Ok
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org
Datenbank Version: v2014.02.20.01
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 11.0.9600.16518
Ck :: CK-PC [Administrator]
20.02.2014 07:03:29
mbam-log-2014-02-20 (07-03-29).txt
Art des Suchlaufs: Vollständiger Suchlauf (C:\|)
Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM
Deaktivierte Suchlaufeinstellungen: P2P
Durchsuchte Objekte: 442738
Laufzeit: 1 Stunde(n), 38 Minute(n), 1 Sekunde(n)
Infizierte Speicherprozesse: 2
C:\Program Files (x86)\Jotzey\updateJotzey.exe (PUP.Optional.Jotzey.A) -> 3600 -> Löschen bei Neustart.
C:\Program Files (x86)\Jotzey\bin\utilJotzey.exe (PUP.Optional.Jotzey.A) -> 3032 -> Löschen bei Neustart.
Infizierte Speichermodule: 0
(Keine bösartigen Objekte gefunden)
Infizierte Registrierungsschlüssel: 9
HKLM\SYSTEM\CurrentControlSet\Services\Update Jotzey (PUP.Optional.Jotzey.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKLM\SYSTEM\CurrentControlSet\Services\Util Jotzey (PUP.Optional.Jotzey.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCR\CLSID\{63a20a19-b1e6-4355-ab4c-28553af40ca2} (PUP.Optional.Jotzey.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCR\TypeLib\{4e1ca9b1-c816-4b8a-bd4c-546fbc5008de} (PUP.Optional.Jotzey.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCR\Interface\{682E055E-0863-4334-918C-29CD4F3F4D96} (PUP.Optional.Jotzey.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{63A20A19-B1E6-4355-AB4C-28553AF40CA2} (PUP.Optional.Jotzey.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{63A20A19-B1E6-4355-AB4C-28553AF40CA2} (PUP.Optional.Jotzey.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCU\Software\Jotzey (PUP.Optional.Jotzey.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKLM\Software\Jotzey (PUP.Optional.Jotzey.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
Infizierte Registrierungswerte: 0
(Keine bösartigen Objekte gefunden)
Infizierte Dateiobjekte der Registrierung: 0
(Keine bösartigen Objekte gefunden)
Infizierte Verzeichnisse: 3
C:\Program Files (x86)\Jotzey (PUP.Optional.Jotzey.A) -> Löschen bei Neustart.
C:\Program Files (x86)\Jotzey\bin (PUP.Optional.Jotzey.A) -> Löschen bei Neustart.
C:\Program Files (x86)\Jotzey\bin\plugins (PUP.Optional.Jotzey.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
Infizierte Dateien: 11
C:\Program Files (x86)\Jotzey\updateJotzey.exe (PUP.Optional.Jotzey.A) -> Löschen bei Neustart.
C:\Program Files (x86)\Jotzey\bin\utilJotzey.exe (PUP.Optional.Jotzey.A) -> Löschen bei Neustart.
C:\Program Files (x86)\Jotzey\JotzeyBHO.dll (PUP.Optional.Jotzey.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Program Files (x86)\Jotzey\Jotzey.ico (PUP.Optional.Jotzey.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Program Files (x86)\Jotzey\0 (PUP.Optional.Jotzey.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Program Files (x86)\Jotzey\JotzeyUninstall.exe (PUP.Optional.Jotzey.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Program Files (x86)\Jotzey\updateJotzey.InstallState (PUP.Optional.Jotzey.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Program Files (x86)\Jotzey\bin\utilJotzey.InstallState (PUP.Optional.Jotzey.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Program Files (x86)\Jotzey\bin\plugins\Jotzey.CompatibilityChecker.dll (PUP.Optional.Jotzey.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Program Files (x86)\Jotzey\bin\plugins\Jotzey.FFUpdate.dll (PUP.Optional.Jotzey.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Program Files (x86)\Jotzey\bin\plugins\Jotzey.IEUpdate.dll (PUP.Optional.Jotzey.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
(Ende)
AdwCleaner Logfile:
Code:
# AdwCleaner v3.019 - Bericht erstellt am 20/02/2014 um 06:39:37
# Aktualisiert 17/02/2014 von Xplode
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits)
# Benutzername : Ck - CK-PC
# Gestartet von : C:\Users\Ck\Downloads\adwcleaner.exe
# Option : Löschen
***** [ Dienste ] *****
***** [ Dateien / Ordner ] *****
Ordner Gelöscht : C:\Program Files\Level Quality Watcher
***** [ Verknüpfungen ] *****
***** [ Registrierungsdatenbank ] *****
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\DivX\Install\Setup\WizardLayout\ConduitToolbar
***** [ Browser ] *****
-\\ Internet Explorer v11.0.9600.16518
-\\ Google Chrome v32.0.1700.107
[ Datei : C:\Users\Ck\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R28].txt - [893 octets] - [16/02/2014 11:19:31]
AdwCleaner[R29].txt - [1013 octets] - [16/02/2014 13:01:13]
AdwCleaner[R30].txt - [1136 octets] - [16/02/2014 13:34:18]
AdwCleaner[R31].txt - [1443 octets] - [18/02/2014 05:32:56]
AdwCleaner[R32].txt - [1421 octets] - [20/02/2014 06:39:05]
AdwCleaner[S23].txt - [954 octets] - [16/02/2014 11:20:03]
AdwCleaner[S24].txt - [1075 octets] - [16/02/2014 13:01:41]
AdwCleaner[S25].txt - [1199 octets] - [16/02/2014 13:35:20]
AdwCleaner[S26].txt - [1457 octets] - [18/02/2014 05:33:22]
AdwCleaner[S27].txt - [1339 octets] - [20/02/2014 06:39:37]
########## EOF - C:\AdwCleaner\AdwCleaner[S27].txt - [1400 octets] ##########
--- --- ---JRT Logfile:
Code:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.1 (02.04.2014:1)
OS: Windows 7 Home Premium x64
Ran by Ck on 20.02.2014 at 6:28:24,03
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\AppDataLow\software\adawarebp
~~~ Files
Successfully deleted: [File] "C:\Users\Ck\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\user pinned\taskbar\startfenster.lnk"
~~~ Folders
Successfully deleted: [Folder] "C:\Users\Ck\appdata\local\adawarebp"
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 20.02.2014 at 6:37:31,36
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
--- --- ---
FRST Logfile:
FRST Logfile:
FRST Logfile:
FRST Logfile:
Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 16-02-2014
Ran by Ck (administrator) on CK-PC on 20-02-2014 09:53:43
Running from C:\Users\Ck\Downloads
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\vsserv.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(Microsoft Corporation) C:\Windows\system32\WLANExt.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(ASUS) C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
() C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
() C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5152.0\AdAwareService.exe
(McAfee, Inc.) C:\Windows\system32\mfevtps.exe
(PACE Anti-Piracy, Inc.) C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(Samsung Electronics Co., Ltd.) C:\Windows\system32\spool\drivers\x64\3\NetFaxServer64.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\updatesrv.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mcshield.exe
(Microsoft Corporation) C:\Windows\SYSTEM32\WISPTIS.EXE
(McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(ASUS) C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnWMI.exe
(Microsoft Corporation) C:\Windows\SYSTEM32\WISPTIS.EXE
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\FaceLogon\sensorsrv.exe
(ASUS) C:\Program Files\ASUS\P4G\BatteryLife.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Virtual Touch\QuickGesture\x64\QuickGesture64.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Virtual Touch\QuickGesture\x86\QuickGesture.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe
(Alcor Micro Corp.) C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
() C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\bdagent.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDGesture.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(ASUS) C:\Windows\AsScrPro.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
(ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
(Nullsoft, Inc.) C:\Program Files (x86)\Winamp\winampa.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
(Lavasoft) C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe
(MAGIX AG) C:\Program Files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Ink\InputPersonalization.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12480616 2012-04-24] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1158248 2012-03-09] (Realtek Semiconductor)
HKLM\...\Run: [ETDCtrl] - C:\Program Files\Elantech\ETDCtrl.exe [2661672 2012-02-19] (ELAN Microelectronics Corp.)
HKLM\...\Run: [AtherosBtStack] - C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [1021056 2012-03-30] (Atheros Communications)
HKLM\...\Run: [AthBtTray] - C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [801408 2012-03-30] (Atheros Commnucations)
HKLM\...\Run: [AmIcoSinglun64] - C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [361984 2011-03-17] (Alcor Micro Corp.)
