System Care Antivirus

  • #21
2013-06-03 20:56 - 2013-06-03 21:12 - 324831232 ____A C:\Users\Luci\Desktop\kav_rescue_10.iso
2013-06-03 20:37 - 2013-06-03 20:40 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2013-06-03 20:37 - 2013-06-03 20:37 - 00002121 ____A C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2013-06-03 20:37 - 2013-06-03 20:37 - 00000000 ____D C:\Program Files\Spybot - Search & Destroy 2
2013-06-03 20:37 - 2009-01-25 13:14 - 00015224 ____A (Safer Networking Limited) C:\Windows\System32\sdnclean.exe
2013-06-03 20:35 - 2013-06-03 20:36 - 36271144 ____A (Safer-Networking Ltd. ) C:\Users\Luci\Desktop\spybot-2.1.exe
2013-06-03 20:29 - 2013-06-03 20:24 - 36271144 ____A (Safer-Networking Ltd. ) C:\Users\Luci\Desktop\spybot-2.1.com
2013-06-03 20:12 - 2013-06-03 20:12 - 34000902 ____A (Safer-Networking Ltd. ) C:\Users\Luci\Downloads\spybot-2.1.exe.qssqzzp.partial
2013-06-03 19:31 - 2013-06-03 19:31 - 00143344 ____A C:\Windows\Minidump\060313-25381-01.dmp
2013-06-03 19:15 - 2013-06-03 19:15 - 00143344 ____A C:\Windows\Minidump\060313-31496-01.dmp
2013-06-03 19:05 - 2013-06-03 19:05 - 00143344 ____A C:\Windows\Minidump\060313-75551-01.dmp
2013-06-03 18:56 - 2013-06-03 19:02 - 00000000 ____D C:\ProgramData\F86F32FF14F70C2C0000F86E3A951062
2013-06-03 18:56 - 2013-06-03 18:56 - 00014183 ____A C:\Users\Luci\Desktop\hs_err_pid6652.log
2013-06-03 17:53 - 2013-06-03 17:53 - 00000000 ____D C:\Users\Luci\AppData\Roaming\Avira
2013-06-03 17:50 - 2013-06-03 17:49 - 00066656 ____A (Avira GmbH) C:\Windows\System32\Drivers\avnetflt.sys
2013-06-03 17:49 - 2013-06-03 17:49 - 00001942 ____A C:\Users\Public\Desktop\Avira Control Center.lnk
2013-06-03 17:49 - 2013-06-03 17:41 - 00135136 ____A (Avira Operations GmbH & Co. KG) C:\Windows\System32\Drivers\avipbb.sys
2013-06-03 17:49 - 2013-06-03 17:41 - 00084744 ____A (Avira Operations GmbH & Co. KG) C:\Windows\System32\Drivers\avgntflt.sys
2013-06-03 17:49 - 2013-06-03 17:41 - 00037352 ____A (Avira Operations GmbH & Co. KG) C:\Windows\System32\Drivers\avkmgr.sys
2013-06-03 17:49 - 2013-06-03 17:41 - 00028520 ____A (Avira GmbH) C:\Windows\System32\Drivers\ssmdrv.sys
2013-06-03 17:48 - 2013-06-03 17:48 - 00000000 ____D C:\ProgramData\Avira
2013-06-03 17:48 - 2013-06-03 17:48 - 00000000 ____D C:\Program Files\Avira
2013-06-01 17:05 - 2013-06-01 17:08 - 00000000 ____D C:\Program Files\SweetIM
2013-06-01 17:05 - 2013-06-01 17:05 - 00000000 ____D C:\ProgramData\SweetIM
2013-06-01 17:03 - 2013-06-01 17:05 - 00000000 ____D C:\Windows\System32\jmdp
2013-06-01 17:03 - 2013-06-01 17:03 - 00206829 ____A C:\Users\Luci\Downloads\capture_it.zip
2013-06-01 17:03 - 2013-06-01 17:03 - 00000000 ____D C:\Windows\System32\WNLT
2013-06-01 17:03 - 2013-06-01 17:03 - 00000000 ____D C:\Windows\System32\ARFC
2013-06-01 17:03 - 2013-05-16 14:32 - 01016112 ____A C:\Windows\System32\dmwu.exe
2013-06-01 17:03 - 2013-05-16 14:30 - 00028160 ____A C:\Windows\System32\ImHttpComm.dll
2013-06-01 17:03 - 2013-05-16 14:02 - 00479232 ____A (Microsoft Corporation) C:\Windows\System32\msvcm80.dll
2013-06-01 17:03 - 2013-05-16 14:02 - 00001870 ____A C:\Windows\System32\Microsoft.VC80.CRT.manifest
2013-06-01 17:00 - 2013-06-01 17:00 - 00163360 ____A () C:\Users\Luci\Downloads\Captureit_downloader_by_SchriftartenFontsde.exe
2013-06-01 17:00 - 2013-06-01 17:00 - 00163360 ____A () C:\Users\Luci\Downloads\Captureit_downloader_by_SchriftartenFontsde (1).exe
2013-06-01 10:45 - 2013-06-02 12:31 - 00000000 ____D C:\Users\Luci\Desktop\bowlinggutschein martin
2013-06-01 10:44 - 2013-06-01 10:44 - 00002090 ____A C:\Users\Luci\AppData\Local\recently-used.xbel
2013-06-01 10:39 - 2013-06-01 10:39 - 00000000 ____D C:\Users\Luci\.thumbnails
2013-06-01 10:34 - 2013-06-01 10:45 - 00000000 ____D C:\Users\Luci\.gimp-2.8
2013-06-01 10:34 - 2013-06-01 10:34 - 00000000 ____D C:\Users\Luci\AppData\Local\gegl-0.2
2013-06-01 10:28 - 2013-06-01 10:30 - 76902472 ____A (The GIMP Team ) C:\Users\Luci\Downloads\gimp-2.8.4-setup.exe
2013-06-01 09:22 - 2013-06-01 09:23 - 06292992 ____A C:\Users\Luci\Downloads\Naturgefahren-2013-kurz (1).ppt
