vik11x11 | 15.03.2014 11:40 | Code:
# AdwCleaner v3.022 - Bericht erstellt am 15/03/2014 um 10:56:21
# Aktualisiert 13/03/2014 von Xplode
# Betriebssystem : Windows 7 Professional Service Pack 1 (64 bits)
# Benutzername : Viktoria - VIKTORIA-THINK
# Gestartet von : C:\Users\Viktoria\Downloads\adwcleaner.exe
# Option : Löschen
***** [ Dienste ] *****
[#] Dienst Gelöscht : CltMngSvc
***** [ Dateien / Ordner ] *****
Ordner Gelöscht : C:\ProgramData\Systweak
Ordner Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced System Protector
Ordner Gelöscht : C:\Program Files (x86)\Advanced System Protector
Ordner Gelöscht : C:\Program Files (x86)\iMesh Applications
Ordner Gelöscht : C:\Program Files (x86)\Mobogenie
Ordner Gelöscht : C:\Program Files (x86)\SearchProtect
Ordner Gelöscht : C:\Users\Viktoria\AppData\Local\SearchProtect
Ordner Gelöscht : C:\Users\Viktoria\AppData\Roaming\Systweak
Datei Gelöscht : C:\Windows\System32\roboot64.exe
***** [ Verknüpfungen ] *****
***** [ Registrierungsdatenbank ] *****
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\smartbar_rasapi32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\smartbar_rasmancs
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\Mobogenie.exe
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{DCABB943-792E-44C4-9029-ECBEE6265AF9}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{3408AC0D-510E-4808-8F7B-6B70B1F88534}
Wert Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]
Schlüssel Gelöscht : HKCU\Software\SearchProtectINT
Schlüssel Gelöscht : HKCU\Software\SmartBar
Schlüssel Gelöscht : HKCU\Software\systweak
Schlüssel Gelöscht : HKCU\Software\WEDLMNGR
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Crossrider
Schlüssel Gelöscht : HKLM\Software\systweak
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\00212D92-C5D8-4ff4-AE50-B20F0F85C40A_Systweak_Ad~B9F029BF_is1
***** [ Browser ] *****
-\\ Internet Explorer v11.0.9600.16518
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Search Page]
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Search Bar]
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Search [Default_Search_URL]
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Search [SearchAssistant]
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\SearchUrl [Default]
Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [Default]
-\\ Mozilla Firefox v27.0.1 (de)
[ Datei : C:\Users\Viktoria\AppData\Roaming\Mozilla\Firefox\Profiles\omj9t8ke.default\prefs.js ]
Zeile gelöscht : user_pref("extensions.ab1ac2ff78e514bb68bf887f1d567919a4bb97481aead4c2ea62be25e264651bbcom49074.49074.cookie.CrossriderNotifier_channels.expiration", "Fri Feb 01 2030 00:00:00 GMT+0100");
Zeile gelöscht : user_pref("extensions.ab1ac2ff78e514bb68bf887f1d567919a4bb97481aead4c2ea62be25e264651bbcom49074.49074.cookie.CrossriderNotifier_channels.value", "%7B%22app0%22%3A%22app0%22%2C%22app49074%22%3A%22app49[...]
Zeile gelöscht : user_pref("extensions.ab1ac2ff78e514bb68bf887f1d567919a4bb97481aead4c2ea62be25e264651bbcom49074.49074.cookie.CrossriderNotifier_geolocation.expiration", "Sat Mar 22 2014 10:33:36 GMT+0100");
Zeile gelöscht : user_pref("extensions.ab1ac2ff78e514bb68bf887f1d567919a4bb97481aead4c2ea62be25e264651bbcom49074.49074.cookie.CrossriderNotifier_geolocation.value", "%22DE%22");
Zeile gelöscht : user_pref("extensions.ab1ac2ff78e514bb68bf887f1d567919a4bb97481aead4c2ea62be25e264651bbcom49074.49074.cookie.CrossriderNotifier_metadata.expiration", "Sun Mar 16 2014 10:33:36 GMT+0100");
Zeile gelöscht : user_pref("extensions.ab1ac2ff78e514bb68bf887f1d567919a4bb97481aead4c2ea62be25e264651bbcom49074.49074.cookie.CrossriderNotifier_metadata.value", "%7B%22appId%22%3A49074%2C%22appName%22%3A%22The%20weDo[...]
Zeile gelöscht : user_pref("extensions.ab1ac2ff78e514bb68bf887f1d567919a4bb97481aead4c2ea62be25e264651bbcom49074.49074.description", "Enhance your search results with direct download links and information for apps and[...]
Zeile gelöscht : user_pref("extensions.ab1ac2ff78e514bb68bf887f1d567919a4bb97481aead4c2ea62be25e264651bbcom49074.49074.internaldb.Resources_meta.value", "%7B%22extension.css%22%3A%7B%22id%22%3A479259%2C%22ver%22%3A1%2[...]
Zeile gelöscht : user_pref("extensions.ab1ac2ff78e514bb68bf887f1d567919a4bb97481aead4c2ea62be25e264651bbcom49074.49074.internaldb.Resources_resource_479259.value", "%22.crossrider-nofity-34345-body-theme-white-black%2[...]
Zeile gelöscht : user_pref("extensions.crossrider.bic", "1449936649182ec5851380235d246ceb");
*************************
AdwCleaner[R0].txt - [7741 octets] - [15/03/2014 10:37:26]
AdwCleaner[S0].txt - [5700 octets] - [15/03/2014 10:56:21]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [5760 octets] ########## Code:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.2 (02.20.2014:1)
OS: Windows 7 Professional x64
Ran by Viktoria on 15.03.2014 at 11:04:32,49
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
~~~ Files
~~~ Folders
~~~ FireFox
Successfully deleted the following from C:\Users\Viktoria\AppData\Roaming\mozilla\firefox\profiles\omj9t8ke.default\prefs.js
user_pref("extensions.ab1ac2ff78e514bb68bf887f1d567919a4bb97481aead4c2ea62be25e264651bbcom49074.49074.cookie.CrossriderNotifier_channels.expiration", "Fri Feb 01 2030 00:00:00
user_pref("extensions.ab1ac2ff78e514bb68bf887f1d567919a4bb97481aead4c2ea62be25e264651bbcom49074.49074.cookie.CrossriderNotifier_channels.value", "%7B%22app0%22%3A%22app0%22%2C
user_pref("extensions.ab1ac2ff78e514bb68bf887f1d567919a4bb97481aead4c2ea62be25e264651bbcom49074.49074.cookie.CrossriderNotifier_geolocation.expiration", "Sat Mar 22 2014 10:59
user_pref("extensions.ab1ac2ff78e514bb68bf887f1d567919a4bb97481aead4c2ea62be25e264651bbcom49074.49074.cookie.CrossriderNotifier_geolocation.value", "%22DE%22");
user_pref("extensions.ab1ac2ff78e514bb68bf887f1d567919a4bb97481aead4c2ea62be25e264651bbcom49074.49074.cookie.CrossriderNotifier_metadata.expiration", "Sun Mar 16 2014 10:59:13
user_pref("extensions.ab1ac2ff78e514bb68bf887f1d567919a4bb97481aead4c2ea62be25e264651bbcom49074.49074.cookie.CrossriderNotifier_metadata.value", "%7B%22appId%22%3A49074%2C%22a
user_pref("extensions.ab1ac2ff78e514bb68bf887f1d567919a4bb97481aead4c2ea62be25e264651bbcom49074.49074.description", "Enhance your search results with direct download links and
Emptied folder: C:\Users\Viktoria\AppData\Roaming\mozilla\firefox\profiles\omj9t8ke.default\minidumps [5 files]
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 15.03.2014 at 11:25:34,63
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
FRST Logfile:
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-03-2014
Ran by Viktoria (administrator) on VIKTORIA-THINK on 15-03-2014 11:31:22
Running from C:\Users\Viktoria\Desktop
Windows 7 Professional Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(AuthenTec, Inc) C:\Program Files\Lenovo Fingerprint Reader\TrueSuiteService.exe
(Lenovo.) C:\Windows\system32\ibmpmsvc.exe
(AMD) C:\Windows\system32\atiesrxx.exe
(AMD) C:\Windows\system32\atieclxx.exe
(Microsoft Corporation) C:\Windows\system32\WLANExt.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
(Lenovo) C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBService.exe
(Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
(AuthenTec Inc.) C:\Program Files\Lenovo Fingerprint Reader\TouchControl.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\CAMMUTE.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\TPKNRSVC.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe
(Lenovo Group Limited) C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe
(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANHost.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\VIRTSCRL\virtscrl.exe
(Nitro PDF Software) C:\Program Files\Common Files\Nitro\Pro\8.0\NitroPDFDriverService8x64.exe
(Nalpeiron Ltd.) C:\Windows\SysWOW64\NLSSRV32.EXE
(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAService.exe
(Lenovo Group Limited) C:\Program Files\LENOVO\HOTKEY\TPHKSVC.exe
(Lenovo Group Limited) C:\Program Files\LENOVO\HOTKEY\TPHKLOAD.exe
(Lenovo Group Limited) C:\Program Files\LENOVO\HOTKEY\MICMUTE.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tpnumlkd.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\mkrmsg.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\TPONSCR.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Lenovo.) C:\Windows\System32\TpShocks.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\Communications Utility\TpKnrres.exe
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
() C:\Program Files\Realtek\Audio\HDA\FMAPP.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
(Vimicro) C:\Program Files (x86)\USB Camera\VM331STI.EXE
(Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe
(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAMain.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Synaptics Incorporated) C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE
(Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\BtStackServer.exe
(AuthenTec Inc.) C:\Program Files\Lenovo Fingerprint Reader\x86\BioMonitor.exe
(Lenovo Group Limited) C:\Program Files (x86)\ThinkPad\Utilities\SCHTASK.EXE
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Lenovo) C:\Program Files (x86)\Lenovo\message center plus\mcplaunch.exe
(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_70.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_12_0_0_70.exe
(Farbar) C:\Users\Viktoria\Desktop\FRST64(1).exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12452456 2012-02-21] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1158248 2012-02-08] (Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2881336 2012-06-19] (Synaptics Incorporated)
HKLM\...\Run: [TpShocks] - C:\Windows\system32\TpShocks.exe [382248 2013-05-10] (Lenovo.)
HKLM\...\Run: [LENOVO.TPKNRRES] - C:\Program Files\Lenovo\Communications Utility\TPKNRRES.exe [293672 2013-05-29] (Lenovo Group Limited)
HKLM\...\Run: [] - [X]
HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [343168 2012-04-18] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [331BigDog] - C:\Program Files (x86)\USB Camera\VM331STI.EXE [548864 2013-03-12] (Vimicro)
HKLM-x32\...\Run: [Dolby Advanced Audio v2] - C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe [506712 2011-06-01] (Dolby Laboratories Inc.)
