Show-Password Addon - nervige Werbeeinblendungen Guten Abend,
auf meinem PC hat sich das Addon Show-Password eingenistet (unwissentlich). Hat sich ursprünglich als Werbeeinblendung bemerkbar gemacht, nach deinstallation sind diese aber weg. Allerdings wird das Addon nachwievor im Internet Explorer angezeigt und ist nicht deaktivierbar. Code:
defogger_disable by jpshortstuff (23.02.10.1)
Log created at 23:53 on 18/11/2013 (TP)
Checking for autostart values...
HKCU\~\Run values retrieved.
HKLM\~\Run values retrieved.
Checking for services/drivers...
-=E.O.F=- Code:
GMER 2.1.19163 - hxxp://www.gmer.net
Rootkit scan 2013-11-18 23:59:58
Windows 6.1.7601 Service Pack 1 x64 \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-0 Samsung_ rev.EXT0 232,89GB
Running: ghdl0pz5.exe; Driver: C:\Users\TP\AppData\Local\Temp\pxldipoc.sys
---- Kernel code sections - GMER 2.1 ----
INITKDBG C:\Windows\system32\ntoskrnl.exe!ExDeleteNPagedLookasideList + 528 fffff80002dbd000 45 bytes [43, 4D, 33, 31, 05, 00, 00, ...]
INITKDBG C:\Windows\system32\ntoskrnl.exe!ExDeleteNPagedLookasideList + 575 fffff80002dbd02f 16 bytes [00, 00, 00, 00, 00, 00, 00, ...]
---- User code sections - GMER 2.1 ----
.text C:\Users\TP\AppData\Roaming\Dropbox\bin\Dropbox.exe[4564] C:\Windows\syswow64\Psapi.dll!GetModuleInformation + 69 0000000076f81465 2 bytes [F8, 76]
.text C:\Users\TP\AppData\Roaming\Dropbox\bin\Dropbox.exe[4564] C:\Windows\syswow64\Psapi.dll!GetModuleInformation + 155 0000000076f814bb 2 bytes [F8, 76]
.text ... * 2
.text C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE[4632] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000076f81465 2 bytes [F8, 76]
.text C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE[4632] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 0000000076f814bb 2 bytes [F8, 76]
.text ... * 2
.text C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe[5724] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000076f81465 2 bytes [F8, 76]
.text C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe[5724] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 0000000076f814bb 2 bytes [F8, 76]
.text ... * 2
---- Threads - GMER 2.1 ----
Thread C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [3264:5268] 0000000075227587
Thread C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [3264:5280] 0000000067097712
Thread C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [3264:5896] 0000000077002e65
Thread C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [3264:1920] 0000000077003e85
Thread C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [3264:5348] 0000000077003e85
Thread C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [3264:3584] 0000000077003e85
---- EOF - GMER 2.1 ---- Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 18-11-2013
Ran by TP at 2013-11-18 23:54:30
Running from C:\Users\TP\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Microsoft Security Essentials (Enabled - Up to date) {641105E6-77ED-3F35-A304-765193BCB75F}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Microsoft Security Essentials (Enabled - Up to date) {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}
==================== Installed Programs ======================
Adobe Acrobat XI Pro (x32 Version: 11.0.05)
Adobe AIR (x32 Version: 3.9.0.1030)
Adobe Download Assistant (x32 Version: 1.2.6)
Adobe Flash Player 11 ActiveX (x32 Version: 11.9.900.117)
Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.152)
Adobe Reader XI (11.0.05) - Deutsch (x32 Version: 11.0.05)
Anzeige am Bildschirm (Version: 6.70.00)
Conexant 20672 SmartAudio HD (Version: 8.32.23.5)
CrystalDiskInfo 6.0.0 (x32 Version: 6.0.0)
DAEMON Tools Lite (x32 Version: 4.47.1.0333)
Definition Update for Microsoft Office 2010 (KB982726) 64-Bit Edition
Dienstprogramm "ThinkPad UltraNav" (x32 Version: 2.13.0)
Dropbox (HKCU Version: 2.4.6)
Energie-Manager (x32 Version: 6.62.10)
HD Tune 2.55 (x32)
Hippsoft hsWebCam 1.09.0002 (x32 Version: 1.09.0002)
Integrated Camera Driver Installer Package Ver.1.1.0.1147 (x32 Version: 1.1.0.1147)
Integrated Camera TWAIN (x32 Version: 1.0.11.1223)
Intel(R) Control Center (x32 Version: 1.2.1.1010)
Intel(R) Identity Protection Technology 1.2.28.0 (x32 Version: 1.2.28.0)
Intel(R) Management Engine Components (x32 Version: 7.1.70.1205)
Intel(R) Network Connections Drivers (Version: 16.8)
Intel(R) PRO/Wireless Driver (Version: 16.01.3000.0512)
Intel(R) Processor Graphics (x32 Version: 9.17.10.2843)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (x32 Version: 2.0.0.37149)
Intel® PROSet/Wireless Software (x32 Version: 16.1.3)
Intel® PROSet/Wireless WiFi Software (Version: 16.01.3000.0254)
JDownloader 0.9 (x32 Version: 0.9)
Lenovo Patch Utility (x32 Version: 1.3.1.1)
Lenovo Patch Utility 64 bit (Version: 1.3.0.9)
Lenovo Power Management Driver (Version: 1.67.03.13)
Lenovo System Interface Driver (Version: 1.05)
Lenovo System Update (x32 Version: 5.03.0005)
Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300)
Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938)
Microsoft .NET Framework 4.5.1 (Deutsch) (Version: 4.5.50938)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938)
Microsoft Office Access MUI (German) 2010 (Version: 14.0.7015.1000)
Microsoft Office Excel MUI (German) 2010 (Version: 14.0.7015.1000)
Microsoft Office Groove MUI (German) 2010 (Version: 14.0.7015.1000)
Microsoft Office InfoPath MUI (German) 2010 (Version: 14.0.7015.1000)
Microsoft Office Office 32-bit Components 2010 (Version: 14.0.7015.1000)
Microsoft Office OneNote MUI (German) 2010 (Version: 14.0.7015.1000)
Microsoft Office Outlook MUI (German) 2010 (Version: 14.0.7015.1000)
Microsoft Office PowerPoint MUI (German) 2010 (Version: 14.0.7015.1000)
Microsoft Office Professional Plus 2010 (Version: 14.0.7015.1000)
Microsoft Office Proof (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office Proof (French) 2010 (Version: 14.0.7015.1000)
Microsoft Office Proof (German) 2010 (Version: 14.0.7015.1000)
Microsoft Office Proof (Italian) 2010 (Version: 14.0.7015.1000)
Microsoft Office Proofing (German) 2010 (Version: 14.0.7015.1000)
Microsoft Office Publisher MUI (German) 2010 (Version: 14.0.7015.1000)
Microsoft Office Shared 32-bit MUI (German) 2010 (Version: 14.0.7015.1000)
Microsoft Office Shared MUI (German) 2010 (Version: 14.0.7015.1000)
Microsoft Office Word MUI (German) 2010 (Version: 14.0.7015.1000)
Microsoft Security Client (Version: 4.4.0304.0)
Microsoft Security Essentials (Version: 4.4.304.0)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (x32 Version: 10.0.30319)
MozBackup 1.5.1 (x32)
Mozilla Firefox 25.0.1 (x86 de) (x32 Version: 25.0.1)
Mozilla Maintenance Service (x32 Version: 25.0.1)
Mozilla Thunderbird 24.1.0 (x86 de) (x32 Version: 24.1.0)
MyPhoneExplorer (x32 Version: 1.8.5)
NEC Electronics USB 3.0 Host Controller Driver (x32 Version: 1.0.17.0)
OpenVPN 2.2.1 (x32 Version: 2.2.1)
RICOH_Media_Driver_v2.14.18.01 (x32 Version: 2.14.18.01)
Secure Eraser (x32 Version: 4.2.0.1)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 64-Bit Edition
Skype™ 6.10 (x32 Version: 6.10.104)
smartmontools (x32 Version: 6.2 2013-07-26 r3841 (sf-6.2-1))
ThinkPad FullScreen Magnifier (Version: 2.40)
ThinkPad UltraNav Driver (Version: 16.2.19.9)
ThinkVantage Communications Utility (Version: 2.11.0.0)
Update for Microsoft Access 2010 (KB2553446) 64-Bit Edition
Update for Microsoft Filter Pack 2.0 (KB2810071) 64-Bit Edition