2013-06-01 09:21 - 2013-06-01 09:56 - 06292992 ____A C:\Users\Luci\Downloads\Naturgefahren-2013-kurz.ppt
2013-05-30 20:35 - 2013-05-30 20:35 - 00000000 ____D C:\Users\Luci\Desktop\fotosammlung_jungschar
2013-05-23 00:19 - 2013-05-23 00:19 - 00362029 ____A C:\Users\Luci\Downloads\sqlite3.dll
2013-05-23 00:15 - 2013-05-23 00:15 - 01337448 ____A (Skype Technologies S.A.) C:\Users\Luci\Downloads\SkypeSetup.exe
2013-05-22 21:14 - 2013-05-22 21:15 - 00149520 ____A C:\Windows\Minidump\052213-32417-01.dmp
2013-05-20 19:16 - 2013-05-20 19:16 - 00001755 ____A C:\Users\Public\Desktop\iTunes.lnk
2013-05-20 19:15 - 2013-05-20 19:15 - 00000000 ____D C:\ProgramData\188F1432-103A-4ffb-80F1-36B633C5C9E1
2013-05-20 19:15 - 2013-05-20 19:15 - 00000000 ____D C:\Program Files\iTunes
2013-05-20 19:15 - 2013-05-20 19:15 - 00000000 ____D C:\Program Files\iPod
2013-05-16 19:52 - 2013-05-16 19:52 - 00036352 ____A C:\Users\Luci\Downloads\STRARE_Fragen_Review (1)
2013-05-15 22:48 - 2013-05-15 22:48 - 00036352 ____A C:\Users\Luci\Downloads\STRARE_Fragen_Review
2013-05-15 09:35 - 2013-04-05 07:28 - 01767424 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll
2013-05-15 09:35 - 2013-04-05 07:28 - 01130496 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll
2013-05-15 09:35 - 2013-04-05 07:28 - 00042496 ____A (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe
2013-05-15 09:35 - 2013-04-05 07:26 - 14323712 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll
2013-05-15 09:35 - 2013-04-05 07:26 - 13760512 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll
2013-05-15 09:35 - 2013-04-05 07:26 - 02877440 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll
2013-05-15 09:35 - 2013-04-05 07:26 - 02046976 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll
2013-05-15 09:35 - 2013-04-05 07:26 - 00690688 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll
2013-05-15 09:35 - 2013-04-05 07:26 - 00493056 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll
2013-05-15 09:35 - 2013-04-05 07:26 - 00391168 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll
2013-05-15 09:35 - 2013-04-05 07:26 - 00109056 ____A (Microsoft Corporation) C:\Windows\System32\iesysprep.dll
2013-05-15 09:35 - 2013-04-05 07:26 - 00061440 ____A (Microsoft Corporation) C:\Windows\System32\iesetup.dll
2013-05-15 09:35 - 2013-04-05 07:26 - 00039424 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll
2013-05-15 09:35 - 2013-04-05 07:26 - 00033280 ____A (Microsoft Corporation) C:\Windows\System32\iernonce.dll
2013-05-15 09:35 - 2013-04-05 06:29 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb
2013-05-15 09:35 - 2013-04-05 05:38 - 00071680 ____A (Microsoft Corporation) C:\Windows\System32\RegisterIEPKEYs.exe
2013-05-15 09:09 - 2013-04-10 07:18 - 00728424 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\dxgkrnl.sys
2013-05-15 09:09 - 2013-04-10 07:18 - 00218984 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\dxgmms1.sys
2013-05-15 09:09 - 2013-04-10 05:14 - 02347520 ____A (Microsoft Corporation) C:\Windows\System32\win32k.sys
2013-05-15 09:09 - 2013-03-19 06:53 - 00186368 ____A (Microsoft Corporation) C:\Windows\System32\wwansvc.dll
2013-05-15 09:09 - 2013-03-19 05:33 - 00040960 ____A (Microsoft Corporation) C:\Windows\System32\wwanprotdim.dll
2013-05-15 09:08 - 2013-02-27 07:05 - 00101720 ____A (Microsoft Corporation) C:\Windows\System32\consent.exe
2013-05-15 09:08 - 2013-02-27 06:55 - 12872704 ____A (Microsoft Corporation) C:\Windows\System32\shell32.dll
2013-05-15 09:08 - 2013-02-27 06:55 - 00180224 ____A (Microsoft Corporation) C:\Windows\System32\shdocvw.dll
2013-05-15 09:08 - 2013-02-27 06:49 - 01796096 ____A (Microsoft Corporation) C:\Windows\System32\authui.dll
2013-05-15 09:08 - 2013-02-27 06:49 - 00047104 ____A (Microsoft Corporation) C:\Windows\System32\appinfo.dll
2013-05-07 10:39 - 2013-05-31 22:53 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2013-05-07 10:39 - 2013-05-07 10:39 - 00001107 ____A C:\Users\Public\Desktop\Mozilla Firefox.lnk