HKLM-x32\...\Run: [PWMTRV] - rundll32 C:\PROGRA~2\ThinkPad\UTILIT~1\PWMTR64V.DLL,PwrMgrBkGndMonitor
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-10] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [Lenovo Registration] - C:\Program Files (x86)\Lenovo Registration\LenovoReg.exe [4315872 2011-06-01] (Lenovo, Inc.)
HKLM-x32\...\Run: [Fastboot] - C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBConsole.exe [1091376 2012-01-17] (Lenovo)
HKLM-x32\...\Run: [PSUAMain] - C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAMain.exe [32736 2013-10-19] (Panda Security, S.L.)
HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-02-21] (Apple Inc.)
HKLM\...\Winlogon: [Userinit] C:\Windows\SysWOW64\userinit.exe,
HKU\S-1-5-21-261441504-2005375277-1003942338-1001\...\MountPoints2: {3486fd28-445d-11e3-a586-806e6f6e6963} - Q:\LenovoQDrive.exe
Lsa: [Notification Packages] scecli C:\Program Files\Lenovo\Bluetooth Software\BtwProximityCP.dll
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo13-comm.msn.com/?pc=LNJB
HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com/welcome/thinkpad
https://www.google.de/
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com/welcome/thinkpad
SearchScopes: HKLM - DefaultScope {2E794C85-5A61-4C13-A2B8-26728FA0990A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=LNJB
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM - {2E794C85-5A61-4C13-A2B8-26728FA0990A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=LNJB
BHO: SteadyVideoBHO Class - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll (Advanced Micro Devices)
BHO: TrueSuite Browser Helper Object - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} - C:\Program Files\Lenovo Fingerprint Reader\IEBHO.DLL (AuthenTec Inc.)
BHO-x32: SteadyVideoBHO Class - {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} - C:\Program Files (x86)\amd\SteadyVideo\SteadyVideo.dll (Advanced Micro Devices)
BHO-x32: TrueSuite Browser Helper Object - {8590886E-EC8C-43C1-A32C-E4C2B0B6395B} - C:\Program Files\Lenovo Fingerprint Reader\x86\IEBHO.dll (AuthenTec Inc.)
Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)
Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)
Filter-x32: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)
Filter-x32: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll (Advanced Micro Devices)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
FireFox:
========
FF ProfilePath: C:\Users\Viktoria\AppData\Roaming\Mozilla\Firefox\Profiles\omj9t8ke.default
FF NewTab: about:blank
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_12_0_0_70.dll ()
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_12_0_0_70.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @nitropdf.com/NitroPDF - C:\Program Files (x86)\Nitro\Pro 8\npnitromozilla.dll (Nitro PDF)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: intel.com/AppUp - C:\Program Files (x86)\Intel\IntelAppStore\bin\npAppUp.dll (Intel)
FF Plugin HKCU: intel.com/AppUpx64 - C:\Program Files (x86)\Intel\IntelAppStore\bin\npAppUp_x64.dll (Intel)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: The weDownload Manager - C:\Users\Viktoria\AppData\Roaming\Mozilla\Firefox\Profiles\omj9t8ke.default\Extensions\b1ac2ff7-8e51-4bb6-8bf8-87f1d567919a@4bb97481-aead-4c2e-a62b-e25e264651bb.com [2014-03-15]
FF Extension: ProxTube - Unblock YouTube - C:\Users\Viktoria\AppData\Roaming\Mozilla\Firefox\Profiles\omj9t8ke.default\Extensions\{2541D29A-DB9E-4c1e-949A-31EFB4AEF4E7} [2014-02-22]
==================== Services (Whitelisted) =================
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984 2012-04-18] (Advanced Micro Devices, Inc.)
R2 btwdins; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [945440 2012-02-01] (Broadcom Corporation.)
R2 FastbootService; C:\Program Files (x86)\Lenovo\RapidBoot HDD Accelerator\FBService.exe [169776 2012-01-17] (Lenovo)
R2 FPLService; C:\Program Files\Lenovo Fingerprint Reader\TrueSuiteService.exe [328552 2012-06-07] (AuthenTec, Inc)
R2 LENOVO.TVTVCAM; C:\Program Files\Lenovo\Communications Utility\vcamsvc.exe [187688 2013-05-29] (Lenovo Group Limited)
R2 Lenovo.VIRTSCRLSVC; C:\Program Files\LENOVO\VIRTSCRL\lvvsst.exe [136288 2012-08-10] (Lenovo Group Limited)
R2 NanoServiceMain; C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSANHost.exe [140768 2013-10-03] (Panda Security, S.L.)
R2 NitroDriverReadSpool8; C:\Program Files\Common Files\Nitro\Pro\8.0\NitroPDFDriverService8x64.exe [230408 2013-06-17] (Nitro PDF Software)
R2 PSUAService; C:\Program Files (x86)\Panda Security\Panda Cloud Antivirus\PSUAService.exe [37344 2013-10-19] (Panda Security, S.L.)
==================== Drivers (Whitelisted) ====================
R3 bcbtums; C:\Windows\System32\drivers\bcbtums.sys [134696 2012-02-01] (Broadcom Corporation.)
R0 Fastboot; C:\Windows\System32\DRIVERS\Fastboot.sys [70416 2012-01-17] (Windows (R) Win 7 DDK provider)
R1 NNSALPC; C:\Windows\System32\DRIVERS\NNSAlpc.sys [91368 2013-05-29] (Panda Security, S.L.)
R1 NNSHTTP; C:\Windows\System32\DRIVERS\NNSHttp.sys [122088 2013-05-29] (Panda Security, S.L.)
R1 NNSHTTPS; C:\Windows\System32\DRIVERS\NNSHttps.sys [109288 2013-05-29] (Panda Security, S.L.)
R1 NNSIDS; C:\Windows\System32\DRIVERS\NNSIds.sys [114920 2013-05-29] (Panda Security, S.L.)
R1 NNSPICC; C:\Windows\System32\DRIVERS\NNSPicc.sys [95464 2013-05-29] (Panda Security, S.L.)
S4 NNSPIHSW; C:\Windows\System32\DRIVERS\NNSPihsw.sys [69864 2013-05-29] (Panda Security, S.L.)
R1 NNSPOP3; C:\Windows\System32\DRIVERS\NNSPop3.sys [119016 2013-05-29] (Panda Security, S.L.)
R1 NNSPROT; C:\Windows\System32\DRIVERS\NNSProt.sys [305896 2013-05-29] (Panda Security, S.L.)
R1 NNSPRV; C:\Windows\System32\DRIVERS\NNSPrv.sys [118504 2013-05-29] (Panda Security, S.L.)
R1 NNSSMTP; C:\Windows\System32\DRIVERS\NNSSmtp.sys [114920 2013-05-29] (Panda Security, S.L.)
R1 NNSSTRM; C:\Windows\System32\DRIVERS\NNSStrm.sys [246504 2013-05-29] (Panda Security, S.L.)
R1 NNSTLSC; C:\Windows\System32\DRIVERS\NNSTlsc.sys [106216 2013-05-29] (Panda Security, S.L.)
R2 PSINAflt; C:\Windows\System32\DRIVERS\PSINAflt.sys [169192 2013-10-17] (Panda Security, S.L.)
R2 PSINFile; C:\Windows\System32\DRIVERS\PSINFile.sys [122600 2013-10-11] (Panda Security, S.L.)
R1 PSINKNC; C:\Windows\System32\DRIVERS\psinknc.sys [206056 2013-10-11] (Panda Security, S.L.)
R2 PSINProc; C:\Windows\System32\DRIVERS\PSINProc.sys [124648 2013-10-11] (Panda Security, S.L.)
R2 PSINProt; C:\Windows\System32\DRIVERS\PSINProt.sys [137960 2013-10-11] (Panda Security, S.L.)
S3 PSINReg; C:\Windows\System32\DRIVERS\PSINReg.sys [105704 2013-10-11] (Panda Security, S.L.)
R3 PSKMAD; C:\Windows\System32\DRIVERS\PSKMAD.sys [58808 2013-04-29] (Panda Security, S.L.)
R3 SmbDrvAMDASF; C:\Windows\System32\DRIVERS\Smb_driver_AMDASF.sys [26424 2012-06-19] (Synaptics Incorporated)
R3 TVTI2C; C:\Windows\System32\DRIVERS\Tvti2c.sys [40248 2011-05-29] (Lenovo Information Product(ShenZhen China) Inc.)
