Servus Matthias,
hier bei LOG-Dateien
FRST
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 28-11-2013
Ran by Tim Puhlmann (administrator) on TIMPUHLMANN-PC on 30-11-2013 13:22:41
Running from C:\Users\Tim Puhlmann\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(AMD) C:\Windows\System32\atiesrxx.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSvc.exe
(ABBYY) C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
(SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S50RPB.EXE
(Acer Incorporated) C:\Program Files (x86)\Acer\Registration\GREGsvc.exe
(IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
(Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
(NewTech Infosystems, Inc.) C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe
(NTI, Inc.) C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect\HelperService.exe
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect\ConversionService.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(Skype Technologies S.A.) C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
(Acer Group) C:\Program Files\Acer\Acer Updater\UpdaterService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.165\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.21.165\GoogleCrashHandler64.exe
(Egis Technology Inc.) C:\Program Files (x86)\EgisTec MyWinLocker\x86\mwlDaemon.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
() C:\Windows\PLFSetI.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Apoint.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
(Spotify Ltd) C:\Users\Tim Puhlmann\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
(SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_IATIHAE.EXE
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.130\SSScheduler.exe
(Dropbox, Inc.) C:\Users\Tim Puhlmann\AppData\Roaming\Dropbox\bin\Dropbox.exe
(NewTech Infosystems, Inc.) C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe
(OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe
(Egis Technology Inc.) C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe
(OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin
(SEIKO EPSON CORPORATION) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
(Sun Microsystems, Inc.) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMworker.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerEvent.exe
(Egis Technology Inc.) C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApMsgFwd.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\Hidfind.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint2K\ApntEx.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_152.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_9_900_152.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [mwlDaemon] - C:\Program Files (x86)\EgisTec MyWinLocker\x86\mwlDaemon.exe [349552 2010-05-27] (Egis Technology Inc.)
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11101800 2010-07-29] (Realtek Semiconductor)
HKLM\...\Run: [PLFSetI] - C:\Windows\PLFSetI.exe [206208 2010-06-09] ()
HKLM\...\Run: [Apoint] - C:\Program Files\Apoint2K\Apoint.exe [325120 2009-10-22] (Alps Electric Co., Ltd.)
HKLM\...\Run: [Acer ePower Management] - C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [861216 2010-06-11] (Acer Incorporated)
HKCU\...\Run: [Spotify Web Helper] - C:\Users\Tim Puhlmann\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1140736 2013-11-06] (Spotify Ltd)
HKCU\...\Run: [EPLTarget\P0000000000000001] - C:\Windows\System32\spool\drivers\x64\3\E_IATIHAE.EXE [283232 2012-02-29] (SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [BackupManagerTray] - C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe [265984 2010-06-28] (NewTech Infosystems, Inc.)
HKLM-x32\...\Run: [Norton Online Backup] - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [1155928 2010-06-01] (Symantec Corporation)
HKLM-x32\...\Run: [SuiteTray] - C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe [337264 2010-05-27] (Egis Technology Inc.)
HKLM-x32\...\Run: [EgisUpdate] - C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe [201584 2010-03-11] (Egis Technology Inc.)
HKLM-x32\...\Run: [EgisTecPMMUpdate] - C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe [407920 2010-03-11] (Egis Technology Inc.)
HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [102400 2010-04-26] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [LManager] - C:\Program Files (x86)\Launch Manager\LManager.exe [975952 2010-08-11] (Dritek System Inc.)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [EEventManager] - C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [979328 2010-10-12] (SEIKO EPSON CORPORATION)
HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [252848 2012-07-03] (Sun Microsystems, Inc.)
HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [683576 2013-11-12] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [PDFPrint] - C:\Program Files (x86)\PDF24\pdf24.exe [162856 2013-07-22] (Geek Software GmbH)
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-11-02] (Apple Inc.)
HKLM-x32\...\Run: [QuickTime Task] - C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)
HKU\Default\...\RunOnce: [ScrSav] - C:\Program Files (x86)\Acer\Screensaver\run_Acer.exe [154144 2010-01-15] ()
Startup: C:\Users\Tim Puhlmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Tim Puhlmann\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\Tim Puhlmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk
ShortcutTarget: OpenOffice.org 3.3.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe ()
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer.msn.com
BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll No File
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: MSS+ Identifier - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.130\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO-x32: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll (pdfforge GmbH)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
FireFox:
========
FF ProfilePath: C:\Users\Tim Puhlmann\AppData\Roaming\Mozilla\Firefox\Profiles\wz5hkrsz.default
FF NewTab: hxxp://www.google.com/
FF SearchEngineOrder.1: Google
FF SelectedSearchEngine: Google
FF Homepage: hxxp://www.google.com
FF Keyword.URL: hxxp://www.google.com/search?btnG=Google+Search&q=
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_152.dll ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.0.5 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_152.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @gametap.com/npdd,version=1.0 - C:\Program Files (x86)\Downloader\npdd.dll (Metaboli)
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @java.com/DTPlugin,version=10.15.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.15.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @mcafee.com/McAfeeMssPlugin - C:\Program Files\McAfee Security Scan\3.8.130\npMcAfeeMss.dll (McAfee, Inc.)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.165\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\Tim Puhlmann\AppData\Roaming\Mozilla\Firefox\Profiles\wz5hkrsz.default\searchplugins\englische-ergebnisse.xml
FF SearchPlugin: C:\Users\Tim Puhlmann\AppData\Roaming\Mozilla\Firefox\Profiles\wz5hkrsz.default\searchplugins\gmx-suche.xml
FF SearchPlugin: C:\Users\Tim Puhlmann\AppData\Roaming\Mozilla\Firefox\Profiles\wz5hkrsz.default\searchplugins\lastminute.xml
FF SearchPlugin: C:\Users\Tim Puhlmann\AppData\Roaming\Mozilla\Firefox\Profiles\wz5hkrsz.default\searchplugins\webde-suche.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: DVDVideoSoft Menu - C:\Users\Tim Puhlmann\AppData\Roaming\Mozilla\Firefox\Profiles\wz5hkrsz.default\Extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}.xpi
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}
==================== Services (Whitelisted) =================
R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440376 2013-11-12] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440376 2013-11-12] (Avira Operations GmbH & Co. KG)
S4 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1164360 2013-10-10] (Avira Operations GmbH & Co. KG)
R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2151744 2013-11-26] (IObit)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.130\McCHSvc.exe [288776 2013-09-06] (McAfee, Inc.)
S3 MWLService; C:\Program Files (x86)\EgisTec MyWinLocker\x86\MWLService.exe [305520 2010-05-27] (Egis Technology Inc.)
R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2804568 2010-06-01] (Symantec Corporation)
R2 NTISchedulerSvc; C:\Program Files (x86)\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [144640 2010-04-17] (NTI, Inc.)