==================== One Month Modified Files and Folders ========
 
  • #22
2013-06-03 21:38 - 2013-06-03 21:38 - 00000000 ____D C:\FRST
2013-06-03 21:29 - 2011-04-11 20:43 - 01724191 ____A C:\Windows\WindowsUpdate.log
2013-06-03 21:20 - 2011-06-08 16:25 - 00001094 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-06-03 21:12 - 2013-06-03 20:56 - 324831232 ____A C:\Users\Luci\Desktop\kav_rescue_10.iso
2013-06-03 21:07 - 2011-05-31 14:17 - 00001116 ____A C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2665928442-3043711210-103590316-1000UA.job
2013-06-03 21:07 - 2011-05-31 14:17 - 00001064 ____A C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2665928442-3043711210-103590316-1000Core.job
2013-06-03 21:00 - 2013-04-27 23:45 - 00000884 ____A C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-06-03 20:53 - 2013-04-22 12:50 - 00000000 ____D C:\Program Files\PDFCreator
2013-06-03 20:40 - 2013-06-03 20:37 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2013-06-03 20:37 - 2013-06-03 20:37 - 00002121 ____A C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2013-06-03 20:37 - 2013-06-03 20:37 - 00000000 ____D C:\Program Files\Spybot - Search & Destroy 2
2013-06-03 20:37 - 2009-07-14 06:34 - 00016608 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-06-03 20:37 - 2009-07-14 06:34 - 00016608 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-06-03 20:36 - 2013-06-03 20:35 - 36271144 ____A (Safer-Networking Ltd. ) C:\Users\Luci\Desktop\spybot-2.1.exe
2013-06-03 20:34 - 2011-10-21 14:41 - 00000000 ___RD C:\Users\Luci\Dropbox
2013-06-03 20:34 - 2011-10-21 14:38 - 00000000 ____D C:\Users\Luci\AppData\Roaming\Dropbox
2013-06-03 20:32 - 2011-04-11 21:08 - 01612484 ____A C:\Windows\System32\PerfStringBackup.INI
2013-06-03 20:28 - 2013-01-22 16:21 - 00000352 ____A C:\Windows\Tasks\AmiUpdXp.job
2013-06-03 20:27 - 2013-01-22 16:20 - 00000390 ___AH C:\Windows\Tasks\{9BFF7BD2-CB43-4001-8B90-C9631BB52F63}.job
2013-06-03 20:27 - 2011-06-08 16:25 - 00001090 ____A C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-06-03 20:27 - 2009-07-14 06:53 - 00000006 ___AH C:\Windows\Tasks\SA.DAT
2013-06-03 20:27 - 2009-07-14 06:39 - 00165017 ____A C:\Windows\setupact.log
2013-06-03 20:24 - 2013-06-03 20:29 - 36271144 ____A (Safer-Networking Ltd. ) C:\Users\Luci\Desktop\spybot-2.1.com
2013-06-03 20:12 - 2013-06-03 20:12 - 34000902 ____A (Safer-Networking Ltd. ) C:\Users\Luci\Downloads\spybot-2.1.exe.qssqzzp.partial
2013-06-03 19:31 - 2013-06-03 19:31 - 00143344 ____A C:\Windows\Minidump\060313-25381-01.dmp
2013-06-03 19:31 - 2011-06-23 11:48 - 419159247 ____A C:\Windows\MEMORY.DMP
2013-06-03 19:31 - 2011-06-23 11:48 - 00000000 ____D C:\Windows\Minidump
2013-06-03 19:15 - 2013-06-03 19:15 - 00143344 ____A C:\Windows\Minidump\060313-31496-01.dmp
2013-06-03 19:05 - 2013-06-03 19:05 - 00143344 ____A C:\Windows\Minidump\060313-75551-01.dmp
2013-06-03 19:04 - 2011-04-12 15:50 - 00265288 ____A C:\Windows\PFRO.log
2013-06-03 19:02 - 2013-06-03 18:56 - 00000000 ____D C:\ProgramData\F86F32FF14F70C2C0000F86E3A951062
2013-06-03 18:56 - 2013-06-03 18:56 - 00014183 ____A C:\Users\Luci\Desktop\hs_err_pid6652.log
2013-06-03 17:53 - 2013-06-03 17:53 - 00000000 ____D C:\Users\Luci\AppData\Roaming\Avira
2013-06-03 17:49 - 2013-06-03 17:50 - 00066656 ____A (Avira GmbH) C:\Windows\System32\Drivers\avnetflt.sys
2013-06-03 17:49 - 2013-06-03 17:49 - 00001942 ____A C:\Users\Public\Desktop\Avira Control Center.lnk
2013-06-03 17:48 - 2013-06-03 17:48 - 00000000 ____D C:\ProgramData\Avira
2013-06-03 17:48 - 2013-06-03 17:48 - 00000000 ____D C:\Program Files\Avira
2013-06-03 17:42 - 2011-04-13 16:30 - 00000000 ____D C:\Users\Luci\AppData\Local\Adobe
2013-06-03 17:41 - 2013-06-03 17:49 - 00135136 ____A (Avira Operations GmbH & Co. KG) C:\Windows\System32\Drivers\avipbb.sys
2013-06-03 17:41 - 2013-06-03 17:49 - 00084744 ____A (Avira Operations GmbH & Co. KG) C:\Windows\System32\Drivers\avgntflt.sys
2013-06-03 17:41 - 2013-06-03 17:49 - 00037352 ____A (Avira Operations GmbH & Co. KG) C:\Windows\System32\Drivers\avkmgr.sys
2013-06-03 17:41 - 2013-06-03 17:49 - 00028520 ____A (Avira GmbH) C:\Windows\System32\Drivers\ssmdrv.sys
2013-06-02 13:38 - 2011-04-11 21:18 - 00174584 ____A C:\Users\Luci\AppData\Local\GDIPFONTCACHEV1.DAT
2013-06-02 12:31 - 2013-06-01 10:45 - 00000000 ____D C:\Users\Luci\Desktop\bowlinggutschein martin
2013-06-02 10:53 - 2009-07-14 06:33 - 03908672 ____A C:\Windows\System32\FNTCACHE.DAT
