Vigilante | 06.12.2013 12:59 | Langsam Licht am Ende des Tunnels. Danke :) Ab in die nächste Runde. :party:
Also, irgendwas schließt noch immer die Minianwendung von Bitdefender. Aber anders als bei AVAST, arbeitet Bitdefender weiter. Den Ordner Rimworld habe ich jetzt gelöscht.
Was anderes: Als ja der Trojaner/Adware auftauchte, hatte ich ja die Information beim herunterladen "Windowsdateien werden Aktualisiert". Seitdem sind ja die Windowsminianwendungen defekt, auch jetzt noch. Die Farbe stimmt nicht, viele Bilder werden nicht angezeigt und die gängigen Tipps, wie den L Ordner in der Reg löschen, Minianwendungen de und neuinstallieren, die cmd Befehle eingeben
regsvr32 msxml3.dll
regsvr32 scrrun.dll
regsvr32 jscript.dll
klappen auch nicht.
Kann da noch was unentdecktes aktiv sein?
Wenn jetzt der Trojaner oder die Schadsoftware, da Dateien manipuliert hat. Wie sicher sind Sie jetzt nach deiner Hilfe?
Jetzt die Logfiles:
Eset: Code:
ESETSmartInstaller@High as downloader log:
all ok
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6920
# api_version=3.0.2
# EOSSerial=ab648a3a068cd241911af23533dd40d4
# engine=16129
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=false
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2013-12-04 01:31:34
# local_time=2013-12-04 02:31:34 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# lang=1033
# osver=6.1.7601 NT Service Pack 1
# compatibility_mode=774 16777213 71 77 181518 181522 0 0
# compatibility_mode=5893 16776574 66 85 143828 137793744 0 0
# scanned=210311
# found=0
# cleaned=0
# scan_time=5185
ESETSmartInstaller@High as downloader log:
all ok
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6920
# api_version=3.0.2
# EOSSerial=ab648a3a068cd241911af23533dd40d4
# engine=16160
# end=finished
# remove_checked=false
# archives_checked=false
# unwanted_checked=false
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2013-12-06 11:38:49
# local_time=2013-12-06 12:38:49 (+0100, Mitteleuropäische Zeit)
# country="Germany"
# lang=1033
# osver=6.1.7601 NT Service Pack 1
# compatibility_mode=5893 16776574 100 94 170300 137959779 0 0
# scanned=455128
# found=0
# cleaned=0
# scan_time=4924
Security Check: Code:
Results of screen317's Security Check version 0.99.76
Windows 7 Service Pack 1 x64 (UAC is enabled)
Internet Explorer 10 ``````````````Antivirus/Firewall Check:``````````````
Bitdefender Antivirus
Antivirus up to date! `````````Anti-malware/Other Utilities Check:`````````
Malwarebytes Anti-Malware Version 1.75.0.1300
Java 7 Update 17
Java version out of Date!
Adobe Flash Player 11.9.900.152
Google Chrome 31.0.1650.57
Google Chrome 31.0.1650.63 ````````Process Check: objlist.exe by Laurent````````
Malwarebytes Anti-Malware mbamservice.exe
Malwarebytes Anti-Malware mbamgui.exe
Malwarebytes' Anti-Malware mbamscheduler.exe
Bitdefender Bitdefender vsserv.exe
Bitdefender Bitdefender updatesrv.exe
Bitdefender Bitdefender SafeBox safeboxservice.exe
Bitdefender Bitdefender bdagent.exe
Bitdefender Bitdefender pmbxag.exe
Bitdefender Bitdefender antispam32 bdapppassmgr.exe
Bitdefender Bitdefender seccenter.exe `````````````````System Health check`````````````````
Total Fragmentation on Drive C: ````````````````````End of Log``````````````````````
FRST braucht ja immer, fertige ich jetzt an und füge erneut ein.
