Code:
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 07-02-2015
Ran by Anja at 2015-02-08 12:00:35 Run:2
Running from C:\Users\Anja\Desktop
Loaded Profiles: Anja (Available profiles: Anja)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
cmd: ipconfig /flushdns
*****************
========= ipconfig /flushdns =========
Windows-IP-Konfiguration
Der DNS-Aufl�sungscache wurde geleert.
========= End of CMD: =========
==== End of Fixlog 12:00:35 ====
FRST Logfile:
FRST Logfile:
FRST Logfile:
FRST Logfile:
FRST Logfile:
Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 07-02-2015
Ran by Anja (administrator) on JESSICANB on 08-02-2015 12:02:06
Running from C:\Users\Anja\Desktop
Loaded Profiles: Anja (Available profiles: Anja)
Platform: Windows 8.1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
Failed to access process -> smss.exe
Failed to access process -> csrss.exe
Failed to access process -> services.exe
(Qualcomm Atheros Commnucations) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\AdminService.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
Failed to access process -> MsMpEng.exe
Failed to access process -> NisSrv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
Failed to access process -> csrss.exe
(Atheros Communications) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
() C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe
Failed to access process -> svchost.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe
(CyberLink) C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe
(Microsoft Corporation) C:\Windows\WinStore\WSHost.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(SRWare) C:\Program Files (x86)\SRWare Iron\chrome.exe
(SRWare) C:\Program Files (x86)\SRWare Iron\chrome.exe
(SRWare) C:\Program Files (x86)\SRWare Iron\chrome.exe
(SRWare) C:\Program Files (x86)\SRWare Iron\chrome.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12503184 2012-06-11] (Realtek Semiconductor)
HKLM-x32\...\Run: [LManager] => [X]
Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [132736 2013-01-28] ( (Atheros Communications))
HKU\S-1-5-21-2513446037-876431734-2113241799-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7404312 2015-01-20] (Piriform Ltd)
HKU\S-1-5-21-2513446037-876431734-2113241799-1001\...\Policies\Explorer: [NoDriveTypeAutoRun] 0x95000000
HKU\S-1-5-21-2513446037-876431734-2113241799-1001\...\MountPoints2: {eafd6177-aadd-11e4-bf5f-b888e3d1ce52} - "E:\pushinst.exe"
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Acer Backup Manager Tray.lnk
ShortcutTarget: Acer Backup Manager Tray.lnk -> C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe (NTI Corporation)
Startup: C:\Users\Anja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.4.1.lnk
ShortcutTarget: OpenOffice.org 3.4.1.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe ()
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\.DEFAULT\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-2513446037-876431734-2113241799-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-2513446037-876431734-2113241799-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-2513446037-876431734-2113241799-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer13.msn.com
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2513446037-876431734-2113241799-1001 -> {312C44B3-E40B-4721-A1BB-43DC49C7DBAA} URL =
BHO: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\IEPlugIn.dll (Qualcomm Atheros Commnucations)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 0.0.0.0
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll ()
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\1\NP_wtapp.dll ()
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [227456 2013-01-28] (Qualcomm Atheros Commnucations)
S4 BrcmCardReader; C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe [176640 2012-08-20] (Broadcom Corp.) [File not signed]
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-11-21] (Microsoft Corporation)
R2 CCDMonitorService; C:\Program Files (x86)\Acer\AOP Framework\CCDMonitorService.exe [2713856 2014-12-19] (Acer Incorporated)
S3 DeviceFastLaneService; C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe [468624 2012-08-23] (Acer Incorporated)
R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [658576 2012-08-22] (Acer Incorporated)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-18] (Intel Corporation)
S4 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [259136 2012-08-23] (NTI Corporation)
S4 RfButtonDriverService; C:\Windows\RfBtnSvc64.exe [93296 2012-10-22] (Dritek System INC.)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-09-22] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-09-22] (Microsoft Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S3 FWLANUSB; C:\Windows\system32\DRIVERS\fwlanusb.sys [460800 2010-10-22] (AVM GmbH)
U5 NdisImPlatform; C:\Windows\System32\Drivers\NdisImPlatform.sys [126464 2014-11-21] (Microsoft Corporation)
R3 Ps2Kb2Hid; C:\Windows\System32\drivers\aPs2Kb2Hid.sys [26736 2012-10-22] (Dritek System Inc.)
