TOSHIBA Corporation) -- C:\Windows\SysNative\tossaeapo64.dll
[2014.01.10 17:22:55 | 000,836,544 | ---- | C] (TOSHIBA Corporation) -- C:\Windows\SysNative\tadefxapo264.dll
[2014.01.10 17:22:55 | 000,720,128 | ---- | C] (DTS, Inc.) -- C:\Windows\SysNative\sltech64.dll
[2014.01.10 17:22:55 | 000,582,056 | ---- | C] (TOSHIBA Corporation) -- C:\Windows\SysNative\tosasfapo64.dll
[2014.01.10 17:22:55 | 000,518,896 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSX64.dll
[2014.01.10 17:22:55 | 000,244,480 | ---- | C] (TODO: <Company name>) -- C:\Windows\SysNative\slprp64.dll
[2014.01.10 17:22:55 | 000,211,184 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSH64.dll
[2014.01.10 17:22:55 | 000,198,896 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSHP64.dll
[2014.01.10 17:22:55 | 000,162,224 | ---- | C] (TOSHIBA Corporation) -- C:\Windows\SysNative\toseaeapo64.dll
[2014.01.10 17:22:55 | 000,155,888 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSWOW64.dll
[2014.01.10 17:22:55 | 000,148,416 | ---- | C] (TOSHIBA Corporation) -- C:\Windows\SysNative\tadefxapo.dll
[2014.01.10 17:22:55 | 000,065,944 | ---- | C] (TOSHIBA CORPORATION.) -- C:\Windows\SysNative\tepeqapo64.dll
[2014.01.10 17:22:54 | 004,848,920 | ---- | C] (ASUSTeKcomputer.Inc Inc) -- C:\Windows\SysNative\RTKSMlfx.dll
[2014.01.10 17:22:54 | 002,809,048 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtPgEx64.dll
[2014.01.10 17:22:54 | 002,585,304 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkAPO64.dll
[2014.01.10 17:22:54 | 001,662,024 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RTSnMg64.cpl
[2014.01.10 17:22:54 | 001,019,136 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\slcnt64.dll
[2014.01.10 17:22:54 | 001,005,784 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkApi64.dll
[2014.01.10 17:22:54 | 000,947,248 | ---- | C] (Sony Corporation) -- C:\Windows\SysNative\SFSS_APO.dll
[2014.01.10 17:22:54 | 000,899,328 | ---- | C] (DTS, Inc.) -- C:\Windows\SysNative\sl3apo64.dll
[2014.01.10 17:22:54 | 000,818,008 | ---- | C] (ASUSTeKcomputer.Inc Inc) -- C:\Windows\SysNative\RTKSMSettingsIPC.dll
[2014.01.10 17:22:54 | 000,617,176 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtDataProc64.dll
[2014.01.10 17:22:54 | 000,375,128 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEP64A.dll
[2014.01.10 17:22:54 | 000,331,880 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtlCPAPI64.dll
[2014.01.10 17:22:54 | 000,221,024 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SFNHK64.dll
[2014.01.10 17:22:54 | 000,204,120 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEED64A.dll
[2014.01.10 17:22:54 | 000,149,608 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkCfg64.dll
[2014.01.10 17:22:54 | 000,101,208 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEL64A.dll
[2014.01.10 17:22:54 | 000,081,248 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SFCOM64.dll
[2014.01.10 17:22:54 | 000,078,688 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SFAPO64.dll
[2014.01.10 17:22:54 | 000,078,680 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEG64A.dll
[2014.01.10 17:22:54 | 000,074,064 | ---- | C] (Virage Logic Corporation / Sonic Focus) -- C:\Windows\SysWow64\SFCOM.dll
[2014.01.10 17:22:54 | 000,014,952 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RtkCoLDR64.dll
[2014.01.10 17:22:53 | 031,488,000 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RCoRes64.dat
[2014.01.10 17:22:53 | 007,164,176 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEP64A.dll
[2014.01.10 17:22:53 | 001,284,680 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RTCOM64.dll
[2014.01.10 17:22:53 | 000,906,800 | ---- | C] (Sony Corporation) -- C:\Windows\SysNative\MISS_APO.dll
[2014.01.10 17:22:53 | 000,434,960 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EED64A.dll
[2014.01.10 17:22:53 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DHT64.dll
[2014.01.10 17:22:53 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DAA64.dll
[2014.01.10 17:22:53 | 000,148,184 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\SysNative\RCoInstII64.dll
[2014.01.10 17:22:53 | 000,141,584 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEL64A.dll
[2014.01.10 17:22:53 | 000,124,176 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEA64A.dll
[2014.01.10 17:22:53 | 000,075,024 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEG64A.dll
[2014.01.10 17:22:52 | 027,518,208 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioVnA64.dll
[2014.01.10 17:22:52 | 014,048,512 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioRealtek64.dll
[2014.01.10 17:22:52 | 003,610,880 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioVnN64.dll
[2014.01.10 17:22:52 | 002,032,896 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioEQ64.dll
[2014.01.10 17:22:52 | 001,916,672 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioRealtek264.dll
[2014.01.10 17:22:52 | 001,325,312 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO5064.dll
[2014.01.10 17:22:52 | 001,084,160 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO4064.dll
[2014.01.10 17:22:52 | 000,922,880 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPOShell64.dll
[2014.01.10 17:22:52 | 000,907,008 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxVoiceAPO2064.dll
[2014.01.10 17:22:52 | 000,765,184 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxSpeechAPO64.dll
[2014.01.10 17:22:52 | 000,662,784 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxVolumeSDAPO.dll
[2014.01.10 17:22:51 | 000,663,296 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO30.dll
[2014.01.10 17:22:51 | 000,603,984 | ---- | C] (Knowles Acoustics ) -- C:\Windows\SysNative\KAAPORT64.dll
[2014.01.10 17:22:51 | 000,318,808 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO20.dll
[2014.01.10 17:22:50 | 002,743,328 | ---- | C] (Fortemedia Corporation) -- C:\Windows\SysNative\FMAPO64.dll
[2014.01.10 17:22:50 | 001,756,264 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSS2SpeakerDLL64.dll
[2014.01.10 17:22:50 | 001,568,360 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSS2HeadphoneDLL64.dll
[2014.01.10 17:22:50 | 001,486,952 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSBoostDLL64.dll
[2014.01.10 17:22:50 | 000,728,680 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSBassEnhancementDLL64.dll
[2014.01.10 17:22:50 | 000,712,296 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSSymmetryDLL64.dll
[2014.01.10 17:22:50 | 000,693,352 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSVoiceClarityDLL64.dll
[2014.01.10 17:22:50 | 000,501,192 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSU2PLFX64.dll
[2014.01.10 17:22:50 | 000,491,112 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSNeoPCDLL64.dll
[2014.01.10 17:22:50 | 000,487,368 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSU2PGFX64.dll
[2014.01.10 17:22:50 | 000,432,744 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSLimiterDLL64.dll
[2014.01.10 17:22:50 | 000,428,648 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGainCompensatorDLL64.dll
[2014.01.10 17:22:50 | 000,415,688 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSU2PREC64.dll
[2014.01.10 17:22:50 | 000,242,792 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSLFXAPO64.dll
[2014.01.10 17:22:50 | 000,242,792 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGFXAPO64.dll
[2014.01.10 17:22:50 | 000,241,768 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGFXAPONS64.dll
[2014.01.10 17:22:49 | 006,219,096 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DDPP64A.dll
[2014.01.10 17:22:49 | 001,908,568 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DDPD64A.dll
[2014.01.10 17:22:49 | 000,312,152 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DDPO64A.dll
[2014.01.10 17:22:49 | 000,261,464 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\DDPA64.dll
[2014.01.10 17:22:49 | 000,208,072 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\SysNative\AERTAC64.dll
[2014.01.10 17:22:49 | 000,113,576 | ---- | C] (Real Sound Lab SIA) -- C:\Windows\SysNative\CONEQMSAPOGUILibrary.dll
[2014.01.10 17:22:49 | 000,108,640 | ---- | C] (Andrea Electronics Corporation) -- C:\Windows\SysNative\AERTAR64.dll
[2014.01.10 17:22:45 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\Temp
[2014.01.10 17:22:44 | 002,080,472 | ---- | C] (Realtek Semiconductor Corp.) -- C:\Windows\RtlExUpd.dll
[2014.01.10 17:22:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\InstallShield
[2014.01.10 17:17:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2014.01.10 17:16:26 | 000,744,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFx.dll
[2014.01.10 17:16:26 | 000,229,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFHost.exe
[2014.01.10 17:16:26 | 000,194,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFPlatform.dll
[2014.01.10 17:16:26 | 000,045,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUDFCoinstaller.dll
[2014.01.10 17:10:44 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\MRT
[2014.01.10 17:10:08 | 002,776,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msmpeg2vdec.dll
[2014.01.10 17:10:08 | 002,284,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msmpeg2vdec.dll
[2014.01.10 17:10:08 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\UIAnimation.dll
[2014.01.10 17:10:08 | 000,187,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\UIAnimation.dll
[2014.01.10 17:10:06 | 002,565,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10warp.dll
[2014.01.10 17:10:06 | 001,682,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsPrint.dll
[2014.01.10 17:10:06 | 001,238,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10.dll
[2014.01.10 17:10:06 | 001,158,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsPrint.dll
[2014.01.10 17:10:06 | 000,648,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10level9.dll
[2014.01.10 17:10:06 | 000,522,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsGdiConverter.dll
[2014.01.10 17:10:06 | 000,364,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsGdiConverter.dll
[2014.01.10 17:10:06 | 000,363,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxgi.dll
[2014.01.10 17:10:06 | 000,333,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10_1core.dll
[2014.01.10 17:10:06 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10core.dll
[2014.01.10 17:10:06 | 000,194,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10_1.dll
[2014.01.10 17:10:06 | 000,010,752 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-advapi32-l1-1-0.dll
[2014.01.10 17:10:06 | 000,010,752 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-advapi32-l1-1-0.dll
[2014.01.10 17:10:06 | 000,009,728 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
[2014.01.10 17:10:06 | 000,009,728 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-shlwapi-l1-1-0.dll
[2014.01.10 17:10:06 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
[2014.01.10 17:10:06 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-shlwapi-l2-1-0.dll
[2014.01.10 17:10:06 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-ole32-l1-1-0.dll
[2014.01.10 17:10:06 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-ole32-l1-1-0.dll
[2014.01.10 17:10:06 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-user32-l1-1-0.dll
[2014.01.10 17:10:06 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-user32-l1-1-0.dll
[2014.01.10 17:10:06 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-advapi32-l2-1-0.dll
[2014.01.10 17:10:06 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-advapi32-l2-1-0.dll
[2014.01.10 17:10:06 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-version-l1-1-0.dll
[2014.01.10 17:10:06 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-version-l1-1-0.dll
[2014.01.10 17:10:06 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-shell32-l1-1-0.dll
[2014.01.10 17:10:06 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-shell32-l1-1-0.dll
[2014.01.10 17:10:06 | 000,002,560 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-normaliz-l1-1-0.dll
[2014.01.10 17:10:06 | 000,002,560 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-normaliz-l1-1-0.dll
[2014.01.10 17:10:05 | 003,928,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d2d1.dll
[2014.01.10 17:10:05 | 001,643,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DWrite.dll
[2014.01.10 17:10:05 | 000,245,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsCodecsExt.dll
[2014.01.10 17:09:41 | 000,023,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\fs_rec.sys
[2014.01.10 17:08:36 | 000,692,616 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2014.01.10 17:08:36 | 000,071,048 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2014.01.10 17:08:36 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Macromed
[2014.01.10 17:08:35 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\Macromed
         
__________________


Geändert von ghostertaker (15.01.2014 um 15:58 Uhr)

Alt 15.01.2014, 15:29   #18
ghostertaker
 
OTL.exe hängt sich bei scanning Firefox settings auf(habe schon 30 min gewartet) - Standard

OTL.exe hängt sich bei scanning Firefox settings auf(habe schon 30 min gewartet)