2013-06-01 17:08 - 2013-06-01 17:05 - 00000000 ____D C:\Program Files\SweetIM
2013-06-01 17:05 - 2013-06-01 17:05 - 00000000 ____D C:\ProgramData\SweetIM
2013-06-01 17:05 - 2013-06-01 17:03 - 00000000 ____D C:\Windows\System32\jmdp
2013-06-01 17:04 - 2013-04-16 19:35 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-06-01 17:03 - 2013-06-01 17:03 - 00206829 ____A C:\Users\Luci\Downloads\capture_it.zip
2013-06-01 17:03 - 2013-06-01 17:03 - 00000000 ____D C:\Windows\System32\WNLT
2013-06-01 17:03 - 2013-06-01 17:03 - 00000000 ____D C:\Windows\System32\ARFC
2013-06-01 17:00 - 2013-06-01 17:00 - 00163360 ____A () C:\Users\Luci\Downloads\Captureit_downloader_by_SchriftartenFontsde.exe
2013-06-01 17:00 - 2013-06-01 17:00 - 00163360 ____A () C:\Users\Luci\Downloads\Captureit_downloader_by_SchriftartenFontsde (1).exe
2013-06-01 10:45 - 2013-06-01 10:34 - 00000000 ____D C:\Users\Luci\.gimp-2.8
2013-06-01 10:44 - 2013-06-01 10:44 - 00002090 ____A C:\Users\Luci\AppData\Local\recently-used.xbel
2013-06-01 10:39 - 2013-06-01 10:39 - 00000000 ____D C:\Users\Luci\.thumbnails
2013-06-01 10:39 - 2011-04-11 21:09 - 00000000 ____D C:\users\Luci
2013-06-01 10:34 - 2013-06-01 10:34 - 00000000 ____D C:\Users\Luci\AppData\Local\gegl-0.2
2013-06-01 10:30 - 2013-06-01 10:28 - 76902472 ____A (The GIMP Team ) C:\Users\Luci\Downloads\gimp-2.8.4-setup.exe
2013-06-01 09:56 - 2013-06-01 09:21 - 06292992 ____A C:\Users\Luci\Downloads\Naturgefahren-2013-kurz.ppt
2013-06-01 09:23 - 2013-06-01 09:22 - 06292992 ____A C:\Users\Luci\Downloads\Naturgefahren-2013-kurz (1).ppt
2013-05-31 22:53 - 2013-05-07 10:39 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2013-05-30 20:35 - 2013-05-30 20:35 - 00000000 ____D C:\Users\Luci\Desktop\fotosammlung_jungschar
2013-05-29 00:15 - 2011-04-18 22:19 - 00000000 ____D C:\Users\Luci\AppData\Roaming\vlc
2013-05-23 03:09 - 2012-02-26 23:22 - 00000000 ____D C:\Users\Luci\AppData\Roaming\Skype
2013-05-23 03:09 - 2012-02-26 23:21 - 00000000 ____D C:\ProgramData\Skype
2013-05-23 00:19 - 2013-05-23 00:19 - 00362029 ____A C:\Users\Luci\Downloads\sqlite3.dll
2013-05-23 00:15 - 2013-05-23 00:15 - 01337448 ____A (Skype Technologies S.A.) C:\Users\Luci\Downloads\SkypeSetup.exe
2013-05-22 21:15 - 2013-05-22 21:14 - 00149520 ____A C:\Windows\Minidump\052213-32417-01.dmp
2013-05-20 19:16 - 2013-05-20 19:16 - 00001755 ____A C:\Users\Public\Desktop\iTunes.lnk
2013-05-20 19:15 - 2013-05-20 19:15 - 00000000 ____D C:\ProgramData\188F1432-103A-4ffb-80F1-36B633C5C9E1
2013-05-20 19:15 - 2013-05-20 19:15 - 00000000 ____D C:\Program Files\iTunes
2013-05-20 19:15 - 2013-05-20 19:15 - 00000000 ____D C:\Program Files\iPod
2013-05-20 19:15 - 2012-01-27 21:45 - 00000000 ____D C:\Program Files\Common Files\Apple
2013-05-18 09:18 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\rescache
2013-05-16 19:52 - 2013-05-16 19:52 - 00036352 ____A C:\Users\Luci\Downloads\STRARE_Fragen_Review (1)
2013-05-16 14:32 - 2013-06-01 17:03 - 01016112 ____A C:\Windows\System32\dmwu.exe
2013-05-16 14:30 - 2013-06-01 17:03 - 00028160 ____A C:\Windows\System32\ImHttpComm.dll
2013-05-16 14:02 - 2013-06-01 17:03 - 00479232 ____A (Microsoft Corporation) C:\Windows\System32\msvcm80.dll
2013-05-16 14:02 - 2013-06-01 17:03 - 00001870 ____A C:\Windows\System32\Microsoft.VC80.CRT.manifest
2013-05-16 14:02 - 2012-12-27 17:38 - 00632656 ____A (Microsoft Corporation) C:\Windows\System32\msvcr80.dll
2013-05-16 14:02 - 2012-12-27 17:38 - 00554832 ____A (Microsoft Corporation) C:\Windows\System32\msvcp80.dll
2013-05-15 22:48 - 2013-05-15 22:48 - 00036352 ____A C:\Users\Luci\Downloads\STRARE_Fragen_Review
2013-05-15 19:00 - 2013-04-27 23:45 - 00692104 ____A (Adobe Systems Incorporated) C:\Windows\System32\FlashPlayerApp.exe
2013-05-15 19:00 - 2011-05-19 09:20 - 00071048 ____A (Adobe Systems Incorporated) C:\Windows\System32\FlashPlayerCPLApp.cpl
2013-05-15 17:42 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\Microsoft.NET
2013-05-15 17:22 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\System32\de-DE
2013-05-15 09:37 - 2011-04-12 14:04 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-05-15 09:25 - 2011-04-11 22:10 - 72607752 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe
2013-05-12 09:47 - 2009-07-14 04:37 - 00000000 ____D C:\Windows\System32\NDF
2013-05-07 10:39 - 2013-05-07 10:39 - 00001107 ____A C:\Users\Public\Desktop\Mozilla Firefox.lnk

