briker20 | 04.01.2014 20:48 | Logdatei vom adwcleaner: Code:
# AdwCleaner v3.016 - Bericht erstellt am 04/01/2014 um 20:20:11
# Aktualisiert 23/12/2013 von Xplode
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits)
# Benutzername : Yannic Lonsdorfer - WHATTHEHELL
# Gestartet von : C:\Users\Yannic Lonsdorfer\Desktop\adwcleaner.exe
# Option : Löschen
***** [ Dienste ] *****
***** [ Dateien / Ordner ] *****
Ordner Gelöscht : C:\ProgramData\boost_interprocess
Ordner Gelöscht : C:\ProgramData\Partner
Ordner Gelöscht : C:\ProgramData\WPM
Ordner Gelöscht : C:\Program Files (x86)\Allin1Convert_8h
Ordner Gelöscht : C:\Program Files (x86)\Conduit
Ordner Gelöscht : C:\Program Files (x86)\eSupport.com
Ordner Gelöscht : C:\Program Files (x86)\Mysearchdial
Ordner Gelöscht : C:\Users\Yannic Lonsdorfer\AppData\Local\Conduit
Ordner Gelöscht : C:\Users\Yannic Lonsdorfer\AppData\Local\eSupport.com
Ordner Gelöscht : C:\Users\Yannic Lonsdorfer\AppData\Local\Ilivid Player
Ordner Gelöscht : C:\Users\Yannic Lonsdorfer\AppData\LocalLow\Conduit
Ordner Gelöscht : C:\Users\Yannic Lonsdorfer\AppData\LocalLow\PriceGong
Ordner Gelöscht : C:\Users\Yannic Lonsdorfer\AppData\LocalLow\searchquband
Ordner Gelöscht : C:\Users\Yannic Lonsdorfer\AppData\LocalLow\Searchqutoolbar
Ordner Gelöscht : C:\Users\Yannic Lonsdorfer\AppData\Roaming\yourfiledownloader
Ordner Gelöscht : C:\Users\Yannic Lonsdorfer\AppData\Roaming\Mozilla\Firefox\Profiles\j1dekdf3.default\ConduitCommon
Ordner Gelöscht : C:\Users\Yannic Lonsdorfer\AppData\Roaming\Mozilla\Firefox\Profiles\lhohp657.Yannic\Smartbar
Ordner Gelöscht : C:\Users\Yannic Lonsdorfer\AppData\Roaming\Mozilla\Firefox\Profiles\lhohp657.Yannic\ValueApps
Ordner Gelöscht : C:\Users\Yannic Lonsdorfer\AppData\Roaming\Mozilla\Firefox\Profiles\lhohp657.Yannic\CT2605552
Ordner Gelöscht : C:\Users\Yannic Lonsdorfer\AppData\Roaming\Mozilla\Firefox\Profiles\lhohp657.Yannic\Extensions\{AD9A41D2-9A49-4FA6-A79E-71A0785364C8}
Ordner Gelöscht : C:\Users\Yannic Lonsdorfer\AppData\Roaming\Mozilla\Firefox\Profiles\lhohp657.Yannic\Extensions\ffxtlbr@mysearchdial.com
Ordner Gelöscht : C:\Users\Yannic Lonsdorfer\AppData\Roaming\Mozilla\Firefox\Profiles\lhohp657.Yannic\Extensions\{2468bed5-58f0-43e3-8b35-b49f233a799e}
Datei Gelöscht : C:\END
Datei Gelöscht : C:\Program Files (x86)\Mozilla Firefox\searchplugins\avg-secure-search.xml
Datei Gelöscht : C:\Users\Yannic Lonsdorfer\AppData\Roaming\Mozilla\Firefox\Profiles\j1dekdf3.default\searchplugins\Mysearchdial.xml
Datei Gelöscht : C:\Users\Yannic Lonsdorfer\AppData\Roaming\Mozilla\Firefox\Profiles\lhohp657.Yannic\searchplugins\Mysearchdial.xml
Datei Gelöscht : C:\Users\Yannic Lonsdorfer\AppData\Roaming\Mozilla\Firefox\Profiles\j1dekdf3.default\user.js
Datei Gelöscht : C:\Users\Yannic Lonsdorfer\AppData\Roaming\Mozilla\Firefox\Profiles\lhohp657.Yannic\user.js
Datei Gelöscht : C:\Windows\System32\Tasks\YourFile Update
***** [ Verknüpfungen ] *****
Verknüpfung Desinfiziert : C:\Users\Public\Desktop\Mozilla Firefox.lnk
Verknüpfung Desinfiziert : C:\Users\Yannic Lonsdorfer\Desktop\Internet Explorer (No Add-ons).lnk
Verknüpfung Desinfiziert : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
Verknüpfung Desinfiziert : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sierra\Herrscher des Olymp - Zeus\Links\Caesar III - Website.lnk
Verknüpfung Desinfiziert : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sierra\Herrscher des Olymp - Zeus\Links\Empire Earth - Website.lnk
Verknüpfung Desinfiziert : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sierra\Herrscher des Olymp - Zeus\Links\Herrscher des Olymp - Zeus - Website.lnk
Verknüpfung Desinfiziert : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sierra\Herrscher des Olymp - Zeus\Links\Imperium der Ameisen - Website.lnk
Verknüpfung Desinfiziert : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sierra\Herrscher des Olymp - Zeus\Links\Pharao - Website.lnk
Verknüpfung Desinfiziert : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sierra\Herrscher des Olymp - Zeus\Links\Sierra - Website.lnk
Verknüpfung Desinfiziert : C:\Users\Yannic Lonsdorfer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
Verknüpfung Desinfiziert : C:\Users\Yannic Lonsdorfer\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
Verknüpfung Desinfiziert : C:\Users\Yannic Lonsdorfer\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk
***** [ Registrierungsdatenbank ] *****
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\conduit.com
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\conduitapps.com
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\BrowserConnection.dll
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\DNSBHO.dll
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escort.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Applications\ilividsetupv1.exe
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\DnsBHO.BHO
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\DnsBHO.BHO.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\datamngrUI_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\datamngrUI_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetupV1_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetupV1_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SearchquMediaBar_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SearchquMediaBar_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\YourFile_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\YourFile_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\YourFileUpdater_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\YourFileUpdater_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Toolbar.CT2625848
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{AC662AF2-4601-4A68-84DF-A3FE83F1A5F9}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{C292AD0A-C11F-479B-B8DB-743E72D283B0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{D97A8234-F2A2-4AD4-91D5-FECDB2C553AF}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{408CFAD9-8F13-4747-8EC7-770A339C7237}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{CC5AD34C-6F10-4CB3-B74A-C2DD4D5060A3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{FEFD3AF5-A346-4451-AA23-A3AD54915515}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{1B730ACF-26A3-447B-9994-14AEE0EB72CC}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{44B619BC-3D2B-4990-AA4F-9AA366921792}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{6A4BCABA-C437-4C76-A54E-AF31B8A76CB9}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{841D5A49-E48D-413C-9C28-EB3D9081D705}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D4027C7F-154A-4066-A1AD-4243D8127440}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{9D717F81-9148-4F12-8568-69135F087DB0}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{FEFD3AF5-A346-4451-AA23-A3AD54915515}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{1B730ACF-26A3-447B-9994-14AEE0EB72CC}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{23119123-0854-469D-807A-171568457991}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{44B619BC-3D2B-4990-AA4F-9AA366921792}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{53F6A516-3DCC-48F4-835C-6C670CB39CEA}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9D717F81-9148-4F12-8568-69135F087DB0}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Schlüssel Gelöscht : HKCU\Software\allin1convert_8h
Schlüssel Gelöscht : HKCU\Software\Conduit
Schlüssel Gelöscht : HKCU\Software\IGearSettings
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\allin1convert_8h
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\PriceGong
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\searchqutoolbar
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\SmartBar
Schlüssel Gelöscht : HKLM\Software\aartemisSoftware
Schlüssel Gelöscht : HKLM\Software\allin1convert_8h
Schlüssel Gelöscht : HKLM\Software\Conduit
Schlüssel Gelöscht : HKLM\Software\InstallCore
Schlüssel Gelöscht : HKLM\Software\SearchquMediabarTb
Schlüssel Gelöscht : HKLM\Software\supWPM
Schlüssel Gelöscht : HKLM\Software\YourFileDownloader
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\DataMngr
Daten Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SEARCH~1\Datamngr\datamngr.dll
Daten Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SEARCH~1\Datamngr\IEBHO.dll
Daten Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SEARCH~1\Datamngr\x64\datamngr.dll
Daten Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SEARCH~1\Datamngr\x64\IEBHO.dll
***** [ Browser ] *****
-\\ Internet Explorer v11.0.9600.16428
Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls [Tabs]
Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
-\\ Mozilla Firefox v26.0 (de)
[ Datei : C:\Users\Yannic Lonsdorfer\AppData\Roaming\Mozilla\Firefox\Profiles\j1dekdf3.default\prefs.js ]
Zeile gelöscht : user_pref("CT2682599.searchProtector.notifyChanges", "{\"dataType\":\"string\",\"data\":\"false\"}");
Zeile gelöscht : user_pref("browser.startup.homepage", "hxxp://start.mysearchdial.com/?f=1&a=irmsd0101&cd=2XzuyEtN2Y1L1Qzu0B0CyByBtAyBtD0F0B0EzzzztC0E0FtDtN0D0Tzu0SyBtAyEtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1[...]