Vigilante
FRST 1: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 05-12-2013
Ran by Dante (administrator) on DANTE-PC on 06-12-2013 12:57:32
Running from C:\Users\Dante\Downloads
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\vsserv.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(Atheros) C:\Program Files (x86)\Atheros\Ath_CoexAgent.exe
(Atheros Commnucations) C:\Program Files (x86)\Atheros\Bluetooth Suite\AdminService.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(ASUS) C:\Program Files\P4G\BatteryLife.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(ASUS) C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe
() C:\Program Files (x86)\ASUS\ASUS Live Update\ALU.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
(ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(Intel(R) Corporation) C:\Program Files\Intel\TurboBoost\TurboBoost.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\updatesrv.exe
() C:\ExpressGateUtil\VAWinService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender Safebox\safeboxservice.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Atheros Communications) C:\Program Files (x86)\Atheros\Bluetooth Suite\BtvStack.exe
(Atheros Commnucations) C:\Program Files (x86)\Atheros\Bluetooth Suite\AthBtTray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\bdagent.exe
(Valve Corporation) D:\Steam\Steam.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
() C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
() C:\ExpressGateUtil\VAWinAgent.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
() C:\Program Files (x86)\Roxio\CinePlayer\5.0\CPMonitor.exe
(Sun Microsystems, Inc.) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Bitdefender) C:\Program Files\Bitdefender\Bitdefender\seccenter.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
() C:\Users\Dante\Downloads\SecurityCheck.exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2392360 2010-10-08] (Synaptics Incorporated)
HKLM\...\Run: [AtherosBtStack] - C:\Program Files (x86)\Atheros\Bluetooth Suite\BtvStack.exe [613536 2010-11-26] (Atheros Communications)
HKLM\...\Run: [AthBtTray] - C:\Program Files (x86)\Atheros\Bluetooth Suite\AthBtTray.exe [379040 2010-11-26] (Atheros Commnucations)
HKLM\...\Run: [SynAsusAcpi] - C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe [92968 2010-10-08] (Synaptics Incorporated)
HKLM\...\Run: [IntelTBRunOnce] - C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs [4156 2010-04-16] ()
HKLM\...\Run: [THXCfg64] - C:\Windows\system32\RunDLL32.exe C:\Windows\system32\THXCfg64.dll,RunDLLEntry THXCfg64
HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe [1028384 2013-11-08] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] - C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [Logitech Download Assistant] - C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
HKLM\...\Run: [NvBackend] - C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2273056 2013-11-29] (NVIDIA Corporation)
HKLM\...\Run: [Bdagent] - C:\Program Files\Bitdefender\Bitdefender\bdagent.exe [1734848 2013-11-21] (Bitdefender)
HKCU\...\Run: [Steam] - D:\Steam\Steam.exe [1823656 2013-12-04] (Valve Corporation)
HKCU\...\Run: [Desura] - D:\Desura\desura.exe [2529096 2013-12-02] (Desura Pty Ltd)
HKCU\...\Run: [Bitdefender-Geldbörse-Agent] - C:\Program Files\Bitdefender\Bitdefender\pmbxag.exe [560648 2013-11-18] (Bitdefender)
HKCU\...\Run: [Bitdefender-Geldbörse-Anwendungs-Agent] - C:\Program Files\Bitdefender\Bitdefender\antispam32\bdapppassmgr.exe [612696 2013-11-18] (Bitdefender)
HKLM-x32\...\Run: [UpdateLBPShortCut] - C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe [222504 2009-05-20] (CyberLink Corp.)
HKLM-x32\...\Run: [UpdateP2GoShortCut] - C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [222504 2009-05-20] (CyberLink Corp.)
HKLM-x32\...\Run: [Nuance PDF Reader-reminder] - C:\ProgramData\Nuance\PDF Reader\Ereg\Ereg.ini [371 2013-12-06] ()
HKLM-x32\...\Run: [ASUSWebStorage] - C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.84.161\AsusWSPanel.exe [731472 2011-02-23] (ecareme)
HKLM-x32\...\Run: [ATKMEDIA] - C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [170624 2010-10-07] (ASUS)
HKLM-x32\...\Run: [HControlUser] - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKLM-x32\...\Run: [Wireless Console 3] - C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [1601536 2010-09-24] ()
HKLM-x32\...\Run: [VAWinAgent] - C:\ExpressGateUtil\VAWinAgent.exe [21504 2010-08-13] ()
HKLM-x32\...\Run: [THX TruStudio NB Settings] - C:\Program Files (x86)\Creative\THX TruStudio\THXNBSet\THXAudNB.exe [905216 2010-09-08] (Creative Technology Ltd)
HKLM-x32\...\Run: [UpdReg] - C:\Windows\Updreg.EXE [90112 2000-05-11] (Creative Technology Ltd.)
