crazyhorse57 | 06.02.2014 19:40 | Hi,
danke für die schnelle Antwort. Konnte heute den FRST auf dem betroffenen Rechner ausführen. Den Benutzernamen hab ich in beiden Logfiles durch *** ersetzt.
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 05-02-2014
Ran by *** (administrator) on ***-PC on 06-02-2014 19:17:54
Running from C:\Users\***\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
() C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Conduit) C:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe
(Conduit) C:\Program Files (x86)\SearchProtect\SearchProtect\bin\cltmng.exe
(Conduit) C:\Program Files (x86)\SearchProtect\UI\bin\cltmngui.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Sony Corporation) C:\Program Files (x86)\Sony\WALKMAN Launcher\WMAAD.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(TeamViewer GmbH) C:\Users\***\AppData\Local\Temp\TeamViewer\Version9\TeamViewer.exe
(TeamViewer GmbH) C:\Users\***\AppData\Local\Temp\TeamViewer\Version9\tv_w32.exe
(TeamViewer GmbH) C:\Users\***\AppData\Local\Temp\TeamViewer\Version9\tv_x64.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(TeamViewer GmbH) C:\Users\***\AppData\Local\Temp\TeamViewer\Version9\TeamViewer_Desktop.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11860072 2011-06-09] (Realtek Semiconductor)
HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [283160 2010-11-05] (Intel Corporation)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [WMAAD] - C:\Program Files (x86)\Sony\WALKMAN Launcher\WMAAD.exe [110592 2007-02-16] (Sony Corporation)
HKLM-x32\...\Run: [AvastUI.exe] - C:\Program Files\AVAST Software\Avast\AvastUI.exe [3767096 2014-01-24] (AVAST Software)
HKLM-x32\...\Run: [mobilegeni daemon] - C:\Program Files (x86)\Mobogenie\DaemonProcess.exe
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-3127482573-3744066478-1248260128-1000\...\Run: [NextLive] - C:\Windows\SysWOW64\rundll32.exe "C:\Users\***\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l
HKU\S-1-5-21-3127482573-3744066478-1248260128-1000\...\Policies\Explorer: [NoInternetOpenWith] 1
HKU\S-1-5-21-3127482573-3744066478-1248260128-1000\...\Policies\Explorer: [NoRecentDocsNetHood] 1
HKU\S-1-5-21-3127482573-3744066478-1248260128-1000\...\MountPoints2: {b586fac9-69eb-11e3-b5fe-806e6f6e6963} - D:\ASRSetup.exe
AppInit_DLLs: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll => C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC64Loader.dll [1350944 2014-02-03] (Conduit)
AppInit_DLLs-x32: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC32Loader.dll => C:\Program Files (x86)\SearchProtect\SearchProtect\bin\SPVC32Loader.dll [1046816 2014-02-03] (Conduit)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.conduit.com/?ctid=CT3323878&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=2&UP=SP365F3285-E7CA-44C8-8C14-3D8101174A9A&SSPV=
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0x6C7716CFE802CF01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de
SearchScopes: HKCU - DefaultScope {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = hxxp://search.conduit.com/Results.aspx?ctid=CT3323878&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=2&UP=SP365F3285-E7CA-44C8-8C14-3D8101174A9A&q={searchTerms}&SSPV=
SearchScopes: HKCU - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = hxxp://search.conduit.com/Results.aspx?ctid=CT3323878&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=2&UP=SP365F3285-E7CA-44C8-8C14-3D8101174A9A&q={searchTerms}&SSPV=
BHO: No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File
Toolbar: HKLM - No Name - {ae07101b-46d4-4a98-af68-0333ea26e113} - No File
Toolbar: HKLM - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
Toolbar: HKLM-x32 - No Name - {ae07101b-46d4-4a98-af68-0333ea26e113} - No File
Toolbar: HKLM-x32 - avast! Online Security - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
FireFox:
========
FF ProfilePath: C:\Users\***\AppData\Roaming\Mozilla\Firefox\Profiles\u5x6p0jr.default
FF NewTab: hxxp://search.conduit.com/?ctid=CT3323878&octid=EB_ORIGINAL_CTID&SearchSource=69&CUI=&SSPV=&Lay=1&UM=2&UP=SP365F3285-E7CA-44C8-8C14-3D8101174A9A
FF SelectedSearchEngine: Google
FF Homepage: https://google.de
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_43.dll ()
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_43.dll ()
FF Plugin-x32: @canon.com/EPPEX - C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL (CANON INC.)
