|
Plagegeister aller Art und deren Bekämpfung: Spiele minimieren sich in unregelmäßigen Abständen und Add-On "Plus-HD-2.3" entfernen.Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
04.08.2013, 19:50 | #1 |
| Spiele minimieren sich in unregelmäßigen Abständen und Add-On "Plus-HD-2.3" entfernen. Hallo erstmal, ich habe mich nur aufgrund einiger kleiner Problemchen mit meinem Rechner hier angemeldet und hoffe, dass man mir hier ein wenig weiterhelfen kann. Seit einigen Tagen kann ich zum Beispiel kein Spiel mehr im Vollbildmodus spielen, ohne dass es sich nach einiger Zeit hin und wieder in den Hintergrund verabschiedet. Ich kann es danach zwar ohne große Probleme wieder zurückholen, allerdings ist das doch sehr nervig wenn man gerade schön die Füße hochgelegt hat. Ich habe bereits meine GPU-Treiber auf den aktuellsten Stand gebracht, Widgets deaktiviert, alle Programme geupdatet die nach Updates schrien und einen Prozess nach dem anderen aus der Taskleiste gestoppt, der nicht unbedingt nötig ist. Also sozusagen alle, bis auf Avira, Spybot-SD Resident und sonstige Control Center für GPU, Maus, Tastatur. Mein zweites Problem ist das Firefox Add-on "Plus-HD-2.3" das sich für mich schon als AdWare rausstellte, und mich mit Werbung in einem Pop-Up benannt "Deal Finder" zubombte. Habe es bereits mit Spybot und AdwCleaner versucht auszumerzen, was allerdings nichts brachte. Zwar bekomme ich keine weiteren Pop-Ups mehr, aber in den Add-Ons erscheint es immernoch, wobei jetzt nurnoch als "Plus-HD-2.3 wurd entfernt." mit den Optionen Firefox Neu zu starten oder es zu reinstallieren. Das klingt zumindest für mich danach, als wären noch Rückstände zu finden. Ich hoffe mir kann hier jemand mit Rat und Tat zur Seite stehen. Ich würde mich freuen. |
04.08.2013, 21:58 | #2 |
/// the machine /// TB-Ausbilder | Spiele minimieren sich in unregelmäßigen Abständen und Add-On "Plus-HD-2.3" entfernen. Hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
05.08.2013, 02:19 | #3 |
| Spiele minimieren sich in unregelmäßigen Abständen und Add-On "Plus-HD-2.3" entfernen.FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 04-08-2013 Ran by RLXD (administrator) on 05-08-2013 03:10:48 Running from C:\Users\RLXD\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\system32\atiesrxx.exe (Creative Technology Ltd) C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe (AMD) C:\Windows\system32\atieclxx.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Hi-Rez Studios) E:\Games\HiPatchService.exe (AnchorFree Inc.) C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe () C:\Program Files (x86)\Hotspot Shield\bin\hsswd.exe () C:\Windows\SysWOW64\PnkBstrA.exe () C:\Windows\SysWOW64\PnkBstrB.exe (Mr. John aka japamd) C:\Program Files (x86)\RadeonPro\RadeonProSupport.exe (Splashtop Inc.) C:\Program Files (x86)\Splashtop\Splashtop Remote\SERVER\SRService.exe (Splashtop Inc.) C:\Program Files (x86)\Splashtop\Splashtop Software Updater\SSUService.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe (Safer Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe () C:\Program Files (x86)\RivaTuner Statistics Server\RTSS.exe () C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe (Acronis) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe (Microsoft Corporation) C:\Program Files\Microsoft Device Center\itype.exe (Microsoft Corporation) C:\Program Files\Microsoft Device Center\ipoint.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe (Spotify Ltd) C:\Users\RLXD\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\BookmarkDAV_client.exe (OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe (OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin (Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe () C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (ROCCAT GmbH) C:\Program Files (x86)\ROCCAT\Kone[+] Mouse\Kone[+]Monitor.exe (Creative Technology Ltd) C:\Program Files (x86)\Creative\USB Sound Blaster HD\Volume Panel\VolPanlu.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe () C:\Program Files (x86)\SHARKOON DarkGlider\hid.exe (MSI) C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (Micro-Star International) C:\Program Files (x86)\MSI\Live Update 5\LU5.exe () C:\Program Files (x86)\SHARKOON DarkGlider\trayicon.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (DT Soft Ltd) C:\Program Files (x86)\DAEMON Tools Lite\DTShellHlp.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [Acronis Scheduler2 Service] - C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [395928 2011-07-08] (Acronis) HKLM\...\Run: [IntelTBRunOnce] - C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs [4526 2010-11-29] () HKLM\...\Run: [IntelliType Pro] - C:\Program Files\Microsoft Device Center\itype.exe [1464928 2012-06-26] (Microsoft Corporation) HKLM\...\Run: [IntelliPoint] - C:\Program Files\Microsoft Device Center\ipoint.exe [2004584 2012-06-26] (Microsoft Corporation) HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6548112 2012-06-12] (Realtek Semiconductor) HKLM\...\Run: [Creative SB Monitoring Utility] - RunDll32 sbavmon.dll,SBAVMonitor [x] HKLM\...\Run: [tvncontrol] - "C:\Program Files\TightVNC\tvnserver.exe" -controlservice -slave [x] HKCU\...\Run: [Steam] - C:\Program Files (x86)\Steam\steam.exe [1807272 2013-07-27] (Valve Corporation) HKCU\...\Run: [Desura] - C:\Program Files (x86)\Desura\desura.exe [2529096 2012-02-23] (Desura Pty Ltd) HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3671872 2012-04-17] (DT Soft Ltd) HKCU\...\Run: [SpybotSD TeaTimer] - C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe [2260480 2009-03-05] (Safer-Networking Ltd.) HKCU\...\Run: [Spotify Web Helper] - C:\Users\RLXD\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1104384 2013-07-14] (Spotify Ltd) HKCU\...\Run: [iCloudServices] - C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [59720 2013-04-05] (Apple Inc.) HKCU\...\Run: [ApplePhotoStreams] - C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [59720 2013-04-05] (Apple Inc.) HKCU\...\Run: [com.apple.dav.bookmarks.daemon] - C:\Program Files (x86)\Common Files\Apple\Internet Services\BookmarkDAV_client.exe [59720 2013-04-05] (Apple Inc.) HKCR\...0c966feabec1\InprocServer32: [Default-shell32] C:\Users\RLXD\AppData\Local\{1ab9e80a-6010-cf06-7b01-46b72b6ce766}\n. ATTENTION! ====> ZeroAccess? HKCU\...\Policies\system: [DisableLockWorkstation] 0 MountPoints2: {c3941b02-5a12-11e1-b7c2-8c89a57d4ce9} - G:\Setup.exe HKLM-x32\...\Run: [NUSB3MON] - C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation) HKLM-x32\...\Run: [Super-Charger] - C:\Program Files (x86)\MSI\Super-Charger\StartSuperCharger.exe [303104 2011-07-06] (MSI) HKLM-x32\...\Run: [TrueImageMonitor.exe] - C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [2673688 2011-07-08] () HKLM-x32\...\Run: [RoccatKone+] - C:\Program Files (x86)\ROCCAT\Kone[+] Mouse\Kone[+]Monitor.EXE [552960 2011-07-12] (ROCCAT GmbH) HKLM-x32\...\Run: [VolPanel] - C:\Program Files (x86)\Creative\USB Sound Blaster HD\Volume Panel\VolPanlu.exe [241757 2010-12-08] (Creative Technology Ltd) HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.) HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [345144 2013-06-24] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [SHARKOON DarkGlider] - C:\Program Files (x86)\SHARKOON DarkGlider\hid.exe [295936 2012-11-28] () HKLM-x32\...\Run: [QuickTime Task] - C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.) HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-05-31] (Apple Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation) HKLM-x32\...\Run: [Live Update 5] - C:\Program Files (x86)\MSI\Live Update 5\BootStartLiveupdate.exe [315392 2012-01-30] () HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766208 2013-07-23] (Advanced Micro Devices, Inc.) Startup: C:\Users\RLXD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk ShortcutTarget: OpenOffice.org 3.3.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe () ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp SearchScopes: HKLM - DefaultScope value is missing. BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO-x32: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll (Safer Networking Limited) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: No Name - {F9E4A054-E9B1-4BC3-83A3-76A1AE736170} - No File Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\RLXD\AppData\Roaming\Mozilla\Firefox\Profiles\2fn0yppo.default FF Homepage: about:home FF NetworkProxy: "ftp", "213.197.182.78" FF NetworkProxy: "ftp_port", 3128 FF NetworkProxy: "http", "127.0.0.1" FF NetworkProxy: "http_port", 8555 FF NetworkProxy: "no_proxies_on", "localhost, 127.0.0.1, stealthy.co" FF NetworkProxy: "socks", "213.197.182.78" FF NetworkProxy: "socks_port", 3128 FF NetworkProxy: "ssl", "213.197.182.78" FF NetworkProxy: "ssl_port", 3128 FF NetworkProxy: "type", 0 FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll No File FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=1.118.0 - C:\Program Files (x86)\Battlelog Web Plugins\1.118.0\npesnlaunch.dll No File FF Plugin-x32: @esn/esnlaunch,version=1.132.0 - C:\Program Files (x86)\Battlelog Web Plugins\1.132.0\npesnlaunch.dll (ESN Social Software AB) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @nexon.net/NxGame - C:\ProgramData\NexonUS\NGM\npNxGameUS.dll No File FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\RLXD\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll () FF Extension: No Name - C:\Users\RLXD\AppData\Roaming\Mozilla\Firefox\Profiles\2fn0yppo.default\Extensions\7125a285-7e68-47aa-9d72-e81874f4d47e@d3fcdb92-135d-4a8a-8cf6-11e3b57c5fda.com FF Extension: GFACE Experience Plugin - C:\Users\RLXD\AppData\Roaming\Mozilla\Firefox\Profiles\2fn0yppo.default\Extensions\cryenginebrowserplugin@crytek.com FF Extension: savefileto - C:\Users\RLXD\AppData\Roaming\Mozilla\Firefox\Profiles\2fn0yppo.default\Extensions\savefileto@mozdev.org.xpi FF Extension: stealthyextension - C:\Users\RLXD\AppData\Roaming\Mozilla\Firefox\Profiles\2fn0yppo.default\Extensions\stealthyextension@gmail.com.xpi FF Extension: No Name - C:\Users\RLXD\AppData\Roaming\Mozilla\Firefox\Profiles\2fn0yppo.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi FF Extension: No Name - C:\Users\RLXD\AppData\Roaming\Mozilla\Firefox\Profiles\2fn0yppo.default\Extensions\{fe272bd1-5f76-4ea4-8501-a05d35d823fc}.xpi FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA} FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA} FF Extension: Hotspot Shield Helper (Please allow this installation) - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\afurladvisor@anchorfree.com FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ==================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [84024 2013-06-24] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [108088 2013-06-24] (Avira Operations GmbH & Co. KG) R2 HiPatchService; E:\Games\HiPatchService.exe [8704 2012-07-12] (Hi-Rez Studios) R2 hshld; C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe [831272 2013-06-21] (AnchorFree Inc.) S3 HssTrayService; C:\Program Files (x86)\Hotspot Shield\bin\HssTrayService.EXE [78512 2013-06-21] () R2 HssWd; C:\Program Files (x86)\Hotspot Shield\bin\hsswd.exe [548136 2013-06-21] () R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-04-03] () R2 PnkBstrB; C:\Windows\SysWow64\PnkBstrB.exe [189248 2013-04-03] () R2 RadeonPro Support Service; C:\Program Files (x86)\RadeonPro\RadeonProSupport.exe [20608 2013-04-13] (Mr. John aka japamd) S3 SandraAgentSrv; C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2013.SP4\RpcAgentSrv.exe [71832 2009-06-15] (SiSoftware) R2 SBSDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe [1153368 2009-01-26] (Safer Networking Ltd.) ==================== Drivers (Whitelisted) ==================== R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [100712 2013-03-27] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [130016 2013-03-27] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-03-27] (Avira Operations GmbH & Co. KG) R3 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2012-04-30] (DT Soft Ltd) R1 HssDRV6; C:\Windows\System32\DRIVERS\hssdrv6.sys [46792 2013-06-21] (AnchorFree Inc.) R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO64A.SYS [29672 2013-01-08] (REALiX(tm)) R3 ksaud; C:\Windows\System32\drivers\ksaud.sys [1558656 2010-07-14] (Creative Technology Ltd.) S3 libusb0; C:\Windows\System32\DRIVERS\libusb0.sys [52320 2013-03-17] (hxxp://libusb-win32.sourceforge.net) R3 NTIOLib_1_0_4; C:\Program Files (x86)\MSI\Live Update 5\NTIOLib_X64.sys [14136 2010-10-22] (MSI) R3 NTIOLib_1_0_4; C:\Program Files (x86)\MSI\Live Update 5\NTIOLib_X64.sys [14136 2010-10-22] (MSI) S3 NTIOLib_1_0_6; C:\Program Files (x86)\Setup Files\Ms7673v1J0\NTIOLib_X64.sys [11888 2011-01-06] (MSI) S3 NTIOLib_1_0_6; C:\Program Files (x86)\Setup Files\Ms7673v1J0\NTIOLib_X64.sys [11888 2011-01-06] (MSI) R3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [13368 2013-07-15] () R3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [13368 2013-07-15] () S3 SANDRA; C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2013.SP4\WNt500x64\Sandra.sys [23112 2009-08-07] (SiSoftware) R3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2013-06-21] (Anchorfree Inc.) R0 vidsflt53; C:\Windows\System32\DRIVERS\vsflt53.sys [141920 2012-02-12] (Acronis) S3 ALSysIO; \??