Code:
Alles auswählen Aufklappen ATTFilter
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe
(AVM Berlin) C:\Program Files\avmwlanstick\FRITZWLANMini.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDWelcome.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDScan.exe
(Microsoft Corporation) C:\Windows\System32\wuauclt.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Farbar) C:\Users\Malle\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U2CGP3L\FRST[1].exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AVMWlanClient] => C:\Program Files\avmwlanstick\FRITZWLANMini.exe [283136 2007-02-02] (AVM Berlin)
HKLM\...\Run: [SDTray] => C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.)
Winlogon\Notify\SDWinLogon: SDWinLogon.dll [X]
HKU\S-1-5-21-642370355-1417413621-2198617133-1000\...\MountPoints2: {a216d502-3ded-11e4-9ebf-00252270ebe5} - J:\pushinst.exe
BootExecute: autocheck autochk * sdnclean.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.dell.com
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.dell.com
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
FireFox:
========
Chrome:
=======
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 SDScannerService; C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S3 avmeject; C:\Windows\System32\drivers\avmeject.sys [4352 2007-01-26] (AVM Berlin) [File not signed]
R3 FWLANUSB; C:\Windows\System32\DRIVERS\fwlanusb.sys [265088 2007-01-26] (AVM GmbH)
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-09-17 21:19 - 2014-09-17 21:25 - 00000000 ____D () C:\FRST
2014-09-17 21:10 - 2014-09-17 21:10 - 00057560 _____ () C:\Users\Malle\AppData\Local\GDIPFONTCACHEV1.DAT
2014-09-17 18:26 - 2014-09-17 18:26 - 00000870 _____ () C:\Users\Malle\Documents\lol.txt
2014-09-17 18:26 - 2014-09-17 18:26 - 00000869 _____ () C:\Users\Malle\Documents\xd.txt
2014-09-17 17:27 - 2014-09-17 20:57 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2014-09-17 17:27 - 2014-09-17 17:36 - 00000000 ____D () C:\Program Files\Spybot - Search & Destroy 2
2014-09-17 17:27 - 2014-09-17 17:27 - 00002131 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2014-09-17 17:27 - 2014-09-17 17:27 - 00002119 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2014-09-17 17:27 - 2014-09-17 17:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
2014-09-17 17:27 - 2013-09-20 10:49 - 00018968 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean.exe
2014-09-17 16:25 - 2014-09-17 16:25 - 00001750 _____ () C:\Users\Public\Desktop\Browserwahl.lnk
2014-09-17 12:43 - 2014-08-16 07:36 - 06025728 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-09-17 12:43 - 2014-08-16 07:36 - 01266176 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-09-17 12:43 - 2014-08-16 07:36 - 00981504 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-09-17 12:43 - 2014-08-16 07:36 - 00627712 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-09-17 12:43 - 2014-08-16 07:36 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-09-17 12:43 - 2014-08-16 07:36 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-09-17 12:43 - 2014-08-16 07:36 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-09-17 12:43 - 2014-08-16 07:35 - 11019264 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-09-17 12:43 - 2014-08-16 07:35 - 02086400 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-09-17 12:43 - 2014-08-16 07:35 - 01466368 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-09-17 12:43 - 2014-08-16 07:35 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-09-17 12:43 - 2014-08-16 07:35 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-09-17 12:43 - 2014-08-16 07:35 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-09-17 12:43 - 2014-08-16 07:35 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-09-17 12:43 - 2014-08-16 07:35 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-09-17 12:43 - 2014-08-16 07:35 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-09-17 12:43 - 2014-08-16 07:35 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-09-17 12:43 - 2014-08-16 06:48 - 01638912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-09-17 12:41 - 2012-07-26 05:21 - 00196608 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe
2014-09-17 12:41 - 2012-07-26 05:20 - 00613888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll
2014-09-17 12:41 - 2012-07-26 05:20 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll
2014-09-17 12:41 - 2012-07-26 05:20 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll
2014-09-17 12:41 - 2012-07-26 05:20 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll
2014-09-17 12:41 - 2012-07-26 04:33 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys
2014-09-17 12:41 - 2012-07-26 04:32 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys
2014-09-17 12:41 - 2012-06-02 16:57 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
2014-09-17 12:40 - 2014-07-01 00:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll
2014-09-17 12:40 - 2014-06-06 08:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2014-09-17 12:40 - 2014-03-09 23:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe
2014-09-17 12:40 - 2014-03-09 23:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll
2014-09-17 12:40 - 2012-03-01 07:46 - 00019824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys
2014-09-17 12:40 - 2012-03-01 07:37 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2014-09-17 12:40 - 2012-03-01 07:33 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2014-09-17 12:40 - 2012-03-01 07:29 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll
2014-09-17 12:39 - 2010-02-11 09:10 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\browserchoice.exe
