========== Files/Folders - Created Within 30 Days ==========
[2014.07.25 13:13:29 | 000,000,000 | ---D | C] -- C:\Users\marcel\Desktop\Gericht
[2014.07.24 16:16:55 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Sony Media Go Install
[2014.07.24 16:16:55 | 000,000,000 | ---D | C] -- C:\Users\marcel\AppData\Roaming\Sony
[2014.07.24 15:48:00 | 000,042,040 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avnetflt.sys
[2014.07.23 11:43:36 | 000,000,000 | ---D | C] -- C:\Users\marcel\AppData\Local\det
[2014.07.23 11:41:04 | 000,000,000 | ---D | C] -- C:\Users\marcel\AppData\Local\Spoon
[2014.07.21 16:37:17 | 000,000,000 | ---D | C] -- C:\Windows\Migration
[2014.07.21 16:29:44 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\DESIGNER
[2014.0-- C:\Config.Msi
[2014.07.18 16:23:58 | 000,000,000 | ---D | C] -- C:\ProgramData\IbemTocu
[2014.07.17 20:40:19 | 000,000,000 | ---D | C] -- C:\Users\marcel\AppData\Roaming\Avira
[2014.07.17 20:37:49 | 000,130,584 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avipbb.sys
[2014.07.17 20:37:49 | 000,117,712 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avgntflt.sys
[2014.07.17 20:37:49 | 000,028,600 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avkmgr.sys
[2014.07.17 20:31:56 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
[2014.07.17 20:31:55 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Avira
[2014.07.17 20:31:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Avira
[2014.07.17 20:31:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Package Cache
[2014.07.17 20:18:51 | 000,000,000 | -H-D | C] -- C:\ProgramData\Common Files
[2014.07.17 20:18:50 | 000,000,000 | ---D | C] -- C:\Users\marcel\AppData\Local\MFAData
[2014.07.17 20:18:50 | 000,000,000 | ---D | C] -- C:\ProgramData\MFAData
[2014.07.17 20:17:47 | 000,000,000 | ---D | C] -- C:\Avira Antivir
========== Files - Modified Within 30 Days ==========
[2014.07.26 12:50:47 | 000,009,696 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014.07.26 12:50:47 | 000,009,696 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014.07.26 12:39:47 | 000,001,832 | ---- | M] () -- C:\Windows\tasks\Plus-HD-1.6-firefoxinstaller.job
[2014.07.26 12:39:47 | 000,001,298 | ---- | M] () -- C:\Windows\tasks\Plus-HD-1.6-updater.job
[2014.07.26 12:39:47 | 000,001,200 | ---- | M] () -- C:\Windows\tasks\Plus-HD-1.6-codedownloader.job
[2014.07.26 12:39:47 | 000,001,100 | ---- | M] () -- C:\Windows\tasks\Plus-HD-1.6-enabler.job
[2014.07.26 12:37:55 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2014.07.24 15:47:16 | 000,042,040 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avnetflt.sys
[2014.07.23 11:34:37 | 001,618,320 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2014.07.23 11:34:37 | 000,698,926 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat
[2014.07.23 11:34:37 | 000,653,724 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2014.07.23 11:34:37 | 000,149,034 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat
[2014.07.23 11:34:37 | 000,121,596 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2014.07.21 16:39:12 | 001,585,616 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2014.07.17 20:31:56 | 000,001,109 | ---- | M] () -- C:\Users\Public\Desktop\Avira.lnk
[2014.07.02 13:06:42 | 000,130,584 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avipbb.sys
[2014.07.02 13:06:42 | 000,117,712 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avgntflt.sys
[2014.07.02 13:06:42 | 000,028,600 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avkmgr.sys
[2014.06.26 19:16:34 | 000,000,306 | RHS- | M] () -- C:\ProgramData\ntuser.pol
========== Files Created - No Company Name ==========
[2014.07.21 16:39:12 | 001,585,616 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2014.07.17 20:31:56 | 000,001,109 | ---- | C] () -- C:\Users\Public\Desktop\Avira.lnk
[2014.04.13 11:44:22 | 000,000,306 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2013.05.19 11:17:46 | 000,723,230 | ---- | C] () -- C:\Windows\unins000.exe
[2013.05.19 11:17:46 | 000,047,873 | ---- | C] () -- C:\Windows\unins000.dat
[2011.06.14 04:39:25 | 000,000,000 | ---- | C] () -- C:\Users\marcel\AppData\Local\{95EC30B7-5055-439F-8578-FFB25A69BA82}
========== ZeroAccess Check ==========
[2009.07.14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2013.07.26 04:24:57 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013.07.26 03:55:59 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009.07.14 03:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010.11.20 14:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009.07.14 03:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
========== LOP Check ==========
[2013.02.10 17:35:19 | 000,000,000 | ---D | M] -- C:\Users\marcel\AppData\Roaming\Apowersoft
[2013.05.19 09:37:05 | 000,000,000 | ---D | M] -- C:\Users\marcel\AppData\Roaming\DVDVideoSoft
[2013.05.19 09:35:47 | 000,000,000 | ---D | M] -- C:\Users\marcel\AppData\Roaming\OpenCandy
[2012.09.30 13:30:53 | 000,000,000 | ---D | M] -- C:\Users\marcel\AppData\Roaming\Roaming
[2014.07.24 16:16:55 | 000,000,000 | ---D | M] -- C:\Users\marcel\AppData\Roaming\Sony
[2013.07.13 18:17:47 | 000,000,000 | ---D | M] -- C:\Users\marcel\AppData\Roaming\Systweak
[2010.07.21 19:15:38 | 000,000,000 | ---D | M] -- C:\Users\marcel\AppData\Roaming\TuneUp Software
========== Purity Check ==========
< End of report >