HKLM-x32\...\Run: [CPMonitor] - C:\Program Files (x86)\Roxio\CinePlayer\5.0\CPMonitor.exe [84464 2010-12-27] ()
HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [252848 2012-07-03] (Sun Microsystems, Inc.)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKCU - DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL =
BHO: Bitdefender-Geldbörse - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender\pmbxie.dll (Bitdefender)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.2.4204.1700\swg64.dll (Google Inc.)
BHO-x32: Bitdefender-Geldbörse - {1DAC0C53-7D23-4AB3-856A-B04D98CD982A} - C:\Program Files\Bitdefender\Bitdefender\antispam32\pmbxie.dll (Bitdefender)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Atheros\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO-x32: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files (x86)\Google\GoogleToolbarNotifier\5.2.4204.1700\swg.dll (Google Inc.)
BHO-x32: Google Dictionary Compression sdch - {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} - C:\Program Files (x86)\Google\Google Toolbar\Component\fastsearch_B7C5AC242193BB3E.dll (Google Inc.)
BHO-x32: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Chrome:
=======
CHR HomePage: hxxp://www.google.com/ig/redirectdomain?brand=ASUT&bmod=ASUT
CHR Extension: (Google Docs) - C:\Users\Dante\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.5_0
CHR Extension: (Google Drive) - C:\Users\Dante\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0
CHR Extension: (YouTube) - C:\Users\Dante\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0
CHR Extension: (Bitdefender Wallet) - C:\Users\Dante\AppData\Local\Google\Chrome\User Data\Default\Extensions\ccahoghmggldkcdjiebjkidpfongdfbl\17.23.0_0
CHR Extension: (Google Search) - C:\Users\Dante\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0
CHR Extension: (Google Wallet) - C:\Users\Dante\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.5.0_0
CHR Extension: (Gmail) - C:\Users\Dante\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1
CHR HKLM-x32\...\Chrome\Extension: [ccahoghmggldkcdjiebjkidpfongdfbl] - C:\Program Files\Bitdefender\Bitdefender\Antispam32\pmbxcr.crx
==================== Services (Whitelisted) =================
R2 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Atheros\Ath_CoexAgent.exe [151552 2010-05-24] (Atheros)
R2 AtherosSvc; C:\Program Files (x86)\Atheros\Bluetooth Suite\adminservice.exe [52896 2010-11-26] (Atheros Commnucations)
S4 BdDesktopParental; C:\Program Files\Bitdefender\Bitdefender\bdparentalservice.exe [77632 2013-11-21] (Bitdefender)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1370912 2013-11-29] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [15128352 2013-11-29] (NVIDIA Corporation)
R2 SafeBox; C:\Program Files\Bitdefender\Bitdefender SafeBox\safeboxservice.exe [94624 2013-07-08] (Bitdefender)
R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender\updatesrv.exe [67320 2013-10-07] (Bitdefender)
R2 VideAceWindowsService; C:\ExpressGateUtil\VAWinService.exe [77312 2010-08-21] ()
R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender\vsserv.exe [1507248 2013-11-15] (Bitdefender)
==================== Drivers (Whitelisted) ====================
R0 avc3; C:\Windows\System32\DRIVERS\avc3.sys [727592 2013-07-19] (BitDefender)
R3 avchv; C:\Windows\System32\DRIVERS\avchv.sys [261056 2012-11-02] (BitDefender)
S3 avckf; C:\Windows\System32\DRIVERS\avckf.sys [601360 2013-07-19] (BitDefender)
R1 BdfNdisf; c:\program files\common files\bitdefender\bitdefender firewall\bdfndisf6.sys [93600 2013-02-22] (BitDefender LLC)
R1 bdfwfpf; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys [103504 2011-11-14] (BitDefender LLC)
S3 bdfwfpf_pc; C:\Program Files\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf_pc.sys [121928 2013-07-02] (Bitdefender SRL)
S3 BDSandBox; C:\Windows\system32\drivers\bdsandbox.sys [82824 2013-11-04] (BitDefender SRL)
R1 BDVEDISK; C:\Windows\System32\DRIVERS\bdvedisk.sys [76944 2012-04-17] (BitDefender)
R3 FLxHCIh; C:\Windows\System32\DRIVERS\FLxHCIh.sys [49664 2010-11-20] (Fresco Logic)
R0 gzflt; C:\Windows\System32\DRIVERS\gzflt.sys [150256 2013-08-23] (BitDefender LLC)
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( )
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39200 2013-10-30] (NVIDIA Corporation)
S3 Serial; C:\Windows\system32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.)
