![]() |
Log-Analyse und Auswertung: SoftwareUpdater.Bootstrapper wird von Kaspersky PURE 3.0 erkanntWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() |
![]() | #1 |
![]() | ![]() SoftwareUpdater.Bootstrapper wird von Kaspersky PURE 3.0 erkannt Hallo, seit heute nach dem Start meines PCs meldet Kaspersky das es SoftwareUpdater.Bootstrapper in C:\Program Files (x86)\SoftwareUpdater als Malware gefunden hat und versucht es immer wieder zu desinfizieren. Was aber nicht klappt. Was soll ich nun tun? |
![]() | #2 |
/// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() SoftwareUpdater.Bootstrapper wird von Kaspersky PURE 3.0 erkannt hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: ![]() (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
![]() | #3 |
![]() | ![]() SoftwareUpdater.Bootstrapper wird von Kaspersky PURE 3.0 erkannt Ich kann das Programm nicht runterladen. Folgende Meldung kommt: Durch Ihre Sicherheitszonen-Regeln blockiert.
__________________Außerdem kann ich mittlerweile keine Programme mehr starten. Kommt immer die Meldung das nicht Zugegriffen werden kann. Nach einem Neustart ging es wieder. FRST FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 04-07-2013 Ran by Benutzer (administrator) on 06-07-2013 19:55:31 Running from C:\Users\Benutzer\Desktop Windows 7 Ultimate Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\WTabletServiceCon.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (AddGadgets) C:\Program Files (x86)\PCMeter\PCMeterV0.3.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Tinkerforge GmbH) C:\Program Files (x86)\Tinkerforge\Brickd\brickd.exe (Infowatch) C:\Program Files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\RaMaint.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\LogMeIn.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe (Dexpot GbR) C:\Program Files (x86)\Dexpot\dexpot.exe () C:\Program Files (x86)\RocketDock\RocketDock.exe (Hobbyist Software) C:\Program Files (x86)\Hobbyist Software\Off Remote Helper\Off-Helper Service.exe (Dropbox, Inc.) C:\Users\Benutzer\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dexpot GbR) C:\Program Files (x86)\Dexpot\Dexpot64.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe (Logitech, Inc.) C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.EXE (Hobbyist Software) C:\Program Files (x86)\Hobbyist Software\Off Remote Helper\Off-Helper Configuration.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe () C:\Program Files (x86)\Bamboo Dock\BambooCore.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (pdfforge GmbH) C:\Program Files (x86)\PDF Architect\HelperService.exe (Dexpot GbR) C:\Program Files (x86)\Dexpot\plugins\DexControl.exe (Dexpot GbR) C:\Program Files (x86)\Dexpot\plugins\Taskbar Pager.exe (pdfforge GmbH) C:\Program Files (x86)\PDF Architect\ConversionService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\ComUpdatus.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_TouchUser.exe (Microsoft Corporation) C:\Windows\system32\AUDIODG.EXE ==================== Registry (Whitelisted) ================== HKLM\...\Run: [Nvtmru] "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" [1012000 2013-05-16] (NVIDIA Corporation) HKLM\...\Run: [EvtMgr6] C:\Program Files\Logitech\SetPointP\SetPoint.exe /launchGaming [2991856 2013-02-21] (Logitech, Inc.) HKLM\...\Run: [LogMeIn GUI] "C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe" [57928 2012-11-29] (LogMeIn, Inc.) HKLM\...\Run: [BCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices [112512 2010-03-13] (Microsoft Corporation) Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.) HKCU\...\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun [3672640 2013-03-14] (Disc Soft Ltd) HKCU\...\Run: [Dexpot] C:\Program Files (x86)\Dexpot\dexpot.exe [1433600 2013-06-03] (Dexpot GbR) HKCU\...\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun [x] HKCU\...\Run: [RocketDock] "C:\Program Files (x86)\RocketDock\RocketDock.exe" [495616 2007-09-02] () HKLM-x32\...\Run: [AVP] "C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe" [356968 2012-12-20] (Kaspersky Lab ZAO) HKLM-x32\...\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [958576 2013-05-11] (Adobe Systems Incorporated) HKLM-x32\...\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [59720 2013-04-21] (Apple Inc.) HKLM-x32\...\Run: [Hobbyist Software On-Off Helper] "C:\Program Files (x86)\Hobbyist Software\Off Remote Helper\Off-Helper Configuration.exe" /startup [555848 2013-05-31] (Hobbyist Software) HKLM-x32\...\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe" [152392 2013-05-31] (Apple Inc.) HKLM-x32\...\Run: [BambooCore] C:\Program Files (x86)\Bamboo Dock\BambooCore.exe [646744 2012-10-16] () HKLM-x32\...\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start [2255184 2013-06-28] (LogMeIn Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [253816 2013-03-12] (Oracle Corporation) HKU\Default\...\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun [x] HKU\Default User\...\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun [x] HKU\LogMeInRemoteUser\...\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun [x] Startup: C:\Users\Benutzer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Benutzer\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/ HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL (Microsoft Corporation) BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll (Logitech, Inc.) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) BHO-x32: Kaspersky Passsword Manager Toolbar - {215BA832-75A3-426E-A4FC-7C5B58CE6A10} - C:\PROGRA~2\KASPER~1\KASPER~1.0\KASPER~2\spIEBho.dll (Kaspersky Lab) BHO-x32: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll (pdfforge GmbH) BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO-x32: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll (Logitech, Inc.) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) Toolbar: HKLM-x32 - Kaspersky Passsword Manager Toolbar - {215BA832-75A3-426E-A4FC-7C5B58CE6A10} - C:\PROGRA~2\KASPER~1\KASPER~1.0\KASPER~2\spIEBho.dll (Kaspersky Lab) Toolbar: HKLM-x32 - PDF Architect Toolbar - {25A3A431-30BB-47C8-AD6A-E1063801134F} - C:\Program Files (x86)\PDF Architect\PDFIEPlugin.dll (pdfforge GmbH) Handler-x32: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files (x86)\Common Files\Microsoft Shared\Information Retrieval\msitss.dll (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] FireFox: ======== FF ProfilePath: C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default FF Homepage: www.google.de FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_224.dll () FF Plugin: @java.com/DTPlugin,version=10.21.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.21.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin: @wacom.com/wtPlugin,version= - C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll (Wacom) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @videolan.org/vlc,version=2.0.7 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @wacom.com/wtPlugin,version= - C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll (Wacom) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: wacom.com/WacomTabletPlugin - C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll (Wacom) FF Extension: Flagfox - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b} FF Extension: WOT - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} FF Extension: adblockpopups - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\adblockpopups@jessehakanen.net.xpi FF Extension: canitbecheaper - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\canitbecheaper@trafficbroker.co.uk.xpi FF Extension: compatibility - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\compatibility@addons.mozilla.org.xpi FF Extension: elemhidehelper - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\elemhidehelper@adblockplus.org.xpi FF Extension: firefox - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\firefox@mega.co.nz.xpi FF Extension: YouTubeAutoReplay - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\YouTubeAutoReplay@arikv.com.xpi FF Extension: No Name - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\{987311C6-B504-4aa2-90BF-60CC49808D42}.xpi FF Extension: No Name - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF Extension: No Name - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\{d49a148e-817e-4025-bee3-5d541376de3b}.xpi FF Extension: No Name - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\{fe272bd1-5f76-4ea4-8501-a05d35d823fc}.xpi FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF HKLM-x32\...\Firefox\Extensions: C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\url_advisor@kaspersky.com FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\url_advisor@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\virtual_keyboard@kaspersky.com FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\virtual_keyboard@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\content_blocker@kaspersky.com FF Extension: Content Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\content_blocker@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [anti_banner@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\anti_banner@kaspersky.com FF Extension: Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\anti_banner@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [online_banking@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\online_banking@kaspersky.com FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\online_banking@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt FF Extension: PDF Architect Converter For Firefox - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt FF Extension: Logitech SetPoint - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt ==================== Services (Whitelisted) ================= R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe [356968 2012-12-20] (Kaspersky Lab ZAO) R2 Brick Daemon; C:\Program Files (x86)\Tinkerforge\Brickd\brickd.exe [66048 2013-04-19] (Tinkerforge GmbH) R2 CSObjectsSrv; C:\Program Files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe [819040 2012-12-21] (Infowatch) R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe [376144 2013-06-09] (LogMeIn, Inc.) R2 LMIMaint; C:\Program Files (x86)\LogMeIn\x64\RaMaint.exe [226640 2013-06-09] (LogMeIn, Inc.) R2 LogMeIn; C:\Program Files (x86)\LogMeIn\x64\LogMeIn.exe [407424 2012-11-29] (LogMeIn, Inc.) R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) S2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) R2 Off-Helper; C:\Program Files (x86)\Hobbyist Software\Off Remote Helper\Off-Helper Service.exe [6656 2013-05-31] (Hobbyist Software) R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH) R2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH) S2 SystemStoreService; C:\Program Files (x86)\SoftwareUpdater\SystemStore.exe [296448 2013-06-23] () R2 WTabletServiceCon; C:\Program Files\Tablet\Pen\WTabletServiceCon.exe [619904 2012-12-11] (Wacom Technology, Corp.) S3 aspnet_state; %SystemRoot%\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [x] ==================== Drivers (Whitelisted) ==================== R3 AVMCOWAN; C:\Windows\System32\DRIVERS\AVMCOWAN.sys [79872 2009-06-10] (AVM GmbH) R0 CSCrySec; C:\Windows\System32\DRIVERS\CSCrySec.sys [84536 2011-06-02] (Infowatch) R1 CSVirtualDiskDrv; C:\Windows\System32\DRIVERS\CSVirtualDiskDrv.sys [66616 2011-06-02] (Infowatch) R3 FPCIBASE; C:\Windows\System32\DRIVERS\fpcibase.sys [899328 2009-06-10] (AVM Berlin) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458584 2012-06-19] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [613720 2012-11-02] (Kaspersky Lab) R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [28504 2012-08-02] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [29016 2012-09-03] (Kaspersky Lab) R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29528 2012-09-03] (Kaspersky Lab) R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [54104 2012-10-18] (Kaspersky Lab) R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [178008 2012-08-13] (Kaspersky Lab) R2 LMIInfo; C:\Program Files (x86)\LogMeIn\x64\RaInfo.sys [16056 2013-05-24] (LogMeIn, Inc.) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [8192 2005-03-29] () R0 sptd; C:\Windows\System32\Drivers\sptd.sys [564824 2013-05-20] (Duplex Secure Ltd.) R3 VMfilt; C:\Windows\System32\drivers\VMfilt64.sys [25600 2009-07-31] (Creative Technology Ltd.) S3 XFDriver64; C:\Program Files (x86)\Xfire2\XFDriver64.sys [17160 2013-03-14] (XFire) S3 XFDriver64; C:\Program Files (x86)\Xfire2\XFDriver64.sys [17160 2013-03-14] (XFire) U3 apgoktmd; C:\Windows\System32\Drivers\apgoktmd.sys [0 ] (Advanced Micro Devices) S4 LMIRfsClientNP; No ImagePath S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [x] S3 tsusbhub; system32\drivers\tsusbhub.sys [x] S3 VGPU; System32\drivers\rdvgkmd.sys [x] S3 WinRing0_1_2_0; \??\C:\Users\Benutzer\AppData\Local\Temp\tmpA256.tmp [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-07-06 19:55 - 2013-07-06 19:55 - 00000000 ____D C:\FRST 2013-07-06 19:51 - 2013-07-06 19:51 - 01934636 ____A (Farbar) C:\Users\Benutzer\Desktop\FRST64.exe 2013-07-06 14:02 - 2013-07-06 14:02 - 00262144 ____A C:\Windows\System32\config\elam 2013-07-04 22:07 - 2013-07-04 22:09 - 00000000 ____D C:\Program Files\Microsoft Platform SDK 2013-07-04 22:07 - 2013-07-04 22:07 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio .NET 2003 2013-07-04 22:05 - 2013-07-04 22:05 - 01349856 ____A (Microsoft Corporation) C:\Users\Benutzer\Downloads\PSDK-amd64.exe 2013-07-04 22:03 - 2013-07-04 22:56 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Dev-Cpp 2013-07-04 22:03 - 2013-07-04 22:03 - 00000000 ____D C:\Dev-Cpp 2013-07-04 22:02 - 2013-07-04 22:02 - 09326468 ____A C:\Users\Benutzer\Downloads\devcpp- 2013-07-04 21:54 - 2013-07-04 21:54 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_WinUsb_01009.Wdf 2013-07-04 17:03 - 2013-07-06 19:46 - 00001723 ____A C:\Windows\setupact.log 2013-07-04 17:03 - 2013-07-04 17:03 - 00000000 ____A C:\Windows\setuperr.log 2013-07-04 00:01 - 2013-07-04 00:01 - 00000000 ____D C:\Users\Benutzer\Documents\The Lord of the Rings Online 2013-07-03 23:57 - 2013-07-04 01:15 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Turbine 2013-07-03 23:57 - 2013-07-03 23:57 - 00000094 ____A C:\Users\Benutzer\AppData\Local\fusioncache.dat 2013-07-03 22:07 - 2013-07-03 22:07 - 00001199 ____A C:\Users\UpdatusUser\Desktop\Flip 3.4.7.lnk 2013-07-03 22:07 - 2013-07-03 22:07 - 00001199 ____A C:\Users\LogMeInRemoteUser\Desktop\Flip 3.4.7.lnk 2013-07-03 22:06 - 2013-07-03 22:06 - 05907981 ____A (Atmel) C:\Users\Benutzer\Downloads\Flip Installer - 2013-07-03 21:54 - 2013-07-03 22:00 - 00000000 ____D C:\Windows XP 2013-07-03 21:26 - 2013-07-03 22:47 - 00000000 ____D C:\Users\Benutzer\.VirtualBox 2013-07-03 21:26 - 2013-07-03 21:26 - 00000000 ____D C:\Users\Benutzer\VirtualBox VMs 2013-07-03 21:24 - 2013-07-03 21:24 - 00000000 ____D C:\Program Files\Oracle 2013-07-03 21:24 - 2013-07-03 21:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-07-03 21:24 - 2013-06-21 16:01 - 00238352 ____A (Oracle Corporation) C:\Windows\System32\Drivers\VBoxDrv.sys 2013-07-03 21:24 - 2013-06-21 16:00 - 00120080 ____A (Oracle Corporation) C:\Windows\System32\Drivers\VBoxUSBMon.sys 2013-07-03 21:17 - 2013-07-03 21:22 - 99246864 ____A (Oracle Corporation) C:\Users\Benutzer\Downloads\VirtualBox-4.2.14-86644-Win.exe 2013-07-03 21:17 - 2013-07-03 21:18 - 11639710 ____A C:\Users\Benutzer\Downloads\Oracle_VM_VirtualBox_Extension_Pack-4.2.14-86644.vbox-extpack 2013-07-02 23:46 - 2013-07-02 23:46 - 00889416 ____A (Microsoft Corporation) C:\Users\Benutzer\Downloads\dotNetFx40_Full_setup.exe 2013-07-02 23:43 - 2006-05-09 13:32 - 00000000 ____D C:\Users\Benutzer\Downloads\flip-2_4_6 2013-07-02 23:34 - 2013-07-02 23:34 - 00263592 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2013-07-02 23:34 - 2013-07-02 23:34 - 00175016 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2013-07-02 23:34 - 2013-07-02 23:34 - 00175016 ____A (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2013-07-02 23:34 - 2013-07-02 23:34 - 00096168 ____A (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2013-07-02 23:34 - 2013-07-02 23:34 - 00000000 ____D C:\Program Files (x86)\Java 2013-07-02 23:04 - 2013-07-02 23:04 - 00032768 ____A C:\Windows\IsUninst.exe 2013-07-02 22:56 - 2013-07-02 22:56 - 04551939 ____A C:\Users\Benutzer\Downloads\flip-2_4_6.zip 2013-07-02 22:35 - 2013-07-02 22:35 - 00127860 ____A C:\Users\Benutzer\Downloads\memtest86+-4.20.usb.installer.zip 2013-07-02 15:39 - 2013-07-02 15:39 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2013-07-02 00:45 - 2013-07-02 00:45 - 00000000 ____D C:\Program Files (x86)\NirSoft 2013-07-02 00:44 - 2013-07-02 00:44 - 00141192 ____A C:\Users\Benutzer\Downloads\bluescreenview_setup_1.51.exe 2013-07-02 00:22 - 2013-07-03 21:04 - 00000000 ____D C:\Windows\Minidump 2013-07-01 23:39 - 2013-07-01 23:39 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies 2013-07-01 23:36 - 2013-06-21 14:06 - 27781920 ____A (NVIDIA Corporation) C:\Windows\System32\nvoglv64.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 25256224 ____A (NVIDIA Corporation) C:\Windows\System32\nvcompiler.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 21102368 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 17560352 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 13411896 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 11235104 ____A (NVIDIA Corporation) C:\Windows\System32\Drivers\nvlddmkm.sys 2013-07-01 23:36 - 2013-06-21 14:06 - 09239344 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuda.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 07687592 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 07641832 ____A (NVIDIA Corporation) C:\Windows\System32\nvopencl.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 06324360 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 02953504 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuvid.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 02777888 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 02363680 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuvenc.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 02002720 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 01832224 ____A (NVIDIA Corporation) C:\Windows\System32\nvdispco6432049.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 01511712 ____A (NVIDIA Corporation) C:\Windows\System32\nvdispgenco6432049.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00925648 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00572704 ____A (NVIDIA Corporation) C:\Windows\System32\NvFBC64.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00570656 ____A (NVIDIA Corporation) C:\Windows\System32\NvIFR64.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00467232 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00465184 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00266448 ____A (NVIDIA Corporation) C:\Windows\System32\nvinitx.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00218592 ____A (NVIDIA Corporation) C:\Windows\System32\nvoglshim64.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00214448 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00181488 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2013-06-30 22:51 - 2013-06-30 22:51 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_xusb21_01009.Wdf 2013-06-30 22:51 - 2013-06-30 22:51 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_MijXfilt_01009.Wdf 2013-06-30 18:25 - 2013-06-30 18:25 - 00000000 ____D C:\Users\Benutzer\Documents\Wizards of the Coast 2013-06-29 01:01 - 2013-06-29 01:01 - 00000000 ____D C:\Games 2013-06-29 00:18 - 2013-06-29 00:18 - 04396440 ____A (Piriform Ltd) C:\Users\Benutzer\Downloads\ccsetup403.exe 2013-06-27 00:44 - 2013-07-06 19:51 - 00000266 ____A C:\Windows\Tasks\AutoKMS.job 2013-06-27 00:44 - 2013-06-27 17:33 - 00000000 ____D C:\Windows\AutoKMS 2013-06-26 23:29 - 2013-06-30 17:28 - 00000000 ____D C:\Users\Benutzer\Documents\RIFT 2013-06-25 20:41 - 2013-06-25 20:43 - 00012121 ____A C:\Users\Benutzer\AppData\Roaming\PStrip.ini 2013-06-25 07:04 - 2013-06-25 07:04 - 00745495 ____A C:\Users\Benutzer\Downloads\MCP2200 Windows Driver 2013-02-21.zip 2013-06-24 20:02 - 2013-06-24 20:02 - 00000063 ____A C:\Windows\wininit.ini 2013-06-24 20:02 - 2006-09-30 11:36 - 00013008 ____A C:\Windows\System32\Drivers\pstrip64.sys 2013-06-24 20:01 - 2013-06-24 20:01 - 01411304 ____A (EnTech Taiwan) C:\Users\Benutzer\Downloads\pstrip.exe 2013-06-24 19:41 - 2013-06-24 19:41 - 01420256 ____A (techPowerUp (www.techpowerup.com)) C:\Users\Benutzer\Downloads\GPU-Z_ASUS_ROG_0.7.2.exe 2013-06-24 19:24 - 2013-06-24 19:24 - 01198007 ____A (CPUID, Inc. ) C:\Users\Benutzer\Downloads\MemtweakIt-1017-setup.exe 2013-06-24 19:10 - 2013-06-24 19:19 - 391842315 ___RA C:\Users\Benutzer\Downloads\RealBench_v1.051.rar 2013-06-24 00:36 - 2013-06-24 00:36 - 00000000 ____D C:\Users\Benutzer\Downloads\Moonlight Lady 2013-06-24 00:33 - 2013-06-24 00:33 - 00019727 ____A C:\Users\Benutzer\Downloads\hshare.net.Moonlight.Lady.EP01-05.ENG.SUB.FILES.rar 2013-06-23 22:17 - 2013-06-23 22:23 - 00001981 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_prc_drk.log 2013-06-23 22:12 - 2013-06-23 22:15 - 00001982 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_prc_eye.log 2013-06-23 22:11 - 2013-06-23 22:11 - 00001862 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_003.log 2013-06-23 22:11 - 2013-06-23 22:11 - 00001861 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_001.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001862 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_002.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001860 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_pro_col.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001860 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_war.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001860 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_rog.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001860 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_mag.log 2013-06-23 22:09 - 2013-06-23 22:10 - 00001861 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_prc_one.log 2013-06-23 22:09 - 2013-06-23 22:09 - 00001861 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_prc_seb.log 2013-06-23 21:29 - 2013-06-23 21:29 - 10319008 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_WarriorItemPack2.exe 2013-06-23 21:29 - 2013-06-23 21:29 - 07023824 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_MageItemPack2.exe 2013-06-23 21:28 - 2013-06-23 21:51 - 1272222488 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_MarkOfTheAssassin.exe 2013-06-23 21:28 - 2013-06-23 21:42 - 885015120 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_Legacy.exe 2013-06-23 21:28 - 2013-06-23 21:29 - 07645904 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_RogueItemPack2.exe 2013-06-23 21:28 - 2013-06-23 21:28 - 04826056 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_WarriorItemPack.exe 2013-06-23 21:27 - 2013-06-23 21:27 - 06229408 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_RogueItemPack.exe 2013-06-23 21:27 - 2013-06-23 21:27 - 05697792 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_MageItemPack.exe 2013-06-23 21:27 - 2013-06-23 21:27 - 01638048 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_SignatureEdition.exe 2013-06-23 21:26 - 2013-06-23 21:26 - 33120856 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_ExiledPrince.exe 2013-06-23 21:26 - 2013-06-23 21:26 - 14142624 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_BlackEmporium.exe 2013-06-23 18:41 - 2013-06-23 18:41 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Freemium 2013-06-23 18:39 - 2013-07-06 19:44 - 00000000 ____D C:\Program Files (x86)\SoftwareUpdater 2013-06-23 18:38 - 2013-06-23 18:39 - 00000000 ____D C:\Users\Benutzer\AppData\Local\DownloadGuide 2013-06-23 18:38 - 2013-06-23 18:38 - 00444400 ____A C:\Users\Benutzer\Downloads\DLG_free-clever-privacy_chip_de-DE.exe 2013-06-23 18:25 - 2013-06-23 21:25 - 00004064 ____A C:\shared.log 2013-06-23 18:25 - 2013-06-23 18:25 - 00003887 ____A C:\Users\Benutzer\Documents\Dragon Age 2 1.04.log 2013-06-23 18:24 - 2013-06-23 18:25 - 48330216 ____A (BioWare) C:\Users\Benutzer\Downloads\DragonAge2-1.04.exe 2013-06-23 18:19 - 2013-06-23 18:19 - 00000000 ____D C:\ProgramData\EA Core 2013-06-23 18:09 - 2013-06-23 18:09 - 00000000 ____D C:\Program Files (x86)\The Elder Scrolls Arena 2013-06-23 18:08 - 2013-06-23 18:08 - 00000000 ____D C:\Users\Benutzer\AppData\Local\DOSBox 2013-06-23 18:06 - 2013-06-23 18:06 - 00000000 ____D C:\Program Files (x86)\DOSBox-0.74 2013-06-23 17:57 - 2013-06-23 17:58 - 01448809 ____A (DOSBox Team) C:\Users\Benutzer\Downloads\DOSBox0.74-win32-installer.exe 2013-06-23 17:55 - 2013-06-23 18:22 - 155920571 ____A C:\Users\Benutzer\Downloads\DFInstall.zip 2013-06-23 17:54 - 2013-06-23 17:55 - 09190807 ____A C:\Users\Benutzer\Downloads\Arena106.exe 2013-06-23 17:53 - 2008-10-15 06:22 - 05631312 ____A (Microsoft Corporation) C:\Windows\System32\D3DX9_40.dll 2013-06-23 17:53 - 2008-10-15 06:22 - 04379984 ____A (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2013-06-23 17:53 - 2008-10-15 06:22 - 02605920 ____A (Microsoft Corporation) C:\Windows\System32\D3DCompiler_40.dll 2013-06-23 17:53 - 2008-10-15 06:22 - 02036576 ____A (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2013-06-23 17:53 - 2008-10-15 06:22 - 00519000 ____A (Microsoft Corporation) C:\Windows\System32\d3dx10_40.dll 2013-06-23 17:53 - 2008-10-15 06:22 - 00452440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2013-06-23 16:43 - 2013-06-23 16:45 - 00003763 ____A C:\Users\Benutzer\Documents\Dragon Age Origins 1.05.log 2013-06-23 16:42 - 2013-06-23 16:43 - 101553128 ____A (BioWare) C:\Users\Benutzer\Downloads\DragonAge1.05.exe 2013-06-23 15:54 - 2013-06-23 15:54 - 00001289 ____A C:\Users\Benutzer\Documents\DAO Addins Updater.log 2013-06-23 15:47 - 2013-06-23 15:51 - 00003259 ____A C:\Users\Benutzer\Documents\Dragon Age Origins 1.04.log 2013-06-23 15:14 - 2013-06-23 15:14 - 00000000 ____D C:\ProgramData\BioWare 2013-06-23 15:13 - 2013-06-23 18:17 - 00000000 ____D C:\Users\Benutzer\Documents\BioWare 2013-06-23 15:13 - 2013-06-23 15:13 - 00000000 ____D C:\Users\Benutzer\AppData\Local\EA Core 2013-06-23 15:12 - 2013-06-23 16:43 - 00000000 ____D C:\Program Files (x86)\Electronic Arts 2013-06-23 15:11 - 2013-06-23 15:11 - 00000000 ____D C:\Windows\1C4551A64743409391E41477CD655043.TMP 2013-06-23 14:59 - 2013-06-23 16:44 - 00000000 ____D C:\Program Files (x86)\Dragon Age 2013-06-23 14:59 - 2013-06-23 15:12 - 00023349 ____A C:\Users\Benutzer\Documents\Install Dragon Age Origins.log 2013-06-23 11:32 - 2013-07-01 00:23 - 00000000 ____D C:\Program Files (x86)\Warhammer Online - Age of Reckoning 2013-06-23 11:30 - 2013-06-23 11:31 - 42929231 ____A C:\Users\Benutzer\Downloads\WarhammerOnlineInstaller.exe 2013-06-23 06:35 - 2013-06-23 06:35 - 05126104 ____A (Piriform Ltd) C:\Users\Benutzer\Downloads\spsetup122.exe 2013-06-23 04:15 - 2013-07-03 23:54 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\.minecraft 2013-06-23 04:13 - 2013-06-23 08:46 - 00000000 ____D C:\Program Files (x86)\GUILD WARS 2013-06-23 04:13 - 2013-06-23 04:13 - 00000000 ____D C:\Users\Benutzer\Documents\GUILD WARS 2013-06-23 04:12 - 2013-06-23 04:12 - 00105234 ____A C:\Users\Benutzer\Downloads\gwsetup(1).zip 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\wacomid-desktop-launcher.DCFD4B89A63EE70BC162777F06D4B93B6397AEC7.1 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Wacom 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\ProgramData\Wacom 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Program Files (x86)\Bamboo Dock 2013-06-22 01:54 - 2013-06-22 01:55 - 00000002 ____A C:\Users\Benutzer\.bdockinstall.log 2013-06-22 01:54 - 2013-06-22 01:54 - 30011936 ____A C:\Users\Benutzer\Downloads\dock_setup.exe 2013-06-22 01:49 - 2013-06-22 01:49 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_wachidrouter_01009.Wdf 2013-06-22 01:41 - 2013-06-22 01:41 - 00000000 ____D C:\Users\Benutzer\Documents\ArtRage Paintings 2013-06-22 01:41 - 2013-06-22 01:41 - 00000000 ____D C:\ProgramData\Caphyon 2013-06-22 01:41 - 2013-06-22 01:41 - 00000000 ____D C:\Program Files (x86)\Ambient Design 2013-06-22 01:39 - 2013-06-22 01:41 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Ambient Design 2013-06-22 01:36 - 2013-06-22 01:37 - 82461824 ____A (Ambient Design) C:\Users\Benutzer\Downloads\install_artrage_4.exe 2013-06-22 01:16 - 2013-06-22 01:16 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\WTablet 2013-06-22 01:15 - 2013-06-22 01:15 - 00000000 ____D C:\Program Files\TabletPlugins 2013-06-22 01:15 - 2013-06-22 01:15 - 00000000 ____D C:\Program Files\Tablet 2013-06-22 01:15 - 2013-06-22 01:15 - 00000000 ____D C:\Program Files (x86)\TabletPlugins 2013-06-22 01:15 - 2012-12-11 13:07 - 01981312 ____A (Wacom Technology, Corp.) C:\Windows\System32\Pen_Tablet.dll 2013-06-22 01:15 - 2012-12-11 13:07 - 01974144 ____A (Wacom Technology, Corp.) C:\Windows\System32\Pen_Touch_Tablet.dll 2013-06-22 01:15 - 2012-12-11 13:07 - 01843584 ____A (Wacom Technology, Corp.) C:\Windows\System32\Wintab32.dll 2013-06-22 01:15 - 2012-12-11 13:07 - 01840000 ____A (Wacom Technology, Corp.) C:\Windows\System32\WacomMT.dll 2013-06-22 01:15 - 2012-12-11 13:07 - 01628544 ____A (Wacom Technology, Corp.) C:\Windows\SysWOW64\Pen_Tablet.dll 2013-06-22 01:15 - 2012-12-11 13:07 - 01621888 ____A (Wacom Technology, Corp.) C:\Windows\SysWOW64\Pen_Touch_Tablet.dll 2013-06-22 01:15 - 2012-12-11 13:07 - 01509760 ____A (Wacom Technology, Corp.) C:\Windows\SysWOW64\Wintab32.dll 2013-06-22 01:15 - 2012-12-11 13:07 - 01505664 ____A (Wacom Technology, Corp.) C:\Windows\SysWOW64\WacomMT.dll 2013-06-22 01:15 - 2012-12-03 16:36 - 00081824 ____A (Wacom Technology) C:\Windows\System32\Drivers\wachidrouter.sys 2013-06-22 01:15 - 2012-12-03 16:36 - 00013728 ____A (Windows (R) Win 7 DDK provider) C:\Windows\System32\Drivers\hidkmdf.sys 2013-06-22 01:15 - 2012-11-15 09:41 - 00015776 ____A (Wacom Technology) C:\Windows\System32\Drivers\wacomrouterfilter.sys 2013-06-22 01:14 - 2013-06-22 01:15 - 38455200 ____A C:\Users\Benutzer\Downloads\cons532-1_int.exe 2013-06-21 16:00 - 2013-06-21 16:00 - 00204048 ____A (Oracle Corporation) C:\Windows\System32\VBoxNetFltNobj.dll 2013-06-21 16:00 - 2013-06-21 16:00 - 00146704 ____A (Oracle Corporation) C:\Windows\System32\Drivers\VBoxNetFlt.sys 2013-06-21 16:00 - 2013-06-21 16:00 - 00131856 ____A (Oracle Corporation) C:\Windows\System32\Drivers\VBoxNetAdp.sys 2013-06-21 05:16 - 2013-06-21 05:16 - 00566048 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2013-06-19 22:40 - 2013-07-06 19:50 - 00000000 ___RD C:\Users\Benutzer\Dropbox 2013-06-19 22:37 - 2013-07-06 19:50 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Dropbox 2013-06-19 22:36 - 2013-06-19 22:36 - 34935760 ____A (Dropbox, Inc.) C:\Users\Benutzer\Downloads\Dropbox 2.2.3.exe 2013-06-18 17:54 - 2013-06-18 17:55 - 00000000 ____D C:\Program Files (x86)\Tinkerforge 2013-06-18 17:53 - 2013-06-18 17:54 - 18917020 ____A C:\Users\Benutzer\Downloads\brickv_windows_2_0_5.exe 2013-06-18 17:53 - 2013-06-18 17:53 - 04970233 ____A C:\Users\Benutzer\Downloads\brickd_windows_2_0_5.exe 2013-06-18 17:06 - 2013-06-18 17:06 - 04378864 ____A (Piriform Ltd) C:\Users\Benutzer\Downloads\ccsetup402.exe 2013-06-18 01:45 - 2013-06-18 01:45 - 02002832 ____A C:\Users\Benutzer\Downloads\Red-Collection---AnnaRoma-UPGRADE-5.zip 2013-06-18 01:44 - 2013-06-18 01:44 - 00040791 ____A C:\Users\Benutzer\Downloads\ROG-v1.zip 2013-06-18 01:40 - 2013-06-18 01:40 - 00000000 ____D C:\Program Files (x86)\RocketDock 2013-06-18 01:39 - 2013-06-18 01:40 - 06463660 ____A (Punk Software ) C:\Users\Benutzer\Downloads\RocketDock-v1.3.5.exe 2013-06-17 23:35 - 2013-07-02 22:44 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Skyrim 2013-06-17 23:35 - 2013-06-17 23:35 - 00000000 ____D C:\Users\Benutzer\Documents\Witcher 2 2013-06-17 23:03 - 2013-06-17 23:03 - 00000000 ____D C:\Program Files (x86)\CPU-Z 2013-06-17 23:02 - 2013-06-23 04:17 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\NVIDIA 2013-06-17 23:02 - 2013-06-17 23:02 - 00000000 ____D C:\Program Files (x86)\GPU-Z 2013-06-17 23:01 - 2013-06-17 23:01 - 01405920 ____A (techPowerUp (www.techpowerup.com)) C:\Users\Benutzer\Downloads\GPU-Z_ASUS_ROG_0.7.1.exe 2013-06-17 23:01 - 2013-06-17 23:01 - 01373832 ____A (CPUID, Inc. ) C:\Users\Benutzer\Downloads\cpu-z_1.64-rog-setup-en.exe 2013-06-17 22:55 - 2013-06-17 22:56 - 00000000 ____D C:\Program Files (x86)\TurnedOnTimesView 2013-06-17 22:52 - 2013-06-17 22:52 - 00064922 ____A C:\Users\Benutzer\Downloads\turnedontimesview.zip 2013-06-17 02:59 - 2013-07-06 19:02 - 00000020 ____A C:\Users\Benutzer\AppData\Roaming\Network Meter_Usage.ini 2013-06-17 01:00 - 2013-07-06 19:00 - 00005690 ____A C:\Users\Benutzer\Network_Meter_Data.js 2013-06-17 00:38 - 2013-06-17 00:38 - 00001138 ____A C:\Users\Benutzer\AppData\Roaming\Network Meter_Settings.ini 2013-06-17 00:38 - 2013-06-17 00:38 - 00000842 ____A C:\Users\Benutzer\AppData\Roaming\Drives Meter_Settings.ini 2013-06-17 00:37 - 2013-06-17 00:37 - 00000297 ____A C:\Users\Benutzer\AppData\Roaming\GPU MeterV2_Settings.ini 2013-06-17 00:35 - 2013-06-17 23:33 - 00000095 ____A C:\Users\Benutzer\AppData\Roaming\Control System_Settings.ini 2013-06-17 00:35 - 2013-06-17 00:36 - 00000627 ____A C:\Users\Benutzer\AppData\Roaming\All CPU MeterV3_Settings.ini 2013-06-17 00:33 - 2013-06-20 01:36 - 00000000 ____D C:\Program Files (x86)\PCMeter 2013-06-16 03:08 - 2013-07-06 17:15 - 00000000 ____D C:\Users\Benutzer\Desktop 2 2013-06-16 03:08 - 2013-07-05 18:58 - 00000000 ____D C:\Users\Benutzer\Desktop 3 2013-06-16 03:08 - 2013-07-04 19:06 - 00000000 ____D C:\Users\Benutzer\Desktop 4 2013-06-16 03:04 - 2013-06-16 03:04 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Babylon 2013-06-16 03:04 - 2013-06-16 03:04 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Babylon 2013-06-16 03:04 - 2013-06-16 03:04 - 00000000 ____D C:\ProgramData\Babylon 2013-06-16 03:03 - 2013-06-16 03:04 - 00002410 ____A C:\Windows\SysWOW64\cplLogon.tsk 2013-06-16 03:03 - 2013-06-16 03:03 - 02218077 ____A (Daniel Rebelo ) C:\Users\Benutzer\Downloads\Logon Screen 2.56.exe 2013-06-16 03:03 - 2013-06-16 03:03 - 00000000 ____D C:\Program Files\Logon Screen 2013-06-16 02:46 - 2013-06-16 02:48 - 00000000 ___AD C:\Windows\SysWOW64\ROG_Video Intro dir 2013-06-16 02:46 - 2013-06-16 02:43 - 00680960 ____A (ASUSTeK Computer Inc.) C:\Windows\SysWOW64\ROGThemeSetup.exe 2013-06-16 02:46 - 2013-06-16 02:43 - 00201728 ____A (ScreenTime Media) C:\Windows\SysWOW64\ROG_Video Intro .scr 2013-06-16 02:46 - 2011-02-25 08:19 - 02871808 ____A (Microsoft Corporation) C:\Windows\explorer.exe.rogbak 2013-06-16 02:25 - 2013-06-16 02:26 - 30789811 ____A C:\Users\Benutzer\Downloads\ROG_THEME_V10014_Win7.zip 2013-06-16 02:10 - 2013-07-06 19:02 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Dexpot 2013-06-16 02:10 - 2013-06-16 02:10 - 00000000 ____D C:\Program Files (x86)\Dexpot 2013-06-16 02:06 - 2013-06-16 02:06 - 02796815 ____A (Dexpot GbR) C:\Users\Benutzer\Downloads\dexpot_169_r2285.exe 2013-06-16 01:53 - 2013-06-16 01:53 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Bump Technologies, Inc 2013-06-16 01:50 - 2013-06-16 01:50 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Bump Technologies, Inc 2013-06-16 01:49 - 2013-06-16 01:50 - 16628120 ____A (Bump Technologies, Inc. ) C:\Users\Benutzer\Downloads\BumpTop-2.1-6211.exe 2013-06-15 02:13 - 2013-06-08 16:08 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2013-06-15 02:13 - 2013-06-08 16:07 - 19233792 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2013-06-15 02:13 - 2013-06-08 16:06 - 15404544 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2013-06-15 02:13 - 2013-06-08 16:06 - 02648064 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2013-06-15 02:13 - 2013-06-08 16:06 - 00526336 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll 2013-06-15 02:13 - 2013-06-08 14:28 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2013-06-15 02:13 - 2013-06-08 13:42 - 01141248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-06-15 02:13 - 2013-06-08 13:40 - 14327808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-06-15 02:13 - 2013-06-08 13:40 - 13760512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-06-15 02:13 - 2013-06-08 13:40 - 02046976 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-06-15 02:13 - 2013-06-08 13:40 - 00391168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-06-15 02:13 - 2013-06-08 13:13 - 02706432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-06-13 01:23 - 2013-05-17 03:25 - 02877440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-06-13 01:23 - 2013-05-17 03:25 - 01767936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-06-13 01:23 - 2013-05-17 03:25 - 00690688 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-06-13 01:23 - 2013-05-17 03:25 - 00493056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-06-13 01:23 - 2013-05-17 03:25 - 00109056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-06-13 01:23 - 2013-05-17 03:25 - 00061440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-06-13 01:23 - 2013-05-17 03:25 - 00039424 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-06-13 01:23 - 2013-05-17 03:25 - 00033280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-06-13 01:23 - 2013-05-17 02:59 - 02241024 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll 2013-06-13 01:23 - 2013-05-17 02:59 - 00051712 ____A (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe 2013-06-13 01:23 - 2013-05-17 02:58 - 03958784 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll 2013-06-13 01:23 - 2013-05-17 02:58 - 00855552 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll 2013-06-13 01:23 - 2013-05-17 02:58 - 00603136 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll 2013-06-13 01:23 - 2013-05-17 02:58 - 00136704 ____A (Microsoft Corporation) C:\Windows\System32\iesysprep.dll 2013-06-13 01:23 - 2013-05-17 02:58 - 00067072 ____A (Microsoft Corporation) C:\Windows\System32\iesetup.dll 2013-06-13 01:23 - 2013-05-17 02:58 - 00053248 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll 2013-06-13 01:23 - 2013-05-17 02:58 - 00039936 ____A (Microsoft Corporation) C:\Windows\System32\iernonce.dll 2013-06-13 01:23 - 2013-05-14 14:23 - 00089600 ____A (Microsoft Corporation) C:\Windows\System32\RegisterIEPKEYs.exe 2013-06-13 01:23 - 2013-05-14 10:40 - 00071680 ____A (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-06-12 16:52 - 2013-06-12 16:52 - 13081608 ____A (Microsoft Corporation) C:\Users\Benutzer\Downloads\Silverlight_x64.exe 2013-06-12 16:52 - 2013-06-12 16:52 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2013-06-12 16:52 - 2013-06-12 16:52 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-06-12 12:58 - 2013-05-13 07:51 - 01464320 ____A (Microsoft Corporation) C:\Windows\System32\crypt32.dll 2013-06-12 12:58 - 2013-05-13 07:51 - 00184320 ____A (Microsoft Corporation) C:\Windows\System32\cryptsvc.dll 2013-06-12 12:58 - 2013-05-13 07:51 - 00139776 ____A (Microsoft Corporation) C:\Windows\System32\cryptnet.dll 2013-06-12 12:58 - 2013-05-13 07:50 - 00052224 ____A (Microsoft Corporation) C:\Windows\System32\certenc.dll 2013-06-12 12:58 - 2013-05-13 06:45 - 01160192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-06-12 12:58 - 2013-05-13 06:45 - 00140288 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2013-06-12 12:58 - 2013-05-13 06:45 - 00103936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2013-06-12 12:58 - 2013-05-13 05:43 - 01192448 ____A (Microsoft Corporation) C:\Windows\System32\certutil.exe 2013-06-12 12:58 - 2013-05-13 05:08 - 00903168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe 2013-06-12 12:58 - 2013-05-13 05:08 - 00043008 ____A (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll 2013-06-12 12:58 - 2013-05-10 07:49 - 00030720 ____A (Microsoft Corporation) C:\Windows\System32\cryptdlg.dll 2013-06-12 12:58 - 2013-05-10 05:20 - 00024576 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll 2013-06-12 12:58 - 2013-05-08 08:39 - 01910632 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys 2013-06-12 12:58 - 2013-04-26 07:51 - 00751104 ____A (Microsoft Corporation) C:\Windows\System32\win32spl.dll 2013-06-12 12:58 - 2013-04-26 06:55 - 00492544 ____A (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2013-06-12 12:58 - 2013-04-17 09:02 - 01230336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2013-06-12 12:58 - 2013-04-17 08:24 - 01424384 ____A (Microsoft Corporation) C:\Windows\System32\WindowsCodecs.dll 2013-06-12 12:57 - 2013-04-26 01:30 - 01505280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2013-06-12 12:57 - 2013-04-01 00:52 - 01887232 ____A (Microsoft Corporation) C:\Windows\System32\d3d11.dll 2013-06-10 21:10 - 2013-06-10 21:11 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2013-06-10 21:10 - 2013-06-10 21:11 - 00000000 ____D C:\Program Files\iTunes 2013-06-10 21:10 - 2013-06-10 21:11 - 00000000 ____D C:\Program Files (x86)\iTunes 2013-06-10 21:10 - 2013-06-10 21:10 - 00000000 ____D C:\Program Files\iPod ==================== One Month Modified Files and Folders ======= 2013-07-06 19:56 - 2009-07-14 06:45 - 00021408 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-07-06 19:56 - 2009-07-14 06:45 - 00021408 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-07-06 19:55 - 2013-07-06 19:55 - 00000000 ____D C:\FRST 2013-07-06 19:51 - 2013-07-06 19:51 - 01934636 ____A (Farbar) C:\Users\Benutzer\Desktop\FRST64.exe 2013-07-06 19:51 - 2013-06-27 00:44 - 00000266 ____A C:\Windows\Tasks\AutoKMS.job 2013-07-06 19:51 - 2013-05-19 22:46 - 01989659 ____A C:\Windows\WindowsUpdate.log 2013-07-06 19:50 - 2013-06-19 22:40 - 00000000 ___RD C:\Users\Benutzer\Dropbox 2013-07-06 19:50 - 2013-06-19 22:37 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Dropbox 2013-07-06 19:48 - 2013-05-21 18:52 - 00000000 ____D C:\Users\Benutzer\AppData\Local\LogMeIn Hamachi 2013-07-06 19:48 - 2013-05-19 23:14 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2013-07-06 19:47 - 2009-07-14 07:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT 2013-07-06 19:46 - 2013-07-04 17:03 - 00001723 ____A C:\Windows\setupact.log 2013-07-06 19:46 - 2013-05-19 23:01 - 00000000 ____D C:\ProgramData\NVIDIA 2013-07-06 19:44 - 2013-06-23 18:39 - 00000000 ____D C:\Program Files (x86)\SoftwareUpdater 2013-07-06 19:18 - 2013-05-20 00:36 - 00000884 ____A C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-07-06 19:02 - 2013-06-17 02:59 - 00000020 ____A C:\Users\Benutzer\AppData\Roaming\Network Meter_Usage.ini 2013-07-06 19:02 - 2013-06-16 02:10 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Dexpot 2013-07-06 19:02 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Sidebar 2013-07-06 19:00 - 2013-06-17 01:00 - 00005690 ____A C:\Users\Benutzer\Network_Meter_Data.js 2013-07-06 18:39 - 2013-05-19 23:20 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Skype 2013-07-06 17:15 - 2013-06-16 03:08 - 00000000 ____D C:\Users\Benutzer\Desktop 2 2013-07-06 14:02 - 2013-07-06 14:02 - 00262144 ____A C:\Windows\System32\config\elam 2013-07-06 00:24 - 2013-05-21 18:49 - 00000000 ____D C:\ProgramData\LogMeIn 2013-07-05 18:58 - 2013-06-16 03:08 - 00000000 ____D C:\Users\Benutzer\Desktop 3 2013-07-04 22:56 - 2013-07-04 22:03 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Dev-Cpp 2013-07-04 22:19 - 2013-05-28 01:22 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-07-04 22:18 - 2013-05-28 01:22 