hi, next
Gruß
käse Code:
==================== One Month Modified Files and Folders =======
2014-06-02 22:45 - 2014-06-02 22:40 - 00005146 _____ () C:\Users\Dagmar\Downloads\FRST.txt
2014-06-02 22:45 - 2014-05-29 20:47 - 00000000 ____D () C:\FRST
2014-06-02 22:45 - 2014-05-24 16:58 - 00000000 ____D () C:\Users\Dagmar\AppData\Local\Temp
2014-06-02 22:42 - 2014-05-24 16:39 - 01955777 _____ () C:\Windows\WindowsUpdate.log
2014-06-02 22:40 - 2014-06-02 22:40 - 00000000 ____D () C:\Users\Dagmar\Downloads\FRST-OlderVersion
2014-06-02 22:40 - 2014-05-29 20:47 - 02068992 _____ (Farbar) C:\Users\Dagmar\Downloads\FRST64.exe
2014-06-02 22:16 - 2014-05-29 03:48 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-06-02 17:52 - 2014-06-02 17:44 - 00000000 ____D () C:\ProgramData\Adobe
2014-06-02 17:51 - 2014-06-02 17:51 - 00000000 ____D () C:\Users\Dagmar\AppData\Local\Adobe
2014-06-02 17:51 - 2014-05-25 13:26 - 00000000 ____D () C:\Users\Dagmar\AppData\Roaming\Adobe
2014-06-02 17:46 - 2014-06-02 17:46 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-06-02 17:46 - 2014-06-02 17:46 - 00002019 _____ () C:\Users\Public\Desktop\Adobe Reader XI.lnk
2014-06-02 17:45 - 2014-06-02 17:45 - 00000000 ____D () C:\Program Files (x86)\Adobe
2014-06-02 13:45 - 2009-07-14 06:45 - 00026496 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-06-02 13:45 - 2009-07-14 06:45 - 00026496 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-06-02 13:13 - 2014-06-01 12:37 - 00000168 _____ () C:\Windows\setupact.log
2014-06-02 13:13 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-06-01 23:58 - 2014-06-01 23:58 - 00000310 _____ () C:\Windows\PFRO.log
2014-06-01 23:22 - 2014-05-29 04:04 - 00000000 ____D () C:\AdwCleaner
2014-06-01 12:53 - 2014-05-26 00:01 - 00000343 _____ () C:\Windows\Brownie.ini
2014-06-01 12:37 - 2014-06-01 12:37 - 00000000 _____ () C:\Windows\setuperr.log
2014-05-31 01:09 - 2014-05-31 01:09 - 00204557 _____ () C:\Users\Dagmar\AppData\Local\census.cache
2014-05-31 01:08 - 2014-05-31 01:08 - 00086708 _____ () C:\Users\Dagmar\AppData\Local\ars.cache
2014-05-31 00:37 - 2014-05-31 00:37 - 00000036 _____ () C:\Users\Dagmar\AppData\Local\housecall.guid.cache
2014-05-31 00:36 - 2014-05-31 00:36 - 02405664 _____ (Trend Micro Inc.) C:\Users\Dagmar\Downloads\HousecallLauncher64.exe
2014-05-30 20:01 - 2014-05-30 20:01 - 00001264 _____ () C:\Users\Dagmar\Desktop\Revo Uninstaller.lnk
2014-05-30 20:01 - 2014-05-30 20:01 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group
2014-05-30 20:00 - 2014-05-30 20:00 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Dagmar\Downloads\revosetup95.exe
2014-05-30 19:35 - 2014-05-30 19:35 - 00000626 _____ () C:\Users\Dagmar\Desktop\JRT.txt
2014-05-30 02:35 - 2014-05-28 02:54 - 00000000 ____D () C:\Users\Dagmar\AppData\Local\Microsoft Games
2014-05-30 01:52 - 2014-05-30 01:52 - 00000000 ____D () C:\Windows\System32\Tasks\Games
2014-05-30 01:33 - 2014-05-29 02:51 - 00000000 ____D () C:\Windows\1F7E4FF9D2E542589AE1E16E6CB3252A.TMP
2014-05-29 21:24 - 2014-05-29 21:23 - 00000246 _____ () C:\Users\Dagmar\Downloads\Search.txt
2014-05-29 20:49 - 2014-05-29 20:49 - 00012337 _____ () C:\Users\Dagmar\Downloads\Addition.txt
2014-05-29 05:02 - 2014-05-29 04:58 - 00002774 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-05-29 04:59 - 2014-05-29 01:46 - 00000000 ___DC () C:\Users\Dagmar\AppData\Local\MigWiz
2014-05-29 04:59 - 2014-05-25 02:35 - 00000000 ____D () C:\Windows\Panther
2014-05-29 04:58 - 2014-05-29 04:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-05-29 04:58 - 2014-05-29 04:58 - 00000000 ____D () C:\Program Files\CCleaner
2014-05-29 04:56 - 2014-05-29 04:56 - 04748896 _____ (Piriform Ltd) C:\Users\Dagmar\Downloads\ccsetup414.exe
2014-05-29 04:28 - 2014-05-29 04:28 - 01016261 _____ (Thisisu) C:\Users\Dagmar\Downloads\JRT.exe
2014-05-29 04:28 - 2014-05-29 04:28 - 00000000 ____D () C:\Windows\ERUNT
2014-05-29 04:21 - 2014-05-29 04:21 - 00000000 __SHD () C:\Users\Dagmar\AppData\Local\EmieUserList
2014-05-29 04:21 - 2014-05-29 04:21 - 00000000 __SHD () C:\Users\Dagmar\AppData\Local\EmieSiteList
2014-05-29 04:16 - 2014-05-29 04:16 - 00003266 _____ () C:\Windows\System32\Tasks\{1160F898-2045-44B3-8211-0E3D65B33FDB}
2014-05-29 04:03 - 2014-05-29 04:03 - 00001051 _____ () C:\m.txt
2014-05-29 03:46 - 2014-05-29 03:46 - 00001102 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-05-29 03:46 - 2014-05-29 03:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-05-29 03:46 - 2014-05-29 03:46 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-05-29 03:46 - 2014-05-29 03:46 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-05-29 03:45 - 2014-05-29 03:45 - 01327971 _____ () C:\Users\Dagmar\Downloads\adwcleaner_3.211.exe
2014-05-29 03:42 - 2014-05-29 03:42 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Dagmar\Downloads\mbam-setup-2.0.2.1012.exe
2014-05-29 02:53 - 2014-05-29 02:53 - 00000000 ____D () C:\Program Files\Enigma Software Group
2014-05-29 01:32 - 2014-05-25 02:32 - 00699342 _____ () C:\Windows\system32\perfh007.dat
2014-05-29 01:32 - 2014-05-25 02:32 - 00149450 _____ () C:\Windows\system32\perfc007.dat
2014-05-29 01:32 - 2009-07-14 07:13 - 01619284 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-05-28 19:49 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache
2014-05-28 02:49 - 2014-05-28 02:49 - 00002996 _____ () C:\Windows\System32\Tasks\{AEBC04C5-4C29-4E20-8A35-9CDC8995FFF1}
2014-05-28 02:48 - 2014-05-28 02:48 - 00003196 _____ () C:\Windows\System32\Tasks\{903A362E-EA96-40F3-9E4B-0F11AA989053}
2014-05-28 00:06 - 2014-05-28 00:06 - 00000000 ____D () C:\Program Files (x86)\Canon
2014-05-28 00:06 - 2014-05-26 00:01 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-05-28 00:06 - 2009-07-14 05:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2014-05-28 00:02 - 2014-05-28 00:02 - 00000000 ___HD () C:\CanoScan
2014-05-27 23:55 - 2014-05-27 23:55 - 00003036 _____ () C:\Windows\System32\Tasks\{09A9C3FE-505F-49DD-A0BB-81330C6DA76D}
2014-05-27 23:51 - 2014-05-27 23:51 - 00347816 _____ (Microsoft Corporation) C:\Users\Dagmar\Downloads\MicrosoftFixit.dvd.RNP.11132465822178030.1.1.Run.exe
2014-05-27 23:00 - 2014-05-25 23:22 - 00000416 _____ () C:\Windows\BRWMARK.INI
