Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: updownlinkg.com

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 19.04.2014, 10:14   #1
tce
 
updownlinkg.com - Standard

updownlinkg.com



Hallo Jungs und Mädels ich habe seit tagen dieses kleine Problem. Es geht immer wieder eine seite auf und fordert mich auf java zu installieren
Zitat:
updownlinkg.com
hxxp://www.updownlinkg.com/DE/?dv1=JG8JFD2E&dv2=&dv3=&dv4=Dren-Rm-DE&sec_id=qWJ8vBQjIEzEzreEzEv6D0i3C9h2DWioI07jDc1%3gA8KWfAVd7BM0cV1RNkwKNaw0MiNR7AweNAwKhuhhMa80cVRciBKehuzOcVQROX%EB%EB&marketing_fid=MTM5Nzg5NDQxNi0 wNzExYTA5MTQ2MDkxZmM5YzE4N2QzZjQ0NWE1NmUzOA==
Wie bekomme ich das wieder runter weil habe schon überal geschaut aber finde es nicht

Geändert von tce (19.04.2014 um 10:24 Uhr)

Alt 19.04.2014, 10:36   #2
schrauber
/// the machine
/// TB-Ausbilder
 

updownlinkg.com - Standard

updownlinkg.com



hi,

Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)

__________________

__________________

Alt 19.04.2014, 16:07   #3
tce
 
updownlinkg.com - Standard

updownlinkg.com



Habe ich versucht mit FRST 64-Bit, da ich einen 64 bit habe. Aber der läuft nicht durch macht einen error.
Siehe bild

Ich spamme ungerne jetzz, aber hat einer eine lösung für mein problem oder muss ich meinen PC neu Konfigurieren. Also Plat machen.
__________________

Alt 20.04.2014, 18:55   #4
schrauber
/// the machine
/// TB-Ausbilder
 

updownlinkg.com - Standard

updownlinkg.com



Ich sehe keinen Error, nur dass er gerade dabei ist die Eventviewer Einträge zu lesen. Mach mal den Haken raus bei Addition.txt und scanne nochmal.
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 20.04.2014, 20:42   #5
tce
 
updownlinkg.com - Standard

updownlinkg.com



So jetzt habe ich es noch mal gemacht

Zitat:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 20-04-2014 01
Ran by Tce (administrator) on TCE-PC on 20-04-2014 20:37:52
Running from C:\Users\Tce\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal



==================== Processes (Whitelisted) =================

(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Logitech Inc.) C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.23.9\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.23.9\GoogleCrashHandler64.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Acer Incorporated) C:\Program Files (x86)\Packard Bell\Registration\GregHSRW.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
(Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
(Acer Group) C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
() C:\OEM\USBDECTION\USBS3S4Detection.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Google Inc.) C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
(Hewlett-Packard Co.) C:\Program Files\HP\HP Officejet Pro 8600\Bin\ScanToPCActivationApp.exe
(North Star com.) C:\Program Files (x86)\Northstar\Photo Frame\Photo Frame.exe
() C:\Program Files (x86)\Packard Bell\Hotkey Utility\HotkeyUtility.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe
(Ulead Systems, Inc.) C:\Program Files (x86)\Common Files\Ulead Systems\AutoDetector\Monitor.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Elements 10 Organizer\PhotoshopElementsFileAgent.exe
(Microsoft Corporation) C:\Program Files (x86)\Windows Live\Mail\wlmail.exe
(Microsoft Corporation) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
(Microsoft Corporation) C:\Windows\splwow64.exe
(Solid State Networks) C:\Users\Tce\AppData\Local\Temp\install_flashplayer13x32_mssd_aaa_aih.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Ulead Systems, Inc.) C:\Program Files (x86)\Ulead Systems\Ulead PhotoImpact 12\Iedit_.exe
(Ulead Systems, Inc.) C:\Program Files (x86)\Ulead Systems\Ulead PhotoImpact 12\anygif\Ga_main.exe
(FileZilla Project) C:\Program Files (x86)\FileZilla FTP Client\filezilla.exe
(Apple Inc.) C:\Program Files (x86)\Safari\Safari.exe
(Apple Inc.) C:\Program Files (x86)\Safari\Apple Application Support\WebKit2WebProcess.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office12\WINWORD.EXE
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_182.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_13_0_0_182.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Macromedia, Inc.) C:\Program Files (x86)\Macromedia\Dreamweaver 8\Dreamweaver.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [IAAnotif] => C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [186904 2009-10-13] (Intel Corporation)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [10060320 2010-02-09] (Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [444904 2012-09-20] (Adobe Systems Incorporated)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [1797064 2014-03-20] (NVIDIA Corporation)
HKLM-x32\...\Run: [Hotkey Utility] => C:\Program Files (x86)\Packard Bell\Hotkey Utility\HotkeyUtility.exe [611872 2010-08-04] ()
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-12-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [49208 2011-10-28] (Hewlett-Packard)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [689744 2014-02-25] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe [37232 2008-06-12] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe [640376 2008-06-11] (Adobe Systems Inc.)
HKLM-x32\...\Run: [Ulead AutoDetector v2] => C:\Program Files (x86)\Common Files\Ulead Systems\AutoDetector\monitor.exe [90112 2004-11-26] (Ulead Systems, Inc.)
HKU\.DEFAULT\...\Run: [AviraSpeedup] => C:\Program Files (x86)\Avira\AviraSpeedup\avira_system_speedup.exe [5085416 2014-04-03] (Avira)
HKU\.DEFAULT\...\RunOnce: [SPReview] - C:\Windows\System32\SPReview\SPReview.exe [301568 2014-03-19] (Microsoft Corporation)
HKU\S-1-5-21-1934781817-2233350501-3576918985-1000\...\Run: [swg] => C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe [39408 2010-05-11] (Google Inc.)
HKU\S-1-5-21-1934781817-2233350501-3576918985-1000\...\Run: [HP Officejet Pro 8600 (NET)] => C:\Program Files\HP\HP Officejet Pro 8600\Bin\ScanToPCActivationApp.exe [2573416 2012-10-17] (Hewlett-Packard Co.)
AppInit_DLLs: acaptuser64.dll => C:\Windows\system32\acaptuser64.dll [119160 2008-06-11] (Adobe Systems, Inc.)
AppInit_DLLs-x32: acaptuser32.dll => "acaptuser32.dll" File Not Found
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://google.de/
HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = https://www.google.de/
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM-x32 - {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACPW
SearchScopes: HKCU - DefaultScope {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACPW_deDE579
SearchScopes: HKCU - {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL = hxxp://www.google.com/search?sourceid=ie7&q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&rlz=1I7ACPW_deDE579
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll (Microsoft Corporation)
BHO-x32: Avira Savings Advisor BHO - {A18A516C-AA41-46A9-92DB-60208917E442} - C:\Program Files (x86)\avira\Internet Explorer\avira32.dll ()
BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO-x32: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO-x32: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
BHO-x32: SmartSelect Class - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKCU - No Name - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - No File
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1


Alt 20.04.2014, 20:43   #6
tce
 
updownlinkg.com - Standard

updownlinkg.com



zweite hälfte
Zitat:
FireFox:
========
FF ProfilePath: C:\Users\Tce\AppData\Roaming\Mozilla\Firefox\Profiles\qeubepd2.default
FF DefaultSearchEngine: Web Search (powered by Google)
FF SelectedSearchEngine: Web Search (powered by Google)
FF Homepage: hxxp://www.google.de/
FF Keyword.URL: hxxp://search.toolbars.alexa.com/?ver=alxf-2.19&src=ab&aid=viw8j1sZQw00qN&q=
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_182.dll ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_182.dll ()
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.3 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems)
FF SearchPlugin: C:\Users\Tce\AppData\Roaming\Mozilla\Firefox\Profiles\qeubepd2.default\searchplugins\web-search-powered-by-google.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: WOT - C:\Users\Tce\AppData\Roaming\Mozilla\Firefox\Profiles\qeubepd2.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} [2014-04-07]
FF Extension: Alexa Toolbar - C:\Users\Tce\AppData\Roaming\Mozilla\Firefox\Profiles\qeubepd2.default\Extensions\toolbar@alexa.com.xpi [2014-04-16]

Chrome:
=======
CHR HomePage: https://www.google.de/
CHR StartupUrls: "startup_urls_migration_time": "13039257761971299"
CHR Extension: (Google Docs) - C:\Users\Tce\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-03-14]
CHR Extension: (Google Drive) - C:\Users\Tce\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-03-14]
CHR Extension: (YouTube) - C:\Users\Tce\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-03-14]
CHR Extension: (Avira Sparberater) - C:\Users\Tce\AppData\Local\Google\Chrome\User Data\Default\Extensions\cojnmaaohncijldefpkpkkakjonfmgeb [2014-04-06]
CHR Extension: (Google-Suche) - C:\Users\Tce\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-03-14]
CHR Extension: (Google Wallet) - C:\Users\Tce\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-03-14]
CHR Extension: (Google Mail) - C:\Users\Tce\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-03-14]
CHR HKLM-x32\...\Chrome\Extension: [cojnmaaohncijldefpkpkkakjonfmgeb] - C:\Program Files (x86)\avira\Chrome\avira-1.5.14.crx [2013-12-11]

==================== Services (Whitelisted) =================

R2 AdobeActiveFileMonitor10.0; C:\Program Files (x86)\Adobe\Elements 10 Organizer\PhotoshopElementsFileAgent.exe [169624 2011-09-01] (Adobe Systems Incorporated)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440400 2014-02-25] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440400 2014-02-25] (Avira Operations GmbH & Co. KG)
S3 FirebirdServerMAGIXInstance; C:\Program Files (x86)\MAGIX\Common\Database\bin\fbserver.exe [1527900 2005-11-17] (MAGIX®)
S3 GameConsoleService; C:\Program Files (x86)\Packard Bell Games\Packard Bell Game Console\GameConsoleService.exe [238328 2009-10-10] (WildTangent, Inc.)
R2 Greg_Service; C:\Program Files (x86)\Packard Bell\Registration\GregHSRW.exe [1150496 2009-08-28] (Acer Incorporated)
R2 Updater Service; C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe [243232 2010-01-29] (Acer Group)
R2 USBS3S4Detection; C:\OEM\USBDECTION\USBS3S4Detection.exe [76320 2009-12-09] ()
S2 vosr; C:\Users\Tce\AppData\Roaming\VOPackage\VOsrv.exe [X]

