Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm?

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.

Antwort
Alt 20.01.2014, 13:57   #1
Becks194
 
Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm? - Standard

Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm?



Hallo,
vor einigen Tagen habe ich versehentlich facebook.cm eingegeben. Dort kam dann eine Gewinnseite, die ich aber ohne etwas anzuklicken sofort verlassen habe. Nun treten oben genannte Probleme auf:
Der PC fährt ungefragt herunter,
Ein Nutzer namens opossumkaese1 ist bei xboxgames angemeldet. Ich habe wohl eine App aus dem Microsoft Store verwendet, mich aber nicht bei xboxgames angemeldet.
Außerdem verschwinden die Administratorenrechte hin und wieder obwohl ich der einizige Nutzer des PCs bin (z.B. beim Suchlauf mit Avira konnten 600 Dateien nicht geöffnet werden).

Hier die logs (CD-Emulatoren verwende ich nicht, daher kein defogger):

FRST:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 19-01-2014 04
Ran by Isabel (administrator) on ISABEL on 20-01-2014 14:28:54
Running from C:\Users\Isabel\Desktop
Windows 8.1 (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: hxxp://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ 
Download link for 64-Bit Version: hxxp://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ 
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(APN LLC.) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe
(Broadcom Corporation) C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRYSVC.EXE
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe
(Broadcom Corporation) C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\BCMWLTRY.EXE
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\SUSSoundProxy.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkClient.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update\VUAgent.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VAIO Clip.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Intel Corporation) C:\Program Files\Sony\VAIO Care\ESRV\esrv.exe
(Broadcom Corporation) C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.EXE
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Intel Corporation) C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Intel Corporation) C:\Program Files\Sony\VAIO Care\VCPerfService.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\vim.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\vim.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCSystemTray.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCService.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCAgent.exe
() C:\Program Files\Sony\VAIO Care\listener.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCAdmin.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [RtHDVBg] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1353944 2013-11-29] (Realtek Semiconductor)
HKLM\...\Run: [Broadcom Wireless Manager UI] - C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.exe [10592256 2013-11-22] (Broadcom Corporation)
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2752752 2013-07-11] (Synaptics Incorporated)
HKLM\...\Run: [Bluetooth] - C:\Program Files\WIDCOMM\Bluetooth Software\bttray.exe [534232 2013-09-04] (Broadcom Corporation.)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [RemoteControl10] - C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [103384 2013-03-19] (CyberLink Corp.)
HKLM-x32\...\Run: [Intel AppUp(R) center] - C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [156000 2013-04-15] (Intel Corporation)
HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [684600 2013-12-09] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [ApnTBMon] - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [1778640 2013-12-20] (APN)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-11-02] (Apple Inc.)
Winlogon\Notify\igfxcui: C:\WINDOWS\SYSTEM32\igfxdev.dll (Intel Corporation)
HKCU\...\Run: [BrowserChoice] - C:\Windows\BrowserChoice\browserchoice.exe [86816 2013-08-22] (Microsoft Corporation)
AppInit_DLLs: C:\Windows\system32\nvinitx.dll,C:\WINDOWS\system32\nvinitx.dll => C:\WINDOWS\system32\nvinitx.dll [387536 2013-09-24] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\WINDOWS\SysWOW64\nvinit.dll => C:\WINDOWS\SysWOW64\nvinit.dll [326224 2013-09-24] (NVIDIA Corporation)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://sony13.msn.com/?pc=SEJB
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://sony13.msn.com/?pc=SEJB
HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://vaioportal.sony.eu
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://vaioportal.sony.eu
SearchScopes: HKCU - {0E9C6053-C874-4D75-BA08-E7AC72026ABD} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=SEJB
SearchScopes: HKCU - {FFB1311B-D60D-4B6D-9BCA-E8697E9A5E97} URL = hxxp://rover.ebay.com/rover/1/707-37276-16609-27/4?mpre=hxxp://shop.ebay.de/?oemInLn=ieSrch-&_nkw={searchTerms}
BHO: Avira SearchFree Toolbar - {41564952-412D-5637-4300-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport_x64.dll (APN LLC.)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\Sony\MSS\3.8.130\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO-x32: Avira SearchFree Toolbar - {41564952-412D-5637-4300-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport.dll (APN LLC.)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - Avira SearchFree Toolbar - {41564952-412D-5637-4300-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport_x64.dll (APN LLC.)
Toolbar: HKLM-x32 - Avira SearchFree Toolbar - {41564952-412D-5637-4300-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport.dll (APN LLC.)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1

FireFox:
========
FF ProfilePath: C:\Users\Isabel\AppData\Roaming\Mozilla\Firefox\Profiles\7rsvp52g.default
FF Homepage: google.de
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll ()
FF Plugin: @java.com/DTPlugin,version=10.25.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.5.29 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @mcafee.com/McAfeeMssPlugin - C:\Program Files\Sony\MSS\3.8.130\npMcAfeeMss.dll (McAfee, Inc.)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: intel.com/AppUp - C:\Program Files (x86)\Intel\IntelAppStore\bin\npAppUp.dll (Intel)
FF Plugin HKCU: intel.com/AppUpx64 - C:\Program Files (x86)\Intel\IntelAppStore\bin\npAppUp_x64.dll (Intel)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: Avira SearchFree Toolbar plus Web Protection - C:\Users\Isabel\AppData\Roaming\Mozilla\Firefox\Profiles\7rsvp52g.default\Extensions\toolbar_AVIRA-V7C@apn.ask.com.xpi [2013-12-20]
FF Extension: Adblock Plus - C:\Users\Isabel\AppData\Roaming\Mozilla\Firefox\Profiles\7rsvp52g.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-12-27]

==================== Services (Whitelisted) =================

U2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440376 2013-12-09] (Avira Operations GmbH & Co. KG)
U2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440376 2013-12-09] (Avira Operations GmbH & Co. KG)
U2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1011768 2013-12-09] (Avira Operations GmbH & Co. KG)
U2 APNMCP; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [166352 2013-12-20] (APN LLC.)
U2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2252504 2013-09-04] (Broadcom Corporation.)
U2 ESRV_SVC; C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe [377768 2013-05-29] (Intel Corporation)
U3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [820184 2013-02-13] (Intel(R) Corporation)
U2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-07-22] (Intel Corporation)
U2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-07-22] (Intel Corporation)
U3 McComponentHostServiceSony; C:\Program Files\Sony\MSS\3.8.130\McCHSvc.exe [288776 2013-10-16] (McAfee, Inc.)
U3 NetworkSupport; C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkSupport.exe [629336 2013-09-28] (Sony Corporation)
U2 SampleCollector; C:\Program Files\Sony\VAIO Care\VCPerfService.exe [266168 2013-05-29] (Intel Corporation)
U3 USER_ESRV_SVC; C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe [377768 2013-05-29] (Intel Corporation)
U3 VCFw; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [972000 2013-01-06] (Sony Corporation)
U3 VUAgent; C:\Program Files\Sony\VAIO Update\VUAgent.exe [1368624 2013-08-01] (Sony Corporation)
U3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation)
U3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation)
U2 wltrysvc; C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\bcmwltry.exe [6099968 2013-11-22] (Broadcom Corporation)

==================== Drivers (Whitelisted) ====================

U0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra)
U2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2013-12-09] (Avira Operations GmbH & Co. KG)
U1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [131576 2013-12-09] (Avira Operations GmbH & Co. KG)
U1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2013-12-09] (Avira Operations GmbH & Co. KG)
U2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [84720 2013-12-09] (Avira Operations GmbH & Co. KG)
U3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170712 2013-09-04] (Broadcom Corporation.)
U3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [7488176 2014-01-07] (Broadcom Corporation)
U3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows (R) Win 7 DDK provider)
U3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [224768 2013-08-22] (Microsoft Corporation)
U1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [91712 2013-03-05] (CyberLink)
U3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-10-19] (Windows (R) Win 7 DDK provider)
U3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-10-19] (Windows (R) Win 7 DDK provider)
U3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation)
U3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation)
U0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation)
U0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2013-12-26] (Microsoft Corporation)
U0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation)
U3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99800 2013-07-22] (Intel Corporation)
U3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation)
U3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation)
U3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924512 2013-08-22] (Microsoft Corporation)
U3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [411208 2013-06-28] (Realsil Semiconductor Corporation)
U3 semav6thermal64ro; C:\Windows\system32\drivers\semav6thermal64ro.sys [13792 2013-12-25] ()
U3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2013-12-26] (Microsoft Corporation)
U3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2013-07-11] (Synaptics Incorporated)
U0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2013-11-14] (Microsoft Corporation)
U3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation)
U3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-01-20 14:28 - 2014-01-20 14:29 - 00017081 _____ C:\Users\Isabel\Desktop\FRST.txt
2014-01-20 14:28 - 2014-01-20 14:28 - 00000000 ____D C:\FRST
2014-01-20 14:18 - 2014-01-20 14:18 - 02076672 _____ (Farbar) C:\Users\Isabel\Desktop\FRST64.exe
2014-01-20 12:06 - 2014-01-20 12:06 - 00000000 ____D C:\Users\Isabel\Documents\Andere
2014-01-20 10:36 - 2014-01-20 10:36 - 00000000 ____D C:\ProgramData\Sony
2014-01-20 10:00 - 2014-01-20 10:00 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-01-20 10:00 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2014-01-20 09:55 - 2014-01-20 09:55 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2014-01-20 09:55 - 2014-01-20 09:55 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2014-01-16 17:10 - 2014-01-16 17:10 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2014-01-16 17:10 - 2014-01-16 17:10 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2014-01-16 11:43 - 2013-12-09 01:15 - 00787968 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2014-01-16 11:43 - 2013-11-27 16:36 - 03395920 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
2014-01-16 11:43 - 2013-11-27 12:41 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSCollect.exe
2014-01-16 11:43 - 2013-11-27 11:34 - 00138240 _____ C:\WINDOWS\system32\OEMLicense.dll
2014-01-16 11:43 - 2013-11-27 10:54 - 00103936 _____ C:\WINDOWS\SysWOW64\OEMLicense.dll
2014-01-16 11:43 - 2013-11-27 09:48 - 00249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-01-16 11:43 - 2013-11-27 09:45 - 00206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSClient.dll
2014-01-16 11:43 - 2013-11-27 09:40 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-01-16 11:43 - 2013-11-27 09:38 - 00174592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSClient.dll
2014-01-16 11:43 - 2013-11-27 09:17 - 00695808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2014-01-16 11:43 - 2013-11-27 09:12 - 00848384 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2014-01-16 09:29 - 2014-01-16 09:29 - 00000000 ____D C:\ProgramData\Hewlett-Packard
2014-01-14 08:43 - 2014-01-14 08:43 - 00084512 _____ C:\Users\Isabel\AppData\Local\GDIPFONTCACHEV1.DAT
2014-01-13 09:19 - 2014-01-20 10:42 - 00003926 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{DF5CB71C-8006-4404-A1D3-5D78EB81D500}
2014-01-07 17:15 - 2014-01-07 17:18 - 00000000 ____D C:\Program Files (x86)\iTunes
2014-01-07 17:15 - 2014-01-07 17:15 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-01-07 17:15 - 2014-01-07 17:15 - 00000000 ____D C:\Program Files\iTunes
2014-01-07 17:15 - 2014-01-07 17:15 - 00000000 ____D C:\Program Files\iPod
2014-01-07 17:15 - 2014-01-07 17:15 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2014-01-07 17:14 - 2014-01-07 17:14 - 00000000 ____D C:\Program Files\Common Files\Apple
2014-01-07 17:14 - 2014-01-07 17:14 - 00000000 ____D C:\Program Files\Bonjour
2014-01-07 17:14 - 2014-01-07 17:14 - 00000000 ____D C:\Program Files (x86)\Bonjour
2014-01-07 16:49 - 2014-01-07 16:49 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\iFunbox_UserCache
2014-01-07 15:25 - 2014-01-07 15:25 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\Avira
2014-01-07 15:25 - 2014-01-07 15:25 - 00000000 ____D C:\ProgramData\AskPartnerNetwork
2014-01-07 15:25 - 2014-01-07 15:25 - 00000000 ____D C:\Program Files (x86)\AskPartnerNetwork
2014-01-07 15:24 - 2014-01-07 15:24 - 00000000 ____D C:\ProgramData\Avira
2014-01-07 15:24 - 2014-01-07 15:24 - 00000000 ____D C:\Program Files (x86)\Avira
2014-01-07 15:24 - 2013-12-09 11:37 - 00131576 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys
2014-01-07 15:24 - 2013-12-09 11:37 - 00108440 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys
2014-01-07 15:24 - 2013-12-09 11:37 - 00084720 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avnetflt.sys
2014-01-07 15:24 - 2013-12-09 11:37 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avkmgr.sys
2014-01-07 15:09 - 2014-01-07 15:09 - 00000020 ___SH C:\Users\UpdatusUser\ntuser.ini
2014-01-07 15:09 - 2014-01-07 15:09 - 00000000 ____D C:\WINDOWS\SysWOW64\NV
2014-01-07 15:09 - 2014-01-07 15:09 - 00000000 ____D C:\WINDOWS\system32\NV
2014-01-07 15:09 - 2014-01-07 15:09 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies
2014-01-07 15:07 - 2013-09-24 05:41 - 29336864 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 25256224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 22101280 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 17560352 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 15899400 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvwgf2umx.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 15701640 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 13627184 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvwgf2um.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 12945824 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvd3dum.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 11268384 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys
2014-01-07 15:07 - 2013-09-24 05:41 - 09280520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 07720064 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 07648000 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 06329552 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 02970400 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 02789152 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 02007328 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvenc.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 02007328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvenc.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 01884448 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6432660.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 01511712 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6432660.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 00681760 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 00603424 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 00586016 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 00515360 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 00458528 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 00388384 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 00317472 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglshim64.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 00266984 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglshim32.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 00030496 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvpciflt.sys
2014-01-07 15:05 - 2014-01-07 15:05 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\InstallShield
2014-01-07 15:04 - 2014-01-07 15:04 - 00000000 ____H C:\ProgramData\DP45977C.lfl
2014-01-07 15:04 - 2014-01-07 15:04 - 00000000 ____D C:\Upgrade
2014-01-07 15:03 - 2013-11-29 05:16 - 33683968 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoRes64.dat
2014-01-07 15:03 - 2013-11-29 05:16 - 27518208 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioVnA64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 14048512 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioRealtek64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 05681192 _____ C:\WINDOWS\system32\Drivers\rtvienna.dat
2014-01-07 15:03 - 2013-11-29 05:16 - 04933328 _____ (ASUSTeKcomputer.Inc Inc) C:\WINDOWS\system32\RTKSMlfx.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 03671768 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys
2014-01-07 15:03 - 2013-11-29 05:16 - 03610880 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioVnN64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 02809048 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtPgEx64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 02743328 _____ (Fortemedia Corporation) C:\WINDOWS\system32\FMAPO64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 02586840 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkAPO64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 02103040 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\WavesGUILib64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 02032896 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioEQ64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 01916672 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioRealtek264.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 01325312 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO5064.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 01084160 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO4064.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 01014016 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\slcnt64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 01005784 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00922880 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPOShell64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00907008 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVoiceAPO2064.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00897792 _____ (DTS, Inc.) C:\WINDOWS\system32\sl3apo64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00871856 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tossaeapo64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00848184 _____ (ASUSTeKcomputer.Inc Inc) C:\WINDOWS\system32\RTKSMSettingsIPC.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00790272 _____ (Waves Audio Ltd.) C:\WINDOWS\SysWOW64\MaxxAudioAPOShell.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00765184 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxSpeechAPO64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00722688 _____ (DTS, Inc.) C:\WINDOWS\system32\sltech64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00663296 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO30.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00662784 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVolumeSDAPO.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00648837 _____ C:\WINDOWS\system32\Drivers\RTAIODAT.DAT