FF Plugin-x32: @canon.com/MycameraPlugin - C:\Program Files (x86)\Canon\MyCamera Download Plugin\NPCIG.dll (CANON INC.)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-12-27]
Chrome:
=======
CHR Extension: (Google Docs) - C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-01-24]
CHR Extension: (Google Drive) - C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-01-24]
CHR Extension: (YouTube) - C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-01-24]
CHR Extension: (Google-Suche) - C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-01-24]
CHR Extension: (avast! Online Security) - C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2014-02-03]
CHR Extension: (Google Wallet) - C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-01-24]
CHR Extension: (Google Mail) - C:\Users\***\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-01-24]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2013-12-27]
==================== Services (Whitelisted) =================
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-01-24] (AVAST Software)
R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [113704 2014-01-24] (AVAST Software)
R2 CltMngSvc; C:\Program Files (x86)\SearchProtect\Main\bin\CltMngSvc.exe [2317600 2014-02-03] (Conduit)
S3 ICScsiSV; C:\Program Files (x86)\Sony\IMAGE CONVERTER 3\ICScsiSV.exe [75952 2007-01-26] (Sony Corporation)
S3 IcVzMonLauncher; C:\Program Files (x86)\Sony\IMAGE CONVERTER 3\IcVzMonLauncher.exe [67760 2007-01-26] (Sony Corporation)
S3 Image Converter video recording monitor for VAIO Entertainment; C:\Program Files (x86)\Sony\IMAGE CONVERTER 3\IcVzMon.exe [43184 2007-01-26] (Sony Corporation)
R2 ISCTAgent; C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe [133632 2012-02-09] ()
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2012-02-07] (Intel Corporation)
S3 MSCSPTISRV; C:\Program Files (x86)\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe [45056 2006-12-14] (Sony Corporation)
S3 PACSPTISVR; C:\Program Files (x86)\Common Files\Sony Shared\AVLib\PACSPTISVR.exe [57344 2006-12-14] ()
S3 SonicStage Back-End Service; C:\Program Files (x86)\Common Files\Sony Shared\AVLib\SsBeSvc.exe [112184 2007-02-05] (Sony Corporation)
S3 SPTISRV; C:\Program Files (x86)\Common Files\Sony Shared\AVLib\SPTISRV.exe [69632 2006-12-14] (Sony Corporation)
S3 SSScsiSV; C:\Program Files (x86)\Common Files\Sony Shared\AVLib\SSScsiSV.exe [75320 2007-02-05] (Sony Corporation)
==================== Drivers (Whitelisted) ====================
R1 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [28184 2013-12-27] (AVAST Software)
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [78648 2014-01-24] (AVAST Software)
R1 aswNdisFlt; C:\Windows\System32\DRIVERS\aswNdisFlt.sys [440672 2014-01-24] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [92544 2013-12-27] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2013-12-27] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1038072 2014-01-24] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [421704 2014-01-24] (AVAST Software)
R3 aswStm; C:\Windows\system32\drivers\aswStm.sys [80184 2014-01-24] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [207904 2013-12-27] ()
R3 ikbevent; C:\Windows\System32\DRIVERS\ikbevent.sys [25536 2012-02-09] ()
R3 imsevent; C:\Windows\System32\DRIVERS\imsevent.sys [25536 2012-02-09] ()
R3 ISCT; C:\Windows\System32\DRIVERS\ISCTD64.sys [44992 2012-02-09] ()
S3 nevxiynx; No ImagePath
R3 WPRO_41_2001; C:\Windows\System32\drivers\WPRO_41_2001.sys [34752 2014-02-06] ()
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-02-06 19:17 - 2014-02-06 19:18 - 00013659 _____ () C:\Users\***\Desktop\FRST.txt
2014-02-06 19:17 - 2014-02-06 19:17 - 00000000 ____D () C:\FRST
2014-02-06 19:15 - 2014-02-06 19:15 - 02082304 _____ (Farbar) C:\Users\***\Desktop\FRST64.exe
2014-02-06 19:09 - 2014-02-06 19:09 - 00094656 _____ (CACE Technologies) C:\Windows\system32\WPRO_41_2001woem.tmp
2014-02-06 13:38 - 2013-11-26 12:54 - 23183360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-02-06 13:38 - 2013-11-26 11:19 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-02-06 13:38 - 2013-11-26 11:18 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-02-06 13:38 - 2013-11-26 11:11 - 17112576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-02-06 13:38 - 2013-11-26 10:48 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-02-06 13:38 - 2013-11-26 10:46 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-02-06 13:38 - 2013-11-26 10:41 - 02764288 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-02-06 13:38 - 2013-11-26 10:29 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-02-06 13:38 - 2013-11-26 10:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-02-06 13:38 - 2013-11-26 10:23 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-02-06 13:38 - 2013-11-26 10:21 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-02-06 13:38 - 2013-11-26 10:18 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-02-06 13:38 - 2013-11-26 10:18 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-02-06 13:38 - 2013-11-26 10:16 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-02-06 13:38 - 2013-11-26 09:57 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-02-06 13:38 - 2013-11-26 09:38 - 02166784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-02-06 13:38 - 2013-11-26 09:38 