2014-05-27 23:00 - 2014-05-25 23:22 - 00000054 _____ () C:\Windows\SysWOW64\BD2030.DAT
2014-05-27 17:39 - 2014-05-27 16:37 - 00000000 ____D () C:\Program Files (x86)\ASUSTek
2014-05-27 16:54 - 2014-05-27 16:54 - 00002970 _____ () C:\Windows\System32\Tasks\{7ED39C2C-4C6A-41E4-84F5-1247AF56E93B}
2014-05-27 16:53 - 2014-05-27 16:53 - 00002970 _____ () C:\Windows\System32\Tasks\{2093A083-F999-4A01-BD95-D62A9541ABCC}
2014-05-27 16:51 - 2014-05-27 16:51 - 00002970 _____ () C:\Windows\System32\Tasks\{465B2D67-2508-4E2F-A12F-694720AB2E62}
2014-05-27 16:41 - 2014-05-27 16:41 - 00000000 ____D () C:\Users\Dagmar\AppData\Roaming\CyberLink
2014-05-27 16:40 - 2014-05-27 16:39 - 00000000 _____ () C:\Users\Dagmar\Documents\PDVD_MediaDisc.PlayList
2014-05-27 01:48 - 2014-05-27 01:48 - 00347816 _____ (Microsoft Corporation) C:\Users\Dagmar\Downloads\MicrosoftFixit.dvd.FISC.13324578813122458.1.1.Run.exe
2014-05-27 00:28 - 2014-05-27 00:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2014-05-27 00:28 - 2014-05-27 00:28 - 00000000 ____D () C:\Program Files\7-Zip
2014-05-27 00:25 - 2014-05-27 00:25 - 01376768 _____ () C:\Users\Dagmar\Downloads\7z920-x64.msi
2014-05-26 22:05 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\LiveKernelReports
2014-05-26 18:05 - 2014-05-25 12:25 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-05-26 18:05 - 2014-05-25 12:25 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-05-26 13:52 - 2014-05-25 12:55 - 01592836 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-05-26 13:49 - 2014-05-25 12:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2014-05-26 13:45 - 2014-05-26 13:45 - 00001498 _____ () C:\Users\Dagmar\Desktop\31.05 episch coburg - Verknüpfung.lnk
2014-05-26 00:17 - 2009-07-14 07:32 - 00000000 ____D () C:\Windows\system32\FxsTmp
2014-05-26 00:16 - 2014-05-26 00:16 - 00000000 ____D () C:\Users\Dagmar\Documents\Fax
2014-05-26 00:03 - 2014-05-26 00:03 - 00009030 _____ () C:\Windows\HL-2030.INI
2014-05-26 00:03 - 2014-05-26 00:03 - 00000151 _____ () C:\Windows\BRVIDEO.INI
2014-05-26 00:03 - 2014-05-26 00:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother HL-2030
2014-05-26 00:03 - 2014-05-26 00:03 - 00000000 ____D () C:\Program Files (x86)\Brownie
2014-05-26 00:03 - 2014-05-26 00:03 - 00000000 _____ () C:\Windows\brmx2001.ini
2014-05-26 00:02 - 2014-05-26 00:01 - 00000000 ____D () C:\Program Files (x86)\Brother
2014-05-25 23:59 - 2014-05-25 23:58 - 00000000 ____D () C:\Users\Dagmar\Downloads\install
2014-05-25 23:58 - 2014-05-25 23:57 - 105634606 _____ (A.I.SOFT,INC.) C:\Users\Dagmar\Downloads\HL2030_70-inst-win7-A2-de.EXE
2014-05-25 18:26 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Public\Libraries
2014-05-25 14:32 - 2014-05-24 19:58 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-05-25 14:21 - 2014-05-25 14:21 - 00000000 ____D () C:\Users\Dagmar\AppData\Roaming\LibreOffice
2014-05-25 14:20 - 2014-05-25 14:20 - 00000426 _____ () C:\Users\Dagmar\Desktop\Daten.lnk
2014-05-25 14:19 - 2014-05-25 14:19 - 00000909 _____ () C:\Users\Dagmar\Desktop\alte Desktop-Dateien.lnk
2014-05-25 14:13 - 2014-05-25 14:13 - 00001524 _____ () C:\Users\Dagmar\Desktop\LibreOffice Writer.lnk
2014-05-25 14:12 - 2014-05-25 14:12 - 00000000 ____D () C:\Users\Dagmar\AppData\Local\Thunderbird
2014-05-25 14:11 - 2014-05-25 14:11 - 00002098 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk
2014-05-25 14:11 - 2014-05-25 14:11 - 00002086 _____ () C:\Users\Public\Desktop\Mozilla Thunderbird.lnk
2014-05-25 14:11 - 2014-05-25 14:11 - 00000000 ____D () C:\Program Files (x86)\Mozilla Thunderbird
2014-05-25 14:10 - 2014-05-25 14:07 - 21987152 _____ (Mozilla) C:\Users\Dagmar\Downloads\Thunderbird Setup 24.5.0.exe
2014-05-25 13:29 - 2014-05-25 13:29 - 00000000 ____D () C:\Users\Dagmar\AppData\Roaming\Thunderbird
2014-05-25 13:27 - 2014-05-24 16:58 - 00000000 ____D () C:\Users\Dagmar\AppData\Local\VirtualStore
2014-05-25 13:26 - 2014-05-24 16:59 - 00001421 _____ () C:\Users\Dagmar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-05-25 13:08 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-05-25 13:01 - 2014-05-25 13:01 - 00000000 ____D () C:\Program Files\Motorola
2014-05-25 12:34 - 2014-05-25 12:34 - 13551104 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 11745792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 05784064 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 04254720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 02767360 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 02260480 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 02178048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 02043904 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-05-25 12:34 - 2014-05-25 12:34 - 01967104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-05-25 12:34 - 2014-05-25 12:34 - 01789440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 01400832 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 01228800 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 01143808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00774144 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00628736 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2014-05-25 12:34 - 2014-05-25 12:34 - 00616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2014-05-25 12:34 - 2014-05-25 12:34 - 00610304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00586240 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-05-25 12:34 - 2014-05-25 12:34 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00413696 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2014-05-25 12:34 - 2014-05-25 12:34 - 00367616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2014-05-25 12:34 - 2014-05-25 12:34 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00263376 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00244224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00238288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2014-05-25 12:34 - 2014-05-25 12:34 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2014-05-25 12:34 - 2014-05-25 12:34 - 00147968 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2014-05-25 12:34 - 2014-05-25 12:34 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2014-05-25 12:34 - 2014-05-25 12:34 