OTL log Teil 2:
Code:
ATTFilter
[2014.01.10 17:08:02 | 005,549,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe
[2014.01.10 17:08:01 | 003,969,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntkrnlpa.exe
[2014.01.10 17:08:01 | 003,914,176 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntoskrnl.exe
[2014.01.10 17:08:01 | 001,732,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntdll.dll
[2014.01.10 17:08:01 | 000,878,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\advapi32.dll
[2014.01.10 17:08:01 | 000,859,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tdh.dll
[2014.01.10 17:08:01 | 000,619,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tdh.dll
[2014.01.10 17:08:01 | 000,243,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64.dll
[2014.01.10 17:08:00 | 000,025,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\setup16.exe
[2014.01.10 17:08:00 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntvdm64.dll
[2014.01.10 17:08:00 | 000,007,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\instnm.exe
[2014.01.10 17:08:00 | 000,005,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wow32.dll
[2014.01.10 17:08:00 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\user.exe
[2014.01.10 17:07:31 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AMD AVT
[2014.01.10 17:07:29 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AMD
[2014.01.10 17:07:28 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\ATI Technologies
[2014.01.10 17:07:19 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
[2014.01.10 17:07:08 | 000,000,000 | ---D | C] -- C:\ProgramData\AMD
[2014.01.10 17:07:02 | 002,746,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gameux.dll
[2014.01.10 17:07:02 | 002,576,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\gameux.dll
[2014.01.10 17:07:02 | 000,441,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Wpc.dll
[2014.01.10 17:07:02 | 000,308,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Wpc.dll
[2014.01.10 17:07:02 | 000,046,592 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\fpb.rs
[2014.01.10 17:07:02 | 000,046,592 | ---- | C] (Microsoft) -- C:\Windows\SysNative\fpb.rs
[2014.01.10 17:07:02 | 000,045,568 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\oflc-nz.rs
[2014.01.10 17:07:02 | 000,045,568 | ---- | C] (Microsoft) -- C:\Windows\SysNative\oflc-nz.rs
[2014.01.10 17:07:02 | 000,044,544 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\pegibbfc.rs
[2014.01.10 17:07:02 | 000,044,544 | ---- | C] (Microsoft) -- C:\Windows\SysNative\pegibbfc.rs
[2014.01.10 17:07:02 | 000,043,520 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\csrr.rs
[2014.01.10 17:07:02 | 000,043,520 | ---- | C] (Microsoft) -- C:\Windows\SysNative\csrr.rs
[2014.01.10 17:07:02 | 000,040,960 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\cob-au.rs
[2014.01.10 17:07:02 | 000,040,960 | ---- | C] (Microsoft) -- C:\Windows\SysNative\cob-au.rs
[2014.01.10 17:07:02 | 000,030,720 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\usk.rs
[2014.01.10 17:07:02 | 000,030,720 | ---- | C] (Microsoft) -- C:\Windows\SysNative\usk.rs
[2014.01.10 17:07:02 | 000,021,504 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\grb.rs
[2014.01.10 17:07:02 | 000,021,504 | ---- | C] (Microsoft) -- C:\Windows\SysNative\grb.rs
[2014.01.10 17:07:02 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\pegi-pt.rs
[2014.01.10 17:07:02 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysNative\pegi-pt.rs
[2014.01.10 17:07:02 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\pegi.rs
[2014.01.10 17:07:02 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysNative\pegi.rs
[2014.01.10 17:07:02 | 000,015,360 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\djctq.rs
[2014.01.10 17:07:02 | 000,015,360 | ---- | C] (Microsoft) -- C:\Windows\SysNative\djctq.rs
[2014.01.10 17:07:01 | 000,055,296 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\cero.rs
[2014.01.10 17:07:01 | 000,055,296 | ---- | C] (Microsoft) -- C:\Windows\SysNative\cero.rs
[2014.01.10 17:07:01 | 000,051,712 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\esrb.rs
[2014.01.10 17:07:01 | 000,051,712 | ---- | C] (Microsoft) -- C:\Windows\SysNative\esrb.rs
[2014.01.10 17:07:01 | 000,023,552 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\oflc.rs
[2014.01.10 17:07:01 | 000,023,552 | ---- | C] (Microsoft) -- C:\Windows\SysNative\oflc.rs
[2014.01.10 17:07:01 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysWow64\pegi-fi.rs
[2014.01.10 17:07:01 | 000,020,480 | ---- | C] (Microsoft) -- C:\Windows\SysNative\pegi-fi.rs
[2014.01.10 17:06:55 | 000,000,000 | ---D | C] -- C:\Program Files\AMD
[2014.01.10 17:06:43 | 000,111,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\consent.exe
[2014.01.10 17:06:38 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ATI Technologies
[2014.01.10 17:06:36 | 001,133,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cdosys.dll
[2014.01.10 17:06:36 | 000,805,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cdosys.dll
[2014.01.10 17:06:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ATI Technologies
[2014.01.10 17:06:10 | 001,887,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d11.dll
[2014.01.10 17:06:10 | 001,505,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d11.dll
[2014.01.10 17:06:07 | 000,362,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64win.dll
[2014.01.10 17:06:07 | 000,016,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntvdm64.dll
[2014.01.10 17:06:07 | 000,013,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wow64cpu.dll
[2014.01.10 17:05:55 | 001,118,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sbe.dll
[2014.01.10 17:05:55 | 000,961,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\CPFilters.dll
[2014.01.10 17:05:55 | 000,850,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\sbe.dll
[2014.01.10 17:05:55 | 000,642,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\CPFilters.dll
[2014.01.10 17:05:55 | 000,259,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mpg2splt.ax
[2014.01.10 17:05:55 | 000,199,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mpg2splt.ax
[2014.01.10 17:05:51 | 000,000,000 | --SD | C] -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.0.0
[2014.01.10 17:05:51 | 000,000,000 | R--D | C] -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenOffice.org 3.1
[2014.01.10 17:05:51 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zattoo4
[2014.01.10 17:05:51 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
[2014.01.10 17:05:51 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ventrilo
[2014.01.10 17:05:51 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker
[2014.01.10 17:05:51 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
[2014.01.10 17:05:51 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
[2014.01.10 17:05:51 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Sumotori Full Version
[2014.01.10 17:05:51 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start
[2014.01.10 17:05:51 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SIM MAX
[2014.01.10 17:05:51 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\San Andreas Multiplayer
[2014.01.10 17:05:51 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner
[2014.01.10 17:05:51 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome
[2014.01.10 17:05:51 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
[2014.01.10 17:05:51 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Gadwin Systems
[2014.01.10 17:05:51 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Freemake
[2014.01.10 17:05:51 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Forgotten Hope 2
[2014.01.10 17:05:51 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FFOLKES Unlocks
[2014.01.10 17:05:51 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EPSON
[2014.01.10 17:05:51 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Driver Cleaner Pro
[2014.01.10 17:05:51 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DirectX Buster
[2014.01.10 17:05:51 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CCleaner
[2014.01.10 17:05:51 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BF2SP64
[2014.01.10 17:05:51 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ATITool
[2014.01.10 17:05:51 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASUS
[2014.01.10 17:05:51 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ashampoo
[2014.01.10 17:05:51 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AMD
[2014.01.10 17:05:48 | 000,030,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cryptdlg.dll
[2014.01.10 17:05:48 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cryptdlg.dll
[2014.01.10 17:05:44 | 000,246,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netcorehc.dll
[2014.01.10 17:05:44 | 000,216,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncsi.dll
[2014.01.10 17:05:44 | 000,175,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netcorehc.dll
[2014.01.10 17:05:44 | 000,156,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ncsi.dll
[2014.01.10 17:05:44 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netevent.dll
[2014.01.10 17:05:44 | 000,018,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netevent.dll
[2014.01.10 17:05:39 | 001,192,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\certutil.exe
[2014.01.10 17:05:38 | 000,903,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\certutil.exe
[2014.01.10 17:05:38 | 000,052,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\certenc.dll
[2014.01.10 17:05:38 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\certenc.dll
[2014.01.10 17:05:34 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\shdocvw.dll
[2014.01.10 17:05:31 | 000,509,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntshrui.dll
[2014.01.10 17:05:29 | 001,930,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\authui.dll
[2014.01.10 17:05:29 | 001,796,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\authui.dll
[2014.01.10 17:05:29 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\credui.dll
[2014.01.10 17:05:29 | 000,190,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SmartcardCredentialProvider.dll
[2014.01.10 17:05:29 | 000,152,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SmartcardCredentialProvider.dll
[2014.01.10 17:05:29 | 000,000,000 | R--D | C] -- C:\Users\Tobias\SkyDrive
[2014.01.10 17:05:29 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Tracing
[2014.01.10 17:05:25 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msxml3r.dll
[2014.01.10 17:05:25 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msxml3r.dll
[2014.01.10 17:05:11 | 001,161,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kernel32.dll
[2014.01.10 17:05:11 | 000,424,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KernelBase.dll
[2014.01.10 17:05:10 | 000,338,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\conhost.exe
[2014.01.10 17:05:10 | 000,215,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winsrv.dll
[2014.01.10 17:05:10 | 000,112,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\smss.exe
[2014.01.10 17:05:10 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\csrsrv.dll
[2014.01.10 17:05:10 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-security-base-l1-1-0.dll
[2014.01.10 17:05:10 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-file-l1-1-0.dll
[2014.01.10 17:05:10 | 000,005,120 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-file-l1-1-0.dll
[2014.01.10 17:05:10 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-threadpool-l1-1-0.dll
[2014.01.10 17:05:10 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processthreads-l1-1-0.dll
[2014.01.10 17:05:10 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-processthreads-l1-1-0.dll
[2014.01.10 17:05:10 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-sysinfo-l1-1-0.dll
[2014.01.10 17:05:10 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-sysinfo-l1-1-0.dll
[2014.01.10 17:05:10 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-synch-l1-1-0.dll
[2014.01.10 17:05:10 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-synch-l1-1-0.dll
[2014.01.10 17:05:10 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-misc-l1-1-0.dll
[2014.01.10 17:05:10 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localregistry-l1-1-0.dll
[2014.01.10 17:05:10 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-localregistry-l1-1-0.dll
[2014.01.10 17:05:10 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-rtlsupport-l1-1-0.dll
[2014.01.10 17:05:10 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-processenvironment-l1-1-0.dll
[2014.01.10 17:05:10 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-processenvironment-l1-1-0.dll
[2014.01.10 17:05:10 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-namedpipe-l1-1-0.dll
[2014.01.10 17:05:10 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-namedpipe-l1-1-0.dll
[2014.01.10 17:05:10 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-misc-l1-1-0.dll
[2014.01.10 17:05:10 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-memory-l1-1-0.dll
[2014.01.10 17:05:10 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-memory-l1-1-0.dll
[2014.01.10 17:05:10 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-libraryloader-l1-1-0.dll
[2014.01.10 17:05:10 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-libraryloader-l1-1-0.dll
[2014.01.10 17:05:10 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-interlocked-l1-1-0.dll
[2014.01.10 17:05:10 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-heap-l1-1-0.dll
[2014.01.10 17:05:10 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-heap-l1-1-0.dll
[2014.01.10 17:05:10 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-string-l1-1-0.dll
[2014.01.10 17:05:10 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-string-l1-1-0.dll
[2014.01.10 17:05:10 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-rtlsupport-l1-1-0.dll
[2014.01.10 17:05:10 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-profile-l1-1-0.dll
[2014.01.10 17:05:10 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-profile-l1-1-0.dll
[2014.01.10 17:05:10 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-io-l1-1-0.dll
[2014.01.10 17:05:10 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-io-l1-1-0.dll
[2014.01.10 17:05:10 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-interlocked-l1-1-0.dll
[2014.01.10 17:05:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\apisetschema.dll
[2014.01.10 17:05:09 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\apisetschema.dll
[2014.01.10 17:05:09 | 000,006,144 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-security-base-l1-1-0.dll
[2014.01.10 17:05:09 | 000,004,608 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-threadpool-l1-1-0.dll
[2014.01.10 17:05:09 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-localization-l1-1-0.dll
[2014.01.10 17:05:09 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-localization-l1-1-0.dll
[2014.01.10 17:05:09 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-xstate-l1-1-0.dll
[2014.01.10 17:05:09 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-xstate-l1-1-0.dll
[2014.01.10 17:05:09 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-util-l1-1-0.dll
[2014.01.10 17:05:09 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-util-l1-1-0.dll
[2014.01.10 17:05:09 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-handle-l1-1-0.dll
[2014.01.10 17:05:09 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-handle-l1-1-0.dll
[2014.01.10 17:05:09 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-fibers-l1-1-0.dll
[2014.01.10 17:05:09 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-fibers-l1-1-0.dll
[2014.01.10 17:05:09 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-errorhandling-l1-1-0.dll
[2014.01.10 17:05:09 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-errorhandling-l1-1-0.dll
[2014.01.10 17:05:09 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-delayload-l1-1-0.dll
[2014.01.10 17:05:09 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-delayload-l1-1-0.dll
[2014.01.10 17:05:09 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-debug-l1-1-0.dll
[2014.01.10 17:05:09 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-debug-l1-1-0.dll
[2014.01.10 17:05:09 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-datetime-l1-1-0.dll
[2014.01.10 17:05:09 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-datetime-l1-1-0.dll
[2014.01.10 17:05:09 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-core-console-l1-1-0.dll
[2014.01.10 17:05:09 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-core-console-l1-1-0.dll
[2014.01.10 17:05:01 | 000,054,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\WdfLdr.sys
[2014.01.10 17:05:01 | 000,009,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Wdfres.dll
[2014.01.10 17:05:00 | 001,395,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfc42.dll
[2014.01.10 17:05:00 | 001,359,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfc42u.dll
[2014.01.10 17:05:00 | 001,164,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc42u.dll
[2014.01.10 17:05:00 | 001,137,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfc42.dll
[2014.01.10 17:04:59 | 000,245,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\OxpsConverter.exe
[2014.01.10 17:04:55 | 001,447,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
[2014.01.10 17:04:55 | 000,307,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncrypt.dll
[2014.01.10 17:04:55 | 000,135,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspicli.dll
[2014.01.10 17:04:55 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\sspisrv.dll
[2014.01.10 17:04:55 | 000,028,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\secur32.dll
[2014.01.10 17:04:52 | 000,224,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wintrust.dll
[2014.01.10 17:04:47 | 001,474,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\crypt32.dll
[2014.01.10 17:04:47 | 000,139,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cryptnet.dll
[2014.01.10 17:04:42 | 001,888,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMVDECOD.DLL
[2014.01.10 17:04:42 | 001,620,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVDECOD.DLL
[2014.01.10 17:04:41 | 000,515,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\timedate.cpl
[2014.01.10 17:04:41 | 000,478,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\timedate.cpl
[2014.01.10 17:04:40 | 000,633,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\comctl32.dll
[2014.01.10 17:04:40 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netapi32.dll
[2014.01.10 17:04:40 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\browcli.dll
[2014.01.10 17:04:40 | 000,041,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\browcli.dll
[2014.01.10 17:04:38 | 000,395,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\webio.dll
[2014.01.10 17:04:38 | 000,314,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\webio.dll
[2014.01.10 17:04:37 | 000,288,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\FWPKCLNT.SYS
[2014.01.10 17:04:37 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\World in Conflict
[2014.01.10 17:04:37 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Witcher 2
[2014.01.10 17:04:37 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Visual Studio 2010
[2014.01.10 17:04:37 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Ubisoft
[2014.01.10 17:04:36 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\TV Jukebox
[2014.01.10 17:04:35 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\The War Z