R0 trufos; C:\Windows\System32\DRIVERS\trufos.sys [389240 2013-08-07] (BitDefender S.R.L.)
R2 TurboB; C:\Windows\System32\DRIVERS\TurboB.sys [13832 2010-04-17] ()
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
S3 catchme; \??\C:\ComboFix\catchme.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-12-06 12:57 - 2013-12-06 12:57 - 00000000 ____D C:\Users\Dante\Downloads\FRST-OlderVersion
2013-12-06 12:41 - 2013-12-06 12:41 - 00891184 _____ C:\Users\Dante\Downloads\SecurityCheck.exe
2013-12-05 16:22 - 2013-12-05 16:23 - 28781024 _____ (SUPERAntiSpyware) C:\Users\Dante\Downloads\SUPERAntiSpyware.exe
2013-12-05 16:14 - 2013-12-05 16:15 - 00319776 _____ C:\Users\Dante\AppData\Local\census.cache
2013-12-05 16:14 - 2013-12-05 16:15 - 00114215 _____ C:\Users\Dante\AppData\Local\ars.cache
2013-12-05 15:56 - 2013-12-05 15:56 - 02405664 _____ (Trend Micro Inc.) C:\Users\Dante\Downloads\HousecallLauncher64.exe
2013-12-05 15:56 - 2013-12-05 15:56 - 00000036 _____ C:\Users\Dante\AppData\Local\housecall.guid.cache
2013-12-05 15:40 - 2013-12-06 12:57 - 01925140 _____ (Farbar) C:\Users\Dante\Downloads\FRST64.exe
2013-12-05 15:31 - 2013-12-05 15:31 - 00000759 _____ C:\Users\Dante\Desktop\JRT.txt
2013-12-05 15:23 - 2013-12-05 15:23 - 00001092 _____ C:\Users\Dante\Desktop\ADW.txt
2013-12-05 15:05 - 2013-12-05 15:05 - 00001121 _____ C:\Users\Dante\Desktop\MBM.txt
2013-12-05 09:14 - 2013-12-05 09:14 - 00035209 _____ C:\ComboFix.txt
2013-12-05 08:47 - 2011-06-26 07:45 - 00256000 _____ C:\Windows\PEV.exe
2013-12-05 08:47 - 2010-11-07 18:20 - 00208896 _____ C:\Windows\MBR.exe
2013-12-05 08:47 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2013-12-05 08:47 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2013-12-05 08:47 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2013-12-05 08:47 - 2000-08-31 01:00 - 00098816 _____ C:\Windows\sed.exe
2013-12-05 08:47 - 2000-08-31 01:00 - 00080412 _____ C:\Windows\grep.exe
2013-12-05 08:47 - 2000-08-31 01:00 - 00068096 _____ C:\Windows\zip.exe
2013-12-05 08:42 - 2013-12-05 09:14 - 00000000 ____D C:\Qoobox
2013-12-05 08:42 - 2013-12-05 09:08 - 00000000 ____D C:\Windows\erdnt
2013-12-05 08:40 - 2013-12-05 08:40 - 05152313 ____R (Swearware) C:\Users\Dante\Downloads\ComboFix.exe
2013-12-05 08:22 - 2013-12-05 08:22 - 00000385 _____ C:\Users\Dante\AppData\Roaminguser_gensett.xml
2013-12-04 20:15 - 2013-12-04 19:56 - 00062279 _____ C:\Users\Dante\Desktop\1386167578_1_02.xml
2013-12-04 15:36 - 2013-12-04 15:41 - 85102624 _____ C:\Users\Dante\Downloads\Zelda Majoras Mask HD.zip
2013-12-04 15:32 - 2013-12-04 15:32 - 01119828 _____ C:\ProgramData\1386164538.bdinstall.bin
2013-12-04 15:32 - 2013-12-04 15:32 - 00000385 _____ C:\Windows\system32\user_gensett.xml
2013-12-04 15:31 - 2013-12-04 15:32 - 00000000 ____D C:\ProgramData\BDLogging
2013-12-04 15:31 - 2013-12-04 15:31 - 00002188 _____ C:\Users\Public\Desktop\Bitdefender Safepay.lnk
2013-12-04 15:31 - 2013-12-04 15:31 - 00002069 _____ C:\Users\Public\Desktop\Bitdefender Total Security.lnk
2013-12-04 15:31 - 2013-12-04 15:31 - 00000684 ____H C:\bdr-cf01
2013-12-04 15:31 - 2013-12-04 15:31 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_avchv_01009.Wdf
2013-12-04 15:30 - 2012-04-17 13:34 - 00076944 _____ (BitDefender) C:\Windows\system32\Drivers\bdvedisk.sys
2013-12-04 15:15 - 2013-12-04 16:01 - 00074512 _____ (BitDefender SRL) C:\Windows\SysWOW64\bdsandboxuiskin32.dll
2013-12-04 15:15 - 2013-11-04 15:47 - 00082824 _____ (BitDefender SRL) C:\Windows\system32\Drivers\bdsandbox.sys
2013-12-04 15:15 - 2013-07-19 17:08 - 00601360 _____ (BitDefender) C:\Windows\system32\Drivers\avckf.sys