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-05-25 12:34 - 2014-05-25 12:34 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-05-25 12:34 - 2014-05-25 12:34 - 00111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-05-25 12:34 - 2014-05-25 12:34 - 00105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00101376 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2014-05-25 12:34 - 2014-05-25 12:34 - 00086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2014-05-25 12:34 - 2014-05-25 12:34 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00083456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2014-05-25 12:34 - 2014-05-25 12:34 - 00074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2014-05-25 12:34 - 2014-05-25 12:34 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2014-05-25 12:34 - 2014-05-25 12:34 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2014-05-25 12:34 - 2014-05-25 12:34 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2014-05-25 12:34 - 2014-05-25 12:34 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-05-25 12:34 - 2014-05-25 12:34 - 00013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2014-05-25 12:34 - 2014-05-25 12:34 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-05-25 12:34 - 2014-05-25 12:34 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2014-05-25 12:34 - 2014-05-25 12:34 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-05-25 11:57 - 2014-05-25 11:57 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-05-25 11:35 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\Help
2014-05-25 11:22 - 2014-05-24 16:59 - 00000000 ___RD () C:\Users\Dagmar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-05-25 11:22 - 2014-05-24 16:59 - 00000000 ___RD () C:\Users\Dagmar\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
2014-05-25 11:16 - 2009-07-14 06:45 - 00323640 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-05-25 11:14 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\zh-HK
2014-05-25 11:14 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\tr-TR
2014-05-25 11:14 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\zh-HK
2014-05-25 11:14 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\tr-TR
2014-05-25 11:14 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Common Files\System
2014-05-25 11:13 - 2014-05-25 11:13 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-05-25 11:13 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files\Windows Defender
2014-05-25 11:13 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2014-05-25 10:37 - 2014-05-25 10:37 - 02776576 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 02284544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 01682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 01238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 01175552 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 01158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 01080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 00648192 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 00604160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 00522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 00363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 00333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 00293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 00249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 00245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 00220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 00207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 00194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 00187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 00161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 00010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 00010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 00009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 00009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 00005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 00005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 00002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-05-25 10:37 - 2014-05-25 10:37 - 00002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2014-05-25 02:34 - 2009-07-14 07:38 - 00025600 ___SH () C:\Windows\system32\config\BCD-Template.LOG
2014-05-25 02:34 - 2009-07-14 07:32 - 00028672 _____ () C:\Windows\system32\config\BCD-Template
2014-05-25 02:34 - 2009-07-14 06:45 - 00000000 ____D () C:\Windows\Setup
2014-05-25 02:34 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\oobe
2014-05-25 02:32 - 2014-05-25 02:32 - 00000000 ____D () C:\Windows\SysWOW64\XPSViewer
2014-05-25 02:32 - 2014-05-25 02:32 - 00000000 ____D () C:\Windows\SysWOW64\de
2014-05-25 02:32 - 2014-05-25 02:32 - 00000000 ____D () C:\Windows\SysWOW64\0407
2014-05-25 02:32 - 2014-05-25 02:32 - 00000000 ____D () C:\Windows\system32\de
2014-05-25 02:32 - 2014-05-25 02:32 - 00000000 ____D () C:\Windows\system32\0407
2014-05-25 02:32 - 2010-11-21 09:06 - 00000000 ____D () C:\Windows\SysWOW64\winrm
2014-05-25 02:32 - 2010-11-21 09:06 - 00000000 ____D () C:\Windows\SysWOW64\WCN
2014-05-25 02:32 - 2010-11-21 09:06 - 00000000 ____D () C:\Windows\SysWOW64\sysprep
2014-05-25 02:32 - 2010-11-21 09:06 - 00000000 ____D () C:\Windows\SysWOW64\slmgr
2014-05-25 02:32 - 2010-11-21 09:06 - 00000000 ____D () C:\Windows\SysWOW64\Printing_Admin_Scripts
2014-05-25 02:32 - 2010-11-21 09:06 - 00000000 ____D () C:\Windows\system32\winrm
2014-05-25 02:32 - 2010-11-21 09:06 - 00000000 ____D () C:\Windows\system32\WCN
2014-05-25 02:32 - 2010-11-21 09:06 - 00000000 ____D () C:\Windows\system32\slmgr
2014-05-25 02:32 - 2010-11-21 09:06 - 00000000 ____D () C:\Windows\system32\Printing_Admin_Scripts
2014-05-25 02:32 - 2009-07-14 07:37 - 00000000 ____D () C:\Windows\DigitalLocker
2014-05-25 02:32 - 2009-07-14 07:32 - 00000000 ____D () C:\Windows\system32\WinBioPlugIns
2014-05-25 02:32 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files\Windows Sidebar
2014-05-25 02:32 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files\Windows Photo Viewer
2014-05-25 02:32 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files\DVD Maker