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-02-06 13:38 - 2013-11-26 09:35 - 05769216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-02-06 13:38 - 2013-11-26 09:32 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-02-06 13:38 - 2013-11-26 09:28 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-02-06 13:38 - 2013-11-26 09:16 - 04243968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-02-06 13:38 - 2013-11-26 09:02 - 01995264 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-02-06 13:38 - 2013-11-26 08:48 - 12996608 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-02-06 13:38 - 2013-11-26 08:32 - 01928192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-02-06 13:38 - 2013-11-26 08:26 - 11221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-02-06 13:38 - 2013-11-26 08:07 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-02-06 13:38 - 2013-11-26 07:40 - 01395200 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-02-06 13:38 - 2013-11-26 07:34 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-02-06 13:38 - 2013-11-26 07:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-02-06 13:38 - 2013-11-26 07:33 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-02-06 13:38 - 2013-11-26 07:27 - 01157632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-02-06 13:32 - 2011-02-25 07:19 - 02871808 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2014-02-06 13:32 - 2011-02-25 06:30 - 02616320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2014-02-06 13:31 - 2012-02-11 07:36 - 00559104 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2014-02-06 13:31 - 2012-02-11 07:36 - 00067072 _____ (Microsoft Corporation) C:\Windows\splwow64.exe
2014-02-04 11:20 - 2014-02-04 11:20 - 00000000 ____D () C:\3f29ab335bbffb5f8d7d97ea3fd79495
2014-02-04 11:08 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE
2014-02-04 11:05 - 2014-02-04 11:05 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-02-04 11:05 - 2014-02-04 11:05 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2014-02-04 11:05 - 2014-02-04 11:05 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2014-02-04 11:05 - 2014-02-04 11:05 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-02-04 11:05 - 2014-02-04 11:05 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-02-04 11:05 - 2014-02-04 11:05 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-02-04 11:05 - 2014-02-04 11:05 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2014-02-04 11:05 - 2014-02-04 11:05 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-02-04 11:05 - 2014-02-04 11:05 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2014-02-04 11:05 - 2014-02-04 11:05 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-02-04 11:05 - 2014-02-04 11:05 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2014-02-04 11:05 - 2014-02-04 11:05 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2014-02-04 11:05 - 2014-02-04 11:05 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-02-04 11:05 - 2014-02-04 11:05 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2014-02-04 11:05 - 2014-02-04 11:05 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2014-02-04 11:05 - 2014-02-04 11:05 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2014-02-04 11:05 - 2014-02-04 11:05 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-02-04 11:05 - 2014-02-04 11:05 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2014-02-04 11:05 - 2014-02-04 11:05 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-02-04 11:05 - 2014-02-04 11:05 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2014-02-04 11:04 - 2014-02-04 11:08 - 00010074 _____ () C:\Windows\IE11_main.log
2014-02-03 20:19 - 2013-05-10 06:56 - 14631424 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2014-02-03 20:19 - 2013-05-10 06:56 - 12625920 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2014-02-03 20:19 - 2013-05-10 05:56 - 12625408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2014-02-03 20:19 - 2013-05-10 05:56 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2014-02-03 20:11 - 2014-02-03 20:11 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help
2014-02-03 20:11 - 2014-02-03 20:11 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help
2014-02-03 19:42 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2014-02-03 19:42 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2014-02-03 19:42 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2014-02-03 19:42 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2014-02-03 19:42 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2014-02-03 19:42 - 2013-11-26 12:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2014-02-03 19:42 - 2013-11-26 11:32 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-02-03 19:24 - 2013-04-17 08:02 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2014-02-03 19:24 - 2013-04-17 07:24 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-02-03 18:59 - 2014-02-03 18:59 - 00003047 _____ () C:\Users\***\Desktop\Microsoft Excel 2010.lnk
2014-02-03 18:59 - 2014-02-03 18:59 - 00003029 _____ () C:\Users\***\Desktop\Microsoft Word 2010.lnk
2014-02-03 18:57 - 2014-02-03 18:57 - 00000000 ____D () C:\Users\***\AppData\Roaming\TeamViewer
2014-02-03 18:55 - 2014-02-03 18:56 - 05852000 _____ (TeamViewer GmbH) C:\Users\***\Desktop\TeamViewer_Setup_de.exe
2014-02-03 18:55 - 2014-02-03 18:55 - 00000000 ____D () C:\Windows\PCHEALTH