2014-01-07 15:03 - 2013-11-29 05:16 - 00617176 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00605496 _____ C:\WINDOWS\system32\audioLibVc.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00582056 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tosasfapo64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00244480 _____ (TODO: <Company name>) C:\WINDOWS\system32\slprp64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00208072 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAC64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00162224 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\toseaeapo64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00149720 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoInstII64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00113576 _____ (Real Sound Lab SIA) C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00109848 _____ C:\WINDOWS\system32\AcpiServiceVnA64.dll
2014-01-07 15:03 - 2013-09-09 20:02 - 06217904 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64A.dll
2014-01-07 15:03 - 2013-09-09 20:02 - 00313520 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64A.dll
2014-01-07 15:03 - 2013-09-09 20:01 - 01938608 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64A.dll
2014-01-07 15:03 - 2013-09-09 20:01 - 00260272 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64.dll
2014-01-07 14:26 - 2013-11-19 11:30 - 00267936 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2014-01-07 13:51 - 2014-01-07 13:52 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\Apple Computer
2014-01-07 13:51 - 2014-01-07 13:51 - 00000000 ____D C:\Users\Isabel\AppData\Local\Apple Computer
2014-01-07 13:51 - 2012-08-21 13:01 - 00033240 _____ (GEAR Software Inc.) C:\WINDOWS\system32\Drivers\GEARAspiWDM.sys
2014-01-07 13:50 - 2014-01-07 13:50 - 00000000 ____D C:\Users\Isabel\AppData\Local\Apple
2014-01-07 13:50 - 2014-01-07 13:50 - 00000000 ____D C:\ProgramData\Apple Computer
2014-01-07 13:50 - 2014-01-07 13:50 - 00000000 ____D C:\ProgramData\Apple
2014-01-06 20:44 - 2014-01-06 20:44 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\Malwarebytes
2014-01-06 20:44 - 2014-01-06 20:44 - 00000000 ____D C:\ProgramData\Malwarebytes
2014-01-06 20:28 - 2014-01-06 20:28 - 00000000 ____D C:\_OTL
2014-01-06 20:19 - 2014-01-06 20:21 - 00000000 ____D C:\AdwCleaner
2014-01-06 14:44 - 2014-01-06 14:44 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\TuneUp Software
2014-01-06 14:43 - 2014-01-06 14:44 - 00000000 ____D C:\ProgramData\TuneUp Software
2014-01-06 14:43 - 2014-01-06 14:43 - 00000000 __SHD C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2014-01-06 14:41 - 2014-01-06 14:49 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\DVDVideoSoft
2014-01-06 14:41 - 2014-01-06 14:41 - 00000000 ____D C:\Users\Isabel\Documents\DVDVideoSoft
2014-01-06 11:29 - 2014-01-06 11:29 - 00000000 ____D C:\WINDOWS\System32\Tasks\Games
2014-01-04 23:31 - 2014-01-04 23:31 - 00000000 ____D C:\Users\Public\CyberLink
2014-01-04 23:31 - 2014-01-04 23:31 - 00000000 ____D C:\Users\Isabel\Documents\CyberLink
2014-01-04 23:31 - 2014-01-04 23:31 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\CyberLink
2014-01-04 23:31 - 2014-01-04 23:31 - 00000000 ____D C:\ProgramData\CyberLink
2013-12-31 11:44 - 2013-12-31 11:45 - 00000000 ___RD C:\WINDOWS\BrowserChoice
2013-12-30 11:52 - 2014-01-20 09:54 - 00000000 ____D C:\Program Files (x86)\Microsoft Works
2013-12-30 11:51 - 2013-12-30 11:51 - 00000000 ____D C:\WINDOWS\PCHEALTH
2013-12-30 11:50 - 2014-01-20 10:16 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-12-30 11:50 - 2013-12-30 11:50 - 00000000 ____D C:\Users\Isabel\AppData\Local\Microsoft Help
2013-12-30 11:50 - 2013-12-30 11:50 - 00000000 ____D C:\Program Files\Microsoft Office
2013-12-30 11:49 - 2013-12-30 11:49 - 00000000 __RHD C:\MSOCache
2013-12-30 11:42 - 2014-01-17 10:58 - 00000000 ____D C:\Users\Isabel\Documents\Tweede jaar
2013-12-30 11:25 - 2014-01-17 12:26 - 00124416 ___SH C:\Users\Isabel\Desktop\Thumbs.db
2013-12-30 11:15 - 2013-12-30 11:15 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2013-12-27 12:24 - 2013-12-27 12:24 - 00000000 ____D C:\Users\Isabel\Documents\IBM
2013-12-27 12:24 - 2013-12-27 12:24 - 00000000 ____D C:\Users\Isabel\AppData\Local\javasharedresources
2013-12-27 12:24 - 2013-12-27 12:24 - 00000000 ____D C:\Users\Isabel\.spss
2013-12-27 12:21 - 2013-12-27 12:21 - 00000000 ____D C:\Users\Isabel\AppData\Local\IBM
2013-12-27 12:21 - 2013-12-27 12:21 - 00000000 ____D C:\ProgramData\SafeNet Sentinel
2013-12-27 12:20 - 2013-12-27 12:20 - 00000000 ____D C:\ProgramData\SPSS
2013-12-27 12:18 - 2013-12-27 12:18 - 00001025 _____ C:\WINDOWS\SysWOW64\sysprs7.tgz
2013-12-27 12:18 - 2013-12-27 12:18 - 00001025 _____ C:\WINDOWS\SysWOW64\sysprs7.dll
2013-12-27 12:18 - 2013-12-27 12:18 - 00000219 _____ C:\WINDOWS\SysWOW64\lsprst7.tgz
2013-12-27 12:18 - 2013-12-27 12:18 - 00000205 _____ C:\WINDOWS\SysWOW64\lsprst7.dll
2013-12-27 12:18 - 2013-12-27 12:18 - 00000016 ____H C:\WINDOWS\SysWOW64\servdat.slm
2013-12-27 12:18 - 2013-12-27 12:18 - 00000000 ____D C:\Program Files (x86)\IBM
2013-12-27 11:34 - 2013-12-27 11:34 - 00000000 ___RD C:\Users\Isabel\Documents\Notes
2013-12-27 11:12 - 2013-12-27 11:12 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\NVIDIA
2013-12-27 11:02 - 2013-12-27 11:02 - 00000000 ____D C:\Users\Isabel\AppData\Local\Macromedia
2013-12-27 11:01 - 2013-12-30 11:39 - 00000000 ____D C:\Users\Isabel\AppData\Local\Adobe
2013-12-27 11:00 - 2013-12-27 11:00 - 00000000 ____D C:\ProgramData\APN
2013-12-26 19:33 - 2014-01-20 10:48 - 00000000 __RDO C:\Users\Isabel\SkyDrive
2013-12-26 19:27 - 2013-12-26 19:27 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf
2013-12-26 19:24 - 2013-12-26 19:24 - 00001450 _____ C:\Users\Isabel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-12-26 19:24 - 2013-12-26 19:24 - 00000020 ___SH C:\Users\Isabel\ntuser.ini
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Vorlagen
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Startmenü
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Eigene Dateien
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Druckumgebung
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten
2013-12-26 19:14 - 2013-12-26 19:14 - 00022960 _____ C:\WINDOWS\system32\emptyregdb.dat
2013-12-26 18:58 - 2013-12-26 18:58 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate
2013-12-26 18:57 - 2013-12-27 12:24 - 00000000 ____D C:\Users\Isabel
2013-12-26 18:57 - 2013-12-26 19:14 - 00028578 _____ C:\WINDOWS\diagwrn.xml
2013-12-26 18:57 - 2013-12-26 19:14 - 00028578 _____ C:\WINDOWS\diagerr.xml
2013-12-26 18:57 - 2013-12-26 18:58 - 00000000 ___RD C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2013-12-26 18:57 - 2013-12-26 18:58 - 00000000 ___RD C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2013-12-26 18:57 - 2013-12-26 18:58 - 00000000 ___RD C:\Users\Isabel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2013-12-26 18:57 - 2013-12-26 18:58 - 00000000 ___RD C:\Users\Isabel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Vorlagen
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Startmenü
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Netzwerkumgebung
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Lokale Einstellungen
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Eigene Dateien
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Druckumgebung
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Musik
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Bilder
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Verlauf
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Anwendungsdaten
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Anwendungsdaten
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Vorlagen
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Startmenü
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Netzwerkumgebung
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Lokale Einstellungen
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Eigene Dateien
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Druckumgebung
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Documents\Eigene Musik
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Documents\Eigene Bilder
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\AppData\Local\Verlauf
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\AppData\Local\Anwendungsdaten
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Anwendungsdaten
2013-12-26 18:57 - 2013-08-22 16:36 - 00000000 ___RD C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2013-12-26 18:57 - 2013-08-22 16:36 - 00000000 ___RD C:\Users\Isabel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2013-12-26 18:57 - 2013-08-22 16:36 - 00000000 ____D C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2013-12-26 18:57 - 2013-08-22 16:36 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2013-12-26 18:53 - 2014-01-07 15:04 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2013-12-26 18:53 - 2013-12-26 18:53 - 00000000 ____D C:\Program Files\Realtek
2013-12-26 18:53 - 2013-08-09 18:32 - 06599968 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2013-12-26 18:53 - 2013-08-09 18:32 - 03452192 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2013-12-26 18:53 - 2013-08-09 18:32 - 03310693 _____ C:\WINDOWS\system32\nvcoproc.bin
2013-12-26 18:53 - 2013-08-09 18:32 - 02559776 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2013-12-26 18:53 - 2013-08-09 18:32 - 01041696 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2013-12-26 18:53 - 2013-08-09 18:32 - 00920864 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe
2013-12-26 18:53 - 2013-08-09 18:32 - 00219424 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2013-12-26 18:53 - 2013-08-09 18:32 - 00067072 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll
2013-12-26 18:53 - 2013-08-09 18:32 - 00063776 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2013-12-26 18:52 - 2014-01-20 14:15 - 01425356 _____ C:\WINDOWS\WindowsUpdate.log
2013-12-26 18:51 - 2014-01-07 15:09 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2013-12-26 18:51 - 2013-12-26 18:53 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2013-12-26 18:51 - 2013-12-26 18:51 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf
2013-12-26 18:51 - 2013-12-26 18:51 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
2013-12-26 18:51 - 2013-12-26 18:51 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2013-12-26 18:50 - 2013-12-26 18:59 - 00000000 ____D C:\Program Files\Intel
2013-12-26 18:50 - 2013-12-26 18:59 - 00000000 ____D C:\Program Files (x86)\Intel
2013-12-26 18:50 - 2013-09-16 08:32 - 00064000 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL
2013-12-26 18:50 - 2013-09-16 08:32 - 00060416 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL
2013-12-26 18:49 - 2013-12-26 18:49 - 00000264 _____ C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job
2013-12-26 18:49 - 2013-12-26 18:49 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf
2013-12-26 18:49 - 2013-12-26 18:49 - 00000000 ____D C:\Program Files\Synaptics
2013-12-26 18:47 - 2013-12-27 15:52 - 00000000 ___DC C:\WINDOWS\Panther
2013-12-26 18:47 - 2013-12-26 18:47 - 00000000 __SHD C:\Recovery
2013-12-26 18:46 - 2013-12-26 18:46 - 23183360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 17112576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 12996608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 11221504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 05769216 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 04243968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 02764288 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 02334208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 02166784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 01995264 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2013-12-26 18:46 - 2013-12-26 18:46 - 01928192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2013-12-26 18:46 - 2013-12-26 18:46 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 01395200 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 01157632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00703488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00615936 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
2013-12-26 18:46 - 2013-12-26 18:46 - 00393216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00240128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2013-12-26 18:46 - 2013-12-26 18:46 - 00197120 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrrun.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrrun.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00075360 _____ (Microsoft Corporation) C:\WINDOWS\system32\imagehlp.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00070680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imagehlp.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 13177344 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 11674624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 07399256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2013-12-26 18:45 - 2013-12-26 18:45 - 04191744 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2013-12-26 18:45 - 2013-12-26 18:45 - 04105728 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 02896896 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 02570240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 02266624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 02143744 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 02140888 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 01843712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 01816576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Display.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 01765384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 01765376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 01756160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2013-12-26 18:45 - 2013-12-26 18:45 - 01642016 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2013-12-26 18:45 - 2013-12-26 18:45 - 01530200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2013-12-26 18:45 - 2013-12-26 18:45 - 01506680 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2013-12-26 18:45 - 2013-12-26 18:45 - 01476184 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2013-12-26 18:45 - 2013-12-26 18:45 - 01391104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
2013-12-26 18:45 - 2013-12-26 18:45 - 01345536 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2013-12-26 18:45 - 2013-12-26 18:45 - 01302528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00922624 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00747008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcli.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00744448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00637952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2013-12-26 18:45 - 2013-12-26 18:45 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
2013-12-26 18:45 - 2013-12-26 18:45 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00544768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcli.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00516496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00479744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2013-12-26 18:45 - 2013-12-26 18:45 - 00406400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00382808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2013-12-26 18:45 - 2013-12-26 18:45 - 00372568 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2013-12-26 18:45 - 2013-12-26 18:45 - 00358896 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00325464 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2013-12-26 18:45 - 2013-12-26 18:45 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00225792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00146776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\SerCx2.sys
2013-12-26 18:45 - 2013-12-26 18:45 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbici.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00086872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2013-12-26 18:45 - 2013-12-26 18:45 - 00039768 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2013-12-26 18:45 - 2013-12-26 18:45 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredentialMigrationHandler.dll
2013-12-26 18:44 - 2013-12-26 18:44 - 00262144 _____ C:\WINDOWS\system32\config\userdiff
2013-12-26 18:42 - 2013-12-26 18:42 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2013-12-26 18:42 - 2013-12-26 18:42 - 00000000 ____D C:\Program Files\Reference Assemblies
2013-12-26 18:42 - 2013-12-26 18:42 - 00000000 ____D C:\Program Files\MSBuild
2013-12-26 18:42 - 2013-12-26 18:42 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2013-12-26 18:42 - 2013-12-26 18:42 - 00000000 ____D C:\Program Files (x86)\MSBuild
2013-12-26 18:41 - 2013-08-03 05:48 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2013-12-26 18:41 - 2013-08-03 05:48 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2013-12-26 18:41 - 2013-08-03 05:48 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2013-12-26 18:41 - 2013-08-03 05:41 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2013-12-26 18:41 - 2013-08-03 05:41 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-12-26 18:41 - 2013-08-03 05:41 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2013-12-26 18:07 - 2013-12-26 19:14 - 00006553 _____ C:\WINDOWS\comsetup.log
2013-12-26 14:32 - 2013-12-26 14:32 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\WildTangent
2013-12-26 14:28 - 2013-12-26 14:28 - 00000000 ____D C:\Users\Isabel\AppData\Local\Apps\2.0
2013-12-26 14:10 - 2013-12-26 14:10 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\Mozilla
2013-12-26 14:10 - 2013-12-26 14:10 - 00000000 ____D C:\Users\Isabel\AppData\Local\Mozilla
2013-12-26 14:10 - 2013-12-26 14:10 - 00000000 ____D C:\ProgramData\Mozilla
2013-12-26 14:10 - 2013-12-26 14:10 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-12-26 14:10 - 2013-12-26 14:10 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-12-26 14:07 - 2013-12-26 14:07 - 00003548 _____ C:\WINDOWS\System32\Tasks\CreateChoiceProcessTask
2013-12-26 13:40 - 2014-01-16 20:57 - 00000000 ____D C:\WINDOWS\system32\MRT
2013-12-26 13:40 - 2014-01-16 20:52 - 86054176 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2013-12-25 14:10 - 2013-12-25 14:10 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\Macromedia
2013-12-25 14:00 - 2013-12-25 14:00 - 00003128 _____ C:\WINDOWS\System32\Tasks\USER_ESRV_SVC
2013-12-25 14:00 - 2013-12-25 14:00 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\iolo
2013-12-25 14:00 - 2013-12-25 13:55 - 00013792 _____ C:\WINDOWS\system32\Drivers\semav6thermal64ro.sys
2013-12-25 13:34 - 2014-01-20 10:37 - 00000000 ____D C:\Update
2013-12-25 13:29 - 2014-01-20 12:12 - 00003596 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-998897912-3022025444-1149965468-1002
2013-12-25 13:19 - 2013-12-26 14:28 - 00000000 ____D C:\Users\Isabel\AppData\Local\Sony Corporation
2013-12-25 13:18 - 2013-12-25 13:18 - 00000000 ____D C:\Users\Isabel\Documents\Bluetooth-Exchange-Ordner
2013-12-25 13:18 - 2013-12-25 13:18 - 00000000 ____D C:\Users\Isabel\AppData\Local\Broadcom
2013-12-25 13:17 - 2013-12-26 19:24 - 00000000 ___RD C:\Users\Isabel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-12-25 13:17 - 2013-12-26 19:24 - 00000000 ___RD C:\Users\Isabel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2013-12-25 13:17 - 2013-12-25 13:17 - 00000000 ____D C:\WINDOWS\System32\Tasks\WPD
2013-12-25 13:16 - 2013-12-30 11:39 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\Adobe
2013-12-25 13:16 - 2013-12-27 11:12 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\Sony Corporation
2013-12-25 13:16 - 2013-12-26 19:03 - 00000000 ____D C:\WINDOWS\SysWOW64\VAIO Startup Setting Tool
2013-12-25 13:16 - 2013-12-25 13:16 - 00000000 ____D C:\WINDOWS\pss
2013-12-25 13:14 - 2014-01-10 19:59 - 00000000 ____D C:\Users\Isabel\AppData\Local\Packages
2013-12-25 13:14 - 2013-12-25 13:14 - 00000000 ____D C:\Users\Isabel\AppData\Local\VirtualStore
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Vorlagen
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Startmenü
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Netzwerkumgebung
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Lokale Einstellungen
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Eigene Dateien
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Druckumgebung
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Documents\Eigene Musik
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Documents\Eigene Bilder
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\AppData\Local\Verlauf
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\AppData\Local\Anwendungsdaten
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Anwendungsdaten
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Programme
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\ProgramData\Vorlagen
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\ProgramData\Startmenü
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\ProgramData\Dokumente
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Dokumente und Einstellungen

