Code:
Alles auswählen Aufklappen ATTFilter
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 08-07-2017
durchgeführt von Charly (Administrator) auf RENÉ (09-07-2017 12:18:40)
Gestartet von D:\
Geladene Profile: Charly & (Verfügbare Profile: Charly)
Platform: Windows 10 Home Version 1511 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: Chrome)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Prozesse (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)
() C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe
(Intel Corporation) C:\WINDOWS\System32\igfxCUIService.exe
(AMD) C:\WINDOWS\System32\atiesrxx.exe
(Intel Corporation) C:\WINDOWS\SysWOW64\IntelCpHeciSvc.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\sched.exe
(Dropbox, Inc.) C:\WINDOWS\System32\DbxSvc.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
() C:\Program Files (x86)\MediaFire Desktop\bin\MFUsnMonitorService.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avguard.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\x64\aswidsagenta.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avshadow.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
(Microsoft Corporation) C:\WINDOWS\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\WINDOWS\System32\dllhost.exe
(AMD) C:\WINDOWS\System32\atieclxx.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Intel Corporation) C:\WINDOWS\System32\igfxEM.exe
(Intel Corporation) C:\WINDOWS\System32\igfxHK.exe
() C:\WINDOWS\System32\igfxTray.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMTray.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\AVGUI.exe
(Spotify Ltd) C:\Users\Charly\AppData\Roaming\Spotify\SpotifyWebHelper.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe
() C:\Users\Charly\AppData\Local\MediaFire Desktop\mf_watch.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe
() C:\Program Files (x86)\AVG Web TuneUp\vprot.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Antivirus\avgnt.exe
(Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe
() C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\CCXProcess.exe
(Node.js) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\libs\node.exe
(Intel Corporation) C:\WINDOWS\System32\igfxext.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe
(Microsoft Corporation) C:\WINDOWS\SysWOW64\dllhost.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Setup\avgsetupx.exe
(Microsoft Corporation) C:\WINDOWS\System32\dllhost.exe
(Microsoft Corporation) C:\WINDOWS\ImmersiveControlPanel\SystemSettings.exe
() C:\Users\Charly\AppData\Local\MediaFire Desktop\mf_hub.exe
() C:\Users\Charly\AppData\Local\MediaFire Desktop\MediaFire Desktop.exe
() C:\Users\Charly\AppData\Local\MediaFire Desktop\mf_filetransfer.exe
() C:\Users\Charly\AppData\Local\MediaFire Desktop\mf_browser.exe
() C:\Users\Charly\AppData\Local\MediaFire Desktop\mf_central_control.exe
() C:\Users\Charly\AppData\Local\MediaFire Desktop\mf_monitor.exe
() C:\Users\Charly\AppData\Local\MediaFire Desktop\mf_dialogs.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Setup\avgsetupx.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Cinematronics) C:\Program Files (x86)\Microsoft Games\Pinball\pinball.exe
==================== Registry (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3242696 2015-10-10] (ELAN Microelectronics Corp.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13885696 2015-06-24] (Realtek Semiconductor)
HKLM\...\Run: [IgfxTray] => C:\WINDOWS\system32\igfxtray.exe [415128 2015-10-15] ()
HKLM\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [239592 2017-06-15] (AVG Technologies CZ, s.r.o.)
HKLM\...\Run: [AVGUI.exe] => C:\Program Files (x86)\AVG\Antivirus\AvLaunch.exe [263232 2017-05-24] (AVG Technologies CZ, s.r.o.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2406496 2017-06-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [vProt] => C:\Program Files (x86)\AVG Web TuneUp\vprot.exe [2875464 2016-03-24] ()
HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [97512 2017-06-08] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\Antivirus\avgnt.exe [918008 2017-06-13] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [3486520 2017-06-26] (Dropbox, Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-03-15] (Oracle Corporation)
HKU\S-1-5-21-2170906037-549936913-1423911947-1001\...\Run: [Spotify Web Helper] => C:\Users\Charly\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1562224 2017-06-24] (Spotify Ltd)
HKU\S-1-5-21-2170906037-549936913-1423911947-1001\...\Run: [MediaFire Tray] => C:\Users\Charly\AppData\Local\MediaFire Desktop\mf_watch.exe [4075008 2016-03-08] ()
HKU\S-1-5-21-2170906037-549936913-1423911947-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27716568 2017-05-04] (Skype Technologies S.A.)
HKU\S-1-5-21-2170906037-549936913-1423911947-1001\...\RunOnce: [Uninstall C:\Users\Charly\AppData\Local\Microsoft\OneDrive\17.3.6302.0225_1\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Charly\AppData\Local\Microsoft\OneDrive\17.3.6302.0225_1\amd64"
HKU\S-1-5-21-2170906037-549936913-1423911947-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Spotify Web Helper] => C:\Users\Charly\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1562224 2017-06-24] (Spotify Ltd)
HKU\S-1-5-21-2170906037-549936913-1423911947-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [MediaFire Tray] => C:\Users\Charly\AppData\Local\MediaFire Desktop\mf_watch.exe [4075008 2016-03-08] ()
HKU\S-1-5-21-2170906037-549936913-1423911947-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27716568 2017-05-04] (Skype Technologies S.A.)
HKU\S-1-5-21-2170906037-549936913-1423911947-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\RunOnce: [Uninstall C:\Users\Charly\AppData\Local\Microsoft\OneDrive\17.3.6302.0225_1\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Charly\AppData\Local\Microsoft\OneDrive\17.3.6302.0225_1\amd64"
HKU\S-1-5-21-2170906037-549936913-1423911947-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\...\Run: [Spotify Web Helper] => C:\Users\Charly\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1562224 2017-06-24] (Spotify Ltd)
HKU\S-1-5-21-2170906037-549936913-1423911947-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\...\Run: [MediaFire Tray] => C:\Users\Charly\AppData\Local\MediaFire Desktop\mf_watch.exe [4075008 2016-03-08] ()
HKU\S-1-5-21-2170906037-549936913-1423911947-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27716568 2017-05-04] (Skype Technologies S.A.)