HKLM\...\Run: [CDAServer] - C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [456704 2012-02-20] ()
HKLM\...\Run: [AdAwareTray] - C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5152.0\AdAwareTray.exe [3987288 2013-12-11] ()
HKLM\...\Run: [Bdagent] - C:\Program Files\Bitdefender\Bitdefender\bdagent.exe [1737920 2014-01-15] (Bitdefender)
HKLM-x32\...\Run: [Adobe Reader Speed Launcher] - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [35736 2010-11-16] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [932288 2010-11-16] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [ASUSPRP] - C:\Program Files (x86)\ASUS\APRP\APRP.EXE [3331312 2012-02-24] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [ASUSWebStorage] - C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.108.222\AsusWSPanel.exe [737104 2011-07-29] (ecareme)
HKLM-x32\...\Run: [USB3MON] - C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-03-26] (Intel Corporation)
HKLM-x32\...\Run: [ASUS InstantKey] - C:\Program Files (x86)\ASUS\ASUS Instant Key\Ikey_start.exe [20456 2012-02-20] (ASUS)
HKLM-x32\...\Run: [Wireless Console 3] - C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [2321072 2012-02-03] (ASUSTeK Computer Inc.)
HKLM-x32\...\Run: [ACMON] - C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [102568 2012-02-21] (ASUS)
HKLM-x32\...\Run: [ASUS Screen Saver Protector] - C:\Windows\AsScrPro.exe [3058304 2013-10-31] (ASUS)
HKLM-x32\...\Run: [RemoteControl10] - C:\Program Files (x86)\Cyberlink\PowerDVD10\PDVD10Serv.exe [87336 2011-03-30] (CyberLink Corp.)
HKLM-x32\...\Run: [UpdatePSTShortCut] - C:\Program Files (x86)\Cyberlink\DVD Suite\MUITransfer\MUIStartMenu.exe [222504 2011-12-30] (CyberLink Corp.)
HKLM-x32\...\Run: [CLMLServer] - C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [107816 2010-08-20] (CyberLink)
HKLM-x32\...\Run: [WinampAgent] - C:\Program Files (x86)\Winamp\winampa.exe [84576 2013-07-23] (Nullsoft, Inc.)
HKLM-x32\...\Run: [ATKOSD2] - C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [328064 2012-09-14] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [ATKMEDIA] - C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [178848 2012-07-17] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [HControlUser] - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKLM-x32\...\Run: [DivXMediaServer] - C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [450560 2013-12-23] (DivX, LLC)
HKLM-x32\...\Run: [Ad-Aware Browsing Protection] - C:\ProgramData\Ad-Aware Browsing Protection\adawarebp.exe [559696 2013-09-27] (Lavasoft)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM-x32\...\Run: [QuickTime Task] - C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)
HKLM-x32\...\Run: [DivXUpdate] - C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1861968 2013-11-15] ()
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\.DEFAULT\...\Run: [Bitdefender-Geldbörse-Agent] - C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe [567888 2014-02-16] (Bitdefender)
HKU\.DEFAULT\...\Run: [Bitdefender-Geldbörse] - C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe [1001536 2014-02-16] (Bitdefender)
HKU\.DEFAULT\...\Run: [Bitdefender-Geldbörse-Anwendungs-Agent] - C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe [614232 2014-02-16] (Bitdefender)
HKU\S-1-5-21-1368765655-3678593186-1953510955-1001\...\Run: [Steam] - C:\Program Files (x86)\Steama\Steam.exe [1823656 2013-12-11] (Valve Corporation)
HKU\S-1-5-21-1368765655-3678593186-1953510955-1001\...\Run: [Bitdefender-Geldbörse-Agent] - C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe [567888 2014-02-16] (Bitdefender)
HKU\S-1-5-21-1368765655-3678593186-1953510955-1001\...\Run: [Bitdefender-Geldbörse-Anwendungs-Agent] - C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe [614232 2014-02-16] (Bitdefender)
AppInit_DLLs: C:\Windows\System32\nvinitx.dll => C:\Windows\System32\nvinitx.dll [260928 2012-04-24] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [215360 2012-04-24] (NVIDIA Corporation)
Startup: C:\Users\Ck\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Rainmeter.lnk
ShortcutTarget: Rainmeter.lnk -> C:\Program Files\Rainmeter\Rainmeter.exe ()
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - DefaultScope {0223B252-5454-4A02-A256-AB2CEBCCF007} URL = hxxp://www.sm.de/?q={searchTerms}
SearchScopes: HKLM - {0223B252-5454-4A02-A256-AB2CEBCCF007} URL = hxxp://www.sm.de/?q={searchTerms}
SearchScopes: HKCU - {0223B252-5454-4A02-A256-AB2CEBCCF007} URL = hxxp://www.sm.de/?q={searchTerms}
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - {764E8B0F-722F-486D-8B8B-11891EE6BB4B} URL = hxxp://de.search.yahoo.com/search?fr=mcafee&p={SearchTerms}
BHO: Bitdefender-Geldbörse - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender\pmbxie.dll (Bitdefender)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: Bitdefender-Geldbörse - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender\Antispam32\pmbxie.dll (Bitdefender)
BHO-x32: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Chrome:
=======
CHR Extension: (Google Docs) - C:\Users\Ck\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-02-16]
CHR Extension: (Google Drive) - C:\Users\Ck\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-02-16]
CHR Extension: (YouTube) - C:\Users\Ck\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-02-16]
CHR Extension: (Bitdefender Wallet) - C:\Users\Ck\AppData\Local\Google\Chrome\User Data\Default\Extensions\ccahoghmggldkcdjiebjkidpfongdfbl [2014-02-16]
CHR Extension: (Google-Suche) - C:\Users\Ck\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-02-16]
CHR Extension: (Google Wallet) - C:\Users\Ck\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-02-16]
CHR Extension: (Google Mail) - C:\Users\Ck\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-02-16]
CHR HKLM-x32\...\Chrome\Extension: [ccahoghmggldkcdjiebjkidpfongdfbl] - C:\Program Files\Bitdefender\Bitdefender\Antispam32\pmbxcr.crx [2014-02-16]
==================== Services (Whitelisted) =================
R2 ASUS InstantOn; C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe [277120 2012-04-13] (ASUS)
S4 BdDesktopParental; C:\Program Files\Bitdefender\Bitdefender\bdparentalservice.exe [77632 2013-11-21] (Bitdefender)
S3 digiSPTIService64; C:\Program Files\Avid\Pro Tools\digisptiservice64.exe [190464 2014-01-16] (Avid Technology, Inc.)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128280 2012-02-21] ()
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2012-02-21] (Intel Corporation)
R2 LavasoftAdAwareService11; C:\Program Files\Lavasoft\Ad-Aware Antivirus\Ad-Aware Antivirus\11.1.5152.0\AdAwareService.exe [513736 2013-12-11] ()
R2 McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [199304 2012-05-25] (McAfee, Inc.)
R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [219272 2013-09-24] (McAfee, Inc.)
R2 mfevtp; C:\Windows\system32\mfevtps.exe [182752 2013-09-24] (McAfee, Inc.)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [247152 2009-04-17] ()
R2 Samsung Network Fax Server; C:\Windows\system32\spool\drivers\x64\3\NetFaxServer64.exe [239616 2012-08-07] (Samsung Electronics Co., Ltd.)
R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender\updatesrv.exe [67320 2013-10-07] (Bitdefender)
R2 vsserv; C:\Program Files\Bitdefender\Bitdefender\vsserv.exe [1507248 2014-01-23] (Bitdefender)
R2 ZAtheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [163456 2012-03-30] (Atheros)
==================== Drivers (Whitelisted) ====================
R3 AiCharger; C:\Windows\SysWOW64\DRIVERS\AiCharger.sys [17152 2012-02-29] (ASUSTek Computer Inc.)
R3 AsusVBus; C:\Windows\System32\DRIVERS\AsusVBus.sys [35968 2012-04-11] (Windows (R) Win 7 DDK provider)
R3 AsusVTouch; C:\Windows\System32\DRIVERS\AsusVTouch.sys [16512 2012-04-11] (Windows (R) Win 7 DDK provider)
R0 avc3; C:\Windows\System32\DRIVERS\avc3.sys [893440 2013-12-02] (BitDefender)
R3 avchv; C:\Windows\System32\DRIVERS\avchv.sys [261056 2012-11-02] (BitDefender)
R3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [635392 2013-12-02] (BitDefender)
R1 BdfNdisf; c:\program files\lavasoft\ad-aware antivirus\firewall engine\1.6.0.0\drivers\bdfndisf6.sys [93160 2013-07-17] (BitDefender LLC)
R1 bdfwfpf; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys [103504 2011-11-14] (BitDefender LLC)
S3 bdfwfpf_pc; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf_pc.sys [121928 2013-07-02] (Bitdefender SRL)
S3 BDSandBox; C:\Windows\system32\drivers\bdsandbox.sys [82824 2013-11-04] (BitDefender SRL)
S3 cfwids; C:\Windows\System32\drivers\cfwids.sys [70112 2013-09-24] (McAfee, Inc.)
R3 ffusb2audio; C:\Windows\System32\DRIVERS\ffusb2audio.sys [127280 2013-09-25] (Focusrite Audio Engineering Limited.)
R0 gzflt; C:\Windows\System32\DRIVERS\gzflt.sys [150256 2013-08-23] (BitDefender LLC)
S3 iLokDrvr; C:\Windows\System32\DRIVERS\iLokDrvr.sys [25808 2013-04-11] ()
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( )
S3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [179664 2013-09-24] (McAfee, Inc.)