==================== One Month Modified Files and Folders =======

2014-01-20 14:29 - 2014-01-20 14:28 - 00017081 _____ C:\Users\Isabel\Desktop\FRST.txt
2014-01-20 14:28 - 2014-01-20 14:28 - 00000000 ____D C:\FRST
2014-01-20 14:18 - 2014-01-20 14:18 - 02076672 _____ (Farbar) C:\Users\Isabel\Desktop\FRST64.exe
2014-01-20 14:15 - 2013-12-26 18:52 - 01425356 _____ C:\WINDOWS\WindowsUpdate.log
2014-01-20 14:00 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\sru
2014-01-20 12:12 - 2013-12-25 13:29 - 00003596 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-998897912-3022025444-1149965468-1002
2014-01-20 12:06 - 2014-01-20 12:06 - 00000000 ____D C:\Users\Isabel\Documents\Andere
2014-01-20 10:48 - 2013-12-26 19:33 - 00000000 __RDO C:\Users\Isabel\SkyDrive
2014-01-20 10:47 - 2013-08-22 15:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2014-01-20 10:42 - 2014-01-13 09:19 - 00003926 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{DF5CB71C-8006-4404-A1D3-5D78EB81D500}
2014-01-20 10:37 - 2013-12-25 13:34 - 00000000 ____D C:\Update
2014-01-20 10:37 - 2013-11-22 18:52 - 00000000 ____D C:\Program Files\Sony
2014-01-20 10:36 - 2014-01-20 10:36 - 00000000 ____D C:\ProgramData\Sony
2014-01-20 10:36 - 2013-11-22 20:09 - 00000000 ____D C:\ProgramData\McAfee
2014-01-20 10:28 - 2013-08-22 14:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2014-01-20 10:22 - 2013-11-13 23:18 - 00310644 _____ C:\WINDOWS\PFRO.log
2014-01-20 10:22 - 2013-08-22 15:44 - 00388856 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2014-01-20 10:20 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\WinStore
2014-01-20 10:16 - 2013-12-30 11:50 - 00000000 ____D C:\ProgramData\Microsoft Help
2014-01-20 10:13 - 2013-11-22 20:30 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2014-01-20 10:00 - 2014-01-20 10:00 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-01-20 09:55 - 2014-01-20 09:55 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2014-01-20 09:55 - 2014-01-20 09:55 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2014-01-20 09:54 - 2013-12-30 11:52 - 00000000 ____D C:\Program Files (x86)\Microsoft Works
2014-01-17 12:26 - 2013-12-30 11:25 - 00124416 ___SH C:\Users\Isabel\Desktop\Thumbs.db
2014-01-17 10:58 - 2013-12-30 11:42 - 00000000 ____D C:\Users\Isabel\Documents\Tweede jaar
2014-01-16 20:57 - 2013-12-26 13:40 - 00000000 ____D C:\WINDOWS\system32\MRT
2014-01-16 20:52 - 2013-12-26 13:40 - 86054176 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-01-16 17:10 - 2014-01-16 17:10 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2014-01-16 17:10 - 2014-01-16 17:10 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2014-01-16 10:04 - 2013-11-14 08:27 - 01776918 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2014-01-16 10:04 - 2013-11-14 08:11 - 00765582 _____ C:\WINDOWS\system32\perfh007.dat
2014-01-16 10:04 - 2013-11-14 08:11 - 00159366 _____ C:\WINDOWS\system32\perfc007.dat
2014-01-16 10:03 - 2013-08-22 15:46 - 00330863 _____ C:\WINDOWS\setupact.log
2014-01-16 09:29 - 2014-01-16 09:29 - 00000000 ____D C:\ProgramData\Hewlett-Packard
2014-01-15 18:22 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\AppReadiness
2014-01-14 08:43 - 2014-01-14 08:43 - 00084512 _____ C:\Users\Isabel\AppData\Local\GDIPFONTCACHEV1.DAT
2014-01-10 19:59 - 2013-12-25 13:14 - 00000000 ____D C:\Users\Isabel\AppData\Local\Packages
2014-01-07 17:18 - 2014-01-07 17:15 - 00000000 ____D C:\Program Files (x86)\iTunes
2014-01-07 17:15 - 2014-01-07 17:15 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-01-07 17:15 - 2014-01-07 17:15 - 00000000 ____D C:\Program Files\iTunes
2014-01-07 17:15 - 2014-01-07 17:15 - 00000000 ____D C:\Program Files\iPod
2014-01-07 17:15 - 2014-01-07 17:15 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2014-01-07 17:14 - 2014-01-07 17:14 - 00000000 ____D C:\Program Files\Common Files\Apple
2014-01-07 17:14 - 2014-01-07 17:14 - 00000000 ____D C:\Program Files\Bonjour
2014-01-07 17:14 - 2014-01-07 17:14 - 00000000 ____D C:\Program Files (x86)\Bonjour
2014-01-07 16:49 - 2014-01-07 16:49 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\iFunbox_UserCache
2014-01-07 15:25 - 2014-01-07 15:25 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\Avira
2014-01-07 15:25 - 2014-01-07 15:25 - 00000000 ____D C:\ProgramData\AskPartnerNetwork
2014-01-07 15:25 - 2014-01-07 15:25 - 00000000 ____D C:\Program Files (x86)\AskPartnerNetwork
2014-01-07 15:24 - 2014-01-07 15:24 - 00000000 ____D C:\ProgramData\Avira
2014-01-07 15:24 - 2014-01-07 15:24 - 00000000 ____D C:\Program Files (x86)\Avira
2014-01-07 15:12 - 2013-08-22 15:46 - 00000618 _____ C:\WINDOWS\setuperr.log
2014-01-07 15:09 - 2014-01-07 15:09 - 00000020 ___SH C:\Users\UpdatusUser\ntuser.ini
2014-01-07 15:09 - 2014-01-07 15:09 - 00000000 ____D C:\WINDOWS\SysWOW64\NV
2014-01-07 15:09 - 2014-01-07 15:09 - 00000000 ____D C:\WINDOWS\system32\NV
2014-01-07 15:09 - 2014-01-07 15:09 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies
2014-01-07 15:09 - 2013-12-26 18:51 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2014-01-07 15:09 - 2013-11-22 19:59 - 00000000 ____D C:\ProgramData\NVIDIA
2014-01-07 15:05 - 2014-01-07 15:05 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\InstallShield
2014-01-07 15:05 - 2013-11-22 20:03 - 07488176 _____ (Broadcom Corporation) C:\WINDOWS\system32\Drivers\BCMWL63a.SYS
2014-01-07 15:05 - 2013-11-22 20:03 - 04131840 _____ (Broadcom Corporation) C:\WINDOWS\system32\bcmihvsrv64.dll
2014-01-07 15:05 - 2013-11-22 20:03 - 03777024 _____ (Broadcom Corporation) C:\WINDOWS\system32\bcmihvui64.dll
2014-01-07 15:05 - 2013-11-22 19:53 - 00023892 _____ C:\WINDOWS\DPINST.LOG
2014-01-07 15:04 - 2014-01-07 15:04 - 00000000 ____H C:\ProgramData\DP45977C.lfl
2014-01-07 15:04 - 2014-01-07 15:04 - 00000000 ____D C:\Upgrade
2014-01-07 15:04 - 2013-12-26 18:53 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2014-01-07 13:52 - 2014-01-07 13:51 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\Apple Computer
2014-01-07 13:51 - 2014-01-07 13:51 - 00000000 ____D C:\Users\Isabel\AppData\Local\Apple Computer
2014-01-07 13:50 - 2014-01-07 13:50 - 00000000 ____D C:\Users\Isabel\AppData\Local\Apple
2014-01-07 13:50 - 2014-01-07 13:50 - 00000000 ____D C:\ProgramData\Apple Computer
2014-01-07 13:50 - 2014-01-07 13:50 - 00000000 ____D C:\ProgramData\Apple
2014-01-07 12:38 - 2013-11-22 19:54 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2014-01-06 23:31 - 2013-08-22 16:38 - 00693240 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2014-01-06 23:31 - 2013-08-22 16:38 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2014-01-06 20:44 - 2014-01-06 20:44 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\Malwarebytes
2014-01-06 20:44 - 2014-01-06 20:44 - 00000000 ____D C:\ProgramData\Malwarebytes
2014-01-06 20:28 - 2014-01-06 20:28 - 00000000 ____D C:\_OTL
2014-01-06 20:21 - 2014-01-06 20:19 - 00000000 ____D C:\AdwCleaner
2014-01-06 14:49 - 2014-01-06 14:41 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\DVDVideoSoft
2014-01-06 14:44 - 2014-01-06 14:44 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\TuneUp Software
2014-01-06 14:44 - 2014-01-06 14:43 - 00000000 ____D C:\ProgramData\TuneUp Software
2014-01-06 14:43 - 2014-01-06 14:43 - 00000000 __SHD C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2014-01-06 14:41 - 2014-01-06 14:41 - 00000000 ____D C:\Users\Isabel\Documents\DVDVideoSoft
2014-01-06 11:45 - 2013-11-14 08:13 - 00000000 ____D C:\WINDOWS\ShellNew
2014-01-06 11:29 - 2014-01-06 11:29 - 00000000 ____D C:\WINDOWS\System32\Tasks\Games
2014-01-04 23:31 - 2014-01-04 23:31 - 00000000 ____D C:\Users\Public\CyberLink
2014-01-04 23:31 - 2014-01-04 23:31 - 00000000 ____D C:\Users\Isabel\Documents\CyberLink
2014-01-04 23:31 - 2014-01-04 23:31 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\CyberLink
2014-01-04 23:31 - 2014-01-04 23:31 - 00000000 ____D C:\ProgramData\CyberLink
2013-12-31 17:17 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\rescache
2013-12-31 11:45 - 2013-12-31 11:44 - 00000000 ___RD C:\WINDOWS\BrowserChoice
2013-12-30 19:24 - 2013-11-22 20:24 - 00000000 ____D C:\ProgramData\Adobe
2013-12-30 11:51 - 2013-12-30 11:51 - 00000000 ____D C:\WINDOWS\PCHEALTH
2013-12-30 11:51 - 2013-08-22 16:36 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2013-12-30 11:50 - 2013-12-30 11:50 - 00000000 ____D C:\Users\Isabel\AppData\Local\Microsoft Help
2013-12-30 11:50 - 2013-12-30 11:50 - 00000000 ____D C:\Program Files\Microsoft Office
2013-12-30 11:49 - 2013-12-30 11:49 - 00000000 __RHD C:\MSOCache
2013-12-30 11:39 - 2013-12-27 11:01 - 00000000 ____D C:\Users\Isabel\AppData\Local\Adobe
2013-12-30 11:39 - 2013-12-25 13:16 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\Adobe
2013-12-30 11:15 - 2013-12-30 11:15 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2013-12-27 15:52 - 2013-12-26 18:47 - 00000000 ___DC C:\WINDOWS\Panther
2013-12-27 12:24 - 2013-12-27 12:24 - 00000000 ____D C:\Users\Isabel\Documents\IBM
2013-12-27 12:24 - 2013-12-27 12:24 - 00000000 ____D C:\Users\Isabel\AppData\Local\javasharedresources
2013-12-27 12:24 - 2013-12-27 12:24 - 00000000 ____D C:\Users\Isabel\.spss
2013-12-27 12:24 - 2013-12-26 18:57 - 00000000 ____D C:\Users\Isabel
2013-12-27 12:21 - 2013-12-27 12:21 - 00000000 ____D C:\Users\Isabel\AppData\Local\IBM
2013-12-27 12:21 - 2013-12-27 12:21 - 00000000 ____D C:\ProgramData\SafeNet Sentinel
2013-12-27 12:20 - 2013-12-27 12:20 - 00000000 ____D C:\ProgramData\SPSS
2013-12-27 12:18 - 2013-12-27 12:18 - 00001025 _____ C:\WINDOWS\SysWOW64\sysprs7.tgz
2013-12-27 12:18 - 2013-12-27 12:18 - 00001025 _____ C:\WINDOWS\SysWOW64\sysprs7.dll
2013-12-27 12:18 - 2013-12-27 12:18 - 00000219 _____ C:\WINDOWS\SysWOW64\lsprst7.tgz
2013-12-27 12:18 - 2013-12-27 12:18 - 00000205 _____ C:\WINDOWS\SysWOW64\lsprst7.dll
2013-12-27 12:18 - 2013-12-27 12:18 - 00000016 ____H C:\WINDOWS\SysWOW64\servdat.slm
2013-12-27 12:18 - 2013-12-27 12:18 - 00000000 ____D C:\Program Files (x86)\IBM
2013-12-27 11:34 - 2013-12-27 11:34 - 00000000 ___RD C:\Users\Isabel\Documents\Notes
2013-12-27 11:21 - 2013-11-22 20:37 - 00000000 ____D C:\Program Files (x86)\WildGames
2013-12-27 11:20 - 2013-11-22 20:37 - 00000000 ____D C:\ProgramData\WildTangent
2013-12-27 11:16 - 2013-11-22 20:11 - 00000000 ____D C:\Program Files (x86)\Sony
2013-12-27 11:16 - 2013-11-22 20:09 - 00000000 ____D C:\ProgramData\Sony Corporation
2013-12-27 11:15 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\restore
2013-12-27 11:12 - 2013-12-27 11:12 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\NVIDIA
2013-12-27 11:12 - 2013-12-25 13:16 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\Sony Corporation
2013-12-27 11:02 - 2013-12-27 11:02 - 00000000 ____D C:\Users\Isabel\AppData\Local\Macromedia
2013-12-27 11:00 - 2013-12-27 11:00 - 00000000 ____D C:\ProgramData\APN
2013-12-27 10:55 - 2012-07-26 09:12 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2013-12-27 10:54 - 2012-07-26 06:37 - 00000000 ____D C:\Users\Default.migrated
2013-12-26 19:27 - 2013-12-26 19:27 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf
2013-12-26 19:24 - 2013-12-26 19:24 - 00001450 _____ C:\Users\Isabel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-12-26 19:24 - 2013-12-26 19:24 - 00000020 ___SH C:\Users\Isabel\ntuser.ini
2013-12-26 19:24 - 2013-12-25 13:17 - 00000000 ___RD C:\Users\Isabel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-12-26 19:24 - 2013-12-25 13:17 - 00000000 ___RD C:\Users\Isabel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Vorlagen
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Startmenü
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Eigene Dateien
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Druckumgebung
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten
2013-12-26 19:15 - 2013-08-22 16:36 - 00000000 ____D C:\Program Files\Windows NT
2013-12-26 19:15 - 2013-08-22 14:36 - 00000000 __RHD C:\Users\Default
2013-12-26 19:14 - 2013-12-26 19:14 - 00022960 _____ C:\WINDOWS\system32\emptyregdb.dat
2013-12-26 19:14 - 2013-12-26 18:57 - 00028578 _____ C:\WINDOWS\diagwrn.xml
2013-12-26 19:14 - 2013-12-26 18:57 - 00028578 _____ C:\WINDOWS\diagerr.xml
2013-12-26 19:14 - 2013-12-26 18:07 - 00006553 _____ C:\WINDOWS\comsetup.log
2013-12-26 19:14 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\Registration
2013-12-26 19:08 - 2013-08-22 16:36 - 00000000 __RSD C:\WINDOWS\Media
2013-12-26 19:07 - 2013-08-22 16:36 - 00000000 __RHD C:\Users\Public\Libraries
2013-12-26 19:03 - 2013-12-25 13:16 - 00000000 ____D C:\WINDOWS\SysWOW64\VAIO Startup Setting Tool
2013-12-26 19:03 - 2013-08-22 14:36 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2013-12-26 19:03 - 2013-08-22 14:25 - 00262144 ___SH C:\WINDOWS\system32\config\ELAM
2013-12-26 19:00 - 2013-11-22 20:00 - 00000000 ____D C:\WINDOWS\SysWOW64\sda
2013-12-26 19:00 - 2013-11-22 20:00 - 00000000 ____D C:\WINDOWS\system32\Version
2013-12-26 19:00 - 2013-11-14 08:11 - 00000000 ____D C:\WINDOWS\SysWOW64\WCN
2013-12-26 19:00 - 2013-11-14 08:11 - 00000000 ____D C:\WINDOWS\SysWOW64\sysprep
2013-12-26 19:00 - 2013-11-14 08:11 - 00000000 ____D C:\WINDOWS\system32\WCN
2013-12-26 19:00 - 2013-08-22 16:37 - 00004893 _____ C:\WINDOWS\DtcInstall.log
2013-12-26 19:00 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI
2013-12-26 19:00 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz
2013-12-26 19:00 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\SysWOW64\IME
2013-12-26 19:00 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2013-12-26 19:00 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\spool
2013-12-26 19:00 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\MUI
2013-12-26 19:00 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\IME
2013-12-26 19:00 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\Resources
2013-12-26 19:00 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\IME
2013-12-26 19:00 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\Help
2013-12-26 19:00 - 2013-08-22 14:36 - 00000000 ____D C:\WINDOWS\SysWOW64\SMI
2013-12-26 19:00 - 2013-08-22 14:36 - 00000000 ____D C:\WINDOWS\system32\oobe
2013-12-26 18:59 - 2013-12-26 18:50 - 00000000 ____D C:\Program Files\Intel
2013-12-26 18:59 - 2013-12-26 18:50 - 00000000 ____D C:\Program Files (x86)\Intel
2013-12-26 18:59 - 2013-08-22 16:43 - 00000000 ____D C:\WINDOWS\DigitalLocker
2013-12-26 18:59 - 2013-08-22 16:36 - 00000000 __SHD C:\Program Files\Windows Sidebar
2013-12-26 18:59 - 2013-08-22 16:36 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar
2013-12-26 18:59 - 2012-08-03 03:25 - 00000000 ____D C:\ProgramData\PRICache
2013-12-26 18:58 - 2013-12-26 18:58 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate
2013-12-26 18:58 - 2013-12-26 18:57 - 00000000 ___RD C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2013-12-26 18:58 - 2013-12-26 18:57 - 00000000 ___RD C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2013-12-26 18:58 - 2013-12-26 18:57 - 00000000 ___RD C:\Users\Isabel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2013-12-26 18:58 - 2013-12-26 18:57 - 00000000 ___RD C:\Users\Isabel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2013-12-26 18:58 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\Recovery
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Vorlagen
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Startmenü
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Netzwerkumgebung
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Lokale Einstellungen
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Eigene Dateien
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Druckumgebung
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Musik
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Bilder
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Verlauf
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Anwendungsdaten
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Anwendungsdaten
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Vorlagen
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Startmenü
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Netzwerkumgebung
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Lokale Einstellungen
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Eigene Dateien
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Druckumgebung
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Documents\Eigene Musik
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Documents\Eigene Bilder
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\AppData\Local\Verlauf
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\AppData\Local\Anwendungsdaten
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Anwendungsdaten
2013-12-26 18:53 - 2013-12-26 18:53 - 00000000 ____D C:\Program Files\Realtek
2013-12-26 18:53 - 2013-12-26 18:51 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2013-12-26 18:51 - 2013-12-26 18:51 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf
2013-12-26 18:51 - 2013-12-26 18:51 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
2013-12-26 18:51 - 2013-12-26 18:51 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2013-12-26 18:49 - 2013-12-26 18:49 - 00000264 _____ C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job
2013-12-26 18:49 - 2013-12-26 18:49 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf
2013-12-26 18:49 - 2013-12-26 18:49 - 00000000 ____D C:\Program Files\Synaptics
2013-12-26 18:47 - 2013-12-26 18:47 - 00000000 __SHD C:\Recovery
2013-12-26 18:47 - 2013-08-22 16:36 - 00262144 _____ C:\WINDOWS\system32\config\BCD-Template
2013-12-26 18:46 - 2013-12-26 18:46 - 23183360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 17112576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 12996608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 11221504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 05769216 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 04243968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 02764288 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 02334208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 02166784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 01995264 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2013-12-26 18:46 - 2013-12-26 18:46 - 01928192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2013-12-26 18:46 - 2013-12-26 18:46 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 01395200 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 01157632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00703488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00615936 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
2013-12-26 18:46 - 2013-12-26 18:46 - 00393216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00240128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2013-12-26 18:46 - 2013-12-26 18:46 - 00197120 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrrun.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrrun.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00075360 _____ (Microsoft Corporation) C:\WINDOWS\system32\imagehlp.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00070680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imagehlp.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 13177344 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 11674624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 07399256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2013-12-26 18:45 - 2013-12-26 18:45 - 04191744 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2013-12-26 18:45 - 2013-12-26 18:45 - 04105728 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 02896896 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 02570240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 02266624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 02143744 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 02140888 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 01843712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 01816576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Display.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 01765384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 01765376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 01756160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2013-12-26 18:45 - 2013-12-26 18:45 - 01642016 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2013-12-26 18:45 - 2013-12-26 18:45 - 01530200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2013-12-26 18:45 - 2013-12-26 18:45 - 01506680 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2013-12-26 18:45 - 2013-12-26 18:45 - 01476184 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2013-12-26 18:45 - 2013-12-26 18:45 - 01391104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
2013-12-26 18:45 - 2013-12-26 18:45 - 01345536 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2013-12-26 18:45 - 2013-12-26 18:45 - 01302528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00922624 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00747008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcli.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00744448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00637952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2013-12-26 18:45 - 2013-12-26 18:45 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
2013-12-26 18:45 - 2013-12-26 18:45 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00544768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcli.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00516496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00479744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2013-12-26 18:45 - 2013-12-26 18:45 - 00406400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00382808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2013-12-26 18:45 - 2013-12-26 18:45 - 00372568 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2013-12-26 18:45 - 2013-12-26 18:45 - 00358896 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00325464 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2013-12-26 18:45 - 2013-12-26 18:45 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00225792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00146776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\SerCx2.sys
2013-12-26 18:45 - 2013-12-26 18:45 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbici.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00086872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2013-12-26 18:45 - 2013-12-26 18:45 - 00039768 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2013-12-26 18:45 - 2013-12-26 18:45 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredentialMigrationHandler.dll
2013-12-26 18:45 - 2013-08-22 16:36 - 00000000 ___RD C:\WINDOWS\ToastData
2013-12-26 18:45 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\MediaViewer
2013-12-26 18:45 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\FileManager
2013-12-26 18:45 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\Camera
2013-12-26 18:44 - 2013-12-26 18:44 - 00262144 _____ C:\WINDOWS\system32\config\userdiff
2013-12-26 18:42 - 2013-12-26 18:42 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2013-12-26 18:42 - 2013-12-26 18:42 - 00000000 ____D C:\Program Files\Reference Assemblies
2013-12-26 18:42 - 2013-12-26 18:42 - 00000000 ____D C:\Program Files\MSBuild
2013-12-26 18:42 - 2013-12-26 18:42 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2013-12-26 18:42 - 2013-12-26 18:42 - 00000000 ____D C:\Program Files (x86)\MSBuild
2013-12-26 18:34 - 2013-11-22 19:00 - 01312506 _____ C:\WINDOWS\WindowsUpdate (1).log
2013-12-26 17:31 - 2012-07-26 09:12 - 00000000 ____D C:\WINDOWS\AUInstallAgent
2013-12-26 14:32 - 2013-12-26 14:32 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\WildTangent
2013-12-26 14:29 - 2013-11-22 20:11 - 00000000 ____D C:\WINDOWS\System32\Tasks\Sony Corporation
2013-12-26 14:28 - 2013-12-26 14:28 - 00000000 ____D C:\Users\Isabel\AppData\Local\Apps\2.0
2013-12-26 14:28 - 2013-12-25 13:19 - 00000000 ____D C:\Users\Isabel\AppData\Local\Sony Corporation
2013-12-26 14:10 - 2013-12-26 14:10 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\Mozilla
2013-12-26 14:10 - 2013-12-26 14:10 - 00000000 ____D C:\Users\Isabel\AppData\Local\Mozilla
2013-12-26 14:10 - 2013-12-26 14:10 - 00000000 ____D C:\ProgramData\Mozilla
2013-12-26 14:10 - 2013-12-26 14:10 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-12-26 14:10 - 2013-12-26 14:10 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-12-26 14:07 - 2013-12-26 14:07 - 00003548 _____ C:\WINDOWS\System32\Tasks\CreateChoiceProcessTask
2013-12-25 14:10 - 2013-12-25 14:10 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\Macromedia
2013-12-25 14:00 - 2013-12-25 14:00 - 00003128 _____ C:\WINDOWS\System32\Tasks\USER_ESRV_SVC
2013-12-25 14:00 - 2013-12-25 14:00 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\iolo
2013-12-25 13:55 - 2013-12-25 14:00 - 00013792 _____ C:\WINDOWS\system32\Drivers\semav6thermal64ro.sys
2013-12-25 13:18 - 2013-12-25 13:18 - 00000000 ____D C:\Users\Isabel\Documents\Bluetooth-Exchange-Ordner
2013-12-25 13:18 - 2013-12-25 13:18 - 00000000 ____D C:\Users\Isabel\AppData\Local\Broadcom
2013-12-25 13:17 - 2013-12-25 13:17 - 00000000 ____D C:\WINDOWS\System32\Tasks\WPD
2013-12-25 13:16 - 2013-12-25 13:16 - 00000000 ____D C:\WINDOWS\pss
2013-12-25 13:14 - 2013-12-25 13:14 - 00000000 ____D C:\Users\Isabel\AppData\Local\VirtualStore
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Vorlagen
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Startmenü
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Netzwerkumgebung
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Lokale Einstellungen
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Eigene Dateien
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Druckumgebung
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Documents\Eigene Musik
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Documents\Eigene Bilder
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\AppData\Local\Verlauf
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\AppData\Local\Anwendungsdaten
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Anwendungsdaten
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Programme
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\ProgramData\Vorlagen
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\ProgramData\Startmenü
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\ProgramData\Dokumente
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Dokumente und Einstellungen

Some content of TEMP:
====================
C:\Users\Isabel\AppData\Local\Temp\avgnt.exe
C:\Users\Isabel\AppData\Local\Temp\COMAP.EXE
C:\Users\Isabel\AppData\Local\Temp\Offercast_AVIRAV7_.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2014-01-10 13:24