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2013-07-04 22:09 - 2013-07-04 22:07 - 00000000 ____D C:\Program Files\Microsoft Platform SDK 2013-07-04 22:07 - 2013-07-04 22:07 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio .NET 2003 2013-07-04 22:05 - 2013-07-04 22:05 - 01349856 ____A (Microsoft Corporation) C:\Users\Benutzer\Downloads\PSDK-amd64.exe 2013-07-04 22:03 - 2013-07-04 22:03 - 00000000 ____D C:\Dev-Cpp 2013-07-04 22:02 - 2013-07-04 22:02 - 09326468 ____A C:\Users\Benutzer\Downloads\devcpp- 2013-07-04 21:54 - 2013-07-04 21:54 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_WinUsb_01009.Wdf 2013-07-04 19:37 - 2009-07-14 19:58 - 00710782 ____A C:\Windows\System32\perfh007.dat 2013-07-04 19:37 - 2009-07-14 19:58 - 00153874 ____A C:\Windows\System32\perfc007.dat 2013-07-04 19:37 - 2009-07-14 07:13 - 01650772 ____A C:\Windows\System32\PerfStringBackup.INI 2013-07-04 19:06 - 2013-06-16 03:08 - 00000000 ____D C:\Users\Benutzer\Desktop 4 2013-07-04 19:05 - 2013-05-20 00:00 - 00000000 ____D C:\Program Files (x86)\Steam 2013-07-04 17:03 - 2013-07-04 17:03 - 00000000 ____A C:\Windows\setuperr.log 2013-07-04 17:02 - 2013-05-19 23:25 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-07-04 01:15 - 2013-07-03 23:57 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Turbine 2013-07-04 00:40 - 2013-05-21 19:13 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\vlc 2013-07-04 00:01 - 2013-07-04 00:01 - 00000000 ____D C:\Users\Benutzer\Documents\The Lord of the Rings Online 2013-07-03 23:57 - 2013-07-03 23:57 - 00000094 ____A C:\Users\Benutzer\AppData\Local\fusioncache.dat 2013-07-03 23:57 - 2013-05-20 02:00 - 01677006 ____A C:\Windows\SysWOW64\PerfStringBackup.INI 2013-07-03 23:57 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\Registration 2013-07-03 23:54 - 2013-06-23 04:15 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\.minecraft 2013-07-03 22:50 - 2013-05-28 01:52 - 00000000 ____D C:\Users\Benutzer\Documents\Outlook-Dateien 2013-07-03 22:47 - 2013-07-03 21:26 - 00000000 ____D C:\Users\Benutzer\.VirtualBox 2013-07-03 22:07 - 2013-07-03 22:07 - 00001199 ____A C:\Users\UpdatusUser\Desktop\Flip 3.4.7.lnk 2013-07-03 22:07 - 2013-07-03 22:07 - 00001199 ____A C:\Users\LogMeInRemoteUser\Desktop\Flip 3.4.7.lnk 2013-07-03 22:06 - 2013-07-03 22:06 - 05907981 ____A (Atmel) C:\Users\Benutzer\Downloads\Flip Installer - 2013-07-03 22:06 - 2013-06-04 17:03 - 00000000 ____D C:\Program Files (x86)\Atmel 2013-07-03 22:00 - 2013-07-03 21:54 - 00000000 ____D C:\Windows XP 2013-07-03 21:26 - 2013-07-03 21:26 - 00000000 ____D C:\Users\Benutzer\VirtualBox VMs 2013-07-03 21:26 - 2013-05-19 22:52 - 00000000 ____D C:\users\Benutzer 2013-07-03 21:24 - 2013-07-03 21:24 - 00000000 ____D C:\Program Files\Oracle 2013-07-03 21:24 - 2013-07-03 21:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-07-03 21:22 - 2013-07-03 21:17 - 99246864 ____A (Oracle Corporation) C:\Users\Benutzer\Downloads\VirtualBox-4.2.14-86644-Win.exe 2013-07-03 21:18 - 2013-07-03 21:17 - 11639710 ____A C:\Users\Benutzer\Downloads\Oracle_VM_VirtualBox_Extension_Pack-4.2.14-86644.vbox-extpack 2013-07-03 21:04 - 2013-07-02 00:22 - 00000000 ____D C:\Windows\Minidump 2013-07-03 19:50 - 2013-06-05 09:37 - 00000000 ____D C:\Users\Benutzer\Desktop\HP Pavilion zd8318EA 2013-07-02 23:46 - 2013-07-02 23:46 - 00889416 ____A (Microsoft Corporation) C:\Users\Benutzer\Downloads\dotNetFx40_Full_setup.exe 2013-07-02 23:34 - 2013-07-02 23:34 - 00263592 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2013-07-02 23:34 - 2013-07-02 23:34 - 00175016 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2013-07-02 23:34 - 2013-07-02 23:34 - 00175016 ____A (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2013-07-02 23:34 - 2013-07-02 23:34 - 00096168 ____A (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2013-07-02 23:34 - 2013-07-02 23:34 - 00000000 ____D C:\Program Files (x86)\Java 2013-07-02 23:34 - 2013-05-20 22:49 - 00867240 ____A (Oracle Corporation) C:\Windows\SysWOW64\npDeployJava1.dll 2013-07-02 23:34 - 2013-05-20 22:49 - 00789416 ____A (Oracle Corporation) C:\Windows\SysWOW64\deployJava1.dll 2013-07-02 23:04 - 2013-07-02 23:04 - 00032768 ____A C:\Windows\IsUninst.exe 2013-07-02 22:56 - 2013-07-02 22:56 - 04551939 ____A C:\Users\Benutzer\Downloads\flip-2_4_6.zip 2013-07-02 22:45 - 2013-05-20 03:36 - 00000000 ____D C:\Program Files\Nexus Mod Manager 2013-07-02 22:44 - 2013-06-17 23:35 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Skyrim 2013-07-02 22:35 - 2013-07-02 22:35 - 00127860 ____A C:\Users\Benutzer\Downloads\memtest86+-4.20.usb.installer.zip 2013-07-02 15:39 - 2013-07-02 15:39 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2013-07-02 00:45 - 2013-07-02 00:45 - 00000000 ____D C:\Program Files (x86)\NirSoft 2013-07-02 00:44 - 2013-07-02 00:44 - 00141192 ____A C:\Users\Benutzer\Downloads\bluescreenview_setup_1.51.exe 2013-07-01 23:39 - 2013-07-01 23:39 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies 2013-07-01 23:39 - 2013-05-19 23:00 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2013-07-01 00:23 - 2013-06-23 11:32 - 00000000 ____D C:\Program Files (x86)\Warhammer Online - Age of Reckoning 2013-06-30 22:51 - 2013-06-30 22:51 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_xusb21_01009.Wdf 2013-06-30 22:51 - 2013-06-30 22:51 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_MijXfilt_01009.Wdf 2013-06-30 18:25 - 2013-06-30 18:25 - 00000000 ____D C:\Users\Benutzer\Documents\Wizards of the Coast 2013-06-30 17:31 - 2013-05-22 02:00 - 00000000 ____D C:\Program Files (x86)\RIFT 2013-06-30 17:28 - 2013-06-26 23:29 - 00000000 ____D C:\Users\Benutzer\Documents\RIFT 2013-06-30 17:19 - 2013-05-19 23:46 - 00000000 ____D C:\Program Files (x86)\World of Warcraft 2013-06-29 01:01 - 2013-06-29 01:01 - 00000000 ____D C:\Games 2013-06-29 00:18 - 2013-06-29 00:18 - 04396440 ____A (Piriform Ltd) C:\Users\Benutzer\Downloads\ccsetup403.exe 2013-06-29 00:18 - 2013-05-20 04:15 - 00000000 ____D C:\Program Files\CCleaner 2013-06-27 17:33 - 2013-06-27 00:44 - 00000000 ____D C:\Windows\AutoKMS 2013-06-26 23:31 - 2013-05-22 02:00 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\RIFT 2013-06-25 21:58 - 2013-05-23 23:48 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\uTorrent 2013-06-25 21:58 - 2013-05-20 03:45 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\DAEMON Tools Lite 2013-06-25 20:43 - 2013-06-25 20:41 - 00012121 ____A C:\Users\Benutzer\AppData\Roaming\PStrip.ini 2013-06-25 07:04 - 2013-06-25 07:04 - 00745495 ____A C:\Users\Benutzer\Downloads\MCP2200 Windows Driver 2013-02-21.zip 2013-06-24 20:02 - 2013-06-24 20:02 - 00000063 ____A C:\Windows\wininit.ini 2013-06-24 20:01 - 2013-06-24 20:01 - 01411304 ____A (EnTech Taiwan) C:\Users\Benutzer\Downloads\pstrip.exe 2013-06-24 19:41 - 2013-06-24 19:41 - 01420256 ____A (techPowerUp (www.techpowerup.com)) C:\Users\Benutzer\Downloads\GPU-Z_ASUS_ROG_0.7.2.exe 2013-06-24 19:24 - 2013-06-24 19:24 - 01198007 ____A (CPUID, Inc. ) C:\Users\Benutzer\Downloads\MemtweakIt-1017-setup.exe 2013-06-24 19:19 - 2013-06-24 19:10 - 391842315 ___RA C:\Users\Benutzer\Downloads\RealBench_v1.051.rar 2013-06-24 00:36 - 2013-06-24 00:36 - 00000000 ____D C:\Users\Benutzer\Downloads\Moonlight Lady 2013-06-24 00:33 - 2013-06-24 00:33 - 00019727 ____A C:\Users\Benutzer\Downloads\hshare.net.Moonlight.Lady.EP01-05.ENG.SUB.FILES.rar 2013-06-23 22:23 - 2013-06-23 22:17 - 00001981 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_prc_drk.log 2013-06-23 22:15 - 2013-06-23 22:12 - 00001982 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_prc_eye.log 2013-06-23 22:11 - 2013-06-23 22:11 - 00001862 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_003.log 2013-06-23 22:11 - 2013-06-23 22:11 - 00001861 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_001.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001862 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_002.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001860 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_pro_col.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001860 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_war.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001860 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_rog.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001860 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_mag.log 2013-06-23 22:10 - 2013-06-23 22:09 - 00001861 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_prc_one.log 2013-06-23 22:09 - 2013-06-23 22:09 - 00001861 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_prc_seb.log 2013-06-23 21:51 - 2013-06-23 21:28 - 1272222488 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_MarkOfTheAssassin.exe 2013-06-23 21:42 - 2013-06-23 21:28 - 885015120 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_Legacy.exe 2013-06-23 21:29 - 2013-06-23 21:29 - 10319008 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_WarriorItemPack2.exe 2013-06-23 21:29 - 2013-06-23 21:29 - 07023824 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_MageItemPack2.exe 2013-06-23 21:29 - 2013-06-23 21:28 - 07645904 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_RogueItemPack2.exe 2013-06-23 21:28 - 2013-06-23 21:28 - 04826056 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_WarriorItemPack.exe 2013-06-23 21:27 - 2013-06-23 21:27 - 06229408 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_RogueItemPack.exe 2013-06-23 21:27 - 2013-06-23 21:27 - 05697792 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_MageItemPack.exe 2013-06-23 21:27 - 2013-06-23 21:27 - 01638048 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_SignatureEdition.exe 2013-06-23 21:26 - 2013-06-23 21:26 - 33120856 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_ExiledPrince.exe 2013-06-23 21:26 - 2013-06-23 21:26 - 14142624 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_BlackEmporium.exe 2013-06-23 21:25 - 2013-06-23 18:25 - 00004064 ____A C:\shared.log 2013-06-23 18:41 - 2013-06-23 18:41 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Freemium 2013-06-23 18:39 - 2013-06-23 18:38 - 00000000 ____D C:\Users\Benutzer\AppData\Local\DownloadGuide 2013-06-23 18:38 - 2013-06-23 18:38 - 00444400 ____A C:\Users\Benutzer\Downloads\DLG_free-clever-privacy_chip_de-DE.exe 2013-06-23 18:25 - 2013-06-23 18:25 - 00003887 ____A C:\Users\Benutzer\Documents\Dragon Age 2 1.04.log 2013-06-23 18:25 - 2013-06-23 18:24 - 48330216 ____A (BioWare) C:\Users\Benutzer\Downloads\DragonAge2-1.04.exe 2013-06-23 18:22 - 2013-06-23 17:55 - 155920571 ____A C:\Users\Benutzer\Downloads\DFInstall.zip 2013-06-23 18:19 - 2013-06-23 18:19 - 00000000 ____D C:\ProgramData\EA Core 2013-06-23 18:19 - 2013-05-19 22:52 - 00000000 ____D C:\Users\Benutzer\AppData\Local\VirtualStore 2013-06-23 18:17 - 2013-06-23 15:13 - 00000000 ____D C:\Users\Benutzer\Documents\BioWare 2013-06-23 18:09 - 2013-06-23 18:09 - 00000000 ____D C:\Program Files (x86)\The Elder Scrolls Arena 2013-06-23 18:08 - 2013-06-23 18:08 - 00000000 ____D C:\Users\Benutzer\AppData\Local\DOSBox 2013-06-23 18:06 - 2013-06-23 18:06 - 00000000 ____D C:\Program Files (x86)\DOSBox-0.74 2013-06-23 17:58 - 2013-06-23 17:57 - 01448809 ____A (DOSBox Team) C:\Users\Benutzer\Downloads\DOSBox0.74-win32-installer.exe 2013-06-23 17:55 - 2013-06-23 17:54 - 09190807 ____A C:\Users\Benutzer\Downloads\Arena106.exe 2013-06-23 16:48 - 2013-05-20 03:26 - 00000000 ____D C:\Program Files (x86)\Origin Games 2013-06-23 16:45 - 2013-06-23 16:43 - 00003763 ____A C:\Users\Benutzer\Documents\Dragon Age Origins 1.05.log 2013-06-23 16:44 - 2013-06-23 14:59 - 00000000 ____D C:\Program Files (x86)\Dragon Age 2013-06-23 16:43 - 2013-06-23 16:42 - 101553128 ____A (BioWare) C:\Users\Benutzer\Downloads\DragonAge1.05.exe 2013-06-23 16:43 - 2013-06-23 15:12 - 00000000 ____D C:\Program Files (x86)\Electronic Arts 2013-06-23 15:54 - 2013-06-23 15:54 - 00001289 ____A C:\Users\Benutzer\Documents\DAO Addins Updater.log 2013-06-23 15:53 - 2013-05-20 03:26 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Origin 2013-06-23 15:51 - 2013-06-23 15:47 - 00003259 ____A C:\Users\Benutzer\Documents\Dragon Age Origins 1.04.log 2013-06-23 15:14 - 2013-06-23 15:14 - 00000000 ____D C:\ProgramData\BioWare 2013-06-23 15:13 - 2013-06-23 15:13 - 00000000 ____D C:\Users\Benutzer\AppData\Local\EA Core 2013-06-23 15:13 - 2013-05-20 03:23 - 00000000 ____D C:\ProgramData\Electronic Arts 2013-06-23 15:12 - 2013-06-23 14:59 - 00023349 ____A C:\Users\Benutzer\Documents\Install Dragon Age Origins.log 2013-06-23 15:11 - 2013-06-23 15:11 - 00000000 ____D C:\Windows\1C4551A64743409391E41477CD655043.TMP 2013-06-23 11:31 - 2013-06-23 11:30 - 42929231 ____A C:\Users\Benutzer\Downloads\WarhammerOnlineInstaller.exe 2013-06-23 11:08 - 2013-05-20 03:23 - 00000000 ____D C:\ProgramData\Origin 2013-06-23 11:07 - 2013-05-20 03:26 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Origin 2013-06-23 11:06 - 2013-05-20 03:23 - 00000000 ____D C:\Program Files (x86)\Origin 2013-06-23 09:56 - 2013-05-20 00:38 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Deployment 2013-06-23 08:46 - 2013-06-23 04:13 - 00000000 ____D C:\Program Files (x86)\GUILD WARS 2013-06-23 06:36 - 2013-05-20 04:17 - 00000000 ____D C:\Program Files\Speccy 2013-06-23 06:35 - 2013-06-23 06:35 - 05126104 ____A (Piriform Ltd) C:\Users\Benutzer\Downloads\spsetup122.exe 2013-06-23 04:17 - 2013-06-17 23:02 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\NVIDIA 2013-06-23 04:13 - 2013-06-23 04:13 - 00000000 ____D C:\Users\Benutzer\Documents\GUILD WARS 2013-06-23 04:12 - 2013-06-23 04:12 - 00105234 ____A C:\Users\Benutzer\Downloads\gwsetup(1).zip 2013-06-23 00:55 - 2013-05-27 03:10 - 00000000 ____D C:\Users\Benutzer\Desktop\iPhone Bilder 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\wacomid-desktop-launcher.DCFD4B89A63EE70BC162777F06D4B93B6397AEC7.1 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Wacom 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\ProgramData\Wacom 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Program Files (x86)\Bamboo Dock 2013-06-22 01:55 - 2013-06-22 01:54 - 00000002 ____A C:\Users\Benutzer\.bdockinstall.log 2013-06-22 01:55 - 2013-05-25 21:09 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Adobe 2013-06-22 01:55 - 2013-05-21 18:12 - 00000000 ____D C:\Program Files (x86)\Adobe 2013-06-22 01:55 - 2013-05-21 18:04 - 00000000 ____D C:\ProgramData\Adobe 2013-06-22 01:55 - 2013-05-20 00:36 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Adobe 2013-06-22 01:54 - 2013-06-22 01:54 - 30011936 ____A C:\Users\Benutzer\Downloads\dock_setup.exe 2013-06-22 01:49 - 2013-06-22 01:49 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_wachidrouter_01009.Wdf 2013-06-22 01:41 - 2013-06-22 01:41 - 00000000 ____D C:\Users\Benutzer\Documents\ArtRage Paintings 2013-06-22 01:41 - 2013-06-22 01:41 - 00000000 ____D C:\ProgramData\Caphyon 2013-06-22 01:41 - 2013-06-22 01:41 - 00000000 ____D C:\Program Files (x86)\Ambient Design 2013-06-22 01:41 - 2013-06-22 01:39 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Ambient Design 2013-06-22 01:37 - 2013-06-22 01:36 - 82461824 ____A (Ambient Design) C:\Users\Benutzer\Downloads\install_artrage_4.exe 2013-06-22 01:16 - 2013-06-22 01:16 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\WTablet 2013-06-22 01:15 - 2013-06-22 01:15 - 00000000 ____D C:\Program Files\TabletPlugins 2013-06-22 01:15 - 2013-06-22 01:15 - 00000000 ____D C:\Program Files\Tablet 2013-06-22 01:15 - 2013-06-22 01:15 - 00000000 ____D C:\Program Files (x86)\TabletPlugins 2013-06-22 01:15 - 2013-06-22 01:14 - 38455200 ____A C:\Users\Benutzer\Downloads\cons532-1_int.exe 2013-06-21 16:01 - 2013-07-03 21:24 - 00238352 ____A (Oracle Corporation) C:\Windows\System32\Drivers\VBoxDrv.sys 2013-06-21 16:00 - 2013-07-03 21:24 - 00120080 ____A (Oracle Corporation) C:\Windows\System32\Drivers\VBoxUSBMon.sys 2013-06-21 16:00 - 2013-06-21 16:00 - 00204048 ____A (Oracle Corporation) C:\Windows\System32\VBoxNetFltNobj.dll 2013-06-21 16:00 - 2013-06-21 16:00 - 00146704 ____A (Oracle Corporation) C:\Windows\System32\Drivers\VBoxNetFlt.sys 2013-06-21 16:00 - 2013-06-21 16:00 - 00131856 ____A (Oracle Corporation) C:\Windows\System32\Drivers\VBoxNetAdp.sys 2013-06-21 14:06 - 2013-07-01 23:36 - 27781920 ____A (NVIDIA Corporation) C:\Windows\System32\nvoglv64.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 25256224 ____A (NVIDIA Corporation) C:\Windows\System32\nvcompiler.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 21102368 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 17560352 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 13411896 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 11235104 ____A (NVIDIA Corporation) C:\Windows\System32\Drivers\nvlddmkm.sys 2013-06-21 14:06 - 2013-07-01 23:36 - 09239344 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuda.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 07687592 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 07641832 ____A (NVIDIA Corporation) C:\Windows\System32\nvopencl.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 06324360 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 02953504 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuvid.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 02777888 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 02363680 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuvenc.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 02002720 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 01832224 ____A (NVIDIA Corporation) C:\Windows\System32\nvdispco6432049.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 01511712 ____A (NVIDIA Corporation) C:\Windows\System32\nvdispgenco6432049.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00925648 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00572704 ____A (NVIDIA Corporation) C:\Windows\System32\NvFBC64.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00570656 ____A (NVIDIA Corporation) C:\Windows\System32\NvIFR64.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00467232 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00465184 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00266448 ____A (NVIDIA Corporation) C:\Windows\System32\nvinitx.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00218592 ____A (NVIDIA Corporation) C:\Windows\System32\nvoglshim64.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00214448 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00181488 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2013-06-21 14:06 - 2013-05-20 01:51 - 15144928 ____A (NVIDIA Corporation) C:\Windows\System32\nvd3dumx.dll 2013-06-21 14:06 - 2013-05-20 01:51 - 02597856 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2013-06-21 14:06 - 2013-05-19 23:00 - 00061216 ____A (Khronos Group) C:\Windows\System32\OpenCL.dll 2013-06-21 14:06 - 2013-05-19 23:00 - 00053024 ____A (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2013-06-21 14:06 - 2013-02-26 00:32 - 15920536 ____A (NVIDIA Corporation) C:\Windows\System32\nvwgf2umx.dll 2013-06-21 14:06 - 2013-02-26 00:32 - 12427240 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2013-06-21 14:06 - 2013-02-26 00:32 - 02936208 ____A (NVIDIA Corporation) C:\Windows\System32\nvapi64.dll 2013-06-21 14:06 - 2013-02-26 00:32 - 01059560 ____A (NVIDIA Corporation) C:\Windows\System32\nvumdshimx.dll 2013-06-21 14:06 - 2013-02-26 00:32 - 00021578 ____A C:\Windows\System32\nvinfo.pb 2013-06-21 12:23 - 2013-05-19 23:00 - 06496544 ____A (NVIDIA Corporation) C:\Windows\System32\nvcpl.dll 2013-06-21 12:23 - 2013-05-19 23:00 - 03514656 ____A (NVIDIA Corporation) C:\Windows\System32\nvsvc64.dll 2013-06-21 12:23 - 2013-05-19 23:00 - 02555680 ____A (NVIDIA Corporation) C:\Windows\System32\nvsvcr.dll 2013-06-21 12:23 - 2013-05-19 23:00 - 00884512 ____A (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe 2013-06-21 12:23 - 2013-05-19 23:00 - 00237856 ____A (NVIDIA Corporation) C:\Windows\System32\nvmctray.dll 2013-06-21 12:23 - 2013-05-19 23:00 - 00063776 ____A (NVIDIA Corporation) C:\Windows\System32\nvshext.dll 2013-06-21 05:16 - 2013-06-21 05:16 - 00566048 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2013-06-20 06:17 - 2013-05-19 23:00 - 03253909 ____A C:\Windows\System32\nvcoproc.bin 2013-06-20 01:36 - 2013-06-17 00:33 - 00000000 ____D C:\Program Files (x86)\PCMeter 2013-06-19 22:36 - 2013-06-19 22:36 - 34935760 ____A (Dropbox, Inc.) C:\Users\Benutzer\Downloads\Dropbox 2.2.3.exe 2013-06-18 17:55 - 2013-06-18 17:54 - 00000000 ____D C:\Program Files (x86)\Tinkerforge 2013-06-18 17:54 - 2013-06-18 17:53 - 18917020 ____A C:\Users\Benutzer\Downloads\brickv_windows_2_0_5.exe 2013-06-18 17:53 - 2013-06-18 17:53 - 04970233 ____A C:\Users\Benutzer\Downloads\brickd_windows_2_0_5.exe 2013-06-18 17:07 - 2013-05-20 03:50 - 00000000 ____D C:\Program Files (x86)\PDFCreator 2013-06-18 17:07 - 2013-05-19 23:42 - 00000000 ____D C:\Windows\Panther 2013-06-18 17:06 - 2013-06-18 17:06 - 04378864 ____A (Piriform Ltd) C:\Users\Benutzer\Downloads\ccsetup402.exe 2013-06-18 15:36 - 2013-05-19 23:20 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-06-18 15:36 - 2013-05-19 23:20 - 00000000 ____D C:\ProgramData\Skype 2013-06-18 01:45 - 2013-06-18 01:45 - 02002832 ____A C:\Users\Benutzer\Downloads\Red-Collection---AnnaRoma-UPGRADE-5.zip 2013-06-18 01:44 - 2013-06-18 01:44 - 00040791 ____A C:\Users\Benutzer\Downloads\ROG-v1.zip 2013-06-18 01:40 - 2013-06-18 01:40 - 00000000 ____D C:\Program Files (x86)\RocketDock 2013-06-18 01:40 - 2013-06-18 01:39 - 06463660 ____A (Punk Software ) C:\Users\Benutzer\Downloads\RocketDock-v1.3.5.exe 2013-06-17 23:35 - 2013-06-17 23:35 - 00000000 ____D C:\Users\Benutzer\Documents\Witcher 2 2013-06-17 23:33 - 2013-06-17 00:35 - 00000095 ____A C:\Users\Benutzer\AppData\Roaming\Control System_Settings.ini 2013-06-17 23:03 - 2013-06-17 23:03 - 00000000 ____D C:\Program Files (x86)\CPU-Z 2013-06-17 23:02 - 2013-06-17 23:02 - 00000000 ____D C:\Program Files (x86)\GPU-Z 2013-06-17 23:01 - 2013-06-17 23:01 - 01405920 ____A (techPowerUp (www.techpowerup.com)) C:\Users\Benutzer\Downloads\GPU-Z_ASUS_ROG_0.7.1.exe 2013-06-17 23:01 - 2013-06-17 23:01 - 01373832 ____A (CPUID, Inc. ) C:\Users\Benutzer\Downloads\cpu-z_1.64-rog-setup-en.exe 2013-06-17 22:56 - 2013-06-17 22:55 - 00000000 ____D C:\Program Files (x86)\TurnedOnTimesView 2013-06-17 22:52 - 2013-06-17 22:52 - 00064922 ____A C:\Users\Benutzer\Downloads\turnedontimesview.zip 2013-06-17 00:38 - 2013-06-17 00:38 - 00001138 ____A C:\Users\Benutzer\AppData\Roaming\Network Meter_Settings.ini 2013-06-17 00:38 - 2013-06-17 00:38 - 00000842 ____A C:\Users\Benutzer\AppData\Roaming\Drives Meter_Settings.ini 2013-06-17 00:37 - 2013-06-17 00:37 - 00000297 ____A C:\Users\Benutzer\AppData\Roaming\GPU MeterV2_Settings.ini 2013-06-17 00:36 - 2013-06-17 00:35 - 00000627 ____A C:\Users\Benutzer\AppData\Roaming\All CPU MeterV3_Settings.ini 2013-06-16 03:06 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\System32\oobe 2013-06-16 03:04 - 2013-06-16 03:04 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Babylon 2013-06-16 03:04 - 2013-06-16 03:04 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Babylon 2013-06-16 03:04 - 2013-06-16 03:04 - 00000000 ____D C:\ProgramData\Babylon 2013-06-16 03:04 - 2013-06-16 03:03 - 00002410 ____A C:\Windows\SysWOW64\cplLogon.tsk 2013-06-16 03:03 - 2013-06-16 03:03 - 02218077 ____A (Daniel Rebelo ) C:\Users\Benutzer\Downloads\Logon Screen 2.56.exe 2013-06-16 03:03 - 2013-06-16 03:03 - 00000000 ____D C:\Program Files\Logon Screen 2013-06-16 02:48 - 2013-06-16 02:46 - 00000000 ___AD C:\Windows\SysWOW64\ROG_Video Intro dir 2013-06-16 02:46 - 2013-05-20 02:43 - 02871808 ____A (Microsoft Corporation) C:\Windows\explorer.exe 2013-06-16 02:46 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\Cursors 2013-06-16 02:43 - 2013-06-16 02:46 - 00680960 ____A (ASUSTeK Computer Inc.) C:\Windows\SysWOW64\ROGThemeSetup.exe 2013-06-16 02:43 - 2013-06-16 02:46 - 00201728 ____A (ScreenTime Media) C:\Windows\SysWOW64\ROG_Video Intro .scr 2013-06-16 02:26 - 2013-06-16 02:25 - 30789811 ____A C:\Users\Benutzer\Downloads\ROG_THEME_V10014_Win7.zip 2013-06-16 02:10 - 2013-06-16 02:10 - 00000000 ____D C:\Program Files (x86)\Dexpot 2013-06-16 02:06 - 2013-06-16 02:06 - 02796815 ____A (Dexpot GbR) C:\Users\Benutzer\Downloads\dexpot_169_r2285.exe 2013-06-16 01:53 - 2013-06-16 01:53 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Bump Technologies, Inc 2013-06-16 01:50 - 2013-06-16 01:50 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Bump Technologies, Inc 2013-06-16 01:50 - 2013-06-16 01:49 - 16628120 ____A (Bump Technologies, Inc. ) C:\Users\Benutzer\Downloads\BumpTop-2.1-6211.exe 2013-06-16 01:50 - 2013-05-22 02:09 - 00000000 ___HD C:\Windows\msdownld.tmp 2013-06-16 01:50 - 2013-05-22 02:09 - 00000000 ____D C:\Windows\SysWOW64\directx 2013-06-13 18:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2013-06-13 01:24 - 2013-05-20 00:04 - 75825640 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe 2013-06-12 20:18 - 2013-05-20 00:35 - 00692104 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-06-12 20:18 - 2013-05-20 00:35 - 00071048 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-06-12 16:52 - 2013-06-12 16:52 - 13081608 ____A (Microsoft Corporation) C:\Users\Benutzer\Downloads\Silverlight_x64.exe 2013-06-12 16:52 - 2013-06-12 16:52 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2013-06-12 16:52 - 2013-06-12 16:52 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-06-10 21:11 - 2013-06-10 21:10 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2013-06-10 21:11 - 2013-06-10 21:10 - 00000000 ____D C:\Program Files\iTunes 2013-06-10 21:11 - 2013-06-10 21:10 - 00000000 ____D C:\Program Files (x86)\iTunes 2013-06-10 21:10 - 2013-06-10 21:10 - 00000000 ____D C:\Program Files\iPod 2013-06-09 21:01 - 2013-05-21 18:49 - 00000000 ____D C:\Program Files (x86)\LogMeIn 2013-06-09 21:00 - 2013-05-21 18:49 - 00107368 ____A (LogMeIn, Inc.) C:\Windows\System32\LMIRfsClientNP.dll 2013-06-09 21:00 - 2013-05-21 18:49 - 00100680 ____A (LogMeIn, Inc.) C:\Windows\System32\LMIinit.dll 2013-06-09 21:00 - 2013-05-21 18:49 - 00035656 ____A (LogMeIn, Inc.) C:\Windows\System32\LMIport.dll 2013-06-08 16:08 - 2013-06-15 02:13 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2013-06-08 16:07 - 2013-06-15 02:13 - 19233792 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2013-06-08 16:06 - 2013-06-15 02:13 - 15404544 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2013-06-08 16:06 - 2013-06-15 02:13 - 02648064 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2013-06-08 16:06 - 2013-06-15 02:13 - 00526336 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll 2013-06-08 14:28 - 2013-06-15 02:13 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2013-06-08 13:42 - 2013-06-15 02:13 - 01141248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-06-08 13:40 - 2013-06-15 02:13 - 14327808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-06-08 13:40 - 2013-06-15 02:13 - 13760512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-06-08 13:40 - 2013-06-15 02:13 - 02046976 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-06-08 13:40 - 2013-06-15 02:13 - 00391168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-06-08 13:13 - 2013-06-15 02:13 - 02706432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe [2013-05-20 02:43] - [2013-06-16 02:46] - 2871808 ____A (Microsoft Corporation) 65DE61A95D4F5CD4E7ED63EC6344CBF0 C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-07-03 18:01 ==================== End Of Log ============================ Addition Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 04-07-2013 Ran by Benutzer at 2013-07-06 19:57:31 Running from C:\Users\Benutzer\Desktop Boot Mode: Normal ========================================================== ==================== Installed Programs ======================= µTorrent (x32 Version: 3DMark (x32) 7-Zip 9.20 (x64 edition) (Version: Adobe AIR (x32 Version: Adobe Flash Player 10 ActiveX (x32 Version: Adobe Flash Player 11 Plugin (x32 Version: 11.7.700.224) Adobe Reader XI (11.0.03) - Deutsch (x32 Version: 11.0.03) Apple Application Support (x32 Version: 2.3.4) Apple Mobile Device Support (Version: Apple Software Update (x32 Version: Arena Wars 2 (x32) ArtRage 4 (x32 Version: Astroburn Lite (x32 Version: ASUS_ROG_THEME (x32 Version: 1.00.14) Bamboo Dock (x32 Version: 4.1) Bamboo Dock (x32 Version: 4.1.0) Bonjour (Version: CameraHelperMsi (x32 Version: 13.51.815.0) CCleaner (Version: 4.03) CPUID ROG CPU-Z 1.64 (Version: 1.64) Curse Client (HKCU Version: DAEMON Tools Lite (x32 Version: Definition Update for Microsoft Office 2010 (KB982726) 64-Bit Edition Defraggler (Version: 2.14) Dev-C++ 5 beta 9 release ( (x32) Dexpot (HKCU Version: 1.6.9) Diablo III (x32 Version: Dota 2 (x32) Dragon Age II (x32 Version: 1.00) Dragon Age: Origins (x32 Version: 1.05) Dropbox (HKCU Version: 2.2.3) EA Installer (x32 Version: EA Shared Game Component: Activation (x32 Version: 2.2.0) EA Shared Game Component: Activation (x32 Version: EPSON-Drucker-Software erLT (x32 Version: Flip 3.4.7 (x32 Version: 3.4.7) Garry's Mod (x32) GUILD WARS (x32) Guild Wars 2 (x32) iPhone-Konfigurationsprogramm (x32 Version: iTunes (Version: Java 7 Update 21 (64-bit) (Version: 7.0.210) Java 7 Update 25 (x32 Version: 7.0.250) Java Auto Updater (x32 Version: Kaspersky PURE 3.0 (x32 Version: Keil µVision3 (x32) LAN Messenger (x32 Version: 1.2.35) Logitech SetPoint 6.52 (Version: 6.52.74) Logitech Touch Mouse Server 1.0 (x32 Version: 1.0) Logitech Webcam-Software (x32 Version: 2.51) LogMeIn (x32 Version: 4.1.2694) LogMeIn Hamachi (x32 Version: Logon Screen LWS Facebook (x32 Version: 13.50.854.0) LWS Gallery (x32 Version: 13.51.827.0) LWS Help_main (x32 Version: 13.51.828.0) LWS Launcher (x32 Version: 13.51.828.0) LWS Motion Detection (x32 Version: 13.51.815.0) LWS Pictures And Video (x32 Version: 13.51.815.0) LWS Twitter (x32 Version: 13.30.1346.0) LWS Webcam Software (x32 Version: 13.51.815.0) LWS WLM Plugin (x32 Version: 1.30.1201.0) LWS YouTube Plugin (x32 Version: 13.31.1038.0) Magic 2014 (x32) Magic: The Gathering — Duels of the Planeswalkers 2012 (x32) Magic: The Gathering - Duels of the Planeswalkers 2013 (x32) Magicka (x32) Malwarebytes Anti-Malware Version (x32 Version: Microsoft .NET Framework 1.1 (x32 Version: 1.1.4322) Microsoft .NET Framework 1.1 (x32) Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319) Microsoft .NET Framework 4 Extended (Version: 4.0.30319) Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319) Microsoft Office 2010 Service Pack 1 (SP1) Microsoft Office Access MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Excel MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Groove MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office InfoPath MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Office 32-bit Components 2010 (Version: 14.0.6029.1000) Microsoft Office OneNote MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Outlook MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office PowerPoint MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Professional Plus 2010 (Version: 14.0.6029.1000) Microsoft Office Proof (English) 2010 (Version: 14.0.6029.1000) Microsoft Office Proof (French) 2010 (Version: 14.0.6029.1000) Microsoft Office Proof (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Proof (Italian) 2010 (Version: 14.0.6029.1000) Microsoft Office Proofing (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Publisher MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Shared 32-bit MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Shared MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Office Word MUI (German) 2010 (Version: 14.0.6029.1000) Microsoft Platform SDK (3790.1830) (Version: 5.2.3790.1830) Microsoft Silverlight (Version: 5.1.20125.0) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) MoodTuner (x32 Version: 1.1) MotioninJoy Gamepad tool 0.7.1001 (Version: 0.7.1001) Mozilla Firefox 22.0 (x86 de) (x32 Version: 22.0) Mozilla Maintenance Service (x32 Version: 22.0) Nexus Mod Manager (Version: 0.45.2) Nikon Message Center 2 (x32 Version: 2.1.0) Nikon Movie Editor (x32 Version: 2.7.0) NirSoft BlueScreenView (x32) Notepad++ (x32 Version: 6.3.3) NVIDIA 3D Vision Controller-Treiber 320.49 (Version: 320.49) NVIDIA 3D Vision Treiber 320.49 (Version: 320.49) NVIDIA GeForce Experience 1.5 (Version: 1.5) NVIDIA Grafiktreiber 320.49 (Version: 320.49) NVIDIA HD-Audiotreiber (Version: NVIDIA Install Application (Version: 2.1002.124.810) NVIDIA PhysX (x32 Version: 9.13.0604) NVIDIA PhysX-Systemsoftware 9.13.0604 (Version: 9.13.0604) NVIDIA Stereoscopic 3D Driver (x32 Version: NVIDIA Systemsteuerung 320.49 (Version: 320.49) NVIDIA Update 4.11.9 (Version: 4.11.9) NVIDIA Update Components (Version: 4.11.9) Off Remote Helper (x32) Oracle VM VirtualBox 4.2.14 (Version: 4.2.14) Origin (x32 Version: PDF Architect (x32 Version: PDFCreator (x32 Version: 1.7.0) Picture Control Utility x64 (Version: 1.4.11) Platform (x32 Version: 1.34) PuTTY version 0.62 (x32 Version: 0.62) Realtek 8136 8168 8169 Ethernet Driver (x32 Version: 1.00.0005) Recuva (Version: 1.46) RIFT (HKCU) RocketDock 1.3.5 (x32) SDFormatter (x32 Version: 4.0.0) Skype™ 6.5 (x32 Version: 6.5.158) Speccy (Version: 1.22) StarCraft II (x32 Version: Steam (x32 Version: TechPowerUp GPU-Z (x32) The Elder Scrolls III: Morrowind (x32) The Elder Scrolls IV: Oblivion (x32) The Elder Scrolls V: Skyrim (x32) The Lord of the Rings Online™ (x32) The Lord of the Rings Online™ v03.08.00.8029 (x32 Version: The Witcher 2: Assassins of Kings Enhanced Edition (x32) The Witcher: Enhanced Edition (x32) Tinkerforge Brick Daemon 2.0.5 (x32 Version: 2.0.5) Tinkerforge Brick Viewer 2.0.5 (x32 Version: 2.0.5) UltraVnc (Version: Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2468871) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2533523) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2600217) (x32 Version: 1) Update for Microsoft Office 2010 (KB2553065) Update for Microsoft Office 2010 (KB2553092) Update for Microsoft Office 2010 (KB2553181) 64-Bit Edition Update for Microsoft Office 2010 (KB2553267) 64-Bit Edition Update for Microsoft Office 2010 (KB2553310) 64-Bit Edition Update for Microsoft Office 2010 (KB2553378) 64-Bit Edition Update for Microsoft Office 2010 (KB2566458) Update for Microsoft Office 2010 (KB2598242) 64-Bit Edition Update for Microsoft Office 2010 (KB2687509) 64-Bit Edition Update for Microsoft Office 2010 (KB2760631) 64-Bit Edition Update for Microsoft Office 2010 (KB2767886) 64-Bit Edition Update for Microsoft OneNote 2010 (KB2553290) 64-Bit Edition Update for Microsoft Outlook 2010 (KB2597090) 64-Bit Edition Update for Microsoft Outlook 2010 (KB2687623) 64-Bit Edition Update for Microsoft Outlook Social Connector 2010 (KB2553406) 64-Bit Edition Update for Microsoft PowerPoint 2010 (KB2598240) 64-Bit Edition Update for Microsoft SharePoint Workspace 2010 (KB2589371) 64-Bit Edition VIA Plattform-Geräte-Manager (x32 Version: 1.34) ViewNX 2 (Version: 2.7.5) VLC media player 2.0.7 (x32 Version: 2.0.7) Wacom (Version: 5.3.2-1) Warcraft III (x32) Warhammer 40,000: Dawn of War - Game of the Year Edition (x32) Warhammer Online: Age of Reckoning (x32 Version: ) Warhammer® 40,000™: Dawn of War® II - Chaos Rising™ (x32) Warhammer® 40,000™: Dawn of War® II – Retribution™ (x32) Warhammer® 40,000™: Dawn of War® II (x32) WebTablet FB Plugin 32 bit (x32 Version: WebTablet FB Plugin 64 bit (Version: Windows-Treiberpaket - Microchip Technology, Inc. (usbser) Ports (12/06/2012 5.1.2600.7) (Version: 12/06/2012 5.1.2600.7) World of Warcraft (x32 Version: Xfire 2.0 (x32 Version: 2.0) Xfire Codec (remove only) (x32) ==================== Restore Points ========================= 03-07-2013 19:23:36 Installed Oracle VM VirtualBox 4.2.14 03-07-2013 21:54:57 DirectX wurde installiert 03-07-2013 21:58:26 DirectX wurde installiert 04-07-2013 20:06:44 Installed Microsoft Platform SDK (3790.1830) 05-07-2013 15:36:48 Windows Update 05-07-2013 16:59:21 Clever Privacy 06-07-2013 15:22:39 Windows Modules Installer 06-07-2013 15:31:17 Windows Modules Installer ==================== Hosts content: ========================== 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {18B90C25-2175-4637-9B54-B798D366E753} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {2B8544C2-C86C-4851-87A6-CE857E561376} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-06-12] (Adobe Systems Incorporated) Task: {42F96324-7C86-4E23-BBD1-8E9C52B17EF0} - \Software Updater No Task File Task: {67BE60D0-0F5A-4F1D-B33A-2C47E774A8F3} - System32\Tasks\PCMeter\Startup => C:\Program Files (x86)\PCMeter\PCMeterV0.3.exe [2013-01-12] (AddGadgets) Task: {7955F2D9-DAC6-441D-AF90-C1B6A7ECDB2F} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-06-19] (Piriform Ltd) Task: {8E5F7E65-B445-409A-A793-029AB1B3DF66} - System32\Tasks\{A7603944-E50D-4E9C-B994-FEF0A676AB1C} => C:\Users\Benutzer\Downloads\flip-2_4_6\SETUP.EXE [1997-11-19] (InstallShield Software Corporation) Task: {9DD0CF9B-1E15-48A1-A22C-4848966C506A} - System32\Tasks\Software Updater Ui => C:\Program Files (x86)\SoftwareUpdater\SoftwareUpdater.Ui.exe [2013-06-23] () Task: {B4B52E4E-3C30-42F1-80E8-840FF7D389F3} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS\AutoKMS.exe [2013-06-27] () Task: {B5D1BBB0-ED19-4E4A-A338-B451E1A82122} - System32\Tasks\Dexpot\2 => C:\Program Files (x86)\Dexpot\autodex.exe [2013-04-30] (Dexpot GbR) Task: {C779D2A5-15D4-4946-8E19-5EE4FDEBBAA4} - System32\Tasks\Microsoft\Windows Defender\MP Scheduled Scan => C:\program files\windows defender\MpCmdRun.exe [2009-07-14] (Microsoft Corporation) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\AutoKMS.job => C:\Windows\AutoKMS\AutoKMS.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (07/06/2013 07:50:15 PM) (Source: WTabletServiceCon) (User: ) Description: Prefs: Failed to get user path Error: (07/06/2013 07:45:30 PM) (Source: Winlogon) (User: ) Description: Fehler beim Beenden der Prozesse des aktuell angemeldeten Benutzers durch den Windows-Anmeldeprozess. Error: (07/06/2013 02:17:26 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: SoftwareUpdater.Bootstrapper.exe, Version:, Zeitstempel: 0x51b97317 Name des fehlerhaften Moduls: KERNELBASE.dll, Version: 6.1.7601.18015, Zeitstempel: 0x50b8479b Ausnahmecode: 0xe0434352 Fehleroffset: 0x0000000000009e5d ID des fehlerhaften Prozesses: 0x108 Startzeit der fehlerhaften Anwendung: 0xSoftwareUpdater.Bootstrapper.exe0 Pfad der fehlerhaften Anwendung: SoftwareUpdater.Bootstrapper.exe1 Pfad des fehlerhaften Moduls: SoftwareUpdater.Bootstrapper.exe2 Berichtskennung: SoftwareUpdater.Bootstrapper.exe3 Error: (07/06/2013 02:17:24 PM) (Source: .NET Runtime) (User: ) Description: Anwendung: SoftwareUpdater.Bootstrapper.exe Frameworkversion: v4.0.30319 Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet. Ausnahmeinformationen: Ausnahmecode e0434352, Ausnahmeadresse 000007FEFDB59E5D Stapel: Error: (07/04/2013 10:24:08 PM) (Source: Brick Daemon) (User: ) Description: Could not receive from client (socket: 680, peer:, disconnecting it: WSAECONNRESET (71010054) Error: (07/04/2013 05:03:47 PM) (Source: Windows Search Service) (User: ) Description: Der Index kann nicht initialisiert werden. Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (07/04/2013 05:03:47 PM) (Source: Windows Search Service) (User: ) Description: Die Anwendung kann nicht initialisiert werden. Kontext: Windows Anwendung Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (07/04/2013 05:03:47 PM) (Source: Windows Search Service) (User: ) Description: Das Gatherer-Objekt kann nicht initialisiert werden. Kontext: Windows Anwendung, SystemIndex Katalog Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (07/04/2013 05:03:47 PM) (Source: Windows Search Service) (User: ) Description: Plug-In in <Search.TripoliIndexer> kann nicht initialisiert werden. Kontext: Windows Anwendung, SystemIndex Katalog Details: Element nicht gefunden. (HRESULT : 0x80070490) (0x80070490) Error: (07/04/2013 05:03:43 PM) (Source: Windows Search Service) (User: ) Description: Plug-In in <Search.JetPropStore> kann nicht initialisiert werden. Kontext: Windows Anwendung, SystemIndex Katalog Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) System errors: ============= Error: (07/06/2013 07:49:13 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "System Store" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (07/06/2013 07:49:13 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst System Store erreicht. Error: (07/06/2013 07:46:50 PM) (Source: EventLog) (User: ) Description: Das System wurde zuvor am ?06.?07.?2013 um 19:44:38 unerwartet heruntergefahren. Error: (07/06/2013 07:39:48 PM) (Source: Service Control Manager) (User: ) Description: Der Aufruf "ScRegSetValueExW" ist für "Start" aufgrund folgenden Fehlers fehlgeschlagen: %%5 Error: (07/06/2013 07:38:48 PM) (Source: Service Control Manager) (User: ) Description: Der Aufruf "ScRegSetValueExW" ist für "Start" aufgrund folgenden Fehlers fehlgeschlagen: %%5 Error: (07/06/2013 07:22:17 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "WinRing0_1_2_0" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (07/06/2013 07:21:30 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst LogMeIn erreicht. Error: (07/06/2013 07:19:45 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "UPnP-Gerätehost" wurde mit folgendem Fehler beendet: %%5 Error: (07/06/2013 07:19:43 PM) (Source: Service Control Manager) (User: ) Description: Der Aufruf "ScRegSetValueExW" ist für "Start" aufgrund folgenden Fehlers fehlgeschlagen: %%5 Error: (07/06/2013 07:19:39 PM) (Source: Service Control Manager) (User: ) Description: Der Aufruf "ScRegSetValueExW" ist für "Start" aufgrund folgenden Fehlers fehlgeschlagen: %%5 Microsoft Office Sessions: ========================= Error: (07/06/2013 07:50:15 PM) (Source: WTabletServiceCon)(User: ) Description: Prefs: Failed to get user path Error: (07/06/2013 07:45:30 PM) (Source: Winlogon)(User: ) Description: Error: (07/06/2013 02:17:26 PM) (Source: Application Error)(User: ) Description: SoftwareUpdater.Bootstrapper.exe0.0.0.051b97317KERNELBASE.dll6.1.7601.1801550b8479be04343520000000000009e5d10801ce7a428e1a0cf8C:\Program Files (x86)\SoftwareUpdater\SoftwareUpdater.Bootstrapper.exeC:\Windows\system32\KERNELBASE.dll04c942d4-e636-11e2-a0d5-e0cb4eff9b84 Error: (07/06/2013 02:17:24 PM) (Source: .NET Runtime)(User: ) Description: Anwendung: SoftwareUpdater.Bootstrapper.exe Frameworkversion: v4.0.30319 Beschreibung: Der Prozess wurde aufgrund einer unbehandelten Ausnahme beendet. Ausnahmeinformationen: Ausnahmecode e0434352, Ausnahmeadresse 000007FEFDB59E5D Stapel: Error: (07/04/2013 10:24:08 PM) (Source: Brick Daemon)(User: ) Description: Could not receive from client (socket: 680, peer:, disconnecting it: WSAECONNRESET (71010054) Error: (07/04/2013 05:03:47 PM) (Source: Windows Search Service)(User: ) Description: Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (07/04/2013 05:03:47 PM) (Source: Windows Search Service)(User: ) Description: Kontext: Windows Anwendung Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (07/04/2013 05:03:47 PM) (Source: Windows Search Service)(User: ) Description: Kontext: Windows Anwendung, SystemIndex Katalog Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Error: (07/04/2013 05:03:47 PM) (Source: Windows Search Service)(User: ) Description: Kontext: Windows Anwendung, SystemIndex Katalog Details: Element nicht gefunden. (HRESULT : 0x80070490) (0x80070490) Search.TripoliIndexer Error: (07/04/2013 05:03:43 PM) (Source: Windows Search Service)(User: ) Description: Kontext: Windows Anwendung, SystemIndex Katalog Details: Der Inhaltsindexkatalog ist fehlerhaft. (HRESULT : 0xc0041801) (0xc0041801) Search.JetPropStore CodeIntegrity Errors: =================================== Date: 2013-07-06 17:17:24.947 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-06 17:17:24.947 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-06 17:17:24.931 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-06 16:35:54.361 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-06 16:35:54.361 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-06 16:35:54.361 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-06 00:32:13.204 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-06 00:32:13.204 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-06 00:32:13.194 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2013-07-06 00:32:13.174 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Memory info =========================== Percentage of memory in use: 31% Total physical RAM: 8189.05 MB Available physical RAM: 5595.57 MB Total Pagefile: 16376.29 MB Available Pagefile: 13620.19 MB Total Virtual: 8192 MB Available Virtual: 8191.83 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:1397.17 GB) (Free:840.57 GB) NTFS (Disk=0 Partition=2) ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 1397 GB) (Disk ID: 21781D18) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=-698828718080) - (Type=07 NTFS) ==================== End Of Log ============================ Geändert von Broken_Mind (06.07.2013 um 19:09 Uhr) |
![]() | #4 |