Zeile gelöscht : user_pref("browser.search.selectedEngine", "Mysearchdial");
Zeile gelöscht : user_pref("browser.search.defaultenginename", "Mysearchdial");
[ Datei : C:\Users\Yannic Lonsdorfer\AppData\Roaming\Mozilla\Firefox\Profiles\lhohp657.Yannic\prefs.js ]
Zeile gelöscht : user_pref("CT2605552.1000082.isPlayDisplay", "true");
Zeile gelöscht : user_pref("CT2605552.1000082.muteState", "off");
Zeile gelöscht : user_pref("CT2605552.1000082.shrinkState", "expanded");
Zeile gelöscht : user_pref("CT2605552.1000082.state", "{\"state\":\"stopped\",\"text\":\"106.8 Roc...\",\"description\":\"106.8 Rock & Pop\",\"url\":\"hxxp://live96.106acht.de/\"}");
Zeile gelöscht : user_pref("CT2605552.ENABALE_HISTORY", "{\"dataType\":\"string\",\"data\":\"true\"}");
Zeile gelöscht : user_pref("CT2605552.ENABLE_RETURN_WEB_SEARCH_ON_THE_PAGE", "{\"dataType\":\"string\",\"data\":\"true\"}");
Zeile gelöscht : user_pref("CT2605552.FF19Solved", "true");
Zeile gelöscht : user_pref("CT2605552.FirstTime", "true");
Zeile gelöscht : user_pref("CT2605552.FirstTimeFF3", "true");
Zeile gelöscht : user_pref("CT2605552.UserID", "UN29930272533227308");
Zeile gelöscht : user_pref("CT2605552.addressBarTakeOverEnabledInHidden", "true");
Zeile gelöscht : user_pref("CT2605552.countryCode", "DE");
Zeile gelöscht : user_pref("CT2605552.defaultSearch", "false");
Zeile gelöscht : user_pref("CT2605552.embeddedsData", "[{\"appId\":\"129164314690602554\",\"apiPermissions\":{\"crossDomainAjax\":true,\"getMainFrameTitle\":true,\"getMainFrameUrl\":true,\"getSearchTerm\":true,\"insta[...]
Zeile gelöscht : user_pref("CT2605552.enableSearchFromAddressBar", "true");
Zeile gelöscht : user_pref("CT2605552.firstTimeDialogOpened", "true");
Zeile gelöscht : user_pref("CT2605552.fixPageNotFoundErrorByUser", "TRUE");
Zeile gelöscht : user_pref("CT2605552.fixPageNotFoundErrorInHidden", "true");
Zeile gelöscht : user_pref("CT2605552.fullUserID", "UN29930272533227308.IN.20131117160215");
Zeile gelöscht : user_pref("CT2605552.installDate", "17/11/2013 16:02:17");
Zeile gelöscht : user_pref("CT2605552.installSessionId", "FF23D54B-1420-4CC6-A5CB-E77F52555E21");
Zeile gelöscht : user_pref("CT2605552.installSp", "false");
Zeile gelöscht : user_pref("CT2605552.installType", "xpe");
Zeile gelöscht : user_pref("CT2605552.installUsage", "2013-11-17T18:03:36.7374975+03:00");
Zeile gelöscht : user_pref("CT2605552.installUsageEarly", "2013-11-17T18:03:35.3490886+03:00");
Zeile gelöscht : user_pref("CT2605552.installerVersion", "1.8.1.4");
Zeile gelöscht : user_pref("CT2605552.isCheckedStartAsHidden", true);
Zeile gelöscht : user_pref("CT2605552.isEnableAllDialogs", "{\"dataType\":\"string\",\"data\":\"true\"}");
Zeile gelöscht : user_pref("CT2605552.isFirstTimeToolbarLoading", "false");
Zeile gelöscht : user_pref("CT2605552.isToolbarShrinked", "{\"dataType\":\"string\",\"data\":\"false\"}");
Zeile gelöscht : user_pref("CT2605552.isWelcomPage", "{\"dataType\":\"boolean\",\"data\":\"true\"}");
Zeile gelöscht : user_pref("CT2605552.keyword", "true");
Zeile gelöscht : user_pref("CT2605552.lastNewTabSettings", "{\"isEnabled\":false,\"newTabUrl\":\"hxxp://search.conduit.com/?ctid=CT2605552&octid=CT2605552&SearchSource=15&CUI=UN29930272533227308&SSPV=&Lay=1&UM=1\"}");
Zeile gelöscht : user_pref("CT2605552.lastVersion", "10.23.0.822");
Zeile gelöscht : user_pref("CT2605552.mam_gk_installer_preapproved.enc", "ZmFsc2U=");
Zeile gelöscht : user_pref("CT2605552.navigationAliasesJson", "{\"EB_SEARCH_TERM\":\"\",\"EB_MAIN_FRAME_URL\":\"hxxp%3A%2F%2Fwww.trojaner-board.de%2F147261-aartemis-virus-eingefangen.html\",\"EB_MAIN_FRAME_TITLE\":\"A[...]
Zeile gelöscht : user_pref("CT2605552.openThankYouPage", "true");
Zeile gelöscht : user_pref("CT2605552.openUninstallPage", "true");
Zeile gelöscht : user_pref("CT2605552.originalSearchAddressUrl", "");
Zeile gelöscht : user_pref("CT2605552.revertSettingsEnabled", "false");
Zeile gelöscht : user_pref("CT2605552.search.searchAppId", "129164314690602554");
Zeile gelöscht : user_pref("CT2605552.search.searchCount", "1");
Zeile gelöscht : user_pref("CT2605552.searchInNewTabEnabledByUser", "false");
Zeile gelöscht : user_pref("CT2605552.searchInNewTabEnabledInHidden", "true");
Zeile gelöscht : user_pref("CT2605552.searchRevert", "false");
Zeile gelöscht : user_pref("CT2605552.searchSuggestEnabledByUser", "true");
Zeile gelöscht : user_pref("CT2605552.searchUninstallUserMode", "1");
Zeile gelöscht : user_pref("CT2605552.searchUserMode", "1");
Zeile gelöscht : user_pref("CT2605552.selectToSearchBoxEnabled", "{\"dataType\":\"string\",\"data\":\"true\"}");
Zeile gelöscht : user_pref("CT2605552.serviceLayer_service_login_isFirstLoginInvoked", "{\"dataType\":\"boolean\",\"data\":\"true\"}");
Zeile gelöscht : user_pref("CT2605552.serviceLayer_service_login_loginCount", "{\"dataType\":\"number\",\"data\":\"4\"}");
Zeile gelöscht : user_pref("CT2605552.serviceLayer_service_toolbarGrouping_activeCTID", "{\"dataType\":\"string\",\"data\":\"CT2605552\"}");
Zeile gelöscht : user_pref("CT2605552.serviceLayer_service_toolbarGrouping_activeDownloadUrl", "{\"dataType\":\"string\",\"data\":\"hxxp://GrepolisUltra.OurToolbar.com//xpi\"}");
Zeile gelöscht : user_pref("CT2605552.serviceLayer_service_toolbarGrouping_activeToolbarName", "{\"dataType\":\"string\",\"data\":\"Grepolis Ultra \"}");
Zeile gelöscht : user_pref("CT2605552.serviceLayer_service_toolbarGrouping_invoked", "{\"dataType\":\"string\",\"data\":\"true\"}");
Zeile gelöscht : user_pref("CT2605552.serviceLayer_service_usage_toolbarUsageCount", "{\"dataType\":\"number\",\"data\":\"2\"}");
Zeile gelöscht : user_pref("CT2605552.serviceLayer_services_Configuration_lastUpdate", "1388851803223");
Zeile gelöscht : user_pref("CT2605552.serviceLayer_services_appTrackingFirstTime_lastUpdate", "1388251799832");
Zeile gelöscht : user_pref("CT2605552.serviceLayer_services_appsMetadata_lastUpdate", "1388851803031");
Zeile gelöscht : user_pref("CT2605552.serviceLayer_services_gottenAppsContextMenu_lastUpdate", "1388353434633");
Zeile gelöscht : user_pref("CT2605552.serviceLayer_services_installUsage_ToolbarInstallEarly_lastUpdate", "1384700615544");
Zeile gelöscht : user_pref("CT2605552.serviceLayer_services_installUsage_ToolbarInstall_lastUpdate", "1384700617092");
Zeile gelöscht : user_pref("CT2605552.serviceLayer_services_login_10.22.3.18_lastUpdate", "1384900396855");
Zeile gelöscht : user_pref("CT2605552.serviceLayer_services_login_10.22.5.510_lastUpdate", "1386696514186");
Zeile gelöscht : user_pref("CT2605552.serviceLayer_services_login_10.23.0.822_lastUpdate", "1388862403641");
Zeile gelöscht : user_pref("CT2605552.serviceLayer_services_otherAppsContextMenu_lastUpdate", "1388353434676");
Zeile gelöscht : user_pref("CT2605552.serviceLayer_services_searchAPI_lastUpdate", "1388851803782");
Zeile gelöscht : user_pref("CT2605552.serviceLayer_services_serviceMap_lastUpdate", "1388851802960");