==================== End Of Log ============================
         
Addition:
Code:
ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 19-01-2014 04
Ran by Isabel at 2014-01-20 14:29:35
Running from C:\Users\Isabel\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avira Desktop (Enabled - Up to date) {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
AS: Avira Desktop (Enabled - Up to date) {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.170 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.06)  MUI (x32 Version: 11.0.06 - Adobe Systems Incorporated)
Apple Application Support (x32 Version: 2.3.6 - Apple Inc.)
Apple Mobile Device Support (Version: 7.0.0.117 - Apple Inc.)
Apple Software Update (x32 Version: 2.1.3.127 - Apple Inc.)
Avira Free Antivirus (x32 Version: 14.0.2.286 - Avira)
Avira SearchFree Toolbar (x32 Version: 12.10.0.2951 - APN, LLC)
Bonjour (Version: 3.0.0.10 - Apple Inc.)
Broadcom 802.11 Network Adapter (Version: 6.30.223.181 - Broadcom Corporation)
Broadcom Wireless Utility (Version: 6.30.59.132 - Broadcom Corporation)
CyberLink Power2Go 8 (x32 Version: 8.0.0.2529 - CyberLink Corp.)
CyberLink Power2Go 8 (x32 Version: 8.0.0.2529 - CyberLink Corp.) Hidden
CyberLink PowerDVD 10 (x32 Version: 10.0.5417.52 - CyberLink Corp.)
CyberLink PowerDVD 10 (x32 Version: 10.0.5417.52 - CyberLink Corp.) Hidden
Einstellungen für VAIO Media Server (Version: 1.1.0.02220 - Sony Corporation)
ESDL (x32 Version: 1.0.0 - Sony Corporation) Hidden
FDUx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden
IBM SPSS Statistics 22 (x32 Version: 22.0.0.0 - IBM Corp)
Intel AppUp(R) center (x32 Version: 3.9.0.43953.7 - Intel)
Intel(R) Management Engine Components (x32 Version: 9.5.3.1520 - Intel Corporation)
Intel(R) Processor Graphics (x32 Version: 10.18.10.3304 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (x32 Version: 3.0.0.66956 - Intel Corporation)
Intel® Trusted Connect Service Client (Version: 1.27.798.1 - Intel Corporation) Hidden
iTunes (Version: 11.1.3.8 - Apple Inc.)
Java 7 Update 25 (64-bit) (Version: 7.0.250 - Oracle)
Java 7 Update 25 (x32 Version: 7.0.250 - Oracle)
Java Auto Updater (x32 Version: 2.1.9.5 - Sun Microsystems, Inc.) Hidden
Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300 - Malwarebytes Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (x32 Version:  - Microsoft)
Microsoft Office 2007 Service Pack 3 (SP3) (x32 Version:  - Microsoft) Hidden
Microsoft Office Excel 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Excel 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office File Validation Add-In (x32 Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Live Add-in 1.5 (x32 Version: 2.0.4024.1 - Microsoft Corporation)
Microsoft Office Office 64-bit Components 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office PowerPoint 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (French) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Italian) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (German) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (x32 Version:  - Microsoft) Hidden
Microsoft Office Shared 64-bit MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Word 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Word 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Silverlight (Version: 5.1.20913.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106 (x32 Version: 11.0.51106.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.51106 (Version: 11.0.51106 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.51106 (Version: 11.0.51106 - Microsoft Corporation) Hidden
Microsoft XNA Framework Redistributable 4.0 (x32 Version: 4.0.20823.0 - Microsoft Corporation)
Mozilla Firefox 26.0 (x86 de) (x32 Version: 26.0 - Mozilla)
Mozilla Maintenance Service (x32 Version: 26.0 - Mozilla)
NVIDIA Grafiktreiber 326.60 (Version: 326.60 - NVIDIA Corporation)
NVIDIA Install Application (Version: 2.1002.133.889 - NVIDIA Corporation) Hidden
NVIDIA Optimus 1.14.17 (Version: 1.14.17 - NVIDIA Corporation) Hidden
NVIDIA PhysX (x32 Version: 9.13.0725 - NVIDIA Corporation) Hidden
NVIDIA PhysX-Systemsoftware 9.13.0725 (Version: 9.13.0725 - NVIDIA Corporation)
NVIDIA Systemsteuerung 326.60 (Version: 326.60 - NVIDIA Corporation) Hidden
NVIDIA Update Components (Version: 1.14.17 - NVIDIA Corporation) Hidden
Realtek Card Reader (x32 Version: 6.2.9200.21232 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (x32 Version: 8.15.410.2013 - Realtek)
Realtek High Definition Audio Driver (x32 Version: 6.0.1.7048 - Realtek Semiconductor Corp.)
Restore (x32 Version: 1.0.0 - Sony Corporation) Hidden
Shared C Run-time for x64 (Version: 10.0.0 - McAfee)
SSLx64 (Version: 1.0.0 - Sony Corporation ) Hidden
SSLx86 (x32 Version: 1.0.0 - Sony Corporation ) Hidden
Synaptics Pointing Device Driver (Version: 17.0.2.4 - Synaptics Incorporated)
Update for 2007 Microsoft Office System (KB967642) (x32 Version:  - Microsoft)
Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (x32 Version:  - Microsoft)
Update for Microsoft Office 2007 suites (KB2687493) 32-Bit Edition (x32 Version:  - Microsoft)
Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (x32 Version:  - Microsoft)
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (x32 Version:  - Microsoft)
Update für Microsoft Office Excel 2007 Help (KB963678) (x32 Version:  - Microsoft)
Update für Microsoft Office Powerpoint 2007 Help (KB963669) (x32 Version:  - Microsoft)
Update für Microsoft Office Word 2007 Help (KB963665) (x32 Version:  - Microsoft)
VAIO BIOS Data Transfer Utility (x32 Version: 1.0.0.02050 - Sony Corporation) Hidden
VAIO Care (Version: 8.3.0.08220 - Sony Corporation)
VAIO Care-Hardwarediagnose-Plugin (x32 Version: 4.8.0.13250 - Sony Corporation)
VAIO Control Center (x32 Version: 6.3.0.07090 - Sony Corporation)
VAIO Data Restore Tool (x32 Version: 1.11.0.13250 - Sony Corporation)
VAIO Easy Connect (x32 Version: 8.2.0.14170 - Sony Corporation) Hidden
VAIO Gesture Control (x32 Version: 2.4.0.06280 - Sony Corporation) Hidden
VAIO Gesture Control (x32 Version: 2.4.1.09050 - Sony Corporation)
VAIO Image Optimizer (x32 Version: 3.2.00.07040 - Sony Corporation)
VAIO Image Optimizer (x32 Version: 3.2.00.07040 - Sony Corporation) Hidden
VAIO Improvement (x32 Version: 2.3.0.05230 - Sony Corporation)
VAIO Movie Creator (x32 Version: 4.2.00.07040 - Sony Corporation) Hidden
VAIO Movie Creator (x32 Version: 4.3.01.11140 - Sony Corporation)
VAIO Sample Music (x32 Version: 1.0.0.03051 - Sony Corporation)
VAIO Update (x32 Version: 6.3.0.08010 - Sony Corporation)
VAIO*CPU-Lüfterdiagnose (x32 Version: 1.2.0.03050 - Sony Corporation)
VAIO-Support für Übertragungen (x32 Version: 1.9.0.11060 - Sony Corporation)
VCCx64 (Version: 1.0.0 - Sony Corporation) Hidden
VCCx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden
VHD (x32 Version: 1.0.0 - Sony Corporation) Hidden
VIx64 (Version: 1.0.0 - Sony Corporation) Hidden
VIx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden
VPMx64 (Version: 1.0.0 - Sony Corporation ) Hidden
VSSTx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden
VU5x64 (Version: 1.1.0 - Sony Corporation ) Hidden
VU5x86 (x32 Version: 1.1.0 - Sony Corporation ) Hidden
VUx64 (Version: 1.0.0 - Sony Corporation ) Hidden
VUx86 (x32 Version: 1.0.0 - Sony Corporation ) Hidden
VWSTx86 (x32 Version: 1.0.0 - Sony Corporation) Hidden
WIDCOMM Bluetooth Software (Version: 12.0.0.7850 - Broadcom Corporation)

==================== Restore Points  =========================


==================== Hosts content: ==========================

2013-08-22 14:25 - 2013-08-22 14:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

Task: {01B9550B-FA30-44E0-A2E7-FBCBE62C9704} - System32\Tasks\Sony Corporation\VAIO Care\GetPOTInfo => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2013-08-21] (Sony Corporation)
Task: {05293577-D647-4185-B859-C94839A0B2E3} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask
Task: {0B545118-B563-42FC-8D07-B78F602FCF34} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList
Task: {1561FD7C-0C39-4410-BD58-71E6D1DF6C68} - System32\Tasks\Sony Corporation\VAIO Care\DeployVAIOManual => %ProgramData%\Sony Corporation\VAIO Care\VAIOUserGuideUpdate.exe
Task: {1B7A42F8-4655-4AA9-A3EA-6E5FBAAB4002} - System32\Tasks\Sony Corporation\VAIO Care\UploadPOT => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2013-08-21] (Sony Corporation)
Task: {2085BF56-520D-4951-B7C0-DF34AF90CC6A} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask
Task: {22333945-8F56-4F22-97EA-F897F88D71B7} - System32\Tasks\Sony Corporation\VAIO Care\VCSelfHeal => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2013-08-21] (Sony Corporation)
Task: {23B1185E-5701-44F2-8516-4034F6E088D2} - System32\Tasks\Sony Corporation\VAIO Care\VCCheckIolo => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2013-08-21] (Sony Corporation)
Task: {28852689-64A7-4832-904D-9BF0106AAD8E} - System32\Tasks\Sony Corporation\VAIO Control Center\NetworkSetting\NetworkSetting Logon Start => C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkClient
Task: {29420589-1208-4DA0-88A1-6A2D46897F01} - System32\Tasks\Sony Corporation\VAIO Control Center\VAIOControlCenterSystem => C:\Program Files (x86)\Sony\VAIO Control Center\vim.exe [2013-06-08] (Sony Corporation)
Task: {2C9C0C6C-2A74-46F2-858A-4389D253EAD0} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate
Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\Windows\System32\AutoWorkplace.exe [2013-08-22] (Microsoft Corporation)
Task: {3581792F-D9B8-4E7D-8E90-3C6E1E6DF290} - System32\Tasks\Sony Corporation\VAIO Care\CRMReminder => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2013-08-21] (Sony Corporation)
Task: {3B6D8A73-F20B-4C93-B8FB-56A154F172D2} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [2013-08-22] (Microsoft Corporation)
Task: {49754026-21E1-41FC-94FD-727AFE414FE7} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance
Task: {4AD588D2-9ADF-4AEE-A36E-BF8C7F93FDFA} - System32\Tasks\Sony Corporation\VAIO Update\VAIO Update => C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe [2013-08-01] (Sony Corporation)
Task: {609C2CD7-FE32-426C-A754-A4C39FF0B5C0} - System32\Tasks\Sony Corporation\VAIO Control Center\VAIOControlCenterUser => C:\Program Files (x86)\Sony\VAIO Control Center\vim.exe [2013-06-08] (Sony Corporation)
Task: {65E171BF-7ABB-4911-932D-95DB3C3D3EDC} - System32\Tasks\USER_ESRV_SVC => Wscript.exe //B //NoLogo "C:\Program Files\Sony\VAIO Care\ESRV\task.vbs"
Task: {6AA91E8C-DDBD-4979-8464-4062F7681A19} - System32\Tasks\Microsoft\Windows\Plug and Play\Plug and Play Cleanup
Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task
Task: {71EDCCE5-E436-48CD-9011-252DBF56B912} - System32\Tasks\Sony Corporation\VAIO Care\VCMetrics => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2013-08-21] (Sony Corporation)
Task: {73B1B253-CE67-4501-AE1A-377DD1D68B65} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask
Task: {740F2F50-4E91-4C7A-903A-F2B0A05262EE} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2014-01-16] (Microsoft Corporation)
Task: {77F1D869-6E65-4079-A2A0-E2023408EF97} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState
Task: {784704A9-E994-4C18-A7EB-DD168D40BA03} - System32\Tasks\Sony Corporation\VAIO Care\VCOneClick => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2013-08-21] (Sony Corporation)
Task: {7E982BD3-4BB4-4B9A-8582-74484002F168} - System32\Tasks\Sony Corporation\VAIO Care\VCRLog => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2013-08-21] (Sony Corporation)
Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task
Task: {8CC813C9-712A-41EF-9512-B233444FC669} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => Rundll32.exe %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask
Task: {8E98103D-5D61-4057-B248-70BCAC7B37CA} - System32\Tasks\Sony Corporation\VAIO Hardware Diagnostics\VHDInformationCheck => C:\Program Files (x86)\Sony\VAIO Recovery\plugins\InformationCheck.exe [2013-01-25] (Sony Corporation)
Task: {924F9BE2-D438-4BFC-8C09-224D3F43B2C5} - System32\Tasks\Sony Corporation\VAIO Control Center\Level4Daily => C:\Program Files (x86)\Sony\VAIO Control Center\WBCBatteryCare.exe [2013-06-19] (Sony Corporation)
Task: {9B0EB1E9-4DCC-4F43-B541-1CEACA882F4D} - System32\Tasks\Sony Corporation\VAIO Control Center\VAIO Capture\VAIO Clip => C:\Program Files (x86)\Sony\VAIO Control Center\VAIO Clip.exe [2013-07-10] (Sony Corporation)
Task: {9FF4C139-5234-410C-B7FA-23EE2FD2AB53} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work
Task: {BACCC8ED-A939-4278-A187-FC469D8FDF62} - System32\Tasks\CLVDLauncher => C:\Program Files (x86)\CyberLink\Power2Go8\CLVDLauncher.exe [2013-04-25] (CyberLink Corp.)
Task: {C233FE3D-B600-4A3B-B90A-098CBC7DADC7} - System32\Tasks\Sony Corporation\VAIO Care\VAIO Care => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2013-08-21] (Sony Corporation)
Task: {CBB4DEC4-1A79-41F2-91FF-738A07653591} - System32\Tasks\Sony Corporation\VAIO Control Center\Level4Month => C:\Program Files (x86)\Sony\VAIO Control Center\WBCBatteryCare.exe [2013-06-19] (Sony Corporation)
Task: {CF220CCE-B390-4252-A5FA-F7668156B5F8} - System32\Tasks\Sony Corporation\VAIO Care\CheckSystemInfo => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2013-08-21] (Sony Corporation)
Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - System32\Tasks\Microsoft\Windows\SettingSync\BackupTask
Task: {D3A2F19A-1520-4CCD-B98D-9D25EB7FB813} - System32\Tasks\Games\UpdateCheck_S-1-5-21-998897912-3022025444-1149965468-1002
Task: {D88FEC9E-A82A-46F9-87E2-B6B97B301C1A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing
Task: {DA46820F-FF8A-4B5E-A6B2-B12185DCFFFB} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization
Task: {E54BB349-9FC1-4C21-B080-24AD32E47457} - System32\Tasks\Sony Corporation\VAIO Update\Launch Application => C:\Program Files\SONY\VAIO Update\ShellExeProxy.exe [2013-08-01] (Sony Corporation)
Task: {E6D378FA-E068-4BCB-80DE-56D43A249507} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE
Task: {EB183981-C6E4-4C7F-BDB1-93414B86E5EB} - System32\Tasks\Sony Corporation\VAIO Improvement\VAIOImprovementUploader => C:\Program Files\Sony\VAIO Improvement\viuploader.exe [2013-05-24] (Sony Corporation)
Task: {FC49E86A-5EDC-464C-B356-960F059C648B} - System32\Tasks\Sony Corporation\VAIO Update\VAIO Update Self Repair => C:\Program Files\Sony\VAIO Update\VUSR.exe [2013-08-01] (Sony Corporation)
Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

==================== Loaded Modules (whitelisted) =============

2014-01-07 15:24 - 2013-12-09 11:37 - 00394808 _____ () C:\Program Files (x86)\Avira\AntiVir Desktop\sqlite3.dll
2013-09-13 19:51 - 2013-09-13 19:51 - 00087952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2013-09-13 19:51 - 2013-09-13 19:51 - 01242952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2013-11-22 19:52 - 2013-07-22 07:21 - 01199576 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2013-12-26 14:10 - 2013-12-05 20:36 - 03559024 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll

==================== Alternate Data Streams (whitelisted) =========

AlternateDataStreams: C:\Users\Isabel\SkyDrive:ms-properties

==================== Safe Mode (whitelisted) ===================

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""

==================== Faulty Device Manager Devices =============

Name: 
Description: 
Class Guid: 
Manufacturer: 
Service: 
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: =========================

Could not start eventlog service, could not read events.

Der angeforderte Dienst wurde bereits gestartet.

Sie erhalten weitere Hilfe, wenn Sie NET HELPMSG 2182 eingeben.


==================== Memory info =========================== 

Percentage of memory in use: 43%
Total physical RAM: 5879.8 MB
Available physical RAM: 3309.32 MB
Total Pagefile: 11255.8 MB
Available Pagefile: 8046.58 MB
Total Virtual: 131072 MB
Available Virtual: 131071.78 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:435.73 GB) (Free:394.2 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 466 GB) (Disk ID: 44F075E6)

Partition: GPT Partition Type
==================== End Of Log ============================
         
Gmer:
Code:
ATTFilter
GMER 2.1.19322 - hxxp://www.gmer.net
Rootkit scan 2014-01-20 14:35:51
Windows 6.2.9200  x64 \Device\Harddisk0\DR0 -> \Device\0000002a TOSHIBA_MQ01ABF050 rev.AM0G3H 465,76GB
Running: gmer.exe; Driver: C:\Users\Isabel\AppData\Local\Temp\uwldrpog.sys


---- Kernel code sections - GMER 2.1 ----

.text   C:\WINDOWS\System32\win32k.sys!W32pServiceTable                                             fffff9600014c700 15 bytes [00, EA, 0F, 02, 00, 7F, 6F, ...]
.text   C:\WINDOWS\System32\win32k.sys!W32pServiceTable + 16                                        fffff9600014c710 11 bytes [00, 1F, FC, FF, 80, 52, DE, ...]

---- User code sections - GMER 2.1 ----

.text   C:\WINDOWS\system32\dwm.exe[868] C:\WINDOWS\system32\KERNEL32.DLL!K32GetModuleInformation   00007ffaabda30e0 7 bytes JMP 00007ffba9f302d0
.text   C:\WINDOWS\system32\dwm.exe[868] C:\WINDOWS\system32\KERNEL32.DLL!RegQueryValueExW          00007ffaabda4478 7 bytes JMP 00007ffba9f30308
.text   C:\WINDOWS\system32\dwm.exe[868] C:\WINDOWS\system32\KERNEL32.DLL!RegDeleteValueW           00007ffaabe511a8 7 bytes JMP 00007ffba9f30340
.text   C:\WINDOWS\system32\dwm.exe[868] C:\WINDOWS\system32\KERNEL32.DLL!RegSetValueExW            00007ffaabe5121c 7 bytes JMP 00007ffba9f303b0
.text   C:\WINDOWS\system32\dwm.exe[868] C:\WINDOWS\system32\KERNEL32.DLL!RegSetValueExA            00007ffaabe51668 7 bytes JMP 00007ffba9f30378
.text   C:\WINDOWS\system32\dwm.exe[868] C:\WINDOWS\system32\KERNEL32.DLL!K32GetModuleFileNameExW   00007ffaabe572d0 7 bytes JMP 00007ffba9f30260
.text   C:\WINDOWS\system32\dwm.exe[868] C:\WINDOWS\system32\KERNEL32.DLL!K32EnumProcessModulesEx   00007ffaabe7d5a4 7 bytes JMP 00007ffba9f30228
.text   C:\WINDOWS\system32\dwm.exe[868] C:\WINDOWS\system32\KERNEL32.DLL!K32GetMappedFileNameW     00007ffaabe7d614 7 bytes JMP 00007ffba9f30298
.text   C:\WINDOWS\system32\dwm.exe[868] C:\WINDOWS\system32\KERNELBASE.dll!GetModuleHandleW        00007ffaa9f92124 7 bytes JMP 00007ffba9f300d8
.text   C:\WINDOWS\system32\dwm.exe[868] C:\WINDOWS\system32\KERNELBASE.dll!FreeLibrary             00007ffaa9f950e8 5 bytes JMP 00007ffba9f30180
.text   C:\WINDOWS\system32\dwm.exe[868] C:\WINDOWS\system32\KERNELBASE.dll!LoadLibraryExW          00007ffaa9f952a0 5 bytes JMP 00007ffba9f30148
.text   C:\WINDOWS\system32\dwm.exe[868] C:\WINDOWS\system32\KERNELBASE.dll!GetModuleHandleExW      00007ffaa9f9a9b0 5 bytes JMP 00007ffba9f30110
.text   C:\WINDOWS\system32\dwm.exe[868] C:\WINDOWS\system32\USER32.dll!CreateWindowExW             00007ffaac3d7b64 10 bytes JMP 00007ffba9f30490
.text   C:\WINDOWS\system32\dwm.exe[868] C:\WINDOWS\system32\USER32.dll!EnumDisplayDevicesA         00007ffaac3f2910 5 bytes JMP 00007ffba9f30420
.text   C:\WINDOWS\system32\dwm.exe[868] C:\WINDOWS\system32\USER32.dll!EnumDisplayDevicesW         00007ffaac3f4578 5 bytes JMP 00007ffba9f30458
.text   C:\WINDOWS\system32\dwm.exe[868] C:\WINDOWS\system32\USER32.dll!DisplayConfigGetDeviceInfo  00007ffaac3f4980 9 bytes JMP 00007ffba9f303e8
.text   C:\WINDOWS\system32\dwm.exe[868] C:\WINDOWS\system32\GDI32.dll!D3DKMTGetDisplayModeList     00007ffaac551500 8 bytes JMP 00007ffba9f301b8
.text   C:\WINDOWS\system32\dwm.exe[868] C:\WINDOWS\system32\GDI32.dll!D3DKMTQueryAdapterInfo       00007ffaac551750 8 bytes JMP 00007ffba9f301f0

---- Threads - GMER 2.1 ----

Thread  C:\WINDOWS\system32\csrss.exe [568:592]                                                     fffff960009164d0
Thread  C:\WINDOWS\system32\svchost.exe [1536:1948]                                                 00007ffaa13b2b90
Thread  C:\WINDOWS\system32\svchost.exe [1536:3528]                                                 00007ffaa13b67bc
Thread  C:\WINDOWS\system32\svchost.exe [1536:3748]                                                 00007ffa9afb2110
Thread  C:\WINDOWS\system32\svchost.exe [1536:3776]                                                 00007ffa96c94608
Thread  C:\WINDOWS\system32\svchost.exe [1536:3800]                                                 00007ffa96c31584
Thread  C:\WINDOWS\system32\svchost.exe [1536:3860]                                                 00007ffa96b71b30
Thread  C:\WINDOWS\system32\svchost.exe [1536:6232]                                                 00007ffa96c91040
Thread  C:\Windows\System32\skydrive.exe [4072:3504]                                                00007ffa93fb64f4
Thread  C:\Windows\System32\skydrive.exe [4072:4084]                                                00007ffa93b535f4
Thread  C:\Windows\System32\skydrive.exe [4072:2480]                                                00007ffa93b535f4
Thread  C:\Windows\System32\skydrive.exe [4072:256]                                                 00007ffa9e727bb0
Thread  C:\Windows\System32\skydrive.exe [4072:4604]                                                00007ffa93a4f3c8
Thread  C:\WINDOWS\SYSTEM32\ntdll.dll [5060:5064]                                                   0000000001376971
Thread  C:\WINDOWS\SYSTEM32\ntdll.dll [5060:4228]                                                   000000007092b89c
Thread  C:\WINDOWS\SYSTEM32\ntdll.dll [5060:4276]                                                   000000007092baf3
Thread  C:\WINDOWS\SYSTEM32\ntdll.dll [5060:4224]                                                   000000007092b3c2
Thread   [3268:4504]                                                                                00007ffa90eee5f0
Thread   [3268:956]                                                                                 00007ffa9ad54094
Thread   [3268:252]                                                                                 00007ffaac078530

---- Disk sectors - GMER 2.1 ----

Disk    \Device\Harddisk0\DR0                                                                       unknown MBR code

---- EOF - GMER 2.1 ----
         
Alles, was sonst noch nötig ist, reiche ich natürlich nach.
Beste Grüße und Danke!