R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH)
R2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH)
==================== Drivers (Whitelisted) ====================
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [106904 2013-11-12] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [132600 2013-11-12] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-10-10] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\System32\DRIVERS\avnetflt.sys [83160 2013-10-10] (Avira Operations GmbH & Co. KG)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-11-29 22:52 - 2013-11-29 22:55 - 00007628 _____ C:\Users\Tim Puhlmann\Desktop\zoek-results.txt
2013-11-29 22:46 - 2013-10-18 01:11 - 00024064 _____ C:\Windows\zoek-delete.exe
2013-11-29 22:05 - 2013-11-29 22:03 - 00000108 _____ C:\zoek-results2013-11-29-210321.log
2013-11-29 22:03 - 2013-11-29 22:48 - 00007628 _____ C:\zoek-results.log
2013-11-29 22:02 - 2013-11-29 22:35 - 00000000 ____D C:\zoek_backup
2013-11-29 22:02 - 2013-11-25 23:53 - 01398596 _____ C:\Users\Tim Puhlmann\Desktop\zoek.scr
2013-11-29 22:02 - 2013-11-25 23:53 - 01398596 _____ C:\Users\Tim Puhlmann\Desktop\zoek.pif
2013-11-29 22:02 - 2013-11-25 23:53 - 01398596 _____ C:\Users\Tim Puhlmann\Desktop\zoek.com
2013-11-29 21:45 - 2013-11-29 21:45 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Tim Puhlmann\Desktop\mbam-setup-1.75.0.1300.exe
2013-11-29 21:45 - 2013-11-29 21:45 - 00001117 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-11-29 21:45 - 2013-11-29 21:45 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-11-29 21:45 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2013-11-29 21:44 - 2013-11-29 21:44 - 00035098 _____ C:\Users\Tim Puhlmann\Desktop\JRT.txt
2013-11-29 21:30 - 2013-11-29 21:30 - 01034531 _____ (Thisisu) C:\Users\Tim Puhlmann\Desktop\JRT.exe
2013-11-29 21:30 - 2013-11-29 21:30 - 00000000 ____D C:\Windows\ERUNT
2013-11-29 21:27 - 2013-11-29 21:27 - 00006449 _____ C:\Users\Tim Puhlmann\Desktop\AdwCleaner[S0].txt
2013-11-29 21:23 - 2013-11-29 21:25 - 00000000 ____D C:\AdwCleaner
2013-11-29 21:22 - 2013-11-29 21:22 - 01091882 _____ C:\Users\Tim Puhlmann\Desktop\adwcleaner.exe
2013-11-29 15:04 - 2013-11-29 15:08 - 00023415 _____ C:\Users\Tim Puhlmann\Desktop\Addition.txt
2013-11-29 15:02 - 2013-11-30 13:26 - 00017489 _____ C:\Users\Tim Puhlmann\Desktop\FRST.txt
2013-11-29 15:02 - 2013-11-29 15:02 - 00000000 ____D C:\FRST
2013-11-29 15:01 - 2013-11-29 15:02 - 01959024 _____ (Farbar) C:\Users\Tim Puhlmann\Desktop\FRST64.exe
2013-11-29 14:55 - 2013-11-29 22:47 - 00001194 _____ C:\Windows\PFRO.log
2013-11-28 16:30 - 2013-11-28 16:30 - 00000000 __SHD C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2013-11-26 22:09 - 2013-11-26 22:09 - 02753344 _____ (AVAST Software) C:\Users\Tim Puhlmann\Downloads\avast-browser-cleanup_90.exe
2013-11-26 21:56 - 2013-11-26 21:56 - 00000000 ____D C:\Users\Tim Puhlmann\AppData\Roaming\Malwarebytes
2013-11-26 21:55 - 2013-11-26 21:55 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-11-26 21:54 - 2013-11-26 21:55 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Tim Puhlmann\Downloads\mbam-setup-1.75.0.1300.exe
2013-11-26 21:49 - 2013-11-26 21:49 - 00000000 ____D C:\Users\Tim Puhlmann\AppData\Roaming\IObit
2013-11-26 21:49 - 2013-11-26 21:49 - 00000000 ____D C:\ProgramData\ProductData
2013-11-26 21:49 - 2013-11-26 21:49 - 00000000 ____D C:\ProgramData\IObit
2013-11-26 21:49 - 2013-11-26 21:49 - 00000000 ____D C:\Program Files (x86)\IObit
2013-11-26 21:48 - 2013-11-26 21:49 - 10330944 _____ (IObit) C:\Users\Tim Puhlmann\Downloads\iobituninstaller3-1.0.exe
2013-11-25 13:32 - 2013-11-30 13:19 - 00000952 _____ C:\Windows\setupact.log
2013-11-25 13:32 - 2013-11-25 13:32 - 00000000 _____ C:\Windows\setuperr.log
2013-11-25 00:34 - 2013-11-25 00:35 - 00280758 _____ C:\Users\Tim Puhlmann\Documents\cc_20131125_003452.reg
2013-11-25 00:30 - 2013-11-25 00:30 - 00002786 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2013-11-25 00:30 - 2013-11-25 00:30 - 00000826 _____ C:\Users\Public\Desktop\CCleaner.lnk
2013-11-25 00:30 - 2013-11-25 00:30 - 00000000 ____D C:\Program Files\CCleaner
2013-11-25 00:29 - 2013-11-25 00:29 - 00618912 _____ C:\Users\Tim Puhlmann\Downloads\CCleaner - CHIP-Downloader.exe
2013-11-18 12:22 - 2013-11-18 12:43 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-11-14 12:01 - 2013-11-14 12:01 - 00000000 ____D C:\Users\Tim Puhlmann\AppData\Roaming\WinRAR
2013-11-13 16:14 - 2013-11-13 16:14 - 00000000 ____D C:\Users\Tim Puhlmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2013-11-13 16:13 - 2013-11-13 16:14 - 00000000 ____D C:\Program Files\WinRAR
2013-11-13 16:13 - 2013-11-13 16:13 - 02074056 _____ C:\Users\Tim Puhlmann\Downloads\winrar-x64-500d.exe
2013-11-13 15:50 - 2013-11-13 15:50 - 00001849 _____ C:\Users\Public\Desktop\QuickTime Player.lnk
2013-11-13 15:49 - 2013-11-13 15:50 - 00000000 ____D C:\Program Files (x86)\QuickTime
2013-11-13 15:36 - 2013-11-13 15:36 - 00001787 _____ C:\Users\Public\Desktop\iTunes.lnk
2013-11-13 15:35 - 2013-11-13 15:36 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2013-11-13 15:35 - 2013-11-13 15:36 - 00000000 ____D C:\Program Files\iTunes
2013-11-13 15:35 - 2013-11-13 15:36 - 00000000 ____D C:\Program Files (x86)\iTunes
2013-11-13 15:35 - 2013-11-13 15:35 - 00000000 ____D C:\Program Files\iPod
2013-11-13 12:56 - 2013-11-30 13:19 - 00000000 ___RD C:\Users\Tim Puhlmann\Dropbox
2013-11-13 12:56 - 2013-11-13 12:56 - 00001056 _____ C:\Users\Tim Puhlmann\Desktop\Dropbox.lnk
2013-11-13 12:53 - 2013-11-13 12:53 - 00000000 ____D C:\Users\Tim Puhlmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2013-11-13 12:51 - 2013-11-30 13:20 - 00000000 ____D C:\Users\Tim Puhlmann\AppData\Roaming\Dropbox
2013-11-13 12:51 - 2013-10-05 21:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2013-11-13 12:51 - 2013-10-05 20:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2013-11-13 12:48 - 2013-09-28 02:09 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2013-11-13 12:46 - 2013-11-13 12:51 - 35334016 _____ (Dropbox, Inc.) C:\Users\Tim Puhlmann\Downloads\Dropbox 2.4.7.exe
2013-11-13 12:46 - 2013-10-12 03:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2013-11-13 12:46 - 2013-10-12 03:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2013-11-13 12:46 - 2013-10-12 03:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2013-11-13 12:46 - 2013-10-12 03:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2013-11-13 12:46 - 2013-10-12 03:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2013-11-13 12:46 - 2013-10-04 03:28 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
2013-11-13 12:46 - 2013-10-04 03:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll
2013-11-13 12:46 - 2013-10-04 03:24 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2013-11-13 12:46 - 2013-10-04 02:58 - 00152576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll
2013-11-13 12:46 - 2013-10-04 02:56 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2013-11-13 12:46 - 2013-10-04 02:56 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll
2013-11-13 12:46 - 2013-10-03 03:23 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2013-11-13 12:46 - 2013-10-03 03:00 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2013-11-13 12:46 - 2013-09-25 03:26 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2013-11-13 12:46 - 2013-09-25 03:26 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2013-11-13 12:46 - 2013-09-25 03:23 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2013-11-13 12:46 - 2013-09-25 03:23 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2013-11-13 12:46 - 2013-09-25 03:23 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2013-11-13 12:46 - 2013-09-25 03:22 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2013-11-13 12:46 - 2013-09-25 03:21 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2013-11-13 12:46 - 2013-09-25 03:21 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2013-11-13 12:46 - 2013-09-25 02:58 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2013-11-13 12:46 - 2013-09-25 02:57 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2013-11-13 12:46 - 2013-09-25 02:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2013-11-13 12:46 - 2013-09-25 02:56 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2013-11-13 12:46 - 2013-09-25 02:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2013-11-13 12:46 - 2013-07-04 13:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2013-11-12 13:38 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE
2013-11-12 13:28 - 2013-11-12 13:28 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2013-11-12 13:28 - 2013-11-12 13:28 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 23212032 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 17142784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 12995584 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 11220992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 05765120 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 04240384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-11-12 13:27 - 2013-11-12 13:27 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-11-12 13:27 - 2013-11-12 13:27 - 02332160 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 02166272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 01993728 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-11-12 13:27 - 2013-11-12 13:27 - 01926656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2013-11-12 13:27 - 2013-11-12 13:27 - 01818112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 01394176 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 01156608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2013-11-12 13:27 - 2013-11-12 13:27 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2013-11-12 13:27 - 2013-11-12 13:27 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2013-11-12 13:27 - 2013-11-12 13:27 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2013-11-12 13:27 - 2013-11-12 13:27 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-11-12 13:27 - 2013-11-12 13:27 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2013-11-12 13:27 - 2013-11-12 13:27 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2013-11-12 13:27 - 2013-11-12 13:27 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2013-11-12 13:27 - 2013-11-12 13:27 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2013-11-12 13:27 - 2013-11-12 13:27 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-11-12 13:27 - 2013-11-12 13:27 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2013-11-12 13:27 - 2013-11-12 13:27 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2013-11-12 13:27 - 2013-11-12 13:27 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2013-11-12 13:27 - 2013-11-12 13:27 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-11-12 13:27 - 2013-11-12 13:27 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2013-11-12 13:27 - 2013-11-12 13:27 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2013-11-12 13:27 - 2013-11-12 13:27 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-11-12 13:27 - 2013-11-12 13:27 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2013-11-12 13:27 - 2013-11-12 13:27 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2013-11-12 13:27 - 2013-11-12 13:27 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2013-11-12 13:27 - 2013-11-12 13:27 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2013-11-12 13:27 - 2013-11-12 13:27 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2013-11-12 13:27 - 2013-11-12 13:27 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2013-11-11 23:41 - 2013-11-11 23:41 - 00361017 _____ C:\Users\Tim Puhlmann\Downloads\true_auto_.zip
2013-11-11 21:45 - 2013-11-11 22:06 - 123853152 _____ C:\Users\Tim Puhlmann\Downloads\avira_free_antivirus_de_14b411.exe
2013-11-06 13:14 - 2013-11-06 13:14 - 00000000 ____D C:\Users\Tim Puhlmann\Documents\Virtua Tennis 4
2013-11-06 12:11 - 2013-11-06 12:11 - 00000000 ____D C:\Program Files (x86)\Sega
2013-11-06 12:03 - 2013-11-06 12:03 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2013-11-06 12:03 - 2013-11-06 12:03 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies
==================== One Month Modified Files and Folders =======
2013-11-30 13:26 - 2013-11-29 15:02 - 00017489 _____ C:\Users\Tim Puhlmann\Desktop\FRST.txt
2013-11-30 13:26 - 2010-11-23 07:58 - 01121745 _____ C:\Windows\WindowsUpdate.log
2013-11-30 13:20 - 2013-11-13 12:51 - 00000000 ____D C:\Users\Tim Puhlmann\AppData\Roaming\Dropbox
2013-11-30 13:19 - 2013-11-25 13:32 - 00000952 _____ C:\Windows\setupact.log
2013-11-30 13:19 - 2013-11-13 12:56 - 00000000 ___RD C:\Users\Tim Puhlmann\Dropbox
2013-11-30 13:19 - 2013-02-09 22:16 - 00001118 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-11-30 13:19 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-11-29 22:55 - 2013-11-29 22:52 - 00007628 _____ C:\Users\Tim Puhlmann\Desktop\zoek-results.txt
2013-11-29 22:55 - 2009-07-14 05:45 - 00017376 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-11-29 22:55 - 2009-07-14 05:45 - 00017376 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-11-29 22:48 - 2013-11-29 22:03 - 00007628 _____ C:\zoek-results.log
2013-11-29 22:47 - 2013-11-29 14:55 - 00001194 _____ C:\Windows\PFRO.log
2013-11-29 22:46 - 2013-02-09 22:16 - 00001122 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-11-29 22:35 - 2013-11-29 22:02 - 00000000 ____D C:\zoek_backup
2013-11-29 22:35 - 2012-10-14 17:34 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-11-29 22:03 - 2013-11-29 22:05 - 00000108 _____ C:\zoek-results2013-11-29-210321.log
2013-11-29 21:45 - 2013-11-29 21:45 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Tim Puhlmann\Desktop\mbam-setup-1.75.0.1300.exe
2013-11-29 21:45 - 2013-11-29 21:45 - 00001117 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-11-29 21:45 - 2013-11-29 21:45 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-11-29 21:44 - 2013-11-29 21:44 - 00035098 _____ C:\Users\Tim Puhlmann\Desktop\JRT.txt
2013-11-29 21:30 - 2013-11-29 21:30 - 01034531 _____ (Thisisu) C:\Users\Tim Puhlmann\Desktop\JRT.exe
2013-11-29 21:30 - 2013-11-29 21:30 - 00000000 ____D C:\Windows\ERUNT
2013-11-29 21:27 - 2013-11-29 21:27 - 00006449 _____ C:\Users\Tim Puhlmann\Desktop\AdwCleaner[S0].txt
2013-11-29 21:25 - 2013-11-29 21:23 - 00000000 ____D C:\AdwCleaner
2013-11-29 21:22 - 2013-11-29 21:22 - 01091882 _____ C:\Users\Tim Puhlmann\Desktop\adwcleaner.exe
2013-11-29 17:06 - 2013-07-31 19:43 - 00000104 _____ C:\Users\Tim Puhlmann\AppData\Roaming\WB.CFG
2013-11-29 17:06 - 2013-06-20 20:43 - 00000006 _____ C:\Users\Tim Puhlmann\AppData\Roaming\WBPU-TTL.DAT
2013-11-29 15:08 - 2013-11-29 15:04 - 00023415 _____ C:\Users\Tim Puhlmann\Desktop\Addition.txt
2013-11-29 15:02 - 2013-11-29 15:02 - 00000000 ____D C:\FRST
2013-11-29 15:02 - 2013-11-29 15:01 - 01959024 _____ (Farbar) C:\Users\Tim Puhlmann\Desktop\FRST64.exe
2013-11-29 15:00 - 2009-07-14 06:32 - 00000000 ____D C:\Windows\system32\FxsTmp
2013-11-28 16:32 - 2012-12-13 20:01 - 00000000 ____D C:\Users\Tim Puhlmann\AppData\Roaming\TuneUp Software
2013-11-28 16:30 - 2013-11-28 16:30 - 00000000 __SHD C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
2013-11-28 16:30 - 2013-07-31 19:42 - 00001540 _____ C:\Users\Public\Desktop\Free YouTube to MP3 Converter.lnk
2013-11-28 16:30 - 2013-07-31 19:42 - 00000000 ____D C:\Program Files (x86)\DVDVideoSoft
2013-11-28 16:30 - 2012-12-13 20:01 - 00000000 ____D C:\ProgramData\TuneUp Software
2013-11-28 16:29 - 2011-07-17 17:52 - 00000000 ____D C:\Users\Tim Puhlmann\AppData\Roaming\DVDVideoSoft
2013-11-27 22:11 - 2011-10-10 21:04 - 00000000 ____D C:\Users\Tim Puhlmann\AppData\Roaming\Skype
2013-11-27 00:11 - 2012-03-27 19:46 - 00000000 ____D C:\Users\Tim Puhlmann\AppData\Roaming\Spotify
2013-11-26 23:58 - 2012-03-27 19:49 - 00000000 ____D C:\Users\Tim Puhlmann\AppData\Local\Spotify
2013-11-26 22:09 - 2013-11-26 22:09 - 02753344 _____ (AVAST Software) C:\Users\Tim Puhlmann\Downloads\avast-browser-cleanup_90.exe
2013-11-26 21:56 - 2013-11-26 21:56 - 00000000 ____D C:\Users\Tim Puhlmann\AppData\Roaming\Malwarebytes
2013-11-26 21:55 - 2013-11-26 21:55 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-11-26 21:55 - 2013-11-26 21:54 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Tim Puhlmann\Downloads\mbam-setup-1.75.0.1300.exe
2013-11-26 21:49 - 2013-11-26 21:49 - 00000000 ____D C:\Users\Tim Puhlmann\AppData\Roaming\IObit
2013-11-26 21:49 - 2013-11-26 21:49 - 00000000 ____D C:\ProgramData\ProductData
2013-11-26 21:49 - 2013-11-26 21:49 - 00000000 ____D C:\ProgramData\IObit
2013-11-26 21:49 - 2013-11-26 21:49 - 00000000 ____D C:\Program Files (x86)\IObit
2013-11-26 21:49 - 2013-11-26 21:48 - 10330944 _____ (IObit) C:\Users\Tim Puhlmann\Downloads\iobituninstaller3-1.0.exe
2013-11-26 20:14 - 2012-10-14 17:34 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-11-26 20:14 - 2012-10-14 17:34 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-11-26 20:14 - 2011-11-29 19:32 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-11-26 20:13 - 2011-02-02 21:54 - 00000000 ____D C:\Users\Tim Puhlmann\AppData\Local\Adobe
2013-11-25 23:53 - 2013-11-29 22:02 - 01398596 _____ C:\Users\Tim Puhlmann\Desktop\zoek.scr
2013-11-25 23:53 - 2013-11-29 22:02 - 01398596 _____ C:\Users\Tim Puhlmann\Desktop\zoek.pif
2013-11-25 23:53 - 2013-11-29 22:02 - 01398596 _____ C:\Users\Tim Puhlmann\Desktop\zoek.com
2013-11-25 22:41 - 2011-10-10 21:04 - 00000000 ___RD C:\Program Files (x86)\Skype
2013-11-25 22:41 - 2011-09-13 20:37 - 00000000 ____D C:\Users\Tim Puhlmann\Desktop\Tim Puhlmann
2013-11-25 22:41 - 2011-02-02 23:01 - 00000000 ____D C:\ProgramData\Skype
2013-11-25 13:32 - 2013-11-25 13:32 - 00000000 _____ C:\Windows\setuperr.log
2013-11-25 00:36 - 2013-02-09 21:12 - 00000000 ____D C:\ProgramData\Screentime
2013-11-25 00:36 - 2010-09-11 01:25 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2013-11-25 00:35 - 2013-11-25 00:34 - 00280758 _____ C:\Users\Tim Puhlmann\Documents\cc_20131125_003452.reg
2013-11-25 00:33 - 2013-04-29 20:26 - 00000000 ____D C:\Program Files (x86)\PDFCreator
2013-11-25 00:33 - 2011-02-09 21:35 - 00000000 ____D C:\Users\Tim Puhlmann\Tracing
2013-11-25 00:32 - 2009-07-27 21:41 - 00000000 ____D C:\Windows\Panther
2013-11-25 00:30 - 2013-11-25 00:30 - 00002786 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2013-11-25 00:30 - 2013-11-25 00:30 - 00000826 _____ C:\Users\Public\Desktop\CCleaner.lnk
2013-11-25 00:30 - 2013-11-25 00:30 - 00000000 ____D C:\Program Files\CCleaner
2013-11-25 00:29 - 2013-11-25 00:29 - 00618912 _____ C:\Users\Tim Puhlmann\Downloads\CCleaner - CHIP-Downloader.exe
