|
Plagegeister aller Art und deren Bekämpfung: Problem mit Google CromeWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
04.08.2013, 07:01 | #1 |
| Problem mit Google Crome Hallo ich ärgere mich schon eine Zeit lang über GoogleCrome. Auf manchen Websites die ich besuche wie z.B. Foren zeigt der mir in manchen Texten so grüne oder unterstrichenen Wörter an wen ich über diese fahre mit dem der Maus dann öffnet GoogleCrome so kleine pop-ups und die nerven mit der Zeit aber vor einer woche kamen noch keine pup-ups und auf einmal kommen sie bitte helft mir.Ich hab auch noch bilder von so einem pop-up angehängt.Und manche pop-ups wollen mich auf so eine Seite namens: Public8media.com leiten. |
04.08.2013, 09:02 | #2 |
/// the machine /// TB-Ausbilder | Problem mit Google Crome hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
04.08.2013, 12:36 | #3 |
| Problem mit Google Crome Das ist die Frst:
__________________FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 01-08-2013 Ran by Marc (administrator) on 04-08-2013 13:33:26 Running from C:\Users\arkad_000\Desktop Windows 8 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Qualcomm Atheros Commnucations) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe (Acer Incorporated) C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe (Microsoft Corporation) C:\Windows\system32\dashost.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe (LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe (Dritek System INC.) C:\Windows\RfBtnSvc64.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.1.391.0\SeaPort.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16.4.4396.1016_x64__8wekyb3d8bbwe\LiveComm.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (Atheros Communications) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe () C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe (Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe (Egis Technology Inc.) C:\Program Files\EgisTec IPS\PMMUpdate.exe (Egis Technology Inc.) C:\Program Files\EgisTec IPS\EgisUpdate.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Oracle Corporation) C:\Program Files\Java\jre7\bin\javaw.exe (Oracle Corporation) C:\Program Files\Java\jre7\bin\javaw.exe (Microsoft Corporation) C:\Windows\system32\cmd.exe (Oracle Corporation) C:\Windows\system32\java.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12503184 2012-06-11] (Realtek Semiconductor) HKLM\...\Run: [ETDCtrl] - C:\Program Files\Elantech\ETDCtrl.exe [2873744 2013-08-04] (ELAN Microelectronics Corp.) HKLM\...\Policies\Explorer\Run: [BtvStack] C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [132736 2013-01-28] ( (Atheros Communications)) HKCU\...\Run: [SDP] - C:\Users\arkad_000\AppData\Local\FilesFrog Update Checker\update_checker.exe [201808 2013-01-31] (Somoto) HKCU\...\Run: [Free Mahjong Games] - C:\Users\arkad_000\AppData\Local\WebPlayer\Free Mahjong Games\WebPlayer.exe [202752 2012-10-26] () HKCU\...\Run: [Skype] - C:\Program Files (x86)\Skype\Phone\Skype.exe [19875432 2013-06-21] (Skype Technologies S.A.) HKLM-x32\...\Run: [BakupManagerTray] - C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe [533056 2012-07-31] (NTI Corporation) HKLM-x32\...\Run: [Norton Online Backup] - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [2995904 2012-07-11] (Symantec Corporation) HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [345144 2013-06-27] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [HP Software Update] - C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [49208 2010-06-09] (Hewlett-Packard) HKLM-x32\...\Run: [NeroFilterCheck] - C:\Windows\system32\NeroCheck.exe [x] HKLM-x32\...\Run: [Aeria Ignite] - C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe [1919000 2013-04-26] (Aeria Games & Entertainment) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation) HKLM-x32\...\Run: [LogMeIn Hamachi Ui] - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2255184 2013-06-28] (LogMeIn Inc.) HKU\Default\...\RunOnce: [RegAutoPlay] - C:\Program Files (x86)\Acer\clear.fi Media\RegAutoplay.exe [1845392 2012-07-20] (Acer Incorporated) HKU\Default User\...\RunOnce: [RegAutoPlay] - C:\Program Files (x86)\Acer\clear.fi Media\RegAutoplay.exe [1845392 2012-07-20] (Acer Incorporated) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/ HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKLM - {1C5D40C8-6889-4425-8B6C-900A0F99EC4D} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS SearchScopes: HKLM-x32 - {1C5D40C8-6889-4425-8B6C-900A0F99EC4D} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MAARJS SearchScopes: HKCU - DefaultScope {1C5D40C8-6889-4425-8B6C-900A0F99EC4D} URL = SearchScopes: HKCU - {1C5D40C8-6889-4425-8B6C-900A0F99EC4D} URL = BHO: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\IEPlugIn.dll (Qualcomm Atheros Commnucations) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~1\Office15\URLREDIR.DLL (Microsoft Corporation) BHO: Webroot Vault - {c8d5d964-2be8-4c5b-8cf5-6e975aa88504} - C:\ProgramData\WRData\pkg\LPBar64.dll No File BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~1\MICROS~1\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Lyrics-Pal - {AB9778AB-BAEF-49B9-96EE-D6E4BD0BCE68} - C:\Program Files (x86)\LyricsPal\125.dll (LyricsPal Soft. LTD) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office15\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Webroot Vault - {c8d5d964-2be8-4c5b-8cf5-6e975aa88504} - No File BHO-x32: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.391.0\BingExt.dll (Microsoft Corporation.) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - Webroot Toolbar - {97ab88ef-346b-4179-a0b1-7445896547a5} - C:\ProgramData\WRData\pkg\LPBar64.dll No File Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.391.0\BingExt.dll (Microsoft Corporation.) Toolbar: HKLM-x32 - Webroot Toolbar - {97ab88ef-346b-4179-a0b1-7445896547a5} - No File Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) FireFox: ======== FF ProfilePath: C:\Users\arkad_000\AppData\Roaming\Mozilla\Firefox\Profiles\bdsz295n.default FF user.js: detected! => C:\Users\arkad_000\AppData\Roaming\Mozilla\Firefox\Profiles\bdsz295n.default\user.js FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll () FF Plugin: @java.com/DTPlugin,version=10.9.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.9.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll () FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 - C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @ngm.nexoneu.com/NxGame - C:\ProgramData\NexonEU\NGM\npNxGameeu.dll (Nexon) FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.0.2 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.0.6 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll () FF Extension: No Name - C:\Users\arkad_000\AppData\Roaming\Mozilla\Firefox\Profiles\bdsz295n.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] C:\Program Files\McAfee\MSK FF HKCU\...\Firefox\Extensions: [{9309FA47-1B48-4768-AFA4-9E0556F5DC81}] C:\Program Files (x86)\LyricsPal\125.xpi FF Extension: No Name - C:\Program Files (x86)\LyricsPal\125.xpi Chrome: ======= CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding} CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter} CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.95\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.95\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.95\pdf.dll () CHR Plugin: (Microsoft Office 2013) - C:\Program Files (x86)\Mozilla Firefox\plugins\npMeetingJoinPluginOC.dll (Microsoft Corporation) CHR Plugin: (Microsoft Office 2013) - C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation) CHR Plugin: (Google Earth Plugin) - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google) CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.149\npGoogleUpdate3.dll No File CHR Plugin: (Intel\u00AE Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) CHR Plugin: (Intel\u00AE Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) CHR Plugin: (Java(TM) Platform SE 7 U25) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) CHR Plugin: (VLC Web Plugin) - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) CHR Plugin: (Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) CHR Plugin: (Nexon Game Controller) - C:\ProgramData\NexonEU\NGM\npNxGameeu.dll (Nexon) CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_7_700_224.dll No File CHR Plugin: (Java Deployment Toolkit 7.0.250.17) - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) CHR Extension: (MineCraft Theme) - C:\Users\ARKAD_~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\aljmdfbojgpbkbmfefiddcgoakkohdlk\1.2_0 CHR Extension: (Adblock Plus) - C:\Users\ARKAD_~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb\1.5.3_0 CHR Extension: (Lyrics-Pal) - C:\Users\ARKAD_~1\AppData\Local\Google\Chrome\User Data\Default\Extensions\mmiopbgcekanlhpjkonogoljpfmhpkhf\1.125_0 CHR HKLM-x32\...\Chrome\Extension: [mmiopbgcekanlhpjkonogoljpfmhpkhf] - C:\Program Files (x86)\LyricsPal\125.crx CHR StartMenuInternet: Google Chrome - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [84024 2013-06-27] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [108088 2013-06-27] (Avira Operations GmbH & Co. KG) R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [227456 2013-01-28] (Qualcomm Atheros Commnucations) R2 CCDMonitorService; C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [2415760 2012-07-27] (Acer Incorporated) S3 DeviceFastLaneService; C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe [466064 2012-07-31] (Acer Incorporated) R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [659600 2012-07-31] (Acer Incorporated) R2 ETDService; C:\Program Files\Elantech\ETDService.exe [92560 2013-08-04] (ELAN Microelectronics Corp.) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-18] (Intel Corporation) R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [3939008 2012-07-11] (Symantec Corporation) S3 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [259136 2012-07-31] (NTI Corporation) R2 RfButtonDriverService; C:\Windows\RfBtnSvc64.exe [93296 2012-08-31] (Dritek System INC.) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [14920 2013-01-29] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [100712 2013-03-30] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [130016 2013-03-30] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2013-03-30] (Avira Operations GmbH & Co. KG) S3 bthav; C:\Windows\system32\drivers\bthav.sys [40448 2008-07-10] (CSR, plc) R1 ccSet_NARA; C:\Windows\system32\drivers\NARAx64\0401000.00A\ccSetx64.sys [168608 2012-05-26] (Symantec Corporation) S3 ManyCam; C:\Windows\system32\DRIVERS\mcvidrv_x64.sys [44544 2013-01-15] (ManyCam LLC) S3 mcaudrv_simple; C:\Windows\system32\drivers\mcaudrv_x64.sys [28160 2013-01-31] (ManyCam LLC) R3 Ps2Kb2Hid; C:\Windows\System32\drivers\aPs2Kb2Hid.sys [26736 2012-08-31] (Dritek System Inc.) S3 REN2CAP_DRIVER; C:\Windows\system32\drivers\ren2cap.sys [46728 2011-11-07] () S3 catchme; \??\C:\setup\catchme.sys [x] S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [x] S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x] S3 MsgPlusDriver; \SystemRoot\system32\DRIVERS\MsgPlusDriver.sys [x] S3 NTIDrvr; \??\C:\Windows\system32\drivers\NTIDrvr.sys [x] U0 SR; U2 srservice; S3 UBHelper; \??\C:\Windows\system32\drivers\UBHelper.sys [x] S3 X6va011; \??\C:\Windows\SysWOW64\Drivers\X6va011 [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-08-04 13:33 - 2013-08-04 13:33 - 00000000 ____D C:\FRST 2013-08-04 13:31 - 2013-08-04 13:31 - 01781485 _____ (Farbar) C:\Users\arkad_000\Desktop\FRST64.exe 2013-08-04 12:34 - 2013-08-04 12:34 - 00000000 ____D C:\Users\arkad_000\AppData\Roaming\Atheros 2013-08-04 12:34 - 2013-08-04 12:34 - 00000000 ____D C:\ProgramData\Atheros 2013-08-04 11:07 - 2013-08-04 11:08 - 00004760 _____ C:\Windows\DPINST.LOG 2013-08-04 11:06 - 2013-08-04 11:06 - 00000000 ____D C:\Users\arkad_000\Documents\Bluetooth Folder 2013-08-04 11:06 - 2013-01-28 14:23 - 00034384 _____ (Qualcomm Atheros) C:\Windows\system32\Drivers\btath_bus.sys 2013-08-04 11:02 - 2013-08-04 11:08 - 00000000 ____D C:\Windows\LastGood.Tmp 2013-08-04 11:00 - 2013-08-04 11:00 - 00328592 _____ (ELAN Microelectronics Corp.) C:\Windows\system32\Drivers\ETD.sys 2013-08-04 10:02 - 2013-08-04 10:02 - 00178084 _____ C:\Users\arkad_000\Downloads\bSpace-v2.4.jar 2013-08-04 10:01 - 2013-08-04 10:01 - 00325807 _____ C:\Users\arkad_000\Downloads\Multiverse-Core-2.4.jar 2013-08-03 10:58 - 2013-08-03 10:58 - 00115569 _____ C:\Users\arkad_000\Downloads\Essentials-gm.zip 2013-08-03 10:44 - 2013-08-03 10:44 - 00747538 _____ C:\Users\arkad_000\Downloads\Citizens.jar 2013-08-03 10:43 - 2013-08-03 10:43 - 00046562 _____ C:\Users\arkad_000\Downloads\iDisguise_v2.1.2.jar 2013-08-03 10:42 - 2013-08-03 10:42 - 00007597 _____ C:\Users\arkad_000\Downloads\JumpPads.jar 2013-08-02 20:28 - 2013-08-02 20:28 - 01599506 _____ C:\Users\arkad_000\Downloads\Jorge_Gonzalez_Veet_EasywaX_Jorge_EDITION.mp4 2013-08-02 16:41 - 2013-08-02 16:41 - 00003344 _____ C:\AdwCleaner[R3].txt 2013-08-02 16:39 - 2013-08-02 16:39 - 00666633 _____ C:\Users\arkad_000\Desktop\adwcleaner.exe 2013-08-02 16:39 - 2013-08-02 16:39 - 00003284 _____ C:\AdwCleaner[R2].txt 2013-08-02 13:53 - 2013-08-02 13:53 - 00284920 _____ C:\Windows\Minidump\080213-23734-01.dmp 2013-08-02 13:47 - 2013-08-02 13:47 - 00005234 _____ C:\Users\arkad_000\Downloads\country house.schematic 2013-08-02 13:42 - 2013-08-02 13:53 - 503907740 _____ C:\Windows\MEMORY.DMP 2013-08-02 13:42 - 2013-08-02 13:53 - 00000000 ____D C:\Windows\Minidump 2013-08-02 13:42 - 2013-08-02 13:43 - 00284920 _____ C:\Windows\Minidump\080213-56953-01.dmp 2013-08-02 09:45 - 2013-06-17 00:41 - 00997632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2013-08-02 09:45 - 2013-06-01 11:20 - 02219520 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll 2013-08-02 09:44 - 2013-06-01 13:54 - 00194816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sdbus.sys 2013-08-02 09:44 - 2013-06-01 13:54 - 00125184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dumpsd.sys 2013-08-02 09:44 - 2013-06-01 13:34 - 02391280 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2013-08-02 09:44 - 2013-06-01 13:33 - 02233600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2013-08-02 09:44 - 2013-06-01 13:29 - 00337152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\USBXHCI.SYS 2013-08-02 09:44 - 2013-06-01 13:29 - 00213248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\UCX01000.SYS 2013-08-02 09:44 - 2013-06-01 13:26 - 06987008 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2013-08-02 09:44 - 2013-06-01 13:26 - 00327936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys 2013-08-02 09:44 - 2013-06-01 12:24 - 02106176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe 2013-08-02 09:44 - 2013-06-01 11:25 - 00364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2013-08-02 09:44 - 2013-06-01 11:25 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\samlib.dll 2013-08-02 09:44 - 2013-06-01 11:24 - 01453568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll 2013-08-02 09:44 - 2013-06-01 11:24 - 00850944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfasfsrcsnk.dll 2013-08-02 09:44 - 2013-06-01 11:24 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscms.dll 2013-08-02 09:44 - 2013-06-01 11:23 - 01842176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll 2013-08-02 09:44 - 2013-06-01 11:23 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\vds.exe 2013-08-02 09:44 - 2013-06-01 11:22 - 00523264 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2013-08-02 09:44 - 2013-06-01 11:22 - 00446976 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2013-08-02 09:44 - 2013-06-01 11:22 - 00190976 _____ (Microsoft Corporation) C:\Windows\system32\vdsutil.dll 2013-08-02 09:44 - 2013-06-01 11:22 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\MbaeParserTask.exe 2013-08-02 09:44 - 2013-06-01 11:21 - 00729600 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll 2013-08-02 09:44 - 2013-06-01 11:21 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll 2013-08-02 09:44 - 2013-06-01 11:20 - 01527808 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll 2013-08-02 09:44 - 2013-06-01 11:20 - 01048576 _____ (Microsoft Corporation) C:\Windows\system32\mfasfsrcsnk.dll 2013-08-02 09:44 - 2013-06-01 11:20 - 00583168 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll 2013-08-02 09:44 - 2013-06-01 11:19 - 00785408 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll 2013-08-02 09:44 - 2013-06-01 11:19 - 00207872 _____ (Microsoft Corporation) C:\Windows\system32\DeviceSetupManager.dll 2013-08-02 09:44 - 2013-06-01 05:08 - 00037632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BthAvrcpTg.sys 2013-08-02 09:44 - 2013-05-25 00:09 - 01403296 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2013-08-02 09:44 - 2013-05-25 00:09 - 01271584 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe 2013-08-02 09:44 - 2013-05-25 00:09 - 01217352 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2013-08-02 09:44 - 2013-05-25 00:09 - 01093904 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe 2013-08-02 09:44 - 2013-05-20 02:08 - 00386642 _____ C:\Windows\system32\ApnDatabase.xml 2013-08-02 09:35 - 2013-08-02 09:35 - 00000000 ____D C:\Program Files (x86)\LyricsPal 2013-08-01 21:53 - 2013-08-01 21:53 - 00320559 _____ C:\Users\arkad_000\Downloads\worldguard-5.8.zip 2013-08-01 18:25 - 2013-08-01 18:36 - 66268014 _____ C:\Users\arkad_000\Desktop\world.rar 2013-08-01 12:03 - 2013-08-01 12:03 - 00007695 _____ C:\Users\arkad_000\Downloads\Simple-AutoSave.jar 2013-08-01 11:21 - 2013-08-01 11:21 - 22921366 _____ C:\Users\arkad_000\Downloads\GERUDOKU.zip 2013-08-01 11:13 - 2013-08-01 11:15 - 10765413 _____ C:\Users\arkad_000\Downloads\world.rar 2013-08-01 09:52 - 2013-08-01 09:52 - 61120512 _____ C:\Users\arkad_000\Documents\Aufnahme-3.camrec 2013-08-01 09:52 - 2013-08-01 09:52 - 61120512 _____ C:\Users\arkad_000\Documents\Aufnahme-3 - Kopie.camrec 2013-08-01 09:19 - 2013-08-01 09:19 - 39370668 _____ C:\Users\arkad_000\Downloads\SM64.zip 2013-07-31 21:47 - 2013-07-31 21:51 - 54456320 _____ C:\Users\arkad_000\Documents\Aufnahme-2.camrec 2013-07-31 21:44 - 2013-07-31 21:44 - 17285120 _____ C:\Users\arkad_000\Documents\Aufnahme-1.camrec 2013-07-31 11:04 - 2013-07-31 11:04 - 00003484 _____ C:\Users\arkad_000\Downloads\Timber.jar 2013-07-31 10:52 - 2013-07-31 10:52 - 00855691 _____ C:\Users\arkad_000\Downloads\Essentials (1).zip 2013-07-31 10:52 - 2013-07-31 10:52 - 00800808 _____ C:\Users\arkad_000\Downloads\worldedit-5.5.7.zip 2013-07-31 10:51 - 2013-07-31 10:52 - 03470381 _____ C:\Users\arkad_000\Downloads\LPWelt.rar 2013-07-31 10:48 - 2013-08-04 13:18 - 00000000 ____D C:\Users\arkad_000\Desktop\Minecraft bukkit server 2013-07-31 10:48 - 2013-07-31 10:49 - 