==================== Drivers (Whitelisted) ====================

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2014-02-25] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131576 2014-02-25] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2014-02-25] (Avira Operations GmbH & Co. KG)
S3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [119512 2014-04-14] (Malwarebytes Corporation)
S3 EraserUtilDrv11312; \??\C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilDrv11312.sys [X]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-04-20 20:37 - 2014-04-20 20:37 - 00000000 ____D () C:\Users\Tce\Desktop\FRST-OlderVersion
2014-04-20 17:23 - 2014-04-20 17:23 - 00000000 ____D () C:\Users\Tce\Downloads\Modification(1)
2014-04-20 17:22 - 2014-04-20 17:22 - 00000403 _____ () C:\Users\Tce\Downloads\Modification(1).zip
2014-04-20 15:42 - 2014-04-20 15:42 - 00000000 ____D () C:\Users\Tce\Downloads\Palcom
2014-04-20 15:40 - 2014-04-20 15:40 - 01076195 _____ () C:\Users\Tce\Downloads\Palcom.zip
2014-04-20 15:33 - 2014-04-20 15:33 - 00000000 ____D () C:\Users\Tce\Downloads\Messegner Sound Notification
2014-04-20 15:32 - 2014-04-20 15:32 - 00028999 _____ () C:\Users\Tce\Downloads\Messegner Sound Notification.zip
2014-04-20 15:30 - 2014-04-20 15:30 - 00019497 _____ () C:\Users\Tce\Downloads\simple_chat_mod.zip
2014-04-20 11:20 - 2014-04-20 11:20 - 00000000 ____D () C:\Users\Tce\AppData\Local\{9F7B1270-7D1F-46FD-9F21-AED368ABE87A}
2014-04-19 22:45 - 2014-04-19 22:45 - 00000000 ____D () C:\Users\Tce\AppData\Local\{55AEC36B-7165-4E38-AEB5-05FD16C5E7BE}
2014-04-19 11:08 - 2014-04-19 11:09 - 02158592 _____ (Farbar) C:\Users\Tce\Downloads\FRST64.exe
2014-04-19 10:54 - 2014-04-19 11:34 - 00028590 _____ () C:\Users\Tce\Desktop\Addition.txt
2014-04-19 10:53 - 2014-04-20 20:37 - 02056192 _____ (Farbar) C:\Users\Tce\Desktop\FRST64.exe
2014-04-19 10:53 - 2014-04-20 20:37 - 00017811 _____ () C:\Users\Tce\Desktop\FRST.txt
2014-04-19 10:53 - 2014-04-20 20:37 - 00000000 ____D () C:\FRST
2014-04-19 10:04 - 2014-04-19 10:04 - 00000000 ____D () C:\Users\Tce\AppData\Local\{2941F86F-C11F-40F2-A0B6-929CE264E712}
2014-04-18 22:03 - 2014-04-18 22:04 - 00000000 ____D () C:\Users\Tce\AppData\Local\{E642226E-BAF3-4E91-B18A-7A4357018F2E}
2014-04-18 20:31 - 2014-04-18 20:31 - 00000030 _____ () C:\Windows\Iedit_.INI
2014-04-18 10:03 - 2014-04-18 10:03 - 00000000 ____D () C:\Users\Tce\AppData\Local\{FD8C6529-DC31-4708-B408-21A44A97D823}
2014-04-17 22:03 - 2014-04-17 22:03 - 00000000 ____D () C:\Users\Tce\AppData\Local\{3827539D-8217-4DCA-83F9-961A3E63EE66}
2014-04-17 16:42 - 2014-04-17 16:42 - 01261458 _____ () C:\Users\Tce\Downloads\Template_Yougrids-J17andUP.zip
2014-04-17 16:42 - 2014-04-17 16:42 - 00000000 ____D () C:\Users\Tce\Downloads\Demo_Yougrids-J25
2014-04-17 16:39 - 2014-04-17 16:39 - 13006021 _____ () C:\Users\Tce\Downloads\Demo_Yougrids-J25.zip
2014-04-17 16:06 - 2014-04-17 16:37 - 00000000 ____D () C:\Users\Tce\Downloads\yj_Photolicious_j25
2014-04-17 15:48 - 2014-04-17 15:49 - 19036846 _____ () C:\Users\Tce\Downloads\yj_Photolicious_j25.7z
2014-04-17 10:02 - 2014-04-17 10:03 - 00000000 ____D () C:\Users\Tce\AppData\Local\{21208D44-B241-4EF4-BCA9-FD935851008F}
2014-04-16 22:15 - 2014-04-16 22:15 - 00993712 _____ () C:\Users\Tce\Downloads\setup(1).exe
2014-04-16 12:56 - 2014-04-16 12:57 - 00000000 ____D () C:\Users\Tce\AppData\Local\{22D6C97E-81CE-4372-BACA-B5A7F007E6CC}
2014-04-16 00:55 - 2014-04-16 00:56 - 00000000 ____D () C:\Users\Tce\AppData\Local\{8F744917-4CB2-41C5-AA3D-F133BFA87B64}
2014-04-15 12:54 - 2014-04-15 12:55 - 00000000 ____D () C:\Users\Tce\AppData\Local\{C00AAC07-FB13-4C1C-81A5-7851B280758D}
2014-04-15 00:53 - 2014-04-15 00:54 - 00000000 ____D () C:\Users\Tce\AppData\Local\{2544576B-7DE6-412A-A8F9-45EEE62BB8EF}
2014-04-14 23:46 - 2014-04-14 23:46 - 00993712 _____ () C:\Users\Tce\Downloads\setup.exe
2014-04-14 23:46 - 2014-04-14 23:46 - 00993712 _____ () C:\Users\Tce\Downloads\setup (1).exe
2014-04-14 19:40 - 2014-04-14 19:41 - 23181137 _____ () C:\Users\Tce\Downloads\torbrowser-install-3.5.4_de.exe
2014-04-14 18:49 - 2014-04-14 18:49 - 00000000 ____D () C:\Users\Tce\Downloads\Shine_Win_Full
2014-04-14 18:48 - 2014-04-14 18:49 - 16886299 _____ () C:\Users\Tce\Downloads\Shine_Win_Full.zip
2014-04-14 14:06 - 2014-04-15 18:20 - 00000000 _____ () C:\Windows\system32\Drivers\lvuvc.hs
2014-04-14 14:06 - 2014-04-14 14:06 - 00008403 _____ () C:\Windows\system32\lvcoinst.log
2014-04-14 14:06 - 2014-04-14 14:06 - 00000000 ____D () C:\Program Files\Common Files\logishrd
2014-04-14 12:52 - 2014-04-14 12:53 - 00000000 ____D () C:\Users\Tce\AppData\Local\{CF78772A-14C3-466B-B923-4761476BDDDD}
2014-04-14 12:45 - 2014-04-14 12:46 - 00000000 ____D () C:\Users\Tce\Downloads\PHP_API_Example
2014-04-14 12:42 - 2014-04-14 12:42 - 00014559 _____ () C:\Users\Tce\Downloads\PHP_API_Example.zip
2014-04-14 00:51 - 2014-04-14 00:52 - 00000000 ____D () C:\Users\Tce\AppData\Local\{0EDF4C49-CA95-4AD9-85E9-82B29EB7F2C3}
2014-04-13 23:38 - 2014-04-13 23:38 - 00021834 _____ () C:\Users\Tce\Downloads\de-de.rsjoomla_rsformpro_1.3(1).zip
2014-04-13 12:51 - 2014-04-13 12:51 - 00000000 ____D () C:\Users\Tce\AppData\Local\{32F722A2-F43D-4452-B1C1-4F5EA134BBB8}
2014-04-13 01:41 - 2014-04-13 01:41 - 00000000 ____D () C:\Users\Tce\Downloads\VTEM-FindHome
2014-04-13 01:38 - 2014-04-13 01:39 - 00000000 ____D () C:\Users\Tce\Downloads\JS_appico
2014-04-13 01:37 - 2014-04-13 01:38 - 00000000 ____D () C:\Users\Tce\Downloads\YT_moreno
2014-04-13 01:35 - 2014-04-13 01:36 - 00000000 ____D () C:\Users\Tce\Downloads\SJ_Snap(1)
2014-04-13 01:33 - 2014-04-13 01:35 - 00000000 ____D () C:\Users\Tce\Downloads\IT_Enterprise
2014-04-13 01:31 - 2014-04-13 01:33 - 00000000 ____D () C:\Users\Tce\Downloads\RT_corvus(1)
2014-04-13 01:30 - 2014-04-13 01:30 - 00000000 ____D () C:\Users\Tce\Downloads\JA_Muzic
2014-04-13 01:28 - 2014-04-13 01:28 - 00000000 ____D () C:\Users\Tce\Downloads\BT-BodyWorx
2014-04-13 01:27 - 2014-04-13 01:28 - 00000000 ____D () C:\Users\Tce\Downloads\YT_moreno(1)
2014-04-13 01:26 - 2014-04-13 01:26 - 00000000 ____D () C:\Users\Tce\Downloads\YJ-Pretium
2014-04-13 01:24 - 2014-04-13 01:24 - 00000000 ____D () C:\Users\Tce\Downloads\Hot-Clinic
2014-04-13 01:23 - 2014-04-13 01:24 - 00000000 ____D () C:\Users\Tce\Downloads\JV Sunflower
2014-04-13 01:21 - 2014-04-13 01:21 - 00000000 ____D () C:\Users\Tce\Downloads\S5-Business-Pro
2014-04-13 01:20 - 2014-04-13 01:20 - 00000000 ____D () C:\Users\Tce\Downloads\JS-Shaper-MegaDeal
2014-04-13 01:18 - 2014-04-13 01:19 - 00000000 ____D () C:\Users\Tce\Downloads\JV_Speed
2014-04-13 01:17 - 2014-04-13 01:17 - 00000000 ____D () C:\Users\Tce\Downloads\ja_fixel
2014-04-13 01:14 - 2014-04-13 01:14 - 00000000 ____D () C:\Users\Tce\Downloads\ZT_Webshop
2014-04-13 01:11 - 2014-04-13 01:11 - 00000000 ____D () C:\Users\Tce\Downloads\IT_Political2
2014-04-13 01:10 - 2014-04-13 01:10 - 00000000 ____D () C:\Users\Tce\Downloads\RT-Praxis
2014-04-13 00:55 - 2014-04-13 00:55 - 00000000 ____D () C:\Users\Tce\Downloads\VTEM-Magazine
2014-04-13 00:52 - 2014-04-13 00:55 - 00000000 ____D () C:\Users\Tce\Downloads\SJ-Sport-Store
2014-04-13 00:51 - 2014-04-13 00:51 - 00000000 ____D () C:\Users\Tce\Downloads\Leo-Lifestyle
2014-04-13 00:50 - 2014-04-13 00:50 - 00000000 ____D () C:\Users\Tce\AppData\Local\{6BE4D652-7A94-49D4-9B50-266291B727A5}
2014-04-13 00:48 - 2014-04-13 00:48 - 00000000 ____D () C:\Users\Tce\Downloads\TF-Simplekey
2014-04-13 00:42 - 2014-04-13 00:48 - 00000000 ____D () C:\Users\Tce\Downloads\S5_ezwebhosting
2014-04-13 00:41 - 2014-04-13 00:41 - 00000000 ____D () C:\Users\Tce\oxwell
2014-04-12 16:42 - 2014-04-12 16:42 - 00000000 ____D () C:\Users\Tce\Downloads\attachment_92_530ffd6378e0c_sprachpaket-de_v4.0.1(1)
2014-04-12 16:39 - 2014-04-12 16:39 - 00000000 ____D () C:\Users\Tce\Downloads\attachment_445_4e619a057a0fd
2014-04-12 16:18 - 2014-04-12 16:18 - 05427328 _____ (Martin Prikryl ) C:\Users\Tce\Downloads\winscp552setup(1).exe
2014-04-12 16:17 - 2014-04-12 16:17 - 04407694 _____ () C:\Users\Tce\Downloads\winscp552.zip
2014-04-12 16:17 - 2014-04-12 16:17 - 00000000 ____D () C:\Users\Tce\Downloads\winscp552
2014-04-12 15:32 - 2014-04-12 15:32 - 00000000 ____D () C:\Users\Tce\Downloads\oxwall-1.6.0(2)
2014-04-12 12:49 - 2014-04-12 12:49 - 00000000 ____D () C:\Users\Tce\AppData\Local\{4CC9878F-78D7-4473-A3EC-8D438ABBCAD6}
2014-04-12 00:48 - 2014-04-12 00:48 - 00000000 ____D () C:\Users\Tce\AppData\Local\{DEFAB4F0-78EE-4896-BF8B-CA8C99E1B014}
2014-04-12 00:45 - 2014-04-12 00:45 - 00000000 ____D () C:\Users\Tce\Downloads\JXTC-Mozaix(1)
2014-04-12 00:43 - 2014-04-12 00:43 - 00000000 ____D () C:\Users\Tce\Downloads\JS-Shaper-Maxima
2014-04-12 00:41 - 2014-04-12 00:41 - 00000000 ____D () C:\Users\Tce\Downloads\SJ-Financial
2014-04-12 00:38 - 2014-04-12 00:40 - 00000000 ____D () C:\Users\Tce\Downloads\SJ_Teen
2014-04-11 19:56 - 2014-04-11 19:56 - 00000000 ____D () C:\Users\Tce\Downloads\ja_magz
2014-04-11 19:52 - 2014-04-11 19:52 - 00000000 ____D () C:\Users\Tce\Downloads\S5-Gamers
2014-04-11 19:46 - 2014-04-11 19:46 - 00000000 ____D () C:\Users\Tce\Downloads\OT-Clinical
2014-04-11 19:44 - 2014-04-11 19:44 - 00000000 ____D () C:\Users\Tce\Downloads\RT-Acacia
2014-04-11 19:42 - 2014-04-11 19:44 - 00000000 ____D () C:\Users\Tce\Downloads\SJ_Decou
2014-04-11 18:09 - 2014-04-11 18:10 - 00000000 ____D () C:\Users\Tce\Downloads\gk_game
2014-04-11 18:06 - 2014-04-11 18:08 - 00000000 ____D () C:\Users\Tce\Downloads\ja_bookshop
2014-04-11 18:01 - 2014-04-11 18:06 - 00000000 ____D () C:\Users\Tce\Downloads\S5_Helion(1)
2014-04-11 17:59 - 2014-04-11 18:01 - 00000000 ____D () C:\Users\Tce\Downloads\JS_Optima
2014-04-11 17:58 - 2014-04-11 17:58 - 00000000 ____D () C:\Users\Tce\Downloads\Hot-Academy
2014-04-11 17:54 - 2014-04-11 17:54 - 00000000 ____D () C:\Users\Tce\Downloads\IT PlanetEarth
2014-04-11 17:44 - 2014-04-11 17:44 - 00000000 ____D () C:\Users\Tce\Downloads\OT-Rendcore
2014-04-11 17:39 - 2014-04-11 17:39 - 00000000 ____D () C:\Users\Tce\Downloads\IT_TheRestaurant2
2014-04-11 17:37 - 2014-04-11 17:37 - 00000000 ____D () C:\Users\Tce\Downloads\RT-Paradigm
2014-04-11 17:33 - 2014-04-11 17:36 - 00000000 ____D () C:\Users\Tce\Downloads\SJ_Flat_News
2014-04-11 12:47 - 2014-04-11 12:47 - 00000000 ____D () C:\Users\Tce\AppData\Local\{462BD653-C4F6-490D-A209-D4997DAD060D}
2014-04-11 00:46 - 2014-04-11 00:46 - 00000000 ____D () C:\Users\Tce\AppData\Local\{78B14DA2-8CE8-46DF-A47B-4E3D69E23809}
2014-04-10 12:45 - 2014-04-10 12:45 - 00000000 ____D () C:\Users\Tce\AppData\Local\{4E236A39-5724-40E8-911F-8A97BBEB6B37}
2014-04-10 10:06 - 2014-03-31 03:16 - 23134208 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-04-10 10:06 - 2014-03-31 03:13 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-04-10 10:06 - 2014-03-31 02:13 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-04-10 10:06 - 2014-03-31 01:57 - 17073152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-04-10 10:06 - 2014-03-04 11:44 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2014-04-10 10:06 - 2014-03-04 11:44 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2014-04-10 10:06 - 2014-03-04 11:44 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2014-04-10 10:06 - 2014-03-04 11:44 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2014-04-10 10:06 - 2014-03-04 11:44 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2014-04-10 10:06 - 2014-03-04 11:17 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2014-04-10 10:06 - 2014-03-04 11:16 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2014-04-10 10:06 - 2014-03-04 11:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2014-04-10 10:06 - 2014-03-04 11:16 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2014-04-10 10:06 - 2014-03-04 10:09 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2014-04-10 10:06 - 2014-03-04 10:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2014-04-10 10:06 - 2014-02-04 04:35 - 00274880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys
2014-04-10 10:06 - 2014-02-04 04:35 - 00190912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2014-04-10 10:06 - 2014-02-04 04:35 - 00027584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys
2014-04-10 10:06 - 2014-02-04 04:28 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\iologmsg.dll
2014-04-10 10:06 - 2014-02-04 04:00 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iologmsg.dll
2014-04-10 10:06 - 2014-01-24 04:37 - 01684928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2014-04-10 00:44 - 2014-04-10 00:45 - 00000000 ____D () C:\Users\Tce\AppData\Local\{6CCEC902-496E-41A0-AF69-D91D85552E83}
2014-04-09 17:26 - 2014-04-09 17:26 - 00002200 _____ () C:\Users\Public\Desktop\Ulead Photo Explorer 8.6.lnk
2014-04-09 17:25 - 2005-08-30 12:02 - 00024576 ____N (Ulead Systems, Inc.) C:\Windows\SysWOW64\Ulead Photo Explorer 86.scr
2014-04-09 17:24 - 2014-04-09 17:24 - 00002178 _____ () C:\Users\Public\Desktop\PhotoImpact Album 12.lnk
2014-04-09 17:24 - 2014-04-09 17:24 - 00002178 _____ () C:\Users\Public\Desktop\PhotoImpact 12.lnk
2014-04-09 17:23 - 2006-07-22 19:37 - 00049152 ____N (Blue Sky Software Corporation.) C:\Windows\SysWOW64\INETWH32.dll
2014-04-09 17:23 - 1999-10-15 12:50 - 01056768 ____N (Blue Sky Software Corporation.) C:\Windows\SysWOW64\ROBOEX32.DLL
2014-04-09 16:52 - 2014-04-09 16:52 - 01855039 _____ () C:\Users\Tce\Downloads\gantry_joomla_framework-4.1.23.zip
2014-04-09 16:43 - 2014-04-09 16:49 - 00000000 ____D () C:\Users\Tce\Downloads\RT_corvus
2014-04-09 16:32 - 2014-04-09 16:33 - 28906546 _____ () C:\Users\Tce\Downloads\RT_corvus.7z
2014-04-09 12:44 - 2014-04-09 12:44 - 00000000 ____D () C:\Users\Tce\AppData\Local\{4AF27B99-B67C-40DB-B23B-BB0DF4D7B929}
2014-04-09 11:25 - 2014-04-09 11:25 - 08255594 _____ () C:\Users\Tce\Downloads\Joomla_2.5.19-Stable-Full_Package_German.zip
2014-04-09 11:21 - 2014-04-09 11:21 - 00333143 _____ () C:\Users\Tce\Downloads\de-DE_joomla_lang_full_2.5.19v1(2).zip
2014-04-09 11:21 - 2014-04-09 11:21 - 00000000 ____D () C:\Users\Tce\Downloads\de-DE_joomla_lang_full_2.5.19v1(2)
2014-04-09 11:19 - 2014-04-09 11:19 - 00000000 ____D () C:\Users\Tce\Downloads\de
2014-04-09 01:49 - 2014-04-09 02:01 - 00000000 ____D () C:\Users\Tce\ersatz
2014-04-09 01:19 - 2014-04-13 01:42 - 00000000 ____D () C:\Users\Tce\templat_top
2014-04-09 00:43 - 2014-04-09 00:43 - 00000000 ____D () C:\Users\Tce\AppData\Local\{50EE14EE-1BFD-4F12-8DD4-A2CA2D66CF5C}
2014-04-09 00:40 - 2014-04-09 00:40 - 00000000 ____D () C:\Users\Tce\Downloads\YJ_Youtrader_UnzipFirst
2014-04-09 00:40 - 2014-04-09 00:40 - 00000000 ____D () C:\Users\Tce\Downloads\YJ_Youportfisimo25
2014-04-09 00:39 - 2014-04-09 00:39 - 00000000 ____D () C:\Users\Tce\Downloads\YJ-Youresponse
2014-04-09 00:39 - 2014-04-09 00:39 - 00000000 ____D () C:\Users\Tce\Downloads\TF-Kallyas
2014-04-09 00:39 - 2014-04-09 00:39 - 00000000 ____D () C:\Users\Tce\Downloads\RT_Oculus25_30
2014-04-09 00:39 - 2014-04-09 00:39 - 00000000 ____D () C:\Users\Tce\Downloads\RT_Hybrid
2014-04-09 00:39 - 2014-04-09 00:39 - 00000000 ____D () C:\Users\Tce\Downloads\IT-Property-2
2014-04-09 00:39 - 2014-04-09 00:39 - 00000000 ____D () C:\Users\Tce\Downloads\GK_League_News
2014-04-09 00:39 - 2014-04-09 00:39 - 00000000 ____D () C:\Users\Tce\Downloads\Fashion_Life25
2014-04-08 23:14 - 2014-04-08 23:15 - 00000000 ____D () C:\Users\Tce\Downloads\SJ_Expo
2014-04-08 23:06 - 2014-04-08 23:06 - 70962554 _____ () C:\Users\Tce\Downloads\SJ_Expo.7z
2014-04-08 23:03 - 2014-04-08 23:03 - 21523147 _____ () C:\Users\Tce\Downloads\RT_Oculus25_30.7z
2014-04-08 22:53 - 2014-04-08 22:54 - 145114638 _____ () C:\Users\Tce\Downloads\IT-Property-2.7z
2014-04-08 22:48 - 2014-04-08 22:49 - 33081846 _____ () C:\Users\Tce\Downloads\TF-Kallyas.7z
2014-04-08 18:21 - 2014-04-08 18:21 - 00000000 ____D () C:\Users\Tce\Downloads\IndieLife25
2014-04-08 18:16 - 2014-04-08 18:16 - 22553292 _____ () C:\Users\Tce\Downloads\IndieLife25.7z
2014-04-08 17:24 - 2014-04-08 17:25 - 35740483 _____ () C:\Users\Tce\Downloads\GK_League_News.7z
2014-04-08 17:06 - 2014-04-08 17:06 - 46766608 _____ () C:\Users\Tce\Downloads\Fashion_Life25.7z
2014-04-08 16:54 - 2014-04-08 16:54 - 37304983 _____ () C:\Users\Tce\Downloads\RT_Hybrid.7z
2014-04-08 16:39 - 2014-04-08 16:40 - 20524759 _____ () C:\Users\Tce\Downloads\YJ-Youresponse.7z
2014-04-08 16:03 - 2014-04-08 16:04 - 39545187 _____ () C:\Users\Tce\Downloads\YJ_Youtrader_UnzipFirst.7z
2014-04-08 12:42 - 2014-04-08 12:42 - 00000000 ____D () C:\Users\Tce\AppData\Local\{1D2CB1B1-4032-46D1-AEA4-E42E48E8D313}
2014-04-08 01:39 - 2014-04-08 01:39 - 25646405 _____ () C:\Users\Tce\Downloads\YJ_Youportfisimo25.7z
2014-04-07 22:54 - 2014-04-07 22:54 - 35257448 _____ (Zeta Software GmbH) C:\Users\Tce\Downloads\zp12-setup.exe
2014-04-07 14:46 - 2014-04-07 14:46 - 00000000 ____D () C:\Users\Tce\Downloads\directory3.1
