![]() |
|
Log-Analyse und Auswertung: "Digital More Ads" Popups fluten meinen Browser trotz AdblockerWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #1 |
| ![]() "Digital More Ads" Popups fluten meinen Browser trotz Adblocker Seit einigen Tagen wird mein Browser (Chrome) mit Popup-Ads geflutet, die mit "Digital More Ads" gelabeled sind. Ich habe bereits einiges an kostenlosen Virenentfernungstools ausprobiert, sowie den Browser resettet, aber keine Besserung der Situation erfahren. Wenn mir hier jemand helfen kann, die Malware zu entfernen, wäre ich super dankbar! LG mnk Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 09-05-2015 Ran by Peter (administrator) on FUTURE on 13-05-2015 19:09:49 Running from C:\Users\Peter\Downloads Loaded Profiles: Peter (Available profiles: Peter & hans & Administrator) Platform: Windows 8.1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 (Default browser: Chrome) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\Dragon Assistant\Core\DACore.exe (Intel Corporation) C:\Windows\System32\DptfParticipantProcessorService.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Intel Corporation) C:\Windows\System32\DptfPolicyConfigTDPService.exe (Intel Corporation) C:\Windows\System32\DptfPolicyCriticalService.exe (Intel Corporation) C:\Windows\System32\DptfPolicyLpmService.exe () C:\ProgramData\DatacardService\HWDeviceService64.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe () C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.6.306.7947\AdAwareService.exe (Lenovo) C:\Program Files (x86)\Lenovo\Lenovo Smart Voice\LsvUIService.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe () C:\ProgramData\Mobile Partner\OnlineUpdate\ouc.exe (Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe (Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe (PointGrab LTD) C:\Program Files (x86)\Lenovo\Motion Control\PGService.exe (Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (Company) C:\Program Files (x86)\Popcorn Time\Updater.exe () C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe (Lenovo) C:\ProgramData\LenovoTransition\Server\x64\ymc.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe (Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Lenovo) C:\Program Files (x86)\Lenovo\Lenovo Smart Voice\LsvTrayLoad.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20856_x64__8wekyb3d8bbwe\livecomm.exe (Lenovo) C:\Program Files (x86)\Lenovo\Lenovo Smart Voice\LsvController.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Intel Corporation) C:\Windows\System32\DptfPolicyLpmServiceHelper.exe (Realtek semiconductor) C:\Windows\RTFTrack.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Lenovo) C:\Program Files\Lenovo Yoga PhoneCompanion\Yoga Phone Companion.exe () C:\Program Files (x86)\Lenovo\Lenovo Transition\Transition.exe (Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe () C:\Program Files (x86)\Lenovo\Lenovo Transition\TransitionServer.exe (Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Manager\utility.exe (Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe () C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.6.306.7947\AdAwareTray.exe (Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe (Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe (Spotify Ltd) C:\Users\Peter\AppData\Roaming\Spotify\spotify.exe () C:\Users\Peter\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Peter\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Peter\AppData\Roaming\Spotify\Data\SpotifyHelper.exe () C:\Users\Peter\AppData\Roaming\Spotify\Data\SpotifyHelper.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe (Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe (Lenovo) C:\Program Files (x86)\Lenovo\Yoga Picks\Yoga Picks.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\HEX\Adobe CEF Helper.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe (Microsoft Corporation) C:\Windows\System32\Taskmgr.exe () C:\Users\Peter\AppData\Roaming\Spotify\Data\SpotifyHelper.exe (Anvisoft) C:\Program Files (x86)\Anvisoft\Cloud System Booster\CSBSvc.exe (Anvisoft) C:\Program Files (x86)\Anvisoft\Cloud System Booster\CloudSystemBooster.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Kaspersky Lab ZAO) C:\Users\Peter\Downloads\KVRT.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13656792 2013-10-05] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1353432 2013-09-27] (Realtek Semiconductor) HKLM\...\Run: [DptfPolicyLpmServiceHelper] => C:\WINDOWS\system32\DptfPolicyLpmServiceHelper.exe [111976 2013-08-03] (Intel Corporation) HKLM\...\Run: [RtsFT] => C:\WINDOWS\RTFTrack.exe [6340312 2013-07-20] (Realtek semiconductor) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2774256 2013-08-29] (Synaptics Incorporated) HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp HKLM\...\Run: [Yoga PhoneCompanion] => C:\Program Files\Lenovo Yoga PhoneCompanion\Yoga Phone Companion.exe [844304 2014-02-15] (Lenovo) HKLM\...\Run: [AutoStartTransition] => C:\Program Files (x86)\Lenovo\Lenovo Transition\Transition.exe [294672 2014-02-15] () HKLM\...\Run: [Energy Manager] => C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe [59925488 2014-02-15] (Lenovo(beijing) Limited) HKLM\...\Run: [Lenovo Utility] => C:\Program Files (x86)\Lenovo\Energy Manager\Utility.exe [80880 2014-02-15] (Lenovo(beijing) Limited) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [558496 2014-02-28] (Adobe Systems Incorporated) HKLM\...\Run: [] => [X] HKLM\...\Run: [AdAwareTray] => C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.6.306.7947\AdAwareTray.exe [9566192 2015-03-10] () HKLM-x32\...\Run: [Yoga Picks] => C:\Program Files (x86)\Lenovo\Yoga Picks\Yoga Picks.exe [90640 2013-07-09] (Lenovo) HKLM-x32\...\Run: [PDFPrint] => C:\Program Files (x86)\PDF24\pdf24.exe [191016 2014-05-14] (Geek Software GmbH) HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2688920 2014-05-26] (Adobe Systems Incorporated) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-04-30] (Oracle Corporation) HKLM-x32\...\Run: [PSUAMain] => C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe [40184 2015-02-27] (Panda Security, S.L.) HKLM-x32\...\RunOnce: [{7D412100-1B85-4664-B877-E82016808D84}] => cmd.exe /C start /D "C:\Users\Peter\AppData\Local\Temp" /B {7D412100-1B85-4664-B877-E82016808D84}.cmd Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation) HKLM\...\Policies\Explorer: [NoControlPanel] 0 HKU\S-1-5-21-1297332117-2120240881-2487056725-1001\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [25700400 2015-04-28] (Google) HKU\S-1-5-21-1297332117-2120240881-2487056725-1001\...\Run: [Google Update] => C:\Users\Peter\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2014-06-06] (Google Inc.) HKU\S-1-5-21-1297332117-2120240881-2487056725-1001\...\Run: [Facebook Update] => C:\Users\Peter\AppData\Local\Facebook\Update\FacebookUpdate.exe [138096 2014-06-14] (Facebook Inc.) HKU\S-1-5-21-1297332117-2120240881-2487056725-1001\...\Run: [Spotify] => C:\Users\Peter\AppData\Roaming\Spotify\Spotify.exe [7014456 2015-04-29] (Spotify Ltd) HKU\S-1-5-21-1297332117-2120240881-2487056725-1001\...\Run: [Spotify Web Helper] => C:\Users\Peter\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1806904 2015-04-29] (Spotify Ltd) HKU\S-1-5-21-1297332117-2120240881-2487056725-1001\...\Run: [CloudSystemBooster] => C:\Program Files (x86)\Anvisoft\Cloud System Booster\CloudSystemBooster.exe [577296 2015-04-27] (Anvisoft) HKU\S-1-5-21-1297332117-2120240881-2487056725-1001\...\Run: [GoogleChromeAutoLaunch_A5D4839C20E1F75F154B29E369B6D3FE] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [812872 2015-04-28] (Google Inc.) HKU\S-1-5-21-1297332117-2120240881-2487056725-1001\...\MountPoints2: {07d3a91f-c631-11e4-82d5-7c7a913f4273} - "E:\AutoRun.exe" HKU\S-1-5-21-1297332117-2120240881-2487056725-1001\...\MountPoints2: {07d3b89c-c631-11e4-82d5-7c7a913f4273} - "E:\AutoRun.exe" HKU\S-1-5-21-1297332117-2120240881-2487056725-1001\...\MountPoints2: {2ef9acbe-4997-11e4-828c-7c7a913f4273} - "E:\AutoRun.exe" HKU\S-1-5-21-1297332117-2120240881-2487056725-1001\...