![]() | ![]() SoftwareUpdater.Bootstrapper wird von Kaspersky PURE 3.0 erkannt Ich habe nun wie ich in einem anderen Thread gelesen habe adwcleaner und JRT durchlaufen lassen und poste nun mal die Logs. Code:
ATTFilter # AdwCleaner v2.304 - Datei am 06/07/2013 um 20:50:26 erstellt # Aktualisiert am 03/07/2013 von Xplode # Betriebssystem : Windows 7 Ultimate Service Pack 1 (64 bits) # Benutzer : Benutzer - Benutzer-PC # Bootmodus : Normal # Ausgeführt unter : C:\Users\Benutzer\Desktop\adwcleaner.exe # Option [Löschen] **** [Dienste] **** Gestoppt & Gelöscht : SystemStoreService ***** [Dateien / Ordner] ***** Ordner Gelöscht : C:\Program Files (x86)\SoftwareUpdater Ordner Gelöscht : C:\ProgramData\Babylon Ordner Gelöscht : C:\ProgramData\boost_interprocess Ordner Gelöscht : C:\Users\Benutzer\AppData\Local\Babylon Ordner Gelöscht : C:\Users\Benutzer\AppData\Roaming\Babylon Ordner Gelöscht : C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\jetpack Ordner Gelöscht : C:\Users\Benutzer\AppData\Roaming\pdfforge ***** [Registrierungsdatenbank] ***** Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{25A3A431-30BB-47C8-AD6A-E1063801134F} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{25A3A431-30BB-47C8-AD6A-E1063801134F} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Prod.cap Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{25A3A431-30BB-47C8-AD6A-E1063801134F} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5} Wert Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar [{25A3A431-30BB-47C8-AD6A-E1063801134F}] ***** [Internet Browser] ***** -\\ Internet Explorer v10.0.9200.16611 [OK] Die Registrierungsdatenbank ist sauber. -\\ Mozilla Firefox v22.0 (de) Datei : C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\prefs.js [OK] Die Datei ist sauber. ************************* AdwCleaner[S1].txt - [1804 octets] - [06/07/2013 20:50:26] ########## EOF - C:\AdwCleaner[S1].txt - [1864 octets] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 4.9.4 (05.06.2013:1) OS: Windows 7 Ultimate x64 Ran by Benutzer on 06.07.2013 at 20:58:54,26 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys ~~~ Files ~~~ Folders ~~~ FireFox Successfully deleted: [Folder] C:\Users\Benutzer\AppData\Roaming\mozilla\firefox\profiles\dvvpeqyo.default\jetpack Successfully deleted the following from C:\Users\Benutzer\AppData\Roaming\mozilla\firefox\profiles\dvvpeqyo.default\prefs.js user_pref("services.sync.history.syncID", "V9ZgM0DA9Dlt"); Emptied folder: C:\Users\Benutzer\AppData\Roaming\mozilla\firefox\profiles\dvvpeqyo.default\minidumps [22 files] ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 06.07.2013 at 21:02:36,30 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 04-07-2013 Ran by Benutzer (administrator) on 06-07-2013 21:12:39 Running from C:\Users\Benutzer\Desktop Windows 7 Ultimate Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Microsoft Corporation) C:\Windows\system32\AUDIODG.EXE (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\WTabletServiceCon.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Tinkerforge GmbH) C:\Program Files (x86)\Tinkerforge\Brickd\brickd.exe (Infowatch) C:\Program Files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\RaMaint.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\LogMeIn.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (AddGadgets) C:\Program Files (x86)\PCMeter\PCMeterV0.3.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (Hobbyist Software) C:\Program Files (x86)\Hobbyist Software\Off Remote Helper\Off-Helper Service.exe (pdfforge GmbH) C:\Program Files (x86)\PDF Architect\HelperService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\ComUpdatus.exe (pdfforge GmbH) C:\Program Files (x86)\PDF Architect\ConversionService.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe (Logitech, Inc.) C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.EXE (Dexpot GbR) C:\Program Files (x86)\Dexpot\dexpot.exe () C:\Program Files (x86)\RocketDock\RocketDock.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe (Hobbyist Software) C:\Program Files (x86)\Hobbyist Software\Off Remote Helper\Off-Helper Configuration.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe () C:\Program Files (x86)\Bamboo Dock\BambooCore.exe (Dropbox, Inc.) C:\Users\Benutzer\AppData\Roaming\Dropbox\bin\Dropbox.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Dexpot GbR) C:\Program Files (x86)\Dexpot\Dexpot64.exe (Dexpot GbR) C:\Program Files (x86)\Dexpot\plugins\DexControl.exe (Dexpot GbR) C:\Program Files (x86)\Dexpot\plugins\Taskbar Pager.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_TabletUser.exe (Wacom Technology) C:\Program Files\Tablet\Pen\WacomHost.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_Tablet.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_TouchUser.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [Nvtmru] "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" [1012000 2013-05-16] (NVIDIA Corporation) HKLM\...\Run: [EvtMgr6] C:\Program Files\Logitech\SetPointP\SetPoint.exe /launchGaming [2991856 2013-02-21] (Logitech, Inc.) HKLM\...\Run: [LogMeIn GUI] "C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe" [57928 2012-11-29] (LogMeIn, Inc.) HKLM\...\Run: [BCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices [112512 2010-03-13] (Microsoft Corporation) Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.) HKCU\...\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun [3672640 2013-03-14] (Disc Soft Ltd) HKCU\...\Run: [Dexpot] C:\Program Files (x86)\Dexpot\dexpot.exe [1433600 2013-06-03] (Dexpot GbR) HKCU\...\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun [x] HKCU\...\Run: [RocketDock] "C:\Program Files (x86)\RocketDock\RocketDock.exe" [495616 2007-09-02] () HKCU\...\Policies\system: [DisableRegistryTools] 0 HKCU\...\Policies\system: [DisableTaskMgr] 0 HKLM-x32\...\Run: [AVP] "C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe" [356968 2012-12-20] (Kaspersky Lab ZAO) HKLM-x32\...\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [958576 2013-05-11] (Adobe Systems Incorporated) HKLM-x32\...\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [59720 2013-04-21] (Apple Inc.) HKLM-x32\...\Run: [Hobbyist Software On-Off Helper] "C:\Program Files (x86)\Hobbyist Software\Off Remote Helper\Off-Helper Configuration.exe" /startup [555848 2013-05-31] (Hobbyist Software) HKLM-x32\...\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe" [152392 2013-05-31] (Apple Inc.) HKLM-x32\...\Run: [BambooCore] C:\Program Files (x86)\Bamboo Dock\BambooCore.exe [646744 2012-10-16] () HKLM-x32\...\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start [2255184 2013-06-28] (LogMeIn Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [253816 2013-03-12] (Oracle Corporation) HKU\Default\...\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun [x] HKU\Default User\...\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun [x] HKU\LogMeInRemoteUser\...\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun [x] Startup: C:\Users\Benutzer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Benutzer\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/ HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL (Microsoft Corporation) BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll (Logitech, Inc.) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) BHO-x32: Kaspersky Passsword Manager Toolbar - {215BA832-75A3-426E-A4FC-7C5B58CE6A10} - C:\PROGRA~2\KASPER~1\KASPER~1.0\KASPER~2\spIEBho.dll (Kaspersky Lab) BHO-x32: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll (pdfforge GmbH) BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO-x32: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll (Logitech, Inc.) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) Toolbar: HKLM-x32 - Kaspersky Passsword Manager Toolbar - {215BA832-75A3-426E-A4FC-7C5B58CE6A10} - C:\PROGRA~2\KASPER~1\KASPER~1.0\KASPER~2\spIEBho.dll (Kaspersky Lab) Handler-x32: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files (x86)\Common Files\Microsoft Shared\Information Retrieval\msitss.dll (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] FireFox: ======== FF ProfilePath: C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default FF Homepage: www.google.de FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_224.dll () FF Plugin: @java.com/DTPlugin,version=10.21.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.21.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin: @wacom.com/wtPlugin,version= - C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll (Wacom) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @videolan.org/vlc,version=2.0.7 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @wacom.com/wtPlugin,version= - C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll (Wacom) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: wacom.com/WacomTabletPlugin - C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll (Wacom) FF Extension: Flagfox - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b} FF Extension: WOT - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} FF Extension: adblockpopups - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\adblockpopups@jessehakanen.net.xpi FF Extension: canitbecheaper - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\canitbecheaper@trafficbroker.co.uk.xpi FF Extension: compatibility - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\compatibility@addons.mozilla.org.xpi FF Extension: elemhidehelper - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\elemhidehelper@adblockplus.org.xpi FF Extension: firefox - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\firefox@mega.co.nz.xpi FF Extension: YouTubeAutoReplay - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\YouTubeAutoReplay@arikv.com.xpi FF Extension: No Name - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\{987311C6-B504-4aa2-90BF-60CC49808D42}.xpi FF Extension: No Name - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF Extension: No Name - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\{d49a148e-817e-4025-bee3-5d541376de3b}.xpi FF Extension: No Name - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\{fe272bd1-5f76-4ea4-8501-a05d35d823fc}.xpi FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF HKLM-x32\...\Firefox\Extensions: C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\url_advisor@kaspersky.com FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\url_advisor@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\virtual_keyboard@kaspersky.com FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\virtual_keyboard@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\content_blocker@kaspersky.com FF Extension: Content Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\content_blocker@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [anti_banner@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\anti_banner@kaspersky.com FF Extension: Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\anti_banner@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [online_banking@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\online_banking@kaspersky.com FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\online_banking@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt FF Extension: PDF Architect Converter For Firefox - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt FF Extension: Logitech SetPoint - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt ==================== Services (Whitelisted) ================= R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe [356968 2012-12-20] (Kaspersky Lab ZAO) R2 Brick Daemon; C:\Program Files (x86)\Tinkerforge\Brickd\brickd.exe [66048 2013-04-19] (Tinkerforge GmbH) R2 CSObjectsSrv; C:\Program Files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe [819040 2012-12-21] (Infowatch) R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe [376144 2013-06-09] (LogMeIn, Inc.) R2 LMIMaint; C:\Program Files (x86)\LogMeIn\x64\RaMaint.exe [226640 2013-06-09] (LogMeIn, Inc.) R2 LogMeIn; C:\Program Files (x86)\LogMeIn\x64\LogMeIn.exe [407424 2012-11-29] (LogMeIn, Inc.) R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) S2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) R2 Off-Helper; C:\Program Files (x86)\Hobbyist Software\Off Remote Helper\Off-Helper Service.exe [6656 2013-05-31] (Hobbyist Software) R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH) R2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH) R2 WTabletServiceCon; C:\Program Files\Tablet\Pen\WTabletServiceCon.exe [619904 2012-12-11] (Wacom Technology, Corp.) S3 aspnet_state; %SystemRoot%\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe [x] ==================== Drivers (Whitelisted) ==================== R3 AVMCOWAN; C:\Windows\System32\DRIVERS\AVMCOWAN.sys [79872 2009-06-10] (AVM GmbH) R0 CSCrySec; C:\Windows\System32\DRIVERS\CSCrySec.sys [84536 2011-06-02] (Infowatch) R1 CSVirtualDiskDrv; C:\Windows\System32\DRIVERS\CSVirtualDiskDrv.sys [66616 2011-06-02] (Infowatch) R3 FPCIBASE; C:\Windows\System32\DRIVERS\fpcibase.sys [899328 2009-06-10] (AVM Berlin) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458584 2012-06-19] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [613720 2012-11-02] (Kaspersky Lab) R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [28504 2012-08-02] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [29016 2012-09-03] (Kaspersky Lab) R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29528 2012-09-03] (Kaspersky Lab) R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [54104 2012-10-18] (Kaspersky Lab) R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [178008 2012-08-13] (Kaspersky Lab) R2 LMIInfo; C:\Program Files (x86)\LogMeIn\x64\RaInfo.sys [16056 2013-05-24] (LogMeIn, Inc.) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [8192 2005-03-29] () R0 sptd; C:\Windows\System32\Drivers\sptd.sys [564824 2013-05-20] (Duplex Secure Ltd.) R3 VMfilt; C:\Windows\System32\drivers\VMfilt64.sys [25600 2009-07-31] (Creative Technology Ltd.) S3 XFDriver64; C:\Program Files (x86)\Xfire2\XFDriver64.sys [17160 2013-03-14] (XFire) S3 XFDriver64; C:\Program Files (x86)\Xfire2\XFDriver64.sys [17160 2013-03-14] (XFire) U3 a343w5dy; C:\Windows\System32\Drivers\a343w5dy.sys [0 ] (Advanced Micro Devices) S4 LMIRfsClientNP; No ImagePath S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [x] S3 tsusbhub; system32\drivers\tsusbhub.sys [x] S3 VGPU; System32\drivers\rdvgkmd.sys [x] R3 WinRing0_1_2_0; \??\C:\Users\Benutzer\AppData\Local\Temp\tmpB337.tmp [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-07-06 21:02 - 2013-07-06 21:05 - 00001063 ____A C:\Users\Benutzer\Desktop\JRT.txt 2013-07-06 20:58 - 2013-07-06 20:58 - 00000000 ____D C:\Windows\ERUNT 2013-07-06 20:58 - 2013-07-06 20:58 - 00000000 ____D C:\JRT 2013-07-06 20:56 - 2013-07-06 20:56 - 00001947 ____A C:\Users\Benutzer\Desktop\AdwCleaner[S1].txt 2013-07-06 20:50 - 2013-07-06 20:50 - 00001931 ____A C:\AdwCleaner[S1].txt 2013-07-06 20:48 - 2013-07-06 20:49 - 00545954 ____A (Oleg N. Scherbakov) C:\Users\Benutzer\Desktop\JRT.exe 2013-07-06 20:48 - 2013-07-06 20:48 - 00650027 ____A C:\Users\Benutzer\Desktop\adwcleaner.exe 2013-07-06 19:55 - 2013-07-06 19:55 - 00000000 ____D C:\FRST 2013-07-06 19:51 - 2013-07-06 19:51 - 01934636 ____A (Farbar) C:\Users\Benutzer\Desktop\FRST64.exe 2013-07-06 14:02 - 2013-07-06 14:02 - 00262144 ____A C:\Windows\System32\config\elam 2013-07-04 22:07 - 2013-07-04 22:09 - 00000000 ____D C:\Program Files\Microsoft Platform SDK 2013-07-04 22:07 - 2013-07-04 22:07 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio .NET 2003 2013-07-04 22:05 - 2013-07-04 22:05 - 01349856 ____A (Microsoft Corporation) C:\Users\Benutzer\Downloads\PSDK-amd64.exe 2013-07-04 22:03 - 2013-07-04 22:56 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Dev-Cpp 2013-07-04 22:03 - 2013-07-04 22:03 - 00000000 ____D C:\Dev-Cpp 2013-07-04 22:02 - 2013-07-04 22:02 - 09326468 ____A C:\Users\Benutzer\Downloads\devcpp- 2013-07-04 21:54 - 2013-07-04 21:54 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_WinUsb_01009.Wdf 2013-07-04 17:03 - 2013-07-06 21:07 - 00001835 ____A C:\Windows\setupact.log 2013-07-04 17:03 - 2013-07-04 17:03 - 00000000 ____A C:\Windows\setuperr.log 2013-07-04 00:01 - 2013-07-04 00:01 - 00000000 ____D C:\Users\Benutzer\Documents\The Lord of the Rings Online 2013-07-03 23:57 - 2013-07-04 01:15 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Turbine 2013-07-03 23:57 - 2013-07-03 23:57 - 00000094 ____A C:\Users\Benutzer\AppData\Local\fusioncache.dat 2013-07-03 22:07 - 2013-07-03 22:07 - 00001199 ____A C:\Users\UpdatusUser\Desktop\Flip 3.4.7.lnk 2013-07-03 22:07 - 2013-07-03 22:07 - 00001199 ____A C:\Users\LogMeInRemoteUser\Desktop\Flip 3.4.7.lnk 2013-07-03 22:06 - 2013-07-03 22:06 - 05907981 ____A (Atmel) C:\Users\Benutzer\Downloads\Flip Installer - 2013-07-03 21:54 - 2013-07-03 22:00 - 00000000 ____D C:\Windows XP 2013-07-03 21:26 - 2013-07-03 22:47 - 00000000 ____D C:\Users\Benutzer\.VirtualBox 2013-07-03 21:26 - 2013-07-03 21:26 - 00000000 ____D C:\Users\Benutzer\VirtualBox VMs 2013-07-03 21:24 - 2013-07-03 21:24 - 00000000 ____D C:\Program Files\Oracle 2013-07-03 21:24 - 2013-07-03 21:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-07-03 21:24 - 2013-06-21 16:01 - 00238352 ____A (Oracle Corporation) C:\Windows\System32\Drivers\VBoxDrv.sys 2013-07-03 21:24 - 2013-06-21 16:00 - 00120080 ____A (Oracle Corporation) C:\Windows\System32\Drivers\VBoxUSBMon.sys 2013-07-03 21:17 - 2013-07-03 21:22 - 99246864 ____A (Oracle Corporation) C:\Users\Benutzer\Downloads\VirtualBox-4.2.14-86644-Win.exe 2013-07-03 21:17 - 2013-07-03 21:18 - 11639710 ____A C:\Users\Benutzer\Downloads\Oracle_VM_VirtualBox_Extension_Pack-4.2.14-86644.vbox-extpack 2013-07-02 23:46 - 2013-07-02 23:46 - 00889416 ____A (Microsoft Corporation) C:\Users\Benutzer\Downloads\dotNetFx40_Full_setup.exe 2013-07-02 23:43 - 2006-05-09 13:32 - 00000000 ____D C:\Users\Benutzer\Downloads\flip-2_4_6 2013-07-02 23:34 - 2013-07-02 23:34 - 00263592 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2013-07-02 23:34 - 2013-07-02 23:34 - 00175016 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2013-07-02 23:34 - 2013-07-02 23:34 - 00175016 ____A (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2013-07-02 23:34 - 2013-07-02 23:34 - 00096168 ____A (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2013-07-02 23:34 - 2013-07-02 23:34 - 00000000 ____D C:\Program Files (x86)\Java 2013-07-02 23:04 - 2013-07-02 23:04 - 00032768 ____A C:\Windows\IsUninst.exe 2013-07-02 22:56 - 2013-07-02 22:56 - 04551939 ____A C:\Users\Benutzer\Downloads\flip-2_4_6.zip 2013-07-02 22:35 - 2013-07-02 22:35 - 00127860 ____A C:\Users\Benutzer\Downloads\memtest86+-4.20.usb.installer.zip 2013-07-02 15:39 - 2013-07-02 15:39 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2013-07-02 00:45 - 2013-07-02 00:45 - 00000000 ____D C:\Program Files (x86)\NirSoft 2013-07-02 00:44 - 2013-07-02 00:44 - 00141192 ____A C:\Users\Benutzer\Downloads\bluescreenview_setup_1.51.exe 2013-07-02 00:22 - 2013-07-03 21:04 - 00000000 ____D C:\Windows\Minidump 2013-07-01 23:39 - 2013-07-01 23:39 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies 2013-07-01 23:36 - 2013-06-21 14:06 - 27781920 ____A (NVIDIA Corporation) C:\Windows\System32\nvoglv64.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 25256224 ____A (NVIDIA Corporation) C:\Windows\System32\nvcompiler.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 21102368 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 17560352 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 13411896 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 11235104 ____A (NVIDIA Corporation) C:\Windows\System32\Drivers\nvlddmkm.sys 2013-07-01 23:36 - 2013-06-21 14:06 - 09239344 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuda.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 07687592 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 07641832 ____A (NVIDIA Corporation) C:\Windows\System32\nvopencl.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 06324360 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 02953504 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuvid.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 02777888 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 02363680 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuvenc.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 02002720 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 01832224 ____A (NVIDIA Corporation) C:\Windows\System32\nvdispco6432049.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 01511712 ____A (NVIDIA Corporation) C:\Windows\System32\nvdispgenco6432049.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00925648 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00572704 ____A (NVIDIA Corporation) C:\Windows\System32\NvFBC64.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00570656 ____A (NVIDIA Corporation) C:\Windows\System32\NvIFR64.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00467232 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00465184 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00266448 ____A (NVIDIA Corporation) C:\Windows\System32\nvinitx.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00218592 ____A (NVIDIA Corporation) C:\Windows\System32\nvoglshim64.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00214448 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00181488 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2013-06-30 22:51 - 2013-06-30 22:51 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_xusb21_01009.Wdf 2013-06-30 22:51 - 2013-06-30 22:51 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_MijXfilt_01009.Wdf 2013-06-30 18:25 - 2013-06-30 18:25 - 00000000 ____D C:\Users\Benutzer\Documents\Wizards of the Coast 2013-06-29 01:01 - 2013-06-29 01:01 - 00000000 ____D C:\Games 2013-06-29 00:18 - 2013-06-29 00:18 - 04396440 ____A (Piriform Ltd) C:\Users\Benutzer\Downloads\ccsetup403.exe 2013-06-27 00:44 - 2013-07-06 21:09 - 00000266 ____A C:\Windows\Tasks\AutoKMS.job 2013-06-27 00:44 - 2013-06-27 17:33 - 00000000 ____D C:\Windows\AutoKMS 2013-06-26 23:29 - 2013-06-30 17:28 - 00000000 ____D C:\Users\Benutzer\Documents\RIFT 2013-06-25 20:41 - 2013-06-25 20:43 - 00012121 ____A C:\Users\Benutzer\AppData\Roaming\PStrip.ini 2013-06-25 07:04 - 2013-06-25 07:04 - 00745495 ____A C:\Users\Benutzer\Downloads\MCP2200 Windows Driver 2013-02-21.zip 2013-06-24 20:02 - 2013-06-24 20:02 - 00000063 ____A C:\Windows\wininit.ini 2013-06-24 20:02 - 2006-09-30 11:36 - 00013008 ____A C:\Windows\System32\Drivers\pstrip64.sys 2013-06-24 20:01 - 2013-06-24 20:01 - 01411304 ____A (EnTech Taiwan) C:\Users\Benutzer\Downloads\pstrip.exe 2013-06-24 19:41 - 2013-06-24 19:41 - 01420256 ____A (techPowerUp (www.techpowerup.com)) C:\Users\Benutzer\Downloads\GPU-Z_ASUS_ROG_0.7.2.exe 2013-06-24 19:24 - 2013-06-24 19:24 - 01198007 ____A (CPUID, Inc. ) C:\Users\Benutzer\Downloads\MemtweakIt-1017-setup.exe 2013-06-24 19:10 - 2013-06-24 19:19 - 391842315 ___RA C:\Users\Benutzer\Downloads\RealBench_v1.051.rar 2013-06-24 00:36 - 2013-06-24 00:36 - 00000000 ____D C:\Users\Benutzer\Downloads\Moonlight Lady 2013-06-24 00:33 - 2013-06-24 00:33 - 00019727 ____A C:\Users\Benutzer\Downloads\hshare.net.Moonlight.Lady.EP01-05.ENG.SUB.FILES.rar 2013-06-23 22:17 - 2013-06-23 22:23 - 00001981 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_prc_drk.log 2013-06-23 22:12 - 2013-06-23 22:15 - 00001982 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_prc_eye.log 2013-06-23 22:11 - 2013-06-23 22:11 - 00001862 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_003.log 2013-06-23 22:11 - 2013-06-23 22:11 - 00001861 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_001.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001862 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_002.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001860 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_pro_col.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001860 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_war.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001860 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_rog.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001860 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_mag.log 2013-06-23 22:09 - 2013-06-23 22:10 - 00001861 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_prc_one.log 2013-06-23 22:09 - 2013-06-23 22:09 - 00001861 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_prc_seb.log 2013-06-23 21:29 - 2013-06-23 21:29 - 10319008 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_WarriorItemPack2.exe 2013-06-23 21:29 - 2013-06-23 21:29 - 07023824 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_MageItemPack2.exe 2013-06-23 21:28 - 2013-06-23 21:51 - 1272222488 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_MarkOfTheAssassin.exe 2013-06-23 21:28 - 2013-06-23 21:42 - 885015120 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_Legacy.exe 2013-06-23 21:28 - 2013-06-23 21:29 - 07645904 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_RogueItemPack2.exe 2013-06-23 21:28 - 2013-06-23 21:28 - 04826056 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_WarriorItemPack.exe 2013-06-23 21:27 - 2013-06-23 21:27 - 06229408 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_RogueItemPack.exe 2013-06-23 21:27 - 2013-06-23 21:27 - 05697792 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_MageItemPack.exe 2013-06-23 21:27 - 2013-06-23 21:27 - 01638048 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_SignatureEdition.exe 2013-06-23 21:26 - 2013-06-23 21:26 - 33120856 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_ExiledPrince.exe 2013-06-23 21:26 - 2013-06-23 21:26 - 14142624 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_BlackEmporium.exe 2013-06-23 18:41 - 2013-06-23 18:41 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Freemium 2013-06-23 18:38 - 2013-06-23 18:39 - 00000000 ____D C:\Users\Benutzer\AppData\Local\DownloadGuide 2013-06-23 18:38 - 2013-06-23 18:38 - 00444400 ____A C:\Users\Benutzer\Downloads\DLG_free-clever-privacy_chip_de-DE.exe 2013-06-23 18:25 - 2013-06-23 21:25 - 00004064 ____A C:\shared.log 2013-06-23 18:25 - 2013-06-23 18:25 - 00003887 ____A C:\Users\Benutzer\Documents\Dragon Age 2 1.04.log 2013-06-23 18:24 - 2013-06-23 18:25 - 48330216 ____A (BioWare) C:\Users\Benutzer\Downloads\DragonAge2-1.04.exe 2013-06-23 18:19 - 2013-06-23 18:19 - 00000000 ____D C:\ProgramData\EA Core 2013-06-23 18:09 - 2013-06-23 18:09 - 00000000 ____D C:\Program Files (x86)\The Elder Scrolls Arena 2013-06-23 18:08 - 2013-06-23 18:08 - 00000000 ____D C:\Users\Benutzer\AppData\Local\DOSBox 2013-06-23 18:06 - 2013-06-23 18:06 - 00000000 ____D C:\Program Files (x86)\DOSBox-0.74 2013-06-23 17:57 - 2013-06-23 17:58 - 01448809 ____A (DOSBox Team) C:\Users\Benutzer\Downloads\DOSBox0.74-win32-installer.exe 2013-06-23 17:55 - 2013-06-23 18:22 - 155920571 ____A C:\Users\Benutzer\Downloads\DFInstall.zip 2013-06-23 17:54 - 2013-06-23 17:55 - 09190807 ____A C:\Users\Benutzer\Downloads\Arena106.exe 2013-06-23 17:53 - 2008-10-15 06:22 - 05631312 ____A (Microsoft Corporation) C:\Windows\System32\D3DX9_40.dll 2013-06-23 17:53 - 2008-10-15 06:22 - 04379984 ____A (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2013-06-23 17:53 - 2008-10-15 06:22 - 02605920 ____A (Microsoft Corporation) C:\Windows\System32\D3DCompiler_40.dll 2013-06-23 17:53 - 2008-10-15 06:22 - 02036576 ____A (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2013-06-23 17:53 - 2008-10-15 06:22 - 00519000 ____A (Microsoft Corporation) C:\Windows\System32\d3dx10_40.dll 2013-06-23 17:53 - 2008-10-15 06:22 - 00452440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2013-06-23 16:43 - 2013-06-23 16:45 - 00003763 ____A C:\Users\Benutzer\Documents\Dragon Age Origins 1.05.log 2013-06-23 16:42 - 2013-06-23 16:43 - 101553128 ____A (BioWare) C:\Users\Benutzer\Downloads\DragonAge1.05.exe 2013-06-23 15:54 - 2013-06-23 15:54 - 00001289 ____A C:\Users\Benutzer\Documents\DAO Addins Updater.log 2013-06-23 15:47 - 2013-06-23 15:51 - 00003259 ____A C:\Users\Benutzer\Documents\Dragon Age Origins 1.04.log 2013-06-23 15:14 - 2013-06-23 15:14 - 00000000 ____D C:\ProgramData\BioWare 2013-06-23 15:13 - 2013-06-23 18:17 - 00000000 ____D C:\Users\Benutzer\Documents\BioWare 2013-06-23 15:13 - 2013-06-23 15:13 - 00000000 ____D C:\Users\Benutzer\AppData\Local\EA Core 2013-06-23 15:12 - 2013-06-23 16:43 - 00000000 ____D C:\Program Files (x86)\Electronic Arts 2013-06-23 15:11 - 2013-06-23 15:11 - 00000000 ____D C:\Windows\1C4551A64743409391E41477CD655043.TMP 2013-06-23 14:59 - 2013-06-23 16:44 - 00000000 ____D C:\Program Files (x86)\Dragon Age 2013-06-23 14:59 - 2013-06-23 15:12 - 00023349 ____A C:\Users\Benutzer\Documents\Install Dragon Age Origins.log 2013-06-23 11:32 - 2013-07-01 00:23 - 00000000 ____D C:\Program Files (x86)\Warhammer Online - Age of Reckoning 2013-06-23 11:30 - 2013-06-23 11:31 - 42929231 ____A C:\Users\Benutzer\Downloads\WarhammerOnlineInstaller.exe 2013-06-23 06:35 - 2013-06-23 06:35 - 05126104 ____A (Piriform Ltd) C:\Users\Benutzer\Downloads\spsetup122.exe 2013-06-23 04:15 - 2013-07-03 23:54 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\.minecraft 2013-06-23 04:13 - 2013-06-23 08:46 - 00000000 ____D C:\Program Files (x86)\GUILD WARS 2013-06-23 04:13 - 2013-06-23 04:13 - 00000000 ____D C:\Users\Benutzer\Documents\GUILD WARS 2013-06-23 04:12 - 2013-06-23 04:12 - 00105234 ____A C:\Users\Benutzer\Downloads\gwsetup(1).zip 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\wacomid-desktop-launcher.DCFD4B89A63EE70BC162777F06D4B93B6397AEC7.1 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Wacom 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\ProgramData\Wacom 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Program Files (x86)\Bamboo Dock 2013-06-22 01:54 - 2013-06-22 01:55 - 00000002 ____A C:\Users\Benutzer\.bdockinstall.log 2013-06-22 01:54 - 2013-06-22 01:54 - 30011936 ____A C:\Users\Benutzer\Downloads\dock_setup.exe 2013-06-22 01:49 - 2013-06-22 01:49 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_wachidrouter_01009.Wdf 2013-06-22 01:41 - 2013-06-22 01:41 - 00000000 ____D C:\Users\Benutzer\Documents\ArtRage Paintings 2013-06-22 01:41 - 2013-06-22 01:41 - 00000000 ____D C:\ProgramData\Caphyon 2013-06-22 01:41 - 2013-06-22 01:41 - 00000000 ____D C:\Program Files (x86)\Ambient Design 2013-06-22 01:39 - 2013-06-22 01:41 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Ambient Design 2013-06-22 01:36 - 2013-06-22 01:37 - 82461824 ____A (Ambient Design) C:\Users\Benutzer\Downloads\install_artrage_4.exe 2013-06-22 01:16 - 2013-06-22 01:16 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\WTablet 2013-06-22 01:15 - 2013-06-22 01:15 - 00000000 ____D C:\Program Files\TabletPlugins 2013-06-22 01:15 - 2013-06-22 01:15 - 00000000 ____D C:\Program Files\Tablet 2013-06-22 01:15 - 2013-06-22 01:15 - 00000000 ____D C:\Program Files (x86)\TabletPlugins 2013-06-22 01:15 - 2012-12-11 13:07 - 01981312 ____A (Wacom Technology, Corp.) C:\Windows\System32\Pen_Tablet.dll 2013-06-22 01:15 - 2012-12-11 13:07 - 01974144 ____A (Wacom Technology, Corp.) C:\Windows\System32\Pen_Touch_Tablet.dll 2013-06-22 01:15 - 2012-12-11 13:07 - 01843584 ____A (Wacom Technology, Corp.) C:\Windows\System32\Wintab32.dll 2013-06-22 01:15 - 2012-12-11 13:07 - 01840000 ____A (Wacom Technology, Corp.) C:\Windows\System32\WacomMT.dll 2013-06-22 01:15 - 2012-12-11 13:07 - 01628544 ____A (Wacom Technology, Corp.) C:\Windows\SysWOW64\Pen_Tablet.dll 2013-06-22 01:15 - 2012-12-11 13:07 - 01621888 ____A (Wacom Technology, Corp.) C:\Windows\SysWOW64\Pen_Touch_Tablet.dll 2013-06-22 01:15 - 2012-12-11 13:07 - 01509760 ____A (Wacom Technology, Corp.) C:\Windows\SysWOW64\Wintab32.dll 2013-06-22 01:15 - 2012-12-11 13:07 - 01505664 ____A (Wacom Technology, Corp.) C:\Windows\SysWOW64\WacomMT.dll 2013-06-22 01:15 - 2012-12-03 16:36 - 00081824 ____A (Wacom Technology) C:\Windows\System32\Drivers\wachidrouter.sys 2013-06-22 01:15 - 2012-12-03 16:36 - 00013728 ____A (Windows (R) Win 7 DDK provider) C:\Windows\System32\Drivers\hidkmdf.sys 2013-06-22 01:15 - 2012-11-15 09:41 - 00015776 ____A (Wacom Technology) C:\Windows\System32\Drivers\wacomrouterfilter.sys 2013-06-22 01:14 - 2013-06-22 01:15 - 38455200 ____A C:\Users\Benutzer\Downloads\cons532-1_int.exe 2013-06-21 16:00 - 2013-06-21 16:00 - 00204048 ____A (Oracle Corporation) C:\Windows\System32\VBoxNetFltNobj.dll 2013-06-21 16:00 - 2013-06-21 16:00 - 00146704 ____A (Oracle Corporation) C:\Windows\System32\Drivers\VBoxNetFlt.sys 2013-06-21 16:00 - 2013-06-21 16:00 - 00131856 ____A (Oracle Corporation) C:\Windows\System32\Drivers\VBoxNetAdp.sys 2013-06-21 05:16 - 2013-06-21 05:16 - 00566048 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2013-06-19 22:40 - 2013-07-06 21:09 - 00000000 ___RD C:\Users\Benutzer\Dropbox 2013-06-19 22:37 - 2013-07-06 21:09 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Dropbox 2013-06-19 22:36 - 2013-06-19 22:36 - 34935760 ____A (Dropbox, Inc.) C:\Users\Benutzer\Downloads\Dropbox 2.2.3.exe 2013-06-18 17:54 - 2013-06-18 17:55 - 00000000 ____D C:\Program Files (x86)\Tinkerforge 2013-06-18 17:53 - 2013-06-18 17:54 - 18917020 ____A C:\Users\Benutzer\Downloads\brickv_windows_2_0_5.exe 2013-06-18 17:53 - 2013-06-18 17:53 - 04970233 ____A C:\Users\Benutzer\Downloads\brickd_windows_2_0_5.exe 2013-06-18 17:06 - 2013-06-18 17:06 - 04378864 ____A (Piriform Ltd) C:\Users\Benutzer\Downloads\ccsetup402.exe 2013-06-18 01:45 - 2013-06-18 01:45 - 02002832 ____A C:\Users\Benutzer\Downloads\Red-Collection---AnnaRoma-UPGRADE-5.zip 2013-06-18 01:44 - 2013-06-18 01:44 - 00040791 ____A C:\Users\Benutzer\Downloads\ROG-v1.zip 2013-06-18 01:40 - 2013-06-18 01:40 - 00000000 ____D C:\Program Files (x86)\RocketDock 2013-06-18 01:39 - 2013-06-18 01:40 - 06463660 ____A (Punk Software ) C:\Users\Benutzer\Downloads\RocketDock-v1.3.5.exe 2013-06-17 23:35 - 2013-07-02 22:44 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Skyrim 2013-06-17 23:35 - 2013-06-17 23:35 - 00000000 ____D C:\Users\Benutzer\Documents\Witcher 2 2013-06-17 23:03 - 2013-06-17 23:03 - 00000000 ____D C:\Program Files (x86)\CPU-Z 2013-06-17 23:02 - 2013-06-23 04:17 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\NVIDIA 2013-06-17 23:02 - 2013-06-17 23:02 - 00000000 ____D C:\Program Files (x86)\GPU-Z 2013-06-17 23:01 - 2013-06-17 23:01 - 01405920 ____A (techPowerUp (www.techpowerup.com)) C:\Users\Benutzer\Downloads\GPU-Z_ASUS_ROG_0.7.1.exe 2013-06-17 23:01 - 2013-06-17 23:01 - 01373832 ____A (CPUID, Inc. ) C:\Users\Benutzer\Downloads\cpu-z_1.64-rog-setup-en.exe 2013-06-17 22:55 - 2013-06-17 22:56 - 00000000 ____D C:\Program Files (x86)\TurnedOnTimesView 2013-06-17 22:52 - 2013-06-17 22:52 - 00064922 ____A C:\Users\Benutzer\Downloads\turnedontimesview.zip 2013-06-17 02:59 - 2013-07-06 19:02 - 00000020 ____A C:\Users\Benutzer\AppData\Roaming\Network Meter_Usage.ini 2013-06-17 01:00 - 2013-07-06 19:00 - 00005690 ____A C:\Users\Benutzer\Network_Meter_Data.js 2013-06-17 00:38 - 2013-06-17 00:38 - 00001138 ____A C:\Users\Benutzer\AppData\Roaming\Network Meter_Settings.ini 2013-06-17 00:38 - 2013-06-17 00:38 - 00000842 ____A C:\Users\Benutzer\AppData\Roaming\Drives Meter_Settings.ini 2013-06-17 00:37 - 2013-06-17 00:37 - 00000297 ____A C:\Users\Benutzer\AppData\Roaming\GPU MeterV2_Settings.ini 2013-06-17 00:35 - 2013-06-17 23:33 - 00000095 ____A C:\Users\Benutzer\AppData\Roaming\Control System_Settings.ini 2013-06-17 00:35 - 2013-06-17 00:36 - 00000627 ____A C:\Users\Benutzer\AppData\Roaming\All CPU MeterV3_Settings.ini 2013-06-17 00:33 - 2013-06-20 01:36 - 00000000 ____D C:\Program Files (x86)\PCMeter 2013-06-16 03:08 - 2013-07-06 17:15 - 00000000 ____D C:\Users\Benutzer\Desktop 2 2013-06-16 03:08 - 2013-07-05 18:58 - 00000000 ____D C:\Users\Benutzer\Desktop 3 2013-06-16 03:08 - 2013-07-04 19:06 - 00000000 ____D C:\Users\Benutzer\Desktop 4 2013-06-16 03:03 - 2013-06-16 03:04 - 00002410 ____A C:\Windows\SysWOW64\cplLogon.tsk 2013-06-16 03:03 - 2013-06-16 03:03 - 02218077 ____A (Daniel Rebelo ) C:\Users\Benutzer\Downloads\Logon Screen 2.56.exe 2013-06-16 03:03 - 2013-06-16 03:03 - 00000000 ____D C:\Program Files\Logon Screen 2013-06-16 02:46 - 2013-06-16 02:48 - 00000000 ___AD C:\Windows\SysWOW64\ROG_Video Intro dir 2013-06-16 02:46 - 2013-06-16 02:43 - 00680960 ____A (ASUSTeK Computer Inc.) C:\Windows\SysWOW64\ROGThemeSetup.exe 2013-06-16 02:46 - 2013-06-16 02:43 - 00201728 ____A (ScreenTime Media) C:\Windows\SysWOW64\ROG_Video Intro .scr 2013-06-16 02:46 - 2011-02-25 08:19 - 02871808 ____A (Microsoft Corporation) C:\Windows\explorer.exe.rogbak 2013-06-16 02:25 - 2013-06-16 02:26 - 30789811 ____A C:\Users\Benutzer\Downloads\ROG_THEME_V10014_Win7.zip 2013-06-16 02:10 - 2013-07-06 21:06 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Dexpot 2013-06-16 02:10 - 2013-06-16 02:10 - 00000000 ____D C:\Program Files (x86)\Dexpot 2013-06-16 02:06 - 2013-06-16 02:06 - 02796815 ____A (Dexpot GbR) C:\Users\Benutzer\Downloads\dexpot_169_r2285.exe 2013-06-16 01:53 - 2013-06-16 01:53 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Bump Technologies, Inc 2013-06-16 01:50 - 2013-06-16 01:50 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Bump Technologies, Inc 2013-06-16 01:49 - 2013-06-16 01:50 - 16628120 ____A (Bump Technologies, Inc. ) C:\Users\Benutzer\Downloads\BumpTop-2.1-6211.exe 2013-06-15 02:13 - 2013-06-08 16:08 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2013-06-15 02:13 - 2013-06-08 16:07 - 19233792 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2013-06-15 02:13 - 2013-06-08 16:06 - 15404544 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2013-06-15 02:13 - 2013-06-08 16:06 - 02648064 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2013-06-15 02:13 - 2013-06-08 16:06 - 00526336 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll 2013-06-15 02:13 - 2013-06-08 14:28 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2013-06-15 02:13 - 2013-06-08 13:42 - 01141248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-06-15 02:13 - 2013-06-08 13:40 - 14327808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-06-15 02:13 - 2013-06-08 13:40 - 13760512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-06-15 02:13 - 2013-06-08 13:40 - 02046976 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-06-15 02:13 - 2013-06-08 13:40 - 00391168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-06-15 02:13 - 2013-06-08 13:13 - 02706432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-06-13 01:23 - 2013-05-17 03:25 - 02877440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-06-13 01:23 - 2013-05-17 03:25 - 01767936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-06-13 01:23 - 2013-05-17 03:25 - 00690688 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-06-13 01:23 - 2013-05-17 03:25 - 00493056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-06-13 01:23 - 2013-05-17 03:25 - 00109056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-06-13 01:23 - 2013-05-17 03:25 - 00061440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-06-13 01:23 - 2013-05-17 03:25 - 00039424 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-06-13 01:23 - 2013-05-17 03:25 - 00033280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-06-13 01:23 - 2013-05-17 02:59 - 02241024 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll 2013-06-13 01:23 - 2013-05-17 02:59 - 00051712 ____A (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe 2013-06-13 01:23 - 2013-05-17 02:58 - 03958784 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll 2013-06-13 01:23 - 2013-05-17 02:58 - 00855552 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll 2013-06-13 01:23 - 2013-05-17 02:58 - 00603136 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll 2013-06-13 01:23 - 2013-05-17 02:58 - 00136704 ____A (Microsoft Corporation) C:\Windows\System32\iesysprep.dll 2013-06-13 01:23 - 2013-05-17 02:58 - 00067072 ____A (Microsoft Corporation) C:\Windows\System32\iesetup.dll 2013-06-13 01:23 - 2013-05-17 02:58 - 00053248 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll 2013-06-13 01:23 - 2013-05-17 02:58 - 00039936 ____A (Microsoft Corporation) C:\Windows\System32\iernonce.dll 2013-06-13 01:23 - 2013-05-14 14:23 - 00089600 ____A (Microsoft Corporation) C:\Windows\System32\RegisterIEPKEYs.exe 2013-06-13 01:23 - 2013-05-14 10:40 - 00071680 ____A (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-06-12 16:52 - 2013-06-12 16:52 - 13081608 ____A (Microsoft Corporation) C:\Users\Benutzer\Downloads\Silverlight_x64.exe 2013-06-12 16:52 - 2013-06-12 16:52 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2013-06-12 16:52 - 2013-06-12 16:52 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-06-12 12:58 - 2013-05-13 07:51 - 01464320 ____A (Microsoft Corporation) C:\Windows\System32\crypt32.dll 2013-06-12 12:58 - 2013-05-13 07:51 - 00184320 ____A (Microsoft Corporation) C:\Windows\System32\cryptsvc.dll 2013-06-12 12:58 - 2013-05-13 07:51 - 00139776 ____A (Microsoft Corporation) C:\Windows\System32\cryptnet.dll 2013-06-12 12:58 - 2013-05-13 07:50 - 00052224 ____A (Microsoft Corporation) C:\Windows\System32\certenc.dll 2013-06-12 12:58 - 2013-05-13 06:45 - 01160192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-06-12 12:58 - 2013-05-13 06:45 - 00140288 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2013-06-12 12:58 - 2013-05-13 06:45 - 00103936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2013-06-12 12:58 - 2013-05-13 05:43 - 01192448 ____A (Microsoft Corporation) C:\Windows\System32\certutil.exe 2013-06-12 12:58 - 2013-05-13 05:08 - 00903168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe 2013-06-12 12:58 - 2013-05-13 05:08 - 00043008 ____A (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll 2013-06-12 12:58 - 2013-05-10 07:49 - 00030720 ____A (Microsoft Corporation) C:\Windows\System32\cryptdlg.dll 2013-06-12 12:58 - 2013-05-10 05:20 - 00024576 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll 2013-06-12 12:58 - 2013-05-08 08:39 - 01910632 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys 2013-06-12 12:58 - 