15249388 _____ C:\Users\arkad_000\Downloads\craftbukkit-1.6.2-R0.1-20130731.060227-17.jar 2013-07-30 18:49 - 2013-07-31 10:08 - 00074091 _____ C:\Users\arkad_000\Documents\zahnrad.c4d 2013-07-30 10:53 - 2013-07-30 11:15 - 01337097 _____ C:\Users\arkad_000\Documents\Ohne Titel 1.c4d 2013-07-30 10:50 - 2013-07-30 10:50 - 00310507 _____ C:\Users\arkad_000\Downloads\Thrausi-1.22-R12.zip 2013-07-30 09:40 - 2013-07-30 09:40 - 08489561 _____ C:\Users\arkad_000\Downloads\Wolf.zip 2013-07-30 09:31 - 2013-07-30 09:31 - 00000000 ____D C:\Users\arkad_000\Downloads\tex 2013-07-30 09:07 - 2013-07-30 09:07 - 00000000 _____ C:\Windows\setuperr.log 2013-07-30 09:07 - 2013-07-30 09:07 - 00000000 _____ C:\Windows\setupact.log 2013-07-30 08:26 - 2013-08-02 09:01 - 00000000 ____D C:\Program Files (x86)\Cinema 4D R12 2013-07-29 12:36 - 2013-07-29 12:39 - 144726890 _____ C:\Users\arkad_000\Downloads\Cinema 4D R12.rar 2013-07-29 12:34 - 2013-07-30 09:42 - 00979322 _____ C:\Users\arkad_000\Downloads\Minecraft Skin.c4d 2013-07-28 14:57 - 2013-07-28 14:57 - 00010112 _____ C:\Users\arkad_000\Downloads\Emoticons_1.6.2_v1.2.zip 2013-07-24 06:08 - 2013-08-02 13:41 - 00000644 _____ C:\Windows\PFRO.log 2013-07-23 11:25 - 2013-07-23 11:25 - 00000000 ____D C:\Users\arkad_000\AppData\Roaming\TuneUp Software 2013-07-23 11:24 - 2013-07-23 11:25 - 00000000 ____D C:\ProgramData\TuneUp Software 2013-07-22 19:32 - 2013-08-02 08:54 - 00000000 ____D C:\SMBX 2013-07-22 15:01 - 2013-07-22 15:01 - 04218983 _____ C:\Users\arkad_000\Downloads\Frorge (1.6.2) (Installer).jar 2013-07-22 14:30 - 2013-07-22 14:30 - 00066494 _____ C:\Users\arkad_000\Downloads\xray_1.6.2.zip 2013-07-22 14:24 - 2013-07-22 14:24 - 00182824 _____ C:\Users\arkad_000\Downloads\ModLoader (1).zip 2013-07-22 14:16 - 2013-08-04 12:56 - 01210583 _____ C:\Windows\WindowsUpdate.log 2013-07-22 07:57 - 2013-07-22 07:57 - 03136081 _____ C:\Users\arkad_000\Downloads\cube_alpha_trainer_+6.rar 2013-07-21 17:54 - 2013-07-21 18:08 - 00000000 ____D C:\Windows\system32\MRT 2013-07-21 13:53 - 2013-07-21 13:53 - 00375793 _____ C:\Users\arkad_000\Downloads\OptiFine_1.6.2_HD_U_B4.zip 2013-07-20 19:10 - 2013-08-02 08:53 - 00000000 ____D C:\Users\arkad_000\Desktop\CubeWorld 2013-07-18 15:50 - 2013-07-18 15:50 - 00003076 _____ C:\Windows\System32\Tasks\GoforFilesUpdate 2013-07-18 15:50 - 2013-07-18 15:50 - 00000000 ____D C:\Users\arkad_000\AppData\Roaming\GoforFiles 2013-07-18 15:49 - 2013-07-18 15:49 - 05276296 _____ (hxxp://www.goforfiles.com/) C:\Users\arkad_000\Downloads\Token_Generator.exe_downloader_de_257.exe 2013-07-18 15:39 - 2013-07-18 15:39 - 00000000 ____D C:\Program Files (x86)\Covus Freemium 2013-07-18 08:29 - 2013-08-02 09:01 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-07-16 09:59 - 2013-07-16 09:59 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2013-07-16 09:59 - 2013-07-16 09:59 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-07-15 16:01 - 2013-07-15 16:01 - 00283280 _____ C:\Users\arkad_000\Downloads\Setup (1).exe 2013-07-15 10:25 - 2013-07-15 12:39 - 00000000 ____D C:\Users\arkad_000\AppData\Local\WebPlayer 2013-07-15 10:25 - 2013-07-15 10:25 - 00000000 ____D C:\Users\arkad_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FilesFrog Update Checker 2013-07-15 10:25 - 2013-07-15 10:25 - 00000000 ____D C:\Users\arkad_000\AppData\Local\FilesFrog Update Checker 2013-07-15 10:24 - 2013-07-15 10:24 - 00167536 _____ () C:\Users\arkad_000\Downloads\FreeMahjongGamesSetup-79QOU3e.exe 2013-07-13 14:08 - 2013-07-13 14:08 - 00094808 _____ C:\Users\arkad_000\Downloads\RWtorchLight.jar 2013-07-12 13:28 - 2013-07-12 13:28 - 00000000 ____D C:\Users\arkad_000\AppData\Roaming\MAXON 2013-07-12 07:08 - 2013-07-12 07:08 - 00002507 _____ C:\AdwCleaner[R1].txt 2013-07-11 20:05 - 2013-07-11 20:05 - 00000000 ____D C:\Users\arkad_000\AppData\Roaming\Minecraft Skin Viewer 2013-07-11 20:02 - 2012-12-31 00:26 - 00313856 _____ (Łukasz Rejman) C:\Users\arkad_000\Desktop\Minecraft Skin Viewer Extended.exe 2013-07-11 17:20 - 2013-07-11 17:20 - 00433240 _____ C:\Windows\system32\FNTCACHE.DAT 2013-07-11 07:40 - 2013-07-11 07:40 - 00035698 _____ C:\ComboFix.txt 2013-07-11 07:26 - 2013-07-11 07:40 - 00000000 ____D C:\Qoobox 2013-07-11 07:26 - 2011-06-26 08:45 - 00256000 _____ C:\Windows\PEV.exe 2013-07-11 07:26 - 2010-11-07 19:20 - 00208896 _____ C:\Windows\MBR.exe 2013-07-11 07:26 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2013-07-11 07:26 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2013-07-11 07:26 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2013-07-11 07:26 - 2000-08-31 02:00 - 00212480 _____ (SteelWerX) C:\Windows\SWXCACLS.exe 2013-07-11 07:26 - 2000-08-31 02:00 - 00098816 _____ C:\Windows\sed.exe 2013-07-11 07:26 - 2000-08-31 02:00 - 00080412 _____ C:\Windows\grep.exe 2013-07-11 07:26 - 2000-08-31 02:00 - 00068096 _____ C:\Windows\zip.exe 2013-07-11 07:25 - 2013-07-11 07:37 - 00000000 ____D C:\Windows\erdnt 2013-07-11 07:23 - 2013-07-11 07:23 - 00909608 _____ (SetupManager) C:\Users\arkad_000\Desktop\setup (1).exe 2013-07-10 16:21 - 2013-07-10 20:06 - 00000858 _____ C:\Windows\client.config.ini 2013-07-10 10:34 - 2013-07-10 10:35 - 00000101 _____ C:\Windows\DeleteOnReboot.bat 2013-07-10 10:33 - 2013-07-10 10:35 - 00016351 _____ C:\AdwCleaner[S1].txt 2013-07-10 10:22 - 2013-07-10 10:23 - 00000000 ____D C:\Users\arkad_000\Downloads\backups 2013-07-10 10:17 - 2013-06-01 11:25 - 00496640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2013-07-10 10:17 - 2013-06-01 11:21 - 00595968 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2013-07-10 10:17 - 2013-05-31 01:14 - 04036096 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-07-10 10:17 - 2013-05-04 08:59 - 02842112 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2013-07-10 10:17 - 2013-05-04 06:57 - 02620928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2013-07-10 10:17 - 2013-04-12 00:30 - 01421312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2013-07-10 10:17 - 2013-04-12 00:22 - 01838080 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2013-07-10 10:16 - 2013-06-12 01:43 - 14329856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-07-10 10:16 - 2013-06-12 01:43 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-07-10 10:16 - 2013-06-12 01:43 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-07-10 10:16 - 2013-06-12 01:43 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-07-10 10:16 - 2013-06-12 01:43 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-07-10 10:16 - 2013-06-12 01:43 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-07-10 10:16 - 2013-06-12 01:42 - 13760512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-07-10 10:16 - 2013-06-12 01:42 - 02046976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-07-10 10:16 - 2013-06-12 01:26 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-07-10 10:16 - 2013-06-12 01:26 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-07-10 10:16 - 2013-06-12 01:26 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-07-10 10:16 - 2013-06-12 01:25 - 19238912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-07-10 10:16 - 2013-06-12 01:25 - 15404032 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-07-10 10:16 - 2013-06-12 01:25 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-07-10 10:16 - 2013-06-12 01:25 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-07-10 10:16 - 2013-06-12 01:25 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-07-10 10:16 - 2013-06-12 01:25 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-07-10 07:56 - 2013-07-10 07:56 - 00000000 ____D C:\Users\arkad_000\AppData\Roaming\Malwarebytes 2013-07-10 07:56 - 2013-07-10 07:56 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-07-10 07:55 - 2013-07-10 07:55 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\arkad_000\Downloads\mbam-setup-1.75.0.1300.exe 2013-07-10 06:59 - 2013-07-10 06:59 - 00000000 ____D C:\Program Files\Enigma Software Group 2013-07-10 06:59 - 2013-07-10 06:59 - 00000000 _____ C:\autoexec.bat 2013-07-10 06:58 - 2013-07-10 09:56 - 00000000 ____D C:\Windows\8AE3CFB678B24F55A7BE618FCFF43A03.TMP 2013-07-10 06:58 - 2013-07-10 06:58 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\arkad_000\Downloads\SpyHunter-Installer.exe 2013-07-09 15:23 - 2013-07-10 16:52 - 00000000 ___HD C:\Users\arkad_000\Documents\Runes of Magic 2013-07-09 12:16 - 2013-07-09 12:16 - 00000000 ____D C:\Users\arkad_000\AppData\Roaming\Microsoft\Windows\Start Menu\Magic Hub 2013-07-09 12:16 - 2013-07-09 12:16 - 00000000 ____D C:\ProgramData\Overwolf 2013-07-09 12:08 - 2013-07-09 12:16 - 00000000 ____D C:\Users\arkad_000\AppData\Local\Overwolf 2013-07-09 12:08 - 2013-07-09 12:08 - 00002020 _____ C:\Users\Public\Desktop\Runes of Magic.lnk 2013-07-09 10:16 - 2013-07-09 10:17 - 00000000 ____D C:\Users\arkad_000\AppData\Local\lptmp1497504269 2013-07-09 10:15 - 2013-07-09 10:15 - 00001071 _____ C:\Users\Public\Desktop\Gameforge Live.lnk 2013-07-09 10:15 - 2013-07-09 10:15 - 00000000 ____D C:\Users\arkad_000\AppData\Local\Gameforge4d 2013-07-09 10:15 - 2013-07-09 10:15 - 00000000 ____D C:\Program Files (x86)\GameforgeLive 2013-07-09 10:14 - 2013-07-09 10:14 - 00656952 _____ C:\Users\arkad_000\Downloads\setup.exe 2013-07-08 19:36 - 2013-05-16 00:35 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\tssdisai.dll 2013-07-08 16:56 - 2013-07-08 16:54 - 00484992 _____ C:\Users\arkad_000\Desktop\Minecraft.exe 2013-07-06 11:40 - 2013-08-04 07:50 - 