R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-09-22] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-02-08 11:59 - 2015-02-08 11:59 - 00000023 _____ () C:\Users\Anja\Documents\fixlist.txt
2015-02-07 19:33 - 2015-02-08 12:02 - 00009064 _____ () C:\Users\Anja\Desktop\FRST.txt
2015-02-07 19:33 - 2015-02-07 19:33 - 00000000 ____D () C:\Users\Anja\Desktop\FRST-OlderVersion
2015-02-07 17:49 - 2015-02-07 17:49 - 00000354 _____ () C:\WINDOWS\PFRO.log
2015-02-07 15:39 - 2015-02-07 15:39 - 00000207 _____ () C:\WINDOWS\tweaking.com-regbackup-JESSICANB-Windows-8.1-(64-bit).dat
2015-02-07 15:39 - 2015-02-07 15:39 - 00000000 ____D () C:\RegBackup
2015-02-07 14:56 - 2015-02-07 14:56 - 00002179 _____ () C:\Users\Anja\Desktop\Tweaking.com - Windows Repair (All in One).lnk
2015-02-07 14:55 - 2015-02-07 14:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tweaking.com
2015-02-07 14:55 - 2015-02-07 14:55 - 00000000 ____D () C:\Program Files (x86)\Tweaking.com
2015-02-07 14:54 - 2015-02-08 11:56 - 00018962 _____ () C:\WINDOWS\avmfwlanci.log
2015-02-07 14:54 - 2015-02-07 19:33 - 00524065 _____ () C:\WINDOWS\WindowsUpdate.log
2015-02-07 14:54 - 2015-02-07 14:54 - 10318832 _____ () C:\Users\Anja\Downloads\tweaking.com_windows_repair_aio_setup.exe
2015-02-07 14:53 - 2015-02-07 20:11 - 00000385 _____ () C:\WINDOWS\setupact.log
2015-02-07 14:53 - 2015-02-07 14:53 - 00000000 _____ () C:\WINDOWS\setuperr.log
2015-02-07 00:56 - 2015-02-07 00:57 - 00029204 _____ () C:\Users\Anja\Desktop\Addition.txt
2015-02-07 00:49 - 2015-02-07 00:49 - 00852573 _____ () C:\Users\Anja\Desktop\SecurityCheck.exe
2015-02-06 23:23 - 2015-02-06 23:23 - 02347384 _____ (ESET) C:\Users\Anja\Downloads\esetsmartinstaller_deu.exe
2015-02-06 19:17 - 2015-02-06 19:17 - 00000000 ____D () C:\Users\Anja\AppData\Local\iGware
2015-02-06 18:32 - 2015-02-06 18:32 - 00000000 ____D () C:\Users\Anja\AppData\Local\AcerCloud
2015-02-06 18:31 - 2015-02-06 18:31 - 00000000 ____D () C:\Users\Anja\AppData\Local\Doc
2015-02-06 18:29 - 2015-02-06 21:23 - 00000000 ____D () C:\Users\Anja\AppData\Local\ClearfiMedia
2015-02-06 18:28 - 2015-02-06 18:30 - 00000000 ____D () C:\Users\Anja\AppData\Local\Acer
2015-02-06 18:28 - 2015-02-06 18:28 - 00000000 ____D () C:\Users\Anja\AppData\Local\AOP SDK
2015-02-06 18:25 - 2015-02-06 18:27 - 00000000 ____D () C:\Users\Anja\AppData\Local\ClearfiPhoto
2015-02-06 15:35 - 2015-02-06 15:39 - 00000000 ____D () C:\AdwCleaner
2015-02-06 15:35 - 2015-02-06 15:35 - 02112512 _____ () C:\Users\Anja\Downloads\adwcleaner_4.110.exe
2015-02-06 14:10 - 2010-10-22 02:00 - 00480632 ____N (AVM Berlin) C:\WINDOWS\instwcli.dex
2015-02-06 12:53 - 2015-02-07 19:33 - 02132992 _____ (Farbar) C:\Users\Anja\Desktop\FRST64.exe
2015-02-06 12:46 - 2015-02-06 12:47 - 01388274 _____ (Thisisu) C:\Users\Anja\Downloads\JRT.exe
2015-02-06 12:42 - 2015-02-06 12:42 - 02112512 _____ () C:\Users\Anja\Downloads\AdwCleaner_4.110 (1).exe
2015-02-06 11:53 - 2015-02-06 11:53 - 00129752 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2015-02-06 11:52 - 2015-02-06 11:52 - 00001118 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-02-06 11:52 - 2015-02-06 11:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-02-06 11:52 - 2015-02-06 11:52 - 00000000 ____D () C:\ProgramData\Malwarebytes
2015-02-06 11:52 - 2015-02-06 11:52 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-02-06 11:52 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2015-02-06 11:52 - 2014-11-21 06:14 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2015-02-06 11:52 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2015-02-06 11:50 - 2015-02-06 11:51 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Anja\Downloads\mbam-setup-2.0.4.1028.exe