2013-11-21 10:47 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF
2013-11-20 10:17 - 2011-10-31 23:18 - 00000000 ____D C:\Users\Tim Puhlmann\AppData\Roaming\SoftGrid Client
2013-11-19 18:52 - 2010-11-23 16:46 - 00654852 _____ C:\Windows\system32\perfh007.dat
2013-11-19 18:52 - 2010-11-23 16:46 - 00130434 _____ C:\Windows\system32\perfc007.dat
2013-11-19 18:52 - 2009-07-14 06:13 - 01500294 _____ C:\Windows\system32\PerfStringBackup.INI
2013-11-19 17:36 - 2011-02-03 21:15 - 00064152 _____ C:\Users\Tim Puhlmann\AppData\Local\GDIPFONTCACHEV1.DAT
2013-11-18 14:16 - 2012-04-26 20:33 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-11-18 12:43 - 2013-11-18 12:22 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-11-18 12:06 - 2013-10-19 15:25 - 00001933 _____ C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk
2013-11-18 12:06 - 2013-10-19 15:24 - 00000000 ____D C:\Program Files\McAfee Security Scan
2013-11-14 12:01 - 2013-11-14 12:01 - 00000000 ____D C:\Users\Tim Puhlmann\AppData\Roaming\WinRAR
2013-11-14 11:33 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache
2013-11-13 16:14 - 2013-11-13 16:14 - 00000000 ____D C:\Users\Tim Puhlmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2013-11-13 16:14 - 2013-11-13 16:13 - 00000000 ____D C:\Program Files\WinRAR
2013-11-13 16:13 - 2013-11-13 16:13 - 02074056 _____ C:\Users\Tim Puhlmann\Downloads\winrar-x64-500d.exe
2013-11-13 15:50 - 2013-11-13 15:50 - 00001849 _____ C:\Users\Public\Desktop\QuickTime Player.lnk
2013-11-13 15:50 - 2013-11-13 15:49 - 00000000 ____D C:\Program Files (x86)\QuickTime
2013-11-13 15:36 - 2013-11-13 15:36 - 00001787 _____ C:\Users\Public\Desktop\iTunes.lnk
2013-11-13 15:36 - 2013-11-13 15:35 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2013-11-13 15:36 - 2013-11-13 15:35 - 00000000 ____D C:\Program Files\iTunes
2013-11-13 15:36 - 2013-11-13 15:35 - 00000000 ____D C:\Program Files (x86)\iTunes
2013-11-13 15:35 - 2013-11-13 15:35 - 00000000 ____D C:\Program Files\iPod
2013-11-13 13:16 - 2013-08-14 22:08 - 00000000 ____D C:\Windows\system32\MRT
2013-11-13 13:11 - 2011-06-22 19:39 - 82896128 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-11-13 12:56 - 2013-11-13 12:56 - 00001056 _____ C:\Users\Tim Puhlmann\Desktop\Dropbox.lnk
2013-11-13 12:56 - 2011-02-03 21:14 - 00000000 ____D C:\Users\Tim Puhlmann
2013-11-13 12:54 - 2011-02-03 21:15 - 00000000 ___RD C:\Users\Tim Puhlmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-11-13 12:53 - 2013-11-13 12:53 - 00000000 ____D C:\Users\Tim Puhlmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2013-11-13 12:51 - 2013-11-13 12:46 - 35334016 _____ (Dropbox, Inc.) C:\Users\Tim Puhlmann\Downloads\Dropbox 2.4.7.exe
2013-11-12 14:39 - 2011-02-03 21:16 - 00001429 _____ C:\Users\Tim Puhlmann\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2013-11-12 14:34 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\PolicyDefinitions
2013-11-12 13:28 - 2013-11-12 13:28 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2013-11-12 13:28 - 2013-11-12 13:28 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 23212032 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 17142784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 12995584 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 11220992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 05765120 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 04240384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-11-12 13:27 - 2013-11-12 13:27 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-11-12 13:27 - 2013-11-12 13:27 - 02332160 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 02166272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 01993728 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-11-12 13:27 - 2013-11-12 13:27 - 01926656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2013-11-12 13:27 - 2013-11-12 13:27 - 01818112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 01394176 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 01156608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2013-11-12 13:27 - 2013-11-12 13:27 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2013-11-12 13:27 - 2013-11-12 13:27 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2013-11-12 13:27 - 2013-11-12 13:27 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2013-11-12 13:27 - 2013-11-12 13:27 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-11-12 13:27 - 2013-11-12 13:27 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2013-11-12 13:27 - 2013-11-12 13:27 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2013-11-12 13:27 - 2013-11-12 13:27 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2013-11-12 13:27 - 2013-11-12 13:27 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2013-11-12 13:27 - 2013-11-12 13:27 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-11-12 13:27 - 2013-11-12 13:27 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2013-11-12 13:27 - 2013-11-12 13:27 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2013-11-12 13:27 - 2013-11-12 13:27 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2013-11-12 13:27 - 2013-11-12 13:27 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-11-12 13:27 - 2013-11-12 13:27 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2013-11-12 13:27 - 2013-11-12 13:27 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2013-11-12 13:27 - 2013-11-12 13:27 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-11-12 13:27 - 2013-11-12 13:27 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2013-11-12 13:27 - 2013-11-12 13:27 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2013-11-12 13:27 - 2013-11-12 13:27 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2013-11-12 13:27 - 2013-11-12 13:27 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2013-11-12 13:27 - 2013-11-12 13:27 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2013-11-12 13:27 - 2013-11-12 13:27 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2013-11-12 13:27 - 2013-11-12 13:27 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2013-11-12 12:38 - 2013-04-01 18:51 - 00132600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2013-11-12 12:38 - 2013-04-01 18:51 - 00106904 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2013-11-11 23:42 - 2013-03-14 12:44 - 00002074 _____ C:\Users\Public\Desktop\Avira Control Center.lnk
2013-11-11 23:41 - 2013-11-11 23:41 - 00361017 _____ C:\Users\Tim Puhlmann\Downloads\true_auto_.zip
2013-11-11 22:06 - 2013-11-11 21:45 - 123853152 _____ C:\Users\Tim Puhlmann\Downloads\avira_free_antivirus_de_14b411.exe
2013-11-11 12:03 - 2013-03-16 22:13 - 00000000 ____D C:\Users\Tim Puhlmann\AppData\Roaming\vlc
2013-11-06 14:15 - 2013-03-08 15:54 - 00000000 ____D C:\Program Files (x86)\Origin
2013-11-06 13:14 - 2013-11-06 13:14 - 00000000 ____D C:\Users\Tim Puhlmann\Documents\Virtua Tennis 4
2013-11-06 12:11 - 2013-11-06 12:11 - 00000000 ____D C:\Program Files (x86)\Sega
2013-11-06 12:03 - 2013-11-06 12:03 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2013-11-06 12:03 - 2013-11-06 12:03 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies
Some content of TEMP:
====================
C:\Users\Tim Puhlmann\AppData\Local\Temp\avgnt.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-11-21 11:36
==================== End Of Log ============================ --- --- ---
Addition Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 28-11-2013
Ran by Tim Puhlmann at 2013-11-30 13:27:57
Running from C:\Users\Tim Puhlmann\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Avira Desktop (Disabled - Up to date) {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
AS: Avira Desktop (Disabled - Up to date) {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
ABBYY FineReader 9.0 Sprint (x32 Version: 9.01.513.58212)
Acer Backup Manager (x32 Version: 2.0.0.68)
Acer Crystal Eye Webcam (x32 Version: 5.2.19.3)
Acer ePower Management (x32 Version: 5.00.3005)
Acer eRecovery Management (x32 Version: 4.05.3013)
Acer Registration (x32 Version: 1.03.3003)
Acer ScreenSaver (x32 Version: 1.1.0512.2010)
Acer Updater (x32 Version: 1.02.3001)
Acrobat.com (x32 Version: 1.6.65)
Adobe AIR (x32 Version: 1.5.0.7220)
Adobe Flash Player 11 ActiveX (x32 Version: 11.9.900.117)
Adobe Flash Player 11 Plugin (x32 Version: 11.9.900.152)
Adobe Reader X (10.1.8) - Deutsch (x32 Version: 10.1.8)
Airline Tycoon 2 Patch v1.27 (x32)
ALPS Touch Pad Driver (Version: 7.105.2015.1107)
Amazonia (x32)
AMD USB Filter Driver (x32 Version: 1.0.15.94)
Apple Application Support (x32 Version: 2.3.6)
Apple Mobile Device Support (Version: 7.0.0.117)
Apple Software Update (x32 Version: 2.1.3.127)
ATI Catalyst Install Manager (Version: 3.0.769.0)
Avira Free Antivirus (x32 Version: 14.0.1.749)
Backup Manager Basic (x32 Version: 2.0.0.68)
Benutzerhandbuch - Grundlagen EPSON SX430 Series (x32)
Benutzerhandbuch EPSON SX430 Series (x32)
Bonjour (Version: 3.0.0.10)
Broadcom Gigabit NetLink Controller (Version: 14.2.4.2)
Cake Mania (x32)
Catalyst Control Center - Branding (x32 Version: 1.00.0000)
Catalyst Control Center Core Implementation (x32 Version: 2010.0426.2136.36953)
Catalyst Control Center Graphics Full Existing (x32 Version: 2010.0426.2136.36953)