2014-02-03 18:54 - 2014-02-03 20:19 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-02-03 18:54 - 2014-02-03 18:55 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2014-02-03 18:54 - 2014-02-03 18:54 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2014-02-03 18:54 - 2014-02-03 18:54 - 00000000 ____D () C:\Users\***\AppData\Local\Microsoft Help
2014-02-03 18:54 - 2014-02-03 18:54 - 00000000 ____D () C:\Program Files\Microsoft Office
2014-02-03 18:54 - 2014-02-03 18:54 - 00000000 ____D () C:\Program Files (x86)\Microsoft Analysis Services
2014-02-03 18:53 - 2014-02-03 18:53 - 00000000 __RHD () C:\MSOCache
2014-02-03 18:42 - 2014-02-03 18:42 - 00003124 _____ () C:\Windows\System32\Tasks\{E9CD821F-759C-4A0B-BAFE-EC7144D13189}
2014-02-01 12:40 - 2014-02-01 12:40 - 00000000 ____D () C:\Windows\SysWOW64\SearchProtect
2014-01-24 20:52 - 2014-02-06 19:09 - 00001108 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-01-24 20:52 - 2014-02-06 17:04 - 00001112 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-01-24 20:52 - 2014-01-24 20:58 - 00004108 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-01-24 20:52 - 2014-01-24 20:58 - 00003856 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-01-18 16:16 - 2014-02-03 18:45 - 00000000 ____D () C:\Program Files (x86)\MyPC Backup
2014-01-18 16:11 - 2014-01-24 10:42 - 00000000 ____D () C:\Users\***\AppData\Local\Lollipop
2014-01-18 16:11 - 2014-01-22 10:01 - 00002041 _____ () C:\Users\***\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lollipop.lnk
2014-01-18 16:10 - 2014-02-06 19:10 - 00000000 ____D () C:\Users\***\AppData\Roaming\newnext.me
2014-01-18 16:10 - 2014-02-03 18:43 - 00000000 ____D () C:\Users\***\AppData\Local\Mobogenie
2014-01-18 16:10 - 2014-02-03 18:43 - 00000000 ____D () C:\Program Files (x86)\Mobogenie
2014-01-18 16:10 - 2014-02-01 16:04 - 00000671 _____ () C:\Users\***\daemonprocess.txt
2014-01-18 16:10 - 2014-01-18 16:10 - 00921000 _____ (Oracle Corporation) C:\Users\***\Downloads\jxpiinstall.exe
2014-01-18 16:10 - 2014-01-18 16:10 - 00000000 ____D () C:\Users\***\AppData\Local\genienext
2014-01-18 16:10 - 2014-01-18 16:10 - 00000000 ____D () C:\Users\***\AppData\Local\cache
2014-01-18 16:10 - 2014-01-18 16:10 - 00000000 ____D () C:\Users\***\.android
2014-01-18 16:09 - 2014-02-03 18:46 - 00000000 ____D () C:\Program Files (x86)\SearchProtect
2014-01-18 16:09 - 2014-02-03 18:44 - 00000000 ____D () C:\Users\***\AppData\Roaming\Systweak
2014-01-18 16:09 - 2014-01-18 16:09 - 00000000 ____D () C:\Users\***\AppData\Local\SearchProtect
2014-01-18 16:09 - 2013-08-22 18:36 - 00020312 _____ (Systweak Inc., (www.systweak.com)) C:\Windows\system32\roboot64.exe
2014-01-18 16:04 - 2014-01-18 16:04 - 00109144 _____ () C:\Users\***\Downloads\Setup.exe
2014-01-18 16:04 - 2014-01-18 16:04 - 00109144 _____ () C:\Users\***\Downloads\Setup(1).exe
2014-01-13 12:55 - 2013-11-23 19:26 - 00417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2014-01-13 12:55 - 2013-11-23 18:47 - 00465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2014-01-13 12:55 - 2011-03-11 07:41 - 00410496 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorV.sys
2014-01-13 12:55 - 2011-03-11 07:41 - 00189824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys
2014-01-13 12:55 - 2011-03-11 07:41 - 00166272 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstor.sys
2014-01-13 12:55 - 2011-03-11 07:41 - 00148352 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvraid.sys
2014-01-13 12:55 - 2011-03-11 07:41 - 00107904 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdsata.sys
2014-01-13 12:55 - 2011-03-11 07:41 - 00027008 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdxata.sys
2014-01-13 12:55 - 2011-03-11 07:33 - 02565632 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll
2014-01-13 12:55 - 2011-03-11 07:30 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\fsutil.exe
2014-01-13 12:55 - 2011-03-11 06:33 - 01699328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll
2014-01-13 12:55 - 2011-03-11 06:31 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fsutil.exe
2014-01-13 12:55 - 2011-03-11 05:37 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBSTOR.SYS
==================== One Month Modified Files and Folders =======
2014-02-06 19:18 - 2014-02-06 19:17 - 00013659 _____ () C:\Users\***\Desktop\FRST.txt
2014-02-06 19:17 - 2014-02-06 19:17 - 00000000 ____D () C:\FRST
2014-02-06 19:17 - 2009-07-14 05:45 - 00021840 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-02-06 19:17 - 2009-07-14 05:45 - 00021840 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-02-06 19:15 - 2014-02-06 19:15 - 02082304 _____ (Farbar) C:\Users\***\Desktop\FRST64.exe
2014-02-06 19:15 - 2011-04-12 08:43 - 00653928 _____ () C:\Windows\system32\perfh007.dat
2014-02-06 19:15 - 2011-04-12 08:43 - 00129800 _____ () C:\Windows\system32\perfc007.dat
2014-02-06 19:15 - 2009-07-14 06:13 - 01498506 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-02-06 19:13 - 2013-12-20 22:17 - 01845285 _____ () C:\Windows\WindowsUpdate.log
2014-02-06 19:10 - 2014-01-18 16:10 - 00000000 ____D () C:\Users\***\AppData\Roaming\newnext.me
2014-02-06 19:09 - 2014-02-06 19:09 - 00094656 _____ (CACE Technologies) C:\Windows\system32\WPRO_41_2001woem.tmp
2014-02-06 19:09 - 2014-01-24 20:52 - 00001108 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-02-06 19:09 - 2013-12-28 13:40 - 00031156 _____ () C:\Windows\PFRO.log