R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [310224 2013-09-24] (McAfee, Inc.)
U3 mfeavfk01; No ImagePath
R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [519192 2013-09-24] (McAfee, Inc.)
R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [781312 2013-09-24] (McAfee, Inc.)
S3 mferkdet; C:\Windows\System32\drivers\mferkdet.sys [100912 2012-02-22] (McAfee, Inc.)
R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [343568 2013-09-24] (McAfee, Inc.)
R1 netfilter64; C:\Windows\System32\drivers\netfilter64.sys [61592 2013-12-17] (NetFilterSDK.com)
R1 nvkflt; C:\Windows\System32\DRIVERS\nvkflt.sys [249152 2012-04-24] (NVIDIA Corporation)
R0 trufos; C:\Windows\System32\DRIVERS\trufos.sys [389240 2013-08-07] (BitDefender S.R.L.)
S3 V0540Dev; C:\Windows\System32\DRIVERS\V0540Vid.sys [321376 2009-06-15] ()
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-02-20 09:03 - 2014-02-20 09:03 - 00000000 ___RD () C:\Users\Ck\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
2014-02-20 06:41 - 2014-02-20 06:41 - 00000000 ____D () C:\Users\Ck\AppData\Local\adawarebp
2014-02-20 06:38 - 2014-02-20 06:38 - 01241834 _____ () C:\Users\Ck\Downloads\adwcleaner.exe
2014-02-20 06:37 - 2014-02-20 06:37 - 00001032 _____ () C:\Users\Ck\Desktop\JRT.txt
2014-02-20 06:28 - 2014-02-20 06:28 - 00000000 ____D () C:\Windows\ERUNT
2014-02-19 16:09 - 2014-02-19 16:09 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Ck\Downloads\mbam-setup-1.75.0.1300 (1).exe
2014-02-19 16:09 - 2014-02-19 16:09 - 01037530 _____ (Thisisu) C:\Users\Ck\Downloads\JRT.exe
2014-02-18 10:08 - 2014-02-20 09:02 - 00004050 _____ () C:\Windows\PFRO.log
2014-02-18 10:08 - 2014-02-18 10:08 - 00042497 _____ () C:\Users\Ck\Desktop\wegtg.txt
2014-02-18 10:07 - 2014-02-18 10:07 - 00042497 _____ () C:\ComboFix.txt
2014-02-18 09:38 - 2011-06-26 07:45 - 00256000 _____ () C:\Windows\PEV.exe
2014-02-18 09:38 - 2010-11-07 18:20 - 00208896 _____ () C:\Windows\MBR.exe
2014-02-18 09:38 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2014-02-18 09:38 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2014-02-18 09:38 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2014-02-18 09:38 - 2000-08-31 01:00 - 00098816 _____ () C:\Windows\sed.exe
2014-02-18 09:38 - 2000-08-31 01:00 - 00080412 _____ () C:\Windows\grep.exe
2014-02-18 09:38 - 2000-08-31 01:00 - 00068096 _____ () C:\Windows\zip.exe
2014-02-18 09:37 - 2014-02-18 10:07 - 00000000 ____D () C:\Qoobox
2014-02-18 09:37 - 2014-02-18 10:01 - 00000000 ____D () C:\Windows\erdnt
2014-02-18 09:36 - 2014-02-18 09:36 - 05183112 ____R (Swearware) C:\Users\Ck\Downloads\ComboFix.exe
2014-02-17 09:31 - 2014-02-17 09:32 - 00038956 _____ () C:\Users\Ck\Downloads\Addition.txt
2014-02-17 09:30 - 2014-02-20 09:53 - 00019461 _____ () C:\Users\Ck\Downloads\FRST.txt
2014-02-17 09:30 - 2014-02-20 09:53 - 00000000 ____D () C:\FRST
2014-02-17 09:29 - 2014-02-17 09:29 - 02152448 _____ (Farbar) C:\Users\Ck\Downloads\FRST64.exe
2014-02-17 01:42 - 2014-02-17 01:43 - 86847752 _____ (DivX, LLC) C:\Users\Ck\Downloads\DivX101Installer.exe
2014-02-17 01:40 - 2014-02-17 01:40 - 01071000 _____ (Solid State Networks) C:\Users\Ck\Downloads\install_flashplayer12x32_chrd_aaa_aih.exe
2014-02-17 00:40 - 2014-02-20 09:03 - 00000448 _____ () C:\Windows\setupact.log
2014-02-17 00:40 - 2014-02-17 00:40 - 00000000 _____ () C:\Windows\setuperr.log
2014-02-16 15:31 - 2014-02-16 15:31 - 00001196 _____ () C:\Users\Ck\Documents\cc_20140216_153150.reg
2014-02-16 13:27 - 2014-02-16 13:27 - 00000000 ____D () C:\Users\Ck\Documents\Fax
2014-02-16 13:00 - 2014-02-16 13:00 - 00001135 _____ () C:\Users\Public\Desktop\Opera.lnk
2014-02-16 13:00 - 2014-02-16 13:00 - 00000000 ____D () C:\Users\Ck\AppData\Roaming\Opera Software
2014-02-16 13:00 - 2014-02-16 13:00 - 00000000 ____D () C:\Users\Ck\AppData\Local\Opera Software
2014-02-16 13:00 - 2014-02-16 13:00 - 00000000 ____D () C:\Program Files (x86)\Opera
2014-02-16 11:30 - 2014-02-16 11:32 - 00000000 ____D () C:\Windows\system32\MRT
2014-02-16 11:30 - 2014-02-04 19:09 - 88567024 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-02-16 11:25 - 2014-02-16 11:26 - 35623952 _____ (Opera Software ASA) C:\Users\Ck\Downloads\Opera_19.0.1326.63_Setup.exe
2014-02-16 11:19 - 2014-02-20 06:39 - 00000000 ____D () C:\AdwCleaner
2014-02-16 11:18 - 2014-02-16 11:18 - 00000882 _____ () C:\Users\Ck\Documents\cc_20140216_111843.reg
2014-02-16 05:14 - 2014-02-16 05:14 - 00001115 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-02-16 05:14 - 2014-02-16 05:14 - 00000000 ____D () C:\Users\Ck\AppData\Roaming\Malwarebytes
2014-02-16 05:14 - 2014-02-16 05:14 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-02-16 05:13 - 2014-02-16 05:14 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-02-16 05:13 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-02-16 05:12 - 2014-02-16 05:12 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Ck\Downloads\mbam-setup-1.75.0.1300.exe
2014-02-16 03:28 - 2014-02-16 03:28 - 00076944 _____ (BitDefender) C:\Windows\system32\Drivers\bdvedisk.sys
2014-02-16 03:28 - 2014-02-16 03:28 - 00074512 _____ (BitDefender SRL) C:\Windows\system32\bdsandboxuiskin32.dll
2014-02-16 03:24 - 2014-02-16 03:24 - 00000385 _____ () C:\Users\Ck\AppData\Roaminguser_gensett.xml
2014-02-16 00:59 - 2014-02-16 03:28 - 00074512 _____ (BitDefender SRL) C:\Windows\SysWOW64\bdsandboxuiskin32.dll
2014-02-16 00:59 - 2014-02-16 00:59 - 00002192 _____ () C:\Users\Public\Desktop\Bitdefender Safepay.lnk
2014-02-16 00:59 - 2014-02-16 00:59 - 00002073 _____ () C:\Users\Public\Desktop\Bitdefender Internet Security.lnk
2014-02-16 00:59 - 2014-02-16 00:59 - 00000385 _____ () C:\Windows\system32\user_gensett.xml
2014-02-16 00:59 - 2014-02-16 00:59 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_avchv_01009.Wdf
2014-02-16 00:59 - 2014-02-16 00:59 - 00000000 ____D () C:\ProgramData\BDLogging
2014-02-16 00:59 - 2013-12-02 11:58 - 00635392 _____ (BitDefender) C:\Windows\system32\Drivers\avckf.sys
2014-02-16 00:59 - 2013-12-02 11:56 - 00893440 _____ (BitDefender) C:\Windows\system32\Drivers\avc3.sys
2014-02-16 00:59 - 2013-11-04 15:47 - 00082824 _____ (BitDefender SRL) C:\Windows\system32\Drivers\bdsandbox.sys
2014-02-16 00:59 - 2012-11-02 13:17 - 00261056 _____ (BitDefender) C:\Windows\system32\Drivers\avchv.sys
2014-02-16 00:59 - 2007-04-11 10:11 - 00511328 _____ (Microsoft Corporation) C:\Windows\capicom.dll
2014-02-16 00:49 - 2014-02-16 00:49 - 00000000 ____D () C:\Users\Ck\AppData\Roaming\Bitdefender
2014-02-16 00:43 - 2013-11-04 15:47 - 00084848 _____ (BitDefender SRL) C:\Windows\system32\BDSandBoxUISkin.dll
2014-02-16 00:43 - 2013-11-04 15:46 - 00034384 _____ (BitDefender SRL) C:\Windows\system32\BDSandBoxUH.dll
2014-02-16 00:43 - 2013-08-23 12:48 - 00150256 _____ (BitDefender LLC) C:\Windows\system32\Drivers\gzflt.sys
2014-02-16 00:43 - 2013-08-07 12:46 - 00389240 _____ (BitDefender S.R.L.) C:\Windows\system32\Drivers\trufos.sys
2014-02-16 00:39 - 2014-02-16 00:39 - 00000000 ____D () C:\Program Files\Bitdefender
2014-02-16 00:38 - 2014-02-16 00:38 - 00000000 ____D () C:\Users\Ck\AppData\Roaming\QuickScan
2014-02-16 00:37 - 2014-02-16 00:43 - 00000000 ____D () C:\Program Files\Common Files\Bitdefender