2013-12-04 15:15 - 2013-07-19 17:04 - 00727592 _____ (BitDefender) C:\Windows\system32\Drivers\avc3.sys
2013-12-04 15:15 - 2013-02-22 18:46 - 00093600 _____ (BitDefender LLC) C:\Windows\system32\Drivers\BdfNdisf6.sys
2013-12-04 15:15 - 2012-11-02 13:17 - 00261056 _____ (BitDefender) C:\Windows\system32\Drivers\avchv.sys
2013-12-04 15:15 - 2007-04-11 10:11 - 00511328 _____ (Microsoft Corporation) C:\Windows\capicom.dll
2013-12-04 14:51 - 2013-12-04 15:32 - 00000000 ____D C:\Users\Dante\AppData\Roaming\Bitdefender
2013-12-04 14:51 - 2013-12-04 15:31 - 00253404 ____H C:\bdr-ld01
2013-12-04 14:51 - 2013-12-04 15:31 - 00009216 ____H C:\bdr-ld01.mbr
2013-12-04 14:51 - 2013-09-24 15:38 - 46879860 ____H C:\bdr-im01.gz
2013-12-04 14:51 - 2013-08-13 12:38 - 03271472 ____H C:\bdr-bz01
2013-12-04 14:43 - 2013-12-04 16:01 - 00074512 _____ (BitDefender SRL) C:\Windows\system32\bdsandboxuiskin32.dll
2013-12-04 14:43 - 2013-12-04 16:01 - 00000000 ____D C:\ProgramData\Bitdefender
2013-12-04 14:43 - 2013-12-04 14:51 - 00000000 ____D C:\Program Files\Bitdefender
2013-12-04 14:43 - 2013-11-04 15:47 - 00084848 _____ (BitDefender SRL) C:\Windows\system32\BDSandBoxUISkin.dll
2013-12-04 14:43 - 2013-11-04 15:46 - 00034384 _____ (BitDefender SRL) C:\Windows\system32\BDSandBoxUH.dll
2013-12-04 14:43 - 2013-08-23 12:48 - 00150256 _____ (BitDefender LLC) C:\Windows\system32\Drivers\gzflt.sys
2013-12-04 14:43 - 2013-08-07 12:46 - 00389240 _____ (BitDefender S.R.L.) C:\Windows\system32\Drivers\trufos.sys
2013-12-04 14:42 - 2013-12-04 14:42 - 00000000 ____D C:\Users\Dante\AppData\Roaming\QuickScan
2013-12-04 14:41 - 2013-12-04 14:43 - 00000000 ____D C:\Program Files\Common Files\Bitdefender
2013-12-04 14:20 - 2013-11-19 03:33 - 00267936 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2013-12-04 14:04 - 2013-12-05 08:21 - 00002872 _____ C:\Windows\system32\TmInstall.log
2013-12-04 14:04 - 2013-12-04 14:04 - 00004280 _____ C:\Windows\SysWOW64\TmInstall.log
2013-12-04 14:01 - 2013-12-04 14:01 - 07171632 _____ C:\Users\Dante\Downloads\bitdefender_tsecurity (1).exe
2013-12-04 14:00 - 2013-12-04 14:00 - 07171632 _____ C:\Users\Dante\Downloads\bitdefender_tsecurity.exe
2013-12-04 13:00 - 2013-12-04 13:00 - 02347384 _____ (ESET) C:\Users\Dante\Downloads\esetsmartinstaller_enu.exe
2013-12-04 13:00 - 2013-12-04 13:00 - 00000000 ____D C:\Program Files (x86)\ESET
2013-12-04 12:38 - 2013-12-04 12:38 - 01034531 _____ (Thisisu) C:\Users\Dante\Downloads\JRT.exe
2013-12-04 12:38 - 2013-12-04 12:38 - 00000000 ____D C:\Windows\ERUNT
2013-12-04 12:36 - 2013-12-04 12:37 - 00002504 _____ C:\Users\Dante\Desktop\AdwCleaner.txt
2013-12-04 12:32 - 2013-12-05 15:20 - 00000000 ____D C:\AdwCleaner
2013-12-04 12:32 - 2013-12-04 12:32 - 01110034 _____ C:\Users\Dante\Downloads\adwcleaner.exe
2013-12-04 12:22 - 2013-12-04 12:31 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2013-12-04 12:20 - 2013-12-04 12:31 - 00000000 ____D C:\Users\Dante\Desktop\mbar
2013-12-04 12:20 - 2013-12-04 12:20 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2013-12-04 12:19 - 2013-12-04 12:20 - 12576792 _____ (Malwarebytes Corp.) C:\Users\Dante\Downloads\mbar-1.07.0.1007.exe
2013-12-04 10:12 - 2013-12-04 10:12 - 00026884 _____ C:\Users\Dante\Downloads\FRST.7z
2013-12-04 09:55 - 2013-12-04 12:59 - 00015569 _____ C:\Users\Dante\Downloads\Addition.txt
2013-12-04 09:54 - 2013-12-06 12:57 - 00016992 _____ C:\Users\Dante\Downloads\FRST.txt
2013-12-04 09:54 - 2013-12-06 12:57 - 00000000 ____D C:\FRST
2013-12-04 09:19 - 2013-12-04 09:19 - 00000000 ____D C:\Program Files (x86)\Windows Sidebar
2013-12-04 09:02 - 2013-12-05 08:32 - 00003046 _____ C:\Windows\System32\Tasks\ASUS P4G