2014-02-06 19:09 - 2013-12-27 14:53 - 00005364 _____ () C:\Windows\setupact.log
2014-02-06 19:09 - 2013-12-20 22:27 - 00034752 _____ () C:\Windows\system32\Drivers\WPRO_41_2001.sys
2014-02-06 19:09 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-02-06 17:04 - 2014-01-24 20:52 - 00001112 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-02-06 16:20 - 2013-12-27 14:07 - 00004182 _____ () C:\Windows\System32\Tasks\avast! Emergency Update
2014-02-06 13:21 - 2013-12-20 22:18 - 00001425 _____ () C:\Users\***\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-02-06 13:20 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-02-04 11:20 - 2014-02-04 11:20 - 00000000 ____D () C:\3f29ab335bbffb5f8d7d97ea3fd79495
2014-02-04 11:08 - 2014-02-04 11:04 - 00010074 _____ () C:\Windows\IE11_main.log
2014-02-04 11:05 - 2014-02-04 11:05 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-02-04 11:05 - 2014-02-04 11:05 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00626176 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2014-02-04 11:05 - 2014-02-04 11:05 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2014-02-04 11:05 - 2014-02-04 11:05 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00523776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-02-04 11:05 - 2014-02-04 11:05 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-02-04 11:05 - 2014-02-04 11:05 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-02-04 11:05 - 2014-02-04 11:05 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2014-02-04 11:05 - 2014-02-04 11:05 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-02-04 11:05 - 2014-02-04 11:05 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2014-02-04 11:05 - 2014-02-04 11:05 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-02-04 11:05 - 2014-02-04 11:05 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2014-02-04 11:05 - 2014-02-04 11:05 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2014-02-04 11:05 - 2014-02-04 11:05 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-02-04 11:05 - 2014-02-04 11:05 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2014-02-04 11:05 - 2014-02-04 11:05 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2014-02-04 11:05 - 2014-02-04 11:05 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2014-02-04 11:05 - 2014-02-04 11:05 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2014-02-04 11:05 - 2014-02-04 11:05 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-02-04 11:05 - 2014-02-04 11:05 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2014-02-04 11:05 - 2014-02-04 11:05 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-02-04 11:05 - 2014-02-04 11:05 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2014-02-04 11:00 - 2013-12-21 03:57 - 00000000 ____D () C:\Windows\Panther
2014-02-04 10:58 - 2009-07-14 05:45 - 00342952 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-02-04 10:57 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\System
2014-02-03 20:19 - 2014-02-03 18:54 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-02-03 20:11 - 2014-02-03 20:11 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help
2014-02-03 20:11 - 2014-02-03 20:11 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help
2014-02-03 20:11 - 2013-12-27 12:23 - 00000000 ____D () C:\Windows\system32\MRT
2014-02-03 20:10 - 2013-12-27 12:23 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-02-03 19:15 - 2013-12-20 22:25 - 00086160 _____ () C:\Users\***\AppData\Local\GDIPFONTCACHEV1.DAT
2014-02-03 18:59 - 2014-02-03 18:59 - 00003047 _____ () C:\Users\***\Desktop\Microsoft Excel 2010.lnk
2014-02-03 18:59 - 2014-02-03 18:59 - 00003029 _____ () C:\Users\***\Desktop\Microsoft Word 2010.lnk
2014-02-03 18:59 - 2013-12-27 12:37 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-02-03 18:59 - 2013-12-27 12:37 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-02-03 18:57 - 2014-02-03 18:57 - 00000000 ____D () C:\Users\***\AppData\Roaming\TeamViewer
2014-02-03 18:56 - 2014-02-03 18:55 - 05852000 _____ (TeamViewer GmbH) C:\Users\***\Desktop\TeamViewer_Setup_de.exe
2014-02-03 18:55 - 2014-02-03 18:55 - 00000000 ____D () C:\Windows\PCHEALTH
2014-02-03 18:55 - 2014-02-03 18:54 - 00000000 ____D () C:\Program Files (x86)\Microsoft Office
2014-02-03 18:54 - 2014-02-03 18:54 - 00000000 ____D () C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2014-02-03 18:54 - 2014-02-03 18:54 - 00000000 ____D () C:\Users\***\AppData\Local\Microsoft Help
2014-02-03 18:54 - 2014-02-03 18:54 - 00000000 ____D () C:\Program Files\Microsoft Office
2014-02-03 18:54 - 2014-02-03 18:54 - 00000000 ____D () C:\Program Files (x86)\Microsoft Analysis Services
2014-02-03 18:54 - 2011-04-12 08:54 - 00000000 ____D () C:\Windows\ShellNew
2014-02-03 18:54 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared
2014-02-03 18:53 - 2014-02-03 18:53 - 00000000 __RHD () C:\MSOCache
2014-02-03 18:46 - 2014-01-18 16:09 - 00000000 ____D () C:\Program Files (x86)\SearchProtect
2014-02-03 18:45 - 2014-01-18 16:16 - 00000000 ____D () C:\Program Files (x86)\MyPC Backup
2014-02-03 18:45 - 2013-12-20 22:18 - 00000000 ___RD () C:\Users\***\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-02-03 18:44 - 2014-01-18 16:09 - 00000000 ____D () C:\Users\***\AppData\Roaming\Systweak