\MountPoints2: {2ef9ad50-4997-11e4-828c-7c7a913f4273} - "E:\AutoRun.exe" HKU\S-1-5-21-1297332117-2120240881-2487056725-1001\...\MountPoints2: {64f3dc9f-4bd0-11e4-828c-7c7a913f4273} - "E:\AutoRun.exe" HKU\S-1-5-21-1297332117-2120240881-2487056725-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\scrnsave.scr [11776 2014-10-29] (Microsoft Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ISCTSystray.lnk [2014-02-15] ShortcutTarget: ISCTSystray.lnk -> C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe (Intel Corporation) ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll [2014-05-23] () ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll [2014-05-23] () ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync_x64.dll [2014-05-23] () CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = HKU\S-1-5-21-1297332117-2120240881-2487056725-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-1297332117-2120240881-2487056725-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com HKU\S-1-5-21-1297332117-2120240881-2487056725-1001\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-1297332117-2120240881-2487056725-1001 -> {4FC1542F-1E5C-4348-89A7-E751016E3869} URL = BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-05-13] (Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-05-13] (Oracle Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\b9k8z7f1.default FF Plugin: adobe.com/AdobeAAMDetect_x86_64 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2014-05-26] (Adobe Systems) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-08-09] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-08-09] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-05-13] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-05-13] (Oracle Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-04-14] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-04-14] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2014-05-26] (Adobe Systems) FF Plugin HKU\S-1-5-21-1297332117-2120240881-2487056725-1001: @Skype Limited.com/Facebook Video Calling Plugin -> C:\Users\Peter\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll [2014-07-24] (Skype Limited) FF Plugin HKU\S-1-5-21-1297332117-2120240881-2487056725-1001: @talk.google.com/GoogleTalkPlugin -> C:\Users\Peter\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll [2015-04-17] (Google) FF Plugin HKU\S-1-5-21-1297332117-2120240881-2487056725-1001: @talk.google.com/O1DPlugin -> C:\Users\Peter\AppData\Roaming\Mozilla\plugins\npo1d.dll [2015-04-17] (Google) FF Plugin HKU\S-1-5-21-1297332117-2120240881-2487056725-1001: @tools.google.com/Google Update;version=3 -> C:\Users\Peter\AppData\Local\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-04-14] (Google Inc.) FF Plugin HKU\S-1-5-21-1297332117-2120240881-2487056725-1001: @tools.google.com/Google Update;version=9 -> C:\Users\Peter\AppData\Local\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-04-14] (Google Inc.) FF user.js: detected! => C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\b9k8z7f1.default\user.js [2015-05-12] FF Plugin ProgramFiles/Appdata: C:\Users\Peter\AppData\Roaming\mozilla\plugins\npgoogletalk.dll [2015-04-17] (Google) FF Plugin ProgramFiles/Appdata: C:\Users\Peter\AppData\Roaming\mozilla\plugins\npo1d.dll [2015-04-17] (Google) FF Extension: Digital More - C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\b9k8z7f1.default\Extensions\{e2d0259f-b288-4d77-a42e-8c75df419ff1}.xpi [2015-05-13] FF Extension: No Name - C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\b9k8z7f1.default\extensions\quick_searchff@gmail.com [Not Found] FF Extension: No Name - C:\Users\Peter\AppData\Roaming\Mozilla\Firefox\Profiles\b9k8z7f1.default\extensions\sweetsearch@gmail.com [Not Found] Chrome: ======= CHR HomePage: Default -> hxxp://www.google.com CHR StartupUrls: Default -> "hxxp://bitcoinhighroller.com/", "hxxp://www.google.com/", "hxxp://gmail.com/", "https://www.google.com/calendar/render?mode=day&date=20140603T183427&pli=1", "hxxp://mixpanel.com/", "https://docs.google.com/document/u/0/?showDriveBanner=true#", "hxxp://www.trello.com/" CHR Profile: C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Easy Auto Refresh) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\aabcgdmkeabbnleenpncegpcngjpnjkc [2014-12-12] CHR Extension: (Google Slides) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-12-12] CHR Extension: (SEOquake) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\akdgnmcogleenhbclghghlkkdndkjdjc [2015-01-21] CHR Extension: (Google Docs) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-12-12] CHR Extension: (Google Drive) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-12-12] CHR Extension: (YouTube) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-12-12] CHR Extension: (Strict Workflow) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\cgmnfnmlficgeijcalkgnnkigkefkbhd [2015-02-18] CHR Extension: (Google Search) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-12-12] CHR Extension: (Save my Tabs) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\djadfifncobffjpicnkiegahdiobpaap [2015-02-23] CHR Extension: (Listango Bookmark Manager) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\dmbdkkenkdllkpiognpnmlaglmojagnh [2015-02-03] CHR Extension: (Proxy SwitchySharp) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\dpplabbmogkhghncfbfdeeokoefdjegm [2014-12-12] CHR Extension: (Chromebleed) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\eeoekjnjgppnaegdjbcafdggilajhpic [2014-12-12] CHR Extension: (Meldium Browser Extension) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdocegmnehjgfhfjelhmaobjccoiklle [2014-12-12] CHR Extension: (Google Sheets) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-12-12] CHR Extension: (AdBlock) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-12-12] CHR Extension: (Yesware Email Tracking) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkjnkapjmjfpipfcccnjbjcbgdnahpjp [2014-12-12] CHR Extension: (Pin It Button) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\gpdjojdkbbmdfjfahjcgigfpmkopogic [2014-12-12] CHR Extension: (Rapportive) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\hihakjfhbmlmjdnnhegiciffjplmdhin [2014-12-12] CHR Extension: (Kindle Cloud Reader) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\icdipabjmbhpdkjaihfjoikhjjeneebd [2015-01-11] CHR Extension: (Voice Recognition) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\ikjmfindklfaonkodbnidahohdfbdhkn [2015-01-28] CHR Extension: (StayFocusd) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\laankejkbhbdhmipfmgcngdelahlfoji [2015-02-18] CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-04-15] CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2014-12-12] CHR Extension: (PowerPoint Online) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\mdafamggmaaaginooondinjgkgcbpnhp [2014-12-12] CHR Extension: (Boomerang for Gmail) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\mdanidgdpmkimeiiojknlnekblgmpdll [2014-12-12] CHR Extension: (CliqMeet Screenshare) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\mobodblofhlnnogfkomgijbbikbjlool [2014-12-12] CHR Extension: (Assistant.to Scheduling Assistant) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndddjdifcfcddfdgedlcmfjamionaago [2015-01-05] CHR Extension: (Google Wallet) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-12-12] CHR Extension: (Buffer) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\noojglkidnpfjbincgijbaiedldjfbhh [2014-12-12] CHR Extension: (Gmail) - C:\Users\Peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-12-12] CHR HKU\S-1-5-21-1297332117-2120240881-2487056725-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [apdfllckaahabafndbhieahigkjlhalf] - C:\Users\Peter\AppData\Local\Google\Drive\apdfllckaahabafndbhieahigkjlhalf_live.crx [2014-09-06] CHR HKU\S-1-5-21-1297332117-2120240881-2487056725-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - https://clients2.google.com/service/update2/crx ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 AnviCsbSvc; C:\Program Files (x86)\Anvisoft\Cloud System