|
Log-Analyse und Auswertung: gamerpc plötzlich extrem verlangsamtWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
24.12.2011, 12:06 | #1 |
| gamerpc plötzlich extrem verlangsamt mein pc ist von vorgestern auf gestern ist der leistung sehr herutergefahren, obwohl ich nur ganz normal gezockt habe. ich habe auck schon den antivierenscanner drüberlaufen lasse, ccleaner, aber es hat nix gebracht. ich habe auch alle nichtbenötigtenprogramme deinstalliert, aber es hat nichts gebracht. win7 64 bit service pack 1 intel core i5 2500k geforce gtx 570 8 gb ddr3 ram bitdefender total security 2012 hier noch die logfiles von OTL ich hoffe ihr könnt mir helfen Marius OTL Logfile: Code:
ATTFilter OTL logfile created on: 24.12.2011 12:38:34 - Run 1 OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\Marius\Desktop\OTL 64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 8.0.7601.17514) Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy 7,98 Gb Total Physical Memory | 3,59 Gb Available Physical Memory | 45,00% Memory free 15,96 Gb Paging File | 12,99 Gb Available in Paging File | 81,39% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 931,41 Gb Total Space | 584,97 Gb Free Space | 62,80% Space Free | Partition Type: NTFS Drive D: | 6,10 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF Computer Name: MARIUS-PC | User Name: Marius | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days ========== Processes (SafeList) ========== PRC - [2011.12.12 23:20:56 | 003,305,760 | ---- | M] (Akamai Technologies, Inc) -- C:\Users\Marius\AppData\Local\Akamai\netsession_win.exe PRC - [2011.12.06 20:15:15 | 000,336,896 | ---- | M] (AVM Berlin) -- C:\Users\Marius\AppData\Local\Apps\2.0\Q1QCPXOR.6QB\LB72VP07.VRR\frit..tion_8488884cfbcefd60_0002.0002_8541bf1f4a1c673d\fritzbox-usb-fernanschluss.exe PRC - [2011.12.02 22:50:20 | 000,093,912 | ---- | M] (Bitdefender) -- C:\Programme\Bitdefender\Bitdefender 2012\Antispam32\pchooklaunch32.exe PRC - [2011.10.16 14:22:40 | 000,584,192 | ---- | M] (OldTimer Tools) -- C:\Users\Marius\Desktop\OTL\OTL.exe PRC - [2011.10.15 09:53:00 | 002,253,120 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe PRC - [2011.10.15 00:54:40 | 000,381,248 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe PRC - [2011.08.31 17:00:48 | 000,449,608 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe PRC - [2011.08.31 17:00:48 | 000,366,152 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe PRC - [2011.06.06 12:55:28 | 000,064,952 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe PRC - [2011.03.11 17:26:56 | 002,240,512 | ---- | M] () -- C:\Program Files (x86)\Vtune\TBPANEL.exe PRC - [2010.12.20 18:24:38 | 002,656,280 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe PRC - [2010.12.20 18:24:36 | 000,325,656 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe PRC - [2010.11.21 04:24:27 | 000,257,536 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWOW64\wbem\WmiPrvSE.exe PRC - [2010.03.05 10:15:12 | 000,235,752 | ---- | M] (DeviceVM, Inc.) -- C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe PRC - [2010.03.05 10:15:04 | 000,411,864 | ---- | M] (DeviceVM, Inc.) -- C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe ========== Modules (No Company Name) ========== MOD - [2011.12.07 15:28:52 | 000,368,128 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\07cdef1a740151932dcf161f3306bd9c\PresentationFramework.Aero.ni.dll MOD - [2011.12.07 15:28:38 | 014,339,072 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\70e2ca33ffa52c743285dc5b4910a229\PresentationFramework.ni.dll MOD - [2011.12.07 15:28:30 | 012,234,752 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\7c94a121334aeca7553c7f01290740f0\PresentationCore.ni.dll MOD - [2011.12.07 15:28:24 | 003,347,968 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\d7a64c28cf0c90e6c48af4f7d6f9ed41\WindowsBase.ni.dll MOD - [2011.12.07 15:27:37 | 012,433,408 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\6e592e424a204aafeadbe22b6b31b9db\System.Windows.Forms.ni.dll MOD - [2011.12.07 15:27:37 | 001,806,848 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Deployment\dd2070ee8e6e28ac8dc658404c50ebde\System.Deployment.ni.dll MOD - [2011.12.07 15:27:26 | 001,587,200 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\3b2cfd85528a27eb71dc41d8067359a1\System.Drawing.ni.dll MOD - [2011.12.07 15:27:16 | 005,453,312 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\130ad4d9719e566ca933ac7158a04203\System.Xml.ni.dll MOD - [2011.12.07 15:27:14 | 000,971,264 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\2d5bcbeb9475ef62189f605bcca1cec6\System.Configuration.ni.dll MOD - [2011.12.07 15:27:13 | 007,963,648 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\abab08afa60a6f06bdde0fcc9649c379\System.ni.dll MOD - [2011.12.07 15:27:10 | 011,490,304 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\a1a82db68b3badc7c27ea1f6579d22c5\mscorlib.ni.dll MOD - [2011.12.06 20:15:10 | 000,368,640 | ---- | M] () -- C:\Users\Marius\AppData\Local\Apps\2.0\Q1QCPXOR.6QB\LB72VP07.VRR\frit..tion_8488884cfbcefd60_0002.0002_8541bf1f4a1c673d\managedupnp.DLL MOD - [2011.03.11 17:26:56 | 002,240,512 | ---- | M] () -- C:\Program Files (x86)\Vtune\TBPANEL.exe MOD - [2010.11.13 00:26:08 | 000,315,392 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_de_b77a5c561934e089\mscorlib.resources.dll MOD - [2009.07.31 21:39:08 | 000,503,202 | ---- | M] () -- C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\sqlite3.dll MOD - [2009.06.08 18:58:46 | 000,249,856 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\PresentationFramework.resources\3.0.0.0_de_31bf3856ad364e35\PresentationFramework.resources.dll MOD - [1998.10.31 04:55:56 | 000,005,120 | ---- | M] () -- C:\Program Files (x86)\Vtune\TBManage.dll ========== Win32 Services (SafeList) ========== SRV:64bit: - [2011.12.02 22:57:25 | 001,936,040 | ---- | M] (Bitdefender) [Auto | Running] -- C:\Program Files\Bitdefender\Bitdefender 2012\vsserv.exe -- (VSSERV) SRV:64bit: - [2011.12.02 22:57:21 | 000,074,336 | ---- | M] (BitDefender) [Auto | Running] -- C:\Program Files\Bitdefender\Bitdefender SafeBox\safeboxservice.exe -- (SafeBox) SRV:64bit: - [2011.12.02 22:51:23 | 000,062,512 | ---- | M] (Bitdefender) [Auto | Running] -- C:\Program Files\Bitdefender\Bitdefender 2012\updatesrv.exe -- (UPDATESRV) SRV:64bit: - [2009.07.14 02:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt) SRV - [2011.12.14 20:54:25 | 003,316,000 | ---- | M] () [Auto | Running] -- c:\program files (x86)\common files\akamai/netsession_win_b427739.dll -- (Akamai) SRV - [2011.12.08 20:58:16 | 000,419,624 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service) SRV - [2011.12.02 22:50:13 | 000,466,736 | ---- | M] (BitDefender) [On_Demand | Stopped] -- C:\Programme\Common Files\Bitdefender\Bitdefender Arrakis Server\bin\arrakis3.exe -- (Update Server) SRV - [2011.10.15 09:53:00 | 002,253,120 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe -- (nvUpdatusService) SRV - [2011.10.15 00:54:40 | 000,381,248 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe -- (Stereo Service) SRV - [2011.08.31 17:00:48 | 000,366,152 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService) SRV - [2011.08.01 17:24:00 | 003,889,424 | ---- | M] (INCA Internet Co., Ltd.) [On_Demand | Stopped] -- C:\Windows\SysWow64\GameMon.des -- (npggsvc) SRV - [2011.06.06 12:55:28 | 000,064,952 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice) SRV - [2010.12.20 18:24:38 | 002,656,280 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- (UNS) Intel(R) SRV - [2010.12.20 18:24:36 | 000,325,656 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS) Intel(R) SRV - [2010.03.18 13:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32) SRV - [2010.03.05 10:15:12 | 000,235,752 | ---- | M] (DeviceVM, Inc.) [Auto | Running] -- C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe -- (BCUService) SRV - [2009.10.19 19:45:32 | 000,318,088 | ---- | M] (Utipu inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\uTIPu\TipCtrl.exe -- (TipCtrl) SRV - [2009.06.10 22:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32) ========== Driver Services (SafeList) ========== DRV:64bit: - [2011.12.06 20:15:13 | 000,116,096 | ---- | M] (AVM Berlin) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\avmaudio.sys -- (avmaudio) DRV:64bit: - [2011.12.02 22:57:59 | 000,543,528 | ---- | M] (BitDefender) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\avckf.sys -- (avckf) DRV:64bit: - [2011.12.02 22:57:53 | 000,329,800 | ---- | M] (BitDefender S.R.L.) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\trufos.sys -- (trufos) DRV:64bit: - [2011.12.02 22:56:11 | 000,079,952 | ---- | M] (BitDefender SRL) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bdsandbox.sys -- (bdsandbox) DRV:64bit: - [2011.12.02 22:53:01 | 000,258,736 | ---- | M] (BitDefender) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\avchv.sys -- (avchv) DRV:64bit: - [2011.12.02 22:51:06 | 000,685,192 | ---- | M] (BitDefender) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\avc3.sys -- (avc3) DRV:64bit: - [2011.12.02 22:14:10 | 000,279,616 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\dtsoftbus01.sys -- (dtsoftbus01) DRV:64bit: - [2011.08.31 17:00:50 | 000,025,416 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector) DRV:64bit: - [2011.07.08 00:21:28 | 000,174,184 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nvhda64v.sys -- (NVHDA) DRV:64bit: - [2011.06.10 06:34:52 | 000,539,240 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167) DRV:64bit: - [2011.03.24 15:36:22 | 000,431,176 | ---- | M] (BitDefender) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\bdfsfltr.sys -- (bdfsfltr) DRV:64bit: - [2011.03.11 07:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata) DRV:64bit: - [2011.03.11 07:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata) DRV:64bit: - [2011.01.27 10:23:38 | 000,385,512 | ---- | M] (ASMedia Technology Inc) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\asmtxhci.sys -- (asmtxhci) DRV:64bit: - [2011.01.27 10:23:36 | 000,125,416 | ---- | M] (ASMedia Technology Inc) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\asmthub3.sys -- (asmthub3) DRV:64bit: - [2010.11.21 04:24:33 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt) DRV:64bit: - [2010.11.21 04:23:48 | 000,071,168 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\dmvsc.sys -- (dmvsc) DRV:64bit: - [2010.11.21 04:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD) DRV:64bit: - [2010.11.21 04:23:47 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD) DRV:64bit: - [2010.10.19 16:34:26 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (MEIx64) Intel(R) DRV:64bit: - [2010.09.30 20:00:06 | 000,180,736 | ---- | M] (Renesas Electronics Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nusb3xhc.sys -- (nusb3xhc) DRV:64bit: - [2010.09.30 20:00:06 | 000,080,384 | ---- | M] (Renesas Electronics Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\nusb3hub.sys -- (nusb3hub) DRV:64bit: - [2010.01.19 19:32:40 | 000,103,944 | ---- | M] (BitDefender) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\bdvedisk.sys -- (BDVEDISK) DRV:64bit: - [2009.07.14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs) DRV:64bit: - [2009.07.14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2) DRV:64bit: - [2009.07.14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor) DRV:64bit: - [2009.06.10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv) DRV:64bit: - [2009.06.10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv) DRV:64bit: - [2009.06.10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a) DRV:64bit: - [2009.06.10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir) DRV:64bit: - [2009.04.29 16:28:30 | 000,030,208 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\KMWDFILTER.sys -- (KMWDFILTER) DRV:64bit: - [2008.03.26 20:31:26 | 000,036,432 | ---- | M] (DemoForge, LLC) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\dfmirage.sys -- (dfmirage) DRV - [2011.12.02 22:49:51 | 000,090,192 | ---- | M] (BitDefender LLC) [Kernel | System | Running] -- c:\Programme\Common Files\Bitdefender\Bitdefender Firewall\bdfndisf6.sys -- (BdfNdisf) DRV - [2011.12.02 22:49:47 | 000,103,504 | ---- | M] (BitDefender LLC) [Kernel | System | Running] -- C:\Programme\Common Files\Bitdefender\Bitdefender Firewall\bdfwfpf.sys -- (bdfwfpf) DRV - [2009.07.14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount) DRV - [2007.03.16 10:11:20 | 000,015,648 | ---- | M] (Windows (R) Server 2003 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\TBPanelx64.sys -- (Cardex) DRV - [2005.01.01 10:43:08 | 000,004,682 | ---- | M] (INCA Internet Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysWOW64\npptNT2.sys -- (NPPTNT2) ========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = hxxp://start.facemoods.com/?a=ddrnw&s={searchTerms}&f=4 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://start.facemoods.com/?a=ddrnw IE - HKCU\..\URLSearchHook: {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch.dll (DeviceVM, Inc.) IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 ========== FireFox ========== FF - prefs.js..browser.search.defaultenginename: "Google" FF - prefs.js..browser.search.selectedEngine: "Google" FF - prefs.js..browser.startup.homepage: "google.de" FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_1_102.dll File not found FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre7\bin\new_plugin\npjp2.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll () FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVision: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF - HKLM\Software\MozillaPlugins\@nvidia.com/3DVisionStreaming: C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=1.1.11: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (the VideoLAN Team) FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) 64bit-FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\bdThunderbird@bitdefender.com: C:\PROGRAM FILES\BITDEFENDER\BITDEFENDER 2012\BDTBEXT\ [2011.12.04 21:17:52 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 8.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2011.12.02 22:20:42 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\bdThunderbird@bitdefender.com: C:\Program Files\Bitdefender\Bitdefender 2012\bdtbext\ [2011.12.04 21:17:52 | 000,000,000 | ---D | M] [2011.12.02 22:21:36 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Marius\AppData\Roaming\mozilla\Extensions [2011.12.24 10:38:01 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Marius\AppData\Roaming\mozilla\Firefox\Profiles\hnfhlyzh.default\extensions [2011.12.15 16:13:52 | 000,000,000 | ---D | M] (Battlefield Play4Free) -- C:\Users\Marius\AppData\Roaming\mozilla\Firefox\Profiles\hnfhlyzh.default\extensions\battlefieldplay4free@ea.com [2011.12.04 12:36:04 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions [2011.12.03 10:51:41 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} () (No name found) -- C:\USERS\MARIUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HNFHLYZH.DEFAULT\EXTENSIONS\{D10D0BF8-F5B5-C8B4-A8B2-2B9879E08C5D}.XPI () (No name found) -- C:\USERS\MARIUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HNFHLYZH.DEFAULT\EXTENSIONS\{DDC359D1-844A-42A7-9AA1-88A850A938A8}.XPI () (No name found) -- C:\USERS\MARIUS\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\HNFHLYZH.DEFAULT\EXTENSIONS\PERSONAS@CHRISTOPHER.BEARD.XPI [2011.11.21 05:21:43 | 000,134,104 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll [2011.11.21 02:17:49 | 000,001,392 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\amazondotcom-de.xml [2011.11.21 02:09:48 | 000,002,252 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml [2011.11.21 02:17:49 | 000,001,153 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\eBay-de.xml [2011.12.18 00:10:22 | 000,002,048 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\fcmdSrch.xml [2011.11.21 02:17:49 | 000,006,805 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\leo_ende_de.xml [2011.11.21 02:17:49 | 000,001,178 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-de.xml [2011.11.21 02:17:49 | 000,001,105 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\yahoo-de.xml O1 HOSTS File: ([2009.06.10 22:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts O2:64bit: - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) O4:64bit: - HKLM..