Files to move or delete:
====================
C:\Windows\Tasks\{9BFF7BD2-CB43-4001-8B90-C9631BB52F63}.job

==================== Bamital & volsnap Check =================

C:\Windows\explorer.exe => MD5 is legit
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


Last Boot: 2013-05-28 16:12

==================== End Of Log ============================
 
  • #23
Hi,

folgendes als fixlist.txt auf dem Desktop speichern.

Code:
() C:\ProgramData\BetterSoft\OptimizerPro\OptimizerPro.exe
() C:\ProgramData\BrowserProtect\2.6.1249.132\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe
() C:\ProgramData\BrowserProtect\2.6.1249.132\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe
() C:\Windows\System32\jmdp\stij.exe
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = home.sweetim.com/?ptr=100&...9-CACC-11E2-8725-002186C9ED3B}
URLSearchHook: (No Name) - {872b5b88-9db5-4310-bdd0-ac189557e5f5} - No File
URLSearchHook: WhiteSmoke US New E1 Toolbar - {72a0f495-ba60-4524-827b-b36b8c18587a} - C:\Program Files\WhiteSmoke_US_New_E1\prxtbWhit.dll (Conduit Ltd.)
HKLM SearchScopes: DefaultScope {EEE6C360-6118-11DC-9C72-001320C79847} URL = search.sweetim.com/search.asp?...9-CACC-11E2-8725-002186C9ED3B}
SearchScopes: HKLM - {AFDBDDAA-5D3F-42EE-B79C-185A7020515B} URL = search.conduit.com/ResultsExt....rchSource=4&ctid=CT2269050
SearchScopes: HKLM - {EEE6C360-6118-11DC-9C72-001320C79847} URL = search.sweetim.com/search.asp?...9-CACC-11E2-8725-002186C9ED3B}
HKCU SearchScopes: DefaultScope {EEE6C360-6118-11DC-9C72-001320C79847} URL = search.sweetim.com/search.asp?...00.10039&st=23&ptr=100
SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = search.babylon.com/?q={searchT...2g&mntrId=F869002186C9ED3B
SearchScopes: HKCU - {3DE5879D-3FF4-4F49-9944-D5E22713268D} URL = search.conduit.com/ResultsExt....10&CUI=UN10375591391633816
SearchScopes: HKCU - {59B282D3-26FB-4688-AD14-CDC2F4865548} URL = websearch.ask.com/redirect?cli...mp;locale=de_US&apn_ptnrs=^AAA&apn_dtid=^YYYYYY^YY^AT&apn_uid=63ad946a-eda4-4d31-afdf-83df7ee6b4ce&apn_sauid=3A22A171-0CAD-4E9B-B245-4FB4E6E75B26
SearchScopes: HKCU - {EEE6C360-6118-11DC-9C72-001320C79847} URL = search.sweetim.com/search.asp?...00.10039&st=23&ptr=100
R2 BrowserProtect; C:\ProgramData\BrowserProtect\2.6.1249.132\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe [2787280 2013-03-22] ()
C:\Windows\Tasks\{9BFF7BD2-CB43-4001-8B90-C9631BB52F63}.job

Dann FRST öffnen, Fix drücken.

========



Combofix laden, AV abschalten, Spybot abschalten, laufen lassen, nicht ins Fenster klicken und warten bis das Log erscheint. Log posten :)
 
  • #24
willst du per teamviewer das versuchen!??! ich scheitere irgendwie an den einfachsten dingen... wo starte ich zb frst nochmal??? weils eh das nciht mehr
 
  • #25
wird nicht viel bringen, FRST und Combofix killen als erstes Teamviewer :D

Du hast FRST nit gespeichert, sondern aus dem Temp Ordner laufen lassen. Bitte neu laden, und auf dem Desktop speichern, ganz wichtig. Gleiches mit Combofix nachher.
 
  • #26
Ich bin ab 7 Uhr wieder erreichbar, schrauber brauch schlaf :)
 
  • #27
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 03-06-2013 01
Ran by Luci at 2013-06-03 23:04:45 Run:1
Running from C:\Users\Luci\Desktop
Boot Mode: Normal

==============================================

[1376] C:\ProgramData\BetterSoft\OptimizerPro\OptimizerPro.exe => Process closed successfully.
[3032] C:\ProgramData\BrowserProtect\2.6.1249.132\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe => Process closed successfully.
[3124] C:\ProgramData\BrowserProtect\2.6.1249.132\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe => Process closed successfully.
C:\ProgramData\BrowserProtect\2.6.1249.132\{c16c1ccb-7046-4e5c-a2f3-533ad2fec8e8}\BrowserProtect.exe => No running process found
[2588] C:\Windows\System32\jmdp\stij.exe => Process closed successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Value deleted successfully.
HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\{872b5b88-9db5-4310-bdd0-ac189557e5f5} => Value deleted successfully.
HKCR\CLSID\{872b5b88-9db5-4310-bdd0-ac189557e5f5} => Key not found.
HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks\\{72a0f495-ba60-4524-827b-b36b8c18587a} => Value deleted successfully.
HKCR\CLSID\{72a0f495-ba60-4524-827b-b36b8c18587a} => Key deleted successfully.
HKCR\CLSID\{72a0f495-ba60-4524-827b-b36b8c18587a}\DefaultScope => Value was restored successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B} => Key deleted successfully.
HKCR\CLSID\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B} => Key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847} => Key deleted successfully.
HKCR\CLSID\{EEE6C360-6118-11DC-9C72-001320C79847} => Key not found.
HKCR\CLSID\{EEE6C360-6118-11DC-9C72-001320C79847}\DefaultScope => Value was restored successfully.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} => Key deleted successfully.
HKCR\CLSID\{0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{3DE5879D-3FF4-4F49-9944-D5E22713268D} => Key deleted successfully.
HKCR\CLSID\{3DE5879D-3FF4-4F49-9944-D5E22713268D} => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{59B282D3-26FB-4688-AD14-CDC2F4865548} => Key deleted successfully.
HKCR\CLSID\{59B282D3-26FB-4688-AD14-CDC2F4865548} => Key not found.
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847} => Key deleted successfully.
HKCR\CLSID\{EEE6C360-6118-11DC-9C72-001320C79847} => Key deleted successfully.
BrowserProtect => Service deleted successfully.
C:\Windows\Tasks\{9BFF7BD2-CB43-4001-8B90-C9631BB52F63}.job => Moved successfully.