2013-12-04 09:02 - 2013-12-04 09:02 - 00000000 ____D C:\ProgramData\P4G
2013-12-03 19:23 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE
2013-12-03 19:20 - 2013-12-03 19:20 - 23212032 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 17142784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 12995584 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 11220992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 05765120 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 04240384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-12-03 19:20 - 2013-12-03 19:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-12-03 19:20 - 2013-12-03 19:20 - 02332160 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 02166272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 01993728 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-12-03 19:20 - 2013-12-03 19:20 - 01926656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2013-12-03 19:20 - 2013-12-03 19:20 - 01818112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 01394176 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 01156608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2013-12-03 19:20 - 2013-12-03 19:20 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2013-12-03 19:20 - 2013-12-03 19:20 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2013-12-03 19:20 - 2013-12-03 19:20 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2013-12-03 19:20 - 2013-12-03 19:20 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2013-12-03 19:20 - 2013-12-03 19:20 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-12-03 19:20 - 2013-12-03 19:20 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2013-12-03 19:20 - 2013-12-03 19:20 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2013-12-03 19:20 - 2013-12-03 19:20 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2013-12-03 19:20 - 2013-12-03 19:20 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2013-12-03 19:20 - 2013-12-03 19:20 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-12-03 19:20 - 2013-12-03 19:20 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2013-12-03 19:20 - 2013-12-03 19:20 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2013-12-03 19:20 - 2013-12-03 19:20 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2013-12-03 19:20 - 2013-12-03 19:20 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-12-03 19:20 - 2013-12-03 19:20 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2013-12-03 19:20 - 2013-12-03 19:20 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2013-12-03 19:20 - 2013-12-03 19:20 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-12-03 19:20 - 2013-12-03 19:20 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2013-12-03 19:20 - 2013-12-03 19:20 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2013-12-03 19:20 - 2013-12-03 19:20 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2013-12-03 19:20 - 2013-12-03 19:20 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2013-12-03 19:20 - 2013-12-03 19:20 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2013-12-03 19:20 - 2013-12-03 19:20 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2013-12-03 19:20 - 2013-12-03 19:20 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2013-12-03 19:19 - 2013-12-03 19:23 - 00009871 _____ C:\Windows\IE11_main.log
2013-12-03 16:37 - 2013-12-03 16:37 - 00000000 ____D C:\Users\Dante\AppData\Local\NVIDIA Corporation