HKU\S-1-5-21-2170906037-549936913-1423911947-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\...\RunOnce: [Uninstall C:\Users\Charly\AppData\Local\Microsoft\OneDrive\17.3.6302.0225_1\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Charly\AppData\Local\Microsoft\OneDrive\17.3.6302.0225_1\amd64"
==================== Internet (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{af5a0a85-6121-4e8e-ab1c-cd3c47d75fdc}: [DhcpNameServer] 192.168.2.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=MSE1
HKU\S-1-5-21-2170906037-549936913-1423911947-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://mysearch.avg.com/?cid=%7B6AF0B932-9D20-4D67-AFC9-EF365BAA9ECC%7D&mid=efefa0b7ac2b47cd9d717592764975ac-bb4dd35e0c87741ce6b3e1f13ef4e43d517d1902&lang=de&ds=AVG&coid=avgtbavg&cmpid=0915tb&pr=fr&d=2014-12-11%2017:16:27&v=4.1.6.294&pid=wtu&sg=&sap=hp
HKU\S-1-5-21-2170906037-549936913-1423911947-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://mysearch.avg.com/?cid=%7B6AF0B932-9D20-4D67-AFC9-EF365BAA9ECC%7D&mid=efefa0b7ac2b47cd9d717592764975ac-bb4dd35e0c87741ce6b3e1f13ef4e43d517d1902&lang=de&ds=AVG&coid=avgtbavg&cmpid=0915tb&pr=fr&d=2014-12-11%2017:16:27&v=4.1.6.294&pid=wtu&sg=&sap=hp
HKU\S-1-5-21-2170906037-549936913-1423911947-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://mysearch.avg.com/?cid=%7B6AF0B932-9D20-4D67-AFC9-EF365BAA9ECC%7D&mid=efefa0b7ac2b47cd9d717592764975ac-bb4dd35e0c87741ce6b3e1f13ef4e43d517d1902&lang=de&ds=AVG&coid=avgtbavg&cmpid=0915tb&pr=fr&d=2014-12-11%2017:16:27&v=4.1.6.294&pid=wtu&sg=&sap=hp
SearchScopes: HKLM -> {c9ab6446-7efc-47fe-966c-dc54324eff9f} URL =
SearchScopes: HKU\S-1-5-21-2170906037-549936913-1423911947-1001 -> DefaultScope {91BD0348-48CB-4924-B633-EEA242BA7533} URL = hxxps://de.search.yahoo.com/search?fr=mcafee&type=C014DE662D20160105&p={searchTerms}
SearchScopes: HKU\S-1-5-21-2170906037-549936913-1423911947-1001 -> {1516485F-8427-49EF-8F3F-A19DAC4B0769} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKU\S-1-5-21-2170906037-549936913-1423911947-1001 -> {91BD0348-48CB-4924-B633-EEA242BA7533} URL = hxxps://de.search.yahoo.com/search?fr=mcafee&type=C014DE662D20160105&p={searchTerms}
SearchScopes: HKU\S-1-5-21-2170906037-549936913-1423911947-1001 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={6AF0B932-9D20-4D67-AFC9-EF365BAA9ECC}&mid=efefa0b7ac2b47cd9d717592764975ac-bb4dd35e0c87741ce6b3e1f13ef4e43d517d1902&lang=de&ds=AVG&coid=avgtbavg&cmpid=0915tb&pr=fr&d=2014-12-11 17:16:27&v=4.1.6.294&pid=wtu&sg=&sap=dsp&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2170906037-549936913-1423911947-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> DefaultScope {91BD0348-48CB-4924-B633-EEA242BA7533} URL = hxxps://de.search.yahoo.com/search?fr=mcafee&type=C014DE662D20160105&p={searchTerms}
SearchScopes: HKU\S-1-5-21-2170906037-549936913-1423911947-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> {1516485F-8427-49EF-8F3F-A19DAC4B0769} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKU\S-1-5-21-2170906037-549936913-1423911947-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> {91BD0348-48CB-4924-B633-EEA242BA7533} URL = hxxps://de.search.yahoo.com/search?fr=mcafee&type=C014DE662D20160105&p={searchTerms}
SearchScopes: HKU\S-1-5-21-2170906037-549936913-1423911947-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={6AF0B932-9D20-4D67-AFC9-EF365BAA9ECC}&mid=efefa0b7ac2b47cd9d717592764975ac-bb4dd35e0c87741ce6b3e1f13ef4e43d517d1902&lang=de&ds=AVG&coid=avgtbavg&cmpid=0915tb&pr=fr&d=2014-12-11 17:16:27&v=4.1.6.294&pid=wtu&sg=&sap=dsp&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2170906037-549936913-1423911947-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1 -> DefaultScope {91BD0348-48CB-4924-B633-EEA242BA7533} URL = hxxps://de.search.yahoo.com/search?fr=mcafee&type=C014DE662D20160105&p={searchTerms}
SearchScopes: HKU\S-1-5-21-2170906037-549936913-1423911947-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1 -> {1516485F-8427-49EF-8F3F-A19DAC4B0769} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKU\S-1-5-21-2170906037-549936913-1423911947-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1 -> {91BD0348-48CB-4924-B633-EEA242BA7533} URL = hxxps://de.search.yahoo.com/search?fr=mcafee&type=C014DE662D20160105&p={searchTerms}
SearchScopes: HKU\S-1-5-21-2170906037-549936913-1423911947-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={6AF0B932-9D20-4D67-AFC9-EF365BAA9ECC}&mid=efefa0b7ac2b47cd9d717592764975ac-bb4dd35e0c87741ce6b3e1f13ef4e43d517d1902&lang=de&ds=AVG&coid=avgtbavg&cmpid=0915tb&pr=fr&d=2014-12-11 17:16:27&v=4.1.6.294&pid=wtu&sg=&sap=dsp&q={searchTerms}
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2017-04-11] (Microsoft Corporation)
BHO: AVG Web TuneUp -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> C:\Program Files\AVG Web TuneUp\4.2.8.608\AVG Web TuneUp.dll [2016-03-24] (AVG)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2017-03-14] (Microsoft Corporation)
BHO: DVDVideoSoft IE Extension -> {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} -> C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll [2014-09-19] (DVDVideoSoft Ltd.)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\ssv.dll [2017-04-24] (Oracle Corporation)
BHO-x32: AVG Web TuneUp -> {95B7759C-8C7F-4BF1-B163-73684A933233} -> C:\Program Files (x86)\AVG Web TuneUp\4.2.8.608\AVG Web TuneUp.dll [2016-03-24] (AVG)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\jp2ssv.dll [2017-04-24] (Oracle Corporation)
BHO-x32: DVDVideoSoft IE Extension -> {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} -> C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll [2015-08-05] (DVDVideoSoft Ltd.)