2014-05-25 02:32 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files (x86)\Windows Sidebar
2014-05-25 02:32 - 2009-07-14 07:32 - 00000000 ____D () C:\Program Files (x86)\Windows Photo Viewer
2014-05-25 02:32 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\Setup
2014-05-25 02:32 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\oobe
2014-05-25 02:32 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\MUI
2014-05-25 02:32 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\migwiz
2014-05-25 02:32 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\Dism
2014-05-25 02:32 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\com
2014-05-25 02:32 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\Setup
2014-05-25 02:32 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\MUI
2014-05-25 02:32 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\migwiz
2014-05-25 02:32 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\Dism
2014-05-25 02:32 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\com
2014-05-25 02:32 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\servicing
2014-05-25 02:32 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\IME
2014-05-25 02:31 - 2014-05-25 02:32 - 00295922 _____ () C:\Windows\system32\perfi007.dat
2014-05-25 02:31 - 2014-05-25 02:32 - 00038104 _____ () C:\Windows\system32\perfd007.dat
2014-05-25 01:27 - 2014-05-25 01:27 - 00000000 ____D () C:\66eb6e847d9f48effd52934cfa7f60
2014-05-25 00:55 - 2014-05-25 00:51 - 00000000 ____D () C:\Windows\system32\MRT
2014-05-24 23:37 - 2014-05-24 19:27 - 00070352 _____ () C:\Users\Dagmar\AppData\Local\GDIPFONTCACHEV1.DAT
2014-05-24 23:31 - 2010-11-21 09:17 - 00000000 ____D () C:\Program Files\Windows Journal
2014-05-24 21:54 - 2014-05-24 21:54 - 00000000 ____D () C:\Hotfix
2014-05-24 20:02 - 2014-05-24 20:01 - 00000000 ____D () C:\Users\Dagmar\AppData\Local\Mozilla
2014-05-24 20:02 - 2014-05-24 19:59 - 00000000 ____D () C:\Users\Dagmar\AppData\Roaming\Mozilla
2014-05-24 19:59 - 2014-05-24 19:59 - 00001159 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-05-24 19:59 - 2014-05-24 19:59 - 00001147 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-05-24 19:59 - 2014-05-24 19:58 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-05-24 19:58 - 2014-05-24 19:58 - 00000000 ____D () C:\ProgramData\Mozilla
2014-05-24 19:46 - 2014-05-24 19:45 - 00283144 _____ (Mozilla) C:\Users\Dagmar\Documents\Firefox Setup Stub 29.0.1.exe
2014-05-24 19:46 - 2014-05-24 19:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 4.2
2014-05-24 19:45 - 2014-05-24 19:45 - 21987152 _____ (Mozilla) C:\Users\Dagmar\Documents\Thunderbird Setup 24.5.0.exe
2014-05-24 19:43 - 2014-05-24 19:39 - 00000000 ____D () C:\Program Files (x86)\LibreOffice 4
2014-05-24 19:27 - 2014-05-24 19:27 - 00001945 _____ () C:\Windows\epplauncher.mif
2014-05-24 19:25 - 2014-05-24 19:24 - 00002117 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Security Essentials.lnk
2014-05-24 19:25 - 2014-05-24 19:24 - 00000000 ____D () C:\Program Files\Microsoft Security Client
2014-05-24 19:24 - 2014-05-24 19:24 - 00000000 ____D () C:\Program Files (x86)\Microsoft Security Client
2014-05-24 18:15 - 2014-05-25 02:13 - 00000000 ____D () C:\Windows.old
2014-05-24 18:07 - 2014-05-24 18:07 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_User_WpdFs_01_09_00.Wdf
2014-05-24 16:59 - 2014-05-24 16:58 - 00000000 ____D () C:\Users\Dagmar
2014-05-24 16:58 - 2014-05-24 16:58 - 00000020 ___SH () C:\Users\Dagmar\ntuser.ini
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Musik
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\Users\Public\Documents\Eigene Bilder
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\Users\Default\Vorlagen
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\Users\Default\Startmenü
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\Users\Default\Druckumgebung
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\Users\Dagmar\Vorlagen
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\Users\Dagmar\Startmenü
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\Users\Dagmar\Netzwerkumgebung
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\Users\Dagmar\Lokale Einstellungen
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\Users\Dagmar\Eigene Dateien
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\Users\Dagmar\Druckumgebung
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\Users\Dagmar\Documents\Eigene Musik
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\Users\Dagmar\Documents\Eigene Bilder
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\Users\Dagmar\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\Users\Dagmar\AppData\Local\Verlauf
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\Users\Dagmar\AppData\Local\Anwendungsdaten
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\Users\Dagmar\Anwendungsdaten
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\ProgramData\Vorlagen
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\ProgramData\Startmenü
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\ProgramData\Microsoft\Windows\Start Menu\Programme
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\ProgramData\Favoriten
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\ProgramData\Dokumente
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\ProgramData\Anwendungsdaten
2014-05-24 16:58 - 2014-05-24 16:58 - 00000000 _SHDL () C:\Program Files\Gemeinsame Dateien
2014-05-24 16:58 - 2014-05-24 12:07 - 00000000 __SHD () C:\Recovery
2014-05-24 16:58 - 2009-07-14 07:32 - 00000000 ____D () C:\Windows\system32\restore
2014-05-24 16:58 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Default
2014-05-24 16:58 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\Recovery
2014-05-24 16:58 - 2009-07-14 05:20 - 00000000 ____D () C:\Program Files\Windows NT
2014-05-24 16:41 - 2014-05-24 16:41 - 00001345 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
2014-05-24 16:41 - 2014-05-24 16:41 - 00001326 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
2014-05-24 16:41 - 2009-07-14 07:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2014-05-24 16:41 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\sysprep