Update for Microsoft Office 2010 (KB2589298) 64-Bit Edition
Update for Microsoft Office 2010 (KB2589352) 64-Bit Edition
Update for Microsoft Office 2010 (KB2589375) 64-Bit Edition
Update for Microsoft Office 2010 (KB2597087) 64-Bit Edition
Update for Microsoft Office 2010 (KB2760598) 64-Bit Edition
Update for Microsoft Office 2010 (KB2760631) 64-Bit Edition
Update for Microsoft Office 2010 (KB2794737) 64-Bit Edition
Update for Microsoft Office 2010 (KB2825640) 64-Bit Edition
Update for Microsoft Office 2010 (KB2826026) 64-Bit Edition
Update for Microsoft OneNote 2010 (KB2810072) 64-Bit Edition
Update for Microsoft PowerPoint 2010 (KB2553145) 64-Bit Edition
Update for Microsoft Visio Viewer 2010 (KB2810066) 64-Bit Edition
Update for Microsoft Word 2010 (KB2827323) 64-Bit Edition
VLC media player 2.1.0 (x32 Version: 2.1.0)
Windows XP Mode (Version: 1.3.7600.16422)
WinRAR 5.00 (64-Bit) (Version: 5.00.0)
WOT für Internet Explorer (Version: 13.9.2.0)
==================== Restore Points =========================
08-11-2013 14:59:13 Windows Update
11-11-2013 15:35:16 Windows Update
15-11-2013 02:00:18 Windows Update
17-11-2013 02:00:16 Windows Update
18-11-2013 20:37:48 Windows Modules Installer
18-11-2013 20:38:59 Windows Modules Installer
18-11-2013 22:12:28 Windows Modules Installer
18-11-2013 22:20:56 Windows Update
18-11-2013 22:44:28 WOT für Internet Explorer wird installiert
==================== Hosts content: ==========================
2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {0BE36AEA-88B8-4013-8146-E09962EB60BA} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {143D0A6B-BF5B-4314-BEFA-9498A490FB00} - System32\Tasks\Show-Password Update => C:\Program Files (x86)\Show-Password\Show_Password.exe
Task: {41A5F989-6FE3-46DE-9BB2-994258D52BF7} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe [2013-11-08] ()
Task: {F5266A20-D06C-4343-9CAB-405BD820BF42} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [2013-09-17] ()
Task: C:\Windows\Tasks\Show-Password Update.job => C:\Program Files (x86)\Show-Password\Show_Password.exe
==================== Loaded Modules (whitelisted) =============
2013-09-05 00:17 - 2013-09-05 00:17 - 04300456 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF
2013-10-05 18:41 - 2013-08-01 05:02 - 00117248 ____N () C:\Program Files (x86)\ThinkPad\Utilities\GR\PWMRT64V.DLL
2013-10-26 08:50 - 2012-09-07 15:57 - 00559424 _____ () C:\Program Files (x86)\ASCOMP Software\Secure Eraser\SecEraser64.dll
2013-10-05 18:42 - 2012-08-24 17:53 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2013-08-23 20:01 - 2013-08-23 20:01 - 25100288 _____ () C:\Users\TP\AppData\Roaming\Dropbox\bin\libcef.dll
2012-09-23 19:43 - 2012-09-23 19:43 - 00010240 _____ () C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\locale\de_de\acrotray.deu
2013-10-12 16:30 - 2013-11-02 20:11 - 03008624 _____ () C:\Program Files (x86)\Mozilla Thunderbird\mozjs.dll
2013-10-12 16:30 - 2013-11-02 20:11 - 00158832 _____ () C:\Program Files (x86)\Mozilla Thunderbird\NSLDAP32V60.dll
2013-10-12 16:30 - 2013-11-02 20:11 - 00023152 _____ () C:\Program Files (x86)\Mozilla Thunderbird\NSLDAPPR32V60.dll
2013-09-05 00:14 - 2013-09-05 00:14 - 04300456 _____ () C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF
2013-11-16 02:05 - 2013-11-16 02:05 - 03363952 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
2013-11-17 13:37 - 2013-11-17 13:37 - 16237448 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_152.dll
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (11/18/2013 11:22:19 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (11/18/2013 11:16:03 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (11/18/2013 09:55:50 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
System errors:
=============
Microsoft Office Sessions:
=========================
Error: (11/18/2013 11:22:19 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (11/18/2013 11:16:03 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (11/18/2013 09:55:50 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
==================== Memory info ===========================
Percentage of memory in use: 33%
Total physical RAM: 8075.23 MB
Available physical RAM: 5335.55 MB
Total Pagefile: 16148.65 MB
Available Pagefile: 13186.97 MB
Total Virtual: 8192 MB
Available Virtual: 8191.79 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:228.88 GB) (Free:55.59 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 233 GB) (Disk ID: 64E12366)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=229 GB) - (Type=07 NTFS)
==================== End Of Log ============================ Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 18-11-2013
Ran by TP (administrator) on TP-PC on 18-11-2013 23:54:00
Running from C:\Users\TP\Desktop
Windows 7 Ultimate Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(Lenovo.) C:\Windows\system32\ibmpmsvc.exe
(Microsoft Corporation) C:\Windows\system32\WLANExt.exe
(Conexant Systems Inc.) C:\Windows\system32\CxAudMsg64.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\CAMMUTE.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Conexant Systems, Inc.) C:\Windows\SysWOW64\SAsrv.exe
(Lenovo Group Limited) C:\Program Files\LENOVO\HOTKEY\TPHKSVC.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Lenovo Group Limited) C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe
(Lenovo Group Limited) C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe
(Lenovo Group Limited) C:\PROGRA~1\LENOVO\HOTKEY\tpnumlk.exe
(Microsoft Corporation) c:\Program Files\Microsoft Security Client\NisSrv.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(Lenovo Group Limited) C:\PROGRA~1\Lenovo\Zoom\TPSCREX.EXE
(Lenovo Group Limited) C:\PROGRA~1\Lenovo\HOTKEY\TPONSCR.EXE
(Lenovo Group Limited) C:\PROGRA~1\Lenovo\HOTKEY\SHTCTKY.EXE
(Lenovo Group Limited) C:\PROGRA~1\LENOVO\HOTKEY\tpnumlkd.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\TpKnrres.exe
() C:\Program Files\CONEXANT\ForteConfig\fmapp.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Dropbox, Inc.) C:\Users\TP\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Ricoh co.,Ltd.) C:\Program Files (x86)\Integrated Camera Driver\X64\RCIMGDIR.exe
(Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
(NEC Electronics Corporation) C:\Program Files (x86)\NEC Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(Synaptics Incorporated) C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE
(Lenovo Group Limited) C:\PROGRA~2\ThinkPad\UTILIT~1\SCHTASK.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Lenovo) C:\Program Files (x86)\ThinkPad\Utilities\PWMDBSVC.EXE
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
(Adobe Systems Incorporated) C:\Windows\system32\Macromed\Flash\FlashUtil64_11_9_900_117_ActiveX.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
(Microsoft Corporation) C:\Windows\system32\msiexec.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_152.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_152.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] ()
HKLM\...\Run: [LENOVO.TPKNRRES] - C:\Program Files\Lenovo\Communications Utility\TpKnrres.exe [60920 2013-05-29] (Lenovo Group Limited)
HKLM\...\Run: [ForteConfig] - C:\Program Files\CONEXANT\ForteConfig\fmapp.exe [49056 2010-10-26] ()
HKLM\...\Run: [SmartAudio] - C:\Program Files\CONEXANT\SAII\SAIICpl.exe [316032 2010-12-14] (Conexant systems, Inc.)
