ESETSmartInstaller@High as downloader log:
all ok
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# EOSSerial=afe7fc28043c1c45a520530c3b60f0f6
# end=init
# utc_time=2015-09-06 05:57:58
# local_time=2015-09-06 07:57:58 (+0100, Mitteleuropäische Sommerzeit)
# country="Germany"
# osver=6.2.9200 NT
ESETSmartInstaller@High as downloader log:
all ok
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# EOSSerial=afe7fc28043c1c45a520530c3b60f0f6
# end=init
# utc_time=2015-09-06 05:59:45
# local_time=2015-09-06 07:59:45 (+0100, Mitteleuropäische Sommerzeit)
# country="Germany"
# osver=6.2.9200 NT
Update Init
Update Download
Update Finalize
Updated modules version: 25628
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# EOSSerial=afe7fc28043c1c45a520530c3b60f0f6
# end=updated
# utc_time=2015-09-06 06:01:20
# local_time=2015-09-06 08:01:20 (+0100, Mitteleuropäische Sommerzeit)
# country="Germany"
# osver=6.2.9200 NT
# product=EOS
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.7777
# api_version=3.1.1
# EOSSerial=afe7fc28043c1c45a520530c3b60f0f6
# engine=25628
# end=finished
# remove_checked=true
# archives_checked=false
# unwanted_checked=true
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2015-09-06 07:14:24
# local_time=2015-09-06 09:14:24 (+0100, Mitteleuropäische Sommerzeit)
# country="Germany"
# lang=1031
# osver=6.2.9200 NT
# compatibility_mode_1='avast! Antivirus'
# compatibility_mode=783 16777213 71 88 111035 120219 0 0
# compatibility_mode_1=''
# compatibility_mode=5893 16776574 100 94 120081 5050195 0 0
# scanned=286655
# found=46
# cleaned=46
# scan_time=4382
sh=4F7B57654EC0A99F85C2CC783631507207674DE0 ft=1 fh=8b6b602fe885ed79 vn="Variante von Win32/SBWatchman.A evtl. unerwünschte Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\AdwCleaner\Quarantine\C\Program Files\Common Files\Goobzo\GBUpdate\smi32.exe.vir"
sh=FF37F349AE6DDBD17C7160C6171937D3AF7CC215 ft=1 fh=6d0a11ee092a97d8 vn="Variante von Win32/ShopperPro.C evtl. unerwünschte Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\AdwCleaner\Quarantine\C\Program Files\Common Files\Goobzo\GBUpdate\smw.sys.vir"
sh=47ADC62C5909B5D696ADF1514940CBA365E7251A ft=1 fh=cc5f7e3a56b043ae vn="Variante von Win32/SBWatchman.A evtl. unerwünschte Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\AdwCleaner\Quarantine\C\Program Files\Common Files\ShopperPro\spbii32.exe.vir"
sh=1F76013116243B1BC04E9F59663C4CFA9D39E51E ft=1 fh=5abedd475b6888f3 vn="Variante von Win32/SpeedBit.F evtl. unerwünschte Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\AdwCleaner\Quarantine\C\Program Files\Common Files\System\SysMenu.dll.vir"
sh=3F803D7047395CA8BE45B6903E048EE8026A6116 ft=1 fh=c71c00119a74eb7c vn="Variante von Win32/AlteredSoftware.E evtl. unerwünschte Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\AdwCleaner\Quarantine\C\Program Files\globalUpdate\Update\1.3.25.0\npglobalupdateUpdate4.dll.vir"
sh=9FC6C32EEFB40F46B47DB60DA3E4A8D1F8D15818 ft=1 fh=0cebb9ac5fba03b6 vn="Variante von Win32/SBWatchman.F evtl. unerwünschte Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\AdwCleaner\Quarantine\C\Program Files\YTDownloader\BrowserHelperSrv.exe.vir"
sh=B577295B7E9F61419D85CCC9F91D3DE3BFF4E8EB ft=1 fh=045698d8a9b8fa47 vn="Variante von Win32/SpeedBit.F evtl. unerwünschte Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\AdwCleaner\Quarantine\C\Program Files\YTDownloader\DownloadAPI.dll.vir"
sh=0B81B2592367939998BC980FECFAFAFFA50B8986 ft=1 fh=6fcfb001e315035a vn="Variante von Win32/SBWatchman.G evtl. unerwünschte Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\AdwCleaner\Quarantine\C\Program Files\YTDownloader\YTDownloader.exe.vir"
sh=2A425F147AB2A4AC068FB106401ED0C06AAAFBEE ft=1 fh=5ed6a5bb48f787d4 vn="Win32/Adware.ConvertAd.XQ Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\AdwCleaner\Quarantine\C\Users\Claudia\AppData\Local\2CC77700-1440184815-11DC-AB33-001E8C85686D\onslE5AD.tmp.vir"
sh=16E54F243A10629AA0AF4E39FD2FFDC525BA6C94 ft=0 fh=0000000000000000 vn="Win32/Toolbar.TNT2.I evtl. unerwünschte Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\AdwCleaner\Quarantine\C\Users\Claudia\AppData\Roaming\Mozilla\Firefox\Profiles\jj1zzvqu.default-1439714490012\Extensions\defsearchp@gmail.com\chrome\content\jquery-2.1.0.min.js.vir"
sh=250AD920C538EBAC63102E368FB642EE33AD0593 ft=1 fh=8e020e8f8829bf65 vn="Win32/Toolbar.Conduit evtl. unerwünschte Anwendung (gelöscht - in Quarantäne kopiert)" ac=C fn="C:\Dokumente und Einstellungen\Claudia\Desktop\FreeYouTubeToMP3Converter_3.11.17.exe"
sh=68F39FDC5C97B7D3B93A4B793E3E9DAF1ED75344 ft=1 fh=c71c0011ed98cc6f vn="Variante von Win32/Toolbar.Babylon.F evtl. unerwünschte Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Dokumente und Einstellungen\Claudia\Lokale Einstellungen\Anwendungsdaten\Babylon\Setup\BExternal.dll"
sh=D128CBAF3DEF02BD11A92A43C36D540E47BF06E0 ft=1 fh=6abf192eb2d8af09 vn="Variante von Win32/Toolbar.Babylon.E evtl. unerwünschte Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Dokumente und Einstellungen\Claudia\Lokale Einstellungen\Anwendungsdaten\Babylon\Setup\IECookieLow.dll"
sh=C88D76106C34D093167BD69B433CFF15F24CFE68 ft=1 fh=c9f8a6e51b4e4ea2 vn="Variante von Win32/Toolbar.Babylon.E evtl. unerwünschte Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Dokumente und Einstellungen\Claudia\Lokale Einstellungen\Anwendungsdaten\Babylon\Setup\Setup.exe"
sh=8A50655A78D8C394F37DB086AED96B482D3BDB18 ft=0 fh=0000000000000000 vn="Win32/DealPly.J evtl. unerwünschte Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Dokumente und Einstellungen\Claudia\Lokale Einstellungen\Anwendungsdaten\Chromium\User Data\Default\Extensions\gaiilaahiahdejapggenmdmafpmbipje\3.0.7.2_0\background.html"
sh=4C608AF800DCBFAFAF964581B6823AAD45D72F6E ft=1 fh=c71c00116734e13b vn="Variante von Win32/Toolbar.SearchSuite.AD evtl. unerwünschte Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Dokumente und Einstellungen\Claudia\Lokale Einstellungen\Temp\SRAssetsHelper.dll"
sh=68F39FDC5C97B7D3B93A4B793E3E9DAF1ED75344 ft=1 fh=c71c0011ed98cc6f vn="Variante von Win32/Toolbar.Babylon.F evtl. unerwünschte Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Dokumente und Einstellungen\Claudia\Lokale Einstellungen\Temp\6A58AFB1-BAB0-7891-B60E-7B25DF8759EF\BExternal.dll"
sh=D128CBAF3DEF02BD11A92A43C36D540E47BF06E0 ft=1 fh=6abf192eb2d8af09 vn="Variante von Win32/Toolbar.Babylon.E evtl. unerwünschte Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Dokumente und Einstellungen\Claudia\Lokale Einstellungen\Temp\6A58AFB1-BAB0-7891-B60E-7B25DF8759EF\IECookieLow.dll"
sh=C88D76106C34D093167BD69B433CFF15F24CFE68 ft=1 fh=c9f8a6e51b4e4ea2 vn="Variante von Win32/Toolbar.Babylon.E evtl. unerwünschte Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Dokumente und Einstellungen\Claudia\Lokale Einstellungen\Temp\6A58AFB1-BAB0-7891-B60E-7B25DF8759EF\Setup.exe"
sh=DD569E70A6786216BFEB2E06442F644D3CED4929 ft=1 fh=9cf58ecb99ccae65 vn="Win32/Toolbar.Babylon evtl. unerwünschte Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Dokumente und Einstellungen\Claudia\Lokale Einstellungen\Temp\is1438683437\MyBabylonTB.exe"
sh=16068B8977B4DC562AE782D91BC009472667E331 ft=1 fh=c3b5a87b7d152749 vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Dokumente und Einstellungen\Claudia\Lokale Einstellungen\Temp\OCS\ocs_v71a.exe"
sh=A99440EE839548B8143533902A5C0650DE728AD7 ft=1 fh=25fe779f31b48fa5 vn="Variante von Win32/Adware.ConvertAd.XD.gen Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Claudia\AppData\Local\Temp\nscC87C.tmp"
sh=F59079A0064862DA0346D62CE373046DBDBA6907 ft=1 fh=1b240bccf263f095 vn="Variante von Win32/Adware.ConvertAd.XA.gen Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Claudia\AppData\Local\Temp\nsiDEA.tmp"
sh=A99440EE839548B8143533902A5C0650DE728AD7 ft=1 fh=25fe779f31b48fa5 vn="Variante von Win32/Adware.ConvertAd.XD.gen Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Claudia\AppData\Local\Temp\nsn659B.tmp"
sh=54B0E016D5BFC08BB3E3D8C738BD6589347576CD ft=1 fh=034f804617784999 vn="Variante von Win32/Adware.ConvertAd.XC.gen Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Claudia\AppData\Local\Temp\nso8DD3.tmp"
sh=A99440EE839548B8143533902A5C0650DE728AD7 ft=1 fh=25fe779f31b48fa5 vn="Variante von Win32/Adware.ConvertAd.XD.gen Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Claudia\AppData\Local\Temp\nspDF4D.tmp"
sh=F59079A0064862DA0346D62CE373046DBDBA6907 ft=1 fh=1b240bccf263f095 vn="Variante von Win32/Adware.ConvertAd.XA.gen Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Claudia\AppData\Local\Temp\nstE813.tmp"