2014-05-24 12:07 - 2014-05-24 12:07 - 00000000 _SHDL () C:\Programme
2014-05-24 12:07 - 2014-05-24 12:07 - 00000000 _SHDL () C:\Dokumente und Einstellungen
2014-05-12 07:26 - 2014-05-29 03:46 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-05-12 07:26 - 2014-05-29 03:46 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-05-12 07:25 - 2014-05-29 03:46 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-05-09 08:14 - 2014-05-24 17:58 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-05-09 08:11 - 2014-05-24 17:58 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-05-06 06:40 - 2014-05-26 13:58 - 23544320 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-05-06 06:17 - 2014-05-26 13:57 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-05-06 05:25 - 2014-05-26 13:57 - 17382912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-05-06 05:07 - 2014-05-26 13:57 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-05-06 05:00 - 2014-05-26 13:58 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-05-06 04:10 - 2014-05-26 13:58 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-05-04 17:12 - 2014-05-25 00:51 - 93223848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
Some content of TEMP:
====================
C:\Users\Dagmar\AppData\Local\Temp\Quarantine.exe
C:\Users\Dagmar\AppData\Local\Temp\SHSetup.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-05-29 00:29
==================== End Of Log ============================ Addition txt, Gruß
käse Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 02-06-2014
Ran by Dagmar at 2014-06-02 22:45:48
Running from C:\Users\Dagmar\Downloads
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Microsoft Security Essentials (Enabled - Up to date) {641105E6-77ED-3F35-A304-765193BCB75F}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Microsoft Security Essentials (Enabled - Up to date) {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}
==================== Installed Programs ======================
7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
Adobe Reader XI (11.0.07) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.07 - Adobe Systems Incorporated)
Brother HL-2030 (HKLM-x32\...\{47A9E0E5-46B3-4085-95D4-94CDBB647D70}) (Version: 1.00 - Brother)
Canon CanoScan Toolbox 4.1 (HKLM-x32\...\{BCE46757-7674-4416-BEDB-68205A60409E}) (Version: - )
CCleaner (HKLM\...\CCleaner) (Version: 4.14 - Piriform)
LibreOffice 4.2 Help Pack (German) (HKLM-x32\...\{DA6AF414-24FA-4815-A4FB-5EFD6173E6F5}) (Version: 4.2.4.2 - The Document Foundation)
LibreOffice 4.2.4.2 (HKLM-x32\...\{6B4977CB-5B9F-4B24-8310-3BA527A8AF22}) (Version: 4.2.4.2 - The Document Foundation)
Malwarebytes Anti-Malware Version 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Security Client (Version: 4.5.0216.0 - Microsoft Corporation) Hidden
Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.5.216.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation)
Motorola SM56 Speakerphone Modem (HKLM\...\SMSERIAL) (Version: 6.12.25.06 - Motorola Inc)
Mozilla Firefox 29.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 29.0.1 (x86 de)) (Version: 29.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 24.5.0 - Mozilla)
Mozilla Thunderbird 24.5.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 24.5.0 (x86 de)) (Version: 24.5.0 - Mozilla)
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.3 - NVIDIA Corporation)
Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group)
==================== Restore Points =========================
==================== Hosts content: ==========================
2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {5C5C54DD-0973-4AD9-A587-F2406E6252A2} - System32\Tasks\{465B2D67-2508-4E2F-A12F-694720AB2E62} => C:\Program Files (x86)\ASUSTek\ASUSDVD\ASUSDVD.exe
Task: {610ADE83-99D8-4F8D-B000-E2FB8742ECA5} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-05-20] (Piriform Ltd)
Task: {61B668B7-D6E3-4EBF-BE6E-2A7CEBF8C3D5} - System32\Tasks\{AEBC04C5-4C29-4E20-8A35-9CDC8995FFF1} => C:\Program Files (x86)\Canon\CanoScan Toolbox Ver4.1\CSTBox.exe [2002-12-13] (CANON INC.)
Task: {61DAEFD5-8654-4AE6-8F3F-BD21C1862AF3} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => Rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup
Task: {AC6E26E2-1552-444E-87A7-FCE25E95736F} - System32\Tasks\{7ED39C2C-4C6A-41E4-84F5-1247AF56E93B} => C:\Program Files (x86)\ASUSTek\ASUSDVD\ASUSDVD.exe
Task: {B13A0343-CB45-4E99-8AB4-F3370259EAA1} - System32\Tasks\Games\UpdateCheck_S-1-5-21-3780162296-846372098-1725787908-1000
Task: {D8A47255-AF78-419A-B8E3-35F4D6B53EAF} - System32\Tasks\{2093A083-F999-4A01-BD95-D62A9541ABCC} => C:\Program Files (x86)\ASUSTek\ASUSDVD\ASUSDVD.exe
==================== Loaded Modules (whitelisted) =============
2014-05-24 19:58 - 2014-05-07 04:27 - 03839088 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
==================== EXE Association (whitelisted) =============
==================== Disabled items from MSCONFIG ==============
==================== Faulty Device Manager Devices =============
Name: Basissystemgerät
Description: Basissystemgerät
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: CanoScan
Description: CanoScan
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: USB 2.0 Image Capture Controller
Description: USB 2.0 Image Capture Controller
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Basissystemgerät
Description: Basissystemgerät
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
==================== Event log errors: =========================
Application errors:
==================
Error: (06/02/2014 01:15:21 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (06/02/2014 00:00:17 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (06/01/2014 00:38:52 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (05/31/2014 00:03:25 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (05/30/2014 11:29:47 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (05/30/2014 07:41:45 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
System errors:
=============
Error: (06/02/2014 01:43:49 PM) (Source: Microsoft Antimalware) (EventID: 2001) (User: )
Description: Beim Aktualisieren der Signaturen wurde von %NT-AUTORITÄT60 ein Fehler festgestellt.