Alt 20.01.2014, 14:16   #2
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm? - Standard

Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm?



Hallo und

Hast du noch weitere Logs (mit Funden)? Malwarebytes und/oder andere Virenscanner, sind die mal fündig geworden?

Ich frage deswegen nach => http://www.trojaner-board.de/125889-...tml#post941520

Bitte keine neuen Virenscans machen sondern erst nur schon vorhandene Logs in CODE-Tags posten!
Relevant sind nur Logs der letzten 7 Tage bzw. seitdem das Problem besteht!




Lesestoff:
Posten in CODE-Tags
Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
  • Markiere das gesamte Logfile (geht meist mit STRG+A) und kopiere es in die Zwischenablage mit STRG+C.
  • Klicke im Editor auf das #-Symbol. Es erscheinen zwei Klammerausdrücke [CODE] [/CODE].
  • Setze den Curser zwischen die CODE-Tags und drücke STRG+V.
  • Klicke auf Erweitert/Vorschau, um so prüfen, ob du es richtig gemacht hast. Wenn alles stimmt ... auf Antworten.
__________________

__________________

Alt 20.01.2014, 14:20   #3
Becks194
 
Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm? - Standard

Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm?



Hallo, danke für die Antwort.

Leider habe ich keine weiteren Log-Dateien.

Freundliche Grüße!
__________________

Alt 20.01.2014, 14:21   #4
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm? - Standard

Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm?



Dann bitte jetzt Combofix ausführen:

Scan mit Combofix
WARNUNG an die MITLESER:
Combofix sollte ausschließlich ausgeführt werden, wenn dies von einem Teammitglied angewiesen wurde!

Downloade dir bitte Combofix vom folgenden Downloadspiegel: Link
  • WICHTIG: Speichere Combofix auf deinem Desktop.
  • Deaktiviere bitte alle deine Antivirensoftware sowie Malware/Spyware Scanner. Diese können Combofix bei der Arbeit stören. Combofix meckert auch manchmal trotzdem noch, das kannst du dann ignorieren, mir aber bitte mitteilen.
  • Starte die Combofix.exe und folge den Anweisungen auf dem Bildschirm.
  • Während Combofix läuft bitte nicht am Computer arbeiten, die Maus bewegen oder ins Combofixfenster klicken!
  • Wenn Combofix fertig ist, wird es ein Logfile erstellen.
  • Bitte poste die C:\Combofix.txt in deiner nächsten Antwort (möglichst in CODE-Tags).
Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten
Es wurde versucht, einen Registrierungsschlüssel einem ungültigen Vorgang zu unterziehen, der zum Löschen markiert wurde.
starte den Rechner einfach neu. Dies sollte das Problem beheben.

__________________
"Die Wahrheit ist normalerweise nur eine Entschuldigung für einen Mangel an Fantasie." (Elim Garak)

Das Trojaner-Board unterstützen
Warum Linux besser als Windows ist!

Alt 20.01.2014, 14:27   #5
Becks194
 
Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm? - Standard

Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm?



Beim Starten von ComboFix (auch als Administrator) kommt folgender Fehlertext:

Code:
ATTFilter
ComboFix is not meant to run in "Compatibility Mode". The programm shall now exit.
         
Was mache ich nun?

Danke, Grüße!


Alt 20.01.2014, 14:30   #6
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm? - Standard

Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm?



Rechtsklick auf Combofix => als Admin ausführen

An den Kompatibilitätsoptionen hast du janicht rumgefummelt? Und wichtig: die combofix.exe soll auf dem Desktop liegen!
__________________
--> Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm?

Alt 20.01.2014, 14:32   #7
Becks194
 
Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm? - Standard

Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm?



Zitat:
Zitat von cosinus Beitrag anzeigen
Rechtsklick auf Combofix => als Admin ausführen

An den Kompatibilitätsoptionen hast du janicht rumgefummelt? Und wichtig: die combofix.exe soll auf dem Desktop liegen!
Hab es als Admin ausgeführt, selbes Ergebnis. An den Kompatibilitätsoptionen habe ich nichts gemacht. Liegt auf dem Desktop.

Und dann kam eben obiges Ergebnis.

Grüße

Alt 20.01.2014, 14:39   #8
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm? - Standard

Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm?



Starte Windows neu, lösch die alte combofix.exe, lade CF neu runter und probier es bitte nochmal.
__________________
"Die Wahrheit ist normalerweise nur eine Entschuldigung für einen Mangel an Fantasie." (Elim Garak)

Das Trojaner-Board unterstützen
Warum Linux besser als Windows ist!

Alt 20.01.2014, 14:46   #9
Becks194
 
Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm? - Standard

Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm?



Das führt leider immer noch zur selben Fehlermeldung.

Alt 20.01.2014, 15:11   #10
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm? - Standard

Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm?



Vergessen wir CF



Malwarebytes Anti-Rootkit (MBAR)

Downloade dir bitte Malwarebytes Anti-Rootkit Malwarebytes Anti-Rootkit und speichere es auf deinem Desktop.
  • Starte bitte die mbar.exe.
  • Folge den Anweisungen auf deinem Bildschirm gemäß Anleitung zu Malwarebytes Anti-Rootkit
  • Aktualisiere unbedingt die Datenbank und erlaube dem Tool, dein System zu scannen.
  • Klicke auf den CleanUp Button und erlaube den Neustart.
  • Während dem Neustart wird MBAR die gefundenen Objekte entfernen, also bleib geduldig.
  • Nach dem Neustart starte die mbar.exe erneut.
  • Sollte nochmal was gefunden werden, wiederhole den CleanUp Prozess.
Das Tool wird im erstellten Ordner eine Logfile ( mbar-log-<Jahr-Monat-Tag>.txt ) erzeugen. Bitte poste diese hier.

Starte keine andere Datei in diesem Ordner ohne Anweisung eines Helfers
__________________
"Die Wahrheit ist normalerweise nur eine Entschuldigung für einen Mangel an Fantasie." (Elim Garak)

Das Trojaner-Board unterstützen
Warum Linux besser als Windows ist!

Alt 20.01.2014, 16:12   #11
Becks194
 
Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm? - Standard

Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm?



Hier die Log-Datei:
Code:
ATTFilter
Malwarebytes Anti-Rootkit BETA 1.07.0.1008
www.malwarebytes.org

Database version: v2014.01.20.05

Windows 8 x64 NTFS
Internet Explorer 11.0.9600.16476
Isabel :: ISABEL [administrator]

20.01.2014 16:22:45
mbar-log-2014-01-20 (16-22-45).txt

Scan type: Quick scan
Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken
Scan options disabled: 
Objects scanned: 269149
Time elapsed: 45 minute(s), 43 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

Physical Sectors Detected: 0
(No malicious items detected)

(end)
         

Alt 20.01.2014, 20:02   #12
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm? - Standard

Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm?



Adware/Junkware/Toolbars entfernen


1. Schritt: adwCleaner

Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).




2. Schritt: JRT - Junkware Removal Tool

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade Junkware Removal Tool auf Deinen Desktop

  • Starte das Tool mit Doppelklick. Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten.
  • Drücke eine beliebige Taste, um das Tool zu starten.
  • Je nach System kann der Scan eine Weile dauern.
  • Wenn das Tool fertig ist wird das Logfile (JRT.txt) auf dem Desktop gespeichert und automatisch geöffnet.
  • Bitte poste den Inhalt der JRT.txt in Deiner nächsten Antwort.




3. Schritt: Frisches Log mit FRST

Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)

__________________
"Die Wahrheit ist normalerweise nur eine Entschuldigung für einen Mangel an Fantasie." (Elim Garak)

Das Trojaner-Board unterstützen
Warum Linux besser als Windows ist!

Alt 20.01.2014, 21:40   #13
Becks194
 
Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm? - Standard

Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm?



Hier die Logs:

adwCleaner:
Code:
ATTFilter
# AdwCleaner v3.017 - Bericht erstellt am 20/01/2014 um 21:29:51
# Aktualisiert 12/01/2014 von Xplode
# Betriebssystem : Windows 8.1  (64 bits)
# Benutzername : Isabel - ISABEL
# Gestartet von : C:\Users\Isabel\Desktop\adwcleaner.exe
# Option : Löschen

***** [ Dienste ] *****


***** [ Dateien / Ordner ] *****


***** [ Verknüpfungen ] *****


***** [ Registrierungsdatenbank ] *****


***** [ Browser ] *****

-\\ Internet Explorer v11.0.9600.16384


-\\ Mozilla Firefox v26.0 (de)

[ Datei : C:\Users\Isabel\AppData\Roaming\Mozilla\Firefox\Profiles\7rsvp52g.default\prefs.js ]

Zeile gelöscht : user_pref("extensions.AVIRA-V7C.apn.tldcache", "{\"date\":1389105617221,\"domainList\":[\"ac\",\"com.ac\",\"edu.ac\",\"gov.ac\",\"net.ac\",\"mil.ac\",\"org.ac\",\"ad\",\"nom.ad\",\"ae\",\"co.ae\",\"ne[...]

*************************

AdwCleaner[R0].txt - [1296 octets] - [06/01/2014 20:19:58]
AdwCleaner[R1].txt - [1124 octets] - [20/01/2014 21:28:44]
AdwCleaner[S0].txt - [1237 octets] - [06/01/2014 20:21:25]
AdwCleaner[S1].txt - [1046 octets] - [20/01/2014 21:29:51]

########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [1106 octets] ##########
         
JRT:
Code:
ATTFilter
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.0 (01.07.2014:1)
OS: Windows 8.1 x64
Ran by Isabel on 20.01.2014 at 21:33:37,18
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values

Failed to delete: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\apntbmon
Failed to delete: [Registry Value] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\\apntbmon



~~~ Registry Keys



~~~ Files



~~~ Folders

Failed to delete: [Folder] "C:\ProgramData\apn"



~~~ FireFox

Successfully deleted the following from C:\Users\Isabel\AppData\Roaming\mozilla\firefox\profiles\7rsvp52g.default\prefs.js

user_pref("extensions.AVIRA-V7C.com.avira.dnt.rules", "\"{\\\"Version\\\":39,\\\"Companies\\\":[{\\\"company\\\":\\\"Google Inc\\\",\\\"rules\\\":[{\\\"name\\\":\\\"Google Ana
user_pref("extensions.AVIRA-V7C.domain", "\"avira.search.ask.com\"");
Emptied folder: C:\Users\Isabel\AppData\Roaming\mozilla\firefox\profiles\7rsvp52g.default\minidumps [6 files]



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 20.01.2014 at 21:38:40,17
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
         

Hab außerdem gerad bei Malwarebytes einen vollständigen Scan gestartet (auch wenn das ungern gesehen wird..) und dort wird nach wenigen Sekunden etwas gefunden:

PUP.Optional.Amonetize

Logs hab ich noch nicht, die Suche läuft noch.



Hier noch die Logdatei von Malwarebytes:

Code:
ATTFilter
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

Datenbank Version: v2014.01.20.05

Windows 8 x64 NTFS
Internet Explorer 11.0.9600.16476
Isabel :: ISABEL [Administrator]

20.01.2014 21:40:20
MBAM-log-2014-01-20 (22-38-15).txt

Art des Suchlaufs: Vollständiger Suchlauf (C:\|)
Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM
Deaktivierte Suchlaufeinstellungen: P2P
Durchsuchte Objekte: 400389
Laufzeit: 56 Minute(n), 6 Sekunde(n)

Infizierte Speicherprozesse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Speichermodule: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungsschlüssel: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungswerte: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateiobjekte der Registrierung: 0
(Keine bösartigen Objekte gefunden)

Infizierte Verzeichnisse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateien: 1
C:\AdwCleaner\Quarantine\C\Users\Isabel\AppData\Roaming\OpenCandy\E1856BF5AE764A12A00C1895237DA745\WS_p4v2_2CB2.exe.vir (PUP.Optional.Amonetize) -> Keine Aktion durchgeführt.

(Ende)
         
Grüße

Alt 20.01.2014, 21:44   #14
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm? - Standard

Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm?



Was ist mit FRST?
__________________
"Die Wahrheit ist normalerweise nur eine Entschuldigung für einen Mangel an Fantasie." (Elim Garak)

Das Trojaner-Board unterstützen
Warum Linux besser als Windows ist!

Alt 20.01.2014, 21:57   #15
Becks194
 
Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm? - Standard

Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm?



Hier FRST:


FRST Logfile:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 19-01-2014 04
Ran by Isabel (administrator) on ISABEL on 20-01-2014 22:48:46
Running from C:\Users\Isabel\Desktop
Windows 8.1 (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal


==================== Processes (Whitelisted) =================

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(APN LLC.) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe
(Broadcom Corporation) C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRYSVC.EXE
(Broadcom Corporation) C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\BCMWLTRY.EXE
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\SUSSoundProxy.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe
(Broadcom Corporation) C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.EXE
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkClient.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VAIO Clip.exe
(Intel Corporation) C:\Program Files\Sony\VAIO Care\ESRV\esrv.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update\VUAgent.exe
(Intel Corporation) C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Intel Corporation) C:\Program Files\Sony\VAIO Care\VCPerfService.exe
() C:\Program Files\Sony\VAIO Care\listener.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCSystemTray.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\vim.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCService.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCAgent.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\vim.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [RtHDVBg] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1353944 2013-11-29] (Realtek Semiconductor)
HKLM\...\Run: [Broadcom Wireless Manager UI] - C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\WLTRAY.exe [10592256 2013-11-22] (Broadcom Corporation)
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2752752 2013-07-11] (Synaptics Incorporated)
HKLM\...\Run: [Bluetooth] - C:\Program Files\WIDCOMM\Bluetooth Software\bttray.exe [534232 2013-09-04] (Broadcom Corporation.)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [RemoteControl10] - C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [103384 2013-03-19] (CyberLink Corp.)
HKLM-x32\...\Run: [Intel AppUp(R) center] - C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [156000 2013-04-15] (Intel Corporation)
HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [684600 2013-12-09] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [ApnTBMon] - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [1778640 2013-12-20] (APN)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-11-02] (Apple Inc.)
Winlogon\Notify\igfxcui: C:\WINDOWS\SYSTEM32\igfxdev.dll (Intel Corporation)
HKCU\...\Run: [BrowserChoice] - C:\Windows\BrowserChoice\browserchoice.exe [86816 2013-08-22] (Microsoft Corporation)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://sony13.msn.com/?pc=SEJB
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://sony13.msn.com/?pc=SEJB
HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://vaioportal.sony.eu
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://vaioportal.sony.eu
SearchScopes: HKCU - {0E9C6053-C874-4D75-BA08-E7AC72026ABD} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=SEJB
SearchScopes: HKCU - {FFB1311B-D60D-4B6D-9BCA-E8697E9A5E97} URL = hxxp://rover.ebay.com/rover/1/707-37276-16609-27/4?mpre=hxxp://shop.ebay.de/?oemInLn=ieSrch-&_nkw={searchTerms}
BHO: Avira SearchFree Toolbar - {41564952-412D-5637-4300-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport_x64.dll (APN LLC.)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\Sony\MSS\3.8.130\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO-x32: Avira SearchFree Toolbar - {41564952-412D-5637-4300-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport.dll (APN LLC.)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - Avira SearchFree Toolbar - {41564952-412D-5637-4300-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport_x64.dll (APN LLC.)
Toolbar: HKLM-x32 - Avira SearchFree Toolbar - {41564952-412D-5637-4300-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7C\Passport.dll (APN LLC.)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1

FireFox:
========
FF ProfilePath: C:\Users\Isabel\AppData\Roaming\Mozilla\Firefox\Profiles\7rsvp52g.default
FF Homepage: google.de
FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll ()
FF Plugin: @java.com/DTPlugin,version=10.25.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.5.29 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @mcafee.com/McAfeeMssPlugin - C:\Program Files\Sony\MSS\3.8.130\npMcAfeeMss.dll (McAfee, Inc.)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: intel.com/AppUp - C:\Program Files (x86)\Intel\IntelAppStore\bin\npAppUp.dll (Intel)
FF Plugin HKCU: intel.com/AppUpx64 - C:\Program Files (x86)\Intel\IntelAppStore\bin\npAppUp_x64.dll (Intel)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: Avira SearchFree Toolbar plus Web Protection - C:\Users\Isabel\AppData\Roaming\Mozilla\Firefox\Profiles\7rsvp52g.default\Extensions\toolbar_AVIRA-V7C@apn.ask.com.xpi [2013-12-20]
FF Extension: Adblock Plus - C:\Users\Isabel\AppData\Roaming\Mozilla\Firefox\Profiles\7rsvp52g.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-12-27]

==================== Services (Whitelisted) =================

U2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440376 2013-12-09] (Avira Operations GmbH & Co. KG)
U2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440376 2013-12-09] (Avira Operations GmbH & Co. KG)
U2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1011768 2013-12-09] (Avira Operations GmbH & Co. KG)
U2 APNMCP; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [166352 2013-12-20] (APN LLC.)
U2 BcmBtRSupport; C:\Windows\system32\BtwRSupportService.exe [2252504 2013-09-04] (Broadcom Corporation.)
U2 ESRV_SVC; C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe [377768 2013-05-29] (Intel Corporation)
U3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [820184 2013-02-13] (Intel(R) Corporation)
U2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-07-22] (Intel Corporation)
U2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-07-22] (Intel Corporation)
U3 McComponentHostServiceSony; C:\Program Files\Sony\MSS\3.8.130\McCHSvc.exe [288776 2013-10-16] (McAfee, Inc.)
U3 NetworkSupport; C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkSupport.exe [629336 2013-09-28] (Sony Corporation)
U2 SampleCollector; C:\Program Files\Sony\VAIO Care\VCPerfService.exe [266168 2013-05-29] (Intel Corporation)
U3 USER_ESRV_SVC; C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe [377768 2013-05-29] (Intel Corporation)
U3 VCFw; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [972000 2013-01-06] (Sony Corporation)
U3 VUAgent; C:\Program Files\Sony\VAIO Update\VUAgent.exe [1368624 2013-08-01] (Sony Corporation)
U3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [346872 2013-08-22] (Microsoft Corporation)
U3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23840 2013-08-22] (Microsoft Corporation)
U2 wltrysvc; C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter\bcmwltry.exe [6099968 2013-11-22] (Broadcom Corporation)