sh=F59079A0064862DA0346D62CE373046DBDBA6907 ft=1 fh=1b240bccf263f095 vn="Variante von Win32/Adware.ConvertAd.XA.gen Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Claudia\AppData\Local\Temp\nsx33E6.tmp"
sh=54B0E016D5BFC08BB3E3D8C738BD6589347576CD ft=1 fh=034f804617784999 vn="Variante von Win32/Adware.ConvertAd.XC.gen Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Claudia\AppData\Local\Temp\nsz4282.tmp"
sh=54B0E016D5BFC08BB3E3D8C738BD6589347576CD ft=1 fh=034f804617784999 vn="Variante von Win32/Adware.ConvertAd.XC.gen Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Claudia\AppData\Local\Temp\nszACC2.tmp"
sh=3F803D7047395CA8BE45B6903E048EE8026A6116 ft=1 fh=c71c00119a74eb7c vn="Variante von Win32/AlteredSoftware.E evtl. unerwünschte Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Claudia\AppData\Local\Temp\comh.304564\npglobalupdateUpdate4.dll"
sh=3F803D7047395CA8BE45B6903E048EE8026A6116 ft=1 fh=c71c00119a74eb7c vn="Variante von Win32/AlteredSoftware.E evtl. unerwünschte Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Claudia\AppData\Local\Temp\comh.471179\npglobalupdateUpdate4.dll"
sh=3D0E8B466F55B4146DD0D83599BCDEA2A8D181C8 ft=1 fh=70f8e2859b5aac6f vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Claudia\AppData\Local\Temp\DMR\dmr_72.exe"
sh=86B0C40EE0C681D13EC97A73A9C1D3F24B4432C3 ft=1 fh=5247da5e767edfaa vn="Variante von Win32/Adware.EoRezo.AY Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Claudia\AppData\Local\Temp\is-0HE8P.tmp\11.exe"
sh=5D6FA65A6D9A1EA86C4356C0D1D06AC6912BAB56 ft=1 fh=5247da5e8ca4c644 vn="Variante von Win32/Adware.EoRezo.AY Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Claudia\AppData\Local\Temp\is-0HE8P.tmp\436.exe"
sh=87C4FBA68AFBD01DC0CBD8CB0471A6D2F80CCFAE ft=1 fh=5247da5effa9028d vn="Variante von Win32/Adware.EoRezo.AY Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Claudia\AppData\Local\Temp\is-0HE8P.tmp\package_BubbleSound_installer_multilang.exe"
sh=2E5F692EA4A4633DA073A2580575E3ADC00C403A ft=1 fh=5247da5e673e10fb vn="Variante von Win32/Adware.EoRezo.AY Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Claudia\AppData\Local\Temp\is-0HE8P.tmp\package_pcrossbrowser_installer_multilang.exe"
sh=28F0DD729D31245DC0DC0D0EAB354BFB4F3AC488 ft=1 fh=5247da5e0f39c807 vn="Variante von Win32/Adware.EoRezo.AY Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Claudia\AppData\Local\Temp\is-0HE8P.tmp\package_SByoutube_installer_multilang.exe"
sh=C5CC848A9EA081E7A560645A2829C24C7671E984 ft=1 fh=4845552815a13752 vn="Variante von Win32/Adware.AdInstaller.E Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Claudia\AppData\Local\Temp\is-JOCEB.tmp\11.exe"
sh=B8B37C670532E68800D4D2AE9F515EA1C24D4C21 ft=1 fh=3249d2e7a394b172 vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Claudia\Downloads\System\amd-catalyst-15.7.1-win10-32bit - CHIP-Installer.exe"
sh=5463B24B5FF974C0307CD3C6582D76CB7A515B7A ft=1 fh=98951108f401c769 vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Claudia\Downloads\System\Hardcopy - CHIP-Downloader.exe"
sh=D0523ACE2F3E0DC57EA7E36CCC722E3A484BD0EB ft=1 fh=76ea1275e8503fb0 vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Users\Claudia\Downloads\System\Malware\Emsisoft Anti Malware - CHIP-Installer.exe"
sh=825CAF82D06966D9AA3D2D3E8B21BD1A3160F0D0 ft=1 fh=eabb09fcf5c24557 vn="Variante von Win32/RiskWare.Komodia.I Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="C:\Windows\System32\Piiujkau.dll"
sh=B8B37C670532E68800D4D2AE9F515EA1C24D4C21 ft=1 fh=3249d2e7a394b172 vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="D:\System\amd-catalyst-15.7.1-win10-32bit - CHIP-Installer.exe"
sh=5463B24B5FF974C0307CD3C6582D76CB7A515B7A ft=1 fh=98951108f401c769 vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="D:\System\Hardcopy - CHIP-Downloader.exe"
sh=D0523ACE2F3E0DC57EA7E36CCC722E3A484BD0EB ft=1 fh=76ea1275e8503fb0 vn="Variante von Win32/DownloadSponsor.C evtl. unerwünschte Anwendung (Gesäubert durch Löschen - in Quarantäne kopiert)" ac=C fn="D:\System\Malware\Emsisoft Anti Malware - CHIP-Installer.exe"
-
Results of screen317's Security Check version 1.008
x86 (UAC is enabled)
Internet Explorer 11
``````````````Antivirus/Firewall Check:``````````````
Windows Defender
avast! Antivirus
Antivirus up to date!
`````````Anti-malware/Other Utilities Check:`````````
Adobe Flash Player 18.0.0.232
Adobe Reader XI
Mozilla Firefox (40.0.3)
````````Process Check: objlist.exe by Laurent````````
Claudia Downloads System Malware\SecurityCheck.exe
AVAST Software Avast AvastSvc.exe
AVAST Software Avast avastui.exe
`````````````````System Health check`````````````````
Total Fragmentation on Drive C::
````````````````````End of Log``````````````````````
-
FRST Logfile:
Code:
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x86) Version:06-09-2015 01
durchgeführt von Claudia (Administrator) auf CLAUDIA-PC (06-09-2015 21:29:16)
Gestartet von C:\Users\Claudia\Downloads\System\Malware
Geladene Profile: Claudia (Verfügbare Profile: Claudia & Administrator)
Platform: Microsoft Windows 10 Pro (X86) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: FF)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: FRST Tutorial - How to use Farbar Recovery Scan Tool - Geeks to Go Forum
==================== Prozesse (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe
(Microsoft Corporation) C:\Windows\System32\mqsvc.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe
() C:\Program Files\Hardcopy\hcdll2_ex_Win32.exe
(Microsoft Corporation) C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Microsoft Corporation) C:\Users\Claudia\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(sw4you) C:\Program Files\Hardcopy\hardcopy.exe
(AVM Berlin) C:\Users\Claudia\AppData\Local\Apps\2.0\EHXWJA2Z.YYV\TNPK61R5.22T\frit..tion_1acae14e4778b8d2_0002.0003_6dcb4a48ddb2ee39\fritzbox-usb-fernanschluss.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\DataExchangeHost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Nicht auf der Ausnahmeliste) ===========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [12214528 2015-06-24] (Realtek Semiconductor)
HKLM\...\Run: [Live! Central 3] => C:\Program Files\Creative\Creative Live! Cam\Live! Central 3\CTLVCentral3.exe [461312 2012-07-24] (Creative Technology Ltd)
HKLM\...\Run: [StartCCC] => C:\Program Files\AMD\ATI.ACE\Core-Static\x86\CLIStart.exe [748744 2015-07-27] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [6111824 2015-09-05] (AVAST Software)
HKU\S-1-5-19\...\Run: [OneDriveSetup] => C:\Windows\System32\OneDriveSetup.exe [7805120 2015-07-10] (Microsoft Corporation)
HKU\S-1-5-20\...\Run: [OneDriveSetup] => C:\Windows\System32\OneDriveSetup.exe [7805120 2015-07-10] (Microsoft Corporation)
HKU\S-1-5-21-3352718751-1026252973-2574275220-1000\...\Run: [AVMUSBFernanschluss] => C:\Users\Claudia\AppData\Local\Apps\2.0\EHXWJA2Z.YYV\TNPK61R5.22T\frit..tion_1acae14e4778b8d2_0002.0003_6dcb4a48ddb2ee39\AVMAutoStart.exe [139264 2014-04-05] (AVM Berlin)
HKU\S-1-5-21-3352718751-1026252973-2574275220-1000\...\Run: [OneDrive] => C:\Users\Claudia\AppData\Local\Microsoft\OneDrive\OneDrive.exe [404064 2015-08-21] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2015-09-05] (AVAST Software)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Hardcopy.LNK [2014-05-12]
ShortcutTarget: Hardcopy.LNK -> C:\Program Files\Hardcopy\hardcopy.exe (sw4you)
==================== Internet (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt..)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{46026717-96b6-4e8c-8fe2-5432afd7fe11}: [DhcpNameServer] 192.168.178.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=130846518053219174&GUID=096C6A24-2EC9-47BA-B9C5-BBF85982B15F
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
HKU\S-1-5-21-3352718751-1026252973-2574275220-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=130846518053228184&GUID=096C6A24-2EC9-47BA-B9C5-BBF85982B15F
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3352718751-1026252973-2574275220-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3352718751-1026252973-2574275220-1000 -> {5393331A-C110-44A3-B5E9-FFA3C5207906} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-09-05] (AVAST Software)
FireFox:
========
FF ProfilePath: C:\Users\Claudia\AppData\Roaming\Mozilla\Firefox\Profiles\n8xejm89.default
FF Homepage: hxxps://www.google.de/
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_18_0_0_232.dll [2015-08-15] ()
FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Google\Picasa3\npPicasa3.dll [2015-07-11] (Google, Inc.)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-06-29] (Adobe Systems Inc.)
