FunkySimonp | 17.05.2014 12:25 | Adw Cleaner: Code:
# AdwCleaner v3.208 - Bericht erstellt am 17/05/2014 um 12:07:55
# Aktualisiert 11/05/2014 von Xplode
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits)
# Benutzername : Simon - SIMON-PC
# Gestartet von : C:\Users\Simon\Desktop\adwcleaner_3.208.exe
# Option : Löschen
***** [ Dienste ] *****
***** [ Dateien / Ordner ] *****
Ordner Gelöscht : C:\ProgramData\Systweak
Ordner Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced System Protector
Ordner Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RegClean Pro
Ordner Gelöscht : C:\Program Files (x86)\Advanced System Protector
Ordner Gelöscht : C:\Program Files (x86)\RegClean Pro
Ordner Gelöscht : C:\Program Files (x86)\Rr Savings
Ordner Gelöscht : C:\Program Files\002
Ordner Gelöscht : C:\Users\Simon\AppData\Local\Genesis
Ordner Gelöscht : C:\Users\Simon\AppData\Roaming\Systweak
Datei Gelöscht : C:\Users\Public\Desktop\Advanced System Protector.lnk
Datei Gelöscht : C:\Users\Public\Desktop\RegClean Pro.lnk
Datei Gelöscht : C:\Windows\System32\roboot64.exe
Datei Gelöscht : C:\Users\Simon\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.softonic.de_0.localstorage
Datei Gelöscht : C:\Users\Simon\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.softonic.de_0.localstorage-journal
Datei Gelöscht : C:\Windows\System32\Tasks\Advanced System Protector_startup
Datei Gelöscht : C:\Windows\System32\Tasks\RegClean Pro
Datei Gelöscht : C:\Windows\Tasks\RegClean Pro_DEFAULT.job
Datei Gelöscht : C:\Windows\System32\Tasks\RegClean Pro_DEFAULT
Datei Gelöscht : C:\Windows\Tasks\RegClean Pro_UPDATES.job
Datei Gelöscht : C:\Windows\System32\Tasks\RegClean Pro_UPDATES
***** [ Verknüpfungen ] *****
***** [ Registrierungsdatenbank ] *****
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\AdvancedSystemProtector_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\AdvancedSystemProtector_RASMANCS
Schlüssel Gelöscht : HKCU\Software\genesis
Schlüssel Gelöscht : HKCU\Software\InstallCore
Schlüssel Gelöscht : HKCU\Software\OCS
Schlüssel Gelöscht : HKCU\Software\systweak
Schlüssel Gelöscht : HKLM\Software\systweak
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{3566FB70-E722-4182-8266-815EAE862998}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\00212D92-C5D8-4ff4-AE50-B20F0F85C40A_Systweak_Ad~B9F029BF_is1
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\RegClean Pro_is1
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\RegClean-Pro_is1
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\LevelQualityWatcher
Schlüssel Gelöscht : HKLM\Software\Classes\Installer\Features\07BF6653227E2814286618E5EA689289
Schlüssel Gelöscht : HKLM\Software\Classes\Installer\Products\07BF6653227E2814286618E5EA689289
***** [ Browser ] *****
-\\ Internet Explorer v11.0.9600.17041
-\\ Mozilla Firefox v28.0 (de)
[ Datei : C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\ngqpozn3.default\prefs.js ]
-\\ Google Chrome v34.0.1847.137
[ Datei : C:\Users\Simon\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Gelöscht [Search Provider] : hxxp://www.qone8.com/web/?type=dspp&ts=1397737782&from=smt&uid=ST31000524AS_9VPCK3Z0XXXX9VPCK3Z0&q={searchTerms}
Gelöscht [Search Provider] : hxxp://www.softonic.de/s/{searchTerms}
*************************
AdwCleaner[R0].txt - [9889 octets] - [17/04/2014 15:07:55]
AdwCleaner[R1].txt - [1547 octets] - [17/04/2014 17:44:17]
AdwCleaner[R2].txt - [1036 octets] - [17/04/2014 17:47:19]
AdwCleaner[R3].txt - [1289 octets] - [18/04/2014 15:58:58]
AdwCleaner[R4].txt - [4320 octets] - [17/05/2014 12:07:24]
AdwCleaner[S0].txt - [7061 octets] - [17/04/2014 15:08:19]
AdwCleaner[S1].txt - [1397 octets] - [17/04/2014 17:44:49]
AdwCleaner[S2].txt - [971 octets] - [17/04/2014 17:49:35]
AdwCleaner[S3].txt - [1351 octets] - [18/04/2014 16:00:04]
AdwCleaner[S4].txt - [4036 octets] - [17/05/2014 12:07:55]
########## EOF - C:\AdwCleaner\AdwCleaner[S4].txt - [4096 octets] ########## mbam: Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlauf Datum: 17.05.2014
Suchlauf-Zeit: 12:41:23
Logdatei: mbam.txt
Administrator: Ja
Version: 2.00.1.1004
Malware Datenbank: v2014.05.17.05
Rootkit Datenbank: v2014.03.27.01
Lizenz: Premium
Malware Schutz: Aktiviert
Bösartiger Webseiten Schutz: Aktiviert
Chameleon: Deaktiviert
Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: Simon
Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 276835
Verstrichene Zeit: 7 Min, 59 Sek
Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Shuriken: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 0
(No malicious items detected)
Module: 0
(No malicious items detected)
Registrierungsschlüssel: 0
(No malicious items detected)
Registrierungswerte: 0
(No malicious items detected)
Registrierungsdaten: 0
(No malicious items detected)
Ordner: 0
(No malicious items detected)
Dateien: 3
PUP.Optional.Verti, C:\Users\Simon\Downloads\PricePeep.exe, In Quarantäne, [dd9c1e34aecd1323d1211e21f60e36ca],
PUP.Optional.Superfish.A, C:\Users\Simon\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage, In Quarantäne, [0376b999cfac63d3a3dc7f04d52df50b],
PUP.Optional.Superfish.A, C:\Users\Simon\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_www.superfish.com_0.localstorage-journal, In Quarantäne, [e2977bd784f702349ee12e556b9739c7],
Physische Sektoren: 0
(No malicious items detected)
(end) zoek results: Code:
Zoek.exe v5.0.0.0 Updated 14-April-2014
Tool run by Simon on 17.05.2014 at 12:48:05,78.
Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Simon\Desktop\zoek.com [Scan all users] [Script inserted]
==== System Restore Info ======================
17.05.2014 12:49:15 Zoek.exe System Restore Point Created Succesfully.
==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-3809745895-3397772576-1149702982-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully
HKEY_USERS\S-1-5-21-3809745895-3397772576-1149702982-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully
HKEY_USERS\S-1-5-21-3809745895-3397772576-1149702982-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D2CE3E00-F94A-4740-988E-03DC2F38C34F} deleted successfully
HKEY_USERS\S-1-5-21-3809745895-3397772576-1149702982-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D2CE3E00-F94A-4740-988E-03DC2F38C34F} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{D2CE3E00-F94A-4740-988E-03DC2F38C34F} deleted successfully
==== Deleting CLSID Registry Values ======================
HKEY_USERS\.DEFAULT\Software\Microsoft\Internet Explorer\Approved Extensions\{21EAF666-26B3-4a3c-ABD0-CA2F5A326744} deleted successfully
HKEY_USERS\S-1-5-19\Software\Microsoft\Internet Explorer\Approved Extensions\{21EAF666-26B3-4a3c-ABD0-CA2F5A326744} deleted successfully
HKEY_USERS\S-1-5-20\Software\Microsoft\Internet Explorer\Approved Extensions\{21EAF666-26B3-4a3c-ABD0-CA2F5A326744} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar\{8dcb7100-df86-4384-8842-8fa844297b3f} deleted successfully
HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\{4ED1F68A-5463-4931-9384-8FFF5ED91D92} deleted successfully
==== Deleting Services ======================
==== FireFox Fix ======================
Deleted from C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\ngqpozn3.default\prefs.js:
Added to C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\ngqpozn3.default\prefs.js:
user_pref("browser.startup.homepage", "hxxp://www.google.com");
user_pref("browser.search.defaulturl", "hxxp://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "hxxp://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "hxxp://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);
Deleted from C:\Users\Simon\AppData\Roaming\Thunderbird\Profiles\k7qwhxlh.default\prefs.js:
Added to C:\Users\Simon\AppData\Roaming\Thunderbird\Profiles\k7qwhxlh.default\prefs.js:
user_pref("browser.startup.homepage", "hxxp://www.google.com");
user_pref("browser.search.defaulturl", "hxxp://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.newtab.url", "hxxp://www.google.com/");
user_pref("browser.search.defaultengine", "Google");
user_pref("browser.search.defaultenginename", "Google");
user_pref("browser.search.selectedEngine", "Google");
user_pref("browser.search.order.1", "Google");
user_pref("keyword.URL", "hxxp://www.google.com/search?btnG=Google+Search&q=");
user_pref("browser.search.suggest.enabled", true);
user_pref("browser.search.useDBForOrder", true);
==== Deleting Files \ Folders ======================
C:\PROGRA~3\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C} deleted
C:\PROGRA~3\OberonGameConsole deleted
C:\Windows\SysNative\sasnative64.exe deleted
C:\Users\Simon\Downloads\rcpsetup_2005_file.net_ab_DE-kTweak.exe deleted
C:\Users\Simon\Desktop\chrome-youtube-downloader-2.6.20.crx deleted
"C:\PROGRA~2\AntiBrowserSpy\AbBugReporter.dll" deleted
"C:\PROGRA~2\AntiBrowserSpy\AbCommons.dll" deleted
"C:\PROGRA~2\AntiBrowserSpy\AbFlexTrans.dll" deleted
"C:\PROGRA~2\AntiBrowserSpy\AbGui.dll" deleted
"C:\PROGRA~2\AntiBrowserSpy\AbProcessManager.dll" deleted
"C:\PROGRA~2\AntiBrowserSpy\AbSettings.dll" deleted
"C:\PROGRA~2\AntiBrowserSpy\AbSettingsKeeper.dll" not deleted
"C:\PROGRA~2\AntiBrowserSpy\AntiBrowserSpyLibrary.dll" deleted
"C:\PROGRA~2\AntiBrowserSpy\AntiBrowserSpyResources.dll" deleted
"C:\PROGRA~2\AntiBrowserSpy\BrowserMask.exe" deleted
"C:\PROGRA~2\AntiBrowserSpy\Hardcodet.Wpf.TaskbarNotification.dll" deleted
"C:\PROGRA~2\AntiBrowserSpy\log4net.dll" deleted
"C:\PROGRA~2\AntiBrowserSpy\XDMessaging.dll" deleted
"C:\PROGRA~2\AntiBrowserSpy\XDMessaging.Transport.IOStream.dll" deleted
"C:\Users\Simon\AppData\Roaming\MultIV" deleted
"C:\PROGRA~2\AntiBrowserSpy" not deleted
==== Firefox Extensions Registry ======================
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"ffpwdman@bitdefender.com"="C:\Program Files\Bitdefender\Bitdefender\Antispam32\ffpwdman" [27.03.2014 19:26]
==== Firefox Extensions ======================
ProfilePath: C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\ngqpozn3.default
- Greasemonkey - %ProfilePath%\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi
AppDir: C:\Program Files (x86)\Mozilla Firefox
- Default - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
==== Firefox Plugins ======================
Profilepath: C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\ngqpozn3.default
F2CD1D7524F8E15AAC55568B9F72DE5B - C:\ProgramData\NexonEU\NGM\npNxGameEU.dll - Nexon Game Controller
==== Chrome Look ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
ccahoghmggldkcdjiebjkidpfongdfbl - C:\Program Files\Bitdefender\Bitdefender\Antispam32\pmbxcr.crx[03.03.2014 13:59]
fheoggkfdfchfphceeifdbepaooicaho - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx[]
oohfajmmkkdjdoaoncnnbgfoomiakgbd - C:\Program Files (x86)\AntiBrowserSpy\Addons\Chrome.crx[]
Bitdefender Wallet - Simon\AppData\Local\Google\Chrome\User Data\Default\Extensions\ccahoghmggldkcdjiebjkidpfongdfbl
SiteAdvisor - Simon\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho
==== Chrome Fix ======================
C:\Users\Simon\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_artikel.softonic.de_0.localstorage deleted successfully
C:\Users\Simon\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_artikel.softonic.de_0.localstorage-journal deleted successfully
C:\Users\Simon\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_vocup.softonic.de_0.localstorage deleted successfully
C:\Users\Simon\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_vocup.softonic.de_0.localstorage-journal deleted successfully
C:\Users\Simon\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_windows-keyfinder.softonic.de_0.localstorage deleted successfully
C:\Users\Simon\AppData\Local\Google\Chrome\User Data\Default\Local Storage\http_windows-keyfinder.softonic.de_0.localstorage-journal deleted successfully
C:\Users\Simon\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho deleted successfully
C:\Users\Simon\AppData\Local\Google\Chrome\User Data\Default\Extensions\oohfajmmkkdjdoaoncnnbgfoomiakgbd deleted successfully
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="hxxp://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{6A1806CD-94D4-4689-BA73-E35EA1EA9990}"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="hxxp://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC"
{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}"
==== Reset Google Chrome ======================
C:\Users\Simon\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Simon\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
==== Reset IE Proxy ======================
Value(s) before fix:
"ProxyOverride"="<local>"
"ProxyEnable"=dword:00000000
Value(s) after fix:
"ProxyEnable"=dword:00000000
==== Deleting Registry Keys ======================
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\fheoggkfdfchfphceeifdbepaooicaho deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Google\Chrome\Extensions\oohfajmmkkdjdoaoncnnbgfoomiakgbd deleted successfully
==== Empty IE Cache ======================
C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Windows\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Simon\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\27DFQ9ZP will be deleted at reboot
C:\Users\Simon\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\73I92H91 will be deleted at reboot
C:\Users\Simon\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\M9YR3W56 will be deleted at reboot
C:\Users\Simon\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MWBCI32B will be deleted at reboot
C:\Users\Simon\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QCRZS6RI will be deleted at reboot
C:\Users\Simon\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\S7UKZUFG will be deleted at reboot
==== Empty FireFox Cache ======================
C:\Users\Simon\AppData\Local\Mozilla\Firefox\Profiles\ngqpozn3.default\Cache emptied successfully
==== Empty Chrome Cache ======================
C:\Users\Simon\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
Flash Cache Emptied Successfully
==== Empty All Java Cache ======================
Java Cache cleared successfully
==== C:\zoek_backup content ======================
C:\zoek_backup (files=1195 folders=153 58724563 bytes)