2014-04-07 14:45 - 2014-04-07 14:45 - 00042926 _____ () C:\Users\Tce\Downloads\directory3.1.zip
2014-04-07 12:07 - 2014-04-07 12:07 - 00000000 ____D () C:\Users\Tce\AppData\Local\{A7343F1E-013B-4893-AEBB-C97C8D18BB61}
2014-04-06 22:02 - 2014-04-07 00:48 - 00000000 ____D () C:\Users\Tce\Desktop\dyck
2014-04-06 21:53 - 2014-04-06 21:53 - 00000053 _____ () C:\Users\Tce\Downloads\googlef2dfc86b5fd1e0fa(1).html
2014-04-06 21:38 - 2014-04-06 21:38 - 00000053 _____ () C:\Users\Tce\Downloads\googlef2dfc86b5fd1e0fa.html
2014-04-06 20:23 - 2014-04-06 20:23 - 00000000 ____D () C:\Users\Tce\Desktop\achtung2
2014-04-06 20:20 - 2014-04-06 20:21 - 00000000 ____D () C:\Users\Tce\Desktop\achtung
2014-04-06 20:17 - 2014-04-06 20:17 - 00001739 _____ () C:\Users\Tce\Downloads\header.tpl
2014-04-06 20:17 - 2014-04-06 20:17 - 00001739 _____ () C:\Users\Tce\Desktop\header.tpl
2014-04-06 18:24 - 2014-04-06 18:24 - 00985495 _____ () C:\Users\Tce\Downloads\hopelife.zip
2014-04-06 18:24 - 2014-04-06 18:24 - 00000000 ____D () C:\Users\Tce\Downloads\hopelife
2014-04-06 18:19 - 2014-04-06 18:19 - 00000000 ____D () C:\Users\Tce\Downloads\Modification
2014-04-06 18:11 - 2014-04-06 18:11 - 00000403 _____ () C:\Users\Tce\Downloads\Modification.zip
2014-04-06 14:55 - 2014-04-06 14:55 - 00000000 ____D () C:\Users\Tce\AppData\Local\{50CBB91D-4358-4B9D-9EA2-1CFC83404794}
2014-04-06 14:22 - 2014-04-06 14:22 - 00340873 _____ () C:\Users\Tce\Desktop\small.jsp
2014-04-06 13:23 - 2014-04-06 13:23 - 00000000 ____D () C:\Users\Tce\Downloads\web_of_trust_wot-20131118-fx
2014-04-06 13:22 - 2014-04-06 13:22 - 00526323 _____ () C:\Users\Tce\Downloads\web_of_trust_wot-20131118-fx.zip
2014-04-06 13:03 - 2014-04-06 13:03 - 00283192 _____ (Mozilla) C:\Users\Tce\Downloads\Firefox Setup Stub 28.0 (2).exe
2014-04-06 13:03 - 2014-04-06 13:03 - 00001163 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-04-06 13:03 - 2014-04-06 13:03 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-04-06 11:44 - 2014-04-06 11:44 - 00029606 _____ () C:\Users\Tce\Downloads\73s49pd.css
2014-04-06 11:42 - 2014-04-06 11:42 - 00033325 _____ () C:\Users\Tce\Desktop\style.css
2014-04-06 11:37 - 2014-04-06 11:37 - 00029606 _____ () C:\Users\Tce\Downloads\23e6kqap.css
2014-04-06 11:36 - 2014-04-06 11:36 - 00033333 _____ () C:\Users\Tce\Desktop\css1.css
2014-04-06 11:16 - 2014-04-06 11:16 - 00080469 _____ () C:\Users\Tce\Downloads\txt-dadatei.txt
2014-04-06 11:03 - 2014-04-06 11:03 - 00084171 _____ () C:\Users\Tce\Desktop\Untitled-1.txt
2014-04-06 10:35 - 2014-04-06 10:35 - 00084720 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2014-04-06 03:46 - 2014-04-14 18:35 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-04-06 03:45 - 2014-04-06 03:45 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-04-06 03:44 - 2014-04-06 03:44 - 17523384 _____ (Malwarebytes Corporation ) C:\Users\Tce\Desktop\mbam-setup-2.0.0.1000.exe
2014-04-06 03:38 - 2014-04-06 03:38 - 00004591 _____ () C:\Users\Tce\Desktop\JRT.txt
2014-04-06 03:33 - 2014-04-06 03:33 - 00000000 ____D () C:\Windows\ERUNT
2014-04-06 03:31 - 2014-04-06 03:31 - 01038974 _____ (Thisisu) C:\Users\Tce\Desktop\JRT.exe
2014-04-06 03:28 - 2014-04-16 10:55 - 00000000 ____D () C:\AdwCleaner
2014-04-06 03:28 - 2014-04-06 03:28 - 01426178 _____ () C:\Users\Tce\Desktop\adwcleaner.exe
2014-04-06 03:18 - 2014-04-06 03:18 - 00283192 _____ (Mozilla) C:\Users\Tce\Downloads\Firefox Setup Stub 28.0.exe
2014-04-06 03:18 - 2014-04-06 03:18 - 00283192 _____ (Mozilla) C:\Users\Tce\Downloads\Firefox Setup Stub 28.0 (1).exe
2014-04-06 02:39 - 2014-04-06 02:58 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group
2014-04-06 02:39 - 2014-04-06 02:39 - 00000355 _____ () C:\Users\Tce\Desktop\Computer - Verknüpfung.lnk
2014-04-06 02:38 - 2014-04-06 02:38 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Tce\Downloads\revosetup.exe
2014-04-06 01:29 - 2008-04-07 05:38 - 00024416 ____R (Adobe Systems Inc.) C:\Windows\system32\AdobePDFUI.dll
2014-04-06 01:28 - 2014-04-06 01:28 - 00002039 _____ () C:\Users\Public\Desktop\Adobe Acrobat 9 Pro Extended.lnk
2014-04-06 01:27 - 2014-04-06 01:27 - 01171856 _____ (AnyProtect.com) C:\Users\Tce\AppData\Local\nsnB740.tmp
2014-04-06 01:26 - 2014-04-06 01:50 - 00000306 __RSH () C:\ProgramData\ntuser.pol
2014-04-06 00:36 - 2014-04-06 00:36 - 00003408 _____ () C:\Windows\System32\Tasks\aviraSWU
2014-04-06 00:36 - 2014-04-06 00:36 - 00000000 ____D () C:\Users\Tce\AppData\Roaming\Avira
2014-04-06 00:35 - 2014-04-06 00:35 - 00002082 _____ () C:\Users\Public\Desktop\Avira Control Center.lnk
2014-04-06 00:35 - 2014-04-06 00:35 - 00000000 ____D () C:\ProgramData\Avira
2014-04-06 00:35 - 2014-02-25 11:41 - 00131576 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2014-04-06 00:35 - 2014-02-25 11:41 - 00108440 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2014-04-06 00:35 - 2014-02-25 11:41 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2014-04-06 00:31 - 2014-04-06 00:32 - 138607664 _____ () C:\Users\Tce\Downloads\avira_free_antivirus_de_14.0.3.350.exe
2014-04-05 23:37 - 2014-04-05 23:37 - 00000000 ____D () C:\ProgramData\FLEXnet
2014-04-05 23:27 - 2014-04-05 23:27 - 00001961 _____ () C:\Users\Tce\Documents\hosts.htm
2014-04-05 23:22 - 2014-04-05 23:28 - 00001961 _____ () C:\Users\Tce\Documents\hosts.txt
2014-04-05 13:57 - 2014-04-05 13:57 - 17699765 _____ () C:\Users\Tce\Downloads\oxwall-1.6.0(1).zip
2014-04-05 13:57 - 2014-04-05 13:57 - 00000000 ____D () C:\Users\Tce\Downloads\oxwall-1.6.0(1)
2014-04-05 11:42 - 2014-04-05 11:42 - 00000277 _____ () C:\Users\Tce\Downloads\500.html
2014-04-05 11:11 - 2014-04-05 11:11 - 00000000 ____D () C:\Users\Tce\Downloads\attachment_92_530ffd6378e0c_sprachpaket-de_v4.0.1
2014-04-05 11:10 - 2014-04-05 11:10 - 00075680 _____ () C:\Users\Tce\Downloads\attachment_92_530ffd6378e0c_sprachpaket-de_v4.0.1.zip
2014-04-05 11:02 - 2014-04-05 11:33 - 00000000 ____D () C:\Users\Tce\Downloads\oxwall-1.6.0
2014-04-05 11:00 - 2014-04-05 11:00 - 17699765 _____ () C:\Users\Tce\Downloads\oxwall-1.6.0.zip
2014-04-05 10:51 - 2014-04-13 13:45 - 00000600 _____ () C:\Users\Tce\AppData\Roaming\winscp.rnd
2014-04-05 10:51 - 2014-04-05 10:51 - 00495616 _____ (Simon Tatham) C:\Users\Tce\Downloads\putty_0.63.exe
2014-04-05 10:50 - 2014-04-05 10:52 - 00000600 _____ () C:\Users\Tce\AppData\Local\PUTTY.RND
2014-04-05 10:48 - 2014-04-12 16:19 - 00000995 _____ () C:\Users\Public\Desktop\WinSCP.lnk
2014-04-05 10:48 - 2014-04-12 16:19 - 00000000 ____D () C:\Program Files (x86)\WinSCP
2014-04-05 10:47 - 2014-04-05 10:47 - 05427328 _____ (Martin Prikryl ) C:\Users\Tce\Downloads\winscp552setup.exe
2014-04-05 09:25 - 2014-01-09 04:22 - 05694464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2014-04-05 09:25 - 2014-01-04 00:44 - 06574592 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-04-05 09:10 - 2014-04-05 09:10 - 00000000 ____D () C:\Users\Tce\AppData\Local\NVIDIA
2014-04-05 09:03 - 2013-10-02 04:22 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2014-04-05 09:03 - 2013-10-02 04:11 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2014-04-05 09:03 - 2013-10-02 04:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2014-04-05 09:03 - 2013-10-02 03:48 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll
2014-04-05 09:03 - 2013-10-02 03:48 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2014-04-05 09:03 - 2013-10-02 03:29 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2014-04-05 09:03 - 2013-10-02 03:10 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2014-04-05 09:03 - 2013-10-02 02:15 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2014-04-05 09:03 - 2013-10-02 02:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll
2014-04-05 09:03 - 2013-10-02 02:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll
2014-04-05 09:03 - 2013-10-02 02:08 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2014-04-05 09:03 - 2013-10-02 02:01 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2014-04-05 09:03 - 2013-10-02 01:58 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2014-04-05 09:03 - 2013-10-02 01:31 - 01147392 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2014-04-05 09:03 - 2013-10-02 01:08 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
2014-04-05 09:03 - 2013-10-02 00:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2014-04-05 09:03 - 2012-08-23 16:13 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2014-04-05 09:03 - 2012-08-23 16:10 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2014-04-05 09:03 - 2012-08-23 15:24 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll
2014-04-05 09:03 - 2012-08-23 13:12 - 00192000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpendp_winip.dll
2014-04-05 09:03 - 2012-08-23 12:51 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\rdpendp_winip.dll
2014-04-05 09:03 - 2012-08-23 11:51 - 03174912 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-04-05 09:01 - 2014-04-11 03:04 - 00000000 ____D () C:\Windows\system32\MRT
2014-04-05 09:01 - 2014-04-11 03:02 - 90655440 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-04-05 09:00 - 2014-03-04 15:05 - 03649185 _____ () C:\Windows\system32\nvcoproc.bin
2014-04-05 09:00 - 2014-03-04 13:32 - 00599840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2014-04-05 08:58 - 2013-09-25 04:23 - 01030144 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2014-04-05 08:58 - 2013-09-25 03:57 - 00792576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2014-04-05 08:58 - 2012-05-04 13:00 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2014-04-05 08:58 - 2012-05-04 11:59 - 00514560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2014-04-04 14:29 - 2014-04-11 15:47 - 00000000 ____D () C:\Users\Tce\AppData\Roaming\HpUpdate
2014-04-04 14:29 - 2014-04-04 14:29 - 00003598 _____ () C:\Windows\System32\Tasks\HPCustParticipation HP Officejet Pro 8600
2014-04-04 14:29 - 2014-04-04 14:29 - 00002212 _____ () C:\Users\Public\Desktop\HP Officejet Pro 8600.lnk
2014-04-04 14:29 - 2014-04-04 14:29 - 00001164 _____ () C:\Users\Public\Desktop\Shop für Zubehör - HP Officejet Pro 8600.lnk
2014-04-04 14:29 - 2014-04-04 14:29 - 00000000 ____D () C:\Program Files (x86)\Hewlett-Packard
2014-04-04 14:29 - 2012-10-17 04:31 - 00741480 ____N (Hewlett-Packard Co.) C:\Windows\system32\HPDiscoPM5912.dll
2014-04-04 14:28 - 2014-04-04 14:32 - 00000000 ____D () C:\Users\Tce\AppData\Local\HP
2014-04-04 14:28 - 2014-04-04 14:29 - 00000000 ____D () C:\Program Files (x86)\HP
2014-04-04 14:28 - 2014-04-04 14:28 - 00000057 _____ () C:\ProgramData\Ament.ini
2014-04-04 14:28 - 2014-04-04 14:28 - 00000000 ____D () C:\ProgramData\HP
2014-04-04 14:28 - 2014-04-04 14:28 - 00000000 ____D () C:\Program Files\HP
2014-04-04 14:26 - 2014-04-04 14:26 - 31455000 _____ () C:\Users\Tce\Downloads\OJ8600_Basicx64_1315.exe
2014-04-04 14:25 - 2014-04-04 14:26 - 123594048 _____ () C:\Users\Tce\Downloads\OJ8600_1315.exe
2014-04-03 21:32 - 2014-04-03 21:32 - 00000000 ____D () C:\Users\Tce\AppData\Roaming\vlc
2014-04-03 21:31 - 2014-04-03 21:31 - 24677393 _____ () C:\Users\Tce\Downloads\vlc-2.1.3-win32(1).exe
2014-04-03 21:31 - 2014-04-03 21:31 - 00001082 _____ () C:\Users\Public\Desktop\VLC media player.lnk
2014-04-03 21:31 - 2014-04-03 21:31 - 00000000 ____D () C:\Program Files (x86)\VideoLAN
2014-04-03 21:29 - 2014-04-03 21:29 - 24677393 _____ () C:\Users\Tce\Downloads\vlc-2.1.3-win32.exe
2014-04-03 12:04 - 2014-04-03 12:04 - 00000000 ____D () C:\Users\Tce\AppData\Local\AviraSpeedup
2014-04-03 11:55 - 2014-04-03 11:55 - 02659296 _____ () C:\Users\Tce\Downloads\avira_speedup (1).exe
2014-04-03 11:54 - 2014-04-03 11:55 - 02659296 _____ () C:\Users\Tce\Downloads\avira_speedup.exe
2014-04-03 11:51 - 2014-04-06 00:36 - 00000000 ____D () C:\Program Files (x86)\Avira
2014-04-03 11:51 - 2014-04-03 11:51 - 04413976 _____ (Avira Operations GmbH & Co. KG) C:\Users\Tce\Downloads\avira_de_avsu(1).exe
2014-04-03 11:49 - 2014-04-03 11:50 - 04413976 _____ (Avira Operations GmbH & Co. KG) C:\Users\Tce\Downloads\avira_de_avsu.exe
2014-04-02 23:39 - 2014-04-02 23:39 - 00000841 _____ () C:\Users\Tce\Downloads\slbs.zip
2014-04-02 23:39 - 2014-04-02 23:39 - 00000000 ____D () C:\Users\Tce\Downloads\slbs
2014-04-02 20:19 - 2014-04-02 20:19 - 00368983 _____ () C:\Users\Tce\Downloads\pkg_visforms_v2.0.2beta(1).zip
2014-04-02 20:13 - 2014-04-02 20:13 - 00000000 ____D () C:\Users\Tce\Downloads\pkg_visforms_v2.0.3
2014-04-02 20:10 - 2014-04-04 15:01 - 00000000 ____D () C:\Users\Tce\Documents\backup
2014-04-02 20:05 - 2014-04-02 20:05 - 00369496 _____ () C:\Users\Tce\Downloads\pkg_visforms_v2.0.3.zip
2014-04-02 15:54 - 2014-04-02 15:55 - 00000000 ____D () C:\Users\Tce\Downloads\IT_Community2
2014-04-02 15:32 - 2014-04-02 15:33 - 39363298 _____ () C:\Users\Tce\Downloads\IT_Community2.7z
2014-04-02 15:16 - 2014-04-02 15:16 - 17648059 _____ () C:\Users\Tce\Downloads\S5_Helion.7z
2014-04-02 00:33 - 2014-04-02 00:34 - 11209015 _____ () C:\Users\Tce\Downloads\GK_Financial_Business_25.7z
2014-04-01 17:19 - 2014-04-01 17:19 - 00046735 _____ () C:\Users\Tce\Downloads\akeebabackup-de-DE-j25(1).zip
2014-04-01 17:14 - 2014-04-01 17:14 - 00000000 ____D () C:\Users\Tce\Downloads\kickstart-core-3.7.1
2014-04-01 17:13 - 2014-04-01 17:13 - 00143828 _____ () C:\Users\Tce\Downloads\kickstart-core-3.5.1.zip
2014-04-01 17:12 - 2014-04-01 17:12 - 00000000 ____D () C:\Users\Tce\Downloads\com_akeeba-3.10.2-core(1)
2014-04-01 16:19 - 2014-04-01 16:21 - 60715810 _____ () C:\Users\Tce\Downloads\TZ-BlogPlaza.7z
2014-04-01 16:15 - 2014-04-01 16:16 - 05333669 _____ () C:\Users\Tce\Downloads\EasyBlog_v3.8.14477.7z
2014-04-01 16:13 - 2014-04-01 16:14 - 03954859 _____ () C:\Users\Tce\Downloads\EasyDiscuss_v3.1.8601.7z
2014-04-01 14:28 - 2014-04-01 14:29 - 36207108 _____ () C:\Users\Tce\Downloads\OT-Furnite.7z
2014-03-31 16:29 - 2014-03-31 16:29 - 00007453 _____ () C:\Users\Tce\Downloads\de.rar
2014-03-31 13:03 - 2014-03-31 13:03 - 00055162 _____ () C:\Users\Tce\Downloads\backup-2014-03-31 13-34-05.gz
2014-03-31 13:03 - 2014-03-31 13:03 - 00000000 ____D () C:\Users\Tce\Downloads\backup-2014-03-31 13-34-05
2014-03-31 10:46 - 2014-03-31 10:46 - 00054126 _____ () C:\Users\Tce\Downloads\backup-2014-03-31 11-16-50.gz
2014-03-29 20:39 - 2014-03-29 20:39 - 00421912 _____ () C:\Users\Tce\Downloads\jquery-carousel.rar
2014-03-29 20:33 - 2014-03-29 20:33 - 00020991 _____ () C:\Users\Tce\Downloads\Slider.zip
2014-03-29 20:33 - 2014-03-29 20:33 - 00000000 ____D () C:\Users\Tce\Downloads\Slider
2014-03-29 20:16 - 2014-03-29 20:16 - 00032353 _____ () C:\Users\Tce\Downloads\backup-2014-03-29 19-46-39.gz
2014-03-29 12:38 - 2014-04-06 13:03 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-03-29 02:09 - 2014-03-29 02:09 - 00007241 _____ () C:\Users\Tce\Downloads\backup-2014-03-29 01-38-42.gz
2014-03-29 01:36 - 2014-03-29 01:36 - 00005892 _____ () C:\Users\Tce\Downloads\backup-2014-03-29 01-05-55.gz
2014-03-29 01:36 - 2014-03-29 01:36 - 00000000 ____D () C:\Users\Tce\Downloads\backup-2014-03-29 01-05-55
2014-03-29 01:28 - 2014-03-29 01:28 - 00000043 _____ () C:\Users\Tce\Desktop\sitemape.xml
2014-03-29 01:21 - 2014-03-29 01:21 - 02890790 _____ () C:\Users\Tce\Downloads\arfooo-2.0.2(4).zip
2014-03-29 01:21 - 2014-03-29 01:21 - 00000000 ____D () C:\Users\Tce\Downloads\arfooo-2.0.2(4)
2014-03-29 00:57 - 2014-03-29 00:57 - 00000000 ____D () C:\Users\Tce\Downloads\arfooo-2.0.2(3)
2014-03-29 00:33 - 2014-03-29 00:33 - 00005661 _____ () C:\Users\Tce\Downloads\web_categories.sql
2014-03-29 00:29 - 2014-03-30 11:26 - 00000000 ____D () C:\Users\Tce\Downloads\schaumahier_letzte
2014-03-28 21:10 - 2014-03-28 21:10 - 02890790 _____ () C:\Users\Tce\Downloads\arfooo-2.0.2(3).zip
2014-03-28 12:53 - 2010-11-23 02:06 - 00000000 ____D () C:\Users\Tce\Downloads\save
2014-03-28 12:53 - 2010-11-23 02:06 - 00000000 ____D () C:\Users\Tce\Downloads\licence
2014-03-28 12:53 - 2010-11-23 02:05 - 00000340 _____ () C:\Users\Tce\Downloads\robots.txt
2014-03-28 12:53 - 2010-11-23 02:03 - 00000000 ____D () C:\Users\Tce\Downloads\compiled
2014-03-28 12:53 - 2010-11-23 02:03 - 00000000 ____D () C:\Users\Tce\Downloads\cache
2014-03-28 12:53 - 2010-11-22 21:17 - 00000000 ____D () C:\Users\Tce\Downloads\install
2014-03-28 12:53 - 2010-11-22 15:43 - 00000000 ____D () C:\Users\Tce\Downloads\documentation
2014-03-28 12:53 - 2010-11-22 15:41 - 00000000 ____D () C:\Users\Tce\Downloads\core
2014-03-28 12:53 - 2010-11-22 15:41 - 00000000 ____D () C:\Users\Tce\Downloads\controllers
2014-03-28 12:53 - 2010-11-22 15:41 - 00000000 ____D () C:\Users\Tce\Downloads\admin
2014-03-28 12:53 - 2010-11-22 15:40 - 00000000 ____D () C:\Users\Tce\Downloads\views
2014-03-28 12:53 - 2010-11-22 15:40 - 00000000 ____D () C:\Users\Tce\Downloads\uploads
2014-03-28 12:53 - 2010-11-22 15:40 - 00000000 ____D () C:\Users\Tce\Downloads\plugins