Zeile gelöscht : user_pref("CT2605552.serviceLayer_services_toolbarContextMenu_lastUpdate", "1388851803134");
Zeile gelöscht : user_pref("CT2605552.serviceLayer_services_toolbarSettings_lastUpdate", "1388862403687");
Zeile gelöscht : user_pref("CT2605552.serviceLayer_services_translation_lastUpdate", "1388851804328");
Zeile gelöscht : user_pref("CT2605552.settingsINI", true);
Zeile gelöscht : user_pref("CT2605552.shouldFirstTimeDialog", "false");
Zeile gelöscht : user_pref("CT2605552.smartbar.CTID", "CT2605552");
Zeile gelöscht : user_pref("CT2605552.smartbar.Uninstall", "0");
Zeile gelöscht : user_pref("CT2605552.smartbar.toolbarName", "Grepolis Ultra ");
Zeile gelöscht : user_pref("CT2605552.startPage", "false");
Zeile gelöscht : user_pref("CT2605552.toolbarBornServerTime", "17-11-2013");
Zeile gelöscht : user_pref("CT2605552.toolbarCurrentServerTime", "4-1-2014");
Zeile gelöscht : user_pref("CT2605552.toolbarInstallDate", "17-11-2013 16:02:15");
Zeile gelöscht : user_pref("CT2605552.toolbarLoginClientTime", "Sun Nov 17 2013 16:03:36 GMT+0100");
Zeile gelöscht : user_pref("CT2605552.versionFromInstaller", "10.22.3.18");
Zeile gelöscht : user_pref("CT2605552.xpeMode", "0");
Zeile gelöscht : user_pref("CT2605552_Firefox.csv", "[{\"from\":\"Abs Layer\",\"action\":\"loading toolbar\",\"time\":1388862976719,\"isWithState\":\"\",\"timeFromStart\":0,\"timeFromPrev\":0}]");
Zeile gelöscht : user_pref("Smartbar.SearchFromAddressBarSavedUrl", "");
Zeile gelöscht : user_pref("browser.newtab.url", "hxxp://aartemis.com/newtab/?type=nt&ts=1388712229&from=cor&uid=HitachiXHTS547575A9E384_J2590054GNZ0HGGNZ0HGX");
Zeile gelöscht : user_pref("browser.search.defaultenginename", "Mysearchdial");
Zeile gelöscht : user_pref("browser.search.selectedEngine", "Mysearchdial");
Zeile gelöscht : user_pref("browser.startup.homepage", "hxxp://start.mysearchdial.com/?f=1&a=irmsd0101&cd=2XzuyEtN2Y1L1Qzu0B0CyByBtAyBtD0F0B0EzzzztC0E0FtDtN0D0Tzu0SyBtAyEtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1[...]
Zeile gelöscht : user_pref("extensions.mysearchdial.aflt", "irmsd0101");
Zeile gelöscht : user_pref("extensions.mysearchdial.appId", "{CA5CAA63-B27C-4963-9BEC-CB16A36D56F8}");
Zeile gelöscht : user_pref("extensions.mysearchdial.cd", "2XzuyEtN2Y1L1Qzu0B0CyByBtAyBtD0F0B0EzzzztC0E0FtDtN0D0Tzu0SyBtAyEtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutCyD1B1P1R");
Zeile gelöscht : user_pref("extensions.mysearchdial.cr", "22989530");
Zeile gelöscht : user_pref("extensions.mysearchdial.dfltLng", "");
Zeile gelöscht : user_pref("extensions.mysearchdial.dfltSrch", true);
Zeile gelöscht : user_pref("extensions.mysearchdial.dnsErr", true);
Zeile gelöscht : user_pref("extensions.mysearchdial.excTlbr", false);
Zeile gelöscht : user_pref("extensions.mysearchdial.hmpg", true);
Zeile gelöscht : user_pref("extensions.mysearchdial.hmpgUrl", "hxxp://start.mysearchdial.com/?f=1&a=irmsd0101&cd=2XzuyEtN2Y1L1Qzu0B0CyByBtAyBtD0F0B0EzzzztC0E0FtDtN0D0Tzu0SyBtAyEtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1CzutC[...]
Zeile gelöscht : user_pref("extensions.mysearchdial.id", "BC77370FBE881EF0");
Zeile gelöscht : user_pref("extensions.mysearchdial.instlDay", "16073");
Zeile gelöscht : user_pref("extensions.mysearchdial.instlRef", "");
Zeile gelöscht : user_pref("extensions.mysearchdial.newTabUrl", "hxxp://start.mysearchdial.com/?f=2&a=irmsd0101&cd=2XzuyEtN2Y1L1Qzu0B0CyByBtAyBtD0F0B0EzzzztC0E0FtDtN0D0Tzu0SyBtAyEtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1Czu[...]
Zeile gelöscht : user_pref("extensions.mysearchdial.prdct", "mysearchdial");
Zeile gelöscht : user_pref("extensions.mysearchdial.prtnrId", "mysearchdial");
Zeile gelöscht : user_pref("extensions.mysearchdial.srchPrvdr", "Mysearchdial");
Zeile gelöscht : user_pref("extensions.mysearchdial.tlbrId", "base");
Zeile gelöscht : user_pref("extensions.mysearchdial.tlbrSrchUrl", "hxxp://start.mysearchdial.com/?f=3&a=irmsd0101&cd=2XzuyEtN2Y1L1Qzu0B0CyByBtAyBtD0F0B0EzzzztC0E0FtDtN0D0Tzu0SyBtAyEtN1L2XzutBtFtBtFtCyEtFtCtAyBzytN1L1C[...]
Zeile gelöscht : user_pref("extensions.mysearchdial.vrsn", "1.8.21.0");
Zeile gelöscht : user_pref("extensions.mysearchdial.vrsni", "1.8.21.0");
Zeile gelöscht : user_pref("extensions.mysearchdial_i.hmpg", true);
Zeile gelöscht : user_pref("extensions.mysearchdial_i.newTab", false);
Zeile gelöscht : user_pref("extensions.mysearchdial_i.smplGrp", "none");
Zeile gelöscht : user_pref("extensions.mysearchdial_i.vrsnTs", "1.8.21.017:9:26");
Zeile gelöscht : user_pref("plugin.state.npconduitfirefoxplugin", 2);
Zeile gelöscht : user_pref("smartbar.addressBarOwnerCTID", "CT2605552");
Zeile gelöscht : user_pref("smartbar.conduitSearchAddressUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2605552&SearchSource=2&CUI=UN29930272533227308&UM=1&q=");
Zeile gelöscht : user_pref("smartbar.machineId", "BOKOAFOV+0SUV0RDE8FF5MRSQQBFGNS23RWO2PDB+6ERTNAD2BYEGTRSZRZXT6P4ZNXFLCAWBJYJB4C9ZMTZFW");
*************************
AdwCleaner[R0].txt - [28351 octets] - [04/01/2014 20:19:14]
AdwCleaner[S0].txt - [25563 octets] - [04/01/2014 20:20:11]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [25624 octets] ##########
Logdatei vom Farbar Recovery Scan Tool:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 04-01-2014
Ran by Yannic Lonsdorfer (administrator) on WHATTHEHELL on 04-01-2014 20:46:05
Running from C:\Users\Yannic Lonsdorfer\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(Logitech Inc.) C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Protexis Inc.) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(Razer Inc.) C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(X10) C:\Program Files (x86)\Common Files\X10\Common\X10nets.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
(TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesApp64.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Farbar) C:\Users\Yannic Lonsdorfer\Desktop\FRST64(1).exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11780712 2011-03-09] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2189416 2011-03-09] (Realtek Semiconductor)
HKLM\...\Run: [IntelWireless] - C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [1933584 2011-02-05] (Intel(R) Corporation)
HKLM\...\Run: [BTMTrayAgent] - rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2294568 2010-09-03] (Synaptics Incorporated)
HKLM\...\Run: [IntelliType Pro] - C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [1464944 2012-11-02] (Microsoft Corporation)
HKLM\...\Run: [IntelliPoint] - C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2076272 2012-11-02] (Microsoft Corporation)
HKLM-x32\...\Run: [HotkeyApp] - C:\Program Files (x86)\Launch Manager\HotkeyApp.exe [207400 2010-12-15] (Wistron)
HKLM-x32\...\Run: [LMgrVolOSD] - C:\Program Files (x86)\Launch Manager\OSD.exe [348960 2009-12-11] (Wistron Corp.)