Booster\CSBSvc.exe [42768 2015-04-27] (Anvisoft) S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-29] (Microsoft Corporation) R2 DACoreService; C:\Program Files (x86)\Nuance\Dragon Assistant\Core\DACore.exe [432528 2013-05-02] (Nuance Communications, Inc.) R2 DptfParticipantProcessorService; C:\Windows\system32\DptfParticipantProcessorService.exe [115632 2013-08-03] (Intel Corporation) R2 DptfPolicyConfigTDPService; C:\Windows\system32\DptfPolicyConfigTDPService.exe [116656 2013-08-03] (Intel Corporation) R2 DptfPolicyCriticalService; C:\Windows\system32\DptfPolicyCriticalService.exe [148688 2013-08-03] (Intel Corporation) R2 DptfPolicyLpmService; C:\Windows\system32\DptfPolicyLpmService.exe [124880 2013-08-03] (Intel Corporation) R2 HWDeviceService64.exe; C:\ProgramData\DatacardService\HWDeviceService64.exe [351824 2013-04-10] () R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-07] (Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [File not signed] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation) R2 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [157128 2013-09-18] (Intel Corporation) R2 ISCTAgent; C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe [198120 2013-08-01] () S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [174368 2014-02-28] () R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-08-09] (Intel Corporation) R2 LavasoftAdAwareService11; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.6.306.7947\AdAwareService.exe [720760 2015-03-10] () R2 LsvUIService; C:\Program Files (x86)\Lenovo\Lenovo Smart Voice\LsvUIService.exe [70416 2014-02-15] (Lenovo) R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1871160 2015-04-14] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1080120 2015-04-14] (Malwarebytes Corporation) S2 Mobile Partner. RunOuc; C:\Program Files (x86)\Mobile Partner\UpdateDog\ouc.exe [656976 2013-05-21] () R2 NanoServiceMain; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe [142584 2015-02-27] (Panda Security, S.L.) R2 PandaAgent; C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe [66808 2014-10-09] (Panda Security, S.L.) R2 PGService; C:\Program Files (x86)\Lenovo\Motion Control\PGService.exe [162600 2013-08-29] (PointGrab LTD) S2 PhoneCompanionPusher; C:\Program Files\Lenovo Yoga PhoneCompanion\PhoneCompanionPusher.exe [249872 2014-02-15] (Lenovo) S3 PhoneCompanionVap; C:\Program Files\Lenovo Yoga PhoneCompanion\PhoneCompanionVap.exe [328720 2014-02-15] (Lenovo) R2 PSUAService; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe [38136 2015-02-27] (Panda Security, S.L.) R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [288472 2013-09-14] (Realtek Semiconductor) R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5448976 2015-04-17] (TeamViewer GmbH) R2 Update service; C:\Program Files (x86)\Popcorn Time\Updater.exe [179200 2014-10-09] (Company) [File not signed] R2 VeriFaceSrv; C:\Program Files (x86)\Lenovo\Lenovo VeriFace\VfConnectorService.exe [68368 2014-02-15] () S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation) R2 ymc; C:\ProgramData\LenovoTransition\Server\x64\ymc.exe [32016 2014-02-15] (Lenovo) S2 EvtEng; "C:\Program Files\Intel\WiFi\bin\EvtEng.exe" [X] S3 MyWiFiDHCPDNS; "C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe" [X] S2 RegSrvc; "C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe" [X] ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S3 ACR122U; C:\Windows\system32\DRIVERS\acr122.sys [62976 2014-11-13] (Advanced Card Systems Ltd.) R3 avc3; C:\Windows\System32\DRIVERS\avc3.sys [727592 2015-01-06] (BitDefender) R3 avchv; C:\Windows\system32\DRIVERS\avchv.sys [261496 2015-01-06] (BitDefender) R3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [601360 2015-01-06] (BitDefender) S3 AX88772; C:\Windows\system32\DRIVERS\ax88772.sys [113864 2013-07-18] (ASIX Electronics Corp.) R3 bbwfp; C:\Program Files (x86)\Anvisoft\Cloud System Booster\wfp\x64\BBWFP.sys [40720 2015-03-24] (Anvisoft) R1 BdfNdisf; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Firewall Engine\1.6.0.0\Drivers\bdfndisf6.sys [97816 2015-01-06] (BitDefender LLC) R1 bdfwfpf; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Firewall Engine\1.6.0.0\Drivers\bdfwfpf.sys [107080 2015-01-06] (BitDefender LLC) S3 BthA2DP; C:\Windows\system32\drivers\BthA2DP.sys [132608 2015-01-30] (Microsoft Corporation) R3 BthLEEnum; C:\Windows\System32\drivers\BthLEEnum.sys [226304 2013-12-04] (Microsoft Corporation) R3 btmaux; C:\Windows\system32\DRIVERS\btmaux.sys [140600 2013-07-22] (Motorola Solutions, Inc.) R3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [1390904 2013-09-05] (Motorola Solutions, Inc.) R3 DptfDevPch; C:\Windows\system32\DRIVERS\DptfDevPch.sys [114680 2013-08-03] (Intel Corporation) R3 DptfDevProc; C:\Windows\system32\DRIVERS\DptfDevProc.sys [287160 2013-08-03] (Intel Corporation) R3 DptfManager; C:\Windows\system32\DRIVERS\DptfManager.sys [494272 2013-08-03] (Intel Corporation) U0 EFFCF9E0; C:\Windows\System32\drivers\EFFCF9E0.sys [457824 2015-05-13] (Kaspersky Lab ZAO) R3 gzflt; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Antimalware Engine\3.0.98.0\gzflt.sys [155912 2015-01-22] (BitDefender LLC) S3 hwusb_cdcacm; C:\Windows\system32\DRIVERS\ew_cdcacm.sys [121728 2013-08-22] (Huawei Technologies Co., Ltd.) S3 hwusb_wwanecm; C:\Windows\system32\DRIVERS\ew_wwanecm.sys [375040 2013-08-22] (Huawei Technologies Co., Ltd.) R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [118728 2013-09-18] (Intel Corporation) R3 ikbevent; C:\Windows\system32\DRIVERS\ikbevent.sys [21408 2013-08-01] () R3 imsevent; C:\Windows\system32\DRIVERS\imsevent.sys [21920 2013-08-01] () R3 INETMON; C:\WINDOWS\System32\Drivers\INETMON.sys [29088 2013-08-01] () R3 ISCT; C:\Windows\System32\drivers\ISCTD64.sys [46568 2013-08-01] () R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-04-14] (Malwarebytes Corporation) R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [136408 2015-05-13] (Malwarebytes Corporation) R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-04-14] (Malwarebytes Corporation) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-08-09] (Intel Corporation) R3 NETwNb64; C:\Windows\system32\DRIVERS\NETwbw02.sys [3589600 2013-09-19] (Intel Corporation) S3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew02.sys [4649440 2013-06-18] (Intel Corporation) R1 NNSALPC; C:\Windows\System32\DRIVERS\NNSAlpc.sys [93968 2015-02-09] (Panda Security, S.L.) R1 NNSHTTP; C:\Windows\System32\DRIVERS\NNSHttp.sys [202000 2015-02-09] (Panda Security, S.L.) R1 NNSHTTPS; C:\Windows\System32\DRIVERS\NNSHttps.sys [110864 2015-02-09] (Panda Security, S.L.) R1 NNSIDS; C:\Windows\System32\DRIVERS\NNSIds.sys [116496 2015-02-09] (Panda Security, S.L.) R1 NNSNAHSL; C:\Windows\system32\DRIVERS\NNSNAHSL.sys [49936 2014-12-31] (Panda Security, S.L.) R1 NNSPICC; C:\Windows\System32\DRIVERS\NNSPicc.sys [99600 2015-02-09] (Panda Security, S.L.) R1 NNSPIHSW; C:\Windows\System32\DRIVERS\NNSPihsw.sys [69904 2015-02-09] (Panda Security, S.L.) R1 NNSPOP3; C:\Windows\System32\DRIVERS\NNSPop3.sys [124176 2015-02-09] (Panda Security, S.L.) R1 NNSPROT; C:\Windows\System32\DRIVERS\NNSProt.sys [299792 2015-02-09] (Panda Security, S.L.) R1 NNSPRV; C:\Windows\System32\DRIVERS\NNSPrv.sys [166160 2015-02-09] (Panda Security, S.L.) R1 NNSSMTP; C:\Windows\System32\DRIVERS\NNSSmtp.sys [113424 2015-02-09] (Panda Security, S.L.) R1 NNSSTRM; C:\Windows\System32\DRIVERS\NNSStrm.sys [257296 2015-02-09] (Panda Security, S.L.) R1 NNSTLSC; C:\Windows\System32\DRIVERS\NNSTlsc.sys [106256 2015-02-09] (Panda Security, S.L.) R2 PSINAflt; C:\Windows\System32\DRIVERS\PSINAflt.sys [163600 2015-04-21] (Panda Security, S.L.) R2 PSINFile; C:\Windows\System32\DRIVERS\PSINFile.sys [121616 2015-02-25] (Panda Security, S.L.) R1 PSINKNC; C:\Windows\System32\DRIVERS\psinknc.sys [197392 2015-02-25] (Panda Security, S.L.) R2 PSINProc; C:\Windows\System32\DRIVERS\PSINProc.sys [124176 2015-02-25] (Panda Security, S.L.) R2 PSINProt; C:\Windows\System32\DRIVERS\PSINProt.sys [133904 2015-02-25] (Panda Security, S.L.) R2 PSINReg; C:\Windows\System32\DRIVERS\PSINReg.sys [107792 2015-02-25] (Panda Security, S.L.) U3 PSKMAD; C:\Windows\System32\DRIVERS\PSKMAD.sys [61712 2015-01-29] (Panda Security, S.L.) R3 rtsuvc; C:\Windows\system32\DRIVERS\rtsuvc.sys [8247640 2013-07-20] (Realtek Semiconductor Corp.) R3 SensorsHIDClassDriver; C:\Windows\System32\drivers\WUDFRd.sys [226304 2014-10-29] (Microsoft Corporation) R3 SensorsServiceDriver; C:\Windows\System32\drivers\WUDFRd.sys [226304 2014-10-29] (Microsoft Corporation) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2013-08-29] (Synaptics Incorporated) S3 Trufos; C:\Windows\System32\DRIVERS\Trufos.sys [452040 2015-01-22] (BitDefender S.R.L.) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation) S3 wsvd; C:\Windows\system32\DRIVERS\wsvd.sys [102376 2012-06-13] ("CyberLink) ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2015-05-13 19:09 - 2015-05-13 19:10 - 00035398 _____ () C:\Users\Peter\Downloads\FRST.txt 2015-05-13 19:09 - 2015-05-13 19:10 - 00000000 ____D () C:\FRST 2015-05-13 19:09 - 2015-05-13 19:09 - 00457824 _____ (Kaspersky Lab ZAO) C:\WINDOWS\system32\Drivers\EFFCF9E0.sys 2015-05-13 19:09 - 2015-05-13 19:09 - 00000000 ____D () C:\KVRT_Data 2015-05-13 19:08 - 2015-05-13 19:09 - 02102784 _____ (Farbar) C:\Users\Peter\Downloads\FRST64.exe 2015-05-13 19:06 - 2015-05-13 19:06 - 00000474 _____ () C:\Users\Peter\Downloads\defogger_disable.log 2015-05-13 19:06 - 2015-05-13 19:06 - 00000000 _____ () C:\Users\Peter\defogger_reenable 2015-05-13 19:05 - 2015-05-13 19:05 - 00050477 _____ () C:\Users\Peter\Downloads\Defogger.exe 2015-05-13 18:48 - 2015-05-13 19:08 - 110592856 _____ (Kaspersky Lab ZAO) C:\Users\Peter\Downloads\KVRT.exe 2015-05-13 18:41 - 2015-05-13 18:41 - 00002441 _____ () C:\Users\Peter\Downloads\software_removal_tool.log 2015-05-13 18:41 - 2015-05-13 18:41 - 00000198 _____ () C:\Users\Peter\Downloads\debug.log 2015-05-13 18:28 - 2015-05-13 18:28 - 00001303 _____ () C:\Users\Public\Desktop\Cloud System Booster.lnk 2015-05-13 18:28 - 2015-05-13 18:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anvisoft 2015-05-13 18:28 - 2015-05-13 18:28 - 00000000 ____D () C:\Program Files (x86)\Anvisoft 2015-05-13 18:14 - 2015-05-13 18:25 - 17892432 _____ (Anvisoft) C:\Users\Peter\Downloads\csbsetup.exe 2015-05-13 18:02 - 2015-01-29 19:21 - 00061712 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSKMAD.sys 2015-05-13 13:13 - 2015-05-13 13:16 - 00000000 ____D () C:\ProgramData\MFAData 2015-05-13 13:13 - 2015-05-13 13:13 - 00000000 ____D () C:\Users\Peter\AppData\Local\MFAData 2015-05-13 13:13 - 2015-05-13 13:13 - 00000000 ____D () C:\Users\Peter\AppData\Local\Avg2015 2015-05-13 13:03 - 2015-05-13 13:11 - 186165736 _____ (AVG Technologies) C:\Users\Peter\Downloads\avg_free_x64_all_2015_ltst_221_5941.exe 2015-05-13 12:51 - 2015-05-13 12:52 - 00002223 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panda Global Protection 2015.lnk 2015-05-13 12:51 - 2015-05-13 12:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panda Global Protection 2015 2015-05-13 10:17 - 2015-05-13 18:13 - 00136408 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2015-05-13 10:16 - 2015-05-13 10:16 - 00001129 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2015-05-13 10:16 - 2015-05-13 10:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-05-13 10:16 - 2015-05-13 10:16 - 00000000 ____D () C:\ProgramData\Malwarebytes 2015-05-13 10:16 - 2015-05-13 10:16 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-05-13 10:16 - 2015-04-14 09:38 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2015-05-13 10:16 - 2015-04-14 09:37 - 00107736 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2015-05-13 10:16 - 2015-04-14 09:37 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2015-05-13 09:01 - 2015-05-13 09:01 - 00000000 _____ () C:\autoexec.bat 2015-05-13 02:03 - 2015-05-13 02:03 - 00000000 ____D () C:\ProgramData\BitDefender 2015-05-12 23:51 - 2015-05-13 18:03 - 00002356 _____ () C:\Users\Public\Desktop\Ad-Aware Antivirus.lnk 2015-05-12 23:51 - 2015-05-12 23:51 - 00000000 ____D () C:\Users\Peter\AppData\Roaming\LavasoftStatistics 2015-05-12 23:51 - 2015-05-12 23:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft 2015-05-12 23:51 - 2015-01-06 12:47 - 01061776 _____ (BitDefender S.R.L.) C:\WINDOWS\system32\bdsmtpp.dll 2015-05-12 23:51 - 2015-01-06 12:47 - 00209984 _____ (BitDefender) C:\WINDOWS\system32\BdFirewallSDK.dll 2015-05-12 23:51 - 2015-01-06 12:47 - 00195016 _____ (BitDefender) C:\WINDOWS\system32\httproxy.dll 2015-05-12 23:51 - 2015-01-06 12:47 - 00156936 _____ () C:\WINDOWS\system32\bdfwcore.dll 2015-05-12 23:51 - 2015-01-06 12:47 - 00155912 _____ (BitDefender S.R.L.) C:\WINDOWS\system32\bdpop3p.dll 2015-05-12 23:51 - 2015-01-06 12:47 - 00122928 _____ (BitDefender) C:\WINDOWS\system32\OEMbdpredir.dll 2015-05-12 23:51 - 2015-01-06 12:47 - 00096160 _____ (BitDefender) C:\WINDOWS\system32\bdpredir.dll 2015-05-12 23:51 - 2015-01-06 12:37 - 02084072 _____ (Bitdefender) C:\WINDOWS\system32\bdnc.dll 2015-05-12 23:50 - 2015-05-12 23:50 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_avchv_01009.Wdf 2015-05-12 23:49 - 2015-05-12 23:49 - 00000000 ____D () C:\Program Files\Lavasoft 2015-05-12 23:47 - 2015-05-12 23:47 - 00000000 ____D () C:\Users\Peter\AppData\Roaming\Lavasoft 2015-05-12 23:47 - 2015-05-12 23:47 - 00000000 ____D () C:\Program Files\Common Files\Lavasoft 2015-05-12 23:46 - 2015-05-12 23:46 - 00000000 ____D () C:\ProgramData\Lavasoft 2015-05-11 15:24 - 2015-05-11 15:24 - 00000000 ____D () C:\Users\hans\AppData\Roaming\WinZip 2015-05-11 01:00 - 2015-05-11 01:43 - 00000000 ____D () C:\Program Files (x86)\TeamViewer 2015-05-11 01:00 - 2015-05-11 01:00 - 00001070 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 10.lnk 2015-05-11 01:00 - 2015-05-11 01:00 - 00001058 _____ () C:\Users\Public\Desktop\TeamViewer 10.lnk 2015-05-10 10:34 - 2015-05-10 10:34 - 08197254 _____ () C:\Users\Peter\Desktop\strsta2.bmp 2015-05-10 10:32 - 2015-05-10 10:33 - 10668558 _____ () C:\Users\Peter\Desktop\strsta.bmp 2015-05-07 21:12 - 2015-05-07 21:12 - 00001006 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Balsamiq Mockups 3.lnk 2015-05-07 21:12 - 2015-05-07 21:12 - 00000994 _____ () C:\Users\Public\Desktop\Balsamiq Mockups 3.lnk 2015-05-07 21:12 - 2015-05-07 21:12 - 00000000 ____D () C:\Users\Peter\AppData\Roaming\BalsamiqMockups3.EDE15CF69E11F7F7D45B5430C7D37CC6C3545E3C.1 2015-05-07 21:12 - 2015-05-07 21:12 - 00000000 ____D () C:\Users\Peter\AppData\Roaming\BalsamiqMockups3 2015-05-07 21:12 - 2015-05-07 21:12 - 00000000 ____D () C:\Program Files (x86)\Balsamiq Mockups 3 2015-05-07 20:22 - 2015-05-07 20:26 - 00000000 ____D () C:\Users\Peter\Downloads\Adobe Photoshop CS6 13.1.2 Extended Multilanguage [ChingLiu] 2015-05-07 20:21 - 2015-05-07 20:21 - 00067316 _____ () C:\Users\Peter\Downloads\[kickass.to]adobe.photoshop.cs6.13.1.2.extended.multilanguage.chingliu.torrent 2015-05-07 20:20 - 2015-05-07 20:20 - 00002346 _____ () C:\Users\Peter\Downloads\[kickass.to]adobe.photoshop.actions.collection.04.05.2014.torrent 2015-05-07 20:20 - 2015-05-07 20:20 - 00000000 ____D () C:\Users\Peter\Downloads\Adobe Photoshop Actions Collection (04.05.2014) 2015-05-07 19:47 - 2015-05-07 19:51 - 00000000 ____D () C:\Users\Peter\Downloads\Adobe Photoshop CC 2014 (64 bit) (Crack) [ChingLiu] 2015-05-07 19:47 - 2015-05-07 19:47 - 00062967 _____ () C:\Users\Peter\Downloads\Adobe Photoshop CC 2014 (64 bit) (Crack) [ChingLiu] [www.OMGTORRENT.com].torrent 2015-05-05 15:52 - 2015-05-05 15:52 - 00380263 _____ () C:\Users\Peter\Downloads\66d1f79773dd6de69b51f3561d0f50d5.ico.zip 2015-05-05 12:06 - 2015-05-05 12:06 - 07053623 _____ () C:\Users\Peter\Downloads\ratatype_press_kit.zip 2015-05-02 21:27 - 2015-05-02 21:27 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Convert Audio Free 2015-05-02 21:27 - 2015-05-02 21:27 - 00000000 ____D () C:\Program Files (x86)\Convert Audio Free 2015-05-02 21:27 - 2015-05-02 21:26 - 01699226 _____ ( ) C:\Users\Peter\Downloads\wmatomp3_setup [1].exe 2015-05-02 21:26 - 2015-05-02 21:26 - 03530128 _____ ( ) C:\Users\Peter\Downloads\wmatomp3_setup.exe 2015-05-02 21:26 - 