\C:\Users\RLXD\AppData\Local\Temp\ALSysIO64.sys [x] S3 atillk64; \??\C:\Program Files (x86)\GIGABYTE\atBIOS\ATITool\atillk64.sys [x] S3 MSI_MSIBIOS_010507; \??\C:\Program Files (x86)\MSI\Live Update 5\msibios64_100507.sys [x] S3 RTHDMIAzAudService; system32\drivers\RtHDMIVX.sys [x] R3 WinRing0_1_2_0; \??\C:\Users\RLXD\AppData\Local\Temp\tmp11EA.tmp [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 288 2013-08-05 03:10 - 2013-08-05 03:10 - 01788733 _____ (Farbar) C:\Users\RLXD\Downloads\FRST64.exe 2013-08-05 03:10 - 2013-08-05 03:10 - 00000000 ____D C:\FRST 2013-08-04 21:09 - 2013-08-04 21:09 - 90974992 _____ (Microsoft Corporation) C:\Users\RLXD\Downloads\msert.exe 2013-08-04 20:32 - 2013-08-04 20:32 - 00001147 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2013-08-04 12:22 - 2013-08-04 12:22 - 21703480 _____ (Mozilla) C:\Users\RLXD\Downloads\Firefox Setup 22.0(1).exe 2013-08-04 12:03 - 2013-08-04 12:04 - 35337790 _____ C:\Users\RLXD\Downloads\sharkoon_darkglider_061212_zip_48224.zip 2013-08-04 10:09 - 2013-08-04 10:09 - 00000000 ____D C:\Users\RLXD\AppData\Local\Ascaron Entertainment 2013-08-02 20:46 - 2013-08-02 20:46 - 00666633 _____ C:\Users\RLXD\Downloads\adwcleaner06(1).exe 2013-08-02 20:46 - 2013-08-02 20:46 - 00001298 _____ C:\AdwCleaner[S2].txt 2013-08-02 20:46 - 2013-08-02 20:46 - 00001236 _____ C:\AdwCleaner[R2].txt 2013-08-01 23:44 - 2013-08-01 23:45 - 00000000 ____D C:\Users\RLXD\Documents\Anomaly Warzone Earth 2013-08-01 22:02 - 2013-08-04 20:30 - 00000022 _____ C:\Users\RLXD\AppData\Roaming\Network Meter_Usage.ini 2013-08-01 21:57 - 2013-08-01 22:00 - 00009507 _____ C:\Windows\IE10_main.log 2013-08-01 21:57 - 2013-08-01 21:57 - 19238912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 15404032 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 14329856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 13760512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-08-01 21:57 - 2013-08-01 21:57 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-08-01 21:57 - 2013-08-01 21:57 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 02046976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 01509376 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-08-01 21:57 - 2013-08-01 21:57 - 01441280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-08-01 21:57 - 2013-08-01 21:57 - 01400416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-08-01 21:57 - 2013-08-01 21:57 - 01400416 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-08-01 21:57 - 2013-08-01 21:57 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 01054720 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00905728 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00762368 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00719360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00629248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00599552 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00523264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-08-01 21:57 - 2013-08-01 21:57 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00361984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-08-01 21:57 - 2013-08-01 21:57 - 00357888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00270848 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00247296 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00242200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00232960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00204800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00185344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00173568 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00150528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00138752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00137216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00125440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-08-01 21:57 - 2013-08-01 21:57 - 00073728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-08-01 21:57 - 2013-08-01 21:57 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-08-01 21:56 - 2013-08-01 21:56 - 00055445 _____ C:\Windows\SysWOW64\CCCInstall_201308012156042373.log 2013-08-01 21:56 - 2013-08-01 21:56 - 00000000 ____D C:\ProgramData\ATI 2013-08-01 21:56 - 2013-08-01 21:56 - 00000000 ____D C:\Program Files (x86)\AMD AVT 2013-08-01 21:51 - 2013-08-01 21:51 - 245472312 _____ (AMD Inc.) C:\Users\RLXD\Downloads\amd_catalyst_13.8_beta.exe 2013-08-01 20:41 - 2013-08-01 20:41 - 00000000 ____D C:\Users\RLXD\AppData\Local\MercurySteam 2013-08-01 11:40 - 2013-08-04 20:00 - 00137118 _____ C:\Users\RLXD\Network_Meter_Data.js 2013-08-01 11:39 - 2013-08-01 11:39 - 00337108 _____ C:\Users\RLXD\Downloads\Network_Meter.zip 2013-08-01 11:39 - 2013-08-01 11:39 - 00206064 _____ C:\Users\RLXD\Downloads\All_CPU_Meter.zip 2013-08-01 11:34 - 2013-08-01 11:34 - 00194110 _____ C:\Users\RLXD\Downloads\Resident Evil 6 (Vibrant).rar 2013-08-01 10:52 - 2013-08-01 10:52 - 00000000 ____D C:\Users\RLXD\Documents\CAPCOM 2013-08-01 09:52 - 2013-08-01 09:52 - 00000561 _____ C:\Windows\wmsetup.log 2013-08-01 09:52 - 2013-08-01 09:52 - 00000000 ____D C:\Users\RLXD\Documents\Riptide 2013-07-31 19:17 - 2013-07-31 19:17 - 00267437 _____ C:\Users\RLXD\Downloads\dirh_latest.zip 2013-07-31 19:17 - 2013-04-29 10:32 - 00593408 _____ (Microsoft) C:\Users\RLXD\Desktop\Dead Island - Riptide Helper.exe 2013-07-27 12:52 - 2013-07-27 12:53 - 00000000 ____D C:\Users\RLXD\Desktop\Cube World 2013-07-27 12:51 - 2013-07-27 12:52 - 29600281 _____ C:\Users\RLXD\Downloads\3DMGAME-Cube.World._.Fixed-3DM.7z 2013-07-24 02:39 - 2013-07-24 02:39 - 07918816 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll 2013-07-24 02:39 - 2013-07-24 02:39 - 01043000 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll 2013-07-24 02:39 - 2013-07-24 02:39 - 00157736 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdhcp64.dll 2013-07-24 02:39 - 2013-07-24 02:39 - 00142304 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdhcp32.dll 2013-07-24 02:39 - 2013-07-24 02:39 - 00126336 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll 2013-07-24 02:39 - 2013-07-24 02:39 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll 2013-07-24 02:39 - 2013-07-24 02:39 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll 2013-07-24 02:39 - 2013-07-24 02:39 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll 2013-07-24 02:39 - 2013-07-24 02:39 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll 2013-07-24 02:38 - 2013-07-24 02:38 - 06532912 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdag.dll 2013-07-24 02:38 - 2013-07-24 02:38 - 06475232 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdva.dll 2013-07-24 02:36 - 2013-07-24 02:36 - 12721664 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmdag.sys 2013-07-24 02:19 - 2013-07-24 02:19 - 00229376 _____ C:\Windows\system32\clinfo.exe 2013-07-24 02:18 - 2013-07-24 02:18 - 28193280 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl64.dll 2013-07-24 02:18 - 2013-07-24 02:18 - 00098816 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OpenVideo64.dll 2013-07-24 02:18 - 2013-07-24 02:18 - 00086528 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OVDecode64.dll 2013-07-24 02:18 - 2013-07-24 02:18 - 00083456 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OpenVideo.dll 2013-07-24 02:18 - 2013-07-24 02:18 - 00073216 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OVDecode.dll 2013-07-24 02:16 - 2013-07-24 02:16 - 23761408 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll 2013-07-24 02:16 - 2013-07-24 02:16 - 00129536 _____ (AMD) C:\Windows\system32\coinst_13.20.dll 2013-07-24 02:14 - 2013-07-24 02:14 - 00063488 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2013-07-24 02:14 - 2013-07-24 02:14 - 00057344 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2013-07-24 02:06 - 2013-07-24 02:06 - 00548824 _____ C:\Windows\SysWOW64\atiapfxx.blb 2013-07-24 02:06 - 2013-07-24 02:06 - 00548824 _____ C:\Windows\system32\atiapfxx.blb 2013-07-24 02:04 - 2013-07-24 02:04 - 00368640 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe 2013-07-24 02:03 - 2013-07-24 02:03 - 15716352 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd64.dll 2013-07-24 02:03 - 2013-07-24 02:03 - 00062464 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt64.dll 2013-07-24 02:03 - 2013-07-24 02:03 - 00055808 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl64.dll 2013-07-24 02:03 - 2013-07-24 02:03 - 00052224 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll 2013-07-24 02:03 - 2013-07-24 02:03 - 00049152 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll 2013-07-24 02:00 - 2013-07-24 02:00 - 25609728 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atio6axx.dll 2013-07-24 02:00 - 2013-07-24 02:00 - 14302208 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll 2013-07-24 01:41 - 2013-07-24 01:41 - 21624832 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll 2013-07-24 01:41 - 2013-07-24 01:41 - 00574976 _____ (AMD) C:\Windows\system32\atieclxx.exe 2013-07-24 01:41 - 2013-07-24 01:41 - 00026112 _____ (AMD) C:\Windows\system32\atimuixx.dll 2013-07-24 01:40 - 2013-07-24 01:40 - 00239616 _____ (AMD) C:\Windows\system32\atiesrxx.exe 2013-07-24 01:39 - 2013-07-24 01:39 - 00190976 _____ (AMD) C:\Windows\system32\atitmm64.dll 2013-07-24 01:25 - 2013-07-24 01:25 - 03399312 _____ C:\Windows\system32\atiumd6a.cap 2013-07-24 01:16 - 2013-07-24 01:16 - 03433360 _____ C:\Windows\SysWOW64\atiumdva.cap 2013-07-24 01:10 - 2013-07-24 01:10 - 00617472 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys 2013-07-24 01:10 - 2013-07-24 01:10 - 00100352 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll 2013-07-24 01:10 - 2013-07-24 01:10 - 00096768 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll 2013-07-24 01:10 - 2013-07-24 01:10 - 00075264 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6pxx.dll 2013-07-24 01:10 - 2013-07-24 01:10 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll 2013-07-24 01:10 - 2013-07-24 01:10 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll 2013-07-24 01:08 - 2013-07-24 01:08 - 00095744 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdave64.dll 2013-07-24 01:08 - 2013-07-24 01:08 - 00090112 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdave32.dll 2013-07-24 01:08 - 2013-07-24 01:08 - 00089088 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atisamu64.dll 2013-07-24 01:07 - 2013-07-24 01:07 - 00080896 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atisamu32.dll 2013-07-24 01:06 - 2013-07-24 01:06 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\ati2erec.dll 2013-07-23 20:29 - 2013-07-23 20:29 - 00051200 _____ C:\Windows\system32\kdbsdk64.dll 2013-07-23 20:24 - 2013-07-23 20:24 - 00038912 _____ C:\Windows\SysWOW64\kdbsdk32.dll 2013-07-21 10:45 - 2013-07-21 10:45 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_MijXfilt_01009.Wdf 2013-07-21 10:38 - 2012-05-12 12:31 - 00121416 _____ (MotioninJoy) C:\Windows\system32\Drivers\MijXfilt.sys 2013-07-21 10:38 - 2011-12-07 19:42 - 01721576 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01009.dll 2013-07-21 10:38 - 2011-12-07 19:42 - 00074960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\xusb21.sys 2013-07-21 10:35 - 2013-07-21 10:35 - 00666633 _____ C:\Users\RLXD\Downloads\adwcleaner06.exe 2013-07-21 10:35 - 2013-07-21 10:35 - 00001441 _____ C:\AdwCleaner[S1].txt 2013-07-21 10:35 - 2013-07-21 10:35 - 00001379 _____ C:\AdwCleaner[R1].txt 2013-07-21 10:10 - 2012-12-04 00:58 - 00444933 _____ C:\Windows\system32\Drivers\etc\hosts.20130721-101001.backup 2013-07-21 10:04 - 2013-07-21 10:04 - 21703480 _____ (Mozilla) C:\Users\RLXD\Downloads\Firefox Setup 22.0.exe 2013-07-21 09:51 - 2013-07-21 09:51 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\RLXD\Downloads\SpyHunter-Installer.exe 2013-07-21 09:44 - 2012-12-04 00:58 - 00444933 _____ C:\Windows\system32\Drivers\etc\hosts.20130721-094449.backup 2013-07-21 09:29 - 2013-07-21 09:30 - 00000088 _____ C:\Windows\DeleteOnReboot.bat 2013-07-21 09:18 - 2013-07-21 09:18 - 00000000 ____D C:\ProgramData\simplitec 2013-07-21 09:17 - 2013-08-05 02:22 - 00000902 _____ C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineUA.job 2013-07-21 09:17 - 2013-08-04 18:30 - 00000898 _____ C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineCore.job 2013-07-21 09:17 - 2013-07-21 09:21 - 04117346 _____ C:\Users\RLXD\Downloads\MotioninJoy_071001_signed.zip 2013-07-21 09:17 - 2013-07-21 09:17 - 00003898 _____ C:\Windows\System32\Tasks\DealPlyLiveUpdateTaskMachineUA 2013-07-21 09:17 - 2013-07-21 09:17 - 00003646 _____ C:\Windows\System32\Tasks\DealPlyLiveUpdateTaskMachineCore 2013-07-20 22:42 - 2013-07-20 22:42 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\gd.sos.McPixel 2013-07-20 22:16 - 2013-07-20 22:16 - 00000000 ____D C:\Users\RLXD\Documents\SART 2013-07-16 19:57 - 2013-07-16 19:57 - 00001024 _____ C:\Users\Public\Desktop\Hotspot Shield.lnk 2013-07-16 19:57 - 2013-07-16 19:57 - 00000020 ___SH C:\Users\fbwuser\ntuser.ini 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Vorlagen 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Startmenü 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Netzwerkumgebung 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Lokale Einstellungen 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Eigene Dateien 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Druckumgebung 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Documents\Eigene Musik 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Documents\Eigene Bilder 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\AppData\Local\Verlauf 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\AppData\Local\Anwendungsdaten 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Anwendungsdaten 2013-07-16 19:57 - 2013-02-11 21:39 - 00000000 ____D C:\Users\fbwuser\AppData\Roaming\Macromedia 2013-07-16 19:57 - 2012-03-01 00:59 - 00000000 ____D C:\Users\fbwuser\AppData\Local\Microsoft Help 2013-07-16 19:16 - 2013-08-04 13:15 - 00000000 ____D C:\Windows\rescache 2013-07-16 07:41 - 2013-07-16 07:41 - 00001086 _____ C:\Users\RLXD\Desktop\MSI Afterburner.lnk 2013-07-16 07:38 - 2013-07-16 07:40 - 15851608 _____ C:\Users\RLXD\Downloads\MSIAfterburnerSetup300Beta11.zip 2013-07-14 22:49 - 2013-07-14 22:50 - 00000000 ____D C:\Windows\system32\MRT 2013-07-14 22:49 - 2012-08-24 20:13 - 00154480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2013-07-14 22:49 - 2012-08-24 20:09 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2013-07-14 22:49 - 2012-08-24 20:05 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2013-07-14 22:49 - 2012-08-24 20:03 - 01448448 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2013-07-14 22:49 - 2012-08-24 18:57 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2013-07-14 22:49 - 2012-08-24 18:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2013-07-14 22:49 - 2012-08-24 18:53 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2013-07-14 15:47 - 2013-07-14 15:47 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\fltk.org 2013-07-14 15:47 - 2013-07-14 15:47 - 00000000 ____D C:\ProgramData\fltk.org 2013-07-14 15:39 - 2013-07-14 15:39 - 290294456 _____ C:\Users\RLXD\Desktop\ss2_for_d3_by_kamikazze.7z 2013-07-14 15:38 - 2013-07-14 15:38 - 31034426 _____ C:\Users\RLXD\Desktop\ADaOB-v030.7z 2013-07-14 13:03 - 2013-07-16 07:41 - 00003024 _____ C:\Windows\System32\Tasks\RTSS 2013-07-14 13:01 - 2013-07-14 13:01 - 07321473 _____ C:\Users\RLXD\Downloads\RTSSSetup520-[Guru3D.com](1).exe 2013-07-14 12:59 - 2013-07-14 12:59 - 07321473 _____ C:\Users\RLXD\Downloads\RTSSSetup520-[Guru3D.com].exe 2013-07-14 12:57 - 2013-07-14 12:57 - 15569364 _____ C:\Users\RLXD\Downloads\MSIAfterburnerSetup300Beta10-[Guru3D.com].zip 2013-07-14 00:41 - 2013-07-14 00:41 - 00000000 ____D C:\ProgramData\Package Cache 2013-07-13 22:23 - 2013-07-15 01:41 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\Might & Magic Heroes VI 2013-07-13 22:23 - 2013-07-13 22:51 - 00000000 ____D C:\Users\RLXD\Documents\Might & Magic Heroes VI 2013-07-12 21:14 - 2013-07-12 21:14 - 00001865 _____ C:\Users\Public\Desktop\ImgBurn.lnk 2013-07-12 21:13 - 2013-07-12 21:13 - 03469871 _____ (LIGHTNING UK!) C:\Users\RLXD\Downloads\SetupImgBurn_2.5.8.0.exe 2013-07-11 22:11 - 2013-07-11 22:11 - 00000000 ____D C:\ProgramData\Nexon 2013-07-11 15:39 - 2013-07-11 15:39 - 00001552 _____ C:\Users\RLXD\Documents\Cards.txt 2013-07-11 14:09 - 2013-07-11 14:09 - 00000000 ____D C:\Users\RLXD\Documents\Gaslamp Games 2013-07-11 00:47 - 2013-06-05 05:34 - 03153920 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-07-11 00:47 - 2013-06-04 08:00 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2013-07-11 00:47 - 2013-06-04 06:53 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2013-07-11 00:47 - 2013-04-10 01:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2013-07-11 00:47 - 2013-04-03 00:51 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2013-07-08 01:29 - 2013-07-08 01:29 - 00000667 _____ C:\Users\RLXD\Desktop\GUIMiner.lnk 2013-07-08 01:22 - 2013-07-08 01:22 - 07731626 _____ (Igor Pavlov) C:\Users\RLXD\Downloads\guiminer-20121203.exe 2013-07-08 01:18 - 2013-07-08 02:27 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\MultiBit 2013-07-08 01:16 - 2013-07-08 01:17 - 12234752 _____ C:\Users\RLXD\Downloads\multibit-0.5.12-windows.exe 2013-07-08 00:41 - 2013-07-08 00:41 - 09915013 _____ (Bitcoin project) C:\Users\RLXD\Downloads\bitcoin-0.7.2-win32-setup.exe 2013-07-07 23:41 - 2013-07-07 23:41 - 10804841 _____ C:\Users\RLXD\Downloads\SABnzbd-0.7.14-win32-setup.exe 2013-07-07 00:08 - 2013-07-07 00:08 - 00000000 ____D C:\ProgramData\Splashtop ==================== One Month Modified Files and Folders ======= 2013-08-05 03:10 - 2013-08-05 03:10 - 00000000 ____D C:\FRST 2013-08-05 03:03 - 2012-04-02 09:44 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-08-05 02:22 - 2013-07-21 09:17 - 00000902 _____ C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineUA.job 2013-08-04 22:27 - 2013-01-26 01:15 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\Spotify 2013-08-04 21:13 - 2012-02-12 15:07 - 00003926 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{0B41F018-6579-4320-882F-E13EBD3F2D39} 2013-08-04 21:09 - 2013-08-04 21:09 - 90974992 _____ (Microsoft Corporation) C:\Users\RLXD\Downloads\msert.exe 2013-08-04 20:32 - 2013-08-04 20:32 - 00001147 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2013-08-04 20:32 - 2013-07-03 23:53 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-08-04 20:32 - 2012-04-28 00:16 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-08-04 20:30 - 2013-08-01 22:02 - 00000022 _____ C:\Users\RLXD\AppData\Roaming\Network Meter_Usage.ini 2013-08-04 20:00 - 2013-08-01 11:40 - 00137118 _____ C:\Users\RLXD\Network_Meter_Data.js 2013-08-04 18:39 - 2012-02-12 14:40 - 00000000 ____D C:\Program Files (x86)\Steam 2013-08-04 18:33 - 2011-04-12 09:43 - 00076306 _____ C:\Windows\system32\perfh007.dat 2013-08-04 18:33 - 2011-04-12 09:43 - 00029014 _____ C:\Windows\system32\perfc007.dat 2013-08-04 18:33 - 2009-07-14 07:13 - 00158510 _____ C:\Windows\system32\PerfStringBackup.INI 2013-08-04 18:33 - 2009-07-14 06:45 - 00021856 _____ C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-08-04 18:33 - 2009-07-14 06:45 - 00021856 _____ C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-08-04 18:31 - 2012-07-29 21:17 - 01084709 _____ C:\Windows\WindowsUpdate.log 2013-08-04 18:30 - 2013-07-21 09:17 - 00000898 _____ C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineCore.job 2013-08-04 18:28 - 2013-06-14 10:11 - 00013912 _____ C:\Windows\setupact.log 2013-08-04 18:28 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-08-04 14:19 - 2012-02-19 14:07 - 00003020 _____ C:\Windows\System32\Tasks\MSIAfterburner 2013-08-04 13:15 - 2013-07-16 19:16 - 00000000 ____D C:\Windows\rescache 2013-08-04 12:28 - 2012-03-02 23:24 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\.purple 2013-08-04 12:22 - 2013-08-04 12:22 - 21703480 _____ (Mozilla) C:\Users\RLXD\Downloads\Firefox Setup 22.0(1).exe 2013-08-04 12:04 - 2013-08-04 12:03 - 35337790 _____ C:\Users\RLXD\Downloads\sharkoon_darkglider_061212_zip_48224.zip 2013-08-04 11:53 - 2012-08-23 09:02 - 00000000 ____D C:\ProgramData\Adobe 2013-08-04 11:53 - 2012-02-12 14:26 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\Adobe 2013-08-04 11:52 - 2013-02-11 21:39 - 00000000 ____D C:\Program Files (x86)\Adobe 2013-08-04 11:51 - 2013-02-11 21:38 - 00000000 ____D C:\Users\RLXD\AppData\Local\Adobe 2013-08-04 11:05 - 2012-02-14 20:31 - 00000000 ____D C:\Program Files (x86)\Origin 2013-08-04 10:09 - 2013-08-04 10:09 - 00000000 ____D C:\Users\RLXD\AppData\Local\Ascaron Entertainment 2013-08-04 10:09 - 2013-06-13 13:34 - 00204695 _____ C:\Windows\DirectX.log 2013-08-03 18:06 - 2012-02-14 20:31 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\Origin 2013-08-03 18:06 - 2012-02-14 20:31 - 00000000 ____D C:\Users\RLXD\AppData\Local\Origin 2013-08-02 20:59 - 2013-01-18 23:24 - 00000000 ____D C:\Users\RLXD\AppData\Local\Apple Computer 2013-08-02 20:46 - 2013-08-02 20:46 - 00666633 _____ C:\Users\RLXD\Downloads\adwcleaner06(1).exe 2013-08-02 20:46 - 2013-08-02 20:46 - 00001298 _____ C:\AdwCleaner[S2].txt 2013-08-02 20:46 - 2013-08-02 20:46 - 00001236 _____ C:\AdwCleaner[R2].txt 2013-08-01 23:45 - 2013-08-01 23:44 - 00000000 ____D C:\Users\RLXD\Documents\Anomaly Warzone Earth 2013-08-01 22:11 - 2012-02-19 13:46 - 00000000 ____D C:\Program Files (x86)\MSI Afterburner 2013-08-01 22:09 - 2012-02-12 13:56 - 00001409 _____ C:\Users\RLXD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-08-01 22:02 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2013-08-01 22:00 - 2013-08-01 21:57 - 00009507 _____ C:\Windows\IE10_main.log 2013-08-01 21:57 - 2013-08-01 21:57 - 19238912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 15404032 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 14329856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 13760512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-08-01 21:57 - 2013-08-01 21:57 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-08-01 21:57 - 2013-08-01 21:57 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 02046976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 01509376 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-08-01 