==== Empty Temp Folders ======================
C:\Users\Default\AppData\Local\temp emptied successfully
C:\Users\Default User\AppData\Local\temp emptied successfully
C:\Users\Public\AppData\Local\temp emptied successfully
C:\Users\Simon\AppData\Local\Temp will be emptied at reboot
C:\Windows\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\Windows\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\Windows\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\Windows\Temp successfully emptied
C:\Users\Simon\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== Deleting Files / Folders ======================
"C:\PROGRA~2\AntiBrowserSpy\AbSettingsKeeper.dll" not found
"C:\PROGRA~2\AntiBrowserSpy" not found
"C:\Users\Simon\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\27DFQ9ZP" not found
"C:\Users\Simon\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\73I92H91" not found
"C:\Users\Simon\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\M9YR3W56" not found
"C:\Users\Simon\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\MWBCI32B" not found
"C:\Users\Simon\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\QCRZS6RI" not found
"C:\Users\Simon\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\S7UKZUFG" not found
==== EOF on 17.05.2014 at 13:14:24,76 ====================== JRT.txt: Code:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 7 Home Premium x64
Ran by Simon on 17.05.2014 at 12:20:46,97
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL
~~~ Registry Keys
~~~ Files
~~~ Folders
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 17.05.2014 at 12:30:52,85
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ FRST:
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 15-05-2014
Ran by Simon (administrator) on SIMON-PC on 17-05-2014 13:17:49
Running from C:\Users\Simon\Desktop
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\vsserv.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(AVM Berlin) C:\Program Files (x86)\avmwlanstick\WLanNetService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe
(BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.7\GoogleCrashHandler64.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Registration\GREGsvc.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfevtps.exe
(Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Samsung Electronics Co., Ltd.) C:\Windows\System32\spool\drivers\x64\3\NetFaxServer64.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
(CyberLink Corp.) C:\Program Files (x86)\Acer Arcade Deluxe\Acer Arcade Deluxe\ArcadeDeluxeAgent.exe
(TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe
(Acer Group) C:\Program Files\Acer\Acer Updater\UpdaterService.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\updatesrv.exe
() C:\OEM\USBDECTION\USBS3S4Detection.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mcshield.exe
(McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender Safebox\safeboxservice.exe
(TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesApp64.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
() C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\bdagent.exe
(PixArt Imaging Incorporation) C:\Windows\PixArt\PAC7302\Monitor.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Overwolf LTD) C:\Program Files (x86)\Overwolf\Overwolf.exe
(Oracle Corporation) C:\Program Files (x86)\Java\jre7\bin\javaw.exe
() C:\Users\Simon\AppData\Roaming\InetStat\inetstat.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe
(Samsung Electronics Co., Ltd.) C:\Windows\System32\spool\drivers\x64\3\NetFaxTray64.exe
(Egis Technology Inc.) C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe
(AVM Berlin) C:\Program Files (x86)\avmwlanstick\WLanGUI.exe
(BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-Agent.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Overwolf LTD) C:\Program Files (x86)\Common Files\Overwolf\OverwolfHelper.exe
(Overwolf LTD) C:\Program Files (x86)\Common Files\Overwolf\OverwolfHelper64.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\antispam32\pmbxcrnmh.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11464296 2010-09-03] (Realtek Semiconductor)
HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [456704 2012-02-20] ()
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2234144 2014-02-05] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\nvspcap64.dll [1179576 2014-02-05] (NVIDIA Corporation)
HKLM\...\Run: [Bdagent] => C:\Program Files\Bitdefender\Bitdefender\bdagent.exe [1742064 2014-03-25] (Bitdefender)
HKLM\...\Run: [PAC7302_Monitor] => C:\Windows\PixArt\PAC7302\Monitor.exe [319488 2006-11-03] (PixArt Imaging Incorporation)
HKLM-x32\...\Run: [SuiteTray] => C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe [337264 2010-05-27] (Egis Technology Inc.)
HKLM-x32\...\Run: [EgisTecPMMUpdate] => C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe [407920 2010-03-11] (Egis Technology Inc.)
HKLM-x32\...\Run: [Norton Online Backup] => C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [1155928 2010-06-02] (Symantec Corporation)
HKLM-x32\...\Run: [AVMWlanClient] => C:\Program Files (x86)\avmwlanstick\wlangui.exe [2105344 2010-10-22] (AVM Berlin)
HKLM-x32\...\Run: [BlueStacks Agent] => C:\Program Files (x86)\BlueStacks\HD-Agent.exe [819984 2014-03-06] (BlueStack Systems, Inc.)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-05-15] (Apple Inc.)
HKU\.DEFAULT\...\Run: [Bitdefender-Geldbörse-Agent] => C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe [567888 2014-03-19] (Bitdefender)
HKU\.DEFAULT\...\Run: [Bitdefender-Geldbörse] => C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe [1001536 2014-03-15] (Bitdefender)
HKU\.DEFAULT\...\Run: [Bitdefender-Geldbörse-Anwendungs-Agent] => C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe [614232 2014-03-19] (Bitdefender)
HKU\S-1-5-21-3809745895-3397772576-1149702982-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [20728480 2014-01-14] (Skype Technologies S.A.)
HKU\S-1-5-21-3809745895-3397772576-1149702982-1000\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\Overwolf.exe [37664 2014-03-05] (Overwolf LTD)
HKU\S-1-5-21-3809745895-3397772576-1149702982-1000\...\Run: [window] => "C:\Program Files (x86)\Java\jre7\bin\javaw.exe" -jar "C:\Users\Simon\AppData\Roaming\archivos java\jar.B09"
HKU\S-1-5-21-3809745895-3397772576-1149702982-1000\...\Run: [InetStat] => C:\Users\Simon\AppData\Roaming\InetStat\inetstat.exe [1260648 2014-04-17] ()
HKU\S-1-5-21-3809745895-3397772576-1149702982-1000\...\Run: [Bitdefender-Geldbörse-Agent] => C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe [567888 2014-03-19] (Bitdefender)
HKU\S-1-5-21-3809745895-3397772576-1149702982-1000\...\Run: [Bitdefender-Geldbörse] => C:\Program Files\Bitdefender\Bitdefender\pwdmanui.exe [1001536 2014-03-15] (Bitdefender)
HKU\S-1-5-21-3809745895-3397772576-1149702982-1000\...\Run: [Bitdefender-Geldbörse-Anwendungs-Agent] => C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe [614232 2014-03-19] (Bitdefender)
HKU\S-1-5-21-3809745895-3397772576-1149702982-1000\...\Run: [GoogleChromeAutoLaunch_5DAEC53D8C099B1094B921010676FA41] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [841032 2014-05-08] (Google Inc.)
HKU\S-1-5-21-3809745895-3397772576-1149702982-1000\...\Run: [icq] => C:\Users\Simon\AppData\Roaming\ICQM\icq.exe [33664344 2014-02-13] (ICQ)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Samsung Network PC Fax.lnk
ShortcutTarget: Samsung Network PC Fax.lnk -> C:\Windows\System32\spool\drivers\x64\3\NetFaxTray64.exe (Samsung Electronics Co., Ltd.)
Startup: C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\CPUCooL.lnk
ShortcutTarget: CPUCooL.lnk -> C:\Program Files (x86)\CPUCooL\CPUCooL.exe ()
Startup: C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Curse.lnk
ShortcutTarget: Curse.lnk -> C:\Users\Simon\AppData\Roaming\Curse Client\Bin\Curse.exe (Curse, Inc)
==================== Internet (Whitelisted) ====================
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}
BHO: Bitdefender-Geldbörse - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender\pmbxie.dll (Bitdefender)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: Bitdefender-Geldbörse - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender\Antispam32\pmbxie.dll (Bitdefender)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - No File
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - No File
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - No File
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - No File
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - No File
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - No File
Tcpip\..\Interfaces\{D10E3A7A-0730-4774-8825-D3595DA11AC6}: [NameServer]192.168.178.235,192.168.178.1
FireFox:
========
FF ProfilePath: C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\ngqpozn3.default
FF NewTab: hxxp://www.google.com/
FF DefaultSearchEngine: Google
FF SearchEngineOrder.1: Google
FF SelectedSearchEngine: Google
FF Homepage: hxxp://www.google.com
FF Keyword.URL: hxxp://www.google.com/search?btnG=Google+Search&q=
FF Plugin: @mcafee.com/MSC,version=10 - c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.55.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @mcafee.com/MSC,version=10 - c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @ngm.nexoneu.com/NxGame - C:\ProgramData\NexonEU\NGM\npNxGameEU.dll (Nexon)
FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: Greasemonkey - C:\Users\Simon\AppData\Roaming\Mozilla\Firefox\Profiles\ngqpozn3.default\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2014-05-11]
FF HKLM\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender\bdtbext
FF Extension: bdToolbar - C:\Program Files\Bitdefender\Bitdefender\bdtbext [2014-04-25]
FF HKLM-x32\...\Firefox\Extensions: [ffpwdman@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender\Antispam32\ffpwdman\
FF Extension: Bitdefender Wallet - C:\Program Files\Bitdefender\Bitdefender\Antispam32\ffpwdman\ []
FF HKLM-x32\...\Thunderbird\Extensions: [bdThunderbird@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender\bdtbext
FF Extension: bdToolbar - C:\Program Files\Bitdefender\Bitdefender\bdtbext [2014-04-25]
Chrome:
=======
CHR Extension: (Bitdefender Wallet) - C:\Users\Simon\AppData\Local\Google\Chrome\User Data\Default\Extensions\ccahoghmggldkcdjiebjkidpfongdfbl [2014-04-24]
CHR Extension: (Google Wallet) - C:\Users\Simon\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-04-17]
CHR HKLM-x32\...\Chrome\Extension: [ccahoghmggldkcdjiebjkidpfongdfbl] - C:\Program Files\Bitdefender\Bitdefender\Antispam32\pmbxcr.crx [2014-04-25]
==================== Services (Whitelisted) =================
R2 AVM WLAN Connection Service; C:\Program Files (x86)\avmwlanstick\WlanNetService.exe [376832 2010-10-22] (AVM Berlin)
S4 BdDesktopParental; C:\Program Files\Bitdefender\Bitdefender\bdparentalservice.exe [77632 2013-11-21] (Bitdefender)
S2 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [402192 2014-03-06] (BlueStack Systems, Inc.)
R2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [385808 2014-03-06] (BlueStack Systems, Inc.)
R2 BstHdUpdaterSvc; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [770832 2014-03-06] (BlueStack Systems, Inc.)
S2 CPUCooLServer; C:\Program Files (x86)\CPUCooL\CooLSrv.exe [743936 2011-12-01] ()
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1809720 2014-04-03] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [857912 2014-04-03] (Malwarebytes Corporation)
R2 McShield; C:\Program Files\Common Files\McAfee\SystemCore\\mcshield.exe [199032 2010-01-06] (McAfee, Inc.)
R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [219752 2014-01-27] (McAfee, Inc.)
R2 mfevtp; C:\Program Files\Common Files\McAfee\SystemCore\mfevtps.exe [185792 2014-01-27] (McAfee, Inc.)
S3 MWLService; C:\Program Files (x86)\EgisTec MyWinLocker\x86\MWLService.exe [305520 2010-05-27] (Egis Technology Inc.)
R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2804568 2010-06-02] (Symantec Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1593632 2014-02-05] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [16941856 2014-02-05] (NVIDIA Corporation)
S3 OverwolfUpdaterService; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [99616 2014-03-05] (Overwolf LTD)
R2 SafeBox; C:\Program Files\Bitdefender\Bitdefender SafeBox\safeboxservice.exe [94624 2013-07-08] (Bitdefender)
R2 Samsung Network Fax Server; C:\Windows\system32\spool\drivers\x64\3\NetFaxServer64.exe [237056 2012-04-26] (Samsung Electronics Co., Ltd.)
R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe [2138936 2014-03-20] (TuneUp Software)
R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender\updatesrv.exe [67320 2013-10-07] (Bitdefender)
R2 USBS3S4Detection; C:\OEM\USBDECTION\USBS3S4Detection.exe [76320 2009-12-09] ()
R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender\vsserv.exe [1523728 2014-03-24] (Bitdefender)
S2 mfecore; "C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe" [X]
==================== Drivers (Whitelisted) ====================
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R0 avc3; C:\Windows\System32\DRIVERS\avc3.sys [893440 2013-12-02] (BitDefender)
R3 avchv; C:\Windows\System32\DRIVERS\avchv.sys [261056 2012-11-02] (BitDefender)
R3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [635392 2013-12-02] (BitDefender)
S3 avmeject; C:\Windows\System32\drivers\avmeject.sys [14120 2010-10-25] (AVM Berlin)
R1 BdfNdisf; c:\program files\common files\bitdefender\bitdefender firewall\bdfndisf6.sys [93600 2013-02-22] (BitDefender LLC)
R1 bdfwfpf; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys [103504 2011-11-14] (BitDefender LLC)
S4 bdfwfpf_pc; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf_pc.sys [121928 2013-07-02] (Bitdefender SRL)
S3 BDSandBox; C:\Windows\system32\drivers\bdsandbox.sys [82824 2013-11-04] (BitDefender SRL)
R1 BDVEDISK; C:\Windows\System32\DRIVERS\bdvedisk.sys [76944 2012-04-17] (BitDefender)
R2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [121616 2014-03-06] (BlueStack Systems)
S3 cfwids; C:\Windows\System32\drivers\cfwids.sys [70592 2014-01-27] (McAfee, Inc.)