2015-02-06 08:25 - 2015-02-07 19:25 - 00000884 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-02-06 08:25 - 2015-02-06 08:25 - 00003772 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2015-02-06 08:24 - 2015-02-06 08:25 - 00000000 ____D () C:\Users\Anja\AppData\Local\Adobe
2015-02-06 07:50 - 2015-02-06 07:50 - 00002770 _____ () C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
2015-02-06 07:50 - 2015-02-06 07:50 - 00000838 _____ () C:\Users\Anja\Desktop\CCleaner.lnk
2015-02-06 07:50 - 2015-02-06 07:50 - 00000000 ____D () C:\Users\Anja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CCleaner
2015-02-06 07:50 - 2015-02-06 07:50 - 00000000 ____D () C:\Program Files\CCleaner
2015-02-06 07:48 - 2015-02-06 07:48 - 04196968 _____ (Piriform Ltd) C:\Users\Anja\Downloads\ccsetup502_slim (1).exe
2015-02-06 07:47 - 2015-02-06 07:47 - 04196968 _____ (Piriform Ltd) C:\Users\Anja\Downloads\ccsetup502_slim.exe
2015-02-05 23:26 - 2015-02-06 12:53 - 00000000 ____D () C:\Users\Anja\Desktop\Trojaner-Board
2015-02-05 23:13 - 2014-09-22 04:06 - 00258368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys
2015-02-05 23:13 - 2014-09-22 04:06 - 00114496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys
2015-02-05 23:13 - 2014-09-22 03:49 - 00035320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys
2015-02-05 23:13 - 2014-09-02 23:08 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\winshfhc.dll
2015-02-05 23:13 - 2014-09-02 23:08 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winshfhc.dll
2015-02-05 23:13 - 2014-06-09 23:13 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2015-02-05 23:13 - 2014-06-09 23:13 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2015-02-05 23:12 - 2014-04-30 07:43 - 00071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vwififlt.sys
2015-02-05 23:12 - 2014-04-30 07:41 - 00038912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vwifimp.sys
2015-02-05 23:06 - 2015-02-08 12:02 - 00000000 ____D () C:\FRST
2015-02-04 21:45 - 2014-11-10 00:19 - 00991232 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2015-02-04 21:45 - 2014-11-10 00:19 - 00806400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2015-02-04 21:45 - 2014-11-10 00:18 - 00259584 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll
2015-02-04 21:45 - 2014-11-10 00:18 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pku2u.dll
2015-02-04 21:38 - 2014-07-24 04:20 - 00875688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr120_clr0400.dll
2015-02-04 21:38 - 2014-07-24 04:20 - 00869544 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcr120_clr0400.dll
2015-02-03 12:24 - 2015-02-03 12:24 - 00000000 __SHD () C:\Users\Anja\AppData\Local\EmieUserList
2015-02-03 12:24 - 2015-02-03 12:24 - 00000000 __SHD () C:\Users\Anja\AppData\Local\EmieSiteList
2015-02-03 12:24 - 2015-02-03 12:24 - 00000000 __SHD () C:\Users\Anja\AppData\Local\EmieBrowserModeList
2015-02-03 07:34 - 2015-02-03 07:34 - 00000020 ___SH () C:\Users\Anja\ntuser.ini
2015-02-03 00:48 - 2015-02-03 00:48 - 00000000 _SHDL () C:\Users\Default\Vorlagen
2015-02-03 00:48 - 2015-02-03 00:48 - 00000000 _SHDL () C:\Users\Default\Startmenü
2015-02-03 00:48 - 2015-02-03 00:48 - 00000000 _SHDL () C:\Users\Default\Netzwerkumgebung
2015-02-03 00:48 - 2015-02-03 00:48 - 00000000 _SHDL () C:\Users\Default\Lokale Einstellungen
2015-02-03 00:48 - 2015-02-03 00:48 - 00000000 _SHDL () C:\Users\Default\Eigene Dateien
2015-02-03 00:48 - 2015-02-03 00:48 - 00000000 _SHDL () C:\Users\Default\Druckumgebung
2015-02-03 00:48 - 2015-02-03 00:48 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Musik
2015-02-03 00:48 - 2015-02-03 00:48 - 00000000 _SHDL () C:\Users\Default\Documents\Eigene Bilder