2014-03-28 12:53 - 2010-11-22 15:40 - 00000000 ____D () C:\Users\Tce\Downloads\moderation
2014-03-28 12:53 - 2010-11-22 15:40 - 00000000 ____D () C:\Users\Tce\Downloads\models
2014-03-28 12:53 - 2010-11-22 15:40 - 00000000 ____D () C:\Users\Tce\Downloads\languages
2014-03-28 12:53 - 2010-11-22 15:40 - 00000000 ____D () C:\Users\Tce\Downloads\javascript
2014-03-28 12:53 - 2010-03-27 00:56 - 00000423 _____ () C:\Users\Tce\Downloads\.htaccess
2014-03-28 12:53 - 2010-03-05 12:16 - 00000651 _____ () C:\Users\Tce\Downloads\core.php
2014-03-28 12:53 - 2010-02-09 12:11 - 00000578 _____ () C:\Users\Tce\Downloads\index.php
2014-03-27 22:04 - 2014-03-27 22:04 - 00000000 ____D () C:\Users\Tce\Downloads\slide
2014-03-27 22:03 - 2014-03-27 22:03 - 00326268 _____ () C:\Users\Tce\Downloads\slide.tar.gz
2014-03-27 21:59 - 2014-03-27 21:59 - 00259539 _____ () C:\Users\Tce\Downloads\pink-round.tar.gz
2014-03-27 21:59 - 2014-03-27 21:59 - 00000000 ____D () C:\Users\Tce\Downloads\pink-round
2014-03-27 21:48 - 2014-03-27 21:48 - 00000000 ____D () C:\Users\Tce\Downloads\arfooo-2.0.2(2)
2014-03-27 21:47 - 2014-03-27 21:47 - 02890790 _____ () C:\Users\Tce\Downloads\arfooo-2.0.2(2).zip
2014-03-27 21:47 - 2014-03-27 21:47 - 02470057 _____ () C:\Users\Tce\Downloads\arfooo-2.0.1.zip
2014-03-27 18:13 - 2014-03-27 18:13 - 00026441 _____ () C:\Users\Tce\Downloads\katalog-de(1).zip
2014-03-27 18:13 - 2014-03-27 18:13 - 00000000 ____D () C:\Users\Tce\Downloads\arfooo-de(1)
2014-03-27 10:37 - 2014-03-27 10:37 - 00026441 _____ () C:\Users\Tce\Downloads\arfooo-de.zip
2014-03-27 10:37 - 2014-03-27 10:37 - 00000000 ____D () C:\Users\Tce\Downloads\arfooo-de
2014-03-27 10:36 - 2014-03-27 17:18 - 00000000 ____D () C:\Users\Tce\Downloads\arfooo-2.0.2(1)
2014-03-27 10:36 - 2014-03-27 10:36 - 02890790 _____ () C:\Users\Tce\Downloads\arfooo-2.0.2(1).zip
2014-03-26 23:17 - 2014-03-27 21:25 - 00000000 ____D () C:\Users\Tce\Downloads\arfooo-2.0.2
2014-03-26 23:17 - 2014-03-26 23:17 - 02890790 _____ () C:\Users\Tce\Downloads\arfooo-2.0.2.zip
2014-03-26 23:17 - 2014-03-26 23:17 - 00000000 ____D () C:\Users\Tce\Downloads\import
2014-03-26 23:16 - 2014-03-26 23:16 - 00069436 _____ () C:\Users\Tce\Downloads\import.zip
2014-03-26 22:46 - 2014-03-26 22:46 - 02356644 _____ () C:\Users\Tce\Downloads\freeglobes-03.01.2009(1).zip
2014-03-26 22:37 - 2014-03-26 22:37 - 00023154 _____ () C:\Users\Tce\Downloads\patch.from.19.03.2008-RC2.to.27.07.2008-RC2(1).zip
2014-03-26 22:37 - 2014-03-26 22:37 - 00000000 ____D () C:\Users\Tce\Downloads\patch.from.19.03.2008-RC2.to.27.07.2008-RC2(1)
2014-03-26 22:34 - 2014-03-26 22:34 - 00023154 _____ () C:\Users\Tce\Downloads\patch.from.19.03.2008-RC2.to.27.07.2008-RC2.zip
2014-03-26 22:22 - 2014-03-26 22:22 - 00042349 _____ () C:\Users\Tce\Downloads\deutsche-sprachdateien-freeglobes.zip
2014-03-26 22:22 - 2014-03-26 22:22 - 00000000 ____D () C:\Users\Tce\Downloads\deutsche-sprachdateien-freeglobes
2014-03-26 22:19 - 2014-03-26 22:19 - 00000000 ____D () C:\Users\Tce\Downloads\deutsch_hauptdatein
2014-03-26 22:18 - 2014-03-26 22:18 - 00013097 _____ () C:\Users\Tce\Downloads\deutsch_hauptdatein.rar
2014-03-26 19:09 - 2014-03-26 19:11 - 00000000 ____D () C:\Users\Tce\Downloads\deutsch_install
2014-03-26 19:09 - 2014-03-26 19:09 - 00001300 _____ () C:\Users\Tce\Downloads\deutsch_install.rar
2014-03-26 19:06 - 2014-03-26 19:06 - 00000000 ____D () C:\Users\Tce\Downloads\freeglobes-03.01.2009
2014-03-26 19:03 - 2014-03-26 19:03 - 02356644 _____ () C:\Users\Tce\Downloads\freeglobes-03.01.2009.zip
2014-03-26 17:16 - 2014-03-26 17:38 - 00000000 ____D () C:\Users\Tce\Desktop\Tor Browser
2014-03-26 17:15 - 2014-03-26 17:16 - 23180864 _____ () C:\Users\Tce\Desktop\torbrowser-install-3.5.3_de.exe
2014-03-25 19:01 - 2014-03-25 19:01 - 00000000 ____D () C:\Users\Tce\Downloads\RT_Tachyon_25 (1)
2014-03-25 18:45 - 2014-03-25 18:45 - 02690063 _____ () C:\Users\Tce\Downloads\roksprocket-2.1.1.zip
2014-03-25 18:37 - 2014-03-25 18:37 - 00142384 _____ () C:\Users\Tce\Downloads\rokstories-1.14.zip
2014-03-25 18:37 - 2014-03-25 18:37 - 00071071 _____ () C:\Users\Tce\Downloads\roksocialbuttons-1.5.2.zip
2014-03-25 18:37 - 2014-03-25 18:37 - 00035493 _____ () C:\Users\Tce\Downloads\rokinjectmodule-1.5.zip
2014-03-25 18:37 - 2014-03-25 18:37 - 00031231 _____ () C:\Users\Tce\Downloads\rokupdatesclean-1.0.0.zip
2014-03-25 18:36 - 2014-03-25 18:37 - 00078040 _____ () C:\Users\Tce\Downloads\roktabs-1.12.zip
2014-03-25 18:36 - 2014-03-25 18:36 - 00072684 _____ () C:\Users\Tce\Downloads\roknewspager-2.0.1.zip
2014-03-25 18:36 - 2014-03-25 18:36 - 00056049 _____ () C:\Users\Tce\Downloads\rokmicronews-1.1.zip
2014-03-25 18:36 - 2014-03-25 18:36 - 00047085 _____ () C:\Users\Tce\Downloads\roknewsflash-2.0.0.zip
2014-03-25 18:36 - 2014-03-25 18:36 - 00043326 _____ () C:\Users\Tce\Downloads\rokintroscroller-1.1.zip
2014-03-25 18:36 - 2014-03-25 18:36 - 00035052 _____ () C:\Users\Tce\Downloads\rokcontentrotator-2.0.1.zip
2014-03-25 18:35 - 2014-03-25 18:36 - 00666488 _____ () C:\Users\Tce\Downloads\rokupdater-1.0.8.zip
2014-03-25 18:35 - 2014-03-25 18:35 - 00151065 _____ () C:\Users\Tce\Downloads\rokbridge-3.2.zip
2014-03-25 18:35 - 2014-03-25 18:35 - 00144915 _____ () C:\Users\Tce\Downloads\rokcomments-2.0.2.zip
2014-03-25 18:32 - 2014-03-25 18:32 - 00173154 _____ () C:\Users\Tce\Downloads\rokcandy-2.0.1.zip
2014-03-25 16:21 - 2014-03-25 16:21 - 00000000 ____D () C:\Users\Tce\Downloads\Joomla_2.5.19-Stable-Full_Package
2014-03-25 16:20 - 2014-03-25 16:21 - 07950017 _____ () C:\Users\Tce\Downloads\Joomla_2.5.19-Stable-Full_Package.zip
2014-03-23 14:35 - 2014-03-23 14:35 - 01491508 _____ () C:\Users\Tce\Downloads\K2_v2.6.8.zip
2014-03-23 14:11 - 2014-03-23 14:11 - 00053723 _____ () C:\Users\Tce\Downloads\k2_de-DE_language_pack(1).zip
2014-03-23 14:10 - 2014-03-23 14:10 - 00053723 _____ () C:\Users\Tce\Downloads\k2_de-DE_language_pack.zip
2014-03-23 13:59 - 2014-03-23 13:59 - 00333143 _____ () C:\Users\Tce\Downloads\de-DE_joomla_lang_full_2.5.19v1(1).zip
2014-03-23 13:58 - 2014-03-23 13:58 - 00333143 _____ () C:\Users\Tce\Downloads\de-DE_joomla_lang_full_2.5.19v1.zip
2014-03-23 12:50 - 2014-03-23 12:50 - 00000000 ____D () C:\Users\Tce\Downloads\vorsicht24_OT-Emagazine
2014-03-23 12:48 - 2014-03-23 13:06 - 00000000 ____D () C:\Users\Tce\Downloads\Vorsicht24_SJ_Flat_News
2014-03-23 12:35 - 2014-03-23 12:36 - 47889670 _____ () C:\Users\Tce\Downloads\vorsicht24_OT-Emagazine.7z
2014-03-23 12:09 - 2014-03-23 12:14 - 191522152 _____ () C:\Users\Tce\Downloads\Vorsicht24_SJ_Flat_News.7z
2014-03-23 00:04 - 2014-03-23 00:04 - 00002031 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk
2014-03-22 17:53 - 2014-03-22 21:57 - 00000028 _____ () C:\Windows\Robota.INI
2014-03-22 17:52 - 2014-03-22 17:52 - 00000000 ____D () C:\Users\Tce\AppData\Roaming\MAGIX
2014-03-22 17:52 - 2014-03-22 17:52 - 00000000 ____D () C:\Users\Public\Documents\MAGIX_Screenshare
2014-03-22 17:51 - 2014-03-22 17:51 - 00001173 _____ () C:\Users\Public\Desktop\Mufin MusicFinder Base.lnk
2014-03-22 17:50 - 2007-04-19 00:07 - 00053248 _____ () C:\Windows\SysWOW64\mgxasio2.dll
2014-03-22 17:50 - 2006-10-02 19:24 - 00487424 _____ (PoINT Software & Systems GmbH) C:\Windows\SysWOW64\DLLAV32.dll
2014-03-22 17:50 - 2006-10-02 19:24 - 00188416 _____ (PoINT Software & Systems GmbH) C:\Windows\SysWOW64\DLLRES32.dll
2014-03-22 17:50 - 2006-10-02 19:24 - 00163840 _____ (PoINT Software & Systems GmbH) C:\Windows\SysWOW64\DLLDEV32.dll
2014-03-22 17:50 - 2006-10-02 19:24 - 00151552 _____ (PoINT Software & Systems GmbH) C:\Windows\SysWOW64\DLLDRV32.dll
2014-03-22 17:50 - 2006-10-02 19:24 - 00094208 _____ (PoINT Software & Systems GmbH) C:\Windows\SysWOW64\DLLCPY32.dll
2014-03-22 17:50 - 2006-10-02 19:24 - 00053248 _____ (PoINT Software & Systems GmbH) C:\Windows\SysWOW64\DLLIO32.dll
2014-03-22 17:50 - 2006-10-02 19:24 - 00036864 _____ (PoINT Software & Systems GmbH) C:\Windows\SysWOW64\DLLPNT32.dll
2014-03-22 17:50 - 2006-10-02 19:24 - 00032768 _____ (PoINT Software & Systems GmbH) C:\Windows\SysWOW64\STRING32.dll
2014-03-22 17:50 - 2006-07-21 18:16 - 00430080 _____ (MAGIX AG) C:\Windows\SysWOW64\MXRestore.exe
2014-03-22 17:50 - 2005-04-09 23:05 - 00027807 _____ () C:\Windows\SysWOW64\mgxcdr.txt
2014-03-22 17:50 - 2004-03-11 17:49 - 00014182 _____ () C:\Windows\SysWOW64\DLLAV32.lib
2014-03-22 17:50 - 2003-04-18 17:29 - 00044544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml4a.dll
2014-03-22 17:50 - 2003-03-14 12:35 - 00040960 _____ (PoINT Software & Systems GmbH) C:\Windows\SysWOW64\DLLRD32.dll
2014-03-22 17:50 - 2003-03-14 12:33 - 00114688 _____ (PoINT Software & Systems GmbH) C:\Windows\SysWOW64\DLLCDA32.dll
2014-03-22 17:50 - 2003-03-14 12:33 - 00061440 _____ (PoINT Software & Systems GmbH) C:\Windows\SysWOW64\DLLCDF32.dll
2014-03-22 17:50 - 2003-03-14 12:33 - 00053248 _____ (PoINT Software & Systems GmbH) C:\Windows\SysWOW64\DLLPRJ32.dll
2014-03-22 17:50 - 2003-03-14 12:33 - 00045056 _____ (PoINT Software & Systems GmbH) C:\Windows\SysWOW64\DLLIMG32.dll
2014-03-22 17:50 - 2003-03-14 12:32 - 00065536 _____ (PoINT Software & Systems GmbH) C:\Windows\SysWOW64\DLLPTL32.dll
2014-03-22 17:50 - 2003-03-14 12:32 - 00057344 _____ (PoINT Software & Systems GmbH) C:\Windows\SysWOW64\DLLTPO32.dll
2014-03-22 17:50 - 2003-03-14 12:32 - 00049152 _____ (PoINT Software & Systems GmbH) C:\Windows\SysWOW64\DLLPRF32.dll
2014-03-22 17:50 - 2003-03-14 12:32 - 00032768 _____ (PoINT Software & Systems GmbH) C:\Windows\SysWOW64\DLLMSC32.dll
2014-03-22 17:50 - 2003-03-14 12:32 - 00032768 _____ (PoINT Software & Systems GmbH) C:\Windows\SysWOW64\DLLISO32.dll
2014-03-22 17:50 - 2003-03-14 12:32 - 00032768 _____ (PoINT Software & Systems GmbH) C:\Windows\SysWOW64\DLLDIR32.dll
2014-03-22 17:50 - 2003-03-14 12:32 - 00024576 _____ (PoINT Software & Systems GmbH) C:\Windows\SysWOW64\TTIC32.dll
2014-03-22 17:50 - 2003-03-14 12:32 - 00024576 _____ (PoINT Software & Systems GmbH) C:\Windows\SysWOW64\TTI32.dll
2014-03-22 17:50 - 2003-03-14 12:32 - 00024576 _____ (PoINT Software & Systems GmbH) C:\Windows\SysWOW64\DLLIX.dll
2014-03-22 17:45 - 2014-03-22 19:05 - 00000000 ____D () C:\Users\Public\Documents\MAGIX_MusicMaker15Premium
2014-03-22 17:45 - 2014-03-22 17:45 - 00001216 _____ () C:\Users\Public\Desktop\MAGIX Music Maker 15 Premium.lnk
2014-03-22 17:44 - 2014-03-22 17:52 - 00000000 ____D () C:\ProgramData\MAGIX
2014-03-22 17:43 - 2014-03-22 17:52 - 00007119 _____ () C:\Windows\mgxoschk.ini
2014-03-22 17:43 - 2014-03-22 17:52 - 00000000 ____D () C:\Windows\SysWOW64\MAGIX
2014-03-22 17:43 - 2014-03-22 17:52 - 00000000 ____D () C:\Program Files (x86)\MAGIX
2014-03-22 17:43 - 2008-04-15 17:14 - 00700416 _____ (MAGIX AG) C:\Windows\SysWOW64\mgxoschk.dll
2014-03-22 17:43 - 2007-04-27 11:43 - 00120200 _____ () C:\Windows\SysWOW64\DLLDEV32i.dll
2014-03-22 13:00 - 2014-03-22 13:06 - 00000000 ____D () C:\Users\Tce\Downloads\SJ_Snap
2014-03-22 12:35 - 2014-03-22 12:37 - 38567269 _____ () C:\Users\Tce\Downloads\SJ_Snap.7z
2014-03-22 11:50 - 2014-03-22 11:52 - 41055220 _____ () C:\Users\Tce\Downloads\OT-Malesuada.7z
2014-03-22 04:00 - 2013-12-21 11:53 - 00548864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-03-22 04:00 - 2013-12-21 10:56 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-03-22 00:42 - 2014-03-22 00:42 - 00009100 _____ () C:\Users\Tce\Downloads\banner-automatisch-wechseln.zip
2014-03-22 00:42 - 2014-03-22 00:42 - 00000000 ____D () C:\Users\Tce\Downloads\banner-automatisch-wechseln
2014-03-21 18:02 - 2014-03-21 18:02 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2014-03-21 14:23 - 2014-04-18 13:21 - 00000000 ____D () C:\Users\Tce\Documents\Unbenannte Site 1
2014-03-21 14:23 - 2014-03-21 14:23 - 00000359 _____ () C:\Users\Tce\Downloads\Delivery report - Kopie.php
2014-03-21 14:23 - 2014-03-21 14:23 - 00000359 _____ () C:\Users\Tce\Downloads\Delivery report - Kopie (1).php
2014-03-21 14:22 - 2014-03-21 14:21 - 00000359 _____ () C:\Users\Tce\Documents\Delivery report - Kopie.php
2014-03-21 14:21 - 2014-03-21 14:21 - 00000359 _____ () C:\Users\Tce\Documents\Delivery report.dat
2014-03-21 11:35 - 2014-03-01 07:16 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-03-21 11:35 - 2014-03-01 06:58 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-03-21 11:35 - 2014-03-01 06:52 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-03-21 11:35 - 2014-03-01 06:51 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-03-21 11:35 - 2014-03-01 06:42 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-03-21 11:35 - 2014-03-01 06:40 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-03-21 11:35 - 2014-03-01 06:37 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-03-21 11:35 - 2014-03-01 06:33 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-03-21 11:35 - 2014-03-01 06:33 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-03-21 11:35 - 2014-03-01 06:32 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-03-21 11:35 - 2014-03-01 06:23 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-03-21 11:35 - 2014-03-01 06:17 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-03-21 11:35 - 2014-03-01 06:02 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-03-21 11:35 - 2014-03-01 05:54 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-03-21 11:35 - 2014-03-01 05:52 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-03-21 11:35 - 2014-03-01 05:51 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-03-21 11:35 - 2014-03-01 05:47 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-03-21 11:35 - 2014-03-01 05:43 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-03-21 11:35 - 2014-03-01 05:43 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-03-21 11:35 - 2014-03-01 05:42 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-03-21 11:35 - 2014-03-01 05:40 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-03-21 11:35 - 2014-03-01 05:38 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-03-21 11:35 - 2014-03-01 05:37 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-03-21 11:35 - 2014-03-01 05:35 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-03-21 11:35 - 2014-03-01 05:18 - 13051904 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-03-21 11:35 - 2014-03-01 05:16 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-03-21 11:35 - 2014-03-01 05:14 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-03-21 11:35 - 2014-03-01 05:10 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-03-21 11:35 - 2014-03-01 05:03 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-03-21 11:35 - 2014-03-01 05:00 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-03-21 11:35 - 2014-03-01 04:57 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-03-21 11:35 - 2014-03-01 04:38 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-03-21 11:35 - 2014-03-01 04:32 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-03-21 11:35 - 2014-03-01 04:27 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-03-21 11:35 - 2014-03-01 04:25 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-03-21 11:35 - 2014-03-01 04:25 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-03-21 04:06 - 2013-10-14 19:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE
2014-03-21 04:04 - 2014-03-21 04:04 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2014-03-21 04:04 - 2014-03-21 04:04 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2014-03-21 04:04 - 2014-03-21 04:04 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-03-21 04:04 - 2014-03-21 04:04 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-03-21 04:04 - 2014-03-21 04:04 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-03-21 04:04 - 2014-03-21 04:04 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2014-03-21 04:04 - 2014-03-21 04:04 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-03-21 04:04 - 2014-03-21 04:04 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2014-03-21 04:04 - 2014-03-21 04:04 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2014-03-21 04:04 - 2014-03-21 04:04 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2014-03-21 04:04 - 2014-03-21 04:04 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-03-21 04:04 - 2014-03-21 04:04 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2014-03-21 04:04 - 2014-03-21 04:04 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2014-03-21 04:04 - 2014-03-21 04:04 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2014-03-21 04:04 - 2014-03-21 04:04 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-03-21 04:04 - 2014-03-21 04:04 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2014-03-21 04:04 - 2014-03-21 04:04 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-03-21 04:04 - 2014-03-21 04:04 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe

==================== One Month Modified Files and Folders =======

2014-04-20 20:38 - 2014-04-19 10:53 - 00017811 _____ () C:\Users\Tce\Desktop\FRST.txt
2014-04-20 20:37 - 2014-04-20 20:37 - 00000000 ____D () C:\Users\Tce\Desktop\FRST-OlderVersion
2014-04-20 20:37 - 2014-04-19 10:53 - 02056192 _____ (Farbar) C:\Users\Tce\Desktop\FRST64.exe
2014-04-20 20:37 - 2014-04-19 10:53 - 00000000 ____D () C:\FRST
2014-04-20 20:20 - 2014-03-16 16:53 - 00000000 ____D () C:\Users\Tce\AppData\Roaming\FileZilla
2014-04-20 20:20 - 2014-03-14 09:45 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-04-20 20:20 - 2014-03-13 20:47 - 00001110 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-04-20 20:20 - 2014-03-13 20:47 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-04-20 18:46 - 2014-03-13 20:02 - 02046364 _____ () C:\Windows\WindowsUpdate.log
2014-04-20 17:23 - 2014-04-20 17:23 - 00000000 ____D () C:\Users\Tce\Downloads\Modification(1)
2014-04-20 17:22 - 2014-04-20 17:22 - 00000403 _____ () C:\Users\Tce\Downloads\Modification(1).zip
2014-04-20 15:42 - 2014-04-20 15:42 - 00000000 ____D () C:\Users\Tce\Downloads\Palcom
2014-04-20 15:40 - 2014-04-20 15:40 - 01076195 _____ () C:\Users\Tce\Downloads\Palcom.zip
2014-04-20 15:33 - 2014-04-20 15:33 - 00000000 ____D () C:\Users\Tce\Downloads\Messegner Sound Notification
2014-04-20 15:32 - 2014-04-20 15:32 - 00028999 _____ () C:\Users\Tce\Downloads\Messegner Sound Notification.zip
2014-04-20 15:30 - 2014-04-20 15:30 - 00019497 _____ () C:\Users\Tce\Downloads\simple_chat_mod.zip
2014-04-20 13:02 - 2014-03-13 21:34 - 00000665 _____ () C:\Windows\ulead32.ini
2014-04-20 12:58 - 2009-07-14 06:45 - 00009696 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-04-20 12:58 - 2009-07-14 06:45 - 00009696 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-04-20 11:20 - 2014-04-20 11:20 - 00000000 ____D () C:\Users\Tce\AppData\Local\{9F7B1270-7D1F-46FD-9F21-AED368ABE87A}
2014-04-20 08:22 - 2014-03-13 22:05 - 00000000 ____D () C:\Users\Tce\AppData\Local\Adobe
2014-04-19 22:45 - 2014-04-19 22:45 - 00000000 ____D () C:\Users\Tce\AppData\Local\{55AEC36B-7165-4E38-AEB5-05FD16C5E7BE}
2014-04-19 16:48 - 2009-07-14 06:51 - 00052530 _____ () C:\Windows\setupact.log
2014-04-19 11:35 - 2014-03-13 20:12 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-04-19 11:35 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-04-19 11:34 - 2014-04-19 10:54 - 00028590 _____ () C:\Users\Tce\Desktop\Addition.txt
2014-04-19 11:09 - 2014-04-19 11:08 - 02158592 _____ (Farbar) C:\Users\Tce\Downloads\FRST64.exe
2014-04-19 10:04 - 2014-04-19 10:04 - 00000000 ____D () C:\Users\Tce\AppData\Local\{2941F86F-C11F-40F2-A0B6-929CE264E712}
2014-04-18 22:04 - 2014-04-18 22:03 - 00000000 ____D () C:\Users\Tce\AppData\Local\{E642226E-BAF3-4E91-B18A-7A4357018F2E}
2014-04-18 20:55 - 2014-03-13 20:17 - 00000000 ____D () C:\Users\Tce\AppData\Local\VirtualStore
2014-04-18 20:31 - 2014-04-18 20:31 - 00000030 _____ () C:\Windows\Iedit_.INI
2014-04-18 13:21 - 2014-03-21 14:23 - 00000000 ____D () C:\Users\Tce\Documents\Unbenannte Site 1
2014-04-18 12:16 - 2014-03-14 04:54 - 00698688 _____ () C:\Windows\system32\perfh007.dat
2014-04-18 12:16 - 2014-03-14 04:54 - 00148828 _____ () C:\Windows\system32\perfc007.dat
2014-04-18 12:16 - 2009-07-14 07:13 - 01618320 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-04-18 10:03 - 2014-04-18 10:03 - 00000000 ____D () C:\Users\Tce\AppData\Local\{FD8C6529-DC31-4708-B408-21A44A97D823}
2014-04-17 22:03 - 2014-04-17 22:03 - 00000000 ____D () C:\Users\Tce\AppData\Local\{3827539D-8217-4DCA-83F9-961A3E63EE66}
2014-04-17 16:42 - 2014-04-17 16:42 - 01261458 _____ () C:\Users\Tce\Downloads\Template_Yougrids-J17andUP.zip
2014-04-17 16:42 - 2014-04-17 16:42 - 00000000 ____D () C:\Users\Tce\Downloads\Demo_Yougrids-J25
2014-04-17 16:39 - 2014-04-17 16:39 - 13006021 _____ () C:\Users\Tce\Downloads\Demo_Yougrids-J25.zip
2014-04-17 16:37 - 2014-04-17 16:06 - 00000000 ____D () C:\Users\Tce\Downloads\yj_Photolicious_j25
2014-04-17 15:49 - 2014-04-17 15:48 - 19036846 _____ () C:\Users\Tce\Downloads\yj_Photolicious_j25.7z
2014-04-17 10:03 - 2014-04-17 10:02 - 00000000 ____D () C:\Users\Tce\AppData\Local\{21208D44-B241-4EF4-BCA9-FD935851008F}
2014-04-16 22:15 - 2014-04-16 22:15 - 00993712 _____ () C:\Users\Tce\Downloads\setup(1).exe
2014-04-16 22:13 - 2014-03-14 09:45 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-04-16 22:13 - 2014-03-14 09:45 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-04-16 22:13 - 2014-03-14 09:45 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-04-16 12:57 - 2014-04-16 12:56 - 00000000 ____D () C:\Users\Tce\AppData\Local\{22D6C97E-81CE-4372-BACA-B5A7F007E6CC}
2014-04-16 10:55 - 2014-04-06 03:28 - 00000000 ____D () C:\AdwCleaner
2014-04-16 00:56 - 2014-04-16 00:55 - 00000000 ____D () C:\Users\Tce\AppData\Local\{8F744917-4CB2-41C5-AA3D-F133BFA87B64}
2014-04-15 18:20 - 2014-04-14 14:06 - 00000000 _____ () C:\Windows\system32\Drivers\lvuvc.hs
2014-04-15 12:55 - 2014-04-15 12:54 - 00000000 ____D () C:\Users\Tce\AppData\Local\{C00AAC07-FB13-4C1C-81A5-7851B280758D}
2014-04-15 00:54 - 2014-04-15 00:53 - 00000000 ____D () C:\Users\Tce\AppData\Local\{2544576B-7DE6-412A-A8F9-45EEE62BB8EF}
2014-04-15 00:51 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache
2014-04-14 23:46 - 2014-04-14 23:46 - 00993712 _____ () C:\Users\Tce\Downloads\setup.exe
2014-04-14 23:46 - 2014-04-14 23:46 - 00993712 _____ () C:\Users\Tce\Downloads\setup (1).exe
2014-04-14 19:41 - 2014-04-14 19:40 - 23181137 _____ () C:\Users\Tce\Downloads\torbrowser-install-3.5.4_de.exe
2014-04-14 18:49 - 2014-04-14 18:49 - 00000000 ____D () C:\Users\Tce\Downloads\Shine_Win_Full
2014-04-14 18:49 - 2014-04-14 18:48 - 16886299 _____ () C:\Users\Tce\Downloads\Shine_Win_Full.zip
2014-04-14 18:35 - 2014-04-06 03:46 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-04-14 14:06 - 2014-04-14 14:06 - 00008403 _____ () C:\Windows\system32\lvcoinst.log
2014-04-14 14:06 - 2014-04-14 14:06 - 00000000 ____D () C:\Program Files\Common Files\logishrd
2014-04-14 12:53 - 2014-04-14 12:52 - 00000000 ____D () C:\Users\Tce\AppData\Local\{CF78772A-14C3-466B-B923-4761476BDDDD}
2014-04-14 12:46 - 2014-04-14 12:45 - 00000000 ____D () C:\Users\Tce\Downloads\PHP_API_Example
2014-04-14 12:42 - 2014-04-14 12:42 - 00014559 _____ () C:\Users\Tce\Downloads\PHP_API_Example.zip
2014-04-14 00:52 - 2014-04-14 00:51 - 00000000 ____D () C:\Users\Tce\AppData\Local\{0EDF4C49-CA95-4AD9-85E9-82B29EB7F2C3}
2014-04-13 23:38 - 2014-04-13 23:38 - 00021834 _____ () C:\Users\Tce\Downloads\de-de.rsjoomla_rsformpro_1.3(1).zip
2014-04-13 23:13 - 2014-03-16 15:53 - 00000000 ____D () C:\Users\Tce\Downloads\RSForm 1.4.0 R48
2014-04-13 13:45 - 2014-04-05 10:51 - 00000600 _____ () C:\Users\Tce\AppData\Roaming\winscp.rnd
2014-04-13 12:51 - 2014-04-13 12:51 - 00000000 ____D () C:\Users\Tce\AppData\Local\{32F722A2-F43D-4452-B1C1-4F5EA134BBB8}
2014-04-13 01:42 - 2014-04-09 01:19 - 00000000 ____D () C:\Users\Tce\templat_top
2014-04-13 01:41 - 2014-04-13 01:41 - 00000000 ____D () C:\Users\Tce\Downloads\VTEM-FindHome
2014-04-13 01:39 - 2014-04-13 01:38 - 00000000 ____D () C:\Users\Tce\Downloads\JS_appico
2014-04-13 01:38 - 2014-04-13 01:37 - 00000000 ____D () C:\Users\Tce\Downloads\YT_moreno
2014-04-13 01:36 - 2014-04-13 01:35 - 00000000 ____D () C:\Users\Tce\Downloads\SJ_Snap(1)
2014-04-13 01:35 - 2014-04-13 01:33 - 00000000 ____D () C:\Users\Tce\Downloads\IT_Enterprise
2014-04-13 01:33 - 2014-04-13 01:31 - 00000000 ____D () C:\Users\Tce\Downloads\RT_corvus(1)
2014-04-13 01:30 - 2014-04-13 01:30 - 00000000 ____D () C:\Users\Tce\Downloads\JA_Muzic
2014-04-13 01:28 - 2014-04-13 01:28 - 00000000 ____D () C:\Users\Tce\Downloads\BT-BodyWorx
2014-04-13 01:28 - 2014-04-13 01:27 - 00000000 ____D () C:\Users\Tce\Downloads\YT_moreno(1)
2014-04-13 01:26 - 2014-04-13 01:26 - 00000000 ____D () C:\Users\Tce\Downloads\YJ-Pretium
2014-04-13 01:24 - 2014-04-13 01:24 - 00000000 ____D () C:\Users\Tce\Downloads\Hot-Clinic
2014-04-13 01:24 - 2014-04-13 01:23 - 00000000 ____D () C:\Users\Tce\Downloads\JV Sunflower
2014-04-13 01:21 - 2014-04-13 01:21 - 00000000 ____D () C:\Users\Tce\Downloads\S5-Business-Pro
2014-04-13 01:20 - 2014-04-13 01:20 - 00000000 ____D () C:\Users\Tce\Downloads\JS-Shaper-MegaDeal
2014-04-13 01:19 - 2014-04-13 01:18 - 00000000 ____D () C:\Users\Tce\Downloads\JV_Speed
2014-04-13 01:17 - 2014-04-13 01:17 - 00000000 ____D () C:\Users\Tce\Downloads\ja_fixel
2014-04-13 01:14 - 2014-04-13 01:14 - 00000000 ____D () C:\Users\Tce\Downloads\ZT_Webshop
2014-04-13 01:11 - 2014-04-13 01:11 - 00000000 ____D () C:\Users\Tce\Downloads\IT_Political2
2014-04-13 01:10 - 2014-04-13 01:10 - 00000000 ____D () C:\Users\Tce\Downloads\RT-Praxis
2014-04-13 00:55 - 2014-04-13 00:55 - 00000000 ____D () C:\Users\Tce\Downloads\VTEM-Magazine
2014-04-13 00:55 - 2014-04-13 00:52 - 00000000 ____D () C:\Users\Tce\Downloads\SJ-Sport-Store
2014-04-13 00:51 - 2014-04-13 00:51 - 00000000 ____D () C:\Users\Tce\Downloads\Leo-Lifestyle
2014-04-13 00:50 - 2014-04-13 00:50 - 00000000 ____D () C:\Users\Tce\AppData\Local\{6BE4D652-7A94-49D4-9B50-266291B727A5}
2014-04-13 00:48 - 2014-04-13 00:48 - 00000000 ____D () C:\Users\Tce\Downloads\TF-Simplekey
2014-04-13 00:48 - 2014-04-13 00:42 - 00000000 ____D () C:\Users\Tce\Downloads\S5_ezwebhosting
2014-04-13 00:47 - 2014-03-13 20:14 - 00000000 ____D () C:\Users\Tce
2014-04-13 00:41 - 2014-04-13 00:41 - 00000000 ____D () C:\Users\Tce\oxwell
2014-04-12 22:20 - 2014-03-19 12:44 - 00000000 ____D () C:\Users\Tce\software
2014-04-12 16:42 - 2014-04-12 16:42 - 00000000 ____D () C:\Users\Tce\Downloads\attachment_92_530ffd6378e0c_sprachpaket-de_v4.0.1(1)
2014-04-12 16:39 - 2014-04-12 16:39 - 00000000 ____D () C:\Users\Tce\Downloads\attachment_445_4e619a057a0fd
2014-04-12 16:19 - 2014-04-05 10:48 - 00000995 _____ () C:\Users\Public\Desktop\WinSCP.lnk
2014-04-12 16:19 - 2014-04-05 10:48 - 00000000 ____D () C:\Program Files (x86)\WinSCP
2014-04-12 16:18 - 2014-04-12 16:18 - 05427328 _____ (Martin Prikryl ) C:\Users\Tce\Downloads\winscp552setup(1).exe
2014-04-12 16:17 - 2014-04-12 16:17 - 04407694 _____ () C:\Users\Tce\Downloads\winscp552.zip
2014-04-12 16:17 - 2014-04-12 16:17 - 00000000 ____D () C:\Users\Tce\Downloads\winscp552
2014-04-12 15:32 - 2014-04-12 15:32 - 00000000 ____D () C:\Users\Tce\Downloads\oxwall-1.6.0(2)
2014-04-12 12:49 - 2014-04-12 12:49 - 00000000 ____D () C:\Users\Tce\AppData\Local\{4CC9878F-78D7-4473-A3EC-8D438ABBCAD6}
2014-04-12 00:48 - 2014-04-12 00:48 - 00000000 ____D () C:\Users\Tce\AppData\Local\{DEFAB4F0-78EE-4896-BF8B-CA8C99E1B014}
2014-04-12 00:45 - 2014-04-12 00:45 - 00000000 ____D () C:\Users\Tce\Downloads\JXTC-Mozaix(1)
2014-04-12 00:43 - 2014-04-12 00:43 - 00000000 ____D () C:\Users\Tce\Downloads\JS-Shaper-Maxima
2014-04-12 00:41 - 2014-04-12 00:41 - 00000000 ____D () C:\Users\Tce\Downloads\SJ-Financial
2014-04-12 00:40 - 2014-04-12 00:38 - 00000000 ____D () C:\Users\Tce\Downloads\SJ_Teen
2014-04-11 19:56 - 2014-04-11 19:56 - 00000000 ____D () C:\Users\Tce\Downloads\ja_magz
2014-04-11 19:52 - 2014-04-11 19:52 - 00000000 ____D () C:\Users\Tce\Downloads\S5-Gamers
2014-04-11 19:46 - 2014-04-11 19:46 - 00000000 ____D () C:\Users\Tce\Downloads\OT-Clinical
2014-04-11 19:44 - 2014-04-11 19:44 - 00000000 ____D () C:\Users\Tce\Downloads\RT-Acacia
2014-04-11 19:44 - 2014-04-11 19:42 - 00000000 ____D () C:\Users\Tce\Downloads\SJ_Decou
2014-04-11 18:10 - 2014-04-11 18:09 - 00000000 ____D () C:\Users\Tce\Downloads\gk_game
2014-04-11 18:08 - 2014-04-11 18:06 - 00000000 ____D () C:\Users\Tce\Downloads\ja_bookshop
2014-04-11 18:06 - 2014-04-11 18:01 - 00000000 ____D () C:\Users\Tce\Downloads\S5_Helion(1)
2014-04-11 18:01 - 2014-04-11 17:59 - 00000000 ____D () C:\Users\Tce\Downloads\JS_Optima
2014-04-11 17:58 - 2014-04-11 17:58 - 00000000 ____D () C:\Users\Tce\Downloads\Hot-Academy
2014-04-11 17:54 - 2014-04-11 17:54 - 00000000 ____D () C:\Users\Tce\Downloads\IT PlanetEarth
2014-04-11 17:44 - 2014-04-11 17:44 - 00000000 ____D () C:\Users\Tce\Downloads\OT-Rendcore
2014-04-11 17:39 - 2014-04-11 17:39 - 00000000 ____D () C:\Users\Tce\Downloads\IT_TheRestaurant2
2014-04-11 17:37 - 2014-04-11 17:37 - 00000000 ____D () C:\Users\Tce\Downloads\RT-Paradigm
2014-04-11 17:36 - 2014-04-11 17:33 - 00000000 ____D () C:\Users\Tce\Downloads\SJ_Flat_News
2014-04-11 15:47 - 2014-04-04 14:29 - 00000000 ____D () C:\Users\Tce\AppData\Roaming\HpUpdate
2014-04-11 12:47 - 2014-04-11 12:47 - 00000000 ____D () C:\Users\Tce\AppData\Local\{462BD653-C4F6-490D-A209-D4997DAD060D}
2014-04-11 03:22 - 2010-05-11 02:58 - 00465206 _____ () C:\Windows\PFRO.log
2014-04-11 03:22 - 2009-07-14 06:45 - 00388000 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-04-11 03:04 - 2014-04-05 09:01 - 00000000 ____D () C:\Windows\system32\MRT
2014-04-11 03:04 - 2014-03-14 10:24 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-04-11 03:02 - 2014-04-05 09:01 - 90655440 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-04-11 00:46 - 2014-04-11 00:46 - 00000000 ____D () C:\Users\Tce\AppData\Local\{78B14DA2-8CE8-46DF-A47B-4E3D69E23809}
2014-04-10 20:06 - 2014-03-14 10:02 - 00002187 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-04-10 12:45 - 2014-04-10 12:45 - 00000000 ____D () C:\Users\Tce\AppData\Local\{4E236A39-5724-40E8-911F-8A97BBEB6B37}
2014-04-10 00:45 - 2014-04-10 00:44 - 00000000 ____D () C:\Users\Tce\AppData\Local\{6CCEC902-496E-41A0-AF69-D91D85552E83}
2014-04-09 22:41 - 2014-03-19 12:18 - 00000000 ____D () C:\Users\Tce\AppData\Local\Windows Live Writer
2014-04-09 20:17 - 2014-03-13 20:15 - 00105048 _____ () C:\Users\Tce\AppData\Local\GDIPFONTCACHEV1.DAT
2014-04-09 17:28 - 2014-03-14 13:39 - 00000000 ____D () C:\Users\Tce\AppData\Roaming\Ulead Systems
2014-04-09 17:26 - 2014-04-09 17:26 - 00002200 _____ () C:\Users\Public\Desktop\Ulead Photo Explorer 8.6.lnk
2014-04-09 17:25 - 2014-03-14 13:30 - 00000000 ____D () C:\Program Files (x86)\Ulead Systems
2014-04-09 17:25 - 2014-03-13 21:31 - 00000000 ____D () C:\ProgramData\Ulead Systems
2014-04-09 17:25 - 2014-03-13 20:27 - 00034298 _____ () C:\Windows\DirectX.log
2014-04-09 17:25 - 2010-05-11 02:34 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-04-09 17:24 - 2014-04-09 17:24 - 00002178 _____ () C:\Users\Public\Desktop\PhotoImpact Album 12.lnk
2014-04-09 17:24 - 2014-04-09 17:24 - 00002178 _____ () C:\Users\Public\Desktop\PhotoImpact 12.lnk
2014-04-09 16:52 - 2014-04-09 16:52 - 01855039 _____ () C:\Users\Tce\Downloads\gantry_joomla_framework-4.1.23.zip
2014-04-09 16:49 - 2014-04-09 16:43 - 00000000 ____D () C:\Users\Tce\Downloads\RT_corvus
2014-04-09 16:33 - 2014-04-09 16:32 - 28906546 _____ () C:\Users\Tce\Downloads\RT_corvus.7z
2014-04-09 12:44 - 2014-04-09 12:44 - 00000000 ____D () C:\Users\Tce\AppData\Local\{4AF27B99-B67C-40DB-B23B-BB0DF4D7B929}
2014-04-09 11:25 - 2014-04-09 11:25 - 08255594 _____ () C:\Users\Tce\Downloads\Joomla_2.5.19-Stable-Full_Package_German.zip
2014-04-09 11:21 - 2014-04-09 11:21 - 00333143 _____ () C:\Users\Tce\Downloads\de-DE_joomla_lang_full_2.5.19v1(2).zip
2014-04-09 11:21 - 2014-04-09 11:21 - 00000000 ____D () C:\Users\Tce\Downloads\de-DE_joomla_lang_full_2.5.19v1(2)
2014-04-09 11:19 - 2014-04-09 11:19 - 00000000 ____D () C:\Users\Tce\Downloads\de
2014-04-09 02:01 - 2014-04-09 01:49 - 00000000 ____D () C:\Users\Tce\ersatz
2014-04-09 00:43 - 2014-04-09 00:43 - 00000000 ____D () C:\Users\Tce\AppData\Local\{50EE14EE-1BFD-4F12-8DD4-A2CA2D66CF5C}
2014-04-09 00:40 - 2014-04-09 00:40 - 00000000 ____D () C:\Users\Tce\Downloads\YJ_Youtrader_UnzipFirst
2014-04-09 00:40 - 2014-04-09 00:40 - 00000000 ____D () C:\Users\Tce\Downloads\YJ_Youportfisimo25
2014-04-09 00:39 - 2014-04-09 00:39 - 00000000 ____D () C:\Users\Tce\Downloads\YJ-Youresponse
2014-04-09 00:39 - 2014-04-09 00:39 - 00000000 ____D () C:\Users\Tce\Downloads\TF-Kallyas
2014-04-09 00:39 - 2014-04-09 00:39 - 00000000 ____D () C:\Users\Tce\Downloads\RT_Oculus25_30
2014-04-09 00:39 - 2014-04-09 00:39 - 00000000 ____D () C:\Users\Tce\Downloads\RT_Hybrid
2014-04-09 00:39 - 2014-04-09 00:39 - 00000000 ____D () C:\Users\Tce\Downloads\IT-Property-2
2014-04-09 00:39 - 2014-04-09 00:39 - 00000000 ____D () C:\Users\Tce\Downloads\GK_League_News
2014-04-09 00:39 - 2014-04-09 00:39 - 00000000 ____D () C:\Users\Tce\Downloads\Fashion_Life25
2014-04-08 23:15 - 2014-04-08 23:14 - 00000000 ____D () C:\Users\Tce\Downloads\SJ_Expo
2014-04-08 23:06 - 2014-04-08 23:06 - 70962554 _____ () C:\Users\Tce\Downloads\SJ_Expo.7z
2014-04-08 23:03 - 2014-04-08 23:03 - 21523147 _____ () C:\Users\Tce\Downloads\RT_Oculus25_30.7z
2014-04-08 22:54 - 2014-04-08 22:53 - 145114638 _____ () C:\Users\Tce\Downloads\IT-Property-2.7z
2014-04-08 22:49 - 2014-04-08 22:48 - 33081846 _____ () C:\Users\Tce\Downloads\TF-Kallyas.7z
2014-04-08 18:21 - 2014-04-08 18:21 - 00000000 ____D () C:\Users\Tce\Downloads\IndieLife25
2014-04-08 18:16 - 2014-04-08 18:16 - 22553292 _____ () C:\Users\Tce\Downloads\IndieLife25.7z
2014-04-08 17:25 - 2014-04-08 17:24 - 35740483 _____ () C:\Users\Tce\Downloads\GK_League_News.7z
2014-04-08 17:06 - 2014-04-08 17:06 - 46766608 _____ () C:\Users\Tce\Downloads\Fashion_Life25.7z
2014-04-08 16:54 - 2014-04-08 16:54 - 37304983 _____ () C:\Users\Tce\Downloads\RT_Hybrid.7z
2014-04-08 16:40 - 2014-04-08 16:39 - 20524759 _____ () C:\Users\Tce\Downloads\YJ-Youresponse.7z
2014-04-08 16:04 - 2014-04-08 16:03 - 39545187 _____ () C:\Users\Tce\Downloads\YJ_Youtrader_UnzipFirst.7z
2014-04-08 12:42 - 2014-04-08 12:42 - 00000000 ____D () C:\Users\Tce\AppData\Local\{1D2CB1B1-4032-46D1-AEA4-E42E48E8D313}
2014-04-08 10:50 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\Registration
2014-04-08 01:39 - 2014-04-08 01:39 - 25646405 _____ () C:\Users\Tce\Downloads\YJ_Youportfisimo25.7z
2014-04-07 22:54 - 2014-04-07 22:54 - 35257448 _____ (Zeta Software GmbH) C:\Users\Tce\Downloads\zp12-setup.exe
2014-04-07 20:43 - 2014-03-13 20:23 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2014-04-07 14:46 - 2014-04-07 14:46 - 00000000 ____D () C:\Users\Tce\Downloads\directory3.1
2014-04-07 14:45 - 2014-04-07 14:45 - 00042926 _____ () C:\Users\Tce\Downloads\directory3.1.zip
2014-04-07 12:07 - 2014-04-07 12:07 - 00000000 ____D () C:\Users\Tce\AppData\Local\{A7343F1E-013B-4893-AEBB-C97C8D18BB61}
2014-04-07 00:48 - 2014-04-06 22:02 - 00000000 ____D () C:\Users\Tce\Desktop\dyck
2014-04-06 21:53 - 2014-04-06 21:53 - 00000053 _____ () C:\Users\Tce\Downloads\googlef2dfc86b5fd1e0fa(1).html
2014-04-06 21:38 - 2014-04-06 21:38 - 00000053 _____ () C:\Users\Tce\Downloads\googlef2dfc86b5fd1e0fa.html
2014-04-06 20:23 - 2014-04-06 20:23 - 00000000 ____D () C:\Users\Tce\Desktop\achtung2
2014-04-06 20:21 - 2014-04-06 20:20 - 00000000 ____D () C:\Users\Tce\Desktop\achtung
2014-04-06 20:17 - 2014-04-06 20:17 - 00001739 _____ () C:\Users\Tce\Downloads\header.tpl
2014-04-06 20:17 - 2014-04-06 20:17 - 00001739 _____ () C:\Users\Tce\Desktop\header.tpl
2014-04-06 18:24 - 2014-04-06 18:24 - 00985495 _____ () C:\Users\Tce\Downloads\hopelife.zip
2014-04-06 18:24 - 2014-04-06 18:24 - 00000000 ____D () C:\Users\Tce\Downloads\hopelife
2014-04-06 18:19 - 2014-04-06 18:19 - 00000000 ____D () C:\Users\Tce\Downloads\Modification
2014-04-06 18:11 - 2014-04-06 18:11 - 00000403 _____ () C:\Users\Tce\Downloads\Modification.zip
2014-04-06 14:55 - 2014-04-06 14:55 - 00000000 ____D () C:\Users\Tce\AppData\Local\{50CBB91D-4358-4B9D-9EA2-1CFC83404794}
2014-04-06 14:22 - 2014-04-06 14:22 - 00340873 _____ () C:\Users\Tce\Desktop\small.jsp
2014-04-06 13:23 - 2014-04-06 13:23 - 00000000 ____D () C:\Users\Tce\Downloads\web_of_trust_wot-20131118-fx
2014-04-06 13:22 - 2014-04-06 13:22 - 00526323 _____ () C:\Users\Tce\Downloads\web_of_trust_wot-20131118-fx.zip
2014-04-06 13:03 - 2014-04-06 13:03 - 00283192 _____ (Mozilla) C:\Users\Tce\Downloads\Firefox Setup Stub 28.0 (2).exe
2014-04-06 13:03 - 2014-04-06 13:03 - 00001163 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-04-06 13:03 - 2014-04-06 13:03 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-04-06 13:03 - 2014-03-29 12:38 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-04-06 11:44 - 2014-04-06 11:44 - 00029606 _____ () C:\Users\Tce\Downloads\73s49pd.css
2014-04-06 11:42 - 2014-04-06 11:42 - 00033325 _____ () C:\Users\Tce\Desktop\style.css
2014-04-06 11:37 - 2014-04-06 11:37 - 00029606 _____ () C:\Users\Tce\Downloads\23e6kqap.css
2014-04-06 11:36 - 2014-04-06 11:36 - 00033333 _____ () C:\Users\Tce\Desktop\css1.css
2014-04-06 11:16 - 2014-04-06 11:16 - 00080469 _____ () C:\Users\Tce\Downloads\txt-dadatei.txt
2014-04-06 11:03 - 2014-04-06 11:03 - 00084171 _____ () C:\Users\Tce\Desktop\Untitled-1.txt
2014-04-06 10:35 - 2014-04-06 10:35 - 00084720 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2014-04-06 03:58 - 2014-03-14 13:41 - 00000000 ____D () C:\Users\Tce\AppData\Local\CrashDumps
2014-04-06 03:45 - 2014-04-06 03:45 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-04-06 03:44 - 2014-04-06 03:44 - 17523384 _____ (Malwarebytes Corporation ) C:\Users\Tce\Desktop\mbam-setup-2.0.0.1000.exe
