Hallo,
hier das Logfile von AdwCleaner:AdwCleaner Logfile:
Code:
# AdwCleaner v5.037 - Bericht erstellt am 29/02/2016 um 19:16:06
# Aktualisiert am 28/02/2016 von Xplode
# Datenbank : 2016-02-28.2 [Lokal]
# Betriebssystem : Windows 10 Home (x64)
# Benutzername : Niklas - NIKLAS-LAPTOP
# Gestartet von : C:\Users\Niklas\Desktop\adwcleaner_5.037.exe
# Option : Löschen
# Unterstützung : ToolsLib - Forum: Ask for help or share your experience.
***** [ Dienste ] *****
***** [ Ordner ] *****
[x] Ordner Nicht Gelöscht : C:\Program Files (x86)\myfree codec
[x] Ordner Nicht Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\myfree codec
***** [ Dateien ] *****
***** [ DLLs ] *****
***** [ Verknüpfungen ] *****
***** [ Aufgabenplanung ] *****
***** [ Registrierungsdatenbank ] *****
[-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{5C3B5DAA-0AFF-4808-90FB-0F2F2D760E36}
[x] Schlüssel Nicht Gelöscht : HKCU\Software\Myfree Codec
[x] Schlüssel Nicht Gelöscht : HKLM\SOFTWARE\Myfree Codec
[x] Schlüssel Nicht Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec
***** [ Internetbrowser ] *****
*************************
:: "Tracing" Schlüssel gelöscht
:: Winsock Einstellungen zurückgesetzt
*************************
C:\AdwCleaner\AdwCleaner[C1].txt - [1245 Bytes] - [29/02/2016 19:16:06]
C:\AdwCleaner\AdwCleaner[S1].txt - [1229 Bytes] - [29/02/2016 19:10:50]
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [1391 Bytes] ##########
--- --- ---
AdwCleaner Logfile:
Code:
# AdwCleaner v5.107 - Bericht erstellt am 30/03/2016 um 16:08:36
# Aktualisiert am 28/03/2016 von Xplode
# Datenbank : 2016-03-30.1 [Server]
# Betriebssystem : Windows 10 Home (x64)
# Benutzername : Niklas - NIKLAS-LAPTOP
# Gestartet von : C:\Users\Niklas\Desktop\AdwCleaner_5.107.exe
# Option : Löschen
# Unterstützung : ToolsLib - Forum: Ask for help or share your experience.
***** [ Dienste ] *****
***** [ Ordner ] *****
[x] Ordner Nicht Gelöscht : C:\Program Files (x86)\myfree codec
[x] Ordner Nicht Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\myfree codec
[-] Ordner Gelöscht : C:\Users\Niklas\AppData\Local\FileViewPro
[-] Ordner Gelöscht : C:\Users\Niklas\AppData\Local\Temp\FileViewPro
***** [ Dateien ] *****
***** [ DLLs ] *****
***** [ Verknüpfungen ] *****
***** [ Aufgabenplanung ] *****
***** [ Registrierungsdatenbank ] *****
[-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SOFTWARE\Classes\CLSID\{03AE1B7B-A9E7-4D5A-9D34-89999C31B659}
[-] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{357D32FC-F0AE-4B37-B36F-D44AA31496F5}
[-] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{80B3B43F-7508-4627-BE66-00FB9AE5EE72}
[-] Schlüssel Gelöscht : HKCU\Software\DAILYPCCLEAN
[-] Schlüssel Gelöscht : HKCU\Software\IM
[-] Schlüssel Gelöscht : HKCU\Software\Microsoft\Tinstalls
[x] Schlüssel Nicht Gelöscht : HKCU\Software\Myfree Codec
[x] Schlüssel Nicht Gelöscht : HKLM\SOFTWARE\Myfree Codec
[-] Schlüssel Gelöscht : HKLM\SOFTWARE\TData
[x] Schlüssel Nicht Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec
[x] Schlüssel Nicht Gelöscht : HKU\S-1-5-21-2693976161-2409872999-703121178-1001\Software\Myfree Codec
[x] Schlüssel Nicht Gelöscht : HKU\S-1-5-21-2693976161-2409872999-703121178-1001\Software\Microsoft\Windows\CurrentVersion\Uninstall\MyFreeCodec
***** [ Internetbrowser ] *****
[-] [C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Startup_URLs] Gelöscht : hxxp://www.yoursearching.com/?type=hp&ts=1458925158&z=bf03e0c9d7426feb0e4fa63gez5wbbdtfo1wcg7w5b&from=itr&uid=hgstxhts545050a7e380_140521tm85g3g800rx0sx
[-] [C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Homepage] Gelöscht : hxxp://www.yoursearching.com/?type=hp&ts=1458925158&z=bf03e0c9d7426feb0e4fa63gez5wbbdtfo1wcg7w5b&from=itr&uid=hgstxhts545050a7e380_140521tm85g3g800rx0sx
*************************
:: "Tracing" Schlüssel gelöscht
:: Proxy Einstellungen zurückgesetzt
:: Winsock Einstellungen zurückgesetzt
:: Internet Explorer Richtlinien gelöscht
:: Chrome Richtlinien gelöscht
*************************
C:\AdwCleaner\AdwCleaner[C1].txt - [4184 Bytes] - [29/02/2016 20:16:06]
C:\AdwCleaner\AdwCleaner[S1].txt - [4248 Bytes] - [29/02/2016 20:10:50]
C:\AdwCleaner\AdwCleaner[S2].txt - [4305 Bytes] - [03/03/2016 20:31:04]
C:\AdwCleaner\AdwCleaner[S3].txt - [4377 Bytes] - [07/03/2016 18:52:23]
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [4476 Bytes] ##########
--- --- ---
Malwarebytes:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlaufdatum: 30.03.2016
Suchlaufzeit: 16:18
Protokolldatei: mbam.txt
Administrator: Ja
Version: 2.2.1.1043
Malware-Datenbank: v2016.03.30.05
Rootkit-Datenbank: v2016.03.12.01
Lizenz: Kostenlose Version
Malware-Schutz: Deaktiviert
Schutz vor bösartigen Websites: Deaktiviert
Selbstschutz: Deaktiviert
Betriebssystem: Windows 10
CPU: x64
Dateisystem: NTFS
Benutzer: Niklas
Suchlauftyp: Bedrohungssuchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 457782
Abgelaufene Zeit: 1 Std., 4 Min., 12 Sek.
Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Aktiviert
Heuristik: Aktiviert
PUP: Warnen
PUM: Warnen
Prozesse: 0
(keine bösartigen Elemente erkannt)
Module: 0
(keine bösartigen Elemente erkannt)
Registrierungsschlüssel: 0
(keine bösartigen Elemente erkannt)
Registrierungswerte: 0
(keine bösartigen Elemente erkannt)
Registrierungsdaten: 0
(keine bösartigen Elemente erkannt)
Ordner: 0
(keine bösartigen Elemente erkannt)
Dateien: 14
PUP.Optional.ConvertAd, C:\Users\Niklas\AppData\Local\Temp\nsdEF7C.tmp, In Quarantäne, [8b626f1e97022511982973b060a5a35d],
PUP.Optional.TorrentSearch, C:\Users\Niklas\AppData\Local\Temp\uninstlr32551\Chromium.dll, In Quarantäne, [ffee07860099df57bf5c9e7c649e9c64],
PUP.Optional.TorrentSearch, C:\Users\Niklas\AppData\Local\Temp\uninstlr32551\sqlite3.dll, In Quarantäne, [9954dfae5544a49239e20416679b26da],
PUP.Optional.TorrentSearch, C:\Users\Niklas\AppData\Local\Temp\uninstlr32551\uninst.exe, In Quarantäne, [dc114e3f6c2df145ec2f4cce798960a0],
PUP.Optional.TorrentSearch, C:\Users\Niklas\AppData\Local\Temp\uninstlr32551\XyDD18Z.dll, In Quarantäne, [777648454e4b7abc67b4ee2c37cbaa56],
PUP.Optional.TorrentSearch, C:\Users\Niklas\AppData\Local\Temp\4A873DB4-F567-4DC8-A38B-39BB8D4C4B83\ts_10051.exe, In Quarantäne, [eeff4845f7a254e2d9426fab788ad62a],
PUP.Optional.TorrentSearch, C:\Users\Niklas\AppData\Local\Temp\5ddNdGpTL5_1\Chromium.dll, In Quarantäne, [a6474845dabf171f1902d941bd4549b7],
PUP.Optional.TorrentSearch, C:\Users\Niklas\AppData\Local\Temp\5ddNdGpTL5_1\sqlite3.dll, In Quarantäne, [ad40820bb8e1fa3c0219f723d82a60a0],
PUP.Optional.TorrentSearch, C:\Users\Niklas\AppData\Local\Temp\5ddNdGpTL5_1\XyDD18Z.dll, In Quarantäne, [bb32a5e81f7ac57145d666b42fd31ce4],
PUP.Optional.TorrentSearch, C:\Users\Niklas\AppData\Local\Temp\uninstlr32574\Chromium.dll, In Quarantäne, [21ccb7d69ffad46214078f8b659d2fd1],
PUP.Optional.TorrentSearch, C:\Users\Niklas\AppData\Local\Temp\uninstlr32574\sqlite3.dll, In Quarantäne, [935af895722782b46bb0fb1fe1214ab6],
PUP.Optional.TorrentSearch, C:\Users\Niklas\AppData\Local\Temp\uninstlr32574\uninst.exe, In Quarantäne, [d4199df058418caa32e9869424defa06],
PUP.Optional.TorrentSearch, C:\Users\Niklas\AppData\Local\Temp\uninstlr32574\XyDD18Z.dll, In Quarantäne, [01ec4b4264358da9fa213ddd847e0000],
PUP.Optional.BundleInstaller, C:\Users\Niklas\Downloads\JavaPlugin.exe, In Quarantäne, [539a1974a9f09f9790492941bd432ad6],
Physische Sektoren: 0
(keine bösartigen Elemente erkannt)
(end)
Frst.txt:
FRST Logfile:
Code:
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:05-03-2016 01
durchgeführt von Niklas (Administrator) auf NIKLAS-LAPTOP (30-03-2016 17:30:13)
Gestartet von C:\Users\Niklas\Desktop
Geladene Profile: Niklas (Verfügbare Profile: Niklas)
Platform: Windows 10 Home Version 1511 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: IE)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Prozesse (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
() C:\Program Files (x86)\TOSHIBA\PasswordUtility\GFNEXSrv.exe
(Intel Corporation) C:\Windows\System32\DptfParticipantProcessorService.exe
(G Data Software AG) C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe
(Intel Corporation) C:\Windows\System32\DptfPolicyCriticalService.exe
(Paramount Software UK Ltd) C:\Program Files\Macrium\Reflect\ReflectService.exe
(DEVGURU Co., LTD.) C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe
() C:\Program Files (x86)\TOSHIBA\TOSHIBA System Driver\TOSTABSYSSVC.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(G Data Software AG) C:\Program Files (x86)\G DATA\InternetSecurity\AVK\AVKWCtlx64.exe
(G Data Software AG) C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFwSvcx64.exe
() C:\Program Files (x86)\Realtek\Realtek Bluetooth Filter Driver Package\BTDevMgr.exe
(Intel(R) Corporation) C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Toshiba Corporation) C:\Program Files\TOSHIBA\Teco\TecoService.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(G Data Software AG) C:\Program Files (x86)\G DATA\InternetSecurity\AVK\AVKService.exe
(G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersServer.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\ActionUriServer.exe