HKLM-x32\...\Run: [Wbutton] - C:\Program Files (x86)\Launch Manager\WButton.exe [436264 2010-06-21] (Wistron Corp.)
HKLM-x32\...\Run: [NUSB3MON] - C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [684600 2013-12-17] (Avira Operations GmbH & Co. KG)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
MountPoints2: {66048faf-eb88-11e1-bf46-00262dc64167} - G:\LaunchU3.exe -a
HKU\Default\...\RunOnce: [Screensaver] - C:\Windows\Web\Wallpaper\MEDION\start.vbs
AppInit_DLLs: [ ] ()
AppInit_DLLs-x32: [ ] ()
IFEO: [Debugger] "C:\Program Files (x86)\TuneUp Utilities 2012\TUAutoReactivator64.exe"
==================== Internet (Whitelisted) ====================
StartMenuInternet: IEXPLORE.EXE - iexplore.exe
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - {0D679459-405F-4C98-9433-856F94FDF7A3} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2625848
SearchScopes: HKCU - {39844920-B481-4C2A-9302-59A5E80F8418} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=AVR-4&o=APN10261&src=kw&q={searchTerms}&locale=&apn_ptnrs=^AGS&apn_dtid=^YYYYYY^YY^DE&apn_uid=63e5313b-cd3c-425d-afae-22b93650b7cb&apn_sauid=53B382CB-68BD-4C5B-945C-F2569CE33C6A
BHO: Bitdefender-Geldbörse - {09F58E74-42B4-4D70-BA26-35FC954E7A17} - No File
BHO: Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport_x64.dll (APN LLC.)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.)
BHO-x32: PodcastBHO Class - {65134FDF-F8A5-4B3D-91D9-CDF273CFD578} - C:\Program Files (x86)\Common Files\doubleTwist\IEPodcastPlugin.dll (doubleTwist Corporation)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Free Download Manager - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files (x86)\Free Download Manager\iefdm2.dll (FreeDownloadManager.ORG)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
Toolbar: HKLM - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport_x64.dll (APN LLC.)
Toolbar: HKLM-x32 - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.)
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
FireFox:
========
FF ProfilePath: C:\Users\Yannic Lonsdorfer\AppData\Roaming\Mozilla\Firefox\Profiles\lhohp657.Yannic
FF Keyword.URL: user_pref("keyword.URL", "");
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll ()
FF Plugin: @java.com/DTPlugin,version=10.5.0 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.5.0 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @java.com/JavaPlugin - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin HKCU: @doubletwist.com/NPPodcast - C:\Program Files (x86)\Common Files\doubleTwist\NPPodcast.dll (doubleTwist Corporation)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: Grepolis Toolbar - C:\Users\Yannic Lonsdorfer\AppData\Roaming\Mozilla\Firefox\Profiles\lhohp657.Yannic\Extensions\neptunus@neptunus.gr.xpi
FF Extension: NoScript - C:\Users\Yannic Lonsdorfer\AppData\Roaming\Mozilla\Firefox\Profiles\lhohp657.Yannic\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi
FF Extension: Adblock Plus - C:\Users\Yannic Lonsdorfer\AppData\Roaming\Mozilla\Firefox\Profiles\lhohp657.Yannic\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
FF Extension: Anti-Banner - C:\Program Files (x86)\Mozilla Firefox\extensions\KavAntiBanner@Kaspersky.ru
FF Extension: Anti-Banner - C:\Program Files (x86)\Mozilla Firefox\extensions\KavAntiBanner@kaspersky.ru_bak2
FF Extension: Modul zur Link-Untersuchung - C:\Program Files (x86)\Mozilla Firefox\extensions\linkfilter@kaspersky.ru
FF Extension: Modul zur Link-Untersuchung - C:\Program Files (x86)\Mozilla Firefox\extensions\linkfilter@kaspersky.ru_bak2
FF HKLM-x32\...\Firefox\Extensions: [ffpwdman@bitdefender.com] - C:\Program Files\Bitdefender\Bitdefender\Antispam32\ffpwdman\
FF StartMenuInternet: FIREFOX.EXE - firefox.exe
Chrome:
=======
Error reading preferences. Please check "preferences" file for possible corruption. <======= ATTENTION
==================== Services (Whitelisted) =================
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440376 2013-12-17] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440376 2013-11-14] (Avira Operations GmbH & Co. KG)
R2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1011768 2013-12-17] (Avira Operations GmbH & Co. KG)
S4 APNMCP; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [166352 2013-12-20] (APN LLC.)
S4 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [340240 2011-02-05] ()
R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-12-28] ()
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [244904 2010-12-14] ()
R2 RzKLService; C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe [106472 2013-09-18] (Razer Inc.)
R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe [2144056 2013-12-11] (TuneUp Software)
S4 watchmi; C:\Program Files (x86)\watchmi\TvdService.exe [62464 2010-12-06] ()
S4 WisLMSvc; C:\Program Files (x86)\Launch Manager\WisLMSvc.exe [118560 2009-10-23] (Wistron Corp.)
R2 x10nets; C:\Program Files (x86)\Common Files\X10\Common\X10nets.exe [20480 2009-11-07] (X10)
==================== Drivers (Whitelisted) ====================
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2013-12-17] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131576 2013-12-17] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-10-10] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\System32\DRIVERS\avnetflt.sys [84720 2013-12-17] (Avira Operations GmbH & Co. KG)
S3 mod7764; C:\Windows\System32\DRIVERS\mod77-64.sys [1077416 2010-09-16] (DiBcom SA)
S3 Serial; C:\Windows\system32\drivers\serial.sys [94208 2009-07-14] (Brother Industries Ltd.)
R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesDriver64.sys [11856 2012-05-08] (TuneUp Software)
R3 X10Hid; C:\Windows\System32\Drivers\x10hid.sys [15896 2009-05-13] (X10 Wireless Technology, Inc.)
S3 XUIF; C:\Windows\System32\Drivers\x10ufx2.sys [32792 2009-05-13] (X10 Wireless Technology, Inc.)