[2014.01.10 17:04:35 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\temp
[2014.01.10 17:04:35 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Take On Helicopters Demo
[2014.01.10 17:04:35 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Stronghold Legends
[2014.01.10 17:04:35 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Stronghold Crusader
[2014.01.10 17:04:35 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Stronghold 3
[2014.01.10 17:04:35 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Stronghold 2
[2014.01.10 17:04:35 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\StreamTransport
[2014.01.10 17:04:35 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Square Enix
[2014.01.10 17:04:35 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Spiele
[2014.01.10 17:04:35 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Sniper - Ghost Warrior
[2014.01.10 17:04:35 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Shiner
[2014.01.10 17:04:34 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wwanprotdim.dll
[2014.01.10 17:04:34 | 000,000,000 | R--D | C] -- C:\Users\Tobias\Documents\Scanned Documents
[2014.01.10 17:04:34 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Shadow Warrior
[2014.01.10 17:04:34 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Saved Games
[2014.01.10 17:04:33 | 000,155,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\ataport.sys
[2014.01.10 17:04:33 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Rockstar Games
[2014.01.10 17:04:33 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\PrintScreen Files
[2014.01.10 17:04:33 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\PlagiarismFinder
[2014.01.10 17:04:32 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Paradox Interactive
[2014.01.10 17:04:32 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\ORDER OF WAR
[2014.01.10 17:04:32 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Orcs Must Die
[2014.01.10 17:04:32 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\NFS SHIFT
[2014.01.10 17:04:27 | 000,404,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gdi32.dll
[2014.01.10 17:04:25 | 000,027,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\Diskdump.sys
[2014.01.10 17:04:23 | 000,226,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dhcpcore6.dll
[2014.01.10 17:04:23 | 000,193,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dhcpcore6.dll
[2014.01.10 17:04:23 | 000,055,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dhcpcsvc6.dll
[2014.01.10 17:04:19 | 000,642,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winload.efi
[2014.01.10 17:04:19 | 000,605,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winload.exe
[2014.01.10 17:04:19 | 000,566,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winresume.efi
[2014.01.10 17:04:19 | 000,518,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winresume.exe
[2014.01.10 17:04:19 | 000,020,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kdusb.dll
[2014.01.10 17:04:19 | 000,019,328 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kd1394.dll
[2014.01.10 17:04:19 | 000,017,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\kdcom.dll
[2014.01.10 17:04:17 | 000,514,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qdvd.dll
[2014.01.10 17:04:17 | 000,366,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qdvd.dll
[2014.01.10 17:04:15 | 003,216,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msi.dll
[2014.01.10 17:04:13 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\My Games
[2014.01.10 17:04:13 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Mount&Blade With Fire and Sword
[2014.01.10 17:04:13 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Mount&Blade Warband Savegames
[2014.01.10 17:04:13 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Mount&Blade Warband
[2014.01.10 17:04:13 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\MOHW
[2014.01.10 17:04:13 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Messenger Plus
[2014.01.10 17:04:13 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\MeinSpore-Kreationen
[2014.01.10 17:04:12 | 000,357,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dnsapi.dll
[2014.01.10 17:04:12 | 000,030,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dnscacheugc.exe
[2014.01.10 17:04:12 | 000,028,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dnscacheugc.exe
[2014.01.10 17:04:12 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Meine empfangenen Dateien
[2014.01.10 17:04:12 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\MAGIX
[2014.01.10 17:04:12 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Madden NFL 08
[2014.01.10 17:04:11 | 000,613,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\psisdecd.dll
[2014.01.10 17:04:11 | 000,478,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dpnet.dll
[2014.01.10 17:04:11 | 000,465,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\psisdecd.dll
[2014.01.10 17:04:11 | 000,376,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\dpnet.dll
[2014.01.10 17:04:11 | 000,108,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\psisrndr.ax
[2014.01.10 17:04:11 | 000,075,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\psisrndr.ax
[2014.01.10 17:04:10 | 000,202,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scrrun.dll
[2014.01.10 17:04:10 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\scrrun.dll
[2014.01.10 17:04:10 | 000,156,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cscript.exe
[2014.01.10 17:04:10 | 000,150,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wshom.ocx
[2014.01.10 17:04:10 | 000,126,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\cscript.exe
[2014.01.10 17:04:10 | 000,121,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wshom.ocx
[2014.01.10 17:04:10 | 000,076,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\hidclass.sys
[2014.01.10 17:04:10 | 000,032,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\hidparse.sys
[2014.01.10 17:04:09 | 000,368,128 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysNative\atmfd.dll
[2014.01.10 17:04:09 | 000,295,424 | ---- | C] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\atmfd.dll
[2014.01.10 17:04:09 | 000,100,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\fontsub.dll
[2014.01.10 17:04:09 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\fontsub.dll
[2014.01.10 17:04:09 | 000,046,080 | ---- | C] (Adobe Systems) -- C:\Windows\SysNative\atmlib.dll
[2014.01.10 17:04:09 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lpk.dll
[2014.01.10 17:04:09 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\Windows\SysWow64\atmlib.dll
[2014.01.10 17:04:09 | 000,014,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dciman32.dll
[2014.01.10 17:04:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft.NET
[2014.01.10 17:04:09 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\LG PC Suite IV
[2014.01.10 17:04:08 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\LG OSP
[2014.01.10 17:04:05 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Kalypso Media
[2014.01.10 17:04:05 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\id Software
[2014.01.10 17:04:05 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\ICQ
[2014.01.10 17:04:05 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Hunting Unlimited 2010
[2014.01.10 17:04:05 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Hitman Blood Money
[2014.01.10 17:04:05 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\HdR Die Rückkehr des Königs tm-Daten
[2014.01.10 17:04:05 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\GTA San Andreas User Files
[2014.01.10 17:04:05 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\gegl-0.0
[2014.01.10 17:04:05 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Games for Windows - LIVE Demos
[2014.01.10 17:04:01 | 000,800,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\usp10.dll
[2014.01.10 17:04:01 | 000,068,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\taskhost.exe
[2014.01.10 17:04:00 | 001,217,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rpcrt4.dll
[2014.01.10 17:04:00 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\FUSSBALL MANAGER 12
[2014.01.10 17:04:00 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Freemake
[2014.01.10 17:03:59 | 000,081,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imagehlp.dll
[2014.01.10 17:03:58 | 000,102,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\davclnt.dll
[2014.01.10 17:03:58 | 000,041,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\RNDISMP.sys
[2014.01.10 17:03:57 | 000,019,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\usb8023.sys
[2014.01.10 17:03:55 | 000,199,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\xmllite.dll
[2014.01.10 17:03:55 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Forgottenhp 2
[2014.01.10 17:03:54 | 000,861,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\oleaut32.dll
[2014.01.10 17:03:54 | 000,331,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\oleacc.dll
[2014.01.10 17:03:51 | 001,572,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\quartz.dll
[2014.01.10 17:03:51 | 001,328,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\quartz.dll
[2014.01.10 17:03:49 | 000,230,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\portcls.sys
[2014.01.10 17:03:49 | 000,116,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\drmk.sys
[2014.01.10 17:03:49 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\prevhost.exe
[2014.01.10 17:03:49 | 000,031,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\prevhost.exe
[2014.01.10 17:03:47 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\FIFA 14 Demo
[2014.01.10 17:03:46 | 000,751,104 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\win32spl.dll
[2014.01.10 17:03:46 | 000,492,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\win32spl.dll
[2014.01.10 17:03:35 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\FIFA 14
[2014.01.10 17:03:33 | 002,315,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tquery.dll
[2014.01.10 17:03:33 | 002,223,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssrch.dll
[2014.01.10 17:03:33 | 001,549,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tquery.dll
[2014.01.10 17:03:33 | 001,401,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssrch.dll
[2014.01.10 17:03:33 | 000,778,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssvp.dll
[2014.01.10 17:03:33 | 000,491,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssph.dll
[2014.01.10 17:03:33 | 000,337,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssph.dll
[2014.01.10 17:03:33 | 000,249,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SearchProtocolHost.exe
[2014.01.10 17:03:33 | 000,113,664 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SearchFilterHost.exe
[2014.01.10 17:03:32 | 000,666,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mssvp.dll
[2014.01.10 17:03:32 | 000,288,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mssphtb.dll
[2014.01.10 17:03:32 | 000,075,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msscntrs.dll
[2014.01.10 17:03:32 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msscntrs.dll
[2014.01.10 17:03:31 | 000,265,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\dxgmms1.sys
[2014.01.10 17:03:31 | 000,144,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\cdd.dll
[2014.01.10 17:03:29 | 000,142,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\poqexec.exe
[2014.01.10 17:03:29 | 000,123,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\poqexec.exe
[2014.01.10 17:03:26 | 000,503,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\srcore.dll
[2014.01.10 17:03:25 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\FIFA 13
[2014.01.10 17:03:24 | 000,723,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\EncDec.dll
[2014.01.10 17:03:24 | 000,534,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\EncDec.dll
[2014.01.10 17:03:22 | 000,624,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\qedit.dll
[2014.01.10 17:03:22 | 000,509,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\qedit.dll
[2014.01.10 17:03:21 | 000,095,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\synceng.dll
[2014.01.10 17:03:21 | 000,078,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\synceng.dll
[2014.01.10 17:03:20 | 000,319,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbcjt32.dll
[2014.01.10 17:03:20 | 000,212,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbctrac.dll
[2014.01.10 17:03:20 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbctrac.dll
[2014.01.10 17:03:20 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbccp32.dll
[2014.01.10 17:03:20 | 000,122,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbccp32.dll
[2014.01.10 17:03:20 | 000,106,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbccu32.dll
[2014.01.10 17:03:20 | 000,106,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\odbccr32.dll
[2014.01.10 17:03:20 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbccu32.dll
[2014.01.10 17:03:20 | 000,081,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\odbccr32.dll
[2014.01.10 17:03:17 | 000,956,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\localspl.dll
[2014.01.10 17:03:15 | 000,124,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PresentationCFFRasterizerNative_v0300.dll
[2014.01.10 17:03:15 | 000,102,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PresentationCFFRasterizerNative_v0300.dll
[2014.01.10 17:03:13 | 000,335,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msieftp.dll
[2014.01.10 17:03:13 | 000,301,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msieftp.dll
[2014.01.10 17:03:12 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\FIFA 12
[2014.01.10 17:03:12 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Fax
[2014.01.10 17:03:12 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Electrontic Arts
[2014.01.10 17:03:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Package Cache
[2014.01.10 17:03:00 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Electronic Arts
[2014.01.10 17:03:00 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\EA Games
[2014.01.10 17:03:00 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Duke Nukem Forever Demo
[2014.01.10 17:02:58 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Downloads
[2014.01.10 17:02:58 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\DonationCoder
[2014.01.10 17:02:58 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\DeadIsland
[2014.01.10 17:02:58 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Cities In Motion
[2014.01.10 17:02:57 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\CASIO
[2014.01.10 17:02:56 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\BloodBowlLegendary
[2014.01.10 17:02:56 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Bitmart
[2014.01.10 17:02:56 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\BioWare
[2014.01.10 17:02:56 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\BFBC2
[2014.01.10 17:02:56 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Battlestations-Pacific
[2014.01.10 17:02:56 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Battlefield 3
[2014.01.10 17:02:56 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Battlefield 2142 Demo
[2014.01.10 17:02:50 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Battlefield 2
[2014.01.10 17:02:50 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Audible
[2014.01.10 17:02:43 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\ATI Stream
[2014.01.10 17:02:43 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Atari
[2014.01.10 17:02:43 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\ASUS Remote GO!
[2014.01.10 17:02:43 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Assassin's Creed Revelations
[2014.01.10 17:02:43 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Assassin's Creed III
[2014.01.10 17:02:42 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Arma 3
[2014.01.10 17:02:42 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\ArmA 2 OA Demo
[2014.01.10 17:02:42 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Arktos
[2014.01.10 17:02:42 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\ArcaniA - Gothic 4 Demo
[2014.01.10 17:02:42 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\APOX
[2014.01.10 17:02:42 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Alpha Protocol
[2014.01.10 17:02:42 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\Activision
[2014.01.10 17:02:42 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Documents\4A Games
[2014.01.10 17:02:41 | 000,000,000 | ---D | C] -- C:\Program Files\ATI Technologies
[2014.01.10 17:02:39 | 000,000,000 | ---D | C] -- C:\Program Files\ATI
[2014.01.10 17:02:38 | 000,000,000 | ---D | C] -- C:\Users\Tobias\DoctorWeb
[2014.01.10 17:02:38 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Doctor Web
[2014.01.10 17:02:07 | 000,000,000 | ---D | C] -- C:\AMD
[2014.01.10 16:59:23 | 000,149,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcorekmts.dll
[2014.01.10 16:59:23 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpwsx.dll
[2014.01.10 16:59:23 | 000,009,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdrmemptylst.exe
[2014.01.10 16:59:22 | 000,252,928 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\drvinst.exe
[2014.01.10 16:59:22 | 000,044,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\devrtl.dll
[2014.01.10 16:59:21 | 000,634,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msvcrt.dll
[2014.01.10 16:59:20 | 000,267,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FXSCOVER.exe
[2014.01.10 16:57:54 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\WinRAR
[2014.01.10 16:57:54 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Winamp
[2014.01.10 16:57:54 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\wargaming.net
[2014.01.10 16:57:54 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Vidalia
[2014.01.10 16:57:53 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Ubisoft
[2014.01.10 16:57:53 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\TuneUp Software
[2014.01.10 16:57:53 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Tropico 3
[2014.01.10 16:57:53 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Tor
[2014.01.10 16:57:53 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\TL-Player
[2014.01.10 16:57:52 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\The Creative Assembly
[2014.01.10 16:57:51 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\TeamViewer
[2014.01.10 16:57:51 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\SUPERAntiSpyware.com
[2014.01.10 16:57:49 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Spotify
[2014.01.10 16:57:47 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\SPORE
[2014.01.10 16:57:46 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\SolForge
[2014.01.10 16:57:46 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\SOCCC
[2014.01.10 16:57:45 | 000,000,000 | RH-D | C] -- C:\Users\Tobias\AppData\Roaming\SecuROM
[2014.01.10 16:57:45 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Skype
[2014.01.10 16:57:45 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\RealNetworks
[2014.01.10 16:57:44 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Real
[2014.01.10 16:57:44 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\QuickScan
[2014.01.10 16:57:43 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\PunkBuster
[2014.01.10 16:57:43 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Process Hacker 2
[2014.01.10 16:57:43 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\PlagiarismFinder