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2963184 2013-05-29] (Synaptics Incorporated)
HKLM\...\Run: [MSC] - C:\Program Files\Microsoft Security Client\msseces.exe [1266912 2013-10-23] (Microsoft Corporation)
HKLM\...\Run: [AdobeAAMUpdater-1.0] - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe [444904 2012-09-20] (Adobe Systems Incorporated)
HKLM\...\Run: [BCSSync] - C:\Program Files\Microsoft Office\Office14\BCSSync.exe [108144 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\RunOnce: [Malwarebytes Anti-Malware] - C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent [532040 2013-04-04] (Malwarebytes Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKLM-x32\...\Run: [PWMTRV] - C:\Program Files (x86)\ThinkPad\Utilities\PWMTR64V.DLL [6618920 2013-08-01] (Lenovo Group Limited)
HKLM-x32\...\Run: [IMSS] - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [113656 2013-01-17] (Intel Corporation)
HKLM-x32\...\Run: [RotateImage] - C:\Program Files (x86)\Integrated Camera Driver\X64\RCIMGDIR.exe [55808 2008-10-30] (Ricoh co.,Ltd.)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-09-05] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] - [x]
HKLM-x32\...\Run: [Acrobat Assistant 8.0] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\acrotray.exe [3478392 2013-09-05] (Adobe Systems Inc.)
HKLM-x32\...\Run: [NUSB3MON] - C:\Program Files (x86)\NEC Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [106496 2009-10-21] (NEC Electronics Corporation)
Startup: C:\Users\TP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\TP\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-DE
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x0F18ECA99DE4CE01
BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO: Adobe Acrobat Create PDF Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: WOT Helper - {C920E44A-7F78-4E64-BDD7-A57026E7FEB7} - C:\Program Files\WOT\WOT.dll ()
BHO: Adobe Acrobat Create PDF from Selection - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Adobe Acrobat Create PDF Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: WOT Helper - {C920E44A-7F78-4E64-BDD7-A57026E7FEB7} - C:\Program Files (x86)\WOT\WOT.dll ()
BHO-x32: Adobe Acrobat Create PDF from Selection - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO-x32: Show-Password - {f5d84a10-30cc-477d-8aa0-4e72091adc29} - C:\Program Files (x86)\Show-Password\135.dll No File
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\x64\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKLM - WOT - {71576546-354D-41c9-AAE8-31F2EC22BF0D} - C:\Program Files\WOT\WOT.dll ()
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKLM-x32 - WOT - {71576546-354D-41c9-AAE8-31F2EC22BF0D} - C:\Program Files (x86)\WOT\WOT.dll ()
Toolbar: HKCU - WOT - {71576546-354D-41C9-AAE8-31F2EC22BF0D} - C:\Program Files\WOT\WOT.dll ()
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Handler: wot - {C2A44D6B-CB9F-4663-88A6-DF2F26E4D952} - C:\Program Files\WOT\WOT.dll ()
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Handler-x32: wot - {C2A44D6B-CB9F-4663-88A6-DF2F26E4D952} - C:\Program Files (x86)\WOT\WOT.dll ()
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF ProfilePath: C:\Users\TP\AppData\Roaming\Mozilla\Firefox\Profiles\nnckum2k.default
FF Homepage: about:blank
FF NetworkProxy: "autoconfig_url", "https://secure.premiumize.me/d603fdebdb5ba08cbddc1d738da75eb0/proxy.pac"
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_152.dll ()
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll (Adobe Systems)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_152.dll ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.66 - C:\Program Files (x86)\Intel\Services\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Services\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.1.0 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Acrobat - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll (Adobe Systems)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: WOT - C:\Users\TP\AppData\Roaming\Mozilla\Firefox\Profiles\nnckum2k.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}
FF Extension: noscript - C:\Users\TP\AppData\Roaming\Mozilla\Firefox\Profiles\nnckum2k.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi
FF Extension: Adblock Plus - C:\Users\TP\AppData\Roaming\Mozilla\Firefox\Profiles\nnckum2k.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn
FF Extension: Adobe Acrobat - Create PDF - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn
FF HKCU\...\Firefox\Extensions: [{27d907bf-158e-435a-bd8b-a62ced9803f7}] - C:\Program Files (x86)\Show-Password\135.xpi
==================== Services (Whitelisted) =================
S3 DozeSvc; C:\Program Files (x86)\ThinkPad\Utilities\DZSVC64.EXE [320576 2013-08-01] (Lenovo.)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2013-10-23] (Microsoft Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273136 2013-08-02] ()
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [348376 2013-10-23] (Microsoft Corporation)
S3 OpenVPNService; C:\Program Files (x86)\OpenVPN\bin\openvpnserv.exe [14848 2011-07-01] ()
S3 SUService; C:\Program Files (x86)\Lenovo\System Update\SUService.exe [22888 2013-09-17] ()
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3378416 2013-08-02] (Intel® Corporation)
==================== Drivers (Whitelisted) ====================
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2013-10-05] (DT Soft Ltd)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [248240 2013-09-27] (Microsoft Corporation)
R2 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [134944 2013-09-27] (Microsoft Corporation)
R3 SmbDrvI; C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys [44784 2013-05-29] (Synaptics Incorporated)
S3 VGPU; System32\drivers\rdvgkmd.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-11-18 23:54 - 2013-11-18 23:54 - 00014635 _____ C:\Users\TP\Desktop\FRST.txt
2013-11-18 23:53 - 2013-11-18 23:53 - 01957964 _____ (Farbar) C:\Users\TP\Desktop\FRST64.exe
2013-11-18 23:53 - 2013-11-18 23:53 - 00000466 _____ C:\Users\TP\Desktop\defogger_disable.log
2013-11-18 23:53 - 2013-11-18 23:53 - 00000000 ____D C:\FRST
2013-11-18 23:53 - 2013-11-18 23:53 - 00000000 _____ C:\Users\TP\defogger_reenable
2013-11-18 23:52 - 2013-11-18 23:52 - 00050477 _____ C:\Users\TP\Desktop\Defogger.exe
2013-11-18 23:44 - 2013-11-18 23:44 - 01798144 _____ C:\Users\TP\Desktop\WOT-latest-de-x64_20130902.msi
2013-11-18 23:44 - 2013-11-18 23:44 - 00000000 ____D C:\Program Files\WOT
2013-11-18 23:44 - 2013-11-18 23:44 - 00000000 ____D C:\Program Files (x86)\WOT
2013-11-18 23:43 - 2013-11-18 23:44 - 00521791 _____ C:\Users\TP\Desktop\wot-latest1030.zip
2013-11-18 23:25 - 2013-11-18 23:25 - 00001113 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-11-18 23:25 - 2013-11-18 23:25 - 00000000 ____D C:\Users\TP\AppData\Roaming\Malwarebytes
2013-11-18 23:25 - 2013-11-18 23:25 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-11-18 23:25 - 2013-11-18 23:25 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-11-18 23:25 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2013-11-18 23:24 - 2013-11-18 23:24 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\TP\Desktop\mbam-setup-1.75.0.1300.exe
2013-11-18 23:15 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE
2013-11-18 23:12 - 2013-11-18 23:15 - 00009026 _____ C:\Windows\IE11_main.log