2015-02-03 00:48 - 2015-02-03 00:48 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-02-03 00:48 - 2015-02-03 00:48 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Verlauf
2015-02-03 00:48 - 2015-02-03 00:48 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Anwendungsdaten
2015-02-03 00:48 - 2015-02-03 00:48 - 00000000 _SHDL () C:\Users\Default\Anwendungsdaten
2015-02-03 00:48 - 2015-02-03 00:48 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Musik
2015-02-03 00:48 - 2015-02-03 00:48 - 00000000 _SHDL () C:\Users\Default User\Documents\Eigene Bilder
2015-02-03 00:48 - 2015-02-03 00:48 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-02-03 00:48 - 2015-02-03 00:48 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Verlauf
2015-02-03 00:48 - 2015-02-03 00:48 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Anwendungsdaten
2015-02-03 00:47 - 2015-02-03 00:47 - 00022960 _____ () C:\WINDOWS\system32\emptyregdb.dat
2015-02-03 00:27 - 2015-02-03 00:27 - 00001547 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2015-02-03 00:21 - 2015-02-03 00:21 - 00000000 ____D () C:\WINDOWS\system32\config\bbimigrate
2015-02-03 00:19 - 2015-02-03 07:34 - 00000000 ____D () C:\Users\Anja
2015-02-03 00:19 - 2015-02-03 00:48 - 00020958 _____ () C:\WINDOWS\diagwrn.xml
2015-02-03 00:19 - 2015-02-03 00:48 - 00020958 _____ () C:\WINDOWS\diagerr.xml
2015-02-03 00:19 - 2015-02-03 00:20 - 00000000 ___RD () C:\Users\Anja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-02-03 00:19 - 2015-02-03 00:19 - 00000000 _SHDL () C:\Users\Anja\Vorlagen
2015-02-03 00:19 - 2015-02-03 00:19 - 00000000 _SHDL () C:\Users\Anja\Startmenü
2015-02-03 00:19 - 2015-02-03 00:19 - 00000000 _SHDL () C:\Users\Anja\Netzwerkumgebung
2015-02-03 00:19 - 2015-02-03 00:19 - 00000000 _SHDL () C:\Users\Anja\Lokale Einstellungen
2015-02-03 00:19 - 2015-02-03 00:19 - 00000000 _SHDL () C:\Users\Anja\Eigene Dateien
2015-02-03 00:19 - 2015-02-03 00:19 - 00000000 _SHDL () C:\Users\Anja\Druckumgebung
2015-02-03 00:19 - 2015-02-03 00:19 - 00000000 _SHDL () C:\Users\Anja\Documents\Eigene Musik
2015-02-03 00:19 - 2015-02-03 00:19 - 00000000 _SHDL () C:\Users\Anja\Documents\Eigene Bilder
2015-02-03 00:19 - 2015-02-03 00:19 - 00000000 _SHDL () C:\Users\Anja\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-02-03 00:19 - 2015-02-03 00:19 - 00000000 _SHDL () C:\Users\Anja\AppData\Local\Verlauf
2015-02-03 00:19 - 2015-02-03 00:19 - 00000000 _SHDL () C:\Users\Anja\AppData\Local\Anwendungsdaten
2015-02-03 00:19 - 2015-02-03 00:19 - 00000000 _SHDL () C:\Users\Anja\Anwendungsdaten
2015-02-03 00:19 - 2014-11-21 11:52 - 00000000 ___RD () C:\Users\Anja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-02-03 00:19 - 2014-11-21 11:52 - 00000000 ___RD () C:\Users\Anja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-02-03 00:19 - 2014-11-21 04:42 - 00000369 _____ () C:\Users\Anja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2015-02-03 00:19 - 2014-11-21 04:42 - 00000369 _____ () C:\Users\Anja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2015-02-03 00:19 - 2013-08-22 16:36 - 00000000 ____D () C:\Users\Anja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-02-03 00:12 - 2015-02-03 00:12 - 00000000 ____D () C:\WINDOWS\SysWOW64\RTCOM
2015-02-03 00:12 - 2015-02-03 00:12 - 00000000 ____D () C:\Program Files\Realtek
2015-02-03 00:11 - 2015-02-03 00:22 - 00000000 ____D () C:\Program Files (x86)\Intel
2015-02-03 00:11 - 2015-02-03 00:11 - 00000000 ____D () C:\Program Files\Elantech
2015-02-03 00:08 - 2015-02-06 07:59 - 00000000 ___DC () C:\WINDOWS\Panther
2015-02-03 00:08 - 2015-02-03 00:08 - 00000000 __SHD () C:\Recovery