==================== Drivers (Whitelisted) ====================

U0 ADP80XX; C:\Windows\System32\drivers\ADP80XX.SYS [782176 2013-08-22] (PMC-Sierra)
U2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2013-12-09] (Avira Operations GmbH & Co. KG)
U1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [131576 2013-12-09] (Avira Operations GmbH & Co. KG)
U1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2013-12-09] (Avira Operations GmbH & Co. KG)
U2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [84720 2013-12-09] (Avira Operations GmbH & Co. KG)
U3 bcbtums; C:\Windows\system32\drivers\bcbtums.sys [170712 2013-09-04] (Broadcom Corporation.)
U3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [7488176 2014-01-07] (Broadcom Corporation)
U3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Windows (R) Win 7 DDK provider)
U3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [224768 2013-08-22] (Microsoft Corporation)
U1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [91712 2013-03-05] (CyberLink)
U3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-10-19] (Windows (R) Win 7 DDK provider)
U3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-10-19] (Windows (R) Win 7 DDK provider)
U3 iaLPSSi_GPIO; C:\Windows\System32\drivers\iaLPSSi_GPIO.sys [24568 2013-07-30] (Intel Corporation)
U3 iaLPSSi_I2C; C:\Windows\System32\drivers\iaLPSSi_I2C.sys [99320 2013-07-25] (Intel Corporation)
U0 iaStorAV; C:\Windows\System32\drivers\iaStorAV.sys [651248 2013-08-10] (Intel Corporation)
U0 intelpep; C:\Windows\System32\drivers\intelpep.sys [39768 2013-12-26] (Microsoft Corporation)
U0 LSI_SAS3; C:\Windows\System32\drivers\lsi_sas3.sys [81760 2013-08-22] (LSI Corporation)
U3 mbamchameleon; C:\WINDOWS\system32\drivers\mbamchameleon.sys [89304 2014-01-20] (Malwarebytes Corporation)
U3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99800 2013-07-22] (Intel Corporation)
U3 NdisVirtualBus; C:\Windows\System32\drivers\NdisVirtualBus.sys [16384 2013-08-22] (Microsoft Corporation)
U3 netvsc; C:\Windows\system32\DRIVERS\netvsc63.sys [87040 2013-08-22] (Microsoft Corporation)
U3 ReFS; C:\Windows\System32\Drivers\ReFS.sys [924512 2013-08-22] (Microsoft Corporation)
U3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [411208 2013-06-28] (Realsil Semiconductor Corporation)
U3 semav6thermal64ro; C:\Windows\system32\drivers\semav6thermal64ro.sys [13792 2013-12-25] ()
U3 SerCx2; C:\Windows\System32\drivers\SerCx2.sys [146776 2013-12-26] (Microsoft Corporation)
U3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2013-07-11] (Synaptics Incorporated)
U0 stornvme; C:\Windows\System32\drivers\stornvme.sys [57176 2013-11-14] (Microsoft Corporation)
U3 UEFI; C:\Windows\System32\drivers\UEFI.sys [26976 2013-08-22] (Microsoft Corporation)
U3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [124256 2013-08-22] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-01-20 21:38 - 2014-01-20 21:38 - 00001408 _____ C:\Users\Isabel\Desktop\JRT.txt
2014-01-20 21:33 - 2014-01-20 21:33 - 00000000 ____D C:\WINDOWS\ERUNT
2014-01-20 21:24 - 2014-01-20 21:25 - 01037068 _____ (Thisisu) C:\Users\Isabel\Desktop\JRT.exe
2014-01-20 21:24 - 2014-01-20 21:24 - 01236282 _____ C:\Users\Isabel\Desktop\adwcleaner.exe
2014-01-20 16:22 - 2014-01-20 17:10 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2014-01-20 16:14 - 2014-01-20 17:10 - 00000000 ____D C:\Users\Isabel\Desktop\mbar
2014-01-20 16:14 - 2014-01-20 16:14 - 00089304 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2014-01-20 16:13 - 2014-01-20 16:14 - 12582688 _____ (Malwarebytes Corp.) C:\Users\Isabel\Desktop\mbar-1.07.0.1008.exe
2014-01-20 15:43 - 2014-01-20 15:43 - 05167985 _____ (Swearware) C:\Users\Isabel\Desktop\ComboFix.exe
2014-01-20 14:35 - 2014-01-20 14:35 - 00005894 _____ C:\Users\Isabel\Desktop\Gmer.txt
2014-01-20 14:28 - 2014-01-20 22:48 - 00016905 _____ C:\Users\Isabel\Desktop\FRST.txt
2014-01-20 14:28 - 2014-01-20 14:28 - 00000000 ____D C:\FRST
2014-01-20 14:18 - 2014-01-20 14:18 - 02076672 _____ (Farbar) C:\Users\Isabel\Desktop\FRST64.exe
2014-01-20 12:06 - 2014-01-20 12:06 - 00000000 ____D C:\Users\Isabel\Documents\Andere
2014-01-20 10:36 - 2014-01-20 10:36 - 00000000 ____D C:\ProgramData\Sony
2014-01-20 10:00 - 2014-01-20 10:00 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-01-20 10:00 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2014-01-20 09:55 - 2014-01-20 09:55 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2014-01-20 09:55 - 2014-01-20 09:55 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2014-01-16 17:10 - 2014-01-16 17:10 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2014-01-16 17:10 - 2014-01-16 17:10 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2014-01-16 11:43 - 2013-12-09 01:15 - 00787968 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2014-01-16 11:43 - 2013-11-27 16:36 - 03395920 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
2014-01-16 11:43 - 2013-11-27 12:41 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSCollect.exe
2014-01-16 11:43 - 2013-11-27 11:34 - 00138240 _____ C:\WINDOWS\system32\OEMLicense.dll
2014-01-16 11:43 - 2013-11-27 10:54 - 00103936 _____ C:\WINDOWS\SysWOW64\OEMLicense.dll
2014-01-16 11:43 - 2013-11-27 09:48 - 00249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-01-16 11:43 - 2013-11-27 09:45 - 00206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSClient.dll
2014-01-16 11:43 - 2013-11-27 09:40 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-01-16 11:43 - 2013-11-27 09:38 - 00174592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSClient.dll
2014-01-16 11:43 - 2013-11-27 09:17 - 00695808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2014-01-16 11:43 - 2013-11-27 09:12 - 00848384 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2014-01-16 09:29 - 2014-01-16 09:29 - 00000000 ____D C:\ProgramData\Hewlett-Packard
2014-01-14 08:43 - 2014-01-14 08:43 - 00084512 _____ C:\Users\Isabel\AppData\Local\GDIPFONTCACHEV1.DAT
2014-01-13 09:19 - 2014-01-20 22:38 - 00003926 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{DF5CB71C-8006-4404-A1D3-5D78EB81D500}
2014-01-07 17:15 - 2014-01-07 17:18 - 00000000 ____D C:\Program Files (x86)\iTunes
2014-01-07 17:15 - 2014-01-07 17:15 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-01-07 17:15 - 2014-01-07 17:15 - 00000000 ____D C:\Program Files\iTunes
2014-01-07 17:15 - 2014-01-07 17:15 - 00000000 ____D C:\Program Files\iPod
2014-01-07 17:15 - 2014-01-07 17:15 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2014-01-07 17:14 - 2014-01-07 17:14 - 00000000 ____D C:\Program Files\Common Files\Apple
2014-01-07 17:14 - 2014-01-07 17:14 - 00000000 ____D C:\Program Files\Bonjour
2014-01-07 17:14 - 2014-01-07 17:14 - 00000000 ____D C:\Program Files (x86)\Bonjour
2014-01-07 16:49 - 2014-01-07 16:49 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\iFunbox_UserCache
2014-01-07 15:25 - 2014-01-07 15:25 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\Avira
2014-01-07 15:25 - 2014-01-07 15:25 - 00000000 ____D C:\ProgramData\AskPartnerNetwork
2014-01-07 15:25 - 2014-01-07 15:25 - 00000000 ____D C:\Program Files (x86)\AskPartnerNetwork
2014-01-07 15:24 - 2014-01-07 15:24 - 00000000 ____D C:\ProgramData\Avira
2014-01-07 15:24 - 2014-01-07 15:24 - 00000000 ____D C:\Program Files (x86)\Avira
2014-01-07 15:24 - 2013-12-09 11:37 - 00131576 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys
2014-01-07 15:24 - 2013-12-09 11:37 - 00108440 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys
2014-01-07 15:24 - 2013-12-09 11:37 - 00084720 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avnetflt.sys
2014-01-07 15:24 - 2013-12-09 11:37 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avkmgr.sys
2014-01-07 15:09 - 2014-01-07 15:09 - 00000020 ___SH C:\Users\UpdatusUser\ntuser.ini
2014-01-07 15:09 - 2014-01-07 15:09 - 00000000 ____D C:\WINDOWS\SysWOW64\NV
2014-01-07 15:09 - 2014-01-07 15:09 - 00000000 ____D C:\WINDOWS\system32\NV
2014-01-07 15:09 - 2014-01-07 15:09 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies
2014-01-07 15:07 - 2013-09-24 05:41 - 29336864 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 25256224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 22101280 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 17560352 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 15899400 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvwgf2umx.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 15701640 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 13627184 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvwgf2um.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 12945824 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvd3dum.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 11268384 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys
2014-01-07 15:07 - 2013-09-24 05:41 - 09280520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 07720064 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 07648000 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 06329552 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 02970400 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 02789152 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 02007328 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvenc.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 02007328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvenc.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 01884448 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6432660.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 01511712 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6432660.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 00681760 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 00603424 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 00586016 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 00515360 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 00458528 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 00388384 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 00317472 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglshim64.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 00266984 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglshim32.dll
2014-01-07 15:07 - 2013-09-24 05:41 - 00030496 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvpciflt.sys
2014-01-07 15:05 - 2014-01-07 15:05 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\InstallShield
2014-01-07 15:04 - 2014-01-07 15:04 - 00000000 ____H C:\ProgramData\DP45977C.lfl
2014-01-07 15:04 - 2014-01-07 15:04 - 00000000 ____D C:\Upgrade
2014-01-07 15:03 - 2013-11-29 05:16 - 33683968 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoRes64.dat
2014-01-07 15:03 - 2013-11-29 05:16 - 27518208 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioVnA64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 14048512 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioRealtek64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 05681192 _____ C:\WINDOWS\system32\Drivers\rtvienna.dat
2014-01-07 15:03 - 2013-11-29 05:16 - 04933328 _____ (ASUSTeKcomputer.Inc Inc) C:\WINDOWS\system32\RTKSMlfx.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 03671768 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys
2014-01-07 15:03 - 2013-11-29 05:16 - 03610880 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioVnN64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 02809048 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtPgEx64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 02743328 _____ (Fortemedia Corporation) C:\WINDOWS\system32\FMAPO64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 02586840 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkAPO64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 02103040 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\WavesGUILib64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 02032896 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioEQ64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 01916672 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioRealtek264.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 01325312 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO5064.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 01084160 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO4064.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 01014016 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\slcnt64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 01005784 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00922880 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPOShell64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00907008 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVoiceAPO2064.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00897792 _____ (DTS, Inc.) C:\WINDOWS\system32\sl3apo64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00871856 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tossaeapo64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00848184 _____ (ASUSTeKcomputer.Inc Inc) C:\WINDOWS\system32\RTKSMSettingsIPC.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00790272 _____ (Waves Audio Ltd.) C:\WINDOWS\SysWOW64\MaxxAudioAPOShell.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00765184 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxSpeechAPO64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00722688 _____ (DTS, Inc.) C:\WINDOWS\system32\sltech64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00663296 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxAudioAPO30.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00662784 _____ (Waves Audio Ltd.) C:\WINDOWS\system32\MaxxVolumeSDAPO.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00648837 _____ C:\WINDOWS\system32\Drivers\RTAIODAT.DAT
2014-01-07 15:03 - 2013-11-29 05:16 - 00617176 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00605496 _____ C:\WINDOWS\system32\audioLibVc.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00582056 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tosasfapo64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00244480 _____ (TODO: <Company name>) C:\WINDOWS\system32\slprp64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00208072 _____ (Andrea Electronics Corporation) C:\WINDOWS\system32\AERTAC64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00162224 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\toseaeapo64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00149720 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoInstII64.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00113576 _____ (Real Sound Lab SIA) C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll
2014-01-07 15:03 - 2013-11-29 05:16 - 00109848 _____ C:\WINDOWS\system32\AcpiServiceVnA64.dll
2014-01-07 15:03 - 2013-09-09 20:02 - 06217904 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64A.dll
2014-01-07 15:03 - 2013-09-09 20:02 - 00313520 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64A.dll
2014-01-07 15:03 - 2013-09-09 20:01 - 01938608 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64A.dll
2014-01-07 15:03 - 2013-09-09 20:01 - 00260272 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64.dll
2014-01-07 14:26 - 2013-11-19 11:30 - 00267936 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2014-01-07 13:51 - 2014-01-07 13:52 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\Apple Computer
2014-01-07 13:51 - 2014-01-07 13:51 - 00000000 ____D C:\Users\Isabel\AppData\Local\Apple Computer
2014-01-07 13:51 - 2012-08-21 13:01 - 00033240 _____ (GEAR Software Inc.) C:\WINDOWS\system32\Drivers\GEARAspiWDM.sys
2014-01-07 13:50 - 2014-01-07 13:50 - 00000000 ____D C:\Users\Isabel\AppData\Local\Apple
2014-01-07 13:50 - 2014-01-07 13:50 - 00000000 ____D C:\ProgramData\Apple Computer
2014-01-07 13:50 - 2014-01-07 13:50 - 00000000 ____D C:\ProgramData\Apple
2014-01-06 20:44 - 2014-01-06 20:44 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\Malwarebytes
2014-01-06 20:44 - 2014-01-06 20:44 - 00000000 ____D C:\ProgramData\Malwarebytes
2014-01-06 20:28 - 2014-01-06 20:28 - 00000000 ____D C:\_OTL
2014-01-06 20:19 - 2014-01-20 21:29 - 00000000 ____D C:\AdwCleaner
2014-01-06 14:44 - 2014-01-06 14:44 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\TuneUp Software
2014-01-06 14:43 - 2014-01-06 14:44 - 00000000 ____D C:\ProgramData\TuneUp Software
2014-01-06 14:43 - 2014-01-06 14:43 - 00000000 __SHD C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2014-01-06 14:41 - 2014-01-06 14:49 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\DVDVideoSoft
2014-01-06 14:41 - 2014-01-06 14:41 - 00000000 ____D C:\Users\Isabel\Documents\DVDVideoSoft
2014-01-06 11:29 - 2014-01-06 11:29 - 00000000 ____D C:\WINDOWS\System32\Tasks\Games
2014-01-04 23:31 - 2014-01-04 23:31 - 00000000 ____D C:\Users\Public\CyberLink
2014-01-04 23:31 - 2014-01-04 23:31 - 00000000 ____D C:\Users\Isabel\Documents\CyberLink
2014-01-04 23:31 - 2014-01-04 23:31 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\CyberLink
2014-01-04 23:31 - 2014-01-04 23:31 - 00000000 ____D C:\ProgramData\CyberLink
2013-12-31 11:44 - 2013-12-31 11:45 - 00000000 ___RD C:\WINDOWS\BrowserChoice
2013-12-30 11:52 - 2014-01-20 09:54 - 00000000 ____D C:\Program Files (x86)\Microsoft Works
2013-12-30 11:51 - 2013-12-30 11:51 - 00000000 ____D C:\WINDOWS\PCHEALTH
2013-12-30 11:50 - 2014-01-20 10:16 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-12-30 11:50 - 2013-12-30 11:50 - 00000000 ____D C:\Users\Isabel\AppData\Local\Microsoft Help
2013-12-30 11:50 - 2013-12-30 11:50 - 00000000 ____D C:\Program Files\Microsoft Office
2013-12-30 11:49 - 2013-12-30 11:49 - 00000000 __RHD C:\MSOCache
2013-12-30 11:42 - 2014-01-17 10:58 - 00000000 ____D C:\Users\Isabel\Documents\Tweede jaar
2013-12-30 11:25 - 2014-01-17 12:26 - 00124416 ___SH C:\Users\Isabel\Desktop\Thumbs.db
2013-12-30 11:15 - 2013-12-30 11:15 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2013-12-27 12:24 - 2013-12-27 12:24 - 00000000 ____D C:\Users\Isabel\Documents\IBM
2013-12-27 12:24 - 2013-12-27 12:24 - 00000000 ____D C:\Users\Isabel\AppData\Local\javasharedresources
2013-12-27 12:24 - 2013-12-27 12:24 - 00000000 ____D C:\Users\Isabel\.spss
2013-12-27 12:21 - 2013-12-27 12:21 - 00000000 ____D C:\Users\Isabel\AppData\Local\IBM
2013-12-27 12:21 - 2013-12-27 12:21 - 00000000 ____D C:\ProgramData\SafeNet Sentinel
2013-12-27 12:20 - 2013-12-27 12:20 - 00000000 ____D C:\ProgramData\SPSS
2013-12-27 12:18 - 2013-12-27 12:18 - 00001025 _____ C:\WINDOWS\SysWOW64\sysprs7.tgz
2013-12-27 12:18 - 2013-12-27 12:18 - 00001025 _____ C:\WINDOWS\SysWOW64\sysprs7.dll
2013-12-27 12:18 - 2013-12-27 12:18 - 00000219 _____ C:\WINDOWS\SysWOW64\lsprst7.tgz
2013-12-27 12:18 - 2013-12-27 12:18 - 00000205 _____ C:\WINDOWS\SysWOW64\lsprst7.dll
2013-12-27 12:18 - 2013-12-27 12:18 - 00000016 ____H C:\WINDOWS\SysWOW64\servdat.slm
2013-12-27 12:18 - 2013-12-27 12:18 - 00000000 ____D C:\Program Files (x86)\IBM
2013-12-27 11:34 - 2013-12-27 11:34 - 00000000 ___RD C:\Users\Isabel\Documents\Notes
2013-12-27 11:12 - 2013-12-27 11:12 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\NVIDIA
2013-12-27 11:02 - 2013-12-27 11:02 - 00000000 ____D C:\Users\Isabel\AppData\Local\Macromedia
2013-12-27 11:01 - 2013-12-30 11:39 - 00000000 ____D C:\Users\Isabel\AppData\Local\Adobe
2013-12-27 11:00 - 2013-12-27 11:00 - 00000000 ____D C:\ProgramData\APN
2013-12-26 19:33 - 2014-01-20 21:31 - 00000000 __RDO C:\Users\Isabel\SkyDrive
2013-12-26 19:27 - 2013-12-26 19:27 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf
2013-12-26 19:24 - 2013-12-26 19:24 - 00001450 _____ C:\Users\Isabel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-12-26 19:24 - 2013-12-26 19:24 - 00000020 ___SH C:\Users\Isabel\ntuser.ini
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Vorlagen
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Startmenü
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Eigene Dateien
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Druckumgebung
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten
2013-12-26 19:14 - 2013-12-26 19:14 - 00022960 _____ C:\WINDOWS\system32\emptyregdb.dat
2013-12-26 18:58 - 2013-12-26 18:58 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate
2013-12-26 18:57 - 2013-12-27 12:24 - 00000000 ____D C:\Users\Isabel
2013-12-26 18:57 - 2013-12-26 19:14 - 00028578 _____ C:\WINDOWS\diagwrn.xml
2013-12-26 18:57 - 2013-12-26 19:14 - 00028578 _____ C:\WINDOWS\diagerr.xml
2013-12-26 18:57 - 2013-12-26 18:58 - 00000000 ___RD C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2013-12-26 18:57 - 2013-12-26 18:58 - 00000000 ___RD C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2013-12-26 18:57 - 2013-12-26 18:58 - 00000000 ___RD C:\Users\Isabel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2013-12-26 18:57 - 2013-12-26 18:58 - 00000000 ___RD C:\Users\Isabel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Vorlagen
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Startmenü
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Netzwerkumgebung
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Lokale Einstellungen
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Eigene Dateien
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Druckumgebung
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Musik
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Bilder
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Verlauf
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Anwendungsdaten
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Anwendungsdaten
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Vorlagen
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Startmenü
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Netzwerkumgebung
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Lokale Einstellungen
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Eigene Dateien
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Druckumgebung
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Documents\Eigene Musik
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Documents\Eigene Bilder
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\AppData\Local\Verlauf
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\AppData\Local\Anwendungsdaten
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Anwendungsdaten
2013-12-26 18:57 - 2013-08-22 16:36 - 00000000 ___RD C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2013-12-26 18:57 - 2013-08-22 16:36 - 00000000 ___RD C:\Users\Isabel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2013-12-26 18:57 - 2013-08-22 16:36 - 00000000 ____D C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2013-12-26 18:57 - 2013-08-22 16:36 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2013-12-26 18:53 - 2014-01-07 15:04 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2013-12-26 18:53 - 2013-12-26 18:53 - 00000000 ____D C:\Program Files\Realtek
2013-12-26 18:53 - 2013-08-09 18:32 - 06599968 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2013-12-26 18:53 - 2013-08-09 18:32 - 03452192 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2013-12-26 18:53 - 2013-08-09 18:32 - 03310693 _____ C:\WINDOWS\system32\nvcoproc.bin
2013-12-26 18:53 - 2013-08-09 18:32 - 02559776 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2013-12-26 18:53 - 2013-08-09 18:32 - 01041696 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2013-12-26 18:53 - 2013-08-09 18:32 - 00920864 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe
2013-12-26 18:53 - 2013-08-09 18:32 - 00219424 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2013-12-26 18:53 - 2013-08-09 18:32 - 00067072 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll
2013-12-26 18:53 - 2013-08-09 18:32 - 00063776 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2013-12-26 18:52 - 2014-01-20 21:34 - 01466688 _____ C:\WINDOWS\WindowsUpdate.log
2013-12-26 18:51 - 2014-01-07 15:09 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2013-12-26 18:51 - 2013-12-26 18:53 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2013-12-26 18:51 - 2013-12-26 18:51 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf
2013-12-26 18:51 - 2013-12-26 18:51 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
2013-12-26 18:51 - 2013-12-26 18:51 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2013-12-26 18:50 - 2013-12-26 18:59 - 00000000 ____D C:\Program Files\Intel
2013-12-26 18:50 - 2013-12-26 18:59 - 00000000 ____D C:\Program Files (x86)\Intel
2013-12-26 18:50 - 2013-09-16 08:32 - 00064000 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL
2013-12-26 18:50 - 2013-09-16 08:32 - 00060416 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL
2013-12-26 18:49 - 2013-12-26 18:49 - 00000264 _____ C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job
2013-12-26 18:49 - 2013-12-26 18:49 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf
2013-12-26 18:49 - 2013-12-26 18:49 - 00000000 ____D C:\Program Files\Synaptics
2013-12-26 18:47 - 2013-12-27 15:52 - 00000000 ___DC C:\WINDOWS\Panther
2013-12-26 18:47 - 2013-12-26 18:47 - 00000000 __SHD C:\Recovery
2013-12-26 18:46 - 2013-12-26 18:46 - 23183360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 17112576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 12996608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 11221504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 05769216 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 04243968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 02764288 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 02334208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 02166784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 01995264 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2013-12-26 18:46 - 2013-12-26 18:46 - 01928192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2013-12-26 18:46 - 2013-12-26 18:46 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 01395200 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 01157632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00703488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00615936 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
2013-12-26 18:46 - 2013-12-26 18:46 - 00393216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00240128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2013-12-26 18:46 - 2013-12-26 18:46 - 00197120 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrrun.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrrun.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00075360 _____ (Microsoft Corporation) C:\WINDOWS\system32\imagehlp.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00070680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imagehlp.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 13177344 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 11674624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 07399256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2013-12-26 18:45 - 2013-12-26 18:45 - 04191744 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2013-12-26 18:45 - 2013-12-26 18:45 - 04105728 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 02896896 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 02570240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 02266624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 02143744 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 02140888 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 01843712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 01816576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Display.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 01765384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 01765376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 01756160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2013-12-26 18:45 - 2013-12-26 18:45 - 01642016 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2013-12-26 18:45 - 2013-12-26 18:45 - 01530200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2013-12-26 18:45 - 2013-12-26 18:45 - 01506680 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2013-12-26 18:45 - 2013-12-26 18:45 - 01476184 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2013-12-26 18:45 - 2013-12-26 18:45 - 01391104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
2013-12-26 18:45 - 2013-12-26 18:45 - 01345536 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2013-12-26 18:45 - 2013-12-26 18:45 - 01302528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00922624 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00747008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcli.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00744448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00637952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2013-12-26 18:45 - 2013-12-26 18:45 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
2013-12-26 18:45 - 2013-12-26 18:45 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00544768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcli.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00516496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00479744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2013-12-26 18:45 - 2013-12-26 18:45 - 00406400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00382808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2013-12-26 18:45 - 2013-12-26 18:45 - 00372568 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2013-12-26 18:45 - 2013-12-26 18:45 - 00358896 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00325464 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2013-12-26 18:45 - 2013-12-26 18:45 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00225792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00146776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\SerCx2.sys
2013-12-26 18:45 - 2013-12-26 18:45 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbici.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00086872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2013-12-26 18:45 - 2013-12-26 18:45 - 00039768 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2013-12-26 18:45 - 2013-12-26 18:45 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredentialMigrationHandler.dll
2013-12-26 18:44 - 2013-12-26 18:44 - 00262144 _____ C:\WINDOWS\system32\config\userdiff
2013-12-26 18:42 - 2013-12-26 18:42 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2013-12-26 18:42 - 2013-12-26 18:42 - 00000000 ____D C:\Program Files\Reference Assemblies
2013-12-26 18:42 - 2013-12-26 18:42 - 00000000 ____D C:\Program Files\MSBuild
2013-12-26 18:42 - 2013-12-26 18:42 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2013-12-26 18:42 - 2013-12-26 18:42 - 00000000 ____D C:\Program Files (x86)\MSBuild
2013-12-26 18:41 - 2013-08-03 05:48 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2013-12-26 18:41 - 2013-08-03 05:48 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2013-12-26 18:41 - 2013-08-03 05:48 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2013-12-26 18:41 - 2013-08-03 05:41 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2013-12-26 18:41 - 2013-08-03 05:41 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2013-12-26 18:41 - 2013-08-03 05:41 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2013-12-26 18:07 - 2013-12-26 19:14 - 00006553 _____ C:\WINDOWS\comsetup.log
2013-12-26 14:32 - 2013-12-26 14:32 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\WildTangent
2013-12-26 14:28 - 2013-12-26 14:28 - 00000000 ____D C:\Users\Isabel\AppData\Local\Apps\2.0
2013-12-26 14:10 - 2013-12-26 14:10 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\Mozilla
2013-12-26 14:10 - 2013-12-26 14:10 - 00000000 ____D C:\Users\Isabel\AppData\Local\Mozilla
2013-12-26 14:10 - 2013-12-26 14:10 - 00000000 ____D C:\ProgramData\Mozilla
2013-12-26 14:10 - 2013-12-26 14:10 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-12-26 14:10 - 2013-12-26 14:10 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-12-26 14:07 - 2013-12-26 14:07 - 00003548 _____ C:\WINDOWS\System32\Tasks\CreateChoiceProcessTask
2013-12-26 13:40 - 2014-01-16 20:57 - 00000000 ____D C:\WINDOWS\system32\MRT
2013-12-26 13:40 - 2014-01-16 20:52 - 86054176 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2013-12-25 14:10 - 2013-12-25 14:10 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\Macromedia
2013-12-25 14:00 - 2013-12-25 14:00 - 00003128 _____ C:\WINDOWS\System32\Tasks\USER_ESRV_SVC
2013-12-25 14:00 - 2013-12-25 14:00 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\iolo
2013-12-25 14:00 - 2013-12-25 13:55 - 00013792 _____ C:\WINDOWS\system32\Drivers\semav6thermal64ro.sys
2013-12-25 13:34 - 2014-01-20 10:37 - 00000000 ____D C:\Update
2013-12-25 13:29 - 2014-01-20 17:16 - 00003598 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-998897912-3022025444-1149965468-1002
2013-12-25 13:19 - 2013-12-26 14:28 - 00000000 ____D C:\Users\Isabel\AppData\Local\Sony Corporation
2013-12-25 13:18 - 2013-12-25 13:18 - 00000000 ____D C:\Users\Isabel\Documents\Bluetooth-Exchange-Ordner
2013-12-25 13:18 - 2013-12-25 13:18 - 00000000 ____D C:\Users\Isabel\AppData\Local\Broadcom
2013-12-25 13:17 - 2013-12-26 19:24 - 00000000 ___RD C:\Users\Isabel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-12-25 13:17 - 2013-12-26 19:24 - 00000000 ___RD C:\Users\Isabel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2013-12-25 13:17 - 2013-12-25 13:17 - 00000000 ____D C:\WINDOWS\System32\Tasks\WPD
2013-12-25 13:16 - 2013-12-30 11:39 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\Adobe
2013-12-25 13:16 - 2013-12-27 11:12 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\Sony Corporation
2013-12-25 13:16 - 2013-12-26 19:03 - 00000000 ____D C:\WINDOWS\SysWOW64\VAIO Startup Setting Tool
2013-12-25 13:16 - 2013-12-25 13:16 - 00000000 ____D C:\WINDOWS\pss
2013-12-25 13:14 - 2014-01-10 19:59 - 00000000 ____D C:\Users\Isabel\AppData\Local\Packages
2013-12-25 13:14 - 2013-12-25 13:14 - 00000000 ____D C:\Users\Isabel\AppData\Local\VirtualStore
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Vorlagen
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Startmenü
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Netzwerkumgebung
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Lokale Einstellungen
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Eigene Dateien
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Druckumgebung
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Documents\Eigene Musik
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Documents\Eigene Bilder
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\AppData\Local\Verlauf
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\AppData\Local\Anwendungsdaten
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Anwendungsdaten
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Programme
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\ProgramData\Vorlagen
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\ProgramData\Startmenü
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\ProgramData\Dokumente
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Dokumente und Einstellungen