2014-04-06 03:38 - 2014-04-06 03:38 - 00004591 _____ () C:\Users\Tce\Desktop\JRT.txt
2014-04-06 03:33 - 2014-04-06 03:33 - 00000000 ____D () C:\Windows\ERUNT
2014-04-06 03:31 - 2014-04-06 03:31 - 01038974 _____ (Thisisu) C:\Users\Tce\Desktop\JRT.exe
2014-04-06 03:28 - 2014-04-06 03:28 - 01426178 _____ () C:\Users\Tce\Desktop\adwcleaner.exe
2014-04-06 03:18 - 2014-04-06 03:18 - 00283192 _____ (Mozilla) C:\Users\Tce\Downloads\Firefox Setup Stub 28.0.exe
2014-04-06 03:18 - 2014-04-06 03:18 - 00283192 _____ (Mozilla) C:\Users\Tce\Downloads\Firefox Setup Stub 28.0 (1).exe
2014-04-06 02:58 - 2014-04-06 02:39 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group
2014-04-06 02:39 - 2014-04-06 02:39 - 00000355 _____ () C:\Users\Tce\Desktop\Computer - Verknüpfung.lnk
2014-04-06 02:38 - 2014-04-06 02:38 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Tce\Downloads\revosetup.exe
2014-04-06 02:04 - 2014-03-13 20:17 - 00001437 _____ () C:\Users\Tce\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-04-06 01:50 - 2014-04-06 01:26 - 00000306 __RSH () C:\ProgramData\ntuser.pol
2014-04-06 01:50 - 2014-03-13 20:17 - 00000000 ___RD () C:\Users\Tce\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-04-06 01:28 - 2014-04-06 01:28 - 00002039 _____ () C:\Users\Public\Desktop\Adobe Acrobat 9 Pro Extended.lnk
2014-04-06 01:27 - 2014-04-06 01:27 - 01171856 _____ (AnyProtect.com) C:\Users\Tce\AppData\Local\nsnB740.tmp
2014-04-06 01:26 - 2009-07-14 05:20 - 00000000 ___HD () C:\Windows\system32\GroupPolicy
2014-04-06 01:26 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\GroupPolicy
2014-04-06 01:24 - 2010-05-11 02:55 - 00000000 ____D () C:\ProgramData\Adobe
2014-04-06 00:36 - 2014-04-06 00:36 - 00003408 _____ () C:\Windows\System32\Tasks\aviraSWU
2014-04-06 00:36 - 2014-04-06 00:36 - 00000000 ____D () C:\Users\Tce\AppData\Roaming\Avira
2014-04-06 00:36 - 2014-04-03 11:51 - 00000000 ____D () C:\Program Files (x86)\Avira
2014-04-06 00:35 - 2014-04-06 00:35 - 00002082 _____ () C:\Users\Public\Desktop\Avira Control Center.lnk
2014-04-06 00:35 - 2014-04-06 00:35 - 00000000 ____D () C:\ProgramData\Avira
2014-04-06 00:32 - 2014-04-06 00:31 - 138607664 _____ () C:\Users\Tce\Downloads\avira_free_antivirus_de_14.0.3.350.exe
2014-04-05 23:37 - 2014-04-05 23:37 - 00000000 ____D () C:\ProgramData\FLEXnet
2014-04-05 23:32 - 2010-05-11 02:55 - 00000000 ____D () C:\Program Files (x86)\Adobe
2014-04-05 23:28 - 2014-04-05 23:22 - 00001961 _____ () C:\Users\Tce\Documents\hosts.txt
2014-04-05 23:27 - 2014-04-05 23:27 - 00001961 _____ () C:\Users\Tce\Documents\hosts.htm
2014-04-05 13:57 - 2014-04-05 13:57 - 17699765 _____ () C:\Users\Tce\Downloads\oxwall-1.6.0(1).zip
2014-04-05 13:57 - 2014-04-05 13:57 - 00000000 ____D () C:\Users\Tce\Downloads\oxwall-1.6.0(1)
2014-04-05 11:42 - 2014-04-05 11:42 - 00000277 _____ () C:\Users\Tce\Downloads\500.html
2014-04-05 11:33 - 2014-04-05 11:02 - 00000000 ____D () C:\Users\Tce\Downloads\oxwall-1.6.0
2014-04-05 11:11 - 2014-04-05 11:11 - 00000000 ____D () C:\Users\Tce\Downloads\attachment_92_530ffd6378e0c_sprachpaket-de_v4.0.1
2014-04-05 11:10 - 2014-04-05 11:10 - 00075680 _____ () C:\Users\Tce\Downloads\attachment_92_530ffd6378e0c_sprachpaket-de_v4.0.1.zip
2014-04-05 11:00 - 2014-04-05 11:00 - 17699765 _____ () C:\Users\Tce\Downloads\oxwall-1.6.0.zip
2014-04-05 10:52 - 2014-04-05 10:50 - 00000600 _____ () C:\Users\Tce\AppData\Local\PUTTY.RND
2014-04-05 10:51 - 2014-04-05 10:51 - 00495616 _____ (Simon Tatham) C:\Users\Tce\Downloads\putty_0.63.exe
2014-04-05 10:47 - 2014-04-05 10:47 - 05427328 _____ (Martin Prikryl ) C:\Users\Tce\Downloads\winscp552setup.exe
2014-04-05 09:10 - 2014-04-05 09:10 - 00000000 ____D () C:\Users\Tce\AppData\Local\NVIDIA
2014-04-05 09:04 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-04-05 09:02 - 2014-03-20 04:30 - 01591896 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-04-05 09:01 - 2014-03-13 20:06 - 00000000 ____D () C:\ProgramData\NVIDIA Corporation
2014-04-05 09:01 - 2014-03-13 20:06 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2014-04-05 09:01 - 2014-03-13 20:05 - 00000000 ____D () C:\Program Files\NVIDIA Corporation
2014-04-04 23:59 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\LiveKernelReports
2014-04-04 15:01 - 2014-04-02 20:10 - 00000000 ____D () C:\Users\Tce\Documents\backup
2014-04-04 14:32 - 2014-04-04 14:28 - 00000000 ____D () C:\Users\Tce\AppData\Local\HP
2014-04-04 14:29 - 2014-04-04 14:29 - 00003598 _____ () C:\Windows\System32\Tasks\HPCustParticipation HP Officejet Pro 8600
2014-04-04 14:29 - 2014-04-04 14:29 - 00002212 _____ () C:\Users\Public\Desktop\HP Officejet Pro 8600.lnk
2014-04-04 14:29 - 2014-04-04 14:29 - 00001164 _____ () C:\Users\Public\Desktop\Shop für Zubehör - HP Officejet Pro 8600.lnk
2014-04-04 14:29 - 2014-04-04 14:29 - 00000000 ____D () C:\Program Files (x86)\Hewlett-Packard
2014-04-04 14:29 - 2014-04-04 14:28 - 00000000 ____D () C:\Program Files (x86)\HP
2014-04-04 14:28 - 2014-04-04 14:28 - 00000057 _____ () C:\ProgramData\Ament.ini
2014-04-04 14:28 - 2014-04-04 14:28 - 00000000 ____D () C:\ProgramData\HP
2014-04-04 14:28 - 2014-04-04 14:28 - 00000000 ____D () C:\Program Files\HP
2014-04-04 14:26 - 2014-04-04 14:26 - 31455000 _____ () C:\Users\Tce\Downloads\OJ8600_Basicx64_1315.exe
2014-04-04 14:26 - 2014-04-04 14:25 - 123594048 _____ () C:\Users\Tce\Downloads\OJ8600_1315.exe
2014-04-03 21:32 - 2014-04-03 21:32 - 00000000 ____D () C:\Users\Tce\AppData\Roaming\vlc
2014-04-03 21:31 - 2014-04-03 21:31 - 24677393 _____ () C:\Users\Tce\Downloads\vlc-2.1.3-win32(1).exe
2014-04-03 21:31 - 2014-04-03 21:31 - 00001082 _____ () C:\Users\Public\Desktop\VLC media player.lnk
2014-04-03 21:31 - 2014-04-03 21:31 - 00000000 ____D () C:\Program Files (x86)\VideoLAN
2014-04-03 21:29 - 2014-04-03 21:29 - 24677393 _____ () C:\Users\Tce\Downloads\vlc-2.1.3-win32.exe
2014-04-03 17:58 - 2014-03-14 09:54 - 00000000 ____D () C:\Program Files (x86)\Opera
2014-04-03 12:04 - 2014-04-03 12:04 - 00000000 ____D () C:\Users\Tce\AppData\Local\AviraSpeedup
2014-04-03 11:55 - 2014-04-03 11:55 - 02659296 _____ () C:\Users\Tce\Downloads\avira_speedup (1).exe
2014-04-03 11:55 - 2014-04-03 11:54 - 02659296 _____ () C:\Users\Tce\Downloads\avira_speedup.exe
2014-04-03 11:51 - 2014-04-03 11:51 - 04413976 _____ (Avira Operations GmbH & Co. KG) C:\Users\Tce\Downloads\avira_de_avsu(1).exe
2014-04-03 11:50 - 2014-04-03 11:49 - 04413976 _____ (Avira Operations GmbH & Co. KG) C:\Users\Tce\Downloads\avira_de_avsu.exe
2014-04-02 23:39 - 2014-04-02 23:39 - 00000841 _____ () C:\Users\Tce\Downloads\slbs.zip
2014-04-02 23:39 - 2014-04-02 23:39 - 00000000 ____D () C:\Users\Tce\Downloads\slbs
2014-04-02 20:19 - 2014-04-02 20:19 - 00368983 _____ () C:\Users\Tce\Downloads\pkg_visforms_v2.0.2beta(1).zip
2014-04-02 20:13 - 2014-04-02 20:13 - 00000000 ____D () C:\Users\Tce\Downloads\pkg_visforms_v2.0.3
2014-04-02 20:05 - 2014-04-02 20:05 - 00369496 _____ () C:\Users\Tce\Downloads\pkg_visforms_v2.0.3.zip
2014-04-02 15:55 - 2014-04-02 15:54 - 00000000 ____D () C:\Users\Tce\Downloads\IT_Community2
2014-04-02 15:33 - 2014-04-02 15:32 - 39363298 _____ () C:\Users\Tce\Downloads\IT_Community2.7z
2014-04-02 15:16 - 2014-04-02 15:16 - 17648059 _____ () C:\Users\Tce\Downloads\S5_Helion.7z
2014-04-02 00:34 - 2014-04-02 00:33 - 11209015 _____ () C:\Users\Tce\Downloads\GK_Financial_Business_25.7z
2014-04-01 17:19 - 2014-04-01 17:19 - 00046735 _____ () C:\Users\Tce\Downloads\akeebabackup-de-DE-j25(1).zip
2014-04-01 17:14 - 2014-04-01 17:14 - 00000000 ____D () C:\Users\Tce\Downloads\kickstart-core-3.7.1
2014-04-01 17:13 - 2014-04-01 17:13 - 00143828 _____ () C:\Users\Tce\Downloads\kickstart-core-3.5.1.zip
2014-04-01 17:12 - 2014-04-01 17:12 - 00000000 ____D () C:\Users\Tce\Downloads\com_akeeba-3.10.2-core(1)
2014-04-01 16:21 - 2014-04-01 16:19 - 60715810 _____ () C:\Users\Tce\Downloads\TZ-BlogPlaza.7z
2014-04-01 16:16 - 2014-04-01 16:15 - 05333669 _____ () C:\Users\Tce\Downloads\EasyBlog_v3.8.14477.7z
2014-04-01 16:14 - 2014-04-01 16:13 - 03954859 _____ () C:\Users\Tce\Downloads\EasyDiscuss_v3.1.8601.7z
2014-04-01 14:29 - 2014-04-01 14:28 - 36207108 _____ () C:\Users\Tce\Downloads\OT-Furnite.7z
2014-03-31 16:29 - 2014-03-31 16:29 - 00007453 _____ () C:\Users\Tce\Downloads\de.rar
2014-03-31 13:03 - 2014-03-31 13:03 - 00055162 _____ () C:\Users\Tce\Downloads\backup-2014-03-31 13-34-05.gz
2014-03-31 13:03 - 2014-03-31 13:03 - 00000000 ____D () C:\Users\Tce\Downloads\backup-2014-03-31 13-34-05
2014-03-31 10:46 - 2014-03-31 10:46 - 00054126 _____ () C:\Users\Tce\Downloads\backup-2014-03-31 11-16-50.gz
2014-03-31 09:35 - 2014-03-14 22:40 - 00270496 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-03-31 03:16 - 2014-04-10 10:06 - 23134208 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-03-31 03:13 - 2014-04-10 10:06 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-03-31 02:13 - 2014-04-10 10:06 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-03-31 01:57 - 2014-04-10 10:06 - 17073152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-03-30 11:26 - 2014-03-29 00:29 - 00000000 ____D () C:\Users\Tce\Downloads\schaumahier_letzte
2014-03-29 20:39 - 2014-03-29 20:39 - 00421912 _____ () C:\Users\Tce\Downloads\jquery-carousel.rar
2014-03-29 20:33 - 2014-03-29 20:33 - 00020991 _____ () C:\Users\Tce\Downloads\Slider.zip
2014-03-29 20:33 - 2014-03-29 20:33 - 00000000 ____D () C:\Users\Tce\Downloads\Slider
2014-03-29 20:16 - 2014-03-29 20:16 - 00032353 _____ () C:\Users\Tce\Downloads\backup-2014-03-29 19-46-39.gz
2014-03-29 03:00 - 2014-03-19 23:07 - 00000000 ____D () C:\Users\Tce\Downloads\joom
2014-03-29 02:09 - 2014-03-29 02:09 - 00007241 _____ () C:\Users\Tce\Downloads\backup-2014-03-29 01-38-42.gz
2014-03-29 01:36 - 2014-03-29 01:36 - 00005892 _____ () C:\Users\Tce\Downloads\backup-2014-03-29 01-05-55.gz
2014-03-29 01:36 - 2014-03-29 01:36 - 00000000 ____D () C:\Users\Tce\Downloads\backup-2014-03-29 01-05-55
2014-03-29 01:28 - 2014-03-29 01:28 - 00000043 _____ () C:\Users\Tce\Desktop\sitemape.xml
2014-03-29 01:21 - 2014-03-29 01:21 - 02890790 _____ () C:\Users\Tce\Downloads\arfooo-2.0.2(4).zip
2014-03-29 01:21 - 2014-03-29 01:21 - 00000000 ____D () C:\Users\Tce\Downloads\arfooo-2.0.2(4)
2014-03-29 00:57 - 2014-03-29 00:57 - 00000000 ____D () C:\Users\Tce\Downloads\arfooo-2.0.2(3)
2014-03-29 00:33 - 2014-03-29 00:33 - 00005661 _____ () C:\Users\Tce\Downloads\web_categories.sql
2014-03-28 21:10 - 2014-03-28 21:10 - 02890790 _____ () C:\Users\Tce\Downloads\arfooo-2.0.2(3).zip
2014-03-28 20:58 - 2014-03-13 20:47 - 00004106 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-03-28 20:58 - 2014-03-13 20:47 - 00003854 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-03-28 12:04 - 2014-03-14 15:59 - 00000000 ____D () C:\Users\Tce\Downloads\Adult,_files
2014-03-27 22:04 - 2014-03-27 22:04 - 00000000 ____D () C:\Users\Tce\Downloads\slide
2014-03-27 22:03 - 2014-03-27 22:03 - 00326268 _____ () C:\Users\Tce\Downloads\slide.tar.gz
2014-03-27 21:59 - 2014-03-27 21:59 - 00259539 _____ () C:\Users\Tce\Downloads\pink-round.tar.gz
2014-03-27 21:59 - 2014-03-27 21:59 - 00000000 ____D () C:\Users\Tce\Downloads\pink-round
2014-03-27 21:48 - 2014-03-27 21:48 - 00000000 ____D () C:\Users\Tce\Downloads\arfooo-2.0.2(2)
2014-03-27 21:47 - 2014-03-27 21:47 - 02890790 _____ () C:\Users\Tce\Downloads\arfooo-2.0.2(2).zip
2014-03-27 21:47 - 2014-03-27 21:47 - 02470057 _____ () C:\Users\Tce\Downloads\arfooo-2.0.1.zip
2014-03-27 21:25 - 2014-03-26 23:17 - 00000000 ____D () C:\Users\Tce\Downloads\arfooo-2.0.2
2014-03-27 18:13 - 2014-03-27 18:13 - 00026441 _____ () C:\Users\Tce\Downloads\katalog-de(1).zip
2014-03-27 18:13 - 2014-03-27 18:13 - 00000000 ____D () C:\Users\Tce\Downloads\arfooo-de(1)
2014-03-27 17:18 - 2014-03-27 10:36 - 00000000 ____D () C:\Users\Tce\Downloads\arfooo-2.0.2(1)
2014-03-27 10:37 - 2014-03-27 10:37 - 00026441 _____ () C:\Users\Tce\Downloads\arfooo-de.zip
2014-03-27 10:37 - 2014-03-27 10:37 - 00000000 ____D () C:\Users\Tce\Downloads\arfooo-de
2014-03-27 10:36 - 2014-03-27 10:36 - 02890790 _____ () C:\Users\Tce\Downloads\arfooo-2.0.2(1).zip
2014-03-26 23:17 - 2014-03-26 23:17 - 02890790 _____ () C:\Users\Tce\Downloads\arfooo-2.0.2.zip
2014-03-26 23:17 - 2014-03-26 23:17 - 00000000 ____D () C:\Users\Tce\Downloads\import
2014-03-26 23:16 - 2014-03-26 23:16 - 00069436 _____ () C:\Users\Tce\Downloads\import.zip
2014-03-26 22:46 - 2014-03-26 22:46 - 02356644 _____ () C:\Users\Tce\Downloads\freeglobes-03.01.2009(1).zip
2014-03-26 22:37 - 2014-03-26 22:37 - 00023154 _____ () C:\Users\Tce\Downloads\patch.from.19.03.2008-RC2.to.27.07.2008-RC2(1).zip
2014-03-26 22:37 - 2014-03-26 22:37 - 00000000 ____D () C:\Users\Tce\Downloads\patch.from.19.03.2008-RC2.to.27.07.2008-RC2(1)
2014-03-26 22:34 - 2014-03-26 22:34 - 00023154 _____ () C:\Users\Tce\Downloads\patch.from.19.03.2008-RC2.to.27.07.2008-RC2.zip
2014-03-26 22:22 - 2014-03-26 22:22 - 00042349 _____ () C:\Users\Tce\Downloads\deutsche-sprachdateien-freeglobes.zip
2014-03-26 22:22 - 2014-03-26 22:22 - 00000000 ____D () C:\Users\Tce\Downloads\deutsche-sprachdateien-freeglobes
2014-03-26 22:19 - 2014-03-26 22:19 - 00000000 ____D () C:\Users\Tce\Downloads\deutsch_hauptdatein
2014-03-26 22:18 - 2014-03-26 22:18 - 00013097 _____ () C:\Users\Tce\Downloads\deutsch_hauptdatein.rar
2014-03-26 19:11 - 2014-03-26 19:09 - 00000000 ____D () C:\Users\Tce\Downloads\deutsch_install
2014-03-26 19:09 - 2014-03-26 19:09 - 00001300 _____ () C:\Users\Tce\Downloads\deutsch_install.rar
2014-03-26 19:06 - 2014-03-26 19:06 - 00000000 ____D () C:\Users\Tce\Downloads\freeglobes-03.01.2009
2014-03-26 19:03 - 2014-03-26 19:03 - 02356644 _____ () C:\Users\Tce\Downloads\freeglobes-03.01.2009.zip
2014-03-26 17:38 - 2014-03-26 17:16 - 00000000 ____D () C:\Users\Tce\Desktop\Tor Browser
2014-03-26 17:16 - 2014-03-26 17:15 - 23180864 _____ () C:\Users\Tce\Desktop\torbrowser-install-3.5.3_de.exe
2014-03-26 11:54 - 2014-03-13 20:24 - 00000000 ____D () C:\Users\Tce\AppData\Roaming\Adobe
2014-03-26 10:25 - 2014-03-19 12:09 - 00000000 ____D () C:\Users\Tce\AppData\Local\Windows Live
2014-03-25 19:01 - 2014-03-25 19:01 - 00000000 ____D () C:\Users\Tce\Downloads\RT_Tachyon_25 (1)
2014-03-25 18:45 - 2014-03-25 18:45 - 02690063 _____ () C:\Users\Tce\Downloads\roksprocket-2.1.1.zip
2014-03-25 18:37 - 2014-03-25 18:37 - 00142384 _____ () C:\Users\Tce\Downloads\rokstories-1.14.zip
2014-03-25 18:37 - 2014-03-25 18:37 - 00071071 _____ () C:\Users\Tce\Downloads\roksocialbuttons-1.5.2.zip
2014-03-25 18:37 - 2014-03-25 18:37 - 00035493 _____ () C:\Users\Tce\Downloads\rokinjectmodule-1.5.zip
2014-03-25 18:37 - 2014-03-25 18:37 - 00031231 _____ () C:\Users\Tce\Downloads\rokupdatesclean-1.0.0.zip
2014-03-25 18:37 - 2014-03-25 18:36 - 00078040 _____ () C:\Users\Tce\Downloads\roktabs-1.12.zip
2014-03-25 18:36 - 2014-03-25 18:36 - 00072684 _____ () C:\Users\Tce\Downloads\roknewspager-2.0.1.zip
2014-03-25 18:36 - 2014-03-25 18:36 - 00056049 _____ () C:\Users\Tce\Downloads\rokmicronews-1.1.zip
2014-03-25 18:36 - 2014-03-25 18:36 - 00047085 _____ () C:\Users\Tce\Downloads\roknewsflash-2.0.0.zip
2014-03-25 18:36 - 2014-03-25 18:36 - 00043326 _____ () C:\Users\Tce\Downloads\rokintroscroller-1.1.zip
2014-03-25 18:36 - 2014-03-25 18:36 - 00035052 _____ () C:\Users\Tce\Downloads\rokcontentrotator-2.0.1.zip
2014-03-25 18:36 - 2014-03-25 18:35 - 00666488 _____ () C:\Users\Tce\Downloads\rokupdater-1.0.8.zip
2014-03-25 18:35 - 2014-03-25 18:35 - 00151065 _____ () C:\Users\Tce\Downloads\rokbridge-3.2.zip
2014-03-25 18:35 - 2014-03-25 18:35 - 00144915 _____ () C:\Users\Tce\Downloads\rokcomments-2.0.2.zip
2014-03-25 18:32 - 2014-03-25 18:32 - 00173154 _____ () C:\Users\Tce\Downloads\rokcandy-2.0.1.zip
2014-03-25 16:21 - 2014-03-25 16:21 - 00000000 ____D () C:\Users\Tce\Downloads\Joomla_2.5.19-Stable-Full_Package
2014-03-25 16:21 - 2014-03-25 16:20 - 07950017 _____ () C:\Users\Tce\Downloads\Joomla_2.5.19-Stable-Full_Package.zip
2014-03-23 14:35 - 2014-03-23 14:35 - 01491508 _____ () C:\Users\Tce\Downloads\K2_v2.6.8.zip
2014-03-23 14:11 - 2014-03-23 14:11 - 00053723 _____ () C:\Users\Tce\Downloads\k2_de-DE_language_pack(1).zip
2014-03-23 14:10 - 2014-03-23 14:10 - 00053723 _____ () C:\Users\Tce\Downloads\k2_de-DE_language_pack.zip
2014-03-23 13:59 - 2014-03-23 13:59 - 00333143 _____ () C:\Users\Tce\Downloads\de-DE_joomla_lang_full_2.5.19v1(1).zip
2014-03-23 13:58 - 2014-03-23 13:58 - 00333143 _____ () C:\Users\Tce\Downloads\de-DE_joomla_lang_full_2.5.19v1.zip
2014-03-23 13:06 - 2014-03-23 12:48 - 00000000 ____D () C:\Users\Tce\Downloads\Vorsicht24_SJ_Flat_News
2014-03-23 12:50 - 2014-03-23 12:50 - 00000000 ____D () C:\Users\Tce\Downloads\vorsicht24_OT-Emagazine
2014-03-23 12:36 - 2014-03-23 12:35 - 47889670 _____ () C:\Users\Tce\Downloads\vorsicht24_OT-Emagazine.7z
2014-03-23 12:14 - 2014-03-23 12:09 - 191522152 _____ () C:\Users\Tce\Downloads\Vorsicht24_SJ_Flat_News.7z
2014-03-23 00:04 - 2014-03-23 00:04 - 00002031 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk
2014-03-22 21:57 - 2014-03-22 17:53 - 00000028 _____ () C:\Windows\Robota.INI
2014-03-22 19:05 - 2014-03-22 17:45 - 00000000 ____D () C:\Users\Public\Documents\MAGIX_MusicMaker15Premium
2014-03-22 17:52 - 2014-03-22 17:52 - 00000000 ____D () C:\Users\Tce\AppData\Roaming\MAGIX
2014-03-22 17:52 - 2014-03-22 17:52 - 00000000 ____D () C:\Users\Public\Documents\MAGIX_Screenshare
2014-03-22 17:52 - 2014-03-22 17:44 - 00000000 ____D () C:\ProgramData\MAGIX
2014-03-22 17:52 - 2014-03-22 17:43 - 00007119 _____ () C:\Windows\mgxoschk.ini
2014-03-22 17:52 - 2014-03-22 17:43 - 00000000 ____D () C:\Windows\SysWOW64\MAGIX
2014-03-22 17:52 - 2014-03-22 17:43 - 00000000 ____D () C:\Program Files (x86)\MAGIX
2014-03-22 17:52 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\Help
2014-03-22 17:51 - 2014-03-22 17:51 - 00001173 _____ () C:\Users\Public\Desktop\Mufin MusicFinder Base.lnk
2014-03-22 17:45 - 2014-03-22 17:45 - 00001216 _____ () C:\Users\Public\Desktop\MAGIX Music Maker 15 Premium.lnk
2014-03-22 13:06 - 2014-03-22 13:00 - 00000000 ____D () C:\Users\Tce\Downloads\SJ_Snap
2014-03-22 12:37 - 2014-03-22 12:35 - 38567269 _____ () C:\Users\Tce\Downloads\SJ_Snap.7z
2014-03-22 11:52 - 2014-03-22 11:50 - 41055220 _____ () C:\Users\Tce\Downloads\OT-Malesuada.7z
2014-03-22 00:42 - 2014-03-22 00:42 - 00009100 _____ () C:\Users\Tce\Downloads\banner-automatisch-wechseln.zip
2014-03-22 00:42 - 2014-03-22 00:42 - 00000000 ____D () C:\Users\Tce\Downloads\banner-automatisch-wechseln
2014-03-21 18:09 - 2014-03-19 12:17 - 00000000 ____D () C:\Users\Tce\Tracing
2014-03-21 18:02 - 2014-03-21 18:02 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2014-03-21 14:23 - 2014-03-21 14:23 - 00000359 _____ () C:\Users\Tce\Downloads\Delivery report - Kopie.php
2014-03-21 14:23 - 2014-03-21 14:23 - 00000359 _____ () C:\Users\Tce\Downloads\Delivery report - Kopie (1).php
2014-03-21 14:23 - 2014-03-20 21:32 - 00000000 ____D () C:\Users\Tce\Documents\signatur
2014-03-21 14:21 - 2014-03-21 14:22 - 00000359 _____ () C:\Users\Tce\Documents\Delivery report - Kopie.php
2014-03-21 14:21 - 2014-03-21 14:21 - 00000359 _____ () C:\Users\Tce\Documents\Delivery report.dat
2014-03-21 04:06 - 2014-03-20 04:26 - 00017520 _____ () C:\Windows\IE11_main.log
2014-03-21 04:04 - 2014-03-21 04:04 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2014-03-21 04:04 - 2014-03-21 04:04 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2014-03-21 04:04 - 2014-03-21 04:04 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-03-21 04:04 - 2014-03-21 04:04 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-03-21 04:04 - 2014-03-21 04:04 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-03-21 04:04 - 2014-03-21 04:04 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2014-03-21 04:04 - 2014-03-21 04:04 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-03-21 04:04 - 2014-03-21 04:04 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2014-03-21 04:04 - 2014-03-21 04:04 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2014-03-21 04:04 - 2014-03-21 04:04 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2014-03-21 04:04 - 2014-03-21 04:04 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-03-21 04:04 - 2014-03-21 04:04 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2014-03-21 04:04 - 2014-03-21 04:04 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2014-03-21 04:04 - 2014-03-21 04:04 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2014-03-21 04:04 - 2014-03-21 04:04 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2014-03-21 04:04 - 2014-03-21 04:04 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-03-21 04:04 - 2014-03-21 04:04 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2014-03-21 04:04 - 2014-03-21 04:04 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-03-21 04:04 - 2014-03-21 04:04 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe

Some content of TEMP:
====================
C:\Users\Tce\AppData\Local\Temp\avgnt.exe
C:\Users\Tce\AppData\Local\Temp\BackupSetup.exe
C:\Users\Tce\AppData\Local\Temp\fp_pl_pfs_installer-1.exe
C:\Users\Tce\AppData\Local\Temp\fp_pl_pfs_installer-2.exe
C:\Users\Tce\AppData\Local\Temp\fp_pl_pfs_installer.exe
C:\Users\Tce\AppData\Local\Temp\install_flashplayer13x32_mssd_aaa_aih.exe
C:\Users\Tce\AppData\Local\Temp\instract.exe
C:\Users\Tce\AppData\Local\Temp\mgxfonts.exe
C:\Users\Tce\AppData\Local\Temp\MgxVistaTools.dll
C:\Users\Tce\AppData\Local\Temp\ose00000.exe
C:\Users\Tce\AppData\Local\Temp\readSTILog.dll
C:\Users\Tce\AppData\Local\Temp\vcredist_x64.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2014-04-15 00:43

==================== End Of Log ============================

Alt 21.04.2014, 21:12   #7
schrauber
/// the machine
/// TB-Ausbilder
 

updownlinkg.com - Standard

updownlinkg.com



So funktioniert es:
Posten in CODE-Tags
Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
  • Markiere das gesamte Logfile (geht meist mit STRG+A) und kopiere es in die Zwischenablage mit STRG+C.
  • Klicke im Editor auf das #-Symbol. Es erscheinen zwei Klammerausdrücke [CODE] [/CODE].
  • Setze den Curser zwischen die CODE-Tags und drücke STRG+V.
  • Klicke auf Erweitert/Vorschau, um so prüfen, ob du es richtig gemacht hast. Wenn alles stimmt ... auf Antworten.




Scan mit Combofix
WARNUNG an die MITLESER:
Combofix sollte ausschließlich ausgeführt werden, wenn dies von einem Teammitglied angewiesen wurde!

Downloade dir bitte Combofix vom folgenden Downloadspiegel: Link
  • WICHTIG: Speichere Combofix auf deinem Desktop.
  • Deaktiviere bitte alle deine Antivirensoftware sowie Malware/Spyware Scanner. Diese können Combofix bei der Arbeit stören. Combofix meckert auch manchmal trotzdem noch, das kannst du dann ignorieren, mir aber bitte mitteilen.
  • Starte die Combofix.exe und folge den Anweisungen auf dem Bildschirm.
  • Während Combofix läuft bitte nicht am Computer arbeiten, die Maus bewegen oder ins Combofixfenster klicken!
  • Wenn Combofix fertig ist, wird es ein Logfile erstellen.
  • Bitte poste die C:\Combofix.txt in deiner nächsten Antwort (möglichst in CODE-Tags).
Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten
Es wurde versucht, einen Registrierungsschlüssel einem ungültigen Vorgang zu unterziehen, der zum Löschen markiert wurde.
starte den Rechner einfach neu. Dies sollte das Problem beheben.