S3 WinRing0_1_2_0; \??\C:\Program Files (x86)\IObit\Game Booster 3\Driver\WinRing0x64.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-01-04 20:46 - 2014-01-04 20:46 - 00014413 _____ C:\Users\Yannic Lonsdorfer\Desktop\FRST.txt
2014-01-04 20:19 - 2014-01-04 20:20 - 00000000 ____D C:\AdwCleaner
2014-01-04 20:16 - 2014-01-04 20:17 - 01233962 _____ C:\Users\Yannic Lonsdorfer\Desktop\adwcleaner.exe
2014-01-04 20:15 - 2013-10-25 20:50 - 00716360 _____ (MindSpark) C:\Program Files (x86)\8hUninstall Allin1Convert.dll
2014-01-04 20:15 - 2013-10-25 20:50 - 00190856 _____ () C:\Program Files (x86)\8hres.dll
2014-01-04 19:58 - 2014-01-04 20:14 - 225175376 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part055.rar.part
2014-01-04 19:34 - 2014-01-04 19:58 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part054.rar
2014-01-04 18:04 - 2014-01-04 19:23 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part001.rar
2014-01-04 16:40 - 2014-01-04 16:40 - 01931368 _____ (Farbar) C:\Users\Yannic Lonsdorfer\Desktop\FRST64(1).exe
2014-01-04 16:19 - 2014-01-04 17:40 - 00033821 _____ C:\Users\Yannic Lonsdorfer\Downloads\Addition.txt
2014-01-04 16:18 - 2014-01-04 17:40 - 00073587 _____ C:\Users\Yannic Lonsdorfer\Downloads\FRST.txt
2014-01-04 16:14 - 2014-01-04 16:14 - 00000000 ____D C:\FRST
2014-01-04 15:49 - 2014-01-04 19:34 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part052.rar
2014-01-04 15:27 - 2014-01-04 20:14 - 408955425 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part051.rar.part
2014-01-04 15:18 - 2014-01-04 20:14 - 509794176 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part050.rar.part
2014-01-04 13:47 - 2014-01-04 14:35 - 338740858 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part125.rar
2014-01-04 13:25 - 2014-01-04 20:13 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part049.rar
2014-01-04 13:11 - 2014-01-04 18:25 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part048.rar
2014-01-04 12:30 - 2014-01-04 15:27 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part047.rar
2014-01-04 11:54 - 2014-01-04 14:47 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part046.rar
2014-01-04 11:22 - 2014-01-04 13:25 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part045.rar
2014-01-04 11:16 - 2014-01-04 13:11 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part044.rar
2014-01-04 10:45 - 2014-01-04 11:54 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part043.rar
2014-01-04 10:33 - 2014-01-04 12:30 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part042.rar
2014-01-04 09:32 - 2014-01-04 11:16 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part041.rar
2014-01-04 09:31 - 2014-01-04 11:22 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part040.rar
2014-01-04 08:58 - 2014-01-04 10:45 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part039.rar
2014-01-04 08:47 - 2014-01-04 10:33 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part038.rar
2014-01-04 08:25 - 2014-01-04 09:31 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part037.rar
2014-01-04 07:58 - 2014-01-04 08:58 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part036.rar
2014-01-04 07:31 - 2014-01-04 09:32 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part035.rar
2014-01-04 06:55 - 2014-01-04 08:47 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part034.rar
2014-01-04 06:41 - 2014-01-04 08:25 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part033.rar
2014-01-04 06:21 - 2014-01-04 07:58 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part032.rar
2014-01-04 05:52 - 2014-01-04 07:31 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part031.rar
2014-01-04 05:16 - 2014-01-04 06:55 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part030.rar
2014-01-04 05:02 - 2014-01-04 06:41 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part029.rar
2014-01-04 04:46 - 2014-01-04 06:21 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part028.rar
2014-01-04 04:07 - 2014-01-04 05:52 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part027.rar
2014-01-04 03:36 - 2014-01-04 04:46 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part026.rar
2014-01-04 03:21 - 2014-01-04 05:16 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part025.rar
2014-01-04 03:06 - 2014-01-04 05:02 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part024.rar
2014-01-04 01:50 - 2014-01-04 04:07 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part023.rar
2014-01-04 01:50 - 2014-01-04 03:06 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part022.rar
2014-01-04 01:42 - 2014-01-04 03:35 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part021.rar
2014-01-04 01:34 - 2014-01-04 03:21 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part020.rar
2014-01-04 00:25 - 2014-01-04 00:26 - 523239369 _____ C:\Users\Yannic Lonsdorfer\Downloads\rebuilt.dbz.part002.rar
2014-01-04 00:04 - 2014-01-04 01:42 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part017.rar
2014-01-04 00:04 - 2014-01-04 01:20 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part016.rar
2014-01-03 23:50 - 2014-01-04 01:34 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part018.rar
2014-01-03 23:50 - 2014-01-04 01:12 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part019.rar
2014-01-03 22:57 - 2014-01-03 23:46 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part015.rar
2014-01-03 22:54 - 2014-01-03 23:43 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part014.rar
2014-01-03 22:07 - 2014-01-03 22:57 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part013.rar
2014-01-03 22:07 - 2014-01-03 22:54 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part012.rar
2014-01-03 21:16 - 2014-01-03 22:07 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part010.rar
2014-01-03 21:16 - 2014-01-03 22:06 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part011.rar
2014-01-03 20:25 - 2014-01-04 20:22 - 00017968 _____ C:\Windows\PFRO.log
2014-01-03 20:15 - 2014-01-03 21:16 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part009.rar
2014-01-03 20:11 - 2014-01-03 21:16 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part008.rar
2014-01-03 19:18 - 2014-01-03 20:15 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part007.rar
2014-01-03 19:17 - 2014-01-03 20:11 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part006.rar
2014-01-03 18:42 - 2014-01-03 18:42 - 00001113 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-01-03 18:42 - 2014-01-03 18:42 - 00000000 ____D C:\Users\Yannic Lonsdorfer\AppData\Roaming\Malwarebytes
2014-01-03 18:42 - 2014-01-03 18:42 - 00000000 ____D C:\ProgramData\Malwarebytes
2014-01-03 18:42 - 2014-01-03 18:42 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-01-03 18:42 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-01-03 18:40 - 2014-01-03 18:41 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Yannic Lonsdorfer\Downloads\mbam-setup-1.75.0.1300.exe
2014-01-03 18:22 - 2014-01-03 18:23 - 01931750 _____ (Farbar) C:\Users\Yannic Lonsdorfer\Downloads\FRST64.exe
2014-01-03 18:19 - 2014-01-03 18:19 - 00000027 _____ C:\Users\Yannic Lonsdorfer\AppData\Roaming\WB.CFG
2014-01-03 18:18 - 2014-01-03 19:18 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part005.rar
2014-01-03 18:17 - 2014-01-03 19:17 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part004.rar
2014-01-03 17:28 - 2014-01-03 18:18 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part002.rar
2014-01-03 17:28 - 2014-01-03 18:17 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part003.rar
2014-01-03 17:12 - 2014-01-03 17:12 - 00002231 _____ C:\Users\Yannic Lonsdorfer\Desktop\JDownloader 2.lnk
2014-01-03 17:12 - 2014-01-03 17:12 - 00000000 ____D C:\Users\Yannic Lonsdorfer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JDownloader
2014-01-03 17:11 - 2014-01-04 02:08 - 00000000 ____D C:\Users\Yannic Lonsdorfer\AppData\Local\JDownloader v2.0
2014-01-03 17:10 - 2014-01-03 17:10 - 00077976 _____ (AppWork GmbH) C:\Users\Yannic Lonsdorfer\Downloads\WebInstallerJD2(1).exe
2014-01-03 16:44 - 2014-01-03 16:45 - 00077976 _____ (AppWork GmbH) C:\Users\Yannic Lonsdorfer\Downloads\WebInstallerJD2.exe
2014-01-03 03:20 - 2014-01-04 00:17 - 00000000 ____D C:\Users\Yannic Lonsdorfer\Desktop\nox.to Daten
2014-01-03 02:26 - 2014-01-03 02:26 - 00002041 _____ C:\Users\Yannic Lonsdorfer\Desktop\JDownloader.lnk
2014-01-03 02:25 - 2014-01-03 16:22 - 00000000 ____D C:\Program Files (x86)\JDownloader
2014-01-03 02:22 - 2014-01-03 02:22 - 00077236 _____ (AppWork UG (haftungsbeschränkt)) C:\Users\Yannic Lonsdorfer\Downloads\jDownloaderWebInstaller09581.exe
2014-01-03 02:02 - 2014-01-03 02:05 - 00000000 ____D C:\Users\Yannic Lonsdorfer\AppData\Roaming\Free Download Manager
2014-01-03 02:02 - 2014-01-03 02:02 - 00001071 _____ C:\Users\Yannic Lonsdorfer\Desktop\Free Download Manager.lnk
2014-01-03 02:02 - 2014-01-03 02:02 - 00000000 ____D C:\Program Files (x86)\Free Download Manager
2014-01-03 02:01 - 2014-01-03 02:01 - 07752897 _____ (FreeDownloadManager.ORG ) C:\Users\Yannic Lonsdorfer\Downloads\fdminst.exe
2014-01-02 01:17 - 2014-01-02 01:17 - 00000000 ____D C:\Users\Yannic Lonsdorfer\AppData\Roaming\LolClient