Catalyst Control Center Graphics Full New (x32 Version: 2010.0426.2136.36953)
Catalyst Control Center Graphics Light (x32 Version: 2010.0426.2136.36953)
Catalyst Control Center Graphics Previews Common (x32 Version: 2010.0426.2136.36953)
Catalyst Control Center InstallProxy (x32 Version: 2010.0426.2136.36953)
Catalyst Control Center Localization All (x32 Version: 2010.0426.2136.36953)
CCC Help Chinese Standard (x32 Version: 2010.0426.2135.36953)
CCC Help Chinese Traditional (x32 Version: 2010.0426.2135.36953)
CCC Help Czech (x32 Version: 2010.0426.2135.36953)
CCC Help Danish (x32 Version: 2010.0426.2135.36953)
CCC Help Dutch (x32 Version: 2010.0426.2135.36953)
CCC Help English (x32 Version: 2010.0426.2135.36953)
CCC Help Finnish (x32 Version: 2010.0426.2135.36953)
CCC Help French (x32 Version: 2010.0426.2135.36953)
CCC Help German (x32 Version: 2010.0426.2135.36953)
CCC Help Greek (x32 Version: 2010.0426.2135.36953)
CCC Help Hungarian (x32 Version: 2010.0426.2135.36953)
CCC Help Italian (x32 Version: 2010.0426.2135.36953)
CCC Help Japanese (x32 Version: 2010.0426.2135.36953)
CCC Help Korean (x32 Version: 2010.0426.2135.36953)
CCC Help Norwegian (x32 Version: 2010.0426.2135.36953)
CCC Help Polish (x32 Version: 2010.0426.2135.36953)
CCC Help Portuguese (x32 Version: 2010.0426.2135.36953)
CCC Help Russian (x32 Version: 2010.0426.2135.36953)
CCC Help Spanish (x32 Version: 2010.0426.2135.36953)
CCC Help Swedish (x32 Version: 2010.0426.2135.36953)
CCC Help Thai (x32 Version: 2010.0426.2135.36953)
CCC Help Turkish (x32 Version: 2010.0426.2135.36953)
ccc-core-static (x32 Version: 2010.0426.2136.36953)
ccc-utility64 (Version: 2010.0426.2136.36953)
CCleaner (Version: 4.07)
Cities XL 2011 (x32 Version: 1.0.0)
Cities XL 2012 (x32 Version: 1.0.0)
CyberLink PowerDVD 9 (x32 Version: 9.0.3216.50)
D3DX10 (x32 Version: 15.4.2368.0902)
Die Sims™ 3 (x32 Version: 1.9.22)
Die Sims™ 3 Luxus-Accessoires (x32 Version: 3.0.38)
Die Sims™ 3 Reiseabenteuer (x32 Version: 2.0.86)
Downloader (x32)
Dream Day First Home (x32)
Dropbox (HKCU Version: 2.4.7)
Druckerdeinstallation für EPSON SX430 Series
Epson Easy Photo Print 2 (x32 Version: 2.2.4.0)
Epson Easy Photo Print Plug-in for PMB(Picture Motion Browser) (x32 Version: 1.00.0000)
Epson Event Manager (x32 Version: 2.50.0000)
EPSON Scan (x32)
EpsonNet Print (x32 Version: 2.4j)
Farm Frenzy 2 (x32)
Free YouTube to MP3 Converter version 3.12.17.1127 (x32 Version: 3.12.17.1127)
Galapago (x32)
Google Earth (x32 Version: 7.1.1.1888)
Google Update Helper (x32 Version: 1.3.21.165)
Heroes of Hellas (x32)
iCloud (Version: 3.0.2.163)
Identity Card (x32 Version: 1.00.3003)
iTunes (Version: 11.1.3.8)
Java 7 Update 15 (x32 Version: 7.0.150)
Java Auto Updater (x32 Version: 2.1.9.0)
Java(TM) 6 Update 22 (x32 Version: 6.0.220)
Java(TM) 6 Update 35 (x32 Version: 6.0.350)
Junk Mail filter update (x32 Version: 15.4.3502.0922)
Launch Manager (x32 Version: 4.0.14)
Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300)
McAfee Security Scan Plus (Version: 3.8.130.10)
Merriam Websters Spell Jam (x32)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Office 2010 (x32 Version: 14.0.4763.1000)
Microsoft Office Klick-und-Los 2010 (Version: 14.0.4763.1000)
Microsoft Office Klick-und-Los 2010 (x32 Version: 14.0.4763.1000)
Microsoft Office Starter 2010 - Deutsch (x32 Version: 14.0.4763.1000)
Microsoft Silverlight (Version: 5.1.20913.0)
Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219)
Microsoft WSE 3.0 Runtime (x32 Version: 3.0.5305.0)
Mozilla Firefox 25.0.1 (x86 de) (x32 Version: 25.0.1)
Mozilla Maintenance Service (x32 Version: 25.0.1)
MSVCRT (x32 Version: 15.4.2862.0708)
MSVCRT_amd64 (x32 Version: 15.4.2862.0708)
MyWinLocker (x32 Version: 3.1.212.0)
MyWinLocker Suite (x32 Version: 3.1.212.0)
Netzwerkhandbuch EPSON SX430 Series (x32)
Norton Online Backup (x32 Version: 2.1.17869)
NTI Backup Now 5 (x32 Version: 5.1.2.630)
NTI Backup Now Standard (x32 Version: 5.1.2.630)
NTI Media Maker 8 (x32 Version: 8.0.12.6636)
NVIDIA PhysX (x32 Version: 9.13.0725)
OpenOffice.org 3.3 (x32 Version: 3.3.9567)
Origin (x32 Version: 9.1.10.2728)
PDF Architect (x32 Version: 1.1.83.9982)
PDF24 Creator 5.7.0 (x32)
PDFCreator (x32 Version: 1.7.0)
Poker Pop (x32)
QuickTime (x32 Version: 7.74.80.86)
Realtek High Definition Audio Driver (x32 Version: 6.0.1.6167)
Realtek USB 2.0 Card Reader (x32 Version: 6.1.7600.30118)
Shredder (Version: 2.0.8.3)
Shredder (x32 Version: 2.0.8.3)
SimCity™ (x32 Version: 1.0.0.0)
Skype Click to Call (x32 Version: 6.3.11079)
Skype™ 6.11 (x32 Version: 6.11.102)
Spin & Win (x32)
Spotify (HKCU Version: 0.9.4.185.g7545a404)
Ubisoft Game Launcher (x32 Version: 1.0.0.0)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2473228) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (x32 Version: 3)
Update for PDF Creator (HKCU)
VLC media player 2.0.5 (Version: 2.0.5)
Welcome Center (x32 Version: 1.02.3004)
WIDCOMM Bluetooth Software (Version: 6.3.0.6000)
Windows Live Communications Platform (x32 Version: 15.4.3502.0922)
Windows Live Essentials (x32 Version: 15.4.3502.0922)
Windows Live Essentials (x32 Version: 15.4.3555.0308)
Windows Live Fotogalerie (x32 Version: 15.4.3502.0922)
Windows Live ID Sign-in Assistant (Version: 7.250.4232.0)
Windows Live Installer (x32 Version: 15.4.3502.0922)
Windows Live Language Selector (Version: 15.4.3555.0308)
Windows Live Mail (x32 Version: 15.4.3502.0922)
Windows Live Messenger (x32 Version: 15.4.3538.0513)
Windows Live MIME IFilter (Version: 15.4.3502.0922)
Windows Live Movie Maker (x32 Version: 15.4.3502.0922)
Windows Live Photo Common (x32 Version: 15.4.3502.0922)
Windows Live Photo Gallery (x32 Version: 15.4.3502.0922)
Windows Live PIMT Platform (x32 Version: 15.4.3508.1109)
Windows Live SOXE (x32 Version: 15.4.3502.0922)
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922)
Windows Live Sync (x32 Version: 14.0.8117.416)
Windows Live UX Platform (x32 Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109)
Windows Live Writer (x32 Version: 15.4.3502.0922)
Windows Live Writer Resources (x32 Version: 15.4.3502.0922)
WinRAR 5.00 (64-Bit) (Version: 5.00.0)
==================== Restore Points =========================
12-11-2013 12:24:07 Windows Update
13-11-2013 12:10:19 Windows Update
21-11-2013 10:43:21 Geplanter Prüfpunkt
24-11-2013 23:36:56 Entfernt Die Siedler 2 - Die nächste Generation
28-11-2013 15:34:46 TuneUp Utilities 2014 wird entfernt
28-11-2013 15:36:19 TuneUp Utilities 2014 (de-DE) wird entfernt
==================== Hosts content: ==========================
2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {30B40AF6-A93F-44F2-A8DE-281C9669CE29} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-02-09] (Google Inc.)
Task: {55474E02-40DB-4B0A-B79A-61EA6B2A6560} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-02-09] (Google Inc.)
Task: {55A50D53-BA46-47A1-928E-702F93DE7274} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-10-22] (Piriform Ltd)
Task: {5FA40EC4-5034-44FC-96B3-2E9BD401FBA8} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {967C832B-1EEF-4F4C-B297-224DA200F76B} - \DSite No Task File
Task: {C46AD819-4C23-4560-80AA-BA09C949F68F} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {F7E3F789-4682-483B-B474-AC653E9A65A0} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-11-26] (Adobe Systems Incorporated)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2010-06-25 09:08 - 2010-06-25 09:08 - 00173856 _____ () C:\Program Files\WIDCOMM\Bluetooth Software\btkeyind.dll
2010-03-08 10:57 - 2010-03-08 10:57 - 00016384 ____R () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Branding\Branding.dll
2010-11-23 07:59 - 2010-11-23 07:59 - 00270336 _____ () C:\Windows\assembly\GAC_MSIL\CLI.Aspect.CrossDisplay.Graphics.Dashboard\1.0.0.0__90ba9c70f846762e\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll
2013-03-14 12:43 - 2013-10-10 19:14 - 00394824 _____ () C:\Program Files (x86)\Avira\AntiVir Desktop\sqlite3.dll
2012-08-27 21:33 - 2012-08-27 21:33 - 00087912 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2012-08-27 21:33 - 2012-08-27 21:33 - 01242512 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2010-06-28 23:20 - 2010-06-28 23:20 - 00465576 _____ () C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\sqlite3.dll
2010-06-28 23:12 - 2010-06-28 23:12 - 01081600 _____ () C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\ACE.dll
2013-10-19 00:55 - 2013-10-19 00:55 - 25100288 _____ () C:\Users\Tim Puhlmann\AppData\Roaming\Dropbox\bin\libcef.dll
2010-11-23 16:34 - 2009-05-20 23:02 - 00072200 _____ () C:\Program Files (x86)\Launch Manager\CdDirIo.dll
2011-01-17 16:19 - 2011-10-31 23:09 - 00985088 _____ () C:\Program Files (x86)\OpenOffice.org 3\program\libxml2.dll
2013-11-18 12:22 - 2013-11-18 12:22 - 03363952 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
2013-11-26 20:14 - 2013-11-26 20:14 - 16237448 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_152.dll
==================== Alternate Data Streams (whitelisted) =========
AlternateDataStreams: C:\ProgramData\Temp:0B9176C0
AlternateDataStreams: C:\ProgramData\Temp:4D066AD2
==================== Safe Mode (whitelisted) ===================
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
System errors:
=============
Error: (11/29/2013 10:35:33 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "PEVSystemStart" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren.