2013-04-26 07:51 - 00751104 ____A (Microsoft Corporation) C:\Windows\System32\win32spl.dll 2013-06-12 12:58 - 2013-04-26 06:55 - 00492544 ____A (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2013-06-12 12:58 - 2013-04-17 09:02 - 01230336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2013-06-12 12:58 - 2013-04-17 08:24 - 01424384 ____A (Microsoft Corporation) C:\Windows\System32\WindowsCodecs.dll 2013-06-12 12:57 - 2013-04-26 01:30 - 01505280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2013-06-12 12:57 - 2013-04-01 00:52 - 01887232 ____A (Microsoft Corporation) C:\Windows\System32\d3d11.dll 2013-06-10 21:10 - 2013-06-10 21:11 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2013-06-10 21:10 - 2013-06-10 21:11 - 00000000 ____D C:\Program Files\iTunes 2013-06-10 21:10 - 2013-06-10 21:11 - 00000000 ____D C:\Program Files (x86)\iTunes 2013-06-10 21:10 - 2013-06-10 21:10 - 00000000 ____D C:\Program Files\iPod ==================== One Month Modified Files and Folders ======= 2013-07-06 21:11 - 2013-05-19 22:46 - 02051889 ____A C:\Windows\WindowsUpdate.log 2013-07-06 21:09 - 2013-06-27 00:44 - 00000266 ____A C:\Windows\Tasks\AutoKMS.job 2013-07-06 21:09 - 2013-06-19 22:40 - 00000000 ___RD C:\Users\Benutzer\Dropbox 2013-07-06 21:09 - 2013-06-19 22:37 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Dropbox 2013-07-06 21:09 - 2013-05-19 23:14 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2013-07-06 21:08 - 2013-05-21 18:52 - 00000000 ____D C:\Users\Benutzer\AppData\Local\LogMeIn Hamachi 2013-07-06 21:07 - 2013-07-04 17:03 - 00001835 ____A C:\Windows\setupact.log 2013-07-06 21:07 - 2013-05-19 23:01 - 00000000 ____D C:\ProgramData\NVIDIA 2013-07-06 21:07 - 2009-07-14 07:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT 2013-07-06 21:06 - 2013-06-16 02:10 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Dexpot 2013-07-06 21:05 - 2013-07-06 21:02 - 00001063 ____A C:\Users\Benutzer\Desktop\JRT.txt 2013-07-06 21:01 - 2009-07-14 06:45 - 00021408 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-07-06 21:01 - 2009-07-14 06:45 - 00021408 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-07-06 20:58 - 2013-07-06 20:58 - 00000000 ____D C:\Windows\ERUNT 2013-07-06 20:58 - 2013-07-06 20:58 - 00000000 ____D C:\JRT 2013-07-06 20:56 - 2013-07-06 20:56 - 00001947 ____A C:\Users\Benutzer\Desktop\AdwCleaner[S1].txt 2013-07-06 20:50 - 2013-07-06 20:50 - 00001931 ____A C:\AdwCleaner[S1].txt 2013-07-06 20:49 - 2013-07-06 20:48 - 00545954 ____A (Oleg N. Scherbakov) C:\Users\Benutzer\Desktop\JRT.exe 2013-07-06 20:48 - 2013-07-06 20:48 - 00650027 ____A C:\Users\Benutzer\Desktop\adwcleaner.exe 2013-07-06 20:18 - 2013-05-20 00:36 - 00000884 ____A C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-07-06 19:55 - 2013-07-06 19:55 - 00000000 ____D C:\FRST 2013-07-06 19:51 - 2013-07-06 19:51 - 01934636 ____A (Farbar) C:\Users\Benutzer\Desktop\FRST64.exe 2013-07-06 19:02 - 2013-06-17 02:59 - 00000020 ____A C:\Users\Benutzer\AppData\Roaming\Network Meter_Usage.ini 2013-07-06 19:02 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Sidebar 2013-07-06 19:00 - 2013-06-17 01:00 - 00005690 ____A C:\Users\Benutzer\Network_Meter_Data.js 2013-07-06 18:39 - 2013-05-19 23:20 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Skype 2013-07-06 17:15 - 2013-06-16 03:08 - 00000000 ____D C:\Users\Benutzer\Desktop 2 2013-07-06 14:02 - 2013-07-06 14:02 - 00262144 ____A C:\Windows\System32\config\elam 2013-07-06 00:24 - 2013-05-21 18:49 - 00000000 ____D C:\ProgramData\LogMeIn 2013-07-05 18:58 - 2013-06-16 03:08 - 00000000 ____D C:\Users\Benutzer\Desktop 3 2013-07-04 22:56 - 2013-07-04 22:03 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Dev-Cpp 2013-07-04 22:19 - 2013-05-28 01:22 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-07-04 22:18 - 2013-05-28 01:22 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2013-07-04 22:09 - 2013-07-04 22:07 - 00000000 ____D C:\Program Files\Microsoft Platform SDK 2013-07-04 22:07 - 2013-07-04 22:07 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio .NET 2003 2013-07-04 22:05 - 2013-07-04 22:05 - 01349856 ____A (Microsoft Corporation) C:\Users\Benutzer\Downloads\PSDK-amd64.exe 2013-07-04 22:03 - 2013-07-04 22:03 - 00000000 ____D C:\Dev-Cpp 2013-07-04 22:02 - 2013-07-04 22:02 - 09326468 ____A C:\Users\Benutzer\Downloads\devcpp- 2013-07-04 21:54 - 2013-07-04 21:54 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_WinUsb_01009.Wdf 2013-07-04 19:37 - 2009-07-14 19:58 - 00710782 ____A C:\Windows\System32\perfh007.dat 2013-07-04 19:37 - 2009-07-14 19:58 - 00153874 ____A C:\Windows\System32\perfc007.dat 2013-07-04 19:37 - 2009-07-14 07:13 - 01650772 ____A C:\Windows\System32\PerfStringBackup.INI 2013-07-04 19:06 - 2013-06-16 03:08 - 00000000 ____D C:\Users\Benutzer\Desktop 4 2013-07-04 19:05 - 2013-05-20 00:00 - 00000000 ____D C:\Program Files (x86)\Steam 2013-07-04 17:03 - 2013-07-04 17:03 - 00000000 ____A C:\Windows\setuperr.log 2013-07-04 17:02 - 2013-05-19 23:25 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-07-04 01:15 - 2013-07-03 23:57 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Turbine 2013-07-04 00:40 - 2013-05-21 19:13 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\vlc 2013-07-04 00:01 - 2013-07-04 00:01 - 00000000 ____D C:\Users\Benutzer\Documents\The Lord of the Rings Online 2013-07-03 23:57 - 2013-07-03 23:57 - 00000094 ____A C:\Users\Benutzer\AppData\Local\fusioncache.dat 2013-07-03 23:57 - 2013-05-20 02:00 - 01677006 ____A C:\Windows\SysWOW64\PerfStringBackup.INI 2013-07-03 23:57 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\Registration 2013-07-03 23:54 - 2013-06-23 04:15 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\.minecraft 2013-07-03 22:50 - 2013-05-28 01:52 - 00000000 ____D C:\Users\Benutzer\Documents\Outlook-Dateien 2013-07-03 22:47 - 2013-07-03 21:26 - 00000000 ____D C:\Users\Benutzer\.VirtualBox 2013-07-03 22:07 - 2013-07-03 22:07 - 00001199 ____A C:\Users\UpdatusUser\Desktop\Flip 3.4.7.lnk 2013-07-03 22:07 - 2013-07-03 22:07 - 00001199 ____A C:\Users\LogMeInRemoteUser\Desktop\Flip 3.4.7.lnk 2013-07-03 22:06 - 2013-07-03 22:06 - 05907981 ____A (Atmel) C:\Users\Benutzer\Downloads\Flip Installer - 2013-07-03 22:06 - 2013-06-04 17:03 - 00000000 ____D C:\Program Files (x86)\Atmel 2013-07-03 22:00 - 2013-07-03 21:54 - 00000000 ____D C:\Windows XP 2013-07-03 21:26 - 2013-07-03 21:26 - 00000000 ____D C:\Users\Benutzer\VirtualBox VMs 2013-07-03 21:26 - 2013-05-19 22:52 - 00000000 ____D C:\users\Benutzer 2013-07-03 21:24 - 2013-07-03 21:24 - 00000000 ____D C:\Program Files\Oracle 2013-07-03 21:24 - 2013-07-03 21:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-07-03 21:22 - 2013-07-03 21:17 - 99246864 ____A (Oracle Corporation) C:\Users\Benutzer\Downloads\VirtualBox-4.2.14-86644-Win.exe 2013-07-03 21:18 - 2013-07-03 21:17 - 11639710 ____A C:\Users\Benutzer\Downloads\Oracle_VM_VirtualBox_Extension_Pack-4.2.14-86644.vbox-extpack 2013-07-03 21:04 - 2013-07-02 00:22 - 00000000 ____D C:\Windows\Minidump 2013-07-03 19:50 - 2013-06-05 09:37 - 00000000 ____D C:\Users\Benutzer\Desktop\HP Pavilion zd8318EA 2013-07-02 23:46 - 2013-07-02 23:46 - 00889416 ____A (Microsoft Corporation) C:\Users\Benutzer\Downloads\dotNetFx40_Full_setup.exe 2013-07-02 23:34 - 2013-07-02 23:34 - 00263592 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2013-07-02 23:34 - 2013-07-02 23:34 - 00175016 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2013-07-02 23:34 - 2013-07-02 23:34 - 00175016 ____A (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2013-07-02 23:34 - 2013-07-02 23:34 - 00096168 ____A (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2013-07-02 23:34 - 2013-07-02 23:34 - 00000000 ____D C:\Program Files (x86)\Java 2013-07-02 23:34 - 2013-05-20 22:49 - 00867240 ____A (Oracle Corporation) C:\Windows\SysWOW64\npDeployJava1.dll 2013-07-02 23:34 - 2013-05-20 22:49 - 00789416 ____A (Oracle Corporation) C:\Windows\SysWOW64\deployJava1.dll 2013-07-02 23:04 - 2013-07-02 23:04 - 00032768 ____A C:\Windows\IsUninst.exe 2013-07-02 22:56 - 2013-07-02 22:56 - 04551939 ____A C:\Users\Benutzer\Downloads\flip-2_4_6.zip 2013-07-02 22:45 - 2013-05-20 03:36 - 00000000 ____D C:\Program Files\Nexus Mod Manager 2013-07-02 22:44 - 2013-06-17 23:35 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Skyrim 2013-07-02 22:35 - 2013-07-02 22:35 - 00127860 ____A C:\Users\Benutzer\Downloads\memtest86+-4.20.usb.installer.zip 2013-07-02 15:39 - 2013-07-02 15:39 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2013-07-02 00:45 - 2013-07-02 00:45 - 00000000 ____D C:\Program Files (x86)\NirSoft 2013-07-02 00:44 - 2013-07-02 00:44 - 00141192 ____A C:\Users\Benutzer\Downloads\bluescreenview_setup_1.51.exe 2013-07-01 23:39 - 2013-07-01 23:39 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies 2013-07-01 23:39 - 2013-05-19 23:00 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2013-07-01 00:23 - 2013-06-23 11:32 - 00000000 ____D C:\Program Files (x86)\Warhammer Online - Age of Reckoning 2013-06-30 22:51 - 2013-06-30 22:51 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_xusb21_01009.Wdf 2013-06-30 22:51 - 2013-06-30 22:51 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_MijXfilt_01009.Wdf 2013-06-30 18:25 - 2013-06-30 18:25 - 00000000 ____D C:\Users\Benutzer\Documents\Wizards of the Coast 2013-06-30 17:31 - 2013-05-22 02:00 - 00000000 ____D C:\Program Files (x86)\RIFT 2013-06-30 17:28 - 2013-06-26 23:29 - 00000000 ____D C:\Users\Benutzer\Documents\RIFT 2013-06-30 17:19 - 2013-05-19 23:46 - 00000000 ____D C:\Program Files (x86)\World of Warcraft 2013-06-29 01:01 - 2013-06-29 01:01 - 00000000 ____D C:\Games 2013-06-29 00:18 - 2013-06-29 00:18 - 04396440 ____A (Piriform Ltd) C:\Users\Benutzer\Downloads\ccsetup403.exe 2013-06-29 00:18 - 2013-05-20 04:15 - 00000000 ____D C:\Program Files\CCleaner 2013-06-27 17:33 - 2013-06-27 00:44 - 00000000 ____D C:\Windows\AutoKMS 2013-06-26 23:31 - 2013-05-22 02:00 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\RIFT 2013-06-25 21:58 - 2013-05-23 23:48 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\uTorrent 2013-06-25 21:58 - 2013-05-20 03:45 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\DAEMON Tools Lite 2013-06-25 20:43 - 2013-06-25 20:41 - 00012121 ____A C:\Users\Benutzer\AppData\Roaming\PStrip.ini 2013-06-25 07:04 - 2013-06-25 07:04 - 00745495 ____A C:\Users\Benutzer\Downloads\MCP2200 Windows Driver 2013-02-21.zip 2013-06-24 20:02 - 2013-06-24 20:02 - 00000063 ____A C:\Windows\wininit.ini 2013-06-24 20:01 - 2013-06-24 20:01 - 01411304 ____A (EnTech Taiwan) C:\Users\Benutzer\Downloads\pstrip.exe 2013-06-24 19:41 - 2013-06-24 19:41 - 01420256 ____A (techPowerUp (www.techpowerup.com)) C:\Users\Benutzer\Downloads\GPU-Z_ASUS_ROG_0.7.2.exe 2013-06-24 19:24 - 2013-06-24 19:24 - 01198007 ____A (CPUID, Inc. ) C:\Users\Benutzer\Downloads\MemtweakIt-1017-setup.exe 2013-06-24 19:19 - 2013-06-24 19:10 - 391842315 ___RA C:\Users\Benutzer\Downloads\RealBench_v1.051.rar 2013-06-24 00:36 - 2013-06-24 00:36 - 00000000 ____D C:\Users\Benutzer\Downloads\Moonlight Lady 2013-06-24 00:33 - 2013-06-24 00:33 - 00019727 ____A C:\Users\Benutzer\Downloads\hshare.net.Moonlight.Lady.EP01-05.ENG.SUB.FILES.rar 2013-06-23 22:23 - 2013-06-23 22:17 - 00001981 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_prc_drk.log 2013-06-23 22:15 - 2013-06-23 22:12 - 00001982 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_prc_eye.log 2013-06-23 22:11 - 2013-06-23 22:11 - 00001862 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_003.log 2013-06-23 22:11 - 2013-06-23 22:11 - 00001861 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_001.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001862 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_002.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001860 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_pro_col.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001860 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_war.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001860 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_rog.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001860 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_mag.log 2013-06-23 22:10 - 2013-06-23 22:09 - 00001861 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_prc_one.log 2013-06-23 22:09 - 2013-06-23 22:09 - 00001861 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_prc_seb.log 2013-06-23 21:51 - 2013-06-23 21:28 - 1272222488 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_MarkOfTheAssassin.exe 2013-06-23 21:42 - 2013-06-23 21:28 - 885015120 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_Legacy.exe 2013-06-23 21:29 - 2013-06-23 21:29 - 10319008 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_WarriorItemPack2.exe 2013-06-23 21:29 - 2013-06-23 21:29 - 07023824 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_MageItemPack2.exe 2013-06-23 21:29 - 2013-06-23 21:28 - 07645904 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_RogueItemPack2.exe 2013-06-23 21:28 - 2013-06-23 21:28 - 04826056 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_WarriorItemPack.exe 2013-06-23 21:27 - 2013-06-23 21:27 - 06229408 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_RogueItemPack.exe 2013-06-23 21:27 - 2013-06-23 21:27 - 05697792 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_MageItemPack.exe 2013-06-23 21:27 - 2013-06-23 21:27 - 01638048 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_SignatureEdition.exe 2013-06-23 21:26 - 2013-06-23 21:26 - 33120856 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_ExiledPrince.exe 2013-06-23 21:26 - 2013-06-23 21:26 - 14142624 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_BlackEmporium.exe 2013-06-23 21:25 - 2013-06-23 18:25 - 00004064 ____A C:\shared.log 2013-06-23 18:41 - 2013-06-23 18:41 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Freemium 2013-06-23 18:39 - 2013-06-23 18:38 - 00000000 ____D C:\Users\Benutzer\AppData\Local\DownloadGuide 2013-06-23 18:38 - 2013-06-23 18:38 - 00444400 ____A C:\Users\Benutzer\Downloads\DLG_free-clever-privacy_chip_de-DE.exe 2013-06-23 18:25 - 2013-06-23 18:25 - 00003887 ____A C:\Users\Benutzer\Documents\Dragon Age 2 1.04.log 2013-06-23 18:25 - 2013-06-23 18:24 - 48330216 ____A (BioWare) C:\Users\Benutzer\Downloads\DragonAge2-1.04.exe 2013-06-23 18:22 - 2013-06-23 17:55 - 155920571 ____A C:\Users\Benutzer\Downloads\DFInstall.zip 2013-06-23 18:19 - 2013-06-23 18:19 - 00000000 ____D C:\ProgramData\EA Core 2013-06-23 18:19 - 2013-05-19 22:52 - 00000000 ____D C:\Users\Benutzer\AppData\Local\VirtualStore 2013-06-23 18:17 - 2013-06-23 15:13 - 00000000 ____D C:\Users\Benutzer\Documents\BioWare 2013-06-23 18:09 - 2013-06-23 18:09 - 00000000 ____D C:\Program Files (x86)\The Elder Scrolls Arena 2013-06-23 18:08 - 2013-06-23 18:08 - 00000000 ____D C:\Users\Benutzer\AppData\Local\DOSBox 2013-06-23 18:06 - 2013-06-23 18:06 - 00000000 ____D C:\Program Files (x86)\DOSBox-0.74 2013-06-23 17:58 - 2013-06-23 17:57 - 01448809 ____A (DOSBox Team) C:\Users\Benutzer\Downloads\DOSBox0.74-win32-installer.exe 2013-06-23 17:55 - 2013-06-23 17:54 - 09190807 ____A C:\Users\Benutzer\Downloads\Arena106.exe 2013-06-23 16:48 - 2013-05-20 03:26 - 00000000 ____D C:\Program Files (x86)\Origin Games 2013-06-23 16:45 - 2013-06-23 16:43 - 00003763 ____A C:\Users\Benutzer\Documents\Dragon Age Origins 1.05.log 2013-06-23 16:44 - 2013-06-23 14:59 - 00000000 ____D C:\Program Files (x86)\Dragon Age 2013-06-23 16:43 - 2013-06-23 16:42 - 101553128 ____A (BioWare) C:\Users\Benutzer\Downloads\DragonAge1.05.exe 2013-06-23 16:43 - 2013-06-23 15:12 - 00000000 ____D C:\Program Files (x86)\Electronic Arts 2013-06-23 15:54 - 2013-06-23 15:54 - 00001289 ____A C:\Users\Benutzer\Documents\DAO Addins Updater.log 2013-06-23 15:53 - 2013-05-20 03:26 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Origin 2013-06-23 15:51 - 2013-06-23 15:47 - 00003259 ____A C:\Users\Benutzer\Documents\Dragon Age Origins 1.04.log 2013-06-23 15:14 - 2013-06-23 15:14 - 00000000 ____D C:\ProgramData\BioWare 2013-06-23 15:13 - 2013-06-23 15:13 - 00000000 ____D C:\Users\Benutzer\AppData\Local\EA Core 2013-06-23 15:13 - 2013-05-20 03:23 - 00000000 ____D C:\ProgramData\Electronic Arts 2013-06-23 15:12 - 2013-06-23 14:59 - 00023349 ____A C:\Users\Benutzer\Documents\Install Dragon Age Origins.log 2013-06-23 15:11 - 2013-06-23 15:11 - 00000000 ____D C:\Windows\1C4551A64743409391E41477CD655043.TMP 2013-06-23 11:31 - 2013-06-23 11:30 - 42929231 ____A C:\Users\Benutzer\Downloads\WarhammerOnlineInstaller.exe 2013-06-23 11:08 - 2013-05-20 03:23 - 00000000 ____D C:\ProgramData\Origin 2013-06-23 11:07 - 2013-05-20 03:26 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Origin 2013-06-23 11:06 - 2013-05-20 03:23 - 00000000 ____D C:\Program Files (x86)\Origin 2013-06-23 09:56 - 2013-05-20 00:38 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Deployment 2013-06-23 08:46 - 2013-06-23 04:13 - 00000000 ____D C:\Program Files (x86)\GUILD WARS 2013-06-23 06:36 - 2013-05-20 04:17 - 00000000 ____D C:\Program Files\Speccy 2013-06-23 06:35 - 2013-06-23 06:35 - 05126104 ____A (Piriform Ltd) C:\Users\Benutzer\Downloads\spsetup122.exe 2013-06-23 04:17 - 2013-06-17 23:02 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\NVIDIA 2013-06-23 04:13 - 2013-06-23 04:13 - 00000000 ____D C:\Users\Benutzer\Documents\GUILD WARS 2013-06-23 04:12 - 2013-06-23 04:12 - 00105234 ____A C:\Users\Benutzer\Downloads\gwsetup(1).zip 2013-06-23 00:55 - 2013-05-27 03:10 - 00000000 ____D C:\Users\Benutzer\Desktop\iPhone Bilder 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\wacomid-desktop-launcher.DCFD4B89A63EE70BC162777F06D4B93B6397AEC7.1 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Wacom 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\ProgramData\Wacom 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Program Files (x86)\Bamboo Dock 2013-06-22 01:55 - 2013-06-22 01:54 - 00000002 ____A C:\Users\Benutzer\.bdockinstall.log 2013-06-22 01:55 - 2013-05-25 21:09 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Adobe 2013-06-22 01:55 - 2013-05-21 18:12 - 00000000 ____D C:\Program Files (x86)\Adobe 2013-06-22 01:55 - 2013-05-21 18:04 - 00000000 ____D C:\ProgramData\Adobe 2013-06-22 01:55 - 2013-05-20 00:36 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Adobe 2013-06-22 01:54 - 2013-06-22 01:54 - 30011936 ____A C:\Users\Benutzer\Downloads\dock_setup.exe 2013-06-22 01:49 - 2013-06-22 01:49 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_wachidrouter_01009.Wdf 2013-06-22 01:41 - 2013-06-22 01:41 - 00000000 ____D C:\Users\Benutzer\Documents\ArtRage Paintings 2013-06-22 01:41 - 2013-06-22 01:41 - 00000000 ____D C:\ProgramData\Caphyon 2013-06-22 01:41 - 2013-06-22 01:41 - 00000000 ____D C:\Program Files (x86)\Ambient Design 2013-06-22 01:41 - 2013-06-22 01:39 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Ambient Design 2013-06-22 01:37 - 2013-06-22 01:36 - 82461824 ____A (Ambient Design) C:\Users\Benutzer\Downloads\install_artrage_4.exe 2013-06-22 01:16 - 2013-06-22 01:16 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\WTablet 2013-06-22 01:15 - 2013-06-22 01:15 - 00000000 ____D C:\Program Files\TabletPlugins 2013-06-22 01:15 - 2013-06-22 01:15 - 00000000 ____D C:\Program Files\Tablet 2013-06-22 01:15 - 2013-06-22 01:15 - 00000000 ____D C:\Program Files (x86)\TabletPlugins 2013-06-22 01:15 - 2013-06-22 01:14 - 38455200 ____A C:\Users\Benutzer\Downloads\cons532-1_int.exe 2013-06-21 16:01 - 2013-07-03 21:24 - 00238352 ____A (Oracle Corporation) C:\Windows\System32\Drivers\VBoxDrv.sys 2013-06-21 16:00 - 2013-07-03 21:24 - 00120080 ____A (Oracle Corporation) C:\Windows\System32\Drivers\VBoxUSBMon.sys 2013-06-21 16:00 - 2013-06-21 16:00 - 00204048 ____A (Oracle Corporation) C:\Windows\System32\VBoxNetFltNobj.dll 2013-06-21 16:00 - 2013-06-21 16:00 - 00146704 ____A (Oracle Corporation) C:\Windows\System32\Drivers\VBoxNetFlt.sys 2013-06-21 16:00 - 2013-06-21 16:00 - 00131856 ____A (Oracle Corporation) C:\Windows\System32\Drivers\VBoxNetAdp.sys 2013-06-21 14:06 - 2013-07-01 23:36 - 27781920 ____A (NVIDIA Corporation) C:\Windows\System32\nvoglv64.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 25256224 ____A (NVIDIA Corporation) C:\Windows\System32\nvcompiler.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 21102368 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 17560352 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 13411896 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 11235104 ____A (NVIDIA Corporation) C:\Windows\System32\Drivers\nvlddmkm.sys 2013-06-21 14:06 - 2013-07-01 23:36 - 09239344 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuda.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 07687592 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 07641832 ____A (NVIDIA Corporation) C:\Windows\System32\nvopencl.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 06324360 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 02953504 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuvid.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 02777888 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 02363680 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuvenc.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 02002720 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 01832224 ____A (NVIDIA Corporation) C:\Windows\System32\nvdispco6432049.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 01511712 ____A (NVIDIA Corporation) C:\Windows\System32\nvdispgenco6432049.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00925648 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00572704 ____A (NVIDIA Corporation) C:\Windows\System32\NvFBC64.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00570656 ____A (NVIDIA Corporation) C:\Windows\System32\NvIFR64.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00467232 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00465184 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00266448 ____A (NVIDIA Corporation) C:\Windows\System32\nvinitx.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00218592 ____A (NVIDIA Corporation) C:\Windows\System32\nvoglshim64.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00214448 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00181488 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2013-06-21 14:06 - 2013-05-20 01:51 - 15144928 ____A (NVIDIA Corporation) C:\Windows\System32\nvd3dumx.dll 2013-06-21 14:06 - 2013-05-20 01:51 - 02597856 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2013-06-21 14:06 - 2013-05-19 23:00 - 00061216 ____A (Khronos Group) C:\Windows\System32\OpenCL.dll 2013-06-21 14:06 - 2013-05-19 23:00 - 00053024 ____A (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2013-06-21 14:06 - 2013-02-26 00:32 - 15920536 ____A (NVIDIA Corporation) C:\Windows\System32\nvwgf2umx.dll 2013-06-21 14:06 - 2013-02-26 00:32 - 12427240 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2013-06-21 14:06 - 2013-02-26 00:32 - 02936208 ____A (NVIDIA Corporation) C:\Windows\System32\nvapi64.dll 2013-06-21 14:06 - 2013-02-26 00:32 - 01059560 ____A (NVIDIA Corporation) C:\Windows\System32\nvumdshimx.dll 2013-06-21 14:06 - 2013-02-26 00:32 - 00021578 ____A C:\Windows\System32\nvinfo.pb 2013-06-21 12:23 - 2013-05-19 23:00 - 06496544 ____A (NVIDIA Corporation) C:\Windows\System32\nvcpl.dll 2013-06-21 12:23 - 2013-05-19 23:00 - 03514656 ____A (NVIDIA Corporation) C:\Windows\System32\nvsvc64.dll 2013-06-21 12:23 - 2013-05-19 23:00 - 02555680 ____A (NVIDIA Corporation) C:\Windows\System32\nvsvcr.dll 2013-06-21 12:23 - 2013-05-19 23:00 - 00884512 ____A (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe 2013-06-21 12:23 - 2013-05-19 23:00 - 00237856 ____A (NVIDIA Corporation) C:\Windows\System32\nvmctray.dll 2013-06-21 12:23 - 2013-05-19 23:00 - 00063776 ____A (NVIDIA Corporation) C:\Windows\System32\nvshext.dll 2013-06-21 05:16 - 2013-06-21 05:16 - 00566048 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2013-06-20 06:17 - 2013-05-19 23:00 - 03253909 ____A C:\Windows\System32\nvcoproc.bin 2013-06-20 01:36 - 2013-06-17 00:33 - 00000000 ____D C:\Program Files (x86)\PCMeter 2013-06-19 22:36 - 2013-06-19 22:36 - 34935760 ____A (Dropbox, Inc.) C:\Users\Benutzer\Downloads\Dropbox 2.2.3.exe 2013-06-18 17:55 - 2013-06-18 17:54 - 00000000 ____D C:\Program Files (x86)\Tinkerforge 2013-06-18 17:54 - 2013-06-18 17:53 - 18917020 ____A C:\Users\Benutzer\Downloads\brickv_windows_2_0_5.exe 2013-06-18 17:53 - 2013-06-18 17:53 - 04970233 ____A C:\Users\Benutzer\Downloads\brickd_windows_2_0_5.exe 2013-06-18 17:07 - 2013-05-20 03:50 - 00000000 ____D C:\Program Files (x86)\PDFCreator 2013-06-18 17:07 - 2013-05-19 23:42 - 00000000 ____D C:\Windows\Panther 2013-06-18 17:06 - 2013-06-18 17:06 - 04378864 ____A (Piriform Ltd) C:\Users\Benutzer\Downloads\ccsetup402.exe 2013-06-18 15:36 - 2013-05-19 23:20 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-06-18 15:36 - 2013-05-19 23:20 - 00000000 ____D C:\ProgramData\Skype 2013-06-18 01:45 - 2013-06-18 01:45 - 02002832 ____A C:\Users\Benutzer\Downloads\Red-Collection---AnnaRoma-UPGRADE-5.zip 2013-06-18 01:44 - 2013-06-18 01:44 - 00040791 ____A C:\Users\Benutzer\Downloads\ROG-v1.zip 2013-06-18 01:40 - 2013-06-18 01:40 - 00000000 ____D C:\Program Files (x86)\RocketDock 2013-06-18 01:40 - 2013-06-18 01:39 - 06463660 ____A (Punk Software ) C:\Users\Benutzer\Downloads\RocketDock-v1.3.5.exe 2013-06-17 23:35 - 2013-06-17 23:35 - 00000000 ____D C:\Users\Benutzer\Documents\Witcher 2 2013-06-17 23:33 - 2013-06-17 00:35 - 00000095 ____A C:\Users\Benutzer\AppData\Roaming\Control System_Settings.ini 2013-06-17 23:03 - 2013-06-17 23:03 - 00000000 ____D C:\Program Files (x86)\CPU-Z 2013-06-17 23:02 - 2013-06-17 23:02 - 00000000 ____D C:\Program Files (x86)\GPU-Z 2013-06-17 23:01 - 2013-06-17 23:01 - 01405920 ____A (techPowerUp (www.techpowerup.com)) C:\Users\Benutzer\Downloads\GPU-Z_ASUS_ROG_0.7.1.exe 2013-06-17 23:01 - 2013-06-17 23:01 - 01373832 ____A (CPUID, Inc. ) C:\Users\Benutzer\Downloads\cpu-z_1.64-rog-setup-en.exe 2013-06-17 22:56 - 2013-06-17 22:55 - 00000000 ____D C:\Program Files (x86)\TurnedOnTimesView 2013-06-17 22:52 - 2013-06-17 22:52 - 00064922 ____A C:\Users\Benutzer\Downloads\turnedontimesview.zip 2013-06-17 00:38 - 2013-06-17 00:38 - 00001138 ____A C:\Users\Benutzer\AppData\Roaming\Network Meter_Settings.ini 2013-06-17 00:38 - 2013-06-17 00:38 - 00000842 ____A C:\Users\Benutzer\AppData\Roaming\Drives Meter_Settings.ini 2013-06-17 00:37 - 2013-06-17 00:37 - 00000297 ____A C:\Users\Benutzer\AppData\Roaming\GPU MeterV2_Settings.ini 2013-06-17 00:36 - 2013-06-17 00:35 - 00000627 ____A C:\Users\Benutzer\AppData\Roaming\All CPU MeterV3_Settings.ini 2013-06-16 03:06 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\System32\oobe 2013-06-16 03:04 - 2013-06-16 03:03 - 00002410 ____A C:\Windows\SysWOW64\cplLogon.tsk 2013-06-16 03:03 - 2013-06-16 03:03 - 02218077 ____A (Daniel Rebelo ) C:\Users\Benutzer\Downloads\Logon Screen 2.56.exe 2013-06-16 03:03 - 2013-06-16 03:03 - 00000000 ____D C:\Program Files\Logon Screen 2013-06-16 02:48 - 2013-06-16 02:46 - 00000000 ___AD C:\Windows\SysWOW64\ROG_Video Intro dir 2013-06-16 02:46 - 2013-05-20 02:43 - 02871808 ____A (Microsoft Corporation) C:\Windows\explorer.exe 2013-06-16 02:46 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\Cursors 2013-06-16 02:43 - 2013-06-16 02:46 - 00680960 ____A (ASUSTeK Computer Inc.) C:\Windows\SysWOW64\ROGThemeSetup.exe 2013-06-16 02:43 - 2013-06-16 02:46 - 00201728 ____A (ScreenTime Media) C:\Windows\SysWOW64\ROG_Video Intro .scr 2013-06-16 02:26 - 2013-06-16 02:25 - 30789811 ____A C:\Users\Benutzer\Downloads\ROG_THEME_V10014_Win7.zip 2013-06-16 02:10 - 2013-06-16 02:10 - 00000000 ____D C:\Program Files (x86)\Dexpot 2013-06-16 02:06 - 2013-06-16 02:06 - 02796815 ____A (Dexpot GbR) C:\Users\Benutzer\Downloads\dexpot_169_r2285.exe 2013-06-16 01:53 - 2013-06-16 01:53 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Bump Technologies, Inc 2013-06-16 01:50 - 2013-06-16 01:50 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Bump Technologies, Inc 2013-06-16 01:50 - 2013-06-16 01:49 - 16628120 ____A (Bump Technologies, Inc. ) C:\Users\Benutzer\Downloads\BumpTop-2.1-6211.exe 2013-06-16 01:50 - 2013-05-22 02:09 - 00000000 ___HD C:\Windows\msdownld.tmp 2013-06-16 01:50 - 2013-05-22 02:09 - 00000000 ____D C:\Windows\SysWOW64\directx 2013-06-13 18:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2013-06-13 01:24 - 2013-05-20 00:04 - 75825640 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe 2013-06-12 20:18 - 2013-05-20 00:35 - 00692104 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-06-12 20:18 - 2013-05-20 00:35 - 00071048 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-06-12 16:52 - 2013-06-12 16:52 - 13081608 ____A (Microsoft Corporation) C:\Users\Benutzer\Downloads\Silverlight_x64.exe 2013-06-12 16:52 - 2013-06-12 16:52 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2013-06-12 16:52 - 2013-06-12 16:52 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-06-10 21:11 - 2013-06-10 21:10 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2013-06-10 21:11 - 2013-06-10 21:10 - 00000000 ____D C:\Program Files\iTunes 2013-06-10 21:11 - 2013-06-10 21:10 - 00000000 ____D C:\Program Files (x86)\iTunes 2013-06-10 21:10 - 2013-06-10 21:10 - 00000000 ____D C:\Program Files\iPod 2013-06-09 21:01 - 2013-05-21 18:49 - 00000000 ____D C:\Program Files (x86)\LogMeIn 2013-06-09 21:00 - 2013-05-21 18:49 - 00107368 ____A (LogMeIn, Inc.) C:\Windows\System32\LMIRfsClientNP.dll 2013-06-09 21:00 - 2013-05-21 18:49 - 00100680 ____A (LogMeIn, Inc.) C:\Windows\System32\LMIinit.dll 2013-06-09 21:00 - 2013-05-21 18:49 - 00035656 ____A (LogMeIn, Inc.) C:\Windows\System32\LMIport.dll 2013-06-08 16:08 - 2013-06-15 02:13 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2013-06-08 16:07 - 2013-06-15 02:13 - 19233792 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2013-06-08 16:06 - 2013-06-15 02:13 - 15404544 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2013-06-08 16:06 - 2013-06-15 02:13 - 02648064 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2013-06-08 16:06 - 2013-06-15 02:13 - 00526336 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll 2013-06-08 14:28 - 2013-06-15 02:13 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2013-06-08 13:42 - 2013-06-15 02:13 - 01141248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-06-08 13:40 - 2013-06-15 02:13 - 14327808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-06-08 13:40 - 2013-06-15 02:13 - 13760512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-06-08 13:40 - 2013-06-15 02:13 - 02046976 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-06-08 13:40 - 2013-06-15 02:13 - 00391168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-06-08 13:13 - 2013-06-15 02:13 - 02706432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe [2013-05-20 02:43] - [2013-06-16 02:46] - 2871808 ____A (Microsoft Corporation) 65DE61A95D4F5CD4E7ED63EC6344CBF0 C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-07-03 18:01 ==================== End Of Log ============================ |
![]() | #5 | |
/// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() SoftwareUpdater.Bootstrapper wird von Kaspersky PURE 3.0 erkannt Supi mitgedacht ![]() Combofix sollte ausschließlich ausgeführt werden, wenn dies von einem Teammitglied angewiesen wurde!Downloade dir bitte Combofix vom folgenden Downloadspiegel Link 1 WICHTIG - Speichere Combofix auf deinem Desktop
Wenn Combofix fertig ist, wird es eine Logfile erstellen. Bitte poste die C:\Combofix.txt in deiner nächsten Antwort. Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten Zitat:
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
![]() | #6 |
![]() | ![]() SoftwareUpdater.Bootstrapper wird von Kaspersky PURE 3.0 erkannt Hier die Log von Combifix: Code:
ATTFilter ComboFix 13-07-07.01 - Benutzer 07.07.2013 13:14:29.1.8 - x64 Microsoft Windows 7 Ultimate 6.1.7601.1.1252.49.1031.18.8189.6399 [GMT 2:00] ausgeführt von:: c:\users\Benutzer\Desktop\ComboFix.exe AV: Kaspersky PURE 3.0 *Disabled/Updated* {C3113FBF-4BCB-4461-D78D-6EDFEC9593E5} FW: Kaspersky PURE 3.0 *Disabled* {FB2ABE9A-01A4-4539-FCD2-C7EA1246D49E} SP: Kaspersky PURE 3.0 *Disabled/Updated* {7870DE5B-6DF1-4BEF-ED3D-55AD9712D958} SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\programdata\logs c:\windows\wininit.ini . Infizierte Kopie von c:\windows\explorer.exe wurde gefunden und desinfiziert Kopie von - c:\windows\winsxs\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.1.7600.20910_none_ae79ed04ac56c4a9\explorer.exe wurde wiederhergestellt . . ((((((((((((((((((((((( Dateien erstellt von 2013-06-07 bis 2013-07-07 )))))))))))))))))))))))))))))) . . 2013-07-07 11:21 . 2013-07-07 11:21 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp 2013-07-07 11:21 . 2013-07-07 11:21 -------- d-----w- c:\users\LogMeInRemoteUser\AppData\Local\temp 2013-07-07 11:21 . 2013-07-07 11:21 -------- d-----w- c:\users\Default\AppData\Local\temp 2013-07-06 18:58 . 2013-07-06 18:58 -------- d-----w- c:\windows\ERUNT 2013-07-06 18:58 . 2013-07-06 18:58 -------- d-----w- C:\JRT 2013-07-06 17:55 . 2013-07-06 17:55 -------- d-----w- C:\FRST 2013-07-05 15:37 . 2013-06-12 03:08 9552976 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{E91965E6-08CC-47E1-A600-7EA5F095E325}\mpengine.dll 2013-07-04 20:07 . 2013-07-04 20:09 -------- d-----w- c:\program files\Microsoft Platform SDK 2013-07-04 20:07 . 2013-07-04 20:07 -------- d-----w- c:\program files (x86)\Microsoft Visual Studio .NET 2003 2013-07-04 20:03 . 2013-07-04 20:56 -------- d-----w- c:\users\Benutzer\AppData\Roaming\Dev-Cpp 2013-07-04 20:03 . 2013-07-04 20:03 -------- d-----w- C:\Dev-Cpp 2013-07-03 21:57 . 2013-07-03 23:15 -------- d-----w- c:\users\Benutzer\AppData\Local\Turbine 2013-07-03 21:57 . 2013-07-03 22:01 -------- d-----w- c:\users\Benutzer\AppData\Local\ApplicationHistory 2013-07-03 19:54 . 2013-07-03 20:00 -------- d-----w- C:\Windows XP 2013-07-03 19:26 . 2013-07-03 19:26 -------- d-----w- c:\users\Benutzer\VirtualBox VMs 2013-07-03 19:26 . 2013-07-03 20:47 -------- d-----w- c:\users\Benutzer\.VirtualBox 2013-07-03 19:24 . 2013-06-21 14:01 238352 ----a-w- c:\windows\system32\drivers\VBoxDrv.sys 2013-07-03 19:24 . 2013-06-21 14:00 120080 ----a-w- c:\windows\system32\drivers\VBoxUSBMon.sys 2013-07-03 19:24 . 2013-07-03 19:24 -------- d-----w- c:\program files\Oracle 2013-07-03 19:15 . 2013-07-03 19:15 -------- d-----w- c:\users\Benutzer\AppData\Local\Diagnostics 2013-07-02 21:34 . 2013-07-02 21:34 -------- d-----w- c:\program files (x86)\Java 2013-07-02 21:04 . 2013-07-02 21:04 32768 ----a-w- c:\windows\IsUninst.exe 2013-07-02 13:39 . 2013-07-02 13:39 -------- d-----w- c:\program files (x86)\LogMeIn Hamachi 2013-07-01 22:45 . 2013-07-01 22:45 -------- d-----w- c:\program files (x86)\NirSoft 2013-07-01 21:39 . 2013-07-01 21:39 -------- d-----w- c:\program files (x86)\AGEIA Technologies 2013-06-28 23:01 . 2013-06-28 23:01 -------- d-----w- C:\Games 2013-06-26 22:44 . 2013-06-27 15:33 -------- d-----w- c:\windows\AutoKMS 2013-06-24 18:02 . 2006-09-30 09:36 13008 ----a-w- c:\windows\system32\drivers\pstrip64.sys 2013-06-23 16:41 . 2013-06-23 16:41 -------- d-----w- c:\users\Benutzer\AppData\Local\Freemium 2013-06-23 16:38 . 2013-06-23 16:39 -------- d-----w- c:\users\Benutzer\AppData\Local\DownloadGuide 2013-06-23 16:19 . 2013-06-23 16:19 -------- d-----w- c:\programdata\EA Core 2013-06-23 16:09 . 2013-06-23 16:09 -------- d-----w- c:\program files (x86)\The Elder Scrolls Arena 2013-06-23 16:08 . 2013-06-23 16:08 -------- d-----w- c:\users\Benutzer\AppData\Local\DOSBox 2013-06-23 16:06 . 2013-06-23 16:06 -------- d-----w- c:\program files (x86)\DOSBox-0.74 2013-06-23 15:53 . 2008-10-15 04:22 519000 ----a-w- c:\windows\system32\d3dx10_40.dll 2013-06-23 15:53 . 2008-10-15 04:22 452440 ----a-w- c:\windows\SysWow64\d3dx10_40.dll 2013-06-23 15:53 . 2008-10-15 04:22 2605920 ----a-w- c:\windows\system32\D3DCompiler_40.dll 2013-06-23 15:53 . 2008-10-15 04:22 2036576 ----a-w- c:\windows\SysWow64\D3DCompiler_40.dll 2013-06-23 15:53 . 2008-10-15 04:22 5631312 ----a-w- c:\windows\system32\D3DX9_40.dll 2013-06-23 15:53 . 2008-10-15 04:22 4379984 ----a-w- c:\windows\SysWow64\D3DX9_40.dll 2013-06-23 13:14 . 2013-06-23 13:14 -------- d-----w- c:\programdata\BioWare 2013-06-23 13:13 . 2013-06-23 13:13 -------- d-----w- c:\users\Benutzer\AppData\Local\EA Core 2013-06-23 13:12 . 2013-06-23 14:43 -------- d-----w- c:\program files (x86)\Electronic Arts 2013-06-23 13:11 . 2013-06-23 13:11 -------- d-----w- c:\windows\1C4551A64743409391E41477CD655043.TMP 2013-06-23 13:11 . 2013-06-23 13:11 -------- d-----w- c:\program files (x86)\Common Files\Wise Installation Wizard 2013-06-23 12:59 . 2013-06-23 16:03 -------- d-----w- c:\program files (x86)\Common Files\BioWare 2013-06-23 12:59 . 2013-06-23 14:44 -------- d-----w- c:\program files (x86)\Dragon Age 2013-06-23 09:32 . 2013-06-30 22:23 -------- d-----w- c:\program files (x86)\Warhammer Online - Age of Reckoning 2013-06-23 02:15 . 2013-07-03 21:54 -------- d-----w- c:\users\Benutzer\AppData\Roaming\.minecraft 2013-06-23 02:13 . 2013-06-23 13:11 -------- d-----w- c:\programdata\Media Center Programs 2013-06-23 02:13 . 2013-06-23 06:46 -------- d-----w- c:\program files (x86)\GUILD WARS 2013-06-21 23:55 . 2013-06-21 23:55 -------- d-----w- c:\users\Benutzer\AppData\Roaming\wacomid-desktop-launcher.DCFD4B89A63EE70BC162777F06D4B93B6397AEC7.1 2013-06-21 23:55 . 2013-06-21 23:55 -------- d-----w- c:\users\Benutzer\AppData\Roaming\Wacom 2013-06-21 23:55 . 2013-06-21 23:55 -------- d-----w- c:\programdata\Wacom 2013-06-21 23:55 . 2013-06-21 23:56 -------- d-----w- c:\program files (x86)\Common Files\Adobe AIR 2013-06-21 23:55 . 2013-06-21 23:55 -------- d-----w- c:\program files (x86)\Bamboo Dock 2013-06-21 23:41 . 2013-06-21 23:41 -------- d-----w- c:\programdata\Caphyon 2013-06-21 23:41 . 2013-06-21 23:41 -------- d-----w- c:\program files (x86)\Ambient Design 2013-06-21 23:39 . 2013-06-21 23:41 -------- d-----w- c:\users\Benutzer\AppData\Roaming\Ambient Design 2013-06-21 23:16 . 2013-06-21 23:16 -------- d-----w- c:\users\Benutzer\AppData\Roaming\WTablet 2013-06-21 23:15 . 2013-06-21 23:15 -------- d-----w- c:\program files (x86)\TabletPlugins 2013-06-21 23:15 . 2012-11-15 07:41 15776 ----a-w- c:\windows\system32\drivers\wacomrouterfilter.sys 2013-06-21 23:15 . 2012-12-03 14:36 81824 ----a-w- c:\windows\system32\drivers\wachidrouter.sys 2013-06-21 23:15 . 2012-12-03 14:36 13728 ----a-w- c:\windows\system32\drivers\hidkmdf.sys 2013-06-21 23:15 . 2012-12-11 11:07 1843584 ----a-w- c:\windows\system32\Wintab32.dll 2013-06-21 23:15 . 2012-12-11 11:07 1981312 ----a-w- c:\windows\system32\Pen_Tablet.dll 2013-06-21 23:15 . 2012-12-11 11:07 1974144 ----a-w- c:\windows\system32\Pen_Touch_Tablet.dll 2013-06-21 23:15 . 2012-12-11 11:07 1840000 ----a-w- c:\windows\system32\WacomMT.dll 2013-06-21 23:15 . 2012-12-11 11:07 1621888 ----a-w- c:\windows\SysWow64\Pen_Touch_Tablet.dll 2013-06-21 23:15 . 2012-12-11 11:07 1628544 ----a-w- c:\windows\SysWow64\Pen_Tablet.dll 2013-06-21 23:15 . 2013-06-21 23:15 -------- d-----w- c:\program files\Tablet 2013-06-21 14:00 . 2013-06-21 14:00 204048 ----a-w- c:\windows\system32\VBoxNetFltNobj.dll 2013-06-21 14:00 . 2013-06-21 14:00 146704 ----a-w- c:\windows\system32\drivers\VBoxNetFlt.sys 2013-06-21 14:00 . 2013-06-21 14:00 131856 ----a-w- c:\windows\system32\drivers\VBoxNetAdp.sys 2013-06-21 03:16 . 2013-06-21 03:16 566048 ----a-w- c:\windows\SysWow64\nvStreaming.exe 2013-06-19 20:40 . 2013-07-07 10:57 -------- d-----r- c:\users\Benutzer\Dropbox 2013-06-19 20:37 . 2013-07-07 11:24 -------- d-----w- c:\users\Benutzer\AppData\Roaming\Dropbox 2013-06-18 15:54 . 2013-06-18 15:55 -------- d-----w- c:\program files (x86)\Tinkerforge 2013-06-17 23:40 . 2013-06-17 23:40 -------- d-----w- c:\program files (x86)\RocketDock 2013-06-17 21:35 . 2013-07-06 21:26 -------- d-----w- c:\users\Benutzer\AppData\Local\Skyrim 2013-06-17 21:03 . 2013-06-17 21:03 -------- d-----w- c:\program files (x86)\CPU-Z 2013-06-17 21:02 . 2013-06-23 02:17 -------- d-----w- c:\users\Benutzer\AppData\Roaming\NVIDIA 2013-06-17 21:02 . 2013-06-17 21:02 -------- d-----w- c:\program files (x86)\GPU-Z 2013-06-17 20:55 . 2013-06-17 20:56 -------- d-----w- c:\program files (x86)\TurnedOnTimesView 2013-06-16 23:00 . 2013-07-06 17:00 5690 ----a-w- c:\users\Benutzer\Network_Meter_Data.js 2013-06-16 22:33 . 2013-06-16 22:33 -------- d-----w- c:\windows\system32\wbem\Framework 2013-06-16 22:33 . 2013-06-19 23:36 -------- d-----w- c:\program files (x86)\PCMeter 2013-06-16 01:08 . 2013-07-06 15:15 -------- d-----w- c:\users\Benutzer\Desktop 2 2013-06-16 01:08 . 2013-07-05 16:58 -------- d-----w- c:\users\Benutzer\Desktop 3 2013-06-16 01:08 . 2013-07-06 20:16 -------- d-----w- c:\users\Benutzer\Desktop 4 2013-06-16 01:03 . 2013-06-16 01:03 -------- d-----w- c:\program files\Logon Screen 2013-06-16 00:46 . 2013-06-16 00:43 680960 ----a-w- c:\windows\SysWow64\ROGThemeSetup.exe 2013-06-16 00:46 . 2013-06-16 00:43 201728 ----a-w- c:\windows\SysWow64\ROG_Video Intro .scr 2013-06-16 00:46 . 2011-02-25 06:19 2871808 ----a-w- c:\windows\explorer.exe.rogbak 2013-06-16 00:46 . 2013-06-16 00:48 -------- d---a-w- c:\windows\SysWow64\ROG_Video Intro dir 2013-06-16 00:10 . 2013-07-07 11:21 -------- d-----w- c:\users\Benutzer\AppData\Roaming\Dexpot 2013-06-16 00:10 . 2013-06-16 00:10 -------- d-----w- c:\program files (x86)\Dexpot 2013-06-15 23:53 . 2013-06-15 23:53 -------- d-----w- c:\users\Benutzer\AppData\Local\Bump Technologies, Inc 2013-06-15 23:50 . 2013-06-15 23:50 -------- d-----w- c:\users\Benutzer\AppData\Roaming\Bump Technologies, Inc 2013-06-12 23:23 . 2013-05-17 01:25 61440 ----a-w- c:\windows\SysWow64\iesetup.dll 2013-06-12 14:52 . 2013-06-12 14:52 -------- d-----w- c:\program files\Microsoft Silverlight 2013-06-12 14:52 . 2013-06-12 14:52 -------- d-----w- c:\program files (x86)\Microsoft Silverlight 2013-06-12 10:57 . 2013-04-25 23:30 1505280 ----a-w- c:\windows\SysWow64\d3d11.dll 2013-06-12 10:57 . 2013-03-31 22:52 1887232 ----a-w- c:\windows\system32\d3d11.dll 2013-06-10 19:10 . 2013-06-10 19:11 -------- d-----w- c:\programdata\34BE82C4-E596-4e99-A191-52C6199EBF69 2013-06-10 19:10 . 2013-06-10 19:11 -------- d-----w- c:\program files\iTunes 2013-06-10 19:10 . 2013-06-10 19:11 -------- d-----w- c:\program files (x86)\iTunes 2013-06-10 19:10 . 2013-06-10 19:10 -------- d-----w- c:\program files\iPod . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2013-07-02 21:34 . 2013-07-02 21:34 96168 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll 2013-07-02 21:34 . 2013-05-20 20:49 789416 ----a-w- c:\windows\SysWow64\deployJava1.dll 2013-07-02 21:34 . 2013-05-20 20:49 867240 ----a-w- c:\windows\SysWow64\npDeployJava1.dll 2013-06-21 12:06 . 2013-05-19 23:51 2597856 ----a-w- c:\windows\SysWow64\nvapi.dll 2013-06-21 12:06 . 2013-05-19 23:51 15144928 ----a-w- c:\windows\system32\nvd3dumx.dll 2013-06-21 12:06 . 2013-05-19 21:00 61216 ----a-w- c:\windows\system32\OpenCL.dll 2013-06-21 12:06 . 2013-05-19 21:00 53024 ----a-w- c:\windows\SysWow64\OpenCL.dll 2013-06-21 12:06 . 2013-02-25 22:32 12427240 ----a-w- c:\windows\SysWow64\nvd3dum.dll 2013-06-21 12:06 . 2013-02-25 22:32 2936208 ----a-w- c:\windows\system32\nvapi64.dll 2013-06-21 12:06 . 2013-02-25 22:32 1059560 ----a-w- c:\windows\system32\nvumdshimx.dll 2013-06-21 12:06 . 2013-02-25 22:32 15920536 ----a-w- c:\windows\system32\nvwgf2umx.dll 2013-06-21 10:23 . 2013-05-19 21:00 6496544 ----a-w- c:\windows\system32\nvcpl.dll 2013-06-21 10:23 . 2013-05-19 21:00 3514656 ----a-w- c:\windows\system32\nvsvc64.dll 2013-06-21 10:23 . 2013-05-19 21:00 884512 ----a-w- c:\windows\system32\nvvsvc.exe 2013-06-21 10:23 . 