==== End of Fixlog ====

ok,super! ich bin denke ich ab 7:30 online! danke für deine hilfe!
 
  • #28
Supi, dann jetzt Combofix. Log schau ich mir Morgen früh an :)
 
  • #29
ich kann avira nicht beenden!
-ich verfüge offenbar nciht über die nötigen rechte!?
 
  • #30
OT: schrauber war wie versprochen um 7.30 hier..........hast Du verschlafen?
 
  • #31
nein, ich konnte nicht ins internet.... musste 10000mal neustarten! und dann hat das mit combofix nicht geklappt, dann hatte ich eine vorlesung und jetzt wieder hier :(

folgende meldung, wenn ich avira beenden will:
auf das angegebene gerät, bzw den pfand oder die datei kann nicht zugegriffenw erden. sie verfügen eventuell nicht über ausreichende berechtigungen, um auf das element zugreifen zu können.
 
  • #32
Definier das mal mit den Rechten? Was kommt für ne Meldung?
 
  • #33
siehe post davor!
 
  • #34
Lass Combofix bitte so laufen. Gruppenberechtigungen für Avira fixen wir nachher.
 
  • #35
folgende meldung jetzt:
achtung!!
antivirus: Avira desktop
antispyware: Avira desktop

die obigen real-time-scanner sind immer noch aktiv aber combofix wird trotzdem mit em suchlauf fortfahren. bitte nehme zur kenntnis,das dies in eigener verantwortung geschieht.

man kann nur OK klicken
 
  • #36
Dann mach das :)
 
  • #37
läuft

im moment: suche infizierte dateien

fertiggestellt stufe 5
 
  • #38
muss um 11:30 leider zur arbeit! lasse das programm durchlaufen, wenn es rechtzeitig fertig wird, poste ich hier! ansonsten morgen ab 8 uhr!

danke für dein engagement, schrauber!
 