2014-02-03 18:43 - 2014-01-18 16:10 - 00000000 ____D () C:\Users\***\AppData\Local\Mobogenie
2014-02-03 18:43 - 2014-01-18 16:10 - 00000000 ____D () C:\Program Files (x86)\Mobogenie
2014-02-03 18:42 - 2014-02-03 18:42 - 00003124 _____ () C:\Windows\System32\Tasks\{E9CD821F-759C-4A0B-BAFE-EC7144D13189}
2014-02-01 16:04 - 2014-01-18 16:10 - 00000671 _____ () C:\Users\***\daemonprocess.txt
2014-02-01 16:04 - 2013-12-27 12:10 - 00000000 ____D () C:\Users\***\AppData\Roaming\BOM
2014-02-01 12:40 - 2014-02-01 12:40 - 00000000 ____D () C:\Windows\SysWOW64\SearchProtect
2014-01-24 20:58 - 2014-01-24 20:52 - 00004108 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-01-24 20:58 - 2014-01-24 20:52 - 00003856 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-01-24 20:56 - 2013-12-27 13:44 - 00000000 ____D () C:\Users\***\AppData\Local\Google
2014-01-24 20:56 - 2013-12-27 13:44 - 00000000 ____D () C:\Program Files (x86)\Google
2014-01-24 20:50 - 2013-12-27 14:07 - 00002032 _____ () C:\Users\Public\Desktop\avast! SafeZone.lnk
2014-01-24 20:50 - 2013-12-27 14:07 - 00001972 _____ () C:\Users\Public\Desktop\avast! Internet Security.lnk
2014-01-24 20:49 - 2013-12-27 14:07 - 01038072 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2014-01-24 20:49 - 2013-12-27 14:07 - 00421704 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2014-01-24 20:49 - 2013-12-27 14:07 - 00334136 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2014-01-24 20:49 - 2013-12-27 14:07 - 00080184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswstm.sys
2014-01-24 20:49 - 2013-12-27 14:07 - 00078648 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2014-01-24 20:49 - 2013-12-27 14:07 - 00043152 _____ (AVAST Software) C:\Windows\avastSS.scr
2014-01-24 20:49 - 2013-12-27 14:06 - 00440672 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNdisFlt.sys
2014-01-24 10:42 - 2014-01-18 16:11 - 00000000 ____D () C:\Users\***\AppData\Local\Lollipop
2014-01-22 10:01 - 2014-01-18 16:11 - 00002041 _____ () C:\Users\***\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lollipop.lnk
2014-01-18 16:10 - 2014-01-18 16:10 - 00921000 _____ (Oracle Corporation) C:\Users\***\Downloads\jxpiinstall.exe
2014-01-18 16:10 - 2014-01-18 16:10 - 00000000 ____D () C:\Users\***\AppData\Local\genienext
2014-01-18 16:10 - 2014-01-18 16:10 - 00000000 ____D () C:\Users\***\AppData\Local\cache
2014-01-18 16:10 - 2014-01-18 16:10 - 00000000 ____D () C:\Users\***\.android
2014-01-18 16:10 - 2013-12-20 22:17 - 00000000 ____D () C:\Users\***
2014-01-18 16:09 - 2014-01-18 16:09 - 00000000 ____D () C:\Users\***\AppData\Local\SearchProtect
2014-01-18 16:04 - 2014-01-18 16:04 - 00109144 _____ () C:\Users\***\Downloads\Setup.exe
2014-01-18 16:04 - 2014-01-18 16:04 - 00109144 _____ () C:\Users\***\Downloads\Setup(1).exe
2014-01-16 09:59 - 2010-11-21 04:27 - 00270496 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
Some content of TEMP:
====================
C:\Users\***\AppData\Local\Temp\6_Offer_15.exe
C:\Users\***\AppData\Local\Temp\BackupSetup.exe
C:\Users\***\AppData\Local\Temp\DownloadManager.exe
C:\Users\***\AppData\Local\Temp\finvap.exe
C:\Users\***\AppData\Local\Temp\nsdC9DA.exe
C:\Users\***\AppData\Local\Temp\nsoC75A.exe
C:\Users\***\AppData\Local\Temp\nst9753.exe
C:\Users\***\AppData\Local\Temp\nst9F40.exe
C:\Users\***\AppData\Local\Temp\ose00000.exe
C:\Users\***\AppData\Local\Temp\SearchProtectINT.exe
C:\Users\***\AppData\Local\Temp\SPSetup.exe
C:\Users\***\AppData\Local\Temp\vcredist_x64.exe
C:\Users\***\AppData\Local\Temp\_is738A.exe
C:\Users\***\AppData\Local\Temp\_is9B0.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-02-03 19:51
==================== End Of Log ============================ --- --- ---
--- --- ---
Addition.txt Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 05-02-2014
Ran by *** at 2014-02-06 19:18:16
Running from C:\Users\***\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
ACDSee Foto-Editor (x32 Version: 4.00.208 - ACD Systems Ltd.)
Adobe Flash Player 12 Plugin (x32 Version: 12.0.0.43 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.06) - Deutsch (x32 Version: 11.0.06 - Adobe Systems Incorporated)
Ashampoo Burning Studio FREE v.1.12.0 (x32 Version: 1.12.0 - Ashampoo GmbH & Co. KG)
ASRock App Charger v1.0.5 (Version: - ASRock Inc.)
avast! Internet Security (x32 Version: 9.0.2013 - Avast Software)
Biet-O-Matic v2.14.12 (x32 Version: 2.14.12 - BOM Development Team)
Canon Easy-PhotoPrint EX (x32 Version: 4.1.6 - Canon Inc.)
CANON iMAGE GATEWAY MyCamera Download Plugin (x32 Version: 3.1.1.2 - Canon Inc.)
CANON iMAGE GATEWAY Task for ZoomBrowser EX (x32 Version: 1.9.0.9 - Canon Inc.)
Canon MOV Decoder (x32 Version: 1.8.0.7 - Canon Inc.)
Canon MOV Encoder (x32 Version: 1.6.0.1 - Canon Inc.)
Canon MovieEdit Task for ZoomBrowser EX (x32 Version: 3.7.0.4 - Canon Inc.)
Canon Utilities Digital Photo Professional 3.10 (x32 Version: 3.10.2.0 - Canon Inc.)
Canon Utilities EOS Sample Music (x32 Version: 1.0.0.204 - Canon Inc.)
Canon Utilities EOS Utility (x32 Version: 2.10.2.0 - Canon Inc.)
Canon Utilities EOS Video Snapshot Task for ZoomBrowser EX (x32 Version: 1.0.0.10 - Canon Inc.)
Canon Utilities PhotoStitch (x32 Version: 3.1.22.46 - Canon Inc.)
Canon Utilities Picture Style Editor (x32 Version: 1.9.0.0 - Canon Inc.)
Canon Utilities ZoomBrowser EX (x32 Version: 6.7.0.24 - Canon Inc.)
Canon ZoomBrowser EX Memory Card Utility (x32 Version: 1.5.0.9 - Canon Inc.)