2015-02-03 00:07 - 2015-02-03 00:07 - 25059840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 19749376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 14412800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 12836864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 06039552 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 04299264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 02885120 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 02358272 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 02277888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 02125312 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2015-02-03 00:07 - 2015-02-03 00:07 - 02052096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2015-02-03 00:07 - 2015-02-03 00:07 - 01888256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 01548288 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 01307136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 00812544 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 00718848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2015-02-03 00:07 - 2015-02-03 00:07 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 00661504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 00580096 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 00535640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 00531616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 00501248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 00448792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 00417280 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec
2015-02-03 00:07 - 2015-02-03 00:07 - 00413248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 00373760 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 00372408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 00340992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\html.iec
2015-02-03 00:07 - 2015-02-03 00:07 - 00326656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 00229888 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 00108944 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDump.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
2015-02-03 00:07 - 2015-02-03 00:07 - 00038264 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2015-02-03 00:07 - 2015-02-03 00:07 - 00033584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
2015-02-03 00:05 - 2015-02-03 00:05 - 02819584 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
2015-02-03 00:05 - 2015-02-03 00:05 - 02171904 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2015-02-03 00:05 - 2015-02-03 00:05 - 01970432 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2015-02-03 00:05 - 2015-02-03 00:05 - 01762840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2015-02-03 00:05 - 2015-02-03 00:05 - 01612992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2015-02-03 00:05 - 2015-02-03 00:05 - 01489072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2015-02-03 00:05 - 2015-02-03 00:05 - 01091072 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2015-02-03 00:05 - 2015-02-03 00:05 - 00790528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2015-02-03 00:05 - 2015-02-03 00:05 - 00672984 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
2015-02-03 00:05 - 2015-02-03 00:05 - 00463872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2015-02-03 00:05 - 2015-02-03 00:05 - 00391680 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2015-02-03 00:05 - 2015-02-03 00:05 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2015-02-03 00:05 - 2015-02-03 00:05 - 00273240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2015-02-03 00:05 - 2015-02-03 00:05 - 00225280 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2015-02-03 00:05 - 2015-02-03 00:05 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2015-02-03 00:05 - 2015-02-03 00:05 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2015-02-03 00:05 - 2015-02-03 00:05 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2015-02-03 00:05 - 2015-02-03 00:05 - 00116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsDatabase.dll