[2014.01.10 16:57:43 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\PerfWatch
[2014.01.10 16:57:43 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Party
[2014.01.10 16:57:42 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Origin
[2014.01.10 16:57:27 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\OpenOffice.org
[2014.01.10 16:57:22 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\OpenOffice
[2014.01.10 16:57:22 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\NVIDIA
[2014.01.10 16:57:14 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Natural Selection 2
[2014.01.10 16:57:14 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\NationRed
[2014.01.10 16:57:14 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\MultiBit
[2014.01.10 16:57:14 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Mozilla-Cache
[2014.01.10 16:57:14 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Mount&Blade With Fire and Sword
[2014.01.10 16:57:14 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Mount&Blade Warband
[2014.01.10 16:57:14 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\MKKE
[2014.01.10 16:57:14 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Microsoft Web Folders
[2014.01.10 16:57:13 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\MAXON
[2014.01.10 16:57:13 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Malwarebytes
[2014.01.10 16:57:13 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\MAGIX
[2014.01.10 16:57:13 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Macromedia
[2014.01.10 16:57:13 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\LolClient
[2014.01.10 16:57:13 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Kalypso Media
[2014.01.10 16:57:13 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\IObit
[2014.01.10 16:57:13 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\InstallShield
[2014.01.10 16:57:13 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\gtk-2.0
[2014.01.10 16:57:13 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\gsmartcontrol
[2014.01.10 16:57:13 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\gnupg
[2014.01.10 16:57:12 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\globalip
[2014.01.10 16:57:12 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\FreeHideIP
[2014.01.10 16:57:12 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\EPSON
[2014.01.10 16:57:12 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\DynaGeo
[2014.01.10 16:57:10 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\DVDVideoSoft
[2014.01.10 16:57:10 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Download Manager
[2014.01.10 16:57:10 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\DonationCoder
[2014.01.10 16:57:10 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\DivX
[2014.01.10 16:57:10 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\DarknessIIDemo
[2014.01.10 16:57:10 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\COMODO
[2014.01.10 16:57:10 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\CASIO
[2014.01.10 16:57:10 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Canneverbe Limited
[2014.01.10 16:57:10 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Bitmart
[2014.01.10 16:57:10 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Bitdefender
[2014.01.10 16:57:10 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\backbeat
[2014.01.10 16:57:09 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\AVG
[2014.01.10 16:57:09 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\AutoHideIP
[2014.01.10 16:57:09 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Auslogics
[2014.01.10 16:57:09 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\AtomZombieData
[2014.01.10 16:57:09 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\ATI
[2014.01.10 16:57:09 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Atari
[2014.01.10 16:57:09 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\ASUS
[2014.01.10 16:57:09 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Ashampoo
[2014.01.10 16:57:08 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\ASCOMP Software
[2014.01.10 16:57:08 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Artweaver Free
[2014.01.10 16:57:08 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Arrowhead
[2014.01.10 16:57:08 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Applian FLV and Media Player
[2014.01.10 16:57:08 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Apple Computer
[2014.01.10 16:57:08 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\APOX
[2014.01.10 16:57:08 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Anyplace Control 4
[2014.01.10 16:57:07 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Adobe
[2014.01.10 16:57:01 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\2K Sports
[2014.01.10 16:56:52 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\.Nitrous
[2014.01.10 16:56:52 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\.mono
[2014.01.10 16:56:46 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\.minecraft
[2014.01.10 16:56:45 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Mozilla
[2014.01.10 16:56:43 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Zattoo
[2014.01.10 16:56:43 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\World in Conflict
[2014.01.10 16:56:43 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\WOP
[2014.01.10 16:56:43 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Wings of Prey
[2014.01.10 16:56:43 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\WindowsUpdate
[2014.01.10 16:56:43 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Windows Live Writer
[2014.01.10 16:56:43 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Windows Live
[2014.01.10 16:56:43 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\WB Games
[2014.01.10 16:56:43 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\WarThunder
[2014.01.10 16:56:42 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Ubisoft Game Launcher
[2014.01.10 16:56:42 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\THQ
[2014.01.10 16:56:42 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\The Witcher 2
[2014.01.10 16:56:36 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\TeamSpeak 3 Client
[2014.01.10 16:56:36 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Take On Helicopters Demo
[2014.01.10 16:56:36 | 000,000,000 | ---D | C] -- C:\ProgramData\Mozilla
[2014.01.10 16:56:31 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Spotify
[2014.01.10 16:56:31 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Solid State Networks
[2014.01.10 16:56:31 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\SniperV2 Demo
[2014.01.10 16:56:31 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\SniperV2
[2014.01.10 16:56:31 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Sniper Elite Zombie Army
[2014.01.10 16:56:31 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Skyrim
[2014.01.10 16:56:31 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\signal studios
[2014.01.10 16:56:30 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Rockstar Games
[2014.01.10 16:56:27 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\PunkBuster
[2014.01.10 16:56:27 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Programs
[2014.01.10 16:56:27 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\PMB Files
[2014.01.10 16:56:27 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\PictureConverter
[2014.01.10 16:56:27 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\PAYDAY
[2014.01.10 16:56:26 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Overwolf
[2014.01.10 16:56:21 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Origin
[2014.01.10 16:56:21 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\My Games
[2014.01.10 16:56:08 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Mozilla
[2014.01.10 16:56:08 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\MigWiz
[2014.01.10 16:56:07 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\MicrosoftStore
[2014.01.10 16:56:07 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Microsoft Help
[2014.01.10 16:56:01 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\mcpatcher
[2014.01.10 16:56:01 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Matt_Chambers
[2014.01.10 16:56:01 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Macromedia
[2014.01.10 16:56:01 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\LogMeIn Hamachi
[2014.01.10 16:56:01 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\LogMeIn
[2014.01.10 16:56:01 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\LG Electronics
[2014.01.10 16:56:01 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Introversion
[2014.01.10 16:56:01 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\id Software
[2014.01.10 16:56:00 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\GRAW2
[2014.01.10 16:55:50 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Google
[2014.01.10 16:55:50 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Gas Powered Games
[2014.01.10 16:55:47 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Focus Home Interactive
[2014.01.10 16:55:47 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\FalloutNV
[2014.01.10 16:55:47 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\ESN Sonar
[2014.01.10 16:55:47 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\ESN
[2014.01.10 16:55:47 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\ElevatedDiagnostics
[2014.01.10 16:55:47 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Electronic Arts
[2014.01.10 16:55:47 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\dxhr
[2014.01.10 16:55:47 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Downloaded Installations
[2014.01.10 16:55:46 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Desura
[2014.01.10 16:55:46 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Deployment
[2014.01.10 16:55:45 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Criterion Games
[2014.01.10 16:55:45 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\CrashRpt
[2014.01.10 16:55:45 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\CrashDumps
[2014.01.10 16:55:45 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Chromium
[2014.01.10 16:55:45 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\bizarre creations
[2014.01.10 16:55:45 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Audible
[2014.01.10 16:55:45 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\ATI
[2014.01.10 16:55:45 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Atari
[2014.01.10 16:55:45 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\ashampoo
[2014.01.10 16:55:45 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Arma 3
[2014.01.10 16:55:45 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\ArmA 2 OA DEMO
[2014.01.10 16:55:45 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Arktos
[2014.01.10 16:55:45 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Apps
[2014.01.10 16:55:44 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Apple Computer
[2014.01.10 16:55:44 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Apple
[2014.01.10 16:55:44 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\AOL
[2014.01.10 16:55:44 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\AMD
[2014.01.10 16:55:42 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Adobe
[2014.01.10 16:55:42 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Activision
[2014.01.10 16:55:42 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Abelssoft
[2014.01.10 16:55:42 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\76561198000124388
[2014.01.10 16:55:42 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\4A Games
[2014.01.10 16:55:42 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\2K Games
[2014.01.10 16:55:42 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\2DBoy
[2014.01.10 16:55:42 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\28050
[2014.01.10 16:55:42 | 000,000,000 | ---D | C] -- C:\Users\Tobias\.thumbnails
[2014.01.10 16:55:42 | 000,000,000 | ---D | C] -- C:\Users\Tobias\.swt
[2014.01.10 16:55:42 | 000,000,000 | ---D | C] -- C:\Users\Tobias\.mediathek3
[2014.01.10 16:55:42 | 000,000,000 | ---D | C] -- C:\Users\Tobias\.gimp-2.6
[2014.01.10 16:55:42 | 000,000,000 | ---D | C] -- C:\Users\Tobias\.freemind
[2014.01.10 16:54:07 | 000,461,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\scavengeui.dll
[2014.01.10 16:54:06 | 000,830,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\nshwfp.dll
[2014.01.10 16:54:06 | 000,656,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\nshwfp.dll
[2014.01.10 16:54:06 | 000,324,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\FWPUCLNT.DLL
[2014.01.10 16:54:06 | 000,216,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\FWPUCLNT.DLL
[2014.01.10 16:53:40 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\packager.dll
[2014.01.10 16:53:40 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\packager.dll
[2014.01.10 16:51:47 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ASM104xUSB3
[2014.01.10 16:45:57 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\AVG2014
[2014.01.10 16:44:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
[2014.01.10 16:44:19 | 000,000,000 | ---D | C] -- C:\ProgramData\AVG2014
[2014.01.10 16:44:19 | 000,000,000 | ---D | C] -- C:\$AVG
[2014.01.10 16:44:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AVG
[2014.01.10 16:38:37 | 001,031,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcore.dll
[2014.01.10 16:38:37 | 000,826,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdpcore.dll
[2014.01.10 16:36:33 | 000,000,000 | -HSD | C] -- C:\Windows\Installer
[2014.01.10 16:36:25 | 000,000,000 | -H-D | C] -- C:\ProgramData\Common Files
[2014.01.10 16:36:25 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\MFAData
[2014.01.10 16:36:25 | 000,000,000 | ---D | C] -- C:\ProgramData\MFAData
[2014.01.10 16:36:25 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Avg2014
[2014.01.10 16:35:27 | 002,622,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wucltux.dll
[2014.01.10 16:35:27 | 000,057,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuauclt.exe
[2014.01.10 16:35:27 | 000,044,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups2.dll
[2014.01.10 16:35:25 | 000,701,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapi.dll
[2014.01.10 16:35:25 | 000,099,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wudriver.dll
[2014.01.10 16:35:25 | 000,038,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups.dll
[2014.01.10 16:35:24 | 000,186,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuwebv.dll
[2014.01.10 16:35:24 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapp.exe
[2014.01.10 16:34:28 | 000,805,088 | ---- | C] (Realtek                                            ) -- C:\Windows\SysNative\drivers\Rt64win7.sys
[2014.01.10 16:34:28 | 000,107,552 | ---- | C] (Realtek Semiconductor Corporation) -- C:\Windows\SysNative\RTNUninst64.dll
[2014.01.10 16:34:28 | 000,074,344 | ---- | C] (Realtek Semiconductor Corporation) -- C:\Windows\SysNative\RtNicProp64.dll
[2014.01.10 16:34:24 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\InstallShield Installation Information
[2014.01.10 16:34:24 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Realtek
[2014.01.10 16:03:57 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Diagnostics
[2014.01.10 16:01:15 | 000,000,000 | R--D | C] -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
[2014.01.10 16:01:15 | 000,000,000 | R--D | C] -- C:\Users\Tobias\Searches
[2014.01.10 16:01:15 | 000,000,000 | R--D | C] -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
[2014.01.10 16:01:10 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Identities
[2014.01.10 16:01:09 | 000,000,000 | R--D | C] -- C:\Users\Tobias\Contacts
[2014.01.10 16:01:07 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\VirtualStore
[2014.01.10 16:01:05 | 000,000,000 | --SD | C] -- C:\Users\Tobias\AppData\Roaming\Microsoft
[2014.01.10 16:01:05 | 000,000,000 | R--D | C] -- C:\Users\Tobias\Videos
[2014.01.10 16:01:05 | 000,000,000 | R--D | C] -- C:\Users\Tobias\Saved Games
[2014.01.10 16:01:05 | 000,000,000 | R--D | C] -- C:\Users\Tobias\Pictures
[2014.01.10 16:01:05 | 000,000,000 | R--D | C] -- C:\Users\Tobias\Music
[2014.01.10 16:01:05 | 000,000,000 | R--D | C] -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
[2014.01.10 16:01:05 | 000,000,000 | R--D | C] -- C:\Users\Tobias\Links
[2014.01.10 16:01:05 | 000,000,000 | R--D | C] -- C:\Users\Tobias\Favorites
[2014.01.10 16:01:05 | 000,000,000 | R--D | C] -- C:\Users\Tobias\Downloads
[2014.01.10 16:01:05 | 000,000,000 | R--D | C] -- C:\Users\Tobias\Documents
[2014.01.10 16:01:05 | 000,000,000 | R--D | C] -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
[2014.01.10 16:01:05 | 000,000,000 | -HSD | C] -- C:\Users\Tobias\Vorlagen
[2014.01.10 16:01:05 | 000,000,000 | -HSD | C] -- C:\Users\Tobias\AppData\Local\Verlauf
[2014.01.10 16:01:05 | 000,000,000 | -HSD | C] -- C:\Users\Tobias\AppData\Local\Temporary Internet Files
[2014.01.10 16:01:05 | 000,000,000 | -HSD | C] -- C:\Users\Tobias\Startmenü
[2014.01.10 16:01:05 | 000,000,000 | -HSD | C] -- C:\Users\Tobias\SendTo
[2014.01.10 16:01:05 | 000,000,000 | -HSD | C] -- C:\Users\Tobias\Recent
[2014.01.10 16:01:05 | 000,000,000 | -HSD | C] -- C:\Users\Tobias\Netzwerkumgebung
[2014.01.10 16:01:05 | 000,000,000 | -HSD | C] -- C:\Users\Tobias\Lokale Einstellungen
[2014.01.10 16:01:05 | 000,000,000 | -HSD | C] -- C:\Users\Tobias\Documents\Eigene Videos
[2014.01.10 16:01:05 | 000,000,000 | -HSD | C] -- C:\Users\Tobias\Documents\Eigene Musik
[2014.01.10 16:01:05 | 000,000,000 | -HSD | C] -- C:\Users\Tobias\Eigene Dateien
[2014.01.10 16:01:05 | 000,000,000 | -HSD | C] -- C:\Users\Tobias\Documents\Eigene Bilder
[2014.01.10 16:01:05 | 000,000,000 | -HSD | C] -- C:\Users\Tobias\Druckumgebung
[2014.01.10 16:01:05 | 000,000,000 | -HSD | C] -- C:\Users\Tobias\Cookies
[2014.01.10 16:01:05 | 000,000,000 | -HSD | C] -- C:\Users\Tobias\AppData\Local\Anwendungsdaten
[2014.01.10 16:01:05 | 000,000,000 | -HSD | C] -- C:\Users\Tobias\Anwendungsdaten
[2014.01.10 16:01:05 | 000,000,000 | -H-D | C] -- C:\Users\Tobias\AppData
[2014.01.10 16:01:05 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Temp
[2014.01.10 16:01:05 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Local\Microsoft
[2014.01.10 16:01:05 | 000,000,000 | ---D | C] -- C:\Users\Tobias\AppData\Roaming\Media Center Programs
[2014.01.10 16:01:05 | 000,000,000 | ---D | C] -- C:\Users\Tobias\Desktop
[2014.01.10 16:01:03 | 000,000,000 | -HSD | C] -- C:\ProgramData\Vorlagen
[2014.01.10 16:01:03 | 000,000,000 | -HSD | C] -- C:\ProgramData\Startmenü
[2014.01.10 16:01:03 | 000,000,000 | -HSD | C] -- C:\Program Files\Gemeinsame Dateien
[2014.01.10 16:01:03 | 000,000,000 | -HSD | C] -- C:\ProgramData\Favoriten
[2014.01.10 16:01:03 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Videos
[2014.01.10 16:01:03 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Musik
[2014.01.10 16:01:03 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Bilder
[2014.01.10 16:01:03 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dokumente
[2014.01.10 16:01:03 | 000,000,000 | -HSD | C] -- C:\ProgramData\Anwendungsdaten
[2014.01.10 16:01:03 | 000,000,000 | ---D | C] -- C:\Recovery
[2014.01.10 16:01:01 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
[2014.01.10 15:36:37 | 000,000,000 | ---D | C] -- C:\Windows\Prefetch
[2014.01.10 15:36:28 | 000,000,000 | -HSD | C] -- C:\System Volume Information
 