FF Extension: Adblock Plus - C:\Users\Claudia\AppData\Roaming\Mozilla\Firefox\Profiles\n8xejm89.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-09-05]
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-09-05]
Chrome:
=======
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-09-05]
CHR HKU\S-1-5-21-3352718751-1026252973-2574275220-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [jlcgehabolcakkjhgmgpkagpolbjlhfa] - https://clients2.google.com/service/update2/crx
==================== Dienste (Nicht auf der Ausnahmeliste) ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
"eapihdrv" => service konnte nicht entsperrt werden. <===== ACHTUNG
R2 AMD FUEL Service; C:\Program Files\AMD\ATI.ACE\Fuel\Fuel.Service.exe [276992 2015-07-27] (Advanced Micro Devices, Inc.) [Datei ist nicht signiert]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [146600 2015-09-05] (AVAST Software)
R2 CoreMessagingRegistrar; C:\WINDOWS\system32\coremessaging.dll [588800 2015-08-15] (Microsoft Corporation)
S3 diagnosticshub.standardcollector.service; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [23040 2015-07-10] (Microsoft Corporation)
S3 DmEnrollmentSvc; C:\WINDOWS\system32\Windows.Internal.Management.dll [193024 2015-07-10] (Microsoft Corporation)
R2 MSMQ; C:\WINDOWS\system32\mqsvc.exe [24576 2015-08-15] (Microsoft Corporation)
R2 OneSyncSvc_Session2; C:\WINDOWS\system32\svchost.exe [35176 2015-07-10] (Microsoft Corporation)
S3 PimIndexMaintenanceSvc_Session2; C:\WINDOWS\system32\svchost.exe [35176 2015-07-10] (Microsoft Corporation)
S3 SensorDataService; C:\WINDOWS\System32\SensorDataService.exe [669696 2015-08-15] (Microsoft Corporation)
S3 UnistoreSvc_Session2; C:\WINDOWS\System32\svchost.exe [35176 2015-07-10] (Microsoft Corporation)
S3 UserDataSvc_Session2; C:\WINDOWS\system32\svchost.exe [35176 2015-07-10] (Microsoft Corporation)
S3 w3logsvc; C:\WINDOWS\system32\inetsrv\w3logsvc.dll [72192 2015-08-15] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [277760 2015-07-10] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23264 2015-07-10] (Microsoft Corporation)
===================== Treiber (Nicht auf der Ausnahmeliste) ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R2 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [24016 2015-09-05] (AVAST Software)
R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [76000 2015-09-05] (AVAST Software)
R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [81728 2015-09-05] (AVAST Software)
R0 aswRvrt; C:\WINDOWS\system32\Drivers\aswRvrt.sys [49776 2015-09-05] (AVAST Software)
R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [788784 2015-09-05] (AVAST Software)
R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [433264 2015-09-05] (AVAST Software)
R2 aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [113592 2015-09-05] (AVAST Software)
R0 aswVmm; C:\WINDOWS\system32\Drivers\aswVmm.sys [208664 2015-09-05] (AVAST Software)
R3 avmaura; C:\WINDOWS\System32\drivers\avmaura.sys [105728 2014-04-05] (AVM Berlin)
R1 BasicRender; C:\WINDOWS\System32\drivers\BasicRender.sys [30720 2015-07-10] (Microsoft Corporation)
S3 buttonconverter; C:\WINDOWS\System32\drivers\buttonconverter.sys [23552 2015-07-10] (Microsoft Corporation)
S3 CapImg; C:\WINDOWS\System32\drivers\capimg.sys [96768 2015-07-10] (Microsoft Corporation)
R3 CompositeBus; C:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_x86_a4832450a7024d49\CompositeBus.sys [31232 2015-07-10] (Microsoft Corporation)
S3 fcvsc; C:\WINDOWS\System32\drivers\fcvsc.sys [24064 2015-07-10] (Microsoft Corporation)
R1 FileCrypt; C:\WINDOWS\System32\drivers\filecrypt.sys [74240 2015-07-10] (Microsoft Corporation)
S3 genericusbfn; C:\WINDOWS\System32\drivers\genericusbfn.sys [17408 2015-07-10] (Microsoft Corporation)
S3 GPIO; C:\WINDOWS\System32\drivers\iaiogpio.sys [22016 2015-07-10] (Intel Corporation)
R1 GpuEnergyDrv; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [7680 2015-07-10] (Microsoft Corporation)
S3 hidinterrupt; C:\WINDOWS\System32\drivers\hidinterrupt.sys [37728 2015-07-10] (Microsoft Corporation)
R1 HWiNFO32; C:\WINDOWS\system32\drivers\HWiNFO32.SYS [23840 2015-08-16] (REALiX(tm))
S3 IoQos; C:\WINDOWS\System32\drivers\ioqos.sys [23040 2015-07-10] (Microsoft Corporation)
S0 LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [88928 2015-07-10] (LSI Corporation)
S0 LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [83296 2015-07-10] (Avago Technologies)
S0 megasas; C:\WINDOWS\System32\drivers\megasas.sys [52064 2015-07-10] (Avago Technologies)
R2 MMCSS; C:\WINDOWS\system32\drivers\mmcss.sys [37376 2015-07-10] (Microsoft Corporation)
R3 MQAC; C:\WINDOWS\System32\drivers\mqac.sys [130048 2015-08-15] (Microsoft Corporation)
R3 MTsensor; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [5810 2004-08-13] ()
S3 netvsc; C:\WINDOWS\System32\drivers\netvsc.sys [80384 2015-07-10] (Microsoft Corporation)
S0 percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [51040 2015-07-10] (LSI Corporation)
S0 percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [51552 2015-07-10] (Avago Technologies)
R3 rt640x86; C:\WINDOWS\System32\drivers\rt640x86.sys [492032 2015-07-10] (Realtek )
R2 storqosflt; C:\WINDOWS\System32\drivers\storqosflt.sys [52736 2015-07-10] (Microsoft Corporation)
S0 storufs; C:\WINDOWS\System32\drivers\storufs.sys [33632 2015-07-10] (Microsoft Corporation)
R3 swenum; C:\WINDOWS\System32\DriverStore\FileRepository\swenum.inf_x86_b6707c73599dd1b6\swenum.sys [16224 2015-07-10] (Microsoft Corporation)
S3 tsusbhub; C:\WINDOWS\System32\drivers\tsusbhub.sys [112640 2010-11-20] (Microsoft Corporation) [Datei ist nicht signiert]
S3 UcmCx0101; C:\WINDOWS\System32\Drivers\UcmCx.sys [45056 2015-07-10] (Microsoft Corporation)
S3 UcmUcsi; C:\WINDOWS\System32\drivers\UcmUcsi.sys [32768 2015-08-15] (Microsoft Corporation)
S3 UdeCx; C:\WINDOWS\System32\drivers\udecx.sys [31744 2015-07-10] ()
S3 Ufx01000; C:\WINDOWS\System32\drivers\ufx01000.sys [190816 2015-07-10] (Microsoft Corporation)
S3 UfxChipidea; C:\WINDOWS\System32\drivers\UfxChipidea.sys [73568 2015-07-10] (Microsoft Corporation)
S3 ufxsynopsys; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [100704 2015-07-10] (Microsoft Corporation)
S3 UrsChipidea; C:\WINDOWS\System32\drivers\urschipidea.sys [21856 2015-07-10] (Microsoft Corporation)
S3 UrsCx01000; C:\WINDOWS\System32\drivers\urscx01000.sys [42848 2015-07-10] (Microsoft Corporation)
S3 UrsSynopsys; C:\WINDOWS\System32\drivers\urssynopsys.sys [21856 2015-07-10] (Microsoft Corporation)
S3 vhf; C:\WINDOWS\System32\drivers\vhf.sys [24064 2015-07-10] (Microsoft Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [37400 2015-07-10] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [245600 2015-07-10] (Microsoft Corporation)
S3 wdiwifi; C:\WINDOWS\System32\DRIVERS\wdiwifi.sys [488960 2015-08-15] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [97632 2015-07-10] (Microsoft Corporation)
R0 WindowsTrustedRT; C:\WINDOWS\System32\drivers\WindowsTrustedRT.sys [86552 2015-07-10] (Microsoft Corporation)
R0 WindowsTrustedRTProxy; C:\WINDOWS\System32\drivers\WindowsTrustedRTProxy.sys [15384 2015-07-10] (Microsoft Corporation)
R0 Wof; C:\WINDOWS\system32\Drivers\Wof.sys [173408 2015-08-15] (Microsoft Corporation)
S3 xboxgip; C:\WINDOWS\System32\drivers\xboxgip.sys [186368 2015-07-10] (Microsoft Corporation)
S3 xinputhid; C:\WINDOWS\System32\drivers\xinputhid.sys [18432 2015-07-10] (Microsoft Corporation)
S5 eapihdrv; <===== ACHTUNG: Gesperrter Dienst
U3 idsvc; kein ImagePath
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
U3 wpcsvc; kein ImagePath
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
NETSVC: XboxNetApiSvc -> C:\Windows\system32\XboxNetApiSvc.dll (Microsoft Corporation)
==================== Ein Monat: Erstellte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2015-09-06 21:29 - 2015-09-06 21:29 - 00000000 ____D C:\FRST
2015-09-06 21:27 - 2015-09-06 21:27 - 00000776 _____ C:\Users\Claudia\Downloads\checkup.txt
2015-09-06 21:10 - 2015-09-06 21:10 - 00016148 _____ C:\WINDOWS\system32\CLAUDIA-PC_Claudia_HistoryPrediction.bin
2015-09-05 14:19 - 2015-09-05 14:20 - 00002151 _____ C:\AdwCleaner[S17].txt
2015-09-05 12:04 - 2015-09-05 12:04 - 00001388 _____ C:\Users\Claudia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\mbar.lnk
2015-09-05 11:52 - 2015-09-05 11:52 - 00000000 ____D C:\Users\Claudia\AppData\Roaming\AVAST Software
2015-09-05 11:52 - 2015-09-05 11:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
2015-09-05 11:52 - 2015-09-05 11:51 - 00788784 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
2015-09-05 11:52 - 2015-09-05 11:51 - 00433264 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
2015-09-05 11:52 - 2015-09-05 11:51 - 00313472 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2015-09-05 11:52 - 2015-09-05 11:51 - 00208664 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
2015-09-05 11:52 - 2015-09-05 11:51 - 00113592 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
2015-09-05 11:52 - 2015-09-05 11:51 - 00081728 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2015-09-05 11:52 - 2015-09-05 11:51 - 00076000 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2015-09-05 11:52 - 2015-09-05 11:51 - 00049776 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2015-09-05 11:52 - 2015-09-05 11:51 - 00024016 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys
2015-09-05 11:51 - 2015-09-05 11:51 - 00043112 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2015-09-05 11:51 - 2015-09-05 11:51 - 00000000 ____D C:\Program Files\AVAST Software
2015-09-05 11:50 - 2015-09-05 11:50 - 00000000 ____D C:\ProgramData\AVAST Software
2015-09-05 11:34 - 2015-09-05 12:26 - 00094936 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2015-09-05 08:27 - 2015-09-05 08:27 - 00000000 ____D C:\Users\Claudia\AppData\Roaming\Mozilla