Error: (11/29/2013 10:35:32 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "PEVSystemStart" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren.
Error: (11/29/2013 10:35:30 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "PEVSystemStart" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren.
Error: (11/29/2013 10:35:29 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "PEVSystemStart" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren.
Error: (11/29/2013 10:35:28 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "PEVSystemStart" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren.
Microsoft Office Sessions:
=========================
CodeIntegrity Errors:
===================================
Date: 2013-03-03 19:07:57.097
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\usbaapl64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2013-03-03 19:07:56.797
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\usbaapl64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
==================== Memory info ===========================
Percentage of memory in use: 47%
Total physical RAM: 4094.17 MB
Available physical RAM: 2167.4 MB
Total Pagefile: 8186.52 MB
Available Pagefile: 5834.73 MB
Total Virtual: 8192 MB
Available Virtual: 8191.8 MB
==================== Drives ================================
Drive c: (ACER) (Fixed) (Total:452.97 GB) (Free:347.61 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 466 GB) (Disk ID: 61AB61AB)
Partition 1: (Not Active) - (Size=13 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=453 GB) - (Type=07 NTFS)
==================== End Of Log ============================ SystemLook Code:
SystemLook 30.07.11 by jpshortstuff
Log created at 13:31 on 30/11/2013 by Tim Puhlmann
Administrator - Elevation successful
========== filefind ==========
Searching for "*Babylon*"
C:\AdwCleaner\Quarantine\C\Users\Tim Puhlmann\AppData\Roaming\Mozilla\Firefox\Profiles\wz5hkrsz.default\searchplugins\Babylon.xml.vir --a---- 6507 bytes [17:14 02/05/2013] [18:43 31/07/2013] 6335A55367A3ED014B5E10907629F854
Searching for "*DSite*"
C:\AdwCleaner\Quarantine\C\Windows\System32\Tasks\DSite.vir --a---- 3272 bytes [19:43 29/04/2013] [19:43 29/04/2013] 6C3FB362130A1EBE1406D17881E13BAF
C:\AdwCleaner\Quarantine\C\Windows\Tasks\DSite.job.vir --a---- 306 bytes [19:43 29/04/2013] [16:06 29/11/2013] B41182102A065C08300A49D3A1EA9C3D
Searching for "*OpenCandy*"
No files found.
Searching for "*pdfforge*"
C:\Program Files (x86)\PDFCreator\PlugIns\pdfforge\pdfforge.chm --a---- 405301 bytes [19:26 29/04/2013] [12:37 19/03/2013] 851E320C06A632DF9900E12501D646B0
C:\Program Files (x86)\PDFCreator\PlugIns\pdfforge\pdfforge.dll --a---- 71312 bytes [19:26 29/04/2013] [12:37 19/03/2013] D62905F2DB81CB310BD7D9743EBF4D8D
Searching for "*bProtector*"
C:\AdwCleaner\Quarantine\C\Users\Tim Puhlmann\AppData\Roaming\Mozilla\Firefox\Profiles\wz5hkrsz.default\bProtector_extensions.rdf.vir --a---- 3071 bytes [19:44 29/04/2013] [19:04 01/05/2011] 648246B6CCECD6C222A0275A95D11744
========== folderfind ==========
Searching for "*Babylon*"
C:\AdwCleaner\Quarantine\C\Users\Tim Puhlmann\AppData\Roaming\Babylon d------ [20:25 29/11/2013]
Searching for "*DSite*"
C:\AdwCleaner\Quarantine\C\Users\Tim Puhlmann\AppData\Roaming\DSite d------ [20:25 29/11/2013]
Searching for "*OpenCandy*"
C:\AdwCleaner\Quarantine\C\Users\Tim Puhlmann\AppData\Roaming\OpenCandy d------ [20:25 29/11/2013]
Searching for "*pdfforge*"
C:\AdwCleaner\Quarantine\C\Users\Tim Puhlmann\AppData\Roaming\pdfforge d------ [20:25 29/11/2013]
C:\Program Files (x86)\PDFCreator\PlugIns\pdfforge d------ [19:26 29/04/2013]
Searching for "*bProtector*"
No folders found.
========== regfind ==========
Searching for "Babylon"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{2EECD738-5844-4A99-B4B6-146BF802613B}]
"DllName"="BabylonToolbar.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E}]
"DllName"="BabylonToolbar.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{98889811-442D-49DD-99D7-DC866BE87DBC}]
"DllName"="BabylonToolbarTlbr.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extension Compatibility\{2EECD738-5844-4A99-B4B6-146BF802613B}]
"DllName"="BabylonToolbar.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extension Compatibility\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E}]
"DllName"="BabylonToolbar.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extension Compatibility\{98889811-442D-49DD-99D7-DC866BE87DBC}]
"DllName"="BabylonToolbarTlbr.dll"
Searching for "DSite"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\DSite]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\DSite]
"DisplayIcon"="C:\Users\Tim Puhlmann\AppData\Roaming\DSite\UpdateProc\UpdateTask.exe"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\DSite]
"UninstallString"="C:\Users\Tim Puhlmann\AppData\Roaming\DSite\UpdateProc\UpdateTask.exe /Uninstall"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{BFAD62EE-9D54-4b2a-BF3B-76F90697BD2A}]
@="IE Shell Rebar BandSite"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{ECD4FC4D-521C-11D0-B792-00A0C90312E1}]
@="Shell Rebar BandSite"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{4CF504B0-DE96-11D0-8B3F-00A0C911E8E5}]
@="IBandSite"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{BFAD62EE-9D54-4b2a-BF3B-76F90697BD2A}]
@="IE Shell Rebar BandSite"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{ECD4FC4D-521C-11D0-B792-00A0C90312E1}]
@="Shell Rebar BandSite"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{4CF504B0-DE96-11D0-8B3F-00A0C911E8E5}]
@="IBandSite"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\BrowserEmulation]
"UnattendSites"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\UnattendBackup\AllowedSites]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\UnattendBackup\AllowedSites]
"AllowedSites"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\UnattendBackup\SuggestedSitesEnabled]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\UnattendBackup\TrustedSites]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\UnattendBackup\TrustedSites]
"TrustedSites"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Unattend]
"TrustedSites"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{967C832B-1EEF-4F4C-B297-224DA200F76B}]
"Path"="\DSite"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\DSite]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\BrowserEmulation]
"UnattendSites"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\UnattendBackup\AllowedSites]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\UnattendBackup\AllowedSites]
"AllowedSites"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\UnattendBackup\SuggestedSitesEnabled]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\UnattendBackup\TrustedSites]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\UnattendBackup\TrustedSites]
"TrustedSites"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Internet Settings\Unattend]
"TrustedSites"=""
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{BFAD62EE-9D54-4b2a-BF3B-76F90697BD2A}]
@="IE Shell Rebar BandSite"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{ECD4FC4D-521C-11D0-B792-00A0C90312E1}]
@="Shell Rebar BandSite"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\Interface\{4CF504B0-DE96-11D0-8B3F-00A0C911E8E5}]
@="IBandSite"
[HKEY_USERS\S-1-5-21-1024351043-3210716483-1399992990-1001\Software\Microsoft\Windows\CurrentVersion\Uninstall\DSite]
[HKEY_USERS\S-1-5-21-1024351043-3210716483-1399992990-1001\Software\Microsoft\Windows\CurrentVersion\Uninstall\DSite]
"DisplayIcon"="C:\Users\Tim Puhlmann\AppData\Roaming\DSite\UpdateProc\UpdateTask.exe"
[HKEY_USERS\S-1-5-21-1024351043-3210716483-1399992990-1001\Software\Microsoft\Windows\CurrentVersion\Uninstall\DSite]
"UninstallString"="C:\Users\Tim Puhlmann\AppData\Roaming\DSite\UpdateProc\UpdateTask.exe /Uninstall"
Searching for "OpenCandy"
No data found.