========== Files - Modified Within 30 Days ==========
 
[2014.01.15 15:46:00 | 000,001,110 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2014.01.15 15:24:00 | 000,000,884 | ---- | M] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014.01.15 14:57:28 | 000,025,872 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014.01.15 14:57:28 | 000,025,872 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014.01.15 14:57:17 | 001,618,320 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2014.01.15 14:57:17 | 000,698,688 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat
[2014.01.15 14:57:17 | 000,653,526 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2014.01.15 14:57:17 | 000,148,828 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat
[2014.01.15 14:57:17 | 000,121,398 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2014.01.15 14:55:53 | 000,000,000 | ---- | M] () -- C:\Windows\Path.idx
[2014.01.15 14:50:49 | 001,048,576 | ---- | M] () -- C:\Windows\PE_Rom.dll
[2014.01.15 14:50:30 | 000,001,106 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2014.01.15 14:50:21 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2014.01.15 14:50:19 | 3141,783,552 | -HS- | M] () -- C:\hiberfil.sys
[2014.01.15 14:49:19 | 000,294,736 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2014.01.15 12:43:05 | 000,007,599 | ---- | M] () -- C:\Users\Tobias\AppData\Local\Resmon.ResmonCfg
[2014.01.15 09:48:26 | 000,002,175 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2014.01.14 23:59:13 | 000,071,807 | ---- | M] () -- D:\Desktop\Reise.jpg
[2014.01.14 23:57:32 | 000,318,879 | ---- | M] () -- D:\Desktop\Screenshot - 14.01.2014 , 23_57_32.png
[2014.01.14 23:57:15 | 000,000,058 | ---- | M] () -- C:\Users\Tobias\AppData\Local\DonationCoder_ScreenshotCaptor_InstallInfo.dat
[2014.01.14 22:05:00 | 000,001,284 | ---- | M] () -- D:\Desktop\DevPro.lnk
[2014.01.14 18:21:06 | 000,001,783 | ---- | M] () -- C:\Users\Public\Desktop\iTunes.lnk
[2014.01.13 17:43:44 | 000,001,688 | ---- | M] () -- C:\Windows\Sandboxie.ini
[2014.01.12 23:41:18 | 000,001,567 | ---- | M] () -- D:\Desktop\PrintScreen.lnk
[2014.01.12 23:36:45 | 000,028,563 | ---- | M] () -- D:\Desktop\logs.rar
[2014.01.12 22:58:07 | 000,139,264 | ---- | M] () -- D:\Desktop\SystemLook.exe
[2014.01.12 22:52:49 | 000,000,698 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2014.01.12 22:50:25 | 000,000,930 | ---- | M] () -- C:\Users\Public\Desktop\EPSON Scan.lnk
[2014.01.12 20:45:25 | 000,002,115 | ---- | M] () -- D:\Desktop\Google Chrome.lnk
[2014.01.12 19:55:01 | 000,001,808 | ---- | M] () -- C:\Users\Public\Desktop\SUPERAntiSpyware Professional.lnk
[2014.01.12 13:12:42 | 000,517,055 | ---- | M] () -- D:\Desktop\Screenshot - 12.01.2014 , 13_12_41.png
[2014.01.12 13:06:37 | 000,001,821 | ---- | M] () -- D:\Desktop\Audible Manager.lnk
[2014.01.12 13:06:37 | 000,001,407 | ---- | M] () -- D:\Desktop\PictureConverter.lnk
[2014.01.12 13:06:34 | 000,001,769 | ---- | M] () -- D:\Desktop\Process Hacker 2.lnk
[2014.01.12 13:06:22 | 000,462,864 | ---- | M] () -- D:\Desktop\Screenshot - 12.01.2014 , 13_06_22.png
[2014.01.11 12:31:50 | 000,001,066 | ---- | M] () -- D:\Desktop\EVEREST Home Edition.lnk
[2014.01.11 11:24:21 | 000,002,019 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader XI.lnk
[2014.01.11 01:05:50 | 000,001,275 | ---- | M] () -- D:\Desktop\Internet Explorer.lnk
[2014.01.11 00:45:32 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_xusb21_01009.Wdf
[2014.01.11 00:34:26 | 000,295,922 | ---- | M] () -- C:\Windows\SysNative\perfi007.dat
[2014.01.11 00:34:26 | 000,038,104 | ---- | M] () -- C:\Windows\SysNative\perfd007.dat
[2014.01.10 23:59:28 | 000,001,225 | ---- | M] () -- C:\Users\Public\Desktop\Samsung Magician.lnk
[2014.01.10 23:59:00 | 000,001,858 | ---- | M] () -- C:\Users\Public\Desktop\Data Migration.lnk
[2014.01.10 23:47:23 | 000,286,305 | ---- | M] () -- D:\Desktop\AS SSD Benchmark.zip
[2014.01.10 23:44:58 | 000,001,043 | ---- | M] () -- C:\Users\Public\Desktop\SSD Tweaker.lnk
[2014.01.10 23:27:04 | 000,000,830 | ---- | M] () -- D:\Desktop\HD Tune.lnk
[2014.01.10 23:25:47 | 000,001,070 | ---- | M] () -- D:\Desktop\CrystalDiskInfo.lnk
[2014.01.10 23:24:40 | 000,001,807 | ---- | M] () -- D:\Desktop\CheckDrive.lnk
[2014.01.10 23:16:00 | 000,001,162 | ---- | M] () -- C:\Users\Public\Desktop\TeamViewer 9.lnk
[2014.01.10 23:13:41 | 000,001,410 | ---- | M] () -- D:\Desktop\Driver Cleaner Pro.lnk
[2014.01.10 22:58:44 | 005,352,688 | ---- | M] () -- C:\Windows\PE_File.dll
[2014.01.10 22:46:10 | 000,000,000 | ---- | M] () -- C:\Windows\SysWow64\drivers\1043_ASUSTeK_SABERTOOTH 990FX R2.0.alu
[2014.01.10 22:32:49 | 000,000,562 | ---- | M] () -- C:\Users\Public\Desktop\Fraps.lnk
[2014.01.10 22:17:42 | 000,001,109 | ---- | M] () -- C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
[2014.01.10 21:51:58 | 000,001,239 | ---- | M] () -- C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk
[2014.01.10 21:48:32 | 000,001,145 | ---- | M] () -- D:\Desktop\Ashampoo Burning Studio 2013.lnk
[2014.01.10 21:16:07 | 000,000,969 | ---- | M] () -- D:\Desktop\Screenshot Captor.lnk
[2014.01.10 20:30:35 | 000,312,744 | ---- | M] (Oracle Corporation) -- C:\Windows\SysNative\javaws.exe
[2014.01.10 20:30:35 | 000,189,352 | ---- | M] (Oracle Corporation) -- C:\Windows\SysNative\javaw.exe
[2014.01.10 20:30:35 | 000,108,968 | ---- | M] (Oracle Corporation) -- C:\Windows\SysNative\WindowsAccessBridge-64.dll
[2014.01.10 20:30:34 | 000,189,352 | ---- | M] (Oracle Corporation) -- C:\Windows\SysNative\java.exe
[2014.01.10 20:25:35 | 002,314,844 | ---- | M] () -- D:\Desktop\TechnicLauncher.exe
[2014.01.10 19:59:47 | 000,000,720 | ---- | M] () -- C:\Users\Public\Desktop\Desura.lnk
[2014.01.10 19:46:46 | 000,000,877 | ---- | M] () -- C:\Users\Public\Desktop\FIFA 14.lnk
[2014.01.10 19:44:54 | 000,000,648 | ---- | M] () -- C:\Users\Public\Desktop\Origin.lnk
[2014.01.10 19:38:48 | 000,000,636 | ---- | M] () -- C:\Users\Public\Desktop\Steam.lnk
[2014.01.10 19:28:51 | 001,591,896 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2014.01.10 19:21:59 | 000,000,822 | ---- | M] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2014.01.10 19:09:22 | 000,001,147 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2014.01.10 18:41:22 | 000,000,000 | ---- | M] () -- C:\Windows\ativpsrm.bin
[2014.01.10 17:43:58 | 001,054,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe
[2014.01.10 17:43:58 | 000,719,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll
[2014.01.10 17:43:58 | 000,226,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\elshyph.dll
[2014.01.10 17:43:58 | 000,185,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\elshyph.dll
[2014.01.10 17:43:58 | 000,163,840 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2014.01.10 17:43:58 | 000,138,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\wextract.exe
[2014.01.10 17:43:58 | 000,082,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\inseng.dll
[2014.01.10 17:43:58 | 000,071,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\RegisterIEPKEYs.exe
[2014.01.10 17:43:57 | 001,441,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2014.01.10 17:43:57 | 001,400,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dat
[2014.01.10 17:43:57 | 000,690,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2014.01.10 17:43:57 | 000,629,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
[2014.01.10 17:43:57 | 000,391,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2014.01.10 17:43:57 | 000,361,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec
[2014.01.10 17:43:57 | 000,232,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll
[2014.01.10 17:43:57 | 000,150,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iexpress.exe
[2014.01.10 17:43:57 | 000,137,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2014.01.10 17:43:57 | 000,125,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\occache.dll
[2014.01.10 17:43:57 | 000,117,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iepeers.dll
[2014.01.10 17:43:57 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\IEAdvpack.dll
[2014.01.10 17:43:57 | 000,109,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iesysprep.dll
[2014.01.10 17:43:57 | 000,079,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2014.01.10 17:43:57 | 000,073,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\SetIEInstalledDate.exe
[2014.01.10 17:43:57 | 000,069,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\icardie.dll
[2014.01.10 17:43:57 | 000,061,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\tdc.ocx
[2014.01.10 17:43:57 | 000,061,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2014.01.10 17:43:57 | 000,057,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\pngfilt.dll
[2014.01.10 17:43:57 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmler.dll
[2014.01.10 17:43:57 | 000,033,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2014.01.10 17:43:57 | 000,025,185 | ---- | M] () -- C:\Windows\SysWow64\ieuinit.inf
[2014.01.10 17:43:57 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\licmgr10.dll
[2014.01.10 17:43:57 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedssync.exe
[2014.01.10 17:43:56 | 001,509,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2014.01.10 17:43:56 | 001,400,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dat
[2014.01.10 17:43:56 | 000,905,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll
[2014.01.10 17:43:56 | 000,855,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2014.01.10 17:43:56 | 000,762,368 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
[2014.01.10 17:43:56 | 000,603,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2014.01.10 17:43:56 | 000,599,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2014.01.10 17:43:56 | 000,452,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
[2014.01.10 17:43:56 | 000,441,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\html.iec
[2014.01.10 17:43:56 | 000,281,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
[2014.01.10 17:43:56 | 000,235,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\url.dll
[2014.01.10 17:43:56 | 000,216,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msls31.dll
[2014.01.10 17:43:56 | 000,197,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll
[2014.01.10 17:43:56 | 000,173,568 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2014.01.10 17:43:56 | 000,167,424 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iexpress.exe
[2014.01.10 17:43:56 | 000,149,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\occache.dll
[2014.01.10 17:43:56 | 000,144,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wextract.exe
[2014.01.10 17:43:56 | 000,136,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iepeers.dll
[2014.01.10 17:43:56 | 000,135,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\IEAdvpack.dll
[2014.01.10 17:43:56 | 000,102,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\inseng.dll
[2014.01.10 17:43:56 | 000,097,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2014.01.10 17:43:56 | 000,089,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\RegisterIEPKEYs.exe
[2014.01.10 17:43:56 | 000,081,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\icardie.dll
[2014.01.10 17:43:56 | 000,067,072 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
[2014.01.10 17:43:56 | 000,062,976 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\pngfilt.dll
[2014.01.10 17:43:56 | 000,051,712 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2014.01.10 17:43:56 | 000,051,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\imgutil.dll
[2014.01.10 17:43:56 | 000,039,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
[2014.01.10 17:43:56 | 000,027,648 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\licmgr10.dll
[2014.01.10 17:43:56 | 000,025,185 | ---- | M] () -- C:\Windows\SysNative\ieuinit.inf
[2014.01.10 17:43:56 | 000,013,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshta.exe
[2014.01.10 17:43:56 | 000,012,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msfeedssync.exe
[2014.01.10 17:43:55 | 003,959,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2014.01.10 17:43:55 | 000,526,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2014.01.10 17:43:55 | 000,136,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iesysprep.dll
[2014.01.10 17:43:55 | 000,092,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\SetIEInstalledDate.exe
[2014.01.10 17:43:55 | 000,077,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\tdc.ocx
[2014.01.10 17:43:55 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmler.dll
[2014.01.10 17:29:39 | 000,016,896 | ---- | M] (ASUS) -- C:\Windows\AsTaskSched.dll
[2014.01.10 17:23:23 | 000,000,000 | -H-- | M] () -- C:\ProgramData\DP45977C.lfl
[2014.01.10 17:08:36 | 000,692,616 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2014.01.10 17:08:36 | 000,071,048 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2014.01.10 16:44:24 | 000,000,981 | ---- | M] () -- C:\Users\Public\Desktop\AVG 2014.lnk
[2014.01.10 16:34:16 | 000,001,769 | ---- | M] () -- C:\Windows\Language_trs.ini
[2014.01.10 15:37:45 | 000,055,513 | ---- | M] () -- C:\Windows\SysWow64\license.rtf
[2014.01.10 15:37:45 | 000,055,513 | ---- | M] () -- C:\Windows\SysNative\license.rtf
[2013.12.24 00:00:07 | 000,675,988 | ---- | M] () -- D:\Desktop\Minecraft.exe
 