2014-01-01 17:11 - 2008-07-12 08:18 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll
2014-01-01 17:11 - 2008-07-12 08:18 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll
2014-01-01 17:11 - 2008-07-12 08:18 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll
2014-01-01 17:10 - 2014-01-01 17:10 - 00001613 _____ C:\Users\Public\Desktop\Play League of Legends.lnk
2014-01-01 17:10 - 2014-01-01 17:10 - 00000000 __SHD C:\Windows\SysWOW64\AI_RecycleBin
2014-01-01 17:10 - 2014-01-01 17:10 - 00000000 ____D C:\Riot Games
2014-01-01 17:09 - 2014-01-01 17:09 - 00000000 ____D C:\Program Files (x86)\Pando Networks
2014-01-01 17:08 - 2014-01-01 17:08 - 00000000 ____D C:\Users\Yannic Lonsdorfer\AppData\Roaming\Riot Games
2014-01-01 17:06 - 2014-01-01 17:08 - 34888568 _____ (Riot Games) C:\Users\Yannic Lonsdorfer\Downloads\LeagueofLegends_EUW_Installer_06_12_13.exe
2013-12-29 14:04 - 2014-01-04 20:22 - 00001624 _____ C:\Windows\setupact.log
2013-12-29 14:04 - 2013-12-29 14:04 - 00000000 _____ C:\Windows\setuperr.log
2013-12-29 01:10 - 2013-12-29 01:10 - 00007605 _____ C:\Users\Yannic Lonsdorfer\AppData\Local\Resmon.ResmonCfg
2013-12-28 23:01 - 2013-12-28 23:01 - 00000000 ____D C:\Users\Yannic Lonsdorfer\Documents\Razer
2013-12-28 22:52 - 2013-12-28 22:52 - 00000000 ____D C:\Users\Yannic Lonsdorfer\AppData\Local\Razer
2013-12-28 22:35 - 2013-12-28 22:35 - 00001335 _____ C:\Users\Public\Desktop\Razer Game Booster.lnk
2013-12-28 22:35 - 2013-12-28 22:35 - 00000000 ____D C:\ProgramData\Razer
2013-12-28 22:35 - 2013-12-28 22:35 - 00000000 ____D C:\Program Files (x86)\Razer
2013-12-28 22:34 - 2013-12-28 22:34 - 00000000 ____D C:\Windows\pss
2013-12-28 22:13 - 2013-12-28 22:16 - 39721880 _____ (Razer Inc. ) C:\Users\Yannic Lonsdorfer\Downloads\RazerGameBoosterSetup_4.0.68.0.exe
2013-12-28 21:14 - 2013-12-28 21:14 - 00000000 ____D C:\Users\Yannic Lonsdorfer\AppData\Local\Sony Online Entertainment
2013-12-28 20:47 - 2014-01-01 19:28 - 00281032 _____ C:\Windows\SysWOW64\PnkBstrB.xtr
2013-12-28 20:42 - 2014-01-01 19:28 - 00281032 _____ C:\Windows\SysWOW64\PnkBstrB.exe
2013-12-28 20:42 - 2013-12-30 23:52 - 00280792 _____ C:\Windows\SysWOW64\PnkBstrB.ex0
2013-12-28 20:42 - 2013-12-28 20:52 - 00076888 _____ C:\Windows\SysWOW64\PnkBstrA.exe
2013-12-28 20:42 - 2013-12-28 20:42 - 00000000 ____D C:\Program Files (x86)\Microsoft Chart Controls
2013-12-28 15:02 - 2013-12-28 15:02 - 00000000 ____D C:\Users\Yannic Lonsdorfer\AppData\Local\PunkBuster
2013-12-28 15:02 - 2013-12-28 15:02 - 00000000 ____D C:\Users\Yannic Lonsdorfer\AppData\Local\CrashRpt
2013-12-28 00:30 - 2013-12-28 00:30 - 00000221 _____ C:\Users\Yannic Lonsdorfer\Desktop\Rising StormRed Orchestra 2 Multiplayer.url
2013-12-24 18:54 - 2013-12-24 18:54 - 00000000 _____ C:\Windows\SysWOW64\sho8397.tmp
2013-12-24 14:15 - 2013-12-24 14:15 - 00000000 ____D C:\ProgramData\SystemRequirementsLab
2013-12-12 00:27 - 2013-05-10 06:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2013-12-12 00:27 - 2013-05-10 06:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2013-12-12 00:27 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2013-12-12 00:27 - 2013-05-10 05:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2013-12-12 00:26 - 2013-11-26 12:54 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-12-12 00:26 - 2013-11-26 11:19 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-12-12 00:26 - 2013-11-26 11:18 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2013-12-12 00:26 - 2013-11-26 11:11 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-12-12 00:26 - 2013-11-26 10:48 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-12-12 00:26 - 2013-11-26 10:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2013-12-12 00:26 - 2013-11-26 10:41 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-12-12 00:26 - 2013-11-26 10:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-12-12 00:26 - 2013-11-26 10:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-12-12 00:26 - 2013-11-26 10:23 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-12-12 00:26 - 2013-11-26 10:21 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-12-12 00:26 - 2013-11-26 10:18 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-12-12 00:26 - 2013-11-26 10:18 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2013-12-12 00:26 - 2013-11-26 10:16 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2013-12-12 00:26 - 2013-11-26 09:57 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-12-12 00:26 - 2013-11-26 09:38 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-12-12 00:26 - 2013-11-26 09:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-12-12 00:26 - 2013-11-26 09:35 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-12-12 00:26 - 2013-11-26 09:32 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-12-12 00:26 - 2013-11-26 09:28 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2013-12-12 00:26 - 2013-11-26 09:16 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-12-12 00:26 - 2013-11-26 09:02 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-12-12 00:26 - 2013-11-26 08:48 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-12-12 00:26 - 2013-11-26 08:32 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2013-12-12 00:26 - 2013-11-26 08:26 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-12-12 00:26 - 2013-11-26 08:07 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-12-12 00:26 - 2013-11-26 07:40 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-12-12 00:26 - 2013-11-26 07:34 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2013-12-12 00:26 - 2013-11-26 07:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2013-12-12 00:26 - 2013-11-26 07:33 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-12-12 00:26 - 2013-11-26 07:27 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-12-11 17:22 - 2013-11-23 19:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2013-12-11 17:22 - 2013-11-23 18:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2013-12-11 17:22 - 2013-11-12 03:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2013-12-11 17:22 - 2013-11-12 03:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2013-12-11 17:22 - 2013-10-30 03:32 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll
2013-12-11 17:22 - 2013-10-30 03:19 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msieftp.dll
2013-12-11 17:22 - 2013-10-30 02:24 - 03155968 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-12-11 17:22 - 2013-10-19 03:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2013-12-11 17:22 - 2013-10-19 02:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2013-12-11 17:22 - 2013-10-12 03:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2013-12-11 17:22 - 2013-10-12 03:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2013-12-11 17:22 - 2013-10-12 03:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx
2013-12-11 17:22 - 2013-10-12 03:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2013-12-11 17:22 - 2013-10-12 02:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2013-12-11 17:22 - 2013-10-12 02:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2013-12-11 17:22 - 2013-10-12 02:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe
2013-12-11 17:22 - 2013-10-12 02:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe
2013-12-11 17:22 - 2013-10-04 03:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2013-12-11 17:22 - 2013-10-04 02:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2013-12-10 23:00 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE
2013-12-10 22:56 - 2013-12-10 22:56 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2013-12-10 22:56 - 2013-12-10 22:56 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2013-12-10 22:56 - 2013-12-10 22:56 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2013-12-10 22:56 - 2013-12-10 22:56 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2013-12-10 22:56 - 2013-12-10 22:56 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2013-12-10 22:56 - 2013-12-10 22:56 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2013-12-10 22:56 - 2013-12-10 22:56 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2013-12-10 22:56 - 2013-12-10 22:56 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2013-12-10 22:56 - 2013-12-10 22:56 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2013-12-10 22:56 - 2013-12-10 22:56 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2013-12-10 22:56 - 2013-12-10 22:56 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2013-12-10 22:56 - 2013-12-10 22:56 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-12-10 22:56 - 2013-12-10 22:56 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2013-12-10 22:56 - 2013-12-10 22:56 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2013-12-10 22:56 - 2013-12-10 22:56 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-12-10 22:56 - 2013-12-10 22:56 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2013-12-10 22:56 - 2013-12-10 22:56 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2013-12-10 22:56 - 2013-12-10 22:56 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2013-12-10 22:56 - 2013-12-10 22:56 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2013-12-10 22:56 - 2013-12-10 22:56 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2013-12-10 20:35 - 2013-12-10 20:35 - 00000476 _____ C:\Windows\system32\cc_20131210_203509.reg