2015-09-05 08:26 - 2015-09-05 08:26 - 00001196 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2015-09-05 08:26 - 2015-09-05 08:26 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2015-09-05 08:26 - 2015-09-05 08:26 - 00000000 ____D C:\Program Files\Mozilla Firefox
2015-09-04 23:52 - 2015-09-04 23:52 - 00002500 _____ C:\AdwCleaner[C6].txt
2015-09-04 23:50 - 2015-09-04 23:51 - 00002305 _____ C:\AdwCleaner[S16].txt
2015-09-04 23:46 - 2015-09-04 23:48 - 00002277 _____ C:\AdwCleaner[S15].txt
2015-09-04 21:46 - 2015-09-04 22:41 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-09-04 21:45 - 2015-09-05 12:25 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2015-09-04 21:45 - 2015-09-05 12:01 - 00170200 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2015-09-04 21:13 - 2015-09-04 21:13 - 00000079 _____ C:\WINDOWS\wininit.ini
2015-09-04 19:51 - 2015-09-04 19:51 - 00016148 _____ C:\WINDOWS\system32\CLAUDIA-PC_Administrator_HistoryPrediction.bin
2015-09-04 19:45 - 2015-09-04 19:47 - 00000000 ____D C:\Users\Administrator.Claudia-PC\AppData\Roaming\Mozilla
2015-09-04 19:45 - 2015-09-04 19:45 - 00000000 ____D C:\Users\Administrator.Claudia-PC\AppData\Local\Mozilla
2015-09-04 19:31 - 2015-09-04 19:31 - 00643738 _____ C:\Users\Administrator.Claudia-PC\Desktop\hc_001.hcp
2015-09-04 18:28 - 2015-09-04 18:28 - 00000000 ____D C:\ProgramData\LHService
2015-09-04 18:26 - 2015-09-04 18:26 - 00000000 ____D C:\ProgramData\LockHunter
2015-09-04 18:24 - 2015-09-04 18:24 - 00000000 ____D C:\Users\Administrator.Claudia-PC\AppData\Roaming\LockHunter
2015-09-04 18:03 - 2015-09-04 18:03 - 00000000 ____D C:\Program Files\Common Files\AV
2015-09-04 17:57 - 2015-09-04 21:13 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2015-09-04 17:17 - 2015-09-04 17:17 - 00000000 ____D C:\Users\Administrator.Claudia-PC\AppData\Local\PeerDistRepub
2015-09-04 16:36 - 2015-09-04 16:36 - 00002459 _____ C:\Users\Administrator.Claudia-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2015-09-04 16:36 - 2015-09-04 16:36 - 00000000 ___RD C:\Users\Administrator.Claudia-PC\OneDrive
2015-09-04 16:34 - 2015-09-04 16:34 - 00000000 ____D C:\Users\Administrator.Claudia-PC\AppData\Roaming\Creative
2015-09-04 16:33 - 2015-09-04 16:33 - 00000000 ____D C:\Users\Administrator.Claudia-PC\AppData\Local\Publishers
2015-09-04 16:32 - 2015-09-04 16:36 - 00000000 ____D C:\Users\Administrator.Claudia-PC
2015-09-04 16:32 - 2015-09-04 16:32 - 00000020 ___SH C:\Users\Administrator.Claudia-PC\ntuser.ini
2015-09-04 16:32 - 2015-09-04 16:32 - 00000000 _SHDL C:\Users\Administrator.Claudia-PC\Startmenü
2015-09-04 16:32 - 2015-09-04 16:32 - 00000000 _SHDL C:\Users\Administrator.Claudia-PC\Netzwerkumgebung
2015-09-04 16:32 - 2015-09-04 16:32 - 00000000 _SHDL C:\Users\Administrator.Claudia-PC\Druckumgebung
2015-09-04 16:32 - 2015-09-04 16:32 - 00000000 _SHDL C:\Users\Administrator.Claudia-PC\Documents\Eigene Musik
2015-09-04 16:32 - 2015-09-04 16:32 - 00000000 _SHDL C:\Users\Administrator.Claudia-PC\Documents\Eigene Bilder
2015-09-04 16:32 - 2015-09-04 16:32 - 00000000 _SHDL C:\Users\Administrator.Claudia-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-09-04 16:32 - 2015-09-04 16:32 - 00000000 _SHDL C:\Users\Administrator.Claudia-PC\AppData\Local\Verlauf
2015-09-04 16:32 - 2015-09-04 16:32 - 00000000 ____D C:\Users\Administrator.Claudia-PC\AppData\Local\TileDataLayer
2015-09-04 16:32 - 2015-08-15 20:58 - 00000000 ___RD C:\Users\Administrator.Claudia-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-09-04 16:32 - 2015-07-10 10:28 - 00000000 __RSD C:\Users\Administrator.Claudia-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell
2015-09-04 16:32 - 2015-07-10 10:28 - 00000000 ___RD C:\Users\Administrator.Claudia-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-09-04 16:32 - 2015-07-10 10:28 - 00000000 ___RD C:\Users\Administrator.Claudia-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-09-04 16:32 - 2015-07-10 10:28 - 00000000 ____D C:\Users\Administrator.Claudia-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-09-03 22:34 - 2015-09-04 19:52 - 00002706 _____ C:\EamClean.log
2015-09-03 20:34 - 2015-09-03 20:34 - 00000000 ____D C:\ProgramData\Emsisoft
2015-09-03 20:24 - 2015-09-05 11:43 - 00000000 ____D C:\Program Files\Emsisoft Anti-Malware
2015-09-03 20:18 - 2015-09-05 16:23 - 00009664 _____ C:\WINDOWS\PFRO.log
2015-09-03 20:15 - 2015-09-03 20:20 - 00000000 ____D C:\ProgramData\TEMP
2015-09-03 20:15 - 2015-09-03 20:15 - 00000000 ____D C:\ProgramData\Licenses
2015-09-03 19:55 - 2015-08-20 07:25 - 06265168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-09-03 19:55 - 2015-08-20 07:22 - 00549160 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2015-09-03 19:55 - 2015-08-20 07:16 - 20857848 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2015-09-03 19:55 - 2015-08-20 07:11 - 00067776 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2015-09-03 19:55 - 2015-08-20 06:46 - 00135680 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2015-09-03 19:55 - 2015-08-20 06:41 - 00165888 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2015-09-03 19:55 - 2015-08-20 06:35 - 01829376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2015-09-03 19:55 - 2015-08-20 06:31 - 18806272 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2015-09-03 19:55 - 2015-08-18 09:27 - 01771592 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2015-09-03 19:55 - 2015-08-18 09:26 - 00284000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2015-09-03 19:55 - 2015-08-18 09:24 - 00963920 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2015-09-03 19:55 - 2015-08-18 09:14 - 00192864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionQueue.dll
2015-09-03 19:55 - 2015-08-18 08:49 - 00274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2015-09-03 19:55 - 2015-08-18 08:48 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMediaManager.dll
2015-09-03 19:55 - 2015-08-18 08:47 - 01507840 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2015-09-03 19:55 - 2015-08-18 08:41 - 01161216 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2015-09-03 19:55 - 2015-08-18 08:40 - 00675328 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2015-09-03 19:55 - 2015-08-18 08:38 - 01875968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2015-09-03 19:55 - 2015-08-18 08:36 - 01226752 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcnwiz.dll
2015-09-03 19:55 - 2015-08-18 08:35 - 00100864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWCN.dll
2015-09-03 19:55 - 2015-08-18 08:35 - 00100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\WcnApi.dll
2015-09-03 19:55 - 2015-08-18 08:35 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWCN.dll
2015-09-03 19:55 - 2015-08-18 08:35 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\WcnNetsh.dll
2015-09-03 19:55 - 2015-08-18 08:34 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2015-09-03 19:55 - 2015-08-18 08:34 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2015-09-03 19:55 - 2015-08-18 08:33 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthRadioMedia.dll
2015-09-03 19:55 - 2015-08-18 08:31 - 01917440 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-09-03 19:55 - 2015-08-18 08:30 - 00251904 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2015-09-03 19:55 - 2015-08-18 08:29 - 01593344 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2015-09-03 19:55 - 2015-08-18 08:26 - 01499136 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-09-03 19:55 - 2015-08-18 08:26 - 00921088 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2015-09-03 19:55 - 2015-08-18 08:26 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageStateRoaming.dll
2015-09-03 19:55 - 2015-08-18 06:42 - 00006631 _____ C:\WINDOWS\system32\ResPriHMImageList
2015-09-03 19:55 - 2015-08-18 06:42 - 00006313 _____ C:\WINDOWS\system32\ResPriImageList
2015-09-03 19:26 - 2015-09-03 19:27 - 00004577 _____ C:\AdwCleaner[S14].txt
2015-08-22 12:35 - 2015-08-22 12:35 - 00000000 _____ C:\WINDOWS\setuperr.log
2015-08-22 12:35 - 2015-08-22 12:35 - 00000000 _____ C:\WINDOWS\setupact.log
2015-08-22 12:33 - 2015-08-22 12:34 - 00004408 _____ C:\AdwCleaner[S13].txt
2015-08-22 12:11 - 2015-09-05 17:22 - 00000275 _____ C:\WINDOWS\WindowsUpdate.log
2015-08-21 23:32 - 2015-08-21 23:34 - 00004799 _____ C:\AdwCleaner[S12].txt
2015-08-21 23:09 - 2015-08-21 23:09 - 00000000 ____D C:\ProgramData\ATI
2015-08-21 23:08 - 2015-08-21 23:08 - 00062427 _____ C:\WINDOWS\system32\CCCInstall_201508212308272843.log
2015-08-21 23:08 - 2015-08-21 23:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
2015-08-21 23:00 - 2015-08-21 23:00 - 00004735 _____ C:\AdwCleaner[S11].txt
2015-08-21 22:33 - 2015-08-21 22:34 - 00005107 _____ C:\AdwCleaner[S10].txt
2015-08-21 22:13 - 2015-08-21 22:14 - 00001830 _____ C:\AdwCleaner[S9].txt
2015-08-21 21:07 - 2015-08-21 21:08 - 00001767 _____ C:\AdwCleaner[S8].txt
2015-08-21 21:02 - 2004-03-29 17:23 - 00090112 _____ (MindVision Software) C:\WINDOWS\unvise32.exe
2015-08-21 20:54 - 2015-08-21 20:54 - 00001704 _____ C:\AdwCleaner[S7].txt
2015-08-21 20:51 - 2015-08-21 20:51 - 00001762 _____ C:\AdwCleaner[C5].txt
2015-08-21 20:51 - 2015-08-21 20:51 - 00001578 _____ C:\AdwCleaner[S6].txt
2015-08-21 20:48 - 2015-08-21 20:48 - 00007811 _____ C:\AdwCleaner[C4].txt
2015-08-21 20:47 - 2015-08-21 20:48 - 00007171 _____ C:\AdwCleaner[S5].txt
2015-08-21 20:43 - 2015-08-22 12:02 - 00000000 ____D C:\WINDOWS\Minidump
2015-08-21 19:52 - 2015-08-21 19:52 - 00015931 _____ C:\AdwCleaner[C3].txt
2015-08-21 19:50 - 2015-08-21 19:51 - 00015173 _____ C:\AdwCleaner[S4].txt
2015-08-21 19:25 - 2015-08-21 20:03 - 00000004 _____ C:\WINDOWS\system32\029B560A371F4E00AB32838EBC01B9E7
2015-08-21 19:23 - 2015-08-21 19:23 - 00000000 ____D C:\Users\Claudia\AppData\Local\CrashRpt
2015-08-21 19:21 - 2015-08-21 19:21 - 00000000 ____D C:\Users\Claudia\AppData\Local\Opera Software