R3 tvtvcamd; C:\Windows\System32\DRIVERS\tvtvcamd.sys [27432 2011-12-08] (ThinkVantage Communications Utility)
R3 vm331avs; C:\Windows\System32\Drivers\vm331avs.sys [1045248 2013-03-01] (Vimicro Corporation)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-03-15 11:31 - 2014-03-15 11:31 - 00014418 _____ () C:\Users\Viktoria\Desktop\FRST.txt
2014-03-15 11:30 - 2014-03-15 11:30 - 02157056 _____ (Farbar) C:\Users\Viktoria\Desktop\FRST64(1).exe
2014-03-15 11:25 - 2014-03-15 11:25 - 00002114 _____ () C:\Users\Viktoria\Desktop\JRT.txt
2014-03-15 11:04 - 2014-03-15 11:04 - 00000000 ____D () C:\Windows\ERUNT
2014-03-15 11:03 - 2014-03-15 11:03 - 01037734 _____ (Thisisu) C:\Users\Viktoria\Downloads\JRT.exe
2014-03-15 10:36 - 2014-03-15 10:56 - 00000000 ____D () C:\AdwCleaner
2014-03-15 10:35 - 2014-03-15 10:36 - 01950720 _____ () C:\Users\Viktoria\Downloads\adwcleaner.exe
2014-03-07 16:39 - 2014-03-07 17:40 - 00119000 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-03-07 16:39 - 2014-03-07 16:39 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-03-07 16:38 - 2014-03-07 18:28 - 00000000 ____D () C:\Users\Viktoria\Desktop\mbar
2014-03-07 16:38 - 2014-03-07 17:33 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-03-07 16:37 - 2014-03-07 16:37 - 12589848 _____ (Malwarebytes Corp.) C:\Users\Viktoria\Desktop\mbar-1.07.0.1009.exe
2014-03-07 16:00 - 2014-03-07 16:12 - 00000000 ___SD () C:\ComboFix
2014-03-07 14:43 - 2014-03-07 14:43 - 00000000 ____D () C:\Qoobox
2014-03-07 14:43 - 2011-06-26 07:45 - 00256000 _____ () C:\Windows\PEV.exe
2014-03-07 14:43 - 2010-11-07 18:20 - 00208896 _____ () C:\Windows\MBR.exe
2014-03-07 14:43 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2014-03-07 14:43 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2014-03-07 14:43 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2014-03-07 14:43 - 2000-08-31 01:00 - 00098816 _____ () C:\Windows\sed.exe
2014-03-07 14:43 - 2000-08-31 01:00 - 00080412 _____ () C:\Windows\grep.exe
2014-03-07 14:43 - 2000-08-31 01:00 - 00068096 _____ () C:\Windows\zip.exe
2014-03-07 14:42 - 2014-03-07 14:42 - 00000000 ____D () C:\Windows\erdnt
2014-03-07 12:24 - 2014-03-07 12:26 - 00020211 _____ () C:\Users\Viktoria\Downloads\Addition.txt
2014-03-07 12:22 - 2014-03-15 11:31 - 00000000 ____D () C:\FRST
2014-03-07 12:22 - 2014-03-07 12:26 - 00097154 _____ () C:\Users\Viktoria\Downloads\FRST.txt
2014-03-07 12:22 - 2014-03-07 12:22 - 02156544 _____ (Farbar) C:\Users\Viktoria\Downloads\FRST64.exe
2014-03-06 23:50 - 2013-12-21 10:53 - 00548864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-03-06 23:50 - 2013-12-21 09:56 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-03-06 23:48 - 2014-02-06 13:16 - 23170048 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-03-06 23:48 - 2014-02-06 12:30 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-03-06 23:48 - 2014-02-06 12:30 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-03-06 23:48 - 2014-02-06 12:12 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-03-06 23:48 - 2014-02-06 12:07 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-03-06 23:48 - 2014-02-06 12:06 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-03-06 23:48 - 2014-02-06 11:57 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-03-06 23:48 - 2014-02-06 11:56 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-03-06 23:48 - 2014-02-06 11:52 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-03-06 23:48 - 2014-02-06 11:49 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-03-06 23:48 - 2014-02-06 11:48 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-03-06 23:48 - 2014-02-06 11:48 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-03-06 23:48 - 2014-02-06 11:38 - 17103872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-03-06 23:48 - 2014-02-06 11:32 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-03-06 23:48 - 2014-02-06 11:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-03-06 23:48 - 2014-02-06 11:17 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-03-06 23:48 - 2014-02-06 11:11 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-03-06 23:48 - 2014-02-06 11:01 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-03-06 23:48 - 2014-02-06 11:00 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-03-06 23:48 - 2014-02-06 10:57 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-03-06 23:48 - 2014-02-06 10:57 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-03-06 23:48 - 2014-02-06 10:52 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-03-06 23:48 - 2014-02-06 10:52 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-03-06 23:48 - 2014-02-06 10:50 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-03-06 23:48 - 2014-02-06 10:49 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-03-06 23:48 - 2014-02-06 10:47 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-03-06 23:48 - 2014-02-06 10:46 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-03-06 23:48 - 2014-02-06 10:25 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-03-06 23:48 - 2014-02-06 10:25 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-03-06 23:48 - 2014-02-06 10:24 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-03-06 23:48 - 2014-02-06 10:22 - 13051392 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-03-06 23:48 - 2014-02-06 10:13 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-03-06 23:48 - 2014-02-06 10:09 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-03-06 23:48 - 2014-02-06 10:03 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-03-06 23:48 - 2014-02-06 09:55 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-03-06 23:48 - 2014-02-06 09:41 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-03-06 23:48 - 2014-02-06 09:40 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-03-06 23:48 - 2014-02-06 09:36 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-03-06 23:48 - 2014-02-06 09:34 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-03-06 22:20 - 2014-03-06 22:20 - 00862624 _____ (AirInstaller ) C:\Users\Viktoria\Downloads\setup.exe
2014-03-06 22:07 - 2014-03-06 22:07 - 00000000 ____D () C:\Users\Viktoria\AppData\Roaming\vlc
2014-03-06 22:04 - 2014-03-06 22:04 - 00000882 _____ () C:\Users\Public\Desktop\VLC media player.lnk
2014-03-06 22:04 - 2014-03-06 22:04 - 00000000 ____D () C:\Program Files\VideoLAN
2014-03-06 22:03 - 2014-03-06 22:03 - 25035644 _____ () C:\Users\Viktoria\Downloads\vlc2.1.3win64.exe
2014-03-06 22:02 - 2014-03-06 22:02 - 00001121 _____ () C:\Users\Viktoria\Desktop\Bilder - Verknüpfung.lnk
2014-03-06 22:02 - 2014-03-06 22:02 - 00000355 _____ () C:\Users\Viktoria\Desktop\Netzwerk - Verknüpfung.lnk
2014-03-06 22:02 - 2014-03-06 22:02 - 00000355 _____ () C:\Users\Viktoria\Desktop\Computer - Verknüpfung.lnk
2014-03-06 22:01 - 2014-03-06 22:01 - 00000878 _____ () C:\Users\Viktoria\Desktop\Downloads.lnk
2014-03-06 22:00 - 2014-03-06 22:00 - 00607192 _____ () C:\Users\Viktoria\Downloads\vlc media player setup.exe
2014-03-05 11:52 - 2013-10-14 18:00 - 00028368 _____ (Microsoft Corporation) C:\Windows\system32\IEUDINIT.EXE
2014-03-05 11:45 - 2014-03-05 11:45 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-03-05 11:45 - 2014-03-05 11:45 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2014-03-05 11:45 - 2014-03-05 11:45 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2014-03-05 11:45 - 2014-03-05 11:45 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-03-05 11:45 - 2014-03-05 11:45 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-03-05 11:45 - 2014-03-05 11:45 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-03-05 11:45 - 2014-03-05 11:45 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2014-03-05 11:45 - 2014-03-05 11:45 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-03-05 11:45 - 2014-03-05 11:45 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2014-03-05 11:45 - 2014-03-05 11:45 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2014-03-05 11:45 - 2014-03-05 11:45 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2014-03-05 11:45 - 2014-03-05 11:45 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-03-05 11:45 - 2014-03-05 11:45 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2014-03-05 11:45 - 2014-03-05 11:45 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2014-03-05 11:45 - 2014-03-05 11:45 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2014-03-05 11:45 - 2014-03-05 11:45 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-03-05 11:45 - 2014-03-05 11:45 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2014-03-05 11:45 - 2014-03-05 11:45 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-03-05 11:45 - 2014-03-05 11:45 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2014-03-05 11:42 - 2014-03-05 11:42 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-03-05 11:42 - 2014-03-05 11:42 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2014-03-05 11:42 - 2014-03-05 11:42 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2014-03-05 11:42 - 2014-03-05 11:42 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2014-03-05 11:42 - 2014-03-05 11:42 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2014-03-05 11:42 - 2014-03-05 11:42 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2014-03-05 11:42 - 2014-03-05 11:42 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2014-03-05 11:42 - 2014-03-05 11:42 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2014-03-05 11:42 - 2014-03-05 11:42 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2014-03-05 11:42 - 2014-03-05 11:42 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2014-03-05 11:42 - 2014-03-05 11:42 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2014-03-05 11:42 - 2014-03-05 11:42 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2014-03-05 11:42 - 2014-03-05 11:42 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2014-03-05 11:42 - 2014-03-05 11:42 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2014-03-05 11:42 - 2014-03-05 11:42 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2014-03-05 11:41 - 2014-03-05 11:41 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2014-03-05 11:41 - 2014-03-05 11:41 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2014-03-05 11:41 - 2014-03-05 11:41 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2014-03-05 11:41 - 2014-03-05 11:41 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2014-03-05 11:41 - 2014-03-05 11:41 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2014-03-05 11:40 - 2014-03-05 11:52 - 00011574 _____ () C:\Windows\IE11_main.log
2014-03-04 20:48 - 2010-02-23 09:16 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\browserchoice.exe
2014-03-01 15:54 - 2014-03-01 15:54 - 00000000 ____D () C:\Users\Viktoria\AppData\Roaming\Apple Computer
2014-03-01 15:54 - 2014-03-01 15:54 - 00000000 ____D () C:\Users\Viktoria\AppData\Local\Apple Computer