2013-12-03 16:36 - 2013-10-30 18:03 - 00039200 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2013-12-03 16:36 - 2013-10-30 18:02 - 00032544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2013-12-03 14:47 - 2013-12-03 14:47 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_09_00.Wdf
2013-12-03 08:54 - 2013-12-03 08:54 - 00001111 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2013-12-03 08:54 - 2013-12-03 08:54 - 00000000 ____D C:\Users\Dante\AppData\Roaming\Malwarebytes
2013-12-03 08:54 - 2013-12-03 08:54 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-12-03 08:54 - 2013-12-03 08:54 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-12-03 08:54 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2013-12-03 08:52 - 2013-12-03 08:52 - 00614784 _____ C:\Users\Dante\Downloads\Malwarebytes Anti Malware - CHIP-Downloader.exe
2013-12-02 23:13 - 2013-12-02 23:13 - 00000000 ____D C:\Users\Dante\Zomboid
2013-12-02 23:13 - 2013-12-02 23:13 - 00000000 ____D C:\Users\Dante\AppData\Roaming\NVIDIA
2013-12-02 23:13 - 2013-12-02 23:13 - 00000000 ____D C:\ProgramData\Sun
2013-12-02 23:13 - 2013-12-02 23:12 - 00861088 _____ (Oracle Corporation) C:\Windows\SysWOW64\npDeployJava1.dll
2013-12-02 23:13 - 2013-12-02 23:12 - 00782240 _____ (Oracle Corporation) C:\Windows\SysWOW64\deployJava1.dll
2013-12-02 23:13 - 2013-12-02 23:12 - 00262560 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2013-12-02 23:12 - 2013-12-02 23:12 - 00174496 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2013-12-02 23:12 - 2013-12-02 23:12 - 00174496 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2013-12-02 23:12 - 2013-12-02 23:12 - 00095648 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2013-12-02 23:12 - 2013-12-02 23:12 - 00000000 ____D C:\Program Files (x86)\Java
2013-12-02 17:22 - 2013-12-02 17:22 - 00000000 ____D C:\Program Files\7-Zip
2013-12-02 16:32 - 2013-12-02 16:44 - 00000582 _____ C:\Users\Public\Desktop\Desura.lnk
2013-12-02 16:32 - 2013-12-02 16:32 - 00000000 ____D C:\ProgramData\Desura
2013-12-02 16:02 - 2013-12-03 08:44 - 00000000 ____D C:\ProgramData\VirtualizedApplications
2013-12-02 14:15 - 2013-12-06 12:35 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-12-02 14:15 - 2013-12-02 14:36 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-12-02 14:15 - 2013-12-02 14:36 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-12-02 14:15 - 2013-12-02 14:36 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-12-02 14:15 - 2013-12-02 14:15 - 00000000 ____D C:\Windows\system32\Macromed
2013-12-02 14:14 - 2013-12-02 14:18 - 00000000 ____D C:\Users\Dante\AppData\Local\Adobe
2013-12-02 13:57 - 2013-12-02 13:57 - 00000000 ___RD C:\MSOCache
2013-12-02 13:51 - 2013-12-03 19:23 - 00000000 ____D C:\Program Files (x86)\Microsoft Application Virtualization Client
2013-12-02 13:51 - 2013-12-02 23:31 - 00000000 ____D C:\Users\Dante\AppData\Roaming\SoftGrid Client
2013-12-02 13:51 - 2013-12-02 13:51 - 00000000 ____D C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2013-12-02 13:51 - 2013-12-02 13:51 - 00000000 ____D C:\Users\Dante\AppData\Local\SoftGrid Client
2013-12-02 13:51 - 2013-12-02 13:51 - 00000000 ____D C:\Program Files\Microsoft Office
2013-12-02 13:50 - 2013-12-02 13:52 - 00000000 ____D C:\Users\Dante\AppData\Roaming\TP
2013-12-02 13:06 - 2013-12-02 13:06 - 00334648 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2013-12-02 13:06 - 2013-12-02 13:06 - 00000000 ____D C:\Users\Dante\AppData\Roaming\AVAST Software
2013-12-02 13:04 - 2013-12-05 08:20 - 00000000 ____D C:\ProgramData\AVAST Software
2013-12-02 11:14 - 2012-08-23 15:13 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2013-12-02 11:14 - 2012-08-23 15:10 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2013-12-02 11:14 - 2012-08-23 15:07 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2013-12-02 11:14 - 2012-08-23 14:47 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll
2013-12-02 11:14 - 2012-08-23 14:46 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll
2013-12-02 11:14 - 2012-08-23 14:41 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2013-12-02 11:14 - 2012-08-23 14:40 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2013-12-02 11:14 - 2012-08-23 14:24 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll
2013-12-02 11:14 - 2012-08-23 14:20 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll
2013-12-02 11:14 - 2012-08-23 14:18 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2013-12-02 11:14 - 2012-08-23 14:17 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2013-12-02 11:14 - 2012-08-23 14:06 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2013-12-02 11:14 - 2012-08-23 13:52 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2013-12-02 11:14 - 2012-08-23 12:20 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2013-12-02 11:14 - 2012-08-23 12:15 - 00269312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
2013-12-02 11:14 - 2012-08-23 12:14 - 00384000 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2013-12-02 11:14 - 2012-08-23 12:12 - 00192000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpendp_winip.dll
2013-12-02 11:14 - 2012-08-23 11:54 - 00322560 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll
2013-12-02 11:14 - 2012-08-23 11:51 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\rdpendp_winip.dll
2013-12-02 11:14 - 2012-08-23 11:39 - 01048064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2013-12-02 11:14 - 2012-08-23 11:22 - 01123840 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2013-12-02 11:14 - 2012-08-23 10:51 - 03174912 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2013-12-02 11:14 - 2012-08-23 09:19 - 04916224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2013-12-02 11:14 - 2012-08-23 09:13 - 05773824 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2013-12-02 11:13 - 2012-05-04 12:00 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2013-12-02 11:13 - 2012-05-04 10:59 - 00514560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2013-12-02 10:46 - 2011-02-25 07:19 - 02871808 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2013-12-02 10:46 - 2011-02-25 06:30 - 02616320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2013-12-02 10:45 - 2013-09-04 13:12 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2013-12-02 10:45 - 2013-09-04 13:11 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2013-12-02 10:45 - 2013-09-04 13:11 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2013-12-02 10:45 - 2013-09-04 13:11 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2013-12-02 10:45 - 2013-09-04 13:11 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2013-12-02 10:45 - 2013-09-04 13:11 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2013-12-02 10:45 - 2013-09-04 13:11 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2013-12-02 10:45 - 2013-04-17 08:02 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2013-12-02 10:45 - 2013-04-17 07:24 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2013-12-02 10:45 - 2012-02-11 07:36 - 00559104 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2013-12-02 10:45 - 2012-02-11 07:36 - 00067072 _____ (Microsoft Corporation) C:\Windows\splwow64.exe
2013-12-02 09:31 - 2013-12-02 09:34 - 00000021 _____ C:\Users\Dante\Desktop\Neues Textdokument.txt
2013-11-29 13:43 - 2006-05-13 17:22 - 00000005 _____ C:\Pass.txt |