Neue Signaturversion:
Vorherige Signaturversion: 1.175.1073.0
Aktualisierungsquelle: %NT-AUTORITÄT59
Aktualisierungsphase: 4.5.0216.00
Quellpfad: 4.5.0216.01
Signaturtyp: %NT-AUTORITÄT602
Aktualisierungstyp: %NT-AUTORITÄT604
Benutzer: NT-AUTORITÄT\SYSTEM
Aktuelle Modulversion: %NT-AUTORITÄT605
Vorherige Modulversion: %NT-AUTORITÄT606
Fehlercode: %NT-AUTORITÄT607
Fehlerbeschreibung: %NT-AUTORITÄT608
Error: (06/02/2014 01:13:24 PM) (Source: Microsoft-Windows-Kernel-Processor-Power) (EventID: 6) (User: NT-AUTORITÄT)
Description: Einige Funktionen zur Energieverwaltung im Leistungsstatus wurden im Prozessor aufgrund eines bekannten Firmwareproblems deaktiviert. Wenden Sie sich an den Computerhersteller, um aktualisierte Firmware zu erhalten.
Error: (06/02/2014 00:00:40 AM) (Source: WMPNetworkSvc) (EventID: 14332) (User: )
Description: WMPNetworkSvc0x80004005
Error: (06/01/2014 11:58:21 PM) (Source: Microsoft-Windows-Kernel-Processor-Power) (EventID: 6) (User: NT-AUTORITÄT)
Description: Einige Funktionen zur Energieverwaltung im Leistungsstatus wurden im Prozessor aufgrund eines bekannten Firmwareproblems deaktiviert. Wenden Sie sich an den Computerhersteller, um aktualisierte Firmware zu erhalten.
Error: (06/01/2014 11:58:18 PM) (Source: volsnap) (EventID: 29) (User: )
Description: Die Schattenkopien von Volume "C:" wurde während der Ermittlung abgebrochen.
Error: (06/01/2014 08:11:19 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: {1C749B87-568C-4865-8E73-6413F8372CE6}
Error: (06/01/2014 00:36:59 PM) (Source: Microsoft-Windows-Kernel-Processor-Power) (EventID: 6) (User: NT-AUTORITÄT)
Description: Einige Funktionen zur Energieverwaltung im Leistungsstatus wurden im Prozessor aufgrund eines bekannten Firmwareproblems deaktiviert. Wenden Sie sich an den Computerhersteller, um aktualisierte Firmware zu erhalten.
Error: (05/31/2014 09:58:52 PM) (Source: Server) (EventID: 2505) (User: )
Description: Aufgrund eines doppelten Netzwerknamens konnte zu der Transportschicht \Device\NetBT_Tcpip_{1C4E3B9D-5CB2-4B2B-BD6D-5029A8FCFE78} vom Serverdienst nicht gebunden werden. Der Serverdienst konnte nicht gestartet werden.
Error: (05/31/2014 00:01:32 PM) (Source: Microsoft-Windows-Kernel-Processor-Power) (EventID: 6) (User: NT-AUTORITÄT)
Description: Einige Funktionen zur Energieverwaltung im Leistungsstatus wurden im Prozessor aufgrund eines bekannten Firmwareproblems deaktiviert. Wenden Sie sich an den Computerhersteller, um aktualisierte Firmware zu erhalten.
Error: (05/30/2014 11:27:53 PM) (Source: Microsoft-Windows-Kernel-Processor-Power) (EventID: 6) (User: NT-AUTORITÄT)
Description: Einige Funktionen zur Energieverwaltung im Leistungsstatus wurden im Prozessor aufgrund eines bekannten Firmwareproblems deaktiviert. Wenden Sie sich an den Computerhersteller, um aktualisierte Firmware zu erhalten.
Microsoft Office Sessions:
=========================
Error: (06/02/2014 01:15:21 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (06/02/2014 00:00:17 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (06/01/2014 00:38:52 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (05/31/2014 00:03:25 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (05/30/2014 11:29:47 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (05/30/2014 07:41:45 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
CodeIntegrity Errors:
===================================
Date: 2014-05-29 16:27:41.150
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows.old\Windows\winsxs\x86_microsoft-windows-appid_31bf3856ad364e35_6.1.7601.17514_none_59537a3710696511\appid.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-05-29 16:27:40.962
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows.old\Windows\winsxs\x86_microsoft-windows-appid_31bf3856ad364e35_6.1.7601.17514_none_59537a3710696511\appid.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-05-29 16:27:40.775
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows.old\Windows\winsxs\x86_microsoft-windows-appid_31bf3856ad364e35_6.1.7601.17514_none_59537a3710696511\appid.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-05-29 16:27:40.587
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows.old\Windows\winsxs\x86_microsoft-windows-appid_31bf3856ad364e35_6.1.7601.17514_none_59537a3710696511\appid.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-05-29 16:27:40.134
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows.old\Windows\winsxs\x86_microsoft-windows-appid_31bf3856ad364e35_6.1.7601.22379_none_59a11c7229b34d60\appidapi.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-05-29 16:27:40.009
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows.old\Windows\winsxs\x86_microsoft-windows-appid_31bf3856ad364e35_6.1.7601.22379_none_59a11c7229b34d60\appidapi.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-05-29 16:27:39.884
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows.old\Windows\winsxs\x86_microsoft-windows-appid_31bf3856ad364e35_6.1.7601.22379_none_59a11c7229b34d60\appidapi.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-05-29 16:27:39.759
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows.old\Windows\winsxs\x86_microsoft-windows-appid_31bf3856ad364e35_6.1.7601.22379_none_59a11c7229b34d60\appidapi.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-05-29 16:27:39.587
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows.old\Windows\winsxs\x86_microsoft-windows-appid_31bf3856ad364e35_6.1.7601.22379_none_59a11c7229b34d60\appid.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-05-29 16:27:39.462
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows.old\Windows\winsxs\x86_microsoft-windows-appid_31bf3856ad364e35_6.1.7601.22379_none_59a11c7229b34d60\appid.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
==================== Memory info ===========================
Percentage of memory in use: 86%
Total physical RAM: 1023.37 MB
Available physical RAM: 142.04 MB
Total Pagefile: 2077.37 MB
Available Pagefile: 741.85 MB
Total Virtual: 8192 MB
Available Virtual: 8191.84 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:37.9 GB) (Free:8.63 GB) NTFS
Drive d: () (Fixed) (Total:28.12 GB) (Free:1.06 GB) FAT32 ==>[System with boot components (obtained from reading drive)]
Drive e: () (Fixed) (Total:19.75 GB) (Free:0.78 GB) FAT32