00000058 _____ C:\Users\arkad_000\AppData\Local\DonationCoder_ScreenshotCaptor_InstallInfo.dat 2013-07-06 11:40 - 2013-07-06 11:42 - 00013312 ___SH C:\Users\arkad_000\Documents\Thumbs.db 2013-07-06 11:40 - 2013-07-06 11:40 - 00000000 ____D C:\Users\arkad_000\Documents\DonationCoder 2013-07-06 11:40 - 2013-07-06 11:40 - 00000000 ____D C:\Users\arkad_000\AppData\Roaming\DonationCoder 2013-07-06 11:39 - 2013-07-06 11:39 - 08440728 _____ (DonationCoder.com ) C:\Users\arkad_000\Downloads\ScreenshotCaptorSetup_4.03.exe 2013-07-06 11:39 - 2013-07-06 11:39 - 00001107 _____ C:\Users\arkad_000\Desktop\Screenshot Captor.lnk 2013-07-06 11:39 - 2013-07-06 11:39 - 00000000 ____D C:\ProgramData\DonationCoder 2013-07-06 11:39 - 2013-07-06 11:39 - 00000000 ____D C:\Program Files (x86)\ScreenshotCaptor 2013-07-05 20:42 - 2013-07-05 20:42 - 00002304 _____ C:\Users\Public\Desktop\Die Sims™ 3 Erstelle eine Welt-Tool - Beta.lnk 2013-07-05 20:39 - 2013-07-05 20:40 - 177131814 _____ (Acresso Software Inc.) C:\Users\arkad_000\Downloads\worldtool.exe 2013-07-05 20:30 - 2013-07-05 20:33 - 163984087 _____ (Acresso Software Inc.) C:\Users\arkad_000\Downloads\TheSims3_worldtool.exe 2013-07-05 19:57 - 2013-07-05 19:57 - 00002238 _____ C:\Users\Public\Desktop\Die Sims™ 3 Inselparadies.lnk ==================== One Month Modified Files and Folders ======= 2013-08-04 13:31 - 2013-08-04 13:31 - 01781485 _____ (Farbar) C:\Users\arkad_000\Desktop\FRST64.exe 2013-08-04 13:28 - 2012-08-31 14:46 - 02630470 _____ C:\Windows\system32\perfh007.dat 2013-08-04 13:28 - 2012-08-31 14:46 - 00717022 _____ C:\Windows\system32\perfc007.dat 2013-08-04 13:28 - 2012-07-26 09:28 - 00005430 _____ C:\Windows\system32\PerfStringBackup.INI 2013-08-04 13:24 - 2012-12-07 18:22 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-08-04 13:18 - 2013-07-31 10:48 - 00000000 ____D C:\Users\arkad_000\Desktop\Minecraft bukkit server 2013-08-04 13:18 - 2013-07-01 16:14 - 00000000 ____D C:\Users\arkad_000\AppData\Roaming\.minecraft 2013-08-04 13:17 - 2012-12-07 18:16 - 00000000 ____D C:\Users\arkad_000\AppData\Roaming\Skype 2013-08-04 13:00 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\sru 2013-08-04 12:56 - 2013-07-22 14:16 - 01210583 _____ C:\Windows\WindowsUpdate.log 2013-08-04 12:54 - 2012-12-06 16:29 - 00001128 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-08-04 12:54 - 2012-12-06 16:29 - 00001124 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-08-04 12:34 - 2013-08-04 12:34 - 00000000 ____D C:\Users\arkad_000\AppData\Roaming\Atheros 2013-08-04 12:34 - 2013-08-04 12:34 - 00000000 ____D C:\ProgramData\Atheros 2013-08-04 12:34 - 2013-07-01 19:53 - 00000394 _____ C:\Windows\Tasks\Lyrics-Pal Update.job 2013-08-04 12:34 - 2012-12-06 15:43 - 00000000 ____D C:\Users\arkad_000\AppData\Local\CrashDumps 2013-08-04 11:11 - 2012-07-26 09:22 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-08-04 11:10 - 2012-08-31 05:10 - 00000000 ____D C:\Program Files\Elantech 2013-08-04 11:10 - 2012-08-31 05:07 - 00000000 ____D C:\Program Files (x86)\Qualcomm Atheros 2013-08-04 11:09 - 2012-07-26 07:26 - 00262144 ___SH C:\Windows\system32\config\BBI 2013-08-04 11:08 - 2013-08-04 11:07 - 00004760 _____ C:\Windows\DPINST.LOG 2013-08-04 11:08 - 2013-08-04 11:02 - 00000000 ____D C:\Windows\LastGood.Tmp 2013-08-04 11:06 - 2013-08-04 11:06 - 00000000 ____D C:\Users\arkad_000\Documents\Bluetooth Folder 2013-08-04 11:00 - 2013-08-04 11:00 - 00328592 _____ (ELAN Microelectronics Corp.) C:\Windows\system32\Drivers\ETD.sys 2013-08-04 11:00 - 2012-08-31 05:06 - 00000000 ____D C:\ProgramData\Qualcomm Atheros 2013-08-04 10:02 - 2013-08-04 10:02 - 00178084 _____ C:\Users\arkad_000\Downloads\bSpace-v2.4.jar 2013-08-04 10:01 - 2013-08-04 10:01 - 00325807 _____ C:\Users\arkad_000\Downloads\Multiverse-Core-2.4.jar 2013-08-04 07:50 - 2013-07-06 11:40 - 00000058 _____ C:\Users\arkad_000\AppData\Local\DonationCoder_ScreenshotCaptor_InstallInfo.dat 2013-08-03 14:18 - 2013-03-29 19:26 - 00000000 ____D C:\Users\arkad_000\AppData\Local\LogMeIn Hamachi 2013-08-03 10:58 - 2013-08-03 10:58 - 00115569 _____ C:\Users\arkad_000\Downloads\Essentials-gm.zip 2013-08-03 10:44 - 2013-08-03 10:44 - 00747538 _____ C:\Users\arkad_000\Downloads\Citizens.jar 2013-08-03 10:43 - 2013-08-03 10:43 - 00046562 _____ C:\Users\arkad_000\Downloads\iDisguise_v2.1.2.jar 2013-08-03 10:42 - 2013-08-03 10:42 - 00007597 _____ C:\Users\arkad_000\Downloads\JumpPads.jar 2013-08-02 20:58 - 2012-12-06 16:39 - 00000000 ____D C:\Users\arkad_000\Desktop\filme 2013-08-02 20:28 - 2013-08-02 20:28 - 01599506 _____ C:\Users\arkad_000\Downloads\Jorge_Gonzalez_Veet_EasywaX_Jorge_EDITION.mp4 2013-08-02 16:41 - 2013-08-02 16:41 - 00003344 _____ C:\AdwCleaner[R3].txt 2013-08-02 16:39 - 2013-08-02 16:39 - 00666633 _____ C:\Users\arkad_000\Desktop\adwcleaner.exe 2013-08-02 16:39 - 2013-08-02 16:39 - 00003284 _____ C:\AdwCleaner[R2].txt 2013-08-02 13:53 - 2013-08-02 13:53 - 00284920 _____ C:\Windows\Minidump\080213-23734-01.dmp 2013-08-02 13:53 - 2013-08-02 13:42 - 503907740 _____ C:\Windows\MEMORY.DMP 2013-08-02 13:53 - 2013-08-02 13:42 - 00000000 ____D C:\Windows\Minidump 2013-08-02 13:47 - 2013-08-02 13:47 - 00005234 _____ C:\Users\arkad_000\Downloads\country house.schematic 2013-08-02 13:43 - 2013-08-02 13:42 - 00284920 _____ C:\Windows\Minidump\080213-56953-01.dmp 2013-08-02 13:41 - 2013-07-24 06:08 - 00000644 _____ C:\Windows\PFRO.log 2013-08-02 12:34 - 2013-02-15 18:30 - 00000000 ____D C:\BrickForce 2013-08-02 09:36 - 2012-12-05 22:13 - 00000000 ____D C:\Users\arkad_000 2013-08-02 09:35 - 2013-08-02 09:35 - 00000000 ____D C:\Program Files (x86)\LyricsPal 2013-08-02 09:27 - 2012-07-26 10:12 - 00000000 __RHD C:\Users\Public\Libraries 2013-08-02 09:27 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\WinStore 2013-08-02 09:27 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\SysWOW64\ras 2013-08-02 09:27 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\system32\ras 2013-08-02 09:27 - 2012-07-26 09:52 - 00000000 ____D C:\Program Files\Windows Journal 2013-08-02 09:27 - 2012-07-26 07:38 - 00000000 ____D C:\Windows\SysWOW64\Dism 2013-08-02 09:26 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\L2Schemas 2013-08-02 09:26 - 2012-07-26 09:52 - 00000000 ____D C:\Windows\ShellNew 2013-08-02 09:26 - 2012-07-26 07:38 - 00000000 ____D C:\Windows\system32\oobe 2013-08-02 09:09 - 2012-07-26 07:38 - 00000000 ____D C:\Windows\system32\Sysprep 2013-08-02 09:07 - 2013-04-03 22:22 - 00000000 ____D C:\Users\arkad_000\AppData\Roaming\vlc 2013-08-02 09:01 - 2013-07-30 08:26 - 00000000 ____D C:\Program Files (x86)\Cinema 4D R12 2013-08-02 09:01 - 2013-07-18 08:29 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-08-02 09:01 - 2012-12-06 16:15 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-08-02 08:54 - 2013-07-22 19:32 - 00000000 ____D C:\SMBX 2013-08-02 08:53 - 2013-07-20 19:10 - 00000000 ____D C:\Users\arkad_000\Desktop\CubeWorld 2013-08-02 08:35 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\registration 2013-08-01 21:53 - 2013-08-01 21:53 - 00320559 _____ C:\Users\arkad_000\Downloads\worldguard-5.8.zip 2013-08-01 18:36 - 2013-08-01 18:25 - 66268014 _____ C:\Users\arkad_000\Desktop\world.rar 2013-08-01 12:03 - 2013-08-01 12:03 - 00007695 _____ C:\Users\arkad_000\Downloads\Simple-AutoSave.jar 2013-08-01 11:21 - 2013-08-01 11:21 - 22921366 _____ C:\Users\arkad_000\Downloads\GERUDOKU.zip 2013-08-01 11:15 - 2013-08-01 11:13 - 10765413 _____ C:\Users\arkad_000\Downloads\world.rar 2013-08-01 09:52 - 2013-08-01 09:52 - 61120512 _____ C:\Users\arkad_000\Documents\Aufnahme-3.camrec 2013-08-01 09:52 - 2013-08-01 09:52 - 61120512 _____ C:\Users\arkad_000\Documents\Aufnahme-3 - Kopie.camrec 2013-08-01 09:19 - 2013-08-01 09:19 - 39370668 _____ C:\Users\arkad_000\Downloads\SM64.zip 2013-08-01 09:04 - 2012-07-26 10:12 - 00000000 ____D C:\Windows\AUInstallAgent 2013-07-31 21:54 - 2012-12-07 19:09 - 00000000 ____D C:\Users\arkad_000\Documents\Camtasia Studio 2013-07-31 21:51 - 2013-07-31 21:47 - 54456320 _____ C:\Users\arkad_000\Documents\Aufnahme-2.camrec 2013-07-31 21:44 - 2013-07-31 21:44 - 17285120 _____ C:\Users\arkad_000\Documents\Aufnahme-1.camrec 2013-07-31 11:04 - 2013-07-31 11:04 - 00003484 _____ C:\Users\arkad_000\Downloads\Timber.jar 2013-07-31 10:52 - 2013-07-31 10:52 - 00855691 _____ C:\Users\arkad_000\Downloads\Essentials (1).zip 2013-07-31 10:52 - 2013-07-31 10:52 - 00800808 _____ C:\Users\arkad_000\Downloads\worldedit-5.5.7.zip 2013-07-31 10:52 - 2013-07-31 10:51 - 03470381 _____ C:\Users\arkad_000\Downloads\LPWelt.rar 2013-07-31 10:49 - 2013-07-31 10:48 - 15249388 _____ C:\Users\arkad_000\Downloads\craftbukkit-1.6.2-R0.1-20130731.060227-17.jar 2013-07-31 10:08 - 2013-07-30 18:49 - 00074091 _____ C:\Users\arkad_000\Documents\zahnrad.c4d 2013-07-30 11:15 - 2013-07-30 10:53 - 01337097 _____ C:\Users\arkad_000\Documents\Ohne Titel 1.c4d 2013-07-30 10:50 - 2013-07-30 10:50 - 00310507 _____ C:\Users\arkad_000\Downloads\Thrausi-1.22-R12.zip 2013-07-30 09:42 - 2013-07-29 12:34 - 00979322 _____ C:\Users\arkad_000\Downloads\Minecraft Skin.c4d 2013-07-30 09:40 - 2013-07-30 09:40 - 08489561 _____ C:\Users\arkad_000\Downloads\Wolf.zip 2013-07-30 09:31 - 2013-07-30 09:31 - 00000000 ____D C:\Users\arkad_000\Downloads\tex 2013-07-30 09:07 - 2013-07-30 09:07 - 00000000 _____ C:\Windows\setuperr.log 2013-07-30 09:07 - 2013-07-30 09:07 - 00000000 _____ C:\Windows\setupact.log 2013-07-29 12:39 - 2013-07-29 12:36 - 144726890 _____ C:\Users\arkad_000\Downloads\Cinema 4D R12.rar 2013-07-28 14:57 - 2013-07-28 14:57 - 00010112 _____ C:\Users\arkad_000\Downloads\Emoticons_1.6.2_v1.2.zip 2013-07-25 13:27 - 2013-05-20 10:44 - 00000000 ____D C:\Users\arkad_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\gamigo 2013-07-23 11:25 - 2013-07-23 11:25 - 00000000 ____D C:\Users\arkad_000\AppData\Roaming\TuneUp Software 2013-07-23 11:25 - 2013-07-23 11:24 - 00000000 ____D C:\ProgramData\TuneUp Software 2013-07-22 15:01 - 2013-07-22 15:01 - 04218983 _____ C:\Users\arkad_000\Downloads\Frorge (1.6.2) (Installer).jar 2013-07-22 14:30 - 2013-07-22 14:30 - 00066494 _____ C:\Users\arkad_000\Downloads\xray_1.6.2.zip 2013-07-22 14:24 - 2013-07-22 14:24 - 00182824 _____ C:\Users\arkad_000\Downloads\ModLoader (1).zip 2013-07-22 12:08 - 2013-05-24 15:47 - 00000000 ____D C:\Users\arkad_000\Tracing 2013-07-22 07:57 - 2013-07-22 07:57 - 03136081 _____ C:\Users\arkad_000\Downloads\cube_alpha_trainer_+6.rar 2013-07-21 18:08 - 2013-07-21 17:54 - 00000000 ____D C:\Windows\system32\MRT 2013-07-21 13:53 - 2013-07-21 13:53 - 00375793 _____ C:\Users\arkad_000\Downloads\OptiFine_1.6.2_HD_U_B4.zip 2013-07-19 07:25 - 2012-12-25 11:39 - 00000000 ____D C:\Users\arkad_000\AppData\Local\Adobe 2013-07-19 07:25 - 2012-12-07 18:22 - 00003772 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-07-18 15:50 - 2013-07-18 15:50 - 00003076 _____ C:\Windows\System32\Tasks\GoforFilesUpdate 2013-07-18 15:50 - 2013-07-18 15:50 - 00000000 ____D C:\Users\arkad_000\AppData\Roaming\GoforFiles 2013-07-18 15:49 - 2013-07-18 15:49 - 05276296 _____ (hxxp://www.goforfiles.com/) C:\Users\arkad_000\Downloads\Token_Generator.exe_downloader_de_257.exe 2013-07-18 15:40 - 2013-05-12 12:35 - 00002563 _____ C:\Users\Public\Desktop\Free System Utilities.lnk 2013-07-18 15:39 - 2013-07-18 15:39 - 00000000 ____D C:\Program Files (x86)\Covus Freemium 2013-07-18 08:31 - 2013-06-08 10:39 - 00000000 ____D C:\Program Files (x86)\Origin 2013-07-16 09:59 - 2013-07-16 09:59 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2013-07-16 09:59 - 2013-07-16 09:59 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-07-15 16:01 - 2013-07-15 16:01 - 00283280 _____ C:\Users\arkad_000\Downloads\Setup (1).exe 2013-07-15 15:14 - 2013-01-31 18:12 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-07-15 15:14 - 2012-12-07 18:16 - 00000000 ____D C:\ProgramData\Skype 2013-07-15 12:39 - 2013-07-15 10:25 - 00000000 ____D C:\Users\arkad_000\AppData\Local\WebPlayer 2013-07-15 10:25 - 2013-07-15 10:25 - 00000000 ____D C:\Users\arkad_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FilesFrog Update Checker 2013-07-15 10:25 - 2013-07-15 10:25 - 00000000 ____D C:\Users\arkad_000\AppData\Local\FilesFrog Update Checker 2013-07-15 10:24 - 2013-07-15 10:24 - 00167536 _____ () C:\Users\arkad_000\Downloads\FreeMahjongGamesSetup-79QOU3e.exe 2013-07-13 14:08 - 2013-07-13 14:08 - 00094808 _____ C:\Users\arkad_000\Downloads\RWtorchLight.jar 2013-07-13 11:09 - 2013-05-24 15:21 - 00000000 ____D C:\Users\arkad_000\AppData\Local\Windows Live 2013-07-12 13:28 - 2013-07-12 13:28 - 00000000 ____D C:\Users\arkad_000\AppData\Roaming\MAXON 2013-07-12 12:49 - 2012-12-06 16:29 - 00004100 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2013-07-12 12:49 - 2012-12-06 16:29 - 00003864 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2013-07-12 07:08 - 2013-07-12 07:08 - 00002507 _____ C:\AdwCleaner[R1].txt 2013-07-11 20:05 - 2013-07-11 20:05 - 00000000 ____D C:\Users\arkad_000\AppData\Roaming\Minecraft Skin Viewer 2013-07-11 19:56 - 2013-01-18 21:32 - 00000000 ____D C:\Users\arkad_000\AppData\Roaming\TS3Client 2013-07-11 17:20 - 2013-07-11 17:20 - 00433240 _____ C:\Windows\system32\FNTCACHE.DAT 2013-07-11 08:11 - 2012-12-05 22:22 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1337385019-782056237-1828007073-1001 2013-07-11 07:40 - 2013-07-11 07:40 - 00035698 _____ C:\ComboFix.txt 2013-07-11 07:40 - 2013-07-11 07:26 - 00000000 ____D C:\Qoobox 2013-07-11 07:40 - 2012-07-26 07:37 - 00000000 __RHD C:\Users\Default 2013-07-11 07:37 - 2013-07-11 07:25 - 00000000 ____D C:\Windows\erdnt 2013-07-11 07:36 - 2012-07-26 07:26 - 00000215 _____ C:\Windows\system.ini 2013-07-11 07:23 - 2013-07-11 07:23 - 00909608 _____ (SetupManager) C:\Users\arkad_000\Desktop\setup (1).exe 2013-07-10 20:06 - 2013-07-10 16:21 - 00000858 _____ C:\Windows\client.config.ini 2013-07-10 16:52 - 2013-07-09 15:23 - 00000000 ___HD C:\Users\arkad_000\Documents\Runes of Magic 2013-07-10 11:05 - 2013-01-16 16:07 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-07-10 11:03 - 2012-12-26 18:01 - 78185248 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-07-10 10:55 - 2012-07-26 07:26 - 00000234 _____ C:\Windows\win.ini 2013-07-10 10:35 - 2013-07-10 10:34 - 00000101 _____ C:\Windows\DeleteOnReboot.bat 2013-07-10 10:35 - 2013-07-10 10:33 - 00016351 _____ C:\AdwCleaner[S1].txt 2013-07-10 10:34 - 2012-08-31 05:27 - 00000000 ____D C:\ProgramData\boost_interprocess 2013-07-10 10:29 - 2013-05-12 12:35 - 00004130 _____ C:\Windows\System32\Tasks\Software Updater 2013-07-10 10:23 - 2013-07-10 10:22 - 00000000 ____D C:\Users\arkad_000\Downloads\backups 2013-07-10 10:14 - 2012-12-05 22:14 - 00001442 _____ C:\Users\arkad_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-07-10 10:13 - 2012-12-06 16:29 - 00002344 _____ C:\Users\arkad_000\Desktop\Google Chrome.lnk 2013-07-10 10:13 - 2012-12-06 16:15 - 00001151 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2013-07-10 09:56 - 2013-07-10 06:58 - 00000000 ____D C:\Windows\8AE3CFB678B24F55A7BE618FCFF43A03.TMP 2013-07-10 07:56 - 2013-07-10 07:56 - 00000000 ____D C:\Users\arkad_000\AppData\Roaming\Malwarebytes 2013-07-10 07:56 - 2013-07-10 07:56 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-07-10 07:55 - 2013-07-10 07:55 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\arkad_000\Downloads\mbam-setup-1.75.0.1300.exe 2013-07-10 06:59 - 2013-07-10 06:59 - 00000000 ____D C:\Program Files\Enigma Software Group 2013-07-10 06:59 - 2013-07-10 06:59 - 00000000 _____ C:\autoexec.bat 2013-07-10 06:58 - 2013-07-10 06:58 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\arkad_000\Downloads\SpyHunter-Installer.exe 2013-07-09 21:11 - 2012-12-06 16:29 - 00000000 ____D C:\Program Files (x86)\Google 2013-07-09 17:32 - 2012-07-26 07:37 - 00000000 ____D C:\Windows\servicing 2013-07-09 12:16 - 2013-07-09 12:16 - 00000000 ____D C:\Users\arkad_000\AppData\Roaming\Microsoft\Windows\Start Menu\Magic Hub 2013-07-09 12:16 - 2013-07-09 12:16 - 00000000 ____D C:\ProgramData\Overwolf 2013-07-09 12:16 - 2013-07-09 12:08 - 00000000 ____D C:\Users\arkad_000\AppData\Local\Overwolf 2013-07-09 12:08 - 2013-07-09 12:08 - 00002020 _____ C:\Users\Public\Desktop\Runes of Magic.lnk 2013-07-09 10:20 - 2013-06-30 10:06 - 00000000 ____D C:\Users\arkad_000\AppData\Roaming\Namco 2013-07-09 10:20 - 2012-08-03 09:46 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-07-09 10:20 - 2012-08-03 09:45 - 00000000 ____D C:\Program Files (x86)\NTI 2013-07-09 10:17 - 2013-07-09 10:16 - 00000000 ____D C:\Users\arkad_000\AppData\Local\lptmp1497504269 2013-07-09 10:15 - 2013-07-09 10:15 - 00001071 _____ C:\Users\Public\Desktop\Gameforge Live.lnk 2013-07-09 10:15 - 2013-07-09 10:15 - 00000000 ____D C:\Users\arkad_000\AppData\Local\Gameforge4d 2013-07-09 10:15 - 2013-07-09 10:15 - 00000000 ____D C:\Program Files (x86)\GameforgeLive 2013-07-09 10:14 - 2013-07-09 10:14 - 00656952 _____ C:\Users\arkad_000\Downloads\setup.exe 2013-07-08 16:54 - 2013-07-08 16:56 - 00484992 _____ C:\Users\arkad_000\Desktop\Minecraft.exe 2013-07-06 11:42 - 2013-07-06 11:40 - 00013312 ___SH C:\Users\arkad_000\Documents\Thumbs.db 2013-07-06 11:40 - 2013-07-06 11:40 - 00000000 ____D C:\Users\arkad_000\Documents\DonationCoder 2013-07-06 11:40 - 2013-07-06 11:40 - 00000000 ____D C:\Users\arkad_000\AppData\Roaming\DonationCoder 2013-07-06 11:40 - 2013-06-30 12:45 - 00000000 ____D C:\Users\arkad_000\Documents\eclipse 2013-07-06 11:40 - 2013-01-12 13:29 - 00677376 ___SH C:\Users\arkad_000\Downloads\Thumbs.db 2013-07-06 11:39 - 2013-07-06 11:39 - 08440728 _____ (DonationCoder.com ) C:\Users\arkad_000\Downloads\ScreenshotCaptorSetup_4.03.exe 2013-07-06 11:39 - 2013-07-06 11:39 - 00001107 _____ C:\Users\arkad_000\Desktop\Screenshot Captor.lnk 2013-07-06 11:39 - 2013-07-06 11:39 - 00000000 ____D C:\ProgramData\DonationCoder 2013-07-06 11:39 - 2013-07-06 11:39 - 00000000 ____D C:\Program Files (x86)\ScreenshotCaptor 2013-07-05 20:43 - 2012-12-28 13:25 - 00000000 ____D C:\Users\arkad_000\Documents\Electronic Arts 2013-07-05 20:42 - 2013-07-05 20:42 - 00002304 _____ C:\Users\Public\Desktop\Die Sims™ 3 Erstelle eine Welt-Tool - Beta.lnk 2013-07-05 20:42 - 2012-12-28 14:59 - 00000000 ____D C:\Program Files (x86)\Electronic Arts 2013-07-05 20:40 - 2013-07-05 20:39 - 177131814 _____ (Acresso Software Inc.) C:\Users\arkad_000\Downloads\worldtool.exe 2013-07-05 20:33 - 2013-07-05 20:30 - 163984087 _____ (Acresso Software Inc.) C:\Users\arkad_000\Downloads\TheSims3_worldtool.exe 2013-07-05 19:57 - 2013-07-05 19:57 - 00002238 _____ C:\Users\Public\Desktop\Die Sims™ 3 Inselparadies.lnk ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-08-03 13:49 ==================== End Of Log ============================ und das die Addition: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 01-08-2013 Ran by Marc at 2013-08-04 13:34:13 Running from C:\Users\arkad_000\Desktop Boot Mode: Normal ========================================================== ==================== Installed