2013-11-18 23:12 - 2013-11-18 23:12 - 23212032 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 17142784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 12995584 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 11220992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 05765120 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 04240384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-11-18 23:12 - 2013-11-18 23:12 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-11-18 23:12 - 2013-11-18 23:12 - 02332160 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 02166272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 01993728 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-11-18 23:12 - 2013-11-18 23:12 - 01926656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2013-11-18 23:12 - 2013-11-18 23:12 - 01818112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 01394176 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 01156608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2013-11-18 23:12 - 2013-11-18 23:12 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2013-11-18 23:12 - 2013-11-18 23:12 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2013-11-18 23:12 - 2013-11-18 23:12 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2013-11-18 23:12 - 2013-11-18 23:12 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2013-11-18 23:12 - 2013-11-18 23:12 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-11-18 23:12 - 2013-11-18 23:12 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2013-11-18 23:12 - 2013-11-18 23:12 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2013-11-18 23:12 - 2013-11-18 23:12 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2013-11-18 23:12 - 2013-11-18 23:12 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2013-11-18 23:12 - 2013-11-18 23:12 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-11-18 23:12 - 2013-11-18 23:12 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2013-11-18 23:12 - 2013-11-18 23:12 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2013-11-18 23:12 - 2013-11-18 23:12 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2013-11-18 23:12 - 2013-11-18 23:12 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-11-18 23:12 - 2013-11-18 23:12 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2013-11-18 23:12 - 2013-11-18 23:12 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2013-11-18 23:12 - 2013-11-18 23:12 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-11-18 23:12 - 2013-11-18 23:12 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2013-11-18 23:12 - 2013-11-18 23:12 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2013-11-18 23:12 - 2013-11-18 23:12 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2013-11-18 23:12 - 2013-11-18 23:12 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2013-11-18 23:12 - 2013-11-18 23:12 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2013-11-18 23:12 - 2013-11-18 23:12 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2013-11-18 23:11 - 2013-11-18 23:12 - 63320784 _____ (Microsoft Corporation) C:\Users\TP\Desktop\IE11-Windows6.1-x64-de-de.exe
2013-11-18 21:29 - 2013-11-18 21:29 - 00000746 _____ C:\Users\TP\Desktop\JRT.txt
2013-11-18 21:23 - 2013-11-18 21:23 - 01034531 _____ (Thisisu) C:\Users\TP\Desktop\JRT_6.0.8.exe
2013-11-18 21:23 - 2013-11-18 21:23 - 00000000 ____D C:\Windows\ERUNT
2013-11-17 13:42 - 2013-11-17 13:45 - 00000000 ____D C:\Users\TP\AppData\Local\NPE
2013-11-17 13:42 - 2013-11-17 13:42 - 03057128 ____N (Symantec Corporation) C:\Users\TP\Desktop\NPE.exe
2013-11-17 13:42 - 2013-11-17 13:42 - 00000000 ____D C:\ProgramData\Norton
2013-11-17 13:30 - 2013-11-18 21:32 - 00000000 ____D C:\AdwCleaner
2013-11-17 13:30 - 2013-11-17 13:30 - 01085542 _____ C:\Users\TP\Desktop\adwcleaner_3012.exe
2013-11-16 02:05 - 2013-11-16 02:05 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-11-14 18:35 - 2013-11-14 18:36 - 00000000 ____D C:\Users\TP\Desktop\auspuff alt
2013-11-14 18:32 - 2013-11-18 23:16 - 00000398 _____ C:\Windows\Tasks\Show-Password Update.job
2013-11-14 18:32 - 2013-11-14 18:35 - 00000000 ____D C:\Users\TP\AppData\Roaming\MyPhoneExplorer
2013-11-14 18:32 - 2013-11-14 18:32 - 00003040 _____ C:\Windows\System32\Tasks\Show-Password Update
2013-11-14 18:32 - 2013-11-14 18:32 - 00002061 _____ C:\Users\Public\Desktop\MyPhoneExplorer.lnk
2013-11-14 18:32 - 2013-11-14 18:32 - 00000000 ____D C:\Program Files (x86)\MyPhoneExplorer
2013-11-14 16:20 - 2013-10-12 03:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2013-11-14 16:20 - 2013-10-12 03:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2013-11-14 16:20 - 2013-10-12 03:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2013-11-14 16:20 - 2013-10-12 03:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2013-11-14 16:20 - 2013-10-12 03:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2013-11-14 16:20 - 2013-10-05 21:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2013-11-14 16:20 - 2013-10-05 20:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2013-11-14 16:20 - 2013-10-04 03:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
2013-11-14 16:20 - 2013-10-04 03:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll
2013-11-14 16:20 - 2013-10-04 03:24 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2013-11-14 16:20 - 2013-10-04 02:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll
2013-11-14 16:20 - 2013-10-04 02:56 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2013-11-14 16:20 - 2013-10-04 02:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll
2013-11-14 16:20 - 2013-10-03 03:23 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2013-11-14 16:20 - 2013-10-03 03:00 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2013-11-14 16:20 - 2013-09-28 02:09 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2013-11-14 16:20 - 2013-09-25 03:26 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2013-11-14 16:20 - 2013-09-25 03:26 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2013-11-14 16:20 - 2013-09-25 03:23 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2013-11-14 16:20 - 2013-09-25 03:23 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2013-11-14 16:20 - 2013-09-25 03:23 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2013-11-14 16:20 - 2013-09-25 03:22 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2013-11-14 16:20 - 2013-09-25 03:21 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2013-11-14 16:20 - 2013-09-25 03:21 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2013-11-14 16:20 - 2013-09-25 02:58 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2013-11-14 16:20 - 2013-09-25 02:57 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2013-11-14 16:20 - 2013-09-25 02:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2013-11-14 16:20 - 2013-09-25 02:56 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2013-11-14 16:20 - 2013-09-25 02:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2013-11-14 16:20 - 2013-07-04 13:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2013-11-13 14:13 - 2013-11-17 13:52 - 00000000 ____D C:\GONCA SICHERUNG
2013-11-09 09:57 - 2013-11-09 09:57 - 00005419 _____ C:\Users\TP\Desktop\feedly.opml