2014-09-17 12:38 - 2013-05-10 06:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2014-09-17 12:38 - 2013-05-10 06:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2014-09-17 12:19 - 2014-06-25 03:41 - 12874240 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-09-17 12:19 - 2014-06-05 16:26 - 01059840 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-09-17 12:19 - 2014-04-25 04:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2014-09-17 12:19 - 2014-04-12 04:15 - 00136640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-09-17 12:19 - 2014-04-12 04:15 - 00067520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2014-09-17 12:19 - 2014-04-12 04:12 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2014-09-17 12:19 - 2014-04-12 04:12 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2014-09-17 12:19 - 2014-04-12 04:12 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2014-09-17 12:19 - 2014-04-12 04:11 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2014-09-17 12:19 - 2014-03-04 11:17 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-09-17 12:19 - 2014-03-04 11:17 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-09-17 12:19 - 2014-03-04 11:17 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-09-17 12:19 - 2014-03-04 11:17 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-09-17 12:19 - 2014-03-04 11:17 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-09-17 12:19 - 2014-03-04 11:17 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-09-17 12:19 - 2013-12-04 04:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2014-09-17 12:19 - 2013-12-04 04:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2014-09-17 12:19 - 2013-12-04 04:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2014-09-17 12:19 - 2013-12-04 04:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2014-09-17 12:19 - 2013-12-04 04:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2014-09-17 12:19 - 2013-12-04 03:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2014-09-17 12:19 - 2013-12-04 03:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2014-09-17 12:19 - 2013-12-04 03:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2014-09-17 12:19 - 2013-12-04 03:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2014-09-17 12:19 - 2013-11-27 03:14 - 00258560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2014-09-17 12:19 - 2013-11-27 03:13 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2014-09-17 12:19 - 2013-11-27 03:13 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2014-09-17 12:19 - 2013-11-27 03:13 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2014-09-17 12:19 - 2013-11-27 03:13 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2014-09-17 12:19 - 2013-11-27 03:13 - 00006016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2014-09-17 12:19 - 2013-09-25 03:56 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-09-17 12:19 - 2013-07-04 14:16 - 00369848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2014-09-17 12:19 - 2013-06-26 00:56 - 00527064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2014-09-17 12:19 - 2013-06-15 05:38 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2014-09-17 12:19 - 2013-02-27 07:05 - 00101720 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2014-09-17 12:19 - 2013-02-27 06:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2014-09-17 12:19 - 2013-02-27 06:49 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2014-09-17 12:19 - 2013-02-27 06:49 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2014-09-17 12:19 - 2012-11-29 00:57 - 00047720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys
2014-09-17 12:19 - 2012-11-29 00:57 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll
2014-09-17 12:19 - 2012-11-29 00:57 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
2014-09-17 12:19 - 2011-04-09 07:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2014-09-17 12:19 - 2011-02-23 06:47 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2014-09-17 12:19 - 2011-02-23 06:47 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2014-09-17 12:19 - 2011-02-23 06:47 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2014-09-17 12:19 - 2011-02-23 06:47 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys
2014-09-17 12:11 - 2014-08-25 06:53 - 00231584 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-09-17 12:10 - 2012-02-17 07:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2014-09-17 12:10 - 2012-02-17 06:14 - 00183808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2014-09-17 12:10 - 2012-02-17 06:13 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys
2014-09-17 12:02 - 2014-05-14 18:23 - 01973728 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2014-09-17 12:02 - 2014-05-14 18:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2014-09-17 12:02 - 2014-05-14 18:23 - 00054240 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2014-09-17 12:02 - 2014-05-14 18:23 - 00045536 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2014-09-17 12:02 - 2014-05-14 18:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2014-09-17 12:02 - 2014-05-14 18:17 - 02425856 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2014-09-17 12:02 - 2014-05-14 18:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2014-09-17 12:02 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2014-09-17 12:02 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2014-09-17 09:35 - 2014-09-17 09:35 - 00000000 ____D () C:\Hotfix
2014-09-17 09:35 - 2014-09-16 23:49 - 00000000 ____D () C:\Windows\Panther
2014-09-17 09:35 - 2011-02-16 04:16 - 00000029 ___RH () C:\Windows\version
2014-09-17 09:35 - 2011-02-16 04:16 - 00000013 ____R () C:\Windows\csup.txt
2014-09-17 09:34 - 2014-09-17 15:51 - 00000000 ____D () C:\Windows\system32\Drivers\de-DE
2014-09-17 09:34 - 2014-09-17 09:34 - 00000000 ____D () C:\Windows\system32\XPSViewer
2014-09-17 09:34 - 2014-09-17 09:34 - 00000000 ____D () C:\Windows\system32\de
2014-09-17 09:34 - 2014-09-17 09:34 - 00000000 ____D () C:\Windows\system32\0407
2014-09-17 09:34 - 2014-09-17 09:34 - 00000000 ____D () C:\Windows\de-DE
2014-09-17 00:10 - 2014-09-17 00:10 - 00011187 _____ () C:\Windows\avmfwlanci.log
2014-09-17 00:10 - 2014-09-17 00:10 - 00000000 ____D () C:\Windows\AVM_Driver
2014-09-17 00:10 - 2014-09-17 00:10 - 00000000 ____D () C:\Users\Malle\AVM_Driver
2014-09-17 00:10 - 2014-09-17 00:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FRITZ!WLAN
2014-09-17 00:10 - 2014-09-17 00:10 - 00000000 ____D () C:\Program Files\avmwlanstick
2014-09-17 00:10 - 2007-01-26 01:00 - 00265088 _____ (AVM GmbH) C:\Windows\system32\Drivers\fwlanusb.sys
2014-09-17 00:10 - 2007-01-26 01:00 - 00097360 _____ () C:\Windows\system32\Drivers\Fwusb1b.bin
2014-09-17 00:10 - 2007-01-26 01:00 - 00074752 _____ (AVM Berlin) C:\Windows\system32\fwlanci.dll
2014-09-17 00:10 - 2007-01-26 01:00 - 00004352 _____ (AVM Berlin) C:\Windows\system32\Drivers\avmeject.sys
2014-09-16 23:49 - 2014-09-17 00:10 - 00000000 ____D () C:\Users\Malle
2014-09-16 23:49 - 2014-09-16 23:49 - 00001409 _____ () C:\Users\Malle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-09-16 23:49 - 2014-09-16 23:49 - 00000020 ___SH () C:\Users\Malle\ntuser.ini
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Malle\Startmenü
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Malle\Netzwerkumgebung
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Malle\Druckumgebung