(G Data Software AG) C:\Program Files (x86)\G DATA\InternetSecurity\AVKTray\AVKTray.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(G DATA Software AG) C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFirewallTray.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\GDKBFltExe32.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Teco\TecoResident.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler64.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(G Data Software AG) C:\Program Files (x86)\G DATA\InternetSecurity\DelayLoader\AutorunDelayLoader.exe
() C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.10586.168_none_76587b40265ca57e\TiWorker.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe
==================== Registry (Nicht auf der Ausnahmeliste) ===========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Run: [TecoResident] => C:\Program Files\TOSHIBA\Teco\TecoResident.exe [180016 2015-06-08] (TOSHIBA Corporation)
HKLM\...\Run: [TosWaitSrv] => C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [354144 2013-08-14] (TOSHIBA Corporation)
HKLM\...\Run: [TCrdMain] => C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe [2556768 2013-10-09] (TOSHIBA Corporation)
HKLM\...\Run: [TSSSrv] => C:\Program Files (x86)\TOSHIBA\System Setting\TSSSrv.exe [296008 2013-10-22] (TOSHIBA Corporation)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3954880 2015-10-08] (Synaptics Incorporated)
HKLM-x32\...\Run: [TSVU] => c:\Program Files\TOSHIBA\TOSHIBA Smart View Utility\TosSmartViewLauncher.exe [516976 2015-06-09] (TOSHIBA)
HKLM-x32\...\Run: [G Data ASM] => C:\Program Files (x86)\G DATA\InternetSecurity\DelayLoader\AutorunDelayLoader.exe [434296 2015-02-20] (G Data Software AG)
HKLM-x32\...\Run: [] => [X]
HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,C:\Program Files (x86)\G DATA\InternetSecurity\AVKKid\AVKCKS.exe,
HKLM\Software\Policies\Microsoft\Windows NT\SystemRestore: [DisableSR/DisableConfig] <===== ACHTUNG
HKU\S-1-5-19\...\Winlogon: [Shell] C:\WINDOWS\explorer.exe [4502352 2016-02-20] (Microsoft Corporation) <==== ACHTUNG
HKU\S-1-5-20\...\Winlogon: [Shell] C:\WINDOWS\explorer.exe [4502352 2016-02-20] (Microsoft Corporation) <==== ACHTUNG
HKU\S-1-5-21-2693976161-2409872999-703121178-1001\...\Policies\system: [NoDispAppearancePage] 0
HKU\S-1-5-21-2693976161-2409872999-703121178-1001\...\Policies\Explorer: [HideClock] 0
HKU\S-1-5-21-2693976161-2409872999-703121178-1001\...\Policies\Explorer: [HideSCANetwork] 0
HKU\S-1-5-21-2693976161-2409872999-703121178-1001\...\Policies\Explorer: [HideSCAVolume] 0
HKU\S-1-5-21-2693976161-2409872999-703121178-1001\...\Winlogon: [Shell] C:\WINDOWS\explorer.exe [4502352 2016-02-20] (Microsoft Corporation) <==== ACHTUNG
HKU\S-1-5-21-2693976161-2409872999-703121178-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\SysWOW64\GdScrSv.scr [2230392 2015-06-24] (G Data Software AG)
HKU\S-1-5-18\...\Winlogon: [Shell] C:\WINDOWS\explorer.exe [4502352 2016-02-20] (Microsoft Corporation) <==== ACHTUNG
ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Niklas\AppData\Local\MEGAsync\ShellExtX64.dll [2014-05-01] ()
ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Niklas\AppData\Local\MEGAsync\ShellExtX64.dll [2014-05-01] ()
ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Niklas\AppData\Local\MEGAsync\ShellExtX64.dll [2014-05-01] ()
ShellIconOverlayIdentifiers-x32: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Niklas\AppData\Local\MEGAsync\ShellExtX32.dll [2014-05-01] ()
ShellIconOverlayIdentifiers-x32: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Niklas\AppData\Local\MEGAsync\ShellExtX32.dll [2014-05-01] ()
ShellIconOverlayIdentifiers-x32: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Niklas\AppData\Local\MEGAsync\ShellExtX32.dll [2014-05-01] ()
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\$McRebootA5E6DEAA56$.lnk [2016-03-26]
ShortcutTarget: $McRebootA5E6DEAA56$.lnk -> (Keine Datei)
==================== Internet (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{3f38851e-a7fe-457a-8d89-2a74fb9fbc2d}: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{db6721f3-3a18-46a8-a11e-ae21dc31c91e}: [DhcpNameServer] 192.168.168.1
ManualProxies:
Internet Explorer:
==================
HKU\S-1-5-21-2693976161-2409872999-703121178-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Beschränkung <======= ACHTUNG
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-21-2693976161-2409872999-703121178-1001\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://toshiba.eu/symbaloo_c
HKU\S-1-5-21-2693976161-2409872999-703121178-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
SearchScopes: HKU\S-1-5-21-2693976161-2409872999-703121178-1001 -> {759C8C95-39A5-428C-A774-29EE12FDF0D4} URL =
SearchScopes: HKU\S-1-5-21-2693976161-2409872999-703121178-1001 -> {DCE21E82-9FD9-432D-A033-E19D93568C7A} URL = hxxp://www.google.com/search?q={searchTerms}
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\ssv.dll [2016-03-28] (Oracle Corporation)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\jp2ssv.dll [2016-03-28] (Oracle Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation)
Edge:
======
Edge HomeButtonPage: HKU\S-1-5-21-2693976161-2409872999-703121178-1001 -> hxxp://www,google.de/
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_20_0_0_306.dll [2016-02-20] ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_306.dll [2016-02-20] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2016-03-08] ()
FF Plugin-x32: @java.com/DTPlugin,version=11.77.2 -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\dtplugin\npDeployJava1.dll [2016-03-28] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.77.2 -> C:\Program Files (x86)\Java\jre1.8.0_77\bin\plugin2\npjp2.dll [2016-03-28] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-03-19] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-03-19] (Google Inc.)
Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.com/
CHR DefaultSearchURL: Default -> hxxp://yoursearching.com/web/?type=ds&ts=1458925158&z=bf03e0c9d7426feb0e4fa63gez5wbbdtfo1wcg7w5b&from=itr&uid=hgstxhts545050a7e380_140521tm85g3g800rx0sx&q={searchTerms}
CHR DefaultSearchKeyword: Default -> yoursearching
CHR Profile: C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Präsentationen) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-03-19]
CHR Extension: (Google Docs) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-03-19]
CHR Extension: (Google Drive) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-03-19]
CHR Extension: (YouTube) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-03-19]
CHR Extension: (Google Tabellen) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-03-19]
CHR Extension: (Google Docs Offline) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-19]
CHR Extension: (Chrome Web Store-Zahlungen) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-03-19]
CHR Extension: (Google Mail) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-03-19]
==================== Dienste (Nicht auf der Ausnahmeliste) ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-03-02] (Apple Inc.)
R2 AVKProxy; C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe [2790368 2016-02-18] (G Data Software AG)
R2 AVKService; C:\Program Files (x86)\G DATA\InternetSecurity\AVK\AVKService.exe [970872 2016-02-11] (G Data Software AG)
R3 AVKWCtl; C:\Program Files (x86)\G DATA\InternetSecurity\AVK\AVKWCtlx64.exe [4068592 2016-02-18] (G Data Software AG)
R2 BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth Filter Driver Package\BTDevMgr.exe [121856 2014-07-16] () [Datei ist nicht signiert]
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1433216 2016-01-08] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1773696 2016-01-08] (Microsoft Corporation)
S3 cfbackd; C:\Program Files (x86)\CleverFiles\Disk Drill\cfbackd.w32.exe [211520 2014-08-31] (CleverFiles)
R2 DptfParticipantAcpiProcessorService; C:\Windows\system32\DptfParticipantProcessorService.exe [117704 2013-09-17] (Intel Corporation)
R2 DptfPolicyCriticalService; C:\Windows\system32\DptfPolicyCriticalService.exe [150760 2013-09-17] (Intel Corporation)
R3 dts_apo_service; C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe [19960 2015-05-27] ()
R2 GDFwSvc; C:\Program Files (x86)\G DATA\InternetSecurity\Firewall\GDFwSvcx64.exe [3219872 2016-03-04] (G Data Software AG)
R3 GDScan; C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe [791160 2016-02-18] (G Data Software AG)
R2 GFNEXSrv; C:\Program Files (x86)\TOSHIBA\PasswordUtility\GFNEXSrv.exe [163168 2013-03-27] ()
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [330144 2015-09-06] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [733696 2013-07-02] (Intel(R) Corporation) [Datei ist nicht signiert]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [822232 2013-07-02] (Intel(R) Corporation)
R2 ReflectService.exe; C:\Program Files\Macrium\Reflect\ReflectService.exe [3476432 2015-10-12] (Paramount Software UK Ltd)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [303360 2015-09-11] (Realtek Semiconductor)
R2 ss_conn_service; C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [754784 2016-01-08] (DEVGURU Co., LTD.)