2013-11-08 15:57 - 2013-11-18 23:16 - 00003510 _____ C:\Windows\System32\Tasks\AutoKMS
2013-11-08 15:57 - 2013-11-18 23:16 - 00000000 ____D C:\Windows\AutoKMS
2013-11-08 15:56 - 2013-11-08 15:57 - 00000796 _____ C:\Users\TP\Downloads\Settings.ini
2013-11-08 15:48 - 2013-11-08 15:50 - 01596448 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2013-11-08 15:27 - 2013-11-08 15:27 - 00000000 ____D C:\Program Files\Microsoft Synchronization Services
2013-11-08 15:27 - 2013-11-08 15:27 - 00000000 ____D C:\Program Files\Common Files\DESIGNER
2013-11-08 15:26 - 2013-11-08 15:26 - 00000000 ____D C:\Windows\PCHEALTH
2013-11-08 15:26 - 2013-11-08 15:26 - 00000000 ____D C:\Program Files\Microsoft Sync Framework
2013-11-08 15:26 - 2013-11-08 15:26 - 00000000 ____D C:\Program Files\Microsoft SQL Server Compact Edition
2013-11-08 15:26 - 2013-11-08 15:26 - 00000000 ____D C:\Program Files\Microsoft Analysis Services
2013-11-08 15:26 - 2013-11-08 15:26 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 8
2013-11-08 15:26 - 2013-11-08 15:26 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2013-11-08 15:25 - 2013-11-08 15:26 - 00000000 ____D C:\Program Files\Microsoft Office
2013-11-08 15:25 - 2013-11-08 15:25 - 00000000 __RHD C:\MSOCache
2013-11-08 15:25 - 2013-11-08 15:25 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2013-11-06 12:38 - 2013-11-06 12:38 - 00000000 ____D C:\Program Files (x86)\NEC Electronics
2013-11-06 00:26 - 2013-11-05 22:15 - 00000000 ____D C:\Users\TP\Downloads\Eminem - The Marshall Mathers LP 2 (Deluxe Edition) (2013) MP3 320
2013-11-05 19:41 - 2013-11-05 19:41 - 00000000 ____D C:\Users\TP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2013-11-05 19:41 - 2013-11-05 19:41 - 00000000 ____D C:\Program Files\WinRAR
2013-11-05 16:38 - 2013-11-05 23:05 - 00000000 ___RD C:\Users\TP\Virtual Machines
2013-11-05 16:37 - 2013-11-05 16:37 - 00000000 ____D C:\Windows\system32\Drivers\tr-TR
2013-11-05 16:37 - 2013-11-05 16:37 - 00000000 ____D C:\Windows\system32\Drivers\th-TH
2013-11-05 16:37 - 2013-11-05 16:37 - 00000000 ____D C:\Windows\system32\Drivers\ro-RO
2013-11-05 16:37 - 2013-11-05 16:37 - 00000000 ____D C:\Windows\system32\Drivers\he-IL
2013-11-05 16:37 - 2013-11-05 16:37 - 00000000 ____D C:\Windows\system32\Drivers\ar-SA
2013-11-05 16:37 - 2013-11-05 16:37 - 00000000 ____D C:\Program Files (x86)\Windows Virtual PC
2013-11-05 16:35 - 2010-11-20 14:34 - 00360832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vpcvmm.sys
2013-11-05 16:35 - 2010-11-20 14:34 - 00194944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vpchbus.sys
2013-11-05 16:35 - 2010-11-20 14:27 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\vpchbuspipe.dll
2013-11-05 16:35 - 2010-11-20 14:25 - 04514816 _____ (Microsoft Corporation) C:\Windows\system32\vpc.exe
2013-11-05 16:35 - 2010-11-20 14:25 - 02264064 _____ (Microsoft Corporation) C:\Windows\system32\VPCWizard.exe
2013-11-05 16:35 - 2010-11-20 14:25 - 01369600 _____ (Microsoft Corporation) C:\Windows\system32\VPCSettings.exe
2013-11-05 16:35 - 2010-11-20 12:37 - 01210368 _____ (Microsoft Corporation) C:\Windows\system32\VMWindow.exe
2013-11-05 16:35 - 2010-11-20 12:37 - 00936448 _____ (Microsoft Corporation) C:\Windows\system32\vmsal.exe
2013-11-05 16:35 - 2010-11-20 12:35 - 00562176 _____ (Microsoft Corporation) C:\Windows\system32\VMCPropertyHandler.dll
2013-11-05 16:35 - 2010-11-20 12:35 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vpcusb.sys
2013-11-05 16:35 - 2010-11-20 12:35 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vpcnfltr.sys
2013-11-05 16:35 - 2010-11-20 11:52 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vmsal.exe
2013-11-05 16:32 - 2013-11-05 16:32 - 00000000 ____D C:\Program Files\Windows XP Mode
2013-11-05 16:23 - 2013-11-05 16:23 - 00000000 ____D C:\ProgramData\Windows Genuine Advantage
2013-10-26 16:56 - 2013-10-26 16:56 - 00000000 ____D C:\Program Files\smartmontools
2013-10-26 16:51 - 2013-10-26 16:51 - 00000000 ____D C:\Users\TP\Desktop\DriveInfo
2013-10-26 16:47 - 2013-10-26 16:50 - 00000000 ____D C:\Program Files (x86)\CrystalDiskInfo
2013-10-26 16:47 - 2013-10-26 16:47 - 00001190 _____ C:\Users\TP\Desktop\CrystalDiskInfo.lnk
2013-10-26 09:50 - 2013-10-26 09:50 - 00000930 _____ C:\Users\TP\Desktop\HD Tune.lnk
2013-10-26 09:50 - 2013-10-26 09:50 - 00000000 ____D C:\Program Files (x86)\HD Tune
2013-10-26 08:50 - 2013-10-26 08:50 - 00000000 ____D C:\Users\TP\AppData\Roaming\ASCOMP Software
2013-10-26 08:50 - 2013-10-26 08:50 - 00000000 ____D C:\Program Files (x86)\ASCOMP Software
2013-10-26 08:47 - 2013-10-26 08:47 - 00853427 _____ C:\Users\TP\Desktop\HDDEraseWeb40.zip
2013-10-26 08:47 - 2013-10-26 08:47 - 00000000 ____D C:\Users\TP\Desktop\HDDEraseWeb40
2013-10-25 12:37 - 2013-10-25 12:37 - 00000000 ____D C:\Users\TP\AppData\Roaming\PDAppFlex
2013-10-25 10:48 - 2013-10-25 10:48 - 00001119 _____ C:\Users\TP\Desktop\hsWebCam.lnk
2013-10-25 10:48 - 2013-10-25 10:48 - 00000000 ____D C:\Users\TP\Desktop\webcamfullsetup
2013-10-25 10:48 - 2013-10-25 10:48 - 00000000 ____D C:\Program Files (x86)\Hippsoft
2013-10-25 10:48 - 2012-02-14 10:09 - 01070352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCOMCTL.OCX
2013-10-25 10:48 - 2011-03-06 10:59 - 00908792 _____ (Hippsoft |url=www.hippsoft.com |mail=hippsoftservice@hippsoft.com |update=www.hippsoft.com/software/hskomp.htm |type=Freeware) C:\Windows\SysWOW64\hsMedia.ocx
2013-10-25 10:48 - 2011-03-06 10:59 - 00785912 _____ (Hippsoft |url=www.hippsoft.com |mail=hippsoftservice@hippsoft.com |update=www.hippsoft.com/software/hskomp.htm |type=Freeware) C:\Windows\SysWOW64\hsdlgutil.dll
2013-10-25 10:48 - 2011-03-06 10:59 - 00536056 _____ (Hippsoft |url=www.hippsoft.com |mail=hippsoftservice@hippsoft.com |update=www.hippsoft.com/software/hskomp.htm |type=Freeware) C:\Windows\SysWOW64\hsLabel.ocx
2013-10-25 10:48 - 2011-03-06 10:59 - 00290296 _____ (Hippsoft |url=www.hippsoft.com |mail=hippsoftservice@hippsoft.com |update=www.hippsoft.com/software/hskomp.htm |type=Freeware) C:\Windows\SysWOW64\hswinutil.dll
2013-10-25 10:48 - 2011-03-06 10:59 - 00261624 _____ (Hippsoft |url=www.hippsoft.com |mail=hippsoftservice@hippsoft.com |update=www.hippsoft.com/software/hskomp.htm |type=Freeware) C:\Windows\SysWOW64\hsButton.ocx
2013-10-25 10:48 - 2011-03-06 10:59 - 00257528 _____ (Hippsoft |url=www.hippsoft.com |mail=hippsoftservice@hippsoft.com |update=www.hippsoft.com/software/hskomp.htm |type=Freeware) C:\Windows\SysWOW64\hsfutil.dll
2013-10-25 10:48 - 2011-03-06 10:59 - 00237048 _____ (Hippsoft |url=www.hippsoft.com |mail=hippsoftservice@hippsoft.com |update=www.hippsoft.com/software/hskomp.htm |type=Freeware) C:\Windows\SysWOW64\hsSplitterbar.ocx
2013-10-25 10:48 - 2011-03-06 10:59 - 00171512 _____ (Hippsoft |url=www.hippsoft.com |mail=hippsoftservice@hippsoft.com |update=www.hippsoft.com/software/hskomp.htm |type=Freeware) C:\Windows\SysWOW64\hstimerclass.dll
2013-10-25 10:48 - 2011-03-06 10:59 - 00155128 _____ (Hippsoft |url=www.hippsoft.com |mail=hippsoftservice@hippsoft.com |update=www.hippsoft.com/software/hskomp.htm |type=Freeware) C:\Windows\SysWOW64\hssubclass.dll
2013-10-25 10:48 - 2011-03-06 10:59 - 00146936 _____ (Hippsoft |url=www.hippsoft.com |mail=hippsoftservice@hippsoft.com |update=www.hippsoft.com/software/hskomp.htm |type=Freeware) C:\Windows\SysWOW64\hsColor.ocx