2015-08-21 19:20 - 2015-08-21 19:20 - 00004744 _____ C:\WINDOWS\system32\Piiujkau.ini
2015-08-21 19:20 - 2015-08-21 19:20 - 00002464 _____ C:\WINDOWS\system32\PiiujkauOff.ini
2015-08-21 19:19 - 2015-09-03 22:33 - 00000000 ____D C:\Program Files\2CC77700-1440177549-11DC-AB33-001E8C85686D
2015-08-21 19:19 - 2009-06-10 23:39 - 00000824 _____ C:\WINDOWS\system32\Drivers\etc\hp.bak
2015-08-21 18:58 - 2015-08-21 18:58 - 00000000 ____D C:\Program Files\Speccy
2015-08-19 16:49 - 2015-08-13 06:07 - 19323392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-08-19 16:49 - 2015-08-13 05:55 - 01543680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2015-08-19 16:49 - 2015-08-13 05:53 - 00311808 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2015-08-19 16:49 - 2015-08-11 11:40 - 04048808 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2015-08-19 16:49 - 2015-08-11 11:40 - 02151208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2015-08-19 16:49 - 2015-08-11 11:40 - 00918320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2015-08-19 16:49 - 2015-08-11 11:40 - 00392032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2015-08-19 16:49 - 2015-08-11 11:38 - 00454000 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll
2015-08-19 16:49 - 2015-08-11 11:38 - 00066896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2015-08-19 16:49 - 2015-08-11 11:37 - 00243800 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2015-08-19 16:49 - 2015-08-11 11:31 - 02880032 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-08-19 16:49 - 2015-08-11 11:26 - 00845664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2015-08-19 16:49 - 2015-08-11 11:25 - 01183056 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2015-08-19 16:49 - 2015-08-11 10:59 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2015-08-19 16:49 - 2015-08-11 10:59 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringclient.dll
2015-08-19 16:49 - 2015-08-11 10:58 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2015-08-19 16:49 - 2015-08-11 10:58 - 00177152 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2015-08-19 16:49 - 2015-08-11 10:57 - 13024768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-08-19 16:49 - 2015-08-11 10:57 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll
2015-08-19 16:49 - 2015-08-11 10:53 - 00301056 _____ C:\WINDOWS\system32\diagtrack_wininternal.dll
2015-08-19 16:49 - 2015-08-11 10:53 - 00284672 _____ C:\WINDOWS\system32\diagtrack_win.dll
2015-08-19 16:49 - 2015-08-11 10:51 - 01916928 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2015-08-19 16:49 - 2015-08-11 10:51 - 01823232 _____ C:\WINDOWS\system32\InputService.dll
2015-08-19 16:49 - 2015-08-11 10:50 - 00420352 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
2015-08-19 16:49 - 2015-08-11 10:50 - 00200704 _____ C:\WINDOWS\system32\TextInputFramework.dll
2015-08-19 16:49 - 2015-08-11 10:50 - 00131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2015-08-19 16:49 - 2015-08-11 10:49 - 00586752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2015-08-19 16:49 - 2015-08-11 10:49 - 00247808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-19 16:49 - 2015-08-11 10:49 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll
2015-08-19 16:49 - 2015-08-11 10:48 - 00671232 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2015-08-19 16:49 - 2015-08-11 10:47 - 00485376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2015-08-19 16:49 - 2015-08-11 10:47 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll
2015-08-19 16:49 - 2015-08-11 10:46 - 00923648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2015-08-19 16:49 - 2015-08-11 10:46 - 00099840 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeParserTask.exe
2015-08-19 16:49 - 2015-08-11 10:45 - 01820672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2015-08-19 16:49 - 2015-08-11 10:44 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\GnssAdapter.dll
2015-08-19 16:49 - 2015-08-11 10:44 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationPermissions.dll
2015-08-19 16:49 - 2015-08-11 10:43 - 02748416 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2015-08-19 16:49 - 2015-08-11 10:43 - 00722944 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2015-08-19 16:49 - 2015-08-11 10:42 - 05454848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2015-08-19 16:49 - 2015-08-11 10:41 - 00133120 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2015-08-19 16:49 - 2015-08-11 10:40 - 01964544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2015-08-19 16:49 - 2015-08-11 10:40 - 01112064 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2015-08-19 16:49 - 2015-08-11 10:40 - 00449536 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2015-08-19 16:49 - 2015-08-11 10:39 - 02987008 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2015-08-19 16:49 - 2015-08-11 10:39 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2015-08-19 16:49 - 2015-08-11 10:38 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdbui.dll
2015-08-19 16:49 - 2015-08-11 10:38 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\syncutil.dll
2015-08-19 16:49 - 2015-08-11 10:38 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll
2015-08-19 16:49 - 2015-08-11 10:37 - 00864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2015-08-18 17:02 - 2015-08-18 17:02 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2015-08-16 20:02 - 2015-08-16 20:02 - 00007623 _____ C:\Users\Claudia\AppData\Local\Resmon.ResmonCfg
2015-08-16 19:01 - 2015-08-16 19:01 - 00000000 ____D C:\Users\Claudia\AppData\Roaming\ATI
2015-08-16 19:01 - 2015-08-16 19:01 - 00000000 ____D C:\Users\Claudia\AppData\Local\ATI
2015-08-16 19:01 - 2015-08-16 19:01 - 00000000 ____D C:\Users\Claudia\AppData\Local\AMD
2015-08-16 18:53 - 2015-08-16 18:53 - 00062427 _____ C:\WINDOWS\system32\CCCInstall_201508161853193598.log
2015-08-16 18:52 - 2015-08-21 23:07 - 00000000 ____D C:\ProgramData\AMD
2015-08-16 18:51 - 2015-08-21 23:08 - 00000000 ____D C:\Program Files\AMD
2015-08-16 18:51 - 2015-08-16 18:51 - 00000000 ____D C:\ProgramData\Package Cache
2015-08-16 18:49 - 2015-08-21 23:13 - 00000000 ____D C:\AMD
2015-08-16 18:31 - 2015-08-16 18:31 - 00000796 _____ C:\Users\Claudia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Eigene Dateien.lnk
2015-08-16 18:26 - 2015-08-16 18:28 - 00000000 ____D C:\Users\Claudia\AppData\Local\Comms
2015-08-16 12:27 - 2015-08-16 12:27 - 00001830 _____ C:\Users\Claudia\Desktop\Brother.lnk
2015-08-16 11:35 - 2015-08-16 11:35 - 00000000 ____D C:\ProgramData\Brother
2015-08-16 11:26 - 2015-08-16 11:26 - 00000000 ____D C:\Users\Claudia\AppData\Roaming\OpenOffice.org
2015-08-16 11:20 - 2015-08-16 11:21 - 00000924 _____ C:\AdwCleaner[S3].txt
2015-08-16 11:08 - 2015-08-16 11:08 - 00000953 _____ C:\AdwCleaner[C2].txt
2015-08-16 11:05 - 2015-08-16 11:06 - 00000800 _____ C:\AdwCleaner[S2].txt
2015-08-16 10:46 - 2015-08-16 10:46 - 00007468 _____ C:\AdwCleaner[C1].txt
2015-08-16 10:46 - 2015-08-16 10:46 - 00000000 ____D C:\Users\Claudia\AppData\Local\PeerDistRepub
2015-08-16 10:41 - 2015-08-16 10:41 - 00008090 _____ C:\AdwCleaner[S1].txt
2015-08-16 10:40 - 2015-08-16 10:46 - 00000000 ____D C:\AdwCleaner
2015-08-16 10:16 - 2015-08-16 10:17 - 00000000 ____D C:\ProgramData\FreeDriverScout
2015-08-16 10:16 - 2015-08-16 10:16 - 00000000 ____D C:\Users\Claudia\Documents\Freemium Driver Utilities
2015-08-16 10:15 - 2015-08-16 10:15 - 00000000 ____D C:\Users\Claudia\AppData\Roaming\dlg
2015-08-16 10:14 - 2015-08-16 10:14 - 00000000 ____D C:\Users\Claudia\AppData\Roaming\AVG
2015-08-16 10:13 - 2015-08-16 10:13 - 00000000 ____D C:\Users\Claudia\AppData\Local\Avg
2015-08-16 10:12 - 2015-08-16 10:15 - 00000000 ____D C:\ProgramData\AVG
2015-08-16 10:09 - 2015-08-19 18:50 - 00000000 ____D C:\ProgramData\cWinManProc
2015-08-16 10:09 - 2015-08-16 10:09 - 00000000 _____ C:\WINDOWS\prleth.sys
2015-08-16 10:09 - 2015-08-16 10:09 - 00000000 _____ C:\WINDOWS\hgfs.sys
2015-08-16 10:08 - 2015-08-16 10:08 - 00000000 ____D C:\ProgramData\7b24ec7cc000461ebe26d116b88142c8
2015-08-16 10:04 - 2015-08-16 10:04 - 00000000 ____D C:\WINDOWS\Tasks\ImCleanDisabled
2015-08-16 10:02 - 2015-08-16 10:02 - 00000000 ____D C:\ProgramData\ProductData
2015-08-16 10:01 - 2015-08-16 10:01 - 00023840 _____ (REALiX(tm)) C:\WINDOWS\system32\Drivers\HWiNFO32.SYS
2015-08-16 10:01 - 2015-08-16 10:01 - 00000000 ____D C:\Users\Claudia\AppData\Roaming\IObit
2015-08-16 10:01 - 2015-08-16 10:01 - 00000000 ____D C:\ProgramData\IObit
2015-08-16 09:50 - 2015-08-16 09:50 - 00000000 ____D C:\ATI
2015-08-15 21:46 - 2015-08-22 12:02 - 00000000 ___DC C:\WINDOWS\Panther
2015-08-15 21:45 - 2015-08-15 21:45 - 00000000 ____D C:\Users\Claudia\AppData\Local\MicrosoftEdge
2015-08-15 21:45 - 2015-08-15 20:52 - 00000000 __SHD C:\Recovery
2015-08-15 21:42 - 2015-08-15 21:42 - 00000000 ____D C:\Windows.old