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2016-04-20] (Microsoft Corporation)
Handler-x32: viprotocol - {B658800C-F66E-4EF3-AB85-6C0C227862A9} - C:\Program Files (x86)\Common Files\AVG Secure Search\ViProtocolInstaller\18.2.0\ViProtocol.dll [2014-12-11] (AVG Secure Search)
FireFox:
========
FF ProfilePath: C:\Users\Charly\AppData\Roaming\Mozilla\Firefox\Profiles\rzTTZNwE.default [2017-04-06]
FF user.js: detected! => C:\Users\Charly\AppData\Roaming\Mozilla\Firefox\Profiles\rzTTZNwE.default\user.js [2017-04-06]
FF Extension: (Avira Browser Safety) - C:\Users\Charly\AppData\Roaming\Mozilla\Firefox\Profiles\rzTTZNwE.default\Extensions\abs@avira.com [2015-12-12] [ist nicht signiert]
FF Extension: (Kein Name) - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [nicht gefunden]
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2017-06-04] (Adobe Systems)
FF Plugin-x32: @avg.com/AVG SiteSafety plugin,version=11.0.0.1,application/x-avg-sitesafety-plugin -> C:\Program Files (x86)\Common Files\AVG Secure Search\SiteSafetyInstaller\40.2.8\\npsitesafety.dll [Keine Datei]
FF Plugin-x32: @java.com/DTPlugin,version=11.131.2 -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\dtplugin\npDeployJava1.dll [2017-04-24] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.131.2 -> C:\Program Files (x86)\Java\jre1.8.0_131\bin\plugin2\npjp2.dll [2017-04-24] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2014-10-23] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-27] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-27] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-04-05] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2017-06-04] (Adobe Systems)
Chrome:
=======
CHR HomePage: Default -> hxxp://www.search.ask.com/?gct=hp
CHR StartupUrls: Default -> "hxxp://www.google.de/"
CHR DefaultSearchURL: Default -> hxxp://www.search.ask.com/web?q={searchTerms}
CHR DefaultSearchKeyword: Default -> search.ask.com
CHR DefaultSuggestURL: Default -> hxxp://ssmsp.ask.com/query?sstype=prefix&li=ff&q={searchTerms}
CHR Profile: C:\Users\Charly\AppData\Local\Google\Chrome\User Data\Default [2017-07-08]
CHR Extension: (Google Docs) - C:\Users\Charly\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-02-04]
CHR Extension: (Google Drive) - C:\Users\Charly\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21]
CHR Extension: (Dark Skin for Youtube™) - C:\Users\Charly\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfeknfgchonpnofdjokchhdhdnddhglm [2017-04-29]
CHR Extension: (YouTube) - C:\Users\Charly\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-24]
CHR Extension: (AVG Secure Search) - C:\Users\Charly\AppData\Local\Google\Chrome\User Data\Default\Extensions\chfdnecihphmhljaaejmgoiahnihplgn [2015-12-22]
CHR Extension: (Google-Suche) - C:\Users\Charly\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-26]
CHR Extension: (Avira Browserschutz) - C:\Users\Charly\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2017-06-21]
CHR Extension: (Google Docs Offline) - C:\Users\Charly\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-15]
CHR Extension: (AdBlock) - C:\Users\Charly\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2017-07-02]
CHR Extension: (Skype) - C:\Users\Charly\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2017-06-21]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Charly\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-03-13]
CHR Extension: (Mein Chrome-Design) - C:\Users\Charly\AppData\Local\Google\Chrome\User Data\Default\Extensions\oehpjpccmlcalbenfhnacjeocbjdonic [2015-08-29]
CHR Extension: (Google Mail) - C:\Users\Charly\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-28]
CHR Extension: (Chrome Media Router) - C:\Users\Charly\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-07-02]
CHR Profile: C:\Users\Charly\AppData\Local\Google\Chrome\User Data\Profile 1 [2015-08-12]
CHR Extension: (Ask Search) - C:\Users\Charly\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aaaaaiabcopkplhgaedhbloeejhhankf [2014-09-22]
CHR Extension: (Google Präsentationen) - C:\Users\Charly\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-09-22]
CHR Extension: (Google Docs) - C:\Users\Charly\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2014-09-22]
CHR Extension: (Google Drive) - C:\Users\Charly\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-09-22]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Charly\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-09-22]
CHR Extension: (YouTube) - C:\Users\Charly\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-09-22]
CHR Extension: (Google-Suche) - C:\Users\Charly\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-09-22]
CHR Extension: (Google Tabellen) - C:\Users\Charly\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-09-22]
CHR Extension: (SiteAdvisor) - C:\Users\Charly\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2014-09-22]
CHR Extension: (Skype Click to Call) - C:\Users\Charly\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2014-09-22]
CHR Extension: (Google Wallet) - C:\Users\Charly\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-09-22]
CHR Extension: (Google Mail) - C:\Users\Charly\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-09-22]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [eiibddcohpjhajbnfkpboacmohommppp] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [fabhkdeopjkcpkmofliimbjckmocfiom] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - hxxps://clients2.google.com/service/update2/crx
==================== Dienste (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [814688 2017-06-04] (Adobe Systems Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2246256 2017-05-18] (Adobe Systems, Incorporated)
S2 AntiVirMailService; C:\Program Files (x86)\Avira\Antivirus\avmailc7.exe [1128432 2017-06-13] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\Antivirus\sched.exe [490968 2017-06-13] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\Antivirus\avguard.exe [490968 2017-06-13] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files (x86)\Avira\Antivirus\avwebg7.exe [1524216 2017-06-13] (Avira Operations GmbH & Co. KG)
R2 AVG Antivirus; C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe [264432 2017-05-24] (AVG Technologies CZ, s.r.o.)