2013-10-25 10:48 - 2011-03-06 10:59 - 00142840 _____ (Hippsoft |url=www.hippsoft.com |mail=hippsoftservice@hippsoft.com |update=www.hippsoft.com/software/hskomp.htm |type=Freeware) C:\Windows\SysWOW64\hsMenu.ocx
2013-10-25 10:48 - 2011-03-06 10:59 - 00122360 _____ (Hippsoft |url=www.hippsoft.com |mail=hippsoftservice@hippsoft.com |update=www.hippsoft.com/software/hskomp.htm |type=Freeware) C:\Windows\SysWOW64\hsSysTray.ocx
2013-10-25 10:48 - 2011-03-06 10:59 - 00101880 _____ (Hippsoft |url=www.hippsoft.com |mail=hippsoftservice@hippsoft.com |update=www.hippsoft.com/software/hskomp.htm |type=Freeware) C:\Windows\SysWOW64\hsWindowProc.ocx
2013-10-25 10:48 - 2011-03-06 10:59 - 00101880 _____ (Hippsoft |url=www.hippsoft.com |mail=hippsoftservice@hippsoft.com |update=www.hippsoft.com/software/hskomp.htm |type=Freeware) C:\Windows\SysWOW64\hsGradient.ocx
2013-10-25 10:48 - 2011-03-06 10:59 - 00089592 _____ (Hippsoft |url=www.hippsoft.com |mail=hippsoftservice@hippsoft.com |update=www.hippsoft.com/software/hskomp.htm |type=Freeware) C:\Windows\SysWOW64\hsCom.ocx
2013-10-25 10:48 - 2011-03-06 10:59 - 00073208 _____ (Hippsoft |url=www.hippsoft.com |mail=hippsoftservice@hippsoft.com |update=www.hippsoft.com/software/hskomp.htm |type=Freeware) C:\Windows\SysWOW64\hsTimer.ocx
2013-10-25 10:48 - 2011-03-06 10:59 - 00073208 _____ (Hippsoft |url=www.hippsoft.com |mail=hippsoftservice@hippsoft.com |update=www.hippsoft.com/software/hskomp.htm |type=Freeware) C:\Windows\SysWOW64\hsSeparator.ocx
2013-10-25 10:48 - 2011-03-06 10:59 - 00052728 _____ (Hippsoft |url=www.hippsoft.com |mail=hippsoftservice@hippsoft.com |update=www.hippsoft.com/software/hskomp.htm |type=Freeware) C:\Windows\SysWOW64\hsCrypto.dll
2013-10-25 10:48 - 2011-03-06 10:59 - 00048632 _____ (Hippsoft |url=www.hippsoft.com |mail=hippsoftservice@hippsoft.com |update=www.hippsoft.com/software/hskomp.htm |type=Freeware) C:\Windows\SysWOW64\hsServerData.exe
2013-10-25 10:48 - 2010-11-04 21:55 - 00659264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCOMCT2.OCX
2013-10-25 10:48 - 2010-11-04 21:55 - 00415552 _____ (Microsoft Corporation ) C:\Windows\SysWOW64\COMCT332.OCX
2013-10-25 10:48 - 2010-11-04 21:55 - 00258880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSFLXGRD.OCX
2013-10-25 10:48 - 2010-11-04 21:55 - 00221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TABCTL32.OCX
2013-10-25 10:48 - 2010-11-04 21:55 - 00218432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RICHTX32.OCX
2013-10-25 10:48 - 2010-11-04 21:55 - 00158208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCMCDE.DLL
2013-10-25 10:48 - 2010-11-04 21:55 - 00155984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\COMDLG32.OCX
2013-10-25 10:48 - 2010-11-04 21:55 - 00127808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSWINSCK.OCX
2013-10-25 10:48 - 2010-11-04 21:55 - 00125712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VB6DE.DLL
2013-10-25 10:48 - 2010-11-04 21:55 - 00101888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VB6STKIT.DLL
2013-10-25 10:48 - 2010-11-04 21:55 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCC2DE.DLL
2013-10-25 10:48 - 2010-11-04 21:55 - 00060928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wbemdisp.tlb
2013-10-25 10:48 - 2010-11-04 21:55 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FLXGDDE.DLL
2013-10-25 10:48 - 2010-11-04 21:55 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RCHTXDE.DLL
2013-10-25 10:48 - 2010-11-04 21:55 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CMDLGDE.DLL
2013-10-25 10:48 - 2010-11-04 21:55 - 00028672 _____ (Microsoft Corporation ) C:\Windows\SysWOW64\CMCT3DE.DLL
2013-10-25 10:48 - 2010-11-04 21:55 - 00024626 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrnde.dll
2013-10-25 10:48 - 2010-11-04 21:55 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TABCTDE.DLL
2013-10-25 10:48 - 2010-11-04 21:55 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WINSKDE.DLL
2013-10-25 10:48 - 2006-11-21 21:00 - 00051868 _____ C:\Windows\SysWOW64\hsdlgutil.csh
2013-10-25 10:48 - 2003-07-06 12:07 - 00372736 _____ (Intel Corporation) C:\Windows\SysWOW64\IJL15.dll
2013-10-23 17:01 - 2013-10-23 17:01 - 00901733 _____ C:\Users\TP\Desktop\ESt-Grundstudiumgrau.pptx
2013-10-23 16:53 - 2013-10-23 16:54 - 00901856 _____ C:\Users\TP\Desktop\ESt-Grundstudium.pptx
2013-10-23 16:50 - 2013-10-23 16:50 - 00002140 _____ C:\Users\Public\Desktop\Adobe FormsCentral.lnk
2013-10-23 16:50 - 2013-10-23 16:50 - 00002026 _____ C:\Users\Public\Desktop\Adobe Acrobat XI Pro.lnk
2013-10-23 16:50 - 2013-10-23 16:50 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2013-10-23 16:49 - 2013-10-23 16:49 - 00000774 _____ C:\Windows\KB893803v2.log
2013-10-23 15:44 - 2013-10-23 15:51 - 00000000 ____D C:\Users\TP\Desktop\Adobe Acrobat XI Pro
2013-10-23 15:41 - 2013-10-23 15:41 - 00001031 _____ C:\Users\Public\Desktop\Adobe Download Assistant.lnk
2013-10-23 15:41 - 2013-10-23 15:41 - 00000000 ____D C:\Users\TP\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
2013-10-23 15:41 - 2013-10-23 15:41 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2013-10-23 15:41 - 2013-10-23 15:41 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2013-10-23 15:41 - 2013-10-23 15:41 - 00000000 ____D C:\Program Files (x86)\Adobe Download Assistant
2013-10-23 15:40 - 2013-10-23 15:40 - 02469824 _____ C:\Users\TP\Desktop\AdobeDownloadAssistant.exe
==================== One Month Modified Files and Folders =======
2013-11-18 23:54 - 2013-11-18 23:54 - 00014635 _____ C:\Users\TP\Desktop\FRST.txt
2013-11-18 23:53 - 2013-11-18 23:53 - 01957964 _____ (Farbar) C:\Users\TP\Desktop\FRST64.exe
2013-11-18 23:53 - 2013-11-18 23:53 - 00000466 _____ C:\Users\TP\Desktop\defogger_disable.log
2013-11-18 23:53 - 2013-11-18 23:53 - 00000000 ____D C:\FRST
2013-11-18 23:53 - 2013-11-18 23:53 - 00000000 _____ C:\Users\TP\defogger_reenable
2013-11-18 23:53 - 2013-10-05 18:22 - 00000000 ____D C:\Users\TP
2013-11-18 23:52 - 2013-11-18 23:52 - 00050477 _____ C:\Users\TP\Desktop\Defogger.exe
2013-11-18 23:44 - 2013-11-18 23:44 - 01798144 _____ C:\Users\TP\Desktop\WOT-latest-de-x64_20130902.msi
2013-11-18 23:44 - 2013-11-18 23:44 - 00000000 ____D C:\Program Files\WOT
2013-11-18 23:44 - 2013-11-18 23:44 - 00000000 ____D C:\Program Files (x86)\WOT
2013-11-18 23:44 - 2013-11-18 23:43 - 00521791 _____ C:\Users\TP\Desktop\wot-latest1030.zip
2013-11-18 23:44 - 2013-10-05 18:22 - 01769401 _____ C:\Windows\WindowsUpdate.log
2013-11-18 23:25 - 2013-11-18 23:25 - 00001113 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-11-18 23:25 - 2013-11-18 23:25 - 00000000 ____D C:\Users\TP\AppData\Roaming\Malwarebytes
2013-11-18 23:25 - 2013-11-18 23:25 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-11-18 23:25 - 2013-11-18 23:25 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-11-18 23:24 - 2013-11-18 23:24 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\TP\Desktop\mbam-setup-1.75.0.1300.exe
2013-11-18 23:23 - 2013-10-05 21:40 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-11-18 23:21 - 2009-07-14 05:45 - 00021664 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-11-18 23:21 - 2009-07-14 05:45 - 00021664 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-11-18 23:21 - 2009-07-14 03:34 - 00000478 _____ C:\Windows\win.ini
2013-11-18 23:20 - 2011-04-12 08:43 - 00701224 _____ C:\Windows\system32\perfh007.dat
2013-11-18 23:20 - 2011-04-12 08:43 - 00150092 _____ C:\Windows\system32\perfc007.dat