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [255168 2015-10-08] (Synaptics Incorporated)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [6942480 2016-03-02] (TeamViewer GmbH)
S3 TemproMonitoringService; C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [120392 2015-11-17] (Toshiba Europe GmbH)
R2 TOSTABSYSSVC; C:\Program Files (x86)\TOSHIBA\TOSHIBA System Driver\TOSTABSYSSVC.exe [34680 2014-08-02] ()
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)
===================== Treiber (Nicht auf der Ausnahmeliste) ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R3 DptfDevAcpiProc; C:\Windows\system32\DRIVERS\DptfDevAcpiProc.sys [198808 2013-09-17] (Intel Corporation)
R3 DptfManager; C:\Windows\system32\DRIVERS\DptfManager.sys [493240 2013-09-17] (Intel Corporation)
S3 esihdrv; C:\Users\Niklas\AppData\Local\Temp\esihdrv.sys [150616 2016-03-25] (ESET)
R0 GDBehave; C:\Windows\System32\drivers\GDBehave.sys [160768 2016-02-26] (G Data Software AG)
S0 GDElam; C:\Windows\System32\DRIVERS\GDElam.sys [117904 2015-01-08] (G Data Software AG)
R1 GDKBB; C:\WINDOWS\system32\drivers\GDKBB64.sys [37400 2016-02-26] (G Data Software AG)
R1 GDKBFlt; C:\WINDOWS\system32\drivers\GDKBFlt64.sys [29720 2016-02-26] (G Data Software AG)
R1 GDMnIcpt; C:\WINDOWS\system32\drivers\MiniIcpt.sys [246272 2016-02-26] (G Data Software AG)
R3 GDPkIcpt; C:\WINDOWS\system32\drivers\PktIcpt.sys [92160 2016-02-26] (G Data Software AG)
R1 gdwfpcd; C:\Windows\System32\drivers\gdwfpcd64.sys [77848 2016-03-16] (G DATA Software AG)
R1 GRD; C:\WINDOWS\system32\drivers\GRD.sys [106272 2016-02-21] (G Data Software)
R1 HookCentre; C:\WINDOWS\system32\drivers\HookCentre.sys [134656 2016-02-26] (G Data Software AG)
R0 MBI; C:\Windows\System32\drivers\MBI.sys [29464 2013-10-10] (Intel Corporation)
R2 PEGAGFN; C:\Program Files (x86)\TOSHIBA\PasswordUtility\PEGAGFN.sys [14344 2009-09-11] (PEGATRON)
S3 PSMounterEx; C:\Windows\system32\drivers\psmounterex.sys [168968 2015-10-12] (Windows (R) Win 7 DDK provider)
S3 PSVolAcc; C:\Windows\System32\Drivers\PSVolAcc.sys [12760 2014-07-21] (Paramount Software UK Ltd)
R1 RrNetCapFilterDriver; C:\Windows\system32\DRIVERS\RrNetCapFilterDriver.sys [34608 2016-02-25] (Audials AG)
R3 RtkBtFilter2; C:\Windows\system32\DRIVERS\RtkBtfilter.sys [65792 2015-07-25] (Realtek Microelectronics)
R3 RTSUER; C:\Windows\system32\Drivers\RtsUer.sys [417024 2015-11-13] (Realsil Semiconductor Corporation)
R3 RTWlanE; C:\Windows\System32\drivers\rtwlane.sys [4703488 2015-12-15] (Realtek Semiconductor Corporation )
R3 Thotkey; C:\Windows\System32\drivers\Thotkey.sys [27136 2014-03-25] (Windows (R) Win 7 DDK provider)
R3 TXEIx64; C:\Windows\System32\drivers\TXEIx64.sys [88592 2014-01-15] (Intel Corporation)
R1 VBoxNetAdp; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [127456 2016-03-04] (Oracle Corporation)
R1 VBoxNetLwf; C:\Windows\system32\DRIVERS\VBoxNetLwf.sys [205784 2016-03-04] (Oracle Corporation)
S3 VBoxUSB; C:\Windows\System32\Drivers\VBoxUSB.sys [134800 2016-03-04] (Oracle Corporation)
S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)
S3 RSUSBVSTOR; \SystemRoot\System32\Drivers\RtsUVStor.sys [X]
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
==================== Ein Monat: Erstellte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2016-03-30 15:48 - 2016-03-30 15:54 - 03102208 _____ C:\Users\Niklas\Desktop\AdwCleaner_5.107.exe
2016-03-30 08:31 - 2016-03-30 16:10 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2016-03-30 08:24 - 2016-03-30 10:57 - 00000000 ____D C:\Users\Niklas\Desktop\mbar
2016-03-30 08:24 - 2016-03-30 08:23 - 16563352 _____ (Malwarebytes Corp.) C:\Users\Niklas\Desktop\mbar-1.09.3.1001.exe
2016-03-30 08:23 - 2016-03-30 08:23 - 16563352 _____ (Malwarebytes Corp.) C:\Users\Niklas\Downloads\mbar-1.09.3.1001.exe
2016-03-29 20:56 - 2016-03-30 11:06 - 00036792 _____ C:\Users\Niklas\Desktop\Addition.txt
2016-03-29 20:54 - 2016-03-30 17:31 - 00020964 _____ C:\Users\Niklas\Desktop\FRST.txt
2016-03-29 20:54 - 2016-03-30 11:01 - 02374144 _____ (Farbar) C:\Users\Niklas\Desktop\FRST64.exe
2016-03-29 20:21 - 2016-03-30 17:30 - 00000000 ____D C:\FRST
2016-03-29 20:20 - 2016-03-29 20:21 - 02374144 _____ (Farbar) C:\Users\Niklas\Downloads\FRST64.exe
2016-03-29 17:18 - 2016-03-29 17:55 - 00014615 _____ C:\Users\Niklas\Documents\Japan.odt..odt
2016-03-28 20:36 - 2016-03-28 20:36 - 00000000 ____D C:\Users\Niklas\AppData\Roaming\AVG
2016-03-28 20:36 - 2016-03-28 20:36 - 00000000 ____D C:\Program Files (x86)\AVG
2016-03-28 20:21 - 2016-03-28 20:25 - 115845848 _____ (AVG Technologies) C:\Users\Niklas\Downloads\avg-pc-tuneup2015.exe
2016-03-28 20:06 - 2016-03-28 20:26 - 00000000 ____D C:\Users\Niklas\AppData\Local\Avg
2016-03-28 20:06 - 2016-03-28 20:25 - 00000000 ____D C:\ProgramData\Avg
2016-03-28 20:06 - 2016-03-28 20:22 - 00000000 ____D C:\Users\Niklas\AppData\Local\AvgSetupLog
2016-03-28 16:08 - 2016-03-28 16:08 - 00000000 ____D C:\Users\Niklas\AppData\Local\ElevatedDiagnostics
2016-03-28 16:04 - 2016-03-28 16:07 - 00139754 _____ C:\WINDOWS\ntbtlog.txt
2016-03-28 16:02 - 2016-03-28 16:05 - 00000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
2016-03-28 15:56 - 2016-03-28 16:08 - 00000000 ____D C:\WINDOWS\pss
2016-03-28 11:31 - 2016-03-28 11:31 - 00974733 _____ C:\Users\Niklas\Downloads\WinDlg_v1_29.zip
2016-03-28 11:31 - 2016-03-28 11:31 - 00001506 _____ C:\Users\Public\Desktop\Data Lifeguard Diagnostic for Windows.lnk
2016-03-28 11:31 - 2016-03-28 11:31 - 00000000 ____D C:\Users\Niklas\Downloads\WinDlg_v1_29
2016-03-28 11:31 - 2016-03-28 11:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Western Digital Corporation
2016-03-28 11:31 - 2016-03-28 11:31 - 00000000 ____D C:\Program Files (x86)\Western Digital Corporation
2016-03-27 09:21 - 2016-03-27 10:18 - 00000000 ____D C:\Users\Niklas\Desktop\recovered files_old(2)
2016-03-26 21:00 - 2016-03-27 12:04 - 00000000 ____D C:\Users\Niklas\Desktop\recovered files_old(1)
2016-03-26 20:38 - 2016-03-26 20:38 - 00000000 ____D C:\Users\Niklas\AppData\Roaming\Cleverfiles Software
2016-03-26 20:37 - 2016-03-27 18:51 - 00000000 ____D C:\Users\Niklas\AppData\Local\DiskDrill
2016-03-26 20:37 - 2016-03-26 20:37 - 00002623 _____ C:\Users\Public\Desktop\Disk Drill.lnk
2016-03-26 20:37 - 2016-03-26 20:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cleverfiles Disk Drill
2016-03-26 20:37 - 2016-03-26 20:37 - 00000000 ____D C:\Program Files (x86)\CleverFiles
2016-03-26 20:35 - 2016-03-26 20:35 - 16194048 _____ C:\Users\Niklas\Downloads\disk-drill-win.msi
2016-03-26 19:54 - 2016-03-26 20:34 - 00000000 ____D C:\Program Files\Recuva
2016-03-26 19:54 - 2016-03-26 19:54 - 00001710 _____ C:\Users\Public\Desktop\Recuva.lnk
2016-03-26 19:54 - 2016-03-26 19:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recuva
2016-03-26 19:53 - 2016-03-26 19:54 - 04426120 _____ (Piriform Ltd) C:\Users\Niklas\Downloads\rcsetup152.exe
2016-03-26 10:06 - 2016-03-26 10:06 - 00083456 _____ C:\Users\Niklas\Downloads\MD5_and_SHA_Checksum_Utility.exe
2016-03-26 10:02 - 2016-03-26 10:02 - 00147525 _____ C:\Users\Niklas\Downloads\RapidCRC_0.6.1_setup_NT.exe
2016-03-25 21:31 - 2016-03-25 21:31 - 00000000 ____D C:\Users\Niklas\Downloads\winmd5free
2016-03-25 21:18 - 2016-03-28 11:34 - 00000000 ____D C:\Users\Niklas\AppData\Roaming\corz
2016-03-25 21:17 - 2016-03-25 21:18 - 00000000 ____D C:\Users\Niklas\Downloads\checksum16
2016-03-25 21:14 - 2016-03-25 21:14 - 03629200 _____ C:\Users\Niklas\Downloads\checksum16.zip
2016-03-25 20:18 - 2010-03-15 12:31 - 00165376 _____ C:\WINDOWS\SysWOW64\unrar.dll
2016-03-25 20:00 - 2016-03-25 20:00 - 31661320 _____ (Free Viewer, LLC ) C:\Users\Niklas\Downloads\freeviewer-setup_2.0.1.0.exe
2016-03-25 19:28 - 2016-03-30 16:08 - 00000008 __RSH C:\Users\Niklas\ntuser.pol
2016-03-25 19:01 - 2016-03-30 16:08 - 00000008 __RSH C:\ProgramData\ntuser.pol
2016-03-25 18:33 - 2016-03-25 21:17 - 00000000 ____D C:\Program Files (x86)\PeaZip
2016-03-25 18:33 - 2016-03-25 18:34 - 00000000 ____D C:\Users\Niklas\AppData\Roaming\PeaZip
2016-03-25 17:58 - 2016-03-25 17:59 - 00000000 ____D C:\Users\Niklas\AppData\Roaming\ATViewer
2016-03-25 17:58 - 2016-03-25 17:58 - 05447260 _____ C:\Users\Niklas\Downloads\UniversalViewer.zip
2016-03-25 17:58 - 2016-03-25 17:58 - 00000000 ____D C:\Users\Niklas\Downloads\UniversalViewer
2016-03-25 17:47 - 2016-03-25 17:47 - 00000000 ____D C:\Users\Niklas\AppData\Roaming\IsolatedStorage
2016-03-25 17:46 - 2016-03-25 18:53 - 00000000 ____D C:\Spacekace
2016-03-25 13:14 - 2016-03-25 13:14 - 02314488 _____ C:\Users\Niklas\Downloads\avira_pc_cleaner_de.exe
2016-03-25 09:22 - 2016-03-25 09:22 - 02824232 _____ C:\Users\Niklas\Downloads\SecurityTaskManager_Setup.exe
2016-03-23 15:53 - 2016-03-26 09:58 - 00001827 _____ C:\Users\Public\Desktop\iTunes.lnk
2016-03-23 15:53 - 2016-03-23 15:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2016-03-23 15:52 - 2016-03-23 15:53 - 00000000 ____D C:\Program Files\iTunes
2016-03-23 15:52 - 2016-03-23 15:52 - 00000000 ____D C:\Program Files\iPod
2016-03-23 15:52 - 2016-03-23 15:52 - 00000000 ____D C:\Program Files (x86)\iTunes
2016-03-23 09:30 - 2016-03-29 16:42 - 00000000 ____D C:\Users\Niklas\Desktop\MediathekView_10
2016-03-22 19:14 - 2016-03-28 17:57 - 00000000 ____D C:\Neuer Ordner
2016-03-21 18:59 - 2016-03-21 18:59 - 00000000 ____D C:\Program Files (x86)\FFMPEG Addon
2016-03-21 18:58 - 2016-03-26 09:57 - 00001237 _____ C:\Users\Niklas\Desktop\ChrisPC Free VideoTube Downloader.lnk
2016-03-21 18:58 - 2016-03-21 18:59 - 00000000 ____D C:\Program Files (x86)\ChrisPC Free VideoTube Downloader
2016-03-21 18:58 - 2016-03-21 18:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ChrisPC Free VideoTube Downloader
2016-03-21 18:57 - 2016-03-21 18:57 - 05767928 _____ (Chris P.C. srl ) C:\Users\Niklas\Downloads\setup_chrispc_free_videotube_downloader_8_35.exe
2016-03-20 21:01 - 2016-03-20 21:01 - 00576089 _____ C:\WINDOWS\Packet.KTL
2016-03-20 21:01 - 2016-03-20 21:01 - 00288103 _____ C:\WINDOWS\SentOSPackets.KTL
2016-03-20 21:01 - 2016-03-20 21:01 - 00288088 _____ C:\WINDOWS\Control.KTL
2016-03-20 21:01 - 2016-03-20 21:01 - 00002037 _____ C:\WINDOWS\NGIControl.KTL
2016-03-20 20:52 - 2016-03-20 20:52 - 00000000 ____D C:\WINDOWS\System32\Tasks\Apple
2016-03-20 20:51 - 2016-03-20 20:51 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2016-03-19 17:54 - 2016-03-26 09:57 - 00001414 _____ C:\Users\Niklas\Desktop\Vista Mode.lnk
2016-03-19 16:40 - 2016-03-19 18:11 - 00000000 ____D C:\Users\Niklas\Documents\MEGAsync Downloads