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Malle\Documents\Eigene Musik
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Malle\Documents\Eigene Bilder
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Malle\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Malle\AppData\Local\Verlauf
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default\Startmenü
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default\Druckumgebung
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Programme
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\ProgramData\Startmenü
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\ProgramData\Dokumente
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 __SHD () C:\Recovery
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 ____D () C:\Users\Malle\AppData\Local\VirtualStore
2014-09-16 23:49 - 2009-07-14 06:42 - 00000000 ___RD () C:\Users\Malle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-09-16 23:49 - 2009-07-14 06:37 - 00000000 ___RD () C:\Users\Malle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-09-16 23:40 - 2014-09-16 23:40 - 00001345 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2014-09-16 23:40 - 2014-09-16 23:40 - 00001326 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2014-09-16 23:39 - 2014-09-17 20:18 - 01790869 _____ () C:\Windows\WindowsUpdate.log
2014-09-16 23:38 - 2014-09-16 23:38 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2014-09-16 23:37 - 2014-09-16 23:40 - 00001355 _____ () C:\Windows\TSSysprep.log
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-09-17 21:25 - 2014-09-17 21:19 - 00000000 ____D () C:\FRST
2014-09-17 21:10 - 2014-09-17 21:10 - 00057560 _____ () C:\Users\Malle\AppData\Local\GDIPFONTCACHEV1.DAT
2014-09-17 20:57 - 2014-09-17 17:27 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2014-09-17 20:30 - 2009-07-14 06:34 - 00020848 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-09-17 20:30 - 2009-07-14 06:34 - 00020848 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-09-17 20:18 - 2014-09-16 23:39 - 01790869 _____ () C:\Windows\WindowsUpdate.log
2014-09-17 19:10 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\rescache
2014-09-17 19:09 - 2010-11-21 02:38 - 00000000 ____D () C:\Windows\system32\WCN
2014-09-17 19:09 - 2010-11-21 02:38 - 00000000 ____D () C:\Windows\system32\Printing_Admin_Scripts
2014-09-17 19:09 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\MUI
2014-09-17 19:09 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\com
2014-09-17 18:35 - 2010-11-20 23:01 - 01472002 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-09-17 18:28 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-09-17 18:28 - 2009-07-14 06:39 - 00024802 _____ () C:\Windows\setupact.log
2014-09-17 18:26 - 2014-09-17 18:26 - 00000870 _____ () C:\Users\Malle\Documents\lol.txt
2014-09-17 18:26 - 2014-09-17 18:26 - 00000869 _____ () C:\Users\Malle\Documents\xd.txt
2014-09-17 17:36 - 2014-09-17 17:27 - 00000000 ____D () C:\Program Files\Spybot - Search & Destroy 2
2014-09-17 17:27 - 2014-09-17 17:27 - 00002131 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2014-09-17 17:27 - 2014-09-17 17:27 - 00002119 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2014-09-17 17:27 - 2014-09-17 17:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
2014-09-17 16:25 - 2014-09-17 16:25 - 00001750 _____ () C:\Users\Public\Desktop\Browserwahl.lnk
2014-09-17 16:03 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2014-09-17 15:51 - 2014-09-17 09:34 - 00000000 ____D () C:\Windows\system32\Drivers\de-DE
2014-09-17 15:51 - 2009-07-14 06:52 - 00000000 ____D () C:\Program Files\Windows Defender
2014-09-17 15:51 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\de-DE
2014-09-17 09:35 - 2014-09-17 09:35 - 00000000 ____D () C:\Hotfix
2014-09-17 09:35 - 2009-07-14 06:57 - 00025600 ___SH () C:\Windows\system32\config\BCD-Template.LOG
2014-09-17 09:35 - 2009-07-14 06:52 - 00028672 _____ () C:\Windows\system32\config\BCD-Template
2014-09-17 09:35 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\Recovery
2014-09-17 09:34 - 2014-09-17 09:34 - 00000000 ____D () C:\Windows\system32\XPSViewer
2014-09-17 09:34 - 2014-09-17 09:34 - 00000000 ____D () C:\Windows\system32\de
2014-09-17 09:34 - 2014-09-17 09:34 - 00000000 ____D () C:\Windows\system32\0407
2014-09-17 09:34 - 2014-09-17 09:34 - 00000000 ____D () C:\Windows\de-DE
2014-09-17 09:34 - 2010-11-21 02:47 - 00000000 ____D () C:\Program Files\Windows Journal
2014-09-17 09:34 - 2010-11-21 02:38 - 00000000 ____D () C:\Windows\system32\winrm
2014-09-17 09:34 - 2010-11-21 02:38 - 00000000 ____D () C:\Windows\system32\slmgr
2014-09-17 09:34 - 2010-11-21 02:38 - 00000000 ____D () C:\Windows\DigitalLocker
2014-09-17 09:34 - 2009-07-14 06:52 - 00000000 ____D () C:\Windows\system32\WinBioPlugIns
2014-09-17 09:34 - 2009-07-14 06:52 - 00000000 ____D () C:\Program Files\Windows Sidebar
2014-09-17 09:34 - 2009-07-14 06:52 - 00000000 ____D () C:\Program Files\Windows Photo Viewer
2014-09-17 09:34 - 2009-07-14 06:52 - 00000000 ____D () C:\Program Files\DVD Maker
2014-09-17 09:34 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\IME
2014-09-17 09:34 - 2009-07-14 04:37 - 00000000 ____D () C:\Program Files\Common Files\System
2014-09-17 00:12 - 2009-07-14 06:52 - 00000000 ____D () C:\Windows\system32\restore
2014-09-17 00:10 - 2014-09-17 00:10 - 00011187 _____ () C:\Windows\avmfwlanci.log
2014-09-17 00:10 - 2014-09-17 00:10 - 00000000 ____D () C:\Windows\AVM_Driver
2014-09-17 00:10 - 2014-09-17 00:10 - 00000000 ____D () C:\Users\Malle\AVM_Driver
2014-09-17 00:10 - 2014-09-17 00:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FRITZ!WLAN
2014-09-17 00:10 - 2014-09-17 00:10 - 00000000 ____D () C:\Program Files\avmwlanstick
2014-09-17 00:10 - 2014-09-16 23:49 - 00000000 ____D () C:\Users\Malle
2014-09-16 23:49 - 2014-09-17 09:35 - 00000000 ____D () C:\Windows\Panther
2014-09-16 23:49 - 2014-09-16 23:49 - 00001409 _____ () C:\Users\Malle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-09-16 23:49 - 2014-09-16 23:49 - 00000020 ___SH () C:\Users\Malle\ntuser.ini
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Malle\Startmenü
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Malle\Netzwerkumgebung
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Malle\Druckumgebung
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Malle\Documents\Eigene Musik
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Malle\Documents\Eigene Bilder
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Malle\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Malle\AppData\Local\Verlauf