========== Files Created - No Company Name ==========
 
[2014.01.14 23:59:13 | 000,071,807 | ---- | C] () -- D:\Desktop\Reise.jpg
[2014.01.14 23:58:01 | 000,318,879 | ---- | C] () -- D:\Desktop\Screenshot - 14.01.2014 , 23_57_32.png
[2014.01.14 22:05:00 | 000,001,284 | ---- | C] () -- D:\Desktop\DevPro.lnk
[2014.01.14 18:21:06 | 000,001,783 | ---- | C] () -- C:\Users\Public\Desktop\iTunes.lnk
[2014.01.14 18:20:00 | 000,002,519 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
[2014.01.12 23:41:18 | 000,001,567 | ---- | C] () -- D:\Desktop\PrintScreen.lnk
[2014.01.12 23:36:37 | 000,028,563 | ---- | C] () -- D:\Desktop\logs.rar
[2014.01.12 22:58:12 | 000,139,264 | ---- | C] () -- D:\Desktop\SystemLook.exe
[2014.01.12 22:50:25 | 000,000,930 | ---- | C] () -- C:\Users\Public\Desktop\EPSON Scan.lnk
[2014.01.12 19:55:01 | 000,001,808 | ---- | C] () -- C:\Users\Public\Desktop\SUPERAntiSpyware Professional.lnk
[2014.01.12 18:45:01 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2014.01.12 18:45:01 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2014.01.12 18:45:01 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2014.01.12 18:45:01 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2014.01.12 18:45:01 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2014.01.12 18:42:44 | 000,002,115 | ---- | C] () -- D:\Desktop\Google Chrome.lnk
[2014.01.12 18:36:53 | 000,002,175 | ---- | C] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2014.01.12 18:36:16 | 000,001,110 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2014.01.12 18:36:16 | 000,001,106 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2014.01.12 13:12:57 | 000,517,055 | ---- | C] () -- D:\Desktop\Screenshot - 12.01.2014 , 13_12_41.png
[2014.01.12 13:06:30 | 000,462,864 | ---- | C] () -- D:\Desktop\Screenshot - 12.01.2014 , 13_06_22.png
[2014.01.11 11:24:21 | 000,002,441 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
[2014.01.11 11:24:21 | 000,002,019 | ---- | C] () -- C:\Users\Public\Desktop\Adobe Reader XI.lnk
[2014.01.11 00:45:32 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_xusb21_01009.Wdf
[2014.01.11 00:35:36 | 000,000,029 | RH-- | C] () -- C:\Windows\version
[2014.01.11 00:34:39 | 000,698,688 | ---- | C] () -- C:\Windows\SysNative\perfh007.dat
[2014.01.11 00:34:39 | 000,295,922 | ---- | C] () -- C:\Windows\SysNative\perfi007.dat
[2014.01.11 00:34:39 | 000,148,828 | ---- | C] () -- C:\Windows\SysNative\perfc007.dat
[2014.01.11 00:34:39 | 000,038,104 | ---- | C] () -- C:\Windows\SysNative\perfd007.dat
[2014.01.10 23:59:28 | 000,001,225 | ---- | C] () -- C:\Users\Public\Desktop\Samsung Magician.lnk
[2014.01.10 23:59:00 | 000,001,858 | ---- | C] () -- C:\Users\Public\Desktop\Data Migration.lnk
[2014.01.10 23:49:20 | 000,286,305 | ---- | C] () -- D:\Desktop\AS SSD Benchmark.zip
[2014.01.10 23:44:58 | 000,001,043 | ---- | C] () -- C:\Users\Public\Desktop\SSD Tweaker.lnk
[2014.01.10 23:16:00 | 000,001,174 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 9.lnk
[2014.01.10 23:16:00 | 000,001,162 | ---- | C] () -- C:\Users\Public\Desktop\TeamViewer 9.lnk
[2014.01.10 22:58:44 | 005,352,688 | ---- | C] () -- C:\Windows\PE_File.dll
[2014.01.10 22:54:08 | 000,000,000 | ---- | C] () -- C:\Windows\Path.idx
[2014.01.10 22:53:02 | 001,048,576 | ---- | C] () -- C:\Windows\PE_Rom.dll
[2014.01.10 22:46:10 | 000,000,000 | ---- | C] () -- C:\Windows\SysWow64\drivers\1043_ASUSTeK_SABERTOOTH 990FX R2.0.alu
[2014.01.10 22:41:08 | 000,014,464 | ---- | C] () -- C:\Windows\SysWow64\drivers\AsUpIO.sys
[2014.01.10 22:35:20 | 000,015,232 | ---- | C] () -- C:\Windows\SysWow64\drivers\AsIO.sys
[2014.01.10 22:35:19 | 000,011,832 | ---- | C] () -- C:\Windows\SysWow64\drivers\AsInsHelp64.sys
[2014.01.10 22:35:19 | 000,010,216 | ---- | C] () -- C:\Windows\SysWow64\drivers\AsInsHelp32.sys
[2014.01.10 22:32:49 | 000,000,562 | ---- | C] () -- C:\Users\Public\Desktop\Fraps.lnk
[2014.01.10 22:21:59 | 000,001,391 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
[2014.01.10 22:17:42 | 000,001,109 | ---- | C] () -- C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
[2014.01.10 21:57:49 | 000,001,338 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live ID.lnk
[2014.01.10 21:51:58 | 000,001,239 | ---- | C] () -- C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk
[2014.01.10 21:48:32 | 000,001,145 | ---- | C] () -- D:\Desktop\Ashampoo Burning Studio 2013.lnk
[2014.01.10 20:17:36 | 003,429,376 | ---- | C] () -- D:\Desktop\TechnoloversPlayer.exe
[2014.01.10 20:17:36 | 002,314,844 | ---- | C] () -- D:\Desktop\TechnicLauncher.exe
[2014.01.10 20:17:36 | 000,675,988 | ---- | C] () -- D:\Desktop\Minecraft.exe
[2014.01.10 20:17:36 | 000,142,970 | R--- | C] () -- D:\Desktop\USAIP.pbk
[2014.01.10 20:17:36 | 000,001,811 | ---- | C] () -- D:\Desktop\Spotify.lnk
[2014.01.10 20:17:36 | 000,001,769 | ---- | C] () -- D:\Desktop\Process Hacker 2.lnk
[2014.01.10 20:17:36 | 000,001,407 | ---- | C] () -- D:\Desktop\PictureConverter.lnk
[2014.01.10 20:17:36 | 000,001,275 | ---- | C] () -- D:\Desktop\Internet Explorer.lnk
[2014.01.10 20:17:36 | 000,001,215 | ---- | C] () -- D:\Desktop\TeamSpeak 3 Client.lnk
[2014.01.10 20:17:36 | 000,001,150 | ---- | C] () -- D:\Desktop\OpenOffice 4.0.0.lnk
[2014.01.10 20:17:36 | 000,000,969 | ---- | C] () -- D:\Desktop\Screenshot Captor.lnk
[2014.01.10 20:17:36 | 000,000,826 | ---- | C] () -- D:\Desktop\Uplay.lnk
[2014.01.10 20:17:36 | 000,000,695 | ---- | C] () -- D:\Desktop\pbsetup.lnk
[2014.01.10 20:17:35 | 000,394,240 | ---- | C] () -- D:\Desktop\checkDisk.exe
[2014.01.10 20:17:35 | 000,001,821 | ---- | C] () -- D:\Desktop\Audible Manager.lnk
[2014.01.10 20:17:35 | 000,001,807 | ---- | C] () -- D:\Desktop\CheckDrive.lnk
[2014.01.10 20:17:35 | 000,001,410 | ---- | C] () -- D:\Desktop\Driver Cleaner Pro.lnk
[2014.01.10 20:17:35 | 000,001,070 | ---- | C] () -- D:\Desktop\CrystalDiskInfo.lnk
[2014.01.10 20:17:35 | 000,001,066 | ---- | C] () -- D:\Desktop\EVEREST Home Edition.lnk
[2014.01.10 20:17:35 | 000,000,830 | ---- | C] () -- D:\Desktop\HD Tune.lnk
[2014.01.10 19:59:47 | 000,000,720 | ---- | C] () -- C:\Users\Public\Desktop\Desura.lnk
[2014.01.10 19:51:24 | 000,001,688 | ---- | C] () -- C:\Windows\Sandboxie.ini
[2014.01.10 19:46:46 | 000,000,877 | ---- | C] () -- C:\Users\Public\Desktop\FIFA 14.lnk
[2014.01.10 19:44:54 | 000,000,648 | ---- | C] () -- C:\Users\Public\Desktop\Origin.lnk
[2014.01.10 19:38:48 | 000,000,636 | ---- | C] () -- C:\Users\Public\Desktop\Steam.lnk
[2014.01.10 19:21:59 | 000,000,822 | ---- | C] () -- C:\Users\Public\Desktop\CCleaner.lnk
[2014.01.10 19:09:22 | 000,001,159 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[2014.01.10 19:09:22 | 000,001,147 | ---- | C] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2014.01.10 18:41:22 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2014.01.10 17:43:57 | 000,025,185 | ---- | C] () -- C:\Windows\SysWow64\ieuinit.inf
[2014.01.10 17:43:56 | 000,025,185 | ---- | C] () -- C:\Windows\SysNative\ieuinit.inf
[2014.01.10 17:23:23 | 000,000,000 | -H-- | C] () -- C:\ProgramData\DP45977C.lfl
[2014.01.10 17:22:56 | 000,001,332 | ---- | C] () -- C:\Windows\SysNative\drivers\DTSU2P.DAT
[2014.01.10 17:22:54 | 005,694,760 | ---- | C] () -- C:\Windows\SysNative\drivers\rtvienna.dat
[2014.01.10 17:22:53 | 000,633,381 | ---- | C] () -- C:\Windows\SysNative\drivers\RTAIODAT.DAT
[2014.01.10 17:22:49 | 000,557,880 | ---- | C] () -- C:\Windows\SysNative\audioLibVc.dll
[2014.01.10 17:22:49 | 000,109,848 | ---- | C] () -- C:\Windows\SysNative\AcpiServiceVnA64.dll
[2014.01.10 17:16:26 | 000,000,003 | ---- | C] () -- C:\Windows\SysNative\drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
[2014.01.10 17:08:37 | 000,000,884 | ---- | C] () -- C:\Windows\tasks\Adobe Flash Player Updater.job
[2014.01.10 17:05:51 | 000,002,859 | ---- | C] () -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows Install Clean Up.lnk
[2014.01.10 17:05:51 | 000,002,184 | ---- | C] () -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft SkyDrive.lnk
[2014.01.10 17:05:51 | 000,001,797 | ---- | C] () -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk
[2014.01.10 17:05:51 | 000,001,032 | ---- | C] () -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ComCal_BETA.LNK
[2014.01.10 17:05:01 | 000,000,003 | ---- | C] () -- C:\Windows\SysNative\drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
[2014.01.10 17:04:38 | 001,591,896 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2014.01.10 17:02:42 | 000,018,866 | ---- | C] () -- C:\Users\Tobias\Documents\Wie entsteht Wind.odt
[2014.01.10 17:02:38 | 393,054,426 | ---- | C] () -- C:\Users\Tobias\Documents\Sendung Verpasst - ZDF Mediathek.flv
[2014.01.10 17:02:38 | 000,001,984 | -H-- | C] () -- C:\Users\Tobias\Documents\Default.rdp
[2014.01.10 17:02:38 | 000,000,512 | ---- | C] () -- C:\Users\Tobias\Documents\Lokaler Datenträger (C) - Verknüpfung.lnk
[2014.01.10 16:56:46 | 000,138,056 | ---- | C] () -- C:\Users\Tobias\AppData\Roaming\PnkBstrK.sys
[2014.01.10 16:56:46 | 000,028,056 | ---- | C] () -- C:\Users\Tobias\AppData\Roaming\OFMissionEditorConfig.xml
[2014.01.10 16:55:42 | 000,017,408 | ---- | C] () -- C:\Users\Tobias\AppData\Local\WebpageIcons.db
[2014.01.10 16:55:42 | 000,017,407 | ---- | C] () -- C:\Users\Tobias\AppData\Local\dt.dat
[2014.01.10 16:55:42 | 000,007,599 | ---- | C] () -- C:\Users\Tobias\AppData\Local\Resmon.ResmonCfg
[2014.01.10 16:55:42 | 000,000,058 | ---- | C] () -- C:\Users\Tobias\AppData\Local\DonationCoder_ScreenshotCaptor_InstallInfo.dat
[2014.01.10 16:55:42 | 000,000,000 | ---- | C] () -- C:\Users\Tobias\AppData\Local\prvlcl.dat
[2014.01.10 16:55:41 | 000,002,834 | ---- | C] () -- C:\Users\Tobias\.recently-used.xbel
[2014.01.10 16:55:41 | 000,000,185 | ---- | C] () -- C:\Users\Tobias\.swfinfo
[2014.01.10 16:55:41 | 000,000,000 | ---- | C] () -- C:\Users\Tobias\dir
[2014.01.10 16:44:24 | 000,000,981 | ---- | C] () -- C:\Users\Public\Desktop\AVG 2014.lnk
[2014.01.10 16:34:16 | 000,001,769 | ---- | C] () -- C:\Windows\Language_trs.ini
[2014.01.10 16:01:16 | 000,001,421 | ---- | C] () -- C:\Users\Tobias\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[2014.01.10 15:37:38 | 000,001,345 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
[2014.01.10 15:37:36 | 000,001,326 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
[2014.01.10 15:36:28 | 3141,783,552 | -HS- | C] () -- C:\hiberfil.sys
[2013.12.06 22:38:38 | 000,995,342 | ---- | C] () -- C:\Windows\SysWow64\amdocl_as32.exe
[2013.12.06 22:38:38 | 000,798,734 | ---- | C] () -- C:\Windows\SysWow64\amdocl_ld32.exe
[2013.12.06 21:39:24 | 000,204,952 | ---- | C] () -- C:\Windows\SysWow64\ativvsvl.dat
[2013.12.06 21:39:24 | 000,157,144 | ---- | C] () -- C:\Windows\SysWow64\ativvsva.dat
[2013.12.06 16:44:26 | 000,038,912 | ---- | C] () -- C:\Windows\SysWow64\kdbsdk32.dll
 
========== ZeroAccess Check ==========
 
[2009.07.14 05:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
 
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
 
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2013.07.26 03:24:57 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013.07.26 02:55:59 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009.07.14 02:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010.11.21 04:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009.07.14 02:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

< End of report >
         
__________________

Geändert von ghostertaker (15.01.2014 um 15:37 Uhr)

Alt 15.01.2014, 15:37   #19
ghostertaker
 
OTL.exe hängt sich bei scanning Firefox settings auf(habe schon 30 min gewartet) - Standard

OTL.exe hängt sich bei scanning Firefox settings auf(habe schon 30 min gewartet)



OTL Extras log:
Code:
ATTFilter
OTL Extras logfile created on: 15.01.2014 14:51:25 - Run 1
OTL by OldTimer - Version 3.2.69.0     Folder = D:\Desktop\Tobias\Antivirus
64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16750)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
 
3,90 Gb Total Physical Memory | 2,41 Gb Available Physical Memory | 61,77% Memory free
7,80 Gb Paging File | 6,06 Gb Available in Paging File | 77,73% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 232,79 Gb Total Space | 170,51 Gb Free Space | 73,25% Space Free | Partition Type: NTFS
Drive D: | 2794,39 Gb Total Space | 2239,10 Gb Free Space | 80,13% Space Free | Partition Type: NTFS
 
Computer Name: TOBIAS-PC | User Name: Tobias | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
========== Extra Registry (SafeList) ==========
 
 
========== File Associations ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = htmlfile] -- C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation)
 
[HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
 
========== Shell Spawning ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.
 
========== Security Center Settings ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01  [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
 
========== System Restore Settings ==========
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
 
========== Firewall Settings ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"EnableFirewall" = 1
"DisableNotifications" = 0
 
========== Authorized Applications List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot-S&D 2 Tray Icon -- (Safer-Networking Ltd.)
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service -- (Safer-Networking Ltd.)
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater -- (Safer-Networking Ltd.)
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service -- (Safer-Networking Ltd.)
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot-S&D 2 Tray Icon -- (Safer-Networking Ltd.)
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service -- (Safer-Networking Ltd.)
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater -- (Safer-Networking Ltd.)
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service -- (Safer-Networking Ltd.)
 