R3 fwlanusbn; C:\Windows\System32\DRIVERS\fwlanusbn.sys [714368 2010-10-25] (AVM GmbH)
R0 gzflt; C:\Windows\System32\DRIVERS\gzflt.sys [150256 2013-08-23] (BitDefender LLC)
S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [197704 2013-09-23] (McAfee, Inc.)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-04-03] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [119512 2014-05-17] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63192 2014-04-03] (Malwarebytes Corporation)
R2 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [180272 2014-01-27] (McAfee, Inc.)
R2 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [311600 2014-01-27] (McAfee, Inc.)
U3 mfeavfk01; No ImagePath
R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [520696 2014-01-27] (McAfee, Inc.)
R2 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [783864 2014-01-27] (McAfee, Inc.)
U5 mfencbdc; C:\Windows\System32\Drivers\mfencbdc.sys [422712 2014-01-21] (McAfee, Inc.)
S3 mfencrk; C:\Windows\System32\DRIVERS\mfencrk.sys [96592 2014-01-21] (McAfee, Inc.)
S3 mferkdet; C:\Windows\System32\drivers\mferkdet.sys [106112 2014-04-03] (McAfee, Inc.)
R2 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [344688 2014-01-27] (McAfee, Inc.)
R1 ntiopnp; C:\Windows\System32\Drivers\ntiopnp.sys [19544 2010-11-11] ()
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-12-27] (NVIDIA Corporation)
S3 PAC7302; C:\Windows\System32\DRIVERS\PAC7302.SYS [527872 2007-11-08] (PixArt Imaging Inc.)
S3 PAC7302; C:\Windows\SysWOW64\DRIVERS\PAC7302.SYS [454656 2007-11-08] (PixArt Imaging Inc.)
S3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [13368 2013-01-23] ()
R2 trufos; C:\Windows\System32\DRIVERS\trufos.sys [389240 2013-08-07] (BitDefender S.R.L.)
R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [14112 2014-02-10] (TuneUp Software)
S3 wolfkr; C:\AeriaGames\WolfTeam-DE\avital\wolfk64.sys [86352 2014-04-14] ()
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-05-17 13:17 - 2014-05-17 13:18 - 00022699 _____ () C:\Users\Simon\Desktop\FRST.txt
2014-05-17 13:15 - 2014-05-17 13:15 - 00013047 _____ () C:\Users\Simon\Desktop\zoek-results.txt
2014-05-17 13:11 - 2014-02-13 23:59 - 00024064 _____ () C:\Windows\zoek-delete.exe
2014-05-17 12:48 - 2014-05-17 13:14 - 00013047 _____ () C:\zoek-results.log
2014-05-17 12:48 - 2014-05-17 13:07 - 00000000 ____D () C:\zoek_backup
2014-05-17 12:48 - 2014-05-17 12:48 - 00000000 ____D () C:\Users\Simon\Desktop\zoek
2014-05-17 12:48 - 2014-03-08 11:05 - 01414742 _____ () C:\Users\Simon\Desktop\zoek.scr
2014-05-17 12:48 - 2014-03-08 11:05 - 01414742 _____ () C:\Users\Simon\Desktop\zoek.pif
2014-05-17 12:48 - 2014-03-08 11:05 - 01414742 _____ () C:\Users\Simon\Desktop\zoek.com
2014-05-17 12:47 - 2014-05-17 12:47 - 04235514 _____ () C:\Users\Simon\Downloads\zoek.rar
2014-05-17 12:42 - 2014-05-17 12:42 - 00001620 _____ () C:\Users\Simon\Desktop\mbam.txt
2014-05-17 12:31 - 2014-05-17 12:32 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Simon\Downloads\mbam-setup-2.0.1.1004 (1).exe
2014-05-17 12:30 - 2014-05-17 12:30 - 00000759 _____ () C:\Users\Simon\Desktop\JRT.txt
2014-05-17 12:20 - 2014-05-17 12:20 - 01016261 _____ (Thisisu) C:\Users\Simon\Desktop\JRT.exe
2014-05-17 12:20 - 2014-05-17 12:20 - 00000000 ____D () C:\Windows\ERUNT
2014-05-17 12:18 - 2014-05-17 12:18 - 00004180 _____ () C:\Users\Simon\Desktop\AdwCleaner[S4].txt
2014-05-17 12:07 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
2014-05-17 12:06 - 2014-05-17 12:06 - 00001787 _____ () C:\Users\Public\Desktop\iTunes.lnk
2014-05-17 12:06 - 2014-05-17 12:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2014-05-17 12:06 - 2014-05-17 12:06 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-05-17 12:06 - 2014-05-17 12:06 - 00000000 ____D () C:\Program Files\iTunes
2014-05-17 12:06 - 2014-05-17 12:06 - 00000000 ____D () C:\Program Files\iPod
2014-05-17 12:06 - 2014-05-17 12:06 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-05-17 12:02 - 2014-05-17 12:02 - 01325827 _____ () C:\Users\Simon\Desktop\adwcleaner_3.208.exe
2014-05-16 18:09 - 2014-05-16 18:09 - 00038341 _____ () C:\ComboFix.txt
2014-05-16 17:49 - 2014-05-16 18:09 - 00000000 ____D () C:\ComboFix
2014-05-16 17:49 - 2011-06-26 08:45 - 00256000 _____ () C:\Windows\PEV.exe
2014-05-16 17:49 - 2010-11-07 19:20 - 00208896 _____ () C:\Windows\MBR.exe
2014-05-16 17:49 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2014-05-16 17:49 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2014-05-16 17:49 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2014-05-16 17:49 - 2000-08-31 02:00 - 00098816 _____ () C:\Windows\sed.exe
2014-05-16 17:49 - 2000-08-31 02:00 - 00080412 _____ () C:\Windows\grep.exe
2014-05-16 17:49 - 2000-08-31 02:00 - 00068096 _____ () C:\Windows\zip.exe
2014-05-16 17:48 - 2014-05-16 18:09 - 00000000 ____D () C:\Qoobox
2014-05-16 17:48 - 2014-05-16 18:08 - 00000000 ____D () C:\Windows\erdnt
2014-05-16 17:09 - 2014-05-16 17:09 - 05200990 ____R (Swearware) C:\Users\Simon\Desktop\ComboFix.exe
2014-05-16 16:34 - 2014-05-16 16:34 - 00049056 _____ () C:\Users\Simon\Downloads\Addition.txt
2014-05-16 16:33 - 2014-05-17 13:17 - 00000000 ____D () C:\FRST
2014-05-16 16:33 - 2014-05-16 16:34 - 00097162 _____ () C:\Users\Simon\Downloads\FRST.txt
2014-05-16 16:33 - 2014-05-16 16:33 - 02067456 _____ (Farbar) C:\Users\Simon\Desktop\FRST64.exe
2014-05-14 22:02 - 2014-05-06 06:40 - 23544320 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-05-14 22:02 - 2014-05-06 06:17 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-05-14 22:02 - 2014-05-06 05:25 - 17382912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-05-14 22:02 - 2014-05-06 05:07 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-05-14 22:02 - 2014-05-06 05:00 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-05-14 22:02 - 2014-05-06 04:10 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-05-14 18:00 - 2014-03-25 04:43 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-05-14 18:00 - 2014-03-25 04:09 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2014-05-14 17:59 - 2014-05-09 08:14 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-05-14 17:59 - 2014-05-09 08:11 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-05-14 17:59 - 2014-04-12 04:22 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-05-14 17:59 - 2014-04-12 04:22 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2014-05-14 17:59 - 2014-04-12 04:19 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-05-14 17:59 - 2014-04-12 04:19 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2014-05-14 17:59 - 2014-04-12 04:19 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2014-05-14 17:59 - 2014-04-12 04:19 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2014-05-14 17:59 - 2014-04-12 04:19 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2014-05-14 17:59 - 2014-04-12 04:12 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-05-14 17:59 - 2014-04-12 04:10 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-05-14 17:59 - 2014-03-04 11:47 - 05550016 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-05-14 17:59 - 2014-03-04 11:44 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-05-14 17:59 - 2014-03-04 11:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll
2014-05-14 17:59 - 2014-03-04 11:44 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2014-05-14 17:59 - 2014-03-04 11:44 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-05-14 17:59 - 2014-03-04 11:44 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-05-14 17:59 - 2014-03-04 11:44 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-05-14 17:59 - 2014-03-04 11:44 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-05-14 17:59 - 2014-03-04 11:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll
2014-05-14 17:59 - 2014-03-04 11:43 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2014-05-14 17:59 - 2014-03-04 11:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll
2014-05-14 17:59 - 2014-03-04 11:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll
2014-05-14 17:59 - 2014-03-04 11:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll
2014-05-14 17:59 - 2014-03-04 11:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll
2014-05-14 17:59 - 2014-03-04 11:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll
2014-05-14 17:59 - 2014-03-04 11:43 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-05-14 17:59 - 2014-03-04 11:20 - 03969984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2014-05-14 17:59 - 2014-03-04 11:20 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2014-05-14 17:59 - 2014-03-04 11:17 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-05-14 17:59 - 2014-03-04 11:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll
2014-05-14 17:59 - 2014-03-04 11:17 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2014-05-14 17:59 - 2014-03-04 11:17 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-05-14 17:59 - 2014-03-04 11:17 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2014-05-14 17:59 - 2014-03-04 11:17 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-05-14 17:59 - 2014-03-04 11:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll
2014-05-14 17:59 - 2014-03-04 11:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll
2014-05-14 17:59 - 2014-03-04 11:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll
2014-05-14 17:59 - 2014-03-04 11:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll
2014-05-14 17:59 - 2014-03-04 11:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll
2014-05-14 17:59 - 2014-03-04 11:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll
2014-05-14 17:59 - 2014-03-04 11:17 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-05-14 17:59 - 2014-03-04 11:16 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2014-05-13 01:29 - 2014-05-13 01:29 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\48230029.sys
2014-05-11 18:46 - 2014-05-11 18:58 - 00230432 _____ () C:\PA7302.DAT
2014-05-11 18:41 - 2014-05-11 18:41 - 00000000 ____D () C:\Windows\PixArt
2014-05-11 18:41 - 2014-05-11 18:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CANYON USB PC CAMERA
2014-05-11 18:41 - 2014-05-11 18:41 - 00000000 ____D () C:\Program Files (x86)\ANC
2014-05-11 18:41 - 2007-11-08 10:30 - 00454656 _____ (PixArt Imaging Inc.) C:\Windows\SysWOW64\Drivers\PAC7302.sys
2014-05-11 18:41 - 2007-11-08 10:29 - 00527872 _____ (PixArt Imaging Inc.) C:\Windows\system32\Drivers\PAC7302.SYS
2014-05-11 18:41 - 2007-11-02 11:07 - 00008704 _____ (PixArt Imaging Inc.) C:\Windows\system32\CoInst_071029.dll
2014-05-11 18:41 - 2007-10-30 17:48 - 00129024 _____ (PixArt Imaging Incorporation) C:\Windows\SysWOW64\SP7302.ax
2014-05-11 18:41 - 2007-03-20 16:44 - 00000566 _____ () C:\Windows\SysWOW64\SP7302.ini
2014-05-11 18:41 - 2006-10-12 11:57 - 00014336 _____ (PixArt Imaging Inc.) C:\Windows\SysWOW64\P7302USD.dll
2014-05-11 18:41 - 2004-11-22 13:37 - 00040960 _____ () C:\Windows\98Setup.exe
2014-05-11 18:41 - 2000-06-08 17:00 - 00119568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KSPRbac9.rra
2014-05-11 18:40 - 2014-05-11 18:40 - 05611298 _____ () C:\Users\Simon\Downloads\CNR-WCAM53_Drv_XPVW32.zip