\Run: [BDAgent] C:\Program Files\Bitdefender\Bitdefender 2012\bdagent.exe (Bitdefender) O4 - HKLM..\Run: [BCU] C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe (DeviceVM, Inc.) O4 - HKLM..\Run: [Malwarebytes' Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation) O4 - HKCU..\Run: [Akamai NetSession Interface] C:\Users\Marius\AppData\Local\Akamai\netsession_win.exe (Akamai Technologies, Inc) O4 - HKCU..\Run: [AVMUSBFernanschluss] C:\Users\Marius\AppData\Local\Apps\2.0\Q1QCPXOR.6QB\LB72VP07.VRR\frit..tion_8488884cfbcefd60_0002.0002_8541bf1f4a1c673d\AVMAutoStart.exe (AVM Berlin) O4 - HKCU..\Run: [DAEMON Tools Lite] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (DT Soft Ltd) O4 - HKCU..\Run: [EPSON SX210 Series] C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIFDE.EXE /FU "C:\Windows\TEMP\E_S8127.tmp" /EF "HKCU" File not found O4 - HKCU..\Run: [Steam] C:\Program Files (x86)\Steam\Steam.exe (Valve Corporation) O4 - HKLM..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoInternetOpenWith = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0 O8:64bit: - Extra context menu item: Free YouTube Download - C:\Users\Marius\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubedownload.htm () O8:64bit: - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\Marius\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm () O8 - Extra context menu item: Free YouTube Download - C:\Users\Marius\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubedownload.htm () O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Users\Marius\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubetomp3converter.htm () O1364bit: - gopher Prefix: missing O13 - gopher Prefix: missing O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_01-windows-i586.cab (Java Plug-in 10.1.0) O16 - DPF: {CAFEEFAC-0017-0000-0001-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_01-windows-i586.cab (Java Plug-in 1.7.0_01) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_01-windows-i586.cab (Reg Error: Key error.) O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 1.6.0_29) O16 - DPF: {CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 1.6.0_29) O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_29-windows-i586.cab (Java Plug-in 1.6.0_29) O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (Shockwave Flash Object) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.178.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{5B0C762B-28A9-4B49-B5FD-30C92B09DDA0}: DhcpNameServer = 192.168.178.1 O18:64bit: - Protocol\Handler\skype4com - No CLSID value found O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation) O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\Windows\SysNative\SystemPropertiesPerformance.exe (Microsoft Corporation) O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found O20 - HKLM Winlogon: Shell - (explorer.exe) -C:\Windows\SysWow64\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) -C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O32 - HKLM CDRom: AutoRun - 1 O32 - AutoRun File - [2008.12.30 11:40:44 | 000,000,044 | R--- | M] () - D:\autorun.inf -- [ UDF ] O32 - AutoRun File - [2009.02.28 18:57:34 | 007,214,352 | R--- | M] (Ubisoft) - D:\Autorun.exe -- [ UDF ] O32 - AutoRun File - [2009.03.02 09:25:04 | 000,401,444 | R--- | M] (RAD Game Tools, Inc.) - D:\Autorun.dll -- [ UDF ] O33 - MountPoints2\{a8264749-1d22-11e1-9827-806e6f6e6963}\Shell - "" = AutoRun O33 - MountPoints2\{a8264749-1d22-11e1-9827-806e6f6e6963}\Shell\AutoRun\command - "" = D:\Autorun.exe -- [2009.02.28 18:57:34 | 007,214,352 | R--- | M] (Ubisoft) O34 - HKLM BootExecute: (autocheck autochk /p \??\C:) O34 - HKLM BootExecute: (autocheck autochk *) O35:64bit: - HKLM\..comfile [open] -- "%1" %* O35:64bit: - HKLM\..exefile [open] -- "%1" %* O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %* O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* ========== Files/Folders - Created Within 30 Days ========== [2011.12.24 12:37:47 | 000,000,000 | ---D | C] -- C:\Users\Marius\Desktop\OTL [2011.12.24 11:52:41 | 000,388,608 | ---- | C] (Trend Micro Inc.) -- C:\Users\Marius\Desktop\HiJackThis204.exe [2011.12.24 10:41:43 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Roaming\Malwarebytes [2011.12.24 10:41:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware [2011.12.24 10:41:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes [2011.12.24 10:41:07 | 000,025,416 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys [2011.12.24 10:41:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware [2011.12.24 09:50:50 | 000,000,000 | ---D | C] -- C:\Windows\pss [2011.12.24 09:10:45 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner [2011.12.24 09:10:35 | 000,000,000 | ---D | C] -- C:\Program Files\CCleaner [2011.12.23 23:44:08 | 001,147,392 | ---- | C] (J.C. Kessels) -- C:\Windows\SysNative\MyDefragScreenSaver_v4.3.1.exe [2011.12.23 23:44:08 | 000,485,376 | ---- | C] (J.C. Kessels) -- C:\Windows\SysNative\MyDefragScreenSaver_v4.3.1.scr [2011.12.23 23:44:08 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyDefrag v4.3.1 [2011.12.23 23:44:07 | 000,000,000 | ---D | C] -- C:\Program Files\MyDefrag v4.3.1 [2011.12.23 23:00:22 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\directx [2011.12.23 22:22:32 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games [2011.12.23 22:21:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Starcraft [2011.12.23 22:21:11 | 000,070,656 | ---- | C] (Blizzard Entertainment) -- C:\Windows\ScUnin.exe [2011.12.23 22:20:46 | 000,000,000 | ---D | C] -- C:\Program Files\Starcraft [2011.12.23 21:24:52 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArtMoney SE [2011.12.23 21:24:51 | 000,000,000 | ---D | C] -- C:\Games [2011.12.21 16:15:50 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SQUARE ENIX - Eidos Interactive [2011.12.20 22:15:31 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Local\ElevatedDiagnostics [2011.12.20 22:03:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON [2011.12.20 21:59:25 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Roaming\vlc [2011.12.20 21:59:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN [2011.12.20 21:59:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VideoLAN [2011.12.20 21:55:44 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\CSIDL_PERSONAL [2011.12.20 21:55:10 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Local\uTIPu [2011.12.20 21:55:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\uTIPu [2011.12.20 21:55:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\uTIPu [2011.12.20 20:01:20 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Local\DVDVideoSoft_Ltd [2011.12.20 17:16:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SQUARE ENIX - Eidos Interactive [2011.12.20 16:13:54 | 000,000,000 | ---D | C] -- C:\Users\Marius\Documents\Square Enix [2011.12.20 15:38:31 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Local\Babylon [2011.12.20 15:38:30 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Roaming\Babylon [2011.12.20 15:38:30 | 000,000,000 | ---D | C] -- C:\ProgramData\Babylon [2011.12.20 15:38:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Premium [2011.12.20 15:37:57 | 000,000,000 | ---D | C] -- C:\ProgramData\InstallMate [2011.12.19 16:09:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Media Center Programs [2011.12.19 15:58:47 | 000,000,000 | ---D | C] -- C:\Users\Marius\Desktop\world_the_end [2011.12.19 15:58:46 | 000,000,000 | ---D | C] -- C:\Users\Marius\Desktop\world_nether [2011.12.19 15:58:46 | 000,000,000 | ---D | C] -- C:\Users\Marius\Desktop\world [2011.12.19 15:55:14 | 000,000,000 | ---D | C] -- C:\Users\Marius\Spiele [2011.12.15 17:02:15 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Local\PunkBuster [2011.12.15 17:00:14 | 000,000,000 | ---D | C] -- C:\Users\Marius\Documents\Battlefield Play4Free [2011.12.15 16:30:05 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EA Games [2011.12.15 16:14:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\EA Games [2011.12.13 14:15:14 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Fraps [2011.12.13 14:15:06 | 000,000,000 | ---D | C] -- C:\fraps [2011.12.11 20:34:09 | 000,000,000 | ---D | C] -- C:\Users\Marius\Desktop\plugins [2011.12.11 19:45:13 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Roaming\WinRAR [2011.12.11 19:45:13 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR [2011.12.11 19:45:12 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR [2011.12.11 19:45:06 | 000,000,000 | ---D | C] -- C:\Program Files\WinRAR [2011.12.11 15:44:31 | 000,000,000 | ---D | C] -- C:\Users\Marius\Desktop\bukkit_update [2011.12.11 10:28:47 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Roaming\pymclevel [2011.12.10 23:16:48 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Roaming\DVDVideoSoftIEHelpers [2011.12.10 23:16:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft [2011.12.10 23:16:30 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Roaming\DVDVideoSoft [2011.12.10 23:15:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DVDVideoSoft [2011.12.10 23:15:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\DVDVideoSoft [2011.12.10 14:21:46 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Roaming\Ubisoft [2011.12.10 14:18:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Ubisoft [2011.12.10 14:07:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Ubisoft [2011.12.10 13:55:04 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ISO Commander [2011.12.09 21:07:05 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\LucasArts [2011.12.08 18:46:32 | 000,000,000 | ---D | C] -- C:\Program Files\Java [2011.12.08 18:45:33 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\appmgmt [2011.12.08 18:44:45 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Local\Diagnostics [2011.12.08 18:23:39 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Local\Adobe [2011.12.08 18:22:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Adobe [2011.12.08 18:22:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Adobe [2011.12.06 20:20:42 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FRITZ!Box [2011.12.06 20:16:22 | 000,000,000 | ---D | C] -- C:\ProgramData\EPSON [2011.12.06 20:15:15 | 000,116,096 | ---- | C] (AVM Berlin) -- C:\Windows\SysNative\drivers\avmaudio.sys [2011.12.06 20:15:15 | 000,032,256 | ---- | C] (AVM Berlin) -- C:\Windows\SysNative\MiniInstaller.dll [2011.12.06 20:14:59 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Local\Deployment [2011.12.06 20:14:59 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Local\Apps [2011.12.06 20:14:39 | 000,000,000 | ---D | C] -- C:\Users\Marius\.thinupload [2011.12.06 19:09:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Adobe [2011.12.05 19:48:25 | 000,000,000 | ---D | C] -- C:\AeriaGames [2011.12.05 19:45:46 | 003,889,424 | ---- | C] (INCA Internet Co., Ltd.) -- C:\Windows\SysWow64\GameMon.des [2011.12.05 19:45:34 | 000,004,682 | ---- | C] (INCA Internet Co., Ltd.) -- C:\Windows\SysWow64\npptNT2.sys [2011.12.05 19:45:29 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\INCA Shared [2011.12.05 18:52:22 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Local\Akamai [2011.12.05 18:51:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Akamai [2011.12.04 22:30:31 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft.NET [2011.12.04 12:37:17 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Roaming\OpenOffice.org [2011.12.04 12:36:53 | 000,000,000 | --SD | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice.org 3.3 [2011.12.04 12:36:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\OpenOffice.org 3 [2011.12.04 12:05:52 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Roaming\TuneUp Software [2011.12.04 12:04:25 | 000,000,000 | ---D | C] -- C:\ProgramData\TuneUp Software [2011.12.04 12:04:14 | 000,000,000 | -HSD | C] -- C:\ProgramData\{32364CEA-7855-4A3C-B674-53D8E9B97936} [2011.12.03 11:01:10 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notepad++ [2011.12.03 11:01:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ [2011.12.03 11:01:09 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Roaming\Notepad++ [2011.12.03 11:01:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Notepad++ [2011.12.03 10:54:46 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Roaming\NVIDIA [2011.12.03 10:51:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Sun [2011.12.03 10:51:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java [2011.12.03 10:51:53 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Roaming\.minecraft [2011.12.03 10:51:30 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Java [2011.12.03 06:17:09 | 000,000,000 | ---D | C] -- C:\Windows\Panther [2011.12.03 06:16:43 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\OEM [2011.12.03 06:16:43 | 000,000,000 | ---D | C] -- C:\Hotfix [2011.12.03 06:16:43 | 000,000,000 | ---D | C] -- C:\Drivers [2011.12.03 06:15:37 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\XPSViewer [2011.12.03 06:15:37 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\drivers\de-DE [2011.12.03 06:15:37 | 000,000,000 | ---D | C] -- C:\Windows\de-DE [2011.12.03 06:15:37 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\de [2011.12.03 06:15:37 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\0407 [2011.12.03 06:15:36 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\de-DE [2011.12.03 06:15:36 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\de [2011.12.03 06:15:36 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0407 [2011.12.03 06:13:54 | 000,004,096 | ---- | C] (SCM Microsystems, Inc.) -- C:\Windows\SysNative\drivers\de-DE\pscr.sys.mui [2011.12.03 06:13:33 | 000,011,776 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\SysNative\drivers\de-DE\BrSerIb.sys.mui [2011.12.03 06:13:32 | 000,011,776 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\SysNative\drivers\de-DE\BrSerId.sys.mui [2011.12.03 06:13:32 | 000,002,560 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\SysNative\drivers\de-DE\BrParwdm.sys.mui [2011.12.03 00:37:47 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam [2011.12.03 00:34:23 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Steam [2011.12.03 00:34:22 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam [2011.12.03 00:34:22 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Steam [2011.12.02 22:57:58 | 000,543,528 | ---- | C] (BitDefender) -- C:\Windows\SysNative\drivers\avckf.sys [2011.12.02 22:57:53 | 000,329,800 | ---- | C] (BitDefender S.R.L.) -- C:\Windows\SysNative\drivers\trufos.sys [2011.12.02 22:56:11 | 000,079,952 | ---- | C] (BitDefender SRL) -- C:\Windows\SysNative\drivers\bdsandbox.sys [2011.12.02 22:53:01 | 000,258,736 | ---- | C] (BitDefender) -- C:\Windows\SysNative\drivers\avchv.sys [2011.12.02 22:51:06 | 000,685,192 | ---- | C] (BitDefender) -- C:\Windows\SysNative\drivers\avc3.sys [2011.12.02 22:36:18 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Electronic Arts [2011.12.02 22:25:37 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Roaming\Skype [2011.12.02 22:25:29 | 000,000,000 | R--D | C] -- C:\Program Files (x86)\Skype [2011.12.02 22:25:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype [2011.12.02 22:25:29 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype [2011.12.02 22:25:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Skype [2011.12.02 22:23:39 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Roaming\Macromedia [2011.12.02 22:23:28 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Macromed [2011.12.02 22:23:27 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\Macromed [2011.12.02 22:21:14 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Roaming\Mozilla [2011.12.02 22:21:14 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Local\Mozilla [2011.12.02 22:20:40 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox [2011.12.02 22:17:28 | 000,000,000 | ---D | C] -- C:\BDLOGS [2011.12.02 22:16:33 | 000,000,000 | ---D | C] -- C:\ISO [2011.12.02 22:15:32 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitdefender 2012 [2011.12.02 22:15:31 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Roaming\Bitdefender [2011.12.02 22:15:29 | 000,000,000 | ---D | C] -- C:\ProgramData\Bitdefender [2011.12.02 22:14:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite [2011.12.02 22:14:10 | 000,279,616 | ---- | C] (DT Soft Ltd) -- C:\Windows\SysNative\drivers\dtsoftbus01.sys [2011.12.02 22:14:07 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\DAEMON Tools Lite [2011.12.02 22:13:48 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Roaming\DAEMON Tools Lite [2011.12.02 22:13:46 | 000,000,000 | ---D | C] -- C:\ProgramData\DAEMON Tools Lite [2011.12.02 22:12:57 | 000,000,000 | ---D | C] -- C:\Program Files\Bitdefender [2011.12.02 22:12:40 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Roaming\QuickScan [2011.12.02 22:12:24 | 000,431,176 | ---- | C] (BitDefender) -- C:\Windows\SysNative\drivers\bdfsfltr.sys [2011.12.02 22:11:58 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Bitdefender [2011.12.02 22:11:39 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Roaming\Adobe [2011.12.02 22:02:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation [2011.12.02 22:01:37 | 000,068,928 | ---- | C] (Khronos Group) -- C:\Windows\SysNative\OpenCL.dll [2011.12.02 22:01:37 | 000,061,248 | ---- | C] (Khronos Group) -- C:\Windows\SysWow64\OpenCL.dll [2011.12.02 21:59:23 | 000,000,000 | ---D | C] -- C:\NVIDIA [2011.12.02 21:58:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip [2011.12.02 21:58:15 | 000,000,000 | ---D | C] -- C:\Program Files\7-Zip [2011.12.02 21:57:00 | 000,000,000 | ---D | C] -- C:\Users\Marius\Documents\Technik [2011.12.02 21:56:59 | 000,000,000 | ---D | C] -- C:\Users\Marius\Documents\Tauchen [2011.12.02 21:56:53 | 000,000,000 | ---D | C] -- C:\Users\Marius\Documents\Neuer Ordner [2011.12.02 21:56:45 | 000,000,000 | ---D | C] -- C:\Users\Marius\Documents\My Games [2011.12.02 21:56:42 | 000,000,000 | ---D | C] -- C:\Users\Marius\Documents\MCEdit-schematics [2011.12.02 21:54:48 | 000,000,000 | ---D | C] -- C:\Users\Marius\Documents\DVDVideoSoft [2011.12.02 21:54:48 | 000,000,000 | ---D | C] -- C:\Users\Marius\Documents\Domino Converter [2011.12.02 21:54:47 | 000,000,000 | ---D | C] -- C:\Users\Marius\Documents\BFBC2 [2011.12.02 21:54:47 | 000,000,000 | ---D | C] -- C:\Users\Marius\Documents\Arbeitsagentur [2011.12.02 21:45:37 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA [2011.12.02 21:45:26 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\NVIDIA Corporation [2011.12.02 21:45:00 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA Corporation [2011.12.02 21:43:31 | 000,000,000 | ---D | C] -- C:\Program Files\NVIDIA Corporation [2011.12.02 21:34:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vtune [2011.12.02 21:34:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Vtune [2011.12.02 21:29:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Asmedia Technology [2011.12.02 21:29:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ASM104xUSB3 [2011.12.02 21:29:25 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\postureAgent [2011.12.02 21:29:22 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Roaming\InstallShield [2011.12.02 21:27:52 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Roaming\DeviceVm [2011.12.02 21:27:52 | 000,000,000 | ---D | C] -- C:\ProgramData\DeviceVm [2011.12.02 21:27:48 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\DeviceVM [2011.12.02 21:27:25 | 000,000,000 | -HSD | C] -- C:\Windows\Installer [2011.12.02 21:26:01 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\RTCOM [2011.12.02 21:26:01 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek [2011.12.02 21:25:52 | 002,580,824 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\WavesGUILib.dll [2011.12.02 21:25:52 | 000,518,896 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSX64.dll [2011.12.02 21:25:52 | 000,220,496 | ---- | C] (Virage Logic Corporation / Sonic Focus) -- C:\Windows\SysNative\SFNHK64.dll [2011.12.02 21:25:52 | 000,211,184 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSH64.dll [2011.12.02 21:25:52 | 000,198,896 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSHP64.dll [2011.12.02 21:25:52 | 000,155,888 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSWOW64.dll [2011.12.02 21:25:52 | 000,081,232 | ---- | C] (Virage Logic Corporation / Sonic Focus) -- C:\Windows\SysNative\SFCOM64.dll [2011.12.02 21:25:52 | 000,074,064 | ---- | C] (Virage Logic Corporation / Sonic Focus) -- C:\Windows\SysWow64\SFCOM.dll [2011.12.02 21:25:51 | 000,078,160 | ---- | C] (Virage Logic Corporation / Sonic Focus) -- C:\Windows\SysNative\SFAPO64.dll [2011.12.02 21:25:49 | 000,375,128 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEP64A.dll [2011.12.02 21:25:49 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DHT64.dll [2011.12.02 21:25:49 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DAA64.dll [2011.12.02 21:25:49 | 000,204,120 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEED64A.dll [2011.12.02 21:25:49 | 000,101,208 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEL64A.dll [2011.12.02 21:25:49 | 000,078,680 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEG64A.dll [2011.12.02 21:25:47 | 002,197,264 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioEQ.dll [2011.12.02 21:25:47 | 001,870,680 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioRealtek.dll [2011.12.02 21:25:47 | 001,718,616 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEP64A.dll [2011.12.02 21:25:47 | 000,421,720 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EED64A.dll [2011.12.02 21:25:47 | 000,341,336 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO30.dll [2011.12.02 21:25:47 | 000,334,680 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxVolumeSDAPO.dll [2011.12.02 21:25:47 | 000,318,808 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO20.dll [2011.12.02 21:25:47 | 000,127,832 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEL64A.dll [2011.12.02 21:25:47 | 000,108,888 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEA64A.dll [2011.12.02 21:25:47 | 000,074,584 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEG64A.dll [2011.12.02 21:25:44 | 001,937,312 | ---- | C] (Fortemedia Corporation) -- C:\Windows\SysNative\FMAPO64.dll [2011.12.02 21:25:44 | 001,327,208 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSS2SpeakerDLL64.dll [2011.12.02 21:25:44 | 000,491,112 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSSymmetryDLL64.dll [2011.12.02 21:25:44 | 000,475,752 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSVoiceClarityDLL64.dll [2011.12.02 21:25:43 | 001,179,752 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSS2HeadphoneDLL64.dll [2011.12.02 21:25:43 | 001,111,656 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSBoostDLL64.dll [2011.12.02 21:25:43 | 000,504,936 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSBassEnhancementDLL64.dll [2011.12.02 21:25:43 | 000,317,032 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSNeoPCDLL64.dll [2011.12.02 21:25:43 | 000,269,928 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSLimiterDLL64.dll [2011.12.02 21:25:43 | 000,266,856 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGainCompensatorDLL64.dll [2011.12.02 21:25:43 | 000,126,056 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSLFXAPO64.dll [2011.12.02 21:25:43 | 000,125,544 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGFXAPO64.dll [2011.12.02 21:25:43 | 000,125,032 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGFXAPONS64.dll [2011.12.02 21:25:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Realtek [2011.12.02 21:25:42 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\Temp [2011.12.02 21:25:42 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\InstallShield Installation Information [2011.12.02 21:25:32 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\InstallShield [2011.12.02 21:25:04 | 000,053,248 | R--- | C] (Windows XP Bundled build C-Centric Single User) -- C:\Windows\SysWow64\CSVer.dll [2011.12.02 21:25:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Intel [2011.12.02 21:25:00 | 000,000,000 | ---D | C] -- C:\Intel [2011.12.02 21:23:04 | 000,000,000 | R--D | C] -- C:\Users\Marius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup [2011.12.02 21:23:04 | 000,000,000 | R--D | C] -- C:\Users\Marius\Searches [2011.12.02 21:23:04 | 000,000,000 | R--D | C] -- C:\Users\Marius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools [2011.12.02 21:22:57 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Roaming\Identities [2011.12.02 21:22:55 | 000,000,000 | R--D | C] -- C:\Users\Marius\Contacts [2011.12.02 21:22:54 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Local\VirtualStore [2011.12.02 21:22:48 | 000,000,000 | --SD | C] -- C:\Users\Marius\AppData\Roaming\Microsoft [2011.12.02 21:22:48 | 000,000,000 | R--D | C] -- C:\Users\Marius\Videos [2011.12.02 21:22:48 | 000,000,000 | R--D | C] -- C:\Users\Marius\Saved_Games [2011.12.02 21:22:48 | 000,000,000 | R--D | C] -- C:\Users\Marius\Pictures [2011.12.02 21:22:48 | 000,000,000 | R--D | C] -- C:\Users\Marius\Music [2011.12.02 21:22:48 | 000,000,000 | R--D | C] -- C:\Users\Marius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance [2011.12.02 21:22:48 | 000,000,000 | R--D | C] -- C:\Users\Marius\Links [2011.12.02 21:22:48 | 000,000,000 | R--D | C] -- C:\Users\Marius\Favorites [2011.12.02 21:22:48 | 000,000,000 | R--D | C] -- C:\Users\Marius\Downloads [2011.12.02 21:22:48 | 000,000,000 | R--D | C] -- C:\Users\Marius\Documents [2011.12.02 21:22:48 | 000,000,000 | R--D | C] -- C:\Users\Marius\Desktop [2011.12.02 21:22:48 | 000,000,000 | R--D | C] -- C:\Users\Marius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories [2011.12.02 21:22:48 | 000,000,000 | -HSD | C] -- C:\Users\Marius\Vorlagen [2011.12.02 21:22:48 | 000,000,000 | -HSD | C] -- C:\Users\Marius\AppData\Local\Verlauf [2011.12.02 21:22:48 | 000,000,000 | -HSD | C] -- C:\Users\Marius\AppData\Local\Temporary Internet Files [2011.12.02 21:22:48 | 000,000,000 | -HSD | C] -- C:\Users\Marius\Startmenü [2011.12.02 21:22:48 | 000,000,000 | -HSD | C] -- C:\Users\Marius\SendTo [2011.12.02 21:22:48 | 000,000,000 | -HSD | C] -- C:\Users\Marius\Recent [2011.12.02 21:22:48 | 000,000,000 | -HSD | C] -- C:\Users\Marius\Netzwerkumgebung [2011.12.02 21:22:48 | 000,000,000 | -HSD | C] -- C:\Users\Marius\Lokale Einstellungen [2011.12.02 21:22:48 | 000,000,000 | -HSD | C] -- C:\Users\Marius\Documents\Eigene Videos [2011.12.02 21:22:48 | 000,000,000 | -HSD | C] -- C:\Users\Marius\Documents\Eigene Musik [2011.12.02 21:22:48 | 000,000,000 | -HSD | C] -- C:\Users\Marius\Eigene Dateien [2011.12.02 21:22:48 | 000,000,000 | -HSD | C] -- C:\Users\Marius\Documents\Eigene Bilder [2011.12.02 21:22:48 | 000,000,000 | -HSD | C] -- C:\Users\Marius\Druckumgebung [2011.12.02 21:22:48 | 000,000,000 | -HSD | C] -- C:\Users\Marius\Cookies [2011.12.02 21:22:48 | 000,000,000 | -HSD | C] -- C:\Users\Marius\AppData\Local\Anwendungsdaten [2011.12.02 21:22:48 | 000,000,000 | -HSD | C] -- C:\Users\Marius\Anwendungsdaten [2011.12.02 21:22:48 | 000,000,000 | -H-D | C] -- C:\Users\Marius\AppData [2011.12.02 21:22:48 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Local\Temp [2011.12.02 21:22:48 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Local\Microsoft [2011.12.02 21:22:48 | 000,000,000 | ---D | C] -- C:\Users\Marius\AppData\Roaming\Media Center Programs [2011.12.02 21:22:43 | 000,000,000 | -HSD | C] -- C:\ProgramData\Vorlagen [2011.12.02 21:22:43 | 000,000,000 | -HSD | C] -- C:\ProgramData\Startmenü [2011.12.02 21:22:43 | 000,000,000 | -HSD | C] -- C:\Recovery [2011.12.02 21:22:43 | 000,000,000 | -HSD | C] -- C:\Programme [2011.12.02 21:22:43 | 000,000,000 | -HSD | C] -- C:\Program Files\Gemeinsame Dateien [2011.12.02 21:22:43 | 000,000,000 | -HSD | C] -- C:\ProgramData\Favoriten [2011.12.02 21:22:43 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Videos [2011.12.02 21:22:43 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Musik [2011.12.02 21:22:43 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Bilder [2011.12.02 21:22:43 | 000,000,000 | -HSD | C] -- C:\Dokumente und Einstellungen [2011.12.02 21:22:43 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dokumente [2011.12.02 21:22:43 | 000,000,000 | -HSD | C] -- C:\ProgramData\Anwendungsdaten [2011.12.02 21:22:40 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution [2011.12.02 21:18:03 | 000,000,000 | ---D | C] -- C:\Windows\Prefetch [2011.12.02 21:17:33 | 000,000,000 | -HSD | C] -- C:\System Volume Information [1 C:\Windows\SysNative\*.tmp files -> C:\Windows\SysNative\*.tmp -> ] ========== Files - Modified Within 30 Days ========== [2011.12.24 12:06:20 | 000,025,680 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 [2011.12.24 12:06:20 | 000,025,680 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 [2011.12.24 10:41:26 | 000,001,109 | ---- | M] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk [2011.12.24 09:45:51 | 000,010,366 | ---- | M] () -- C:\Users\Marius\Documents\ccleaner1.reg [2011.12.24 09:26:42 | 000,000,122 | ---- | M] () -- C:\Users\Marius\Desktop\Minecraft Server.bat [2011.12.23 23:44:11 | 000,000,863 | ---- | M] () -- C:\Users\Public\Desktop\MyDefrag.lnk [2011.12.23 22:38:23 | 001,498,506 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI [2011.12.23 22:38:23 | 000,653,928 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat [2011.12.23 22:38:23 | 000,615,810 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat [2011.12.23 22:38:23 | 000,129,800 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat [2011.12.23 22:38:23 | 000,106,190 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat [2011.12.23 22:31:57 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat [2011.12.23 22:31:54 | 2132,733,951 | -HS- | M] () -- C:\hiberfil.sys [2011.12.23 22:22:24 | 000,030,785 | ---- | M] () -- C:\Windows\scunin.dat [2011.12.23 22:22:12 | 000,070,656 | ---- | M] (Blizzard Entertainment) -- C:\Windows\ScUnin.exe [2011.12.23 22:22:12 | 000,000,967 | ---- | M] () -- C:\Windows\ScUnin.pif [2011.12.23 21:24:52 | 000,000,693 | ---- | M] () -- C:\Users\Marius\Desktop\ArtMoney SE v7.38.lnk [2011.12.23 11:28:00 | 000,000,917 | ---- | M] () -- C:\Users\Marius\Desktop\bukkit.yml [2011.12.19 16:15:10 | 000,000,401 | ---- | M] () -- C:\Users\Marius\Desktop\server.properties [2011.12.19 15:58:59 | 000,000,000 | ---- | M] () -- C:\Users\Marius\Desktop\permissions.yml [2011.12.19 15:58:58 | 000,001,384 | ---- | M] () -- C:\Users\Marius\Desktop\wepif.yml [2011.12.15 17:31:28 | 000,234,768 | ---- | M] () -- C:\Windows\SysWow64\PnkBstrB.xtr [2011.12.15 13:16:50 | 000,292,872 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT [2011.12.11 10:33:04 | 000,002,224 | ---- | M] () -- C:\Users\Marius\Documents\mcedit.ini [2011.12.11 10:25:28 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf [2011.12.08 18:20:18 | 000,231,171 | ---- | M] () -- C:\Users\Marius\Documents\samsung+galaxy+s+i9001+plus+metallic+black+8+gb.pdf [2011.12.07 15:31:41 | 000,000,336 | ---- | M] () -- C:\Windows\game.ini [2011.12.07 14:38:45 | 000,010,955 | ---- | M] () -- C:\Users\Marius\Documents\Listecash.odt [2011.12.06 20:15:13 | 000,116,096 | ---- | M] (AVM Berlin) -- C:\Windows\SysNative\drivers\avmaudio.sys [2011.12.06 20:15:13 | 000,032,256 | ---- | M] (AVM Berlin) -- C:\Windows\SysNative\MiniInstaller.dll [2011.12.06 20:01:53 | 000,941,062 | ---- | M] () -- C:\Users\Marius\Desktop\Kondensator Technik.bmp [2011.12.04 12:55:00 | 000,038,537 | ---- | M] () -- C:\Users\Marius\Documents\phillip Birthday.pdf [2011.12.04 11:59:43 | 000,000,385 | ---- | M] () -- C:\Windows\SysNative\user_gensett.xml [2011.12.03 06:15:32 | 000,295,922 | ---- | M] () -- C:\Windows\SysNative\perfi007.dat [2011.12.03 06:15:32 | 000,038,104 | ---- | M] () -- C:\Windows\SysNative\perfd007.dat [2011.12.02 22:57:59 | 000,543,528 | ---- | M] (BitDefender) -- C:\Windows\SysNative\drivers\avckf.sys [2011.12.02 22:57:53 | 000,329,800 | ---- | M] (BitDefender S.R.L.) -- C:\Windows\SysNative\drivers\trufos.sys [2011.12.02 22:56:11 | 000,079,952 | ---- | M] (BitDefender SRL) -- C:\Windows\SysNative\drivers\bdsandbox.sys [2011.12.02 22:53:01 | 000,258,736 | ---- | M] (BitDefender) -- C:\Windows\SysNative\drivers\avchv.sys [2011.12.02 22:51:06 | 000,685,192 | ---- | M] (BitDefender) -- C:\Windows\SysNative\drivers\avc3.sys [2011.12.02 22:49:51 | 000,090,192 | ---- | M] (BitDefender LLC) -- C:\Windows\SysNative\drivers\bdfndisf6.sys [2011.12.02 22:16:21 | 000,249,948 | ---- | M] () -- C:\ProgramData\1322860341.bdinstall.bin [2011.12.02 22:15:48 | 000,000,262 | -H-- | M] () -- C:\bdr-conf [2011.12.02 22:15:36 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_avchv_01009.Wdf [2011.12.02 22:14:10 | 000,279,616 | ---- | M] (DT Soft Ltd) -- C:\Windows\SysNative\drivers\dtsoftbus01.sys [2011.12.02 21:53:13 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf [2011.12.02 21:29:52 | 000,035,701 | ---- | M] () -- C:\Windows\Ascd_log.ini [2011.12.02 21:24:32 | 000,025,345 | ---- | M] () -- C:\Windows\Ascd_tmp.ini [2011.12.02 21:24:22 | 000,001,769 | ---- | M] () -- C:\Windows\Language_trs.ini [2011.12.02 21:20:38 | 000,055,513 | ---- | M] () -- C:\Windows\SysWow64\license.rtf [2011.12.02 21:20:38 | 000,055,513 | ---- | M] () -- C:\Windows\SysNative\license.rtf [2011.11.25 13:45:13 | 000,000,000 | ---- | M] () -- C:\Users\Marius\Documents\Cover356.jpg [2011.11.25 13:44:21 | 000,000,000 | ---- | M] () -- C:\Users\Marius\Documents\Cover476.jpg [1 C:\Windows\SysNative\*.tmp files -> C:\Windows\SysNative\*.tmp -> ] ========== Files Created - No Company Name ========== [2011.12.24 10:41:26 | 000,001,109 | ---- | C] () -- C:\Users\Public\Desktop\Malwarebytes' Anti-Malware.lnk [2011.12.24 09:45:37 | 000,010,366 | ---- | C] () -- C:\Users\Marius\Documents\ccleaner1.reg [2011.12.23 23:44:11 | 000,000,863 | ---- | C] () -- C:\Users\Public\Desktop\MyDefrag.lnk [2011.12.23 22:21:18 | 000,030,785 | ---- | C] () -- C:\Windows\scunin.dat [2011.12.23 22:21:11 | 000,000,967 | ---- | C] () -- C:\Windows\ScUnin.pif [2011.12.23 21:24:52 | 000,000,693 | ---- | C] () -- C:\Users\Marius\Desktop\ArtMoney SE v7.38.lnk [2011.12.19 15:58:59 | 000,000,000 | ---- | C] () -- C:\Users\Marius\Desktop\permissions.yml [2011.12.19 15:58:58 | 000,001,384 | ---- | C] () -- C:\Users\Marius\Desktop\wepif.yml [2011.12.19 15:57:59 | 000,000,917 | ---- | C] () -- C:\Users\Marius\Desktop\bukkit.yml [2011.12.19 15:57:59 | 000,000,401 | ---- | C] () -- C:\Users\Marius\Desktop\server.properties [2011.12.19 15:47:55 | 000,000,122 | ---- | C] () -- C:\Users\Marius\Desktop\Minecraft Server.bat [2011.12.15 17:02:55 | 000,234,768 | ---- | C] () -- C:\Windows\SysWow64\PnkBstrB.xtr [2011.12.11 10:25:28 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_WpdMtpDr_01_09_00.Wdf [2011.12.08 18:22:53 | 000,002,441 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk [2011.12.08 18:20:21 | 000,231,171 | ---- | C] () -- C:\Users\Marius\Documents\samsung+galaxy+s+i9001+plus+metallic+black+8+gb.pdf [2011.12.07 15:31:41 | 000,000,336 | ---- | C] () -- C:\Windows\game.ini [2011.12.06 20:01:53 | 000,941,062 | ---- | C] () -- C:\Users\Marius\Desktop\Kondensator Technik.bmp [2011.12.05 19:45:34 | 000,005,174 | ---- | C] () -- C:\Windows\SysWow64\nppt9x.vxd [2011.12.04 12:54:57 | 000,038,537 | ---- | C] () -- C:\Users\Marius\Documents\phillip Birthday.pdf [2011.12.04 11:59:43 | 000,000,385 | ---- | C] () -- C:\Windows\SysNative\user_gensett.xml [2011.12.03 06:16:43 | 000,000,029 | RH-- | C] () -- C:\Windows\version [2011.12.03 06:15:51 | 000,653,928 | ---- | C] () -- C:\Windows\SysNative\perfh007.dat [2011.12.03 06:15:51 | 000,295,922 | ---- | C] () -- C:\Windows\SysNative\perfi007.dat [2011.12.03 06:15:51 | 000,129,800 | ---- | C] () -- C:\Windows\SysNative\perfc007.dat [2011.12.03 06:15:51 | 000,038,104 | ---- | C] () -- C:\Windows\SysNative\perfd007.dat [2011.12.02 22:16:21 | 000,249,948 | ---- | C] () -- C:\ProgramData\1322860341.bdinstall.bin [2011.12.02 22:15:48 | 026,550,299 | -H-- | C] () -- C:\bdrescue.gz [2011.12.02 22:15:48 | 002,510,608 | -H-- | C] () -- C:\bdrescue.vm [2011.12.02 22:15:48 | 000,217,769 | -H-- | C] () -- C:\bdrescue [2011.12.02 22:15:48 | 000,009,216 | -H-- | C] () -- C:\bdrescue.mbr [2011.12.02 22:15:48 | 000,000,262 | -H-- | C] () -- C:\bdr-conf [2011.12.02 22:15:36 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_avchv_01009.Wdf [2011.12.02 21:57:05 | 000,298,462 | ---- | C] () -- C:\Users\Marius\Documents\Technik.odt [2011.12.02 21:57:04 | 002,358,774 | ---- | C] () -- C:\Users\Marius\Documents\pc2.bmp [2011.12.02 21:57:04 | 001,827,026 | ---- | C] () -- C:\Users\Marius\Documents\Pc.bmp [2011.12.02 21:57:04 | 000,013,793 | ---- | C] () -- C:\Users\Marius\Documents\Pc.ods [2011.12.02 21:57:03 | 002,813,046 | ---- | C] () -- C:\Users\Marius\Documents\Pc Rechnung.bmp [2011.12.02 21:57:03 | 000,007,334 | ---- | C] () -- C:\Users\Marius\Documents\OpenDocument Text (neu).odt [2011.12.02 21:57:02 | 000,190,552 | ---- | C] () -- C:\Users\Marius\Documents\minecraft beleg.xps [2011.12.02 21:57:02 | 000,057,184 | ---- | C] () -- C:\Users\Marius\Documents\Lebenslauf.pdf [2011.12.02 21:57:02 | 000,013,459 | ---- | C] () -- C:\Users\Marius\Documents\LED-Aufbau_(Schema).svg [2011.12.02 21:57:02 | 000,012,941 | ---- | C] () -- C:\Users\Marius\Documents\Enlisch 4,10,2011.ods [2011.12.02 21:57:02 | 000,010,955 | ---- | C] () -- C:\Users\Marius\Documents\Listecash.odt [2011.12.02 21:57:02 | 000,009,963 | ---- | C] () -- C:\Users\Marius\Documents\Handy.ods [2011.12.02 21:57:02 | 000,008,408 | ---- | C] () -- C:\Users\Marius\Documents\OpenDocument Tabellendokument (neu).ods [2011.12.02 21:57:02 | 000,002,224 | ---- | C] () -- C:\Users\Marius\Documents\mcedit.ini [2011.12.02 21:57:01 | 000,010,853 | ---- | C] () -- C:\Users\Marius\Documents\Deutsch übungssatire.odt [2011.12.02 21:57:01 | 000,000,000 | ---- | C] () -- C:\Users\Marius\Documents\e-mail adressen.ldif [2011.12.02 21:57:00 | 000,013,723 | ---- | C] () -- C:\Users\Marius\Documents\Cover869.jpg [2011.12.02 21:57:00 | 000,010,440 | ---- | C] () -- C:\Users\Marius\Documents\Cover225.jpg [2011.12.02 21:57:00 | 000,010,312 | ---- | C] () -- C:\Users\Marius\Documents\Cover964.jpg [2011.12.02 21:57:00 | 000,007,563 | ---- | C] () -- C:\Users\Marius\Documents\Cover628.jpg [2011.12.02 21:57:00 | 000,000,430 | ---- | C] () -- C:\Users\Marius\Documents\CD-Keys.lnk [2011.12.02 21:57:00 | 000,000,000 | ---- | C] () -- C:\Users\Marius\Documents\Cover476.jpg [2011.12.02 21:57:00 | 000,000,000 | ---- | C] () -- C:\Users\Marius\Documents\Cover356.jpg [2011.12.02 21:53:13 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_User_WpdFs_01_09_00.Wdf [2011.12.02 21:44:57 | 000,007,384 | ---- | C] () -- C:\Windows\SysNative\nvinfo.pb [2011.12.02 21:29:29 | 000,008,192 | ---- | C] () -- C:\Windows\SysNative\drivers\IntelMEFWVer.dll [2011.12.02 21:27:52 | 000,001,440 | ---- | C] () -- C:\Users\Marius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Social Games.lnk [2011.12.02 21:24:42 | 000,035,701 | ---- | C] () -- C:\Windows\Ascd_log.ini [2011.12.02 21:24:22 | 000,001,769 | ---- | C] () -- C:\Windows\Language_trs.ini [2011.12.02 21:24:16 | 000,025,345 | ---- | C] () -- C:\Windows\Ascd_tmp.ini [2011.12.02 21:23:08 | 000,001,405 | ---- | C] () -- C:\Users\Marius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk [2011.12.02 21:23:05 | 000,001,439 | ---- | C] () -- C:\Users\Marius\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk [2011.12.02 21:20:30 | 000,001,345 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk [2011.12.02 21:20:22 | 000,001,326 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk [2011.12.02 21:17:33 | 2132,733,951 | -HS- | C] () -- C:\hiberfil.sys [2011.10.15 00:54:52 | 000,321,856 | ---- | C] () -- C:\Windows\SysWow64\nvStreaming.exe [2009.07.14 06:38:36 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat [2009.07.14 03:35:51 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT [2009.07.14 03:34:42 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat [2009.07.14 01:10:29 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin [2009.07.14 00:42:10 | 000,064,000 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll [2009.07.13 22:03:59 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll [2009.06.10 22:26:10 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat [2009.04.02 13:30:14 | 000,010,296 | ---- | C] () -- C:\Windows\SysWow64\drivers\ASUSHWIO.SYS ========== LOP Check ========== [2011.12.20 19:46:11 | 000,000,000 | ---D | M] -- C:\Users\Marius\AppData\Roaming\.minecraft [2011.12.20 15:38:30 | 000,000,000 | ---D | M] -- C:\Users\Marius\AppData\Roaming\Babylon [2011.12.02 22:17:30 | 000,000,000 | ---D | M] -- C:\Users\Marius\AppData\Roaming\Bitdefender [2011.12.24 09:32:49 | 000,000,000 | ---D | M] -- C:\Users\Marius\AppData\Roaming\DAEMON Tools Lite [2011.12.02 21:27:52 | 000,000,000 | ---D | M] -- C:\Users\Marius\AppData\Roaming\DeviceVm [2011.12.20 19:59:13 | 000,000,000 | ---D | M] -- C:\Users\Marius\AppData\Roaming\DVDVideoSoft [2011.12.10 23:16:48 | 000,000,000 | ---D | M] -- C:\Users\Marius\AppData\Roaming\DVDVideoSoftIEHelpers [2011.12.03 11:01:34 | 000,000,000 | ---D | M] -- C:\Users\Marius\AppData\Roaming\Notepad++ [2011.12.04 12:37:17 | 000,000,000 | ---D | M] -- C:\Users\Marius\AppData\Roaming\OpenOffice.org [2011.12.11 10:28:47 | 000,000,000 | ---D | M] -- C:\Users\Marius\AppData\Roaming\pymclevel [2011.12.02 22:12:40 | 000,000,000 | ---D | M] -- C:\Users\Marius\AppData\Roaming\QuickScan [2011.12.04 12:19:57 | 000,000,000 | ---D | M] -- C:\Users\Marius\AppData\Roaming\TuneUp Software [2011.12.10 14:21:46 | 000,000,000 | ---D | M] -- C:\Users\Marius\AppData\Roaming\Ubisoft [2009.07.14 06:08:49 | 000,014,742 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT ========== Purity Check ========== < End of report > [spoiler] OTL Logfile: Code:
ATTFilter OTL Extras logfile created on: 24.12.2011 12:38:34 - Run 1 OTL by OldTimer - Version 3.2.31.0 Folder = C:\Users\Marius\Desktop\OTL 64bit- Professional Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation Internet Explorer (Version = 8.0.7601.17514) Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy 7,98 Gb Total Physical Memory | 3,59 Gb Available Physical Memory | 45,00% Memory free 15,96 Gb Paging File | 12,99 Gb Available in Paging File | 81,39% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86) Drive C: | 931,41 Gb Total Space | 584,97 Gb Free Space | 62,80% Space Free | Partition Type: NTFS Drive D: | 6,10 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: UDF Computer Name: MARIUS-PC | User Name: Marius | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days ========== Extra Registry (SafeList) ========== ========== File Associations ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>] .cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation) [HKEY_CURRENT_USER\SOFTWARE\Classes\<extension>] .html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) ========== Shell Spawning ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation) InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation) exefile [open] -- "%1" %* helpfile [open] -- Reg Error: Key error. htmlfile [edit] -- Reg Error: Key error. htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1" inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" () Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation) Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" () Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [explore] -- Reg Error: Value error. Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) ========== Security Center Settings ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "cval" = 1 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] "VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data] "AntiVirusOverride" = 0 "AntiSpywareOverride" = 0 "FirewallOverride" = 0 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc] ========== Firewall Settings ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile] "EnableFirewall" = 1 "DisableNotifications" = 0 ========== Authorized Applications List ========== ========== HKEY_LOCAL_MACHINE Uninstall List ========== 64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{0E3DAF3D-FF69-345A-A99E-1FED304CA083}" = Microsoft .NET Framework 4 Client Profile DEU Language Pack "{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 "{23170F69-40C1-2702-0920-000001000000}" = 7-Zip 9.20 (x64 edition) "{26A24AE4-039D-4CA4-87B4-2F86417001FF}" = Java(TM) 7 Update 1 (64-bit) "{2AB9289D-6432-4CC0-8869-A195C3F0CFCC}" = Bitdefender Total Security 2012 "{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision" = NVIDIA 3D Vision Treiber 285.62 "{B2FE1952-0186-46c3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = NVIDIA Systemsteuerung 285.62 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Grafiktreiber 285.62 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB" = NVIDIA 3D Vision Controller-Treiber 285.62 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX" = NVIDIA PhysX-Systemsoftware 9.11.0621 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update" = NVIDIA Update 1.5.20 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver" = NVIDIA HD-Audiotreiber 1.2.24.0 "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application "{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components "{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile "Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX 64-bit "Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin 64-bit "Bitdefender" = Bitdefender Total Security 2012 "CCleaner" = CCleaner "EPSON SX210 Series" = EPSON SX210 Series Printer Uninstall "Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile "Microsoft .NET Framework 4 Client Profile DEU Language Pack" = Microsoft .NET Framework 4 Client Profile DEU Language Pack "MyDefrag v4.3.1_is1" = MyDefrag v4.3.1 "WinRAR archiver" = WinRAR 4.01 (64-Bit) [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{26A24AE4-039D-4CA4-87B4-2F83216022F0}" = Java(TM) 6 Update 22 "{26A24AE4-039D-4CA4-87B4-2F83216029FF}" = Java(TM) 6 Update 29 "{3AC8457C-0385-4BEA-A959-E095F05D6D67}" = Battlefield: Bad Company™ 2 "{4286716B-1287-48E7-9078-3DC8248DBA96}" = OpenOffice.org 3.3 "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components "{6592FDEC-2C1A-413A-9985-25FEC2F0848D}" = Star Wars Empire at War Forces of Corruption "{6E36A172-06FB-4BC8-B7FC-D30D219E6776}" = Tom Clancy's H.A.W.X "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{7F6D7FD9-648D-4DD9-BB6E-3990C675ECA4}" = NVIDIA PhysX "{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable "{8833FFB6-5B0C-4764-81AA-06DFEED9A476}" = Realtek Ethernet Controller Driver "{8CFA9151-6404-409A-AF22-4632D04582FD}" = Assassin's Creed "{99AE7207-8612-4DBA-A8F8-BAE5C633390D}" = Star Wars Empire at War "{AA59DDE4-B672-4621-A016-4C248204957A}" = Skype™ 5.6 "{AC76BA86-7AD7-1031-7B44-AA1000000001}" = Adobe Reader X (10.1.1) - Deutsch "{BA88EE67-8974-459D-A1DB-C8281D9AC6F6}" = Browser Configuration Utility "{CE026CFE-73FE-4FED-9D5F-2C8D4DB512B0}" = TuneUp Utilities Language Pack (de-DE) "{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}" = Asmedia ASM104x USB 3.0 Host Controller Driver "{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 "{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver "Akamai" = Akamai NetSession Interface Service "ArtMoney SE_is1" = ArtMoney SE v7.38 "DAEMON Tools Lite" = DAEMON Tools Lite "Fraps" = Fraps (remove only) "Free Studio_is1" = Free Studio version 5.3.2 "Just Cause 2_is1" = Just Cause 2 "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware Version 1.51.2.1300 "Mozilla Firefox 8.0.1 (x86 de)" = Mozilla Firefox 8.0.1 (x86 de) "MySSID_is1" = Vtune 7.18 "Notepad++" = Notepad++ "NVIDIAStereo" = NVIDIA Stereoscopic 3D Driver "Starcraft" = Starcraft "Steam App 440" = Team Fortress 2 "Steam App 620" = Portal 2 "TipCam" = TipCam 2.2 "VLC media player" = VLC media player 1.1.11 "WolfTeam-DE" = WolfTeam-DE ========== HKEY_CURRENT_USER Uninstall List ========== [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{87686C21-8A15-4b4d-A3F1-11141D9BE094}" = Battlefield Play4Free "Akamai" = Akamai NetSession Interface "f018cf21c0452c64" = AVM FRITZ!Box USB-Fernanschluss ========== Last 10 Event Log Errors ========== Error reading Event Logs: The Event Service is not operating properly or the Event Logs are corrupt! < End of report > [spoiler] Geändert von King1000000 (24.12.2011 um 13:06 Uhr) |
24.12.2011, 14:35 | #2 |
| gamerpc plötzlich extrem verlangsamt warum hilft mir niemand ????
__________________ |
Themen zu gamerpc plötzlich extrem verlangsamt |
64-bit, adobe, akamai, bho, black, browser, c:\windows\system32\rundll32.exe, computer, converter, defender, desktop, explorer, firefox, focus, galaxy, hijack, hijackthis, install.exe, internet, internet explorer, logfile auswerten, mozilla, mp3, nvidia, nvidia update, object, plug-in, scan, security, server, software, studio, system, temp, usb 3.0, virus, webcheck, windows |