2015-05-02 21:26 - 00000000 ____D () C:\WINDOWS\rUpdater 2015-05-02 21:26 - 2015-05-02 21:26 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\(Default) 2015-05-02 21:22 - 2015-05-02 21:22 - 00393872 _____ () C:\Users\Peter\Downloads\Nicht bestätigt 99078.crdownload 2015-04-28 14:45 - 2015-04-28 14:45 - 00000312 _____ () C:\Users\Peter\Downloads\BK_ACX0_014018DE_LC_64_22050_ster_A2LQMX0Z34DQWA.adh 2015-04-27 18:49 - 2015-04-27 18:49 - 01002096 _____ (Ezvid, inc. ) C:\Users\Peter\Downloads\ezvid1.002b03.exe 2015-04-27 18:46 - 2015-04-27 18:46 - 00004536 _____ () C:\Users\Peter\AppData\Roaming\CamStudio.cfg 2015-04-27 18:46 - 2015-04-27 18:46 - 00000408 _____ () C:\Users\Peter\AppData\Roaming\CamShapes.ini 2015-04-27 18:46 - 2015-04-27 18:46 - 00000408 _____ () C:\Users\Peter\AppData\Roaming\CamLayout.ini 2015-04-27 18:46 - 2015-04-27 18:46 - 00000046 _____ () C:\Users\Peter\AppData\Roaming\Camdata.ini 2015-04-27 18:45 - 2015-04-27 18:45 - 00000096 _____ () C:\Users\Peter\AppData\Roaming\version2.xml 2015-04-27 18:45 - 2015-04-27 18:45 - 00000000 ____D () C:\Users\Peter\Documents\My CamStudio Temp Files 2015-04-27 18:40 - 2015-04-27 18:40 - 02326976 _____ (Beepa Pty Ltd) C:\Users\Peter\Downloads\setup.exe 2015-04-27 18:40 - 2015-04-27 18:40 - 00000591 _____ () C:\Users\Public\Desktop\Fraps.lnk 2015-04-27 18:40 - 2015-04-27 18:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fraps 2015-04-26 15:09 - 2015-04-26 15:09 - 00000355 _____ () C:\Users\Peter\Downloads\BK_COVE_000013DE_LC_64_22050_ster_A2LQMX0Z34DQWA.adh 2015-04-22 15:57 - 2010-06-02 04:55 - 00239960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_7.dll 2015-04-22 15:57 - 2010-06-02 04:55 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_7.dll 2015-04-22 15:57 - 2010-05-26 11:41 - 02401112 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_43.dll 2015-04-22 15:57 - 2010-05-26 11:41 - 01998168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_43.dll 2015-04-22 15:57 - 2010-05-26 11:41 - 01907552 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_43.dll 2015-04-22 15:57 - 2010-05-26 11:41 - 01868128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_43.dll 2015-04-22 15:57 - 2010-05-26 11:41 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_43.dll 2015-04-22 15:57 - 2010-05-26 11:41 - 00470880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_43.dll 2015-04-22 15:57 - 2010-02-04 10:01 - 00530776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_6.dll 2015-04-22 15:57 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_6.dll 2015-04-22 15:57 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_6.dll 2015-04-22 15:57 - 2010-02-04 10:01 - 00176984 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_6.dll 2015-04-22 15:57 - 2010-02-04 10:01 - 00078680 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_4.dll 2015-04-22 15:57 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_4.dll 2015-04-22 15:57 - 2010-02-04 10:01 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_7.dll 2015-04-22 15:57 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_7.dll 2015-04-22 15:57 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_5.dll 2015-04-22 15:57 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_5.dll 2015-04-22 15:57 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_5.dll 2015-04-22 15:57 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_5.dll 2015-04-22 15:57 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_3.dll 2015-04-22 15:57 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_3.dll 2015-04-22 15:57 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dcsx_42.dll 2015-04-22 15:57 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dcsx_42.dll 2015-04-22 15:57 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_42.dll 2015-04-22 15:57 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_42.dll 2015-04-22 15:57 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_42.dll 2015-04-22 15:57 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_42.dll 2015-04-22 15:57 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_42.dll 2015-04-22 15:57 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_42.dll 2015-04-22 15:57 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_4.dll 2015-04-22 15:57 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_4.dll 2015-04-22 15:57 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_4.dll 2015-04-22 15:57 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_4.dll 2015-04-22 15:57 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_6.dll 2015-04-22 15:57 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_6.dll 2015-04-22 15:57 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_41.dll 2015-04-22 15:57 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_41.dll 2015-04-22 15:57 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_41.dll 2015-04-22 15:57 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_41.dll 2015-04-22 15:57 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_3.dll 2015-04-22 15:57 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_3.dll 2015-04-22 15:57 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_3.dll 2015-04-22 15:57 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_3.dll 2015-04-22 15:57 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_2.dll 2015-04-22 15:57 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_2.dll 2015-04-22 15:57 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_5.dll 2015-04-22 15:57 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_5.dll 2015-04-22 15:57 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_40.dll 2015-04-22 15:57 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_40.dll 2015-04-22 15:57 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_40.dll 2015-04-22 15:57 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_40.dll 2015-04-22 15:57 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_40.dll 2015-04-22 15:57 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_40.dll 2015-04-22 15:57 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_2.dll 2015-04-22 15:57 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_2.dll 2015-04-22 15:57 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_1.dll 2015-04-22 15:57 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_2.dll 2015-04-22 15:57 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_39.dll 2015-04-22 15:57 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_39.dll 2015-04-22 15:57 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_39.dll 2015-04-22 15:57 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_1.dll 2015-04-22 15:57 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_1.dll 2015-04-22 15:57 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_1.dll 2015-04-22 15:57 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_1.dll 2015-04-22 15:57 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAPOFX1_0.dll 2015-04-22 15:57 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_0.dll 2015-04-22 15:57 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_4.dll 2015-04-22 15:57 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_4.dll 2015-04-22 15:57 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_38.dll 2015-04-22 15:57 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_38.dll 2015-04-22 15:57 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_38.dll 2015-04-22 15:57 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_38.dll 2015-04-22 15:57 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_38.dll 2015-04-22 15:57 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_38.dll 2015-04-22 15:57 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_0.dll 2015-04-22 15:57 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_0.dll 2015-04-22 15:57 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_0.dll 2015-04-22 15:57 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine3_0.dll 2015-04-22 15:57 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_3.dll 2015-04-22 15:57 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_3.dll 