2016-03-19 16:35 - 2016-03-26 09:58 - 00002307 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-03-19 16:34 - 2016-03-30 17:27 - 00001134 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-03-19 16:34 - 2016-03-30 16:39 - 00001138 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-03-19 16:34 - 2016-03-30 15:49 - 00003650 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2016-03-19 16:34 - 2016-03-30 15:49 - 00003426 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2016-03-19 16:34 - 2016-03-19 16:35 - 00000000 ____D C:\Users\Niklas\AppData\Local\Google
2016-03-19 16:33 - 2016-03-19 16:34 - 00000000 ____D C:\Users\Niklas\AppData\Local\Deployment
2016-03-19 16:33 - 2016-03-19 16:33 - 00000000 ____D C:\Users\Niklas\AppData\Local\Apps\2.0
2016-03-19 16:24 - 2016-03-19 16:24 - 00000000 ___RD C:\Users\Niklas\Documents\MEGA
2016-03-19 16:21 - 2016-03-26 09:57 - 00001183 _____ C:\Users\Niklas\Desktop\MEGAsync.lnk
2016-03-19 16:21 - 2016-03-19 16:32 - 00000000 ____D C:\Users\Niklas\AppData\Local\MEGAsync
2016-03-19 16:21 - 2016-03-19 16:21 - 00000000 ____D C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MEGAsync
2016-03-19 16:21 - 2016-03-19 16:21 - 00000000 ____D C:\Users\Niklas\AppData\Local\Mega Limited
2016-03-18 20:55 - 2016-03-18 20:55 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_WinUSB_01007.Wdf
2016-03-18 20:01 - 2016-03-18 20:01 - 00000000 ____D C:\Users\Niklas\.android
2016-03-18 19:53 - 2016-03-18 20:01 - 00000000 ____D C:\Users\Niklas\cminstaller
2016-03-16 18:51 - 2016-03-16 18:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\G DATA INTERNET SECURITY
2016-03-15 18:47 - 2016-03-26 09:57 - 00001402 _____ C:\Users\Niklas\Desktop\XP Mode.lnk
2016-03-14 19:52 - 2016-03-26 09:58 - 00001154 _____ C:\Users\Public\Desktop\Oracle VM VirtualBox.lnk
2016-03-14 19:52 - 2016-03-14 19:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox
2016-03-14 19:52 - 2016-03-14 19:52 - 00000000 ____D C:\Program Files\Oracle
2016-03-14 19:52 - 2016-03-04 18:29 - 00982504 _____ (Oracle Corporation) C:\WINDOWS\system32\Drivers\VBoxDrv.sys
2016-03-14 19:52 - 2016-03-04 18:29 - 00148808 _____ (Oracle Corporation) C:\WINDOWS\system32\Drivers\VBoxUSBMon.sys
2016-03-14 19:45 - 2016-03-15 21:01 - 456504320 _____ C:\Users\Niklas\Desktop\VirtualXPVHD.vhd
2016-03-14 19:44 - 2016-03-14 19:44 - 00000000 ____D C:\Users\Niklas\AppData\Roaming\WinRAR
2016-03-14 19:33 - 2016-03-14 19:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2016-03-14 18:01 - 2016-03-28 22:14 - 00000000 ____D C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VMLite Workstation
2016-03-14 17:58 - 2016-03-14 19:30 - 00000000 ____D C:\Users\Niklas\VMLites
2016-03-14 17:58 - 2010-08-18 13:30 - 00135272 _____ (VMLite, Inc.) C:\WINDOWS\system32\Drivers\vmliteusbmon.sys
2016-03-14 17:57 - 2016-03-14 17:57 - 00000000 ____D C:\Program Files\VMLite
2016-03-13 16:28 - 2016-03-13 16:28 - 00000000 ____D C:\Users\Niklas\AppData\Local\G DATA
2016-03-13 14:40 - 2016-03-28 18:08 - 00000000 ____D C:\Users\Niklas\.VirtualBox
2016-03-13 14:40 - 2016-03-19 17:53 - 00000000 ____D C:\Users\Niklas\VirtualBox VMs
2016-03-12 19:35 - 2016-03-26 09:57 - 00001269 _____ C:\Users\Niklas\Desktop\onlineTV 11.lnk
2016-03-12 19:35 - 2016-03-12 19:35 - 00000000 ____D C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\concept design
2016-03-12 19:35 - 2016-03-12 19:35 - 00000000 ____D C:\Users\Niklas\AppData\Roaming\concept design
2016-03-12 19:35 - 2016-03-12 19:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\concept design
2016-03-12 19:35 - 2016-03-12 19:35 - 00000000 ____D C:\Program Files (x86)\concept design
2016-03-12 18:56 - 2016-03-12 18:57 - 00000000 ____D C:\Users\Niklas\AppData\Roaming\Apple Computer
2016-03-12 18:56 - 2016-03-12 18:56 - 00000000 ____D C:\Users\Niklas\AppData\Local\Apple Computer
2016-03-12 18:56 - 2016-03-12 18:56 - 00000000 ____D C:\ProgramData\Apple Computer
2016-03-12 18:55 - 2016-03-26 09:58 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2016-03-12 18:55 - 2016-03-23 15:52 - 00000000 ____D C:\Program Files\Common Files\Apple
2016-03-12 18:55 - 2016-03-12 18:55 - 00000000 ____D C:\Users\Niklas\AppData\Local\Apple
2016-03-12 18:55 - 2016-03-12 18:55 - 00000000 ____D C:\Program Files\Bonjour
2016-03-12 18:55 - 2016-03-12 18:55 - 00000000 ____D C:\Program Files (x86)\Bonjour
2016-03-12 18:54 - 2016-03-12 18:55 - 00000000 ____D C:\ProgramData\Apple
2016-03-12 18:50 - 2016-03-26 19:44 - 00000694 _____ C:\Users\Niklas\Desktop\Total Commander 64 bit.lnk
2016-03-12 18:50 - 2016-03-12 18:50 - 00000000 ____D C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
2016-03-12 18:10 - 2016-03-26 09:57 - 00001491 _____ C:\Users\Niklas\Desktop\CopyTrans Control Center.lnk
2016-03-12 18:10 - 2016-03-12 18:10 - 00000000 ____D C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CopyTrans Control Center
2016-03-12 18:09 - 2016-03-12 18:13 - 00000000 ____D C:\Users\Niklas\AppData\Roaming\WindSolutions
2016-03-12 18:09 - 2016-03-12 18:13 - 00000000 ____D C:\ProgramData\WindSolutions
2016-03-12 18:01 - 2016-03-01 07:31 - 00848168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-03-12 18:01 - 2016-03-01 07:22 - 00709688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2016-03-12 18:01 - 2016-02-24 11:52 - 01997328 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-03-12 18:01 - 2016-02-24 11:51 - 07474528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-03-12 18:01 - 2016-02-24 11:48 - 00713568 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-03-12 18:01 - 2016-02-24 11:34 - 01613664 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2016-03-12 18:01 - 2016-02-24 11:28 - 03449168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
2016-03-12 18:01 - 2016-02-24 11:15 - 01557768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-03-12 18:01 - 2016-02-24 10:58 - 00794888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
2016-03-12 18:01 - 2016-02-24 10:51 - 01322248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-03-12 18:01 - 2016-02-24 10:50 - 00808800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2016-03-12 18:01 - 2016-02-24 10:46 - 06607080 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-03-12 18:01 - 2016-02-24 10:43 - 00625000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2016-03-12 18:01 - 2016-02-24 10:39 - 00358752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-03-12 18:01 - 2016-02-24 10:19 - 00670928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll
2016-03-12 18:01 - 2016-02-24 10:14 - 00216416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-12 18:01 - 2016-02-24 10:11 - 01997152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-03-12 18:01 - 2016-02-24 10:11 - 00957608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2016-03-12 18:01 - 2016-02-24 10:11 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2016-03-12 18:01 - 2016-02-24 10:11 - 00652392 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2016-03-12 18:01 - 2016-02-24 10:11 - 00394080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-03-12 18:01 - 2016-02-24 10:10 - 00630632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2016-03-12 18:01 - 2016-02-24 10:10 - 00576864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-03-12 18:01 - 2016-02-24 10:09 - 00640472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2016-03-12 18:01 - 2016-02-24 10:06 - 05242496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2016-03-12 18:01 - 2016-02-24 09:59 - 00294752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2016-03-12 18:01 - 2016-02-24 09:38 - 00187744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2016-03-12 18:01 - 2016-02-24 09:35 - 00540752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2016-03-12 18:01 - 2016-02-24 09:35 - 00523752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2016-03-12 18:01 - 2016-02-24 09:35 - 00220064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqmapi.dll
2016-03-12 18:01 - 2016-02-24 09:33 - 00538736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2016-03-12 18:01 - 2016-02-24 09:20 - 00195072 _____ (Microsoft Corporation) C:\WINDOWS\system32\VCardParser.dll
2016-03-12 18:01 - 2016-02-24 09:20 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll
2016-03-12 18:01 - 2016-02-24 09:15 - 00365568 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2016-03-12 18:01 - 2016-02-24 09:02 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-12 18:01 - 2016-02-24 09:01 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll
2016-03-12 18:01 - 2016-02-24 08:59 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-12 18:01 - 2016-02-24 08:55 - 00790528 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll
2016-03-12 18:01 - 2016-02-24 08:49 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll
2016-03-12 18:01 - 2016-02-24 08:44 - 01713664 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll
2016-03-12 18:01 - 2016-02-24 08:44 - 00700416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll
2016-03-12 18:01 - 2016-02-24 08:43 - 00957952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2016-03-12 18:01 - 2016-02-24 08:43 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2016-03-12 18:01 - 2016-02-24 08:41 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2016-03-12 18:01 - 2016-02-24 08:41 - 00436736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-12 18:01 - 2016-02-24 08:40 - 01224704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2016-03-12 18:01 - 2016-02-24 08:39 - 01390592 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-03-12 18:01 - 2016-02-24 08:36 - 01847808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2016-03-12 18:01 - 2016-02-24 08:34 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2016-03-12 18:01 - 2016-02-24 08:34 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2016-03-12 18:01 - 2016-02-24 08:32 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentActivation.dll
2016-03-12 18:01 - 2016-02-24 08:28 - 00870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2016-03-12 18:01 - 2016-02-24 08:21 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
2016-03-12 18:01 - 2016-02-24 08:18 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PackageStateRoaming.dll
2016-03-12 18:01 - 2016-02-24 08:17 - 00369664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2016-03-12 18:01 - 2016-02-24 08:13 - 00540160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll
2016-03-12 18:01 - 2016-02-24 08:11 - 03593216 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-03-12 18:01 - 2016-02-24 08:09 - 01443328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRHInproc.dll
2016-03-12 18:01 - 2016-02-24 08:09 - 00793600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2016-03-12 18:01 - 2016-02-24 08:09 - 00552960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll
2016-03-12 18:01 - 2016-02-24 08:09 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll
2016-03-12 18:01 - 2016-02-24 08:07 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2016-03-12 18:01 - 2016-02-24 08:07 - 00890368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2016-03-12 18:01 - 2016-02-24 08:07 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2016-03-12 18:01 - 2016-02-24 08:04 - 01497088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
2016-03-12 18:01 - 2016-02-24 08:03 - 00769536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll
2016-03-12 18:01 - 2016-02-24 08:01 - 01831936 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-12 18:01 - 2016-02-24 08:00 - 02273792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-03-12 18:01 - 2016-02-24 08:00 - 01098752 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2016-03-12 18:01 - 2016-02-24 07:57 - 02158592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-12 18:01 - 2016-02-24 07:55 - 01996288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-12 18:01 - 2016-02-24 07:34 - 01707520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll
2016-03-12 18:01 - 2016-02-24 07:20 - 22376960 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-03-12 18:01 - 2016-02-24 07:18 - 18677760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-03-12 18:01 - 2016-02-24 07:12 - 19339776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-03-12 18:01 - 2016-02-24 07:12 - 05321728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2016-03-12 18:01 - 2016-02-24 07:10 - 24600576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-03-12 18:01 - 2016-02-24 07:09 - 06972416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-12 18:01 - 2016-02-24 07:05 - 12586496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2016-03-12 18:01 - 2016-02-24 07:03 - 14252544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-03-12 18:01 - 2016-02-24 06:59 - 05661696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-03-12 18:01 - 2016-02-24 06:55 - 07835648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-03-12 18:00 - 2016-02-24 11:47 - 01173344 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-03-12 18:00 - 2016-02-24 11:40 - 00513888 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-03-12 18:00 - 2016-02-24 10:54 - 00127840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS
2016-03-12 18:00 - 2016-02-24 10:39 - 00141560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthHost.exe
2016-03-12 18:00 - 2016-02-24 10:11 - 00258280 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqmapi.dll
2016-03-12 18:00 - 2016-02-24 10:09 - 00147808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2016-03-12 18:00 - 2016-02-24 09:39 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-12 18:00 - 2016-02-24 09:39 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-12 18:00 - 2016-02-24 09:38 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-12 18:00 - 2016-02-24 09:37 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-12 18:00 - 2016-02-24 09:36 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-12 18:00 - 2016-02-24 09:35 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2016-03-12 18:00 - 2016-02-24 09:33 - 00141664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2016-03-12 18:00 - 2016-02-24 09:31 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2016-03-12 18:00 - 2016-02-24 09:30 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll
2016-03-12 18:00 - 2016-02-24 09:28 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\POSyncServices.dll
2016-03-12 18:00 - 2016-02-24 09:23 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys
2016-03-12 18:00 - 2016-02-24 09:23 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll
2016-03-12 18:00 - 2016-02-24 09:23 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-12 18:00 - 2016-02-24 09:22 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-12 18:00 - 2016-02-24 09:20 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2016-03-12 18:00 - 2016-02-24 09:19 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2016-03-12 18:00 - 2016-02-24 09:19 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\seclogon.dll
2016-03-12 18:00 - 2016-02-24 09:14 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExSMime.dll
2016-03-12 18:00 - 2016-02-24 09:13 - 00121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-12 18:00 - 2016-02-24 09:12 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\cemapi.dll
2016-03-12 18:00 - 2016-02-24 09:12 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-12 18:00 - 2016-02-24 09:10 - 00093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpninprc.dll
2016-03-12 18:00 - 2016-02-24 09:09 - 00258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-12 18:00 - 2016-02-24 09:09 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSip.dll
2016-03-12 18:00 - 2016-02-24 09:07 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-12 18:00 - 2016-02-24 09:05 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2016-03-12 18:00 - 2016-02-24 09:03 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2016-03-12 18:00 - 2016-02-24 09:01 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-03-12 18:00 - 2016-02-24 09:01 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
2016-03-12 18:00 - 2016-02-24 09:00 - 00214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-12 18:00 - 2016-02-24 08:59 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2016-03-12 18:00 - 2016-02-24 08:59 - 00318976 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2016-03-12 18:00 - 2016-02-24 08:58 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\scapi.dll
2016-03-12 18:00 - 2016-02-24 08:55 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-12 18:00 - 2016-02-24 08:55 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExtrasXmlParser.dll
2016-03-12 18:00 - 2016-02-24 08:54 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2016-03-12 18:00 - 2016-02-24 08:54 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll
2016-03-12 18:00 - 2016-02-24 08:54 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2016-03-12 18:00 - 2016-02-24 08:54 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTypeHelperUtil.dll
2016-03-12 18:00 - 2016-02-24 08:53 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
2016-03-12 18:00 - 2016-02-24 08:53 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataLanguageUtil.dll
2016-03-12 18:00 - 2016-02-24 08:52 - 00451584 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2016-03-12 18:00 - 2016-02-24 08:52 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PimIndexMaintenanceClient.dll
2016-03-12 18:00 - 2016-02-24 08:51 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2016-03-12 18:00 - 2016-02-24 08:47 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2016-03-12 18:00 - 2016-02-24 08:46 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfapigp.dll
2016-03-12 18:00 - 2016-02-24 08:44 - 00915456 _____ (Microsoft Corporation) C:\WINDOWS\system32\configurationclient.dll
2016-03-12 18:00 - 2016-02-24 08:44 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\POSyncServices.dll
2016-03-12 18:00 - 2016-02-24 08:42 - 00954368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2016-03-12 18:00 - 2016-02-24 08:42 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
2016-03-12 18:00 - 2016-02-24 08:40 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\asycfilt.dll
2016-03-12 18:00 - 2016-02-24 08:40 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataPlatformHelperUtil.dll
2016-03-12 18:00 - 2016-02-24 08:39 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll
2016-03-12 18:00 - 2016-02-24 08:38 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VCardParser.dll
2016-03-12 18:00 - 2016-02-24 08:32 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExSMime.dll
2016-03-12 18:00 - 2016-02-24 08:31 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cemapi.dll
2016-03-12 18:00 - 2016-02-24 08:31 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneCallHistoryApis.dll
2016-03-12 18:00 - 2016-02-24 08:28 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll
2016-03-12 18:00 - 2016-02-24 08:28 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxSip.dll
2016-03-12 18:00 - 2016-02-24 08:25 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\sharemediacpl.dll
2016-03-12 18:00 - 2016-02-24 08:23 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CallHistoryClient.dll
2016-03-12 18:00 - 2016-02-24 08:22 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll
2016-03-12 18:00 - 2016-02-24 08:21 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll
2016-03-12 18:00 - 2016-02-24 08:18 - 01490432 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2016-03-12 18:00 - 2016-02-24 08:18 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll
2016-03-12 18:00 - 2016-02-24 08:16 - 00394752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2016-03-12 18:00 - 2016-02-24 07:43 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll
2016-03-12 18:00 - 2016-02-24 07:22 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwbase.dll
2016-03-12 17:37 - 2016-03-26 09:58 - 00000992 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audials 2016.lnk
2016-03-12 17:37 - 2016-03-26 09:58 - 00000974 _____ C:\Users\Public\Desktop\Audials 2016.lnk
2016-03-11 18:01 - 2016-03-12 14:35 - 00000000 ____D C:\Program Files (x86)\AdwCleaner
2016-03-09 20:30 - 2016-03-09 20:30 - 00000000 ____D C:\Users\Niklas\AppData\Local\GHISLER
2016-03-09 20:01 - 2016-03-09 20:01 - 00000000 ____D C:\Program Files (x86)\EaseUS
2016-03-09 19:56 - 2016-03-12 18:50 - 00000000 ____D C:\Users\Niklas\AppData\Roaming\GHISLER
2016-03-09 19:56 - 2016-03-12 18:50 - 00000000 ____D C:\totalcmd
2016-03-09 17:00 - 2016-03-09 17:00 - 00000000 ____D C:\Users\Niklas\AppData\Roaming\Ashampoo
2016-03-09 16:59 - 2016-03-09 16:59 - 00000000 ____D C:\Program Files (x86)\Ashampoo