2015-02-03 00:05 - 2015-02-03 00:05 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWbPrxy.exe
2015-02-03 00:05 - 2015-02-03 00:05 - 00075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ahcache.sys
2015-02-03 00:05 - 2015-02-03 00:05 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSetupStatusProvider.dll
2015-02-03 00:05 - 2015-02-03 00:05 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceSetupStatusProvider.dll
2015-02-03 00:04 - 2015-02-03 00:04 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff
2015-02-03 00:02 - 2015-02-03 00:02 - 00000000 ____D () C:\WINDOWS\SysWOW64\XPSViewer
2015-02-03 00:02 - 2015-02-03 00:02 - 00000000 ____D () C:\Program Files\Reference Assemblies
2015-02-03 00:02 - 2015-02-03 00:02 - 00000000 ____D () C:\Program Files\MSBuild
2015-02-03 00:02 - 2015-02-03 00:02 - 00000000 ____D () C:\Program Files (x86)\Reference Assemblies
2015-02-03 00:02 - 2015-02-03 00:02 - 00000000 ____D () C:\Program Files (x86)\MSBuild
2015-02-03 00:02 - 2013-08-03 05:48 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-02-03 00:02 - 2013-08-03 05:48 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-02-03 00:02 - 2013-08-03 05:41 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2015-02-03 00:02 - 2013-08-03 05:41 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-02-02 22:27 - 2015-02-02 22:27 - 00002259 _____ () C:\WINDOWS\epplauncher.mif
2015-02-02 22:22 - 2015-02-02 22:24 - 00000000 ____D () C:\Users\Anja\Downloads\smsniff-2.16_x64
2015-02-02 22:22 - 2015-02-02 22:22 - 00127443 _____ () C:\Users\Anja\Downloads\smsniff-2.16_x64.zip
2015-02-02 21:55 - 2015-02-02 22:15 - 00000000 ____D () C:\Users\Anja\Documents\smsniff-2.16_x64
2015-02-02 14:41 - 2015-02-02 14:41 - 00000000 ____D () C:\Program Files (x86)\AVM_update
2015-02-02 14:39 - 2015-02-02 14:39 - 00000000 ____D () C:\Users\Anja\AVM_Driver
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-02-08 12:00 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2015-02-07 20:15 - 2014-11-21 04:35 - 01776918 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2015-02-07 20:15 - 2014-11-21 03:45 - 00751874 _____ () C:\WINDOWS\system32\perfh007.dat
2015-02-07 20:15 - 2014-11-21 03:45 - 00155350 _____ () C:\WINDOWS\system32\perfc007.dat
2015-02-07 20:11 - 2013-08-22 15:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2015-02-07 20:06 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2015-02-07 17:50 - 2013-08-22 15:44 - 00362824 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2015-02-07 17:49 - 2012-07-26 08:59 - 00000000 ____D () C:\WINDOWS\CbsTemp
2015-02-07 16:00 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2015-02-07 15:52 - 2012-07-26 06:26 - 00000160 _____ () C:\WINDOWS\win.ini
2015-02-07 15:34 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\rescache
2015-02-07 15:27 - 2013-01-13 22:01 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2513446037-876431734-2113241799-1001
2015-02-06 21:31 - 2014-11-06 21:40 - 00007597 _____ () C:\Users\Anja\AppData\Local\Resmon.ResmonCfg
2015-02-06 21:17 - 2012-09-01 19:13 - 00000000 ____D () C:\Program Files (x86)\Acer
2015-02-06 21:16 - 2013-03-02 17:14 - 00000000 ____D () C:\Users\Anja\AppData\Local\Cyberlink
2015-02-06 21:16 - 2013-01-15 19:17 - 00000000 ____D () C:\Users\Anja\AppData\Local\clear.fi
2015-02-06 21:16 - 2012-10-22 23:51 - 00000000 ____D () C:\ProgramData\CyberLink