2013-05-19 21:00 63776 ----a-w- c:\windows\system32\nvshext.dll 2013-06-21 10:23 . 2013-05-19 21:00 2555680 ----a-w- c:\windows\system32\nvsvcr.dll 2013-06-21 10:23 . 2013-05-19 21:00 237856 ----a-w- c:\windows\system32\nvmctray.dll 2013-06-20 04:17 . 2013-05-19 21:00 3253909 ----a-w- c:\windows\system32\nvcoproc.bin 2013-06-12 23:24 . 2013-05-19 22:04 75825640 ----a-w- c:\windows\system32\MRT.exe 2013-06-12 18:18 . 2013-05-19 22:35 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2013-06-12 18:18 . 2013-05-19 22:35 692104 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2013-06-09 19:00 . 2013-05-21 16:49 35656 ----a-w- c:\windows\system32\LMIport.dll 2013-06-09 19:00 . 2013-05-21 16:49 107368 ----a-w- c:\windows\system32\LMIRfsClientNP.dll 2013-06-09 19:00 . 2013-05-21 16:49 100680 ----a-w- c:\windows\system32\LMIinit.dll 2013-05-24 16:50 . 2013-05-21 16:49 107368 ----a-w- c:\windows\system32\LMIRfsClientNP.dll.000.bak 2013-05-23 18:59 . 2013-05-23 18:59 61440 ----a-r- c:\users\Benutzer\AppData\Roaming\Microsoft\Installer\{11953C65-BB4E-4CA4-B0F0-2600A4B20040}\ARPPRODUCTICON.exe 2013-05-23 18:57 . 2013-05-23 18:58 106496 ----a-w- c:\windows\SysWow64\ATL71.DLL 2013-05-21 17:25 . 2013-05-21 17:25 97280 ----a-w- c:\windows\system32\mshtmled.dll 2013-05-21 17:25 . 2013-05-21 17:25 92160 ----a-w- c:\windows\system32\SetIEInstalledDate.exe 2013-05-21 17:25 . 2013-05-21 17:25 905728 ----a-w- c:\windows\system32\mshtmlmedia.dll 2013-05-21 17:25 . 2013-05-21 17:25 81408 ----a-w- c:\windows\system32\icardie.dll 2013-05-21 17:25 . 2013-05-21 17:25 77312 ----a-w- c:\windows\system32\tdc.ocx 2013-05-21 17:25 . 2013-05-21 17:25 762368 ----a-w- c:\windows\system32\ieapfltr.dll 2013-05-21 17:25 . 2013-05-21 17:25 73728 ----a-w- c:\windows\SysWow64\SetIEInstalledDate.exe 2013-05-21 17:25 . 2013-05-21 17:25 719360 ----a-w- c:\windows\SysWow64\mshtmlmedia.dll 2013-05-21 17:25 . 2013-05-21 17:25 62976 ----a-w- c:\windows\system32\pngfilt.dll 2013-05-21 17:25 . 2013-05-21 17:25 61952 ----a-w- c:\windows\SysWow64\tdc.ocx 2013-05-21 17:25 . 2013-05-21 17:25 599552 ----a-w- c:\windows\system32\vbscript.dll 2013-05-21 17:25 . 2013-05-21 17:25 523264 ----a-w- c:\windows\SysWow64\vbscript.dll 2013-05-21 17:25 . 2013-05-21 17:25 52224 ----a-w- c:\windows\system32\msfeedsbs.dll 2013-05-21 17:25 . 2013-05-21 17:25 51200 ----a-w- c:\windows\system32\imgutil.dll 2013-05-21 17:25 . 2013-05-21 17:25 48640 ----a-w- c:\windows\SysWow64\mshtmler.dll 2013-05-21 17:25 . 2013-05-21 17:25 48640 ----a-w- c:\windows\system32\mshtmler.dll 2013-05-21 17:25 . 2013-05-21 17:25 452096 ----a-w- c:\windows\system32\dxtmsft.dll 2013-05-21 17:25 . 2013-05-21 17:25 441856 ----a-w- c:\windows\system32\html.iec 2013-05-21 17:25 . 2013-05-21 17:25 38400 ----a-w- c:\windows\SysWow64\imgutil.dll 2013-05-21 17:25 . 2013-05-21 17:25 361984 ----a-w- c:\windows\SysWow64\html.iec 2013-05-21 17:25 . 2013-05-21 17:25 281600 ----a-w- c:\windows\system32\dxtrans.dll 2013-05-21 17:25 . 2013-05-21 17:25 27648 ----a-w- c:\windows\system32\licmgr10.dll 2013-05-21 17:25 . 2013-05-21 17:25 270848 ----a-w- c:\windows\system32\iedkcs32.dll 2013-05-21 17:25 . 2013-05-21 17:25 247296 ----a-w- c:\windows\system32\webcheck.dll 2013-05-21 17:25 . 2013-05-21 17:25 235008 ----a-w- c:\windows\system32\url.dll 2013-05-21 17:25 . 2013-05-21 17:25 23040 ----a-w- c:\windows\SysWow64\licmgr10.dll 2013-05-21 17:25 . 2013-05-21 17:25 226304 ----a-w- c:\windows\system32\elshyph.dll 2013-05-21 17:25 . 2013-05-21 17:25 216064 ----a-w- c:\windows\system32\msls31.dll 2013-05-21 17:25 . 2013-05-21 17:25 197120 ----a-w- c:\windows\system32\msrating.dll 2013-05-21 17:25 . 2013-05-21 17:25 185344 ----a-w- c:\windows\SysWow64\elshyph.dll 2013-05-21 17:25 . 2013-05-21 17:25 173568 ----a-w- c:\windows\system32\ieUnatt.exe 2013-05-21 17:25 . 2013-05-21 17:25 167424 ----a-w- c:\windows\system32\iexpress.exe 2013-05-21 17:25 . 2013-05-21 17:25 158720 ----a-w- c:\windows\SysWow64\msls31.dll 2013-05-21 17:25 . 2013-05-21 17:25 1509376 ----a-w- c:\windows\system32\inetcpl.cpl 2013-05-21 17:25 . 2013-05-21 17:25 150528 ----a-w- c:\windows\SysWow64\iexpress.exe 2013-05-21 17:25 . 2013-05-21 17:25 149504 ----a-w- c:\windows\system32\occache.dll 2013-05-21 17:25 . 2013-05-21 17:25 144896 ----a-w- c:\windows\system32\wextract.exe 2013-05-21 17:25 . 2013-05-21 17:25 1441280 ----a-w- c:\windows\SysWow64\inetcpl.cpl 2013-05-21 17:25 . 2013-05-21 17:25 1400416 ----a-w- c:\windows\system32\ieapfltr.dat 2013-05-21 17:25 . 2013-05-21 17:25 138752 ----a-w- c:\windows\SysWow64\wextract.exe 2013-05-21 17:25 . 2013-05-21 17:25 13824 ----a-w- c:\windows\system32\mshta.exe 2013-05-21 17:25 . 2013-05-21 17:25 137216 ----a-w- c:\windows\SysWow64\ieUnatt.exe 2013-05-21 17:25 . 2013-05-21 17:25 136192 ----a-w- c:\windows\system32\iepeers.dll 2013-05-21 17:25 . 2013-05-21 17:25 135680 ----a-w- c:\windows\system32\IEAdvpack.dll 2013-05-21 17:25 . 2013-05-21 17:25 12800 ----a-w- c:\windows\SysWow64\mshta.exe 2013-05-21 17:25 . 2013-05-21 17:25 12800 ----a-w- c:\windows\system32\msfeedssync.exe 2013-05-21 17:25 . 2013-05-21 17:25 110592 ----a-w- c:\windows\SysWow64\IEAdvpack.dll 2013-05-21 17:25 . 2013-05-21 17:25 1054720 ----a-w- c:\windows\system32\MsSpellCheckingFacility.exe 2013-05-21 17:25 . 2013-05-21 17:25 102912 ----a-w- c:\windows\system32\inseng.dll 2013-05-21 17:24 . 2013-05-21 17:24 9728 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-05-21 17:24 . 2013-05-21 17:24 9728 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll 2013-05-21 17:24 . 2013-05-21 17:24 648192 ----a-w- c:\windows\system32\d3d10level9.dll 2013-05-21 17:24 . 2013-05-21 17:24 604160 ----a-w- c:\windows\SysWow64\d3d10level9.dll 2013-05-21 17:24 . 2013-05-21 17:24 5632 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-05-21 17:24 . 2013-05-21 17:24 5632 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-05-21 17:24 . 2013-05-21 17:24 5632 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll 2013-05-21 17:24 . 2013-05-21 17:24 5632 ---ha-w- c:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll 2013-05-21 17:24 . 2013-05-21 17:24 522752 ----a-w- c:\windows\system32\XpsGdiConverter.dll 2013-05-21 17:24 . 2013-05-21 17:24 465920 ----a-w- c:\windows\system32\WMPhoto.dll 2013-05-21 17:24 . 2013-05-21 17:24 417792 ----a-w- c:\windows\SysWow64\WMPhoto.dll 2013-05-21 17:24 . 2013-05-21 17:24 4096 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-user32-l1-1-0.dll 2013-05-21 17:24 . 2013-05-21 17:24 4096 ---ha-w- c:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll 2013-05-21 17:24 . 2013-05-21 17:24 3928064 ----a-w- c:\windows\system32\d2d1.dll 2013-05-21 17:24 . 2013-05-21 17:24 364544 ----a-w- c:\windows\SysWow64\XpsGdiConverter.dll 2013-05-21 17:24 . 2013-05-21 17:24 363008 ----a-w- c:\windows\system32\dxgi.dll 2013-05-21 17:24 . 2013-05-21 17:24 3584 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-05-21 17:24 . 2013-05-21 17:24 3584 ---ha-w- c:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll 2013-05-21 17:24 . 2013-05-21 17:24 3419136 ----a-w- c:\windows\SysWow64\d2d1.dll 2013-05-21 17:24 . 2013-05-21 17:24 333312 ----a-w- c:\windows\system32\d3d10_1core.dll 2013-05-21 17:24 . 2013-05-21 17:24 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-version-l1-1-0.dll 2013-05-21 17:24 . 2013-05-21 17:24 3072 ---ha-w- c:\windows\SysWow64\api-ms-win-downlevel-shell32-l1-1-0.dll 2013-05-21 17:24 . 2013-05-21 17:24 3072 ---ha-w- c:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll 2013-05-21 17:24 . 2013-05-21 17:24 3072 ---ha-w- c:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1] @="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}] 2013-06-13 23:00 130736 ----a-w- c:\users\Benutzer\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2] @="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}] 2013-06-13 23:00 130736 ----a-w- c:\users\Benutzer\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3] @="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}] 2013-06-13 23:00 130736 ----a-w- c:\users\Benutzer\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\KAVOverlayIcon] @="{dd230880-495a-11d1-b064-008048ec2fc5}" [HKEY_CLASSES_ROOT\CLSID\{dd230880-495a-11d1-b064-008048ec2fc5}] 2012-12-20 16:20 459784 ----a-w- c:\program files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\shellex.dll . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2013-03-14 3672640] "Dexpot"="c:\program files (x86)\Dexpot\dexpot.exe" [2013-06-03 1433600] "RocketDock"="c:\program files (x86)\RocketDock\RocketDock.exe" [2007-09-02 495616] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "AVP"="c:\program files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe" [2012-12-20 356968] "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-05-11 958576] "APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2013-04-21 59720] "Hobbyist Software On-Off Helper"="c:\program files (x86)\Hobbyist Software\Off Remote Helper\Off-Helper Configuration.exe" [2013-05-31 555848] "iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" [2013-05-31 152392] "BambooCore"="c:\program files (x86)\Bamboo Dock\BambooCore.exe" [2012-10-16 646744] "LogMeIn Hamachi Ui"="c:\program files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" [2013-06-28 2255184] "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2013-03-12 253816] . c:\users\Benutzer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ Dropbox.lnk - c:\users\Benutzer\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup [2013-6-14 29335608] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\KasperskyAntiVirus] "DisableMonitoring"=dword:00000001 . R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] R2 MBAMService;MBAMService;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [x] R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x] R3 DAUpdaterSvc;Dragon Age: Origins - Inhaltsupdater;c:\program files (x86)\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe;c:\program files (x86)\Dragon Age\bin_ship\DAUpdaterSvc.Service.exe [x] R3 hidkmdf;KMDF Driver;c:\windows\system32\DRIVERS\hidkmdf.sys;c:\windows\SYSNATIVE\DRIVERS\hidkmdf.sys [x] R3 LVRS64;Logitech RightSound Filter Driver;c:\windows\system32\DRIVERS\lvrs64.sys;c:\windows\SYSNATIVE\DRIVERS\lvrs64.sys [x] R3 LVUVC64;Logitech HD Webcam C270(UVC);c:\windows\system32\DRIVERS\lvuvc64.sys;c:\windows\SYSNATIVE\DRIVERS\lvuvc64.sys [x] R3 Netaapl;Apple Mobile Device Ethernet Service;c:\windows\system32\DRIVERS\netaapl64.sys;c:\windows\SYSNATIVE\DRIVERS\netaapl64.sys [x] R3 ose64;Office 64 Source Engine;c:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE;c:\program files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [x] R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x] R3 Synth3dVsc;Synth3dVsc;c:\windows\system32\drivers\synth3dvsc.sys;c:\windows\SYSNATIVE\drivers\synth3dvsc.sys [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x] R3 tsusbhub;tsusbhub;c:\windows\system32\drivers\tsusbhub.sys;c:\windows\SYSNATIVE\drivers\tsusbhub.sys [x] R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys;c:\windows\SYSNATIVE\Drivers\usbaapl64.sys [x] R3 VGPU;VGPU;c:\windows\system32\drivers\rdvgkmd.sys;c:\windows\SYSNATIVE\drivers\rdvgkmd.sys [x] R3 WacHidRouter;Wacom Hid Router;c:\windows\system32\DRIVERS\wachidrouter.sys;c:\windows\SYSNATIVE\DRIVERS\wachidrouter.sys [x] R3 wacomrouterfilter;Wacom Router Filter Driver;c:\windows\system32\DRIVERS\wacomrouterfilter.sys;c:\windows\SYSNATIVE\DRIVERS\wacomrouterfilter.sys [x] R3 WinRing0_1_2_0;WinRing0_1_2_0;c:\users\Benutzer\AppData\Local\Temp\tmpEB09.tmp;c:\users\Benutzer\AppData\Local\Temp\tmpEB09.tmp [x] R3 XFDriver64;XFDriver64;c:\program files (x86)\Xfire2\XFDriver64.sys;c:\program files (x86)\Xfire2\XFDriver64.sys [x] S0 CSCrySec;InfoWatch Encrypt Sector Library driver;c:\windows\system32\DRIVERS\CSCrySec.sys;c:\windows\SYSNATIVE\DRIVERS\CSCrySec.sys [x] S0 sptd;sptd;c:\windows\\SystemRoot\System32\Drivers\sptd.sys;c:\windows\\SystemRoot\System32\Drivers\sptd.sys [x] S1 CSVirtualDiskDrv;InfoWatch Virtual Disk driver;c:\windows\system32\DRIVERS\CSVirtualDiskDrv.sys;c:\windows\SYSNATIVE\DRIVERS\CSVirtualDiskDrv.sys [x] S1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter;c:\windows\system32\DRIVERS\klim6.sys;c:\windows\SYSNATIVE\DRIVERS\klim6.sys [x] S1 kltdi;kltdi;c:\windows\system32\DRIVERS\kltdi.sys;c:\windows\SYSNATIVE\DRIVERS\kltdi.sys [x] S1 kneps;kneps;c:\windows\system32\DRIVERS\kneps.sys;c:\windows\SYSNATIVE\DRIVERS\kneps.sys [x] S1 VBoxDrv;VirtualBox Service;c:\windows\system32\DRIVERS\VBoxDrv.sys;c:\windows\SYSNATIVE\DRIVERS\VBoxDrv.sys [x] S1 VBoxUSBMon;VirtualBox USB Monitor Driver;c:\windows\system32\DRIVERS\VBoxUSBMon.sys;c:\windows\SYSNATIVE\DRIVERS\VBoxUSBMon.sys [x] S2 Brick Daemon;Brick Daemon;c:\program files (x86)\Tinkerforge\Brickd\brickd.exe;c:\program files (x86)\Tinkerforge\Brickd\brickd.exe [x] S2 CSObjectsSrv;Verwaltungsservice vom CryproStorage-System;c:\program files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe;c:\program files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe [x] S2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine;c:\program files (x86)\LogMeIn Hamachi\hamachi-2.exe;c:\program files (x86)\LogMeIn Hamachi\hamachi-2.exe [x] S2 LMIGuardianSvc;LMIGuardianSvc;c:\program files (x86)\LogMeIn\x64\LMIGuardianSvc.exe;c:\program files (x86)\LogMeIn\x64\LMIGuardianSvc.exe [x] S2 LMIInfo;LogMeIn Kernel Information Provider;c:\program files (x86)\LogMeIn\x64\RaInfo.sys;c:\program files (x86)\LogMeIn\x64\RaInfo.sys [x] S2 MBAMScheduler;MBAMScheduler;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe;c:\program files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [x] S2 Off-Helper;Off-Helper;c:\program files (x86)\Hobbyist Software\Off Remote Helper\Off-Helper Service.exe;c:\program files (x86)\Hobbyist Software\Off Remote Helper\Off-Helper Service.exe [x] S2 PDF Architect Helper Service;PDF Architect Helper Service;c:\program files (x86)\PDF Architect\HelperService.exe;c:\program files (x86)\PDF Architect\HelperService.exe [x] S2 PDF Architect Service;PDF Architect Service;c:\program files (x86)\PDF Architect\ConversionService.exe;c:\program files (x86)\PDF Architect\ConversionService.exe [x] S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x] S2 WTabletServiceCon;Wacom Consumer Service;c:\program files\Tablet\Pen\WTabletServiceCon.exe;c:\program files\Tablet\Pen\WTabletServiceCon.exe [x] S3 AVMCOWAN;AVM ISDN CoNDIS WAN CAPI Driver;c:\windows\system32\DRIVERS\AVMCOWAN.sys;c:\windows\SYSNATIVE\DRIVERS\AVMCOWAN.sys [x] S3 FPCIBASE;AVM FRITZ!Card PCI;c:\windows\system32\DRIVERS\fpcibase.sys;c:\windows\SYSNATIVE\DRIVERS\fpcibase.sys [x] S3 klkbdflt;Kaspersky Lab KLKBDFLT;c:\windows\system32\DRIVERS\klkbdflt.sys;c:\windows\SYSNATIVE\DRIVERS\klkbdflt.sys [x] S3 klmouflt;Kaspersky Lab KLMOUFLT;c:\windows\system32\DRIVERS\klmouflt.sys;c:\windows\SYSNATIVE\DRIVERS\klmouflt.sys [x] S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x] S3 MotioninJoyXFilter;MotioninJoy Virtual Xinput device Filter Driver;c:\windows\system32\DRIVERS\MijXfilt.sys;c:\windows\SYSNATIVE\DRIVERS\MijXfilt.sys [x] S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x] S3 VBoxNetAdp;VirtualBox Host-Only Ethernet Adapter;c:\windows\system32\DRIVERS\VBoxNetAdp.sys;c:\windows\SYSNATIVE\DRIVERS\VBoxNetAdp.sys [x] S3 VBoxNetFlt;VirtualBox Bridged Networking Service;c:\windows\system32\DRIVERS\VBoxNetFlt.sys;c:\windows\SYSNATIVE\DRIVERS\VBoxNetFlt.sys [x] S3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys;c:\windows\SYSNATIVE\drivers\viahduaa.sys [x] S3 VMfilt;VMfilt;c:\windows\system32\drivers\VMfilt64.sys;c:\windows\SYSNATIVE\drivers\VMfilt64.sys [x] . . --- Andere Dienste/Treiber im Speicher --- . *NewlyCreated* - WS2IFSL . Inhalt des "geplante Tasks" Ordners . 2013-07-07 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-05-19 18:18] . 2013-07-07 c:\windows\Tasks\AutoKMS.job - c:\windows\AutoKMS\AutoKMS.exe [2013-06-26 22:44] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1] @="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}] 2013-06-13 23:00 164016 ----a-w- c:\users\Benutzer\AppData\Roaming\Dropbox\bin\DropboxExt64.19.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2] @="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}] 2013-06-13 23:00 164016 ----a-w- c:\users\Benutzer\AppData\Roaming\Dropbox\bin\DropboxExt64.19.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3] @="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}] 2013-06-13 23:00 164016 ----a-w- c:\users\Benutzer\AppData\Roaming\Dropbox\bin\DropboxExt64.19.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4] @="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}] 2013-06-13 23:00 164016 ----a-w- c:\users\Benutzer\AppData\Roaming\Dropbox\bin\DropboxExt64.19.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\KAVOverlayIcon] @="{dd230880-495a-11d1-b064-008048ec2fc5}" [HKEY_CLASSES_ROOT\CLSID\{dd230880-495a-11d1-b064-008048ec2fc5}] 2012-12-20 16:22 492040 ----a-w- c:\program files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\shellex.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Nvtmru"="c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" [2013-05-16 1012000] "EvtMgr6"="c:\program files\Logitech\SetPointP\SetPoint.exe" [2013-02-21 2991856] "LogMeIn GUI"="c:\program files (x86)\LogMeIn\x64\LogMeInSystray.exe" [2012-11-29 57928] "BCSSync"="c:\program files\Microsoft Office\Office14\BCSSync.exe" [2010-03-13 112512] . ------- Zusätzlicher Suchlauf ------- . uLocal Page = c:\windows\system32\blank.htm uStart Page = hxxp://www.google.de/ mLocal Page = c:\windows\SysWOW64\blank.htm uInternet Settings,ProxyOverride = *.local IE: An OneNote s&enden - c:\progra~1\MICROS~2\Office14\ONBttnIE.dll/105 IE: Hinzufügen zu Anti-Banner - c:\program files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ie_banner_deny.htm IE: Nach Microsoft E&xcel exportieren - c:\progra~1\MICROS~2\Office14\EXCEL.EXE/3000 FF - ProfilePath - c:\users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\ FF - prefs.js: browser.startup.homepage - www.google.de FF - ExtSQL: 2013-05-19 23:14; anti_banner@kaspersky.com; c:\program files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\anti_banner@kaspersky.com FF - ExtSQL: 2013-05-19 23:14; content_blocker@kaspersky.com; c:\program files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\content_blocker@kaspersky.com FF - ExtSQL: 2013-05-19 23:14; online_banking@kaspersky.com; c:\program files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\online_banking@kaspersky.com FF - ExtSQL: 2013-05-19 23:14; url_advisor@kaspersky.com; c:\program files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\url_advisor@kaspersky.com FF - ExtSQL: 2013-05-19 23:14; virtual_keyboard@kaspersky.com; c:\program files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\virtual_keyboard@kaspersky.com FF - ExtSQL: 2013-05-20 03:51; FFPDFArchitectConverter@pdfarchitect.com; c:\program files (x86)\PDF Architect\FFPDFArchitectExt FF - ExtSQL: 2013-05-21 18:41; {F003DA68-8256-4b37-A6C4-350FA04494DF}; c:\program files\Logitech\SetPointP\LogiSmoothFirefoxExt FF - ExtSQL: 2013-05-21 19:14; {d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}; c:\users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF - ExtSQL: 2013-05-21 19:15; elemhidehelper@adblockplus.org; c:\users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\extensions\elemhidehelper@adblockplus.org.xpi FF - ExtSQL: 2013-05-21 19:15; {fe272bd1-5f76-4ea4-8501-a05d35d823fc}; c:\users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\extensions\{fe272bd1-5f76-4ea4-8501-a05d35d823fc}.xpi FF - ExtSQL: 2013-05-21 19:16; {d49a148e-817e-4025-bee3-5d541376de3b}; c:\users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\extensions\{d49a148e-817e-4025-bee3-5d541376de3b}.xpi FF - ExtSQL: 2013-05-21 19:16; adblockpopups@jessehakanen.net; c:\users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\extensions\adblockpopups@jessehakanen.net.xpi FF - ExtSQL: 2013-06-04 16:55; firefox@mega.co.nz; c:\users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\extensions\firefox@mega.co.nz.xpi FF - ExtSQL: 2013-06-11 01:56; compatibility@addons.mozilla.org; c:\users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\extensions\compatibility@addons.mozilla.org.xpi FF - ExtSQL: 2013-06-11 13:32; {a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}; c:\users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} FF - ExtSQL: 2013-06-11 13:32; {987311C6-B504-4aa2-90BF-60CC49808D42}; c:\users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\extensions\{987311C6-B504-4aa2-90BF-60CC49808D42}.xpi FF - ExtSQL: 2013-06-11 13:32; {1018e4d6-728f-4b20-ad56-37578a4de76b}; c:\users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b} FF - ExtSQL: 2013-06-11 13:32; canitbecheaper@trafficbroker.co.uk; c:\users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\extensions\canitbecheaper@trafficbroker.co.uk.xpi FF - ExtSQL: 2013-06-11 13:32; YouTubeAutoReplay@arikv.com; c:\users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\extensions\YouTubeAutoReplay@arikv.com.xpi . - - - - Entfernte verwaiste Registrierungseinträge - - - - . Wow6432Node-HKCU-Run-Sidebar - c:\program files\Windows Sidebar\sidebar.exe Wow6432Node-HKU-Default-RunOnce-SPReview - c:\windows\System32\SPReview\SPReview.exe HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start . . . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\WinRing0_1_2_0] "ImagePath"="\??\c:\users\Benutzer\AppData\Local\Temp\tmp3E.tmp" . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil10d.exe,-101" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\LocalServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\FlashUtil10d.exe" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19114156-8E9A-4D4E-9EE9-17A0E48D3BBB}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.10" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWow64\\Macromed\\Flash\\Flash10d.ocx, 1" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}] @Denied: (A 2) (Everyone) @="IFlashBroker3" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{1D4C8A81-B7AC-460A-8C23-98713C41D6B3}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . ------------------------ Weitere laufende Prozesse ------------------------ . c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe c:\program files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe c:\program files (x86)\NVIDIA Corporation\NVIDIA Update Core\ComUpdatus.exe c:\program files\Tablet\Pen\WacomHost.exe c:\users\Benutzer\AppData\Roaming\Dropbox\bin\Dropbox.exe c:\program files (x86)\Dexpot\plugins\DexControl.exe c:\program files (x86)\Dexpot\plugins\Taskbar Pager.exe . ************************************************************************** . Zeit der Fertigstellung: 2013-07-07 13:31:50 - PC wurde neu gestartet ComboFix-quarantined-files.txt 2013-07-07 11:31 . Vor Suchlauf: 13 Verzeichnis(se), 887.452.639.232 Bytes frei Nach Suchlauf: 17 Verzeichnis(se), 887.314.984.960 Bytes frei . - - End Of File - - 3F5A74F13A4FE2F5B7DE49EE8D9AD470 A36C5E4F47E84449FF07ED3517B43A31 |
![]() | #7 |
/// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() SoftwareUpdater.Bootstrapper wird von Kaspersky PURE 3.0 erkannt Noch en frisches FRST Log bitte. WIe läuft die Kiste? ![]()
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
![]() | #8 |
![]() | ![]() SoftwareUpdater.Bootstrapper wird von Kaspersky PURE 3.0 erkannt Also sieht bis jetzt gut aus ![]() FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 04-07-2013 Ran by Benutzer (administrator) on 07-07-2013 14:57:02 Running from C:\Users\Benutzer\Desktop Windows 7 Ultimate Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\WTabletServiceCon.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (AddGadgets) C:\Program Files (x86)\PCMeter\PCMeterV0.3.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe (Dexpot GbR) C:\Program Files (x86)\Dexpot\dexpot.exe () C:\Program Files (x86)\RocketDock\RocketDock.exe (Dropbox, Inc.) C:\Users\Benutzer\AppData\Roaming\Dropbox\bin\Dropbox.exe (Logitech, Inc.) C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.EXE (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe (Hobbyist Software) C:\Program Files (x86)\Hobbyist Software\Off Remote Helper\Off-Helper Configuration.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe () C:\Program Files (x86)\Bamboo Dock\BambooCore.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Dexpot GbR) C:\Program Files (x86)\Dexpot\Dexpot64.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Dexpot GbR) C:\Program Files (x86)\Dexpot\plugins\DexControl.exe (Dexpot GbR) C:\Program Files (x86)\Dexpot\plugins\Taskbar Pager.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Tinkerforge GmbH) C:\Program Files (x86)\Tinkerforge\Brickd\brickd.exe (Infowatch) C:\Program Files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\RaMaint.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\LogMeIn.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (Hobbyist Software) C:\Program Files (x86)\Hobbyist Software\Off Remote Helper\Off-Helper Service.exe (pdfforge GmbH) C:\Program Files (x86)\PDF Architect\HelperService.exe (pdfforge GmbH) C:\Program Files (x86)\PDF Architect\ConversionService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\ComUpdatus.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_TabletUser.exe (Wacom Technology) C:\Program Files\Tablet\Pen\WacomHost.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_Tablet.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_TouchUser.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Microsoft Corporation) C:\Windows\system32\AUDIODG.EXE ==================== Registry (Whitelisted) ================== HKLM\...\Run: [Nvtmru] "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" [1012000 2013-05-16] (NVIDIA Corporation) HKLM\...\Run: [EvtMgr6] C:\Program Files\Logitech\SetPointP\SetPoint.exe /launchGaming [2991856 2013-02-21] (Logitech, Inc.) HKLM\...\Run: [LogMeIn GUI] "C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe" [57928 2012-11-29] (LogMeIn, Inc.) HKLM\...\Run: [BCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices [112512 2010-03-13] (Microsoft Corporation) Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.) HKCU\...\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun [3672640 2013-03-14] (Disc Soft Ltd) HKCU\...\Run: [Dexpot] C:\Program Files (x86)\Dexpot\dexpot.exe [1433600 2013-06-03] (Dexpot GbR) HKCU\...\Run: [RocketDock] "C:\Program Files (x86)\RocketDock\RocketDock.exe" [495616 2007-09-02] () HKLM-x32\...\Run: [AVP] "C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe" [356968 2012-12-20] (Kaspersky Lab ZAO) HKLM-x32\...\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [958576 2013-05-11] (Adobe Systems Incorporated) HKLM-x32\...\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [59720 2013-04-21] (Apple Inc.) HKLM-x32\...\Run: [Hobbyist Software On-Off Helper] "C:\Program Files (x86)\Hobbyist Software\Off Remote Helper\Off-Helper Configuration.exe" /startup [555848 2013-05-31] (Hobbyist Software) HKLM-x32\...\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe" [152392 2013-05-31] (Apple Inc.) HKLM-x32\...\Run: [BambooCore] C:\Program Files (x86)\Bamboo Dock\BambooCore.exe [646744 2012-10-16] () HKLM-x32\...\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start [2255184 2013-06-28] (LogMeIn Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [253816 2013-03-12] (Oracle Corporation) HKU\Default\...\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun [x] HKU\Default User\...\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun [x] HKU\LogMeInRemoteUser\...\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun [x] Startup: C:\Users\Benutzer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Benutzer\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/ HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL (Microsoft Corporation) BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll (Logitech, Inc.) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) BHO-x32: Kaspersky Passsword Manager Toolbar - {215BA832-75A3-426E-A4FC-7C5B58CE6A10} - C:\PROGRA~2\KASPER~1\KASPER~1.0\KASPER~2\spIEBho.dll (Kaspersky Lab) BHO-x32: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll (pdfforge GmbH) BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO-x32: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll (Logitech, Inc.) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) Toolbar: HKLM-x32 - Kaspersky Passsword Manager Toolbar - {215BA832-75A3-426E-A4FC-7C5B58CE6A10} - C:\PROGRA~2\KASPER~1\KASPER~1.0\KASPER~2\spIEBho.dll (Kaspersky Lab) Handler-x32: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files (x86)\Common Files\Microsoft Shared\Information Retrieval\msitss.dll (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] FireFox: ======== FF ProfilePath: C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default FF Homepage: www.google.de FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_224.dll () FF Plugin: @java.com/DTPlugin,version=10.21.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.21.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin: @wacom.com/wtPlugin,version= - C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll (Wacom) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @videolan.org/vlc,version=2.0.7 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @wacom.com/wtPlugin,version= - C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll (Wacom) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: wacom.com/WacomTabletPlugin - C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll (Wacom) FF Extension: Flagfox - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b} FF Extension: WOT - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} FF Extension: adblockpopups - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\adblockpopups@jessehakanen.net.xpi FF Extension: canitbecheaper - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\canitbecheaper@trafficbroker.co.uk.xpi FF Extension: compatibility - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\compatibility@addons.mozilla.org.xpi FF Extension: elemhidehelper - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\elemhidehelper@adblockplus.org.xpi FF Extension: firefox - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\firefox@mega.co.nz.xpi FF Extension: YouTubeAutoReplay - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\YouTubeAutoReplay@arikv.com.xpi FF Extension: No Name - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\{987311C6-B504-4aa2-90BF-60CC49808D42}.xpi FF Extension: No Name - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF Extension: No Name - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\{d49a148e-817e-4025-bee3-5d541376de3b}.xpi FF Extension: No Name - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\{fe272bd1-5f76-4ea4-8501-a05d35d823fc}.xpi FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF HKLM-x32\...\Firefox\Extensions: C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\url_advisor@kaspersky.com FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\url_advisor@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\virtual_keyboard@kaspersky.com FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\virtual_keyboard@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\content_blocker@kaspersky.com FF Extension: Content Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\content_blocker@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [anti_banner@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\anti_banner@kaspersky.com FF Extension: Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\anti_banner@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [online_banking@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\online_banking@kaspersky.com FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\online_banking@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt FF Extension: PDF Architect Converter For Firefox - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt FF Extension: Logitech SetPoint - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt ==================== Services (Whitelisted) ================= R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe [356968 2012-12-20] (Kaspersky Lab ZAO) R2 Brick Daemon; C:\Program Files (x86)\Tinkerforge\Brickd\brickd.exe [66048 2013-04-19] (Tinkerforge GmbH) R2 CSObjectsSrv; C:\Program Files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe [819040 2012-12-21] (Infowatch) R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe [376144 2013-06-09] (LogMeIn, Inc.) R2 LMIMaint; C:\Program Files (x86)\LogMeIn\x64\RaMaint.exe [226640 2013-06-09] (LogMeIn, Inc.) R2 LogMeIn; C:\Program Files (x86)\LogMeIn\x64\LogMeIn.exe [407424 2012-11-29] (LogMeIn, Inc.) R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) S2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) R2 Off-Helper; C:\Program Files (x86)\Hobbyist Software\Off Remote Helper\Off-Helper Service.exe [6656 2013-05-31] (Hobbyist Software) R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH) R2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH) R2 WTabletServiceCon; C:\Program Files\Tablet\Pen\WTabletServiceCon.exe [619904 2012-12-11] (Wacom Technology, Corp.) ==================== Drivers (Whitelisted) ==================== R3 AVMCOWAN; C:\Windows\System32\DRIVERS\AVMCOWAN.sys [79872 2009-06-10] (AVM GmbH) R0 CSCrySec; C:\Windows\System32\DRIVERS\CSCrySec.sys [84536 2011-06-02] (Infowatch) R1 CSVirtualDiskDrv; C:\Windows\System32\DRIVERS\CSVirtualDiskDrv.sys [66616 2011-06-02] (Infowatch) R3 FPCIBASE; C:\Windows\System32\DRIVERS\fpcibase.sys [899328 2009-06-10] (AVM Berlin) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458584 2012-06-19] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [613720 2012-11-02] (Kaspersky Lab) R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [28504 2012-08-02] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [29016 2012-09-03] (Kaspersky Lab) R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29528 2012-09-03] (Kaspersky Lab) R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [54104 2012-10-18] (Kaspersky Lab) R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [178008 2012-08-13] (Kaspersky Lab) R2 LMIInfo; C:\Program Files (x86)\LogMeIn\x64\RaInfo.sys [16056 2013-05-24] (LogMeIn, Inc.) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [8192 2005-03-29] () S3 Serial; C:\Windows\system32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.) R0 sptd; C:\Windows\System32\Drivers\sptd.sys [564824 2013-05-20] (Duplex Secure Ltd.) R3 VMfilt; C:\Windows\System32\drivers\VMfilt64.sys [25600 2009-07-31] (Creative Technology Ltd.) S3 XFDriver64; C:\Program Files (x86)\Xfire2\XFDriver64.sys [17160 2013-03-14] (XFire) S3 XFDriver64; C:\Program Files (x86)\Xfire2\XFDriver64.sys [17160 2013-03-14] (XFire) U3 ayn7wt0a; C:\Windows\System32\Drivers\ayn7wt0a.sys [0 ] (Advanced Micro Devices) S3 catchme; \??\C:\ComboFix\catchme.sys [x] S4 LMIRfsClientNP; No ImagePath S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [x] S3 tsusbhub; system32\drivers\tsusbhub.sys [x] S3 VGPU; System32\drivers\rdvgkmd.sys [x] R3 WinRing0_1_2_0; \??\C:\Users\Benutzer\AppData\Local\Temp\tmpA505.tmp [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-07-07 13:31 - 2013-07-07 13:31 - 00041855 ____A C:\ComboFix.txt 2013-07-07 13:12 - 2013-07-07 13:31 - 00000000 ____D C:\Qoobox 2013-07-07 13:12 - 2013-07-07 13:30 - 00000000 ____D C:\Windows\erdnt 2013-07-07 13:12 - 2011-06-26 08:45 - 00256000 ____A C:\Windows\PEV.exe 2013-07-07 13:12 - 2010-11-07 19:20 - 00208896 ____A C:\Windows\MBR.exe 2013-07-07 13:12 - 2009-04-20 06:56 - 00060416 ____A (NirSoft) C:\Windows\NIRCMD.exe 2013-07-07 13:12 - 2000-08-31 02:00 - 00518144 ____A (SteelWerX) C:\Windows\SWREG.exe 2013-07-07 13:12 - 2000-08-31 02:00 - 00406528 ____A (SteelWerX) C:\Windows\SWSC.exe 2013-07-07 13:12 - 2000-08-31 02:00 - 00098816 ____A C:\Windows\sed.exe 2013-07-07 13:12 - 2000-08-31 02:00 - 00080412 ____A C:\Windows\grep.exe 2013-07-07 13:12 - 2000-08-31 02:00 - 00068096 ____A C:\Windows\zip.exe 2013-07-07 13:11 - 2013-07-07 13:11 - 05087096 ____R (Swearware) C:\Users\Benutzer\Desktop\ComboFix.exe 2013-07-06 20:58 - 2013-07-06 20:58 - 00000000 ____D C:\Windows\ERUNT 2013-07-06 20:58 - 2013-07-06 20:58 - 00000000 ____D C:\JRT 2013-07-06 20:50 - 2013-07-06 20:50 - 00001931 ____A C:\AdwCleaner[S1].txt 2013-07-06 20:48 - 2013-07-06 20:49 - 00545954 ____A (Oleg N. Scherbakov) C:\Users\Benutzer\Desktop\JRT.exe 2013-07-06 20:48 - 2013-07-06 20:48 - 00650027 ____A C:\Users\Benutzer\Desktop\adwcleaner.exe 2013-07-06 19:55 - 2013-07-06 19:55 - 00000000 ____D C:\FRST 2013-07-06 19:51 - 2013-07-06 19:51 - 01934636 ____A (Farbar) C:\Users\Benutzer\Desktop\FRST64.exe 2013-07-06 14:02 - 2013-07-06 14:02 - 00262144 ____A C:\Windows\System32\config\elam 2013-07-04 22:07 - 2013-07-04 22:09 - 00000000 ____D C:\Program Files\Microsoft Platform SDK 2013-07-04 22:07 - 2013-07-04 22:07 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio .NET 2003 2013-07-04 22:05 - 2013-07-04 22:05 - 01349856 ____A (Microsoft Corporation) C:\Users\Benutzer\Downloads\PSDK-amd64.exe 2013-07-04 22:03 - 2013-07-04 22:56 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Dev-Cpp 2013-07-04 22:03 - 2013-07-04 22:03 - 00000000 ____D C:\Dev-Cpp 2013-07-04 22:02 - 2013-07-04 22:02 - 09326468 ____A C:\Users\Benutzer\Downloads\devcpp- 2013-07-04 21:54 - 2013-07-04 21:54 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_WinUsb_01009.Wdf 2013-07-04 00:01 - 2013-07-04 00:01 - 00000000 ____D C:\Users\Benutzer\Documents\The Lord of the Rings Online 2013-07-03 23:57 - 2013-07-04 01:15 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Turbine 2013-07-03 23:57 - 2013-07-03 23:57 - 00000094 ____A C:\Users\Benutzer\AppData\Local\fusioncache.dat 2013-07-03 22:07 - 2013-07-03 22:07 - 00001199 ____A C:\Users\UpdatusUser\Desktop\Flip 3.4.7.lnk 2013-07-03 22:07 - 2013-07-03 22:07 - 00001199 ____A C:\Users\LogMeInRemoteUser\Desktop\Flip 3.4.7.lnk 2013-07-03 22:06 - 2013-07-03 22:06 - 05907981 ____A (Atmel) C:\Users\Benutzer\Downloads\Flip Installer - 2013-07-03 21:54 - 2013-07-03 22:00 - 00000000 ____D C:\Windows XP 2013-07-03 21:26 - 2013-07-03 22:47 - 00000000 ____D C:\Users\Benutzer\.VirtualBox 2013-07-03 21:26 - 2013-07-03 21:26 - 00000000 ____D C:\Users\Benutzer\VirtualBox VMs 2013-07-03 21:24 - 2013-07-03 21:24 - 00000000 ____D C:\Program Files\Oracle 2013-07-03 21:24 - 2013-07-03 21:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-07-03 21:24 - 2013-06-21 16:01 - 00238352 ____A (Oracle Corporation) C:\Windows\System32\Drivers\VBoxDrv.sys 2013-07-03 21:24 - 2013-06-21 16:00 - 00120080 ____A (Oracle Corporation) C:\Windows\System32\Drivers\VBoxUSBMon.sys 2013-07-03 21:17 - 2013-07-03 21:22 - 99246864 ____A (Oracle Corporation) C:\Users\Benutzer\Downloads\VirtualBox-4.2.14-86644-Win.exe 2013-07-03 21:17 - 2013-07-03 21:18 - 11639710 ____A C:\Users\Benutzer\Downloads\Oracle_VM_VirtualBox_Extension_Pack-4.2.14-86644.vbox-extpack 2013-07-02 23:46 - 2013-07-02 23:46 - 00889416 ____A (Microsoft Corporation) C:\Users\Benutzer\Downloads\dotNetFx40_Full_setup.exe 2013-07-02 23:43 - 2006-05-09 13:32 - 00000000 ____D C:\Users\Benutzer\Downloads\flip-2_4_6 2013-07-02 23:34 - 2013-07-02 23:34 - 00263592 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2013-07-02 23:34 - 2013-07-02 23:34 - 00175016 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2013-07-02 23:34 - 2013-07-02 23:34 - 00175016 ____A (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2013-07-02 23:34 - 2013-07-02 23:34 - 00096168 ____A (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2013-07-02 23:34 - 2013-07-02 23:34 - 00000000 ____D C:\Program Files (x86)\Java 2013-07-02 23:04 - 2013-07-02 23:04 - 00032768 ____A C:\Windows\IsUninst.exe 2013-07-02 22:56 - 2013-07-02 22:56 - 04551939 ____A C:\Users\Benutzer\Downloads\flip-2_4_6.zip 2013-07-02 22:35 - 2013-07-02 22:35 - 00127860 ____A C:\Users\Benutzer\Downloads\memtest86+-4.20.usb.installer.zip 2013-07-02 15:39 - 2013-07-02 15:39 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2013-07-02 00:45 - 2013-07-02 00:45 - 00000000 ____D C:\Program Files (x86)\NirSoft 2013-07-02 00:44 - 2013-07-02 00:44 - 00141192 ____A C:\Users\Benutzer\Downloads\bluescreenview_setup_1.51.exe 2013-07-02 00:22 - 2013-07-03 21:04 - 00000000 ____D C:\Windows\Minidump 2013-07-01 23:39 - 2013-07-01 23:39 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies 2013-07-01 23:36 - 2013-06-21 14:06 - 27781920 ____A (NVIDIA Corporation) C:\Windows\System32\nvoglv64.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 25256224 ____A (NVIDIA Corporation) C:\Windows\System32\nvcompiler.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 21102368 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 17560352 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 13411896 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 11235104 ____A (NVIDIA Corporation) C:\Windows\System32\Drivers\nvlddmkm.sys 2013-07-01 23:36 - 2013-06-21 14:06 - 09239344 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuda.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 07687592 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 07641832 ____A (NVIDIA Corporation) C:\Windows\System32\nvopencl.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 06324360 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 02953504 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuvid.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 02777888 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 02363680 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuvenc.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 02002720 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 01832224 ____A (NVIDIA Corporation) C:\Windows\System32\nvdispco6432049.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 01511712 ____A (NVIDIA Corporation) C:\Windows\System32\nvdispgenco6432049.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00925648 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00572704 ____A (NVIDIA Corporation) C:\Windows\System32\NvFBC64.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00570656 ____A (NVIDIA Corporation) C:\Windows\System32\NvIFR64.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00467232 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00465184 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00266448 ____A (NVIDIA Corporation) C:\Windows\System32\nvinitx.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00218592 ____A (NVIDIA Corporation) C:\Windows\System32\nvoglshim64.