2016-03-08 21:38 - 2016-03-21 18:13 - 00024576 ___SH C:\Users\Niklas\Documents\Thumbs.db
2016-03-08 21:10 - 2016-03-08 21:37 - 06507689 _____ C:\Users\Niklas\Documents\Space Shuttle fertige Arbeit (schriftlich).odt
2016-03-08 19:13 - 2016-03-07 14:43 - 00002174 _____ C:\Users\Niklas\Documents\Abkürzungsverzeichnis.txt
2016-03-08 19:12 - 2013-07-07 15:50 - 03878400 _____ C:\Cube.exe
2016-03-08 15:36 - 2016-03-26 09:58 - 00001058 _____ C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Optionale Features.lnk
2016-03-05 21:41 - 2016-03-05 21:41 - 00000000 ____D C:\Users\Niklas\AppData\Local\CrashRpt
2016-03-05 21:38 - 2016-03-12 17:36 - 00000000 ____D C:\ProgramData\RapidSolution
2016-03-05 21:38 - 2016-03-05 21:38 - 00000000 ____D C:\Program Files (x86)\Audials
2016-03-05 21:35 - 2016-03-05 21:35 - 00000000 ____D C:\Users\Niklas\AppData\Local\RapidSolution
2016-03-05 13:17 - 2016-03-05 13:17 - 00000017 _____ C:\Users\Niklas\AppData\Local\resmon.resmoncfg
2016-03-05 11:59 - 2016-03-05 20:57 - 00000000 ____D C:\Users\Niklas\AppData\Local\Microsoft Games
2016-03-05 11:58 - 2016-03-05 11:59 - 00000000 ____D C:\Program Files\Microsoft Games
2016-03-05 10:48 - 2016-03-04 18:53 - 06508610 _____ C:\Users\Niklas\Documents\Gliederung Space Shuttle mit Bildern.odt
2016-03-04 18:29 - 2016-03-04 18:29 - 00205784 _____ (Oracle Corporation) C:\WINDOWS\system32\Drivers\VBoxNetLwf.sys
2016-03-04 18:29 - 2016-03-04 18:29 - 00134800 _____ (Oracle Corporation) C:\WINDOWS\system32\Drivers\VBoxUSB.sys
2016-03-04 18:29 - 2016-03-04 18:29 - 00127456 _____ (Oracle Corporation) C:\WINDOWS\system32\Drivers\VBoxNetAdp6.sys
2016-03-03 20:10 - 2016-03-21 18:20 - 00000000 ____D C:\Users\Niklas\Documents\Bewerbung
2016-03-03 20:10 - 2016-01-24 17:34 - 00033867 _____ C:\Users\Niklas\Documents\Space Shuttle schriftl.Arbeit.odt
2016-03-03 20:10 - 2016-01-16 10:35 - 00115670 _____ C:\Users\Niklas\Documents\Space Shuttle.odt
2016-03-03 18:20 - 2016-03-30 16:17 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-03-02 21:19 - 2016-02-23 12:32 - 08705672 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-02 21:19 - 2016-02-23 12:21 - 22564328 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-03-02 21:19 - 2016-02-23 11:38 - 06952088 _____ (Microsoft Corp.) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-02 21:19 - 2016-02-23 11:27 - 21124344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-03-02 21:19 - 2016-02-23 08:52 - 11545600 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-03-02 21:18 - 2016-02-23 13:27 - 02654872 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-02 21:18 - 2016-02-23 13:25 - 01818696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-03-02 21:18 - 2016-02-23 12:34 - 01859960 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2016-03-02 21:18 - 2016-02-23 12:34 - 01542816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2016-03-02 21:18 - 2016-02-23 12:33 - 00696160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-02 21:18 - 2016-02-23 12:32 - 02544264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2016-03-02 21:18 - 2016-02-23 12:32 - 01152328 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-02 21:18 - 2016-02-23 12:32 - 01062480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-02 21:18 - 2016-02-23 12:31 - 00819648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-02 21:18 - 2016-02-23 12:31 - 00536256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2016-03-02 21:18 - 2016-02-23 12:25 - 03671888 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-03-02 21:18 - 2016-02-23 11:45 - 02773096 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2016-03-02 21:18 - 2016-02-23 11:38 - 02180136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2016-03-02 21:18 - 2016-02-23 11:38 - 00980352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2016-03-02 21:18 - 2016-02-23 11:37 - 00713824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2016-03-02 21:18 - 2016-02-23 11:30 - 02919320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-03-02 21:18 - 2016-02-23 11:20 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblGameSave.dll
2016-03-02 21:18 - 2016-02-23 11:17 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2016-03-02 21:18 - 2016-02-23 10:56 - 02186864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2016-03-02 21:18 - 2016-02-23 10:19 - 00948736 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2016-03-02 21:18 - 2016-02-23 10:14 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-02 21:18 - 2016-02-23 10:12 - 00852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-02 21:18 - 2016-02-23 10:10 - 00997376 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2016-03-02 21:18 - 2016-02-23 10:09 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-03-02 21:18 - 2016-02-23 10:09 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-03-02 21:18 - 2016-02-23 10:06 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-03-02 21:18 - 2016-02-23 10:02 - 01318912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-02 21:18 - 2016-02-23 10:00 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-03-02 21:18 - 2016-02-23 09:31 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
2016-03-02 21:18 - 2016-02-23 09:30 - 01731584 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-03-02 21:18 - 2016-02-23 09:30 - 00646656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2016-03-02 21:18 - 2016-02-23 09:24 - 04827136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-02 21:18 - 2016-02-23 09:24 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-03-02 21:18 - 2016-02-23 09:17 - 02635264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-02 21:18 - 2016-02-23 09:11 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-02 21:18 - 2016-02-23 08:59 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-03-02 21:18 - 2016-02-23 08:56 - 04412928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2016-03-02 21:18 - 2016-02-23 08:55 - 04894208 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-03-02 21:18 - 2016-02-23 08:55 - 02229760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-03-02 21:18 - 2016-02-23 08:53 - 01799168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2016-03-02 21:18 - 2016-02-23 08:50 - 09919488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-03-02 21:18 - 2016-02-23 08:42 - 03425792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-03-02 21:18 - 2016-02-23 08:41 - 02912256 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2016-03-02 21:18 - 2016-02-23 08:39 - 13382656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-03-02 21:18 - 2016-02-23 08:39 - 02581504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-02 21:18 - 2016-02-23 08:36 - 12125696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-03-02 21:18 - 2016-02-23 08:36 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-03-02 21:18 - 2016-02-23 08:35 - 07533568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2016-03-02 21:18 - 2016-02-23 08:33 - 02604032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2016-03-02 21:18 - 2016-02-23 08:32 - 02793472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2016-03-02 21:18 - 2016-02-23 08:30 - 02061312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-03-02 21:18 - 2016-02-23 08:28 - 06740992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2016-03-02 21:18 - 2016-02-09 05:24 - 00641536 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-03-02 21:18 - 2016-02-09 05:07 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-03-02 21:18 - 2016-02-09 05:04 - 01946624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-03-02 21:17 - 2016-02-23 13:29 - 01030416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-03-02 21:17 - 2016-02-23 13:29 - 00874968 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-03-02 21:17 - 2016-02-23 13:27 - 01317640 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-03-02 21:17 - 2016-02-23 13:27 - 01141504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-03-02 21:17 - 2016-02-23 13:25 - 02152288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2016-03-02 21:17 - 2016-02-23 13:25 - 00563552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2016-03-02 21:17 - 2016-02-23 13:15 - 00779384 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2016-03-02 21:17 - 2016-02-23 13:08 - 00989536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2016-03-02 21:17 - 2016-02-23 12:33 - 00389992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2016-03-02 21:17 - 2016-02-23 12:32 - 00498448 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-02 21:17 - 2016-02-23 12:32 - 00369912 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2016-03-02 21:17 - 2016-02-23 12:31 - 01017032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-02 21:17 - 2016-02-23 12:31 - 00476728 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2016-03-02 21:17 - 2016-02-23 12:31 - 00408120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-02 21:17 - 2016-02-23 12:22 - 00572272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2016-03-02 21:17 - 2016-02-23 12:17 - 00146272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2016-03-02 21:17 - 2016-02-23 11:40 - 00430944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2016-03-02 21:17 - 2016-02-23 11:39 - 00502112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2016-03-02 21:17 - 2016-02-23 11:38 - 00895080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2016-03-02 21:17 - 2016-02-23 11:38 - 00882720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2016-03-02 21:17 - 2016-02-23 11:38 - 00450912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2016-03-02 21:17 - 2016-02-23 11:38 - 00420928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2016-03-02 21:17 - 2016-02-23 11:32 - 00791744 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2016-03-02 21:17 - 2016-02-23 11:27 - 00376536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-02 21:17 - 2016-02-23 11:25 - 00534368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2016-03-02 21:17 - 2016-02-23 11:20 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys
2016-03-02 21:17 - 2016-02-23 11:19 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys
2016-03-02 21:17 - 2016-02-23 11:12 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\provpackageapidll.dll