21:57 - 2013-08-01 21:57 - 01441280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-08-01 21:57 - 2013-08-01 21:57 - 01400416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-08-01 21:57 - 2013-08-01 21:57 - 01400416 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-08-01 21:57 - 2013-08-01 21:57 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 01054720 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00905728 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00762368 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00719360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00629248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00599552 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00523264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-08-01 21:57 - 2013-08-01 21:57 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00361984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-08-01 21:57 - 2013-08-01 21:57 - 00357888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00270848 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00247296 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00242200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00232960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00204800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00185344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00173568 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00150528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00138752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00137216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00125440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-08-01 21:57 - 2013-08-01 21:57 - 00073728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-08-01 21:57 - 2013-08-01 21:57 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-08-01 21:56 - 2013-08-01 21:56 - 00055445 _____ C:\Windows\SysWOW64\CCCInstall_201308012156042373.log 2013-08-01 21:56 - 2013-08-01 21:56 - 00000000 ____D C:\ProgramData\ATI 2013-08-01 21:56 - 2013-08-01 21:56 - 00000000 ____D C:\Program Files (x86)\AMD AVT 2013-08-01 21:56 - 2012-02-26 21:18 - 00000000 ____D C:\ProgramData\AMD 2013-08-01 21:55 - 2012-07-29 21:21 - 00000000 ____D C:\Program Files\ATI Technologies 2013-08-01 21:55 - 2012-07-29 21:20 - 00000000 ____D C:\AMD 2013-08-01 21:54 - 2012-03-17 01:13 - 00131622 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2013-08-01 21:51 - 2013-08-01 21:51 - 245472312 _____ (AMD Inc.) C:\Users\RLXD\Downloads\amd_catalyst_13.8_beta.exe 2013-08-01 20:41 - 2013-08-01 20:41 - 00000000 ____D C:\Users\RLXD\AppData\Local\MercurySteam 2013-08-01 11:40 - 2012-02-12 13:56 - 00000000 ____D C:\Users\RLXD 2013-08-01 11:39 - 2013-08-01 11:39 - 00337108 _____ C:\Users\RLXD\Downloads\Network_Meter.zip 2013-08-01 11:39 - 2013-08-01 11:39 - 00206064 _____ C:\Users\RLXD\Downloads\All_CPU_Meter.zip 2013-08-01 11:39 - 2012-10-01 00:12 - 00000765 _____ C:\Users\RLXD\AppData\Roaming\Network Meter_Settings.ini 2013-08-01 11:34 - 2013-08-01 11:34 - 00194110 _____ C:\Users\RLXD\Downloads\Resident Evil 6 (Vibrant).rar 2013-08-01 11:00 - 2013-02-04 12:00 - 00124465 _____ C:\ProgramData\Network_Meter_Data.csv 2013-08-01 10:52 - 2013-08-01 10:52 - 00000000 ____D C:\Users\RLXD\Documents\CAPCOM 2013-08-01 09:52 - 2013-08-01 09:52 - 00000561 _____ C:\Windows\wmsetup.log 2013-08-01 09:52 - 2013-08-01 09:52 - 00000000 ____D C:\Users\RLXD\Documents\Riptide 2013-08-01 09:49 - 2013-05-07 23:17 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\FEZ 2013-07-31 19:17 - 2013-07-31 19:17 - 00267437 _____ C:\Users\RLXD\Downloads\dirh_latest.zip 2013-07-27 12:53 - 2013-07-27 12:52 - 00000000 ____D C:\Users\RLXD\Desktop\Cube World 2013-07-27 12:52 - 2013-07-27 12:51 - 29600281 _____ C:\Users\RLXD\Downloads\3DMGAME-Cube.World._.Fixed-3DM.7z 2013-07-24 02:39 - 2013-07-24 02:39 - 07918816 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll 2013-07-24 02:39 - 2013-07-24 02:39 - 01043000 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll 2013-07-24 02:39 - 2013-07-24 02:39 - 00157736 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdhcp64.dll 2013-07-24 02:39 - 2013-07-24 02:39 - 00142304 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdhcp32.dll 2013-07-24 02:39 - 2013-07-24 02:39 - 00126336 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll 2013-07-24 02:39 - 2013-07-24 02:39 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll 2013-07-24 02:39 - 2013-07-24 02:39 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll 2013-07-24 02:39 - 2013-07-24 02:39 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll 2013-07-24 02:39 - 2013-07-24 02:39 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll 2013-07-24 02:39 - 2013-06-05 01:12 - 00115512 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiu9p64.dll 2013-07-24 02:39 - 2011-12-03 05:22 - 01251120 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx64.dll 2013-07-24 02:39 - 2011-12-03 04:57 - 09066784 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atidxx64.dll 2013-07-24 02:39 - 2011-12-03 04:21 - 00143304 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiuxp64.dll 2013-07-24 02:39 - 2011-12-03 04:20 - 00098496 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiu9pag.dll 2013-07-24 02:38 - 2013-07-24 02:38 - 06532912 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdag.dll 2013-07-24 02:38 - 2013-07-24 02:38 - 06475232 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdva.dll 2013-07-24 02:38 - 2013-06-05 01:11 - 07607720 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd64.dll 2013-07-24 02:38 - 2013-06-05 01:11 - 07093744 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd6a.dll 2013-07-24 02:36 - 2013-07-24 02:36 - 12721664 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmdag.sys 2013-07-24 02:19 - 2013-07-24 02:19 - 00229376 _____ C:\Windows\system32\clinfo.exe 2013-07-24 02:18 - 2013-07-24 02:18 - 28193280 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl64.dll 2013-07-24 02:18 - 2013-07-24 02:18 - 00098816 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OpenVideo64.dll 2013-07-24 02:18 - 2013-07-24 02:18 - 00086528 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OVDecode64.dll 2013-07-24 02:18 - 2013-07-24 02:18 - 00083456 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OpenVideo.dll 2013-07-24 02:18 - 2013-07-24 02:18 - 00073216 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OVDecode.dll 2013-07-24 02:16 - 2013-07-24 02:16 - 23761408 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll 2013-07-24 02:16 - 2013-07-24 02:16 - 00129536 _____ (AMD) C:\Windows\system32\coinst_13.20.dll 2013-07-24 02:14 - 2013-07-24 02:14 - 00063488 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2013-07-24 02:14 - 2013-07-24 02:14 - 00057344 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2013-07-24 02:06 - 2013-07-24 02:06 - 00548824 _____ C:\Windows\SysWOW64\atiapfxx.blb 2013-07-24 02:06 - 2013-07-24 02:06 - 00548824 _____ C:\Windows\system32\atiapfxx.blb 2013-07-24 02:04 - 2013-07-24 02:04 - 00368640 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe 2013-07-24 02:03 - 2013-07-24 02:03 - 15716352 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd64.dll 2013-07-24 02:03 - 2013-07-24 02:03 - 00062464 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt64.dll 2013-07-24 02:03 - 2013-07-24 02:03 - 00055808 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl64.dll 2013-07-24 02:03 - 2013-07-24 02:03 - 00052224 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll 2013-07-24 02:03 - 2013-07-24 02:03 - 00049152 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll 2013-07-24 02:00 - 2013-07-24 02:00 - 25609728 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atio6axx.dll 2013-07-24 02:00 - 2013-07-24 02:00 - 14302208 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll 2013-07-24 01:42 - 2013-06-05 00:03 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll 2013-07-24 01:41 - 2013-07-24 01:41 - 21624832 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll 2013-07-24 01:41 - 2013-07-24 01:41 - 00574976 _____ (AMD) C:\Windows\system32\atieclxx.exe 2013-07-24 01:41 - 2013-07-24 01:41 - 00026112 _____ (AMD) C:\Windows\system32\atimuixx.dll 2013-07-24 01:40 - 2013-07-24 01:40 - 00239616 _____ (AMD) C:\Windows\system32\atiesrxx.exe 2013-07-24 01:39 - 2013-07-24 01:39 - 00190976 _____ (AMD) C:\Windows\system32\atitmm64.dll 2013-07-24 01:25 - 2013-07-24 01:25 - 03399312 _____ C:\Windows\system32\atiumd6a.cap 2013-07-24 01:16 - 2013-07-24 01:16 - 03433360 _____ C:\Windows\SysWOW64\atiumdva.cap 2013-07-24 01:11 - 2012-07-28 03:15 - 01091584 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll 2013-07-24 01:11 - 2012-01-19 18:53 - 00824320 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll 2013-07-24 01:10 - 2013-07-24 01:10 - 00617472 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys 2013-07-24 01:10 - 2013-07-24 01:10 - 00100352 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll 2013-07-24 01:10 - 2013-07-24 01:10 - 00096768 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll 2013-07-24 01:10 - 2013-07-24 01:10 - 00075264 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6pxx.dll 2013-07-24 01:10 - 2013-07-24 01:10 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll 2013-07-24 01:10 - 2013-07-24 01:10 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll 2013-07-24 01:08 - 2013-07-24 01:08 - 00095744 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdave64.dll 2013-07-24 01:08 - 2013-07-24 01:08 - 00090112 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdave32.dll 2013-07-24 01:08 - 2013-07-24 01:08 - 00089088 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atisamu64.dll 2013-07-24 01:07 - 2013-07-24 01:07 - 00080896 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atisamu32.dll 2013-07-24 01:06 - 2013-07-24 01:06 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\ati2erec.dll 2013-07-23 20:29 - 2013-07-23 20:29 - 00051200 _____ C:\Windows\system32\kdbsdk64.dll 2013-07-23 20:24 - 2013-07-23 20:24 - 00038912 _____ C:\Windows\SysWOW64\kdbsdk32.dll 2013-07-23 01:42 - 2012-11-03 00:18 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\foobar2000 2013-07-21 21:51 - 2012-12-03 01:18 - 00000000 ____D C:\Users\RLXD\AppData\Local\My Games 2013-07-21 21:51 - 2012-02-13 00:28 - 00000000 ____D C:\Users\RLXD\Documents\My Games 2013-07-21 10:45 - 2013-07-21 10:45 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_MijXfilt_01009.Wdf 2013-07-21 10:35 - 2013-07-21 10:35 - 00666633 _____ C:\Users\RLXD\Downloads\adwcleaner06.exe 2013-07-21 10:35 - 2013-07-21 10:35 - 00001441 _____ C:\AdwCleaner[S1].txt 2013-07-21 10:35 - 2013-07-21 10:35 - 00001379 _____ C:\AdwCleaner[R1].txt 2013-07-21 10:05 - 2012-12-22 15:02 - 00000000 ____D C:\Users\RLXD\AppData\Local\Google 2013-07-21 10:05 - 2012-12-22 15:02 - 00000000 ____D C:\Program Files (x86)\Google 2013-07-21 10:04 - 2013-07-21 10:04 - 21703480 _____ (Mozilla) C:\Users\RLXD\Downloads\Firefox Setup 22.0.exe 2013-07-21 09:52 - 2013-02-18 02:39 - 00000000 ____D C:\Program Files (x86)\i-Funbox DevTeam 2013-07-21 09:51 - 2013-07-21 09:51 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\RLXD\Downloads\SpyHunter-Installer.exe 2013-07-21 09:38 - 2012-11-04 21:55 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2013-07-21 09:30 - 2013-07-21 09:29 - 00000088 _____ C:\Windows\DeleteOnReboot.bat 2013-07-21 09:21 - 2013-07-21 09:17 - 04117346 _____ C:\Users\RLXD\Downloads\MotioninJoy_071001_signed.zip 2013-07-21 09:18 - 2013-07-21 09:18 - 00000000 ____D C:\ProgramData\simplitec 2013-07-21 09:17 - 2013-07-21 09:17 - 00003898 _____ C:\Windows\System32\Tasks\DealPlyLiveUpdateTaskMachineUA 2013-07-21 09:17 - 2013-07-21 09:17 - 00003646 _____ C:\Windows\System32\Tasks\DealPlyLiveUpdateTaskMachineCore 2013-07-21 09:13 - 2012-05-06 16:51 - 00000000 ____D C:\Users\RLXD\Documents\Square Enix 2013-07-20 22:42 - 2013-07-20 22:42 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\gd.sos.McPixel 2013-07-20 22:16 - 2013-07-20 22:16 - 00000000 ____D C:\Users\RLXD\Documents\SART 2013-07-16 20:08 - 2012-02-24 01:43 - 00000000 ____D C:\Users\RLXD\Documents\SavedGames 2013-07-16 19:57 - 2013-07-16 19:57 - 00001024 _____ C:\Users\Public\Desktop\Hotspot Shield.lnk 2013-07-16 19:57 - 2013-07-16 19:57 - 00000020 ___SH C:\Users\fbwuser\ntuser.ini 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Vorlagen 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Startmenü 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Netzwerkumgebung 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Lokale Einstellungen 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Eigene Dateien 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Druckumgebung 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Documents\Eigene Musik 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Documents\Eigene Bilder 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\AppData\Local\Verlauf 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\AppData\Local\Anwendungsdaten 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Anwendungsdaten 2013-07-16 19:57 - 2012-05-02 21:31 - 00000000 ____D C:\Program Files (x86)\Hotspot Shield 2013-07-16 10:20 - 2013-05-02 11:16 - 00000000 ____D C:\Program Files (x86)\RivaTuner Statistics Server 2013-07-16 07:41 - 2013-07-16 07:41 - 00001086 _____ C:\Users\RLXD\Desktop\MSI Afterburner.lnk 2013-07-16 07:41 - 2013-07-14 13:03 - 00003024 _____ C:\Windows\System32\Tasks\RTSS 2013-07-16 07:40 - 2013-07-16 07:38 - 15851608 _____ C:\Users\RLXD\Downloads\MSIAfterburnerSetup300Beta11.zip 2013-07-15 01:41 - 2013-07-13 22:23 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\Might & Magic Heroes VI 2013-07-14 22:50 - 2013-07-14 22:49 - 00000000 ____D C:\Windows\system32\MRT 2013-07-14 19:56 - 2013-01-26 01:16 - 00000000 ____D C:\Users\RLXD\AppData\Local\Spotify 2013-07-14 15:47 - 2013-07-14 15:47 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\fltk.org 2013-07-14 15:47 - 2013-07-14 15:47 - 00000000 ____D C:\ProgramData\fltk.org 2013-07-14 15:47 - 2012-03-04 21:10 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2013-07-14 15:39 - 2013-07-14 15:39 - 290294456 _____ C:\Users\RLXD\Desktop\ss2_for_d3_by_kamikazze.7z 2013-07-14 15:38 - 2013-07-14 15:38 - 31034426 _____ C:\Users\RLXD\Desktop\ADaOB-v030.7z 2013-07-14 15:28 - 2013-04-26 22:22 - 00013888 _____ C:\Users\RLXD\Documents\TombRaider.log 2013-07-14 13:01 - 2013-07-14 13:01 - 07321473 _____ C:\Users\RLXD\Downloads\RTSSSetup520-[Guru3D.com](1).exe 2013-07-14 12:59 - 2013-07-14 12:59 - 07321473 _____ C:\Users\RLXD\Downloads\RTSSSetup520-[Guru3D.com].exe 2013-07-14 12:59 - 2012-02-13 22:04 - 00000000 ____D C:\Windows\SysWOW64\directx 2013-07-14 12:57 - 2013-07-14 12:57 - 15569364 _____ C:\Users\RLXD\Downloads\MSIAfterburnerSetup300Beta10-[Guru3D.com].zip 2013-07-14 00:44 - 2012-04-02 09:44 - 00692104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-07-14 00:44 - 2012-04-02 09:44 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-07-14 00:44 - 2012-02-12 14:26 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-07-14 00:41 - 2013-07-14 00:41 - 00000000 ____D C:\ProgramData\Package Cache 2013-07-13 22:51 - 2013-07-13 22:23 - 00000000 ____D C:\Users\RLXD\Documents\Might & Magic Heroes VI 2013-07-13 09:57 - 2013-06-20 21:06 - 00001962 _____ C:\Windows\PFRO.log 2013-07-12 21:14 - 2013-07-12 21:14 - 00001865 _____ C:\Users\Public\Desktop\ImgBurn.lnk 2013-07-12 21:13 - 2013-07-12 21:13 - 03469871 _____ (LIGHTNING UK!) C:\Users\RLXD\Downloads\SetupImgBurn_2.5.8.0.exe 2013-07-11 22:11 - 2013-07-11 22:11 - 00000000 ____D C:\ProgramData\Nexon 2013-07-11 15:39 - 2013-07-11 15:39 - 00001552 _____ C:\Users\RLXD\Documents\Cards.txt 2013-07-11 14:09 - 2013-07-11 14:09 - 00000000 ____D C:\Users\RLXD\Documents\Gaslamp Games 2013-07-11 13:00 - 2012-05-11 21:22 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2013-07-11 13:00 - 2012-05-11 21:22 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-07-11 13:00 - 2012-02-12 13:43 - 00000000 ____D C:\Windows\Panther 2013-07-11 13:00 - 2011-04-12 09:55 - 00000000 ____D C:\Program Files\Windows Journal 2013-07-11 13:00 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Defender 2013-07-11 13:00 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2013-07-11 13:00 - 2009-07-14 06:45 - 04923616 _____ C:\Windows\system32\FNTCACHE.DAT 2013-07-11 01:13 - 2012-02-29 01:13 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-07-08 02:27 - 2013-07-08 01:18 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\MultiBit 2013-07-08 01:53 - 2012-04-30 22:38 - 00000000 ____D C:\Users\RLXD\AppData\Local\SKIDROW 2013-07-08 01:49 - 2012-02-18 14:04 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\DAEMON Tools Lite 2013-07-08 01:29 - 2013-07-08 01:29 - 00000667 _____ C:\Users\RLXD\Desktop\GUIMiner.lnk 2013-07-08 01:22 - 2013-07-08 01:22 - 07731626 _____ (Igor Pavlov) C:\Users\RLXD\Downloads\guiminer-20121203.exe 2013-07-08 01:17 - 2013-07-08 01:16 - 12234752 _____ C:\Users\RLXD\Downloads\multibit-0.5.12-windows.exe 2013-07-08 01:16 - 2013-01-01 13:45 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\Bitcoin 2013-07-08 00:41 - 2013-07-08 00:41 - 09915013 _____ (Bitcoin project) C:\Users\RLXD\Downloads\bitcoin-0.7.2-win32-setup.exe 2013-07-07 23:42 - 2013-02-12 22:12 - 00000991 _____ C:\Users\RLXD\Desktop\SABnzbd.lnk 2013-07-07 23:41 - 2013-07-07 23:41 - 10804841 _____ C:\Users\RLXD\Downloads\SABnzbd-0.7.14-win32-setup.exe 2013-07-07 00:10 - 2013-06-16 13:16 - 00000552 _____ C:\SSUUpdater.log 2013-07-07 00:08 - 2013-07-07 00:08 - 00000000 ____D C:\ProgramData\Splashtop ZeroAccess: C:\Windows\Installer\{1ab9e80a-6010-cf06-7b01-46b72b6ce766} C:\Windows\Installer\{1ab9e80a-6010-cf06-7b01-46b72b6ce766}\@ ZeroAccess: C:\Users\RLXD\AppData\Local\{1ab9e80a-6010-cf06-7b01-46b72b6ce766} C:\Users\RLXD\AppData\Local\{1ab9e80a-6010-cf06-7b01-46b72b6ce766}\@ ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-08-04 13:08 ==================== End Of Log ============================ Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 04-08-2013 Ran by RLXD at 2013-08-05 03:11:04 Running from C:\Users\RLXD\Downloads Boot Mode: Normal ========================================================== ==================== Installed Programs ======================= µTorrent (x32 Version: 3.1.2) A New Beginning - Final Cut (x32) A.R.E.S. (x32) Ace of Spades (x32) Acronis True Image WD*Edition (x32 Version: 13.0.14164) Adobe AIR (x32 Version: 3.5.0.1060) Adobe Flash Player 11 ActiveX (x32 Version: 11.7.700.224) Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.94) Afterfall InSanity Extended Edition (x32) AGEIA GAME System Software (x32 Version: 2.7.3) AIDA64 Extreme Edition v2.20 (x32 Version: 2.20) AIMP3 (x32 Version: v3.00.976) AirMech (x32) Alan Wake (x32) Alan Wake's American Nightmare (x32) AMD Accelerated Video Transcoding (Version: 13.20.100.30723) AMD APP SDK Runtime (Version: 10.0.1084.4) AMD Catalyst Control Center (x32 Version: 2013.0723.1944.33607) AMD Catalyst Install Manager (Version: 8.0.915.0) AMD Drag and Drop Transcoding (Version: 2.00.0000) AMD Media Foundation Decoders (Version: 1.0.80723.2017) AMD Wireless Display v3.0 (Version: 1.0.0.12) AMD Wireless Display v3.0 (Version: 1.0.0.13) Anna (x32) Anomaly Warzone Earth (x32) Apple Application Support (x32 Version: 2.3.4) Apple Mobile Device Support (Version: 6.1.0.13) Apple Software Update (x32 Version: 2.1.3.127) Application Profiles (x32 Version: 2.0.4427.36392) Application Profiles (x32 Version: 2.0.4560.34681) Application Profiles (x32 Version: 2.0.4888.34279) Atlantica (x32 Version: 31408) AudioGenie (x32) Avira Free Antivirus (x32 Version: 13.0.0.3884) AviSynth 2.5 (x32) Awesomenauts (x32) Bastion (x32) Batman: Arkham City™ (x32) Battlefield 3™ (x32 Version: 1.5.0.0) Battlelog Web Plugins (x32 Version: 1.132.0) BioShock (x32) BioShock 2 (x32) BioShock Infinite (x32) Blocks That Matter (x32) Bonjour (Version: 3.0.0.10) Borderlands 2 (x32) Brütal Legend (x32) Cargo Commander (x32) Catalyst Control Center - Branding (x32 Version: 1.00.0000) Catalyst Control Center Graphics Previews Common (x32 Version: 2013.0723.1944.33607) Catalyst Control Center InstallProxy (x32 Version: 2013.0723.1944.33607) Catalyst Control Center Localization All (x32 Version: 2013.0723.1944.33607) CCC Help Chinese Standard (x32 Version: 2013.0723.1943.33607) CCC Help Chinese Traditional (x32 Version: 2013.0723.1943.33607) CCC Help Czech (x32 Version: 2013.0723.1943.33607) CCC Help Danish (x32 Version: 2013.0723.1943.33607) CCC Help Dutch (x32 Version: 2013.0723.1943.33607) CCC Help English (x32 Version: 2013.0723.1943.33607) CCC Help Finnish (x32 Version: 2013.0723.1943.33607) CCC Help French (x32 Version: 2013.0723.1943.33607) CCC Help German (x32 Version: 2013.0723.1943.33607) CCC Help Greek (x32 Version: 2013.0723.1943.33607) CCC Help Hungarian (x32 Version: 2013.0723.1943.33607) CCC Help Italian (x32 Version: 2013.0723.1943.33607) CCC Help Japanese (x32 Version: 2013.0723.1943.33607) CCC Help Korean (x32 Version: 2013.0723.1943.33607) CCC Help Norwegian (x32 Version: 2013.0723.1943.33607) CCC Help Polish (x32 Version: 2013.0723.1943.33607) CCC Help Portuguese (x32 Version: 2013.0723.1943.33607) CCC Help Russian (x32 Version: 2013.0723.1943.33607) CCC Help Spanish (x32 Version: 2013.0723.1943.33607) CCC Help Swedish (x32 Version: 2013.0723.1943.33607) CCC Help Thai (x32 Version: 2013.0723.1943.33607) CCC Help Turkish (x32 Version: 2013.0723.1943.33607) ccc-utility64 (Version: 2013.0723.1944.33607) Chaos on Deponia (x32) clrmamepro (x32 Version: 4.00.08.1) Combined Community Codec Pack 2011-11-11 (x32 Version: 2011.11.11.0) ControlCenter (x32 Version: 2.2.063) Core Temp 1.0 RC4 (Version: 1.0) Cortex Command (x32) Counter-Strike: Global Offensive (x32) Creative Systeminformationen (x32 Version: 1.10) Cry of Fear (x32) Crysis®3 (x32 Version: 1.0.0.0) CrystalDiskInfo 4.2.0a (x32 Version: 4.2.0a) CrystalDiskMark 3.0.2f Shizuku Edition (Version: 3.0.2f) Curse Client (HKCU Version: 5.1.1.370) DAEMON Tools Lite (x32 Version: 4.45.4.0315) Dead Island Riptide (x32) Dead Pixels (x32) Deadlight (x32) Desura (x32 Version: 100.53) Desura: 3079 (x32 Version: Full) Desura: Cute Things Dying Violently (x32 Version: Full) Desura: Escape Goat (x32 Version: Full) Desura: Guncraft (x32 Version: Pre-Order) Desura: La-Mulana (x32 Version: Full) Desura: Monster RPG 2 (x32 Version: Full) Desura: Paranautical Activity (x32 Version: Beta) Desura: Soulcaster (x32 Version: Full) Desura: Soulcaster II (x32 Version: Full) Diablo III (x32 Version: 1.0.7.14633) DiRT Showdown (x32) Disciples III: Renaissance (x32) Dishonored (x32 Version: 1.0) DLC Quest (x32) DmC Devil May Cry (x32) Don't Starve (x32) Dungeons of Dredmor (x32) Dxtory 2.0.109 (x32 Version: 2.0.109) Dynamite Jack (x32) eaner (Version: 4.02) EasyBoost (x32 Version: 1.0.7.1) EasyViewer (x32 Version: 1.3.0.9) ESN Sonar (x32 Version: 0.70.4) Far Cry 3 (x32 Version: 1.04) FEZ (x32) ffdshow v1.1.3800 [2011-03-28] (x32 Version: 1.1.3800.0) FileZilla Client 3.6.0.2 (x32 Version: 3.6.0.2) FINAL FANTASY VII (x32) FINAL FANTASY XIV - A Realm Reborn (Beta Version) (x32 Version: 0.9.1000) FLY'N (x32) foobar2000 v1.2.2 (x32 Version: 1.2.2) Foxit Reader (x32 Version: 6.0.3.524) Galaxy on Fire 2™ Full HD (x32) Gratuitous Space Battles (x32) Guild Wars 2 (x32) GundeadliGne (x32) Hack, Slash, Loot (x32) Half-Life 2 (x32) Hitman: Absolution (x32) Hitogata Happa (x32) Home (x32) Hotline Miami (x32) Hotspot Shield 3.09 (x32 Version: 3.09) I Am Alive (x32) iCloud (Version: 2.1.2.8) ImgBurn (x32 Version: 2.5.8.0) iNFekt NFO Viewer (Version: 0.8.5) Intel(R) Management Engine Components (x32 Version: 7.1.50.1172) Ion Assault (x32) iTunes (Version: 11.0.4.4) Java 7 Update 25 (x32 Version: 7.0.250) Java Auto Updater (x32 Version: 2.1.9.5) Java(TM) 6 Update 22 (x32 Version: 6.0.220) Java(TM) 6 Update 25 (x32 Version: 6.0.250) king.com (remove only) (x32) Lagarith Lossless Codec (1.3.27) (x32) Last.fm Scrobbler 2.1.35 (x32) Live Update 5 (x32 Version: 5.0.106) Lost Chronicles of Zerzura (x32) MacGuffin's Curse (x32) Magicka (x32) Mark of the Ninja (x32) McPixel (x32) MediaMonkey 4.0 (x32 Version: 4.0) Microsoft .NET Framework 4.5 (Version: 4.5.50709) Microsoft Application Error Reporting (Version: 12.0.6015.5000) Microsoft Chart Controls for Microsoft .NET Framework 3.5 (KB2500170) (x32 Version: 3.5.30730.0) Microsoft Games for Windows - LIVE Redistributable (x32 Version: 3.5.92.0) Microsoft Games for Windows Marketplace (x32 Version: 3.5.50.0) Microsoft Office Access Runtime (English) 2007 (x32 Version: 12.0.6612.1000) Microsoft Silverlight (Version: 5.1.20513.0) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.50727.42) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.56336) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (Version: 9.0.21022) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411 (x32 Version: 9.0.30411) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (x32 Version: 11.0.50727.1) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (x32 Version: 11.0.50727.1) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (Version: 11.0.50727) Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (Version: 11.0.50727) Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (x32 Version: 11.0.50727) Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (x32 Version: 11.0.50727) Microsoft XNA Framework Redistributable 3.1 (x32 Version: 3.1.10527.0) Microsoft XNA Framework Redistributable 4.0 (x32 Version: 4.0.20823.0) Microsoft XNA Framework Redistributable 4.0 Refresh (x32 Version: 4.0.30901.0) Microsoft_VC80_CRT_x86 (x32 Version: 8.0.50727.4053) Microsoft_VC90_CRT_x86 (x32 Version: 1.00.0000) Microsoft-Maus- und Tastatur-Center (Version: 1.1.500.0) Might & Magic ® Heroes ® VI (x32) Monaco (x32) Mozilla Firefox 22.0 (x86 de) (x32 Version: 22.0) Mozilla Maintenance Service (x32 Version: 22.0) Mozilla Thunderbird 17.0.7 (x86 de) (x32 Version: 17.0.7) MSI Afterburner 3.0.0 Beta 11 (x32 Version: 3.0.0 Beta 11) Noitu Love 2 Devolution (x32) NVIDIA PhysX (x32 Version: 9.12.0213) Offspring Fling! (x32) OpenAL (x32) OpenOffice.org 3.3 (x32 Version: 3.3.9567) Orcs Must Die! 2 (x32) Organ Trail: Director's Cut (x32) Origin (x32 Version: 8.5.0.4554) Party of Sin (x32) Penny Arcade's On the Rain-Slick Precipice of Darkness 3 (x32) Penny Arcade's On the Rain-Slick Precipice of Darkness 4 (x32) Pidgin (x32 Version: 2.10.7) Pluto Client (x32) Psychonauts (x32) PunkBuster Services (x32 Version: 0.992) QuickPar 0.9 (x32 Version: 0.9) QuickSFV (Remove only) QuickTime (x32 Version: 7.74.80.86) RadeonPro 1.0 (Build 1.1.1.0) (x32) RAGE (x32) Rapture3D 2.4.11 Game (x32) Rayman Origins (x32) Realtek Ethernet Controller Driver (x32 Version: 7.67.1226.2012) Realtek High Definition Audio Driver (x32 Version: 6.0.1.6657) Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.34.0) Resident Evil 6 / Biohazard 6 (x32) Retro City Rampage™ (x32) Risen 2 - Dark Waters (x32) RivaTuner Statistics Server 5.2.0 (x32 Version: 5.2.0) ROCCAT Kone[+] Mouse Driver (x32) Rochard (x32) SABnzbd 0.7.14 (x32 Version: 0.7.14) Sacred 2 Gold (x32) Saints Row 2 (x32) Sanctum 2 (x32) Scribblenauts Unlimited (x32) Serious Sam 3: BFE (x32) SHARKOON DarkGlider Gaming Mouse (x32) Sid Meier's Civilization V (x32) Sine Mora (x32) SiSoftware Sandra Lite 2013.SP4 (Version: 19.50.2013.7) Skype™ 6.0 (x32 Version: 6.0.126) Snapshot (x32) Sniper Elite: Nazi Zombie Army (x32) Sonic & All-Stars Racing Transformed (x32) Spec Ops: The Line (x32) Splashtop Software Updater (x32 Version: 1.5.6.11) Splashtop Streamer (x32 Version: 2.4.0.1) Spotify (HKCU Version: 0.9.1.57.ge7405149) Spybot - Search & Destroy (x32 Version: 1.6.2) Steam (x32 Version: 1.0.0.0) Storm in a Teacup (x32) Strong Bad Episode 1: Homestar Ruiner (x32) Super Meat Boy (x32) Super-Charger (x32 Version: 1.0.117) Syndicate (x32) System Requirements Lab CYRI (x32 Version: 4.5.1.0) System Shock 2 (x32) TeamingGenie (x32 Version: 1.0.1.3) TeamSpeak 3 Client (Version: 3.0.8.1) TeamViewer 8 (x32 Version: 8.0.17292) TechPowerUp GPU-Z (x32) Terraria (x32) The Basement Collection (x32) The Binding Of Isaac (x32) The Book of Unwritten Tales (x32) The Book of Unwritten Tales: The Critter Chronicles (x32) The Secret World (x32 Version: 1.0.0) The Walking Dead (x32) They Bleed Pixels (x32) To the Moon (x32) Tom Clancy's Splinter Cell: Conviction (x32) Tomb Raider (x32) Torchlight II (x32) Trine 2 (x32) Tweaking.com - Windows Repair (All in One) (x32 Version: 1.8.0) Überwachungstool für die Intel® Turbo-Boost-Technik 2.0 (Version: 2.1.23.0) Ubisoft Game Launcher (x32 Version: 1.0.0.0) Unity Web Player (HKCU Version: ) Unmechanical (x32) Update for Microsoft .NET Framework 4.5 (KB2750147) (x32 Version: 1) Update for Microsoft .NET Framework 4.5 (KB2805221) (x32 Version: 1) Update for Microsoft .NET Framework 4.5 (KB2805226) (x32 Version: 1) Uplay (x32 Version: 2.0) USB Sound Blaster HD (x32 Version: 1.0) VideoGenie (x32 Version: 1.0.0.12) Viking: Battle for Asgard (x32) Warlock - Master of the Arcane (x32) WBFS Manager 3.0 (x32 Version: 3.0) Windows Live ID Sign-in Assistant (Version: 6.500.3165.0) Winki (x32 Version: 3.2.114) WinRAR 4.10 (64-Bit) (Version: 4.10.0) WinSCP 4.0.7 (x32 Version: 4.0.7) Wizorb (x32) Worms Revolution (x32) ==================== Restore Points ========================= 04-08-2013 08:08:50 DirectX wurde installiert 04-08-2013 09:56:37 Removed Dual-Core Optimizer. ==================== Hosts content: ========================== 2009-07-14 04:34 - 2013-07-21 10:10 - 00450371 ____R C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 www.007guard.com 127.0.0.1 007guard.com 127.0.0.1 008i.com 127.0.0.1 www.008k.com 127.0.0.1 008k.com 127.0.0.1 www.00hq.com 127.0.0.1 00hq.com 127.0.0.1 010402.com 127.0.0.1 www.032439.com 127.0.0.1 032439.com 127.0.0.1 www.0scan.com 127.0.0.1 0scan.com 127.0.0.1 www.1000gratisproben.com 127.0.0.1 1000gratisproben.com 127.0.0.1 1001namen.com 127.0.0.1 www.1001namen.com 127.0.0.1 100888290cs.com 127.0.0.1 www.100888290cs.com 127.0.0.1 www.100sexlinks.com 127.0.0.1 100sexlinks.com 127.0.0.1 www.10sek.com 127.0.0.1 10sek.com 127.0.0.1 www.1-2005-search.com 127.0.0.1 1-2005-search.com 127.0.0.1 www.123fporn.info 127.0.0.1 123fporn.info 127.0.0.1 123haustiereundmehr.com 127.0.0.1 www.123haustiereundmehr.com 127.0.0.1 123moviedownload.com There are 1000 more lines. ==================== Scheduled Tasks (whitelisted) ============= Task: {136936E4-3F23-4B9F-B2F8-675D70101B28} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-05-24] (Piriform Ltd) Task: {18B8A6D1-BEB0-4960-8A3A-FA92CFFAE4DE} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => C:\Program Files\Microsoft Device Center\itype.exe [2012-06-26] (Microsoft Corporation) Task: {1BC7E8FE-ABD7-45F6-8CC4-603FEC289FC7} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {5D24C941-B640-4345-B308-4FF7E17DEABD} - System32\Tasks\DealPlyLiveUpdateTaskMachineCore => C:\Program Files (x86)\DealPlyLive\Update\DealPlyLive.exe No File Task: {5E14B62F-E945-4A07-9DAD-16D6EA5539CA} - System32\Tasks\User_Feed_Synchronization-{0B41F018-6579-4320-882F-E13EBD3F2D39} => C:\Windows\system32\msfeedssync.exe [2013-08-01] (Microsoft Corporation) Task: {71F94EA0-0DEB-429F-82C8-7756EDAEF85B} - System32\Tasks\Microsoft_Hardware_Launch_devicecenter_exe => C:\Program Files\Microsoft Device Center\devicecenter.exe [2012-06-26] (Microsoft) Task: {74786F80-F264-4AF5-8004-5B7D11493CE0} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => C:\Program Files\Microsoft Device Center\ipoint.exe [2012-06-26] (Microsoft Corporation) Task: {77C0E459-9D85-48D0-82E9-DBA331F09FB0} - System32\Tasks\DealPlyLiveUpdateTaskMachineUA => C:\Program Files (x86)\DealPlyLive\Update\DealPlyLive.exe No File Task: {94EBC054-2CCC-4E45-A8FA-CF857AECF7B7} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe [2013-07-15] () Task: {A1E7A73E-BE46-4DBE-9E21-8CF57447A553} - System32\Tasks\RTSS => C:\Program Files (x86)\RivaTuner Statistics Server\RTSS.exe [2013-06-14] () Task: {A89224AD-AFD4-4BD4-89A1-6BE4E6CD48E1} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-07-14] (Adobe Systems Incorporated) Task: {AC300B61-F251-4208-80AE-629EE72B97E4} - System32\Tasks\PCMeter\Startup => C:\Program Files (x86)\PCMeter\PCMeterV0.3.exe [2012-08-25] (AddGadgets) Task: {E327EA38-E45D-4402-935A-B6D93F5D7A02} - System32\Tasks\Core Temp Autostart RLXD => C:\Program Files\Core Temp\Core Temp.exe [2012-10-14] () Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineCore.job => C:\Program Files (x86)\DealPlyLive\Update\DealPlyLive.exe Task: C:\Windows\Tasks\DealPlyLiveUpdateTaskMachineUA.job => C:\Program Files (x86)\DealPlyLive\Update\DealPlyLive.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (08/04/2013 01:09:49 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.CRT,processorArchitecture="x86",type="win32",version="8.0.50727.762"1". Die abhängige Assemblierung "Microsoft.VC80.CRT,processorArchitecture="x86",type="win32",version="8.0.50727.762"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (08/04/2013 01:09:49 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.CRT,processorArchitecture="x86",type="win32",version="8.0.50727.762"1". Die abhängige Assemblierung "Microsoft.VC80.CRT,processorArchitecture="x86",type="win32",version="8.0.50727.762"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (08/03/2013 06:02:57 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: sidebar.exe, Version: 6.1.7601.17514, Zeitstempel: 0x4ce79791 Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.17725, Zeitstempel: 0x4ec49b8f Ausnahmecode: 0xc0000374 Fehleroffset: 0x000ce6c3 ID des fehlerhaften Prozesses: 0x1010 Startzeit der fehlerhaften Anwendung: 0xsidebar.exe0 Pfad der fehlerhaften Anwendung: sidebar.exe1 Pfad des fehlerhaften Moduls: sidebar.exe2 Berichtskennung: sidebar.exe3 Error: (08/01/2013 04:13:43 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.CRT,processorArchitecture="x86",type="win32",version="8.0.50727.762"1". Die abhängige Assemblierung "Microsoft.VC80.CRT,processorArchitecture="x86",type="win32",version="8.0.50727.762"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (08/01/2013 04:13:43 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.CRT,processorArchitecture="x86",type="win32",version="8.0.50727.762"1". Die abhängige Assemblierung "Microsoft.VC80.CRT,processorArchitecture="x86",type="win32",version="8.0.50727.762"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (08/01/2013 11:39:15 AM) (Source: PerfOS) (User: ) Description: Error: (08/01/2013 11:39:14 AM) (Source: PerfOS) (User: ) Description: Error: (08/01/2013 11:39:13 AM) (Source: PerfOS) (User: ) Description: Error: (08/01/2013 11:39:12 AM) (Source: PerfOS) (User: ) Description: Error: (08/01/2013 11:38:54 AM) (Source: PerfOS) (User: ) Description: System errors: ============= Error: (08/04/2013 06:30:20 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "WinRing0_1_2_0" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (08/04/2013 06:29:05 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Superfetch" wurde mit folgendem Fehler beendet: %%2 Error: (08/04/2013 06:28:24 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Net.Tcp Listener Adapter" ist vom Dienst "Net.Tcp Port Sharing Service" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1058 Error: (08/04/2013 06:28:24 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Net.Pipe Listener Adapter" ist von folgendem Dienst abhängig: was. Dieser Dienst ist eventuell nicht installiert. Error: (08/04/2013 06:28:24 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Net.Msmq Listener Adapter" ist von folgendem Dienst abhängig: msmq. Dieser Dienst ist