2014-05-11 16:31 - 2014-05-11 16:32 - 00155577 _____ () C:\Users\Simon\Downloads\proxtube_1.3.0 (3) (1).crx
2014-05-11 16:31 - 2014-05-11 16:31 - 00629584 _____ (Chip Digital GmbH) C:\Users\Simon\Downloads\Chrome YouTube Downloader - CHIP-Downloader (1).exe
2014-05-11 16:31 - 2014-05-11 16:31 - 00155577 _____ () C:\Users\Simon\Downloads\proxtube_1.3.0 (3).crx
2014-05-11 16:31 - 2014-05-11 16:31 - 00143081 _____ () C:\Users\Simon\Downloads\proxtube_1.3.0.zip
2014-05-11 16:31 - 2014-03-28 17:58 - 00155577 _____ () C:\Users\Simon\Desktop\proxtube_1.3.0.crx
2014-05-11 16:29 - 2014-05-11 16:29 - 00629584 _____ (Chip Digital GmbH) C:\Users\Simon\Downloads\Chrome YouTube Downloader - CHIP-Downloader.exe
2014-05-11 16:29 - 2014-05-11 16:29 - 00105903 _____ () C:\Users\Simon\Downloads\chrome-youtube-downloader-2.6.20.crx
2014-05-11 16:29 - 2014-05-11 16:29 - 00099158 _____ () C:\Users\Simon\Downloads\chrome-youtube-downloader-2.6.20.zip
2014-05-11 16:23 - 2014-05-11 16:23 - 00279792 _____ () C:\Users\Simon\Downloads\YouTube-Unblocker-055.zip
2014-05-11 16:22 - 2014-05-11 16:22 - 00629584 _____ (Chip Digital GmbH) C:\Users\Simon\Downloads\YouTube-Unblocker-055 - CHIP-Downloader.exe
2014-05-11 16:07 - 2014-05-11 16:18 - 230403208 _____ (COMODO) C:\Users\Simon\Downloads\cfw_installer_5732_83.exe
2014-05-11 16:07 - 2014-05-11 16:07 - 00686664 _____ ( ) C:\Users\Simon\Downloads\COMPUTER_BILD-Download-Manager_fuer_cfw_installer_5732_83.exe
2014-05-11 16:02 - 2014-05-11 16:02 - 07198344 _____ (Goversoft LLC) C:\Users\Simon\Downloads\privazer_free (1).exe
2014-05-11 16:02 - 2014-05-11 16:02 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\Opera Software
2014-05-11 16:02 - 2014-05-11 16:02 - 00000000 ____D () C:\Users\Simon\AppData\Local\Opera Software
2014-05-11 15:51 - 2014-05-11 15:51 - 00295232 _____ () C:\Windows\Minidump\051114-20716-01.dmp
2014-05-11 15:49 - 2014-05-11 16:03 - 00000000 ____D () C:\Program Files (x86)\PrivaZer
2014-05-11 15:48 - 2014-05-11 16:05 - 00000000 ____D () C:\Program Files (x86)\Opera
2014-05-11 15:48 - 2014-05-11 15:48 - 00003254 _____ () C:\Windows\System32\Tasks\Opera D7
2014-05-11 15:48 - 2014-05-11 15:48 - 00003254 _____ () C:\Windows\System32\Tasks\Opera D6
2014-05-11 15:48 - 2014-05-11 15:48 - 00001137 _____ () C:\Users\Public\Desktop\Opera.lnk
2014-05-11 15:48 - 2014-05-11 15:48 - 00001137 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2014-05-11 15:34 - 2014-05-11 15:34 - 00339543 _____ () C:\Users\Simon\Downloads\Ask-Fm-Autolike.rar
2014-05-08 13:02 - 2014-05-08 13:02 - 00000000 ____D () C:\Users\Simon\AppData\Local\WarThunder
2014-05-08 13:02 - 2014-05-08 13:02 - 00000000 ____D () C:\ProgramData\WarThunder
2014-05-08 13:01 - 2014-05-08 14:39 - 00000000 ____D () C:\Program Files (x86)\WarThunder
2014-05-08 13:01 - 2014-05-08 13:01 - 04124808 _____ (Gaijin Entertainment ) C:\Users\Simon\Downloads\wt_launcher_doi_1.0.1.355.exe
2014-05-08 13:01 - 2014-05-08 13:01 - 00001109 _____ () C:\Users\Public\Desktop\WarThunder.lnk
2014-05-08 13:01 - 2014-05-08 13:01 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder
2014-05-08 00:32 - 2014-05-08 00:34 - 00053504 _____ () C:\Users\Simon\Downloads\bootkit_remover.zip
2014-05-06 19:21 - 2014-05-06 20:23 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\tor
2014-05-06 19:15 - 2014-05-06 19:17 - 26815695 _____ () C:\Users\Simon\Downloads\torbrowser-install-3.6_en-US.exe
2014-05-03 19:41 - 2014-05-03 19:41 - 00000000 ____D () C:\Users\Simon\AppData\Local\EdgeOfReality
2014-05-03 19:41 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll
2014-05-03 19:41 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll
2014-05-03 19:41 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll
2014-05-03 19:41 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll
2014-05-03 19:40 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll
2014-05-03 19:40 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll
2014-05-03 19:02 - 2014-05-03 19:02 - 00000219 _____ () C:\Users\Simon\Desktop\Dota 2.url
2014-05-03 18:47 - 2014-05-03 18:47 - 00000222 _____ () C:\Users\Simon\Desktop\Loadout.url
2014-05-03 18:29 - 2014-05-08 13:01 - 00000000 ____D () C:\Users\Simon\Documents\My Games
2014-05-03 18:18 - 2014-05-03 19:02 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2014-05-03 18:18 - 2014-05-03 18:18 - 00000222 _____ () C:\Users\Simon\Desktop\Epigenesis.url
2014-05-03 17:54 - 2014-05-04 13:43 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-05-03 17:54 - 2014-05-03 17:54 - 01141680 _____ () C:\Users\Simon\Downloads\SteamSetup.exe
2014-05-03 17:54 - 2014-05-03 17:54 - 00000971 _____ () C:\Users\Public\Desktop\Steam.lnk
2014-05-03 17:54 - 2014-05-03 17:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2014-05-03 17:51 - 2014-05-03 17:51 - 03384836 _____ (MultIV Team ) C:\Users\Simon\Downloads\multiv_setup (2).exe
2014-05-03 17:51 - 2014-05-03 17:51 - 03384836 _____ (MultIV Team ) C:\Users\Simon\Downloads\multiv_setup (1).exe
2014-05-03 17:43 - 2014-05-03 17:44 - 00000999 _____ () C:\Users\Public\Desktop\MultIV.lnk
2014-05-03 17:43 - 2014-05-03 17:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MultIV
2014-05-03 17:43 - 2014-05-03 17:44 - 00000000 ____D () C:\Program Files (x86)\MultIV
2014-05-03 17:42 - 2014-05-03 17:42 - 03384836 _____ (MultIV Team ) C:\Users\Simon\Downloads\multiv_setup.exe
2014-05-03 17:39 - 2014-05-03 17:39 - 04954736 _____ (Microsoft Corporation) C:\Users\Simon\Downloads\WindowsUpgradeAssistant.exe
2014-05-03 17:34 - 2014-05-03 17:35 - 36965680 _____ (Microsoft Corporation) C:\Users\Simon\Downloads\IE9-Windows7-x64-deu.exe
2014-05-03 17:01 - 2014-05-03 17:01 - 17532198 _____ () C:\Users\Simon\Downloads\1355067475iCEnhancer2_1FINAL.zip
2014-05-03 05:14 - 2014-05-03 05:14 - 97580750 _____ () C:\Users\Simon\Downloads\Seven Reel's Realistic ENB v1.5b.zip
2014-05-03 05:06 - 2014-05-03 05:06 - 19677675 _____ () C:\Users\Simon\Downloads\Fighter Jet P-996 Lazer 3.zip
2014-05-03 05:05 - 2014-05-03 05:05 - 00717632 _____ () C:\Users\Simon\Downloads\scripthookdotnet_v1.7.1.7b.zip
2014-05-03 04:52 - 2014-05-03 04:52 - 00000000 ____D () C:\Users\Simon\Desktop\Backup
2014-05-03 04:50 - 2014-05-03 04:53 - 89876480 _____ () C:\Users\Simon\Desktop\vehicles.img
2014-05-03 04:50 - 2014-05-03 04:50 - 00000000 ____D () C:\Users\Simon\Desktop\Infernus
2014-05-03 04:49 - 2014-05-03 04:49 - 00000000 ____D () C:\Users\Simon\Desktop\SparkIV
2014-05-03 04:48 - 2014-05-03 04:48 - 01540953 _____ () C:\Users\Simon\Downloads\SparkIV 0.6.6.zip
2014-05-03 04:46 - 2014-05-03 04:46 - 04695532 _____ () C:\Users\Simon\Downloads\1398374770_ageraone.rar
2014-05-03 03:32 - 2014-05-03 03:32 - 00000000 ____D () C:\Users\Simon\Documents\Games for Windows - LIVE Demos
2014-05-03 03:30 - 2014-05-03 03:30 - 00000000 ____D () C:\Windows\SysWOW64\xlive
2014-05-03 03:30 - 2014-05-03 03:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games for Windows Marketplace
2014-05-03 03:30 - 2014-05-03 03:30 - 00000000 ____D () C:\Program Files (x86)\Microsoft Games for Windows - LIVE
2014-05-03 03:29 - 2014-05-03 03:29 - 00642712 _____ (Microsoft Corporation) C:\Users\Simon\Downloads\gfwlive35setup.exe
2014-05-03 03:29 - 2014-05-03 03:29 - 00642712 _____ (Microsoft Corporation) C:\Users\Simon\Downloads\gfwlive35setup (1).exe
2014-05-01 19:04 - 2014-05-01 19:04 - 00081626 _____ () C:\Users\Simon\Documents\Unit 1.voc
2014-05-01 19:04 - 2014-05-01 19:04 - 00081626 _____ () C:\Users\Simon\Desktop\Unit 1.voc
2014-05-01 17:09 - 2014-05-01 17:09 - 04044159 _____ () C:\Users\Simon\Downloads\1259416463_ProVehicleModv1.0.1.zip
2014-05-01 16:30 - 2014-05-01 16:30 - 00001027 _____ () C:\Users\Public\Desktop\Domingo 2.lnk
2014-05-01 16:30 - 2014-05-01 16:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Domingo 2
2014-05-01 16:30 - 2014-05-01 16:30 - 00000000 ____D () C:\Program Files (x86)\Domingo 2
2014-05-01 16:29 - 2014-05-01 16:29 - 04241516 _____ (Patrick Diekmann ) C:\Users\Simon\Downloads\setup.exe
2014-05-01 16:29 - 2014-05-01 16:29 - 00728032 _____ () C:\Users\Simon\Downloads\COMPUTER_BILD-Download-Manager_fuer_setup.exe
2014-05-01 15:56 - 2014-05-01 15:56 - 01138458 _____ () C:\Users\Simon\Downloads\1385372962_Space Shuttle.rar
2014-05-01 15:34 - 2014-05-01 15:35 - 00072097 _____ () C:\Users\Simon\Downloads\xliveless - v0.999b7 (patch 1.0.7.0. and EFLC 1.1.2.0).zip
2014-05-01 15:26 - 2014-05-01 15:26 - 02662221 _____ () C:\Users\Simon\Downloads\1310225693_Simple Native Trainer v.6.3.rar
2014-05-01 13:34 - 2014-05-01 13:34 - 00000000 ____D () C:\Users\Simon\Documents\Rockstar Games
2014-05-01 13:31 - 2014-05-01 13:31 - 00000000 __SHD () C:\ProgramData\SecuROM
2014-05-01 13:30 - 2014-05-01 13:30 - 04776440 _____ () C:\Users\Simon\Downloads\LaunchGTAIV.zip
2014-05-01 13:25 - 2014-05-01 13:25 - 00000000 ____D () C:\Users\Simon\AppData\Local\Rockstar Games
2014-05-01 13:24 - 2014-05-01 13:24 - 00000000 __RHD () C:\Users\Simon\AppData\Roaming\SecuROM
2014-05-01 03:46 - 2014-05-01 03:53 - 20725128 _____ () C:\Users\Simon\Downloads\MMM_PT._vlad.7z
2014-05-01 01:13 - 2014-05-03 01:35 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird
2014-04-28 20:55 - 2014-04-28 20:55 - 00155577 _____ () C:\Users\Simon\Downloads\proxtube_1.3.0 (2).crx
2014-04-28 20:53 - 2014-04-28 20:53 - 00155577 _____ () C:\Users\Simon\Downloads\proxtube_1.3.0 (1).crx
2014-04-28 20:52 - 2014-04-28 20:52 - 00155577 _____ () C:\Users\Simon\Downloads\proxtube_1.3.0.crx
2014-04-25 22:05 - 2014-04-25 22:05 - 00000000 ____D () C:\Users\Simon\AppData\Local\GGC
2014-04-25 22:03 - 2012-10-09 19:30 - 05570560 _____ (GGC) C:\Users\Simon\Desktop\Gordonsys 2.0.exe
2014-04-25 22:01 - 2014-04-25 22:03 - 05570641 _____ () C:\Users\Simon\Downloads\Gordonsys2.0.rar
2014-04-25 21:40 - 2014-04-26 21:41 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\Bitdefender
2014-04-25 21:40 - 2014-04-25 21:40 - 00002194 _____ () C:\Users\Public\Desktop\Bitdefender Safepay.lnk
2014-04-25 21:40 - 2014-04-25 21:40 - 00002075 _____ () C:\Users\Public\Desktop\Bitdefender Total Security.lnk
2014-04-25 21:40 - 2014-04-25 21:40 - 00000684 ____H () C:\bdr-cf01
2014-04-25 21:40 - 2014-04-25 21:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender
2014-04-25 21:36 - 2014-04-25 21:40 - 00253404 ____H () C:\bdr-ld01
2014-04-25 21:36 - 2014-04-25 21:40 - 00009216 ____H () C:\bdr-ld01.mbr
2014-04-25 21:36 - 2013-09-24 15:38 - 46879860 ____H () C:\bdr-im01.gz
2014-04-25 21:36 - 2013-08-23 12:48 - 00150256 _____ (BitDefender LLC) C:\Windows\system32\Drivers\gzflt.sys
2014-04-25 21:36 - 2013-08-13 12:38 - 03271472 ____H () C:\bdr-bz01
2014-04-25 21:36 - 2013-08-07 12:46 - 00389240 _____ (BitDefender S.R.L.) C:\Windows\system32\Drivers\trufos.sys
2014-04-25 21:34 - 2014-05-15 21:22 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-04-25 21:18 - 2014-04-25 21:18 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\MVH
2014-04-25 02:34 - 2014-04-25 02:34 - 00002770 _____ () C:\Windows\System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013
2014-04-25 00:53 - 2014-04-25 21:18 - 01373184 _____ () C:\Users\Simon\Desktop\MVH Loader.exe
2014-04-25 00:53 - 2014-04-25 00:53 - 01108568 _____ () C:\Users\Simon\Downloads\MVH Loader.zip