2014-02-16 00:36 - 2014-02-16 00:36 - 00002253 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-02-16 00:34 - 2014-02-20 09:39 - 00001102 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-02-16 00:34 - 2014-02-20 09:03 - 00001098 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-02-16 00:34 - 2014-02-16 00:35 - 00000000 ____D () C:\Program Files (x86)\Google
2014-02-16 00:34 - 2014-02-16 00:34 - 00004098 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-02-16 00:34 - 2014-02-16 00:34 - 00003846 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-02-16 00:33 - 2014-02-16 00:34 - 00000000 ____D () C:\Users\Ck\AppData\Local\Deployment
2014-02-16 00:33 - 2014-02-16 00:33 - 00000000 ____D () C:\Users\Ck\AppData\Local\Apps\2.0
2014-02-16 00:31 - 2014-02-16 00:31 - 00000874 _____ () C:\Users\Ck\Documents\cc_20140216_003142.reg
2014-02-16 00:26 - 2014-02-16 00:26 - 00002766 _____ () C:\Users\Ck\Documents\cc_20140216_002616.reg
2014-02-16 00:22 - 2014-02-16 00:22 - 00000000 ____D () C:\Users\Ck\AppData\Roaming\TuneUp Software
2014-02-16 00:21 - 2014-02-16 00:22 - 00000000 ____D () C:\ProgramData\TuneUp Software
2014-02-16 00:21 - 2014-02-16 00:21 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2014-02-16 00:08 - 2014-02-16 00:08 - 00000000 _____ () C:\Windows\pestpatrol5.INI
2014-02-16 00:01 - 2014-02-16 00:02 - 00000000 ____D () C:\Users\Public\Documents\COMODO
2014-02-16 00:00 - 2014-02-16 00:10 - 00000000 ____D () C:\Program Files\COMODO
2014-02-16 00:00 - 2014-02-16 00:00 - 01700352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdiplus.dll
2014-02-16 00:00 - 2014-02-16 00:00 - 01060864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71.dll
2014-02-15 23:21 - 2014-02-15 23:21 - 00000454 _____ () C:\Users\Ck\Documents\cc_20140215_232152.reg
2014-02-15 22:21 - 2014-02-15 22:21 - 00000444 _____ () C:\Users\Ck\Documents\cc_20140215_222118.reg
2014-02-15 22:11 - 2014-02-20 09:10 - 00562860 _____ () C:\Windows\WindowsUpdate.log
2014-02-15 21:53 - 2014-02-15 21:53 - 00000482 _____ () C:\Users\Ck\Documents\cc_20140215_215301.reg
2014-02-15 21:23 - 2014-02-15 21:23 - 00001640 _____ () C:\Users\Ck\Documents\cc_20140215_212318.reg
2014-02-15 21:07 - 2014-02-15 22:07 - 00001975 _____ () C:\Users\Ck\Desktop\Sync Folder.lnk
2014-02-15 21:07 - 2014-02-15 21:07 - 00000306 __RSH () C:\ProgramData\ntuser.pol
2014-02-15 21:05 - 2014-02-15 21:05 - 00003284 _____ () C:\Users\Ck\Documents\cc_20140215_210549.reg
2014-02-13 17:09 - 2014-02-13 17:17 - 1289329438 _____ () C:\Users\Ck\Downloads\dance_dj_55867.zip
2014-02-13 17:09 - 2014-02-13 17:13 - 1358542511 _____ () C:\Users\Ck\Downloads\hip_hop_56860.zip
2014-02-13 14:28 - 2014-02-13 14:28 - 00000000 ____D () C:\Users\Ck\Desktop\Neuer Ordner (9)
2014-02-13 13:53 - 2014-02-13 15:18 - 00000000 ____D () C:\Users\Ck\Documents\a
2014-02-13 13:52 - 2014-02-13 15:19 - 00000000 ____D () C:\Users\Public\Pro Tools
2014-02-13 13:52 - 2014-02-13 13:52 - 00000000 ____D () C:\Users\Ck\Documents\Pro Tools
2014-02-13 13:52 - 2014-02-13 13:52 - 00000000 ____D () C:\Users\Ck\AppData\Local\Avid
2014-02-13 13:51 - 2014-02-13 13:51 - 00002560 _____ () C:\Users\Ck\PaceKeyChain
2014-02-13 13:50 - 2014-02-13 13:50 - 00000000 ____D () C:\Users\Ck\AppData\Local\PACE
2014-02-13 13:47 - 2014-02-13 17:01 - 1147328760 _____ () C:\Users\Ck\Downloads\pop_rock_55870.zip
2014-02-13 13:47 - 2014-02-13 16:54 - 1321713557 _____ () C:\Users\Ck\Downloads\rb_funk_soul_70045.zip
2014-02-13 13:47 - 2014-02-13 14:29 - 541078056 _____ () C:\Users\Ck\Downloads\jazz_55869.zip
2014-02-13 13:47 - 2014-02-13 14:03 - 389472749 _____ () C:\Users\Ck\Downloads\rock_hard_55871.zip
2014-02-13 13:43 - 2014-02-13 13:43 - 00000000 ____D () C:\Users\Ck\AppData\Roaming\Apple Computer
2014-02-13 13:39 - 2014-02-13 13:39 - 00001945 _____ () C:\Users\Public\Desktop\Pro Tools 11.lnk
2014-02-13 13:37 - 2014-02-13 13:39 - 00000000 ____D () C:\Users\Public\Documents\Avid Video Engine
2014-02-13 13:37 - 2014-02-13 13:37 - 00000000 ____D () C:\Users\Ck\AppData\Roaming\Avid
2014-02-13 13:36 - 2014-02-13 13:37 - 00000000 ____D () C:\Program Files\Common Files\Avid
2014-02-13 13:34 - 2014-02-13 13:39 - 00000000 ____D () C:\Program Files\Avid
2014-02-13 13:34 - 2014-02-13 13:34 - 00000000 ____D () C:\Program Files (x86)\Avid
2014-02-13 13:32 - 2014-02-13 13:32 - 00001847 _____ () C:\Users\Public\Desktop\QuickTime Player.lnk
2014-02-13 13:32 - 2014-02-13 13:32 - 00000000 ____D () C:\ProgramData\Apple Computer
2014-02-13 13:32 - 2014-02-13 13:32 - 00000000 ____D () C:\Program Files (x86)\QuickTime
2014-02-13 13:31 - 2014-02-13 13:31 - 00000000 ____D () C:\Users\Ck\AppData\Local\Apple
2014-02-13 13:31 - 2014-02-13 13:31 - 00000000 ____D () C:\ProgramData\Apple
2014-02-13 13:31 - 2014-02-13 13:31 - 00000000 ____D () C:\Program Files (x86)\Apple Software Update
2014-02-13 13:30 - 2014-02-13 13:31 - 41404760 _____ (Apple Inc.) C:\Users\Ck\Downloads\QuickTimeInstaller.exe
2014-02-13 13:19 - 2014-02-13 13:19 - 00000000 ____D () C:\ProgramData\PACE
2014-02-13 13:12 - 2014-02-13 13:12 - 00002083 _____ () C:\Users\Public\Desktop\iLok License Manager.lnk
2014-02-13 13:12 - 2014-02-13 13:12 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_iLokDrvr_01007.Wdf
2014-02-13 13:12 - 2014-02-13 13:12 - 00000000 ____D () C:\Program Files (x86)\iLok License Manager
2014-02-13 13:05 - 2014-02-13 13:05 - 00000000 ____D () C:\Users\Ck\Desktop\Pro Tools
2014-02-13 13:05 - 2014-01-16 01:46 - 00022760 _____ (Avid Technology, Inc.) C:\Windows\system32\Drivers\diginet.sys
2014-02-13 12:21 - 2014-02-13 13:16 - 2718669922 _____ () C:\Users\Ck\Downloads\Avid_Virtual_Instruments_10_Installer_73466.zip
2014-02-13 12:18 - 2014-02-13 12:53 - 1122172336 _____ () C:\Users\Ck\Downloads\Pro_Tools_11_0_2_Win_80449.zip
2014-02-13 12:17 - 2014-02-13 12:59 - 1121278837 _____ () C:\Users\Ck\Downloads\Pro_Tools_11_1_2_Win_80991.zip
2014-02-13 06:50 - 2014-02-06 13:16 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-02-13 06:50 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-02-13 06:50 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-02-13 06:50 - 2014-02-06 12:12 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-02-13 06:50 - 2014-02-06 12:07 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-02-13 06:50 - 2014-02-06 12:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-02-13 06:50 - 2014-02-06 11:57 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-02-13 06:50 - 2014-02-06 11:56 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-02-13 06:50 - 2014-02-06 11:52 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-02-13 06:50 - 2014-02-06 11:49 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-02-13 06:50 - 2014-02-06 11:48 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-02-13 06:50 - 2014-02-06 11:48 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-02-13 06:50 - 2014-02-06 11:38 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-02-13 06:50 - 2014-02-06 11:32 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-02-13 06:50 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-02-13 06:50 - 2014-02-06 11:17 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-02-13 06:50 - 2014-02-06 11:11 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-02-13 06:50 - 2014-02-06 11:01 