 
========== Vista Active Open Ports Exception List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
 
========== Vista Active Application Exception List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{00CB27B1-7625-47D1-B8AC-82C144039955}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{01902156-ED74-4C53-A77D-A5BF7D60941C}" = protocol=17 | dir=in | app=d:\programme\steam\steam.exe | 
"{0229696D-C817-4528-BB8E-C2A5786AD481}" = dir=out | app=c:\program files (x86)\dvdvideosoft\free torrent download\freetorrentdownload.exe | 
"{09C031CC-00D2-4881-ADD2-255AE02F67D2}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2014\avgmfapx.exe | 
"{12253906-43A1-4048-8B8B-00F00105F113}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2014\avgmfapx.exe | 
"{132F1455-BF49-41FB-8FF8-69A4B2418C7B}" = protocol=6 | dir=in | app=d:\programme\steam\steamapps\common\king arthur's gold\kag.exe | 
"{161CD361-0873-4A3A-A272-09548A677CA6}" = protocol=6 | dir=in | app=d:\programme\steam\steam.exe | 
"{190AAEAF-5444-4624-8C05-BC7839D8219D}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | 
"{2135AFDB-6CC6-4C03-9571-AB1B863695BE}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2014\avgemca.exe | 
"{230B8BE4-CD0E-4ED2-9DD7-FD2A85BA4385}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | 
"{28BACD46-C3FC-4545-94D1-73F7B8193A7A}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | 
"{2B4662F3-5E67-4326-B6DF-9E3FCD816DF4}" = protocol=17 | dir=in | app=d:\programme\steam\steam.exe | 
"{322C0789-8CFB-4599-A100-41F88CF299E4}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer.exe | 
"{32D94165-49F1-489C-84A1-D7B33198D0DC}" = protocol=6 | dir=in | app=c:\program files (x86)\asus\ai suite ii\ai suite ii.exe | 
"{41688CF0-30EA-47E9-8FB6-699E0F0267F7}" = protocol=6 | dir=in | app=d:\programme\steam\steam.exe | 
"{41B2E2A5-C2BC-4687-85B2-C5B1C4193B6D}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | 
"{5C82608A-DCA4-4AD4-A3AA-FD6317074FF1}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe | 
"{633DDCD9-01C5-41CD-8625-991613B6DFEA}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | 
"{643C1858-A702-4E22-BFEC-D27982611B70}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2014\avgdiagex.exe | 
"{664AB2FB-3EBF-4C38-B5C1-F6896CA4619E}" = protocol=17 | dir=in | app=c:\program files (x86)\asus\ai suite ii\ai suite ii.exe | 
"{6A3B0944-0558-4D15-8DCC-AA443E129AFA}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer_service.exe | 
"{6F1AF24A-D1A2-45CF-8765-16B1385025F9}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer_service.exe | 
"{6F2A653B-1C8E-48D9-83DC-4159277E14BA}" = protocol=17 | dir=in | app=d:\programme\steam\steamapps\common\wargame airland battle\wargame2.exe | 
"{7AFDFE88-2E2C-4E00-8380-F02B6A3B2C71}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{86837B29-C3BE-4BA9-A7D1-C154B6254A86}" = protocol=17 | dir=in | app=d:\programme\steam\steamapps\common\king arthur's gold\kag.exe | 
"{89A85EE4-71D5-49CA-80D4-FF580EA4AC7F}" = protocol=6 | dir=in | app=d:\programme\steam\steamapps\common\wargame airland battle\wargame2.exe | 
"{8A201A36-28E3-4B0F-BE38-7BEB46407CFE}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | 
"{94D3666A-9463-4A3E-9E07-B500ABC8A7A3}" = protocol=17 | dir=in | app=d:\programme\origin games\fifa 14\game\fifa14.exe | 
"{9E67AC98-2292-48FD-B752-9AFC49C6A10E}" = protocol=6 | dir=in | app=c:\program files (x86)\avg\avg2014\avgnsa.exe | 
"{9F721511-2ADA-4018-8025-80B5C9ACFEE9}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2014\avgdiagex.exe | 
"{9FED9E90-9063-409E-B45C-B2ACA598ECC0}" = protocol=6 | dir=in | app=d:\programme\origin games\fifa 14\game\fifa14.exe | 
"{B7C0C387-56D4-4121-B6F1-E58473D9F4F2}" = dir=in | app=c:\program files (x86)\dvdvideosoft\free torrent download\freetorrentdownload.exe | 
"{C27767D2-21ED-4E16-B217-45AF24898292}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version9\teamviewer.exe | 
"{C47BD97E-0960-4234-95F9-E02A39CE6FCE}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2014\avgemca.exe | 
"{C68B6971-8EFD-40B1-89AF-61C8614A3FEA}" = protocol=17 | dir=in | app=c:\program files (x86)\avg\avg2014\avgnsa.exe | 
"{EDD96CFD-C537-41F8-988F-4E69463BC898}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe | 
"{F0EAE757-DFD1-4B56-A106-11D3A2003539}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | 
"{F45A34FF-C5F4-45D4-951A-8211EEC04377}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | 
 
========== HKEY_LOCAL_MACHINE Uninstall List ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{1C7C8AAF-A16D-32E8-89E5-F6D165DE0BCE}" = Microsoft Visual C++ 2010  x64 Runtime - 10.0.40219
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219
"{26A24AE4-039D-4CA4-87B4-2F86417045FF}" = Java 7 Update 45 (64-bit)
"{2DF4C5DD-7417-301D-935D-939D3B7B5997}" = Microsoft Help Viewer 1.0 Language Pack - DEU
"{2EF5D87E-B7BD-458F-8428-E4D0B8B4E65C}" = Apple Mobile Device Support
"{308051DA-0048-7A07-FE8B-9B6EC119A9E8}" = AMD Catalyst Install Manager
"{34883B9C-CDFE-46F0-9C5B-935484C218C3}" = AVG 2014
"{3C983A67-DFB2-3D3D-AD9E-CA1A5A09FD18}" = Microsoft Visual Studio 2010 Express Prerequisites x64 - DEU
"{44AAA767-F540-F091-4571-ADCBC10B0C92}" = AMD Fuel
"{678A75C7-5953-B109-57EE-46C7BA4C29C1}" = AMD Drag and Drop Transcoding
"{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{723AEA0A-E9CF-44F7-AFE4-0617E8D4755A}" = AMD Steady Video Plug-In 
"{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}" = Microsoft .NET Framework 4.5.1
"{7F624BD1-4FE0-432F-B928-68302E156D04}" = AVG 2014
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8C775E70-A791-4DA8-BCC3-6AB7136F4484}" = Visual Studio 2012 x64 Redistributables
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031" = Microsoft .NET Framework 4.5.1 (Deutsch)
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1
"{9B48B0AC-C813-4174-9042-476A887592C7}" = Windows Live ID Sign-in Assistant
"{A2CB1ACB-94A2-32BA-A15E-7D80319F7589}" = Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727
"{AC53FC8B-EE18-3F9C-9B59-60937D0B182C}" = Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{AEF57B06-B494-8180-AFC7-05EFB1DB2B64}" = ccc-utility64
"{B143BE44-8723-315E-9413-011C55873C0E}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
"{B3B750C0-8C22-439D-B7CE-67F3ED99CC2B}" = Microsoft Xbox 360 Accessories 1.2
"{B9E62002-BD74-30EC-9049-93E0E003C736}" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU
"{BD1BCEF8-5CD6-D8ED-7D36-31C2172076EA}" = AMD Media Foundation Decoders
"{C214301F-F5D7-36D9-B3A2-1467C5586495}" = Microsoft Help Viewer 1.1 Language Pack - DEU
"{C3EAE456-7E7A-451F-80EF-F34C7A13C558}" = Microsoft SQL Server Compact 3.5 SP2 x64 DEU
"{C513739C-5F16-37B5-9ACF-99925FF1C1F3}" = Microsoft .NET Framework 4.5.1 (DEU)
"{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}" = SUPERAntiSpyware
"{D601CEAD-2E4F-4BBB-85CC-C29A4CE6A3C0}" = iTunes
"{E5748D30-7E6D-3A8E-BFE6-C1D02C6DDABB}" = Microsoft Help Viewer 1.1
"{ED273D26-E354-1A5B-A0D0-CB5258D43BD2}" = AMD Wireless Display v3.0
"{FCC4426F-0296-D30D-729C-E76C8E7252C7}" = AMD Accelerated Video Transcoding
"AVG" = AVG 2014
"CCleaner" = CCleaner
"CPUID CPU-Z_is1" = CPUID CPU-Z 1.68
"EPSON SX440 Series" = EPSON SX440 Series Printer Uninstall
"Microsoft Help Viewer 1.0 Language Pack - DEU" = Microsoft Help Viewer 1.0 Language Pack - DEU
"Microsoft Help Viewer 1.1" = Microsoft Help Viewer 1.1
"Microsoft Help Viewer 1.1 Language Pack - DEU" = Microsoft Help Viewer 1.1 Language Pack - DEU
"Microsoft Visual Studio 2010 Tools for Office Runtime (x64)" = Microsoft Visual Studio 2010 Tools for Office Runtime (x64)
"Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU" = Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU
"Process_Hacker2_is1" = Process Hacker 2.33 (r5590)
"Sandboxie" = Sandboxie 4.06 (64-bit)
"WinRAR archiver" = WinRAR 5.01 (64-bit)
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0125D081-30D0-4A97-82A8-C28D444B6256}" = Microsoft SQL Server Compact 3.5 SP2 DEU
"{046B79EE-7ED3-37A4-621A-FE297EF484C2}" = CCC Help Greek
"{0AEC308E-7EB3-47F7-BB59-F2C9C6166B27}" = OpenOffice 4.0.1
"{10CB5DDD-38E1-2EB2-F62C-C1948A99943E}" = AMD Catalyst Control Center
"{1194740D-0DB8-A508-31BA-E722597B4516}" = Catalyst Control Center Graphics Previews Common
"{15134cb0-b767-4960-a911-f2d16ae54797}" = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727
"{1FB16E3B-3AFB-46CB-6E83-2F5A0CF4ED16}" = Catalyst Control Center Localization All
"{22154f09-719a-4619-bb71-5b3356999fbf}" = Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727
"{29AE3F9F-7158-4ca7-B1ED-28A73ECDB215}_is1" = Samsung Magician
"{2E3A81FB-7952-F8CB-9AD5-50544E2F4838}" = CCC Help Czech
"{2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36}" = Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727
"{2F8B731A-5F2D-3EA8-8B25-C3E5E43F4BDB}" = Microsoft Visual C++  Compilers 2010 Standard - enu - x86
"{34D3688E-A737-44C5-9E2A-FF73618728E1}" = AI Suite II
"{3CF2634F-3F38-4DD3-9201-CB2FE6B5FF23}_is1" = YGOPro DevPro Version 1.9.8 r9
"{4172E797-CE12-AC47-05B7-0E48BDB33E75}" = CCC Help Russian
"{4428AEE6-FA5E-2913-8D12-B410E85E11AA}" = CCC Help Spanish
"{46F044A5-CE8B-4196-984E-5BD6525E361D}" = Apple Application Support
"{4FF1533E-FF2C-A04A-25DD-A8AEC6FA106B}" = CCC Help Chinese Standard
"{57F9C8E9-A9B8-4E19-9AC2-F21EC5094B84}" = Thrustmaster FFB Wheel driver
"{5AB7D739-1735-3A9E-BE73-C43507CB4E6F}" = Microsoft Visual Studio 2010 Service Pack 1
"{5D9ED403-94DE-3BA0-B1D6-71F4BDA412E6}" = Microsoft Visual C++ 2010  x86 Runtime - 10.0.40219
"{6071CB80-DABC-B10D-F244-7F410FB3B150}" = CCC Help Polish
"{6343B6BA-F97F-B336-9ED8-FFD43776E84D}" = CCC Help Finnish
"{67F42018-F647-4D3C-BE62-F8CB4FE2FCD5}" = Microsoft Games for Windows Marketplace
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{7133137D-DF48-4522-AD88-13C82B7D0A63}" = ROCCAT Kone XTD Mouse Driver
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}" = Microsoft Games for Windows - LIVE Redistributable
"{83FA601A-241A-4956-8A21-F7D525C4422F}_is1" = SSD Tweaker version 3.1
"{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver
"{8D3A11D0-D925-FA0F-43F3-242E49975CD2}" = CCC Help Danish
"{8EF39A9F-6A57-9706-86A5-9312D9ED8016}" = CCC Help Portuguese
"{91B33C97-0FBA-74AE-E802-D782F5C8AA89}_is1" = Ashampoo Burning Studio 2013 v.11.0.6
"{92352C97-C657-DB89-5F3A-E8C3789D9C89}" = CCC Help Chinese Traditional
"{95120000-00B9-0409-0000-0000000FF1CE}" = Microsoft Application Error Reporting
"{95545E55-3309-1929-FF41-2908A9706742}" = CCC Help Turkish
"{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}" = Visual Studio 2012 x86 Redistributables
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9CA5F712-9CAA-B3CB-02D3-7134DFC8801E}" = CCC Help French
"{A128A816-FD3F-990E-DD80-E1735BD718AE}" = CCC Help Italian
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{AA7A2800-1E75-4240-855B-03AFF8E5171E}" = FIFA 14
"{AC76BA86-7AD7-1031-7B44-AB0000000001}" = Adobe Reader XI (11.0.05) - Deutsch
"{AFC9ECA9-6A4E-1370-98F3-002B63B5AF8E}" = CCC Help Thai
"{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1" = Spybot - Search & Destroy
"{B7E38540-E355-3503-AFD7-635B2F2F76E1}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4974
"{B83513EC-2E4D-4621-816D-4CCF397BE702}_is1" = CheckDrive
"{B88F2045-CF9A-996C-1670-6F7D65F1D18A}" = CCC Help Norwegian
"{BED96D0C-7743-3CE3-F7DF-A0A4475FBF2F}" = CCC Help Hungarian
"{CB79256B-C0E0-40C6-8EB7-BDD796203581}" = Catalyst Control Center - Branding
"{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}" = Microsoft .NET Framework 4 Multi-Targeting Pack
"{D4DE3DB4-7734-47E5-8D92-B80146311406}" = Samsung Data Migration
"{DEEB5FE3-40F5-3C5B-8F85-5306EF3C08F4}" = Microsoft Visual C++ 2010 Express - DEU
"{E297492A-E114-CAE0-502E-5F36C386DD30}" = CCC Help Dutch
"{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}" = Asmedia ASM104x USB 3.0 Host Controller Driver
"{E6533A85-ED92-F897-2B68-58AC3BD87F94}" = CCC Help English
"{EBAC163A-588E-1E5A-3CE8-826E9A449244}" = CCC Help Korean
"{ED65BD75-CEF3-C0C2-9E9C-FA567484FF60}" = CCC Help Japanese
"{EEB34D84-92A1-7BE3-6DB7-ABD1C4912D6B}" = Catalyst Control Center InstallProxy
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
"{F1289D68-1C48-930F-51CF-577BDB371252}" = CCC Help Swedish
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F3F340A5-64EC-AEEC-4BDF-DC537D390BF5}" = CCC Help German
"{FDB30193-FDA0-3DAA-ACCA-A75EEFE53607}" = Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"CrystalDiskInfo_is1" = CrystalDiskInfo 6.0.4
"Desura" = Desura
"Driver Cleaner Pro" = DH Driver Cleaner Professional Edition
"EPSON Scanner" = EPSON Scan
"EVEREST Home Edition_is1" = EVEREST Home Edition v2.20
"Fraps" = Fraps
"Free Studio_is1" = Free Studio version 2014
"Gadwin PrintScreen" = Gadwin PrintScreen
"Google Chrome" = Google Chrome
"HD Tune_is1" = HD Tune 2.55
"HijackThis" = HijackThis 2.0.2
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware Version 1.75.0.1300
"Microsoft Visual C++ 2010 Express - DEU" = Microsoft Visual C++ 2010 Express - DEU
"Microsoft Visual Studio 2010 Service Pack 1" = Microsoft Visual Studio 2010 Service Pack 1
"Mozilla Firefox 26.0 (x86 de)" = Mozilla Firefox 26.0 (x86 de)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"Origin" = Origin
"ScreenshotCaptor_is1" = Screenshot Captor 4.8
"Steam" = Steam
"TeamViewer 9" = TeamViewer 9
 