2014-04-25 00:47 - 2014-04-25 00:47 - 04106679 _____ () C:\Users\Simon\Downloads\[Abs]Loader.rar
2014-04-25 00:34 - 2014-04-25 00:34 - 00000000 ____D () C:\ProgramData\Nexon
2014-04-25 00:28 - 2014-04-25 00:41 - 00000000 ____D () C:\Users\Simon\Desktop\Combat Arms Hack
2014-04-25 00:24 - 2014-04-25 00:24 - 00001634 _____ () C:\Users\Public\Desktop\Combat Arms EU.lnk
2014-04-25 00:24 - 2014-04-25 00:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nexon
2014-04-25 00:21 - 2014-04-25 00:40 - 00000000 ____D () C:\ProgramData\NexonEU
2014-04-25 00:21 - 2014-04-25 00:21 - 00000000 ____D () C:\Nexon
2014-04-24 23:52 - 2014-04-25 00:13 - 1967289647 _____ (Nexon) C:\Users\Simon\Desktop\Combatarms_eu.exe
2014-04-24 23:51 - 2014-04-24 23:51 - 10552296 _____ (Akamai Technologies, Inc.) C:\Users\Simon\Downloads\NexonEU_Installer.exe
2014-04-24 23:50 - 2014-04-24 23:50 - 01617203 _____ () C:\Users\Simon\Downloads\[ghbsys.net] Public-Client.zip
2014-04-24 22:10 - 2014-04-24 22:10 - 00000000 ____D () C:\Program Files (x86)\Microsoft XNA
2014-04-24 22:09 - 2014-04-24 22:09 - 00001474 _____ () C:\Users\Public\Desktop\Bloodline Champions.lnk
2014-04-24 22:09 - 2014-04-24 22:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bloodline Champions
2014-04-24 22:08 - 2014-04-24 22:08 - 00000000 ____D () C:\Program Files (x86)\Stunlock Studios
2014-04-24 22:03 - 2014-04-24 22:08 - 363876296 _____ (Stunlock Studios ) C:\Users\Simon\Downloads\bloodline-champions_25983.exe
2014-04-24 22:03 - 2014-04-24 22:03 - 01062288 _____ () C:\Users\Simon\Downloads\Bloodline-Champions-lnstall.exe
2014-04-24 19:33 - 2014-04-24 19:33 - 10768896 _____ () C:\Users\Simon\Downloads\Wolfteam INV Hack AUG 2013.exe
2014-04-24 19:25 - 2014-04-24 19:25 - 00058597 _____ () C:\Users\Simon\Downloads\Business.Card.Maker.8.0_CRK-FFF.zip
2014-04-24 19:22 - 2014-04-24 19:22 - 00077025 _____ () C:\Users\Simon\Downloads\CD244A3FE5B95DA446608BC56299A387E1A64734.torrent
2014-04-24 19:09 - 2014-03-20 14:44 - 00043320 _____ (TuneUp Software) C:\Windows\system32\uxtuneup.dll
2014-04-24 19:09 - 2014-03-20 14:44 - 00036152 _____ (TuneUp Software) C:\Windows\SysWOW64\uxtuneup.dll
2014-04-24 19:04 - 2014-04-24 19:04 - 00000000 ____D () C:\Users\Simon\Desktop\Programme;Spiele
2014-04-24 19:01 - 2014-04-24 19:08 - 00000000 ____D () C:\Users\Simon\Desktop\Programme
2014-04-24 19:00 - 2014-04-25 21:17 - 00000000 ____D () C:\Users\Simon\Desktop\Bilder
2014-04-24 18:59 - 2014-04-24 18:59 - 07307552 _____ () C:\Users\Simon\Downloads\bitdefender_isecurity.exe
2014-04-24 18:49 - 2014-05-01 13:11 - 00003704 _____ () C:\Windows\System32\Tasks\Java Update Scheduler
2014-04-24 18:42 - 2014-04-24 18:42 - 00002217 _____ () C:\Users\Public\Desktop\TuneUp 1-Klick-Wartung.lnk
2014-04-24 18:42 - 2014-04-24 18:42 - 00002209 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014.lnk
2014-04-24 18:42 - 2014-04-24 18:42 - 00002197 _____ () C:\Users\Public\Desktop\TuneUp Utilities 2014.lnk
2014-04-24 18:42 - 2014-04-24 18:42 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\TuneUp Software
2014-04-24 18:42 - 2014-04-24 18:42 - 00000000 ____D () C:\Users\Simon\AppData\Local\TuneUp Software
2014-04-24 18:42 - 2014-04-24 18:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014
2014-04-24 18:42 - 2014-04-24 18:42 - 00000000 ____D () C:\Program Files (x86)\TuneUp Utilities 2014
2014-04-24 18:42 - 2014-03-20 14:44 - 00040760 _____ (TuneUp Software) C:\Windows\system32\TURegOpt.exe
2014-04-24 18:42 - 2014-03-20 14:44 - 00029496 _____ (TuneUp Software) C:\Windows\system32\authuitu.dll
2014-04-24 18:42 - 2014-03-20 14:44 - 00025400 _____ (TuneUp Software) C:\Windows\SysWOW64\authuitu.dll
2014-04-24 18:41 - 2014-04-24 18:43 - 00000000 ____D () C:\ProgramData\TuneUp Software
2014-04-24 18:41 - 2014-04-24 18:41 - 00074811 _____ () C:\Users\Simon\Downloads\TuneUp 2014 Keygen by Game24x.rar
2014-04-24 18:40 - 2014-04-24 18:41 - 27878824 _____ (TuneUp Software) C:\Users\Simon\Downloads\TuneUpUtilities2014_de2745-DE.exe
2014-04-24 18:32 - 2014-04-24 18:33 - 209715712 _____ () C:\Users\Simon\Desktop\Tresor.bvd
2014-04-24 17:32 - 2014-04-24 19:23 - 00000000 ____D () C:\Users\Simon\Downloads\Download.am
2014-04-24 17:32 - 2014-04-24 19:23 - 00000000 ____D () C:\Users\Simon\AppData\Local\download.am-data
2014-04-24 17:32 - 2014-04-24 17:32 - 00001053 _____ () C:\Users\Simon\Desktop\Download.am.lnk
2014-04-24 17:32 - 2014-04-24 17:32 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Download.am
2014-04-24 17:31 - 2014-04-24 17:32 - 00000000 ____D () C:\Program Files (x86)\Download.am
2014-04-24 17:25 - 2014-04-24 17:25 - 13540177 _____ () C:\Users\Simon\Downloads\download.am-build233.zip
2014-04-24 17:20 - 2014-04-24 17:21 - 00000000 ____D () C:\Users\Simon\Desktop\RSDownloader
2014-04-24 17:20 - 2014-04-24 17:20 - 03028121 _____ () C:\Users\Simon\Downloads\RSD_0.61.zip
2014-04-24 17:20 - 2014-04-24 17:20 - 00000164 _____ () C:\Users\Simon\Downloads\40961pa16fh3627.rsdf
2014-04-24 17:19 - 2014-04-24 17:19 - 00000000 ____D () C:\Users\Simon\Desktop\JDownloader
2014-04-24 17:18 - 2014-04-24 17:18 - 31419822 _____ () C:\Users\Simon\Downloads\JDownloader.zip
2014-04-24 15:59 - 2014-04-24 15:59 - 01467128 _____ () C:\Users\Simon\Downloads\SystemCheck_deDE (2).exe
2014-04-24 15:58 - 2014-04-24 15:58 - 01467128 _____ () C:\Users\Simon\Downloads\SystemCheck_deDE.exe
2014-04-24 15:58 - 2014-04-24 15:58 - 01467128 _____ () C:\Users\Simon\Downloads\SystemCheck_deDE (1).exe
2014-04-24 04:55 - 2014-04-24 04:55 - 01147424 _____ () C:\Users\Simon\Downloads\bitdefender_antitheft.exe
2014-04-24 04:48 - 2014-04-24 04:48 - 07304560 _____ () C:\Users\Simon\Downloads\bitdefender_tsecurity (2).exe
2014-04-24 04:04 - 2014-04-24 04:04 - 00000000 ____D () C:\Users\Simon\AppData\Local\simon-p
2014-04-24 03:43 - 2014-04-24 03:43 - 07304560 _____ () C:\Users\Simon\Downloads\bitdefender_tsecurity (1).exe
2014-04-24 02:24 - 2014-04-24 02:24 - 00295296 _____ () C:\Windows\Minidump\042414-30264-01.dmp
2014-04-24 02:19 - 2014-04-24 02:19 - 00000385 _____ () C:\Windows\system32\user_gensett.xml
2014-04-24 02:19 - 2014-04-24 02:19 - 00000385 _____ () C:\Users\Simon\AppData\Roaminguser_gensett.xml
2014-04-24 02:18 - 2014-04-24 02:19 - 00000000 ____D () C:\ProgramData\BDLogging
2014-04-24 02:18 - 2014-04-24 02:18 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_avchv_01009.Wdf
2014-04-24 02:18 - 2009-07-15 00:21 - 01721576 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01009.dll
2014-04-24 02:17 - 2014-04-24 02:17 - 00283192 _____ (Mozilla) C:\Users\Simon\Downloads\Firefox Setup Stub 28.0 (1).exe
2014-04-24 02:17 - 2013-12-02 11:58 - 00635392 _____ (BitDefender) C:\Windows\system32\Drivers\avckf.sys
2014-04-24 02:17 - 2013-12-02 11:56 - 00893440 _____ (BitDefender) C:\Windows\system32\Drivers\avc3.sys
2014-04-24 02:17 - 2013-11-04 15:47 - 00082824 _____ (BitDefender SRL) C:\Windows\system32\Drivers\bdsandbox.sys
2014-04-24 02:17 - 2013-11-04 15:47 - 00074512 _____ (BitDefender SRL) C:\Windows\SysWOW64\bdsandboxuiskin32.dll
2014-04-24 02:17 - 2013-02-22 18:46 - 00093600 _____ (BitDefender LLC) C:\Windows\system32\Drivers\BdfNdisf6.sys
2014-04-24 02:17 - 2012-11-02 13:17 - 00261056 _____ (BitDefender) C:\Windows\system32\Drivers\avchv.sys
2014-04-24 02:17 - 2012-04-17 13:34 - 00076944 _____ (BitDefender) C:\Windows\system32\Drivers\bdvedisk.sys
2014-04-24 02:17 - 2007-04-11 10:11 - 00511328 _____ (Microsoft Corporation) C:\Windows\capicom.dll
2014-04-24 01:54 - 2014-05-08 12:35 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\QuickScan
2014-04-24 01:54 - 2014-04-25 21:40 - 00000000 ____D () C:\ProgramData\Bitdefender
2014-04-24 01:54 - 2014-04-24 02:57 - 00074512 _____ (BitDefender SRL) C:\Windows\system32\bdsandboxuiskin32.dll
2014-04-24 01:54 - 2014-04-24 01:57 - 00000000 ____D () C:\Program Files\Bitdefender
2014-04-24 01:54 - 2013-11-04 15:47 - 00084848 _____ (BitDefender SRL) C:\Windows\system32\BDSandBoxUISkin.dll
2014-04-24 01:54 - 2013-11-04 15:46 - 00034384 _____ (BitDefender SRL) C:\Windows\system32\BDSandBoxUH.dll
2014-04-24 01:51 - 2014-04-25 21:36 - 00000000 ____D () C:\Program Files\Common Files\Bitdefender
2014-04-24 01:51 - 2014-04-24 01:51 - 07304560 _____ () C:\Users\Simon\Downloads\bitdefender_tsecurity.exe
2014-04-22 22:49 - 2014-04-22 22:49 - 00000000 __SHD () C:\Users\Simon\AppData\Local\EmieUserList
2014-04-22 22:49 - 2014-04-22 22:49 - 00000000 __SHD () C:\Users\Simon\AppData\Local\EmieSiteList
2014-04-22 22:44 - 2014-03-06 11:31 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-04-22 22:44 - 2014-03-06 10:59 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-04-22 22:44 - 2014-03-06 10:57 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-04-22 22:44 - 2014-03-06 10:57 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-04-22 22:44 - 2014-03-06 10:53 - 02767360 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-04-22 22:44 - 2014-03-06 10:40 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-04-22 22:44 - 2014-03-06 10:39 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-04-22 22:44 - 2014-03-06 10:32 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-04-22 22:44 - 2014-03-06 10:29 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-04-22 22:44 - 2014-03-06 10:29 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-04-22 22:44 - 2014-03-06 10:28 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-04-22 22:44 - 2014-03-06 10:15 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-04-22 22:44 - 2014-03-06 10:11 - 05784064 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-04-22 22:44 - 2014-03-06 10:09 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-04-22 22:44 - 2014-03-06 10:03 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-04-22 22:44 - 2014-03-06 10:02 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-04-22 22:44 - 2014-03-06 10:02 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-04-22 22:44 - 2014-03-06 10:01 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-04-22 22:44 - 2014-03-06 09:56 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-04-22 22:44 - 2014-03-06 09:48 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-04-22 22:44 - 2014-03-06 09:47 - 02178048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-04-22 22:44 - 2014-03-06 09:46 - 04254720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-04-22 22:44 - 2014-03-06 09:46 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-04-22 22:44 - 2014-03-06 09:45 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-04-22 22:44 - 2014-03-06 09:42 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-04-22 22:44 - 2014-03-06 09:40 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-04-22 22:44 - 2014-03-06 09:38 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-04-22 22:44 - 2014-03-06 09:36 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-04-22 22:44 - 2014-03-06 09:22 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-04-22 22:44 - 2014-03-06 09:21 - 00628736 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-04-22 22:44 - 2014-03-06 09:13 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-04-22 22:44 - 2014-03-06 09:11 - 02043904 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-04-22 22:44 - 2014-03-06 09:07 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-04-22 22:44 - 2014-03-06 09:01 - 00244224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-04-22 22:44 - 2014-03-06 08:53 - 13551104 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-04-22 22:44 - 2014-03-06 08:46 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-04-22 22:44 - 2014-03-06 08:40 - 01967104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-04-22 22:44 - 2014-03-06 08:36 - 11745792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-04-22 22:44 - 2014-03-06 08:22 - 02260480 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-04-22 22:44 - 2014-03-06 07:58 - 01400832 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-04-22 22:44 - 2014-03-06 07:50 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-04-22 22:44 - 2014-03-06 07:43 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-04-22 22:44 - 2014-03-06 07:41 - 01789440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-04-22 22:44 - 2014-03-06 07:36 - 01143808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-04-22 03:07 - 2014-04-22 03:07 - 00043012 _____ () C:\Users\Simon\Downloads\AimPoint.exe