2015-08-15 21:40 - 2015-08-15 21:40 - 12589056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 11262464 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 09889792 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 06878256 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 06101504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 05118024 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 05076480 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 04398080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 04350464 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 03687936 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 03579904 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 03443200 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbon.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 03025408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 02646528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 02606080 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 02207744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 02112512 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 01985024 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 01867160 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 01808224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2015-08-15 21:40 - 2015-08-15 21:40 - 01714176 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 01709920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2015-08-15 21:40 - 2015-08-15 21:40 - 01611264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 01535032 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 01395568 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 01391104 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 01380864 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 01356368 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 01341920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 01275392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 01162240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 01153536 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2015-08-15 21:40 - 2015-08-15 21:40 - 01134592 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2015-08-15 21:40 - 2015-08-15 21:40 - 01125888 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 01084416 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 01043968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 01030416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2015-08-15 21:40 - 2015-08-15 21:40 - 00995840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00990720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00987072 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2015-08-15 21:40 - 2015-08-15 21:40 - 00925696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00918880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2015-08-15 21:40 - 2015-08-15 21:40 - 00902320 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2015-08-15 21:40 - 2015-08-15 21:40 - 00898560 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00896144 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00877016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00868752 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2015-08-15 21:40 - 2015-08-15 21:40 - 00850784 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2015-08-15 21:40 - 2015-08-15 21:40 - 00828416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00823336 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00821248 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00821248 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00798208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00794888 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00762896 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfuimanager.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00751520 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2015-08-15 21:40 - 2015-08-15 21:40 - 00750592 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00741376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00729088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpccpl.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00713312 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00712192 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2015-08-15 21:40 - 2015-08-15 21:40 - 00700256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2015-08-15 21:40 - 2015-08-15 21:40 - 00677888 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00669696 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorDataService.exe
2015-08-15 21:40 - 2015-08-15 21:40 - 00667136 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00644128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00623616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00588800 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00587264 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00584544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Import.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00539728 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2015-08-15 21:40 - 2015-08-15 21:40 - 00520640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00507696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00506200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2015-08-15 21:40 - 2015-08-15 21:40 - 00503600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2015-08-15 21:40 - 2015-08-15 21:40 - 00488960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2015-08-15 21:40 - 2015-08-15 21:40 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00476672 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00473088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00469856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2015-08-15 21:40 - 2015-08-15 21:40 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00452608 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00445952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00445240 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00442720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2015-08-15 21:40 - 2015-08-15 21:40 - 00441344 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00437248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00436064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2015-08-15 21:40 - 2015-08-15 21:40 - 00419328 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcomapi.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00417280 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00415072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2015-08-15 21:40 - 2015-08-15 21:40 - 00407616 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00397312 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00388096 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00373248 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00371200 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00369504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbhub.sys
2015-08-15 21:40 - 2015-08-15 21:40 - 00363520 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe
2015-08-15 21:40 - 2015-08-15 21:40 - 00351072 _____ (Microsoft Corporation) C:\WINDOWS\system32\halmacpi.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00351072 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00335360 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00334176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2015-08-15 21:40 - 2015-08-15 21:40 - 00328704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00311808 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00296448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00294912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00285632 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFPlay.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00283136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemcpl.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2015-08-15 21:40 - 2015-08-15 21:40 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\configmanager2.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationObjFactory.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConhostV2.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00265480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionCenter.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00257888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2015-08-15 21:40 - 2015-08-15 21:40 - 00257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00251392 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00217088 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00211456 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\system32\notepad.exe
2015-08-15 21:40 - 2015-08-15 21:40 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\notepad.exe
2015-08-15 21:40 - 2015-08-15 21:40 - 00198144 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00197472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdyboost.sys
2015-08-15 21:40 - 2015-08-15 21:40 - 00196096 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00195072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00193888 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00191488 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00191144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe
2015-08-15 21:40 - 2015-08-15 21:40 - 00189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_UserAccount.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00181088 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\srumsvc.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00173408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys
2015-08-15 21:40 - 2015-08-15 21:40 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModelShim.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00153088 _____ (Microsoft Corporation) C:\WINDOWS\system32\OmaDmAgent.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdboot.exe
2015-08-15 21:40 - 2015-08-15 21:40 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00141312 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\TabSvc.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\coredpus.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SignInOptions.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tunnel.sys
2015-08-15 21:40 - 2015-08-15 21:40 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Privacy.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2015-08-15 21:40 - 2015-08-15 21:40 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\sendmail.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2015-08-15 21:40 - 2015-08-15 21:40 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkStatus.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00085344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys
2015-08-15 21:40 - 2015-08-15 21:40 - 00082616 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcd.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\spbcd.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe
2015-08-15 21:40 - 2015-08-15 21:40 - 00056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\setbcdlocale.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00054112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys
2015-08-15 21:40 - 2015-08-15 21:40 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\unenrollhook.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthhfenum.sys
2015-08-15 21:40 - 2015-08-15 21:40 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys
2015-08-15 21:40 - 2015-08-15 21:40 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2015-08-15 21:40 - 2015-08-15 21:40 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.PAL.Desktop.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\hmkd.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmprc.exe
2015-08-15 21:40 - 2015-08-15 21:40 - 00042904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wpcfltr.sys
2015-08-15 21:40 - 2015-08-15 21:40 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.ProxyStub.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00037376 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00036704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msgpiowin32.sys
2015-08-15 21:40 - 2015-08-15 21:40 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\VoiceActivationManager.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmUcsi.sys
2015-08-15 21:40 - 2015-08-15 21:40 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\calc.exe
2015-08-15 21:40 - 2015-08-15 21:40 - 00025088 _____ C:\WINDOWS\system32\LicenseManagerApi.dll
2015-08-15 21:40 - 2015-08-15 21:40 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerShellext.exe
2015-08-15 21:40 - 2015-08-15 21:40 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2015-08-15 21:36 - 2015-07-09 21:39 - 04847104 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0009.dll
2015-08-15 21:36 - 2015-07-09 21:36 - 05739520 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0009.dll
2015-08-15 21:36 - 2015-07-09 21:36 - 02629632 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons0009.dll
2015-08-15 21:29 - 2015-08-15 21:29 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2015-08-15 21:27 - 2015-08-15 21:27 - 00000000 ____D C:\WINDOWS\system32\XPSViewer
2015-08-15 21:27 - 2015-08-15 21:27 - 00000000 ____D C:\WINDOWS\system32\msmq
2015-08-15 21:27 - 2015-08-15 21:27 - 00000000 ____D C:\WINDOWS\system32\BestPractices
2015-08-15 21:27 - 2015-08-15 21:27 - 00000000 ____D C:\Program Files\Reference Assemblies
2015-08-15 21:27 - 2015-08-15 21:27 - 00000000 ____D C:\Program Files\MSBuild
2015-08-15 21:27 - 2015-08-15 21:27 - 00000000 ____D C:\inetpub
2015-08-15 21:26 - 2015-05-29 22:07 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-08-15 21:26 - 2015-05-29 22:07 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-08-15 21:26 - 2015-05-29 22:07 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2015-08-15 21:18 - 2015-08-21 20:46 - 00002412 _____ C:\Users\Claudia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2015-08-15 21:18 - 2015-08-21 20:46 - 00000000 ___RD C:\Users\Claudia\OneDrive
2015-08-15 21:17 - 2015-09-06 19:44 - 00000000 ____D C:\Users\Claudia\AppData\Local\Deployment
2015-08-15 21:17 - 2015-08-15 21:17 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2015-08-15 21:15 - 2015-08-15 21:15 - 00000000 ____D C:\Users\Claudia\AppData\Local\Publishers
2015-08-15 21:12 - 2015-08-15 21:12 - 00000020 ___SH C:\Users\Claudia\ntuser.ini
2015-08-15 21:12 - 2015-08-15 21:12 - 00000000 ____D C:\Users\Claudia\AppData\Local\TileDataLayer
2015-08-15 21:07 - 2015-08-15 21:07 - 00000000 _SHDL C:\Users\Default\Startmenü
2015-08-15 21:07 - 2015-08-15 21:07 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung
2015-08-15 21:07 - 2015-08-15 21:07 - 00000000 _SHDL C:\Users\Default\Druckumgebung
2015-08-15 21:07 - 2015-08-15 21:07 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik
2015-08-15 21:07 - 2015-08-15 21:07 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder
2015-08-15 21:07 - 2015-08-15 21:07 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-08-15 21:07 - 2015-08-15 21:07 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf
2015-08-15 21:07 - 2015-08-15 21:07 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik
2015-08-15 21:07 - 2015-08-15 21:07 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder
2015-08-15 21:07 - 2015-08-15 21:07 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-08-15 21:07 - 2015-08-15 21:07 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf
2015-08-15 21:05 - 2015-08-15 21:05 - 00021532 _____ C:\WINDOWS\system32\emptyregdb.dat
2015-08-15 20:58 - 2015-08-15 20:58 - 00001544 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2015-08-15 20:55 - 2015-08-15 20:55 - 00000000 ____D C:\Program Files\Common Files\SpeechEngines
2015-08-15 20:54 - 2015-08-21 22:32 - 00000000 ___RD C:\Users\Claudia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-15 20:54 - 2015-08-21 20:48 - 00000000 ____D C:\Users\Claudia
2015-08-15 20:54 - 2015-08-15 20:54 - 00000000 _SHDL C:\Users\Claudia\Startmenü
2015-08-15 20:54 - 2015-08-15 20:54 - 00000000 _SHDL C:\Users\Claudia\Netzwerkumgebung
2015-08-15 20:54 - 2015-08-15 20:54 - 00000000 _SHDL C:\Users\Claudia\Druckumgebung
2015-08-15 20:54 - 2015-08-15 20:54 - 00000000 _SHDL C:\Users\Claudia\Documents\Eigene Musik
2015-08-15 20:54 - 2015-08-15 20:54 - 00000000 _SHDL C:\Users\Claudia\Documents\Eigene Bilder
2015-08-15 20:54 - 2015-08-15 20:54 - 00000000 _SHDL C:\Users\Claudia\AppData\Roaming\Microsoft\Windows\Start Menu\Programme
2015-08-15 20:54 - 2015-08-15 20:54 - 00000000 _SHDL C:\Users\Claudia\AppData\Local\Verlauf
2015-08-15 20:54 - 2015-07-10 10:28 - 00000000 __RSD C:\Users\Claudia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell
2015-08-15 20:54 - 2015-07-10 10:28 - 00000000 ___RD C:\Users\Claudia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-08-15 20:54 - 2015-07-10 10:28 - 00000000 ___RD C:\Users\Claudia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-08-15 20:54 - 2015-07-10 10:28 - 00000000 ____D C:\Users\Claudia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-08-15 20:52 - 2015-09-04 17:13 - 02030034 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-08-15 20:50 - 2015-08-15 20:50 - 00000425 _____ C:\WINDOWS\BRWMARK.INI
2015-08-15 20:50 - 2015-08-15 20:50 - 00000027 _____ C:\WINDOWS\BRPP2KA.INI
2015-08-15 20:50 - 2015-08-15 20:50 - 00000000 ____H C:\ProgramData\DP45977C.lfl
2015-08-15 20:50 - 2015-08-15 20:50 - 00000000 ____D C:\WINDOWS\system32\DAX2
2015-08-15 20:49 - 2015-08-15 20:49 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2015-08-15 20:49 - 2015-08-15 20:49 - 00000000 ____D C:\WINDOWS\system32\RTCOM
2015-08-15 20:49 - 2015-08-15 20:49 - 00000000 ____D C:\Program Files\Realtek
2015-08-15 20:47 - 2015-08-15 20:48 - 00022876 _____ C:\WINDOWS\system32\NetSetupMig.log
2015-08-15 20:17 - 2015-07-10 10:25 - 00000001 ___SH C:\BOOTNXT
2015-08-15 20:10 - 2015-08-15 21:06 - 00010447 _____ C:\WINDOWS\diagerr.xml
2015-08-15 20:10 - 2015-08-15 21:06 - 00009528 _____ C:\WINDOWS\diagwrn.xml
2015-08-15 18:08 - 2015-08-15 20:56 - 00000000 ____D C:\WINDOWS\system32\appmgmt
2015-08-15 16:38 - 2015-07-16 21:32 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.exe
2015-08-15 16:38 - 2015-07-16 21:05 - 01155072 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmlmedia.dll
2015-08-15 16:37 - 2015-07-20 19:56 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wu.upgrade.ps.dll
2015-08-15 16:26 - 2015-08-15 16:26 - 00000000 ____D C:\Users\Claudia\AppData\Local\Skype
2015-08-15 16:25 - 2015-08-15 17:40 - 00000000 ____D C:\Users\Claudia\AppData\Roaming\Skype
2015-08-15 16:23 - 2015-08-15 18:08 - 00000000 ____D C:\ProgramData\Skype
==================== Ein Monat: Geänderte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2015-09-06 21:13 - 2014-09-21 20:08 - 00000000 ____D C:\Users\Claudia\Downloads\System
2015-09-06 20:56 - 2015-07-14 13:48 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-09-06 20:53 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\NDF
2015-09-06 20:43 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\sru
2015-09-06 19:46 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-09-05 16:35 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\Microsoft.NET
2015-09-05 16:23 - 2015-07-10 11:55 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-09-05 14:23 - 2015-07-10 08:59 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2015-09-05 08:20 - 2010-01-13 15:05 - 00000000 ___RD C:\Programme
2015-09-04 23:06 - 2015-02-02 13:59 - 00000000 ____D C:\WINDOWS\CtDrvInstall
2015-09-04 21:49 - 2010-11-21 02:46 - 00000000 ____D C:\WINDOWS\RemotePackages
2015-09-04 19:17 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\rescache
2015-09-03 19:58 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\appraiser
2015-09-03 19:56 - 2015-07-10 10:20 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-08-22 12:10 - 2015-07-10 11:53 - 00215024 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-08-21 21:28 - 2015-02-02 13:55 - 00000000 ___HD C:\Program Files\InstallShield Installation Information
2015-08-21 21:02 - 2015-02-02 13:55 - 00000000 ____D C:\Program Files\Common Files\InstallShield
2015-08-21 19:52 - 2015-07-10 10:28 - 00000000 ____D C:\Program Files\Common Files\System
2015-08-17 19:29 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\Registration
2015-08-16 19:00 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2015-08-16 08:51 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\AppCompat