Programs ======================= clear.fi SDK - Video 2 (x32 Version: 2.1.1910) clear.fi SDK- Movie 2 (x32 Version: 2.1.1910) 64 Bit HP CIO Components Installer (Version: 7.2.8) Acer Backup Manager (x32 Version: 4.0.0.0053) Acer Device Fast-lane (Version: 1.00.3003) Acer Power Management (Version: 7.00.3003) Acer Recovery Management (Version: 6.00.3006) AcerCloud (x32 Version: 2.01.3112) AcerCloud Docs (x32 Version: 1.00.3103) Adobe AIR (x32 Version: 3.5.0.880) Adobe Download Assistant (x32 Version: 1.2.3) Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.94) Aeria Ignite (x32 Version: 1.12.2732) AIO_Scan (x32 Version: 130.0.421.000) Arctic Combat (x32) Avira Free Antivirus (x32 Version: 13.0.0.3884) Backup Manager v4 (x32 Version: 4.0.0.0053) Bing Bar (x32 Version: 7.1.391.0) Brick-Force (x32 Version: ) Broadcom Card Reader Driver Installer (Version: 15.4.4.2) BufferChm (x32 Version: 140.0.298.000) Bundled software uninstaller (x32) C7200 (x32 Version: 140.0.425.000) C7200_Help (x32 Version: 100.0.206.000) Camtasia Studio 7 (x32 Version: 7.0.0) Cheat Engine 6.2 (x32) clear.fi Media (x32 Version: 2.01.3107) clear.fi Photo (x32 Version: 2.01.3107) Copy (x32 Version: 140.0.298.000) D3DX10 (x32 Version: 15.4.2368.0902) Definition Update for Microsoft Office 2013 (KB2760587) 64-Bit Edition Destinations (x32 Version: 140.0.253.000) DeviceDiscovery (x32 Version: 140.0.298.000) Die Sims™ 3 "Erstelle eine Welt"-Tool - Beta (x32 Version: 1.18.46) Die Sims™ 3 (x32 Version: 1.55.4) Die Sims™ 3 Inselparadies (x32 Version: 19.0.101) Die Sims™ 3 Jahreszeiten (x32 Version: 16.0.136) Die Sims™ 3 Reiseabenteuer (x32 Version: 2.0.86) Die Sims™ 3 Wildes Studentenleben (x32 Version: 18.0.126) DocProc (x32 Version: 140.0.185.000) eaner (Version: 3.27) eBay Worldwide (x32 Version: 2.3.0630) Edna Bricht Aus 6.3 (x32) ETDWare PS/2-X64 11.6.11.002_WHQL (Version: 11.6.11.002) Fax (x32 Version: 140.0.307.000) Fiesta Online DE 1.04.113 (x32 Version: 1.04.113) FilesFrog Update Checker (x32) FileZilla Client 3.6.0.2 (HKCU Version: 3.6.0.2) Fotogalerie (x32 Version: 16.4.3508.0205) Fraps (x32) Free Audio Converter version 5.0.22.128 (x32 Version: 5.0.22.128) Free System Utilities (x32 Version: 1.0.0.28) Free SystemUtilities (x32 Version: 1.0.0.28) Gameforge Live 1.4.0 "Legend" (x32 Version: 1.4.0) GIMP 2.8.6 (Version: 2.8.6) Google Chrome (x32 Version: 28.0.1500.95) Google Earth (x32 Version: 7.0.1.8244) Google Update Helper (x32 Version: 1.3.21.153) GPBaseService2 (x32 Version: 140.0.297.000) GrandFantasia-DE (x32) HP Customer Participation Program 14.0 (Version: 14.0) HP Imaging Device Functions 14.0 (Version: 14.0) HP Photosmart All-In-One Driver Software (Version: 14.0) HP Solution Center 14.0 (Version: 14.0) HP Update (x32 Version: 5.002.006.003) HPPhotoGadget (x32 Version: 140.0.524.000) HPProductAssistant (x32 Version: 140.0.298.000) HPSSupply (x32 Version: 140.0.297.000) Identity Card (x32 Version: 2.00.3002) Intel(R) Management Engine Components (x32 Version: 8.1.0.1252) Intel(R) Processor Graphics (x32 Version: 9.18.10.3165) Intel(R) Rapid Storage Technology (x32 Version: 11.5.0.1207) Intel(R) SDK for OpenCL - CPU Only Runtime Package (x32 Version: 3.0.0.63463) Intel® Trusted Connect Service Client (Version: 1.24.388.1) Java 7 Update 25 (x32 Version: 7.0.250) Java 7 Update 9 (64-bit) (Version: 7.0.90) Java Auto Updater (x32 Version: 2.1.9.5) Junk Mail filter update (x32 Version: 16.4.3508.0205) Launch Manager (x32 Version: 7.0.4) Live Updater (x32 Version: 2.00.3002) LogMeIn Hamachi (x32 Version: 2.1.0.374) Lyrics-Pal (x32) MarketResearch (x32 Version: 140.0.299.000) Microsoft Access MUI (German) 2013 (Version: 15.0.4420.1017) Microsoft Application Error Reporting (Version: 12.0.6015.5000) Microsoft DCF MUI (German) 2013 (Version: 15.0.4420.1017) Microsoft Excel MUI (German) 2013 (Version: 15.0.4420.1017) Microsoft Groove MUI (German) 2013 (Version: 15.0.4420.1017) Microsoft InfoPath MUI (German) 2013 (Version: 15.0.4420.1017) Microsoft Lync MUI (German) 2013 (Version: 15.0.4420.1017) Microsoft Office 32-bit Components 2013 (Version: 15.0.4420.1017) Microsoft Office Korrekturhilfen 2013 - Deutsch (Version: 15.0.4420.1017) Microsoft Office OSM MUI (German) 2013 (Version: 15.0.4420.1017) Microsoft Office OSM UX MUI (German) 2013 (Version: 15.0.4420.1017) Microsoft Office Professional Plus 2013 (Version: 15.0.4420.1017) Microsoft Office Proofing (German) 2013 (Version: 15.0.4420.1017) Microsoft Office Proofing Tools 2013 - English (Version: 15.0.4420.1017) Microsoft Office Proofing Tools 2013 - Italiano (Version: 15.0.4420.1017) Microsoft Office Shared 32-bit MUI (German) 2013 (Version: 15.0.4420.1017) Microsoft Office Shared MUI (German) 2013 (Version: 15.0.4420.1017) Microsoft OneNote MUI (German) 2013 (Version: 15.0.4420.1017) Microsoft Outlook MUI (German) 2013 (Version: 15.0.4420.1017) Microsoft PowerPoint MUI (German) 2013 (Version: 15.0.4420.1017) Microsoft Publisher MUI (German) 2013 (Version: 15.0.4420.1017) Microsoft Silverlight (Version: 5.1.20513.0) Microsoft SkyDrive (HKCU Version: 16.4.6013.0910) Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Microsoft Visual Studio 2005 Tools for Office Runtime (x32 Version: 8.0.60940.0) Microsoft Word MUI (German) 2013 (Version: 15.0.4420.1017) Microsoft XNA Framework Redistributable 4.0 (x32 Version: 4.0.20823.0) Movie Maker (x32 Version: 16.4.3508.0205) Mozilla Firefox 21.0 (x86 de) (x32 Version: 21.0) Mozilla Maintenance Service (x32 Version: 21.0) MSVCRT (x32 Version: 15.4.2862.0708) MSVCRT_amd64 (x32 Version: 15.4.2862.0708) MSVCRT110 (x32 Version: 16.4.1108.0727) MSVCRT110_amd64 (Version: 16.4.1109.0912) MyWinLocker (Version: 4.0.14.35) MyWinLocker 4 (x32 Version: 4.0.14.35) MyWinLocker Suite (x32 Version: 4.0.14.24) Network64 (Version: 140.0.306.000) Nexon Game Manager (x32) Norton Online Backup (x32 Version: 2.2.3.45) Norton Online Backup ARA (x32 Version: 4.1.0.10) Notepad++ (x32 Version: 6.2.2) OCR Software by I.R.I.S. 14.0 (Version: 14.0) Office Addin (x32 Version: 2.01.3102) Office Addin 2003 (x32 Version: 2.01.3102) Origin (x32 Version: 9.2.1.4399) Outils de vérification linguistique 2013 de Microsoft Office*- Français (Version: 15.0.4420.1017) Photo Common (x32 Version: 16.4.3508.0205) Photo Gallery (x32 Version: 16.4.3508.0205) Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.98) Plants vs. Zombies 1.0.4.7924 (by Scar) (x32) PS_AIO_02_ProductContext (x32 Version: 140.0.425.000) PS_AIO_02_Software (x32 Version: 140.0.425.000) PS_AIO_02_Software_Min (x32 Version: 140.0.425.000) Qualcomm Atheros Bluetooth Suite (64) (Version: 8.0.0.220) Qualcomm Atheros WLAN and Bluetooth Client Installation Program (x32 Version: 11.41) Realtek High Definition Audio Driver (x32 Version: 6.0.1.6657) Runes of Magic (x32 Version: 5.0.5.2592) Samsung New PC Studio (x32 Version: 1.00.0000) Scan (x32 Version: 140.0.253.000) Screenshot Captor 4.03.00 (x32) Shared C Run-time for x64 (Version: 10.0.0) Shop for HP Supplies (Version: 14.0) Shredder (Version: 2.0.8.9) Shredder (x32 Version: 2.0.8.9) Skype™ 6.6 (x32 Version: 6.6.106) SolutionCenter (x32 Version: 140.0.299.000) Spotify (x32 Version: 0.8.4.99.ga249b5f1) Status (x32 Version: 140.0.342.000) Steam (x32 Version: 1.0.0.0) TeamSpeak 3 Client (HKCU Version: 3.0.10.1) TEdit 3 (x32 Version: 1.0.0.0) Terraria (x32) Toolbox (x32 Version: 140.0.596.000) TrayApp (x32 Version: 140.0.297.000) Ubisoft Game Launcher (x32 Version: 1.0.0.0) Update for Microsoft Access 2013 (KB2760350) 64-Bit Edition Update for Microsoft Excel 2013 (KB2760339) 64-Bit Edition Update for Microsoft Office 2013 (KB2726954) 64-Bit Edition Update for Microsoft Office 2013 (KB2726996) 64-Bit Edition Update for Microsoft Office 2013 (KB2737954) 64-Bit Edition Update for Microsoft Office 2013 (KB2752025) 64-Bit Edition Update for Microsoft Office 2013 (KB2752094) 64-Bit Edition Update for Microsoft Office 2013 (KB2752101) 64-Bit Edition Update for Microsoft Office 2013 (KB2760224) 64-Bit Edition Update for Microsoft Office 2013 (KB2760538) 64-Bit Edition Update for Microsoft Office 2013 (KB2760610) 64-Bit Edition Update for Microsoft Office 2013 (KB2767845) 64-Bit Edition Update for Microsoft Office 2013 (KB2767851) 64-Bit Edition Update for Microsoft Office 2013 (KB2767860) 64-Bit Edition Update for Microsoft Office 2013 (KB2768016) 64-Bit Edition Update for Microsoft Office 2013 (KB2810010) 64-Bit Edition Update for Microsoft Office 2013 (KB2817320) 64-Bit Edition Update for Microsoft Office 2013 (KB2817482) 64-Bit Edition Update for Microsoft Office 2013 (KB2817489) 64-Bit Edition Update for Microsoft Office 2013 (KB2817492) 64-Bit Edition Update for Microsoft OneNote 2013 (KB2768011) 64-Bit Edition Update for Microsoft OneNote 2013 (KB2817467) 64-Bit Edition Update for Microsoft Outlook 2013 (KB2817468) 64-Bit Edition Update for Microsoft PowerPoint 2013 (KB2726947) 64-Bit Edition Update for Microsoft PowerPoint 2013 (KB2810006) 64-Bit Edition Update for Microsoft SkyDrive Pro (KB2817469) 64-Bit Edition Update for Microsoft Visio 2013 (KB2810008) 64-Bit Edition Update for Microsoft Visio Viewer 2013 (KB2768338) 64-Bit Edition Update for Microsoft Word 2013 (KB2767863) 64-Bit Edition Update for Microsoft Word 2013 (KB2810086) 64-Bit Edition VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0) Visual Studio 2005 Tools for Office Second Edition Runtime (x32) Visual Studio Tools for the Office system 3.0 Runtime (x32 Version: 