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00214448 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00181488 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2013-06-30 22:51 - 2013-06-30 22:51 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_xusb21_01009.Wdf 2013-06-30 22:51 - 2013-06-30 22:51 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_MijXfilt_01009.Wdf 2013-06-30 18:25 - 2013-06-30 18:25 - 00000000 ____D C:\Users\Benutzer\Documents\Wizards of the Coast 2013-06-29 01:01 - 2013-06-29 01:01 - 00000000 ____D C:\Games 2013-06-29 00:18 - 2013-06-29 00:18 - 04396440 ____A (Piriform Ltd) C:\Users\Benutzer\Downloads\ccsetup403.exe 2013-06-27 00:44 - 2013-07-07 13:44 - 00000266 ____A C:\Windows\Tasks\AutoKMS.job 2013-06-27 00:44 - 2013-06-27 17:33 - 00000000 ____D C:\Windows\AutoKMS 2013-06-26 23:29 - 2013-06-30 17:28 - 00000000 ____D C:\Users\Benutzer\Documents\RIFT 2013-06-25 20:41 - 2013-06-25 20:43 - 00012121 ____A C:\Users\Benutzer\AppData\Roaming\PStrip.ini 2013-06-25 07:04 - 2013-06-25 07:04 - 00745495 ____A C:\Users\Benutzer\Downloads\MCP2200 Windows Driver 2013-02-21.zip 2013-06-24 20:02 - 2006-09-30 11:36 - 00013008 ____A C:\Windows\System32\Drivers\pstrip64.sys 2013-06-24 20:01 - 2013-06-24 20:01 - 01411304 ____A (EnTech Taiwan) C:\Users\Benutzer\Downloads\pstrip.exe 2013-06-24 19:41 - 2013-06-24 19:41 - 01420256 ____A (techPowerUp (www.techpowerup.com)) C:\Users\Benutzer\Downloads\GPU-Z_ASUS_ROG_0.7.2.exe 2013-06-24 19:24 - 2013-06-24 19:24 - 01198007 ____A (CPUID, Inc. ) C:\Users\Benutzer\Downloads\MemtweakIt-1017-setup.exe 2013-06-24 19:10 - 2013-06-24 19:19 - 391842315 ___RA C:\Users\Benutzer\Downloads\RealBench_v1.051.rar 2013-06-24 00:36 - 2013-06-24 00:36 - 00000000 ____D C:\Users\Benutzer\Downloads\Moonlight Lady 2013-06-24 00:33 - 2013-06-24 00:33 - 00019727 ____A C:\Users\Benutzer\Downloads\hshare.net.Moonlight.Lady.EP01-05.ENG.SUB.FILES.rar 2013-06-23 22:17 - 2013-06-23 22:23 - 00001981 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_prc_drk.log 2013-06-23 22:12 - 2013-06-23 22:15 - 00001982 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_prc_eye.log 2013-06-23 22:11 - 2013-06-23 22:11 - 00001862 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_003.log 2013-06-23 22:11 - 2013-06-23 22:11 - 00001861 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_001.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001862 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_002.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001860 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_pro_col.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001860 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_war.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001860 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_rog.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001860 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_mag.log 2013-06-23 22:09 - 2013-06-23 22:10 - 00001861 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_prc_one.log 2013-06-23 22:09 - 2013-06-23 22:09 - 00001861 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_prc_seb.log 2013-06-23 21:29 - 2013-06-23 21:29 - 10319008 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_WarriorItemPack2.exe 2013-06-23 21:29 - 2013-06-23 21:29 - 07023824 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_MageItemPack2.exe 2013-06-23 21:28 - 2013-06-23 21:51 - 1272222488 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_MarkOfTheAssassin.exe 2013-06-23 21:28 - 2013-06-23 21:42 - 885015120 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_Legacy.exe 2013-06-23 21:28 - 2013-06-23 21:29 - 07645904 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_RogueItemPack2.exe 2013-06-23 21:28 - 2013-06-23 21:28 - 04826056 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_WarriorItemPack.exe 2013-06-23 21:27 - 2013-06-23 21:27 - 06229408 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_RogueItemPack.exe 2013-06-23 21:27 - 2013-06-23 21:27 - 05697792 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_MageItemPack.exe 2013-06-23 21:27 - 2013-06-23 21:27 - 01638048 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_SignatureEdition.exe 2013-06-23 21:26 - 2013-06-23 21:26 - 33120856 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_ExiledPrince.exe 2013-06-23 21:26 - 2013-06-23 21:26 - 14142624 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_BlackEmporium.exe 2013-06-23 18:41 - 2013-06-23 18:41 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Freemium 2013-06-23 18:38 - 2013-06-23 18:39 - 00000000 ____D C:\Users\Benutzer\AppData\Local\DownloadGuide 2013-06-23 18:38 - 2013-06-23 18:38 - 00444400 ____A C:\Users\Benutzer\Downloads\DLG_free-clever-privacy_chip_de-DE.exe 2013-06-23 18:25 - 2013-06-23 21:25 - 00004064 ____A C:\shared.log 2013-06-23 18:25 - 2013-06-23 18:25 - 00003887 ____A C:\Users\Benutzer\Documents\Dragon Age 2 1.04.log 2013-06-23 18:24 - 2013-06-23 18:25 - 48330216 ____A (BioWare) C:\Users\Benutzer\Downloads\DragonAge2-1.04.exe 2013-06-23 18:19 - 2013-06-23 18:19 - 00000000 ____D C:\ProgramData\EA Core 2013-06-23 18:09 - 2013-06-23 18:09 - 00000000 ____D C:\Program Files (x86)\The Elder Scrolls Arena 2013-06-23 18:08 - 2013-06-23 18:08 - 00000000 ____D C:\Users\Benutzer\AppData\Local\DOSBox 2013-06-23 18:06 - 2013-06-23 18:06 - 00000000 ____D C:\Program Files (x86)\DOSBox-0.74 2013-06-23 17:57 - 2013-06-23 17:58 - 01448809 ____A (DOSBox Team) C:\Users\Benutzer\Downloads\DOSBox0.74-win32-installer.exe 2013-06-23 17:55 - 2013-06-23 18:22 - 155920571 ____A C:\Users\Benutzer\Downloads\DFInstall.zip 2013-06-23 17:54 - 2013-06-23 17:55 - 09190807 ____A C:\Users\Benutzer\Downloads\Arena106.exe 2013-06-23 17:53 - 2008-10-15 06:22 - 05631312 ____A (Microsoft Corporation) C:\Windows\System32\D3DX9_40.dll 2013-06-23 17:53 - 2008-10-15 06:22 - 04379984 ____A (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2013-06-23 17:53 - 2008-10-15 06:22 - 02605920 ____A (Microsoft Corporation) C:\Windows\System32\D3DCompiler_40.dll 2013-06-23 17:53 - 2008-10-15 06:22 - 02036576 ____A (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2013-06-23 17:53 - 2008-10-15 06:22 - 00519000 ____A (Microsoft Corporation) C:\Windows\System32\d3dx10_40.dll 2013-06-23 17:53 - 2008-10-15 06:22 - 00452440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2013-06-23 16:43 - 2013-06-23 16:45 - 00003763 ____A C:\Users\Benutzer\Documents\Dragon Age Origins 1.05.log 2013-06-23 16:42 - 2013-06-23 16:43 - 101553128 ____A (BioWare) C:\Users\Benutzer\Downloads\DragonAge1.05.exe 2013-06-23 15:54 - 2013-06-23 15:54 - 00001289 ____A C:\Users\Benutzer\Documents\DAO Addins Updater.log 2013-06-23 15:47 - 2013-06-23 15:51 - 00003259 ____A C:\Users\Benutzer\Documents\Dragon Age Origins 1.04.log 2013-06-23 15:14 - 2013-06-23 15:14 - 00000000 ____D C:\ProgramData\BioWare 2013-06-23 15:13 - 2013-06-23 18:17 - 00000000 ____D C:\Users\Benutzer\Documents\BioWare 2013-06-23 15:13 - 2013-06-23 15:13 - 00000000 ____D C:\Users\Benutzer\AppData\Local\EA Core 2013-06-23 15:12 - 2013-06-23 16:43 - 00000000 ____D C:\Program Files (x86)\Electronic Arts 2013-06-23 15:11 - 2013-06-23 15:11 - 00000000 ____D C:\Windows\1C4551A64743409391E41477CD655043.TMP 2013-06-23 14:59 - 2013-06-23 16:44 - 00000000 ____D C:\Program Files (x86)\Dragon Age 2013-06-23 14:59 - 2013-06-23 15:12 - 00023349 ____A C:\Users\Benutzer\Documents\Install Dragon Age Origins.log 2013-06-23 11:32 - 2013-07-01 00:23 - 00000000 ____D C:\Program Files (x86)\Warhammer Online - Age of Reckoning 2013-06-23 11:30 - 2013-06-23 11:31 - 42929231 ____A C:\Users\Benutzer\Downloads\WarhammerOnlineInstaller.exe 2013-06-23 06:35 - 2013-06-23 06:35 - 05126104 ____A (Piriform Ltd) C:\Users\Benutzer\Downloads\spsetup122.exe 2013-06-23 04:15 - 2013-07-03 23:54 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\.minecraft 2013-06-23 04:13 - 2013-06-23 08:46 - 00000000 ____D C:\Program Files (x86)\GUILD WARS 2013-06-23 04:13 - 2013-06-23 04:13 - 00000000 ____D C:\Users\Benutzer\Documents\GUILD WARS 2013-06-23 04:12 - 2013-06-23 04:12 - 00105234 ____A C:\Users\Benutzer\Downloads\gwsetup(1).zip 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\wacomid-desktop-launcher.DCFD4B89A63EE70BC162777F06D4B93B6397AEC7.1 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Wacom 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\ProgramData\Wacom 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Program Files (x86)\Bamboo Dock 2013-06-22 01:54 - 2013-06-22 01:55 - 00000002 ____A C:\Users\Benutzer\.bdockinstall.log 2013-06-22 01:54 - 2013-06-22 01:54 - 30011936 ____A C:\Users\Benutzer\Downloads\dock_setup.exe 2013-06-22 01:49 - 2013-06-22 01:49 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_wachidrouter_01009.Wdf 2013-06-22 01:41 - 2013-06-22 01:41 - 00000000 ____D C:\Users\Benutzer\Documents\ArtRage Paintings 2013-06-22 01:41 - 2013-06-22 01:41 - 00000000 ____D C:\ProgramData\Caphyon 2013-06-22 01:41 - 2013-06-22 01:41 - 00000000 ____D C:\Program Files (x86)\Ambient Design 2013-06-22 01:39 - 2013-06-22 01:41 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Ambient Design 2013-06-22 01:36 - 2013-06-22 01:37 - 82461824 ____A (Ambient Design) C:\Users\Benutzer\Downloads\install_artrage_4.exe 2013-06-22 01:16 - 2013-06-22 01:16 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\WTablet 2013-06-22 01:15 - 2013-06-22 01:15 - 00000000 ____D C:\Program Files\TabletPlugins 2013-06-22 01:15 - 2013-06-22 01:15 - 00000000 ____D C:\Program Files\Tablet 2013-06-22 01:15 - 2013-06-22 01:15 - 00000000 ____D C:\Program Files (x86)\TabletPlugins 2013-06-22 01:15 - 2012-12-11 13:07 - 01981312 ____A (Wacom Technology, Corp.) C:\Windows\System32\Pen_Tablet.dll 2013-06-22 01:15 - 2012-12-11 13:07 - 01974144 ____A (Wacom Technology, Corp.) C:\Windows\System32\Pen_Touch_Tablet.dll 2013-06-22 01:15 - 2012-12-11 13:07 - 01843584 ____A (Wacom Technology, Corp.) C:\Windows\System32\Wintab32.dll 2013-06-22 01:15 - 2012-12-11 13:07 - 01840000 ____A (Wacom Technology, Corp.) C:\Windows\System32\WacomMT.dll 2013-06-22 01:15 - 2012-12-11 13:07 - 01628544 ____A (Wacom Technology, Corp.) C:\Windows\SysWOW64\Pen_Tablet.dll 2013-06-22 01:15 - 2012-12-11 13:07 - 01621888 ____A (Wacom Technology, Corp.) C:\Windows\SysWOW64\Pen_Touch_Tablet.dll 2013-06-22 01:15 - 2012-12-11 13:07 - 01509760 ____A (Wacom Technology, Corp.) C:\Windows\SysWOW64\Wintab32.dll 2013-06-22 01:15 - 2012-12-11 13:07 - 01505664 ____A (Wacom Technology, Corp.) C:\Windows\SysWOW64\WacomMT.dll 2013-06-22 01:15 - 2012-12-03 16:36 - 00081824 ____A (Wacom Technology) C:\Windows\System32\Drivers\wachidrouter.sys 2013-06-22 01:15 - 2012-12-03 16:36 - 00013728 ____A (Windows (R) Win 7 DDK provider) C:\Windows\System32\Drivers\hidkmdf.sys 2013-06-22 01:15 - 2012-11-15 09:41 - 00015776 ____A (Wacom Technology) C:\Windows\System32\Drivers\wacomrouterfilter.sys 2013-06-22 01:14 - 2013-06-22 01:15 - 38455200 ____A C:\Users\Benutzer\Downloads\cons532-1_int.exe 2013-06-21 16:00 - 2013-06-21 16:00 - 00204048 ____A (Oracle Corporation) C:\Windows\System32\VBoxNetFltNobj.dll 2013-06-21 16:00 - 2013-06-21 16:00 - 00146704 ____A (Oracle Corporation) C:\Windows\System32\Drivers\VBoxNetFlt.sys 2013-06-21 16:00 - 2013-06-21 16:00 - 00131856 ____A (Oracle Corporation) C:\Windows\System32\Drivers\VBoxNetAdp.sys 2013-06-21 05:16 - 2013-06-21 05:16 - 00566048 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2013-06-19 22:40 - 2013-07-07 13:43 - 00000000 ___RD C:\Users\Benutzer\Dropbox 2013-06-19 22:37 - 2013-07-07 14:10 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Dropbox 2013-06-19 22:36 - 2013-06-19 22:36 - 34935760 ____A (Dropbox, Inc.) C:\Users\Benutzer\Downloads\Dropbox 2.2.3.exe 2013-06-18 17:54 - 2013-06-18 17:55 - 00000000 ____D C:\Program Files (x86)\Tinkerforge 2013-06-18 17:53 - 2013-06-18 17:54 - 18917020 ____A C:\Users\Benutzer\Downloads\brickv_windows_2_0_5.exe 2013-06-18 17:53 - 2013-06-18 17:53 - 04970233 ____A C:\Users\Benutzer\Downloads\brickd_windows_2_0_5.exe 2013-06-18 17:06 - 2013-06-18 17:06 - 04378864 ____A (Piriform Ltd) C:\Users\Benutzer\Downloads\ccsetup402.exe 2013-06-18 01:45 - 2013-06-18 01:45 - 02002832 ____A C:\Users\Benutzer\Downloads\Red-Collection---AnnaRoma-UPGRADE-5.zip 2013-06-18 01:44 - 2013-06-18 01:44 - 00040791 ____A C:\Users\Benutzer\Downloads\ROG-v1.zip 2013-06-18 01:40 - 2013-06-18 01:40 - 00000000 ____D C:\Program Files (x86)\RocketDock 2013-06-18 01:39 - 2013-06-18 01:40 - 06463660 ____A (Punk Software ) C:\Users\Benutzer\Downloads\RocketDock-v1.3.5.exe 2013-06-17 23:35 - 2013-07-06 23:26 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Skyrim 2013-06-17 23:35 - 2013-06-17 23:35 - 00000000 ____D C:\Users\Benutzer\Documents\Witcher 2 2013-06-17 23:03 - 2013-06-17 23:03 - 00000000 ____D C:\Program Files (x86)\CPU-Z 2013-06-17 23:02 - 2013-06-23 04:17 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\NVIDIA 2013-06-17 23:02 - 2013-06-17 23:02 - 00000000 ____D C:\Program Files (x86)\GPU-Z 2013-06-17 23:01 - 2013-06-17 23:01 - 01405920 ____A (techPowerUp (www.techpowerup.com)) C:\Users\Benutzer\Downloads\GPU-Z_ASUS_ROG_0.7.1.exe 2013-06-17 23:01 - 2013-06-17 23:01 - 01373832 ____A (CPUID, Inc. ) C:\Users\Benutzer\Downloads\cpu-z_1.64-rog-setup-en.exe 2013-06-17 22:55 - 2013-06-17 22:56 - 00000000 ____D C:\Program Files (x86)\TurnedOnTimesView 2013-06-17 22:52 - 2013-06-17 22:52 - 00064922 ____A C:\Users\Benutzer\Downloads\turnedontimesview.zip 2013-06-17 02:59 - 2013-07-06 19:02 - 00000020 ____A C:\Users\Benutzer\AppData\Roaming\Network Meter_Usage.ini 2013-06-17 01:00 - 2013-07-06 19:00 - 00005690 ____A C:\Users\Benutzer\Network_Meter_Data.js 2013-06-17 00:38 - 2013-06-17 00:38 - 00001138 ____A C:\Users\Benutzer\AppData\Roaming\Network Meter_Settings.ini 2013-06-17 00:38 - 2013-06-17 00:38 - 00000842 ____A C:\Users\Benutzer\AppData\Roaming\Drives Meter_Settings.ini 2013-06-17 00:37 - 2013-06-17 00:37 - 00000297 ____A C:\Users\Benutzer\AppData\Roaming\GPU MeterV2_Settings.ini 2013-06-17 00:35 - 2013-06-17 23:33 - 00000095 ____A C:\Users\Benutzer\AppData\Roaming\Control System_Settings.ini 2013-06-17 00:35 - 2013-06-17 00:36 - 00000627 ____A C:\Users\Benutzer\AppData\Roaming\All CPU MeterV3_Settings.ini 2013-06-17 00:33 - 2013-06-20 01:36 - 00000000 ____D C:\Program Files (x86)\PCMeter 2013-06-16 03:08 - 2013-07-06 22:16 - 00000000 ____D C:\Users\Benutzer\Desktop 4 2013-06-16 03:08 - 2013-07-06 17:15 - 00000000 ____D C:\Users\Benutzer\Desktop 2 2013-06-16 03:08 - 2013-07-05 18:58 - 00000000 ____D C:\Users\Benutzer\Desktop 3 2013-06-16 03:03 - 2013-06-16 03:04 - 00002410 ____A C:\Windows\SysWOW64\cplLogon.tsk 2013-06-16 03:03 - 2013-06-16 03:03 - 02218077 ____A (Daniel Rebelo ) C:\Users\Benutzer\Downloads\Logon Screen 2.56.exe 2013-06-16 03:03 - 2013-06-16 03:03 - 00000000 ____D C:\Program Files\Logon Screen 2013-06-16 02:46 - 2013-06-16 02:48 - 00000000 ___AD C:\Windows\SysWOW64\ROG_Video Intro dir 2013-06-16 02:46 - 2013-06-16 02:43 - 00680960 ____A (ASUSTeK Computer Inc.) C:\Windows\SysWOW64\ROGThemeSetup.exe 2013-06-16 02:46 - 2013-06-16 02:43 - 00201728 ____A (ScreenTime Media) C:\Windows\SysWOW64\ROG_Video Intro .scr 2013-06-16 02:46 - 2011-02-25 08:19 - 02871808 ____A (Microsoft Corporation) C:\Windows\explorer.exe.rogbak 2013-06-16 02:25 - 2013-06-16 02:26 - 30789811 ____A C:\Users\Benutzer\Downloads\ROG_THEME_V10014_Win7.zip 2013-06-16 02:10 - 2013-07-07 13:41 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Dexpot 2013-06-16 02:10 - 2013-06-16 02:10 - 00000000 ____D C:\Program Files (x86)\Dexpot 2013-06-16 02:06 - 2013-06-16 02:06 - 02796815 ____A (Dexpot GbR) C:\Users\Benutzer\Downloads\dexpot_169_r2285.exe 2013-06-16 01:53 - 2013-06-16 01:53 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Bump Technologies, Inc 2013-06-16 01:50 - 2013-06-16 01:50 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Bump Technologies, Inc 2013-06-16 01:49 - 2013-06-16 01:50 - 16628120 ____A (Bump Technologies, Inc. ) C:\Users\Benutzer\Downloads\BumpTop-2.1-6211.exe 2013-06-15 02:13 - 2013-06-08 16:08 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2013-06-15 02:13 - 2013-06-08 16:07 - 19233792 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2013-06-15 02:13 - 2013-06-08 16:06 - 15404544 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2013-06-15 02:13 - 2013-06-08 16:06 - 02648064 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2013-06-15 02:13 - 2013-06-08 16:06 - 00526336 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll 2013-06-15 02:13 - 2013-06-08 14:28 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2013-06-15 02:13 - 2013-06-08 13:42 - 01141248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-06-15 02:13 - 2013-06-08 13:40 - 14327808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-06-15 02:13 - 2013-06-08 13:40 - 13760512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-06-15 02:13 - 2013-06-08 13:40 - 02046976 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-06-15 02:13 - 2013-06-08 13:40 - 00391168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-06-15 02:13 - 2013-06-08 13:13 - 02706432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-06-13 01:23 - 2013-05-17 03:25 - 02877440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-06-13 01:23 - 2013-05-17 03:25 - 01767936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-06-13 01:23 - 2013-05-17 03:25 - 00690688 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-06-13 01:23 - 2013-05-17 03:25 - 00493056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-06-13 01:23 - 2013-05-17 03:25 - 00109056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-06-13 01:23 - 2013-05-17 03:25 - 00061440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-06-13 01:23 - 2013-05-17 03:25 - 00039424 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-06-13 01:23 - 2013-05-17 03:25 - 00033280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-06-13 01:23 - 2013-05-17 02:59 - 02241024 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll 2013-06-13 01:23 - 2013-05-17 02:59 - 00051712 ____A (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe 2013-06-13 01:23 - 2013-05-17 02:58 - 03958784 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll 2013-06-13 01:23 - 2013-05-17 02:58 - 00855552 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll 2013-06-13 01:23 - 2013-05-17 02:58 - 00603136 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll 2013-06-13 01:23 - 2013-05-17 02:58 - 00136704 ____A (Microsoft Corporation) C:\Windows\System32\iesysprep.dll 2013-06-13 01:23 - 2013-05-17 02:58 - 00067072 ____A (Microsoft Corporation) C:\Windows\System32\iesetup.dll 2013-06-13 01:23 - 2013-05-17 02:58 - 00053248 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll 2013-06-13 01:23 - 2013-05-17 02:58 - 00039936 ____A (Microsoft Corporation) C:\Windows\System32\iernonce.dll 2013-06-13 01:23 - 2013-05-14 14:23 - 00089600 ____A (Microsoft Corporation) C:\Windows\System32\RegisterIEPKEYs.exe 2013-06-13 01:23 - 2013-05-14 10:40 - 00071680 ____A (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-06-12 16:52 - 2013-06-12 16:52 - 13081608 ____A (Microsoft Corporation) C:\Users\Benutzer\Downloads\Silverlight_x64.exe 2013-06-12 16:52 - 2013-06-12 16:52 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2013-06-12 16:52 - 2013-06-12 16:52 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-06-12 12:58 - 2013-05-13 07:51 - 01464320 ____A (Microsoft Corporation) C:\Windows\System32\crypt32.dll 2013-06-12 12:58 - 2013-05-13 07:51 - 00184320 ____A (Microsoft Corporation) C:\Windows\System32\cryptsvc.dll 2013-06-12 12:58 - 2013-05-13 07:51 - 00139776 ____A (Microsoft Corporation) C:\Windows\System32\cryptnet.dll 2013-06-12 12:58 - 2013-05-13 07:50 - 00052224 ____A (Microsoft Corporation) C:\Windows\System32\certenc.dll 2013-06-12 12:58 - 2013-05-13 06:45 - 01160192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-06-12 12:58 - 2013-05-13 06:45 - 00140288 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2013-06-12 12:58 - 2013-05-13 06:45 - 00103936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2013-06-12 12:58 - 2013-05-13 05:43 - 01192448 ____A (Microsoft Corporation) C:\Windows\System32\certutil.exe 2013-06-12 12:58 - 2013-05-13 05:08 - 00903168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe 2013-06-12 12:58 - 2013-05-13 05:08 - 00043008 ____A (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll 2013-06-12 12:58 - 2013-05-10 07:49 - 00030720 ____A (Microsoft Corporation) C:\Windows\System32\cryptdlg.dll 2013-06-12 12:58 - 2013-05-10 05:20 - 00024576 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll 2013-06-12 12:58 - 2013-05-08 08:39 - 01910632 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys 2013-06-12 12:58 - 2013-04-26 07:51 - 00751104 ____A (Microsoft Corporation) C:\Windows\System32\win32spl.dll 2013-06-12 12:58 - 2013-04-26 06:55 - 00492544 ____A (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2013-06-12 12:58 - 2013-04-17 09:02 - 01230336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2013-06-12 12:58 - 2013-04-17 08:24 - 01424384 ____A (Microsoft Corporation) C:\Windows\System32\WindowsCodecs.dll 2013-06-12 12:57 - 2013-04-26 01:30 - 01505280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2013-06-12 12:57 - 2013-04-01 00:52 - 01887232 ____A (Microsoft Corporation) C:\Windows\System32\d3d11.dll 2013-06-10 21:10 - 2013-06-10 21:11 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2013-06-10 21:10 - 2013-06-10 21:11 - 00000000 ____D C:\Program Files\iTunes 2013-06-10 21:10 - 2013-06-10 21:11 - 00000000 ____D C:\Program Files (x86)\iTunes 2013-06-10 21:10 - 2013-06-10 21:10 - 00000000 ____D C:\Program Files\iPod ==================== One Month Modified Files and Folders ======= 2013-07-07 14:54 - 2013-05-21 18:52 - 00000000 ____D C:\Users\Benutzer\AppData\Local\LogMeIn Hamachi 2013-07-07 14:54 - 2013-05-21 18:49 - 00000000 ____D C:\ProgramData\LogMeIn 2013-07-07 14:54 - 2013-05-20 00:38 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Apps\2.0 2013-07-07 14:54 - 2013-05-20 00:00 - 00000000 ____D C:\Program Files (x86)\Steam 2013-07-07 14:49 - 2013-05-19 23:20 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Skype 2013-07-07 14:18 - 2013-05-20 00:36 - 00000884 ____A C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-07-07 14:10 - 2013-06-19 22:37 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Dropbox 2013-07-07 13:49 - 2009-07-14 06:45 - 00021408 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-07-07 13:49 - 2009-07-14 06:45 - 00021408 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-07-07 13:45 - 2013-05-19 22:46 - 01153647 ____N C:\Windows\WindowsUpdate.log 2013-07-07 13:44 - 2013-06-27 00:44 - 00000266 ____A C:\Windows\Tasks\AutoKMS.job 2013-07-07 13:44 - 2013-05-19 23:14 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2013-07-07 13:43 - 2013-06-19 22:40 - 00000000 ___RD C:\Users\Benutzer\Dropbox 2013-07-07 13:42 - 2013-05-19 23:01 - 00000000 ____D C:\ProgramData\NVIDIA 2013-07-07 13:42 - 2009-07-14 07:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT 2013-07-07 13:41 - 2013-06-16 02:10 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Dexpot 2013-07-07 13:31 - 2013-07-07 13:31 - 00041855 ____A C:\ComboFix.txt 2013-07-07 13:31 - 2013-07-07 13:12 - 00000000 ____D C:\Qoobox 2013-07-07 13:31 - 2009-07-14 05:20 - 00000000 __RHD C:\users\Default 2013-07-07 13:30 - 2013-07-07 13:12 - 00000000 ____D C:\Windows\erdnt 2013-07-07 13:23 - 2009-07-14 04:34 - 00000215 ____A C:\Windows\system.ini 2013-07-07 13:11 - 2013-07-07 13:11 - 05087096 ____R (Swearware) C:\Users\Benutzer\Desktop\ComboFix.exe 2013-07-06 23:26 - 2013-06-17 23:35 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Skyrim 2013-07-06 22:16 - 2013-06-16 03:08 - 00000000 ____D C:\Users\Benutzer\Desktop 4 2013-07-06 21:56 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2013-07-06 20:58 - 2013-07-06 20:58 - 00000000 ____D C:\Windows\ERUNT 2013-07-06 20:58 - 2013-07-06 20:58 - 00000000 ____D C:\JRT 2013-07-06 20:50 - 2013-07-06 20:50 - 00001931 ____A C:\AdwCleaner[S1].txt 2013-07-06 20:49 - 2013-07-06 20:48 - 00545954 ____A (Oleg N. Scherbakov) C:\Users\Benutzer\Desktop\JRT.exe 2013-07-06 20:48 - 2013-07-06 20:48 - 00650027 ____A C:\Users\Benutzer\Desktop\adwcleaner.exe 2013-07-06 19:55 - 2013-07-06 19:55 - 00000000 ____D C:\FRST 2013-07-06 19:51 - 2013-07-06 19:51 - 01934636 ____A (Farbar) C:\Users\Benutzer\Desktop\FRST64.exe 2013-07-06 19:02 - 2013-06-17 02:59 - 00000020 ____A C:\Users\Benutzer\AppData\Roaming\Network Meter_Usage.ini 2013-07-06 19:02 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Sidebar 2013-07-06 19:00 - 2013-06-17 01:00 - 00005690 ____A C:\Users\Benutzer\Network_Meter_Data.js 2013-07-06 17:15 - 2013-06-16 03:08 - 00000000 ____D C:\Users\Benutzer\Desktop 2 2013-07-06 14:02 - 2013-07-06 14:02 - 00262144 ____A C:\Windows\System32\config\elam 2013-07-05 18:58 - 2013-06-16 03:08 - 00000000 ____D C:\Users\Benutzer\Desktop 3 2013-07-04 22:56 - 2013-07-04 22:03 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Dev-Cpp 2013-07-04 22:19 - 2013-05-28 01:22 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-07-04 22:18 - 2013-05-28 01:22 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2013-07-04 22:09 - 2013-07-04 22:07 - 00000000 ____D C:\Program Files\Microsoft Platform SDK 2013-07-04 22:07 - 2013-07-04 22:07 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio .NET 2003 2013-07-04 22:05 - 2013-07-04 22:05 - 01349856 ____A (Microsoft Corporation) C:\Users\Benutzer\Downloads\PSDK-amd64.exe 2013-07-04 22:03 - 2013-07-04 22:03 - 00000000 ____D C:\Dev-Cpp 2013-07-04 22:02 - 2013-07-04 22:02 - 09326468 ____A C:\Users\Benutzer\Downloads\devcpp- 2013-07-04 21:54 - 2013-07-04 21:54 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_WinUsb_01009.Wdf 2013-07-04 19:37 - 2009-07-14 19:58 - 00710782 ____A C:\Windows\System32\perfh007.dat 2013-07-04 19:37 - 2009-07-14 19:58 - 00153874 ____A C:\Windows\System32\perfc007.dat 2013-07-04 19:37 - 2009-07-14 07:13 - 01650772 ____A C:\Windows\System32\PerfStringBackup.INI 2013-07-04 17:02 - 2013-05-19 23:25 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-07-04 01:15 - 2013-07-03 23:57 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Turbine 2013-07-04 00:40 - 2013-05-21 19:13 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\vlc 2013-07-04 00:01 - 2013-07-04 00:01 - 00000000 ____D C:\Users\Benutzer\Documents\The Lord of the Rings Online 2013-07-03 23:57 - 2013-07-03 23:57 - 00000094 ____A C:\Users\Benutzer\AppData\Local\fusioncache.dat 2013-07-03 23:57 - 2013-05-20 02:00 - 01677006 ____A C:\Windows\SysWOW64\PerfStringBackup.INI 2013-07-03 23:57 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\Registration 2013-07-03 23:54 - 2013-06-23 04:15 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\.minecraft 2013-07-03 22:50 - 2013-05-28 01:52 - 00000000 ____D C:\Users\Benutzer\Documents\Outlook-Dateien 2013-07-03 22:47 - 2013-07-03 21:26 - 00000000 ____D C:\Users\Benutzer\.VirtualBox 2013-07-03 22:07 - 2013-07-03 22:07 - 00001199 ____A C:\Users\UpdatusUser\Desktop\Flip 3.4.7.lnk 2013-07-03 22:07 - 2013-07-03 22:07 - 00001199 ____A C:\Users\LogMeInRemoteUser\Desktop\Flip 3.4.7.lnk 2013-07-03 22:06 - 2013-07-03 22:06 - 05907981 ____A (Atmel) C:\Users\Benutzer\Downloads\Flip Installer - 2013-07-03 22:06 - 2013-06-04 17:03 - 00000000 ____D C:\Program Files (x86)\Atmel 2013-07-03 22:00 - 2013-07-03 21:54 - 00000000 ____D C:\Windows XP 2013-07-03 21:26 - 2013-07-03 21:26 - 00000000 ____D C:\Users\Benutzer\VirtualBox VMs 2013-07-03 21:26 - 2013-05-19 22:52 - 00000000 ____D C:\users\Benutzer 2013-07-03 21:24 - 2013-07-03 21:24 - 00000000 ____D C:\Program Files\Oracle 2013-07-03 21:24 - 2013-07-03 21:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-07-03 21:22 - 2013-07-03 21:17 - 99246864 ____A (Oracle Corporation) C:\Users\Benutzer\Downloads\VirtualBox-4.2.14-86644-Win.exe 2013-07-03 21:18 - 2013-07-03 21:17 - 11639710 ____A C:\Users\Benutzer\Downloads\Oracle_VM_VirtualBox_Extension_Pack-4.2.14-86644.vbox-extpack 2013-07-03 21:04 - 2013-07-02 00:22 - 00000000 ____D C:\Windows\Minidump 2013-07-02 23:46 - 2013-07-02 23:46 - 00889416 ____A (Microsoft Corporation) C:\Users\Benutzer\Downloads\dotNetFx40_Full_setup.exe 2013-07-02 23:34 - 2013-07-02 23:34 - 00263592 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2013-07-02 23:34 - 2013-07-02 23:34 - 00175016 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2013-07-02 23:34 - 2013-07-02 23:34 - 00175016 ____A (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2013-07-02 23:34 - 2013-07-02 23:34 - 00096168 ____A (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2013-07-02 23:34 - 2013-07-02 23:34 - 00000000 ____D C:\Program Files (x86)\Java 2013-07-02 23:34 - 2013-05-20 22:49 - 00867240 ____A (Oracle Corporation) C:\Windows\SysWOW64\npDeployJava1.dll 2013-07-02 23:34 - 2013-05-20 22:49 - 00789416 ____A (Oracle Corporation) C:\Windows\SysWOW64\deployJava1.dll 2013-07-02 23:04 - 2013-07-02 23:04 - 00032768 ____A C:\Windows\IsUninst.exe 2013-07-02 22:56 - 2013-07-02 22:56 - 04551939 ____A C:\Users\Benutzer\Downloads\flip-2_4_6.zip 2013-07-02 22:45 - 2013-05-20 03:36 - 00000000 ____D C:\Program Files\Nexus Mod Manager 2013-07-02 22:35 - 2013-07-02 22:35 - 00127860 ____A C:\Users\Benutzer\Downloads\memtest86+-4.20.usb.installer.zip 2013-07-02 15:39 - 2013-07-02 15:39 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2013-07-02 00:45 - 2013-07-02 00:45 - 00000000 ____D C:\Program Files (x86)\NirSoft 2013-07-02 00:44 - 2013-07-02 00:44 - 00141192 ____A C:\Users\Benutzer\Downloads\bluescreenview_setup_1.51.exe 2013-07-01 23:39 - 2013-07-01 23:39 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies 2013-07-01 23:39 - 2013-05-19 23:00 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2013-07-01 00:23 - 2013-06-23 11:32 - 00000000 ____D C:\Program Files (x86)\Warhammer Online - Age of Reckoning 2013-06-30 22:51 - 2013-06-30 22:51 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_xusb21_01009.Wdf 2013-06-30 22:51 - 2013-06-30 22:51 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_MijXfilt_01009.Wdf 2013-06-30 18:25 - 2013-06-30 18:25 - 00000000 ____D C:\Users\Benutzer\Documents\Wizards of the Coast 2013-06-30 17:31 - 2013-05-22 02:00 - 00000000 ____D C:\Program Files (x86)\RIFT 2013-06-30 17:28 - 2013-06-26 23:29 - 00000000 ____D C:\Users\Benutzer\Documents\RIFT 2013-06-30 17:19 - 2013-05-19 23:46 - 00000000 ____D C:\Program Files (x86)\World of Warcraft 2013-06-29 01:01 - 2013-06-29 01:01 - 00000000 ____D C:\Games 2013-06-29 00:18 - 2013-06-29 00:18 - 04396440 ____A (Piriform Ltd) C:\Users\Benutzer\Downloads\ccsetup403.exe 2013-06-29 00:18 - 2013-05-20 04:15 - 00000000 ____D C:\Program Files\CCleaner 2013-06-27 17:33 - 2013-06-27 00:44 - 00000000 ____D C:\Windows\AutoKMS 2013-06-26 23:31 - 2013-05-22 02:00 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\RIFT 2013-06-25 21:58 - 2013-05-23 23:48 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\uTorrent 2013-06-25 21:58 - 2013-05-20 03:45 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\DAEMON Tools Lite 2013-06-25 20:43 - 2013-06-25 20:41 - 00012121 ____A C:\Users\Benutzer\AppData\Roaming\PStrip.ini 2013-06-25 07:04 - 2013-06-25 07:04 - 00745495 ____A C:\Users\Benutzer\Downloads\MCP2200 Windows Driver 2013-02-21.zip 2013-06-24 20:01 - 2013-06-24 20:01 - 01411304 ____A (EnTech Taiwan) C:\Users\Benutzer\Downloads\pstrip.exe 2013-06-24 19:41 - 2013-06-24 19:41 - 01420256 ____A (techPowerUp (www.techpowerup.com)) C:\Users\Benutzer\Downloads\GPU-Z_ASUS_ROG_0.7.2.exe 2013-06-24 19:24 - 2013-06-24 19:24 - 01198007 ____A (CPUID, Inc. ) C:\Users\Benutzer\Downloads\MemtweakIt-1017-setup.exe 2013-06-24 19:19 - 2013-06-24 19:10 - 391842315 ___RA C:\Users\Benutzer\Downloads\RealBench_v1.051.rar 2013-06-24 00:36 - 2013-06-24 00:36 - 00000000 ____D C:\Users\Benutzer\Downloads\Moonlight Lady 2013-06-24 00:33 - 2013-06-24 00:33 - 00019727 ____A C:\Users\Benutzer\Downloads\hshare.net.Moonlight.Lady.EP01-05.ENG.SUB.FILES.rar 2013-06-23 22:23 - 2013-06-23 22:17 - 00001981 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_prc_drk.log 2013-06-23 22:15 - 2013-06-23 22:12 - 00001982 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_prc_eye.log 2013-06-23 22:11 - 2013-06-23 22:11 - 00001862 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_003.log 2013-06-23 22:11 - 2013-06-23 22:11 - 00001861 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_001.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001862 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_002.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001860 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_pro_col.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001860 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_war.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001860 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_rog.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001860 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_mag.log 2013-06-23 22:10 - 2013-06-23 22:09 - 00001861 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_prc_one.log 2013-06-23 22:09 - 2013-06-23 22:09 - 00001861 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_prc_seb.log 2013-06-23 21:51 - 2013-06-23 21:28 - 1272222488 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_MarkOfTheAssassin.exe 2013-06-23 21:42 - 2013-06-23 21:28 - 885015120 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_Legacy.exe 2013-06-23 21:29 - 2013-06-23 21:29 - 10319008 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_WarriorItemPack2.exe 2013-06-23 21:29 - 2013-06-23 21:29 - 07023824 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_MageItemPack2.exe 2013-06-23 21:29 - 2013-06-23 21:28 - 07645904 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_RogueItemPack2.exe 2013-06-23 21:28 - 2013-06-23 21:28 - 04826056 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_WarriorItemPack.exe 2013-06-23 21:27 - 2013-06-23 21:27 - 06229408 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_RogueItemPack.exe 2013-06-23 21:27 - 2013-06-23 21:27 - 05697792 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_MageItemPack.exe 2013-06-23 21:27 - 2013-06-23 21:27 - 01638048 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_SignatureEdition.exe 2013-06-23 21:26 - 2013-06-23 21:26 - 33120856 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_ExiledPrince.exe 2013-06-23 21:26 - 2013-06-23 21:26 - 14142624 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_BlackEmporium.exe 2013-06-23 21:25 - 2013-06-23 18:25 - 00004064 ____A C:\shared.log 2013-06-23 18:41 - 2013-06-23 18:41 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Freemium 2013-06-23 18:39 - 2013-06-23 18:38 - 00000000 ____D C:\Users\Benutzer\AppData\Local\DownloadGuide 2013-06-23 18:38 - 2013-06-23 18:38 - 00444400 ____A C:\Users\Benutzer\Downloads\DLG_free-clever-privacy_chip_de-DE.exe 2013-06-23 18:25 - 2013-06-23 18:25 - 00003887 ____A C:\Users\Benutzer\Documents\Dragon Age 2 1.04.log 2013-06-23 18:25 - 2013-06-23 18:24 - 48330216 ____A (BioWare) C:\Users\Benutzer\Downloads\DragonAge2-1.04.exe 2013-06-23 18:22 - 2013-06-23 17:55 - 155920571 ____A C:\Users\Benutzer\Downloads\DFInstall.zip 2013-06-23 18:19 - 2013-06-23 18:19 - 00000000 ____D C:\ProgramData\EA Core 2013-06-23 18:19 - 2013-05-19 22:52 - 00000000 ____D C:\Users\Benutzer\AppData\Local\VirtualStore 2013-06-23 18:17 - 2013-06-23 15:13 - 00000000 ____D C:\Users\Benutzer\Documents\BioWare 2013-06-23 18:09 - 2013-06-23 18:09 - 00000000 ____D C:\Program Files (x86)\The Elder Scrolls Arena 2013-06-23 18:08 - 2013-06-23 18:08 - 00000000 ____D C:\Users\Benutzer\AppData\Local\DOSBox 2013-06-23 18:06 - 2013-06-23 18:06 - 00000000 ____D C:\Program Files (x86)\DOSBox-0.74 2013-06-23 17:58 - 2013-06-23 17:57 - 01448809 ____A (DOSBox Team) C:\Users\Benutzer\Downloads\DOSBox0.74-win32-installer.exe 2013-06-23 17:55 - 2013-06-23 17:54 - 09190807 ____A C:\Users\Benutzer\Downloads\Arena106.exe 2013-06-23 16:48 - 2013-05-20 03:26 - 00000000 ____D C:\Program Files (x86)\Origin Games 2013-06-23 16:45 - 2013-06-23 16:43 - 00003763 ____A C:\Users\Benutzer\Documents\Dragon Age Origins 1.05.log 2013-06-23 16:44 - 2013-06-23 14:59 - 00000000 ____D C:\Program Files (x86)\Dragon Age 2013-06-23 16:43 - 2013-06-23 16:42 - 101553128 ____A (BioWare) C:\Users\Benutzer\Downloads\DragonAge1.05.exe 2013-06-23 16:43 - 2013-06-23 15:12 - 00000000 ____D C:\Program Files (x86)\Electronic Arts 2013-06-23 15:54 - 2013-06-23 15:54 - 00001289 ____A C:\Users\Benutzer\Documents\DAO Addins Updater.log 2013-06-23 15:53 - 2013-05-20 03:26 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Origin 2013-06-23 15:51 - 2013-06-23 15:47 - 00003259 ____A C:\Users\Benutzer\Documents\Dragon Age Origins 1.04.log 2013-06-23 15:14 - 2013-06-23 15:14 - 00000000 ____D C:\ProgramData\BioWare 2013-06-23 15:13 - 2013-06-23 15:13 - 00000000 ____D C:\Users\Benutzer\AppData\Local\EA Core 2013-06-23 15:13 - 2013-05-20 03:23 - 00000000 ____D C:\ProgramData\Electronic Arts 2013-06-23 15:12 - 2013-06-23 14:59 - 00023349 ____A C:\Users\Benutzer\Documents\Install Dragon Age Origins.log 2013-06-23 15:11 - 2013-06-23 15:11 - 00000000 ____D C:\Windows\1C4551A64743409391E41477CD655043.TMP 2013-06-23 11:31 - 2013-06-23 11:30 - 42929231 ____A C:\Users\Benutzer\Downloads\WarhammerOnlineInstaller.exe 2013-06-23 11:08 - 2013-05-20 03:23 - 00000000 ____D C:\ProgramData\Origin 2013-06-23 11:07 - 2013-05-20 03:26 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Origin 2013-06-23 11:06 - 2013-05-20 03:23 - 00000000 ____D C:\Program Files (x86)\Origin 2013-06-23 09:56 - 2013-05-20 00:38 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Deployment 2013-06-23 08:46 - 2013-06-23 04:13 - 00000000 ____D C:\Program Files (x86)\GUILD WARS 2013-06-23 06:36 - 2013-05-20 04:17 - 00000000 ____D C:\Program Files\Speccy 2013-06-23 06:35 - 2013-06-23 06:35 - 05126104 ____A (Piriform Ltd) C:\Users\Benutzer\Downloads\spsetup122.exe 2013-06-23 04:17 - 2013-06-17 23:02 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\NVIDIA 2013-06-23 04:13 - 2013-06-23 04:13 - 00000000 ____D C:\Users\Benutzer\Documents\GUILD WARS 2013-06-23 04:12 - 2013-06-23 04:12 - 00105234 ____A C:\Users\Benutzer\Downloads\gwsetup(1).zip 2013-06-23 00:55 - 2013-05-27 03:10 - 00000000 ____D C:\Users\Benutzer\Desktop\iPhone Bilder 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\wacomid-desktop-launcher.DCFD4B89A63EE70BC162777F06D4B93B6397AEC7.1 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Wacom 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\ProgramData\Wacom 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Program Files (x86)\Bamboo Dock 2013-06-22 01:55 - 2013-06-22 01:54 - 00000002 ____A C:\Users\Benutzer\.bdockinstall.log 2013-06-22 01:55 - 2013-05-25 21:09 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Adobe 2013-06-22 01:55 - 2013-05-21 18:12 - 00000000 ____D C:\Program Files (x86)\Adobe 2013-06-22 01:55 - 2013-05-21 18:04 - 00000000 ____D C:\ProgramData\Adobe 2013-06-22 01:55 - 2013-05-20 00:36 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Adobe 2013-06-22 01:54 - 2013-06-22 01:54 - 30011936 ____A C:\Users\Benutzer\Downloads\dock_setup.exe 2013-06-22 01:49 - 2013-06-22 01:49 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_wachidrouter_01009.Wdf 2013-06-22 01:41 - 2013-06-22 01:41 - 00000000 ____D C:\Users\Benutzer\Documents\ArtRage Paintings 2013-06-22 01:41 - 2013-06-22 01:41 - 00000000 ____D C:\ProgramData\Caphyon 2013-06-22 01:41 - 2013-06-22 01:41 - 00000000 ____D C:\Program Files (x86)\Ambient Design 2013-06-22 01:41 - 2013-06-22 01:39 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Ambient Design 2013-06-22 01:37 - 2013-06-22 01:36 - 82461824 ____A (Ambient Design) C:\Users\Benutzer\Downloads\install_artrage_4.exe 2013-06-22 01:16 - 2013-06-22 01:16 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\WTablet 2013-06-22 01:15 - 2013-06-22 01:15 - 00000000 ____D C:\Program Files\TabletPlugins 2013-06-22 01:15 - 2013-06-22 01:15 - 00000000 ____D C:\Program Files\Tablet 2013-06-22 01:15 - 2013-06-22 01:15 - 00000000 ____D C:\Program Files (x86)\TabletPlugins 2013-06-22 01:15 - 2013-06-22 01:14 - 38455200 ____A C:\Users\Benutzer\Downloads\cons532-1_int.exe 2013-06-21 16:01 - 2013-07-03 21:24 - 00238352 ____A (Oracle Corporation) C:\Windows\System32\Drivers\VBoxDrv.sys 2013-06-21 16:00 - 2013-07-03 21:24 - 00120080 ____A (Oracle Corporation) C:\Windows\System32\Drivers\VBoxUSBMon.sys 2013-06-21 16:00 - 2013-06-21 16:00 - 00204048 ____A (Oracle Corporation) C:\Windows\System32\VBoxNetFltNobj.dll 2013-06-21 16:00 - 2013-06-21 16:00 - 00146704 ____A (Oracle Corporation) C:\Windows\System32\Drivers\VBoxNetFlt.sys 2013-06-21 16:00 - 2013-06-21 16:00 - 00131856 ____A (Oracle Corporation) C:\Windows\System32\Drivers\VBoxNetAdp.sys 2013-06-21 14:06 - 2013-07-01 23:36 - 27781920 ____A (NVIDIA Corporation) C:\Windows\System32\nvoglv64.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 25256224 ____A (NVIDIA Corporation) C:\Windows\System32\nvcompiler.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 21102368 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 17560352 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 13411896 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 11235104 ____A (NVIDIA Corporation) C:\Windows\System32\Drivers\nvlddmkm.sys 2013-06-21 14:06 - 2013-07-01 23:36 - 09239344 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuda.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 07687592 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 07641832 ____A (NVIDIA Corporation) C:\Windows\System32\nvopencl.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 06324360 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 02953504 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuvid.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 02777888 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 02363680 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuvenc.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 02002720 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 01832224 ____A (NVIDIA Corporation) C:\Windows\System32\nvdispco6432049.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 01511712 ____A (NVIDIA Corporation) C:\Windows\System32\nvdispgenco6432049.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00925648 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00572704 ____A (NVIDIA Corporation) C:\Windows\System32\NvFBC64.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00570656 ____A (NVIDIA Corporation) C:\Windows\System32\NvIFR64.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00467232 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00465184 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00266448 ____A (NVIDIA Corporation) C:\Windows\System32\nvinitx.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00218592 ____A (NVIDIA Corporation) C:\Windows\System32\nvoglshim64.