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default\Startmenü
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default\Druckumgebung
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Programme
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\ProgramData\Startmenü
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\ProgramData\Dokumente
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 __SHD () C:\Recovery
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 ____D () C:\Users\Malle\AppData\Local\VirtualStore
2014-09-16 23:49 - 2009-07-14 04:37 - 00000000 __RHD () C:\Users\Default
2014-09-16 23:49 - 2009-07-14 04:37 - 00000000 ____D () C:\Program Files\Windows NT
2014-09-16 23:41 - 2009-07-14 06:33 - 00265640 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-09-16 23:40 - 2014-09-16 23:40 - 00001345 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2014-09-16 23:40 - 2014-09-16 23:40 - 00001326 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2014-09-16 23:40 - 2014-09-16 23:37 - 00001355 _____ () C:\Windows\TSSysprep.log
2014-09-16 23:40 - 2009-07-14 04:37 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2014-09-16 23:38 - 2014-09-16 23:38 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2014-09-16 23:37 - 2010-11-21 02:47 - 00000000 ____D () C:\Windows\CSC
2014-09-16 23:37 - 2009-07-14 06:34 - 00002790 _____ () C:\Windows\DtcInstall.log
2014-08-25 06:53 - 2014-09-17 12:11 - 00231584 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-09-17 19:00
==================== End Of Log ============================
Zitat:
Zitat von
Malle98 Code:
Alles auswählen Aufklappen ATTFilter
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe
(AVM Berlin) C:\Program Files\avmwlanstick\FRITZWLANMini.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDWelcome.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDScan.exe
(Microsoft Corporation) C:\Windows\System32\wuauclt.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Farbar) C:\Users\Malle\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\2U2CGP3L\FRST[1].exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AVMWlanClient] => C:\Program Files\avmwlanstick\FRITZWLANMini.exe [283136 2007-02-02] (AVM Berlin)
HKLM\...\Run: [SDTray] => C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.)
Winlogon\Notify\SDWinLogon: SDWinLogon.dll [X]
HKU\S-1-5-21-642370355-1417413621-2198617133-1000\...\MountPoints2: {a216d502-3ded-11e4-9ebf-00252270ebe5} - J:\pushinst.exe
BootExecute: autocheck autochk * sdnclean.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.dell.com
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.dell.com
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
FireFox:
========
Chrome:
=======
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 SDScannerService; C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S3 avmeject; C:\Windows\System32\drivers\avmeject.sys [4352 2007-01-26] (AVM Berlin) [File not signed]
R3 FWLANUSB; C:\Windows\System32\DRIVERS\fwlanusb.sys [265088 2007-01-26] (AVM GmbH)
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-09-17 21:19 - 2014-09-17 21:25 - 00000000 ____D () C:\FRST
2014-09-17 21:10 - 2014-09-17 21:10 - 00057560 _____ () C:\Users\Malle\AppData\Local\GDIPFONTCACHEV1.DAT
2014-09-17 18:26 - 2014-09-17 18:26 - 00000870 _____ () C:\Users\Malle\Documents\lol.txt
2014-09-17 18:26 - 2014-09-17 18:26 - 00000869 _____ () C:\Users\Malle\Documents\xd.txt
2014-09-17 17:27 - 2014-09-17 20:57 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2014-09-17 17:27 - 2014-09-17 17:36 - 00000000 ____D () C:\Program Files\Spybot - Search & Destroy 2
2014-09-17 17:27 - 2014-09-17 17:27 - 00002131 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2014-09-17 17:27 - 2014-09-17 17:27 - 00002119 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2014-09-17 17:27 - 2014-09-17 17:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
2014-09-17 17:27 - 2013-09-20 10:49 - 00018968 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean.exe
2014-09-17 16:25 - 2014-09-17 16:25 - 00001750 _____ () C:\Users\Public\Desktop\Browserwahl.lnk
2014-09-17 12:43 - 2014-08-16 07:36 - 06025728 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-09-17 12:43 - 2014-08-16 07:36 - 01266176 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-09-17 12:43 - 2014-08-16 07:36 - 00981504 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-09-17 12:43 - 2014-08-16 07:36 - 00627712 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-09-17 12:43 - 2014-08-16 07:36 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-09-17 12:43 - 2014-08-16 07:36 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-09-17 12:43 - 2014-08-16 07:36 - 00064512 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-09-17 12:43 - 2014-08-16 07:35 - 11019264 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-09-17 12:43 - 2014-08-16 07:35 - 02086400 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-09-17 12:43 - 2014-08-16 07:35 - 01466368 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-09-17 12:43 - 2014-08-16 07:35 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-09-17 12:43 - 2014-08-16 07:35 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-09-17 12:43 - 2014-08-16 07:35 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-09-17 12:43 - 2014-08-16 07:35 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-09-17 12:43 - 2014-08-16 07:35 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-09-17 12:43 - 2014-08-16 07:35 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-09-17 12:43 - 2014-08-16 07:35 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-09-17 12:43 - 2014-08-16 06:48 - 01638912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-09-17 12:41 - 2012-07-26 05:21 - 00196608 _____ (Microsoft Corporation) C:\Windows\system32\WUDFHost.exe
2014-09-17 12:41 - 2012-07-26 05:20 - 00613888 _____ (Microsoft Corporation) C:\Windows\system32\WUDFx.dll
2014-09-17 12:41 - 2012-07-26 05:20 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\WUDFPlatform.dll
2014-09-17 12:41 - 2012-07-26 05:20 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll
2014-09-17 12:41 - 2012-07-26 05:20 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\WUDFCoinstaller.dll
2014-09-17 12:41 - 2012-07-26 04:33 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFPf.sys
2014-09-17 12:41 - 2012-07-26 04:32 - 00155136 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WUDFRd.sys