9.0.30729) Visual Studio Tools for the Office system 3.0 Runtime (x32) Visual Studio Tools for the Office system 3.0 Runtime Service Pack 1 (KB949258) (x32 Version: 1) VLC media player 2.0.2 (x32 Version: 2.0.2) WebReg (x32 Version: 140.0.297.017) WildTangent Games (x32 Version: 1.0.3.0) Windows Live Communications Platform (x32 Version: 16.4.3508.0205) Windows Live Essentials (x32 Version: 16.4.3508.0205) Windows Live Installer (x32 Version: 16.4.3508.0205) Windows Live Mail (x32 Version: 16.4.3508.0205) Windows Live Messenger (x32 Version: 16.4.3508.0205) Windows Live MIME IFilter (Version: 16.4.3508.0205) Windows Live Photo Common (x32 Version: 16.4.3508.0205) Windows Live PIMT Platform (x32 Version: 16.4.3508.0205) Windows Live SOXE (x32 Version: 16.4.3508.0205) Windows Live SOXE Definitions (x32 Version: 16.4.3508.0205) Windows Live UX Platform (x32 Version: 16.4.3508.0205) Windows Live UX Platform Language Pack (x32 Version: 16.4.3508.0205) Windows Live Writer (x32 Version: 16.4.3508.0205) Windows Live Writer Resources (x32 Version: 16.4.3508.0205) WinRAR 4.20 (64-Bit) (Version: 4.20.0) ==================== Restore Points ========================= 23-07-2013 09:24:38 TuneUp Utilities 2013 wird installiert 02-08-2013 05:43:38 Wiederherstellungsvorgang 04-08-2013 09:00:58 Installiert Qualcomm Atheros WLAN and Bluetooth Client Installat䓵ᴀ耀 ==================== Hosts content: ========================== 2012-07-26 07:26 - 2013-07-11 07:35 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (whitelisted) ============= Task: {02F03555-BC42-438B-BC52-F4EE846C8EB3} - System32\Tasks\Software Updater => C:\Program Files (x86)\SoftwareUpdater\SoftwareUpdater.Bootstrapper.exe No File Task: {0DA5AE38-34E8-4587-B6CE-0716806FBFD9} - System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1337385019-782056237-1828007073-500 Task: {10D85952-E3F6-47A1-96CF-5E1C2D874EA6} - System32\Tasks\Microsoft\Windows\SystemRestore\SR => C:\Windows\system32\srtasks.exe [2012-07-26] (Microsoft Corporation) Task: {13A2AC02-B682-48CC-9155-2E2673580117} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 Critical Task: {17644F17-DC4C-4AC8-9444-7AAA52EB5CDC} - System32\Tasks\Microsoft\Windows\NetCfg\BindingWorkItemQueueHandler Task: {17E4CA9F-25FD-494E-BB74-B84A209FCA12} - System32\Tasks\ALUAgent => C:\Program Files (x86)\Acer\Live Updater\liveupdater_agent.exe [2012-06-22] () Task: {1AAFF332-5C62-4558-9991-DAA649C4C9C5} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => C:\Windows\system32\rundll32.exe [2012-07-26] (Microsoft Corporation) Task: {1DB7C2F1-876C-4F24-AD17-8428211113F9} - System32\Tasks\Microsoft\Windows\MemoryDiagnostic\ProcessMemoryDiagnosticEvents Task: {1E5C6069-C2AF-4C76-967E-56AA73DF46B1} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-01-23] (Piriform Ltd) Task: {214B24F4-FEB4-4C59-AF1F-70136065199C} - System32\Tasks\Microsoft\Windows\Shell\IndexerAutomaticMaintenance Task: {22BA6E14-4EDA-4379-95EF-260D14CD2F3C} - System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1337385019-782056237-1828007073-1001 Task: {23700E5C-0E77-499D-908A-415D5C6252F4} - System32\Tasks\Microsoft\Windows\Plug and Play\Device Install Group Policy Task: {23A5D8BE-9196-40EB-BD89-794398B2B073} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => C:\Windows\System32\rundll32.exe [2012-07-26] (Microsoft Corporation) Task: {2C154760-1238-4FD0-A2D6-89D33FA6BFF1} - System32\Tasks\Freemium1ClickMaint => C:\Users\arkad_000\Downloads\1Click.exe No File Task: {2C6B9EA8-7F5A-4ABA-BF96-8D352D02A743} - System32\Tasks\Microsoft\Windows\Device Setup\Metadata Refresh Task: {2E030FA7-3D7C-4E1D-8CFE-56ADB26FD402} - System32\Tasks\Microsoft\Windows\PI\Sqm-Tasks Task: {3054485A-F517-4E95-9977-4DD827B1E9B3} - System32\Tasks\Microsoft\Windows\WS\Badge Update Task: {378401BA-A703-444A-A79C-3C47AD2DC5B6} - System32\Tasks\Microsoft\Windows\TaskScheduler\Maintenance Configurator Task: {3AE164E7-30CD-40BC-9422-3EC7A5618965} - System32\Tasks\Microsoft\Windows\WS\WSTask Task: {3C490ABD-D849-41AF-9AC4-87DD759B0996} - System32\Tasks\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem Task: {405C6C9B-B5E0-4229-ADF3-63BBA212E28D} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-07-19] (Adobe Systems Incorporated) Task: {4073C1B3-6E16-4AA8-B7F3-C6A6D35D5071} - System32\Tasks\Microsoft\Windows\TPM\Tpm-Maintenance Task: {44B3F1B8-5943-4072-8D8C-A9484676AC44} - System32\Tasks\Microsoft\Windows\Live\Roaming\SynchronizeWithStorage Task: {45C14507-59BF-46A2-8A8C-DF7F9C1764B7} - System32\Tasks\Microsoft\Windows\Servicing\StartComponentCleanup Task: {483A8F5C-5D26-44B5-B49E-AF6741D1BBEB} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => C:\Windows\System32\MbaeParserTask.exe [2013-06-01] (Microsoft Corporation) Task: {4B952129-9AE9-41A3-BE2B-8AD2E06F66B6} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskLogon Task: {5031E43D-8433-478B-ADEF-ED7A3609D51E} - System32\Tasks\ALU => C:\Program Files (x86)\Acer\Live Updater\updater.exe [2012-07-13] () Task: {5755E746-D7ED-4C20-A472-66C11834CDE4} - System32\Tasks\Microsoft\Windows\TaskScheduler\Manual Maintenance Task: {5C267042-65BC-4CC4-9E87-FC8101B420B1} - System32\Tasks\Lyrics-Pal Update => C:\Program Files (x86)\LyricsPal\Lyrics.exe [2013-07-27] (LyricsPal Soft. LTD) Task: {5C4EFB77-EFA6-45DF-A373-D795C0725BFF} - System32\Tasks\Microsoft\Windows\Plug and Play\Device Install Reboot Required Task: {627441F3-8526-4B62-BF9A-1A3EA414E71A} - System32\Tasks\Microsoft\Windows\SpacePort\SpaceAgentTask => C:\Windows\system32\SpaceAgent.exe [2012-07-26] (Microsoft Corporation) Task: {6C3A6F37-2B3D-4737-8548-C17818749145} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start => C:\Windows\system32\sc.exe [2012-07-26] (Microsoft Corporation) Task: {6E9DE125-5583-4031-B572-FEE48F25CFFF} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyMonitor => C:\Windows\System32\wpcmon.exe [2012-09-20] (Microsoft Corporation) Task: {6FDDEA7C-6310-428D-AEB2-54FFC72811EF} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 Task: {74096F94-B654-4DB0-96F5-3C3408B92FE3} - System32\Tasks\Microsoft\Windows\PI\Secure-Boot-Update Task: {7D9A9A1C-499C-40A6-8F8A-5BCC4CC9A87C} - System32\Tasks\Microsoft\Windows\TaskScheduler\Regular Maintenance Task: {845CB020-68B5-4C6B-9876-7BEC7B3E27AC} - System32\Tasks\Microsoft\Windows\TaskScheduler\Idle Maintenance Task: {8479A65B-0F69-45C8-89FD-895EB70C9C0A} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task Task: {87354DAA-66DF-4B41-9346-15958D96E1D2} - System32\Tasks\Microsoft\Windows\FileHistory\File History (maintenance mode) Task: {88A90FA4-67FA-4874-B155-C24487299E9E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-12-06] (Google Inc.) Task: {8930FCE8-B2D5-4BEC-BDB0-669EB8DF6670} - System32\Tasks\Power Management => C:\Program Files\Acer\Acer Power Management\ePowerTray.exe [2012-07-31] (Acer Incorporated) Task: {921A1D4E-32FB-46D7-B6C0-6F467884074D} - System32\Tasks\Microsoft\Windows\WS\Sync Licenses Task: {93B55434-401E-44C1-A29F-1F76DA25097D} - System32\Tasks\Microsoft\Windows\WindowsUpdate\AUFirmwareInstall Task: {9479EF8E-11D4-41B3-9783-CC65070D592D} - System32\Tasks\Microsoft\Windows\Time Synchronization\ForceSynchronizeTime Task: {94DCF254-64FB-4C4E-8E12-5F4055C10C2A} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 Task: {989A7C6D-BE82-4C3C-AF96-6116039E336B} - System32\Tasks\Microsoft\Windows\MemoryDiagnostic\RunFullMemoryDiagnostic Task: {98CEFDC9-4187-453C-A3B4-C49FB9152592} - System32\Tasks\EgisUpdate => C:\Program Files\EgisTec IPS\EgisUpdate.exe [2012-07-12] (Egis Technology Inc.) Task: {9A7A3C50-C9DB-4B04-BA4C-312C92C2AE2A} - System32\Tasks\GoforFilesUpdate => C:\Program Files (x86)\GoforFiles\GFFUpdater.exe No File Task: {A72208BF-7A49-4FB8-B684-252375F3443A} - System32\Tasks\Microsoft\Windows\WS\License Validation => C:\Windows\System32\rundll32.exe [2012-07-26] (Microsoft Corporation) Task: {A800277E-E202-4492-AD38-3312641CBC04} - System32\Tasks\Microsoft\Windows\Live\Roaming\MaintenanceTask Task: {A97DCB1F-D3A2-4010-8179-FCB7E9FEF85D} - System32\Tasks\Microsoft\Windows\WindowsUpdate\AUSessionConnect Task: {AB62FA47-2C99-44B1-A5D0-D4161423BE43} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyRefresh Task: {AC6259DE-AC59-459E-849E-6ADFFD1ADE63} - System32\Tasks\Microsoft\Windows\Shell\CreateObjectTask Task: {AEB0B5BD-B9E5-458A-898A-E559BD9EB51B} - System32\Tasks\Microsoft\Windows\SettingSync\BackgroundUploadTask Task: {AF549BD8-337C-4BF7-8681-36A182E30507} - System32\Tasks\Microsoft\Windows\Chkdsk\ProactiveScan Task: {B0D5CE41-9BC0-46C3-8689-26046FA8499A} - System32\Tasks\Microsoft\Windows\WindowsUpdate\AUScheduledInstall Task: {BC76AEF7-2CF0-4EB6-B65B-A8803E0B5E12} - System32\Tasks\Microsoft\Windows\AppID\SmartScreenSpecific Task: {C1ACCD1E-4385-4FB2-B5E4-7F2A57A626A2} - System32\Tasks\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan Task: {C26874A0-F467-4F63-8A24-361690665300} - System32\Tasks\Recovery Management\Notification => C:\Program Files\Acer\Acer Recovery Management\Notification\Notification.exe [2012-07-31] (Acer Incorporated) Task: {C463FD1E-31C7-4C20-AB65-08E514CA152D} - System32\Tasks\Microsoft\Windows\IME\SQM data sender Task: {C6532FC5-40E3-408C-BA0C-9B809AB243B8} - System32\Tasks\{3103043B-EA70-44E3-B609-B0E41BD85F57} => c:\program files (x86)\google\chrome\application\chrome.exe [2013-07-25] (Google Inc.) Task: {C6A88F2D-53D2-4805-9D69-443738A1847C} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => C:\Windows\system32\rundll32.exe [2012-07-26] (Microsoft Corporation) Task: {C8E2220F-4F2C-4F2B-AF67-3A7A8D482652} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2012-10-01] (Microsoft Corporation) Task: {CD1054FF-8005-4904-8B9C-436EAB1E2021} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskNetwork Task: {D4549064-F3C6-41ED-A8C7-4E2001252893} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation) Task: {D8D0E5C4-BA0A-4BCE-9DC6-67B93D3B6C97} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation) Task: {DBCF6E1B-CE0A-441E-B7A5-219C8BE50C65} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 Critical Task: {DECE5921-598D-454B-9A04-B2DE95EFC1B3} - System32\Tasks\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan for Crash Recovery Task: {E4DFE66F-E089-4CC3-A70F-957223D565F4} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask Task: {E8DAA09B-DF2A-4951-9134-6FA9587793F9} - System32\Tasks\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers => C:\Windows\System32\drvinst.exe [2012-09-20] (Microsoft Corporation) Task: {EBF06DEC-4228-4813-AC0C-62821AE4E330} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => C:\Windows\system32\rundll32.exe [2012-07-26] (Microsoft Corporation) Task: {ED0C1F69-C3A2-41EA-B8C3-3F0D83A1F6C0} - System32\Tasks\Microsoft\Windows\Customer Experience Improvement Program\BthSQM Task: {F2CA62F3-EAC4-45F5-9D44-FBF7F341B75E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2012-12-06] (Google Inc.) Task: {F83191E3-E913-4DC2-BE22-C614E7BF5FB0} - System32\Tasks\PMMUpdate => C:\Program Files\EgisTec IPS\PMMUpdate.exe [2012-07-12] (Egis Technology Inc.) Task: {F98C7C72-4F7B-45E8-858E-1DC6B92B3AC2} - System32\Tasks\Desk 365 RunAsStdUser => C:\Program Files (x86)\Desk 365\desk365.exe No File Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\Lyrics-Pal Update.job => C:\Program Files (x86)\LyricsPal\Lyrics.exe ==================== Faulty Device Manager Devices ============= Name: Photosmart C7200 series Description: Photosmart C7200 series Class Guid: {4d36e971-e325-11ce-bfc1-08002be10318} Manufacturer: HP Service: Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. Name: Photosmart C7200 series Description: Photosmart C7200 series Class Guid: {6bdd1fc6-810f-11d0-bec7-08002be2092f} Manufacturer: HP Service: StillCam Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (08/04/2013 01:28:28 PM) (Source: Microsoft-Windows-LoadPerf) (User: NT-AUTORITÄT) Description: Fehler beim Herunterladen der Zeichenfolgen der Leistungsindikatoren für Dienst "WmiApRpl" (WmiApRpl). Der Fehlercode ist das erste DWORD im Datenbereich. Error: (08/04/2013 01:28:28 PM) (Source: Microsoft-Windows-LoadPerf) (User: NT-AUTORITÄT) Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich. Error: (08/04/2013 01:28:28 PM) (Source: Microsoft-Windows-LoadPerf) (User: NT-AUTORITÄT) Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich. Error: (08/04/2013 00:34:22 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: MMDx64Fx.exe, Version: 2.3.0.3572, Zeitstempel: 0x503364be Name des fehlerhaften Moduls: MMDUtl.dll, Version: 4.0.6.3572, Zeitstempel: 0x503364b8 Ausnahmecode: 0xc0000005 Fehleroffset: 0x000000000000bf6e ID des fehlerhaften Prozesses: 0x188 Startzeit der fehlerhaften Anwendung: 0xMMDx64Fx.exe0 Pfad der fehlerhaften Anwendung: MMDx64Fx.exe1 Pfad des fehlerhaften Moduls: MMDx64Fx.exe2 Berichtskennung: MMDx64Fx.exe3 Vollständiger Name des fehlerhaften Pakets: MMDx64Fx.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: MMDx64Fx.exe5 Error: (08/04/2013 11:08:38 AM) (Source: Microsoft-Windows-LoadPerf) (User: NT-AUTORITÄT) Description: Fehler beim Herunterladen der Zeichenfolgen der Leistungsindikatoren für Dienst "WmiApRpl" (WmiApRpl). Der Fehlercode ist das erste DWORD im Datenbereich. Error: (08/04/2013 11:08:38 AM) (Source: Microsoft-Windows-LoadPerf) (User: NT-AUTORITÄT) Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich. Error: (08/04/2013 11:08:38 AM) (Source: Microsoft-Windows-LoadPerf) (User: NT-AUTORITÄT) Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich. Error: (08/04/2013 11:05:19 AM) (Source: Microsoft-Windows-LoadPerf) (User: NT-AUTORITÄT) Description: Fehler beim Herunterladen der Zeichenfolgen der Leistungsindikatoren für Dienst "WmiApRpl" (WmiApRpl). Der Fehlercode ist das erste DWORD im Datenbereich. Error: (08/04/2013 11:05:19 AM) (Source: Microsoft-Windows-LoadPerf) (User: NT-AUTORITÄT) Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich. Error: (08/04/2013 11:05:19 AM) (Source: Microsoft-Windows-LoadPerf) (User: NT-AUTORITÄT) Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich. System errors: ============= Error: (08/03/2013 08:54:52 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Avira Echtzeit-Scanner" wurde mit dem folgenden dienstspezifischen Fehler beendet: %%306 Error: (08/02/2013 01:53:57 PM) (Source: BugCheck) (User: ) Description: 0x0000001a (0x0000000000041284, 0x000000000800c001, 0x000000000000955e, 0xfffff70001080000)C:\Windows\MEMORY.DMP080213-23734-01 Error: (08/02/2013 01:53:45 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Avira Echtzeit-Scanner" wurde mit dem folgenden dienstspezifischen Fehler beendet: %%306 Error: (08/02/2013 01:53:24 PM) (Source: EventLog) (User: ) Description: Das System wurde zuvor am 02.08.2013 um 13:42:39 unerwartet heruntergefahren. Error: (08/02/2013 01:43:09 PM) (Source: BugCheck) (User: ) Description: 0x00000050 (0xfffff8b00db28f38, 0x0000000000000000, 0xfffff88003f34e28, 0x0000000000000002)C:\Windows\MEMORY.DMP080213-56953-01 Error: (08/02/2013 01:42:57 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Avira Echtzeit-Scanner" wurde mit dem folgenden dienstspezifischen Fehler beendet: %%306 Error: (08/02/2013 01:42:39 PM) (Source: EventLog) (User: ) Description: Das System wurde zuvor am 02.08.2013 um 13:30:09 unerwartet heruntergefahren. Error: (08/02/2013 09:30:32 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Avira Echtzeit-Scanner" wurde mit dem folgenden dienstspezifischen Fehler beendet: %%306 Error: (08/01/2013 09:49:50 PM) (Source: BugCheck) (User: ) Description: 0x0000003b (0x00000000c0000005, 0xfffff88004240954, 0xfffff88016394d10, 0x0000000000000000)C:\Windows\MEMORY.DMP080113-24453-01 Error: (08/01/2013 09:49:02 PM) (Source: EventLog) (User: ) Description: Das System wurde zuvor am 01.08.2013 um 21:33:41 unerwartet heruntergefahren. Microsoft Office Sessions: ========================= Error: (08/04/2013 01:28:28 PM) (Source: Microsoft-Windows-LoadPerf)(User: NT-AUTORITÄT) Description: WmiApRplWmiApRpl8F2030000E5050000 Error: (08/04/2013 01:28:28 PM) (Source: Microsoft-Windows-LoadPerf)(User: NT-AUTORITÄT) Description: Performance163707000000000000000000008F020000 Error: (08/04/2013 01:28:28 PM) (Source: Microsoft-Windows-LoadPerf)(User: NT-AUTORITÄT) Description: Performance163707000000000000000000008F020000 Error: (08/04/2013 00:34:22 PM) (Source: Application Error)(User: ) Description: MMDx64Fx.exe2.3.0.3572503364beMMDUtl.dll4.0.6.3572503364b8c0000005000000000000bf6e18801ce90fe2ed91e6dC:\Program Files (x86)\Launch Manager\MMDx64Fx.exeC:\Program Files (x86)\Launch Manager\MMDUtl.dll6ccacf84-fcf1-11e2-8014-b888e3bf3538 Error: (08/04/2013 11:08:38 AM) (Source: Microsoft-Windows-LoadPerf)(User: NT-AUTORITÄT) Description: WmiApRplWmiApRpl8F2030000E5050000 Error: (08/04/2013 11:08:38 AM) (Source: Microsoft-Windows-LoadPerf)(User: NT-AUTORITÄT) Description: Performance163707000000000000000000008F020000 Error: (08/04/2013 11:08:38 AM) (Source: Microsoft-Windows-LoadPerf)(User: NT-AUTORITÄT) Description: Performance163707000000000000000000008F020000 Error: (08/04/2013 11:05:19 AM) (Source: Microsoft-Windows-LoadPerf)(User: NT-AUTORITÄT) Description: WmiApRplWmiApRpl8F2030000E5050000 Error: (08/04/2013 11:05:19 AM) (Source: Microsoft-Windows-LoadPerf)(User: NT-AUTORITÄT) Description: Performance163707000000000000000000008F020000 Error: (08/04/2013 11:05:19 AM) (Source: Microsoft-Windows-LoadPerf)(User: NT-AUTORITÄT) Description: Performance163707000000000000000000008F020000 CodeIntegrity Errors: =================================== Date: 2013-07-11 07:35:31.675 Description: Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\setup\catchme.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source. ==================== Memory info =========================== Percentage of memory in use: 74% Total physical RAM: 3911.27 MB Available physical RAM: 1009.01 MB Total Pagefile: 7879.27 MB Available Pagefile: 3686.64 MB Total Virtual: 8192 MB Available Virtual: 8191.77 MB ==================== Drives ================================ Drive c: (Acer) (Fixed) (Total:446.19 GB) (Free:257.11 GB) NTFS (Disk=0 Partition=4) Drive e: (Marc Stick) (Removable) (Total:29.82 GB) (Free:29.72 GB) NTFS (Disk=1 Partition=1) ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 466 GB) (Disk ID: E88FEB6F) Partition: GPT Partition Type ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 30 GB) (Disk ID: 00000000) Partition 1: (Active) - (Size=30 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
05.08.2013, 07:14 | #4 |
/// the machine /// TB-Ausbilder | Problem mit Google Crome Downloade Dir bitte AdwCleaner auf deinen Desktop.
Downloade Dir bitte Malwarebytes Anti-Malware
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Problem mit Google Crome |
angehängt, auf einmal, bild, foren, google, googlecrome, grüne, helft, hilfe, kleine, maus, nerve, nerven, pop-ups, problem, texte, websites, woche, wörter, öffnet |