  • #39
ComboFix 13-06-03.06 - Luci 04.06.2013 10:52:55.1.2 - x86
Microsoft Windows 7 Professional 6.1.7601.1.1252.49.1031.18.3070.1961 [GMT 2:00]
ausgeführt von:: c:\users\Luci\Desktop\ComboFix.exe
AV: Avira Desktop *Enabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
FW: ZoneAlarm Free Firewall *Disabled* {E6380B7E-D4B2-19F1-083E-56486607704B}
SP: Avira Desktop *Enabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
SP: Spybot - Search and Destroy *Disabled/Outdated* {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
(((((((((((((((((((((((((((((((((((( Weitere Löschungen ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\programdata\F86F32FF14F70C2C0000F86E3A951062
c:\programdata\F86F32FF14F70C2C0000F86E3A951062\F86F32FF14F70C2C0000F86E3A951062
c:\programdata\F86F32FF14F70C2C0000F86E3A951062\F86F32FF14F70C2C0000F86E3A951062.exe
c:\programdata\F86F32FF14F70C2C0000F86E3A951062\F86F32FF14F70C2C0000F86E3A951062.ico
c:\programdata\Microsoft\Windows\Start Menu\Programs\wxDownload Fast
c:\programdata\Microsoft\Windows\Start Menu\Programs\wxDownload Fast\Uninstall wxDownload Fast.lnk
c:\programdata\Microsoft\Windows\Start Menu\Programs\wxDownload Fast\wxDownload Fast on the Web.lnk
c:\programdata\Microsoft\Windows\Start Menu\Programs\wxDownload Fast\wxDownload Fast.lnk
c:\users\Luci\AppData\Roaming\BabMaint.exe
c:\windows\system32\AF15BDAEX.dll
c:\windows\system32\muzapp.exe
c:\windows\unin0407.exe
c:\windows\wininit.ini
D:\install.exe
.
.
((((((((((((((((((((((( Dateien erstellt von 2013-05-04 bis 2013-06-04 ))))))))))))))))))))))))))))))
.
.
2013-06-04 09:11 . 2013-06-04 09:11 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-06-03 19:38 . 2013-06-03 19:38 -------- d-----w- C:\FRST
2013-06-03 18:37 . 2013-06-03 18:40 -------- d-----w- c:\programdata\Spybot - Search & Destroy
2013-06-03 18:37 . 2013-06-04 07:35 -------- d-----w- c:\program files\Spybot - Search & Destroy 2
2013-06-03 17:21 . 2013-06-03 18:33 60872 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{3C62C8F5-1B7F-4F7F-9C9C-821EFF79763C}\offreg.dll
2013-06-03 15:53 . 2013-06-03 15:53 -------- d-----w- c:\users\Luci\AppData\Roaming\Avira
2013-06-03 15:50 . 2013-06-03 15:49 66656 ----a-w- c:\windows\system32\drivers\avnetflt.sys
2013-06-03 15:49 . 2013-06-03 15:41 84744 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2013-06-03 15:49 . 2013-06-03 15:41 37352 ----a-w- c:\windows\system32\drivers\avkmgr.sys
2013-06-03 15:49 . 2013-06-03 15:41 135136 ----a-w- c:\windows\system32\drivers\avipbb.sys
2013-06-03 15:48 . 2013-06-03 15:48 -------- d-----w- c:\programdata\Avira
2013-06-03 15:48 . 2013-06-03 15:48 -------- d-----w- c:\program files\Avira
2013-06-01 15:05 . 2013-06-01 15:08 -------- d-----w- c:\program files\SweetIM
2013-06-01 15:05 . 2013-06-01 15:05 -------- d-----w- c:\programdata\SweetIM
2013-06-01 15:03 . 2013-06-01 15:05 -------- d-----w- c:\windows\system32\jmdp
2013-06-01 15:03 . 2013-06-01 15:03 -------- d-----w- c:\windows\system32\ARFC
2013-06-01 15:03 . 2013-05-16 12:02 479232 ----a-w- c:\windows\system32\msvcm80.dll
2013-06-01 15:03 . 2013-05-16 12:32 1016112 ----a-w- c:\windows\system32\dmwu.exe
2013-06-01 15:03 . 2013-05-16 12:30 28160 ----a-w- c:\windows\system32\ImHttpComm.dll
2013-06-01 15:03 . 2013-06-01 15:03 -------- d-----w- c:\windows\system32\WNLT
2013-06-01 15:03 . 2013-06-01 15:03 -------- d-----w- c:\program files\sweetpacks bundle uninstaller
2013-06-01 08:39 . 2013-06-01 08:39 -------- d-----w- c:\users\Luci\.thumbnails
2013-06-01 08:34 . 2013-06-01 08:34 -------- d-----w- c:\users\Luci\AppData\Local\fontconfig
2013-06-01 08:34 . 2013-06-01 08:45 -------- d-----w- c:\users\Luci\.gimp-2.8
2013-06-01 08:34 . 2013-06-01 08:34 -------- d-----w- c:\users\Luci\AppData\Local\gegl-0.2
2013-05-31 13:48 . 2013-05-31 13:48 262552 ----a-w- c:\program files\Mozilla Firefox\browser\components\browsercomps.dll
2013-05-31 13:13 . 2013-05-13 06:19 7016152 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{3C62C8F5-1B7F-4F7F-9C9C-821EFF79763C}\mpengine.dll
2013-05-20 17:15 . 2013-05-20 17:15 -------- d-----w- c:\program files\iPod
2013-05-20 17:15 . 2013-05-20 17:15 -------- d-----w- c:\programdata\188F1432-103A-4ffb-80F1-36B633C5C9E1
2013-05-20 17:15 . 2013-05-20 17:15 -------- d-----w- c:\program files\iTunes
2013-05-15 07:09 . 2013-03-19 04:53 186368 ----a-w- c:\windows\system32\wwansvc.dll
2013-05-15 07:09 . 2013-03-19 03:33 40960 ----a-w- c:\windows\system32\wwanprotdim.dll
2013-05-15 07:09 . 2013-04-10 03:14 2347520 ----a-w- c:\windows\system32\win32k.sys
2013-05-15 07:09 . 2013-04-10 05:18 728424 ----a-w- c:\windows\system32\drivers\dxgkrnl.sys
2013-05-15 07:09 . 2013-04-10 05:18 218984 ----a-w- c:\windows\system32\drivers\dxgmms1.sys
2013-05-15 07:08 . 2013-02-27 05:05 101720 ----a-w- c:\windows\system32\consent.exe
2013-05-15 07:08 . 2013-02-27 04:49 1796096 ----a-w- c:\windows\system32\authui.dll
2013-05-15 07:08 . 2013-02-27 04:49 47104 ----a-w- c:\windows\system32\appinfo.dll
2013-05-10 07:57 . 2013-05-10 07:57 187456 ----a-w- c:\program files\Mozilla Firefox\Plugins\nppdf32.dll
.
 