2014-03-01 15:53 - 2014-03-01 15:53 - 00001794 _____ () C:\Users\Public\Desktop\iTunes.lnk
2014-03-01 15:53 - 2013-07-04 13:50 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll
2014-03-01 15:53 - 2013-07-04 12:50 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll
2014-03-01 15:53 - 2012-08-21 13:01 - 00033240 _____ (GEAR Software Inc.) C:\Windows\system32\Drivers\GEARAspiWDM.sys
2014-03-01 15:52 - 2014-03-01 15:53 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-03-01 15:52 - 2014-03-01 15:53 - 00000000 ____D () C:\Program Files\iTunes
2014-03-01 15:52 - 2014-03-01 15:53 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-03-01 15:52 - 2014-03-01 15:52 - 00000000 ____D () C:\ProgramData\Apple Computer
2014-03-01 15:52 - 2014-03-01 15:52 - 00000000 ____D () C:\Program Files\iPod
2014-03-01 15:52 - 2013-07-09 06:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2014-03-01 15:52 - 2013-07-09 05:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2014-03-01 15:52 - 2011-04-09 07:58 - 00142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2014-03-01 15:52 - 2011-04-09 06:56 - 00123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2014-03-01 15:51 - 2013-02-27 07:02 - 00111448 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2014-03-01 15:51 - 2013-02-27 06:48 - 01930752 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2014-03-01 15:51 - 2013-02-27 06:47 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2014-03-01 15:51 - 2013-02-27 05:49 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2014-03-01 15:51 - 2011-11-17 07:35 - 00395776 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2014-03-01 15:51 - 2011-11-17 06:35 - 00314880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll
2014-03-01 15:50 - 2013-11-12 03:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-03-01 15:50 - 2013-11-12 03:07 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-03-01 15:50 - 2013-10-19 03:18 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\imagehlp.dll
2014-03-01 15:50 - 2013-10-19 02:36 - 00159232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imagehlp.dll
2014-03-01 15:50 - 2013-10-05 21:25 - 01474048 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2014-03-01 15:50 - 2013-10-05 20:57 - 01168384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2014-03-01 15:50 - 2013-07-09 06:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2014-03-01 15:50 - 2013-07-09 06:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2014-03-01 15:50 - 2013-07-09 05:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2014-03-01 15:50 - 2013-07-09 05:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2014-03-01 15:49 - 2013-12-06 03:30 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-03-01 15:49 - 2013-12-06 03:02 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-03-01 15:49 - 2013-12-06 03:02 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-03-01 15:48 - 2013-12-06 03:30 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-03-01 15:47 - 2013-10-04 03:16 - 00116736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\drmk.sys
2014-03-01 15:47 - 2013-10-04 02:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\portcls.sys
2014-03-01 15:47 - 2013-09-28 02:09 - 00497152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\afd.sys
2014-03-01 15:46 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2014-03-01 15:46 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2014-03-01 15:46 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2014-03-01 15:46 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2014-03-01 15:46 - 2013-11-27 02:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2014-03-01 15:46 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2014-03-01 15:46 - 2013-09-25 03:26 - 00154560 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-03-01 15:46 - 2013-09-25 03:26 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2014-03-01 15:46 - 2013-09-25 03:23 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2014-03-01 15:46 - 2013-09-25 03:23 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2014-03-01 15:46 - 2013-09-25 03:23 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2014-03-01 15:46 - 2013-09-25 03:22 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-03-01 15:46 - 2013-09-25 03:21 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-03-01 15:46 - 2013-09-25 03:21 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-03-01 15:46 - 2013-09-25 02:58 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-03-01 15:46 - 2013-09-25 02:57 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-03-01 15:46 - 2013-09-25 02:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-03-01 15:46 - 2013-09-25 02:56 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2014-03-01 15:46 - 2013-09-25 02:03 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2014-03-01 15:46 - 2013-07-04 13:18 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2014-03-01 15:46 - 2013-06-06 06:50 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2014-03-01 15:46 - 2013-06-06 06:49 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2014-03-01 15:46 - 2013-06-06 06:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2014-03-01 15:46 - 2013-06-06 06:47 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2014-03-01 15:46 - 2013-06-06 05:57 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2014-03-01 15:46 - 2013-06-06 05:51 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2014-03-01 15:46 - 2013-06-06 05:50 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2014-03-01 15:46 - 2013-06-06 04:30 - 00368128 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2014-03-01 15:46 - 2013-06-06 04:01 - 00295424 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2014-03-01 15:46 - 2013-06-06 04:01 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2014-03-01 15:45 - 2013-08-02 03:14 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2014-03-01 15:45 - 2013-08-02 03:13 - 01161216 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2014-03-01 15:45 - 2013-08-02 03:13 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2014-03-01 15:45 - 2013-08-02 03:12 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2014-03-01 15:45 - 2013-08-02 03:12 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2014-03-01 15:45 - 2013-08-02 03:12 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 03:12 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 03:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 03:12 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 03:12 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 03:12 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 03:12 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 02:50 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2014-03-01 15:45 - 2013-08-02 02:50 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2014-03-01 15:45 - 2013-08-02 02:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2014-03-01 15:45 - 2013-08-02 02:48 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 02:48 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 02:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2014-03-01 15:45 - 2013-08-02 01:59 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2014-03-01 15:45 - 2013-08-02 01:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 01:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 01:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2014-03-01 15:45 - 2013-08-02 01:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2014-03-01 15:45 - 2013-07-25 10:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2014-03-01 15:45 - 2013-07-25 09:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2014-03-01 15:45 - 2013-07-12 11:41 - 00185344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbvideo.sys
2014-03-01 15:45 - 2013-07-12 11:41 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbcir.sys
2014-03-01 15:45 - 2013-07-09 06:51 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2014-03-01 15:45 - 2013-07-09 05:52 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2014-03-01 15:45 - 2013-07-03 05:05 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2014-03-01 15:45 - 2013-07-03 05:05 - 00032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2014-03-01 15:45 - 2013-06-25 23:55 - 00785624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Wdf01000.sys
2014-03-01 15:45 - 2013-06-04 07:00 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2014-03-01 15:45 - 2013-06-04 05:53 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2014-03-01 15:45 - 2012-11-28 23:56 - 00054376 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfLdr.sys
2014-03-01 15:45 - 2012-11-28 23:56 - 00009728 _____ (Microsoft Corporation) C:\Windows\system32\Wdfres.dll
2014-03-01 15:45 - 2012-11-28 23:56 - 00000003 _____ () C:\Windows\system32\Drivers\MsftWdf_Kernel_01011_Inbox_Critical.Wdf
2014-03-01 15:43 - 2013-12-25 00:09 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2014-03-01 15:43 - 2013-12-24 23:48 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2014-03-01 15:43 - 2013-11-26 09:16 - 03419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2014-03-01 15:43 - 2013-11-22 23:48 - 03928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2014-03-01 15:43 - 2013-06-15 05:32 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2014-03-01 15:41 - 2013-11-26 11:32 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-03-01 15:40 - 2013-07-26 03:24 - 14172672 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-03-01 15:40 - 2013-07-26 03:24 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll
2014-03-01 15:40 - 2013-07-26 02:55 - 12872704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2014-03-01 15:40 - 2013-07-26 02:55 - 00180224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shdocvw.dll
2014-03-01 15:40 - 2013-04-26 06:51 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2014-03-01 15:40 - 2013-04-26 05:55 - 00492544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll
2014-03-01 15:39 - 2014-03-01 15:39 - 00000000 ____D () C:\Users\Viktoria\AppData\Local\Apple
2014-03-01 15:39 - 2014-03-01 15:39 - 00000000 ____D () C:\Program Files (x86)\Apple Software Update
2014-03-01 15:39 - 2013-10-12 03:32 - 00150016 _____ (Microsoft Corporation) C:\Windows\system32\wshom.ocx
2014-03-01 15:39 - 2013-10-12 03:31 - 00202752 _____ (Microsoft Corporation) C:\Windows\system32\scrrun.dll
2014-03-01 15:39 - 2013-10-12 03:04 - 00121856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshom.ocx
2014-03-01 15:39 - 2013-10-12 03:03 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrrun.dll
2014-03-01 15:39 - 2013-10-12 02:33 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\wscript.exe
2014-03-01 15:39 - 2013-10-12 02:33 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\cscript.exe
2014-03-01 15:39 - 2013-10-12 02:15 - 00141824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscript.exe