R3 avgbIDSAgent; C:\Program Files (x86)\AVG\Antivirus\x64\aswidsagenta.exe [7396872 2017-05-24] (AVG Technologies CZ, s.r.o.)
R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1428656 2017-06-15] (AVG Technologies CZ, s.r.o.)
R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [356256 2017-06-08] (Avira Operations GmbH & Co. KG)
R2 CCDMonitorService; C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [2615368 2013-02-27] (Acer Incorporated)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [3042544 2017-03-14] (Microsoft Corporation)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-01-08] (Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-01-08] (Dropbox, Inc.)
R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [49992 2017-06-26] (Dropbox, Inc.)
R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [662088 2013-03-15] (Acer Incorporated)
R2 ETDService; C:\Program Files\Elantech\ETDService.exe [144072 2015-10-10] (ELAN Microelectronics Corp.)
R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [370064 2015-10-15] (Intel Corporation)
R2 LMSvc; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [431656 2013-06-18] (Acer Incorporate)
S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
R2 MF NTFS Monitor; C:\Program Files (x86)\MediaFire Desktop\bin\MFUsnMonitorService.exe [456176 2016-03-08] ()
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2016-10-25] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2017-06-03] (Microsoft Corporation)
R2 WtuSystemSupport; C:\Program Files (x86)\AVG Web TuneUp\WtuSystemSupport.exe [1216584 2016-03-24] ()
===================== Treiber (Nicht auf der Ausnahmeliste) ======================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R0 amdkmpfd; C:\WINDOWS\System32\drivers\amdkmpfd.sys [97184 2017-01-25] (Advanced Micro Devices, Inc.)
R0 avdevprot; C:\WINDOWS\System32\DRIVERS\avdevprot.sys [60920 2017-06-13] (Avira Operations GmbH & Co. KG)
R1 avgbdisk; C:\WINDOWS\system32\drivers\avgbdiska.sys [166624 2017-05-24] (AVG Technologies CZ, s.r.o.)
R1 avgbidsdriver; C:\WINDOWS\system32\drivers\avgbidsdrivera.sys [314128 2017-05-24] (AVG Technologies CZ, s.r.o.)
R0 avgbidsh; C:\WINDOWS\system32\drivers\avgbidsha.sys [192584 2017-05-24] (AVG Technologies CZ, s.r.o.)
R0 avgblog; C:\WINDOWS\system32\drivers\avgbloga.sys [336896 2017-05-24] (AVG Technologies CZ, s.r.o.)
R0 avgbuniv; C:\WINDOWS\system32\drivers\avgbuniva.sys [51336 2017-05-24] (AVG Technologies CZ, s.r.o.)
S3 avgHwid; C:\WINDOWS\system32\drivers\avgHwid.sys [39424 2017-05-24] (AVG Technologies CZ, s.r.o.)
R2 avgMonFlt; C:\WINDOWS\system32\drivers\avgMonFlt.sys [129776 2017-05-24] (AVG Technologies CZ, s.r.o.)
R2 avgntflt; C:\WINDOWS\System32\DRIVERS\avgntflt.sys [167504 2017-06-13] (Avira Operations GmbH & Co. KG)
R1 avgRdr; C:\WINDOWS\system32\drivers\avgRdr2.sys [102280 2017-05-24] (AVG Technologies CZ, s.r.o.)
R0 avgRvrt; C:\WINDOWS\system32\drivers\avgRvrt.sys [76832 2017-05-24] (AVG Technologies CZ, s.r.o.)
R1 avgSnx; C:\WINDOWS\system32\drivers\avgSnx.sys [1008288 2017-05-24] (AVG Technologies CZ, s.r.o.)
R1 avgSP; C:\WINDOWS\system32\drivers\avgSP.sys [570320 2017-05-24] (AVG Technologies CZ, s.r.o.)
R2 avgStm; C:\WINDOWS\system32\drivers\avgStm.sys [160008 2017-05-24] (AVG Technologies CZ, s.r.o.)
R0 avgVmm; C:\WINDOWS\system32\drivers\avgVmm.sys [340824 2017-05-24] (AVG Technologies CZ, s.r.o.)
R1 avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [164824 2017-06-13] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [44488 2017-03-02] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\WINDOWS\system32\DRIVERS\avnetflt.sys [88488 2017-03-02] (Avira Operations GmbH & Co. KG)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.)
S3 Hamachi; C:\WINDOWS\System32\drivers\Hamdrv.sys [45680 2015-08-03] (LogMeIn Inc.)
R3 LMDriver; C:\WINDOWS\System32\drivers\LMDriver.sys [21360 2013-01-10] (Acer Incorporated)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [113880 2017-07-04] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-06-18] (Malwarebytes Corporation)
R3 MEIx64; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [99288 2013-12-19] (Intel Corporation)
R2 mfmonitor; C:\WINDOWS\System32\DRIVERS\mfmonitor_x64.sys [20696 2016-03-07] (Windows (R) Win 7 DDK provider)
R0 PxHlpa64; C:\WINDOWS\System32\drivers\PxHlpa64.sys [56336 2013-09-03] (Corel Corporation)
R3 RadioShim; C:\WINDOWS\System32\drivers\RadioShim.sys [15704 2013-01-10] (Acer Incorporated)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.)