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-02-13 06:50 - 2014-02-06 11:00 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-02-13 06:50 - 2014-02-06 10:57 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-02-13 06:50 - 2014-02-06 10:57 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-02-13 06:50 - 2014-02-06 10:52 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-02-13 06:50 - 2014-02-06 10:52 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-02-13 06:50 - 2014-02-06 10:50 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-02-13 06:50 - 2014-02-06 10:49 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-02-13 06:50 - 2014-02-06 10:47 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-02-13 06:50 - 2014-02-06 10:46 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-02-13 06:50 - 2014-02-06 10:25 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-02-13 06:50 - 2014-02-06 10:25 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-02-13 06:50 - 2014-02-06 10:24 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-02-13 06:50 - 2014-02-06 10:22 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-02-13 06:50 - 2014-02-06 10:13 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-02-13 06:50 - 2014-02-06 10:09 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-02-13 06:50 - 2014-02-06 10:03 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-02-13 06:50 - 2014-02-06 09:55 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-02-13 06:50 - 2014-02-06 09:41 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-02-13 06:50 - 2014-02-06 09:40 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-02-13 06:50 - 2014-02-06 09:36 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-02-13 06:50 - 2014-02-06 09:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-02-13 06:50 - 2013-12-21 10:53 - 00548864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-02-13 06:50 - 2013-12-21 09:56 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-02-13 00:55 - 2014-01-01 00:05 - 00420008 _____ () C:\Windows\SysWOW64\locale.nls
2014-02-13 00:55 - 2014-01-01 00:04 - 00420008 _____ () C:\Windows\system32\locale.nls
2014-02-13 00:55 - 2013-12-25 00:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2014-02-13 00:55 - 2013-12-24 23:48 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-02-13 00:55 - 2013-12-06 03:30 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-02-13 00:55 - 2013-12-06 03:30 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-02-13 00:55 - 2013-12-06 03:02 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-02-13 00:55 - 2013-12-06 03:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-02-13 00:55 - 2013-12-04 03:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll
2014-02-13 00:55 - 2013-12-04 03:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll
2014-02-13 00:55 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp_isv.dll
2014-02-13 00:55 - 2013-12-04 03:27 - 00123392 _____ (Microsoft Corporation) C:\Windows\system32\secproc_ssp.dll
2014-02-13 00:55 - 2013-12-04 03:26 - 00528384 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll
2014-02-13 00:55 - 2013-12-04 03:16 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe
2014-02-13 00:55 - 2013-12-04 03:16 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe
2014-02-13 00:55 - 2013-12-04 03:16 - 00553984 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp.exe
2014-02-13 00:55 - 2013-12-04 03:16 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_ssp_isv.exe
2014-02-13 00:55 - 2013-12-04 03:03 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll
2014-02-13 00:55 - 2013-12-04 03:03 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll
2014-02-13 00:55 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp_isv.dll
2014-02-13 00:55 - 2013-12-04 03:03 - 00087040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_ssp.dll
2014-02-13 00:55 - 2013-12-04 03:02 - 00390144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll
2014-02-13 00:55 - 2013-12-04 02:54 - 00594944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe
2014-02-13 00:55 - 2013-12-04 02:54 - 00572416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe
2014-02-13 00:55 - 2013-12-04 02:54 - 00510976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp.exe
2014-02-13 00:55 - 2013-12-04 02:54 - 00508928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_ssp_isv.exe
2014-02-13 00:55 - 2013-11-26 09:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2014-02-13 00:55 - 2013-11-22 23:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2014-02-12 13:26 - 2014-02-12 13:26 - 00000146 _____ () C:\Users\Ck\Desktop\Sound - Verknüpfung.lnk
2014-02-12 13:20 - 2014-02-12 13:20 - 00000000 ____D () C:\Program Files\Focusrite
2014-02-12 13:20 - 2014-02-12 13:20 - 00000000 ____D () C:\Program Files\DIFX
2014-02-12 13:20 - 2013-09-25 14:41 - 00022832 _____ (Focusrite Audio Engineering Limited.) C:\Windows\system32\ffusb2audio_coinst.dll
2014-02-12 13:20 - 2013-09-25 14:40 - 00127280 _____ (Focusrite Audio Engineering Limited.) C:\Windows\system32\Drivers\ffusb2audio.sys
2014-02-12 13:19 - 2014-02-12 13:19 - 00929768 _____ (Focusrite Audio Engineering Limited. ) C:\Users\Ck\Downloads\focusrite-usb-2-driver-2.5.1.exe
2014-02-12 13:19 - 2014-02-12 13:19 - 00000000 ____D () C:\Program Files (x86)\VSTPlugIns
2014-02-12 13:19 - 2014-02-12 13:19 - 00000000 ____D () C:\Program Files (x86)\Focusrite
2014-02-12 13:18 - 2014-02-12 13:19 - 03491288 _____ (Focusrite ) C:\Users\Ck\Downloads\scarlett-plug-in-suite-1.5.exe
2014-02-11 21:53 - 2014-02-11 21:53 - 00089143 _____ () C:\Users\Ck\Downloads\abstract tedesco uno.xml
2014-02-11 01:18 - 2014-02-11 01:18 - 00003446 _____ () C:\Users\Ck\Documents\cc_20140211_011800.reg
2014-02-05 02:26 - 2014-02-05 02:26 - 00031262 _____ () C:\Users\Ck\Downloads\1995Arts.jpeg
2014-02-03 02:05 - 2014-02-03 02:05 - 00161404 _____ () C:\Users\Ck\Downloads\Landmesser.jpeg
2014-02-02 19:34 - 2014-02-02 19:35 - 00000000 ____D () C:\Users\Ck\Desktop\Neuer Ordner (8)
2014-01-29 23:33 - 2014-02-15 23:14 - 00000000 ____D () C:\Users\Ck\AppData\Roaming\vlc
2014-01-29 23:33 - 2014-01-29 23:33 - 00000000 ____D () C:\Users\Ck\AppData\Roaming\dvdcss
2014-01-29 23:32 - 2014-01-29 23:32 - 00001072 _____ () C:\Users\Public\Desktop\VLC media player.lnk
2014-01-29 23:32 - 2014-01-29 23:32 - 00000000 ____D () C:\Program Files (x86)\VideoLAN
2014-01-29 23:31 - 2014-01-29 23:32 - 24951496 _____ () C:\Users\Ck\Downloads\vlc-2.1.2-win32.exe
2014-01-29 21:46 - 2014-02-16 00:36 - 00000000 ____D () C:\Users\Ck\AppData\Local\Google
2014-01-28 14:45 - 2014-01-28 14:49 - 00000000 ____D () C:\Users\Ck\Desktop\Neuer Ordner (7)
2014-01-28 14:25 - 2014-01-28 14:31 - 00000000 ____D () C:\Users\Ck\Documents\Scan
2014-01-26 03:21 - 2014-01-26 03:21 - 00000000 ____D () C:\Users\Ck\Documents\ASUS
2014-01-24 18:37 - 2014-02-11 01:17 - 00000000 ____D () C:\Windows\Minidump
2014-01-24 18:24 - 2014-01-24 19:04 - 00000000 ____D () C:\Users\Ck\AppData\Roaming\Skype
2014-01-24 18:24 - 2014-01-24 18:24 - 00002699 _____ () C:\Users\Public\Desktop\Skype.lnk
2014-01-24 18:24 - 2014-01-24 18:24 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-01-24 18:24 - 2014-01-24 18:24 - 00000000 ____D () C:\Users\Ck\AppData\Local\Skype