2013-11-18 23:20 - 2009-07-14 06:13 - 01619224 _____ C:\Windows\system32\PerfStringBackup.INI
2013-11-18 23:16 - 2013-11-14 18:32 - 00000398 _____ C:\Windows\Tasks\Show-Password Update.job
2013-11-18 23:16 - 2013-11-08 15:57 - 00003510 _____ C:\Windows\System32\Tasks\AutoKMS
2013-11-18 23:16 - 2013-11-08 15:57 - 00000000 ____D C:\Windows\AutoKMS
2013-11-18 23:16 - 2013-10-09 15:11 - 00000000 ___RD C:\Users\TP\Dropbox
2013-11-18 23:16 - 2013-10-09 15:09 - 00000000 ____D C:\Users\TP\AppData\Roaming\Dropbox
2013-11-18 23:16 - 2013-10-05 18:22 - 00001425 _____ C:\Users\TP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-11-18 23:16 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-11-18 23:16 - 2009-07-14 05:51 - 00045906 _____ C:\Windows\setupact.log
2013-11-18 23:15 - 2013-11-18 23:12 - 00009026 _____ C:\Windows\IE11_main.log
2013-11-18 23:15 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\PolicyDefinitions
2013-11-18 23:12 - 2013-11-18 23:12 - 23212032 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 17142784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 12995584 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 11220992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 05765120 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 04240384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-11-18 23:12 - 2013-11-18 23:12 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-11-18 23:12 - 2013-11-18 23:12 - 02332160 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 02166272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 01993728 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-11-18 23:12 - 2013-11-18 23:12 - 01926656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2013-11-18 23:12 - 2013-11-18 23:12 - 01818112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 01394176 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 01156608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2013-11-18 23:12 - 2013-11-18 23:12 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2013-11-18 23:12 - 2013-11-18 23:12 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2013-11-18 23:12 - 2013-11-18 23:12 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2013-11-18 23:12 - 2013-11-18 23:12 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2013-11-18 23:12 - 2013-11-18 23:12 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-11-18 23:12 - 2013-11-18 23:12 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2013-11-18 23:12 - 2013-11-18 23:12 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2013-11-18 23:12 - 2013-11-18 23:12 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2013-11-18 23:12 - 2013-11-18 23:12 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2013-11-18 23:12 - 2013-11-18 23:12 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-11-18 23:12 - 2013-11-18 23:12 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2013-11-18 23:12 - 2013-11-18 23:12 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2013-11-18 23:12 - 2013-11-18 23:12 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2013-11-18 23:12 - 2013-11-18 23:12 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-11-18 23:12 - 2013-11-18 23:12 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2013-11-18 23:12 - 2013-11-18 23:12 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2013-11-18 23:12 - 2013-11-18 23:12 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-11-18 23:12 - 2013-11-18 23:12 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2013-11-18 23:12 - 2013-11-18 23:12 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2013-11-18 23:12 - 2013-11-18 23:12 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2013-11-18 23:12 - 2013-11-18 23:12 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2013-11-18 23:12 - 2013-11-18 23:12 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2013-11-18 23:12 - 2013-11-18 23:12 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2013-11-18 23:12 - 2013-11-18 23:12 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2013-11-18 23:12 - 2013-11-18 23:11 - 63320784 _____ (Microsoft Corporation) C:\Users\TP\Desktop\IE11-Windows6.1-x64-de-de.exe
2013-11-18 21:49 - 2013-10-06 14:23 - 00000000 ____D C:\Users\TP\AppData\Roaming\Skype
2013-11-18 21:32 - 2013-11-17 13:30 - 00000000 ____D C:\AdwCleaner
2013-11-18 21:29 - 2013-11-18 21:29 - 00000746 _____ C:\Users\TP\Desktop\JRT.txt
2013-11-18 21:23 - 2013-11-18 21:23 - 01034531 _____ (Thisisu) C:\Users\TP\Desktop\JRT_6.0.8.exe
2013-11-18 21:23 - 2013-11-18 21:23 - 00000000 ____D C:\Windows\ERUNT
2013-11-18 19:23 - 2013-10-05 19:59 - 00000000 ____D C:\Users\TP\AppData\Roaming\vlc
2013-11-18 18:19 - 2013-10-06 14:23 - 00000000 ___RD C:\Program Files (x86)\Skype
2013-11-18 18:19 - 2013-10-06 14:23 - 00000000 ____D C:\ProgramData\Skype
2013-11-17 13:56 - 2013-10-08 16:37 - 00000000 ____D C:\Users\TP\Downloads\p
2013-11-17 13:52 - 2013-11-13 14:13 - 00000000 ____D C:\GONCA SICHERUNG
2013-11-17 13:45 - 2013-11-17 13:42 - 00000000 ____D C:\Users\TP\AppData\Local\NPE
2013-11-17 13:42 - 2013-11-17 13:42 - 03057128 ____N (Symantec Corporation) C:\Users\TP\Desktop\NPE.exe
2013-11-17 13:42 - 2013-11-17 13:42 - 00000000 ____D C:\ProgramData\Norton
2013-11-17 13:37 - 2013-10-05 20:03 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-11-17 13:37 - 2013-10-05 20:03 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-11-17 13:36 - 2013-10-05 20:43 - 00000000 ____D C:\Users\TP\AppData\Local\Adobe
2013-11-17 13:35 - 2013-10-05 19:07 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-11-17 13:30 - 2013-11-17 13:30 - 01085542 _____ C:\Users\TP\Desktop\adwcleaner_3012.exe
2013-11-17 03:00 - 2013-10-05 20:46 - 00001912 _____ C:\Windows\epplauncher.mif
2013-11-17 03:00 - 2013-10-05 20:45 - 00000000 ____D C:\Program Files\Microsoft Security Client
2013-11-17 03:00 - 2013-10-05 20:45 - 00000000 ____D C:\Program Files (x86)\Microsoft Security Client
2013-11-16 12:46 - 2013-10-05 20:22 - 00051953 _____ C:\Users\TP\Desktop\kontoübersicht.xlsx
2013-11-16 02:05 - 2013-11-16 02:05 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-11-16 01:47 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache
2013-11-15 03:01 - 2013-10-05 21:44 - 00000000 ____D C:\Windows\system32\MRT
2013-11-15 03:00 - 2013-10-05 21:44 - 82896128 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-11-14 18:36 - 2013-11-14 18:35 - 00000000 ____D C:\Users\TP\Desktop\auspuff alt
2013-11-14 18:35 - 2013-11-14 18:32 - 00000000 ____D C:\Users\TP\AppData\Roaming\MyPhoneExplorer
2013-11-14 18:32 - 2013-11-14 18:32 - 00003040 _____ C:\Windows\System32\Tasks\Show-Password Update
2013-11-14 18:32 - 2013-11-14 18:32 - 00002061 _____ C:\Users\Public\Desktop\MyPhoneExplorer.lnk
2013-11-14 18:32 - 2013-11-14 18:32 - 00000000 ____D C:\Program Files (x86)\MyPhoneExplorer
2013-11-13 12:29 - 2013-10-05 19:56 - 00000000 ____D C:\Users\TP\Desktop\hnu sem 2
2013-11-09 23:23 - 2010-11-21 04:47 - 00113164 _____ C:\Windows\PFRO.log
2013-11-09 23:23 - 2009-07-14 05:45 - 00417688 _____ C:\Windows\system32\FNTCACHE.DAT
2013-11-09 09:57 - 2013-11-09 09:57 - 00005419 _____ C:\Users\TP\Desktop\feedly.opml
2013-11-09 09:48 - 2013-10-05 21:40 - 00000000 ____D C:\Users\TP\AppData\Local\Microsoft Help
2013-11-08 15:59 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files\System