Drive g: (INSEL) (Removable) (Total:0.94 GB) (Free:0.01 GB) FAT32
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 112 GB) (Disk ID: 69F807C0)
Partition 1: (Not Active) - (Size=2 GB) - (Type=1B)
Partition 2: (Active) - (Size=28 GB) - (Type=0C)
Partition 3: (Not Active) - (Size=38 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=44 GB) - (Type=OF Extended)
========================================================
Disk: 1 (MBR Code: Windows XP) (Size: 968 MB) (Disk ID: C3072E18)
Partition 1: (Active) - (Size=967 MB) - (Type=0B)
==================== End Of Log ============================ Addition txt
Gruß
käse Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 02-06-2014
Ran by Dagmar at 2014-06-02 22:45:48
Running from C:\Users\Dagmar\Downloads
Boot Mode: Normal
==========================================================
==================== Security Center ========================
AV: Microsoft Security Essentials (Enabled - Up to date) {641105E6-77ED-3F35-A304-765193BCB75F}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Microsoft Security Essentials (Enabled - Up to date) {DF70E402-51D7-30BB-99B4-4D23E83BFDE2}
==================== Installed Programs ======================
7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov)
Adobe Reader XI (11.0.07) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.07 - Adobe Systems Incorporated)
Brother HL-2030 (HKLM-x32\...\{47A9E0E5-46B3-4085-95D4-94CDBB647D70}) (Version: 1.00 - Brother)
Canon CanoScan Toolbox 4.1 (HKLM-x32\...\{BCE46757-7674-4416-BEDB-68205A60409E}) (Version: - )
CCleaner (HKLM\...\CCleaner) (Version: 4.14 - Piriform)
LibreOffice 4.2 Help Pack (German) (HKLM-x32\...\{DA6AF414-24FA-4815-A4FB-5EFD6173E6F5}) (Version: 4.2.4.2 - The Document Foundation)
LibreOffice 4.2.4.2 (HKLM-x32\...\{6B4977CB-5B9F-4B24-8310-3BA527A8AF22}) (Version: 4.2.4.2 - The Document Foundation)
Malwarebytes Anti-Malware Version 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Security Client (Version: 4.5.0216.0 - Microsoft Corporation) Hidden
Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.5.216.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation)
Motorola SM56 Speakerphone Modem (HKLM\...\SMSERIAL) (Version: 6.12.25.06 - Motorola Inc)
Mozilla Firefox 29.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 29.0.1 (x86 de)) (Version: 29.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 24.5.0 - Mozilla)
Mozilla Thunderbird 24.5.0 (x86 de) (HKLM-x32\...\Mozilla Thunderbird 24.5.0 (x86 de)) (Version: 24.5.0 - Mozilla)
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.3 - NVIDIA Corporation)
Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group)
==================== Restore Points =========================
==================== Hosts content: ==========================
2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {5C5C54DD-0973-4AD9-A587-F2406E6252A2} - System32\Tasks\{465B2D67-2508-4E2F-A12F-694720AB2E62} => C:\Program Files (x86)\ASUSTek\ASUSDVD\ASUSDVD.exe
Task: {610ADE83-99D8-4F8D-B000-E2FB8742ECA5} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-05-20] (Piriform Ltd)
Task: {61B668B7-D6E3-4EBF-BE6E-2A7CEBF8C3D5} - System32\Tasks\{AEBC04C5-4C29-4E20-8A35-9CDC8995FFF1} => C:\Program Files (x86)\Canon\CanoScan Toolbox Ver4.1\CSTBox.exe [2002-12-13] (CANON INC.)
Task: {61DAEFD5-8654-4AE6-8F3F-BD21C1862AF3} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => Rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup
Task: {AC6E26E2-1552-444E-87A7-FCE25E95736F} - System32\Tasks\{7ED39C2C-4C6A-41E4-84F5-1247AF56E93B} => C:\Program Files (x86)\ASUSTek\ASUSDVD\ASUSDVD.exe
Task: {B13A0343-CB45-4E99-8AB4-F3370259EAA1} - System32\Tasks\Games\UpdateCheck_S-1-5-21-3780162296-846372098-1725787908-1000
Task: {D8A47255-AF78-419A-B8E3-35F4D6B53EAF} - System32\Tasks\{2093A083-F999-4A01-BD95-D62A9541ABCC} => C:\Program Files (x86)\ASUSTek\ASUSDVD\ASUSDVD.exe
==================== Loaded Modules (whitelisted) =============
2014-05-24 19:58 - 2014-05-07 04:27 - 03839088 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
==================== Alternate Data Streams (whitelisted) =========
==================== Safe Mode (whitelisted) ===================
==================== EXE Association (whitelisted) =============
==================== Disabled items from MSCONFIG ==============
==================== Faulty Device Manager Devices =============
Name: Basissystemgerät
Description: Basissystemgerät
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: CanoScan
Description: CanoScan
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: USB 2.0 Image Capture Controller
Description: USB 2.0 Image Capture Controller
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
Name: Basissystemgerät
Description: Basissystemgerät
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
==================== Event log errors: =========================
Application errors:
==================
Error: (06/02/2014 01:15:21 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (06/02/2014 00:00:17 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (06/01/2014 00:38:52 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (05/31/2014 00:03:25 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (05/30/2014 11:29:47 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (05/30/2014 07:41:45 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
System errors:
=============
Error: (06/02/2014 01:43:49 PM) (Source: Microsoft Antimalware) (EventID: 2001) (User: )
Description: Beim Aktualisieren der Signaturen wurde von %NT-AUTORITÄT60 ein Fehler festgestellt.
Neue Signaturversion:
Vorherige Signaturversion: 1.175.1073.0
Aktualisierungsquelle: %NT-AUTORITÄT59
Aktualisierungsphase: 4.5.0216.00
Quellpfad: 4.5.0216.01
Signaturtyp: %NT-AUTORITÄT602
Aktualisierungstyp: %NT-AUTORITÄT604
Benutzer: NT-AUTORITÄT\SYSTEM
Aktuelle Modulversion: %NT-AUTORITÄT605
Vorherige Modulversion: %NT-AUTORITÄT606
Fehlercode: %NT-AUTORITÄT607
Fehlerbeschreibung: %NT-AUTORITÄT608
Error: (06/02/2014 01:13:24 PM) (Source: Microsoft-Windows-Kernel-Processor-Power) (EventID: 6) (User: NT-AUTORITÄT)
Description: Einige Funktionen zur Energieverwaltung im Leistungsstatus wurden im Prozessor aufgrund eines bekannten Firmwareproblems deaktiviert. Wenden Sie sich an den Computerhersteller, um aktualisierte Firmware zu erhalten.