========== Last 20 Event Log Errors ==========
 
[ Application Events ]
Error - 14.01.2014 10:49:56 | Computer Name = Tobias-PC | Source = WinMgmt | ID = 10
Description = 
 
Error - 15.01.2014 07:42:08 | Computer Name = Tobias-PC | Source = SideBySide | ID = 16842832
Description = Fehler beim Generieren des Aktivierungskontexts für "C:\Users\Tobias\Downloads\esetsmartinstaller_enu.exe".
 Fehler in  Manifest- oder Richtliniendatei "" in Zeile .  Eine für die Anwendung erforderliche
 Komponentenversion steht in Konflikt mit  einer anderen, bereits aktiven Komponentenversion.
In
 Konflikt stehende Komponenten:.  Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Komponente
 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
 
Error - 15.01.2014 07:42:13 | Computer Name = Tobias-PC | Source = SideBySide | ID = 16842832
Description = Fehler beim Generieren des Aktivierungskontexts für "C:\Users\Tobias\Downloads\esetsmartinstaller_enu.exe".
 Fehler in  Manifest- oder Richtliniendatei "" in Zeile .  Eine für die Anwendung erforderliche
 Komponentenversion steht in Konflikt mit  einer anderen, bereits aktiven Komponentenversion.
In
 Konflikt stehende Komponenten:.  Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Komponente
 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
 
Error - 15.01.2014 09:33:39 | Computer Name = Tobias-PC | Source = SideBySide | ID = 16842832
Description = Fehler beim Generieren des Aktivierungskontexts für "C:\Program Files
 (x86)\ESET\ESET Online Scanner\ESETSmartInstaller.exe". Fehler in  Manifest- oder
 Richtliniendatei "" in Zeile .  Eine für die Anwendung erforderliche Komponentenversion
 steht in Konflikt mit  einer anderen, bereits aktiven Komponentenversion.  In Konflikt
 stehende Komponenten:.  Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Komponente
 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
 
Error - 15.01.2014 09:35:05 | Computer Name = Tobias-PC | Source = SideBySide | ID = 16842832
Description = Fehler beim Generieren des Aktivierungskontexts für "C:\Users\Tobias\Downloads\esetsmartinstaller_enu.exe".
 Fehler in  Manifest- oder Richtliniendatei "" in Zeile .  Eine für die Anwendung erforderliche
 Komponentenversion steht in Konflikt mit  einer anderen, bereits aktiven Komponentenversion.
In
 Konflikt stehende Komponenten:.  Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Komponente
 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.
 
Error - 15.01.2014 09:52:10 | Computer Name = Tobias-PC | Source = WinMgmt | ID = 10
Description = 
 
[ System Events ]
Error - 15.01.2014 10:00:14 | Computer Name = Tobias-PC | Source = atapi | ID = 262155
Description = Der Treiber hat einen Controllerfehler auf \Device\Ide\IdePort5 gefunden.
 
Error - 15.01.2014 10:00:14 | Computer Name = Tobias-PC | Source = atapi | ID = 262155
Description = Der Treiber hat einen Controllerfehler auf \Device\Ide\IdePort5 gefunden.
 
Error - 15.01.2014 10:13:25 | Computer Name = Tobias-PC | Source = atapi | ID = 262155
Description = Der Treiber hat einen Controllerfehler auf \Device\Ide\IdePort5 gefunden.
 
Error - 15.01.2014 10:13:25 | Computer Name = Tobias-PC | Source = atapi | ID = 262155
Description = Der Treiber hat einen Controllerfehler auf \Device\Ide\IdePort5 gefunden.
 
Error - 15.01.2014 10:13:25 | Computer Name = Tobias-PC | Source = atapi | ID = 262155
Description = Der Treiber hat einen Controllerfehler auf \Device\Ide\IdePort5 gefunden.
 
Error - 15.01.2014 10:13:25 | Computer Name = Tobias-PC | Source = atapi | ID = 262155
Description = Der Treiber hat einen Controllerfehler auf \Device\Ide\IdePort5 gefunden.
 
Error - 15.01.2014 10:13:25 | Computer Name = Tobias-PC | Source = atapi | ID = 262155
Description = Der Treiber hat einen Controllerfehler auf \Device\Ide\IdePort5 gefunden.
 
Error - 15.01.2014 10:13:25 | Computer Name = Tobias-PC | Source = atapi | ID = 262155
Description = Der Treiber hat einen Controllerfehler auf \Device\Ide\IdePort5 gefunden.
 
Error - 15.01.2014 10:13:25 | Computer Name = Tobias-PC | Source = atapi | ID = 262155
Description = Der Treiber hat einen Controllerfehler auf \Device\Ide\IdePort5 gefunden.
 
Error - 15.01.2014 10:13:25 | Computer Name = Tobias-PC | Source = atapi | ID = 262155
Description = Der Treiber hat einen Controllerfehler auf \Device\Ide\IdePort5 gefunden.
 
 
< End of report >
         
Anmerkung
Könnten wir nochmal einen OTL Scan mit den richtigen Einstellungen machen(kannst du mir die Einstellungen nennen die du haben möchtest) =)
thx =)

Geändert von ghostertaker (15.01.2014 um 16:14 Uhr)

Alt 16.01.2014, 08:08   #20
schrauber
/// the machine
/// TB-Ausbilder
 

OTL.exe hängt sich bei scanning Firefox settings auf(habe schon 30 min gewartet) - Standard

OTL.exe hängt sich bei scanning Firefox settings auf(habe schon 30 min gewartet)



Zitat:
Ich habe ja immernoch eine dunkle Befürchtung das ein Trojaner,Virus etc. seine Finger mit im Spiel hat
Nein, OTL hat einfach ab und zu Probleme, speziell an der Stelle. Ist schon ewig bekannt.
Zitat:
Könnten wir nochmal einen OTL Scan mit den richtigen Einstellungen machen(kannst du mir die Einstellungen nennen die du haben möchtest) =)
Brauchen wir nicht, OTl ist toal veraltet, FRST ist da viel besser und genauer


Flash Player updaten.


Fertig

Die Reihenfolge ist hier entscheidend.
  1. Falls Defogger benutzt wurde: Defogger nochmal starten und auf re-enable klicken.
  2. Falls Combofix benutzt wurde: (Alternativ in uninstall.exe umbenennen und starten)
    • Windowstaste + R > Combofix /Uninstall (eingeben) > OK
    • Alternative: Combofix.exe in uninstall.exe umbenennen und starten
    • Combofix wird jetzt starten, sich evtl updaten und dann alle Reste von sich selbst entfernen.
  3. Downloade Dir bitte auf jeden Fall DelFix Download DelFix auf deinen Desktop:
    • Schließe alle offenen Programme.
    • Starte die delfix.exe mit einem Doppelklick.
    • Setze vor jede Funktion ein Häkchen.
    • Klicke auf Start.
    • Hinweis: DelFix entfernt u. a. alle verwendeten Programme, die Quarantäne unserer Scanner, den Java-Cache und löscht sich abschließend selbst.
    • Starte deinen Rechner abschließend neu.
  4. Sollten jetzt noch Programme aus unserer Bereinigung übrig sein kannst du sie bedenkenlos löschen.



Falls Du Lob oder Kritik abgeben möchtest kannst Du das hier tun

Hier noch ein paar Tipps zur Absicherung deines Systems.


Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
  • Bitte überprüfe ob dein System Windows Updates automatisch herunter lädt
  • Windows Updates
    • Windows XP: Start --> Systemsteuerung --> Doppelklick auf Automatische Updates
    • Windows Vista / 7: Start --> Systemsteuerung --> System und Sicherheit --> Automatische Updates aktivieren oder deaktivieren
  • Gehe sicher das die automatischen Updates aktiviert sind.
  • Software Updates
    Installierte Software kann ebenfalls Sicherheitslücken haben, welche Malware nutzen kann, um dein System zu infizieren.
    Um deine Installierte Software up to date zu halten, empfehle ich dir Secunia Online Software.


Anti- Viren Software
  • Gehe sicher immer eine Anti Viren Software installiert zu haben und das diese auch up to date ist. Es ist nämlich nutzlos wenn diese out of date sind.


Zusätzlicher Schutz
  • MalwareBytes Anti Malware
    Dies ist eines der besten Anti-Malware Tools auf dem Markt. Es ist ein On- Demond Scan Tool welches viele aktuelle Malware erkennt und auch entfernt.
    Update das Tool und lass es einmal in der Woche laufen. Die Kaufversion biete zudem noch einen Hintergrundwächter.
    Ein Tutorial zur Verwendung findest Du hier.
  • WinPatrol
    Diese Software macht einen Snapshot deines Systems und warnt dich vor eventuellen Änderungen. Downloade dir die Freeware Version von hier.


Sicheres Browsen
  • SpywareBlaster
    Eine kurze Einführung findest du Hier
  • MVPs hosts file
    Ein Tutorial findest Du hier. Leider habe ich bis jetzt kein deutschsprachiges gefunden.
  • WOT (Web of trust)
    Dieses AddOn warnt Dich bevor Du eine als schädlich gemeldete Seite besuchst.


Alternative Browser

Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
  • Opera
  • Mozilla Firefox.
    • Hinweis: Für diesen Browser habe ich hier ein paar nützliche Add Ons
    • NoScript
      Dieses AddOn blockt JavaScript, Java and Flash und andere Plugins. Sie werden nur dann ausgeführt wenn Du es bestätigst.
    • AdblockPlus
      Dieses AddOn blockt die meisten Werbung von selbst. Ein Rechtsklick auf den Banner um diesen zu AdBlockPlus hinzu zu fügen reicht und dieser wird nicht mehr geladen.
      Es spart ausserdem Downloadkapazität.

Performance
Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC
Halte dich fern von jedlichen Registry Cleanern.
Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links
Miekemoes Blogspot ( MVP )
Bill Castner ( MVP )



Don'ts
  • Klicke nicht auf alles nur weil es Dich dazu auffordert und schön bunt ist.
  • verwende keine peer to peer oder Filesharing Software (Emule, uTorrent,..)
  • Lass die Finger von Cracks, Keygens, Serials oder anderer illegaler Software.
  • Öffne keine Anhänge von Dir nicht bekannten Emails. Achte vor allem auf die Dateiendung wie zb deinFoto.jpg.exe
Nun bleibt mir nur noch dir viel Spass beim sicheren Surfen zu wünschen.

Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann.

__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Antwort

Themen zu OTL.exe hängt sich bei scanning Firefox settings auf(habe schon 30 min gewartet)
64 bit, adware, aktiviert, anhänge, anhängen, avg, defender, dringend, files, firefox, hänge, hängen, hängt, meldung, min, otl.exe, premium, professional, scan, scanning, spyware, troja, trojaner, version, virus, windows, windows 7, zeichen



Ähnliche Themen: OTL.exe hängt sich bei scanning Firefox settings auf(habe schon 30 min gewartet)


  1. Rechner hängt sich in Firefox auf
    Plagegeister aller Art und deren Bekämpfung - 27.07.2015 (19)
  2. Firefox hängt sich auf
    Plagegeister aller Art und deren Bekämpfung - 26.10.2014 (7)
  3. PC hängt sich im I-net nach 10 min auf - Win 7 / Firefox
    Plagegeister aller Art und deren Bekämpfung - 25.09.2014 (11)
  4. Samsung Laptop mit Vista hängt sich ständig auf - auch schon beim Surfen
    Plagegeister aller Art und deren Bekämpfung - 20.01.2014 (11)
  5. PC hängt sich auf wenn ich mehrere Minuten in Mozilla Firefox surfe.
    Log-Analyse und Auswertung - 02.12.2013 (13)
  6. Antivir verschwunden, Firefox hängt sich auf, merkwürdige exe
    Plagegeister aller Art und deren Bekämpfung - 18.11.2013 (13)
  7. Firefox hängt sich dauernd auf
    Plagegeister aller Art und deren Bekämpfung - 08.08.2013 (5)
  8. Firefox hängt sich ständig auf
    Log-Analyse und Auswertung - 26.07.2013 (1)
  9. TR/Crypt.EPACK.Gen2 und TR/Dropper.Gen Rechner hängt sich auf (Firefox)
    Log-Analyse und Auswertung - 16.05.2013 (21)
  10. Firefox Browser wird immer Langsamer bzw hängt sich auf
    Plagegeister aller Art und deren Bekämpfung - 29.12.2012 (8)
  11. Problem: PC hängt sich ab und zu für wenige Sekunden auf (beim Zocken und Firefox)
    Alles rund um Windows - 01.10.2012 (6)
  12. Firefox/Internet Explorer, alles hängt sich auf!
    Log-Analyse und Auswertung - 13.03.2010 (1)
  13. Firefox hängt sich ständig auf
    Plagegeister aller Art und deren Bekämpfung - 23.04.2009 (1)
  14. Firefox hängt sich laufend auf
    Alles rund um Windows - 29.07.2008 (12)
  15. Firefox hängt sich auf
    Plagegeister aller Art und deren Bekämpfung - 22.02.2008 (2)
  16. Firefox hängt sich auf
    Plagegeister aller Art und deren Bekämpfung - 27.10.2007 (18)
  17. Firefox hängt sich ständig auf
    Log-Analyse und Auswertung - 19.10.2007 (0)

Zum Thema OTL.exe hängt sich bei scanning Firefox settings auf(habe schon 30 min gewartet) - FRST log Teil 3: Code: Alles auswählen Aufklappen ATTFilter 2014-01-10 17:43 - 2014-01-10 17:43 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2014-01-10 17:43 - 2014-01-10 17:43 - 00391168 _____ (Microsoft Corporation) - OTL.exe hängt sich bei scanning Firefox settings auf(habe schon 30 min gewartet)...
Archiv
Du betrachtest: OTL.exe hängt sich bei scanning Firefox settings auf(habe schon 30 min gewartet) auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.