__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 21.04.2014, 22:22   #8
tce
 
updownlinkg.com - Standard

updownlinkg.com



Code:
ATTFilter
ComboFix 14-04-20.01 - Tce 21.04.2014  22:08:42.1.8 - x64
Microsoft Windows 7 Home Premium   6.1.7601.1.1252.49.1031.18.6135.3061 [GMT 2:00]
ausgeführt von:: c:\users\Tce\Desktop\ComboFix.exe
AV: Avira Desktop *Enabled/Updated* {4D041356-F94D-285F-8768-AAE50FA36859}
SP: Avira Desktop *Enabled/Updated* {F665F2B2-DF77-27D1-BDD8-9197742422E4}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((   Weitere Löschungen   ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\users\Tce\AppData\Local\nsnB740.tmp
c:\users\Tce\AppData\Local\Temp\nsv8629.tmp
.
.
(((((((((((((((((((((((   Dateien erstellt von 2014-03-21 bis 2014-04-21  ))))))))))))))))))))))))))))))
.
.
2014-04-21 20:14 . 2014-04-21 20:14	--------	d-----w-	c:\users\Default\AppData\Local\temp
2014-04-19 15:01 . 2014-04-19 15:01	75888	----a-w-	c:\programdata\Microsoft\Windows Defender\Definition Updates\{0B165C49-67B7-4551-9425-CF8CBEF363FF}\offreg.dll
2014-04-19 08:53 . 2014-04-20 18:38	--------	d-----w-	C:\FRST
2014-04-18 12:41 . 2014-04-17 03:31	10651704	----a-w-	c:\programdata\Microsoft\Windows Defender\Definition Updates\{0B165C49-67B7-4551-9425-CF8CBEF363FF}\mpengine.dll
2014-04-14 12:06 . 2014-04-14 12:06	--------	d-----w-	c:\program files (x86)\Common Files\logishrd
2014-04-14 12:06 . 2014-04-14 12:06	--------	d-----w-	c:\program files\Common Files\logishrd
2014-04-12 22:41 . 2014-04-12 22:41	--------	d-----w-	c:\users\Tce\oxwell
2014-04-09 15:25 . 2005-08-30 10:02	24576	------w-	c:\windows\SysWow64\Ulead Photo Explorer 86.scr
2014-04-09 15:23 . 2006-07-22 17:37	49152	------w-	c:\windows\SysWow64\INETWH32.dll
2014-04-09 15:23 . 1999-10-15 10:50	1056768	------w-	c:\windows\SysWow64\ROBOEX32.DLL
2014-04-09 15:23 . 2014-04-09 15:25	--------	d-----w-	c:\program files (x86)\Common Files\Ulead Systems
2014-04-09 15:22 . 2002-12-02 13:22	5632	----a-w-	c:\program files (x86)\Common Files\InstallShield\Professional\RunTime\0701\Intel32\DotNetInstaller.exe
2014-04-08 23:49 . 2014-04-09 00:01	--------	d-----w-	c:\users\Tce\ersatz
2014-04-08 23:19 . 2014-04-12 23:42	--------	d-----w-	c:\users\Tce\templat_top
2014-04-06 11:03 . 2014-04-06 11:03	--------	d-----w-	c:\program files (x86)\Mozilla Maintenance Service
2014-04-06 08:35 . 2014-04-06 08:35	84720	----a-w-	c:\windows\system32\drivers\avnetflt.sys
2014-04-06 01:46 . 2014-04-14 16:35	119512	----a-w-	c:\windows\system32\drivers\MBAMSwissArmy.sys
2014-04-06 01:45 . 2014-04-06 01:45	--------	d-----w-	c:\programdata\Malwarebytes
2014-04-06 01:33 . 2014-04-06 01:33	--------	d-----w-	c:\windows\ERUNT
2014-04-06 01:28 . 2014-04-16 08:55	--------	d-----w-	C:\AdwCleaner
2014-04-06 00:39 . 2014-04-06 00:58	--------	d-----w-	c:\program files (x86)\VS Revo Group
2014-04-05 23:29 . 2014-04-06 00:27	--------	d-----w-	c:\program files (x86)\Uninstaller
2014-04-05 23:29 . 2008-04-07 03:38	24416	----a-r-	c:\windows\system32\AdobePDFUI.dll
2014-04-05 22:36 . 2014-04-05 22:36	--------	d-----w-	c:\users\Tce\AppData\Roaming\Avira
2014-04-05 22:35 . 2014-02-25 09:41	28600	----a-w-	c:\windows\system32\drivers\avkmgr.sys
2014-04-05 22:35 . 2014-02-25 09:41	131576	----a-w-	c:\windows\system32\drivers\avipbb.sys
2014-04-05 22:35 . 2014-02-25 09:41	108440	----a-w-	c:\windows\system32\drivers\avgntflt.sys
2014-04-05 22:35 . 2014-04-05 22:35	--------	d-----w-	c:\programdata\Avira
2014-04-05 21:37 . 2014-04-05 21:37	--------	d-----w-	c:\programdata\FLEXnet
2014-04-05 08:48 . 2014-04-12 14:19	--------	d-----w-	c:\program files (x86)\WinSCP
2014-04-05 08:47 . 2014-04-05 08:47	--------	d-----w-	c:\users\Tce\AppData\Local\Programs
2014-04-05 07:25 . 2014-01-09 02:22	5694464	----a-w-	c:\windows\SysWow64\mstscax.dll
2014-04-05 07:25 . 2014-01-03 22:44	6574592	----a-w-	c:\windows\system32\mstscax.dll
2014-04-05 07:10 . 2014-04-05 07:10	--------	d-----w-	c:\users\Tce\AppData\Local\NVIDIA
2014-04-05 07:01 . 2014-04-11 01:04	--------	d-----w-	c:\windows\system32\MRT
2014-04-05 07:00 . 2014-03-04 11:32	599840	----a-w-	c:\windows\SysWow64\nvStreaming.exe
2014-04-05 07:00 . 2014-03-04 13:05	3649185	----a-w-	c:\windows\system32\nvcoproc.bin
2014-04-05 06:58 . 2013-09-25 02:23	1030144	----a-w-	c:\windows\system32\TSWorkspace.dll
2014-04-05 06:58 . 2013-09-25 01:57	792576	----a-w-	c:\windows\SysWow64\TSWorkspace.dll
2014-04-05 06:58 . 2012-05-04 11:00	366592	----a-w-	c:\windows\system32\qdvd.dll
2014-04-05 06:58 . 2012-05-04 09:59	514560	----a-w-	c:\windows\SysWow64\qdvd.dll
2014-04-04 12:29 . 2014-04-04 12:29	--------	d-----w-	c:\program files (x86)\Hewlett-Packard
2014-04-04 12:29 . 2014-04-11 13:47	--------	d-----w-	c:\users\Tce\AppData\Roaming\HpUpdate
2014-04-04 12:29 . 2012-10-17 02:31	741480	------w-	c:\windows\system32\HPDiscoPM5912.dll
2014-04-04 12:28 . 2014-04-04 12:29	--------	d-----w-	c:\program files (x86)\HP
2014-04-04 12:28 . 2014-04-04 12:28	--------	d-----w-	c:\programdata\HP
2014-04-04 12:28 . 2014-04-04 12:28	--------	d-----w-	c:\program files\HP
2014-04-04 12:28 . 2014-04-04 12:32	--------	d-----w-	c:\users\Tce\AppData\Local\HP
2014-04-04 12:24 . 2014-04-04 12:24	--------	d-----w-	c:\users\Tce\AppData\Local\ElevatedDiagnostics
2014-04-03 19:32 . 2014-04-03 19:32	--------	d-----w-	c:\users\Tce\AppData\Roaming\vlc
2014-04-03 19:31 . 2014-04-03 19:31	--------	d-----w-	c:\program files (x86)\VideoLAN
2014-04-03 10:04 . 2014-04-03 10:04	--------	d-----w-	c:\users\Tce\AppData\Local\AviraSpeedup
2014-04-03 09:51 . 2014-04-05 22:36	--------	d-----w-	c:\program files (x86)\Avira
2014-03-27 15:24 . 2014-03-27 15:24	--------	d-----w-	c:\users\Tce\config
.
.
.
((((((((((((((((((((((((((((((((((((   Find3M Bericht   ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2014-04-21 08:24 . 2014-03-14 07:45	70832	----a-w-	c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2014-04-21 08:24 . 2014-03-14 07:45	692400	----a-w-	c:\windows\SysWow64\FlashPlayerApp.exe
2014-03-31 07:35 . 2014-03-14 20:40	270496	------w-	c:\windows\system32\MpSigStub.exe
2014-03-21 02:04 . 2014-03-21 02:04	194048	----a-w-	c:\windows\SysWow64\elshyph.dll
2014-03-21 02:04 . 2014-03-21 02:04	942592	----a-w-	c:\windows\system32\jsIntl.dll
2014-03-21 02:04 . 2014-03-21 02:04	90112	----a-w-	c:\windows\system32\SetIEInstalledDate.exe
2014-03-21 02:04 . 2014-03-21 02:04	86016	----a-w-	c:\windows\SysWow64\iesysprep.dll
2014-03-21 02:04 . 2014-03-21 02:04	86016	----a-w-	c:\windows\system32\RegisterIEPKEYs.exe
2014-03-21 02:04 . 2014-03-21 02:04	84992	----a-w-	c:\windows\system32\mshtmled.dll
2014-03-21 02:04 . 2014-03-21 02:04	83968	----a-w-	c:\windows\system32\MshtmlDac.dll
2014-03-21 02:04 . 2014-03-21 02:04	81408	----a-w-	c:\windows\system32\icardie.dll
2014-03-21 02:04 . 2014-03-21 02:04	774144	----a-w-	c:\windows\system32\jscript.dll
2014-03-21 02:04 . 2014-03-21 02:04	77312	----a-w-	c:\windows\system32\tdc.ocx
2014-03-21 02:04 . 2014-03-21 02:04	74240	----a-w-	c:\windows\SysWow64\SetIEInstalledDate.exe
2014-03-21 02:04 . 2014-03-21 02:04	71680	----a-w-	c:\windows\SysWow64\RegisterIEPKEYs.exe
2014-03-21 02:04 . 2014-03-21 02:04	645120	----a-w-	c:\windows\SysWow64\jsIntl.dll
2014-03-21 02:04 . 2014-03-21 02:04	62464	----a-w-	c:\windows\SysWow64\tdc.ocx
2014-03-21 02:04 . 2014-03-21 02:04	62464	----a-w-	c:\windows\system32\pngfilt.dll
2014-03-21 02:04 . 2014-03-21 02:04	61952	----a-w-	c:\windows\SysWow64\MshtmlDac.dll
2014-03-21 02:04 . 2014-03-21 02:04	616104	----a-w-	c:\windows\system32\ieapfltr.dat
2014-03-21 02:04 . 2014-03-21 02:04	52224	----a-w-	c:\windows\system32\msfeedsbs.dll
2014-03-21 02:04 . 2014-03-21 02:04	48640	----a-w-	c:\windows\SysWow64\mshtmler.dll
2014-03-21 02:04 . 2014-03-21 02:04	48640	----a-w-	c:\windows\system32\mshtmler.dll
2014-03-21 02:04 . 2014-03-21 02:04	48128	----a-w-	c:\windows\system32\imgutil.dll
2014-03-21 02:04 . 2014-03-21 02:04	453120	----a-w-	c:\windows\system32\dxtmsft.dll
2014-03-21 02:04 . 2014-03-21 02:04	413696	----a-w-	c:\windows\system32\html.iec
2014-03-21 02:04 . 2014-03-21 02:04	40448	----a-w-	c:\windows\system32\JavaScriptCollectionAgent.dll
2014-03-21 02:04 . 2014-03-21 02:04	36352	----a-w-	c:\windows\SysWow64\imgutil.dll
2014-03-21 02:04 . 2014-03-21 02:04	34816	----a-w-	c:\windows\SysWow64\JavaScriptCollectionAgent.dll
2014-03-21 02:04 . 2014-03-21 02:04	337408	----a-w-	c:\windows\SysWow64\html.iec
2014-03-21 02:04 . 2014-03-21 02:04	30208	----a-w-	c:\windows\system32\licmgr10.dll
2014-03-21 02:04 . 2014-03-21 02:04	296960	----a-w-	c:\windows\system32\dxtrans.dll
2014-03-21 02:04 . 2014-03-21 02:04	263376	----a-w-	c:\windows\system32\iedkcs32.dll
2014-03-21 02:04 . 2014-03-21 02:04	247808	----a-w-	c:\windows\system32\msls31.dll
2014-03-21 02:04 . 2014-03-21 02:04	24576	----a-w-	c:\windows\SysWow64\licmgr10.dll
2014-03-21 02:04 . 2014-03-21 02:04	243200	----a-w-	c:\windows\system32\webcheck.dll
2014-03-21 02:04 . 2014-03-21 02:04	235520	----a-w-	c:\windows\system32\url.dll
2014-03-21 02:04 . 2014-03-21 02:04	235008	----a-w-	c:\windows\system32\elshyph.dll
2014-03-21 02:04 . 2014-03-21 02:04	182272	----a-w-	c:\windows\SysWow64\msls31.dll
2014-03-21 02:04 . 2014-03-21 02:04	167424	----a-w-	c:\windows\system32\iexpress.exe
2014-03-21 02:04 . 2014-03-21 02:04	151552	----a-w-	c:\windows\SysWow64\iexpress.exe
2014-03-21 02:04 . 2014-03-21 02:04	147968	----a-w-	c:\windows\system32\occache.dll
2014-03-21 02:04 . 2014-03-21 02:04	143872	----a-w-	c:\windows\system32\wextract.exe
2014-03-21 02:04 . 2014-03-21 02:04	139264	----a-w-	c:\windows\SysWow64\wextract.exe
2014-03-21 02:04 . 2014-03-21 02:04	13824	----a-w-	c:\windows\system32\mshta.exe
2014-03-21 02:04 . 2014-03-21 02:04	135680	----a-w-	c:\windows\system32\iepeers.dll
2014-03-21 02:04 . 2014-03-21 02:04	13312	----a-w-	c:\windows\SysWow64\mshta.exe
2014-03-21 02:04 . 2014-03-21 02:04	13312	----a-w-	c:\windows\system32\msfeedssync.exe
2014-03-21 02:04 . 2014-03-21 02:04	131072	----a-w-	c:\windows\system32\IEAdvpack.dll
2014-03-21 02:04 . 2014-03-21 02:04	1228800	----a-w-	c:\windows\system32\mshtmlmedia.dll
2014-03-21 02:04 . 2014-03-21 02:04	111616	----a-w-	c:\windows\SysWow64\IEAdvpack.dll
2014-03-21 02:04 . 2014-03-21 02:04	105984	----a-w-	c:\windows\system32\iesysprep.dll
2014-03-21 02:04 . 2014-03-21 02:04	1051136	----a-w-	c:\windows\SysWow64\mshtmlmedia.dll
2014-03-21 02:04 . 2014-03-21 02:04	101376	----a-w-	c:\windows\system32\inseng.dll
2014-03-20 21:03 . 2010-08-26 09:11	18302384	----a-w-	c:\windows\system32\nvwgf2umx.dll
2014-03-20 21:03 . 2010-08-26 09:11	15783992	----a-w-	c:\windows\SysWow64\nvwgf2um.dll
2014-03-20 21:03 . 2014-03-20 21:03	947808	----a-w-	c:\windows\system32\nvumdshimx.dll
2014-03-20 21:03 . 2014-03-20 21:03	832936	----a-w-	c:\windows\SysWow64\nvumdshim.dll
2014-03-20 21:03 . 2014-03-20 21:03	9690424	----a-w-	c:\windows\SysWow64\nvopencl.dll
2014-03-20 21:03 . 2014-03-20 21:03	11589272	----a-w-	c:\windows\system32\nvopencl.dll
2014-03-20 21:02 . 2014-03-20 21:02	31474976	----a-w-	c:\windows\system32\nvoglv64.dll
2014-03-20 21:02 . 2014-03-20 21:02	353504	----a-w-	c:\windows\system32\nvoglshim64.dll
2014-03-20 21:02 . 2014-03-20 21:02	305600	----a-w-	c:\windows\SysWow64\nvoglshim32.dll
2014-03-20 21:02 . 2014-03-20 21:02	23716640	----a-w-	c:\windows\SysWow64\nvoglv32.dll
2014-03-20 21:02 . 2014-03-20 21:02	12708128	----a-w-	c:\windows\system32\drivers\nvlddmkm.sys
2014-03-20 21:02 . 2014-03-20 21:02	892704	----a-w-	c:\windows\system32\NvIFR64.dll
2014-03-20 21:02 . 2014-03-20 21:02	863064	----a-w-	c:\windows\SysWow64\NvIFR.dll
2014-03-20 21:02 . 2014-03-20 21:02	174296	----a-w-	c:\windows\system32\nvinitx.dll
2014-03-20 21:02 . 2014-03-20 21:02	148016	----a-w-	c:\windows\SysWow64\nvinit.dll
2014-03-20 21:02 . 2014-03-20 21:02	877856	----a-w-	c:\windows\system32\NvFBC64.dll
2014-03-20 21:02 . 2014-03-20 21:02	846168	----a-w-	c:\windows\SysWow64\NvFBC.dll
2014-03-20 21:02 . 2014-03-20 21:02	1885472	----a-w-	c:\windows\system32\nvdispco6433523.dll
2014-03-20 21:02 . 2014-03-20 21:02	1516488	----a-w-	c:\windows\system32\nvdispgenco6433523.dll
2014-03-20 21:02 . 2014-03-20 21:02	3143456	----a-w-	c:\windows\system32\nvcuvid.dll
2014-03-20 21:02 . 2014-03-20 21:02	17755424	----a-w-	c:\windows\system32\nvd3dumx.dll
2014-03-20 21:02 . 2010-08-26 09:10	14709720	----a-w-	c:\windows\SysWow64\nvd3dum.dll
2014-03-20 21:02 . 2014-03-20 21:02	9728064	----a-w-	c:\windows\SysWow64\nvcuda.dll
2014-03-20 21:02 . 2014-03-20 21:02	2958792	----a-w-	c:\windows\SysWow64\nvcuvid.dll
2014-03-20 21:02 . 2014-03-20 21:02	2783008	----a-w-	c:\windows\system32\nvcuvenc.dll
2014-03-20 21:02 . 2014-03-20 21:02	2411976	----a-w-	c:\windows\SysWow64\nvcuvenc.dll
2014-03-20 21:02 . 2014-03-20 21:02	11636176	----a-w-	c:\windows\system32\nvcuda.dll
2014-03-20 21:02 . 2014-03-20 21:02	17561544	----a-w-	c:\windows\SysWow64\nvcompiler.dll
2014-03-20 21:02 . 2014-03-20 21:02	25255256	----a-w-	c:\windows\system32\nvcompiler.dll
2014-03-20 21:02 . 2010-08-26 09:10	3093280	----a-w-	c:\windows\system32\nvapi64.dll
2014-03-20 21:02 . 2014-03-20 21:02	2715264	----a-w-	c:\windows\SysWow64\nvapi.dll
2014-03-20 02:11 . 2014-03-20 02:11	9728	---ha-w-	c:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-03-20 02:11 . 2014-03-20 02:11	9728	---ha-w-	c:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-03-20 02:11 . 2014-03-20 02:11	648192	----a-w-	c:\windows\system32\d3d10level9.dll
2014-03-20 02:11 . 2014-03-20 02:11	604160	----a-w-	c:\windows\SysWow64\d3d10level9.dll
2014-03-20 02:11 . 2014-03-20 02:11	5632	---ha-w-	c:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-03-20 02:11 . 2014-03-20 02:11	5632	---ha-w-	c:\windows\SysWow64\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-03-20 02:11 . 2014-03-20 02:11	5632	---ha-w-	c:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-03-20 02:11 . 2014-03-20 02:11	5632	---ha-w-	c:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-03-20 02:11 . 2014-03-20 02:11	522752	----a-w-	c:\windows\system32\XpsGdiConverter.dll
2014-03-20 02:11 . 2014-03-20 02:11	4096	---ha-w-	c:\windows\SysWow64\api-ms-win-downlevel-user32-l1-1-0.dll
2014-03-20 02:11 . 2014-03-20 02:11	4096	---ha-w-	c:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2014-03-20 02:11 . 2014-03-20 02:11	364544	----a-w-	c:\windows\SysWow64\XpsGdiConverter.dll
2014-03-20 02:11 . 2014-03-20 02:11	363008	----a-w-	c:\windows\system32\dxgi.dll
2014-03-20 02:11 . 2014-03-20 02:11	3584	---ha-w-	c:\windows\SysWow64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-03-20 02:11 . 2014-03-20 02:11	3584	---ha-w-	c:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
.
.
((((((((((((((((((((((((((((   Autostartpunkte der Registrierung   ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. 
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{A18A516C-AA41-46A9-92DB-60208917E442}]
2013-12-11 14:49	184400	----a-w-	c:\program files (x86)\Avira\Internet Explorer\avira32.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"swg"="c:\program files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2010-05-11 39408]
"HP Officejet Pro 8600 (NET)"="c:\program files\HP\HP Officejet Pro 8600\Bin\ScanToPCActivationApp.exe" [2012-10-17 2573416]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"Hotkey Utility"="c:\program files (x86)\Packard Bell\Hotkey Utility\HotkeyUtility.exe" [2010-08-04 611872]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-12-21 959904]
"HP Software Update"="c:\program files (x86)\Hp\HP Software Update\HPWuSchd2.exe" [2011-10-28 49208]
"avgnt"="c:\program files (x86)\Avira\AntiVir Desktop\avgnt.exe" [2014-02-25 689744]
"Adobe Acrobat Speed Launcher"="c:\program files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe" [2008-06-12 37232]
"Acrobat Assistant 8.0"="c:\program files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe" [2008-06-11 640376]
"Ulead AutoDetector v2"="c:\program files (x86)\Common Files\Ulead Systems\AutoDetector\monitor.exe" [2004-11-26 90112]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"AviraSpeedup"="c:\program files (x86)\Avira\AviraSpeedup\avira_system_speedup.exe" [2014-04-03 5085416]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Photo Frame.lnk - c:\program files (x86)\Northstar\Photo Frame\Photo Frame.exe [2010-5-11 93568]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon]
"Userinit"="userinit.exe"
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 vosr;Service Component of VO;c:\users\Tce\AppData\Roaming\VOPackage\VOsrv.exe;c:\users\Tce\AppData\Roaming\VOPackage\VOsrv.exe [x]
R3 AdobeActiveFileMonitor8.0;Adobe Active File Monitor V8;c:\program files (x86)\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe;c:\program files (x86)\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe [x]
R3 BBSvc;Bing Bar Update Service;c:\program files (x86)\Microsoft\BingBar\BBSvc.EXE;c:\program files (x86)\Microsoft\BingBar\BBSvc.EXE [x]
R3 EraserUtilDrv11312;EraserUtilDrv11312;c:\program files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilDrv11312.sys;c:\program files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilDrv11312.sys [x]
R3 FirebirdServerMAGIXInstance;Firebird Server - MAGIX Instance;c:\program files (x86)\MAGIX\Common\Database\bin\fbserver.exe;c:\program files (x86)\MAGIX\Common\Database\bin\fbserver.exe [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 LVRS64;Logitech RightSound Filter Driver;c:\windows\system32\DRIVERS\lvrs64.sys;c:\windows\SYSNATIVE\DRIVERS\lvrs64.sys [x]
R3 LVUVC64;Logitech Webcam Pro 9000(UVC);c:\windows\system32\DRIVERS\lvuvc64.sys;c:\windows\SYSNATIVE\DRIVERS\lvuvc64.sys [x]
R3 MBAMSwissArmy;MBAMSwissArmy;c:\windows\system32\drivers\MBAMSwissArmy.sys;c:\windows\SYSNATIVE\drivers\MBAMSwissArmy.sys [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 UPnPService;UPnPService;c:\program files (x86)\Common Files\MAGIX Shared\UPnPService\UPnPService.exe;c:\program files (x86)\Common Files\MAGIX Shared\UPnPService\UPnPService.exe [x]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe;c:\program files\Windows Live\Mesh\wlcrasvc.exe [x]
S0 PxHlpa64;PxHlpa64;c:\windows\System32\Drivers\PxHlpa64.sys;c:\windows\SYSNATIVE\Drivers\PxHlpa64.sys [x]
S1 avkmgr;avkmgr;c:\windows\system32\DRIVERS\avkmgr.sys;c:\windows\SYSNATIVE\DRIVERS\avkmgr.sys [x]
S2 AdobeActiveFileMonitor10.0;Adobe Active File Monitor V10;c:\program files (x86)\Adobe\Elements 10 Organizer\PhotoshopElementsFileAgent.exe;c:\program files (x86)\Adobe\Elements 10 Organizer\PhotoshopElementsFileAgent.exe [x]
S2 AntiVirSchedulerService;Avira Planer;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe [x]
S2 Greg_Service;GRegService;c:\program files (x86)\Packard Bell\Registration\GregHSRW.exe;c:\program files (x86)\Packard Bell\Registration\GregHSRW.exe [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S2 UMVPFSrv;UMVPFSrv;c:\program files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe;c:\program files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe [x]
S2 Updater Service;Updater Service;c:\program files\Packard Bell\Packard Bell Updater\UpdaterService.exe;c:\program files\Packard Bell\Packard Bell Updater\UpdaterService.exe [x]
S2 USBS3S4Detection;USBS3S4Detection;c:\oem\USBDECTION\USBS3S4Detection.exe;c:\oem\USBDECTION\USBS3S4Detection.exe [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-04-10 18:04	1077576	----a-w-	c:\program files (x86)\Google\Chrome\Application\34.0.1847.116\Installer\chrmstp.exe
.
Inhalt des "geplante Tasks" Ordners
.
2014-04-21 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-03-14 08:24]
.
2014-04-21 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-03-13 18:47]
.
2014-04-21 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2014-03-13 18:47]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IAAnotif"="c:\program files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe" [2009-10-13 186904]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2010-02-09 10060320]
"AdobeAAMUpdater-1.0"="c:\program files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2012-09-20 444904]
"NvBackend"="c:\program files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" [2014-03-20 1797064]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=c:\windows\System32\acaptuser64.dll
.
------- Zusätzlicher Suchlauf -------
.
uStart Page = hxxp://google.de/
uLocal Page = c:\windows\system32\blank.htm
mDefault_Search_URL = hxxp://www.google.com
mDefault_Page_URL = hxxp://www.google.com
mStart Page = hxxp://www.google.com
mLocal Page = c:\windows\SysWOW64\blank.htm
mSearch Page = hxxp://www.google.com
IE: An vorhandene PDF-Datei anfügen - c:\program files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppend.html
IE: In Adobe PDF konvertieren - c:\program files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECapture.html
IE: Linkziel an vorhandene PDF-Datei anhängen - c:\program files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
IE: Linkziel in Adobe PDF konvertieren - c:\program files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
IE: Nach Microsoft E&xel exportieren - c:\progra~2\MICROS~2\Office12\EXCEL.EXE/3000
TCP: DhcpNameServer = 192.168.2.1
FF - ProfilePath - c:\users\Tce\AppData\Roaming\Mozilla\Firefox\Profiles\qeubepd2.default\
FF - prefs.js: browser.search.selectedEngine - Web Search (powered by Google)
FF - prefs.js: browser.startup.homepage - hxxp://www.google.de/
FF - prefs.js: keyword.URL - hxxp://search.toolbars.alexa.com/?ver=alxf-2.19&src=ab&aid=viw8j1sZQw00qN&q=
.
- - - - Entfernte verwaiste Registrierungseinträge - - - -
.
Toolbar-Locked - (no file)
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
Wow6432Node-HKU-Default-RunOnce-SPReview - c:\windows\System32\SPReview\SPReview.exe
HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start
Toolbar-Locked - (no file)
.
.
.
--------------------- Gesperrte Registrierungsschluessel ---------------------
.
[HKEY_USERS\S-1-5-21-1934781817-2233350501-3576918985-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.eml\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="WindowsLiveMail.Email.1"
.
[HKEY_USERS\S-1-5-21-1934781817-2233350501-3576918985-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.vcf\UserChoice]
@Denied: (2) (LocalSystem)
"Progid"="WindowsLiveMail.VCard.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil10c.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\LocalServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\FlashUtil10c.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.10"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10c.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}]
@Denied: (A 2) (Everyone)
@="IFlashBroker3"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Zeit der Fertigstellung: 2014-04-21  22:17:13
ComboFix-quarantined-files.txt  2014-04-21 20:17
.
Vor Suchlauf: 10 Verzeichnis(se), 393.403.760.640 Bytes frei
Nach Suchlauf: 16 Verzeichnis(se), 394.279.129.088 Bytes frei
.
- - End Of File - - B83F049F1CA3B5BDC523C8C5FD388E33
A36C5E4F47E84449FF07ED3517B43A31
         

Alt 22.04.2014, 14:51   #9
schrauber
/// the machine
/// TB-Ausbilder
 

updownlinkg.com - Standard

updownlinkg.com



Downloade Dir bitte Malwarebytes Anti-Malware
  • Installiere das Programm in den vorgegebenen Pfad. (Bebilderte Anleitung zu MBAM)
  • Starte Malwarebytes' Anti-Malware (MBAM).
  • Klicke im Anschluss auf Scannen, wähle den Bedrohungssuchlauf aus und klicke auf Suchlauf starten.
  • Lass am Ende des Suchlaufs alle Funde (falls vorhanden) in die Quarantäne verschieben. Klicke dazu auf Auswahl entfernen.
  • Lass deinen Rechner ggf. neu starten, um die Bereinigung abzuschließen.
  • Starte MBAM, klicke auf Verlauf und dann auf Anwendungsprotokolle.
  • Wähle das neueste Scan-Protokoll aus und klicke auf Export. Wähle Textdatei (.txt) aus und speichere die Datei als mbam.txt auf dem Desktop ab. Das Logfile von MBAM findest du hier.
  • Füge den Inhalt der mbam.txt mit deiner nächsten Antwort hinzu.


Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade Junkware Removal Tool auf Deinen Desktop

  • Starte das Tool mit Doppelklick. Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten.
  • Drücke eine beliebige Taste, um das Tool zu starten.
  • Je nach System kann der Scan eine Weile dauern.
  • Wenn das Tool fertig ist wird das Logfile (JRT.txt) auf dem Desktop gespeichert und automatisch geöffnet.
  • Bitte poste den Inhalt der JRT.txt in Deiner nächsten Antwort.


und ein frisches FRST log bitte.
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Antwort

Themen zu updownlinkg.com
immer wieder, installiere, java, jungs, kleine, runter, seite, tagen



Zum Thema updownlinkg.com - Hallo Jungs und Mädels ich habe seit tagen dieses kleine Problem. Es geht immer wieder eine seite auf und fordert mich auf java zu installieren Zitat: updownlinkg.com hxxp://www.updownlinkg.com/DE/?dv1=JG8JFD2E&dv2=&dv3=&dv4=Dren-Rm-DE&sec_id=qWJ8vBQjIEzEzreEzEv6D0i3C9h2DWioI07jDc1%3gA8KWfAVd7BM0cV1RNkwKNaw0MiNR7AweNAwKhuhhMa80cVRciBKehuzOcVQROX%EB%EB&marketing_fid=MTM5Nzg5NDQxNi0 wNzExYTA5MTQ2MDkxZmM5YzE4N2QzZjQ0NWE1NmUzOA== Wie - updownlinkg.com...
Archiv
Du betrachtest: updownlinkg.com auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.