2015-02-06 21:16 - 2012-09-01 19:11 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-02-06 21:14 - 2012-09-01 19:13 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer
2015-02-06 18:36 - 2013-01-13 17:41 - 00000000 ____D () C:\Users\Anja\AppData\Local\CrashDumps
2015-02-06 18:33 - 2012-10-22 23:43 - 00000000 ____D () C:\ProgramData\OEM
2015-02-06 18:33 - 2012-09-01 19:41 - 00000000 ___HD () C:\OEM
2015-02-06 18:21 - 2013-01-13 21:54 - 00000000 ____D () C:\Users\Anja\AppData\Local\Packages
2015-02-06 08:36 - 2013-11-12 10:28 - 00000000 ____D () C:\Program Files (x86)\SRWare Iron
2015-02-05 23:45 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-02-05 23:45 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-02-05 23:45 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sr-Latn-RS
2015-02-05 23:45 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sr-Latn-CS
2015-02-05 23:45 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Defender
2015-02-05 23:45 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2015-02-05 23:32 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\restore
2015-02-04 21:01 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\NDF
2015-02-03 20:31 - 2014-11-21 12:01 - 00714720 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2015-02-03 20:31 - 2014-11-21 12:01 - 00106976 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2015-02-03 16:30 - 2014-12-05 22:59 - 00000000 ____D () C:\WINDOWS\system32\AutoUpdateLicense
2015-02-03 07:36 - 2013-01-13 21:55 - 00000000 ____D () C:\WINDOWS\System32\Tasks\WPD
2015-02-03 00:49 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM
2015-02-03 00:48 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\Registration
2015-02-03 00:48 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows NT
2015-02-03 00:48 - 2013-08-22 14:36 - 00000000 __RHD () C:\Users\Default
2015-02-03 00:43 - 2013-08-22 16:36 - 00000000 __RSD () C:\WINDOWS\Media
2015-02-03 00:43 - 2013-08-22 16:36 - 00000000 __RHD () C:\Users\Public\Libraries
2015-02-03 00:30 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\system32\Sysprep
2015-02-03 00:29 - 2013-11-12 10:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SRWare Iron
2015-02-03 00:29 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\Help
2015-02-03 00:29 - 2013-01-20 18:13 - 00000000 ___SD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice.org 3.4.1
2015-02-03 00:29 - 2012-10-22 23:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NTI Media Maker 9
2015-02-03 00:29 - 2012-10-22 23:17 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2015-02-03 00:29 - 2012-09-01 19:17 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink MediaEspresso 6.5
2015-02-03 00:29 - 2012-09-01 19:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EgisTec
2015-02-03 00:29 - 2012-09-01 19:06 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-02-03 00:27 - 2012-07-26 06:37 - 00000000 ____D () C:\Users\Default.migrated
2015-02-03 00:26 - 2014-11-21 11:51 - 00000000 ___SD () C:\WINDOWS\system32\CompatTel
2015-02-03 00:26 - 2014-11-21 03:45 - 00000000 ____D () C:\WINDOWS\SysWOW64\WCN
2015-02-03 00:26 - 2014-11-21 03:45 - 00000000 ____D () C:\WINDOWS\SysWOW64\sysprep
2015-02-03 00:26 - 2014-11-21 03:45 - 00000000 ____D () C:\WINDOWS\system32\WCN
2015-02-03 00:26 - 2014-09-23 17:15 - 00000000 ____D () C:\WINDOWS\SysWOW64\mflpro
2015-02-03 00:26 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\migwiz
2015-02-03 00:26 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\IME
2015-02-03 00:26 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\WinBioPlugIns
2015-02-03 00:26 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\spool
2015-02-03 00:26 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\IME
2015-02-03 00:26 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\SMI