2014-04-21 19:59 - 2014-05-01 00:13 - 00000000 ____D () C:\Users\Simon\AppData\Local\Thunderbird
2014-04-21 19:59 - 2014-04-21 19:59 - 21987424 _____ (Mozilla) C:\Users\Simon\Downloads\Thunderbird_Setup_de24.4.0.exe
2014-04-21 19:59 - 2014-04-21 19:59 - 00002106 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk
2014-04-21 19:59 - 2014-04-21 19:59 - 00002094 _____ () C:\Users\Public\Desktop\Mozilla Thunderbird.lnk
2014-04-21 19:59 - 2014-04-21 19:59 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\Thunderbird
2014-04-20 19:07 - 2014-05-17 13:14 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-04-20 19:07 - 2014-05-17 12:32 - 00001110 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-04-20 19:07 - 2014-05-17 12:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-04-20 19:07 - 2014-05-17 12:32 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-04-20 19:07 - 2014-04-20 19:07 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Simon\Downloads\mbam-setup-2.0.1.1004.exe
2014-04-20 19:07 - 2014-04-20 19:07 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-04-20 19:07 - 2014-04-03 09:51 - 00088280 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-04-20 19:07 - 2014-04-03 09:51 - 00063192 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-04-20 19:07 - 2014-04-03 09:50 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-04-20 14:09 - 2014-04-20 14:09 - 00004253 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_55-b14.log
2014-04-20 14:09 - 2014-04-20 14:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-04-18 16:00 - 2014-04-18 16:00 - 00388608 _____ (Trend Micro Inc.) C:\Users\Simon\Downloads\HiJackThis204 (2).exe
2014-04-18 16:00 - 2014-04-18 16:00 - 00388608 _____ (Trend Micro Inc.) C:\Users\Simon\Downloads\HiJackThis204 (1).exe
2014-04-18 16:00 - 2014-04-18 16:00 - 00016670 _____ () C:\Users\Simon\Downloads\hijackthis.log
2014-04-18 15:59 - 2014-04-18 15:59 - 00388608 _____ (Trend Micro Inc.) C:\Users\Simon\Downloads\HiJackThis204.exe
2014-04-17 19:10 - 2014-05-03 03:17 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-04-17 19:10 - 2014-04-17 19:10 - 00001167 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-04-17 19:10 - 2014-04-17 19:10 - 00001155 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-04-17 19:10 - 2014-04-17 19:10 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\Mozilla
2014-04-17 19:10 - 2014-04-17 19:10 - 00000000 ____D () C:\Users\Simon\AppData\Local\Mozilla
2014-04-17 19:10 - 2014-04-17 19:10 - 00000000 ____D () C:\ProgramData\Mozilla
2014-04-17 19:10 - 2014-04-17 19:10 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-04-17 19:09 - 2014-04-17 19:09 - 00283192 _____ (Mozilla) C:\Users\Simon\Downloads\Firefox Setup Stub 28.0.exe
2014-04-17 15:07 - 2014-05-17 12:08 - 00000000 ____D () C:\AdwCleaner
2014-04-17 15:07 - 2014-04-17 15:07 - 00000000 ____D () C:\Users\Simon\Downloads\AdwCleaner_TSA221R2W
2014-04-17 01:58 - 2014-04-17 01:58 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\InetStat
2014-04-17 01:57 - 2014-04-17 01:57 - 00003162 _____ () C:\Windows\System32\Tasks\fsupdate
==================== One Month Modified Files and Folders =======
2014-05-17 13:18 - 2014-05-17 13:17 - 00022699 _____ () C:\Users\Simon\Desktop\FRST.txt
2014-05-17 13:17 - 2014-05-16 16:33 - 00000000 ____D () C:\FRST
2014-05-17 13:17 - 2014-01-22 22:01 - 01212270 _____ () C:\Windows\WindowsUpdate.log
2014-05-17 13:16 - 2014-01-23 18:35 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\Skype
2014-05-17 13:15 - 2014-05-17 13:15 - 00013047 _____ () C:\Users\Simon\Desktop\zoek-results.txt
2014-05-17 13:14 - 2014-05-17 12:48 - 00013047 _____ () C:\zoek-results.log
2014-05-17 13:14 - 2014-04-20 19:07 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-05-17 13:14 - 2014-01-27 20:47 - 00000000 ____D () C:\Users\Simon\AppData\Local\Overwolf
2014-05-17 13:13 - 2014-01-22 23:03 - 00001104 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-05-17 13:13 - 2014-01-22 22:05 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-05-17 13:13 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-05-17 13:13 - 2009-07-14 06:51 - 00073201 _____ () C:\Windows\setupact.log
2014-05-17 13:12 - 2014-01-22 22:27 - 00000000 ____D () C:\Windows\de
2014-05-17 13:12 - 2014-01-22 21:56 - 00242430 _____ () C:\Windows\PFRO.log
2014-05-17 13:07 - 2014-05-17 12:48 - 00000000 ____D () C:\zoek_backup
2014-05-17 12:48 - 2014-05-17 12:48 - 00000000 ____D () C:\Users\Simon\Desktop\zoek
2014-05-17 12:47 - 2014-05-17 12:47 - 04235514 _____ () C:\Users\Simon\Downloads\zoek.rar
2014-05-17 12:42 - 2014-05-17 12:42 - 00001620 _____ () C:\Users\Simon\Desktop\mbam.txt
2014-05-17 12:34 - 2014-01-22 23:03 - 00001108 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-05-17 12:32 - 2014-05-17 12:31 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Simon\Downloads\mbam-setup-2.0.1.1004 (1).exe
2014-05-17 12:32 - 2014-04-20 19:07 - 00001110 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-05-17 12:32 - 2014-04-20 19:07 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-05-17 12:32 - 2014-04-20 19:07 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-05-17 12:30 - 2014-05-17 12:30 - 00000759 _____ () C:\Users\Simon\Desktop\JRT.txt
2014-05-17 12:23 - 2009-07-14 06:45 - 00009696 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-05-17 12:23 - 2009-07-14 06:45 - 00009696 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-05-17 12:20 - 2014-05-17 12:20 - 01016261 _____ (Thisisu) C:\Users\Simon\Desktop\JRT.exe
2014-05-17 12:20 - 2014-05-17 12:20 - 00000000 ____D () C:\Windows\ERUNT
2014-05-17 12:18 - 2014-05-17 12:18 - 00004180 _____ () C:\Users\Simon\Desktop\AdwCleaner[S4].txt
2014-05-17 12:08 - 2014-04-17 15:07 - 00000000 ____D () C:\AdwCleaner
2014-05-17 12:06 - 2014-05-17 12:06 - 00001787 _____ () C:\Users\Public\Desktop\iTunes.lnk
2014-05-17 12:06 - 2014-05-17 12:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2014-05-17 12:06 - 2014-05-17 12:06 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-05-17 12:06 - 2014-05-17 12:06 - 00000000 ____D () C:\Program Files\iTunes
2014-05-17 12:06 - 2014-05-17 12:06 - 00000000 ____D () C:\Program Files\iPod
2014-05-17 12:06 - 2014-05-17 12:06 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-05-17 12:02 - 2014-05-17 12:02 - 01325827 _____ () C:\Users\Simon\Desktop\adwcleaner_3.208.exe
2014-05-17 00:03 - 2014-03-31 23:30 - 00000000 ____D () C:\Users\Simon\log2s
2014-05-16 18:09 - 2014-05-16 18:09 - 00038341 _____ () C:\ComboFix.txt
2014-05-16 18:09 - 2014-05-16 17:49 - 00000000 ____D () C:\ComboFix
2014-05-16 18:09 - 2014-05-16 17:48 - 00000000 ____D () C:\Qoobox
2014-05-16 18:09 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Default
2014-05-16 18:08 - 2014-05-16 17:48 - 00000000 ____D () C:\Windows\erdnt
2014-05-16 18:02 - 2009-07-14 04:34 - 00000215 _____ () C:\Windows\system.ini
2014-05-16 17:57 - 2009-07-14 04:34 - 73662464 _____ () C:\Windows\system32\config\SOFTWARE.bak
2014-05-16 17:57 - 2009-07-14 04:34 - 25952256 _____ () C:\Windows\system32\config\SYSTEM.bak
2014-05-16 17:57 - 2009-07-14 04:34 - 00262144 _____ () C:\Windows\system32\config\SECURITY.bak
2014-05-16 17:57 - 2009-07-14 04:34 - 00262144 _____ () C:\Windows\system32\config\SAM.bak
2014-05-16 17:57 - 2009-07-14 04:34 - 00262144 _____ () C:\Windows\system32\config\DEFAULT.bak
2014-05-16 17:09 - 2014-05-16 17:09 - 05200990 ____R (Swearware) C:\Users\Simon\Desktop\ComboFix.exe
2014-05-16 16:34 - 2014-05-16 16:34 - 00049056 _____ () C:\Users\Simon\Downloads\Addition.txt
2014-05-16 16:34 - 2014-05-16 16:33 - 00097162 _____ () C:\Users\Simon\Downloads\FRST.txt
2014-05-16 16:33 - 2014-05-16 16:33 - 02067456 _____ (Farbar) C:\Users\Simon\Desktop\FRST64.exe
2014-05-16 10:37 - 2014-01-22 23:04 - 00002179 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-05-15 21:24 - 2014-01-22 22:54 - 00000000 ___RD () C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-05-15 21:24 - 2014-01-22 22:54 - 00000000 ___RD () C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-05-15 21:22 - 2014-04-25 21:34 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-05-14 22:02 - 2014-02-19 14:48 - 00000000 ____D () C:\Windows\system32\MRT
2014-05-14 22:02 - 2014-01-29 19:01 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-05-14 22:00 - 2014-01-22 23:14 - 93223848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-05-13 01:29 - 2014-05-13 01:29 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\48230029.sys
2014-05-11 18:58 - 2014-05-11 18:46 - 00230432 _____ () C:\PA7302.DAT
2014-05-11 18:41 - 2014-05-11 18:41 - 00000000 ____D () C:\Windows\PixArt
2014-05-11 18:41 - 2014-05-11 18:41 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CANYON USB PC CAMERA
2014-05-11 18:41 - 2014-05-11 18:41 - 00000000 ____D () C:\Program Files (x86)\ANC
2014-05-11 18:41 - 2010-10-27 13:00 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-05-11 18:40 - 2014-05-11 18:40 - 05611298 _____ () C:\Users\Simon\Downloads\CNR-WCAM53_Drv_XPVW32.zip
2014-05-11 16:32 - 2014-05-11 16:31 - 00155577 _____ () C:\Users\Simon\Downloads\proxtube_1.3.0 (3) (1).crx
2014-05-11 16:31 - 2014-05-11 16:31 - 00629584 _____ (Chip Digital GmbH) C:\Users\Simon\Downloads\Chrome YouTube Downloader - CHIP-Downloader (1).exe
2014-05-11 16:31 - 2014-05-11 16:31 - 00155577 _____ () C:\Users\Simon\Downloads\proxtube_1.3.0 (3).crx
2014-05-11 16:31 - 2014-05-11 16:31 - 00143081 _____ () C:\Users\Simon\Downloads\proxtube_1.3.0.zip
2014-05-11 16:29 - 2014-05-11 16:29 - 00629584 _____ (Chip Digital GmbH) C:\Users\Simon\Downloads\Chrome YouTube Downloader - CHIP-Downloader.exe
2014-05-11 16:29 - 2014-05-11 16:29 - 00105903 _____ () C:\Users\Simon\Downloads\chrome-youtube-downloader-2.6.20.crx
2014-05-11 16:29 - 2014-05-11 16:29 - 00099158 _____ () C:\Users\Simon\Downloads\chrome-youtube-downloader-2.6.20.zip
2014-05-11 16:23 - 2014-05-11 16:23 - 00279792 _____ () C:\Users\Simon\Downloads\YouTube-Unblocker-055.zip