CCleaner (Version: 4.09 - Piriform)
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (x32 Version: - Microsoft)
DHTML Editing Component (x32 Version: 6.02.0001 - Microsoft Corporation)
Google Chrome (x32 Version: 32.0.1700.107 - Google Inc.)
Google Update Helper (x32 Version: 1.3.22.3 - Google Inc.) Hidden
Image Converter 3 (x32 Version: 3.0 - Sony Corporation)
Intel(R) Control Center (x32 Version: 1.2.1.1007 - Intel Corporation)
Intel(R) Management Engine Components (x32 Version: 8.0.2.1410 - Intel Corporation)
Intel(R) Processor Graphics (x32 Version: 8.15.10.2372 - Intel Corporation)
Intel(R) Rapid Storage Technology (x32 Version: 10.1.0.1008 - Intel Corporation)
Intel(R) Smart Connect Technology 2.0 x64 (Version: 2.0.1083.0 - Intel)
Intel® Trusted Connect Service Client (Version: 1.23.605.1 - Intel Corporation)
Lollipop (HKCU Version: - Lollipop Network, S.L.) <==== ATTENTION
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft Office Access MUI (German) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (German) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Home and Student 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Office 64-bit Components 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (German) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Outlook MUI (German) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (German) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (English) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (French) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Italian) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (German) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Publisher MUI (German) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (German) 2010 (Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (German) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Single Image 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (German) 2010 (x32 Version: 14.0.4763.1000 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (x32 Version: 10.0.30319 - Microsoft Corporation)
Mozilla Firefox 26.0 (x86 de) (x32 Version: 26.0 - Mozilla)
Mozilla Maintenance Service (x32 Version: 26.0 - Mozilla)
OpenMG Limited Patch 4.7-07-14-05-01 (x32 Version: - )
OpenMG Secure Module 4.7.00 (x32 Version: 4.7.00.12140 - Sony Corporation)
OpenMG Secure Module 4.7.00 (x32 Version: 4.7.00.12140 - Sony Corporation) Hidden
PDF Manual NW-A800 Series (x32 Version: 1.0 - Sony Corporation)
Realtek Ethernet Controller Driver (x32 Version: 7.48.823.2011 - Realtek)
Realtek High Definition Audio Driver (x32 Version: 6.0.1.6392 - Realtek Semiconductor Corp.)
Search Protect (x32 Version: 2.9.65.0 - Conduit) <==== ATTENTION
SonicStage 4.3 (x32 Version: 4.3 - Sony Corporation)
Sony Video Shared Library (x32 Version: 3.1.01 - Sony Corporation)
Turbo Lister 2 (x32 Version: 2.00.0000 - eBay Inc.)
Update for Microsoft Office 2010 (KB2553065) (x32 Version: - Microsoft)
Update for Microsoft Office 2010 (KB2553181) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft Office 2010 (KB2553267) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft Office 2010 (KB2553310) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft Office 2010 (KB2566458) (x32 Version: - Microsoft)
Update for Microsoft Office 2010 (KB2596964) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft Office 2010 (KB2597091) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft Office 2010 (KB2598242) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft OneNote 2010 (KB2589345) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft Outlook 2010 (KB2553248) 32-Bit Edition (x32 Version: - Microsoft)
Update for Microsoft Outlook Social Connector 2010 (KB2553406) 32-Bit Edition (x32 Version: - Microsoft)
Video Downloader (x32 Version: 1.0.00.03050 - Sony Corporation)
WALKMAN Launcher (x32 Version: 1.0.00.02190 - Sony Corporation)
==================== Restore Points =========================
24-01-2014 19:48:47 avast! antivirus system restore point
24-01-2014 19:50:26 Gerätetreiber-Paketinstallation: Avast Netzwerkdienst
03-02-2014 17:53:33 Installed Microsoft Office Home and Student 2010
03-02-2014 18:27:37 Windows Update
03-02-2014 19:09:36 Windows Update
04-02-2014 10:03:36 Windows Update
04-02-2014 10:19:36 Windows Update
06-02-2014 12:24:18 Windows Update
06-02-2014 12:38:25 Windows Update
06-02-2014 16:32:41 Windows Update
==================== Hosts content: ==========================
2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {74E13D35-B4A5-4B41-89E7-9B8FB211FD60} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-12-17] (Piriform Ltd)
Task: {8D41E1A9-E75A-466A-9AEE-522450F6F88F} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-24] (Google Inc.)
Task: {B87B035E-A069-4064-9B4F-61E228FF42C2} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-01-24] (AVAST Software)
Task: {D6094599-E6E9-40F5-94EC-9114D830EFF7} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-01-24] (Google Inc.)
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Loaded Modules (whitelisted) =============
2013-12-20 22:21 - 2011-04-15 03:16 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2014-02-06 16:20 - 2014-02-06 13:08 - 02168320 _____ () C:\Program Files\AVAST Software\Avast\defs\14020600\algo.dll
2013-12-27 14:07 - 2013-12-27 14:07 - 19336120 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2014-02-06 16:35 - 2014-02-06 16:35 - 00169472 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\eb4812681f6ab4406053f3a1803e6da0\IsdiInterop.ni.dll
2013-12-20 22:23 - 2010-11-05 23:50 - 00058880 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll
2013-12-20 22:24 - 2012-02-07 17:39 - 01198872 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll
2013-12-27 10:56 - 2013-12-05 20:36 - 03559024 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (02/06/2014 07:10:12 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1".