Error: (06/02/2014 00:00:40 AM) (Source: WMPNetworkSvc) (EventID: 14332) (User: )
Description: WMPNetworkSvc0x80004005
Error: (06/01/2014 11:58:21 PM) (Source: Microsoft-Windows-Kernel-Processor-Power) (EventID: 6) (User: NT-AUTORITÄT)
Description: Einige Funktionen zur Energieverwaltung im Leistungsstatus wurden im Prozessor aufgrund eines bekannten Firmwareproblems deaktiviert. Wenden Sie sich an den Computerhersteller, um aktualisierte Firmware zu erhalten.
Error: (06/01/2014 11:58:18 PM) (Source: volsnap) (EventID: 29) (User: )
Description: Die Schattenkopien von Volume "C:" wurde während der Ermittlung abgebrochen.
Error: (06/01/2014 08:11:19 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: {1C749B87-568C-4865-8E73-6413F8372CE6}
Error: (06/01/2014 00:36:59 PM) (Source: Microsoft-Windows-Kernel-Processor-Power) (EventID: 6) (User: NT-AUTORITÄT)
Description: Einige Funktionen zur Energieverwaltung im Leistungsstatus wurden im Prozessor aufgrund eines bekannten Firmwareproblems deaktiviert. Wenden Sie sich an den Computerhersteller, um aktualisierte Firmware zu erhalten.
Error: (05/31/2014 09:58:52 PM) (Source: Server) (EventID: 2505) (User: )
Description: Aufgrund eines doppelten Netzwerknamens konnte zu der Transportschicht \Device\NetBT_Tcpip_{1C4E3B9D-5CB2-4B2B-BD6D-5029A8FCFE78} vom Serverdienst nicht gebunden werden. Der Serverdienst konnte nicht gestartet werden.
Error: (05/31/2014 00:01:32 PM) (Source: Microsoft-Windows-Kernel-Processor-Power) (EventID: 6) (User: NT-AUTORITÄT)
Description: Einige Funktionen zur Energieverwaltung im Leistungsstatus wurden im Prozessor aufgrund eines bekannten Firmwareproblems deaktiviert. Wenden Sie sich an den Computerhersteller, um aktualisierte Firmware zu erhalten.
Error: (05/30/2014 11:27:53 PM) (Source: Microsoft-Windows-Kernel-Processor-Power) (EventID: 6) (User: NT-AUTORITÄT)
Description: Einige Funktionen zur Energieverwaltung im Leistungsstatus wurden im Prozessor aufgrund eines bekannten Firmwareproblems deaktiviert. Wenden Sie sich an den Computerhersteller, um aktualisierte Firmware zu erhalten.
Microsoft Office Sessions:
=========================
Error: (06/02/2014 01:15:21 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (06/02/2014 00:00:17 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (06/01/2014 00:38:52 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (05/31/2014 00:03:25 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (05/30/2014 11:29:47 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (05/30/2014 07:41:45 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
CodeIntegrity Errors:
===================================
Date: 2014-05-29 16:27:41.150
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows.old\Windows\winsxs\x86_microsoft-windows-appid_31bf3856ad364e35_6.1.7601.17514_none_59537a3710696511\appid.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-05-29 16:27:40.962
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows.old\Windows\winsxs\x86_microsoft-windows-appid_31bf3856ad364e35_6.1.7601.17514_none_59537a3710696511\appid.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-05-29 16:27:40.775
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows.old\Windows\winsxs\x86_microsoft-windows-appid_31bf3856ad364e35_6.1.7601.17514_none_59537a3710696511\appid.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-05-29 16:27:40.587
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows.old\Windows\winsxs\x86_microsoft-windows-appid_31bf3856ad364e35_6.1.7601.17514_none_59537a3710696511\appid.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-05-29 16:27:40.134
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows.old\Windows\winsxs\x86_microsoft-windows-appid_31bf3856ad364e35_6.1.7601.22379_none_59a11c7229b34d60\appidapi.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-05-29 16:27:40.009
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows.old\Windows\winsxs\x86_microsoft-windows-appid_31bf3856ad364e35_6.1.7601.22379_none_59a11c7229b34d60\appidapi.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-05-29 16:27:39.884
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows.old\Windows\winsxs\x86_microsoft-windows-appid_31bf3856ad364e35_6.1.7601.22379_none_59a11c7229b34d60\appidapi.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-05-29 16:27:39.759
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows.old\Windows\winsxs\x86_microsoft-windows-appid_31bf3856ad364e35_6.1.7601.22379_none_59a11c7229b34d60\appidapi.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-05-29 16:27:39.587
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows.old\Windows\winsxs\x86_microsoft-windows-appid_31bf3856ad364e35_6.1.7601.22379_none_59a11c7229b34d60\appid.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
Date: 2014-05-29 16:27:39.462
Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows.old\Windows\winsxs\x86_microsoft-windows-appid_31bf3856ad364e35_6.1.7601.22379_none_59a11c7229b34d60\appid.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.
==================== Memory info ===========================
Percentage of memory in use: 86%
Total physical RAM: 1023.37 MB
Available physical RAM: 142.04 MB
Total Pagefile: 2077.37 MB
Available Pagefile: 741.85 MB
Total Virtual: 8192 MB
Available Virtual: 8191.84 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:37.9 GB) (Free:8.63 GB) NTFS
Drive d: () (Fixed) (Total:28.12 GB) (Free:1.06 GB) FAT32 ==>[System with boot components (obtained from reading drive)]
Drive e: () (Fixed) (Total:19.75 GB) (Free:0.78 GB) FAT32
Drive g: (INSEL) (Removable) (Total:0.94 GB) (Free:0.01 GB) FAT32
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 112 GB) (Disk ID: 69F807C0)
Partition 1: (Not Active) - (Size=2 GB) - (Type=1B)
Partition 2: (Active) - (Size=28 GB) - (Type=0C)
Partition 3: (Not Active) - (Size=38 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=44 GB) - (Type=OF Extended)
========================================================
Disk: 1 (MBR Code: Windows XP) (Size: 968 MB) (Disk ID: C3072E18)
Partition 1: (Active) - (Size=967 MB) - (Type=0B)
==================== End Of Log ============================ |