2014-03-01 15:39 - 2013-10-12 02:15 - 00126976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscript.exe
2014-03-01 15:39 - 2013-10-03 03:23 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2014-03-01 15:39 - 2013-10-03 03:00 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2014-03-01 15:39 - 2013-07-20 11:33 - 00124112 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll
2014-03-01 15:39 - 2013-07-20 11:33 - 00102608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-03-01 15:39 - 2013-05-13 06:50 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\certenc.dll
2014-03-01 15:39 - 2013-05-13 04:43 - 01192448 _____ (Microsoft Corporation) C:\Windows\system32\certutil.exe
2014-03-01 15:39 - 2013-05-13 04:08 - 00903168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe
2014-03-01 15:39 - 2013-05-13 04:08 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll
2014-03-01 15:38 - 2014-03-01 15:38 - 00000000 ____D () C:\Program Files\Common Files\Apple
2014-03-01 15:38 - 2013-08-01 13:09 - 00983488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2014-03-01 15:38 - 2013-04-10 07:01 - 00265064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2014-03-01 15:38 - 2013-04-10 00:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2014-03-01 15:38 - 2013-04-02 23:51 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2014-03-01 15:38 - 2011-02-23 05:55 - 00090624 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bowser.sys
2014-03-01 15:38 - 2011-02-03 12:25 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2014-03-01 15:37 - 2014-03-01 15:37 - 00000000 ____D () C:\Program Files\Bonjour
2014-03-01 15:37 - 2014-03-01 15:37 - 00000000 ____D () C:\Program Files (x86)\Bonjour
2014-03-01 15:37 - 2013-10-12 03:30 - 00830464 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2014-03-01 15:37 - 2013-10-12 03:29 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2014-03-01 15:37 - 2013-10-12 03:29 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2014-03-01 15:37 - 2013-10-12 03:03 - 00656896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2014-03-01 15:37 - 2013-10-12 03:01 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2014-03-01 15:36 - 2014-03-01 15:38 - 00000000 ____D () C:\ProgramData\Apple
2014-03-01 15:27 - 2014-03-01 15:29 - 148885840 _____ (Apple Inc.) C:\Users\Viktoria\Downloads\iTunes64Setup.exe
2014-03-01 15:27 - 2014-03-01 15:29 - 148885840 _____ (Apple Inc.) C:\Users\Viktoria\Downloads\iTunes64Setup(1).exe
2014-03-01 15:16 - 2014-03-01 15:16 - 00000000 ____D () C:\Users\Viktoria\AppData\Roaming\Panda Security
2014-03-01 15:16 - 2013-04-29 08:17 - 00058808 _____ (Panda Security, S.L.) C:\Windows\system32\Drivers\PSKMAD.sys
2014-03-01 15:15 - 2014-03-01 15:15 - 00000000 ____D () C:\Users\Viktoria\AppData\Local\Macromedia
2014-03-01 15:14 - 2014-03-01 15:14 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-03-01 15:14 - 2014-03-01 15:14 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-03-01 15:14 - 2014-03-01 15:14 - 00000000 ____D () C:\Windows\SysWOW64\Macromed
2014-03-01 15:14 - 2014-03-01 15:14 - 00000000 ____D () C:\Windows\system32\Macromed
2014-03-01 15:14 - 2014-03-01 15:14 - 00000000 ____D () C:\ProgramData\Panda Security
2014-03-01 15:14 - 2014-03-01 15:14 - 00000000 ____D () C:\ProgramData\McAfee
2014-03-01 15:14 - 2014-03-01 15:14 - 00000000 ____D () C:\Program Files (x86)\Panda Security
2014-03-01 15:11 - 2014-03-01 15:11 - 00846288 _____ () C:\Users\Viktoria\Downloads\PandaCloudAntivirus.exe
2014-02-22 19:00 - 2014-02-22 19:02 - 137699664 _____ (Apple Inc.) C:\Users\Viktoria\Downloads\iTunesSetup(1).exe
2014-02-22 18:54 - 2014-02-22 18:59 - 137699664 _____ (Apple Inc.) C:\Users\Viktoria\Downloads\iTunesSetup.exe
2014-02-22 18:49 - 2014-03-01 15:07 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-02-22 18:49 - 2014-02-22 18:49 - 00001158 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-02-22 18:49 - 2014-02-22 18:49 - 00000000 ____D () C:\Users\Viktoria\AppData\Roaming\Mozilla
2014-02-22 18:49 - 2014-02-22 18:49 - 00000000 ____D () C:\Users\Viktoria\AppData\Local\Mozilla
2014-02-22 18:49 - 2014-02-22 18:49 - 00000000 ____D () C:\ProgramData\Mozilla
2014-02-22 18:49 - 2014-02-22 18:49 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-02-22 18:02 - 2014-02-22 18:02 - 00000000 ____D () C:\Users\Viktoria\AppData\Roaming\PwrMgr
2014-02-22 17:38 - 2012-07-25 12:03 - 00016896 _____ () C:\Windows\system32\sasnative64.exe
2014-02-22 17:29 - 2014-02-22 17:30 - 00000000 ____D () C:\ldiag
2014-02-22 17:29 - 2012-02-17 07:38 - 01031680 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2014-02-22 17:29 - 2012-02-17 06:34 - 00826880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2014-02-22 17:29 - 2012-02-17 05:57 - 00023552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdtcp.sys
2014-02-22 17:27 - 2014-03-01 15:15 - 00000000 ____D () C:\Users\Viktoria\AppData\Local\Adobe
2014-02-22 17:26 - 2014-02-22 17:26 - 00000000 ____D () C:\Users\Viktoria\AppData\Roaming\LSC
2014-02-22 17:24 - 2014-02-22 17:24 - 00000000 ____D () C:\Users\Viktoria\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AMD VISION Engine Control Center
2014-02-22 17:24 - 2014-02-22 17:24 - 00000000 ____D () C:\Users\Viktoria\AppData\Roaming\ATI
2014-02-22 17:24 - 2014-02-22 17:24 - 00000000 ____D () C:\Users\Viktoria\AppData\Local\ATI
2014-02-22 17:24 - 2014-02-22 17:24 - 00000000 ____D () C:\Users\Viktoria\AppData\Local\AMD
2014-02-22 17:23 - 2014-03-05 17:32 - 00001432 _____ () C:\Users\Viktoria\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-02-22 17:23 - 2014-03-01 15:15 - 00058016 _____ () C:\Users\Viktoria\AppData\Local\GDIPFONTCACHEV1.DAT
2014-02-22 17:23 - 2014-02-22 17:26 - 00000000 ____D () C:\Users\Viktoria\AppData\Roaming\Adobe
2014-02-22 17:23 - 2014-02-22 17:23 - 00000000 ____D () C:\Users\Viktoria\Documents\Bluetooth-Exchange-Ordner
2014-02-22 17:23 - 2014-02-22 17:23 - 00000000 ____D () C:\Users\Viktoria\AppData\Roaming\Lenovo
2014-02-22 17:23 - 2014-02-22 17:23 - 00000000 ____D () C:\Users\Viktoria\AppData\Roaming\Leadertech
2014-02-22 17:23 - 2014-02-22 17:23 - 00000000 ____D () C:\Users\Viktoria\AppData\Local\Lenovo
2014-02-22 17:23 - 2014-02-22 17:23 - 00000000 ____D () C:\Users\Viktoria\AppData\Local\Broadcom
2014-02-22 17:22 - 2014-03-04 23:23 - 00000000 ___RD () C:\Users\Viktoria\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-02-22 17:22 - 2014-03-04 23:23 - 00000000 ___RD () C:\Users\Viktoria\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-02-22 17:22 - 2014-02-22 17:22 - 00000000 ____D () C:\Users\Viktoria\AppData\Local\VirtualStore
2014-02-22 17:20 - 2012-06-02 23:19 - 02428952 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2014-02-22 17:20 - 2012-06-02 23:19 - 00701976 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2014-02-22 17:20 - 2012-06-02 23:19 - 00057880 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2014-02-22 17:20 - 2012-06-02 23:19 - 00044056 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2014-02-22 17:20 - 2012-06-02 23:19 - 00038424 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2014-02-22 17:20 - 2012-06-02 23:15 - 02622464 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2014-02-22 17:20 - 2012-06-02 23:15 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2014-02-22 17:19 - 2014-03-07 10:01 - 00009694 _____ () C:\Users\Viktoria\AppData\Roaming\AbsoluteReminder.xml
2014-02-22 17:19 - 2014-02-22 17:19 - 00000000 ____D () C:\Users\Viktoria\AppData\Local\AuthenTec
2014-02-22 17:19 - 2014-02-22 17:19 - 00000000 ____D () C:\Users\Viktoria\AppData\Local\Absolute_Software
2014-02-22 17:19 - 2012-06-02 15:19 - 00186752 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2014-02-22 17:19 - 2012-06-02 15:15 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2014-02-22 17:18 - 2014-02-22 17:22 - 00000000 ____D () C:\Users\Viktoria
2014-02-22 17:18 - 2014-02-22 17:18 - 00000020 ___SH () C:\Users\Viktoria\ntuser.ini
2014-02-22 17:18 - 2014-02-22 17:18 - 00000000 _SHDL () C:\Users\Viktoria\Vorlagen
2014-02-22 17:18 - 2014-02-22 17:18 - 00000000 _SHDL () C:\Users\Viktoria\Startmenü
2014-02-22 17:18 - 2014-02-22 17:18 - 00000000 _SHDL () C:\Users\Viktoria\Netzwerkumgebung
2014-02-22 17:18 - 2014-02-22 17:18 - 00000000 _SHDL () C:\Users\Viktoria\Lokale Einstellungen
2014-02-22 17:18 - 2014-02-22 17:18 - 00000000 _SHDL () C:\Users\Viktoria\Eigene Dateien
2014-02-22 17:18 - 2014-02-22 17:18 - 00000000 _SHDL () C:\Users\Viktoria\Druckumgebung
2014-02-22 17:18 - 2014-02-22 17:18 - 00000000 _SHDL () C:\Users\Viktoria\Documents\Eigene Musik
2014-02-22 17:18 - 2014-02-22 17:18 - 00000000 _SHDL () C:\Users\Viktoria\Documents\Eigene Bilder
2014-02-22 17:18 - 2014-02-22 17:18 - 00000000 _SHDL () C:\Users\Viktoria\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-02-22 17:18 - 2014-02-22 17:18 - 00000000 _SHDL () C:\Users\Viktoria\AppData\Local\Verlauf
2014-02-22 17:18 - 2014-02-22 17:18 - 00000000 _SHDL () C:\Users\Viktoria\AppData\Local\Anwendungsdaten
2014-02-22 17:18 - 2014-02-22 17:18 - 00000000 _SHDL () C:\Users\Viktoria\Anwendungsdaten
2014-02-22 17:18 - 2014-02-22 17:18 - 00000000 _____ () C:\Windows\firstboot.dat
2014-02-22 17:18 - 2013-11-03 09:26 - 00000000 ____D () C:\Users\Viktoria\AppData\Roaming\Macromedia
2014-02-22 17:18 - 2009-07-14 05:54 - 00000000 ___RD () C:\Users\Viktoria\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-02-22 17:18 - 2009-07-14 05:49 - 00000000 ___RD () C:\Users\Viktoria\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Default\Vorlagen
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Default\Startmenü
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Default\Druckumgebung
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Programme
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\ProgramData\Vorlagen
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\ProgramData\Startmenü
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\ProgramData\Favoriten
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\ProgramData\Dokumente
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Dokumente und Einstellungen
==================== One Month Modified Files and Folders =======
2014-03-15 11:31 - 2014-03-15 11:31 - 00014418 _____ () C:\Users\Viktoria\Desktop\FRST.txt
2014-03-15 11:31 - 2014-03-07 12:22 - 00000000 ____D () C:\FRST
2014-03-15 11:30 - 2014-03-15 11:30 - 02157056 _____ (Farbar) C:\Users\Viktoria\Desktop\FRST64(1).exe
2014-03-15 11:25 - 2014-03-15 11:25 - 00002114 _____ () C:\Users\Viktoria\Desktop\JRT.txt
2014-03-15 11:05 - 2009-07-14 05:45 - 00034208 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-03-15 11:05 - 2009-07-14 05:45 - 00034208 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-03-15 11:04 - 2014-03-15 11:04 - 00000000 ____D () C:\Windows\ERUNT
2014-03-15 11:04 - 2013-11-03 17:27 - 00726454 _____ () C:\Windows\system32\perfh007.dat
2014-03-15 11:04 - 2013-11-03 17:27 - 00157606 _____ () C:\Windows\system32\perfc007.dat