Die abhängige Assemblierung "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".
Error: (02/06/2014 07:10:12 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1".
Die abhängige Assemblierung "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".
Error: (02/06/2014 07:10:09 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (02/06/2014 07:09:58 PM) (Source: ISCT Agent) (User: )
Description: CAgentState::DoPeriodicSuspendResume ****Error in initialize NetDetect, status = 0x2
Error: (02/06/2014 05:33:05 PM) (Source: MsiInstaller) (User: NT-AUTORITÄT)
Description: Produkt: Microsoft .NET Framework 4 Client Profile -- Fehler 1704. Eine Installation von Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 wurde unterbrochen. Sie müssen die von dieser Installation vorgenommenen Änderungen rückgängig machen, bevor Sie den Vorgang fortsetzen können. Möchten Sie diese Änderungen rückgängig machen?
Error: (02/06/2014 04:20:18 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1".
Die abhängige Assemblierung "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".
Error: (02/06/2014 04:20:18 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1".
Die abhängige Assemblierung "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".
Error: (02/06/2014 04:20:06 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (02/06/2014 04:19:53 PM) (Source: ISCT Agent) (User: )
Description: CAgentState::DoPeriodicSuspendResume ****Error in initialize NetDetect, status = 0x2
Error: (02/06/2014 01:21:23 PM) (Source: SideBySide) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"1".
Die abhängige Assemblierung "Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"" konnte nicht gefunden werden.
Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe".
System errors:
=============
Error: (02/06/2014 07:12:07 PM) (Source: WMPNetworkSvc) (User: )
Description: WMPNetworkSvc
Error: (02/06/2014 04:21:59 PM) (Source: WMPNetworkSvc) (User: )
Description: WMPNetworkSvc
Error: (02/06/2014 01:26:21 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80004005 fehlgeschlagen: Service Pack 1 für Microsoft Office 2010 (KB2510690), 32-Bit-Edition
Error: (02/06/2014 01:22:53 PM) (Source: WMPNetworkSvc) (User: )
Description: WMPNetworkSvc
Error: (02/06/2014 01:20:32 PM) (Source: EventLog) (User: )
Description: Das System wurde zuvor am 04.02.2014 um 11:20:52 unerwartet heruntergefahren.
Error: (02/04/2014 11:02:23 AM) (Source: WMPNetworkSvc) (User: )
Description: WMPNetworkSvc
Error: (02/04/2014 11:00:46 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Windows Modules Installer" wurde mit folgendem Fehler beendet:
%%16405
Error: (02/03/2014 08:14:51 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070643 fehlgeschlagen: Sicherheitsupdate für Microsoft Visual C++ 2008 Service Pack 1 Redistributable Package (KB2538243)
Error: (02/03/2014 06:50:09 PM) (Source: WMPNetworkSvc) (User: )
Description: WMPNetworkSvc
Error: (02/03/2014 06:42:29 PM) (Source: WMPNetworkSvc) (User: )
Description: WMPNetworkSvc
Microsoft Office Sessions:
=========================
Error: (02/06/2014 07:10:12 PM) (Source: SideBySide)(User: )
Description: Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\Program Files (x86)\Sony\WALKMAN Launcher\MFC80U.DLL
Error: (02/06/2014 07:10:12 PM) (Source: SideBySide)(User: )
Description: Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\Program Files (x86)\Sony\WALKMAN Launcher\MFC80U.DLL
Error: (02/06/2014 07:10:09 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (02/06/2014 07:09:58 PM) (Source: ISCT Agent)(User: )
Description: CAgentState::DoPeriodicSuspendResume ****Error in initialize NetDetect, status = 0x2
Error: (02/06/2014 05:33:05 PM) (Source: MsiInstaller)(User: NT-AUTORITÄT)
Description: Produkt: Microsoft .NET Framework 4 Client Profile -- Fehler 1704. Eine Installation von Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 wurde unterbrochen. Sie müssen die von dieser Installation vorgenommenen Änderungen rückgängig machen, bevor Sie den Vorgang fortsetzen können. Möchten Sie diese Änderungen rückgängig machen?(NULL)(NULL)(NULL)(NULL)(NULL)
Error: (02/06/2014 04:20:18 PM) (Source: SideBySide)(User: )
Description: Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\Program Files (x86)\Sony\WALKMAN Launcher\MFC80U.DLL
Error: (02/06/2014 04:20:18 PM) (Source: SideBySide)(User: )
Description: Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\Program Files (x86)\Sony\WALKMAN Launcher\MFC80U.DLL
Error: (02/06/2014 04:20:06 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (02/06/2014 04:19:53 PM) (Source: ISCT Agent)(User: )
Description: CAgentState::DoPeriodicSuspendResume ****Error in initialize NetDetect, status = 0x2
Error: (02/06/2014 01:21:23 PM) (Source: SideBySide)(User: )
Description: Microsoft.VC80.MFCLOC,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="8.0.50608.0"C:\Program Files (x86)\Sony\WALKMAN Launcher\MFC80U.DLL
==================== Memory info ===========================
Percentage of memory in use: 23%
Total physical RAM: 7888.9 MB
Available physical RAM: 6035.05 MB
Total Pagefile: 15775.98 MB
Available Pagefile: 13760.82 MB
Total Virtual: 8192 MB
Available Virtual: 8191.82 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:465.66 GB) (Free:416.77 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 4017FE47)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=466 GB) - (Type=07 NTFS)
==================== End Of Log ============================ |