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00214448 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00181488 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2013-06-21 14:06 - 2013-05-20 01:51 - 15144928 ____A (NVIDIA Corporation) C:\Windows\System32\nvd3dumx.dll 2013-06-21 14:06 - 2013-05-20 01:51 - 02597856 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2013-06-21 14:06 - 2013-05-19 23:00 - 00061216 ____A (Khronos Group) C:\Windows\System32\OpenCL.dll 2013-06-21 14:06 - 2013-05-19 23:00 - 00053024 ____A (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2013-06-21 14:06 - 2013-02-26 00:32 - 15920536 ____A (NVIDIA Corporation) C:\Windows\System32\nvwgf2umx.dll 2013-06-21 14:06 - 2013-02-26 00:32 - 12427240 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2013-06-21 14:06 - 2013-02-26 00:32 - 02936208 ____A (NVIDIA Corporation) C:\Windows\System32\nvapi64.dll 2013-06-21 14:06 - 2013-02-26 00:32 - 01059560 ____A (NVIDIA Corporation) C:\Windows\System32\nvumdshimx.dll 2013-06-21 14:06 - 2013-02-26 00:32 - 00021578 ____A C:\Windows\System32\nvinfo.pb 2013-06-21 12:23 - 2013-05-19 23:00 - 06496544 ____A (NVIDIA Corporation) C:\Windows\System32\nvcpl.dll 2013-06-21 12:23 - 2013-05-19 23:00 - 03514656 ____A (NVIDIA Corporation) C:\Windows\System32\nvsvc64.dll 2013-06-21 12:23 - 2013-05-19 23:00 - 02555680 ____A (NVIDIA Corporation) C:\Windows\System32\nvsvcr.dll 2013-06-21 12:23 - 2013-05-19 23:00 - 00884512 ____A (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe 2013-06-21 12:23 - 2013-05-19 23:00 - 00237856 ____A (NVIDIA Corporation) C:\Windows\System32\nvmctray.dll 2013-06-21 12:23 - 2013-05-19 23:00 - 00063776 ____A (NVIDIA Corporation) C:\Windows\System32\nvshext.dll 2013-06-21 05:16 - 2013-06-21 05:16 - 00566048 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2013-06-20 06:17 - 2013-05-19 23:00 - 03253909 ____A C:\Windows\System32\nvcoproc.bin 2013-06-20 01:36 - 2013-06-17 00:33 - 00000000 ____D C:\Program Files (x86)\PCMeter 2013-06-19 22:36 - 2013-06-19 22:36 - 34935760 ____A (Dropbox, Inc.) C:\Users\Benutzer\Downloads\Dropbox 2.2.3.exe 2013-06-18 17:55 - 2013-06-18 17:54 - 00000000 ____D C:\Program Files (x86)\Tinkerforge 2013-06-18 17:54 - 2013-06-18 17:53 - 18917020 ____A C:\Users\Benutzer\Downloads\brickv_windows_2_0_5.exe 2013-06-18 17:53 - 2013-06-18 17:53 - 04970233 ____A C:\Users\Benutzer\Downloads\brickd_windows_2_0_5.exe 2013-06-18 17:07 - 2013-05-20 03:50 - 00000000 ____D C:\Program Files (x86)\PDFCreator 2013-06-18 17:07 - 2013-05-19 23:42 - 00000000 ____D C:\Windows\Panther 2013-06-18 17:06 - 2013-06-18 17:06 - 04378864 ____A (Piriform Ltd) C:\Users\Benutzer\Downloads\ccsetup402.exe 2013-06-18 15:36 - 2013-05-19 23:20 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-06-18 15:36 - 2013-05-19 23:20 - 00000000 ____D C:\ProgramData\Skype 2013-06-18 01:45 - 2013-06-18 01:45 - 02002832 ____A C:\Users\Benutzer\Downloads\Red-Collection---AnnaRoma-UPGRADE-5.zip 2013-06-18 01:44 - 2013-06-18 01:44 - 00040791 ____A C:\Users\Benutzer\Downloads\ROG-v1.zip 2013-06-18 01:40 - 2013-06-18 01:40 - 00000000 ____D C:\Program Files (x86)\RocketDock 2013-06-18 01:40 - 2013-06-18 01:39 - 06463660 ____A (Punk Software ) C:\Users\Benutzer\Downloads\RocketDock-v1.3.5.exe 2013-06-17 23:35 - 2013-06-17 23:35 - 00000000 ____D C:\Users\Benutzer\Documents\Witcher 2 2013-06-17 23:33 - 2013-06-17 00:35 - 00000095 ____A C:\Users\Benutzer\AppData\Roaming\Control System_Settings.ini 2013-06-17 23:03 - 2013-06-17 23:03 - 00000000 ____D C:\Program Files (x86)\CPU-Z 2013-06-17 23:02 - 2013-06-17 23:02 - 00000000 ____D C:\Program Files (x86)\GPU-Z 2013-06-17 23:01 - 2013-06-17 23:01 - 01405920 ____A (techPowerUp (www.techpowerup.com)) C:\Users\Benutzer\Downloads\GPU-Z_ASUS_ROG_0.7.1.exe 2013-06-17 23:01 - 2013-06-17 23:01 - 01373832 ____A (CPUID, Inc. ) C:\Users\Benutzer\Downloads\cpu-z_1.64-rog-setup-en.exe 2013-06-17 22:56 - 2013-06-17 22:55 - 00000000 ____D C:\Program Files (x86)\TurnedOnTimesView 2013-06-17 22:52 - 2013-06-17 22:52 - 00064922 ____A C:\Users\Benutzer\Downloads\turnedontimesview.zip 2013-06-17 00:38 - 2013-06-17 00:38 - 00001138 ____A C:\Users\Benutzer\AppData\Roaming\Network Meter_Settings.ini 2013-06-17 00:38 - 2013-06-17 00:38 - 00000842 ____A C:\Users\Benutzer\AppData\Roaming\Drives Meter_Settings.ini 2013-06-17 00:37 - 2013-06-17 00:37 - 00000297 ____A C:\Users\Benutzer\AppData\Roaming\GPU MeterV2_Settings.ini 2013-06-17 00:36 - 2013-06-17 00:35 - 00000627 ____A C:\Users\Benutzer\AppData\Roaming\All CPU MeterV3_Settings.ini 2013-06-16 03:06 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\System32\oobe 2013-06-16 03:04 - 2013-06-16 03:03 - 00002410 ____A C:\Windows\SysWOW64\cplLogon.tsk 2013-06-16 03:03 - 2013-06-16 03:03 - 02218077 ____A (Daniel Rebelo ) C:\Users\Benutzer\Downloads\Logon Screen 2.56.exe 2013-06-16 03:03 - 2013-06-16 03:03 - 00000000 ____D C:\Program Files\Logon Screen 2013-06-16 02:48 - 2013-06-16 02:46 - 00000000 ___AD C:\Windows\SysWOW64\ROG_Video Intro dir 2013-06-16 02:46 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\Cursors 2013-06-16 02:43 - 2013-06-16 02:46 - 00680960 ____A (ASUSTeK Computer Inc.) C:\Windows\SysWOW64\ROGThemeSetup.exe 2013-06-16 02:43 - 2013-06-16 02:46 - 00201728 ____A (ScreenTime Media) C:\Windows\SysWOW64\ROG_Video Intro .scr 2013-06-16 02:26 - 2013-06-16 02:25 - 30789811 ____A C:\Users\Benutzer\Downloads\ROG_THEME_V10014_Win7.zip 2013-06-16 02:10 - 2013-06-16 02:10 - 00000000 ____D C:\Program Files (x86)\Dexpot 2013-06-16 02:06 - 2013-06-16 02:06 - 02796815 ____A (Dexpot GbR) C:\Users\Benutzer\Downloads\dexpot_169_r2285.exe 2013-06-16 01:53 - 2013-06-16 01:53 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Bump Technologies, Inc 2013-06-16 01:50 - 2013-06-16 01:50 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Bump Technologies, Inc 2013-06-16 01:50 - 2013-06-16 01:49 - 16628120 ____A (Bump Technologies, Inc. ) C:\Users\Benutzer\Downloads\BumpTop-2.1-6211.exe 2013-06-16 01:50 - 2013-05-22 02:09 - 00000000 ___HD C:\Windows\msdownld.tmp 2013-06-16 01:50 - 2013-05-22 02:09 - 00000000 ____D C:\Windows\SysWOW64\directx 2013-06-13 01:24 - 2013-05-20 00:04 - 75825640 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe 2013-06-12 20:18 - 2013-05-20 00:35 - 00692104 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-06-12 20:18 - 2013-05-20 00:35 - 00071048 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-06-12 16:52 - 2013-06-12 16:52 - 13081608 ____A (Microsoft Corporation) C:\Users\Benutzer\Downloads\Silverlight_x64.exe 2013-06-12 16:52 - 2013-06-12 16:52 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2013-06-12 16:52 - 2013-06-12 16:52 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-06-10 21:11 - 2013-06-10 21:10 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2013-06-10 21:11 - 2013-06-10 21:10 - 00000000 ____D C:\Program Files\iTunes 2013-06-10 21:11 - 2013-06-10 21:10 - 00000000 ____D C:\Program Files (x86)\iTunes 2013-06-10 21:10 - 2013-06-10 21:10 - 00000000 ____D C:\Program Files\iPod 2013-06-09 21:01 - 2013-05-21 18:49 - 00000000 ____D C:\Program Files (x86)\LogMeIn 2013-06-09 21:00 - 2013-05-21 18:49 - 00107368 ____A (LogMeIn, Inc.) C:\Windows\System32\LMIRfsClientNP.dll 2013-06-09 21:00 - 2013-05-21 18:49 - 00100680 ____A (LogMeIn, Inc.) C:\Windows\System32\LMIinit.dll 2013-06-09 21:00 - 2013-05-21 18:49 - 00035656 ____A (LogMeIn, Inc.) C:\Windows\System32\LMIport.dll 2013-06-08 16:08 - 2013-06-15 02:13 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2013-06-08 16:07 - 2013-06-15 02:13 - 19233792 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2013-06-08 16:06 - 2013-06-15 02:13 - 15404544 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2013-06-08 16:06 - 2013-06-15 02:13 - 02648064 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2013-06-08 16:06 - 2013-06-15 02:13 - 00526336 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll 2013-06-08 14:28 - 2013-06-15 02:13 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2013-06-08 13:42 - 2013-06-15 02:13 - 01141248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-06-08 13:40 - 2013-06-15 02:13 - 14327808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-06-08 13:40 - 2013-06-15 02:13 - 13760512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-06-08 13:40 - 2013-06-15 02:13 - 02046976 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-06-08 13:40 - 2013-06-15 02:13 - 00391168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-06-08 13:13 - 2013-06-15 02:13 - 02706432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe [2013-05-20 02:43] - [2011-02-26 08:26] - 2870784 ____A (Microsoft Corporation) E38899074D4951D31B4040E994DD7C8D C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-07-03 18:01 ==================== End Of Log ============================ |
![]() | #9 |
/// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() SoftwareUpdater.Bootstrapper wird von Kaspersky PURE 3.0 erkannt Downloade dir bitte ![]()
Poste bitte den Inhalt hier. ESET Online Scanner
Downloade Dir bitte ![]()
und ein frisches FRST Log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
![]() | #10 |
![]() | ![]() SoftwareUpdater.Bootstrapper wird von Kaspersky PURE 3.0 erkanntCode:
ATTFilter Farbar Service Scanner Version: 06-07-2013 Ran by Benutzer (administrator) on 07-07-2013 at 15:58:30 Running from "C:\Users\Benutzer\Desktop" Microsoft Windows 7 Ultimate Service Pack 1 (X64) Boot Mode: Normal **************************************************************** Internet Services: ============ Connection Status: ============== Localhost is accessible. LAN connected. Google IP is accessible. Google.com is accessible. Yahoo.com is accessible. Windows Firewall: ============= Firewall Disabled Policy: ================== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall"=DWORD:0 System Restore: ============ System Restore Disabled Policy: ======================== Action Center: ============ Windows Update: ============ Windows Autoupdate Disabled Policy: ============================ Windows Defender: ============== Other Services: ============== File Check: ======== C:\Windows\System32\nsisvc.dll => MD5 is legit C:\Windows\System32\drivers\nsiproxy.sys => MD5 is legit C:\Windows\System32\dhcpcore.dll => MD5 is legit C:\Windows\System32\drivers\afd.sys => MD5 is legit C:\Windows\System32\drivers\tdx.sys => MD5 is legit C:\Windows\System32\Drivers\tcpip.sys => MD5 is legit C:\Windows\System32\dnsrslvr.dll => MD5 is legit C:\Windows\System32\mpssvc.dll => MD5 is legit C:\Windows\System32\bfe.dll => MD5 is legit C:\Windows\System32\drivers\mpsdrv.sys => MD5 is legit C:\Windows\System32\SDRSVC.dll => MD5 is legit C:\Windows\System32\vssvc.exe => MD5 is legit C:\Windows\System32\wscsvc.dll => MD5 is legit C:\Windows\System32\wbem\WMIsvc.dll => MD5 is legit C:\Windows\System32\wuaueng.dll => MD5 is legit C:\Windows\System32\qmgr.dll => MD5 is legit C:\Windows\System32\es.dll => MD5 is legit C:\Windows\System32\cryptsvc.dll => MD5 is legit C:\Program Files\Windows Defender\MpSvc.dll => MD5 is legit C:\Windows\System32\ipnathlp.dll => MD5 is legit C:\Windows\System32\iphlpsvc.dll => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit **** End of log **** Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe= # OnlineScanner.ocx= # api_version=3.0.2 # EOSSerial=7ed9e2fc1879894aac70b2710e2e24a7 # engine=14304 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2013-07-07 06:14:53 # local_time=2013-07-07 08:14:53 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1033 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode=5893 16776573 100 94 17141 124850743 0 0 # scanned=323497 # found=0 # cleaned=0 # scan_time=15271 Code:
ATTFilter Results of screen317's Security Check version 0.99.68 Windows 7 Service Pack 1 x64 (UAC is enabled) Internet Explorer 10 ``````````````Antivirus/Firewall Check:`````````````` Kaspersky PURE 3.0 Antivirus up to date! (On Access scanning disabled!) `````````Anti-malware/Other Utilities Check:````````` Malwarebytes Anti-Malware Version Java 7 Update 25 Adobe Flash Player 10 Flash Player out of Date! Adobe Flash Player 11.7.700.224 Adobe Reader XI Mozilla Firefox (22.0) ````````Process Check: objlist.exe by Laurent```````` Malwarebytes' Anti-Malware mbamscheduler.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: ````````````````````End of Log`````````````````````` FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 04-07-2013 Ran by Benutzer (administrator) on 07-07-2013 20:23:23 Running from C:\Users\Benutzer\Desktop Windows 7 Ultimate Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\WTabletServiceCon.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (AddGadgets) C:\Program Files (x86)\PCMeter\PCMeterV0.3.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe (Dexpot GbR) C:\Program Files (x86)\Dexpot\dexpot.exe () C:\Program Files (x86)\RocketDock\RocketDock.exe (Dropbox, Inc.) C:\Users\Benutzer\AppData\Roaming\Dropbox\bin\Dropbox.exe (Logitech, Inc.) C:\Program Files\Common Files\LogiShrd\KHAL3\KHALMNPR.EXE (Hobbyist Software) C:\Program Files (x86)\Hobbyist Software\Off Remote Helper\Off-Helper Configuration.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe () C:\Program Files (x86)\Bamboo Dock\BambooCore.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Dexpot GbR) C:\Program Files (x86)\Dexpot\Dexpot64.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Dexpot GbR) C:\Program Files (x86)\Dexpot\plugins\DexControl.exe (Dexpot GbR) C:\Program Files (x86)\Dexpot\plugins\Taskbar Pager.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Tinkerforge GmbH) C:\Program Files (x86)\Tinkerforge\Brickd\brickd.exe (Infowatch) C:\Program Files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\RaMaint.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn\x64\LogMeIn.exe (Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (Hobbyist Software) C:\Program Files (x86)\Hobbyist Software\Off Remote Helper\Off-Helper Service.exe (pdfforge GmbH) C:\Program Files (x86)\PDF Architect\HelperService.exe (pdfforge GmbH) C:\Program Files (x86)\PDF Architect\ConversionService.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\ComUpdatus.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_TabletUser.exe (Wacom Technology) C:\Program Files\Tablet\Pen\WacomHost.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_Tablet.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_TouchUser.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Program Files\Microsoft Office\Office14\OUTLOOK.EXE (Valve Corporation) C:\Program Files (x86)\Steam\steam.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Futuremark Corporation) C:\Program Files (x86)\Futuremark\Futuremark SystemInfo\FMSISvc.exe (Blizzard Entertainment) C:\ProgramData\Battle.net\Agent\Agent.beta.2000\Agent.exe (Blizzard Entertainment) C:\Program Files (x86)\Battle.net\Battle.net.beta.3325\Battle.net.exe (Microsoft Corporation) C:\Windows\system32\AUDIODG.EXE ==================== Registry (Whitelisted) ================== HKLM\...\Run: [Nvtmru] "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" [1012000 2013-05-16] (NVIDIA Corporation) HKLM\...\Run: [EvtMgr6] C:\Program Files\Logitech\SetPointP\SetPoint.exe /launchGaming [2991856 2013-02-21] (Logitech, Inc.) HKLM\...\Run: [LogMeIn GUI] "C:\Program Files (x86)\LogMeIn\x64\LogMeInSystray.exe" [57928 2012-11-29] (LogMeIn, Inc.) HKLM\...\Run: [BCSSync] "C:\Program Files\Microsoft Office\Office14\BCSSync.exe" /DelayServices [112512 2010-03-13] (Microsoft Corporation) Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.) HKCU\...\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun [3672640 2013-03-14] (Disc Soft Ltd) HKCU\...\Run: [Dexpot] C:\Program Files (x86)\Dexpot\dexpot.exe [1433600 2013-06-03] (Dexpot GbR) HKCU\...\Run: [RocketDock] "C:\Program Files (x86)\RocketDock\RocketDock.exe" [495616 2007-09-02] () HKLM-x32\...\Run: [AVP] "C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe" [356968 2012-12-20] (Kaspersky Lab ZAO) HKLM-x32\...\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [958576 2013-05-11] (Adobe Systems Incorporated) HKLM-x32\...\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [59720 2013-04-21] (Apple Inc.) HKLM-x32\...\Run: [Hobbyist Software On-Off Helper] "C:\Program Files (x86)\Hobbyist Software\Off Remote Helper\Off-Helper Configuration.exe" /startup [555848 2013-05-31] (Hobbyist Software) HKLM-x32\...\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe" [152392 2013-05-31] (Apple Inc.) HKLM-x32\...\Run: [BambooCore] C:\Program Files (x86)\Bamboo Dock\BambooCore.exe [646744 2012-10-16] () HKLM-x32\...\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start [2255184 2013-06-28] (LogMeIn Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [253816 2013-03-12] (Oracle Corporation) HKU\Default\...\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun [x] HKU\Default User\...\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun [x] HKU\LogMeInRemoteUser\...\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun [x] Startup: C:\Users\Benutzer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Benutzer\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/ HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL (Microsoft Corporation) BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll (Logitech, Inc.) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) BHO-x32: Kaspersky Passsword Manager Toolbar - {215BA832-75A3-426E-A4FC-7C5B58CE6A10} - C:\PROGRA~2\KASPER~1\KASPER~1.0\KASPER~2\spIEBho.dll (Kaspersky Lab) BHO-x32: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll (pdfforge GmbH) BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO-x32: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll (Logitech, Inc.) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) Toolbar: HKLM-x32 - Kaspersky Passsword Manager Toolbar - {215BA832-75A3-426E-A4FC-7C5B58CE6A10} - C:\PROGRA~2\KASPER~1\KASPER~1.0\KASPER~2\spIEBho.dll (Kaspersky Lab) Handler-x32: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - C:\Program Files (x86)\Common Files\Microsoft Shared\Information Retrieval\msitss.dll (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] FireFox: ======== FF ProfilePath: C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default FF Homepage: www.google.de FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_7_700_224.dll () FF Plugin: @java.com/DTPlugin,version=10.21.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.21.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin: @wacom.com/wtPlugin,version= - C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll (Wacom) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll (NVIDIA Corporation) FF Plugin-x32: @videolan.org/vlc,version=2.0.7 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @wacom.com/wtPlugin,version= - C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll (Wacom) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: wacom.com/WacomTabletPlugin - C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll (Wacom) FF Extension: Flagfox - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b} FF Extension: WOT - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7} FF Extension: adblockpopups - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\adblockpopups@jessehakanen.net.xpi FF Extension: canitbecheaper - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\canitbecheaper@trafficbroker.co.uk.xpi FF Extension: compatibility - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\compatibility@addons.mozilla.org.xpi FF Extension: elemhidehelper - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\elemhidehelper@adblockplus.org.xpi FF Extension: firefox - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\firefox@mega.co.nz.xpi FF Extension: YouTubeAutoReplay - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\YouTubeAutoReplay@arikv.com.xpi FF Extension: No Name - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\{987311C6-B504-4aa2-90BF-60CC49808D42}.xpi FF Extension: No Name - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF Extension: No Name - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\{d49a148e-817e-4025-bee3-5d541376de3b}.xpi FF Extension: No Name - C:\Users\Benutzer\AppData\Roaming\Mozilla\Firefox\Profiles\dvvpeqyo.default\Extensions\{fe272bd1-5f76-4ea4-8501-a05d35d823fc}.xpi FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF HKLM-x32\...\Firefox\Extensions: C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\url_advisor@kaspersky.com FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\url_advisor@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\virtual_keyboard@kaspersky.com FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\virtual_keyboard@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\content_blocker@kaspersky.com FF Extension: Content Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\content_blocker@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [anti_banner@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\anti_banner@kaspersky.com FF Extension: Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\anti_banner@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [online_banking@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\online_banking@kaspersky.com FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\online_banking@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt FF Extension: PDF Architect Converter For Firefox - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt FF Extension: Logitech SetPoint - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt ==================== Services (Whitelisted) ================= S2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe [356968 2012-12-20] (Kaspersky Lab ZAO) R2 Brick Daemon; C:\Program Files (x86)\Tinkerforge\Brickd\brickd.exe [66048 2013-04-19] (Tinkerforge GmbH) R2 CSObjectsSrv; C:\Program Files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe [819040 2012-12-21] (Infowatch) R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn\x64\LMIGuardianSvc.exe [376144 2013-06-09] (LogMeIn, Inc.) R2 LMIMaint; C:\Program Files (x86)\LogMeIn\x64\RaMaint.exe [226640 2013-06-09] (LogMeIn, Inc.) R2 LogMeIn; C:\Program Files (x86)\LogMeIn\x64\LogMeIn.exe [407424 2012-11-29] (LogMeIn, Inc.) R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation) S2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation) R2 Off-Helper; C:\Program Files (x86)\Hobbyist Software\Off Remote Helper\Off-Helper Service.exe [6656 2013-05-31] (Hobbyist Software) R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH) R2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH) R2 WTabletServiceCon; C:\Program Files\Tablet\Pen\WTabletServiceCon.exe [619904 2012-12-11] (Wacom Technology, Corp.) ==================== Drivers (Whitelisted) ==================== R3 AVMCOWAN; C:\Windows\System32\DRIVERS\AVMCOWAN.sys [79872 2009-06-10] (AVM GmbH) R0 CSCrySec; C:\Windows\System32\DRIVERS\CSCrySec.sys [84536 2011-06-02] (Infowatch) R1 CSVirtualDiskDrv; C:\Windows\System32\DRIVERS\CSVirtualDiskDrv.sys [66616 2011-06-02] (Infowatch) R3 FPCIBASE; C:\Windows\System32\DRIVERS\fpcibase.sys [899328 2009-06-10] (AVM Berlin) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458584 2012-06-19] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [613720 2012-11-02] (Kaspersky Lab) R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [28504 2012-08-02] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [29016 2012-09-03] (Kaspersky Lab) R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29528 2012-09-03] (Kaspersky Lab) R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [54104 2012-10-18] (Kaspersky Lab) R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [178008 2012-08-13] (Kaspersky Lab) R2 LMIInfo; C:\Program Files (x86)\LogMeIn\x64\RaInfo.sys [16056 2013-05-24] (LogMeIn, Inc.) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation) R3 MTsensor; C:\Windows\System32\DRIVERS\ASACPI.sys [8192 2005-03-29] () S3 Serial; C:\Windows\system32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.) R0 sptd; C:\Windows\System32\Drivers\sptd.sys [564824 2013-05-20] (Duplex Secure Ltd.) R3 VMfilt; C:\Windows\System32\drivers\VMfilt64.sys [25600 2009-07-31] (Creative Technology Ltd.) S3 XFDriver64; C:\Program Files (x86)\Xfire2\XFDriver64.sys [17160 2013-03-14] (XFire) S3 XFDriver64; C:\Program Files (x86)\Xfire2\XFDriver64.sys [17160 2013-03-14] (XFire) U3 ayn7wt0a; C:\Windows\System32\Drivers\ayn7wt0a.sys [0 ] (Advanced Micro Devices) S3 catchme; \??\C:\ComboFix\catchme.sys [x] S4 LMIRfsClientNP; No ImagePath S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [x] S3 tsusbhub; system32\drivers\tsusbhub.sys [x] S3 VGPU; System32\drivers\rdvgkmd.sys [x] R3 WinRing0_1_2_0; \??\C:\Users\Benutzer\AppData\Local\Temp\tmpA505.tmp [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-07-07 20:23 - 2013-07-07 20:23 - 00000886 ____A C:\Users\Benutzer\Desktop\checkup.txt 2013-07-07 16:58 - 2013-07-07 17:00 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Battle.net 2013-07-07 16:58 - 2013-07-07 16:59 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Battle.net 2013-07-07 16:58 - 2013-07-07 16:58 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Blizzard Entertainment 2013-07-07 16:58 - 2013-07-07 16:58 - 00000000 ____D C:\Program Files (x86)\Battle.net 2013-07-07 16:55 - 2013-07-07 16:55 - 04826568 ____A (Blizzard Entertainment) C:\Users\Benutzer\Downloads\Battle.net-Beta-Setup-deDE.exe 2013-07-07 15:59 - 2013-07-07 15:59 - 00000000 ____D C:\Program Files (x86)\ESET 2013-07-07 15:58 - 2013-07-07 15:58 - 00002217 ____A C:\Users\Benutzer\Desktop\FSS.txt 2013-07-07 15:57 - 2013-07-07 15:57 - 02347384 ____A (ESET) C:\Users\Benutzer\Desktop\esetsmartinstaller_enu.exe 2013-07-07 15:57 - 2013-07-07 15:57 - 00890988 ____A C:\Users\Benutzer\Desktop\SecurityCheck.exe 2013-07-07 15:56 - 2013-07-07 15:56 - 00356399 ____A (Farbar) C:\Users\Benutzer\Desktop\FSS.exe 2013-07-07 15:35 - 2013-07-07 15:35 - 00000000 ____D C:\Users\Benutzer\Documents\3DMark 2013-07-07 15:35 - 2013-07-07 15:35 - 00000000 ____D C:\Users\Benutzer\AppData\Local\IsolatedStorage 2013-07-07 15:35 - 2013-07-07 15:35 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Futuremark 2013-07-07 15:30 - 2013-07-07 15:30 - 00000000 ____D C:\ProgramData\Package Cache 2013-07-07 15:29 - 2013-07-07 15:29 - 00000000 ____D C:\Program Files (x86)\Futuremark 2013-07-07 13:31 - 2013-07-07 13:31 - 00041855 ____A C:\ComboFix.txt 2013-07-07 13:12 - 2013-07-07 13:31 - 00000000 ____D C:\Qoobox 2013-07-07 13:12 - 2013-07-07 13:30 - 00000000 ____D C:\Windows\erdnt 2013-07-07 13:12 - 2011-06-26 08:45 - 00256000 ____A C:\Windows\PEV.exe 2013-07-07 13:12 - 2010-11-07 19:20 - 00208896 ____A C:\Windows\MBR.exe 2013-07-07 13:12 - 2009-04-20 06:56 - 00060416 ____A (NirSoft) C:\Windows\NIRCMD.exe 2013-07-07 13:12 - 2000-08-31 02:00 - 00518144 ____A (SteelWerX) C:\Windows\SWREG.exe 2013-07-07 13:12 - 2000-08-31 02:00 - 00406528 ____A (SteelWerX) C:\Windows\SWSC.exe 2013-07-07 13:12 - 2000-08-31 02:00 - 00098816 ____A C:\Windows\sed.exe 2013-07-07 13:12 - 2000-08-31 02:00 - 00080412 ____A C:\Windows\grep.exe 2013-07-07 13:12 - 2000-08-31 02:00 - 00068096 ____A C:\Windows\zip.exe 2013-07-07 13:11 - 2013-07-07 13:11 - 05087096 ____R (Swearware) C:\Users\Benutzer\Desktop\ComboFix.exe 2013-07-06 20:58 - 2013-07-06 20:58 - 00000000 ____D C:\Windows\ERUNT 2013-07-06 20:58 - 2013-07-06 20:58 - 00000000 ____D C:\JRT 2013-07-06 20:50 - 2013-07-06 20:50 - 00001931 ____A C:\AdwCleaner[S1].txt 2013-07-06 20:48 - 2013-07-06 20:49 - 00545954 ____A (Oleg N. Scherbakov) C:\Users\Benutzer\Desktop\JRT.exe 2013-07-06 20:48 - 2013-07-06 20:48 - 00650027 ____A C:\Users\Benutzer\Desktop\adwcleaner.exe 2013-07-06 19:55 - 2013-07-06 19:55 - 00000000 ____D C:\FRST 2013-07-06 19:51 - 2013-07-06 19:51 - 01934636 ____A (Farbar) C:\Users\Benutzer\Desktop\FRST64.exe 2013-07-06 14:02 - 2013-07-06 14:02 - 00262144 ____A C:\Windows\System32\config\elam 2013-07-04 22:07 - 2013-07-04 22:09 - 00000000 ____D C:\Program Files\Microsoft Platform SDK 2013-07-04 22:07 - 2013-07-04 22:07 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio .NET 2003 2013-07-04 22:05 - 2013-07-04 22:05 - 01349856 ____A (Microsoft Corporation) C:\Users\Benutzer\Downloads\PSDK-amd64.exe 2013-07-04 22:03 - 2013-07-04 22:56 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Dev-Cpp 2013-07-04 22:03 - 2013-07-04 22:03 - 00000000 ____D C:\Dev-Cpp 2013-07-04 22:02 - 2013-07-04 22:02 - 09326468 ____A C:\Users\Benutzer\Downloads\devcpp- 2013-07-04 21:54 - 2013-07-04 21:54 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_WinUsb_01009.Wdf 2013-07-04 00:01 - 2013-07-04 00:01 - 00000000 ____D C:\Users\Benutzer\Documents\The Lord of the Rings Online 2013-07-03 23:57 - 2013-07-04 01:15 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Turbine 2013-07-03 23:57 - 2013-07-03 23:57 - 00000094 ____A C:\Users\Benutzer\AppData\Local\fusioncache.dat 2013-07-03 22:07 - 2013-07-03 22:07 - 00001199 ____A C:\Users\UpdatusUser\Desktop\Flip 3.4.7.lnk 2013-07-03 22:07 - 2013-07-03 22:07 - 00001199 ____A C:\Users\LogMeInRemoteUser\Desktop\Flip 3.4.7.lnk 2013-07-03 22:06 - 2013-07-03 22:06 - 05907981 ____A (Atmel) C:\Users\Benutzer\Downloads\Flip Installer - 2013-07-03 21:54 - 2013-07-03 22:00 - 00000000 ____D C:\Windows XP 2013-07-03 21:26 - 2013-07-03 22:47 - 00000000 ____D C:\Users\Benutzer\.VirtualBox 2013-07-03 21:26 - 2013-07-03 21:26 - 00000000 ____D C:\Users\Benutzer\VirtualBox VMs 2013-07-03 21:24 - 2013-07-03 21:24 - 00000000 ____D C:\Program Files\Oracle 2013-07-03 21:24 - 2013-07-03 21:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-07-03 21:24 - 2013-06-21 16:01 - 00238352 ____A (Oracle Corporation) C:\Windows\System32\Drivers\VBoxDrv.sys 2013-07-03 21:24 - 2013-06-21 16:00 - 00120080 ____A (Oracle Corporation) C:\Windows\System32\Drivers\VBoxUSBMon.sys 2013-07-03 21:17 - 2013-07-03 21:22 - 99246864 ____A (Oracle Corporation) C:\Users\Benutzer\Downloads\VirtualBox-4.2.14-86644-Win.exe 2013-07-03 21:17 - 2013-07-03 21:18 - 11639710 ____A C:\Users\Benutzer\Downloads\Oracle_VM_VirtualBox_Extension_Pack-4.2.14-86644.vbox-extpack 2013-07-02 23:46 - 2013-07-02 23:46 - 00889416 ____A (Microsoft Corporation) C:\Users\Benutzer\Downloads\dotNetFx40_Full_setup.exe 2013-07-02 23:43 - 2006-05-09 13:32 - 00000000 ____D C:\Users\Benutzer\Downloads\flip-2_4_6 2013-07-02 23:34 - 2013-07-02 23:34 - 00263592 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2013-07-02 23:34 - 2013-07-02 23:34 - 00175016 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2013-07-02 23:34 - 2013-07-02 23:34 - 00175016 ____A (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2013-07-02 23:34 - 2013-07-02 23:34 - 00096168 ____A (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2013-07-02 23:34 - 2013-07-02 23:34 - 00000000 ____D C:\Program Files (x86)\Java 2013-07-02 23:04 - 2013-07-02 23:04 - 00032768 ____A C:\Windows\IsUninst.exe 2013-07-02 22:56 - 2013-07-02 22:56 - 04551939 ____A C:\Users\Benutzer\Downloads\flip-2_4_6.zip 2013-07-02 22:35 - 2013-07-02 22:35 - 00127860 ____A C:\Users\Benutzer\Downloads\memtest86+-4.20.usb.installer.zip 2013-07-02 15:39 - 2013-07-02 15:39 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2013-07-02 00:45 - 2013-07-02 00:45 - 00000000 ____D C:\Program Files (x86)\NirSoft 2013-07-02 00:44 - 2013-07-02 00:44 - 00141192 ____A C:\Users\Benutzer\Downloads\bluescreenview_setup_1.51.exe 2013-07-02 00:22 - 2013-07-03 21:04 - 00000000 ____D C:\Windows\Minidump 2013-07-01 23:39 - 2013-07-01 23:39 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies 2013-07-01 23:36 - 2013-06-21 14:06 - 27781920 ____A (NVIDIA Corporation) C:\Windows\System32\nvoglv64.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 25256224 ____A (NVIDIA Corporation) C:\Windows\System32\nvcompiler.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 21102368 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 17560352 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 13411896 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 11235104 ____A (NVIDIA Corporation) C:\Windows\System32\Drivers\nvlddmkm.sys 2013-07-01 23:36 - 2013-06-21 14:06 - 09239344 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuda.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 07687592 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 07641832 ____A (NVIDIA Corporation) C:\Windows\System32\nvopencl.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 06324360 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 02953504 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuvid.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 02777888 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 02363680 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuvenc.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 02002720 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 01832224 ____A (NVIDIA Corporation) C:\Windows\System32\nvdispco6432049.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 01511712 ____A (NVIDIA Corporation) C:\Windows\System32\nvdispgenco6432049.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00925648 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00572704 ____A (NVIDIA Corporation) C:\Windows\System32\NvFBC64.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00570656 ____A (NVIDIA Corporation) C:\Windows\System32\NvIFR64.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00467232 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00465184 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00266448 ____A (NVIDIA Corporation) C:\Windows\System32\nvinitx.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00218592 ____A (NVIDIA Corporation) C:\Windows\System32\nvoglshim64.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00214448 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2013-07-01 23:36 - 2013-06-21 14:06 - 00181488 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2013-06-30 22:51 - 2013-06-30 22:51 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_xusb21_01009.Wdf 2013-06-30 22:51 - 2013-06-30 22:51 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_MijXfilt_01009.Wdf 2013-06-30 18:25 - 2013-06-30 18:25 - 00000000 ____D C:\Users\Benutzer\Documents\Wizards of the Coast 2013-06-29 01:01 - 2013-06-29 01:01 - 00000000 ____D C:\Games 2013-06-29 00:18 - 2013-06-29 00:18 - 04396440 ____A (Piriform Ltd) C:\Users\Benutzer\Downloads\ccsetup403.exe 2013-06-27 00:44 - 2013-07-07 13:44 - 00000266 ____A C:\Windows\Tasks\AutoKMS.job 2013-06-27 00:44 - 2013-06-27 17:33 - 00000000 ____D C:\Windows\AutoKMS 2013-06-26 23:29 - 2013-06-30 17:28 - 00000000 ____D C:\Users\Benutzer\Documents\RIFT 2013-06-25 20:41 - 2013-06-25 20:43 - 00012121 ____A C:\Users\Benutzer\AppData\Roaming\PStrip.ini 2013-06-25 07:04 - 2013-06-25 07:04 - 00745495 ____A C:\Users\Benutzer\Downloads\MCP2200 Windows Driver 2013-02-21.zip 2013-06-24 20:02 - 2006-09-30 11:36 - 00013008 ____A C:\Windows\System32\Drivers\pstrip64.sys 2013-06-24 20:01 - 2013-06-24 20:01 - 01411304 ____A (EnTech Taiwan) C:\Users\Benutzer\Downloads\pstrip.exe 2013-06-24 19:41 - 2013-06-24 19:41 - 01420256 ____A (techPowerUp (www.techpowerup.com)) C:\Users\Benutzer\Downloads\GPU-Z_ASUS_ROG_0.7.2.exe 2013-06-24 19:24 - 2013-06-24 19:24 - 01198007 ____A (CPUID, Inc. ) C:\Users\Benutzer\Downloads\MemtweakIt-1017-setup.exe 2013-06-24 19:10 - 2013-06-24 19:19 - 391842315 ___RA C:\Users\Benutzer\Downloads\RealBench_v1.051.rar 2013-06-24 00:36 - 2013-06-24 00:36 - 00000000 ____D C:\Users\Benutzer\Downloads\Moonlight Lady 2013-06-24 00:33 - 2013-06-24 00:33 - 00019727 ____A C:\Users\Benutzer\Downloads\hshare.net.Moonlight.Lady.EP01-05.ENG.SUB.FILES.rar 2013-06-23 22:17 - 2013-06-23 22:23 - 00001981 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_prc_drk.log 2013-06-23 22:12 - 2013-06-23 22:15 - 00001982 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_prc_eye.log 2013-06-23 22:11 - 2013-06-23 22:11 - 00001862 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_003.log 2013-06-23 22:11 - 2013-06-23 22:11 - 00001861 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_001.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001862 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_002.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001860 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_pro_col.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001860 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_war.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001860 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_rog.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001860 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_mag.log 2013-06-23 22:09 - 2013-06-23 22:10 - 00001861 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_prc_one.log 2013-06-23 22:09 - 2013-06-23 22:09 - 00001861 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_prc_seb.log 2013-06-23 21:29 - 2013-06-23 21:29 - 10319008 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_WarriorItemPack2.exe 2013-06-23 21:29 - 2013-06-23 21:29 - 07023824 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_MageItemPack2.exe 2013-06-23 21:28 - 2013-06-23 21:51 - 1272222488 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_MarkOfTheAssassin.exe 2013-06-23 21:28 - 2013-06-23 21:42 - 885015120 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_Legacy.exe 2013-06-23 21:28 - 2013-06-23 21:29 - 07645904 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_RogueItemPack2.exe 2013-06-23 21:28 - 2013-06-23 21:28 - 04826056 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_WarriorItemPack.exe 2013-06-23 21:27 - 2013-06-23 21:27 - 06229408 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_RogueItemPack.exe 2013-06-23 21:27 - 2013-06-23 21:27 - 05697792 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_MageItemPack.exe 2013-06-23 21:27 - 2013-06-23 21:27 - 01638048 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_SignatureEdition.exe 2013-06-23 21:26 - 2013-06-23 21:26 - 33120856 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_ExiledPrince.exe 2013-06-23 21:26 - 2013-06-23 21:26 - 14142624 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_BlackEmporium.exe 2013-06-23 18:41 - 2013-06-23 18:41 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Freemium 2013-06-23 18:38 - 2013-06-23 18:39 - 00000000 ____D C:\Users\Benutzer\AppData\Local\DownloadGuide 2013-06-23 18:38 - 2013-06-23 18:38 - 00444400 ____A C:\Users\Benutzer\Downloads\DLG_free-clever-privacy_chip_de-DE.exe 2013-06-23 18:25 - 2013-06-23 21:25 - 00004064 ____A C:\shared.log 2013-06-23 18:25 - 2013-06-23 18:25 - 00003887 ____A C:\Users\Benutzer\Documents\Dragon Age 2 1.04.log 2013-06-23 18:24 - 2013-06-23 18:25 - 48330216 ____A (BioWare) C:\Users\Benutzer\Downloads\DragonAge2-1.04.exe 2013-06-23 18:19 - 2013-06-23 18:19 - 00000000 ____D C:\ProgramData\EA Core 2013-06-23 18:09 - 2013-06-23 18:09 - 00000000 ____D C:\Program Files (x86)\The Elder Scrolls Arena 2013-06-23 18:08 - 2013-06-23 18:08 - 00000000 ____D C:\Users\Benutzer\AppData\Local\DOSBox 2013-06-23 18:06 - 2013-06-23 18:06 - 00000000 ____D C:\Program Files (x86)\DOSBox-0.74 2013-06-23 17:57 - 2013-06-23 17:58 - 01448809 ____A (DOSBox Team) C:\Users\Benutzer\Downloads\DOSBox0.74-win32-installer.exe 2013-06-23 17:55 - 2013-06-23 18:22 - 155920571 ____A C:\Users\Benutzer\Downloads\DFInstall.zip 2013-06-23 17:54 - 2013-06-23 17:55 - 09190807 ____A C:\Users\Benutzer\Downloads\Arena106.exe 2013-06-23 17:53 - 2008-10-15 06:22 - 05631312 ____A (Microsoft Corporation) C:\Windows\System32\D3DX9_40.dll 2013-06-23 17:53 - 2008-10-15 06:22 - 04379984 ____A (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2013-06-23 17:53 - 2008-10-15 06:22 - 02605920 ____A (Microsoft Corporation) C:\Windows\System32\D3DCompiler_40.dll 2013-06-23 17:53 - 2008-10-15 06:22 - 02036576 ____A (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2013-06-23 17:53 - 2008-10-15 06:22 - 00519000 ____A (Microsoft Corporation) C:\Windows\System32\d3dx10_40.dll 2013-06-23 17:53 - 2008-10-15 06:22 - 00452440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2013-06-23 16:43 - 2013-06-23 16:45 - 00003763 ____A C:\Users\Benutzer\Documents\Dragon Age Origins 1.05.log 2013-06-23 16:42 - 2013-06-23 16:43 - 101553128 ____A (BioWare) C:\Users\Benutzer\Downloads\DragonAge1.05.exe 2013-06-23 15:54 - 2013-06-23 15:54 - 00001289 ____A C:\Users\Benutzer\Documents\DAO Addins Updater.log 2013-06-23 15:47 - 2013-06-23 15:51 - 00003259 ____A C:\Users\Benutzer\Documents\Dragon Age Origins 1.04.log 2013-06-23 15:14 - 2013-06-23 15:14 - 00000000 ____D C:\ProgramData\BioWare 2013-06-23 15:13 - 2013-06-23 18:17 - 00000000 ____D C:\Users\Benutzer\Documents\BioWare 2013-06-23 15:13 - 2013-06-23 15:13 - 00000000 ____D C:\Users\Benutzer\AppData\Local\EA Core 2013-06-23 15:12 - 2013-06-23 16:43 - 00000000 ____D C:\Program Files (x86)\Electronic Arts 2013-06-23 15:11 - 2013-06-23 15:11 - 00000000 ____D C:\Windows\1C4551A64743409391E41477CD655043.TMP 2013-06-23 14:59 - 2013-06-23 16:44 - 00000000 ____D C:\Program Files (x86)\Dragon Age 2013-06-23 14:59 - 2013-06-23 15:12 - 00023349 ____A C:\Users\Benutzer\Documents\Install Dragon Age Origins.log 2013-06-23 11:32 - 2013-07-01 00:23 - 00000000 ____D C:\Program Files (x86)\Warhammer Online - Age of Reckoning 2013-06-23 11:30 - 2013-06-23 11:31 - 42929231 ____A C:\Users\Benutzer\Downloads\WarhammerOnlineInstaller.exe 2013-06-23 06:35 - 2013-06-23 06:35 - 05126104 ____A (Piriform Ltd) C:\Users\Benutzer\Downloads\spsetup122.exe 2013-06-23 04:15 - 2013-07-03 23:54 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\.minecraft 2013-06-23 04:13 - 2013-06-23 08:46 - 00000000 ____D C:\Program Files (x86)\GUILD WARS 2013-06-23 04:13 - 2013-06-23 04:13 - 00000000 ____D C:\Users\Benutzer\Documents\GUILD WARS 2013-06-23 04:12 - 2013-06-23 04:12 - 00105234 ____A C:\Users\Benutzer\Downloads\gwsetup(1).zip 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\wacomid-desktop-launcher.DCFD4B89A63EE70BC162777F06D4B93B6397AEC7.1 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Wacom 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\ProgramData\Wacom 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Program Files (x86)\Bamboo Dock 2013-06-22 01:54 - 2013-06-22 01:55 - 00000002 ____A C:\Users\Benutzer\.bdockinstall.log 2013-06-22 01:54 - 2013-06-22 01:54 - 30011936 ____A C:\Users\Benutzer\Downloads\dock_setup.exe 2013-06-22 01:49 - 2013-06-22 01:49 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_wachidrouter_01009.Wdf 2013-06-22 01:41 - 2013-06-22 01:41 - 00000000 ____D C:\Users\Benutzer\Documents\ArtRage Paintings 2013-06-22 01:41 - 2013-06-22 01:41 - 00000000 ____D C:\ProgramData\Caphyon 2013-06-22 01:41 - 2013-06-22 01:41 - 00000000 ____D C:\Program Files (x86)\Ambient Design 2013-06-22 01:39 - 2013-06-22 01:41 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Ambient Design 2013-06-22 01:36 - 2013-06-22 01:37 - 82461824 ____A (Ambient Design) C:\Users\Benutzer\Downloads\install_artrage_4.exe 2013-06-22 01:16 - 2013-06-22 01:16 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\WTablet 2013-06-22 01:15 - 2013-06-22 01:15 - 00000000 ____D C:\Program Files\TabletPlugins 2013-06-22 01:15 - 2013-06-22 01:15 - 00000000 ____D C:\Program Files\Tablet 2013-06-22 01:15 - 2013-06-22 01:15 - 00000000 ____D C:\Program Files (x86)\TabletPlugins 2013-06-22 01:15 - 2012-12-11 13:07 - 01981312 ____A (Wacom Technology, Corp.) C:\Windows\System32\Pen_Tablet.dll 2013-06-22 01:15 - 2012-12-11 13:07 - 01974144 ____A (Wacom Technology, Corp.) C:\Windows\System32\Pen_Touch_Tablet.dll 2013-06-22 01:15 - 2012-12-11 13:07 - 01843584 ____A (Wacom Technology, Corp.) C:\Windows\System32\Wintab32.dll 2013-06-22 01:15 - 2012-12-11 13:07 - 01840000 ____A (Wacom Technology, Corp.) C:\Windows\System32\WacomMT.dll 2013-06-22 01:15 - 2012-12-11 13:07 - 01628544 ____A (Wacom Technology, Corp.) C:\Windows\SysWOW64\Pen_Tablet.dll 2013-06-22 01:15 - 2012-12-11 13:07 - 01621888 ____A (Wacom Technology, Corp.) C:\Windows\SysWOW64\Pen_Touch_Tablet.dll 2013-06-22 01:15 - 2012-12-11 13:07 - 01509760 ____A (Wacom Technology, Corp.) C:\Windows\SysWOW64\Wintab32.dll 2013-06-22 01:15 - 2012-12-11 13:07 - 01505664 ____A (Wacom Technology, Corp.) C:\Windows\SysWOW64\WacomMT.dll 2013-06-22 01:15 - 2012-12-03 16:36 - 00081824 ____A (Wacom Technology) C:\Windows\System32\Drivers\wachidrouter.sys 2013-06-22 01:15 - 2012-12-03 16:36 - 00013728 ____A (Windows (R) Win 7 DDK provider) C:\Windows\System32\Drivers\hidkmdf.sys 2013-06-22 01:15 - 2012-11-15 09:41 - 00015776 ____A (Wacom Technology) C:\Windows\System32\Drivers\wacomrouterfilter.sys 2013-06-22 01:14 - 2013-06-22 01:15 - 38455200 ____A C:\Users\Benutzer\Downloads\cons532-1_int.exe 2013-06-21 16:00 - 2013-06-21 16:00 - 00204048 ____A (Oracle Corporation) C:\Windows\System32\VBoxNetFltNobj.dll 2013-06-21 16:00 - 2013-06-21 16:00 - 00146704 ____A (Oracle Corporation) C:\Windows\System32\Drivers\VBoxNetFlt.sys 2013-06-21 16:00 - 2013-06-21 16:00 - 00131856 ____A (Oracle Corporation) C:\Windows\System32\Drivers\VBoxNetAdp.sys 2013-06-21 05:16 - 2013-06-21 05:16 - 00566048 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2013-06-19 22:40 - 2013-07-07 13:43 - 00000000 ___RD C:\Users\Benutzer\Dropbox 2013-06-19 