2014-09-17 12:41 - 2012-06-02 16:57 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_User_01_11_00_Inbox_Critical.Wdf
2014-09-17 12:40 - 2014-07-01 00:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll
2014-09-17 12:40 - 2014-06-06 08:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2014-09-17 12:40 - 2014-03-09 23:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe
2014-09-17 12:40 - 2014-03-09 23:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll
2014-09-17 12:40 - 2012-03-01 07:46 - 00019824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fs_rec.sys
2014-09-17 12:40 - 2012-03-01 07:37 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2014-09-17 12:40 - 2012-03-01 07:33 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2014-09-17 12:40 - 2012-03-01 07:29 - 00005120 _____ (Microsoft Corporation) C:\Windows\system32\wmi.dll
2014-09-17 12:39 - 2010-02-11 09:10 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\browserchoice.exe
2014-09-17 12:38 - 2013-05-10 06:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2014-09-17 12:38 - 2013-05-10 06:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2014-09-17 12:19 - 2014-06-25 03:41 - 12874240 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-09-17 12:19 - 2014-06-05 16:26 - 01059840 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-09-17 12:19 - 2014-04-25 04:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2014-09-17 12:19 - 2014-04-12 04:15 - 00136640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-09-17 12:19 - 2014-04-12 04:15 - 00067520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2014-09-17 12:19 - 2014-04-12 04:12 - 00100352 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2014-09-17 12:19 - 2014-04-12 04:12 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2014-09-17 12:19 - 2014-04-12 04:12 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2014-09-17 12:19 - 2014-04-12 04:11 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2014-09-17 12:19 - 2014-03-04 11:17 - 00550912 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-09-17 12:19 - 2014-03-04 11:17 - 00259584 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-09-17 12:19 - 2014-03-04 11:17 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-09-17 12:19 - 2014-03-04 11:17 - 00172032 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-09-17 12:19 - 2014-03-04 11:17 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-09-17 12:19 - 2014-03-04 11:17 - 00017408 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-09-17 12:19 - 2013-12-04 04:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2014-09-17 12:19 - 2013-12-04 04:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2014-09-17 12:19 - 2013-12-04 04:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2014-09-17 12:19 - 2013-12-04 04:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2014-09-17 12:19 - 2013-12-04 04:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2014-09-17 12:19 - 2013-12-04 03:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2014-09-17 12:19 - 2013-12-04 03:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2014-09-17 12:19 - 2013-12-04 03:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2014-09-17 12:19 - 2013-12-04 03:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2014-09-17 12:19 - 2013-11-27 03:14 - 00258560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2014-09-17 12:19 - 2013-11-27 03:13 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2014-09-17 12:19 - 2013-11-27 03:13 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2014-09-17 12:19 - 2013-11-27 03:13 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2014-09-17 12:19 - 2013-11-27 03:13 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2014-09-17 12:19 - 2013-11-27 03:13 - 00006016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2014-09-17 12:19 - 2013-09-25 03:56 - 00220160 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-09-17 12:19 - 2013-07-04 14:16 - 00369848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2014-09-17 12:19 - 2013-06-26 00:56 - 00527064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2014-09-17 12:19 - 2013-06-15 05:38 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2014-09-17 12:19 - 2013-02-27 07:05 - 00101720 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2014-09-17 12:19 - 2013-02-27 06:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2014-09-17 12:19 - 2013-02-27 06:49 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2014-09-17 12:19 - 2013-02-27 06:49 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2014-09-17 12:19 - 2012-11-29 00:57 - 00047720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys
2014-09-17 12:19 - 2012-11-29 00:57 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll
2014-09-17 12:19 - 2012-11-29 00:57 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
2014-09-17 12:19 - 2011-04-09 07:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2014-09-17 12:19 - 2011-02-23 06:47 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2014-09-17 12:19 - 2011-02-23 06:47 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2014-09-17 12:19 - 2011-02-23 06:47 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2014-09-17 12:19 - 2011-02-23 06:47 - 00069632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys
2014-09-17 12:11 - 2014-08-25 06:53 - 00231584 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-09-17 12:10 - 2012-02-17 07:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2014-09-17 12:10 - 2012-02-17 06:14 - 00183808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2014-09-17 12:10 - 2012-02-17 06:13 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys
2014-09-17 12:02 - 2014-05-14 18:23 - 01973728 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2014-09-17 12:02 - 2014-05-14 18:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2014-09-17 12:02 - 2014-05-14 18:23 - 00054240 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2014-09-17 12:02 - 2014-05-14 18:23 - 00045536 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2014-09-17 12:02 - 2014-05-14 18:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2014-09-17 12:02 - 2014-05-14 18:17 - 02425856 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2014-09-17 12:02 - 2014-05-14 18:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2014-09-17 12:02 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2014-09-17 12:02 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2014-09-17 09:35 - 2014-09-17 09:35 - 00000000 ____D () C:\Hotfix
2014-09-17 09:35 - 2014-09-16 23:49 - 00000000 ____D () C:\Windows\Panther