2015-02-03 00:26 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\system32\oobe
2015-02-03 00:25 - 2015-01-06 08:45 - 00000000 ____D () C:\WINDOWS\system32\appraiser
2015-02-03 00:25 - 2013-08-22 16:43 - 00000000 ____D () C:\WINDOWS\DigitalLocker
2015-02-03 00:25 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\IME
2015-02-03 00:25 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\AppCompat
2015-02-03 00:23 - 2013-08-22 16:36 - 00000000 __SHD () C:\Program Files (x86)\Windows Sidebar
2015-02-03 00:23 - 2013-03-02 16:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\InterActual
2015-02-03 00:23 - 2012-09-01 18:58 - 00000000 ____D () C:\ProgramData\PRICache
2015-02-03 00:22 - 2013-08-22 16:36 - 00000000 __SHD () C:\Program Files\Windows Sidebar
2015-02-03 00:22 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2015-02-03 00:21 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\Recovery
2015-02-03 00:07 - 2013-08-22 16:36 - 00262144 _____ () C:\WINDOWS\system32\config\BCD-Template
2015-02-03 00:07 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\PolicyDefinitions
2015-02-03 00:05 - 2013-08-22 16:36 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel
2015-02-03 00:02 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\MUI
2015-02-03 00:02 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\MUI
2015-02-02 23:19 - 2014-09-23 17:17 - 00000000 ____D () C:\Program Files (x86)\Brother
2015-02-02 14:55 - 2012-07-26 09:12 - 00000000 ____D () C:\WINDOWS\AUInstallAgent
2015-02-02 14:49 - 2013-10-14 20:09 - 00000000 ____D () C:\WINDOWS\system32\MRT
2015-02-02 14:47 - 2013-10-14 20:09 - 113365784 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
==================== Files in the root of some directories =======
2014-11-06 21:40 - 2015-02-06 21:31 - 0007597 _____ () C:\Users\Anja\AppData\Local\Resmon.ResmonCfg
Some content of TEMP:
====================
C:\Users\Anja\AppData\Local\Temp\AcerDocsSetup.exe
C:\Users\Anja\AppData\Local\Temp\AcerPortalSetup.exe
C:\Users\Anja\AppData\Local\Temp\Quarantine.exe
C:\Users\Anja\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-02-03 00:10
==================== End Of Log ============================
--- --- ---
--- --- ---
--- --- ---
--- --- ---
--- --- ---
Das Problem werde ich nach dem Mittagessen noch einmal testen.
Das Laptop legt meinem Hauptrechner, welcher über Kabel am Router hängt, lahm, sobald der im Netz z.B. downloads tätigt.
Das macht sich bemerkbar das ich z.B. die Maus nicht mehr bedienen kann, sich das System verhält als wenn es auf 120% Volllast läuft.
Der Router ist erst ein paar Tage alt, und das Problem bestand schon seit Monaten mit dem alten Router, trotz Werkseinstellungen etc.
Ich sag ja. Ich werde hier verrückt mit dem W-LAN Lappy :crazy:
Test durchgeführt. Ich habe auf dem Hauptrechner auch mal den dns-Speicher geleert.
Kein Erfolg.
Starte ich auf dem Laptop z.B den speedtest, verwandelt sich der i5 in ein nicht zu nutzendes Gerät. Andersherum funktioniert alles Tadelos.
Die Aussage <--- Schrauber -----> Houseman bezog sich auf die Smileys und das nicht gemachte Backup ^^
Was ich einfach nicht verstehe ist, warum mein Rechner in die Knie geht, wenn das W-Lan Gerät nur ins Netz geht. Ich bemerk ja schon den Leistungsverlust wenn nur eine Webseite aufgemacht wird, welche Daten wie Bilder aktualisiert. Also im Grunde mini Downloads macht.
Wieso also blockiert der Rechner meinen, wenn er nicht einmal Berechtigungen im Netz hat auf ihn zuzugreifen.
Unter SmartSniff sieht man auch, das das Lappy regelrecht nach meinem sucht, auch wenn der nicht an ist !?
Ich wünsche Dir erst einmal einen schönen Sonntag, geniesse das Wetter. Frische Luft und die Familie sind wichtig !