S3 USBAAPL64; C:\WINDOWS\System32\Drivers\usbaapl64.sys [54784 2014-06-10] (Apple, Inc.) [Datei ist nicht signiert]
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
==================== Ein Monat: Erstellte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2017-07-09 12:14 - 2017-07-09 12:18 - 00000000 ____D C:\FRST
2017-07-07 21:32 - 2017-07-07 21:32 - 00000000 ____D C:\Users\Charly\AppData\Local\TempTaskUpdateDetectionC304E806-37F4-448A-97AB-C9803FFB994C
2017-07-03 19:35 - 2017-07-03 19:36 - 00000000 ____D C:\Users\Charly\Desktop\unneccessary
2017-06-30 16:58 - 2017-06-30 16:58 - 00338204 _____ C:\Users\Charly\Downloads\Bewerbung.pdf
2017-06-30 16:54 - 2017-06-30 17:00 - 00338193 _____ C:\Users\Charly\Documents\Bewerbung.pdf
2017-06-30 16:40 - 2017-07-01 16:39 - 00004562 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
2017-06-30 16:38 - 2017-06-30 16:38 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2017-06-30 16:38 - 2017-06-30 16:38 - 00002128 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk
2017-06-30 16:32 - 2017-06-30 16:33 - 01205776 _____ (Adobe Systems Incorporated) C:\Users\Charly\Downloads\readerdc_de_a_install.exe
2017-06-30 16:28 - 2017-06-30 16:49 - 00973975 _____ C:\Users\Charly\Documents\Zeugnisse_Shari-Ade.pdf
2017-06-27 21:36 - 2017-06-27 21:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2017-06-26 12:27 - 2017-06-26 12:27 - 00049992 _____ (Dropbox, Inc.) C:\WINDOWS\system32\DbxSvc.exe
2017-06-26 12:27 - 2017-06-26 12:27 - 00045640 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-stable.sys
2017-06-26 12:27 - 2017-06-26 12:27 - 00045640 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-dev.sys
2017-06-26 12:27 - 2017-06-26 12:27 - 00045640 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-canary.sys
2017-06-14 20:50 - 2017-06-03 12:40 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2017-06-14 20:50 - 2017-06-03 12:04 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepapi.dll
2017-06-14 20:50 - 2017-06-03 12:03 - 02597376 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2017-06-14 20:50 - 2017-06-03 11:44 - 00760320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2017-06-14 20:50 - 2017-06-03 11:16 - 01984000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2017-06-14 20:49 - 2017-06-03 15:34 - 00118112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdx.sys
2017-06-14 20:49 - 2017-06-03 15:31 - 00989536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2017-06-14 20:49 - 2017-06-03 14:51 - 01862008 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2017-06-14 20:49 - 2017-06-03 14:45 - 06536256 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2017-06-14 20:49 - 2017-06-03 13:48 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2017-06-14 20:49 - 2017-06-03 13:45 - 00465760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe
2017-06-14 20:49 - 2017-06-03 13:44 - 21123320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2017-06-14 20:49 - 2017-06-03 13:42 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2017-06-14 20:49 - 2017-06-03 13:39 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BasicRender.sys
2017-06-14 20:49 - 2017-06-03 13:14 - 00316256 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2017-06-14 20:49 - 2017-06-03 13:13 - 00546968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2017-06-14 20:49 - 2017-06-03 13:11 - 01368176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2017-06-14 20:49 - 2017-06-03 12:43 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2017-06-14 20:49 - 2017-06-03 12:36 - 00865792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2017-06-14 20:49 - 2017-06-03 12:34 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
2017-06-14 20:49 - 2017-06-03 12:33 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll
2017-06-14 20:49 - 2017-06-03 12:32 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2017-06-14 20:49 - 2017-06-03 12:31 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2017-06-14 20:49 - 2017-06-03 12:20 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certenc.dll
2017-06-14 20:49 - 2017-06-03 12:15 - 00256512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\unimdm.tsp
2017-06-14 20:49 - 2017-06-03 12:14 - 00205312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oemlicense.dll
2017-06-14 20:49 - 2017-06-03 12:09 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IdCtrls.dll
2017-06-14 20:49 - 2017-06-03 12:08 - 02280960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2017-06-14 20:49 - 2017-06-03 12:05 - 00260096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepsync.dll
2017-06-14 20:49 - 2017-06-03 12:01 - 00541184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GamePanel.exe
2017-06-14 20:49 - 2017-06-03 11:55 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2017-06-14 20:49 - 2017-06-03 11:51 - 00153088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSSync.dll
2017-06-14 20:49 - 2017-06-03 11:50 - 00792576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2017-06-14 20:49 - 2017-06-03 11:49 - 01151488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certutil.exe
2017-06-14 20:49 - 2017-06-03 11:49 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll
2017-06-14 20:49 - 2017-06-03 11:43 - 00805888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2017-06-14 20:49 - 2017-06-03 11:41 - 03695104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll
2017-06-14 20:49 - 2017-06-03 11:41 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll
2017-06-14 20:49 - 2017-06-03 11:40 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\licensingdiag.exe
2017-06-14 20:49 - 2017-06-03 11:34 - 01984000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2017-06-14 20:49 - 2017-06-03 11:27 - 04078080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll
2017-06-14 20:49 - 2017-06-03 11:20 - 02911744 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2017-06-14 20:49 - 2017-06-03 11:19 - 01501184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2017-06-14 20:49 - 2017-06-03 11:14 - 06296064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2017-06-14 20:49 - 2017-06-03 11:05 - 03575808 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2017-06-14 20:49 - 2017-06-03 10:59 - 02771456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2017-06-14 20:49 - 2017-06-03 10:56 - 04404736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2017-06-14 20:49 - 2017-06-03 10:55 - 05326848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2017-06-14 20:49 - 2017-06-03 10:51 - 02604032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2017-06-14 20:49 - 2017-06-03 10:48 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2017-06-14 20:49 - 2017-06-03 10:23 - 00461824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2017-06-14 20:48 - 2017-06-03 14:57 - 00245848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2017-06-14 20:48 - 2017-06-03 14:47 - 22560744 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2017-06-14 20:48 - 2017-06-03 13:49 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2017-06-14 20:48 - 2017-06-03 13:42 - 00824320 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2017-06-14 20:48 - 2017-06-03 13:19 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.ps.dll
2017-06-14 20:48 - 2017-06-03 12:55 - 00330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2017-06-14 20:48 - 2017-06-03 12:50 - 00183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSSync.dll
2017-06-14 20:48 - 2017-06-03 12:48 - 00784384 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2017-06-14 20:48 - 2017-06-03 12:43 - 00842240 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2017-06-14 20:48 - 2017-06-03 12:34 - 00572928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2017-06-14 20:48 - 2017-06-03 12:17 - 05123072 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll
2017-06-14 20:48 - 2017-06-03 12:16 - 01121792 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2017-06-14 20:48 - 2017-06-03 12:05 - 00307200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2017-06-14 20:48 - 2017-06-03 12:01 - 07977984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2017-06-14 20:48 - 2017-06-03 11:49 - 00687616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2017-06-14 20:48 - 2017-06-03 11:44 - 01526272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2017-06-14 20:48 - 2017-06-03 11:41 - 00957952 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2017-06-14 20:48 - 2017-06-03 11:31 - 04890112 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2017-06-14 20:48 - 2017-06-03 11:00 - 19344896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2017-06-14 20:48 - 2017-06-03 10:59 - 18672640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2017-06-14 20:48 - 2017-06-03 10:59 - 03660288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2017-06-14 20:48 - 2017-06-03 10:57 - 12139008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2017-06-14 20:48 - 2017-06-03 10:42 - 05670400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2017-06-14 20:47 - 2017-06-03 15:49 - 07464288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2017-06-14 20:47 - 2017-06-03 15:49 - 02656952 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2017-06-14 20:47 - 2017-06-03 15:27 - 03449168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
2017-06-14 20:47 - 2017-06-03 13:41 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll
2017-06-14 20:47 - 2017-06-03 13:21 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\unimdm.tsp
2017-06-14 20:47 - 2017-06-03 13:09 - 00200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFPlatform.dll
2017-06-14 20:47 - 2017-06-03 13:08 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2017-06-14 20:47 - 2017-06-03 12:49 - 00971776 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2017-06-14 20:47 - 2017-06-03 12:43 - 00853504 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2017-06-14 20:47 - 2017-06-03 12:41 - 01752576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2017-06-14 20:47 - 2017-06-03 12:40 - 01648128 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll
2017-06-14 20:47 - 2017-06-03 12:40 - 00961536 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2017-06-14 20:47 - 2017-06-03 12:26 - 02433536 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2017-06-14 20:47 - 2017-06-03 12:07 - 01729536 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2017-06-14 20:47 - 2017-06-03 12:06 - 00995840 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe
2017-06-14 20:47 - 2017-06-03 11:47 - 16985600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2017-06-14 20:47 - 2017-06-03 11:30 - 22376448 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2017-06-14 20:47 - 2017-06-03 11:19 - 24605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2017-06-14 20:47 - 2017-06-03 11:17 - 13393920 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2017-06-14 20:47 - 2017-06-03 11:05 - 07852032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2017-06-14 20:47 - 2017-06-03 08:03 - 00448576 _____ C:\WINDOWS\system32\ApnDatabase.xml
2017-06-14 20:46 - 2017-06-03 15:51 - 00129376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys
2017-06-14 20:46 - 2017-06-03 15:46 - 00754664 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2017-06-14 20:46 - 2017-06-03 14:47 - 00566112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe
2017-06-14 20:46 - 2017-06-03 14:46 - 01540224 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2017-06-14 20:46 - 2017-06-03 14:46 - 00692136 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll
2017-06-14 20:46 - 2017-06-03 14:43 - 01128104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2017-06-14 20:46 - 2017-06-03 14:43 - 00625000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2017-06-14 20:46 - 2017-06-03 14:12 - 01987424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2017-06-14 20:46 - 2017-06-03 14:12 - 00636304 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2017-06-14 20:46 - 2017-06-03 14:12 - 00379232 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2017-06-14 20:46 - 2017-06-03 14:10 - 01597520 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2017-06-14 20:46 - 2017-06-03 13:57 - 01564512 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2017-06-14 20:46 - 2017-06-03 13:57 - 01214816 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2017-06-14 20:46 - 2017-06-03 13:57 - 00629088 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2017-06-14 20:46 - 2017-06-03 13:57 - 00544096 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2017-06-14 20:46 - 2017-06-03 13:57 - 00335712 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2017-06-14 20:46 - 2017-06-03 13:57 - 00334176 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2017-06-14 20:46 - 2017-06-03 13:57 - 00225632 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2017-06-14 20:46 - 2017-06-03 13:57 - 00136032 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2017-06-14 20:46 - 2017-06-03 13:57 - 00096608 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2017-06-14 20:46 - 2017-06-03 13:57 - 00034656 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2017-06-14 20:46 - 2017-06-03 13:42 - 00068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdProxy.dll