2015-04-22 15:57 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_37.dll 2015-04-22 15:57 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_37.dll 2015-04-22 15:57 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_37.dll 2015-04-22 15:57 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_37.dll 2015-04-22 15:57 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_37.dll 2015-04-22 15:57 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_37.dll 2015-04-22 15:57 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_10.dll 2015-04-22 15:57 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_10.dll 2015-04-22 15:57 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\WINDOWS\system32\X3DAudio1_2.dll 2015-04-22 15:57 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_2.dll 2015-04-22 15:57 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_36.dll 2015-04-22 15:57 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_36.dll 2015-04-22 15:57 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_36.dll 2015-04-22 15:57 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_36.dll 2015-04-22 15:57 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_36.dll 2015-04-22 15:57 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_36.dll 2015-04-22 15:57 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_9.dll 2015-04-22 15:57 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_9.dll 2015-04-22 15:57 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_35.dll 2015-04-22 15:57 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_35.dll 2015-04-22 15:57 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_35.dll 2015-04-22 15:57 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_35.dll 2015-04-22 15:57 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_35.dll 2015-04-22 15:57 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_35.dll 2015-04-22 15:57 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_8.dll 2015-04-22 15:57 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_8.dll 2015-04-22 15:57 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_34.dll 2015-04-22 15:57 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_34.dll 2015-04-22 15:57 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_34.dll 2015-04-22 15:57 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_34.dll 2015-04-22 15:57 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_34.dll 2015-04-22 15:57 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_34.dll 2015-04-22 15:57 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_7.dll 2015-04-22 15:57 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_7.dll 2015-04-22 15:57 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_3.dll 2015-04-22 15:57 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_3.dll 2015-04-22 15:57 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_33.dll 2015-04-22 15:57 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_33.dll 2015-04-22 15:57 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_33.dll 2015-04-22 15:57 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_33.dll 2015-04-22 15:57 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_33.dll 2015-04-22 15:57 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_33.dll 2015-04-22 15:57 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_1.dll 2015-04-22 15:57 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_1.dll 2015-04-22 15:57 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_6.dll 2015-04-22 15:57 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_6.dll 2015-04-22 15:57 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_5.dll 2015-04-22 15:57 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_5.dll 2015-04-22 15:57 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10.dll 2015-04-22 15:57 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10.dll 2015-04-22 15:57 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_31.dll 2015-04-22 15:57 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_31.dll 2015-04-22 15:57 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_4.dll 2015-04-22 15:57 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_4.dll 2015-04-22 15:57 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_2.dll 2015-04-22 15:57 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_3.dll 2015-04-22 15:57 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_3.dll 2015-04-22 15:57 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_2.dll 2015-04-22 15:57 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_2.dll 2015-04-22 15:57 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_2.dll 2015-04-22 15:57 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_30.dll 2015-04-22 15:57 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_30.dll 2015-04-22 15:57 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_1.dll 2015-04-22 15:57 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_1.dll 2015-04-22 15:57 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\WINDOWS\system32\xinput1_1.dll 2015-04-22 15:57 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_1.dll 2015-04-22 15:57 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_29.dll 2015-04-22 15:57 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_29.dll 2015-04-22 15:57 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\WINDOWS\system32\xactengine2_0.dll 2015-04-22 15:57 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine2_0.dll 2015-04-22 15:57 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\WINDOWS\system32\x3daudio1_0.dll 2015-04-22 15:57 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_0.dll 2015-04-22 15:57 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_28.dll 2015-04-22 15:57 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_28.dll 2015-04-22 15:57 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_27.dll 2015-04-22 15:57 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_27.dll 2015-04-22 15:57 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_26.dll 2015-04-22 15:57 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_26.dll 2015-04-22 15:57 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_25.dll 2015-04-22 15:57 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_25.dll 2015-04-22 15:57 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_24.dll 2015-04-22 15:57 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_24.dll 2015-04-22 15:10 - 2015-04-22 15:10 - 00000219 _____ () C:\Users\Peter\Desktop\Counter-Strike Global Offensive.url 2015-04-21 17:28 - 2015-04-21 17:28 - 00163600 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSINAflt.sys 2015-04-19 16:53 - 2015-04-19 16:53 - 00000000 ____D () C:\Users\hans\AppData\Local\Steam 2015-04-19 11:08 - 2015-04-19 11:08 - 00000000 ____D () C:\Users\hans\AppData\Local\Blizzard 2015-04-19 11:05 - 2015-04-20 17:44 - 00000000 ____D () C:\Users\hans\AppData\Local\Battle.net 2015-04-19 11:05 - 2015-04-19 11:07 - 00000000 ____D () C:\Users\hans\AppData\Roaming\Battle.net 2015-04-19 11:05 - 2015-04-19 11:05 - 00000000 ____D () C:\Users\hans\AppData\Local\Blizzard Entertainment 2015-04-18 16:18 - 2015-04-18 16:18 - 00000000 ____D () C:\Users\Peter\AppData\Roaming\AVG8 2015-04-18 15:36 - 2015-04-18 15:36 - 00001097 _____ () C:\Users\Public\Desktop\VLC media player.lnk 2015-04-18 11:41 - 2015-05-11 15:37 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1297332117-2120240881-2487056725-1002 2015-04-18 11:36 - 2015-05-07 20:31 - 00000000 ____D () C:\Users\hans\AppData\Roaming\Panda Security 2015-04-17 10:46 - 2015-04-17 10:46 - 00000000 ____D () C:\WINDOWS\system32\appraiser 2015-04-15 14:49 - 2015-03-23 23:59 - 07476032 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2015-04-15 14:49 - 2015-03-23 23:59 - 01733952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2015-04-15 14:49 - 2015-03-23 23:59 - 00360480 _____ (Microsoft Corporation) C:\WINDOWS\system32\sechost.dll 2015-04-15 14:49 - 2015-03-23 23:58 - 01498872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2015-04-15 14:49 - 