==================== One Month Modified Files and Folders =======

2014-01-20 22:49 - 2014-01-20 14:28 - 00016905 _____ C:\Users\Isabel\Desktop\FRST.txt
2014-01-20 22:38 - 2014-01-13 09:19 - 00003926 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{DF5CB71C-8006-4404-A1D3-5D78EB81D500}
2014-01-20 22:00 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\sru
2014-01-20 21:38 - 2014-01-20 21:38 - 00001408 _____ C:\Users\Isabel\Desktop\JRT.txt
2014-01-20 21:34 - 2013-12-26 18:52 - 01466688 _____ C:\WINDOWS\WindowsUpdate.log
2014-01-20 21:33 - 2014-01-20 21:33 - 00000000 ____D C:\WINDOWS\ERUNT
2014-01-20 21:31 - 2013-12-26 19:33 - 00000000 __RDO C:\Users\Isabel\SkyDrive
2014-01-20 21:30 - 2013-08-22 15:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2014-01-20 21:29 - 2014-01-06 20:19 - 00000000 ____D C:\AdwCleaner
2014-01-20 21:25 - 2014-01-20 21:24 - 01037068 _____ (Thisisu) C:\Users\Isabel\Desktop\JRT.exe
2014-01-20 21:24 - 2014-01-20 21:24 - 01236282 _____ C:\Users\Isabel\Desktop\adwcleaner.exe
2014-01-20 17:16 - 2013-12-25 13:29 - 00003598 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-998897912-3022025444-1149965468-1002
2014-01-20 17:10 - 2014-01-20 16:22 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2014-01-20 17:10 - 2014-01-20 16:14 - 00000000 ____D C:\Users\Isabel\Desktop\mbar
2014-01-20 16:14 - 2014-01-20 16:14 - 00089304 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2014-01-20 16:14 - 2014-01-20 16:13 - 12582688 _____ (Malwarebytes Corp.) C:\Users\Isabel\Desktop\mbar-1.07.0.1008.exe
2014-01-20 15:43 - 2014-01-20 15:43 - 05167985 _____ (Swearware) C:\Users\Isabel\Desktop\ComboFix.exe
2014-01-20 14:35 - 2014-01-20 14:35 - 00005894 _____ C:\Users\Isabel\Desktop\Gmer.txt
2014-01-20 14:28 - 2014-01-20 14:28 - 00000000 ____D C:\FRST
2014-01-20 14:18 - 2014-01-20 14:18 - 02076672 _____ (Farbar) C:\Users\Isabel\Desktop\FRST64.exe
2014-01-20 12:06 - 2014-01-20 12:06 - 00000000 ____D C:\Users\Isabel\Documents\Andere
2014-01-20 10:37 - 2013-12-25 13:34 - 00000000 ____D C:\Update
2014-01-20 10:37 - 2013-11-22 18:52 - 00000000 ____D C:\Program Files\Sony
2014-01-20 10:36 - 2014-01-20 10:36 - 00000000 ____D C:\ProgramData\Sony
2014-01-20 10:36 - 2013-11-22 20:09 - 00000000 ____D C:\ProgramData\McAfee
2014-01-20 10:28 - 2013-08-22 14:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2014-01-20 10:22 - 2013-11-13 23:18 - 00310644 _____ C:\WINDOWS\PFRO.log
2014-01-20 10:22 - 2013-08-22 15:44 - 00388856 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2014-01-20 10:20 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\WinStore
2014-01-20 10:16 - 2013-12-30 11:50 - 00000000 ____D C:\ProgramData\Microsoft Help
2014-01-20 10:13 - 2013-11-22 20:30 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2014-01-20 10:00 - 2014-01-20 10:00 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-01-20 09:55 - 2014-01-20 09:55 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2014-01-20 09:55 - 2014-01-20 09:55 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2014-01-20 09:54 - 2013-12-30 11:52 - 00000000 ____D C:\Program Files (x86)\Microsoft Works
2014-01-17 12:26 - 2013-12-30 11:25 - 00124416 ___SH C:\Users\Isabel\Desktop\Thumbs.db
2014-01-17 10:58 - 2013-12-30 11:42 - 00000000 ____D C:\Users\Isabel\Documents\Tweede jaar
2014-01-16 20:57 - 2013-12-26 13:40 - 00000000 ____D C:\WINDOWS\system32\MRT
2014-01-16 20:52 - 2013-12-26 13:40 - 86054176 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-01-16 17:10 - 2014-01-16 17:10 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2014-01-16 17:10 - 2014-01-16 17:10 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2014-01-16 10:04 - 2013-11-14 08:27 - 01776918 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2014-01-16 10:04 - 2013-11-14 08:11 - 00765582 _____ C:\WINDOWS\system32\perfh007.dat
2014-01-16 10:04 - 2013-11-14 08:11 - 00159366 _____ C:\WINDOWS\system32\perfc007.dat
2014-01-16 10:03 - 2013-08-22 15:46 - 00330863 _____ C:\WINDOWS\setupact.log
2014-01-16 09:29 - 2014-01-16 09:29 - 00000000 ____D C:\ProgramData\Hewlett-Packard
2014-01-15 18:22 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\AppReadiness
2014-01-14 08:43 - 2014-01-14 08:43 - 00084512 _____ C:\Users\Isabel\AppData\Local\GDIPFONTCACHEV1.DAT
2014-01-10 19:59 - 2013-12-25 13:14 - 00000000 ____D C:\Users\Isabel\AppData\Local\Packages
2014-01-07 17:18 - 2014-01-07 17:15 - 00000000 ____D C:\Program Files (x86)\iTunes
2014-01-07 17:15 - 2014-01-07 17:15 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-01-07 17:15 - 2014-01-07 17:15 - 00000000 ____D C:\Program Files\iTunes
2014-01-07 17:15 - 2014-01-07 17:15 - 00000000 ____D C:\Program Files\iPod
2014-01-07 17:15 - 2014-01-07 17:15 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2014-01-07 17:14 - 2014-01-07 17:14 - 00000000 ____D C:\Program Files\Common Files\Apple
2014-01-07 17:14 - 2014-01-07 17:14 - 00000000 ____D C:\Program Files\Bonjour
2014-01-07 17:14 - 2014-01-07 17:14 - 00000000 ____D C:\Program Files (x86)\Bonjour
2014-01-07 16:49 - 2014-01-07 16:49 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\iFunbox_UserCache
2014-01-07 15:25 - 2014-01-07 15:25 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\Avira
2014-01-07 15:25 - 2014-01-07 15:25 - 00000000 ____D C:\ProgramData\AskPartnerNetwork
2014-01-07 15:25 - 2014-01-07 15:25 - 00000000 ____D C:\Program Files (x86)\AskPartnerNetwork
2014-01-07 15:24 - 2014-01-07 15:24 - 00000000 ____D C:\ProgramData\Avira
2014-01-07 15:24 - 2014-01-07 15:24 - 00000000 ____D C:\Program Files (x86)\Avira
2014-01-07 15:12 - 2013-08-22 15:46 - 00000618 _____ C:\WINDOWS\setuperr.log
2014-01-07 15:09 - 2014-01-07 15:09 - 00000020 ___SH C:\Users\UpdatusUser\ntuser.ini
2014-01-07 15:09 - 2014-01-07 15:09 - 00000000 ____D C:\WINDOWS\SysWOW64\NV
2014-01-07 15:09 - 2014-01-07 15:09 - 00000000 ____D C:\WINDOWS\system32\NV
2014-01-07 15:09 - 2014-01-07 15:09 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies
2014-01-07 15:09 - 2013-12-26 18:51 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2014-01-07 15:09 - 2013-11-22 19:59 - 00000000 ____D C:\ProgramData\NVIDIA
2014-01-07 15:05 - 2014-01-07 15:05 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\InstallShield
2014-01-07 15:05 - 2013-11-22 20:03 - 07488176 _____ (Broadcom Corporation) C:\WINDOWS\system32\Drivers\BCMWL63a.SYS
2014-01-07 15:05 - 2013-11-22 20:03 - 04131840 _____ (Broadcom Corporation) C:\WINDOWS\system32\bcmihvsrv64.dll
2014-01-07 15:05 - 2013-11-22 20:03 - 03777024 _____ (Broadcom Corporation) C:\WINDOWS\system32\bcmihvui64.dll
2014-01-07 15:05 - 2013-11-22 19:53 - 00023892 _____ C:\WINDOWS\DPINST.LOG
2014-01-07 15:04 - 2014-01-07 15:04 - 00000000 ____H C:\ProgramData\DP45977C.lfl
2014-01-07 15:04 - 2014-01-07 15:04 - 00000000 ____D C:\Upgrade
2014-01-07 15:04 - 2013-12-26 18:53 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2014-01-07 13:52 - 2014-01-07 13:51 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\Apple Computer
2014-01-07 13:51 - 2014-01-07 13:51 - 00000000 ____D C:\Users\Isabel\AppData\Local\Apple Computer
2014-01-07 13:50 - 2014-01-07 13:50 - 00000000 ____D C:\Users\Isabel\AppData\Local\Apple
2014-01-07 13:50 - 2014-01-07 13:50 - 00000000 ____D C:\ProgramData\Apple Computer
2014-01-07 13:50 - 2014-01-07 13:50 - 00000000 ____D C:\ProgramData\Apple
2014-01-07 12:38 - 2013-11-22 19:54 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2014-01-06 23:31 - 2013-08-22 16:38 - 00693240 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2014-01-06 23:31 - 2013-08-22 16:38 - 00105464 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2014-01-06 20:44 - 2014-01-06 20:44 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\Malwarebytes
2014-01-06 20:44 - 2014-01-06 20:44 - 00000000 ____D C:\ProgramData\Malwarebytes
2014-01-06 20:28 - 2014-01-06 20:28 - 00000000 ____D C:\_OTL
2014-01-06 14:49 - 2014-01-06 14:41 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\DVDVideoSoft
2014-01-06 14:44 - 2014-01-06 14:44 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\TuneUp Software
2014-01-06 14:44 - 2014-01-06 14:43 - 00000000 ____D C:\ProgramData\TuneUp Software
2014-01-06 14:43 - 2014-01-06 14:43 - 00000000 __SHD C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2014-01-06 14:41 - 2014-01-06 14:41 - 00000000 ____D C:\Users\Isabel\Documents\DVDVideoSoft
2014-01-06 11:45 - 2013-11-14 08:13 - 00000000 ____D C:\WINDOWS\ShellNew
2014-01-06 11:29 - 2014-01-06 11:29 - 00000000 ____D C:\WINDOWS\System32\Tasks\Games
2014-01-04 23:31 - 2014-01-04 23:31 - 00000000 ____D C:\Users\Public\CyberLink
2014-01-04 23:31 - 2014-01-04 23:31 - 00000000 ____D C:\Users\Isabel\Documents\CyberLink
2014-01-04 23:31 - 2014-01-04 23:31 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\CyberLink
2014-01-04 23:31 - 2014-01-04 23:31 - 00000000 ____D C:\ProgramData\CyberLink
2013-12-31 17:17 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\rescache
2013-12-31 11:45 - 2013-12-31 11:44 - 00000000 ___RD C:\WINDOWS\BrowserChoice
2013-12-30 19:24 - 2013-11-22 20:24 - 00000000 ____D C:\ProgramData\Adobe
2013-12-30 11:51 - 2013-12-30 11:51 - 00000000 ____D C:\WINDOWS\PCHEALTH
2013-12-30 11:51 - 2013-08-22 16:36 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2013-12-30 11:50 - 2013-12-30 11:50 - 00000000 ____D C:\Users\Isabel\AppData\Local\Microsoft Help
2013-12-30 11:50 - 2013-12-30 11:50 - 00000000 ____D C:\Program Files\Microsoft Office
2013-12-30 11:49 - 2013-12-30 11:49 - 00000000 __RHD C:\MSOCache
2013-12-30 11:39 - 2013-12-27 11:01 - 00000000 ____D C:\Users\Isabel\AppData\Local\Adobe
2013-12-30 11:39 - 2013-12-25 13:16 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\Adobe
2013-12-30 11:15 - 2013-12-30 11:15 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2013-12-27 15:52 - 2013-12-26 18:47 - 00000000 ___DC C:\WINDOWS\Panther
2013-12-27 12:24 - 2013-12-27 12:24 - 00000000 ____D C:\Users\Isabel\Documents\IBM
2013-12-27 12:24 - 2013-12-27 12:24 - 00000000 ____D C:\Users\Isabel\AppData\Local\javasharedresources
2013-12-27 12:24 - 2013-12-27 12:24 - 00000000 ____D C:\Users\Isabel\.spss
2013-12-27 12:24 - 2013-12-26 18:57 - 00000000 ____D C:\Users\Isabel
2013-12-27 12:21 - 2013-12-27 12:21 - 00000000 ____D C:\Users\Isabel\AppData\Local\IBM
2013-12-27 12:21 - 2013-12-27 12:21 - 00000000 ____D C:\ProgramData\SafeNet Sentinel
2013-12-27 12:20 - 2013-12-27 12:20 - 00000000 ____D C:\ProgramData\SPSS
2013-12-27 12:18 - 2013-12-27 12:18 - 00001025 _____ C:\WINDOWS\SysWOW64\sysprs7.tgz
2013-12-27 12:18 - 2013-12-27 12:18 - 00001025 _____ C:\WINDOWS\SysWOW64\sysprs7.dll
2013-12-27 12:18 - 2013-12-27 12:18 - 00000219 _____ C:\WINDOWS\SysWOW64\lsprst7.tgz
2013-12-27 12:18 - 2013-12-27 12:18 - 00000205 _____ C:\WINDOWS\SysWOW64\lsprst7.dll
2013-12-27 12:18 - 2013-12-27 12:18 - 00000016 ____H C:\WINDOWS\SysWOW64\servdat.slm
2013-12-27 12:18 - 2013-12-27 12:18 - 00000000 ____D C:\Program Files (x86)\IBM
2013-12-27 11:34 - 2013-12-27 11:34 - 00000000 ___RD C:\Users\Isabel\Documents\Notes
2013-12-27 11:21 - 2013-11-22 20:37 - 00000000 ____D C:\Program Files (x86)\WildGames
2013-12-27 11:20 - 2013-11-22 20:37 - 00000000 ____D C:\ProgramData\WildTangent
2013-12-27 11:16 - 2013-11-22 20:11 - 00000000 ____D C:\Program Files (x86)\Sony
2013-12-27 11:16 - 2013-11-22 20:09 - 00000000 ____D C:\ProgramData\Sony Corporation
2013-12-27 11:15 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\restore
2013-12-27 11:12 - 2013-12-27 11:12 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\NVIDIA
2013-12-27 11:12 - 2013-12-25 13:16 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\Sony Corporation
2013-12-27 11:02 - 2013-12-27 11:02 - 00000000 ____D C:\Users\Isabel\AppData\Local\Macromedia
2013-12-27 11:00 - 2013-12-27 11:00 - 00000000 ____D C:\ProgramData\APN
2013-12-27 10:55 - 2012-07-26 09:12 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2013-12-27 10:54 - 2012-07-26 06:37 - 00000000 ____D C:\Users\Default.migrated
2013-12-26 19:27 - 2013-12-26 19:27 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf
2013-12-26 19:24 - 2013-12-26 19:24 - 00001450 _____ C:\Users\Isabel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-12-26 19:24 - 2013-12-26 19:24 - 00000020 ___SH C:\Users\Isabel\ntuser.ini
2013-12-26 19:24 - 2013-12-25 13:17 - 00000000 ___RD C:\Users\Isabel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-12-26 19:24 - 2013-12-25 13:17 - 00000000 ___RD C:\Users\Isabel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Vorlagen
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Startmenü
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Eigene Dateien
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Druckumgebung
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf
2013-12-26 19:15 - 2013-12-26 19:15 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten
2013-12-26 19:15 - 2013-08-22 16:36 - 00000000 ____D C:\Program Files\Windows NT
2013-12-26 19:15 - 2013-08-22 14:36 - 00000000 __RHD C:\Users\Default
2013-12-26 19:14 - 2013-12-26 19:14 - 00022960 _____ C:\WINDOWS\system32\emptyregdb.dat
2013-12-26 19:14 - 2013-12-26 18:57 - 00028578 _____ C:\WINDOWS\diagwrn.xml
2013-12-26 19:14 - 2013-12-26 18:57 - 00028578 _____ C:\WINDOWS\diagerr.xml
2013-12-26 19:14 - 2013-12-26 18:07 - 00006553 _____ C:\WINDOWS\comsetup.log
2013-12-26 19:14 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\Registration
2013-12-26 19:08 - 2013-08-22 16:36 - 00000000 __RSD C:\WINDOWS\Media
2013-12-26 19:07 - 2013-08-22 16:36 - 00000000 __RHD C:\Users\Public\Libraries
2013-12-26 19:03 - 2013-12-25 13:16 - 00000000 ____D C:\WINDOWS\SysWOW64\VAIO Startup Setting Tool
2013-12-26 19:03 - 2013-08-22 14:36 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2013-12-26 19:03 - 2013-08-22 14:25 - 00262144 ___SH C:\WINDOWS\system32\config\ELAM
2013-12-26 19:00 - 2013-11-22 20:00 - 00000000 ____D C:\WINDOWS\SysWOW64\sda
2013-12-26 19:00 - 2013-11-22 20:00 - 00000000 ____D C:\WINDOWS\system32\Version
2013-12-26 19:00 - 2013-11-14 08:11 - 00000000 ____D C:\WINDOWS\SysWOW64\WCN
2013-12-26 19:00 - 2013-11-14 08:11 - 00000000 ____D C:\WINDOWS\SysWOW64\sysprep
2013-12-26 19:00 - 2013-11-14 08:11 - 00000000 ____D C:\WINDOWS\system32\WCN
2013-12-26 19:00 - 2013-08-22 16:37 - 00004893 _____ C:\WINDOWS\DtcInstall.log
2013-12-26 19:00 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI
2013-12-26 19:00 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz
2013-12-26 19:00 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\SysWOW64\IME
2013-12-26 19:00 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2013-12-26 19:00 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\spool
2013-12-26 19:00 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\MUI
2013-12-26 19:00 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\IME
2013-12-26 19:00 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\Resources
2013-12-26 19:00 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\IME
2013-12-26 19:00 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\Help
2013-12-26 19:00 - 2013-08-22 14:36 - 00000000 ____D C:\WINDOWS\SysWOW64\SMI
2013-12-26 19:00 - 2013-08-22 14:36 - 00000000 ____D C:\WINDOWS\system32\oobe
2013-12-26 18:59 - 2013-12-26 18:50 - 00000000 ____D C:\Program Files\Intel
2013-12-26 18:59 - 2013-12-26 18:50 - 00000000 ____D C:\Program Files (x86)\Intel
2013-12-26 18:59 - 2013-08-22 16:43 - 00000000 ____D C:\WINDOWS\DigitalLocker
2013-12-26 18:59 - 2013-08-22 16:36 - 00000000 __SHD C:\Program Files\Windows Sidebar
2013-12-26 18:59 - 2013-08-22 16:36 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar
2013-12-26 18:59 - 2012-08-03 03:25 - 00000000 ____D C:\ProgramData\PRICache
2013-12-26 18:58 - 2013-12-26 18:58 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate
2013-12-26 18:58 - 2013-12-26 18:57 - 00000000 ___RD C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2013-12-26 18:58 - 2013-12-26 18:57 - 00000000 ___RD C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2013-12-26 18:58 - 2013-12-26 18:57 - 00000000 ___RD C:\Users\Isabel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2013-12-26 18:58 - 2013-12-26 18:57 - 00000000 ___RD C:\Users\Isabel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2013-12-26 18:58 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\Recovery
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Vorlagen
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Startmenü
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Netzwerkumgebung
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Lokale Einstellungen
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Eigene Dateien
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Druckumgebung
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Musik
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Bilder
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Verlauf
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Anwendungsdaten
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\UpdatusUser\Anwendungsdaten
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Vorlagen
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Startmenü
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Netzwerkumgebung
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Lokale Einstellungen
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Eigene Dateien
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Druckumgebung
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Documents\Eigene Musik
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Documents\Eigene Bilder
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\AppData\Local\Verlauf
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\AppData\Local\Anwendungsdaten
2013-12-26 18:57 - 2013-12-26 18:57 - 00000000 _SHDL C:\Users\Isabel\Anwendungsdaten
2013-12-26 18:53 - 2013-12-26 18:53 - 00000000 ____D C:\Program Files\Realtek
2013-12-26 18:53 - 2013-12-26 18:51 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2013-12-26 18:51 - 2013-12-26 18:51 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf
2013-12-26 18:51 - 2013-12-26 18:51 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
2013-12-26 18:51 - 2013-12-26 18:51 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2013-12-26 18:49 - 2013-12-26 18:49 - 00000264 _____ C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job
2013-12-26 18:49 - 2013-12-26 18:49 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf
2013-12-26 18:49 - 2013-12-26 18:49 - 00000000 ____D C:\Program Files\Synaptics
2013-12-26 18:47 - 2013-12-26 18:47 - 00000000 __SHD C:\Recovery
2013-12-26 18:47 - 2013-08-22 16:36 - 00262144 _____ C:\WINDOWS\system32\config\BCD-Template
2013-12-26 18:46 - 2013-12-26 18:46 - 23183360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 17112576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 12996608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 11221504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 05769216 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 04243968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 02764288 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 02334208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 02166784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 01995264 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2013-12-26 18:46 - 2013-12-26 18:46 - 01928192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2013-12-26 18:46 - 2013-12-26 18:46 - 01820160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 01395200 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 01157632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00703488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00615936 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
2013-12-26 18:46 - 2013-12-26 18:46 - 00393216 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPhoto.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPhoto.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00240128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2013-12-26 18:46 - 2013-12-26 18:46 - 00197120 _____ (Microsoft Corporation) C:\WINDOWS\system32\scrrun.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scrrun.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00075360 _____ (Microsoft Corporation) C:\WINDOWS\system32\imagehlp.dll
2013-12-26 18:46 - 2013-12-26 18:46 - 00070680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imagehlp.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 13177344 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 11674624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 07399256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2013-12-26 18:45 - 2013-12-26 18:45 - 04191744 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2013-12-26 18:45 - 2013-12-26 18:45 - 04105728 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 02896896 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 02570240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 02266624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 02143744 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 02140888 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 01843712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Display.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 01816576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Display.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 01765384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 01765376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 01756160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2013-12-26 18:45 - 2013-12-26 18:45 - 01642016 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2013-12-26 18:45 - 2013-12-26 18:45 - 01530200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2013-12-26 18:45 - 2013-12-26 18:45 - 01506680 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2013-12-26 18:45 - 2013-12-26 18:45 - 01476184 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2013-12-26 18:45 - 2013-12-26 18:45 - 01391104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
2013-12-26 18:45 - 2013-12-26 18:45 - 01345536 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2013-12-26 18:45 - 2013-12-26 18:45 - 01302528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00922624 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00747008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcli.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00744448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00637952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2013-12-26 18:45 - 2013-12-26 18:45 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
2013-12-26 18:45 - 2013-12-26 18:45 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00544768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcli.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00516496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00479744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2013-12-26 18:45 - 2013-12-26 18:45 - 00406400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00382808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2013-12-26 18:45 - 2013-12-26 18:45 - 00372568 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2013-12-26 18:45 - 2013-12-26 18:45 - 00358896 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00325464 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2013-12-26 18:45 - 2013-12-26 18:45 - 00254464 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00225792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00146776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\SerCx2.sys
2013-12-26 18:45 - 2013-12-26 18:45 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbici.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00086872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2013-12-26 18:45 - 2013-12-26 18:45 - 00039768 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2013-12-26 18:45 - 2013-12-26 18:45 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredentialMigrationHandler.dll
2013-12-26 18:45 - 2013-12-26 18:45 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredentialMigrationHandler.dll
2013-12-26 18:45 - 2013-08-22 16:36 - 00000000 ___RD C:\WINDOWS\ToastData
2013-12-26 18:45 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\MediaViewer
2013-12-26 18:45 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\FileManager
2013-12-26 18:45 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\Camera
2013-12-26 18:44 - 2013-12-26 18:44 - 00262144 _____ C:\WINDOWS\system32\config\userdiff
2013-12-26 18:42 - 2013-12-26 18:42 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2013-12-26 18:42 - 2013-12-26 18:42 - 00000000 ____D C:\Program Files\Reference Assemblies
2013-12-26 18:42 - 2013-12-26 18:42 - 00000000 ____D C:\Program Files\MSBuild
2013-12-26 18:42 - 2013-12-26 18:42 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2013-12-26 18:42 - 2013-12-26 18:42 - 00000000 ____D C:\Program Files (x86)\MSBuild
2013-12-26 18:34 - 2013-11-22 19:00 - 01312506 _____ C:\WINDOWS\WindowsUpdate (1).log
2013-12-26 17:31 - 2012-07-26 09:12 - 00000000 ____D C:\WINDOWS\AUInstallAgent
2013-12-26 14:32 - 2013-12-26 14:32 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\WildTangent
2013-12-26 14:29 - 2013-11-22 20:11 - 00000000 ____D C:\WINDOWS\System32\Tasks\Sony Corporation
2013-12-26 14:28 - 2013-12-26 14:28 - 00000000 ____D C:\Users\Isabel\AppData\Local\Apps\2.0
2013-12-26 14:28 - 2013-12-25 13:19 - 00000000 ____D C:\Users\Isabel\AppData\Local\Sony Corporation
2013-12-26 14:10 - 2013-12-26 14:10 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\Mozilla
2013-12-26 14:10 - 2013-12-26 14:10 - 00000000 ____D C:\Users\Isabel\AppData\Local\Mozilla
2013-12-26 14:10 - 2013-12-26 14:10 - 00000000 ____D C:\ProgramData\Mozilla
2013-12-26 14:10 - 2013-12-26 14:10 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-12-26 14:10 - 2013-12-26 14:10 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-12-26 14:07 - 2013-12-26 14:07 - 00003548 _____ C:\WINDOWS\System32\Tasks\CreateChoiceProcessTask
2013-12-25 14:10 - 2013-12-25 14:10 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\Macromedia
2013-12-25 14:00 - 2013-12-25 14:00 - 00003128 _____ C:\WINDOWS\System32\Tasks\USER_ESRV_SVC
2013-12-25 14:00 - 2013-12-25 14:00 - 00000000 ____D C:\Users\Isabel\AppData\Roaming\iolo
2013-12-25 13:55 - 2013-12-25 14:00 - 00013792 _____ C:\WINDOWS\system32\Drivers\semav6thermal64ro.sys
2013-12-25 13:18 - 2013-12-25 13:18 - 00000000 ____D C:\Users\Isabel\Documents\Bluetooth-Exchange-Ordner
2013-12-25 13:18 - 2013-12-25 13:18 - 00000000 ____D C:\Users\Isabel\AppData\Local\Broadcom
2013-12-25 13:17 - 2013-12-25 13:17 - 00000000 ____D C:\WINDOWS\System32\Tasks\WPD
2013-12-25 13:16 - 2013-12-25 13:16 - 00000000 ____D C:\WINDOWS\pss
2013-12-25 13:14 - 2013-12-25 13:14 - 00000000 ____D C:\Users\Isabel\AppData\Local\VirtualStore
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Vorlagen
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Startmenü
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Netzwerkumgebung
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Lokale Einstellungen
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Eigene Dateien
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Druckumgebung
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Documents\Eigene Musik
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Documents\Eigene Bilder
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\AppData\Local\Verlauf
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\AppData\Local\Anwendungsdaten
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Users\Default.migrated\Anwendungsdaten
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Programme
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\ProgramData\Vorlagen
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\ProgramData\Startmenü
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\ProgramData\Dokumente
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien
2013-12-25 13:02 - 2013-12-25 13:02 - 00000000 _SHDL C:\Dokumente und Einstellungen

Some content of TEMP:
====================
C:\Users\Isabel\AppData\Local\Temp\avgnt.exe
C:\Users\Isabel\AppData\Local\Temp\COMAP.EXE
C:\Users\Isabel\AppData\Local\Temp\Offercast_AVIRAV7_.exe
C:\Users\Isabel\AppData\Local\Temp\Quarantine.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2014-01-10 13:24

==================== End Of Log ============================
         
--- --- ---


Danke für die Bemühungen.

Antwort

Themen zu Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm?
adblock, adobe, antivir, antivirus, avira, bonjour, cpu, defender, device driver, diagnostics, excel, explorer, firefox, flash player, homepage, installation, mozilla, ntdll.dll, realtek, registry, rundll, scan, security, services.exe, software, svchost.exe, system, windows, winlogon.exe, wscript.exe



Ähnliche Themen: Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm?


  1. Tastatur spinnt(schreibt andere Zeichen als ich tippe)+PC fährt von selbst herunter(kein Absturz)
    Log-Analyse und Auswertung - 07.02.2016 (11)
  2. Laptop fährt nicht mehr herunter und führt sich selbst wieder aus
    Alles rund um Windows - 16.03.2015 (43)
  3. Windows 7: PC fährt bei drücken der Windows- und Entfernen-Taste herunter.
    Log-Analyse und Auswertung - 22.11.2014 (3)
  4. Windows 7: TR/Crypt.XPACK.Gen5 & Windows fährt nicht mehr herunter
    Log-Analyse und Auswertung - 05.10.2014 (20)
  5. Windows fährt alle 60min automatisch herunter?
    Log-Analyse und Auswertung - 08.02.2014 (9)
  6. WIndows 7 fährt herunter wenn IE aufgemacht wird.
    Log-Analyse und Auswertung - 15.11.2013 (23)
  7. Windows 7 fährt bei abgesicherten Start sofort herunter
    Plagegeister aller Art und deren Bekämpfung - 19.02.2013 (6)
  8. Zuerst Facebook-Virus-Neu aufgesetzt,cpu Auslastung 100%,bei Facebook-Games extrem lahm!
    Log-Analyse und Auswertung - 03.02.2011 (11)
  9. Rechner fährt sich selbst herunter! Vorher Malware-Fund!
    Plagegeister aller Art und deren Bekämpfung - 18.12.2010 (1)
  10. Windows fährt nach 1 Min herunter
    Alles rund um Windows - 08.08.2010 (6)
  11. flacor.dat - Windows fährt herunter
    Log-Analyse und Auswertung - 19.05.2010 (2)
  12. Windows fährt selbstständig herunter ...
    Log-Analyse und Auswertung - 02.12.2009 (1)
  13. Windows fährt nicht herunter
    Log-Analyse und Auswertung - 27.07.2009 (2)
  14. PC fährt selbst herunter und nicht mehr hoch
    Plagegeister aller Art und deren Bekämpfung - 03.03.2009 (1)
  15. Windows fährt nicht mehr herunter!
    Alles rund um Windows - 26.02.2008 (4)
  16. Pc fährt von selbst herunter
    Log-Analyse und Auswertung - 23.02.2006 (5)
  17. Blauer Bildschirm und windows fährt herunter
    Plagegeister aller Art und deren Bekämpfung - 24.01.2006 (3)

Zum Thema Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm? - Hallo, vor einigen Tagen habe ich versehentlich facebook.cm eingegeben. Dort kam dann eine Gewinnseite, die ich aber ohne etwas anzuklicken sofort verlassen habe. Nun treten oben genannte Probleme auf: Der - Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm?...
Archiv
Du betrachtest: Windows 8.1: PC fährt von selbst herunter, unbekannter Nutzer xbox games, adminrechte verschwinden - facebook.cm? auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.