2014-09-17 09:35 - 2011-02-16 04:16 - 00000029 ___RH () C:\Windows\version
2014-09-17 09:35 - 2011-02-16 04:16 - 00000013 ____R () C:\Windows\csup.txt
2014-09-17 09:34 - 2014-09-17 15:51 - 00000000 ____D () C:\Windows\system32\Drivers\de-DE
2014-09-17 09:34 - 2014-09-17 09:34 - 00000000 ____D () C:\Windows\system32\XPSViewer
2014-09-17 09:34 - 2014-09-17 09:34 - 00000000 ____D () C:\Windows\system32\de
2014-09-17 09:34 - 2014-09-17 09:34 - 00000000 ____D () C:\Windows\system32\0407
2014-09-17 09:34 - 2014-09-17 09:34 - 00000000 ____D () C:\Windows\de-DE
2014-09-17 00:10 - 2014-09-17 00:10 - 00011187 _____ () C:\Windows\avmfwlanci.log
2014-09-17 00:10 - 2014-09-17 00:10 - 00000000 ____D () C:\Windows\AVM_Driver
2014-09-17 00:10 - 2014-09-17 00:10 - 00000000 ____D () C:\Users\Malle\AVM_Driver
2014-09-17 00:10 - 2014-09-17 00:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FRITZ!WLAN
2014-09-17 00:10 - 2014-09-17 00:10 - 00000000 ____D () C:\Program Files\avmwlanstick
2014-09-17 00:10 - 2007-01-26 01:00 - 00265088 _____ (AVM GmbH) C:\Windows\system32\Drivers\fwlanusb.sys
2014-09-17 00:10 - 2007-01-26 01:00 - 00097360 _____ () C:\Windows\system32\Drivers\Fwusb1b.bin
2014-09-17 00:10 - 2007-01-26 01:00 - 00074752 _____ (AVM Berlin) C:\Windows\system32\fwlanci.dll
2014-09-17 00:10 - 2007-01-26 01:00 - 00004352 _____ (AVM Berlin) C:\Windows\system32\Drivers\avmeject.sys
2014-09-16 23:49 - 2014-09-17 00:10 - 00000000 ____D () C:\Users\Malle
2014-09-16 23:49 - 2014-09-16 23:49 - 00001409 _____ () C:\Users\Malle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-09-16 23:49 - 2014-09-16 23:49 - 00000020 ___SH () C:\Users\Malle\ntuser.ini
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Malle\Startmenü
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Malle\Netzwerkumgebung
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Malle\Druckumgebung
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Malle\Documents\Eigene Musik
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Malle\Documents\Eigene Bilder
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Malle\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Malle\AppData\Local\Verlauf
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default\Startmenü
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default\Druckumgebung
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Programme
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\ProgramData\Startmenü
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\ProgramData\Dokumente
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 __SHD () C:\Recovery
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 ____D () C:\Users\Malle\AppData\Local\VirtualStore
2014-09-16 23:49 - 2009-07-14 06:42 - 00000000 ___RD () C:\Users\Malle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-09-16 23:49 - 2009-07-14 06:37 - 00000000 ___RD () C:\Users\Malle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-09-16 23:40 - 2014-09-16 23:40 - 00001345 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2014-09-16 23:40 - 2014-09-16 23:40 - 00001326 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2014-09-16 23:39 - 2014-09-17 20:18 - 01790869 _____ () C:\Windows\WindowsUpdate.log
2014-09-16 23:38 - 2014-09-16 23:38 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2014-09-16 23:37 - 2014-09-16 23:40 - 00001355 _____ () C:\Windows\TSSysprep.log
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-09-17 21:25 - 2014-09-17 21:19 - 00000000 ____D () C:\FRST
2014-09-17 21:10 - 2014-09-17 21:10 - 00057560 _____ () C:\Users\Malle\AppData\Local\GDIPFONTCACHEV1.DAT
2014-09-17 20:57 - 2014-09-17 17:27 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2014-09-17 20:30 - 2009-07-14 06:34 - 00020848 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-09-17 20:30 - 2009-07-14 06:34 - 00020848 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-09-17 20:18 - 2014-09-16 23:39 - 01790869 _____ () C:\Windows\WindowsUpdate.log
2014-09-17 19:10 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\rescache
2014-09-17 19:09 - 2010-11-21 02:38 - 00000000 ____D () C:\Windows\system32\WCN
2014-09-17 19:09 - 2010-11-21 02:38 - 00000000 ____D () C:\Windows\system32\Printing_Admin_Scripts
2014-09-17 19:09 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\MUI
2014-09-17 19:09 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\com
2014-09-17 18:35 - 2010-11-20 23:01 - 01472002 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-09-17 18:28 - 2009-07-14 06:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-09-17 18:28 - 2009-07-14 06:39 - 00024802 _____ () C:\Windows\setupact.log
2014-09-17 18:26 - 2014-09-17 18:26 - 00000870 _____ () C:\Users\Malle\Documents\lol.txt
2014-09-17 18:26 - 2014-09-17 18:26 - 00000869 _____ () C:\Users\Malle\Documents\xd.txt
2014-09-17 17:36 - 2014-09-17 17:27 - 00000000 ____D () C:\Program Files\Spybot - Search & Destroy 2
2014-09-17 17:27 - 2014-09-17 17:27 - 00002131 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2014-09-17 17:27 - 2014-09-17 17:27 - 00002119 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2014-09-17 17:27 - 2014-09-17 17:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
2014-09-17 16:25 - 2014-09-17 16:25 - 00001750 _____ () C:\Users\Public\Desktop\Browserwahl.lnk
2014-09-17 16:03 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\Microsoft.NET
2014-09-17 15:51 - 2014-09-17 09:34 - 00000000 ____D () C:\Windows\system32\Drivers\de-DE
2014-09-17 15:51 - 2009-07-14 06:52 - 00000000 ____D () C:\Program Files\Windows Defender
2014-09-17 15:51 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\de-DE
2014-09-17 09:35 - 2014-09-17 09:35 - 00000000 ____D () C:\Hotfix
2014-09-17 09:35 - 2009-07-14 06:57 - 00025600 ___SH () C:\Windows\system32\config\BCD-Template.LOG
2014-09-17 09:35 - 2009-07-14 06:52 - 00028672 _____ () C:\Windows\system32\config\BCD-Template
2014-09-17 09:35 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\system32\Recovery
2014-09-17 09:34 - 2014-09-17 09:34 - 00000000 ____D () C:\Windows\system32\XPSViewer
2014-09-17 09:34 - 2014-09-17 09:34 - 00000000 ____D () C:\Windows\system32\de
2014-09-17 09:34 - 2014-09-17 09:34 - 00000000 ____D () C:\Windows\system32\0407
2014-09-17 09:34 - 2014-09-17 09:34 - 00000000 ____D () C:\Windows\de-DE
2014-09-17 09:34 - 2010-11-21 02:47 - 00000000 ____D () C:\Program Files\Windows Journal
2014-09-17 09:34 - 2010-11-21 02:38 - 00000000 ____D () C:\Windows\system32\winrm
2014-09-17 09:34 - 2010-11-21 02:38 - 00000000 ____D () C:\Windows\system32\slmgr