2014-03-15 11:04 - 2009-07-14 06:13 - 00006248 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-03-15 11:03 - 2014-03-15 11:03 - 01037734 _____ (Thisisu) C:\Users\Viktoria\Downloads\JRT.exe
2014-03-15 11:01 - 2013-11-03 08:58 - 01633634 _____ () C:\Windows\WindowsUpdate.log
2014-03-15 10:57 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-03-15 10:57 - 2009-07-14 05:51 - 00045583 _____ () C:\Windows\setupact.log
2014-03-15 10:56 - 2014-03-15 10:36 - 00000000 ____D () C:\AdwCleaner
2014-03-15 10:43 - 2013-11-03 09:26 - 00000000 ____D () C:\Windows\System32\Tasks\Lenovo
2014-03-15 10:36 - 2014-03-15 10:35 - 01950720 _____ () C:\Users\Viktoria\Downloads\adwcleaner.exe
2014-03-07 18:28 - 2014-03-07 16:38 - 00000000 ____D () C:\Users\Viktoria\Desktop\mbar
2014-03-07 17:40 - 2014-03-07 16:39 - 00119000 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-03-07 17:33 - 2014-03-07 16:38 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-03-07 17:31 - 2010-11-21 04:47 - 00430128 _____ () C:\Windows\PFRO.log
2014-03-07 17:30 - 2009-07-14 06:32 - 00000000 ____D () C:\Windows\addins
2014-03-07 16:39 - 2014-03-07 16:39 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-03-07 16:37 - 2014-03-07 16:37 - 12589848 _____ (Malwarebytes Corp.) C:\Users\Viktoria\Desktop\mbar-1.07.0.1009.exe
2014-03-07 16:12 - 2014-03-07 16:00 - 00000000 ___SD () C:\ComboFix
2014-03-07 14:43 - 2014-03-07 14:43 - 00000000 ____D () C:\Qoobox
2014-03-07 14:42 - 2014-03-07 14:42 - 00000000 ____D () C:\Windows\erdnt
2014-03-07 12:26 - 2014-03-07 12:24 - 00020211 _____ () C:\Users\Viktoria\Downloads\Addition.txt
2014-03-07 12:26 - 2014-03-07 12:22 - 00097154 _____ () C:\Users\Viktoria\Downloads\FRST.txt
2014-03-07 12:22 - 2014-03-07 12:22 - 02156544 _____ (Farbar) C:\Users\Viktoria\Downloads\FRST64.exe
2014-03-07 10:01 - 2014-02-22 17:19 - 00009694 _____ () C:\Users\Viktoria\AppData\Roaming\AbsoluteReminder.xml
2014-03-06 22:20 - 2014-03-06 22:20 - 00862624 _____ (AirInstaller ) C:\Users\Viktoria\Downloads\setup.exe
2014-03-06 22:07 - 2014-03-06 22:07 - 00000000 ____D () C:\Users\Viktoria\AppData\Roaming\vlc
2014-03-06 22:04 - 2014-03-06 22:04 - 00000882 _____ () C:\Users\Public\Desktop\VLC media player.lnk
2014-03-06 22:04 - 2014-03-06 22:04 - 00000000 ____D () C:\Program Files\VideoLAN
2014-03-06 22:03 - 2014-03-06 22:03 - 25035644 _____ () C:\Users\Viktoria\Downloads\vlc2.1.3win64.exe
2014-03-06 22:02 - 2014-03-06 22:02 - 00001121 _____ () C:\Users\Viktoria\Desktop\Bilder - Verknüpfung.lnk
2014-03-06 22:02 - 2014-03-06 22:02 - 00000355 _____ () C:\Users\Viktoria\Desktop\Netzwerk - Verknüpfung.lnk
2014-03-06 22:02 - 2014-03-06 22:02 - 00000355 _____ () C:\Users\Viktoria\Desktop\Computer - Verknüpfung.lnk
2014-03-06 22:01 - 2014-03-06 22:01 - 00000878 _____ () C:\Users\Viktoria\Desktop\Downloads.lnk
2014-03-06 22:00 - 2014-03-06 22:00 - 00607192 _____ () C:\Users\Viktoria\Downloads\vlc media player setup.exe
2014-03-05 17:32 - 2014-02-22 17:23 - 00001432 _____ () C:\Users\Viktoria\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-03-05 17:28 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-03-05 11:52 - 2014-03-05 11:40 - 00011574 _____ () C:\Windows\IE11_main.log
2014-03-05 11:45 - 2014-03-05 11:45 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-03-05 11:45 - 2014-03-05 11:45 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2014-03-05 11:45 - 2014-03-05 11:45 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2014-03-05 11:45 - 2014-03-05 11:45 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-03-05 11:45 - 2014-03-05 11:45 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-03-05 11:45 - 2014-03-05 11:45 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00244736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-03-05 11:45 - 2014-03-05 11:45 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2014-03-05 11:45 - 2014-03-05 11:45 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-03-05 11:45 - 2014-03-05 11:45 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2014-03-05 11:45 - 2014-03-05 11:45 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2014-03-05 11:45 - 2014-03-05 11:45 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2014-03-05 11:45 - 2014-03-05 11:45 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-03-05 11:45 - 2014-03-05 11:45 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2014-03-05 11:45 - 2014-03-05 11:45 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2014-03-05 11:45 - 2014-03-05 11:45 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2014-03-05 11:45 - 2014-03-05 11:45 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00040448 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2014-03-05 11:45 - 2014-03-05 11:45 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-03-05 11:45 - 2014-03-05 11:45 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2014-03-05 11:45 - 2014-03-05 11:45 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-03-05 11:45 - 2014-03-05 11:45 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2014-03-05 11:42 - 2014-03-05 11:42 - 05549504 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-03-05 11:42 - 2014-03-05 11:42 - 03969472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2014-03-05 11:42 - 2014-03-05 11:42 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2014-03-05 11:42 - 2014-03-05 11:42 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2014-03-05 11:42 - 2014-03-05 11:42 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2014-03-05 11:42 - 2014-03-05 11:42 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2014-03-05 11:42 - 2014-03-05 11:42 - 00859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2014-03-05 11:42 - 2014-03-05 11:42 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2014-03-05 11:42 - 2014-03-05 11:42 - 00619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2014-03-05 11:42 - 2014-03-05 11:42 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2014-03-05 11:42 - 2014-03-05 11:42 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2014-03-05 11:42 - 2014-03-05 11:42 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2014-03-05 11:42 - 2014-03-05 11:42 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2014-03-05 11:42 - 2014-03-05 11:42 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2014-03-05 11:42 - 2014-03-05 11:42 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2014-03-05 11:41 - 2014-03-05 11:41 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2014-03-05 11:41 - 2014-03-05 11:41 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll
2014-03-05 11:41 - 2014-03-05 11:41 - 01505280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll
2014-03-05 11:41 - 2014-03-05 11:41 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2014-03-05 11:41 - 2014-03-05 11:41 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2014-03-04 23:23 - 2014-02-22 17:22 - 00000000 ___RD () C:\Users\Viktoria\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-03-04 23:23 - 2014-02-22 17:22 - 00000000 ___RD () C:\Users\Viktoria\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-03-04 22:11 - 2009-07-14 05:45 - 00318656 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-03-04 22:08 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\System
2014-03-04 22:07 - 2013-02-11 19:28 - 00000000 ____D () C:\Program Files\Windows Journal
2014-03-04 22:07 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files\Windows Defender
2014-03-04 22:07 - 2009-07-14 06:32 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2014-03-04 21:46 - 2013-11-03 09:18 - 01589650 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-03-04 17:30 - 2013-11-03 09:33 - 00000000 ____D () C:\ProgramData\Norton
2014-03-01 15:54 - 2014-03-01 15:54 - 00000000 ____D () C:\Users\Viktoria\AppData\Roaming\Apple Computer
2014-03-01 15:54 - 2014-03-01 15:54 - 00000000 ____D () C:\Users\Viktoria\AppData\Local\Apple Computer
2014-03-01 15:53 - 2014-03-01 15:53 - 00001794 _____ () C:\Users\Public\Desktop\iTunes.lnk
2014-03-01 15:53 - 2014-03-01 15:52 - 00000000 ____D () C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
2014-03-01 15:53 - 2014-03-01 15:52 - 00000000 ____D () C:\Program Files\iTunes
2014-03-01 15:53 - 2014-03-01 15:52 - 00000000 ____D () C:\Program Files (x86)\iTunes
2014-03-01 15:52 - 2014-03-01 15:52 - 00000000 ____D () C:\ProgramData\Apple Computer
2014-03-01 15:52 - 2014-03-01 15:52 - 00000000 ____D () C:\Program Files\iPod
2014-03-01 15:48 - 2013-11-03 01:10 - 00000000 ____D () C:\ProgramData\Lenovo
2014-03-01 15:39 - 2014-03-01 15:39 - 00000000 ____D () C:\Users\Viktoria\AppData\Local\Apple
2014-03-01 15:39 - 2014-03-01 15:39 - 00000000 ____D () C:\Program Files (x86)\Apple Software Update
2014-03-01 15:38 - 2014-03-01 15:38 - 00000000 ____D () C:\Program Files\Common Files\Apple
2014-03-01 15:38 - 2014-03-01 15:36 - 00000000 ____D () C:\ProgramData\Apple
2014-03-01 15:37 - 2014-03-01 15:37 - 00000000 ____D () C:\Program Files\Bonjour
2014-03-01 15:37 - 2014-03-01 15:37 - 00000000 ____D () C:\Program Files (x86)\Bonjour
2014-03-01 15:29 - 2014-03-01 15:27 - 148885840 _____ (Apple Inc.) C:\Users\Viktoria\Downloads\iTunes64Setup.exe
2014-03-01 15:29 - 2014-03-01 15:27 - 148885840 _____ (Apple Inc.) C:\Users\Viktoria\Downloads\iTunes64Setup(1).exe
2014-03-01 15:16 - 2014-03-01 15:16 - 00000000 ____D () C:\Users\Viktoria\AppData\Roaming\Panda Security
2014-03-01 15:15 - 2014-03-01 15:15 - 00000000 ____D () C:\Users\Viktoria\AppData\Local\Macromedia
2014-03-01 15:15 - 2014-02-22 17:27 - 00000000 ____D () C:\Users\Viktoria\AppData\Local\Adobe
2014-03-01 15:15 - 2014-02-22 17:23 - 00058016 _____ () C:\Users\Viktoria\AppData\Local\GDIPFONTCACHEV1.DAT
2014-03-01 15:14 - 2014-03-01 15:14 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-03-01 15:14 - 2014-03-01 15:14 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-03-01 15:14 - 2014-03-01 15:14 - 00000000 ____D () C:\Windows\SysWOW64\Macromed
2014-03-01 15:14 - 2014-03-01 15:14 - 00000000 ____D () C:\Windows\system32\Macromed
2014-03-01 15:14 - 2014-03-01 15:14 - 00000000 ____D () C:\ProgramData\Panda Security
2014-03-01 15:14 - 2014-03-01 15:14 - 00000000 ____D () C:\ProgramData\McAfee
2014-03-01 15:14 - 2014-03-01 15:14 - 00000000 ____D () C:\Program Files (x86)\Panda Security
2014-03-01 15:11 - 2014-03-01 15:11 - 00846288 _____ () C:\Users\Viktoria\Downloads\PandaCloudAntivirus.exe
2014-03-01 15:07 - 2014-02-22 18:49 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-02-23 00:16 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2014-02-22 19:02 - 2014-02-22 19:00 - 137699664 _____ (Apple Inc.) C:\Users\Viktoria\Downloads\iTunesSetup(1).exe
2014-02-22 18:59 - 2014-02-22 18:54 - 137699664 _____ (Apple Inc.) C:\Users\Viktoria\Downloads\iTunesSetup.exe
2014-02-22 18:58 - 2013-11-03 09:26 - 00000000 ____D () C:\Program Files (x86)\Adobe