==================== One Month Modified Files and Folders =======
2014-01-04 20:46 - 2014-01-04 20:46 - 00014413 _____ C:\Users\Yannic Lonsdorfer\Desktop\FRST.txt
2014-01-04 20:46 - 2013-11-16 12:30 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-01-04 20:30 - 2009-07-14 05:45 - 00016976 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-01-04 20:30 - 2009-07-14 05:45 - 00016976 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-01-04 20:22 - 2014-01-03 20:25 - 00017968 _____ C:\Windows\PFRO.log
2014-01-04 20:22 - 2013-12-29 14:04 - 00001624 _____ C:\Windows\setupact.log
2014-01-04 20:22 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2014-01-04 20:21 - 2012-06-09 14:16 - 01097409 _____ C:\Windows\WindowsUpdate.log
2014-01-04 20:20 - 2014-01-04 20:19 - 00000000 ____D C:\AdwCleaner
2014-01-04 20:20 - 2013-11-09 13:58 - 00001053 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-01-04 20:20 - 2012-06-09 14:25 - 00001025 _____ C:\Users\Yannic Lonsdorfer\Desktop\Internet Explorer (No Add-ons).lnk
2014-01-04 20:20 - 2012-06-09 14:25 - 00001023 _____ C:\Users\Yannic Lonsdorfer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-01-04 20:17 - 2014-01-04 20:16 - 01233962 _____ C:\Users\Yannic Lonsdorfer\Desktop\adwcleaner.exe
2014-01-04 20:14 - 2014-01-04 19:58 - 225175376 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part055.rar.part
2014-01-04 20:14 - 2014-01-04 15:27 - 408955425 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part051.rar.part
2014-01-04 20:14 - 2014-01-04 15:18 - 509794176 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part050.rar.part
2014-01-04 20:13 - 2014-01-04 13:25 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part049.rar
2014-01-04 19:58 - 2014-01-04 19:34 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part054.rar
2014-01-04 19:34 - 2014-01-04 15:49 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part052.rar
2014-01-04 19:23 - 2014-01-04 18:04 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part001.rar
2014-01-04 18:25 - 2014-01-04 13:11 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part048.rar
2014-01-04 17:40 - 2014-01-04 16:19 - 00033821 _____ C:\Users\Yannic Lonsdorfer\Downloads\Addition.txt
2014-01-04 17:40 - 2014-01-04 16:18 - 00073587 _____ C:\Users\Yannic Lonsdorfer\Downloads\FRST.txt
2014-01-04 16:40 - 2014-01-04 16:40 - 01931368 _____ (Farbar) C:\Users\Yannic Lonsdorfer\Desktop\FRST64(1).exe
2014-01-04 16:14 - 2014-01-04 16:14 - 00000000 ____D C:\FRST
2014-01-04 15:27 - 2014-01-04 12:30 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part047.rar
2014-01-04 14:47 - 2014-01-04 11:54 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part046.rar
2014-01-04 14:35 - 2014-01-04 13:47 - 338740858 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part125.rar
2014-01-04 13:25 - 2014-01-04 11:22 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part045.rar
2014-01-04 13:11 - 2014-01-04 11:16 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part044.rar
2014-01-04 12:44 - 2012-07-24 13:35 - 00003990 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{7E5B70D9-ADC9-4F81-8EF9-2C9475687D9B}
2014-01-04 12:30 - 2014-01-04 10:33 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part042.rar
2014-01-04 11:54 - 2014-01-04 10:45 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part043.rar
2014-01-04 11:22 - 2014-01-04 09:31 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part040.rar
2014-01-04 11:16 - 2014-01-04 09:32 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part041.rar
2014-01-04 10:45 - 2014-01-04 08:58 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part039.rar
2014-01-04 10:33 - 2014-01-04 08:47 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part038.rar
2014-01-04 09:32 - 2014-01-04 07:31 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part035.rar
2014-01-04 09:31 - 2014-01-04 08:25 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part037.rar
2014-01-04 08:58 - 2014-01-04 07:58 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part036.rar
2014-01-04 08:47 - 2014-01-04 06:55 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part034.rar
2014-01-04 08:25 - 2014-01-04 06:41 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part033.rar
2014-01-04 07:58 - 2014-01-04 06:21 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part032.rar
2014-01-04 07:31 - 2014-01-04 05:52 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part031.rar
2014-01-04 06:55 - 2014-01-04 05:16 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part030.rar
2014-01-04 06:41 - 2014-01-04 05:02 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part029.rar
2014-01-04 06:21 - 2014-01-04 04:46 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part028.rar
2014-01-04 05:52 - 2014-01-04 04:07 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part027.rar
2014-01-04 05:16 - 2014-01-04 03:21 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part025.rar
2014-01-04 05:02 - 2014-01-04 03:06 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part024.rar
2014-01-04 04:46 - 2014-01-04 03:36 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part026.rar
2014-01-04 04:07 - 2014-01-04 01:50 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part023.rar
2014-01-04 03:35 - 2014-01-04 01:42 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part021.rar
2014-01-04 03:21 - 2014-01-04 01:34 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part020.rar
2014-01-04 03:06 - 2014-01-04 01:50 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part022.rar
2014-01-04 02:08 - 2014-01-03 17:11 - 00000000 ____D C:\Users\Yannic Lonsdorfer\AppData\Local\JDownloader v2.0
2014-01-04 01:42 - 2014-01-04 00:04 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part017.rar
2014-01-04 01:34 - 2014-01-03 23:50 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part018.rar
2014-01-04 01:20 - 2014-01-04 00:04 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part016.rar
2014-01-04 01:12 - 2014-01-03 23:50 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part019.rar
2014-01-04 00:26 - 2014-01-04 00:25 - 523239369 _____ C:\Users\Yannic Lonsdorfer\Downloads\rebuilt.dbz.part002.rar
2014-01-04 00:17 - 2014-01-03 03:20 - 00000000 ____D C:\Users\Yannic Lonsdorfer\Desktop\nox.to Daten
2014-01-03 23:46 - 2014-01-03 22:57 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part015.rar
2014-01-03 23:43 - 2014-01-03 22:54 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part014.rar
2014-01-03 22:57 - 2014-01-03 22:07 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part013.rar
2014-01-03 22:54 - 2014-01-03 22:07 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part012.rar
2014-01-03 22:07 - 2014-01-03 21:16 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part010.rar
2014-01-03 22:06 - 2014-01-03 21:16 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part011.rar
2014-01-03 21:16 - 2014-01-03 20:15 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part009.rar
2014-01-03 21:16 - 2014-01-03 20:11 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part008.rar
2014-01-03 20:15 - 2014-01-03 19:18 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part007.rar
2014-01-03 20:11 - 2014-01-03 19:17 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part006.rar
2014-01-03 19:18 - 2014-01-03 18:18 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part005.rar
2014-01-03 19:17 - 2014-01-03 18:17 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part004.rar
2014-01-03 18:42 - 2014-01-03 18:42 - 00001113 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-01-03 18:42 - 2014-01-03 18:42 - 00000000 ____D C:\Users\Yannic Lonsdorfer\AppData\Roaming\Malwarebytes
2014-01-03 18:42 - 2014-01-03 18:42 - 00000000 ____D C:\ProgramData\Malwarebytes
2014-01-03 18:42 - 2014-01-03 18:42 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-01-03 18:41 - 2014-01-03 18:40 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Yannic Lonsdorfer\Downloads\mbam-setup-1.75.0.1300.exe
2014-01-03 18:23 - 2014-01-03 18:22 - 01931750 _____ (Farbar) C:\Users\Yannic Lonsdorfer\Downloads\FRST64.exe
2014-01-03 18:19 - 2014-01-03 18:19 - 00000027 _____ C:\Users\Yannic Lonsdorfer\AppData\Roaming\WB.CFG
2014-01-03 18:18 - 2014-01-03 17:28 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part002.rar
2014-01-03 18:17 - 2014-01-03 17:28 - 523239424 _____ C:\Users\Yannic Lonsdorfer\Downloads\dbz.part003.rar
2014-01-03 17:19 - 2012-06-09 16:28 - 00000000 ____D C:\Users\Yannic Lonsdorfer\AppData\Local\Google
2014-01-03 17:12 - 2014-01-03 17:12 - 00002231 _____ C:\Users\Yannic Lonsdorfer\Desktop\JDownloader 2.lnk
2014-01-03 17:12 - 2014-01-03 17:12 - 00000000 ____D C:\Users\Yannic Lonsdorfer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\JDownloader
2014-01-03 17:10 - 2014-01-03 17:10 - 00077976 _____ (AppWork GmbH) C:\Users\Yannic Lonsdorfer\Downloads\WebInstallerJD2(1).exe
2014-01-03 16:45 - 2014-01-03 16:44 - 00077976 _____ (AppWork GmbH) C:\Users\Yannic Lonsdorfer\Downloads\WebInstallerJD2.exe