2014-01-24 18:24 - 2014-01-24 18:24 - 00000000 ____D () C:\ProgramData\Skype
2014-01-24 18:22 - 2014-01-24 18:23 - 35670688 _____ (Skype Technologies S.A.) C:\Users\Ck\Downloads\SkypeSetupFull.exe
2014-01-24 10:05 - 2014-01-24 10:05 - 01727624 _____ () C:\Users\Ck\Downloads\Adaware_Installer.exe
2014-01-21 02:30 - 2014-01-21 02:31 - 10148692 _____ () C:\Users\Ck\Downloads\1.wmv
==================== One Month Modified Files and Folders =======
2014-02-20 09:54 - 2014-02-17 09:30 - 00019461 _____ () C:\Users\Ck\Downloads\FRST.txt
2014-02-20 09:53 - 2014-02-17 09:30 - 00000000 ____D () C:\FRST
2014-02-20 09:51 - 2013-11-18 08:03 - 00000000 ____D () C:\Program Files (x86)\Steama
2014-02-20 09:42 - 2013-11-01 19:09 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-02-20 09:39 - 2014-02-16 00:34 - 00001102 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-02-20 09:10 - 2014-02-15 22:11 - 00562860 _____ () C:\Windows\WindowsUpdate.log
2014-02-20 09:10 - 2009-07-14 05:45 - 00009696 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-02-20 09:10 - 2009-07-14 05:45 - 00009696 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-02-20 09:03 - 2014-02-20 09:03 - 00000000 ___RD () C:\Users\Ck\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
2014-02-20 09:03 - 2014-02-17 00:40 - 00000448 _____ () C:\Windows\setupact.log
2014-02-20 09:03 - 2014-02-16 00:34 - 00001098 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-02-20 09:03 - 2013-12-07 17:18 - 00002307 _____ () C:\Users\Public\Desktop\Ad-Aware Antivirus.lnk
2014-02-20 09:03 - 2013-10-31 19:14 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-02-20 09:03 - 2013-10-31 19:09 - 00000828 _____ () C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job
2014-02-20 09:03 - 2013-10-31 05:13 - 00000387 _____ () C:\Users\Ck\AppData\Roaming\sp_data.sys
2014-02-20 09:03 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-02-20 09:02 - 2014-02-18 10:08 - 00004050 _____ () C:\Windows\PFRO.log
2014-02-20 07:37 - 2013-11-06 12:03 - 00000000 ____D () C:\Users\Ck\AppData\Roaming\Dropbox
2014-02-20 06:41 - 2014-02-20 06:41 - 00000000 ____D () C:\Users\Ck\AppData\Local\adawarebp
2014-02-20 06:41 - 2013-10-31 05:13 - 00000000 ____D () C:\Users\Ck\Documents\Bluetooth Folder
2014-02-20 06:39 - 2014-02-16 11:19 - 00000000 ____D () C:\AdwCleaner
2014-02-20 06:38 - 2014-02-20 06:38 - 01241834 _____ () C:\Users\Ck\Downloads\adwcleaner.exe
2014-02-20 06:37 - 2014-02-20 06:37 - 00001032 _____ () C:\Users\Ck\Desktop\JRT.txt
2014-02-20 06:30 - 2011-02-19 05:24 - 00699666 _____ () C:\Windows\system32\perfh007.dat
2014-02-20 06:30 - 2011-02-19 05:24 - 00149774 _____ () C:\Windows\system32\perfc007.dat
2014-02-20 06:30 - 2009-07-14 06:13 - 01620612 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-02-20 06:28 - 2014-02-20 06:28 - 00000000 ____D () C:\Windows\ERUNT
2014-02-19 16:09 - 2014-02-19 16:09 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Ck\Downloads\mbam-setup-1.75.0.1300 (1).exe
2014-02-19 16:09 - 2014-02-19 16:09 - 01037530 _____ (Thisisu) C:\Users\Ck\Downloads\JRT.exe
2014-02-19 16:06 - 2013-11-06 12:05 - 00000000 ___RD () C:\Users\Ck\Dropbox
2014-02-19 15:05 - 2013-10-31 19:09 - 00000830 _____ () C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job
2014-02-19 09:56 - 2013-11-01 11:00 - 00000000 ____D () C:\Users\Ck\AppData\Local\Last.fm
2014-02-19 09:45 - 2013-11-04 14:34 - 00000000 ____D () C:\Users\Ck\AppData\Local\CrashDumps
2014-02-19 09:42 - 2013-10-31 07:10 - 00000000 ____D () C:\Users\Ck\AppData\Roaming\Winamp
2014-02-18 10:08 - 2014-02-18 10:08 - 00042497 _____ () C:\Users\Ck\Desktop\wegtg.txt
2014-02-18 10:07 - 2014-02-18 10:07 - 00042497 _____ () C:\ComboFix.txt
2014-02-18 10:07 - 2014-02-18 09:37 - 00000000 ____D () C:\Qoobox
2014-02-18 10:01 - 2014-02-18 09:37 - 00000000 ____D () C:\Windows\erdnt
2014-02-18 09:51 - 2009-07-14 03:34 - 00000215 _____ () C:\Windows\system.ini
2014-02-18 09:36 - 2014-02-18 09:36 - 05183112 ____R (Swearware) C:\Users\Ck\Downloads\ComboFix.exe
2014-02-17 09:32 - 2014-02-17 09:31 - 00038956 _____ () C:\Users\Ck\Downloads\Addition.txt
2014-02-17 09:29 - 2014-02-17 09:29 - 02152448 _____ (Farbar) C:\Users\Ck\Downloads\FRST64.exe
2014-02-17 01:46 - 2013-11-25 16:23 - 00000000 ____D () C:\Program Files (x86)\DivX
2014-02-17 01:46 - 2013-11-25 16:22 - 00000000 ____D () C:\ProgramData\DivX
2014-02-17 01:43 - 2014-02-17 01:42 - 86847752 _____ (DivX, LLC) C:\Users\Ck\Downloads\DivX101Installer.exe
2014-02-17 01:40 - 2014-02-17 01:40 - 01071000 _____ (Solid State Networks) C:\Users\Ck\Downloads\install_flashplayer12x32_chrd_aaa_aih.exe
2014-02-17 01:40 - 2013-11-01 19:09 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-02-17 01:40 - 2013-11-01 19:09 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-02-17 01:40 - 2013-11-01 19:09 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-02-17 01:40 - 2013-11-01 19:08 - 00000000 ____D () C:\Users\Ck\AppData\Local\Adobe
2014-02-17 00:40 - 2014-02-17 00:40 - 00000000 _____ () C:\Windows\setuperr.log
2014-02-16 15:31 - 2014-02-16 15:31 - 00001196 _____ () C:\Users\Ck\Documents\cc_20140216_153150.reg
2014-02-16 13:27 - 2014-02-16 13:27 - 00000000 ____D () C:\Users\Ck\Documents\Fax
2014-02-16 13:00 - 2014-02-16 13:00 - 00001135 _____ () C:\Users\Public\Desktop\Opera.lnk
2014-02-16 13:00 - 2014-02-16 13:00 - 00000000 ____D () C:\Users\Ck\AppData\Roaming\Opera Software
2014-02-16 13:00 - 2014-02-16 13:00 - 00000000 ____D () C:\Users\Ck\AppData\Local\Opera Software
2014-02-16 13:00 - 2014-02-16 13:00 - 00000000 ____D () C:\Program Files (x86)\Opera
2014-02-16 11:32 - 2014-02-16 11:30 - 00000000 ____D () C:\Windows\system32\MRT
2014-02-16 11:27 - 2012-02-24 03:28 - 01594892 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-02-16 11:26 - 2014-02-16 11:25 - 35623952 _____ (Opera Software ASA) C:\Users\Ck\Downloads\Opera_19.0.1326.63_Setup.exe
2014-02-16 11:18 - 2014-02-16 11:18 - 00000882 _____ () C:\Users\Ck\Documents\cc_20140216_111843.reg
2014-02-16 05:14 - 2014-02-16 05:14 - 00001115 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-02-16 05:14 - 2014-02-16 05:14 - 00000000 ____D () C:\Users\Ck\AppData\Roaming\Malwarebytes
2014-02-16 05:14 - 2014-02-16 05:14 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-02-16 05:14 - 2014-02-16 05:13 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-02-16 05:12 - 2014-02-16 05:12 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Ck\Downloads\mbam-setup-1.75.0.1300.exe
2014-02-16 03:29 - 2013-12-07 17:33 - 00000000 ____D () C:\ProgramData\BitDefender
2014-02-16 03:28 - 2014-02-16 03:28 - 00076944 _____ (BitDefender) C:\Windows\system32\Drivers\bdvedisk.sys
2014-02-16 03:28 - 2014-02-16 03:28 - 00074512 _____ (BitDefender SRL) C:\Windows\system32\bdsandboxuiskin32.dll
2014-02-16 03:28 - 2014-02-16 00:59 - 00074512 _____ (BitDefender SRL) C:\Windows\SysWOW64\bdsandboxuiskin32.dll
2014-02-16 03:24 - 2014-02-16 03:24 - 00000385 _____ () C:\Users\Ck\AppData\Roaminguser_gensett.xml
2014-02-16 00:59 - 2014-02-16 00:59 - 00002192 _____ () C:\Users\Public\Desktop\Bitdefender Safepay.lnk
2014-02-16 00:59 - 2014-02-16 00:59 - 00002073 _____ () C:\Users\Public\Desktop\Bitdefender Internet Security.lnk