2015-03-23 23:45 - 00257216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sechost.dll 2015-04-15 14:49 - 2015-03-20 06:12 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll 2015-04-15 14:49 - 2015-03-20 06:10 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll 2015-04-15 14:49 - 2015-03-20 06:10 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64cpu.dll 2015-04-15 14:49 - 2015-03-20 05:17 - 00411648 _____ (Microsoft Corporation) C:\WINDOWS\system32\tracerpt.exe 2015-04-15 14:49 - 2015-03-20 04:41 - 00369152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tracerpt.exe 2015-04-15 14:49 - 2015-03-20 04:40 - 00950784 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll 2015-04-15 14:49 - 2015-03-20 04:16 - 00749568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll 2015-04-15 14:49 - 2015-03-14 10:54 - 00133256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2015-04-15 14:49 - 2015-03-14 10:20 - 01385256 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll 2015-04-15 14:49 - 2015-03-14 10:13 - 01124352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll 2015-04-15 14:49 - 2015-03-14 03:56 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2015-04-15 14:49 - 2015-03-14 03:56 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll 2015-04-15 14:49 - 2015-03-14 03:51 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wu.upgrade.ps.dll 2015-04-15 14:49 - 2015-03-14 03:37 - 00267264 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSetupUI.dll 2015-04-15 14:49 - 2015-03-14 03:14 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll 2015-04-15 14:49 - 2015-03-14 02:22 - 03678720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2015-04-15 14:49 - 2015-03-14 02:12 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll 2015-04-15 14:49 - 2015-03-14 02:12 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe 2015-04-15 14:49 - 2015-03-14 02:09 - 00200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll 2015-04-15 14:49 - 2015-03-14 02:08 - 00408064 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2015-04-15 14:49 - 2015-03-14 02:08 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2015-04-15 14:49 - 2015-03-14 02:06 - 02373632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2015-04-15 14:49 - 2015-03-14 02:06 - 00891392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2015-04-15 14:49 - 2015-03-14 02:02 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll 2015-04-15 14:49 - 2015-03-14 02:02 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe 2015-04-15 14:49 - 2015-03-14 01:59 - 00721920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2015-04-15 14:49 - 2015-03-14 01:59 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll 2015-04-15 14:49 - 2015-03-13 06:32 - 24980480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2015-04-15 14:49 - 2015-03-13 06:08 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2015-04-15 14:49 - 2015-03-13 06:07 - 02886144 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2015-04-15 14:49 - 2015-03-13 05:53 - 00816128 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2015-04-15 14:49 - 2015-03-13 05:50 - 06025216 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2015-04-15 14:49 - 2015-03-13 05:42 - 19695616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2015-04-15 14:49 - 2015-03-13 05:28 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2015-04-15 14:49 - 2015-03-13 05:26 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2015-04-15 14:49 - 2015-03-13 05:22 - 02278400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2015-04-15 14:49 - 2015-03-13 05:17 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll 2015-04-15 14:49 - 2015-03-13 05:16 - 00664064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2015-04-15 14:49 - 2015-03-13 05:08 - 00720384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2015-04-15 14:49 - 2015-03-13 05:07 - 00801280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2015-04-15 14:49 - 2015-03-13 05:00 - 14397440 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2015-04-15 14:49 - 2015-03-13 04:58 - 00259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll 2015-04-15 14:49 - 2015-03-13 04:50 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll 2015-04-15 14:49 - 2015-03-13 04:49 - 04305408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2015-04-15 14:49 - 2015-03-13 04:45 - 02358784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2015-04-15 14:49 - 2015-03-13 04:44 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2015-04-15 14:49 - 2015-03-13 04:37 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pku2u.dll 2015-04-15 14:49 - 2015-03-13 04:34 - 12825600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2015-04-15 14:49 - 2015-03-13 04:33 - 01548288 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2015-04-15 14:49 - 2015-03-13 04:22 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2015-04-15 14:49 - 2015-03-13 04:20 - 01888256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2015-04-15 14:49 - 2015-03-13 04:16 - 01311232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2015-04-15 14:49 - 2015-03-13 04:14 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2015-04-15 14:49 - 2015-03-04 12:25 - 00377152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2015-04-15 14:49 - 2015-03-04 05:04 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\clfsw32.dll 2015-04-15 14:49 - 2015-03-04 04:19 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clfsw32.dll 2015-04-15 14:49 - 2015-02-24 10:32 - 00991552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys 2015-04-15 14:49 - 2015-02-21 01:49 - 00780800 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsm.dll 2015-04-15 14:48 - 2015-03-23 00:45 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll 2015-04-15 14:48 - 2015-03-23 00:09 - 01111552 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2015-04-15 14:48 - 2015-03-23 00:09 - 00957440 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2015-04-15 14:48 - 2015-03-23 00:09 - 00769024 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2015-04-15 14:48 - 2015-03-23 00:09 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2015-04-15 14:48 - 2015-03-23 00:09 - 00419328 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2015-04-15 14:48 - 2015-03-23 00:09 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2015-04-15 14:48 - 2014-12-03 01:09 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll 2015-04-13 20:03 - 2015-05-03 19:39 - 00000000 ___RD () C:\Users\Peter\Downloads\Microsoft.SkypeApp_kzf8qxf38zg5c!App ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2015-05-13 19:08 - 2014-12-03 04:40 - 00000000 ____D () C:\Users\Peter\AppData\Roaming\Spotify 2015-05-13 19:06 - 2014-05-28 18:07 - 00000000 ____D () C:\Users\Peter 2015-05-13 19:02 - 2014-02-15 16:34 - 01644548 _____ () C:\WINDOWS\WindowsUpdate.log 2015-05-13 19:01 - 2014-06-14 21:56 - 00000946 _____ () C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-1297332117-2120240881-2487056725-1001UA.job 2015-05-13 18:55 - 2015-01-14 03:00 - 00003600 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1297332117-2120240881-2487056725-1001 2015-05-13 18:55 - 2014-09-21 12:50 - 00000938 _____ () C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-1297332117-2120240881-2487056725-1002UA.job 2015-05-13 18:33 - 2014-10-24 02:23 - 00001138 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1297332117-2120240881-2487056725-1001UA1cfef20bd4cd5d6.job 2015-05-13 18:31 - 2015-02-23 15:00 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2015-05-13 18:30 - 2015-02-12 18:41 - 00000000 ____D () C:\Users\Peter\Desktop\Games 2015-05-13 18:30 - 2015-02-12 12:18 - 00000000 ____D () C:\Users\Peter\Desktop\Tools 2015-05-13 18:30 - 2014-06-08 20:06 - 00000000 ____D () C:\Users\Peter\AppData\Local\CrashDumps 2015-05-13 18:30 - 2013-10-07 21:23 - 00000000 ___DC () C:\WINDOWS\Panther 2015-05-13 18:28 - 2014-06-18 08:18 - 00001138 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1297332117-2120240881-2487056725-1001UA1cf8abd260ff54f.job 