2014-09-17 09:34 - 2010-11-21 02:38 - 00000000 ____D () C:\Windows\DigitalLocker
2014-09-17 09:34 - 2009-07-14 06:52 - 00000000 ____D () C:\Windows\system32\WinBioPlugIns
2014-09-17 09:34 - 2009-07-14 06:52 - 00000000 ____D () C:\Program Files\Windows Sidebar
2014-09-17 09:34 - 2009-07-14 06:52 - 00000000 ____D () C:\Program Files\Windows Photo Viewer
2014-09-17 09:34 - 2009-07-14 06:52 - 00000000 ____D () C:\Program Files\DVD Maker
2014-09-17 09:34 - 2009-07-14 04:37 - 00000000 ____D () C:\Windows\IME
2014-09-17 09:34 - 2009-07-14 04:37 - 00000000 ____D () C:\Program Files\Common Files\System
2014-09-17 00:12 - 2009-07-14 06:52 - 00000000 ____D () C:\Windows\system32\restore
2014-09-17 00:10 - 2014-09-17 00:10 - 00011187 _____ () C:\Windows\avmfwlanci.log
2014-09-17 00:10 - 2014-09-17 00:10 - 00000000 ____D () C:\Windows\AVM_Driver
2014-09-17 00:10 - 2014-09-17 00:10 - 00000000 ____D () C:\Users\Malle\AVM_Driver
2014-09-17 00:10 - 2014-09-17 00:10 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FRITZ!WLAN
2014-09-17 00:10 - 2014-09-17 00:10 - 00000000 ____D () C:\Program Files\avmwlanstick
2014-09-17 00:10 - 2014-09-16 23:49 - 00000000 ____D () C:\Users\Malle
2014-09-16 23:49 - 2014-09-17 09:35 - 00000000 ____D () C:\Windows\Panther
2014-09-16 23:49 - 2014-09-16 23:49 - 00001409 _____ () C:\Users\Malle\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-09-16 23:49 - 2014-09-16 23:49 - 00000020 ___SH () C:\Users\Malle\ntuser.ini
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Malle\Startmenü
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Malle\Netzwerkumgebung
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Malle\Druckumgebung
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Malle\Documents\Eigene Musik
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Malle\Documents\Eigene Bilder
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Malle\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Malle\AppData\Local\Verlauf
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default\Startmenü
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default\Druckumgebung
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\Programme
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\ProgramData\Startmenü
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 _SHDL () C:\ProgramData\Dokumente
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 __SHD () C:\Recovery
2014-09-16 23:49 - 2014-09-16 23:49 - 00000000 ____D () C:\Users\Malle\AppData\Local\VirtualStore
2014-09-16 23:49 - 2009-07-14 04:37 - 00000000 __RHD () C:\Users\Default
2014-09-16 23:49 - 2009-07-14 04:37 - 00000000 ____D () C:\Program Files\Windows NT
2014-09-16 23:41 - 2009-07-14 06:33 - 00265640 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-09-16 23:40 - 2014-09-16 23:40 - 00001345 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2014-09-16 23:40 - 2014-09-16 23:40 - 00001326 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2014-09-16 23:40 - 2014-09-16 23:37 - 00001355 _____ () C:\Windows\TSSysprep.log
2014-09-16 23:40 - 2009-07-14 04:37 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2014-09-16 23:38 - 2014-09-16 23:38 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2014-09-16 23:37 - 2010-11-21 02:47 - 00000000 ____D () C:\Windows\CSC
2014-09-16 23:37 - 2009-07-14 06:34 - 00002790 _____ () C:\Windows\DtcInstall.log
2014-08-25 06:53 - 2014-09-17 12:11 - 00231584 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-09-17 19:00
==================== End Of Log ============================
Code:
Alles auswählen Aufklappen ATTFilter
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Spybot - Search and Destroy (Enabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Spybot - Search & Destroy (HKLM\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.)
==================== Custom CLSID (selected items): ==========================
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
==================== Restore Points =========================
16-09-2014 22:12:17 Wiederherstellen ohne Virus
17-09-2014 10:02:12 Windows Update
17-09-2014 10:11:40 Windows Update
17-09-2014 10:33:00 Windows Update
17-09-2014 17:07:36 Sprachpaketdeinstallation
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-14 04:04 - 2009-06-10 23:39 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
Task: {1C01A351-1F44-4098-82E3-3D0EE703B3CA} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files\Spybot - Search & Destroy 2\SDImmunize.exe
Task: {BDA6F2D6-5CB1-4160-BA52-E4C7DE9155F2} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe
Task: {C712EC64-8E6E-4EB5-AF12-0D0B15866D7F} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files\Spybot - Search & Destroy 2\SDScan.exe
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Loaded Modules (whitelisted) =============
2014-09-17 17:27 - 2014-05-13 12:04 - 00109400 _____ () C:\Program Files\Spybot - Search & Destroy 2\snlThirdParty150.bpl
2014-09-17 17:27 - 2014-05-13 12:04 - 00416600 _____ () C:\Program Files\Spybot - Search & Destroy 2\DEC150.bpl
2014-09-17 17:27 - 2014-05-13 12:04 - 00167768 _____ () C:\Program Files\Spybot - Search & Destroy 2\snlFileFormats150.bpl
2014-09-17 17:27 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files\Spybot - Search & Destroy 2\sqlite3.dll
2014-09-17 17:27 - 2012-04-03 17:06 - 00565640 _____ () C:\Program Files\Spybot - Search & Destroy 2\av\BDSmartDB.dll
2014-09-17 17:27 - 2014-04-25 14:11 - 02972112 _____ () C:\Program Files\Spybot - Search & Destroy 2\NotificationSpreader.dll
==================== Alternate Data Streams (whitelisted) =========
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
==================== Safe Mode (whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== EXE Association (whitelisted) =============
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
==================== MSCONFIG/TASK MANAGER disabled items =========
(Currently there is no automatic fix for this section.)
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (09/17/2014 06:28:25 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (09/17/2014 04:24:28 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (09/17/2014 03:57:04 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (09/17/2014 03:53:49 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (09/17/2014 00:16:53 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (09/17/2014 00:12:48 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Programm iexplore.exe, Version 8.0.7601.17514 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen.