2017-06-14 20:46 - 2017-06-03 13:41 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\vss_ps.dll
2017-06-14 20:46 - 2017-06-03 13:40 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2017-06-14 20:46 - 2017-06-03 13:39 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2017-06-14 20:46 - 2017-06-03 13:32 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll
2017-06-14 20:46 - 2017-06-03 13:27 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\certenc.dll
2017-06-14 20:46 - 2017-06-03 13:20 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\oemlicense.dll
2017-06-14 20:46 - 2017-06-03 13:13 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\IdCtrls.dll
2017-06-14 20:46 - 2017-06-03 13:11 - 00198144 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll
2017-06-14 20:46 - 2017-06-03 13:09 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll
2017-06-14 20:46 - 2017-06-03 13:07 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll
2017-06-14 20:46 - 2017-06-03 13:02 - 00715264 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
2017-06-14 20:46 - 2017-06-03 12:48 - 00515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2017-06-14 20:46 - 2017-06-03 12:47 - 01418240 _____ (Microsoft Corporation) C:\WINDOWS\system32\certutil.exe
2017-06-14 20:46 - 2017-06-03 12:45 - 01386496 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2017-06-14 20:46 - 2017-06-03 12:38 - 01663488 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2017-06-14 20:46 - 2017-06-03 12:37 - 04456448 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll
2017-06-14 20:46 - 2017-06-03 12:35 - 00236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\licensingdiag.exe
2017-06-14 20:46 - 2017-06-03 12:24 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll
2017-06-14 20:46 - 2017-06-03 12:20 - 03587072 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2017-06-14 20:46 - 2017-06-03 11:21 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2017-06-14 20:46 - 2017-06-03 11:19 - 06977024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2017-06-14 20:46 - 2017-06-03 11:00 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2017-06-14 20:46 - 2016-06-18 06:57 - 00523264 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVP9DEC.dll
2017-06-13 16:53 - 2017-06-13 16:51 - 00060920 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avdevprot.sys
2017-06-13 16:34 - 2017-06-13 16:34 - 00000000 ____D C:\Users\Charly\AppData\Local\Tempzxpsignfdf5d8a3630fc632
2017-06-13 16:34 - 2017-06-13 16:34 - 00000000 ____D C:\Users\Charly\AppData\Local\Tempzxpsign42826b10488801fd
2017-06-13 16:34 - 2017-06-13 16:34 - 00000000 ____D C:\Users\Charly\AppData\Local\Tempzxpsign2690b9e3fd4b283d
2017-06-13 16:33 - 2017-06-13 16:33 - 00000000 ____D C:\Users\Charly\AppData\Local\Tempzxpsign194ea682a501774f
2017-06-12 01:20 - 2017-06-12 01:20 - 00000000 ____D C:\Users\Charly\AppData\Local\Tempzxpsign881eaeca612070bb
2017-06-12 01:19 - 2017-06-12 01:19 - 00000000 ____D C:\Users\Charly\AppData\Local\Tempzxpsignfcc5264dca05c42f
2017-06-12 01:19 - 2017-06-12 01:19 - 00000000 ____D C:\Users\Charly\AppData\Local\Tempzxpsign457f8b050289006d
2017-06-12 01:18 - 2017-06-12 01:18 - 00000000 ____D C:\Users\Charly\AppData\Local\Tempzxpsign493f66c7addc7498
2017-06-12 01:18 - 2017-06-12 01:18 - 00000000 ____D C:\Users\Charly\AppData\Local\Tempzxpsign3adee033eaa011ca
2017-06-12 01:13 - 2017-06-12 01:13 - 00000000 ____D C:\Users\Charly\AppData\Local\Tempzxpsign3f0ada490bd29e3e
2017-06-12 01:13 - 2017-06-12 01:13 - 00000000 ____D C:\Users\Charly\AppData\Local\Tempzxpsign3124907894b77772
2017-06-11 21:51 - 2017-06-11 21:51 - 00000000 ____D C:\Users\Charly\AppData\Local\Tempzxpsign84db10bba8bb41cc
2017-06-11 21:44 - 2017-06-11 21:44 - 00000000 ____D C:\Users\Charly\AppData\Local\Tempzxpsignc446cc7c9919dadb
2017-06-11 21:43 - 2017-06-11 21:43 - 00000000 ____D C:\Users\Charly\AppData\Local\Tempzxpsigne091e893738fa20d
2017-06-11 21:36 - 2017-06-11 21:36 - 00000000 ____D C:\Users\Charly\AppData\Local\Tempzxpsign09adecf38c1b22ec
2017-06-11 21:34 - 2017-06-11 21:34 - 00000000 ____D C:\Users\Charly\AppData\Local\Tempzxpsignb5cadfdeb98eded9
2017-06-11 21:34 - 2017-06-11 21:34 - 00000000 ____D C:\Users\Charly\AppData\Local\Tempzxpsign7526b5d3b66bd1e5
2017-06-11 21:33 - 2017-06-11 21:33 - 00000000 ____D C:\Users\Charly\AppData\Local\Tempzxpsigne9da54aee99dccee
2017-06-11 21:32 - 2017-06-11 21:32 - 00000000 ____D C:\Users\Charly\AppData\Local\Tempzxpsign9391faf3806d4f4f
2017-06-11 21:30 - 2017-06-11 21:30 - 00003638 _____ C:\WINDOWS\System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-ch4rlysun@web.de
2017-06-11 21:26 - 2017-06-11 21:26 - 00001089 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop CC 2017.lnk
2017-06-11 21:09 - 2017-06-11 21:09 - 00000000 ____D C:\Program Files\Adobe
2017-06-11 19:32 - 2017-06-21 21:42 - 00000000 ___RD C:\Users\Charly\Creative Cloud Files
2017-06-11 19:28 - 2017-06-11 19:28 - 00001302 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk
2017-06-11 18:59 - 2017-06-11 18:59 - 02048384 _____ (Adobe Systems Incorporated) C:\Users\Charly\Downloads\Photoshop_Set-Up.exe
==================== Ein Monat: Geänderte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2021-10-21 15:36 - 2013-10-31 20:50 - 00000852 _____ C:\WINDOWS\system32\Drivers\RTKHDRC.dat
2021-10-04 09:34 - 2013-10-31 20:50 - 00000712 _____ C:\WINDOWS\system32\Drivers\RTMICEQ0.dat
2017-07-09 12:09 - 2016-01-08 23:29 - 00001226 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job
2017-07-09 12:05 - 2016-02-13 19:11 - 00004152 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{5403824B-0A7F-4D64-B6C2-0AD5920140AB}
2017-07-09 12:00 - 2014-09-27 23:55 - 00000000 ____D C:\Users\Charly\AppData\Local\Adobe
2017-07-09 11:58 - 2015-08-29 19:05 - 00000000 ___HD C:\Users\Charly\.mediafire
2017-07-08 18:49 - 2016-01-08 23:29 - 00001222 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job
2017-07-07 21:18 - 2015-08-29 19:08 - 00000000 ___RD C:\Users\Charly\MediaFire
2017-07-06 14:27 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\NDF