2015-08-15 22:39 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\restore
2015-08-15 21:52 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2015-08-15 21:46 - 2015-07-10 10:28 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2015-08-15 21:41 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2015-08-15 21:41 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\Provisioning
2015-08-15 21:36 - 2015-07-10 15:13 - 00000000 ____D C:\WINDOWS\OCR
2015-08-15 21:35 - 2015-07-10 15:16 - 00000000 ____D C:\Program Files\Windows Journal
2015-08-15 21:35 - 2015-07-10 15:12 - 00000000 ____D C:\WINDOWS\system32\winrm
2015-08-15 21:35 - 2015-07-10 15:12 - 00000000 ____D C:\WINDOWS\system32\WCN
2015-08-15 21:35 - 2015-07-10 15:12 - 00000000 ____D C:\WINDOWS\system32\slmgr
2015-08-15 21:35 - 2015-07-10 15:12 - 00000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2015-08-15 21:35 - 2015-07-10 10:28 - 00000000 ___SD C:\WINDOWS\system32\F12
2015-08-15 21:35 - 2015-07-10 10:28 - 00000000 ___SD C:\WINDOWS\system32\dsc
2015-08-15 21:35 - 2015-07-10 10:28 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs
2015-08-15 21:35 - 2015-07-10 10:28 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2015-08-15 21:35 - 2015-07-10 10:28 - 00000000 ____D C:\Program Files\Windows Defender
2015-08-15 21:27 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\MUI
2015-08-15 21:27 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\inetsrv
2015-08-15 21:27 - 2015-07-10 10:25 - 01014272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqqm.dll
2015-08-15 21:27 - 2015-07-10 10:25 - 00635904 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsnap.dll
2015-08-15 21:27 - 2015-07-10 10:25 - 00562176 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqutil.dll
2015-08-15 21:27 - 2015-07-10 10:25 - 00265728 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.dll
2015-08-15 21:27 - 2015-07-10 10:25 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll
2015-08-15 21:27 - 2015-07-10 10:25 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqrt.dll
2015-08-15 21:27 - 2015-07-10 10:25 - 00130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mqac.sys
2015-08-15 21:27 - 2015-07-10 10:25 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqlogmgr.dll
2015-08-15 21:27 - 2015-07-10 10:25 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa.tlb
2015-08-15 21:27 - 2015-07-10 10:25 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa30.tlb
2015-08-15 21:27 - 2015-07-10 10:25 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa20.tlb
2015-08-15 21:27 - 2015-07-10 10:25 - 00050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll
2015-08-15 21:27 - 2015-07-10 10:25 - 00044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqbkup.exe
2015-08-15 21:27 - 2015-07-10 10:25 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqoa10.tlb
2015-08-15 21:27 - 2015-07-10 10:25 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll
2015-08-15 21:27 - 2015-07-10 10:25 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqsvc.exe
2015-08-15 21:27 - 2015-07-10 10:25 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe
2015-08-15 21:27 - 2015-07-10 10:25 - 00014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mqcertui.dll
2015-08-15 21:27 - 2015-07-10 10:25 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll
2015-08-15 21:27 - 2015-07-10 10:25 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll
2015-08-15 21:27 - 2015-07-10 10:25 - 00009096 _____ C:\WINDOWS\system32\msmqtrc.mof
2015-08-15 21:14 - 2015-07-10 10:28 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
2015-08-15 21:14 - 2015-07-10 10:28 - 00000000 ___RD C:\WINDOWS\PrintDialog
2015-08-15 21:14 - 2015-07-10 10:28 - 00000000 ___RD C:\WINDOWS\MiracastView
2015-08-15 21:13 - 2015-07-10 10:28 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2015-08-15 21:13 - 2015-07-10 10:28 - 00000000 ___RD C:\Users\Public
2015-08-15 21:07 - 2015-07-10 10:28 - 00000000 ____D C:\Program Files\Windows NT
2015-08-15 21:07 - 2015-07-10 08:59 - 00000000 __RHD C:\Users\Default
2015-08-15 21:05 - 2015-07-10 10:28 - 00000000 __RSD C:\WINDOWS\Media
2015-08-15 21:05 - 2015-07-10 10:28 - 00000000 __RHD C:\Users\Public\Libraries
2015-08-15 21:05 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\LogFiles
2015-08-15 20:58 - 2015-07-10 10:28 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-15 20:58 - 2015-07-10 10:28 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-15 20:58 - 2015-07-10 10:28 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-15 20:58 - 2015-07-10 08:59 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2015-08-15 20:58 - 2015-02-02 13:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative
2015-08-15 20:58 - 2014-09-21 20:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
2015-08-15 20:58 - 2014-08-20 18:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2015-08-15 20:58 - 2014-04-05 17:46 - 00000000 ____D C:\Users\Claudia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FRITZ!Box
2015-08-15 20:58 - 2014-04-05 17:31 - 00000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.0.1
2015-08-15 20:58 - 2014-04-05 16:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picasa 3
2015-08-15 20:58 - 2009-07-14 04:37 - 00000000 ____D C:\Users\Default.migrated
2015-08-15 20:57 - 2015-07-10 15:12 - 00000000 ____D C:\WINDOWS\system32\Drivers\de-DE
2015-08-15 20:57 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\twain_32
2015-08-15 20:57 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\zh-TW
2015-08-15 20:57 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\zh-HK
2015-08-15 20:57 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\zh-CN
2015-08-15 20:57 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2015-08-15 20:57 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\tr-TR
2015-08-15 20:57 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\sv-SE
2015-08-15 20:57 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\ru-RU
2015-08-15 20:57 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\pt-PT
2015-08-15 20:57 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\pt-BR
2015-08-15 20:57 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\pl-PL
2015-08-15 20:57 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\nl-NL
2015-08-15 20:57 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\nb-NO
2015-08-15 20:57 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\ko-KR
2015-08-15 20:57 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\ja-JP
2015-08-15 20:57 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\it-IT
2015-08-15 20:57 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\IME
2015-08-15 20:57 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\hu-HU
2015-08-15 20:57 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\fr-FR
2015-08-15 20:57 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\fi-FI
2015-08-15 20:57 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\el-GR
2015-08-15 20:57 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\de-DE
2015-08-15 20:56 - 2015-07-10 15:12 - 00000000 ____D C:\WINDOWS\DigitalLocker
2015-08-15 20:56 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\schemas
2015-08-15 20:56 - 2010-11-21 02:46 - 00000000 ___RD C:\Users\Public\Recorded TV
2015-08-15 20:55 - 2015-07-10 10:28 - 00000000 __SHD C:\Program Files\Windows Sidebar
2015-08-15 20:55 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\Recovery
2015-08-15 20:55 - 2015-07-10 10:28 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2015-08-15 20:55 - 2014-05-12 20:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hardcopy - Bildschirmausdruck
2015-08-15 20:55 - 2009-07-14 06:52 - 00000000 ____D C:\Program Files\Microsoft Games
2015-08-15 20:55 - 2009-07-14 06:52 - 00000000 ____D C:\Program Files\DVD Maker
2015-08-15 20:19 - 2009-07-14 06:34 - 00031200 ____H C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-08-15 20:19 - 2009-07-14 06:34 - 00031200 ____H C:\WINDOWS\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-08-15 20:18 - 2014-04-05 13:05 - 00008192 __RSH C:\BOOTSECT.BAK
2015-08-15 20:10 - 2015-07-10 15:39 - 00000000 ___HD C:\$Windows.~BT
2015-08-15 17:35 - 2014-08-20 18:12 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2015-08-15 17:27 - 2014-04-05 16:30 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-08-08 17:38 - 2015-07-10 10:29 - 00794088 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2015-08-08 17:38 - 2015-07-10 10:29 - 00179688 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======
2014-11-24 12:51 - 2014-11-24 12:51 - 0003584 _____ () C:\Users\Claudia\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-08-16 20:02 - 2015-08-16 20:02 - 0007623 _____ () C:\Users\Claudia\AppData\Local\Resmon.ResmonCfg
2015-08-15 20:50 - 2015-08-15 20:50 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
Einige Dateien in TEMP:
====================
C:\Users\Claudia\AppData\Local\Temp\Opera_NI_stable.exe
C:\Users\Claudia\AppData\Local\Temp\SpOrder.dll
==================== Bamital & volsnap =================
(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)
C:\WINDOWS\explorer.exe => Datei ist digital signiert
C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert
C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert
C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert
C:\WINDOWS\system32\services.exe => Datei ist digital signiert
C:\WINDOWS\system32\User32.dll => Datei ist digital signiert
C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert
C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert
C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert
LastRegBack: 2015-09-03 21:10
==================== Ende vom FRST.txt ============================
--- --- ---
nein, keine Probleme mehr...