2016-03-02 21:17 - 2016-02-23 11:10 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-02 21:17 - 2016-02-23 11:07 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-02 21:17 - 2016-02-23 11:07 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
2016-03-02 21:17 - 2016-02-23 11:06 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\flvprophandler.dll
2016-03-02 21:17 - 2016-02-23 11:01 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasl2tp.sys
2016-03-02 21:17 - 2016-02-23 11:00 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-02 21:17 - 2016-02-23 11:00 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2016-03-02 21:17 - 2016-02-23 10:58 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll
2016-03-02 21:17 - 2016-02-23 10:58 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2016-03-02 21:17 - 2016-02-23 10:58 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\irmon.dll
2016-03-02 21:17 - 2016-02-23 10:57 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-03-02 21:17 - 2016-02-23 10:55 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys
2016-03-02 21:17 - 2016-02-23 10:53 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll
2016-03-02 21:17 - 2016-02-23 10:53 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngckeyenum.dll
2016-03-02 21:17 - 2016-02-23 10:52 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-02 21:17 - 2016-02-23 10:51 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rfcomm.sys
2016-03-02 21:17 - 2016-02-23 10:50 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2016-03-02 21:17 - 2016-02-23 10:48 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-03-02 21:17 - 2016-02-23 10:48 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-02 21:17 - 2016-02-23 10:40 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SMSRouter.dll
2016-03-02 21:17 - 2016-02-23 10:39 - 00178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2016-03-02 21:17 - 2016-02-23 10:38 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-02 21:17 - 2016-02-23 10:38 - 00287712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll
2016-03-02 21:17 - 2016-02-23 10:37 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-03-02 21:17 - 2016-02-23 10:37 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2016-03-02 21:17 - 2016-02-23 10:37 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-02 21:17 - 2016-02-23 10:36 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-02 21:17 - 2016-02-23 10:34 - 00305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-02 21:17 - 2016-02-23 10:34 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-02 21:17 - 2016-02-23 10:33 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2016-03-02 21:17 - 2016-02-23 10:32 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-03-02 21:17 - 2016-02-23 10:31 - 00463360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2016-03-02 21:17 - 2016-02-23 10:29 - 00591872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-02 21:17 - 2016-02-23 10:28 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-02 21:17 - 2016-02-23 10:27 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll
2016-03-02 21:17 - 2016-02-23 10:26 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2016-03-02 21:17 - 2016-02-23 10:23 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2016-03-02 21:17 - 2016-02-23 10:22 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-02 21:17 - 2016-02-23 10:20 - 00847360 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2016-03-02 21:17 - 2016-02-23 10:20 - 00606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2016-03-02 21:17 - 2016-02-23 10:20 - 00493568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-02 21:17 - 2016-02-23 10:20 - 00330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 21:17 - 2016-02-23 10:19 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2016-03-02 21:17 - 2016-02-23 10:18 - 00557056 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-02 21:17 - 2016-02-23 10:14 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2016-03-02 21:17 - 2016-02-23 10:11 - 00587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2016-03-02 21:17 - 2016-02-23 10:10 - 00474624 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2016-03-02 21:17 - 2016-02-23 10:09 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-03-02 21:17 - 2016-02-23 10:06 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll
2016-03-02 21:17 - 2016-02-23 10:06 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2016-03-02 21:17 - 2016-02-23 10:05 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2016-03-02 21:17 - 2016-02-23 10:04 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-02 21:17 - 2016-02-23 10:04 - 00673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2016-03-02 21:17 - 2016-02-23 10:04 - 00382464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2016-03-02 21:17 - 2016-02-23 10:02 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2016-03-02 21:17 - 2016-02-23 10:02 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2016-03-02 21:17 - 2016-02-23 09:58 - 00345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2016-03-02 21:17 - 2016-02-23 09:58 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-02 21:17 - 2016-02-23 09:58 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-02 21:17 - 2016-02-23 09:58 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-02 21:17 - 2016-02-23 09:57 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TimeBrokerClient.dll
2016-03-02 21:17 - 2016-02-23 09:52 - 00456704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2016-03-02 21:17 - 2016-02-23 09:50 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacDecoder.dll
2016-03-02 21:17 - 2016-02-23 09:49 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
2016-03-02 21:17 - 2016-02-23 09:48 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2016-03-02 21:17 - 2016-02-23 09:47 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WiFiDisplay.dll
2016-03-02 21:17 - 2016-02-23 09:38 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll
2016-03-02 21:17 - 2016-02-23 09:37 - 01118208 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2016-03-02 21:17 - 2016-02-23 09:37 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2016-03-02 21:17 - 2016-02-23 09:36 - 00713728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2016-03-02 21:17 - 2016-02-23 09:36 - 00379392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll
2016-03-02 21:17 - 2016-02-23 09:36 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-02 21:17 - 2016-02-23 09:35 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2016-03-02 21:17 - 2016-02-23 09:29 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2016-03-02 21:17 - 2016-02-23 09:28 - 00555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2016-03-02 21:17 - 2016-02-23 09:28 - 00256512 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll
2016-03-02 21:17 - 2016-02-23 09:24 - 01105920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2016-03-02 21:17 - 2016-02-23 09:24 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2016-03-02 21:17 - 2016-02-23 09:22 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2016-03-02 21:17 - 2016-02-23 09:21 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2016-03-02 21:17 - 2016-02-23 09:21 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2016-03-02 21:17 - 2016-02-23 09:20 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputLocaleManager.dll
2016-03-02 21:17 - 2016-02-23 09:14 - 00990720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-02 21:17 - 2016-02-23 09:05 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2016-03-02 21:17 - 2016-02-23 09:01 - 02295808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2016-03-02 21:17 - 2016-02-23 08:58 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncController.dll
2016-03-02 21:17 - 2016-02-23 08:51 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2016-03-02 21:17 - 2016-02-09 06:28 - 00277856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-03-02 21:17 - 2016-02-09 06:13 - 00185184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2016-03-02 21:17 - 2016-02-09 05:18 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
2016-03-02 21:17 - 2016-02-09 05:18 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll
2016-03-02 21:17 - 2016-02-09 05:07 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2016-02-29 20:10 - 2016-03-30 15:55 - 00000000 ____D C:\AdwCleaner
2016-02-29 20:09 - 2016-02-29 20:10 - 01518592 _____ C:\Users\Niklas\Desktop\adwcleaner_5.037.exe
==================== Ein Monat: Geänderte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2016-03-30 17:25 - 2016-02-20 00:41 - 00000000 __SHD C:\Users\Niklas\IntelGraphicsProfiles
2016-03-30 17:24 - 2016-02-20 15:21 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-03-30 17:23 - 2016-02-20 00:48 - 00000000 ___RD C:\Users\Niklas\OneDrive
2016-03-30 17:23 - 2015-10-30 08:28 - 00786432 ___SH C:\WINDOWS\system32\config\BBI
2016-03-30 16:28 - 2016-02-20 01:02 - 00000000 ____D C:\Users\Niklas\AppData\Roaming\Skype
2016-03-30 16:08 - 2016-02-20 15:09 - 00000000 ____D C:\Users\Niklas
2016-03-30 15:56 - 2015-10-30 08:28 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2016-03-30 15:49 - 2016-02-26 18:59 - 00002690 _____ C:\WINDOWS\System32\Tasks\HPCustParticipation HP ENVY 4500 series
2016-03-30 15:45 - 2016-02-20 01:30 - 00004168 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{A3A0598E-E778-4478-B69F-AD7ADD7C1979}
2016-03-30 10:57 - 2015-10-30 09:11 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-03-30 09:43 - 2016-02-20 18:43 - 00109272 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2016-03-30 09:42 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-03-30 08:39 - 2016-02-20 00:41 - 00000000 ____D C:\Users\Niklas\AppData\Local\VirtualStore
2016-03-29 19:34 - 2016-02-20 15:25 - 01799166 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-29 19:34 - 2015-10-30 20:35 - 00778314 _____ C:\WINDOWS\system32\perfh007.dat
2016-03-29 19:34 - 2015-10-30 20:35 - 00156394 _____ C:\WINDOWS\system32\perfc007.dat
2016-03-29 19:34 - 2015-10-30 09:21 - 00000000 ____D C:\WINDOWS\INF
2016-03-28 22:16 - 2016-02-27 20:13 - 00000000 ____D C:\Users\Niklas\AppData\Roaming\HpUpdate
2016-03-28 22:16 - 2014-10-19 06:25 - 00000000 ____D C:\ProgramData\Temp
2016-03-28 22:15 - 2015-10-30 08:28 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2016-03-28 14:42 - 2016-02-20 18:47 - 00000000 ____D C:\Users\Niklas\.oracle_jre_usage