Searching for "pdfforge"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\.Images2PDF]
@="pdfforge Images2PDF"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pdfforge Images2PDF]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pdfforge.DllInfo]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pdfforge.DllInfo]
@="pdfforge.DllInfo"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pdfforge.PDF.PDF]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pdfforge.PDF.PDF]
@="pdfforge.PDF.PDF"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pdfforge.PDF.PDF.X509]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pdfforge.PDF.PDF.X509]
@="pdfforge.PDF.PDF+X509"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pdfforge.PDF.PDF.X509.Signing]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pdfforge.PDF.PDF.X509.Signing]
@="pdfforge.PDF.PDF+X509+Signing"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pdfforge.PDF.PDFEncryptor]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pdfforge.PDF.PDFEncryptor]
@="pdfforge.PDF.PDFEncryptor"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pdfforge.PDF.PDFLine]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pdfforge.PDF.PDFLine]
@="pdfforge.PDF.PDFLine"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pdfforge.PDF.PDFText]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pdfforge.PDF.PDFText]
@="pdfforge.PDF.PDFText"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pdfforge.Tools]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pdfforge.Tools]
@="pdfforge.Tools"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pdfforge.X509.X509]
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\pdfforge.X509.X509]
@="pdfforge.X509.X509"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{07E5D249-A0D5-3608-9C25-95C0F36A29DB}]
@="pdfforge.PDF.PDFText"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{07E5D249-A0D5-3608-9C25-95C0F36A29DB}\InprocServer32]
"Class"="pdfforge.PDF.PDFText"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{07E5D249-A0D5-3608-9C25-95C0F36A29DB}\InprocServer32]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{07E5D249-A0D5-3608-9C25-95C0F36A29DB}\InprocServer32]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{07E5D249-A0D5-3608-9C25-95C0F36A29DB}\InprocServer32\2.4.1.0]
"Class"="pdfforge.PDF.PDFText"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{07E5D249-A0D5-3608-9C25-95C0F36A29DB}\InprocServer32\2.4.1.0]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{07E5D249-A0D5-3608-9C25-95C0F36A29DB}\InprocServer32\2.4.1.0]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{07E5D249-A0D5-3608-9C25-95C0F36A29DB}\ProgId]
@="pdfforge.PDF.PDFText"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{37F9A39A-EC99-3331-A610-B5BD3E0E91B0}]
@="pdfforge.PDF.PDFEncryptor"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{37F9A39A-EC99-3331-A610-B5BD3E0E91B0}\InprocServer32]
"Class"="pdfforge.PDF.PDFEncryptor"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{37F9A39A-EC99-3331-A610-B5BD3E0E91B0}\InprocServer32]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{37F9A39A-EC99-3331-A610-B5BD3E0E91B0}\InprocServer32]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{37F9A39A-EC99-3331-A610-B5BD3E0E91B0}\InprocServer32\2.4.1.0]
"Class"="pdfforge.PDF.PDFEncryptor"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{37F9A39A-EC99-3331-A610-B5BD3E0E91B0}\InprocServer32\2.4.1.0]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{37F9A39A-EC99-3331-A610-B5BD3E0E91B0}\InprocServer32\2.4.1.0]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{37F9A39A-EC99-3331-A610-B5BD3E0E91B0}\ProgId]
@="pdfforge.PDF.PDFEncryptor"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{49909D0A-F20E-3C0B-A1AE-AD34E7067769}]
@="pdfforge.PDF.PDF+X509"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{49909D0A-F20E-3C0B-A1AE-AD34E7067769}\InprocServer32]
"Class"="pdfforge.PDF.PDF+X509"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{49909D0A-F20E-3C0B-A1AE-AD34E7067769}\InprocServer32]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{49909D0A-F20E-3C0B-A1AE-AD34E7067769}\InprocServer32]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{49909D0A-F20E-3C0B-A1AE-AD34E7067769}\InprocServer32\2.4.1.0]
"Class"="pdfforge.PDF.PDF+X509"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{49909D0A-F20E-3C0B-A1AE-AD34E7067769}\InprocServer32\2.4.1.0]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{49909D0A-F20E-3C0B-A1AE-AD34E7067769}\InprocServer32\2.4.1.0]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{49909D0A-F20E-3C0B-A1AE-AD34E7067769}\ProgId]
@="pdfforge.PDF.PDF.X509"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{61830212-E19E-3783-AC68-893DFF758743}]
@="pdfforge.PDF.PDFLine"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{61830212-E19E-3783-AC68-893DFF758743}\InprocServer32]
"Class"="pdfforge.PDF.PDFLine"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{61830212-E19E-3783-AC68-893DFF758743}\InprocServer32]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{61830212-E19E-3783-AC68-893DFF758743}\InprocServer32]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{61830212-E19E-3783-AC68-893DFF758743}\InprocServer32\2.4.1.0]
"Class"="pdfforge.PDF.PDFLine"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{61830212-E19E-3783-AC68-893DFF758743}\InprocServer32\2.4.1.0]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{61830212-E19E-3783-AC68-893DFF758743}\InprocServer32\2.4.1.0]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{61830212-E19E-3783-AC68-893DFF758743}\ProgId]
@="pdfforge.PDF.PDFLine"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{8587A0F8-58AC-3477-805B-899111467617}]
@="pdfforge.X509.X509"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{8587A0F8-58AC-3477-805B-899111467617}\InprocServer32]
"Class"="pdfforge.X509.X509"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{8587A0F8-58AC-3477-805B-899111467617}\InprocServer32]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{8587A0F8-58AC-3477-805B-899111467617}\InprocServer32]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{8587A0F8-58AC-3477-805B-899111467617}\InprocServer32\2.4.1.0]
"Class"="pdfforge.X509.X509"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{8587A0F8-58AC-3477-805B-899111467617}\InprocServer32\2.4.1.0]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{8587A0F8-58AC-3477-805B-899111467617}\InprocServer32\2.4.1.0]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{8587A0F8-58AC-3477-805B-899111467617}\ProgId]
@="pdfforge.X509.X509"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{994CF935-A35C-3D94-B75D-D905D8F24EB2}]
@="pdfforge.DllInfo"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{994CF935-A35C-3D94-B75D-D905D8F24EB2}\InprocServer32]
"Class"="pdfforge.DllInfo"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{994CF935-A35C-3D94-B75D-D905D8F24EB2}\InprocServer32]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{994CF935-A35C-3D94-B75D-D905D8F24EB2}\InprocServer32]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{994CF935-A35C-3D94-B75D-D905D8F24EB2}\InprocServer32\2.4.1.0]
"Class"="pdfforge.DllInfo"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{994CF935-A35C-3D94-B75D-D905D8F24EB2}\InprocServer32\2.4.1.0]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{994CF935-A35C-3D94-B75D-D905D8F24EB2}\InprocServer32\2.4.1.0]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{994CF935-A35C-3D94-B75D-D905D8F24EB2}\ProgId]
@="pdfforge.DllInfo"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A1496F24-34C3-30E8-BDA8-E43D5F4FAC6E}]
@="pdfforge.PDF.PDF+X509+Signing"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A1496F24-34C3-30E8-BDA8-E43D5F4FAC6E}\InprocServer32]
"Class"="pdfforge.PDF.PDF+X509+Signing"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A1496F24-34C3-30E8-BDA8-E43D5F4FAC6E}\InprocServer32]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A1496F24-34C3-30E8-BDA8-E43D5F4FAC6E}\InprocServer32]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A1496F24-34C3-30E8-BDA8-E43D5F4FAC6E}\InprocServer32\2.4.1.0]
"Class"="pdfforge.PDF.PDF+X509+Signing"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A1496F24-34C3-30E8-BDA8-E43D5F4FAC6E}\InprocServer32\2.4.1.0]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A1496F24-34C3-30E8-BDA8-E43D5F4FAC6E}\InprocServer32\2.4.1.0]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{A1496F24-34C3-30E8-BDA8-E43D5F4FAC6E}\ProgId]
@="pdfforge.PDF.PDF.X509.Signing"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{CD338B61-6644-38B0-858D-557C9DA5F420}]
@="pdfforge.PDF.PDF"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{CD338B61-6644-38B0-858D-557C9DA5F420}\InprocServer32]
"Class"="pdfforge.PDF.PDF"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{CD338B61-6644-38B0-858D-557C9DA5F420}\InprocServer32]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{CD338B61-6644-38B0-858D-557C9DA5F420}\InprocServer32]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{CD338B61-6644-38B0-858D-557C9DA5F420}\InprocServer32\2.4.1.0]
"Class"="pdfforge.PDF.PDF"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{CD338B61-6644-38B0-858D-557C9DA5F420}\InprocServer32\2.4.1.0]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{CD338B61-6644-38B0-858D-557C9DA5F420}\InprocServer32\2.4.1.0]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{CD338B61-6644-38B0-858D-557C9DA5F420}\ProgId]
@="pdfforge.PDF.PDF"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{F2187C9E-AC12-3050-9656-ED4CF105C48E}]
@="pdfforge.Tools"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{F2187C9E-AC12-3050-9656-ED4CF105C48E}\InprocServer32]
"Class"="pdfforge.Tools"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{F2187C9E-AC12-3050-9656-ED4CF105C48E}\InprocServer32]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{F2187C9E-AC12-3050-9656-ED4CF105C48E}\InprocServer32]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{F2187C9E-AC12-3050-9656-ED4CF105C48E}\InprocServer32\2.4.1.0]