2013-11-08 15:57 - 2013-11-08 15:56 - 00000796 _____ C:\Users\TP\Downloads\Settings.ini
2013-11-08 15:50 - 2013-11-08 15:48 - 01596448 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2013-11-08 15:38 - 2013-10-05 18:30 - 00109672 _____ C:\Users\TP\AppData\Local\GDIPFONTCACHEV1.DAT
2013-11-08 15:27 - 2013-11-08 15:27 - 00000000 ____D C:\Program Files\Microsoft Synchronization Services
2013-11-08 15:27 - 2013-11-08 15:27 - 00000000 ____D C:\Program Files\Common Files\DESIGNER
2013-11-08 15:27 - 2011-04-12 08:54 - 00000000 ____D C:\Windows\ShellNew
2013-11-08 15:27 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2013-11-08 15:26 - 2013-11-08 15:26 - 00000000 ____D C:\Windows\PCHEALTH
2013-11-08 15:26 - 2013-11-08 15:26 - 00000000 ____D C:\Program Files\Microsoft Sync Framework
2013-11-08 15:26 - 2013-11-08 15:26 - 00000000 ____D C:\Program Files\Microsoft SQL Server Compact Edition
2013-11-08 15:26 - 2013-11-08 15:26 - 00000000 ____D C:\Program Files\Microsoft Analysis Services
2013-11-08 15:26 - 2013-11-08 15:26 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 8
2013-11-08 15:26 - 2013-11-08 15:26 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2013-11-08 15:26 - 2013-11-08 15:25 - 00000000 ____D C:\Program Files\Microsoft Office
2013-11-08 15:26 - 2009-07-14 06:32 - 00000000 ____D C:\Program Files (x86)\MSBuild
2013-11-08 15:25 - 2013-11-08 15:25 - 00000000 __RHD C:\MSOCache
2013-11-08 15:25 - 2013-11-08 15:25 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2013-11-06 12:38 - 2013-11-06 12:38 - 00000000 ____D C:\Program Files (x86)\NEC Electronics
2013-11-06 12:38 - 2013-10-05 18:41 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2013-11-05 23:05 - 2013-11-05 16:38 - 00000000 ___RD C:\Users\TP\Virtual Machines
2013-11-05 22:15 - 2013-11-06 00:26 - 00000000 ____D C:\Users\TP\Downloads\Eminem - The Marshall Mathers LP 2 (Deluxe Edition) (2013) MP3 320
2013-11-05 19:49 - 2013-10-08 13:49 - 00000000 ____D C:\Program Files (x86)\JDownloader
2013-11-05 19:43 - 2013-10-08 13:59 - 00000000 ____D C:\Users\TP\AppData\Roaming\WinRAR
2013-11-05 19:41 - 2013-11-05 19:41 - 00000000 ____D C:\Users\TP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2013-11-05 19:41 - 2013-11-05 19:41 - 00000000 ____D C:\Program Files\WinRAR
2013-11-05 16:37 - 2013-11-05 16:37 - 00000000 ____D C:\Windows\system32\Drivers\tr-TR
2013-11-05 16:37 - 2013-11-05 16:37 - 00000000 ____D C:\Windows\system32\Drivers\th-TH
2013-11-05 16:37 - 2013-11-05 16:37 - 00000000 ____D C:\Windows\system32\Drivers\ro-RO
2013-11-05 16:37 - 2013-11-05 16:37 - 00000000 ____D C:\Windows\system32\Drivers\he-IL
2013-11-05 16:37 - 2013-11-05 16:37 - 00000000 ____D C:\Windows\system32\Drivers\ar-SA
2013-11-05 16:37 - 2013-11-05 16:37 - 00000000 ____D C:\Program Files (x86)\Windows Virtual PC
2013-11-05 16:37 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\SysWOW64\tr-TR
2013-11-05 16:37 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\SysWOW64\th-TH
2013-11-05 16:37 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\SysWOW64\ro-RO
2013-11-05 16:37 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\SysWOW64\he-IL
2013-11-05 16:37 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\SysWOW64\ar-SA
2013-11-05 16:37 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\tr-TR
2013-11-05 16:37 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\th-TH
2013-11-05 16:37 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\ro-RO
2013-11-05 16:37 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\he-IL
2013-11-05 16:37 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\ar-SA
2013-11-05 16:32 - 2013-11-05 16:32 - 00000000 ____D C:\Program Files\Windows XP Mode
2013-11-05 16:23 - 2013-11-05 16:23 - 00000000 ____D C:\ProgramData\Windows Genuine Advantage
2013-11-02 20:12 - 2013-10-09 15:11 - 00000970 _____ C:\Users\TP\Desktop\Dropbox.lnk
2013-11-02 20:12 - 2013-10-09 15:09 - 00000000 ____D C:\Users\TP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2013-11-02 20:12 - 2013-10-05 18:22 - 00000000 ___RD C:\Users\TP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-11-02 20:11 - 2013-10-12 16:30 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
2013-10-26 16:56 - 2013-10-26 16:56 - 00000000 ____D C:\Program Files\smartmontools
2013-10-26 16:51 - 2013-10-26 16:51 - 00000000 ____D C:\Users\TP\Desktop\DriveInfo
2013-10-26 16:50 - 2013-10-26 16:47 - 00000000 ____D C:\Program Files (x86)\CrystalDiskInfo
2013-10-26 16:47 - 2013-10-26 16:47 - 00001190 _____ C:\Users\TP\Desktop\CrystalDiskInfo.lnk
2013-10-26 16:19 - 2013-10-05 20:22 - 00000000 ____D C:\Users\TP\Desktop\vk
2013-10-26 09:50 - 2013-10-26 09:50 - 00000930 _____ C:\Users\TP\Desktop\HD Tune.lnk
2013-10-26 09:50 - 2013-10-26 09:50 - 00000000 ____D C:\Program Files (x86)\HD Tune
2013-10-26 08:50 - 2013-10-26 08:50 - 00000000 ____D C:\Users\TP\AppData\Roaming\ASCOMP Software
2013-10-26 08:50 - 2013-10-26 08:50 - 00000000 ____D C:\Program Files (x86)\ASCOMP Software
2013-10-26 08:47 - 2013-10-26 08:47 - 00853427 _____ C:\Users\TP\Desktop\HDDEraseWeb40.zip
2013-10-26 08:47 - 2013-10-26 08:47 - 00000000 ____D C:\Users\TP\Desktop\HDDEraseWeb40
2013-10-25 12:37 - 2013-10-25 12:37 - 00000000 ____D C:\Users\TP\AppData\Roaming\PDAppFlex
2013-10-25 10:48 - 2013-10-25 10:48 - 00001119 _____ C:\Users\TP\Desktop\hsWebCam.lnk
2013-10-25 10:48 - 2013-10-25 10:48 - 00000000 ____D C:\Users\TP\Desktop\webcamfullsetup
2013-10-25 10:48 - 2013-10-25 10:48 - 00000000 ____D C:\Program Files (x86)\Hippsoft
2013-10-23 17:01 - 2013-10-23 17:01 - 00901733 _____ C:\Users\TP\Desktop\ESt-Grundstudiumgrau.pptx
2013-10-23 16:54 - 2013-10-23 16:53 - 00901856 _____ C:\Users\TP\Desktop\ESt-Grundstudium.pptx
2013-10-23 16:52 - 2013-10-05 20:03 - 00000000 ____D C:\Users\TP\AppData\Roaming\Adobe
2013-10-23 16:51 - 2013-10-05 20:44 - 00000000 ____D C:\ProgramData\Adobe
2013-10-23 16:50 - 2013-10-23 16:50 - 00002140 _____ C:\Users\Public\Desktop\Adobe FormsCentral.lnk
2013-10-23 16:50 - 2013-10-23 16:50 - 00002026 _____ C:\Users\Public\Desktop\Adobe Acrobat XI Pro.lnk
2013-10-23 16:50 - 2013-10-23 16:50 - 00000000 ____D C:\ProgramData\regid.1986-12.com.adobe
2013-10-23 16:50 - 2013-10-05 22:00 - 00000000 ____D C:\Program Files (x86)\Adobe
2013-10-23 16:49 - 2013-10-23 16:49 - 00000774 _____ C:\Windows\KB893803v2.log
2013-10-23 15:51 - 2013-10-23 15:44 - 00000000 ____D C:\Users\TP\Desktop\Adobe Acrobat XI Pro
2013-10-23 15:41 - 2013-10-23 15:41 - 00001031 _____ C:\Users\Public\Desktop\Adobe Download Assistant.lnk
2013-10-23 15:41 - 2013-10-23 15:41 - 00000000 ____D C:\Users\TP\AppData\Roaming\com.adobe.downloadassistant.AdobeDownloadAssistant
2013-10-23 15:41 - 2013-10-23 15:41 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia
2013-10-23 15:41 - 2013-10-23 15:41 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia
2013-10-23 15:41 - 2013-10-23 15:41 - 00000000 ____D C:\Program Files (x86)\Adobe Download Assistant
2013-10-23 15:40 - 2013-10-23 15:40 - 02469824 _____ C:\Users\TP\Desktop\AdobeDownloadAssistant.exe
2013-10-20 10:39 - 2013-10-05 19:07 - 00000000 ____D C:\Users\TP\AppData\Local\Mozilla
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-11-10 12:51
==================== End Of Log ============================ Ich hoffe für das erste alle nötigen Informationen zu haben und bedanke mich schonmal für die Hilfe! |