2014-02-22 18:49 - 2014-02-22 18:49 - 00001158 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-02-22 18:49 - 2014-02-22 18:49 - 00000000 ____D () C:\Users\Viktoria\AppData\Roaming\Mozilla
2014-02-22 18:49 - 2014-02-22 18:49 - 00000000 ____D () C:\Users\Viktoria\AppData\Local\Mozilla
2014-02-22 18:49 - 2014-02-22 18:49 - 00000000 ____D () C:\ProgramData\Mozilla
2014-02-22 18:49 - 2014-02-22 18:49 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-02-22 18:02 - 2014-02-22 18:02 - 00000000 ____D () C:\Users\Viktoria\AppData\Roaming\PwrMgr
2014-02-22 17:30 - 2014-02-22 17:29 - 00000000 ____D () C:\ldiag
2014-02-22 17:28 - 2013-11-03 09:10 - 00000000 ____D () C:\Program Files (x86)\Lenovo
2014-02-22 17:27 - 2013-11-03 09:36 - 00000000 ____D () C:\Windows\System32\Tasks\TVT
2014-02-22 17:26 - 2014-02-22 17:26 - 00000000 ____D () C:\Users\Viktoria\AppData\Roaming\LSC
2014-02-22 17:26 - 2014-02-22 17:23 - 00000000 ____D () C:\Users\Viktoria\AppData\Roaming\Adobe
2014-02-22 17:24 - 2014-02-22 17:24 - 00000000 ____D () C:\Users\Viktoria\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\AMD VISION Engine Control Center
2014-02-22 17:24 - 2014-02-22 17:24 - 00000000 ____D () C:\Users\Viktoria\AppData\Roaming\ATI
2014-02-22 17:24 - 2014-02-22 17:24 - 00000000 ____D () C:\Users\Viktoria\AppData\Local\ATI
2014-02-22 17:24 - 2014-02-22 17:24 - 00000000 ____D () C:\Users\Viktoria\AppData\Local\AMD
2014-02-22 17:23 - 2014-02-22 17:23 - 00000000 ____D () C:\Users\Viktoria\Documents\Bluetooth-Exchange-Ordner
2014-02-22 17:23 - 2014-02-22 17:23 - 00000000 ____D () C:\Users\Viktoria\AppData\Roaming\Lenovo
2014-02-22 17:23 - 2014-02-22 17:23 - 00000000 ____D () C:\Users\Viktoria\AppData\Roaming\Leadertech
2014-02-22 17:23 - 2014-02-22 17:23 - 00000000 ____D () C:\Users\Viktoria\AppData\Local\Lenovo
2014-02-22 17:23 - 2014-02-22 17:23 - 00000000 ____D () C:\Users\Viktoria\AppData\Local\Broadcom
2014-02-22 17:22 - 2014-02-22 17:22 - 00000000 ____D () C:\Users\Viktoria\AppData\Local\VirtualStore
2014-02-22 17:22 - 2014-02-22 17:18 - 00000000 ____D () C:\Users\Viktoria
2014-02-22 17:22 - 2013-11-03 09:28 - 00000000 ____D () C:\swshare
2014-02-22 17:20 - 2013-11-03 09:06 - 00000042 _____ () C:\Windows\SysWOW64\Drivers\17AA_Lenovo_ThinkPad_Edge_E335_3355_6YG.MRK
2014-02-22 17:20 - 2012-10-01 20:26 - 00000000 ____D () C:\Windows\Panther
2014-02-22 17:20 - 2012-10-01 20:26 - 00000000 ____D () C:\SWTOOLS
2014-02-22 17:19 - 2014-02-22 17:19 - 00000000 ____D () C:\Users\Viktoria\AppData\Local\AuthenTec
2014-02-22 17:19 - 2014-02-22 17:19 - 00000000 ____D () C:\Users\Viktoria\AppData\Local\Absolute_Software
2014-02-22 17:18 - 2014-02-22 17:18 - 00000020 ___SH () C:\Users\Viktoria\ntuser.ini
2014-02-22 17:18 - 2014-02-22 17:18 - 00000000 _SHDL () C:\Users\Viktoria\Vorlagen
2014-02-22 17:18 - 2014-02-22 17:18 - 00000000 _SHDL () C:\Users\Viktoria\Startmenü
2014-02-22 17:18 - 2014-02-22 17:18 - 00000000 _SHDL () C:\Users\Viktoria\Netzwerkumgebung
2014-02-22 17:18 - 2014-02-22 17:18 - 00000000 _SHDL () C:\Users\Viktoria\Lokale Einstellungen
2014-02-22 17:18 - 2014-02-22 17:18 - 00000000 _SHDL () C:\Users\Viktoria\Eigene Dateien
2014-02-22 17:18 - 2014-02-22 17:18 - 00000000 _SHDL () C:\Users\Viktoria\Druckumgebung
2014-02-22 17:18 - 2014-02-22 17:18 - 00000000 _SHDL () C:\Users\Viktoria\Documents\Eigene Musik
2014-02-22 17:18 - 2014-02-22 17:18 - 00000000 _SHDL () C:\Users\Viktoria\Documents\Eigene Bilder
2014-02-22 17:18 - 2014-02-22 17:18 - 00000000 _SHDL () C:\Users\Viktoria\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-02-22 17:18 - 2014-02-22 17:18 - 00000000 _SHDL () C:\Users\Viktoria\AppData\Local\Verlauf
2014-02-22 17:18 - 2014-02-22 17:18 - 00000000 _SHDL () C:\Users\Viktoria\AppData\Local\Anwendungsdaten
2014-02-22 17:18 - 2014-02-22 17:18 - 00000000 _SHDL () C:\Users\Viktoria\Anwendungsdaten
2014-02-22 17:18 - 2014-02-22 17:18 - 00000000 _____ () C:\Windows\firstboot.dat
2014-02-22 17:18 - 2009-07-14 06:32 - 00000000 ____D () C:\Windows\system32\restore
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Default\Vorlagen
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Default\Startmenü
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Default\Druckumgebung
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Programme
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\ProgramData\Vorlagen
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\ProgramData\Startmenü
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\ProgramData\Favoriten
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\ProgramData\Dokumente
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien
2014-02-22 17:17 - 2014-02-22 17:17 - 00000000 _SHDL () C:\Dokumente und Einstellungen
2014-02-22 17:17 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Default
2014-02-22 17:17 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Windows NT
Some content of TEMP:
====================
C:\Users\Viktoria\AppData\Local\Temp\1_Offer_12.exe
C:\Users\Viktoria\AppData\Local\Temp\1_Offer_13.exe
C:\Users\Viktoria\AppData\Local\Temp\1_Offer_7.exe
C:\Users\Viktoria\AppData\Local\Temp\1_Offer_8.exe
C:\Users\Viktoria\AppData\Local\Temp\1_Offer_9.exe
C:\Users\Viktoria\AppData\Local\Temp\BackupSetup.exe
C:\Users\Viktoria\AppData\Local\Temp\DM1393086956.exe
C:\Users\Viktoria\AppData\Local\Temp\DM1393088311.exe
C:\Users\Viktoria\AppData\Local\Temp\nsuF202.exe
C:\Users\Viktoria\AppData\Local\Temp\nszB09D.exe
C:\Users\Viktoria\AppData\Local\Temp\Quarantine.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2012-10-01 19:27
==================== End Of Log ============================ --- --- ---
--- --- ---
--- --- ---
finde nur vom 7.3 die addition... wo finde ich die vom aktuellem scan? Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 07-03-2014
Ran by Viktoria at 2014-03-07 12:24:54
Running from C:\Users\Viktoria\Downloads
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Panda Cloud Antivirus (Enabled - Up to date) {3456760B-FDAA-FFFD-06C2-7BB528D2066C}
AS: Panda Cloud Antivirus (Enabled - Up to date) {8F3797EF-DB90-F073-3C72-40C753554CD1}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Cloud Antivirus Firewall (Disabled) {0C6DF72E-B7C5-FEA5-2D9D-D280D6014117}
==================== Installed Programs ======================
Absolute Reminder (HKLM-x32\...\{40F4FF7A-B214-4453-B973-080B09CED019}) (Version: 2.0.0.19 - Absolute Software)
Adobe Flash Player 12 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 12.0.0.70 - Adobe Systems Incorporated)
Adobe Reader X (10.1.7) MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-AA0000000001}) (Version: 10.1.7 - Adobe Systems Incorporated)
Advanced System Protector (HKLM-x32\...\00212D92-C5D8-4ff4-AE50-B20F0F85C40A_Systweak_Ad~B9F029BF_is1) (Version: 2.1.1000.12580 - Systweak Software) <==== ATTENTION
AMD APP SDK Runtime (Version: 10.0.851.4 - Advanced Micro Devices Inc.) Hidden
AMD Catalyst Install Manager (HKLM\...\{D2DC1C5F-1304-DBA2-F1D0-C2ABBC7CAD42}) (Version: 3.0.859.0 - Advanced Micro Devices, Inc.)
AMD Fuel (Version: 2012.0418.355.4954 - Ihr Firmenname) Hidden
AMD Media Foundation Decoders (Version: 1.0.70418.0413 - Advanced Micro Devices, Inc.) Hidden
AMD Steady Video Plug-In (Version: 2.03.0000 - AMD) Hidden
AMD VISION Engine Control Center (x32 Version: 2012.0418.355.4954 - Ihr Firmenname) Hidden
Anzeige am Bildschirm (HKLM\...\OnScreenDisplay) (Version: 6.71.03 - )
Apple Application Support (HKLM-x32\...\{AAC5D43E-816D-4C2D-8E51-55FFF35BE301}) (Version: 3.0.1 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{787136D2-F0F8-4625-AA3F-72D7795AC842}) (Version: 7.1.1.3 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Broadcom 802.11 Network Adapter (HKLM\...\Broadcom 802.11 Network Adapter) (Version: 5.100.82.130 - Broadcom Corporation)
Catalyst Control Center - Branding (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center InstallProxy (x32 Version: 2012.0418.355.4954 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Localization All (x32 Version: 2012.0418.355.4954 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Profiles Mobile (x32 Version: 2012.0418.355.4954 - Advanced Micro Devices, Inc.) Hidden
CCC Help Chinese Standard (x32 Version: 2012.0418.0354.4954 - Advanced Micro Devices, Inc.) Hidden
CCC Help Chinese Traditional (x32 Version: 2012.0418.0354.4954 - Advanced Micro Devices, Inc.) Hidden
CCC Help Czech (x32 Version: 2012.0418.0354.4954 - Advanced Micro Devices, Inc.) Hidden
CCC Help Danish (x32 Version: 2012.0418.0354.4954 - Advanced Micro Devices, Inc.) Hidden
CCC Help Dutch (x32 Version: 2012.0418.0354.4954 - Advanced Micro Devices, Inc.) Hidden
CCC Help English (x32 Version: 2012.0418.0354.4954 - Advanced Micro Devices, Inc.) Hidden
CCC Help Finnish (x32 Version: 2012.0418.0354.4954 - Advanced Micro Devices, Inc.) Hidden
CCC Help French (x32 Version: 2012.0418.0354.4954 - Advanced Micro Devices, Inc.) Hidden
CCC Help German (x32 Version: 2012.0418.0354.4954 - Advanced Micro Devices, Inc.) Hidden
CCC Help Greek (x32 Version: 2012.0418.0354.4954 - Advanced Micro Devices, Inc.) Hidden
CCC Help Hungarian (x32 Version: 2012.0418.0354.4954 - Advanced Micro Devices, Inc.) Hidden
CCC Help Italian (x32 Version: 2012.0418.0354.4954 - Advanced Micro Devices, Inc.) Hidden
CCC Help Japanese (x32 Version: 2012.0418.0354.4954 - Advanced Micro Devices, Inc.) Hidden
CCC Help Korean (x32 Version: 2012.0418.0354.4954 - Advanced Micro Devices, Inc.) Hidden
CCC Help Norwegian (x32 Version: 2012.0418.0354.4954 - Advanced Micro Devices, Inc.) Hidden
CCC Help Polish (x32 Version: 2012.0418.0354.4954 - Advanced Micro Devices, Inc.) Hidden
CCC Help Portuguese (x32 Version: 2012.0418.0354.4954 - Advanced Micro Devices, Inc.) Hidden
CCC Help Russian (x32 Version: 2012.0418.0354.4954 - Advanced Micro Devices, Inc.) Hidden
CCC Help Spanish (x32 Version: 2012.0418.0354.4954 - Advanced Micro Devices, Inc.) Hidden
CCC Help Swedish (x32 Version: 2012.0418.0354.4954 - Advanced Micro Devices, Inc.) Hidden
CCC Help Thai (x32 Version: 2012.0418.0354.4954 - Advanced Micro Devices, Inc.) Hidden
CCC Help Turkish (x32 Version: 2012.0418.0354.4954 - Advanced Micro Devices, Inc.) Hidden
ccc-utility64 (Version: 2012.0418.355.4954 - Advanced Micro Devices, Inc.) Hidden
Cisco EAP-FAST Module (x32 Version: 2.2.14 - Cisco Systems, Inc.) Hidden
Cisco LEAP Module (x32 Version: 1.0.19 - Cisco Systems, Inc.) Hidden
Cisco PEAP Module (x32 Version: 1.1.6 - Cisco Systems, Inc.) Hidden
Create Recovery Media (HKLM-x32\...\{50DC5136-21E8-48BC-97E5-1AD055F6B0B6}) (Version: 1.20.0.00 - Lenovo Group Limited)
Dolby Advanced Audio v2 (HKLM-x32\...\{B9E70C7A-9F85-4A39-A4A3-BFA3C3BF7613}) (Version: 7.2.7000.7 - Dolby Laboratories Inc)
Energie-Manager (HKLM-x32\...\{DAC01CEE-5BAE-42D5-81FC-B687E84E8405}) (Version: 6.20 - )
Integrated Camera (HKLM-x32\...\{ADE16A9D-FBDC-4ecc-B6BD-9C31E51D0332}) (Version: 5.13.312.31 - Vimicro)
Intel AppUp(R) center (HKLM-x32\...\Intel AppUp(R) center 41900) (Version: 3.8.0.41900.72 - Intel)
iTunes (HKLM\...\{B8BA155B-1E75-405F-9CB4-8A99615D09DC}) (Version: 11.1.5.5 - Apple Inc.)