2016-03-28 14:42 - 2016-02-20 18:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-03-28 14:42 - 2016-02-20 18:46 - 00000000 ____D C:\ProgramData\Oracle
2016-03-28 14:42 - 2016-02-20 18:46 - 00000000 ____D C:\Program Files (x86)\Java
2016-03-28 14:41 - 2016-02-20 21:03 - 00000000 ____D C:\Program Files (x86)\TeamViewer
2016-03-28 14:41 - 2016-02-20 18:47 - 00097856 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2016-03-28 10:48 - 2016-02-21 13:13 - 00000000 ____D C:\Users\Niklas\.mediathek3
2016-03-27 17:48 - 2016-02-21 20:22 - 00000000 ___RD C:\Program Files (x86)\Skype
2016-03-27 17:47 - 2014-10-19 06:21 - 00000000 ____D C:\ProgramData\Skype
2016-03-26 23:03 - 2016-02-20 18:51 - 00000946 _____ C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job
2016-03-26 10:54 - 2016-02-20 18:51 - 00004084 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier
2016-03-26 10:43 - 2015-10-30 09:24 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2016-03-26 09:58 - 2016-02-26 18:59 - 00002258 _____ C:\Users\Public\Desktop\HP ENVY 4500 series.lnk
2016-03-26 09:58 - 2016-02-26 18:59 - 00002025 _____ C:\Users\Public\Desktop\HP Photo Creations.lnk
2016-03-26 09:58 - 2016-02-26 18:59 - 00001220 _____ C:\Users\Public\Desktop\Shop für Zubehör - HP ENVY 4500 series.lnk
2016-03-26 09:58 - 2016-02-22 20:46 - 00002230 _____ C:\Users\Public\Desktop\Toshiba Tempro.lnk
2016-03-26 09:58 - 2016-02-21 20:22 - 00002636 _____ C:\Users\Public\Desktop\Skype.lnk
2016-03-26 09:58 - 2016-02-21 14:35 - 00002803 _____ C:\Users\Public\Desktop\Windows Tweaker 5.3.1.lnk
2016-03-26 09:58 - 2016-02-21 09:57 - 00002157 _____ C:\ProgramData\Microsoft\Windows\Start Menu\GetDataBack for NTFS.lnk
2016-03-26 09:58 - 2016-02-21 09:57 - 00002145 _____ C:\Users\Public\Desktop\GetDataBack for NTFS.lnk
2016-03-26 09:58 - 2016-02-21 00:24 - 00002011 _____ C:\Users\Public\Desktop\Reflect.lnk
2016-03-26 09:58 - 2016-02-21 00:20 - 00001126 _____ C:\Users\Public\Desktop\OpenOffice 4.1.2.lnk
2016-03-26 09:58 - 2016-02-20 21:03 - 00001011 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 11.lnk
2016-03-26 09:58 - 2016-02-20 21:03 - 00000993 _____ C:\Users\Public\Desktop\TeamViewer 11.lnk
2016-03-26 09:58 - 2016-02-20 18:50 - 00002047 _____ C:\Users\Public\Desktop\Samsung Kies 3.lnk
2016-03-26 09:58 - 2016-02-20 18:49 - 00002080 _____ C:\Users\Public\Desktop\Samsung Kies (Lite).lnk
2016-03-26 09:58 - 2016-02-20 18:49 - 00002070 _____ C:\Users\Public\Desktop\Samsung Kies.lnk
2016-03-26 09:58 - 2016-02-20 18:43 - 00001136 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2016-03-26 09:58 - 2016-02-20 18:42 - 00001458 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk
2016-03-26 09:58 - 2016-02-20 18:42 - 00001389 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk
2016-03-26 09:58 - 2016-02-20 18:41 - 00001369 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk
2016-03-26 09:58 - 2016-02-20 17:07 - 00002020 _____ C:\Users\Public\Desktop\G DATA INTERNET SECURITY.lnk
2016-03-26 09:58 - 2016-02-20 15:43 - 00002441 _____ C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-03-26 09:58 - 2016-02-20 15:16 - 00001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2016-03-26 09:58 - 2014-10-19 06:35 - 00002055 _____ C:\Users\Public\Desktop\Manual.lnk
2016-03-26 09:58 - 2014-10-19 06:27 - 00002197 _____ C:\Users\Public\Desktop\CyberLink Power Media Player 12.lnk
2016-03-26 09:58 - 2014-09-26 02:31 - 00002007 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office.lnk
2016-03-26 09:57 - 2016-02-23 19:14 - 00001840 _____ C:\Users\Niklas\Desktop\Alarm für Cobra 11 - Das Syndikat Demo.lnk
2016-03-26 09:57 - 2016-02-21 14:53 - 00001446 _____ C:\Users\Niklas\Desktop\Photo Gallery.lnk
2016-03-26 09:57 - 2016-02-21 14:53 - 00001357 _____ C:\Users\Niklas\Desktop\Windows Live Mail.lnk
2016-03-26 09:57 - 2016-02-21 14:52 - 00001377 _____ C:\Users\Niklas\Desktop\Movie Maker.lnk
2016-03-25 14:04 - 2016-02-20 18:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2016-03-25 14:04 - 2016-02-20 18:43 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-03-23 17:16 - 2016-02-20 00:43 - 00000000 ____D C:\Users\Niklas\AppData\Local\TOSHIBA
2016-03-19 18:39 - 2015-10-30 09:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-03-19 18:38 - 2016-02-20 00:41 - 00000000 ____D C:\Users\Niklas\AppData\Local\Packages
2016-03-19 16:35 - 2014-10-19 06:05 - 00000000 ____D C:\Program Files (x86)\Google
2016-03-18 20:54 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2016-03-18 19:47 - 2016-02-20 18:50 - 00000000 ____D C:\Users\Niklas\Documents\SelfMV
2016-03-16 19:54 - 2014-10-19 05:48 - 00000000 ____D C:\WINDOWS\SysWOW64\sda
2016-03-16 18:51 - 2016-02-20 17:07 - 00077848 _____ (G DATA Software AG) C:\WINDOWS\system32\Drivers\gdwfpcd64.sys
2016-03-16 18:51 - 2016-02-20 17:01 - 00000000 ____D C:\ProgramData\G Data
2016-03-14 19:35 - 2016-02-20 18:43 - 00000000 ____D C:\Program Files\7-Zip
2016-03-13 20:05 - 2016-02-22 19:55 - 00000000 ____D C:\ProgramData\Synetic
2016-03-13 19:52 - 2016-02-27 22:40 - 00004096 _____ C:\Users\Public\Documents\0000322A.LCS
2016-03-13 12:14 - 2016-02-20 15:01 - 00228272 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-03-12 22:00 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Windows Portable Devices
2016-03-12 22:00 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Windows Multimedia Platform
2016-03-12 22:00 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices
2016-03-12 22:00 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform
2016-03-12 19:24 - 2016-02-20 16:11 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-03-12 19:23 - 2016-02-22 20:11 - 00000000 ____D C:\Users\Admin
2016-03-12 19:17 - 2016-02-20 16:11 - 143659408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-03-12 19:09 - 2015-10-30 20:36 - 00000000 ____D C:\WINDOWS\OCR
2016-03-12 16:56 - 2016-02-21 09:44 - 00000000 ____D C:\Users\Jana
2016-03-12 14:35 - 2016-02-26 18:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2016-03-12 14:35 - 2016-02-23 19:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games for Windows Marketplace
2016-03-12 14:35 - 2016-02-22 20:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DTS, Inc
2016-03-12 14:35 - 2014-10-19 06:12 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2016-03-12 14:20 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed
2016-03-12 14:20 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\Macromed
2016-03-12 14:20 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\registration
2016-03-10 15:09 - 2016-02-20 18:43 - 00065408 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2016-03-10 15:08 - 2016-02-20 18:43 - 00027008 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2016-03-10 09:50 - 2016-02-20 18:40 - 00000000 ____D C:\Users\Niklas\AppData\Local\Windows Live
2016-03-09 17:14 - 2016-02-20 18:50 - 00000000 ____D C:\Users\Niklas\AppData\Local\Adobe
2016-03-08 18:28 - 2016-02-20 00:43 - 00000000 ____D C:\Users\Niklas\AppData\Local\PackageStaging
2016-03-08 15:21 - 2016-02-20 08:33 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-03-08 09:12 - 2015-10-30 09:26 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-03-08 09:12 - 2015-10-30 09:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2016-03-06 14:19 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\rescache
2016-03-04 22:24 - 2016-02-22 19:59 - 00004096 _____ C:\Users\Public\Documents\000017B4.LCS
2016-03-02 22:23 - 2015-10-30 20:44 - 00000000 ____D C:\Program Files\Windows Journal
2016-03-02 22:23 - 2015-10-30 09:24 - 00000000 __RSD C:\WINDOWS\Media
2016-03-02 22:23 - 2015-10-30 09:24 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
2016-03-02 22:23 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-03-02 22:23 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2016-03-02 22:23 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-03-02 22:23 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-03-02 22:23 - 2015-10-30 08:28 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2016-03-02 22:23 - 2015-10-30 08:28 - 00000000 ____D C:\WINDOWS\system32\Dism
2016-02-29 17:38 - 2016-02-20 18:49 - 00000000 ____D C:\Users\Niklas\Documents\samsung
==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======
2016-02-20 00:39 - 2016-02-20 00:39 - 6871040 _____ () C:\Program Files (x86)\GUTE7B5.tmp
2016-02-20 17:07 - 2016-02-20 17:07 - 0000000 _____ () C:\Users\Niklas\AppData\Roaming\gdfw.log
2016-02-20 17:07 - 2016-02-20 17:07 - 0000779 _____ () C:\Users\Niklas\AppData\Roaming\gdscan.log
2016-03-05 13:17 - 2016-03-05 13:17 - 0000017 _____ () C:\Users\Niklas\AppData\Local\resmon.resmoncfg
2016-02-26 18:58 - 2016-02-26 18:58 - 0000057 _____ () C:\ProgramData\Ament.ini
2016-02-20 15:05 - 2016-02-20 15:05 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2016-02-21 13:50 - 2016-02-21 20:01 - 0019535 _____ () C:\ProgramData\empty.ico
Einige Dateien in TEMP:
====================
C:\Users\Niklas\AppData\Local\Temp\A2F9.tmp.exe
C:\Users\Niklas\AppData\Local\Temp\DseShExt-x64.dll
C:\Users\Niklas\AppData\Local\Temp\DseShExt-x86.dll
C:\Users\Niklas\AppData\Local\Temp\F630.tmp.exe
C:\Users\Niklas\AppData\Local\Temp\hash.dll
C:\Users\Niklas\AppData\Local\Temp\ICReinstall_file_view_pro_portable_setup.exe
C:\Users\Niklas\AppData\Local\Temp\jre-8u77-windows-au.exe
C:\Users\Niklas\AppData\Local\Temp\libeay32.dll
C:\Users\Niklas\AppData\Local\Temp\msvcr120.dll
C:\Users\Niklas\AppData\Local\Temp\SDShelEx-win32.dll
C:\Users\Niklas\AppData\Local\Temp\SDShelEx-x64.dll
C:\Users\Niklas\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Niklas\AppData\Local\Temp\sqlite3.dll
C:\Users\Niklas\AppData\Local\Temp\xReflect.exe
==================== Bamital & volsnap =================
(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)
C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert
C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert
C:\WINDOWS\explorer.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert
C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert
C:\WINDOWS\system32\services.exe => Datei ist digital signiert
C:\WINDOWS\system32\User32.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert
C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert
C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert
C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert
LastRegBack: 2016-03-23 11:24
==================== Ende von FRST.txt ============================
--- --- ---