"Class"="pdfforge.Tools"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{F2187C9E-AC12-3050-9656-ED4CF105C48E}\InprocServer32\2.4.1.0]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{F2187C9E-AC12-3050-9656-ED4CF105C48E}\InprocServer32\2.4.1.0]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{F2187C9E-AC12-3050-9656-ED4CF105C48E}\ProgId]
@="pdfforge.Tools"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A929A4608ED4FC049A10DB041CE4D452\InstallProperties]
"Publisher"="pdfforge GmbH"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}]
"HelpLink"="hxxp://www.pdfforge.org/support"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}]
"Publisher"="pdfforge"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}]
"Readme"="hxxp://www.pdfforge.org"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}]
"URLInfoAbout"="hxxp://www.pdfforge.org"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}]
"URLUpdateInfo"="hxxp://www.pdfforge.org"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{064A929A-4DE8-40CF-A901-BD40C14E4D25}]
"Publisher"="pdfforge GmbH"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{07E5D249-A0D5-3608-9C25-95C0F36A29DB}]
@="pdfforge.PDF.PDFText"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{07E5D249-A0D5-3608-9C25-95C0F36A29DB}\InprocServer32]
"Class"="pdfforge.PDF.PDFText"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{07E5D249-A0D5-3608-9C25-95C0F36A29DB}\InprocServer32]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{07E5D249-A0D5-3608-9C25-95C0F36A29DB}\InprocServer32]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{07E5D249-A0D5-3608-9C25-95C0F36A29DB}\InprocServer32\2.4.1.0]
"Class"="pdfforge.PDF.PDFText"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{07E5D249-A0D5-3608-9C25-95C0F36A29DB}\InprocServer32\2.4.1.0]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{07E5D249-A0D5-3608-9C25-95C0F36A29DB}\InprocServer32\2.4.1.0]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{07E5D249-A0D5-3608-9C25-95C0F36A29DB}\ProgId]
@="pdfforge.PDF.PDFText"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{37F9A39A-EC99-3331-A610-B5BD3E0E91B0}]
@="pdfforge.PDF.PDFEncryptor"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{37F9A39A-EC99-3331-A610-B5BD3E0E91B0}\InprocServer32]
"Class"="pdfforge.PDF.PDFEncryptor"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{37F9A39A-EC99-3331-A610-B5BD3E0E91B0}\InprocServer32]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{37F9A39A-EC99-3331-A610-B5BD3E0E91B0}\InprocServer32]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{37F9A39A-EC99-3331-A610-B5BD3E0E91B0}\InprocServer32\2.4.1.0]
"Class"="pdfforge.PDF.PDFEncryptor"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{37F9A39A-EC99-3331-A610-B5BD3E0E91B0}\InprocServer32\2.4.1.0]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{37F9A39A-EC99-3331-A610-B5BD3E0E91B0}\InprocServer32\2.4.1.0]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{37F9A39A-EC99-3331-A610-B5BD3E0E91B0}\ProgId]
@="pdfforge.PDF.PDFEncryptor"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{49909D0A-F20E-3C0B-A1AE-AD34E7067769}]
@="pdfforge.PDF.PDF+X509"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{49909D0A-F20E-3C0B-A1AE-AD34E7067769}\InprocServer32]
"Class"="pdfforge.PDF.PDF+X509"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{49909D0A-F20E-3C0B-A1AE-AD34E7067769}\InprocServer32]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{49909D0A-F20E-3C0B-A1AE-AD34E7067769}\InprocServer32]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{49909D0A-F20E-3C0B-A1AE-AD34E7067769}\InprocServer32\2.4.1.0]
"Class"="pdfforge.PDF.PDF+X509"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{49909D0A-F20E-3C0B-A1AE-AD34E7067769}\InprocServer32\2.4.1.0]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{49909D0A-F20E-3C0B-A1AE-AD34E7067769}\InprocServer32\2.4.1.0]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{49909D0A-F20E-3C0B-A1AE-AD34E7067769}\ProgId]
@="pdfforge.PDF.PDF.X509"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{61830212-E19E-3783-AC68-893DFF758743}]
@="pdfforge.PDF.PDFLine"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{61830212-E19E-3783-AC68-893DFF758743}\InprocServer32]
"Class"="pdfforge.PDF.PDFLine"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{61830212-E19E-3783-AC68-893DFF758743}\InprocServer32]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{61830212-E19E-3783-AC68-893DFF758743}\InprocServer32]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{61830212-E19E-3783-AC68-893DFF758743}\InprocServer32\2.4.1.0]
"Class"="pdfforge.PDF.PDFLine"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{61830212-E19E-3783-AC68-893DFF758743}\InprocServer32\2.4.1.0]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{61830212-E19E-3783-AC68-893DFF758743}\InprocServer32\2.4.1.0]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{61830212-E19E-3783-AC68-893DFF758743}\ProgId]
@="pdfforge.PDF.PDFLine"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{8587A0F8-58AC-3477-805B-899111467617}]
@="pdfforge.X509.X509"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{8587A0F8-58AC-3477-805B-899111467617}\InprocServer32]
"Class"="pdfforge.X509.X509"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{8587A0F8-58AC-3477-805B-899111467617}\InprocServer32]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{8587A0F8-58AC-3477-805B-899111467617}\InprocServer32]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{8587A0F8-58AC-3477-805B-899111467617}\InprocServer32\2.4.1.0]
"Class"="pdfforge.X509.X509"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{8587A0F8-58AC-3477-805B-899111467617}\InprocServer32\2.4.1.0]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{8587A0F8-58AC-3477-805B-899111467617}\InprocServer32\2.4.1.0]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{8587A0F8-58AC-3477-805B-899111467617}\ProgId]
@="pdfforge.X509.X509"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{994CF935-A35C-3D94-B75D-D905D8F24EB2}]
@="pdfforge.DllInfo"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{994CF935-A35C-3D94-B75D-D905D8F24EB2}\InprocServer32]
"Class"="pdfforge.DllInfo"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{994CF935-A35C-3D94-B75D-D905D8F24EB2}\InprocServer32]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{994CF935-A35C-3D94-B75D-D905D8F24EB2}\InprocServer32]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{994CF935-A35C-3D94-B75D-D905D8F24EB2}\InprocServer32\2.4.1.0]
"Class"="pdfforge.DllInfo"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{994CF935-A35C-3D94-B75D-D905D8F24EB2}\InprocServer32\2.4.1.0]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{994CF935-A35C-3D94-B75D-D905D8F24EB2}\InprocServer32\2.4.1.0]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{994CF935-A35C-3D94-B75D-D905D8F24EB2}\ProgId]
@="pdfforge.DllInfo"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{A1496F24-34C3-30E8-BDA8-E43D5F4FAC6E}]
@="pdfforge.PDF.PDF+X509+Signing"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{A1496F24-34C3-30E8-BDA8-E43D5F4FAC6E}\InprocServer32]
"Class"="pdfforge.PDF.PDF+X509+Signing"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{A1496F24-34C3-30E8-BDA8-E43D5F4FAC6E}\InprocServer32]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{A1496F24-34C3-30E8-BDA8-E43D5F4FAC6E}\InprocServer32]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{A1496F24-34C3-30E8-BDA8-E43D5F4FAC6E}\InprocServer32\2.4.1.0]
"Class"="pdfforge.PDF.PDF+X509+Signing"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{A1496F24-34C3-30E8-BDA8-E43D5F4FAC6E}\InprocServer32\2.4.1.0]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{A1496F24-34C3-30E8-BDA8-E43D5F4FAC6E}\InprocServer32\2.4.1.0]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{A1496F24-34C3-30E8-BDA8-E43D5F4FAC6E}\ProgId]
@="pdfforge.PDF.PDF.X509.Signing"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{CD338B61-6644-38B0-858D-557C9DA5F420}]
@="pdfforge.PDF.PDF"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{CD338B61-6644-38B0-858D-557C9DA5F420}\InprocServer32]
"Class"="pdfforge.PDF.PDF"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{CD338B61-6644-38B0-858D-557C9DA5F420}\InprocServer32]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{CD338B61-6644-38B0-858D-557C9DA5F420}\InprocServer32]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{CD338B61-6644-38B0-858D-557C9DA5F420}\InprocServer32\2.4.1.0]
"Class"="pdfforge.PDF.PDF"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{CD338B61-6644-38B0-858D-557C9DA5F420}\InprocServer32\2.4.1.0]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{CD338B61-6644-38B0-858D-557C9DA5F420}\InprocServer32\2.4.1.0]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{CD338B61-6644-38B0-858D-557C9DA5F420}\ProgId]
@="pdfforge.PDF.PDF"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{F2187C9E-AC12-3050-9656-ED4CF105C48E}]
@="pdfforge.Tools"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{F2187C9E-AC12-3050-9656-ED4CF105C48E}\InprocServer32]
"Class"="pdfforge.Tools"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{F2187C9E-AC12-3050-9656-ED4CF105C48E}\InprocServer32]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{F2187C9E-AC12-3050-9656-ED4CF105C48E}\InprocServer32]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{F2187C9E-AC12-3050-9656-ED4CF105C48E}\InprocServer32\2.4.1.0]
"Class"="pdfforge.Tools"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{F2187C9E-AC12-3050-9656-ED4CF105C48E}\InprocServer32\2.4.1.0]
"Assembly"="pdfforge, Version=2.4.1.0, Culture=neutral, PublicKeyToken=null"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{F2187C9E-AC12-3050-9656-ED4CF105C48E}\InprocServer32\2.4.1.0]
"CodeBase"="file:///C:/Program Files (x86)/PDFCreator/PlugIns/pdfforge/pdfforge.DLL"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{F2187C9E-AC12-3050-9656-ED4CF105C48E}\ProgId]
@="pdfforge.Tools"
Searching for "bProtector"
No data found.
-= EOF =- Rechner läuft derzeit normal.
Keine Probleme mit der Malware, allerdings tritt das Problem auch nur zeitweise auf. |