22:37 - 2013-07-07 14:10 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Dropbox 2013-06-19 22:36 - 2013-06-19 22:36 - 34935760 ____A (Dropbox, Inc.) C:\Users\Benutzer\Downloads\Dropbox 2.2.3.exe 2013-06-18 17:54 - 2013-06-18 17:55 - 00000000 ____D C:\Program Files (x86)\Tinkerforge 2013-06-18 17:53 - 2013-06-18 17:54 - 18917020 ____A C:\Users\Benutzer\Downloads\brickv_windows_2_0_5.exe 2013-06-18 17:53 - 2013-06-18 17:53 - 04970233 ____A C:\Users\Benutzer\Downloads\brickd_windows_2_0_5.exe 2013-06-18 17:06 - 2013-06-18 17:06 - 04378864 ____A (Piriform Ltd) C:\Users\Benutzer\Downloads\ccsetup402.exe 2013-06-18 01:45 - 2013-06-18 01:45 - 02002832 ____A C:\Users\Benutzer\Downloads\Red-Collection---AnnaRoma-UPGRADE-5.zip 2013-06-18 01:44 - 2013-06-18 01:44 - 00040791 ____A C:\Users\Benutzer\Downloads\ROG-v1.zip 2013-06-18 01:40 - 2013-06-18 01:40 - 00000000 ____D C:\Program Files (x86)\RocketDock 2013-06-18 01:39 - 2013-06-18 01:40 - 06463660 ____A (Punk Software ) C:\Users\Benutzer\Downloads\RocketDock-v1.3.5.exe 2013-06-17 23:35 - 2013-07-06 23:26 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Skyrim 2013-06-17 23:35 - 2013-06-17 23:35 - 00000000 ____D C:\Users\Benutzer\Documents\Witcher 2 2013-06-17 23:03 - 2013-06-17 23:03 - 00000000 ____D C:\Program Files (x86)\CPU-Z 2013-06-17 23:02 - 2013-06-23 04:17 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\NVIDIA 2013-06-17 23:02 - 2013-06-17 23:02 - 00000000 ____D C:\Program Files (x86)\GPU-Z 2013-06-17 23:01 - 2013-06-17 23:01 - 01405920 ____A (techPowerUp (www.techpowerup.com)) C:\Users\Benutzer\Downloads\GPU-Z_ASUS_ROG_0.7.1.exe 2013-06-17 23:01 - 2013-06-17 23:01 - 01373832 ____A (CPUID, Inc. ) C:\Users\Benutzer\Downloads\cpu-z_1.64-rog-setup-en.exe 2013-06-17 22:55 - 2013-06-17 22:56 - 00000000 ____D C:\Program Files (x86)\TurnedOnTimesView 2013-06-17 22:52 - 2013-06-17 22:52 - 00064922 ____A C:\Users\Benutzer\Downloads\turnedontimesview.zip 2013-06-17 02:59 - 2013-07-06 19:02 - 00000020 ____A C:\Users\Benutzer\AppData\Roaming\Network Meter_Usage.ini 2013-06-17 01:00 - 2013-07-06 19:00 - 00005690 ____A C:\Users\Benutzer\Network_Meter_Data.js 2013-06-17 00:38 - 2013-06-17 00:38 - 00001138 ____A C:\Users\Benutzer\AppData\Roaming\Network Meter_Settings.ini 2013-06-17 00:38 - 2013-06-17 00:38 - 00000842 ____A C:\Users\Benutzer\AppData\Roaming\Drives Meter_Settings.ini 2013-06-17 00:37 - 2013-06-17 00:37 - 00000297 ____A C:\Users\Benutzer\AppData\Roaming\GPU MeterV2_Settings.ini 2013-06-17 00:35 - 2013-06-17 23:33 - 00000095 ____A C:\Users\Benutzer\AppData\Roaming\Control System_Settings.ini 2013-06-17 00:35 - 2013-06-17 00:36 - 00000627 ____A C:\Users\Benutzer\AppData\Roaming\All CPU MeterV3_Settings.ini 2013-06-17 00:33 - 2013-06-20 01:36 - 00000000 ____D C:\Program Files (x86)\PCMeter 2013-06-16 03:08 - 2013-07-07 18:57 - 00000000 ____D C:\Users\Benutzer\Desktop 4 2013-06-16 03:08 - 2013-07-06 17:15 - 00000000 ____D C:\Users\Benutzer\Desktop 2 2013-06-16 03:08 - 2013-07-05 18:58 - 00000000 ____D C:\Users\Benutzer\Desktop 3 2013-06-16 03:03 - 2013-06-16 03:04 - 00002410 ____A C:\Windows\SysWOW64\cplLogon.tsk 2013-06-16 03:03 - 2013-06-16 03:03 - 02218077 ____A (Daniel Rebelo ) C:\Users\Benutzer\Downloads\Logon Screen 2.56.exe 2013-06-16 03:03 - 2013-06-16 03:03 - 00000000 ____D C:\Program Files\Logon Screen 2013-06-16 02:46 - 2013-06-16 02:48 - 00000000 ___AD C:\Windows\SysWOW64\ROG_Video Intro dir 2013-06-16 02:46 - 2013-06-16 02:43 - 00680960 ____A (ASUSTeK Computer Inc.) C:\Windows\SysWOW64\ROGThemeSetup.exe 2013-06-16 02:46 - 2013-06-16 02:43 - 00201728 ____A (ScreenTime Media) C:\Windows\SysWOW64\ROG_Video Intro .scr 2013-06-16 02:46 - 2011-02-25 08:19 - 02871808 ____A (Microsoft Corporation) C:\Windows\explorer.exe.rogbak 2013-06-16 02:25 - 2013-06-16 02:26 - 30789811 ____A C:\Users\Benutzer\Downloads\ROG_THEME_V10014_Win7.zip 2013-06-16 02:10 - 2013-07-07 13:41 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Dexpot 2013-06-16 02:10 - 2013-06-16 02:10 - 00000000 ____D C:\Program Files (x86)\Dexpot 2013-06-16 02:06 - 2013-06-16 02:06 - 02796815 ____A (Dexpot GbR) C:\Users\Benutzer\Downloads\dexpot_169_r2285.exe 2013-06-16 01:53 - 2013-06-16 01:53 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Bump Technologies, Inc 2013-06-16 01:50 - 2013-06-16 01:50 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Bump Technologies, Inc 2013-06-16 01:49 - 2013-06-16 01:50 - 16628120 ____A (Bump Technologies, Inc. ) C:\Users\Benutzer\Downloads\BumpTop-2.1-6211.exe 2013-06-15 02:13 - 2013-06-08 16:08 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2013-06-15 02:13 - 2013-06-08 16:07 - 19233792 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2013-06-15 02:13 - 2013-06-08 16:06 - 15404544 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2013-06-15 02:13 - 2013-06-08 16:06 - 02648064 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2013-06-15 02:13 - 2013-06-08 16:06 - 00526336 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll 2013-06-15 02:13 - 2013-06-08 14:28 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2013-06-15 02:13 - 2013-06-08 13:42 - 01141248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-06-15 02:13 - 2013-06-08 13:40 - 14327808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-06-15 02:13 - 2013-06-08 13:40 - 13760512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-06-15 02:13 - 2013-06-08 13:40 - 02046976 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-06-15 02:13 - 2013-06-08 13:40 - 00391168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-06-15 02:13 - 2013-06-08 13:13 - 02706432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-06-13 01:23 - 2013-05-17 03:25 - 02877440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-06-13 01:23 - 2013-05-17 03:25 - 01767936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-06-13 01:23 - 2013-05-17 03:25 - 00690688 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-06-13 01:23 - 2013-05-17 03:25 - 00493056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-06-13 01:23 - 2013-05-17 03:25 - 00109056 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-06-13 01:23 - 2013-05-17 03:25 - 00061440 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-06-13 01:23 - 2013-05-17 03:25 - 00039424 ____A (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-06-13 01:23 - 2013-05-17 03:25 - 00033280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-06-13 01:23 - 2013-05-17 02:59 - 02241024 ____A (Microsoft Corporation) C:\Windows\System32\wininet.dll 2013-06-13 01:23 - 2013-05-17 02:59 - 00051712 ____A (Microsoft Corporation) C:\Windows\System32\ie4uinit.exe 2013-06-13 01:23 - 2013-05-17 02:58 - 03958784 ____A (Microsoft Corporation) C:\Windows\System32\jscript9.dll 2013-06-13 01:23 - 2013-05-17 02:58 - 00855552 ____A (Microsoft Corporation) C:\Windows\System32\jscript.dll 2013-06-13 01:23 - 2013-05-17 02:58 - 00603136 ____A (Microsoft Corporation) C:\Windows\System32\msfeeds.dll 2013-06-13 01:23 - 2013-05-17 02:58 - 00136704 ____A (Microsoft Corporation) C:\Windows\System32\iesysprep.dll 2013-06-13 01:23 - 2013-05-17 02:58 - 00067072 ____A (Microsoft Corporation) C:\Windows\System32\iesetup.dll 2013-06-13 01:23 - 2013-05-17 02:58 - 00053248 ____A (Microsoft Corporation) C:\Windows\System32\jsproxy.dll 2013-06-13 01:23 - 2013-05-17 02:58 - 00039936 ____A (Microsoft Corporation) C:\Windows\System32\iernonce.dll 2013-06-13 01:23 - 2013-05-14 14:23 - 00089600 ____A (Microsoft Corporation) C:\Windows\System32\RegisterIEPKEYs.exe 2013-06-13 01:23 - 2013-05-14 10:40 - 00071680 ____A (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-06-12 16:52 - 2013-06-12 16:52 - 13081608 ____A (Microsoft Corporation) C:\Users\Benutzer\Downloads\Silverlight_x64.exe 2013-06-12 16:52 - 2013-06-12 16:52 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2013-06-12 16:52 - 2013-06-12 16:52 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-06-12 12:58 - 2013-05-13 07:51 - 01464320 ____A (Microsoft Corporation) C:\Windows\System32\crypt32.dll 2013-06-12 12:58 - 2013-05-13 07:51 - 00184320 ____A (Microsoft Corporation) C:\Windows\System32\cryptsvc.dll 2013-06-12 12:58 - 2013-05-13 07:51 - 00139776 ____A (Microsoft Corporation) C:\Windows\System32\cryptnet.dll 2013-06-12 12:58 - 2013-05-13 07:50 - 00052224 ____A (Microsoft Corporation) C:\Windows\System32\certenc.dll 2013-06-12 12:58 - 2013-05-13 06:45 - 01160192 ____A (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-06-12 12:58 - 2013-05-13 06:45 - 00140288 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2013-06-12 12:58 - 2013-05-13 06:45 - 00103936 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2013-06-12 12:58 - 2013-05-13 05:43 - 01192448 ____A (Microsoft Corporation) C:\Windows\System32\certutil.exe 2013-06-12 12:58 - 2013-05-13 05:08 - 00903168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\certutil.exe 2013-06-12 12:58 - 2013-05-13 05:08 - 00043008 ____A (Microsoft Corporation) C:\Windows\SysWOW64\certenc.dll 2013-06-12 12:58 - 2013-05-10 07:49 - 00030720 ____A (Microsoft Corporation) C:\Windows\System32\cryptdlg.dll 2013-06-12 12:58 - 2013-05-10 05:20 - 00024576 ____A (Microsoft Corporation) C:\Windows\SysWOW64\cryptdlg.dll 2013-06-12 12:58 - 2013-05-08 08:39 - 01910632 ____A (Microsoft Corporation) C:\Windows\System32\Drivers\tcpip.sys 2013-06-12 12:58 - 2013-04-26 07:51 - 00751104 ____A (Microsoft Corporation) C:\Windows\System32\win32spl.dll 2013-06-12 12:58 - 2013-04-26 06:55 - 00492544 ____A (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2013-06-12 12:58 - 2013-04-17 09:02 - 01230336 ____A (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2013-06-12 12:58 - 2013-04-17 08:24 - 01424384 ____A (Microsoft Corporation) C:\Windows\System32\WindowsCodecs.dll 2013-06-12 12:57 - 2013-04-26 01:30 - 01505280 ____A (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2013-06-12 12:57 - 2013-04-01 00:52 - 01887232 ____A (Microsoft Corporation) C:\Windows\System32\d3d11.dll 2013-06-10 21:10 - 2013-06-10 21:11 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2013-06-10 21:10 - 2013-06-10 21:11 - 00000000 ____D C:\Program Files\iTunes 2013-06-10 21:10 - 2013-06-10 21:11 - 00000000 ____D C:\Program Files (x86)\iTunes 2013-06-10 21:10 - 2013-06-10 21:10 - 00000000 ____D C:\Program Files\iPod ==================== One Month Modified Files and Folders ======= 2013-07-07 20:23 - 2013-07-07 20:23 - 00000886 ____A C:\Users\Benutzer\Desktop\checkup.txt 2013-07-07 20:18 - 2013-05-20 00:36 - 00000884 ____A C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-07-07 20:17 - 2013-05-19 23:20 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Skype 2013-07-07 20:13 - 2013-05-28 01:52 - 00000000 ____D C:\Users\Benutzer\Documents\Outlook-Dateien 2013-07-07 19:17 - 2013-05-19 22:46 - 01188179 ____A C:\Windows\WindowsUpdate.log 2013-07-07 18:57 - 2013-06-16 03:08 - 00000000 ____D C:\Users\Benutzer\Desktop 4 2013-07-07 17:04 - 2013-05-20 00:00 - 00000000 ____D C:\Program Files (x86)\Steam 2013-07-07 17:01 - 2013-05-20 03:12 - 00000000 ____D C:\Program Files (x86)\StarCraft II 2013-07-07 17:00 - 2013-07-07 16:58 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Battle.net 2013-07-07 16:59 - 2013-07-07 16:58 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Battle.net 2013-07-07 16:59 - 2013-05-19 22:52 - 00000000 ____D C:\users\Benutzer 2013-07-07 16:58 - 2013-07-07 16:58 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Blizzard Entertainment 2013-07-07 16:58 - 2013-07-07 16:58 - 00000000 ____D C:\Program Files (x86)\Battle.net 2013-07-07 16:55 - 2013-07-07 16:55 - 04826568 ____A (Blizzard Entertainment) C:\Users\Benutzer\Downloads\Battle.net-Beta-Setup-deDE.exe 2013-07-07 16:22 - 2013-05-21 19:13 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\vlc 2013-07-07 15:59 - 2013-07-07 15:59 - 00000000 ____D C:\Program Files (x86)\ESET 2013-07-07 15:58 - 2013-07-07 15:58 - 00002217 ____A C:\Users\Benutzer\Desktop\FSS.txt 2013-07-07 15:57 - 2013-07-07 15:57 - 02347384 ____A (ESET) C:\Users\Benutzer\Desktop\esetsmartinstaller_enu.exe 2013-07-07 15:57 - 2013-07-07 15:57 - 00890988 ____A C:\Users\Benutzer\Desktop\SecurityCheck.exe 2013-07-07 15:56 - 2013-07-07 15:56 - 00356399 ____A (Farbar) C:\Users\Benutzer\Desktop\FSS.exe 2013-07-07 15:35 - 2013-07-07 15:35 - 00000000 ____D C:\Users\Benutzer\Documents\3DMark 2013-07-07 15:35 - 2013-07-07 15:35 - 00000000 ____D C:\Users\Benutzer\AppData\Local\IsolatedStorage 2013-07-07 15:35 - 2013-07-07 15:35 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Futuremark 2013-07-07 15:32 - 2009-07-14 19:58 - 00710782 ____A C:\Windows\System32\perfh007.dat 2013-07-07 15:32 - 2009-07-14 19:58 - 00153874 ____A C:\Windows\System32\perfc007.dat 2013-07-07 15:32 - 2009-07-14 07:13 - 01671566 ____A C:\Windows\System32\PerfStringBackup.INI 2013-07-07 15:30 - 2013-07-07 15:30 - 00000000 ____D C:\ProgramData\Package Cache 2013-07-07 15:29 - 2013-07-07 15:29 - 00000000 ____D C:\Program Files (x86)\Futuremark 2013-07-07 15:29 - 2013-05-20 02:30 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-07-07 15:29 - 2013-05-19 23:14 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2013-07-07 15:01 - 2009-07-14 06:45 - 00021408 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-07-07 15:01 - 2009-07-14 06:45 - 00021408 ___AH C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-07-07 14:54 - 2013-05-21 18:52 - 00000000 ____D C:\Users\Benutzer\AppData\Local\LogMeIn Hamachi 2013-07-07 14:54 - 2013-05-21 18:49 - 00000000 ____D C:\ProgramData\LogMeIn 2013-07-07 14:54 - 2013-05-20 00:38 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Apps\2.0 2013-07-07 14:10 - 2013-06-19 22:37 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Dropbox 2013-07-07 13:44 - 2013-06-27 00:44 - 00000266 ____A C:\Windows\Tasks\AutoKMS.job 2013-07-07 13:43 - 2013-06-19 22:40 - 00000000 ___RD C:\Users\Benutzer\Dropbox 2013-07-07 13:42 - 2013-05-19 23:01 - 00000000 ____D C:\ProgramData\NVIDIA 2013-07-07 13:42 - 2009-07-14 07:08 - 00000006 ___AH C:\Windows\Tasks\SA.DAT 2013-07-07 13:41 - 2013-06-16 02:10 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Dexpot 2013-07-07 13:31 - 2013-07-07 13:31 - 00041855 ____A C:\ComboFix.txt 2013-07-07 13:31 - 2013-07-07 13:12 - 00000000 ____D C:\Qoobox 2013-07-07 13:31 - 2009-07-14 05:20 - 00000000 __RHD C:\users\Default 2013-07-07 13:30 - 2013-07-07 13:12 - 00000000 ____D C:\Windows\erdnt 2013-07-07 13:23 - 2009-07-14 04:34 - 00000215 ____A C:\Windows\system.ini 2013-07-07 13:11 - 2013-07-07 13:11 - 05087096 ____R (Swearware) C:\Users\Benutzer\Desktop\ComboFix.exe 2013-07-06 23:26 - 2013-06-17 23:35 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Skyrim 2013-07-06 21:56 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2013-07-06 20:58 - 2013-07-06 20:58 - 00000000 ____D C:\Windows\ERUNT 2013-07-06 20:58 - 2013-07-06 20:58 - 00000000 ____D C:\JRT 2013-07-06 20:50 - 2013-07-06 20:50 - 00001931 ____A C:\AdwCleaner[S1].txt 2013-07-06 20:49 - 2013-07-06 20:48 - 00545954 ____A (Oleg N. Scherbakov) C:\Users\Benutzer\Desktop\JRT.exe 2013-07-06 20:48 - 2013-07-06 20:48 - 00650027 ____A C:\Users\Benutzer\Desktop\adwcleaner.exe 2013-07-06 19:55 - 2013-07-06 19:55 - 00000000 ____D C:\FRST 2013-07-06 19:51 - 2013-07-06 19:51 - 01934636 ____A (Farbar) C:\Users\Benutzer\Desktop\FRST64.exe 2013-07-06 19:02 - 2013-06-17 02:59 - 00000020 ____A C:\Users\Benutzer\AppData\Roaming\Network Meter_Usage.ini 2013-07-06 19:02 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Sidebar 2013-07-06 19:00 - 2013-06-17 01:00 - 00005690 ____A C:\Users\Benutzer\Network_Meter_Data.js 2013-07-06 17:15 - 2013-06-16 03:08 - 00000000 ____D C:\Users\Benutzer\Desktop 2 2013-07-06 14:02 - 2013-07-06 14:02 - 00262144 ____A C:\Windows\System32\config\elam 2013-07-05 18:58 - 2013-06-16 03:08 - 00000000 ____D C:\Users\Benutzer\Desktop 3 2013-07-04 22:56 - 2013-07-04 22:03 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Dev-Cpp 2013-07-04 22:19 - 2013-05-28 01:22 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-07-04 22:18 - 2013-05-28 01:22 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2013-07-04 22:09 - 2013-07-04 22:07 - 00000000 ____D C:\Program Files\Microsoft Platform SDK 2013-07-04 22:07 - 2013-07-04 22:07 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio .NET 2003 2013-07-04 22:05 - 2013-07-04 22:05 - 01349856 ____A (Microsoft Corporation) C:\Users\Benutzer\Downloads\PSDK-amd64.exe 2013-07-04 22:03 - 2013-07-04 22:03 - 00000000 ____D C:\Dev-Cpp 2013-07-04 22:02 - 2013-07-04 22:02 - 09326468 ____A C:\Users\Benutzer\Downloads\devcpp- 2013-07-04 21:54 - 2013-07-04 21:54 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_WinUsb_01009.Wdf 2013-07-04 17:02 - 2013-05-19 23:25 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-07-04 01:15 - 2013-07-03 23:57 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Turbine 2013-07-04 00:01 - 2013-07-04 00:01 - 00000000 ____D C:\Users\Benutzer\Documents\The Lord of the Rings Online 2013-07-03 23:57 - 2013-07-03 23:57 - 00000094 ____A C:\Users\Benutzer\AppData\Local\fusioncache.dat 2013-07-03 23:57 - 2013-05-20 02:00 - 01677006 ____A C:\Windows\SysWOW64\PerfStringBackup.INI 2013-07-03 23:57 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\Registration 2013-07-03 23:54 - 2013-06-23 04:15 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\.minecraft 2013-07-03 22:47 - 2013-07-03 21:26 - 00000000 ____D C:\Users\Benutzer\.VirtualBox 2013-07-03 22:07 - 2013-07-03 22:07 - 00001199 ____A C:\Users\UpdatusUser\Desktop\Flip 3.4.7.lnk 2013-07-03 22:07 - 2013-07-03 22:07 - 00001199 ____A C:\Users\LogMeInRemoteUser\Desktop\Flip 3.4.7.lnk 2013-07-03 22:06 - 2013-07-03 22:06 - 05907981 ____A (Atmel) C:\Users\Benutzer\Downloads\Flip Installer - 2013-07-03 22:06 - 2013-06-04 17:03 - 00000000 ____D C:\Program Files (x86)\Atmel 2013-07-03 22:00 - 2013-07-03 21:54 - 00000000 ____D C:\Windows XP 2013-07-03 21:26 - 2013-07-03 21:26 - 00000000 ____D C:\Users\Benutzer\VirtualBox VMs 2013-07-03 21:24 - 2013-07-03 21:24 - 00000000 ____D C:\Program Files\Oracle 2013-07-03 21:24 - 2013-07-03 21:24 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-07-03 21:22 - 2013-07-03 21:17 - 99246864 ____A (Oracle Corporation) C:\Users\Benutzer\Downloads\VirtualBox-4.2.14-86644-Win.exe 2013-07-03 21:18 - 2013-07-03 21:17 - 11639710 ____A C:\Users\Benutzer\Downloads\Oracle_VM_VirtualBox_Extension_Pack-4.2.14-86644.vbox-extpack 2013-07-03 21:04 - 2013-07-02 00:22 - 00000000 ____D C:\Windows\Minidump 2013-07-02 23:46 - 2013-07-02 23:46 - 00889416 ____A (Microsoft Corporation) C:\Users\Benutzer\Downloads\dotNetFx40_Full_setup.exe 2013-07-02 23:34 - 2013-07-02 23:34 - 00263592 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe 2013-07-02 23:34 - 2013-07-02 23:34 - 00175016 ____A (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe 2013-07-02 23:34 - 2013-07-02 23:34 - 00175016 ____A (Oracle Corporation) C:\Windows\SysWOW64\java.exe 2013-07-02 23:34 - 2013-07-02 23:34 - 00096168 ____A (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2013-07-02 23:34 - 2013-07-02 23:34 - 00000000 ____D C:\Program Files (x86)\Java 2013-07-02 23:34 - 2013-05-20 22:49 - 00867240 ____A (Oracle Corporation) C:\Windows\SysWOW64\npDeployJava1.dll 2013-07-02 23:34 - 2013-05-20 22:49 - 00789416 ____A (Oracle Corporation) C:\Windows\SysWOW64\deployJava1.dll 2013-07-02 23:04 - 2013-07-02 23:04 - 00032768 ____A C:\Windows\IsUninst.exe 2013-07-02 22:56 - 2013-07-02 22:56 - 04551939 ____A C:\Users\Benutzer\Downloads\flip-2_4_6.zip 2013-07-02 22:45 - 2013-05-20 03:36 - 00000000 ____D C:\Program Files\Nexus Mod Manager 2013-07-02 22:35 - 2013-07-02 22:35 - 00127860 ____A C:\Users\Benutzer\Downloads\memtest86+-4.20.usb.installer.zip 2013-07-02 15:39 - 2013-07-02 15:39 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2013-07-02 00:45 - 2013-07-02 00:45 - 00000000 ____D C:\Program Files (x86)\NirSoft 2013-07-02 00:44 - 2013-07-02 00:44 - 00141192 ____A C:\Users\Benutzer\Downloads\bluescreenview_setup_1.51.exe 2013-07-01 23:39 - 2013-07-01 23:39 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies 2013-07-01 23:39 - 2013-05-19 23:00 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2013-07-01 00:23 - 2013-06-23 11:32 - 00000000 ____D C:\Program Files (x86)\Warhammer Online - Age of Reckoning 2013-06-30 22:51 - 2013-06-30 22:51 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_xusb21_01009.Wdf 2013-06-30 22:51 - 2013-06-30 22:51 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_MijXfilt_01009.Wdf 2013-06-30 18:25 - 2013-06-30 18:25 - 00000000 ____D C:\Users\Benutzer\Documents\Wizards of the Coast 2013-06-30 17:31 - 2013-05-22 02:00 - 00000000 ____D C:\Program Files (x86)\RIFT 2013-06-30 17:28 - 2013-06-26 23:29 - 00000000 ____D C:\Users\Benutzer\Documents\RIFT 2013-06-30 17:19 - 2013-05-19 23:46 - 00000000 ____D C:\Program Files (x86)\World of Warcraft 2013-06-29 01:01 - 2013-06-29 01:01 - 00000000 ____D C:\Games 2013-06-29 00:18 - 2013-06-29 00:18 - 04396440 ____A (Piriform Ltd) C:\Users\Benutzer\Downloads\ccsetup403.exe 2013-06-29 00:18 - 2013-05-20 04:15 - 00000000 ____D C:\Program Files\CCleaner 2013-06-27 17:33 - 2013-06-27 00:44 - 00000000 ____D C:\Windows\AutoKMS 2013-06-26 23:31 - 2013-05-22 02:00 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\RIFT 2013-06-25 21:58 - 2013-05-23 23:48 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\uTorrent 2013-06-25 21:58 - 2013-05-20 03:45 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\DAEMON Tools Lite 2013-06-25 20:43 - 2013-06-25 20:41 - 00012121 ____A C:\Users\Benutzer\AppData\Roaming\PStrip.ini 2013-06-25 07:04 - 2013-06-25 07:04 - 00745495 ____A C:\Users\Benutzer\Downloads\MCP2200 Windows Driver 2013-02-21.zip 2013-06-24 20:01 - 2013-06-24 20:01 - 01411304 ____A (EnTech Taiwan) C:\Users\Benutzer\Downloads\pstrip.exe 2013-06-24 19:41 - 2013-06-24 19:41 - 01420256 ____A (techPowerUp (www.techpowerup.com)) C:\Users\Benutzer\Downloads\GPU-Z_ASUS_ROG_0.7.2.exe 2013-06-24 19:24 - 2013-06-24 19:24 - 01198007 ____A (CPUID, Inc. ) C:\Users\Benutzer\Downloads\MemtweakIt-1017-setup.exe 2013-06-24 19:19 - 2013-06-24 19:10 - 391842315 ___RA C:\Users\Benutzer\Downloads\RealBench_v1.051.rar 2013-06-24 00:36 - 2013-06-24 00:36 - 00000000 ____D C:\Users\Benutzer\Downloads\Moonlight Lady 2013-06-24 00:33 - 2013-06-24 00:33 - 00019727 ____A C:\Users\Benutzer\Downloads\hshare.net.Moonlight.Lady.EP01-05.ENG.SUB.FILES.rar 2013-06-23 22:23 - 2013-06-23 22:17 - 00001981 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_prc_drk.log 2013-06-23 22:15 - 2013-06-23 22:12 - 00001982 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_prc_eye.log 2013-06-23 22:11 - 2013-06-23 22:11 - 00001862 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_003.log 2013-06-23 22:11 - 2013-06-23 22:11 - 00001861 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_001.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001862 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_002.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001860 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_pro_col.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001860 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_war.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001860 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_rog.log 2013-06-23 22:10 - 2013-06-23 22:10 - 00001860 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_mtx_mag.log 2013-06-23 22:10 - 2013-06-23 22:09 - 00001861 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_prc_one.log 2013-06-23 22:09 - 2013-06-23 22:09 - 00001861 ____A C:\Users\Benutzer\Documents\Dragon Age 2 - da2_prc_seb.log 2013-06-23 21:51 - 2013-06-23 21:28 - 1272222488 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_MarkOfTheAssassin.exe 2013-06-23 21:42 - 2013-06-23 21:28 - 885015120 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_Legacy.exe 2013-06-23 21:29 - 2013-06-23 21:29 - 10319008 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_WarriorItemPack2.exe 2013-06-23 21:29 - 2013-06-23 21:29 - 07023824 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_MageItemPack2.exe 2013-06-23 21:29 - 2013-06-23 21:28 - 07645904 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_RogueItemPack2.exe 2013-06-23 21:28 - 2013-06-23 21:28 - 04826056 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_WarriorItemPack.exe 2013-06-23 21:27 - 2013-06-23 21:27 - 06229408 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_RogueItemPack.exe 2013-06-23 21:27 - 2013-06-23 21:27 - 05697792 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_MageItemPack.exe 2013-06-23 21:27 - 2013-06-23 21:27 - 01638048 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_SignatureEdition.exe 2013-06-23 21:26 - 2013-06-23 21:26 - 33120856 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_ExiledPrince.exe 2013-06-23 21:26 - 2013-06-23 21:26 - 14142624 ____A (BioWare) C:\Users\Benutzer\Downloads\DA2_BlackEmporium.exe 2013-06-23 21:25 - 2013-06-23 18:25 - 00004064 ____A C:\shared.log 2013-06-23 18:41 - 2013-06-23 18:41 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Freemium 2013-06-23 18:39 - 2013-06-23 18:38 - 00000000 ____D C:\Users\Benutzer\AppData\Local\DownloadGuide 2013-06-23 18:38 - 2013-06-23 18:38 - 00444400 ____A C:\Users\Benutzer\Downloads\DLG_free-clever-privacy_chip_de-DE.exe 2013-06-23 18:25 - 2013-06-23 18:25 - 00003887 ____A C:\Users\Benutzer\Documents\Dragon Age 2 1.04.log 2013-06-23 18:25 - 2013-06-23 18:24 - 48330216 ____A (BioWare) C:\Users\Benutzer\Downloads\DragonAge2-1.04.exe 2013-06-23 18:22 - 2013-06-23 17:55 - 155920571 ____A C:\Users\Benutzer\Downloads\DFInstall.zip 2013-06-23 18:19 - 2013-06-23 18:19 - 00000000 ____D C:\ProgramData\EA Core 2013-06-23 18:19 - 2013-05-19 22:52 - 00000000 ____D C:\Users\Benutzer\AppData\Local\VirtualStore 2013-06-23 18:17 - 2013-06-23 15:13 - 00000000 ____D C:\Users\Benutzer\Documents\BioWare 2013-06-23 18:09 - 2013-06-23 18:09 - 00000000 ____D C:\Program Files (x86)\The Elder Scrolls Arena 2013-06-23 18:08 - 2013-06-23 18:08 - 00000000 ____D C:\Users\Benutzer\AppData\Local\DOSBox 2013-06-23 18:06 - 2013-06-23 18:06 - 00000000 ____D C:\Program Files (x86)\DOSBox-0.74 2013-06-23 17:58 - 2013-06-23 17:57 - 01448809 ____A (DOSBox Team) C:\Users\Benutzer\Downloads\DOSBox0.74-win32-installer.exe 2013-06-23 17:55 - 2013-06-23 17:54 - 09190807 ____A C:\Users\Benutzer\Downloads\Arena106.exe 2013-06-23 16:48 - 2013-05-20 03:26 - 00000000 ____D C:\Program Files (x86)\Origin Games 2013-06-23 16:45 - 2013-06-23 16:43 - 00003763 ____A C:\Users\Benutzer\Documents\Dragon Age Origins 1.05.log 2013-06-23 16:44 - 2013-06-23 14:59 - 00000000 ____D C:\Program Files (x86)\Dragon Age 2013-06-23 16:43 - 2013-06-23 16:42 - 101553128 ____A (BioWare) C:\Users\Benutzer\Downloads\DragonAge1.05.exe 2013-06-23 16:43 - 2013-06-23 15:12 - 00000000 ____D C:\Program Files (x86)\Electronic Arts 2013-06-23 15:54 - 2013-06-23 15:54 - 00001289 ____A C:\Users\Benutzer\Documents\DAO Addins Updater.log 2013-06-23 15:53 - 2013-05-20 03:26 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Origin 2013-06-23 15:51 - 2013-06-23 15:47 - 00003259 ____A C:\Users\Benutzer\Documents\Dragon Age Origins 1.04.log 2013-06-23 15:14 - 2013-06-23 15:14 - 00000000 ____D C:\ProgramData\BioWare 2013-06-23 15:13 - 2013-06-23 15:13 - 00000000 ____D C:\Users\Benutzer\AppData\Local\EA Core 2013-06-23 15:13 - 2013-05-20 03:23 - 00000000 ____D C:\ProgramData\Electronic Arts 2013-06-23 15:12 - 2013-06-23 14:59 - 00023349 ____A C:\Users\Benutzer\Documents\Install Dragon Age Origins.log 2013-06-23 15:11 - 2013-06-23 15:11 - 00000000 ____D C:\Windows\1C4551A64743409391E41477CD655043.TMP 2013-06-23 11:31 - 2013-06-23 11:30 - 42929231 ____A C:\Users\Benutzer\Downloads\WarhammerOnlineInstaller.exe 2013-06-23 11:08 - 2013-05-20 03:23 - 00000000 ____D C:\ProgramData\Origin 2013-06-23 11:07 - 2013-05-20 03:26 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Origin 2013-06-23 11:06 - 2013-05-20 03:23 - 00000000 ____D C:\Program Files (x86)\Origin 2013-06-23 09:56 - 2013-05-20 00:38 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Deployment 2013-06-23 08:46 - 2013-06-23 04:13 - 00000000 ____D C:\Program Files (x86)\GUILD WARS 2013-06-23 06:36 - 2013-05-20 04:17 - 00000000 ____D C:\Program Files\Speccy 2013-06-23 06:35 - 2013-06-23 06:35 - 05126104 ____A (Piriform Ltd) C:\Users\Benutzer\Downloads\spsetup122.exe 2013-06-23 04:17 - 2013-06-17 23:02 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\NVIDIA 2013-06-23 04:13 - 2013-06-23 04:13 - 00000000 ____D C:\Users\Benutzer\Documents\GUILD WARS 2013-06-23 04:12 - 2013-06-23 04:12 - 00105234 ____A C:\Users\Benutzer\Downloads\gwsetup(1).zip 2013-06-23 00:55 - 2013-05-27 03:10 - 00000000 ____D C:\Users\Benutzer\Desktop\iPhone Bilder 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Users\Default\AppData\Roaming\Macromedia 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Macromedia 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\wacomid-desktop-launcher.DCFD4B89A63EE70BC162777F06D4B93B6397AEC7.1 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Wacom 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\ProgramData\Wacom 2013-06-22 01:55 - 2013-06-22 01:55 - 00000000 ____D C:\Program Files (x86)\Bamboo Dock 2013-06-22 01:55 - 2013-06-22 01:54 - 00000002 ____A C:\Users\Benutzer\.bdockinstall.log 2013-06-22 01:55 - 2013-05-25 21:09 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Adobe 2013-06-22 01:55 - 2013-05-21 18:12 - 00000000 ____D C:\Program Files (x86)\Adobe 2013-06-22 01:55 - 2013-05-21 18:04 - 00000000 ____D C:\ProgramData\Adobe 2013-06-22 01:55 - 2013-05-20 00:36 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Adobe 2013-06-22 01:54 - 2013-06-22 01:54 - 30011936 ____A C:\Users\Benutzer\Downloads\dock_setup.exe 2013-06-22 01:49 - 2013-06-22 01:49 - 00000000 ___AH C:\Windows\System32\Drivers\Msft_Kernel_wachidrouter_01009.Wdf 2013-06-22 01:41 - 2013-06-22 01:41 - 00000000 ____D C:\Users\Benutzer\Documents\ArtRage Paintings 2013-06-22 01:41 - 2013-06-22 01:41 - 00000000 ____D C:\ProgramData\Caphyon 2013-06-22 01:41 - 2013-06-22 01:41 - 00000000 ____D C:\Program Files (x86)\Ambient Design 2013-06-22 01:41 - 2013-06-22 01:39 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Ambient Design 2013-06-22 01:37 - 2013-06-22 01:36 - 82461824 ____A (Ambient Design) C:\Users\Benutzer\Downloads\install_artrage_4.exe 2013-06-22 01:16 - 2013-06-22 01:16 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\WTablet 2013-06-22 01:15 - 2013-06-22 01:15 - 00000000 ____D C:\Program Files\TabletPlugins 2013-06-22 01:15 - 2013-06-22 01:15 - 00000000 ____D C:\Program Files\Tablet 2013-06-22 01:15 - 2013-06-22 01:15 - 00000000 ____D C:\Program Files (x86)\TabletPlugins 2013-06-22 01:15 - 2013-06-22 01:14 - 38455200 ____A C:\Users\Benutzer\Downloads\cons532-1_int.exe 2013-06-21 16:01 - 2013-07-03 21:24 - 00238352 ____A (Oracle Corporation) C:\Windows\System32\Drivers\VBoxDrv.sys 2013-06-21 16:00 - 2013-07-03 21:24 - 00120080 ____A (Oracle Corporation) C:\Windows\System32\Drivers\VBoxUSBMon.sys 2013-06-21 16:00 - 2013-06-21 16:00 - 00204048 ____A (Oracle Corporation) C:\Windows\System32\VBoxNetFltNobj.dll 2013-06-21 16:00 - 2013-06-21 16:00 - 00146704 ____A (Oracle Corporation) C:\Windows\System32\Drivers\VBoxNetFlt.sys 2013-06-21 16:00 - 2013-06-21 16:00 - 00131856 ____A (Oracle Corporation) C:\Windows\System32\Drivers\VBoxNetAdp.sys 2013-06-21 14:06 - 2013-07-01 23:36 - 27781920 ____A (NVIDIA Corporation) C:\Windows\System32\nvoglv64.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 25256224 ____A (NVIDIA Corporation) C:\Windows\System32\nvcompiler.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 21102368 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 17560352 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 13411896 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 11235104 ____A (NVIDIA Corporation) C:\Windows\System32\Drivers\nvlddmkm.sys 2013-06-21 14:06 - 2013-07-01 23:36 - 09239344 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuda.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 07687592 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 07641832 ____A (NVIDIA Corporation) C:\Windows\System32\nvopencl.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 06324360 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 02953504 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuvid.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 02777888 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 02363680 ____A (NVIDIA Corporation) C:\Windows\System32\nvcuvenc.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 02002720 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 01832224 ____A (NVIDIA Corporation) C:\Windows\System32\nvdispco6432049.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 01511712 ____A (NVIDIA Corporation) C:\Windows\System32\nvdispgenco6432049.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00925648 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00572704 ____A (NVIDIA Corporation) C:\Windows\System32\NvFBC64.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00570656 ____A (NVIDIA Corporation) C:\Windows\System32\NvIFR64.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00467232 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00465184 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00266448 ____A (NVIDIA Corporation) C:\Windows\System32\nvinitx.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00218592 ____A (NVIDIA Corporation) C:\Windows\System32\nvoglshim64.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00214448 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2013-06-21 14:06 - 2013-07-01 23:36 - 00181488 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2013-06-21 14:06 - 2013-05-20 01:51 - 15144928 ____A (NVIDIA Corporation) C:\Windows\System32\nvd3dumx.dll 2013-06-21 14:06 - 2013-05-20 01:51 - 02597856 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2013-06-21 14:06 - 2013-05-19 23:00 - 00061216 ____A (Khronos Group) C:\Windows\System32\OpenCL.dll 2013-06-21 14:06 - 2013-05-19 23:00 - 00053024 ____A (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2013-06-21 14:06 - 2013-02-26 00:32 - 15920536 ____A (NVIDIA Corporation) C:\Windows\System32\nvwgf2umx.dll 2013-06-21 14:06 - 2013-02-26 00:32 - 12427240 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2013-06-21 14:06 - 2013-02-26 00:32 - 02936208 ____A (NVIDIA Corporation) C:\Windows\System32\nvapi64.dll 2013-06-21 14:06 - 2013-02-26 00:32 - 01059560 ____A (NVIDIA Corporation) C:\Windows\System32\nvumdshimx.dll 2013-06-21 14:06 - 2013-02-26 00:32 - 00021578 ____A C:\Windows\System32\nvinfo.pb 2013-06-21 12:23 - 2013-05-19 23:00 - 06496544 ____A (NVIDIA Corporation) C:\Windows\System32\nvcpl.dll 2013-06-21 12:23 - 2013-05-19 23:00 - 03514656 ____A (NVIDIA Corporation) C:\Windows\System32\nvsvc64.dll 2013-06-21 12:23 - 2013-05-19 23:00 - 02555680 ____A (NVIDIA Corporation) C:\Windows\System32\nvsvcr.dll 2013-06-21 12:23 - 2013-05-19 23:00 - 00884512 ____A (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe 2013-06-21 12:23 - 2013-05-19 23:00 - 00237856 ____A (NVIDIA Corporation) C:\Windows\System32\nvmctray.dll 2013-06-21 12:23 - 2013-05-19 23:00 - 00063776 ____A (NVIDIA Corporation) C:\Windows\System32\nvshext.dll 2013-06-21 05:16 - 2013-06-21 05:16 - 00566048 ____A (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2013-06-20 06:17 - 2013-05-19 23:00 - 03253909 ____A C:\Windows\System32\nvcoproc.bin 2013-06-20 01:36 - 2013-06-17 00:33 - 00000000 ____D C:\Program Files (x86)\PCMeter 2013-06-19 22:36 - 2013-06-19 22:36 - 34935760 ____A (Dropbox, Inc.) C:\Users\Benutzer\Downloads\Dropbox 2.2.3.exe 2013-06-18 17:55 - 2013-06-18 17:54 - 00000000 ____D C:\Program Files (x86)\Tinkerforge 2013-06-18 17:54 - 2013-06-18 17:53 - 18917020 ____A C:\Users\Benutzer\Downloads\brickv_windows_2_0_5.exe 2013-06-18 17:53 - 2013-06-18 17:53 - 04970233 ____A C:\Users\Benutzer\Downloads\brickd_windows_2_0_5.exe 2013-06-18 17:07 - 2013-05-20 03:50 - 00000000 ____D C:\Program Files (x86)\PDFCreator 2013-06-18 17:07 - 2013-05-19 23:42 - 00000000 ____D C:\Windows\Panther 2013-06-18 17:06 - 2013-06-18 17:06 - 04378864 ____A (Piriform Ltd) C:\Users\Benutzer\Downloads\ccsetup402.exe 2013-06-18 15:36 - 2013-05-19 23:20 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-06-18 15:36 - 2013-05-19 23:20 - 00000000 ____D C:\ProgramData\Skype 2013-06-18 01:45 - 2013-06-18 01:45 - 02002832 ____A C:\Users\Benutzer\Downloads\Red-Collection---AnnaRoma-UPGRADE-5.zip 2013-06-18 01:44 - 2013-06-18 01:44 - 00040791 ____A C:\Users\Benutzer\Downloads\ROG-v1.zip 2013-06-18 01:40 - 2013-06-18 01:40 - 00000000 ____D C:\Program Files (x86)\RocketDock 2013-06-18 01:40 - 2013-06-18 01:39 - 06463660 ____A (Punk Software ) C:\Users\Benutzer\Downloads\RocketDock-v1.3.5.exe 2013-06-17 23:35 - 2013-06-17 23:35 - 00000000 ____D C:\Users\Benutzer\Documents\Witcher 2 2013-06-17 23:33 - 2013-06-17 00:35 - 00000095 ____A C:\Users\Benutzer\AppData\Roaming\Control System_Settings.ini 2013-06-17 23:03 - 2013-06-17 23:03 - 00000000 ____D C:\Program Files (x86)\CPU-Z 2013-06-17 23:02 - 2013-06-17 23:02 - 00000000 ____D C:\Program Files (x86)\GPU-Z 2013-06-17 23:01 - 2013-06-17 23:01 - 01405920 ____A (techPowerUp (www.techpowerup.com)) C:\Users\Benutzer\Downloads\GPU-Z_ASUS_ROG_0.7.1.exe 2013-06-17 23:01 - 2013-06-17 23:01 - 01373832 ____A (CPUID, Inc. ) C:\Users\Benutzer\Downloads\cpu-z_1.64-rog-setup-en.exe 2013-06-17 22:56 - 2013-06-17 22:55 - 00000000 ____D C:\Program Files (x86)\TurnedOnTimesView 2013-06-17 22:52 - 2013-06-17 22:52 - 00064922 ____A C:\Users\Benutzer\Downloads\turnedontimesview.zip 2013-06-17 00:38 - 2013-06-17 00:38 - 00001138 ____A C:\Users\Benutzer\AppData\Roaming\Network Meter_Settings.ini 2013-06-17 00:38 - 2013-06-17 00:38 - 00000842 ____A C:\Users\Benutzer\AppData\Roaming\Drives Meter_Settings.ini 2013-06-17 00:37 - 2013-06-17 00:37 - 00000297 ____A C:\Users\Benutzer\AppData\Roaming\GPU MeterV2_Settings.ini 2013-06-17 00:36 - 2013-06-17 00:35 - 00000627 ____A C:\Users\Benutzer\AppData\Roaming\All CPU MeterV3_Settings.ini 2013-06-16 03:06 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\System32\oobe 2013-06-16 03:04 - 2013-06-16 03:03 - 00002410 ____A C:\Windows\SysWOW64\cplLogon.tsk 2013-06-16 03:03 - 2013-06-16 03:03 - 02218077 ____A (Daniel Rebelo ) C:\Users\Benutzer\Downloads\Logon Screen 2.56.exe 2013-06-16 03:03 - 2013-06-16 03:03 - 00000000 ____D C:\Program Files\Logon Screen 2013-06-16 02:48 - 2013-06-16 02:46 - 00000000 ___AD C:\Windows\SysWOW64\ROG_Video Intro dir 2013-06-16 02:46 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\Cursors 2013-06-16 02:43 - 2013-06-16 02:46 - 00680960 ____A (ASUSTeK Computer Inc.) C:\Windows\SysWOW64\ROGThemeSetup.exe 2013-06-16 02:43 - 2013-06-16 02:46 - 00201728 ____A (ScreenTime Media) C:\Windows\SysWOW64\ROG_Video Intro .scr 2013-06-16 02:26 - 2013-06-16 02:25 - 30789811 ____A C:\Users\Benutzer\Downloads\ROG_THEME_V10014_Win7.zip 2013-06-16 02:10 - 2013-06-16 02:10 - 00000000 ____D C:\Program Files (x86)\Dexpot 2013-06-16 02:06 - 2013-06-16 02:06 - 02796815 ____A (Dexpot GbR) C:\Users\Benutzer\Downloads\dexpot_169_r2285.exe 2013-06-16 01:53 - 2013-06-16 01:53 - 00000000 ____D C:\Users\Benutzer\AppData\Local\Bump Technologies, Inc 2013-06-16 01:50 - 2013-06-16 01:50 - 00000000 ____D C:\Users\Benutzer\AppData\Roaming\Bump Technologies, Inc 2013-06-16 01:50 - 2013-06-16 01:49 - 16628120 ____A (Bump Technologies, Inc. ) C:\Users\Benutzer\Downloads\BumpTop-2.1-6211.exe 2013-06-16 01:50 - 2013-05-22 02:09 - 00000000 ___HD C:\Windows\msdownld.tmp 2013-06-16 01:50 - 2013-05-22 02:09 - 00000000 ____D C:\Windows\SysWOW64\directx 2013-06-13 01:24 - 2013-05-20 00:04 - 75825640 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe 2013-06-12 20:18 - 2013-05-20 00:35 - 00692104 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-06-12 20:18 - 2013-05-20 00:35 - 00071048 ____A (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-06-12 16:52 - 2013-06-12 16:52 - 13081608 ____A (Microsoft Corporation) C:\Users\Benutzer\Downloads\Silverlight_x64.exe 2013-06-12 16:52 - 2013-06-12 16:52 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2013-06-12 16:52 - 2013-06-12 16:52 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-06-10 21:11 - 2013-06-10 21:10 - 00000000 ____D C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69 2013-06-10 21:11 - 2013-06-10 21:10 - 00000000 ____D C:\Program Files\iTunes 2013-06-10 21:11 - 2013-06-10 21:10 - 00000000 ____D C:\Program Files (x86)\iTunes 2013-06-10 21:10 - 2013-06-10 21:10 - 00000000 ____D C:\Program Files\iPod 2013-06-09 21:01 - 2013-05-21 18:49 - 00000000 ____D C:\Program Files (x86)\LogMeIn 2013-06-09 21:00 - 2013-05-21 18:49 - 00107368 ____A (LogMeIn, Inc.) C:\Windows\System32\LMIRfsClientNP.dll 2013-06-09 21:00 - 2013-05-21 18:49 - 00100680 ____A (LogMeIn, Inc.) C:\Windows\System32\LMIinit.dll 2013-06-09 21:00 - 2013-05-21 18:49 - 00035656 ____A (LogMeIn, Inc.) C:\Windows\System32\LMIport.dll 2013-06-08 16:08 - 2013-06-15 02:13 - 01365504 ____A (Microsoft Corporation) C:\Windows\System32\urlmon.dll 2013-06-08 16:07 - 2013-06-15 02:13 - 19233792 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.dll 2013-06-08 16:06 - 2013-06-15 02:13 - 15404544 ____A (Microsoft Corporation) C:\Windows\System32\ieframe.dll 2013-06-08 16:06 - 2013-06-15 02:13 - 02648064 ____A (Microsoft Corporation) C:\Windows\System32\iertutil.dll 2013-06-08 16:06 - 2013-06-15 02:13 - 00526336 ____A (Microsoft Corporation) C:\Windows\System32\ieui.dll 2013-06-08 14:28 - 2013-06-15 02:13 - 02706432 ____A (Microsoft Corporation) C:\Windows\System32\mshtml.tlb 2013-06-08 13:42 - 2013-06-15 02:13 - 01141248 ____A (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-06-08 13:40 - 2013-06-15 02:13 - 14327808 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-06-08 13:40 - 2013-06-15 02:13 - 13760512 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-06-08 13:40 - 2013-06-15 02:13 - 02046976 ____A (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-06-08 13:40 - 2013-06-15 02:13 - 00391168 ____A (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-06-08 13:13 - 2013-06-15 02:13 - 02706432 ____A (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe [2013-05-20 02:43] - [2011-02-26 08:26] - 2870784 ____A (Microsoft Corporation) E38899074D4951D31B4040E994DD7C8D C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-07-03 18:01 ==================== End Of Log ============================ |
![]() | #11 |
/// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() SoftwareUpdater.Bootstrapper wird von Kaspersky PURE 3.0 erkannt Flash Player updaten. Noch Probleme? ![]()
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
![]() | #12 |
![]() | ![]() SoftwareUpdater.Bootstrapper wird von Kaspersky PURE 3.0 erkannt hehe bis auf die defekten Icons keine mehr ![]() ![]() |
![]() | #13 |
/// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() SoftwareUpdater.Bootstrapper wird von Kaspersky PURE 3.0 erkannt Welche defekten Icons?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
![]() | #14 |
![]() | ![]() SoftwareUpdater.Bootstrapper wird von Kaspersky PURE 3.0 erkannt Ein Paar Icons von den Anwendungen werden als defekt angezeigt also dieses weiße Icon mit einem Fenster innen. |
![]() | #15 |
/// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | ![]() SoftwareUpdater.Bootstrapper wird von Kaspersky PURE 3.0 erkannt Screenshot bitte ![]()
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
![]() |
Themen zu SoftwareUpdater.Bootstrapper wird von Kaspersky PURE 3.0 erkannt |
erkannt, files, gefunde, heute, immer wieder, kaspersky, kaspersky pure 3.0, malware, malware gefunden, melde, meldet, pcs, program, start, versuch, versucht |