2014-01-03 16:22 - 2014-01-03 02:25 - 00000000 ____D C:\Program Files (x86)\JDownloader
2014-01-03 03:49 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF
2014-01-03 03:46 - 2009-07-14 06:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD
2014-01-03 03:16 - 2012-06-09 18:11 - 00000000 ____D C:\Users\Yannic Lonsdorfer\Desktop\Filme
2014-01-03 02:26 - 2014-01-03 02:26 - 00002041 _____ C:\Users\Yannic Lonsdorfer\Desktop\JDownloader.lnk
2014-01-03 02:22 - 2014-01-03 02:22 - 00077236 _____ (AppWork UG (haftungsbeschränkt)) C:\Users\Yannic Lonsdorfer\Downloads\jDownloaderWebInstaller09581.exe
2014-01-03 02:05 - 2014-01-03 02:02 - 00000000 ____D C:\Users\Yannic Lonsdorfer\AppData\Roaming\Free Download Manager
2014-01-03 02:02 - 2014-01-03 02:02 - 00001071 _____ C:\Users\Yannic Lonsdorfer\Desktop\Free Download Manager.lnk
2014-01-03 02:02 - 2014-01-03 02:02 - 00000000 ____D C:\Program Files (x86)\Free Download Manager
2014-01-03 02:01 - 2014-01-03 02:01 - 07752897 _____ (FreeDownloadManager.ORG ) C:\Users\Yannic Lonsdorfer\Downloads\fdminst.exe
2014-01-02 01:17 - 2014-01-02 01:17 - 00000000 ____D C:\Users\Yannic Lonsdorfer\AppData\Roaming\LolClient
2014-01-01 19:28 - 2013-12-28 20:47 - 00281032 _____ C:\Windows\SysWOW64\PnkBstrB.xtr
2014-01-01 19:28 - 2013-12-28 20:42 - 00281032 _____ C:\Windows\SysWOW64\PnkBstrB.exe
2014-01-01 19:26 - 2012-07-21 15:55 - 00000000 ____D C:\Program Files (x86)\Steam
2014-01-01 17:10 - 2014-01-01 17:10 - 00001613 _____ C:\Users\Public\Desktop\Play League of Legends.lnk
2014-01-01 17:10 - 2014-01-01 17:10 - 00000000 __SHD C:\Windows\SysWOW64\AI_RecycleBin
2014-01-01 17:10 - 2014-01-01 17:10 - 00000000 ____D C:\Riot Games
2014-01-01 17:09 - 2014-01-01 17:09 - 00000000 ____D C:\Program Files (x86)\Pando Networks
2014-01-01 17:08 - 2014-01-01 17:08 - 00000000 ____D C:\Users\Yannic Lonsdorfer\AppData\Roaming\Riot Games
2014-01-01 17:08 - 2014-01-01 17:06 - 34888568 _____ (Riot Games) C:\Users\Yannic Lonsdorfer\Downloads\LeagueofLegends_EUW_Installer_06_12_13.exe
2013-12-31 22:19 - 2009-07-14 06:08 - 00032632 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-12-31 02:44 - 2012-07-04 12:54 - 01596516 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2013-12-31 02:44 - 2011-03-12 19:22 - 00700134 _____ C:\Windows\system32\perfh007.dat
2013-12-31 02:44 - 2011-03-12 19:22 - 00149984 _____ C:\Windows\system32\perfc007.dat
2013-12-31 02:43 - 2009-07-14 06:13 - 01596516 _____ C:\Windows\system32\PerfStringBackup.INI
2013-12-30 23:52 - 2013-12-28 20:42 - 00280792 _____ C:\Windows\SysWOW64\PnkBstrB.ex0
2013-12-29 14:04 - 2013-12-29 14:04 - 00000000 _____ C:\Windows\setuperr.log
2013-12-29 01:10 - 2013-12-29 01:10 - 00007605 _____ C:\Users\Yannic Lonsdorfer\AppData\Local\Resmon.ResmonCfg
2013-12-28 23:01 - 2013-12-28 23:01 - 00000000 ____D C:\Users\Yannic Lonsdorfer\Documents\Razer
2013-12-28 22:52 - 2013-12-28 22:52 - 00000000 ____D C:\Users\Yannic Lonsdorfer\AppData\Local\Razer
2013-12-28 22:35 - 2013-12-28 22:35 - 00001335 _____ C:\Users\Public\Desktop\Razer Game Booster.lnk
2013-12-28 22:35 - 2013-12-28 22:35 - 00000000 ____D C:\ProgramData\Razer
2013-12-28 22:35 - 2013-12-28 22:35 - 00000000 ____D C:\Program Files (x86)\Razer
2013-12-28 22:34 - 2013-12-28 22:34 - 00000000 ____D C:\Windows\pss
2013-12-28 22:16 - 2013-12-28 22:13 - 39721880 _____ (Razer Inc. ) C:\Users\Yannic Lonsdorfer\Downloads\RazerGameBoosterSetup_4.0.68.0.exe
2013-12-28 21:14 - 2013-12-28 21:14 - 00000000 ____D C:\Users\Yannic Lonsdorfer\AppData\Local\Sony Online Entertainment
2013-12-28 21:14 - 2012-06-19 15:50 - 00000000 ___RD C:\Users\Yannic Lonsdorfer\Desktop\Games
2013-12-28 21:13 - 2013-01-22 14:40 - 00000000 ____D C:\Stranded II
2013-12-28 21:12 - 2012-06-09 18:03 - 00000000 ____D C:\Program Files (x86)\IObit
2013-12-28 21:06 - 2012-06-09 18:03 - 00000000 ____D C:\ProgramData\IObit
2013-12-28 21:03 - 2012-07-04 17:08 - 00000000 ____D C:\Users\Yannic Lonsdorfer\Desktop\Microsoft Office Starter (Deutsch)
2013-12-28 21:02 - 2013-05-10 18:43 - 00000000 ____D C:\Users\Yannic Lonsdorfer\Desktop\.thumbnails
2013-12-28 20:52 - 2013-12-28 20:42 - 00076888 _____ C:\Windows\SysWOW64\PnkBstrA.exe
2013-12-28 20:42 - 2013-12-28 20:42 - 00000000 ____D C:\Program Files (x86)\Microsoft Chart Controls
2013-12-28 20:42 - 2012-06-10 14:22 - 00000000 ____D C:\Users\Yannic Lonsdorfer\Documents\My Games
2013-12-28 15:02 - 2013-12-28 15:02 - 00000000 ____D C:\Users\Yannic Lonsdorfer\AppData\Local\PunkBuster
2013-12-28 15:02 - 2013-12-28 15:02 - 00000000 ____D C:\Users\Yannic Lonsdorfer\AppData\Local\CrashRpt
2013-12-28 00:30 - 2013-12-28 00:30 - 00000221 _____ C:\Users\Yannic Lonsdorfer\Desktop\Rising StormRed Orchestra 2 Multiplayer.url
2013-12-24 18:54 - 2013-12-24 18:54 - 00000000 _____ C:\Windows\SysWOW64\sho8397.tmp
2013-12-24 14:15 - 2013-12-24 14:15 - 00000000 ____D C:\ProgramData\SystemRequirementsLab
2013-12-24 14:15 - 2013-10-23 16:14 - 00000000 ____D C:\Program Files (x86)\SystemRequirementsLab
2013-12-24 13:03 - 2013-11-09 13:58 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-12-23 23:50 - 2013-11-16 11:57 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-12-21 21:33 - 2012-06-09 17:21 - 00000000 ____D C:\Program Files (x86)\TuneUp Utilities 2012
2013-12-17 15:08 - 2013-10-29 19:00 - 00131576 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2013-12-17 15:08 - 2013-10-29 19:00 - 00108440 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2013-12-17 15:08 - 2013-10-29 19:00 - 00084720 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2013-12-15 00:52 - 2013-07-28 15:15 - 00000000 ____D C:\Windows\system32\MRT
2013-12-15 00:50 - 2011-03-12 20:24 - 90708896 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-12-15 00:15 - 2011-03-12 18:51 - 00000000 ____D C:\Windows\Panther
2013-12-12 21:15 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache
2013-12-12 18:09 - 2009-07-14 05:45 - 00406912 _____ C:\Windows\system32\FNTCACHE.DAT
2013-12-11 17:46 - 2013-11-16 12:30 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-12-11 17:46 - 2013-11-16 12:30 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-12-11 17:46 - 2013-11-16 12:30 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-12-11 17:11 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\PolicyDefinitions
2013-12-11 09:59 - 2013-11-03 00:02 - 00036664 _____ (TuneUp Software) C:\Windows\system32\uxtuneup.dll
2013-12-11 09:59 - 2013-11-03 00:02 - 00030008 _____ (TuneUp Software) C:\Windows\SysWOW64\uxtuneup.dll
2013-12-11 09:59 - 2012-06-19 15:47 - 00035640 _____ (TuneUp Software) C:\Windows\system32\TURegOpt.exe
2013-12-11 09:59 - 2012-06-19 15:47 - 00026936 _____ (TuneUp Software) C:\Windows\system32\authuitu.dll
2013-12-11 09:59 - 2012-06-19 15:46 - 00022328 _____ (TuneUp Software) C:\Windows\SysWOW64\authuitu.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2013-12-10 22:56 - 2013-12-10 22:56 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2013-12-10 22:56 - 2013-12-10 22:56 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2013-12-10 22:56 - 2013-12-10 22:56 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2013-12-10 22:56 - 2013-12-10 22:56 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2013-12-10 22:56 - 2013-12-10 22:56 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2013-12-10 22:56 - 2013-12-10 22:56 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2013-12-10 22:56 - 2013-12-10 22:56 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2013-12-10 22:56 - 2013-12-10 22:56 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2013-12-10 22:56 - 2013-12-10 22:56 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2013-12-10 22:56 - 2013-12-10 22:56 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2013-12-10 22:56 - 2013-12-10 22:56 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-12-10 22:56 - 2013-12-10 22:56 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2013-12-10 22:56 - 2013-12-10 22:56 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2013-12-10 22:56 - 2013-12-10 22:56 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-12-10 22:56 - 2013-12-10 22:56 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2013-12-10 22:56 - 2013-12-10 22:56 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2013-12-10 22:56 - 2013-12-10 22:56 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2013-12-10 22:56 - 2013-12-10 22:56 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2013-12-10 22:56 - 2013-12-10 22:56 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2013-12-10 22:56 - 2013-12-10 22:56 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2013-12-10 20:35 - 2013-12-10 20:35 - 00000476 _____ C:\Windows\system32\cc_20131210_203509.reg
Some content of TEMP:
====================
C:\Users\Yannic Lonsdorfer\AppData\Local\Temp\avgnt.exe
C:\Users\Yannic Lonsdorfer\AppData\Local\Temp\proxy_vole530153960556948647.dll
C:\Users\Yannic Lonsdorfer\AppData\Local\Temp\Quarantine.exe
C:\Users\Yannic Lonsdorfer\AppData\Local\Temp\swt-win32-3349.dll
C:\Users\Yannic Lonsdorfer\AppData\Local\Temp\tbDVD0.dll
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-12-30 00:04
==================== End Of Log ============================ --- --- --- |