2017-07-05 14:43 - 2017-04-06 19:33 - 00004282 _____ C:\WINDOWS\System32\Tasks\Antivirus Emergency Update
2017-07-05 14:24 - 2017-04-06 17:33 - 00000000 ____D C:\Users\Charly\AppData\Local\AvgSetupLog
2017-07-05 14:09 - 2014-08-31 22:09 - 00000000 ____D C:\Users\Charly\AppData\Roaming\Skype
2017-07-05 13:07 - 2016-03-24 17:19 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2017-07-05 13:07 - 2015-07-29 23:42 - 00000000 __SHD C:\Users\Charly\IntelGraphicsProfiles
2017-07-04 16:28 - 2014-09-28 15:15 - 00113880 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2017-07-04 15:47 - 2015-10-30 09:21 - 00000000 ____D C:\WINDOWS\INF
2017-07-02 23:08 - 2016-03-24 17:23 - 00000000 ____D C:\Users\Charly
2017-07-02 22:06 - 2014-08-13 19:25 - 00000000 ____D C:\Users\Charly\AppData\Roaming\Spotify
2017-07-02 22:05 - 2016-03-24 17:18 - 00000000 ____D C:\ProgramData\Package Cache
2017-07-02 22:05 - 2015-12-12 14:40 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2017-07-02 21:56 - 2016-02-13 19:25 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2017-07-02 15:44 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2017-07-01 22:00 - 2017-04-06 17:34 - 00003668 _____ C:\WINDOWS\System32\Tasks\AVG EUpdate Task
2017-07-01 15:26 - 2015-10-30 09:24 - 00000000 ___HD C:\Program Files\WindowsApps
2017-06-30 16:43 - 2014-09-28 00:03 - 00000000 ____D C:\ProgramData\Adobe
2017-06-30 16:42 - 2014-09-28 02:10 - 00000000 ____D C:\Users\Charly\AppData\LocalLow\Adobe
2017-06-30 16:42 - 2014-08-14 00:47 - 00000000 ____D C:\Users\Charly\AppData\Roaming\Adobe
2017-06-30 16:37 - 2014-09-28 00:00 - 00000000 ____D C:\Program Files (x86)\Adobe
2017-06-30 14:39 - 2016-04-07 18:54 - 00000000 ____D C:\Users\Charly\AppData\Local\Deployment
2017-06-30 14:34 - 2014-08-13 19:25 - 00000000 ____D C:\Users\Charly\AppData\Local\Spotify
2017-06-29 17:09 - 2016-02-13 18:59 - 00776766 _____ C:\WINDOWS\system32\perfh007.dat
2017-06-29 17:09 - 2016-02-13 18:59 - 00155544 _____ C:\WINDOWS\system32\perfc007.dat
2017-06-29 17:09 - 2015-07-29 23:30 - 01799166 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2017-06-27 21:39 - 2016-01-08 23:29 - 00000000 ____D C:\Program Files (x86)\Dropbox
2017-06-27 14:47 - 2017-04-06 17:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG
2017-06-26 21:09 - 2014-08-13 23:42 - 00002268 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2017-06-26 21:09 - 2014-08-13 23:42 - 00002256 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2017-06-24 22:05 - 2015-03-28 22:54 - 00000000 ____D C:\Program Files (x86)\Minecraft
2017-06-24 22:02 - 2016-07-08 15:34 - 00000000 ____D C:\Users\Charly\AppData\Roaming\.minecraft
2017-06-21 21:54 - 2017-04-29 15:55 - 00000000 ___RD C:\Program Files (x86)\Skype
2017-06-21 21:54 - 2014-08-31 22:09 - 00000000 ____D C:\ProgramData\Skype
2017-06-21 21:38 - 2015-06-18 13:51 - 00000000 ____D C:\Users\Charly\AppData\Local\Dropbox
2017-06-21 21:37 - 2016-02-13 19:30 - 00000000 __RHD C:\Users\Public\AccountPictures
2017-06-21 19:12 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\rescache
2017-06-21 17:54 - 2016-02-13 10:21 - 00351968 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2017-06-21 17:52 - 2015-10-30 08:28 - 00786432 ___SH C:\WINDOWS\system32\config\BBI
2017-06-21 17:49 - 2015-10-30 09:24 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2017-06-21 17:49 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\appraiser
2017-06-21 17:49 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2017-06-21 17:49 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Windows Defender
2017-06-21 17:49 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2017-06-21 17:49 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2017-06-21 17:19 - 2016-12-15 23:13 - 00003270 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task v2
2017-06-21 17:18 - 2015-07-29 23:51 - 00002424 _____ C:\Users\Charly\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-06-21 17:18 - 2015-07-29 23:51 - 00000000 ___RD C:\Users\Charly\OneDrive
2017-06-20 17:38 - 2015-10-30 09:24 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2017-06-20 17:37 - 2014-10-10 17:18 - 00000000 ____D C:\Program Files\Microsoft Office 15
2017-06-14 21:18 - 2014-08-16 14:53 - 00000000 ____D C:\WINDOWS\system32\MRT
2017-06-14 21:09 - 2015-10-30 09:11 - 00000000 ____D C:\WINDOWS\CbsTemp
2017-06-14 21:09 - 2014-08-16 14:53 - 133627792 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2017-06-13 16:51 - 2016-10-09 14:51 - 00038048 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avusbflt.sys
2017-06-13 16:51 - 2015-12-12 14:47 - 00167504 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys
2017-06-13 16:51 - 2015-12-12 14:47 - 00164824 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys
2017-06-11 21:32 - 2016-04-23 23:21 - 00000000 ____D C:\Users\Charly\AppData\Local\AMD
2017-06-11 21:26 - 2015-10-07 13:04 - 00000000 ____D C:\Users\Charly\Documents\Adobe
2017-06-11 21:26 - 2014-09-28 00:29 - 00000000 ____D C:\Program Files\Common Files\Adobe
==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======
2015-04-12 15:48 - 2015-04-12 15:48 - 0195315 _____ () C:\Users\Charly\AppData\Local\4A594BA6_stp.CIS
2015-04-12 15:48 - 2015-04-12 15:48 - 0000290 _____ () C:\Users\Charly\AppData\Local\4A594BA6_stp.CIS.part
2015-04-12 15:48 - 2015-04-12 15:48 - 0385602 _____ () C:\Users\Charly\AppData\Local\5D515C96_stp.CIS
2015-04-12 15:48 - 2015-04-12 15:48 - 0000220 _____ () C:\Users\Charly\AppData\Local\5D515C96_stp.CIS.part
2017-03-25 03:35 - 2017-03-25 03:35 - 0000846 _____ () C:\Users\Charly\AppData\Local\recently-used.xbel
2016-03-24 17:20 - 2016-03-24 17:20 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
==================== Bamital & volsnap ======================
(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)
C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert
C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert
C:\WINDOWS\explorer.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert
C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert
C:\WINDOWS\system32\services.exe => Datei ist digital signiert
C:\WINDOWS\system32\User32.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert
C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert
C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert
C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert
LastRegBack: 2017-06-28 19:37
==================== Ende von FRST.txt ============================