2014-02-16 00:59 - 2014-02-16 00:59 - 00000385 _____ () C:\Windows\system32\user_gensett.xml
2014-02-16 00:59 - 2014-02-16 00:59 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_avchv_01009.Wdf
2014-02-16 00:59 - 2014-02-16 00:59 - 00000000 ____D () C:\ProgramData\BDLogging
2014-02-16 00:49 - 2014-02-16 00:49 - 00000000 ____D () C:\Users\Ck\AppData\Roaming\Bitdefender
2014-02-16 00:43 - 2014-02-16 00:37 - 00000000 ____D () C:\Program Files\Common Files\Bitdefender
2014-02-16 00:39 - 2014-02-16 00:39 - 00000000 ____D () C:\Program Files\Bitdefender
2014-02-16 00:38 - 2014-02-16 00:38 - 00000000 ____D () C:\Users\Ck\AppData\Roaming\QuickScan
2014-02-16 00:36 - 2014-02-16 00:36 - 00002253 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-02-16 00:36 - 2014-01-29 21:46 - 00000000 ____D () C:\Users\Ck\AppData\Local\Google
2014-02-16 00:35 - 2014-02-16 00:34 - 00000000 ____D () C:\Program Files (x86)\Google
2014-02-16 00:34 - 2014-02-16 00:34 - 00004098 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-02-16 00:34 - 2014-02-16 00:34 - 00003846 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-02-16 00:34 - 2014-02-16 00:33 - 00000000 ____D () C:\Users\Ck\AppData\Local\Deployment
2014-02-16 00:33 - 2014-02-16 00:33 - 00000000 ____D () C:\Users\Ck\AppData\Local\Apps\2.0
2014-02-16 00:31 - 2014-02-16 00:31 - 00000874 _____ () C:\Users\Ck\Documents\cc_20140216_003142.reg
2014-02-16 00:26 - 2014-02-16 00:26 - 00002766 _____ () C:\Users\Ck\Documents\cc_20140216_002616.reg
2014-02-16 00:22 - 2014-02-16 00:22 - 00000000 ____D () C:\Users\Ck\AppData\Roaming\TuneUp Software
2014-02-16 00:22 - 2014-02-16 00:21 - 00000000 ____D () C:\ProgramData\TuneUp Software
2014-02-16 00:21 - 2014-02-16 00:21 - 00000000 __SHD () C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2014-02-16 00:10 - 2014-02-16 00:00 - 00000000 ____D () C:\Program Files\COMODO
2014-02-16 00:08 - 2014-02-16 00:08 - 00000000 _____ () C:\Windows\pestpatrol5.INI
2014-02-16 00:02 - 2014-02-16 00:01 - 00000000 ____D () C:\Users\Public\Documents\COMODO
2014-02-16 00:00 - 2014-02-16 00:00 - 01700352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdiplus.dll
2014-02-16 00:00 - 2014-02-16 00:00 - 01060864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71.dll
2014-02-15 23:21 - 2014-02-15 23:21 - 00000454 _____ () C:\Users\Ck\Documents\cc_20140215_232152.reg
2014-02-15 23:14 - 2014-01-29 23:33 - 00000000 ____D () C:\Users\Ck\AppData\Roaming\vlc
2014-02-15 22:21 - 2014-02-15 22:21 - 00000444 _____ () C:\Users\Ck\Documents\cc_20140215_222118.reg
2014-02-15 22:07 - 2014-02-15 21:07 - 00001975 _____ () C:\Users\Ck\Desktop\Sync Folder.lnk
2014-02-15 22:07 - 2013-10-31 05:12 - 00000000 ___RD () C:\Users\Ck\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-02-15 21:53 - 2014-02-15 21:53 - 00000482 _____ () C:\Users\Ck\Documents\cc_20140215_215301.reg
2014-02-15 21:23 - 2014-02-15 21:23 - 00001640 _____ () C:\Users\Ck\Documents\cc_20140215_212318.reg
2014-02-15 21:07 - 2014-02-15 21:07 - 00000306 __RSH () C:\ProgramData\ntuser.pol
2014-02-15 21:07 - 2009-07-14 04:20 - 00000000 ___HD () C:\Windows\system32\GroupPolicy
2014-02-15 21:07 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\SysWOW64\GroupPolicy
2014-02-15 21:05 - 2014-02-15 21:05 - 00003284 _____ () C:\Users\Ck\Documents\cc_20140215_210549.reg
2014-02-15 18:43 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2014-02-13 17:17 - 2014-02-13 17:09 - 1289329438 _____ () C:\Users\Ck\Downloads\dance_dj_55867.zip
2014-02-13 17:13 - 2014-02-13 17:09 - 1358542511 _____ () C:\Users\Ck\Downloads\hip_hop_56860.zip
2014-02-13 17:01 - 2014-02-13 13:47 - 1147328760 _____ () C:\Users\Ck\Downloads\pop_rock_55870.zip
2014-02-13 16:54 - 2014-02-13 13:47 - 1321713557 _____ () C:\Users\Ck\Downloads\rb_funk_soul_70045.zip
2014-02-13 15:19 - 2014-02-13 13:52 - 00000000 ____D () C:\Users\Public\Pro Tools
2014-02-13 15:18 - 2014-02-13 13:53 - 00000000 ____D () C:\Users\Ck\Documents\a
2014-02-13 14:29 - 2014-02-13 13:47 - 541078056 _____ () C:\Users\Ck\Downloads\jazz_55869.zip
2014-02-13 14:28 - 2014-02-13 14:28 - 00000000 ____D () C:\Users\Ck\Desktop\Neuer Ordner (9)
2014-02-13 14:17 - 2013-11-04 17:49 - 00000000 ____D () C:\Users\Ck\Desktop\Neuer Ordner
2014-02-13 14:03 - 2014-02-13 13:47 - 389472749 _____ () C:\Users\Ck\Downloads\rock_hard_55871.zip
2014-02-13 13:52 - 2014-02-13 13:52 - 00000000 ____D () C:\Users\Ck\Documents\Pro Tools
2014-02-13 13:52 - 2014-02-13 13:52 - 00000000 ____D () C:\Users\Ck\AppData\Local\Avid
2014-02-13 13:51 - 2014-02-13 13:51 - 00002560 _____ () C:\Users\Ck\PaceKeyChain
2014-02-13 13:51 - 2013-10-31 05:11 - 00000000 ____D () C:\Users\Ck
2014-02-13 13:50 - 2014-02-13 13:50 - 00000000 ____D () C:\Users\Ck\AppData\Local\PACE
2014-02-13 13:50 - 2013-10-31 05:11 - 00130888 _____ () C:\Users\Ck\AppData\Local\GDIPFONTCACHEV1.DAT
2014-02-13 13:43 - 2014-02-13 13:43 - 00000000 ____D () C:\Users\Ck\AppData\Roaming\Apple Computer
2014-02-13 13:42 - 2009-07-14 05:45 - 00467768 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-02-13 13:39 - 2014-02-13 13:39 - 00001945 _____ () C:\Users\Public\Desktop\Pro Tools 11.lnk
2014-02-13 13:39 - 2014-02-13 13:37 - 00000000 ____D () C:\Users\Public\Documents\Avid Video Engine
2014-02-13 13:39 - 2014-02-13 13:34 - 00000000 ____D () C:\Program Files\Avid
2014-02-13 13:37 - 2014-02-13 13:37 - 00000000 ____D () C:\Users\Ck\AppData\Roaming\Avid
2014-02-13 13:37 - 2014-02-13 13:36 - 00000000 ____D () C:\Program Files\Common Files\Avid
2014-02-13 13:34 - 2014-02-13 13:34 - 00000000 ____D () C:\Program Files (x86)\Avid
2014-02-13 13:32 - 2014-02-13 13:32 - 00001847 _____ () C:\Users\Public\Desktop\QuickTime Player.lnk
2014-02-13 13:32 - 2014-02-13 13:32 - 00000000 ____D () C:\ProgramData\Apple Computer
2014-02-13 13:32 - 2014-02-13 13:32 - 00000000 ____D () C:\Program Files (x86)\QuickTime
2014-02-13 13:31 - 2014-02-13 13:31 - 00000000 ____D () C:\Users\Ck\AppData\Local\Apple
2014-02-13 13:31 - 2014-02-13 13:31 - 00000000 ____D () C:\ProgramData\Apple
2014-02-13 13:31 - 2014-02-13 13:31 - 00000000 ____D () C:\Program Files (x86)\Apple Software Update
2014-02-13 13:31 - 2014-02-13 13:30 - 41404760 _____ (Apple Inc.) C:\Users\Ck\Downloads\QuickTimeInstaller.exe
2014-02-13 13:19 - 2014-02-13 13:19 - 00000000 ____D () C:\ProgramData\PACE
2014-02-13 13:16 - 2014-02-13 12:21 - 2718669922 _____ () C:\Users\Ck\Downloads\Avid_Virtual_Instruments_10_Installer_73466.zip
2014-02-13 13:12 - 2014-02-13 13:12 - 00002083 _____ () C:\Users\Public\Desktop\iLok License Manager.lnk
2014-02-13 13:12 - 2014-02-13 13:12 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_iLokDrvr_01007.Wdf
2014-02-13 13:12 - 2014-02-13 13:12 - 00000000 ____D () C:\Program Files (x86)\iLok License Manager
2014-02-13 13:12 - 2013-10-31 19:08 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-02-13 13:05 - 2014-02-13 13:05 - 00000000 ____D () C:\Users\Ck\Desktop\Pro Tools
2014-02-13 12:59 - 2014-02-13 12:17 - 1121278837 _____ () C:\Users\Ck\Downloads\Pro_Tools_11_1_2_Win_80991.zip
2014-02-13 12:53 - 2014-02-13 12:18 - 1122172336 _____ () C:\Users\Ck\Downloads\Pro_Tools_11_0_2_Win_80449.zip
2014-02-13 06:58 - 2013-11-05 15:28 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-02-12 13:26 - 2014-02-12 13:26 - 00000146 _____ () C:\Users\Ck\Desktop\Sound - Verknüpfung.lnk