2015-05-13 18:19 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\sru 2015-05-13 18:18 - 2014-06-17 05:23 - 00001132 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1cf89db7cb7774e.job 2015-05-13 18:18 - 2014-06-17 05:23 - 00001128 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore1cf89db7c8cc7fe.job 2015-05-13 18:16 - 2014-11-16 14:28 - 00001138 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1297332117-2120240881-2487056725-1001UA1d00198d6b465f7.job 2015-05-13 18:16 - 2014-11-16 14:28 - 00001086 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1297332117-2120240881-2487056725-1001Core1d00198d67d68a2.job 2015-05-13 18:13 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\AppReadiness 2015-05-13 18:09 - 2014-02-16 01:29 - 00772278 _____ () C:\WINDOWS\system32\perfh007.dat 2015-05-13 18:09 - 2014-02-16 01:29 - 00162264 _____ () C:\WINDOWS\system32\perfc007.dat 2015-05-13 18:09 - 2013-10-07 20:27 - 01780340 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2015-05-13 18:03 - 2014-06-06 01:18 - 00000000 ___RD () C:\Users\Peter\Google Drive 2015-05-13 18:03 - 2014-04-25 21:09 - 00000000 __RDO () C:\Users\Peter\SkyDrive 2015-05-13 18:02 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\security 2015-05-13 18:02 - 2013-08-22 16:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2015-05-13 18:02 - 2013-08-22 16:44 - 00418104 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2015-05-13 18:01 - 2014-02-15 16:57 - 00014848 _____ () C:\WINDOWS\system32\VfService.trf 2015-05-13 18:01 - 2013-08-22 15:25 - 00524288 ___SH () C:\WINDOWS\system32\config\BBI 2015-05-13 17:44 - 2014-12-03 04:40 - 00000000 ____D () C:\Users\Peter\AppData\Local\Spotify 2015-05-13 13:33 - 2014-06-06 19:12 - 00001086 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-1297332117-2120240881-2487056725-1001Core.job 2015-05-13 13:01 - 2014-06-14 21:56 - 00000924 _____ () C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-1297332117-2120240881-2487056725-1001Core.job 2015-05-13 12:55 - 2014-09-21 12:50 - 00000916 _____ () C:\WINDOWS\Tasks\FacebookUpdateTaskUserS-1-5-21-1297332117-2120240881-2487056725-1002Core.job 2015-05-13 12:51 - 2015-01-08 02:45 - 00000000 ____D () C:\Users\Peter\AppData\Roaming\Panda Security 2015-05-13 12:51 - 2015-01-08 02:44 - 00000000 ____D () C:\Program Files (x86)\Panda Security 2015-05-13 12:51 - 2015-01-08 02:42 - 00000000 ____D () C:\ProgramData\Panda Security 2015-05-13 12:14 - 2015-02-03 19:51 - 00000000 ____D () C:\Users\Peter\AppData\Local\Battle.net 2015-05-13 11:04 - 2014-06-22 02:40 - 00000000 ____D () C:\ProgramData\Oracle 2015-05-13 10:42 - 2015-01-17 19:37 - 00097888 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll 2015-05-13 10:42 - 2015-01-17 19:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2015-05-13 10:42 - 2015-01-17 19:37 - 00000000 ____D () C:\Program Files (x86)\Java 2015-05-13 09:00 - 2013-08-22 17:20 - 00000000 ____D () C:\WINDOWS\CbsTemp 2015-05-13 02:00 - 2014-05-28 18:53 - 00000000 ____D () C:\Users\Peter\AppData\Local\Adobe 2015-05-13 00:57 - 2014-12-12 13:11 - 00000000 ____D () C:\AdwCleaner 2015-05-12 23:59 - 2015-02-03 02:00 - 00000000 ____D () C:\Program Files (x86)\NCH Software 2015-05-12 23:53 - 2015-02-03 01:57 - 00000000 ____D () C:\Users\Peter\Documents\ezvid 2015-05-12 23:53 - 2014-02-15 16:41 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2015-05-12 23:52 - 2014-07-30 20:11 - 00000000 ____D () C:\Users\Peter\AppData\Local\TechSmith 2015-05-12 23:51 - 2014-09-07 06:32 - 00000000 ____D () C:\Users\Peter\AppData\Local\PokerStars.EU 2015-05-12 16:17 - 2014-09-07 06:31 - 00000000 ____D () C:\Program Files (x86)\PokerStars.EU 2015-05-11 22:02 - 2015-02-03 19:51 - 00000000 ____D () C:\Program Files (x86)\Battle.net 2015-05-11 21:22 - 2014-07-15 21:40 - 00000000 ____D () C:\Users\hans\AppData\Local\CrashDumps 2015-05-11 15:19 - 2014-05-31 05:48 - 00000000 ___DO () C:\Users\hans\OneDrive 2015-05-10 02:18 - 2014-06-06 01:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive 2015-05-09 18:06 - 2015-01-14 02:42 - 00000000 ____D () C:\Users\Peter\AppData\Roaming\BitTorrent 2015-05-06 00:47 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\NDF 2015-05-05 00:52 - 2014-07-19 06:26 - 00000000 ____D () C:\Users\Peter\AppData\Local\Audible 2015-04-28 19:56 - 2014-08-09 11:42 - 00000000 ____D () C:\Program Files (x86)\Steam 2015-04-28 17:28 - 2014-05-31 05:46 - 00000000 ____D () C:\Users\hans 2015-04-27 19:56 - 2015-02-02 14:05 - 00000000 ____D () C:\Users\Peter\Desktop\Audio 2015-04-27 18:41 - 2014-10-01 20:49 - 00000000 ____D () C:\Users\Peter\AppData\Roaming\Nitro PDF 2015-04-25 19:10 - 2015-02-02 18:19 - 00000000 ____D () C:\Users\Peter\Desktop\BTC affiliate 2015-04-22 01:28 - 2014-11-11 17:29 - 00000000 ____D () C:\Users\Peter\AppData\Roaming\Mozilla 2015-04-21 16:05 - 2015-03-20 13:54 - 00000000 ____D () C:\Users\Peter\Desktop\Co-Founder finden 2015-04-18 15:37 - 2015-01-14 03:33 - 00000000 ____D () C:\Users\Peter\AppData\Roaming\vlc 2015-04-18 14:41 - 2014-12-02 02:27 - 00000000 ____D () C:\Users\Peter\AppData\Roaming\FileZilla 2015-04-18 13:37 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\rescache 2015-04-17 11:27 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\AppCompat 2015-04-17 10:46 - 2015-03-12 13:53 - 00000000 ___SD () C:\WINDOWS\system32\CompatTel 2015-04-16 15:57 - 2014-05-29 11:32 - 00000000 ____D () C:\WINDOWS\system32\MRT 2015-04-16 15:54 - 2014-05-29 11:32 - 128913832 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2015-04-15 15:19 - 2015-02-03 20:12 - 00000000 ____D () C:\Program Files (x86)\Hearthstone 2015-04-15 14:46 - 2014-11-12 06:49 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaext.dll 2015-04-14 18:13 - 2014-06-17 05:23 - 00004104 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA1cf89db7cb7774e 2015-04-14 18:13 - 2014-06-17 05:23 - 00003868 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore1cf89db7c8cc7fe 2015-04-14 18:11 - 2014-11-16 14:28 - 00004086 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1297332117-2120240881-2487056725-1001UA1d00198d6b465f7 2015-04-14 18:11 - 2014-11-16 14:28 - 00003706 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1297332117-2120240881-2487056725-1001Core1d00198d67d68a2 2015-04-14 01:24 - 2013-08-22 17:38 - 00792056 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2015-04-14 01:24 - 2013-08-22 17:38 - 00178168 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2015-04-13 09:39 - 2015-04-12 23:09 - 00000000 ____D () C:\Users\Peter\AppData\Local\Popcorn-Time ==================== Files in the root of some directories ======= 2015-02-21 17:37 - 2015-02-21 17:37 - 0000088 _____ () C:\Users\Peter\AppData\Roaming\.95d691779473f3e03bc4b4e56319d74c.key 2015-02-21 17:37 - 2015-02-21 17:37 - 0000088 _____ () C:\Users\Peter\AppData\Roaming\.c79792229cdae4d8fe4e261fc4d6976b.key 2014-05-28 18:09 - 2014-06-14 03:13 - 0015135 _____ () C:\Users\Peter\AppData\Roaming\AbsoluteReminder.xml 2015-04-27 18:46 - 2015-04-27 18:46 - 0000046 _____ () C:\Users\Peter\AppData\Roaming\Camdata.ini 2015-04-27 18:46 - 2015-04-27 18:46 - 0000408 _____ () C:\Users\Peter\AppData\Roaming\CamLayout.ini 2015-04-27 18:46 - 2015-04-27 18:46 - 0000408 _____ () C:\Users\Peter\AppData\Roaming\CamShapes.ini 2015-04-27 18:46 - 2015-04-27 18:46 - 0004536 _____ () C:\Users\Peter\AppData\Roaming\CamStudio.cfg 2015-02-21 17:37 - 2015-02-22 19:10 - 0000236 _____ () C:\Users\Peter\AppData\Roaming\RO39-2M3Q 2015-04-27 18:45 - 2015-04-27 18:45 - 0000096 _____ () C:\Users\Peter\AppData\Roaming\version2.xml 2014-02-15 16:41 - 2014-02-15 16:41 - 0000000 ____H () C:\ProgramData\DP45977C.lfl ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2015-05-07 23:02 ==================== End Of Log ============================ |
Themen zu "Digital More Ads" Popups fluten meinen Browser trotz Adblocker |
ad-aware, fehlercode 0x80070057, fehlercode 0xc0000005, fehlercode 0xc0000374, homepage, kaspersky, refresh, super, win32/downloadguide.h, win32/downloadsponsor.c, win32/installcore.nf, win32/installcore.ue, win32/installmonetizer.aq, win32/solvusoft.a, windowsapps |