  • #40
.
.
(((((((((((((((((((((((((((((((((((( Find3M Bericht ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-05-18 09:25 . 2013-03-30 00:26 893552 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup\markup.dll
2013-05-18 09:24 . 2013-03-30 00:16 42776 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\dSM\StartResources.dll
2013-05-18 09:24 . 2013-03-30 00:16 1236816 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight\SpotlightResources.dll
2013-05-16 12:02 . 2012-12-27 15:38 632656 ----a-w- c:\windows\system32\msvcr80.dll
2013-05-16 12:02 . 2012-12-27 15:38 554832 ----a-w- c:\windows\system32\msvcp80.dll
2013-05-15 17:00 . 2013-04-27 21:45 692104 ----a-w- c:\windows\system32\FlashPlayerApp.exe
2013-05-15 17:00 . 2011-05-19 07:20 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-05-10 10:33 . 2013-04-04 08:35 893552 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\UpdateableMarkup-2\markup.dll
2013-05-10 10:33 . 2013-04-04 08:34 42776 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCEClientUX\dSM-2\StartResources.dll
2013-05-10 10:33 . 2013-04-04 08:34 1236816 ----a-w- c:\programdata\Microsoft\eHome\Packages\MCESpotlight\MCESpotlight-2\SpotlightResources.dll
2013-05-02 00:06 . 2011-04-11 19:33 238872 ------w- c:\windows\system32\MpSigStub.exe
2013-04-21 20:59 . 2013-04-21 20:59 163504 ----a-w- c:\programdata\Microsoft\Windows\Sqm\Manifest\Sqm10144.bin
2013-04-13 04:45 . 2013-05-15 07:09 474624 ----a-w- c:\windows\apppatch\AcSpecfc.dll
2013-04-13 04:45 . 2013-05-15 07:09 2176512 ----a-w- c:\windows\apppatch\AcGenral.dll
2013-04-12 13:45 . 2013-04-24 19:46 1211752 ----a-w- c:\windows\system32\drivers\ntfs.sys
2013-04-06 06:59 . 2013-04-06 06:59 745472 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe
2013-04-06 06:59 . 2013-04-06 06:59 185344 ----a-w- c:\windows\system32\elshyph.dll
2013-04-06 06:59 . 2013-04-06 06:59 158720 ----a-w- c:\windows\system32\msls31.dll
2013-04-06 06:59 . 2013-04-06 06:59 523264 ----a-w- c:\windows\system32\vbscript.dll
2013-04-06 06:59 . 2013-04-06 06:59 38400 ----a-w- c:\windows\system32\imgutil.dll
2013-04-06 06:59 . 2013-04-06 06:59 150528 ----a-w- c:\windows\system32\iexpress.exe
2013-04-06 06:59 . 2013-04-06 06:59 138752 ----a-w- c:\windows\system32\wextract.exe
2013-04-06 06:59 . 2013-04-06 06:59 137216 ----a-w- c:\windows\system32\ieUnatt.exe
2013-04-06 06:59 . 2013-04-06 06:59 12800 ----a-w- c:\windows\system32\mshta.exe
2013-04-06 06:59 . 2013-04-06 06:59 73728 ----a-w- c:\windows\system32\SetIEInstalledDate.exe
2013-04-06 06:59 . 2013-04-06 06:59 110592 ----a-w- c:\windows\system32\IEAdvpack.dll
2013-04-06 06:59 . 2013-04-06 06:59 48640 ----a-w- c:\windows\system32\mshtmler.dll
2013-04-06 06:59 . 2013-04-06 06:59 61952 ----a-w- c:\windows\system32\tdc.ocx
2013-04-06 06:59 . 2013-04-06 06:59 361984 ----a-w- c:\windows\system32\html.iec
2013-04-06 06:59 . 2013-04-06 06:59 719360 ----a-w- c:\windows\system32\mshtmlmedia.dll
2013-04-06 06:59 . 2013-04-06 06:59 1441280 ----a-w- c:\windows\system32\inetcpl.cpl
2013-04-06 06:59 . 2013-04-06 06:59 23040 ----a-w- c:\windows\system32\licmgr10.dll
2013-03-19 05:04 . 2013-04-11 10:20 3968856 ----a-w- c:\windows\system32\ntkrnlpa.exe
2013-03-19 05:04 . 2013-04-11 10:20 3913560 ----a-w- c:\windows\system32\ntoskrnl.exe
2013-03-19 04:48 . 2013-04-11 10:20 38912 ----a-w- c:\windows\system32\csrsrv.dll
2013-03-19 02:49 . 2013-04-11 10:20 69632 ----a-w- c:\windows\system32\smss.exe
.
.
(((((((((((((((((((((((((((( Autostartpunkte der Registrierung ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@={FB314ED9-A251-47B7-93E1-CDD82E34AF8B}
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2012-11-13 23:32 129272 ----a-w- c:\users\Luci\AppData\Roaming\Dropbox\bin\DropboxExt.17.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@={FB314EDA-A251-47B7-93E1-CDD82E34AF8B}
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2012-11-13 23:32 129272 ----a-w- c:\users\Luci\AppData\Roaming\Dropbox\bin\DropboxExt.17.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@={FB314EDB-A251-47B7-93E1-CDD82E34AF8B}
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2012-11-13 23:32 129272 ----a-w- c:\users\Luci\AppData\Roaming\Dropbox\bin\DropboxExt.17.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
Steam=c:\program files\Steam\Steam.exe [2003-09-11 958464]
EA Core=c:\program files\Electronic Arts\EADM\Core.exe [2009-03-28 3325952]
HW_OPENEYE_OUC_=c:\program files\tele.ring Verbindungsmanager\UpdateDog\ouc.exe [2009-06-23 110592]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
GrooveMonitor=c:\program files\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
AdobeAAMUpdater-1.0=c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2012-04-04 446392]
AdobeCS5ServiceManager=c:\program files\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]
SwitchBoard=c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
SynTPEnh=c:\program files\Synaptics\SynTP\SynTPEnh.exe [2009-06-18 1537320]
Adobe ARM=c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04 958576]
ZoneAlarm=c:\program files\CheckPoint\ZoneAlarm\zatray.exe [2011-11-09 73360]
APSDaemon=c:\program files\Common Files\Apple\Apple Application Support\APSDaemon.exe [2013-04-21 59720]
DataCardMonitor=c:\program files\tele.ring Verbindungsmanager\DataCardMonitor.exe [2012-11-02 253952]
SunJavaUpdateSched=c:\program files\Common Files\Java\Java Update\jusched.exe [2012-09-17 254896]
Olympus ib=c:\program files\Olympus\ib\olycamdetect.exe [2012-02-02 96128]
MDS_Menu=c:\program files\Olympus\ib\MUITransfer\MUIStartMenu.exe [2011-08-30 223104]
iTunesHelper=c:\program files\iTunes\iTunesHelper.exe [2013-05-15 152392]
SweetIM=c:\program files\SweetIM\Messenger\SweetIM.exe [2012-10-04 115032]
avgnt=c:\program files\Avira\AntiVir Desktop\avgnt.exe [2013-06-03 345312]
 
Thema:

System Care Antivirus

ANGEBOTE & SPONSOREN

Statistik des Forums

Themen
113.839
Beiträge
707.962
Mitglieder
51.492
Neuestes Mitglied
Janus36
Oben