eventuell nicht installiert. Error: (08/04/2013 06:28:07 PM) (Source: volmgr) (User: ) Description: Die Initialisierung des Speicherabbildes ist fehlgeschlagen. Error: (08/04/2013 09:46:40 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "WinRing0_1_2_0" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (08/04/2013 09:45:55 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Superfetch" wurde mit folgendem Fehler beendet: %%2 Error: (08/04/2013 09:45:12 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Net.Tcp Listener Adapter" ist vom Dienst "Net.Tcp Port Sharing Service" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1058 Error: (08/04/2013 09:45:12 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Net.Pipe Listener Adapter" ist von folgendem Dienst abhängig: was. Dieser Dienst ist eventuell nicht installiert. Microsoft Office Sessions: ========================= Error: (08/04/2013 01:09:49 PM) (Source: SideBySide)(User: ) Description: Microsoft.VC80.CRT,processorArchitecture="x86",type="win32",version="8.0.50727.762"c:\program files (x86)\Last.fm\ext_skypenotify.dll Error: (08/04/2013 01:09:49 PM) (Source: SideBySide)(User: ) Description: Microsoft.VC80.CRT,processorArchitecture="x86",type="win32",version="8.0.50727.762"c:\program files (x86)\Last.fm\ext_messengernotify.dll Error: (08/03/2013 06:02:57 PM) (Source: Application Error)(User: ) Description: sidebar.exe6.1.7601.175144ce79791ntdll.dll6.1.7601.177254ec49b8fc0000374000ce6c3101001ce9062e7b4f1fcC:\Program Files (x86)\Windows Sidebar\sidebar.exeC:\Windows\SysWOW64\ntdll.dll2954e0ee-fc56-11e2-81c2-8c89a57d4ce9 Error: (08/01/2013 04:13:43 PM) (Source: SideBySide)(User: ) Description: Microsoft.VC80.CRT,processorArchitecture="x86",type="win32",version="8.0.50727.762"c:\program files (x86)\Last.fm\ext_skypenotify.dll Error: (08/01/2013 04:13:43 PM) (Source: SideBySide)(User: ) Description: Microsoft.VC80.CRT,processorArchitecture="x86",type="win32",version="8.0.50727.762"c:\program files (x86)\Last.fm\ext_messengernotify.dll Error: (08/01/2013 11:39:15 AM) (Source: PerfOS)(User: ) Description: Error: (08/01/2013 11:39:14 AM) (Source: PerfOS)(User: ) Description: Error: (08/01/2013 11:39:13 AM) (Source: PerfOS)(User: ) Description: Error: (08/01/2013 11:39:12 AM) (Source: PerfOS)(User: ) Description: Error: (08/01/2013 11:38:54 AM) (Source: PerfOS)(User: ) Description: CodeIntegrity Errors: =================================== Date: 2012-12-08 15:19:23.845 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume4\Windows\System32\MBWrp64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2012-12-08 15:19:23.829 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume4\Windows\System32\MBWrp64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2012-12-08 15:18:56.884 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume4\Windows\System32\MBWrp64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2012-12-08 15:18:56.869 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume4\Windows\System32\MBWrp64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2012-12-08 15:18:51.831 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume4\Windows\System32\MBWrp64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2012-12-08 15:18:51.816 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume4\Windows\System32\MBWrp64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2012-12-04 23:39:21.579 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume4\Windows\System32\MBWrp64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2012-12-04 23:39:21.567 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume4\Windows\System32\MBWrp64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2012-12-04 23:39:21.548 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume4\Windows\System32\MBWrp64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2012-12-04 23:39:21.535 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume4\Windows\System32\MBWrp64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Memory info =========================== Percentage of memory in use: 17% Total physical RAM: 16354.07 MB Available physical RAM: 13434.9 MB Total Pagefile: 16352.25 MB Available Pagefile: 13187.21 MB Total Virtual: 8192 MB Available Virtual: 8191.79 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:119.14 GB) (Free:12.2 GB) NTFS (Disk=0 Partition=2) Drive d: (Volume) (Fixed) (Total:931.51 GB) (Free:13.77 GB) NTFS (Disk=1 Partition=1) Drive e: (Datenhafen) (Fixed) (Total:2328.64 GB) (Free:180.11 GB) NTFS (Disk=2 Partition=2) ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 119 GB) (Disk ID: 06C3B62E) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=119 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows XP) (Size: 932 GB) (Disk ID: 54108E94) Partition 1: (Not Active) - (Size=932 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (Size: 2329 GB) (Disk ID: 05742A4F) Partition: GPT Partition Type ==================== End Of Log ============================ Ist es normal dass meine Hosts-Datei dermaßen mit irgendwelchem Schrott zugemüllt ist? O_o |
05.08.2013, 08:16 | #4 |
/// the machine /// TB-Ausbilder | Spiele minimieren sich in unregelmäßigen Abständen und Add-On "Plus-HD-2.3" entfernen. Ja, das sind alles böse Seiten, und solange die in der Hosts stehen kannste die nit ansurfen Scan mit Combofix
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
05.08.2013, 10:02 | #5 |
| Spiele minimieren sich in unregelmäßigen Abständen und Add-On "Plus-HD-2.3" entfernen.Code:
ATTFilter ComboFix 13-08-04.01 - RLXD 05.08.2013 10:55:34.2.8 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.49.1031.18.16354.13682 [GMT 2:00] ausgeführt von:: c:\users\RLXD\Downloads\ComboFix.exe AV: Avira Desktop *Disabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C} SP: Avira Desktop *Disabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691} . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\users\RLXD\AppData\Roaming\poclbm c:\users\RLXD\AppData\Roaming\poclbm\poclbm.ini c:\windows\SwSys1.bmp c:\windows\SwSys2.bmp c:\windows\SysWow64\DEBUG.log c:\windows\SysWow64\tmp9988.tmp c:\windows\SysWow64\tmp9999.tmp E:\install.exe . . ((((((((((((((((((((((( Dateien erstellt von 2013-07-05 bis 2013-08-05 )))))))))))))))))))))))))))))) . . 2013-08-05 01:10 . 2013-08-05 01:10 -------- d-----w- C:\FRST 2013-08-04 08:09 . 2013-08-04 08:09 -------- d-----w- c:\users\RLXD\AppData\Local\Ascaron Entertainment 2013-08-01 19:56 . 2013-08-01 19:56 -------- d-----w- c:\programdata\ATI 2013-08-01 19:56 . 2013-08-01 19:56 -------- d-----w- c:\program files (x86)\AMD AVT 2013-08-01 18:41 . 2013-08-01 18:41 -------- d-----w- c:\users\RLXD\AppData\Local\MercurySteam 2013-08-01 09:40 . 2013-08-04 18:00 137118 ----a-w- c:\users\RLXD\Network_Meter_Data.js 2013-07-24 00:39 . 2013-07-24 00:39 157736 ----a-w- c:\windows\system32\amdhcp64.dll 2013-07-24 00:39 . 2013-07-24 00:39 142304 ----a-w- c:\windows\SysWow64\amdhcp32.dll 2013-07-24 00:39 . 2013-07-24 00:39 78432 ----a-w- c:\windows\system32\atimpc64.dll 2013-07-24 00:39 . 2013-07-24 00:39 78432 ----a-w- c:\windows\system32\amdpcom64.dll 2013-07-24 00:39 . 2013-07-24 00:39 71704 ----a-w- c:\windows\SysWow64\atimpc32.dll 2013-07-24 00:39 . 2013-07-24 00:39 71704 ----a-w- c:\windows\SysWow64\amdpcom32.dll 2013-07-24 00:39 . 2013-07-24 00:39 126336 ----a-w- c:\windows\SysWow64\atiuxpag.dll 2013-07-24 00:39 . 2013-07-24 00:39 1043000 ----a-w- c:\windows\SysWow64\aticfx32.dll 2013-07-24 00:39 . 2013-07-24 00:39 7918816 ----a-w- c:\windows\SysWow64\atidxx32.dll 2013-07-24 00:38 . 2013-07-24 00:38 6475232 ----a-w- c:\windows\SysWow64\atiumdva.dll 2013-07-24 00:38 . 2013-07-24 00:38 6532912 ----a-w- c:\windows\SysWow64\atiumdag.dll 2013-07-24 00:36 . 2013-07-24 00:36 12721664 ----a-w- c:\windows\system32\drivers\atikmdag.sys 2013-07-24 00:19 . 2013-07-24 00:19 229376 ----a-w- c:\windows\system32\clinfo.exe 2013-07-24 00:18 . 2013-07-24 00:18 98816 ----a-w- c:\windows\system32\OpenVideo64.dll 2013-07-24 00:18 . 2013-07-24 00:18 83456 ----a-w- c:\windows\SysWow64\OpenVideo.dll 2013-07-24 00:18 . 2013-07-24 00:18 86528 ----a-w- c:\windows\system32\OVDecode64.dll 2013-07-24 00:18 . 2013-07-24 00:18 73216 ----a-w- c:\windows\SysWow64\OVDecode.dll 2013-07-24 00:18 . 2013-07-24 00:18 28193280 ----a-w- c:\windows\system32\amdocl64.dll 2013-07-24 00:16 . 2013-07-24 00:16 129536 ----a-w- c:\windows\system32\coinst_13.20.dll 2013-07-24 00:16 . 2013-07-24 00:16 23761408 ----a-w- c:\windows\SysWow64\amdocl.dll 2013-07-24 00:14 . 2013-07-24 00:14 63488 ----a-w- c:\windows\system32\OpenCL.dll 2013-07-24 00:14 . 2013-07-24 00:14 57344 ----a-w- c:\windows\SysWow64\OpenCL.dll 2013-07-24 00:04 . 2013-07-24 00:04 368640 ----a-w- c:\windows\system32\atiapfxx.exe 2013-07-24 00:03 . 2013-07-24 00:03 62464 ----a-w- c:\windows\system32\aticalrt64.dll 2013-07-24 00:03 . 2013-07-24 00:03 52224 ----a-w- c:\windows\SysWow64\aticalrt.dll 2013-07-24 00:03 . 2013-07-24 00:03 55808 ----a-w- c:\windows\system32\aticalcl64.dll 2013-07-24 00:03 . 2013-07-24 00:03 49152 ----a-w- c:\windows\SysWow64\aticalcl.dll 2013-07-24 00:03 . 2013-07-24 00:03 15716352 ----a-w- c:\windows\system32\aticaldd64.dll 2013-07-24 00:00 . 2013-07-24 00:00 25609728 ----a-w- c:\windows\system32\atio6axx.dll 2013-07-24 00:00 . 2013-07-24 00:00 14302208 ----a-w- c:\windows\SysWow64\aticaldd.dll 2013-07-23 23:41 . 2013-07-23 23:41 26112 ----a-w- c:\windows\system32\atimuixx.dll 2013-07-23 23:41 . 2013-07-23 23:41 21624832 ----a-w- c:\windows\SysWow64\atioglxx.dll 2013-07-23 23:41 . 2013-07-23 23:41 574976 ----a-w- c:\windows\system32\atieclxx.exe 2013-07-23 23:40 . 2013-07-23 23:40 239616 ----a-w- c:\windows\system32\atiesrxx.exe 2013-07-23 23:39 . 2013-07-23 23:39 190976 ----a-w- c:\windows\system32\atitmm64.dll 2013-07-23 23:10 . 2013-07-23 23:10 75264 ----a-w- c:\windows\system32\atig6pxx.dll 2013-07-23 23:10 . 2013-07-23 23:10 69632 ----a-w- c:\windows\SysWow64\atiglpxx.dll 2013-07-23 23:10 . 2013-07-23 23:10 69632 ----a-w- c:\windows\system32\atiglpxx.dll 2013-07-23 23:10 . 2013-07-23 23:10 100352 ----a-w- c:\windows\system32\atig6txx.dll 2013-07-23 23:10 . 2013-07-23 23:10 96768 ----a-w- c:\windows\SysWow64\atigktxx.dll 2013-07-23 23:10 . 2013-07-23 23:10 617472 ----a-w- c:\windows\system32\drivers\atikmpag.sys 2013-07-23 23:08 . 2013-07-23 23:08 95744 ----a-w- c:\windows\system32\amdave64.dll 2013-07-23 23:08 . 2013-07-23 23:08 90112 ----a-w- c:\windows\SysWow64\amdave32.dll 2013-07-23 23:08 . 2013-07-23 23:08 89088 ----a-w- c:\windows\system32\atisamu64.dll 2013-07-23 23:07 . 2013-07-23 23:07 80896 ----a-w- c:\windows\SysWow64\atisamu32.dll 2013-07-23 23:06 . 2013-07-23 23:06 43520 ----a-w- c:\windows\system32\drivers\ati2erec.dll 2013-07-23 18:29 . 2013-07-23 18:29 51200 ----a-w- c:\windows\system32\kdbsdk64.dll 2013-07-23 18:24 . 2013-07-23 18:24 38912 ----a-w- c:\windows\SysWow64\kdbsdk32.dll 2013-07-21 08:38 . 2012-05-12 10:31 121416 ----a-w- c:\windows\system32\drivers\MijXfilt.sys 2013-07-21 08:38 . 2011-12-07 17:42 74960 ----a-w- c:\windows\system32\drivers\xusb21.sys 2013-07-21 08:38 . 2011-12-07 17:42 1721576 ----a-w- c:\windows\system32\WdfCoInstaller01009.dll 2013-07-21 07:29 . 2013-07-21 07:30 88 ----a-w- c:\windows\DeleteOnReboot.bat 2013-07-21 07:18 . 2013-07-21 07:18 -------- d-----w- c:\programdata\simplitec 2013-07-20 20:42 . 2013-07-20 20:42 -------- d-----w- c:\users\RLXD\AppData\Roaming\gd.sos.McPixel 2013-07-16 18:02 . 2012-08-03 10:55 565616 ----a-w- c:\program files (x86)\Mozilla Firefox\browser\extensions\afurladvisor@anchorfree.com\components\afurladvisor14.dll 2013-07-16 18:02 . 2012-06-18 09:56 562032 ----a-w- c:\program files (x86)\Mozilla Firefox\browser\extensions\afurladvisor@anchorfree.com\components\afurladvisor13.dll 2013-07-16 18:02 . 2012-05-02 19:32 561992 ----a-w- c:\program files (x86)\Mozilla Firefox\browser\extensions\afurladvisor@anchorfree.com\components\afurladvisor12.dll 2013-07-16 17:57 . 