Prozess-ID: e60
Startzeit: 01cfd25e381112da
Endzeit: 62
Anwendungspfad: C:\Program Files\Internet Explorer\iexplore.exe
Berichts-ID: 2098e6c1-3e53-11e4-87e8-001c4afb0cf6
Error: (09/17/2014 00:00:39 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (09/17/2014 00:07:53 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
System errors:
=============
Error: (09/17/2014 08:43:57 PM) (Source: DCOM) (EventID: 10016) (User: Malle-PC)
Description: AnwendungsspezifischLokalAktivierung{D3DCB472-7261-43CE-924B-0704BD730D5F}{D3DCB472-7261-43CE-924B-0704BD730D5F}Malle-PCMalleS-1-5-21-642370355-1417413621-2198617133-1000LocalHost (unter Verwendung von LRPC)
Error: (09/17/2014 08:43:57 PM) (Source: DCOM) (EventID: 10016) (User: Malle-PC)
Description: AnwendungsspezifischLokalAktivierung{145B4335-FE2A-4927-A040-7C35AD3180EF}{145B4335-FE2A-4927-A040-7C35AD3180EF}Malle-PCMalleS-1-5-21-642370355-1417413621-2198617133-1000LocalHost (unter Verwendung von LRPC)
Error: (09/17/2014 06:28:04 PM) (Source: Microsoft-Windows-Kernel-Processor-Power) (EventID: 6) (User: NT-AUTORITÄT)
Description: Einige Funktionen zur Energieverwaltung im Leistungsstatus wurden im Prozessor aufgrund eines bekannten Firmwareproblems deaktiviert. Wenden Sie sich an den Computerhersteller, um aktualisierte Firmware zu erhalten.
Error: (09/17/2014 05:28:13 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Spybot-S&D 2 Scanner Service" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (09/17/2014 05:28:13 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Spybot-S&D 2 Scanner Service erreicht.
Error: (09/17/2014 04:22:34 PM) (Source: Microsoft-Windows-Kernel-Processor-Power) (EventID: 6) (User: NT-AUTORITÄT)
Description: Einige Funktionen zur Energieverwaltung im Leistungsstatus wurden im Prozessor aufgrund eines bekannten Firmwareproblems deaktiviert. Wenden Sie sich an den Computerhersteller, um aktualisierte Firmware zu erhalten.
Error: (09/17/2014 03:55:49 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "Windows Modules Installer" wurde mit folgendem Fehler beendet:
%%16405
Error: (09/17/2014 03:55:10 PM) (Source: Microsoft-Windows-Kernel-Processor-Power) (EventID: 6) (User: NT-AUTORITÄT)
Description: Einige Funktionen zur Energieverwaltung im Leistungsstatus wurden im Prozessor aufgrund eines bekannten Firmwareproblems deaktiviert. Wenden Sie sich an den Computerhersteller, um aktualisierte Firmware zu erhalten.
Error: (09/17/2014 03:54:43 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "Windows Update" wurde mit folgendem Fehler beendet:
%%-2147467243
Error: (09/17/2014 03:51:55 PM) (Source: Microsoft-Windows-Kernel-Processor-Power) (EventID: 6) (User: NT-AUTORITÄT)
Description: Einige Funktionen zur Energieverwaltung im Leistungsstatus wurden im Prozessor aufgrund eines bekannten Firmwareproblems deaktiviert. Wenden Sie sich an den Computerhersteller, um aktualisierte Firmware zu erhalten.
Microsoft Office Sessions:
=========================
Error: (09/17/2014 06:28:25 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (09/17/2014 04:24:28 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (09/17/2014 03:57:04 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (09/17/2014 03:53:49 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (09/17/2014 00:16:53 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (09/17/2014 00:12:48 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: iexplore.exe8.0.7601.17514e6001cfd25e381112da62C:\Program Files\Internet Explorer\iexplore.exe2098e6c1-3e53-11e4-87e8-001c4afb0cf6
Error: (09/17/2014 00:00:39 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (09/17/2014 00:07:53 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
==================== Memory info ===========================
Processor: Intel(R) Celeron(R) CPU E3400 @ 2.60GHz
Percentage of memory in use: 68%
Total physical RAM: 3453.09 MB
Available physical RAM: 1103.07 MB
Total Pagefile: 6902.4 MB
Available Pagefile: 4400.52 MB
Total Virtual: 2047.88 MB
Available Virtual: 1885 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:235.52 GB) (Free:218.88 GB) NTFS
Drive d: () (Fixed) (Total:0.08 GB) (Free:0.06 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 1B0B42DF)
Partition 1: (Not Active) - (Size=86 MB) - (Type=05)
Partition 2: (Not Active) - (Size=235.5 GB) - (Type=07 NTFS)
Partition 3: (Active) - (Size=230.1 GB) - (Type=07 NTFS)
==================== End Of Log ============================
Code:
Alles auswählen Aufklappen ATTFilter
DoubleClick: [SBI $55080B89] Tracking cookie (Google Chrome: Default) (Browser: Cookie, nothing done)
CasaleMedia: [SBI $55080B89] Tracking cookie (Google Chrome: Default) (Browser: Cookie, nothing done)
CasaleMedia: [SBI $55080B89] Tracking cookie (Google Chrome: Default) (Browser: Cookie, nothing done)
CasaleMedia: [SBI $55080B89] Tracking cookie (Google Chrome: Default) (Browser: Cookie, nothing done)
CasaleMedia: [SBI $55080B89] Tracking cookie (Google Chrome: Default) (Browser: Cookie, nothing done)
CasaleMedia: [SBI $55080B89] Tracking cookie (Google Chrome: Default) (Browser: Cookie, nothing done)
CasaleMedia: [SBI $55080B89] Tracking cookie (Google Chrome: Default) (Browser: Cookie, nothing done)
DoubleClick: [SBI $55080B89] Tracking cookie (Google Chrome: Default) (Browser: Cookie, nothing done)