2014-02-12 13:20 - 2014-02-12 13:20 - 00000000 ____D () C:\Program Files\Focusrite
2014-02-12 13:20 - 2014-02-12 13:20 - 00000000 ____D () C:\Program Files\DIFX
2014-02-12 13:19 - 2014-02-12 13:19 - 00929768 _____ (Focusrite Audio Engineering Limited. ) C:\Users\Ck\Downloads\focusrite-usb-2-driver-2.5.1.exe
2014-02-12 13:19 - 2014-02-12 13:19 - 00000000 ____D () C:\Program Files (x86)\VSTPlugIns
2014-02-12 13:19 - 2014-02-12 13:19 - 00000000 ____D () C:\Program Files (x86)\Focusrite
2014-02-12 13:19 - 2014-02-12 13:18 - 03491288 _____ (Focusrite ) C:\Users\Ck\Downloads\scarlett-plug-in-suite-1.5.exe
2014-02-11 23:07 - 2014-01-09 01:27 - 00000000 ____D () C:\Users\Ck\Desktop\Neuer Ordner (6)
2014-02-11 21:55 - 2013-11-05 15:28 - 00000000 ____D () C:\Users\Ck\AppData\Local\Microsoft Help
2014-02-11 21:53 - 2014-02-11 21:53 - 00089143 _____ () C:\Users\Ck\Downloads\abstract tedesco uno.xml
2014-02-11 01:18 - 2014-02-11 01:18 - 00003446 _____ () C:\Users\Ck\Documents\cc_20140211_011800.reg
2014-02-11 01:17 - 2014-01-24 18:37 - 00000000 ____D () C:\Windows\Minidump
2014-02-06 13:16 - 2014-02-13 06:50 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-02-06 12:30 - 2014-02-13 06:50 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-02-06 12:30 - 2014-02-13 06:50 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-02-06 12:12 - 2014-02-13 06:50 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-02-06 12:07 - 2014-02-13 06:50 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-02-06 12:06 - 2014-02-13 06:50 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-02-06 11:57 - 2014-02-13 06:50 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-02-06 11:56 - 2014-02-13 06:50 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-02-06 11:52 - 2014-02-13 06:50 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-02-06 11:49 - 2014-02-13 06:50 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-02-06 11:48 - 2014-02-13 06:50 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-02-06 11:48 - 2014-02-13 06:50 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-02-06 11:38 - 2014-02-13 06:50 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-02-06 11:32 - 2014-02-13 06:50 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-02-06 11:20 - 2014-02-13 06:50 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-02-06 11:17 - 2014-02-13 06:50 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-02-06 11:11 - 2014-02-13 06:50 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-02-06 11:01 - 2014-02-13 06:50 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-02-06 11:00 - 2014-02-13 06:50 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-02-06 10:57 - 2014-02-13 06:50 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-02-06 10:57 - 2014-02-13 06:50 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-02-06 10:52 - 2014-02-13 06:50 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-02-06 10:52 - 2014-02-13 06:50 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-02-06 10:50 - 2014-02-13 06:50 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-02-06 10:49 - 2014-02-13 06:50 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-02-06 10:47 - 2014-02-13 06:50 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-02-06 10:46 - 2014-02-13 06:50 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-02-06 10:25 - 2014-02-13 06:50 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-02-06 10:25 - 2014-02-13 06:50 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-02-06 10:24 - 2014-02-13 06:50 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-02-06 10:22 - 2014-02-13 06:50 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-02-06 10:13 - 2014-02-13 06:50 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-02-06 10:09 - 2014-02-13 06:50 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-02-06 10:03 - 2014-02-13 06:50 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-02-06 09:55 - 2014-02-13 06:50 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-02-06 09:41 - 2014-02-13 06:50 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-02-06 09:40 - 2014-02-13 06:50 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-02-06 09:36 - 2014-02-13 06:50 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-02-06 09:34 - 2014-02-13 06:50 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-02-05 02:26 - 2014-02-05 02:26 - 00031262 _____ () C:\Users\Ck\Downloads\1995Arts.jpeg
2014-02-04 19:09 - 2014-02-16 11:30 - 88567024 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-02-03 02:05 - 2014-02-03 02:05 - 00161404 _____ () C:\Users\Ck\Downloads\Landmesser.jpeg
2014-02-02 19:35 - 2014-02-02 19:34 - 00000000 ____D () C:\Users\Ck\Desktop\Neuer Ordner (8)
2014-01-29 23:33 - 2014-01-29 23:33 - 00000000 ____D () C:\Users\Ck\AppData\Roaming\dvdcss
2014-01-29 23:32 - 2014-01-29 23:32 - 00001072 _____ () C:\Users\Public\Desktop\VLC media player.lnk
2014-01-29 23:32 - 2014-01-29 23:32 - 00000000 ____D () C:\Program Files (x86)\VideoLAN
2014-01-29 23:32 - 2014-01-29 23:31 - 24951496 _____ () C:\Users\Ck\Downloads\vlc-2.1.2-win32.exe
2014-01-29 15:59 - 2013-11-21 10:04 - 00000099 _____ () C:\Users\Public\LMDebug.log
2014-01-28 15:14 - 2012-02-24 03:28 - 00000000 ____D () C:\ProgramData\Adobe
2014-01-28 15:13 - 2013-10-31 07:07 - 00000000 ____D () C:\Users\Ck\AppData\Roaming\Adobe
2014-01-28 14:49 - 2014-01-28 14:45 - 00000000 ____D () C:\Users\Ck\Desktop\Neuer Ordner (7)
2014-01-28 14:31 - 2014-01-28 14:25 - 00000000 ____D () C:\Users\Ck\Documents\Scan
2014-01-26 03:21 - 2014-01-26 03:21 - 00000000 ____D () C:\Users\Ck\Documents\ASUS
2014-01-26 03:21 - 2013-10-31 05:11 - 00000000 ____D () C:\Users\Ck\AppData\Local\ASUS
2014-01-26 03:21 - 2012-02-24 03:50 - 00000000 ____D () C:\ProgramData\Asus
2014-01-24 19:04 - 2014-01-24 18:24 - 00000000 ____D () C:\Users\Ck\AppData\Roaming\Skype
2014-01-24 18:40 - 2009-07-14 06:09 - 00000000 ____D () C:\Windows\System32\Tasks\WPD
2014-01-24 18:24 - 2014-01-24 18:24 - 00002699 _____ () C:\Users\Public\Desktop\Skype.lnk
2014-01-24 18:24 - 2014-01-24 18:24 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-01-24 18:24 - 2014-01-24 18:24 - 00000000 ____D () C:\Users\Ck\AppData\Local\Skype
2014-01-24 18:24 - 2014-01-24 18:24 - 00000000 ____D () C:\ProgramData\Skype
2014-01-24 18:23 - 2014-01-24 18:22 - 35670688 _____ (Skype Technologies S.A.) C:\Users\Ck\Downloads\SkypeSetupFull.exe
2014-01-24 10:05 - 2014-01-24 10:05 - 01727624 _____ () C:\Users\Ck\Downloads\Adaware_Installer.exe
2014-01-21 02:59 - 2013-11-25 16:25 - 00000000 ____D () C:\Users\Ck\AppData\Roaming\DivX
2014-01-21 02:31 - 2014-01-21 02:30 - 10148692 _____ () C:\Users\Ck\Downloads\1.wmv
Some content of TEMP:
====================
C:\Users\Ck\AppData\Local\Temp\Quarantine.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-02-18 05:20
==================== End Of Log ============================
--- --- ---
--- --- ---
--- --- ---
Reihenfolge der Ausführung war
ADWCleaner -> Junkware Removal Tool -> Malwarebytes Anti-Malware -> FRST
da ich erst nach dem Junkware Removal Tool Scan festgestellt hab, dass ich ja Malwarebytes Anti-Malware updaten muss bevor ich scanne.
Problem?