2014-05-11 16:22 - 2014-05-11 16:22 - 00629584 _____ (Chip Digital GmbH) C:\Users\Simon\Downloads\YouTube-Unblocker-055 - CHIP-Downloader.exe
2014-05-11 16:18 - 2014-05-11 16:07 - 230403208 _____ (COMODO) C:\Users\Simon\Downloads\cfw_installer_5732_83.exe
2014-05-11 16:14 - 2014-03-21 14:43 - 00000000 ____D () C:\Users\Simon\AppData\Local\PrivaZer
2014-05-11 16:07 - 2014-05-11 16:07 - 00686664 _____ ( ) C:\Users\Simon\Downloads\COMPUTER_BILD-Download-Manager_fuer_cfw_installer_5732_83.exe
2014-05-11 16:05 - 2014-05-11 15:48 - 00000000 ____D () C:\Program Files (x86)\Opera
2014-05-11 16:03 - 2014-05-11 15:49 - 00000000 ____D () C:\Program Files (x86)\PrivaZer
2014-05-11 16:03 - 2014-03-21 14:43 - 00001905 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PrivaZer.lnk
2014-05-11 16:03 - 2014-03-21 14:43 - 00001893 _____ () C:\Users\Public\Desktop\PrivaZer.lnk
2014-05-11 16:02 - 2014-05-11 16:02 - 07198344 _____ (Goversoft LLC) C:\Users\Simon\Downloads\privazer_free (1).exe
2014-05-11 16:02 - 2014-05-11 16:02 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\Opera Software
2014-05-11 16:02 - 2014-05-11 16:02 - 00000000 ____D () C:\Users\Simon\AppData\Local\Opera Software
2014-05-11 15:51 - 2014-05-11 15:51 - 00295232 _____ () C:\Windows\Minidump\051114-20716-01.dmp
2014-05-11 15:51 - 2014-01-23 19:38 - 739826304 _____ () C:\Windows\MEMORY.DMP
2014-05-11 15:51 - 2014-01-23 19:38 - 00000000 ____D () C:\Windows\Minidump
2014-05-11 15:48 - 2014-05-11 15:48 - 00003254 _____ () C:\Windows\System32\Tasks\Opera D7
2014-05-11 15:48 - 2014-05-11 15:48 - 00003254 _____ () C:\Windows\System32\Tasks\Opera D6
2014-05-11 15:48 - 2014-05-11 15:48 - 00001137 _____ () C:\Users\Public\Desktop\Opera.lnk
2014-05-11 15:48 - 2014-05-11 15:48 - 00001137 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2014-05-11 15:47 - 2014-03-21 14:42 - 07202440 _____ (Goversoft LLC) C:\Users\Simon\Downloads\privazer_free.exe
2014-05-11 15:34 - 2014-05-11 15:34 - 00339543 _____ () C:\Users\Simon\Downloads\Ask-Fm-Autolike.rar
2014-05-09 08:14 - 2014-05-14 17:59 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-05-09 08:11 - 2014-05-14 17:59 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-05-09 03:01 - 2014-01-27 20:47 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\TS3Client
2014-05-08 17:29 - 2014-01-22 23:03 - 00004104 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-05-08 17:29 - 2014-01-22 23:03 - 00003852 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-05-08 14:39 - 2014-05-08 13:01 - 00000000 ____D () C:\Program Files (x86)\WarThunder
2014-05-08 14:39 - 2014-01-22 23:17 - 00000000 ____D () C:\Windows\SysWOW64\directx
2014-05-08 13:02 - 2014-05-08 13:02 - 00000000 ____D () C:\Users\Simon\AppData\Local\WarThunder
2014-05-08 13:02 - 2014-05-08 13:02 - 00000000 ____D () C:\ProgramData\WarThunder
2014-05-08 13:01 - 2014-05-08 13:01 - 04124808 _____ (Gaijin Entertainment ) C:\Users\Simon\Downloads\wt_launcher_doi_1.0.1.355.exe
2014-05-08 13:01 - 2014-05-08 13:01 - 00001109 _____ () C:\Users\Public\Desktop\WarThunder.lnk
2014-05-08 13:01 - 2014-05-08 13:01 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder
2014-05-08 13:01 - 2014-05-03 18:29 - 00000000 ____D () C:\Users\Simon\Documents\My Games
2014-05-08 12:35 - 2014-04-24 01:54 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\QuickScan
2014-05-08 00:56 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system
2014-05-08 00:34 - 2014-05-08 00:32 - 00053504 _____ () C:\Users\Simon\Downloads\bootkit_remover.zip
2014-05-06 20:23 - 2014-05-06 19:21 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\tor
2014-05-06 19:17 - 2014-05-06 19:15 - 26815695 _____ () C:\Users\Simon\Downloads\torbrowser-install-3.6_en-US.exe
2014-05-06 06:40 - 2014-05-14 22:02 - 23544320 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-05-06 06:17 - 2014-05-14 22:02 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-05-06 05:25 - 2014-05-14 22:02 - 17382912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-05-06 05:07 - 2014-05-14 22:02 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-05-06 05:00 - 2014-05-14 22:02 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-05-06 04:10 - 2014-05-14 22:02 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-05-04 13:43 - 2014-05-03 17:54 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-05-03 19:41 - 2014-05-03 19:41 - 00000000 ____D () C:\Users\Simon\AppData\Local\EdgeOfReality
2014-05-03 19:40 - 2014-01-22 22:27 - 00028868 _____ () C:\Windows\DirectX.log
2014-05-03 19:02 - 2014-05-03 19:02 - 00000219 _____ () C:\Users\Simon\Desktop\Dota 2.url
2014-05-03 19:02 - 2014-05-03 18:18 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2014-05-03 18:47 - 2014-05-03 18:47 - 00000222 _____ () C:\Users\Simon\Desktop\Loadout.url
2014-05-03 18:18 - 2014-05-03 18:18 - 00000222 _____ () C:\Users\Simon\Desktop\Epigenesis.url
2014-05-03 17:54 - 2014-05-03 17:54 - 01141680 _____ () C:\Users\Simon\Downloads\SteamSetup.exe
2014-05-03 17:54 - 2014-05-03 17:54 - 00000971 _____ () C:\Users\Public\Desktop\Steam.lnk
2014-05-03 17:54 - 2014-05-03 17:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2014-05-03 17:51 - 2014-05-03 17:51 - 03384836 _____ (MultIV Team ) C:\Users\Simon\Downloads\multiv_setup (2).exe
2014-05-03 17:51 - 2014-05-03 17:51 - 03384836 _____ (MultIV Team ) C:\Users\Simon\Downloads\multiv_setup (1).exe
2014-05-03 17:44 - 2014-05-03 17:43 - 00000999 _____ () C:\Users\Public\Desktop\MultIV.lnk
2014-05-03 17:44 - 2014-05-03 17:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MultIV
2014-05-03 17:44 - 2014-05-03 17:43 - 00000000 ____D () C:\Program Files (x86)\MultIV
2014-05-03 17:42 - 2014-05-03 17:42 - 03384836 _____ (MultIV Team ) C:\Users\Simon\Downloads\multiv_setup.exe
2014-05-03 17:39 - 2014-05-03 17:39 - 04954736 _____ (Microsoft Corporation) C:\Users\Simon\Downloads\WindowsUpgradeAssistant.exe
2014-05-03 17:35 - 2014-05-03 17:34 - 36965680 _____ (Microsoft Corporation) C:\Users\Simon\Downloads\IE9-Windows7-x64-deu.exe
2014-05-03 17:35 - 2014-01-24 00:08 - 00005990 _____ () C:\Windows\IE9_main.log
2014-05-03 17:01 - 2014-05-03 17:01 - 17532198 _____ () C:\Users\Simon\Downloads\1355067475iCEnhancer2_1FINAL.zip
2014-05-03 05:14 - 2014-05-03 05:14 - 97580750 _____ () C:\Users\Simon\Downloads\Seven Reel's Realistic ENB v1.5b.zip
2014-05-03 05:06 - 2014-05-03 05:06 - 19677675 _____ () C:\Users\Simon\Downloads\Fighter Jet P-996 Lazer 3.zip
2014-05-03 05:05 - 2014-05-03 05:05 - 00717632 _____ () C:\Users\Simon\Downloads\scripthookdotnet_v1.7.1.7b.zip
2014-05-03 04:53 - 2014-05-03 04:50 - 89876480 _____ () C:\Users\Simon\Desktop\vehicles.img
2014-05-03 04:52 - 2014-05-03 04:52 - 00000000 ____D () C:\Users\Simon\Desktop\Backup
2014-05-03 04:50 - 2014-05-03 04:50 - 00000000 ____D () C:\Users\Simon\Desktop\Infernus
2014-05-03 04:49 - 2014-05-03 04:49 - 00000000 ____D () C:\Users\Simon\Desktop\SparkIV
2014-05-03 04:48 - 2014-05-03 04:48 - 01540953 _____ () C:\Users\Simon\Downloads\SparkIV 0.6.6.zip
2014-05-03 04:46 - 2014-05-03 04:46 - 04695532 _____ () C:\Users\Simon\Downloads\1398374770_ageraone.rar
2014-05-03 03:32 - 2014-05-03 03:32 - 00000000 ____D () C:\Users\Simon\Documents\Games for Windows - LIVE Demos
2014-05-03 03:30 - 2014-05-03 03:30 - 00000000 ____D () C:\Windows\SysWOW64\xlive
2014-05-03 03:30 - 2014-05-03 03:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games for Windows Marketplace
2014-05-03 03:30 - 2014-05-03 03:30 - 00000000 ____D () C:\Program Files (x86)\Microsoft Games for Windows - LIVE
2014-05-03 03:30 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2014-05-03 03:29 - 2014-05-03 03:29 - 00642712 _____ (Microsoft Corporation) C:\Users\Simon\Downloads\gfwlive35setup.exe
2014-05-03 03:29 - 2014-05-03 03:29 - 00642712 _____ (Microsoft Corporation) C:\Users\Simon\Downloads\gfwlive35setup (1).exe
2014-05-03 03:19 - 2014-04-11 14:06 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-05-03 03:19 - 2014-04-11 14:06 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-05-03 03:17 - 2014-04-17 19:10 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-05-03 01:35 - 2014-05-01 01:13 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird
2014-05-01 19:04 - 2014-05-01 19:04 - 00081626 _____ () C:\Users\Simon\Documents\Unit 1.voc
2014-05-01 19:04 - 2014-05-01 19:04 - 00081626 _____ () C:\Users\Simon\Desktop\Unit 1.voc
2014-05-01 17:09 - 2014-05-01 17:09 - 04044159 _____ () C:\Users\Simon\Downloads\1259416463_ProVehicleModv1.0.1.zip
2014-05-01 16:30 - 2014-05-01 16:30 - 00001027 _____ () C:\Users\Public\Desktop\Domingo 2.lnk
2014-05-01 16:30 - 2014-05-01 16:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Domingo 2
2014-05-01 16:30 - 2014-05-01 16:30 - 00000000 ____D () C:\Program Files (x86)\Domingo 2
2014-05-01 16:29 - 2014-05-01 16:29 - 04241516 _____ (Patrick Diekmann ) C:\Users\Simon\Downloads\setup.exe
2014-05-01 16:29 - 2014-05-01 16:29 - 00728032 _____ () C:\Users\Simon\Downloads\COMPUTER_BILD-Download-Manager_fuer_setup.exe
2014-05-01 15:56 - 2014-05-01 15:56 - 01138458 _____ () C:\Users\Simon\Downloads\1385372962_Space Shuttle.rar
2014-05-01 15:35 - 2014-05-01 15:34 - 00072097 _____ () C:\Users\Simon\Downloads\xliveless - v0.999b7 (patch 1.0.7.0. and EFLC 1.1.2.0).zip
2014-05-01 15:26 - 2014-05-01 15:26 - 02662221 _____ () C:\Users\Simon\Downloads\1310225693_Simple Native Trainer v.6.3.rar
2014-05-01 13:34 - 2014-05-01 13:34 - 00000000 ____D () C:\Users\Simon\Documents\Rockstar Games
2014-05-01 13:31 - 2014-05-01 13:31 - 00000000 __SHD () C:\ProgramData\SecuROM
2014-05-01 13:30 - 2014-05-01 13:30 - 04776440 _____ () C:\Users\Simon\Downloads\LaunchGTAIV.zip
2014-05-01 13:25 - 2014-05-01 13:25 - 00000000 ____D () C:\Users\Simon\AppData\Local\Rockstar Games
2014-05-01 13:24 - 2014-05-01 13:24 - 00000000 __RHD () C:\Users\Simon\AppData\Roaming\SecuROM
2014-05-01 13:11 - 2014-04-24 18:49 - 00003704 _____ () C:\Windows\System32\Tasks\Java Update Scheduler
2014-05-01 03:53 - 2014-05-01 03:46 - 20725128 _____ () C:\Users\Simon\Downloads\MMM_PT._vlad.7z
2014-05-01 00:13 - 2014-04-21 19:59 - 00000000 ____D () C:\Users\Simon\AppData\Local\Thunderbird
2014-04-28 20:55 - 2014-04-28 20:55 - 00155577 _____ () C:\Users\Simon\Downloads\proxtube_1.3.0 (2).crx
2014-04-28 20:53 - 2014-04-28 20:53 - 00155577 _____ () C:\Users\Simon\Downloads\proxtube_1.3.0 (1).crx
2014-04-28 20:52 - 2014-04-28 20:52 - 00155577 _____ () C:\Users\Simon\Downloads\proxtube_1.3.0.crx
2014-04-27 02:44 - 2009-07-14 07:32 - 00000000 ____D () C:\Windows\addins
2014-04-26 21:41 - 2014-04-25 21:40 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\Bitdefender
2014-04-25 22:05 - 2014-04-25 22:05 - 00000000 ____D () C:\Users\Simon\AppData\Local\GGC
2014-04-25 22:03 - 2014-04-25 22:01 - 05570641 _____ () C:\Users\Simon\Downloads\Gordonsys2.0.rar
2014-04-25 21:40 - 2014-04-25 21:40 - 00002194 _____ () C:\Users\Public\Desktop\Bitdefender Safepay.lnk
2014-04-25 21:40 - 2014-04-25 21:40 - 00002075 _____ () C:\Users\Public\Desktop\Bitdefender Total Security.lnk
2014-04-25 21:40 - 2014-04-25 21:40 - 00000684 ____H () C:\bdr-cf01
2014-04-25 21:40 - 2014-04-25 21:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender
2014-04-25 21:40 - 2014-04-25 21:36 - 00253404 ____H () C:\bdr-ld01