Lenovo Auto Scroll Utility (HKLM\...\LenovoAutoScrollUtility) (Version: 2.01 - )
Lenovo Bluetooth with Enhanced Data Rate Software (HKLM\...\{A1439D4F-FD46-47F2-A1D3-FEE097C29A09}) (Version: 6.5.1.2300 - Broadcom Corporation)
Lenovo Patch Utility (HKLM-x32\...\{6E6E7725-C7BC-4C39-8B3F-14B67331A120}) (Version: 1.3.0.9 - Lenovo Group Limited)
Lenovo Patch Utility 64 bit (Version: 1.3.2.4 - Lenovo Group Limited) Hidden
Lenovo Power Management Driver (HKLM\...\Power Management Driver) (Version: 1.65.05.21 - )
Lenovo Registration (HKLM-x32\...\{6707C034-ED6B-4B6A-B21F-969B3606FBDE}) (Version: 1.0.3 - Lenovo Inc.)
Lenovo Solution Center (HKLM\...\{4041B18B-DE30-4D78-9D60-6ADC586C5E00}) (Version: 2.1.003.00 - Lenovo Group Limited)
Lenovo User Guide (HKLM-x32\...\{13F59938-C595-479C-B479-F171AB9AF64F}) (Version: 1.0.0009.00 - Lenovo Group Limited)
Lenovo Warranty Information (HKLM-x32\...\{FD4EC278-C1B1-4496-99ED-C0BE1B0AA521}) (Version: 1.0.0005.00 - Lenovo)
Lenovo Welcome (HKLM-x32\...\{2DC26D10-CC6A-494F-BEA3-B5BC21126D5E}) (Version: 3.1.0020.00 - Lenovo Group Limited)
Message Center Plus (HKLM\...\{3849486C-FF09-4F5D-B491-3E179D58EE15}) (Version: 3.1.0004.00 - Lenovo Group Limited)
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4 Extended (HKLM\...\Microsoft .NET Framework 4 Extended) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319 - Microsoft Corporation) Hidden
Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4454.1510 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Mozilla Firefox 27.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 27.0.1 (x86 de)) (Version: 27.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 27.0.1 - Mozilla)
Nitro Pro 8 (HKLM\...\{C97CFB86-B083-4BAE-90B2-D141500A5ACA}) (Version: 8.5.5.2 - Nitro)
Panda Cloud Antivirus (HKLM-x32\...\Panda Universal Agent Endpoint) (Version: 02.03.00.0000 - Panda Security)
Panda Cloud Antivirus (Version: 6.06.00.0000 - Panda Security) Hidden
Password Vault (HKLM\...\{C5BB9380-D729-410A-A440-061EBCADCCB9}) (Version: 5.4.100.232 - AuthenTec, Inc.)
RapidBoot HDD Accelerator (HKLM-x32\...\Fastboot) (Version: 1.00.0802 - Lenovo)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.50.1123.2011 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6581 - Realtek Semiconductor Corp.)
Realtek PCIE Card Reader (HKLM-x32\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.1.7601.28104 - Realtek Semiconductor Corp.)
ThinkPad UltraNav Driver (HKLM\...\SynTPDeinstKey) (Version: 16.1.4.17 - )
ThinkVantage Communications Utility (HKLM\...\{88C6A6D9-324C-46E8-BA87-563D14021442}_is1) (Version: 3.0.44.0 - Lenovo)
ThinkVantage System für aktiven Festplattenschutz (HKLM\...\{46A84694-59EC-48F0-964C-7E76E9F8A2ED}) (Version: 1.77.0.20 - Lenovo)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (HKLM-x32\...\{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}.KB2836939v3) (Version: 3 - Microsoft Corporation)
Update for Microsoft .NET Framework 4 Extended (KB2836939v3) (HKLM-x32\...\{8E34682C-8118-31F1-BC4C-98CD9675E1C2}.KB2836939v3) (Version: 3 - Microsoft Corporation)
VLC media player 2.1.3 (HKLM\...\VLC media player) (Version: 2.1.3 - VideoLAN)
Windows-Treiberpaket - Lenovo 1.65.05.21 (01/11/2012 1.65.05.21) (HKLM\...\FD2ED46D31CE7DF190049D079E92DE03D347A634) (Version: 01/11/2012 1.65.05.21 - Lenovo)
Windows-Treiberpaket - Synaptics (SmbDrvAMDASF) System (06/21/2012 16.1.4.17) (HKLM\...\A333D414B3783936ED9A3F663498AB82EB07B7A3) (Version: 06/21/2012 16.1.4.17 - Synaptics)
Windows-Treiberpaket - Synaptics (SynTP) Mouse (06/21/2012 16.1.4.17) (HKLM\...\FE61CFFCEFBF4E2D83AE176443D33414275365FC) (Version: 06/21/2012 16.1.4.17 - Synaptics)
==================== Restore Points =========================
22-02-2014 16:18:17 Windows Update
22-02-2014 16:29:34 Windows Update
01-03-2014 14:39:29 Installed iTunes
04-03-2014 16:34:58 Windows Update
05-03-2014 10:37:46 Windows Update
06-03-2014 22:46:56 Windows Update
==================== Hosts content: ==========================
2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {1CA4A556-851A-446A-8440-F05F74707654} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\lenovo\lenovo solution center\App\LSCService.exe [2013-05-17] (Lenovo)
Task: {23565B84-5D0C-4EFA-9926-EE3AB01236F0} - System32\Tasks\Intel\Intel Service Manager => C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [2013-03-25] (Intel Corporation)
Task: {5773E175-7BAA-487A-A0F7-869A5C367737} - System32\Tasks\Lenovo\Message Center Plus Launcher => C:\Program Files (x86)\Lenovo\message center plus\mcplaunch.exe [2012-05-15] (Lenovo)
Task: {5EAEC8E8-F0B2-4BAD-BAA1-2FA039E1F461} - System32\Tasks\Lenovo\Lenovo Produktregistrierung (Viktoria) => C:\Program Files (x86)\Lenovo Registration\LenovoReg.exe [2011-06-01] (Lenovo, Inc.)
Task: {AAAA17D1-768B-4642-9412-98F054F704E2} - System32\Tasks\PMTask => C:\Program Files (x86)\ThinkPad\Utilities\PWMIDTSV.EXE [2012-04-11] (Lenovo Group Limited)
Task: {CB75EECA-A67C-4E99-80C2-C7FD893C55CF} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program => C:\Program Files\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2013-05-17] (Lenovo)
Task: {E7BB9CC1-2F9E-4B0A-824B-B8214EEBFB49} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2013-05-17] ()
==================== Loaded Modules (whitelisted) =============
2012-04-18 04:10 - 2012-04-18 04:10 - 00073728 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll
2013-11-03 09:24 - 2012-04-11 22:20 - 00103936 ____N () C:\Program Files (x86)\ThinkPad\Utilities\GR\PWMRT64V.DLL
2013-11-03 09:13 - 2010-10-26 06:40 - 00049056 _____ () C:\Program Files\Realtek\Audio\HDA\FMAPP.exe
2012-04-18 04:10 - 2012-04-18 04:10 - 00103424 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll
2011-11-09 10:55 - 2011-11-09 10:55 - 00016384 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Branding\Branding.dll
2012-04-18 03:48 - 2012-04-18 03:48 - 00369152 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll
2012-06-07 00:03 - 2012-06-07 00:03 - 01163624 _____ () C:\Program Files\Lenovo Fingerprint Reader\DataManager.dll
2012-06-07 00:04 - 2012-06-07 00:04 - 00087912 _____ () C:\Program Files\Lenovo Fingerprint Reader\ssutil.dll
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NanoServiceMain => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PSUAService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\NanoServiceMain => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PSUAService => ""="Service"
==================== Disabled items from MSCONFIG ==============
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (03/07/2014 00:07:57 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 14228
Error: (03/07/2014 00:07:57 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 14228
Error: (03/07/2014 00:07:57 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (03/07/2014 00:07:52 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 9002
Error: (03/07/2014 00:07:52 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 9002
Error: (03/07/2014 00:07:52 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (03/07/2014 09:52:52 AM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (03/06/2014 09:13:34 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 4774
Error: (03/06/2014 09:13:34 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 4774
Error: (03/06/2014 09:13:34 PM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
System errors:
=============
Error: (03/07/2014 09:52:49 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Search Protect by Conduit Service" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Error: (03/05/2014 05:30:35 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Search Protect by Conduit Service" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Error: (03/05/2014 11:34:05 AM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Search Protect by Conduit Service" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Error: (03/04/2014 10:15:41 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Windows Modules Installer" wurde mit folgendem Fehler beendet:
%%16405
Error: (03/04/2014 10:14:30 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Search Protect by Conduit Service" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Error: (03/04/2014 10:11:40 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Search Protect by Conduit Service" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Error: (03/04/2014 08:45:04 PM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst Wlansvc erreicht.
Error: (03/04/2014 08:45:04 PM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst PSUAService erreicht.
Error: (03/04/2014 05:40:03 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (User: NT-AUTORITÄT)
Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x800f0902 fehlgeschlagen: Sicherheitsupdate für Windows 7 für x64-basierte Systeme (KB2892074)
Error: (03/04/2014 05:31:01 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Search Protect by Conduit Service" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Microsoft Office Sessions:
=========================
Error: (03/07/2014 00:07:57 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 14228
Error: (03/07/2014 00:07:57 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 14228
Error: (03/07/2014 00:07:57 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (03/07/2014 00:07:52 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 9002
Error: (03/07/2014 00:07:52 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 9002
Error: (03/07/2014 00:07:52 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (03/07/2014 09:52:52 AM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (03/06/2014 09:13:34 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 4774
Error: (03/06/2014 09:13:34 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 4774
Error: (03/06/2014 09:13:34 PM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second
==================== Memory info ===========================
Percentage of memory in use: 52%
Total physical RAM: 3496.6 MB
Available physical RAM: 1667.09 MB
Total Pagefile: 6991.38 MB
Available Pagefile: 4635.12 MB
Total Virtual: 8192 MB
Available Virtual: 8191.83 MB
==================== Drives ================================
Drive c: (Windows7_OS) (Fixed) (Total:448.53 GB) (Free:409.29 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive q: (Lenovo_Recovery) (Fixed) (Total:15.76 GB) (Free:4.81 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 466 GB) (Disk ID: 6784A977)
Partition 1: (Active) - (Size=1 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=449 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=16 GB) - (Type=07 NTFS)
==================== End Of Log ============================ |