2014-04-25 21:40 - 2014-04-25 21:36 - 00009216 ____H () C:\bdr-ld01.mbr
2014-04-25 21:40 - 2014-04-24 01:54 - 00000000 ____D () C:\ProgramData\Bitdefender
2014-04-25 21:36 - 2014-04-24 01:51 - 00000000 ____D () C:\Program Files\Common Files\Bitdefender
2014-04-25 21:18 - 2014-04-25 21:18 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\MVH
2014-04-25 21:18 - 2014-04-25 00:53 - 01373184 _____ () C:\Users\Simon\Desktop\MVH Loader.exe
2014-04-25 21:17 - 2014-04-24 19:00 - 00000000 ____D () C:\Users\Simon\Desktop\Bilder
2014-04-25 19:35 - 2014-01-22 22:53 - 00000000 ____D () C:\Users\Simon\AppData\Local\VirtualStore
2014-04-25 02:34 - 2014-04-25 02:34 - 00002770 _____ () C:\Windows\System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013
2014-04-25 00:53 - 2014-04-25 00:53 - 01108568 _____ () C:\Users\Simon\Downloads\MVH Loader.zip
2014-04-25 00:47 - 2014-04-25 00:47 - 04106679 _____ () C:\Users\Simon\Downloads\[Abs]Loader.rar
2014-04-25 00:41 - 2014-04-25 00:28 - 00000000 ____D () C:\Users\Simon\Desktop\Combat Arms Hack
2014-04-25 00:40 - 2014-04-25 00:21 - 00000000 ____D () C:\ProgramData\NexonEU
2014-04-25 00:34 - 2014-04-25 00:34 - 00000000 ____D () C:\ProgramData\Nexon
2014-04-25 00:24 - 2014-04-25 00:24 - 00001634 _____ () C:\Users\Public\Desktop\Combat Arms EU.lnk
2014-04-25 00:24 - 2014-04-25 00:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nexon
2014-04-25 00:21 - 2014-04-25 00:21 - 00000000 ____D () C:\Nexon
2014-04-25 00:13 - 2014-04-24 23:52 - 1967289647 _____ (Nexon) C:\Users\Simon\Desktop\Combatarms_eu.exe
2014-04-24 23:51 - 2014-04-24 23:51 - 10552296 _____ (Akamai Technologies, Inc.) C:\Users\Simon\Downloads\NexonEU_Installer.exe
2014-04-24 23:51 - 2014-04-14 21:03 - 00000000 ____D () C:\Users\Simon\AppData\Local\Akamai
2014-04-24 23:50 - 2014-04-24 23:50 - 01617203 _____ () C:\Users\Simon\Downloads\[ghbsys.net] Public-Client.zip
2014-04-24 22:10 - 2014-04-24 22:10 - 00000000 ____D () C:\Program Files (x86)\Microsoft XNA
2014-04-24 22:09 - 2014-04-24 22:09 - 00001474 _____ () C:\Users\Public\Desktop\Bloodline Champions.lnk
2014-04-24 22:09 - 2014-04-24 22:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bloodline Champions
2014-04-24 22:08 - 2014-04-24 22:08 - 00000000 ____D () C:\Program Files (x86)\Stunlock Studios
2014-04-24 22:08 - 2014-04-24 22:03 - 363876296 _____ (Stunlock Studios ) C:\Users\Simon\Downloads\bloodline-champions_25983.exe
2014-04-24 22:03 - 2014-04-24 22:03 - 01062288 _____ () C:\Users\Simon\Downloads\Bloodline-Champions-lnstall.exe
2014-04-24 19:35 - 2009-07-14 07:32 - 00000000 ____D () C:\Windows\Offline Web Pages
2014-04-24 19:33 - 2014-04-24 19:33 - 10768896 _____ () C:\Users\Simon\Downloads\Wolfteam INV Hack AUG 2013.exe
2014-04-24 19:25 - 2014-04-24 19:25 - 00058597 _____ () C:\Users\Simon\Downloads\Business.Card.Maker.8.0_CRK-FFF.zip
2014-04-24 19:23 - 2014-04-24 17:32 - 00000000 ____D () C:\Users\Simon\Downloads\Download.am
2014-04-24 19:23 - 2014-04-24 17:32 - 00000000 ____D () C:\Users\Simon\AppData\Local\download.am-data
2014-04-24 19:22 - 2014-04-24 19:22 - 00077025 _____ () C:\Users\Simon\Downloads\CD244A3FE5B95DA446608BC56299A387E1A64734.torrent
2014-04-24 19:08 - 2014-04-24 19:01 - 00000000 ____D () C:\Users\Simon\Desktop\Programme
2014-04-24 19:04 - 2014-04-24 19:04 - 00000000 ____D () C:\Users\Simon\Desktop\Programme;Spiele
2014-04-24 18:59 - 2014-04-24 18:59 - 07307552 _____ () C:\Users\Simon\Downloads\bitdefender_isecurity.exe
2014-04-24 18:43 - 2014-04-24 18:41 - 00000000 ____D () C:\ProgramData\TuneUp Software
2014-04-24 18:42 - 2014-04-24 18:42 - 00002217 _____ () C:\Users\Public\Desktop\TuneUp 1-Klick-Wartung.lnk
2014-04-24 18:42 - 2014-04-24 18:42 - 00002209 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014.lnk
2014-04-24 18:42 - 2014-04-24 18:42 - 00002197 _____ () C:\Users\Public\Desktop\TuneUp Utilities 2014.lnk
2014-04-24 18:42 - 2014-04-24 18:42 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\TuneUp Software
2014-04-24 18:42 - 2014-04-24 18:42 - 00000000 ____D () C:\Users\Simon\AppData\Local\TuneUp Software
2014-04-24 18:42 - 2014-04-24 18:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TuneUp Utilities 2014
2014-04-24 18:42 - 2014-04-24 18:42 - 00000000 ____D () C:\Program Files (x86)\TuneUp Utilities 2014
2014-04-24 18:41 - 2014-04-24 18:41 - 00074811 _____ () C:\Users\Simon\Downloads\TuneUp 2014 Keygen by Game24x.rar
2014-04-24 18:41 - 2014-04-24 18:40 - 27878824 _____ (TuneUp Software) C:\Users\Simon\Downloads\TuneUpUtilities2014_de2745-DE.exe
2014-04-24 18:33 - 2014-04-24 18:32 - 209715712 _____ () C:\Users\Simon\Desktop\Tresor.bvd
2014-04-24 17:32 - 2014-04-24 17:32 - 00001053 _____ () C:\Users\Simon\Desktop\Download.am.lnk
2014-04-24 17:32 - 2014-04-24 17:32 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Download.am
2014-04-24 17:32 - 2014-04-24 17:31 - 00000000 ____D () C:\Program Files (x86)\Download.am
2014-04-24 17:25 - 2014-04-24 17:25 - 13540177 _____ () C:\Users\Simon\Downloads\download.am-build233.zip
2014-04-24 17:21 - 2014-04-24 17:20 - 00000000 ____D () C:\Users\Simon\Desktop\RSDownloader
2014-04-24 17:20 - 2014-04-24 17:20 - 03028121 _____ () C:\Users\Simon\Downloads\RSD_0.61.zip
2014-04-24 17:20 - 2014-04-24 17:20 - 00000164 _____ () C:\Users\Simon\Downloads\40961pa16fh3627.rsdf
2014-04-24 17:19 - 2014-04-24 17:19 - 00000000 ____D () C:\Users\Simon\Desktop\JDownloader
2014-04-24 17:18 - 2014-04-24 17:18 - 31419822 _____ () C:\Users\Simon\Downloads\JDownloader.zip
2014-04-24 16:03 - 2014-03-08 18:51 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\Curse Client
2014-04-24 15:59 - 2014-04-24 15:59 - 01467128 _____ () C:\Users\Simon\Downloads\SystemCheck_deDE (2).exe
2014-04-24 15:58 - 2014-04-24 15:58 - 01467128 _____ () C:\Users\Simon\Downloads\SystemCheck_deDE.exe
2014-04-24 15:58 - 2014-04-24 15:58 - 01467128 _____ () C:\Users\Simon\Downloads\SystemCheck_deDE (1).exe
2014-04-24 04:55 - 2014-04-24 04:55 - 01147424 _____ () C:\Users\Simon\Downloads\bitdefender_antitheft.exe
2014-04-24 04:48 - 2014-04-24 04:48 - 07304560 _____ () C:\Users\Simon\Downloads\bitdefender_tsecurity (2).exe
2014-04-24 04:18 - 2014-04-14 13:33 - 00000000 ____D () C:\Users\Simon\Desktop\PBdownforce
2014-04-24 04:04 - 2014-04-24 04:04 - 00000000 ____D () C:\Users\Simon\AppData\Local\simon-p
2014-04-24 03:43 - 2014-04-24 03:43 - 07304560 _____ () C:\Users\Simon\Downloads\bitdefender_tsecurity (1).exe
2014-04-24 02:57 - 2014-04-24 01:54 - 00074512 _____ (BitDefender SRL) C:\Windows\system32\bdsandboxuiskin32.dll
2014-04-24 02:24 - 2014-04-24 02:24 - 00295296 _____ () C:\Windows\Minidump\042414-30264-01.dmp
2014-04-24 02:24 - 2014-02-04 22:14 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-04-24 02:19 - 2014-04-24 02:19 - 00000385 _____ () C:\Windows\system32\user_gensett.xml
2014-04-24 02:19 - 2014-04-24 02:19 - 00000385 _____ () C:\Users\Simon\AppData\Roaminguser_gensett.xml
2014-04-24 02:19 - 2014-04-24 02:18 - 00000000 ____D () C:\ProgramData\BDLogging
2014-04-24 02:18 - 2014-04-24 02:18 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_avchv_01009.Wdf
2014-04-24 02:17 - 2014-04-24 02:17 - 00283192 _____ (Mozilla) C:\Users\Simon\Downloads\Firefox Setup Stub 28.0 (1).exe
2014-04-24 01:57 - 2014-04-24 01:54 - 00000000 ____D () C:\Program Files\Bitdefender
2014-04-24 01:53 - 2014-02-04 22:14 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2014-04-24 01:51 - 2014-04-24 01:51 - 07304560 _____ () C:\Users\Simon\Downloads\bitdefender_tsecurity.exe
2014-04-23 22:45 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache
2014-04-22 22:49 - 2014-04-22 22:49 - 00000000 __SHD () C:\Users\Simon\AppData\Local\EmieUserList
2014-04-22 22:49 - 2014-04-22 22:49 - 00000000 __SHD () C:\Users\Simon\AppData\Local\EmieSiteList
2014-04-22 22:46 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-04-22 03:07 - 2014-04-22 03:07 - 00043012 _____ () C:\Users\Simon\Downloads\AimPoint.exe
2014-04-21 19:59 - 2014-04-21 19:59 - 21987424 _____ (Mozilla) C:\Users\Simon\Downloads\Thunderbird_Setup_de24.4.0.exe
2014-04-21 19:59 - 2014-04-21 19:59 - 00002106 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk
2014-04-21 19:59 - 2014-04-21 19:59 - 00002094 _____ () C:\Users\Public\Desktop\Mozilla Thunderbird.lnk
2014-04-21 19:59 - 2014-04-21 19:59 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\Thunderbird
2014-04-20 19:16 - 2010-10-27 13:16 - 00000000 ____D () C:\Windows\oem
2014-04-20 19:07 - 2014-04-20 19:07 - 17305616 _____ (Malwarebytes Corporation ) C:\Users\Simon\Downloads\mbam-setup-2.0.1.1004.exe
2014-04-20 19:07 - 2014-04-20 19:07 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-04-20 14:09 - 2014-04-20 14:09 - 00004253 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_55-b14.log
2014-04-20 14:09 - 2014-04-20 14:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-04-20 14:09 - 2014-03-16 21:41 - 00000000 ____D () C:\Program Files (x86)\Java
2014-04-20 14:09 - 2014-03-16 21:40 - 00000000 ____D () C:\ProgramData\Oracle
2014-04-19 19:18 - 2014-02-15 14:30 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\.purple
2014-04-18 16:00 - 2014-04-18 16:00 - 00388608 _____ (Trend Micro Inc.) C:\Users\Simon\Downloads\HiJackThis204 (2).exe
2014-04-18 16:00 - 2014-04-18 16:00 - 00388608 _____ (Trend Micro Inc.) C:\Users\Simon\Downloads\HiJackThis204 (1).exe
2014-04-18 16:00 - 2014-04-18 16:00 - 00016670 _____ () C:\Users\Simon\Downloads\hijackthis.log
2014-04-18 15:59 - 2014-04-18 15:59 - 00388608 _____ (Trend Micro Inc.) C:\Users\Simon\Downloads\HiJackThis204.exe
2014-04-17 19:10 - 2014-04-17 19:10 - 00001167 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-04-17 19:10 - 2014-04-17 19:10 - 00001155 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-04-17 19:10 - 2014-04-17 19:10 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\Mozilla
2014-04-17 19:10 - 2014-04-17 19:10 - 00000000 ____D () C:\Users\Simon\AppData\Local\Mozilla
2014-04-17 19:10 - 2014-04-17 19:10 - 00000000 ____D () C:\ProgramData\Mozilla
2014-04-17 19:10 - 2014-04-17 19:10 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-04-17 19:09 - 2014-04-17 19:09 - 00283192 _____ (Mozilla) C:\Users\Simon\Downloads\Firefox Setup Stub 28.0.exe
2014-04-17 15:08 - 2014-01-22 23:04 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-04-17 15:08 - 2014-01-22 22:54 - 00000999 _____ () C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-04-17 15:08 - 2009-07-14 05:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
2014-04-17 15:07 - 2014-04-17 15:07 - 00000000 ____D () C:\Users\Simon\Downloads\AdwCleaner_TSA221R2W
2014-04-17 01:58 - 2014-04-17 01:58 - 00000000 ____D () C:\Users\Simon\AppData\Roaming\InetStat
2014-04-17 01:57 - 2014-04-17 01:57 - 00003162 _____ () C:\Windows\System32\Tasks\fsupdate
Some content of TEMP:
====================
C:\Users\Simon\AppData\Local\Temp\JNativeHook_5684379255690441288.dll
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe
[2014-05-14 17:59] - [2014-03-04 11:43] - 0455168 ____A (Microsoft Corporation) 88AB9B72B4BF3963A0DE0820B4B0B06C
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-05-09 13:35
==================== End Of Log ============================ --- --- ---
--- --- --- |