2013-07-16 17:57 -------- d-----w- c:\users\fbwuser 2013-07-16 17:16 . 2013-08-04 11:15 -------- d-----w- c:\windows\rescache 2013-07-14 20:49 . 2013-07-14 20:50 -------- d-----w- c:\windows\system32\MRT 2013-07-14 20:49 . 2012-08-24 18:13 154480 ----a-w- c:\windows\system32\drivers\ksecpkg.sys 2013-07-14 20:49 . 2012-08-24 18:09 458712 ----a-w- c:\windows\system32\drivers\cng.sys 2013-07-14 20:49 . 2012-08-24 18:05 340992 ----a-w- c:\windows\system32\schannel.dll 2013-07-14 20:49 . 2012-08-24 18:03 1448448 ----a-w- c:\windows\system32\lsasrv.dll 2013-07-14 20:49 . 2012-08-24 16:57 247808 ----a-w- c:\windows\SysWow64\schannel.dll 2013-07-14 20:49 . 2012-08-24 16:57 22016 ----a-w- c:\windows\SysWow64\secur32.dll 2013-07-14 20:49 . 2012-08-24 16:53 96768 ----a-w- c:\windows\SysWow64\sspicli.dll 2013-07-14 13:47 . 2013-07-14 13:47 -------- d-----w- c:\users\RLXD\AppData\Roaming\fltk.org 2013-07-14 13:47 . 2013-07-14 13:47 -------- d-----w- c:\programdata\fltk.org 2013-07-13 22:41 . 2013-07-13 22:41 -------- d-----w- c:\programdata\Package Cache 2013-07-13 20:23 . 2013-07-14 23:41 -------- d-----w- c:\users\RLXD\AppData\Roaming\Might & Magic Heroes VI 2013-07-11 20:11 . 2013-07-11 20:11 -------- d-----w- c:\programdata\Nexon 2013-07-07 23:18 . 2013-07-08 00:27 -------- d-----w- c:\users\RLXD\AppData\Roaming\MultiBit 2013-07-06 22:08 . 2013-07-06 22:08 -------- d-----w- c:\programdata\Splashtop . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2013-07-24 00:39 . 2011-12-03 02:21 143304 ----a-w- c:\windows\system32\atiuxp64.dll 2013-07-24 00:39 . 2013-06-04 23:12 115512 ----a-w- c:\windows\system32\atiu9p64.dll 2013-07-24 00:39 . 2011-12-03 02:20 98496 ----a-w- c:\windows\SysWow64\atiu9pag.dll 2013-07-24 00:39 . 2011-12-03 03:22 1251120 ----a-w- c:\windows\system32\aticfx64.dll 2013-07-24 00:39 . 2011-12-03 02:57 9066784 ----a-w- c:\windows\system32\atidxx64.dll 2013-07-24 00:38 . 2013-06-04 23:11 7093744 ----a-w- c:\windows\system32\atiumd6a.dll 2013-07-24 00:38 . 2013-06-04 23:11 7607720 ----a-w- c:\windows\system32\atiumd64.dll 2013-07-23 23:42 . 2013-06-04 22:03 442368 ----a-w- c:\windows\system32\atidemgy.dll 2013-07-23 23:11 . 2012-07-28 01:15 1091584 ----a-w- c:\windows\system32\atiadlxx.dll 2013-07-23 23:11 . 2012-01-19 16:53 824320 ----a-w- c:\windows\SysWow64\atiadlxy.dll 2013-07-13 22:44 . 2012-04-02 07:44 692104 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2013-07-13 22:44 . 2012-02-12 12:26 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2013-07-05 08:40 . 2013-07-05 08:40 96256 ----a-w- c:\windows\system32\drivers\AtihdW76.sys 2013-07-05 08:40 . 2013-07-05 08:40 110080 ----a-w- c:\windows\system32\DelayAPO.dll 2013-06-24 08:23 . 2013-05-02 08:42 83672 ----a-w- c:\windows\system32\drivers\avnetflt.sys 2013-06-23 22:57 . 2012-02-12 18:56 78277128 ----a-w- c:\windows\system32\MRT.exe 2013-06-22 07:26 . 2013-06-22 07:26 96168 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll 2013-06-22 07:26 . 2012-07-11 05:43 867240 ----a-w- c:\windows\SysWow64\npdeployJava1.dll 2013-06-22 07:26 . 2012-02-13 14:55 789416 ----a-w- c:\windows\SysWow64\deployJava1.dll 2013-06-21 01:09 . 2013-06-21 01:09 42184 ----a-w- c:\windows\system32\drivers\taphss6.sys 2013-06-21 01:07 . 2013-06-21 01:07 46792 ----a-w- c:\windows\system32\drivers\hssdrv6.sys 2013-06-04 22:51 . 2013-06-04 22:51 1187342 ----a-w- c:\windows\system32\amdocl_as64.exe 2013-06-04 22:51 . 2013-06-04 22:51 1061902 ----a-w- c:\windows\system32\amdocl_ld64.exe 2013-06-04 22:51 . 2013-06-04 22:51 995342 ----a-w- c:\windows\SysWow64\amdocl_as32.exe 2013-06-04 22:51 . 2013-06-04 22:51 798734 ----a-w- c:\windows\SysWow64\amdocl_ld32.exe 2013-06-04 22:00 . 2013-06-04 22:00 59392 ----a-w- c:\windows\system32\atiedu64.dll 2013-06-04 22:00 . 2013-06-04 22:00 43520 ----a-w- c:\windows\SysWow64\ati2edxx.dll 2013-05-13 05:51 . 2013-06-11 22:54 184320 ----a-w- c:\windows\system32\cryptsvc.dll 2013-05-13 05:51 . 2013-06-11 22:54 1464320 ----a-w- c:\windows\system32\crypt32.dll 2013-05-13 05:51 . 2013-06-11 22:54 139776 ----a-w- c:\windows\system32\cryptnet.dll 2013-05-13 05:50 . 2013-06-11 22:54 52224 ----a-w- c:\windows\system32\certenc.dll 2013-05-13 04:45 . 2013-06-11 22:54 140288 ----a-w- c:\windows\SysWow64\cryptsvc.dll 2013-05-13 04:45 . 2013-06-11 22:54 1160192 ----a-w- c:\windows\SysWow64\crypt32.dll 2013-05-13 04:45 . 2013-06-11 22:54 103936 ----a-w- c:\windows\SysWow64\cryptnet.dll 2013-05-13 03:43 . 2013-06-11 22:54 1192448 ----a-w- c:\windows\system32\certutil.exe 2013-05-13 03:08 . 2013-06-11 22:54 903168 ----a-w- c:\windows\SysWow64\certutil.exe 2013-05-13 03:08 . 2013-06-11 22:54 43008 ----a-w- c:\windows\SysWow64\certenc.dll 2013-05-10 05:49 . 2013-06-11 22:54 30720 ----a-w- c:\windows\system32\cryptdlg.dll 2013-05-10 03:20 . 2013-06-11 22:54 24576 ----a-w- c:\windows\SysWow64\cryptdlg.dll 2013-05-08 06:39 . 2013-06-11 22:54 1910632 ----a-w- c:\windows\system32\drivers\tcpip.sys . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Steam"="c:\program files (x86)\Steam\steam.exe" [2013-07-26 1807272] "Desura"="c:\program files (x86)\Desura\desura.exe" [2012-02-23 2529096] "DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2012-04-17 3671872] "SpybotSD TeaTimer"="c:\program files (x86)\Spybot - Search & Destroy\TeaTimer.exe" [2009-03-05 2260480] "Spotify Web Helper"="c:\users\RLXD\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" [2013-07-14 1104384] "iCloudServices"="c:\program files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe" [2013-04-05 59720] "ApplePhotoStreams"="c:\program files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe" [2013-04-05 59720] "com.apple.dav.bookmarks.daemon"="c:\program files (x86)\Common Files\Apple\Internet Services\BookmarkDAV_client.exe" [2013-04-05 59720] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "NUSB3MON"="c:\program files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe" [2010-11-17 113288] "Super-Charger"="c:\program files (x86)\MSI\Super-Charger\StartSuperCharger.exe" [2011-07-06 303104] "TrueImageMonitor.exe"="c:\program files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe" [2011-07-08 2673688] "VolPanel"="c:\program files (x86)\Creative\USB Sound Blaster HD\Volume Panel\VolPanlu.exe" [2010-12-08 241757] "APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2013-04-21 59720] "avgnt"="c:\program files (x86)\Avira\AntiVir Desktop\avgnt.exe" [2013-06-24 345144] "SHARKOON DarkGlider"="c:\program files (x86)\SHARKOON DarkGlider\hid.exe" [2012-11-28 295936] "QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" [2013-05-01 421888] "iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" [2013-05-31 152392] "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2013-03-12 253816] "Live Update 5"="c:\program files (x86)\MSI\Live Update 5\BootStartLiveupdate.exe" [2012-01-30 315392] "StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" [2013-07-23 766208] . c:\users\RLXD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ OpenOffice.org 3.3.lnk - c:\program files (x86)\OpenOffice.org 3\program\quickstart.exe [2010-12-13 1198592] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 0 (0x0) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableLUA"= 0 (0x0) "EnableUIADesktopToggle"= 0 (0x0) "PromptOnSecureDesktop"= 0 (0x0) "SoftwareSASGeneration"= 1 (0x1) . R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] R3 ALSysIO;ALSysIO;c:\users\RLXD\AppData\Local\Temp\ALSysIO64.sys;c:\users\RLXD\AppData\Local\Temp\ALSysIO64.sys [x] R3 atillk64;atillk64;c:\program files (x86)\GIGABYTE\atBIOS\ATITool\atillk64.sys;c:\program files (x86)\GIGABYTE\atBIOS\ATITool\atillk64.sys [x] R3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service;c:\program files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe;c:\program files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [x] R3 Desura Install Service;Desura Install Service;c:\program files (x86)\Common Files\Desura\desura_service.exe;c:\program files (x86)\Common Files\Desura\desura_service.exe [x] R3 libusb0;libusb-win32 - Kernel Driver 03/17/2013 0.0.0.0;c:\windows\system32\DRIVERS\libusb0.sys;c:\windows\SYSNATIVE\DRIVERS\libusb0.sys [x] R3 MotioninJoyXFilter;MotioninJoy Virtual Xinput device Filter Driver;c:\windows\system32\DRIVERS\MijXfilt.sys;c:\windows\SYSNATIVE\DRIVERS\MijXfilt.sys [x] R3 MSI_MSIBIOS_010507;MSI_MSIBIOS_010507;c:\program files (x86)\MSI\Live Update 5\msibios64_100507.sys;c:\program files (x86)\MSI\Live Update 5\msibios64_100507.sys [x] R3 NTIOLib_1_0_6;NTIOLib_1_0_6;c:\program files (x86)\Setup Files\Ms7673v1J0\NTIOLib_X64.sys;c:\program files (x86)\Setup Files\Ms7673v1J0\NTIOLib_X64.sys [x] R3 RTTEAMPT;Realtek Teaming Protocol Driver (NDIS 6.2);c:\windows\system32\DRIVERS\RtTeam60.sys;c:\windows\SYSNATIVE\DRIVERS\RtTeam60.sys [x] R3 SandraAgentSrv;SiSoftware Deployment Agent Service;c:\program files\SiSoftware\SiSoftware Sandra Lite 2013.SP4\RpcAgentSrv.exe;c:\program files\SiSoftware\SiSoftware Sandra Lite 2013.SP4\RpcAgentSrv.exe [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x] R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x] R3 TurboBoost;Intel(R) Turbo Boost Technology Monitor 2.0;c:\program files\Intel\TurboBoost\TurboBoost.exe;c:\program files\Intel\TurboBoost\TurboBoost.exe [x] R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys;c:\windows\SYSNATIVE\Drivers\usbaapl64.sys [x] S0 vididr;Acronis Virtual Disk;c:\windows\system32\DRIVERS\vididr.sys;c:\windows\SYSNATIVE\DRIVERS\vididr.sys [x] S0 vidsflt53;Acronis Disk Storage Filter (53);c:\windows\system32\DRIVERS\vsflt53.sys;c:\windows\SYSNATIVE\DRIVERS\vsflt53.sys [x] S1 avkmgr;avkmgr;c:\windows\system32\DRIVERS\avkmgr.sys;c:\windows\SYSNATIVE\DRIVERS\avkmgr.sys [x] S1 HssDRV6;Hotspot Shield Routing Driver 6;c:\windows\system32\DRIVERS\hssdrv6.sys;c:\windows\SYSNATIVE\DRIVERS\hssdrv6.sys [x] S1 HWiNFO32;HWiNFO32/64 Kernel Driver;c:\windows\system32\drivers\HWiNFO64A.SYS;c:\windows\SYSNATIVE\drivers\HWiNFO64A.SYS [x] S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x] S2 AntiVirSchedulerService;Avira Planer;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe [x] S2 hshld;Hotspot Shield Service;c:\program files (x86)\Hotspot Shield\bin\cmw_srv.exe;c:\program files (x86)\Hotspot Shield\bin\cmw_srv.exe [x] S2 HssWd;Hotspot Shield Monitoring Service;c:\program files (x86)\Hotspot Shield\bin\hsswd.exe;c:\program files (x86)\Hotspot Shield\bin\hsswd.exe [x] S2 RadeonPro Support Service;RadeonPro Support Service;c:\program files (x86)\RadeonPro\RadeonProSupport.exe;c:\program files (x86)\RadeonPro\RadeonProSupport.exe [x] S2 RtNdPt60;Realtek NDIS Protocol Driver;c:\windows\system32\DRIVERS\RtNdPt60.sys;c:\windows\SYSNATIVE\DRIVERS\RtNdPt60.sys [x] S2 SBSDWSCService;SBSD Security Center Service;c:\program files (x86)\Spybot - Search & Destroy\SDWinSec.exe;c:\program files (x86)\Spybot - Search & Destroy\SDWinSec.exe [x] S2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x] S2 SplashtopRemoteService;Splashtop® Remote Service;c:\program files (x86)\Splashtop\Splashtop Remote\SERVER\SRService.exe;c:\program files (x86)\Splashtop\Splashtop Remote\SERVER\SRService.exe [x] S2 SSUService;Splashtop Software Updater Service;c:\program files (x86)\Splashtop\Splashtop Software Updater\SSUService.exe;c:\program files (x86)\Splashtop\Splashtop Software Updater\SSUService.exe [x] S2 TeamViewer8;TeamViewer 8;c:\program files (x86)\TeamViewer\Version8\TeamViewer_Service.exe;c:\program files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [x] S2 TurboB;Turbo Boost UI Monitor driver;c:\windows\system32\DRIVERS\TurboB.sys;c:\windows\SYSNATIVE\DRIVERS\TurboB.sys [x] S3 AtiHDAudioService;AMD Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys;c:\windows\SYSNATIVE\drivers\AtihdW76.sys [x] S3 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x] S3 ksaud;Creative USB Audio Driver;c:\windows\system32\drivers\ksaud.sys;c:\windows\SYSNATIVE\drivers\ksaud.sys [x] S3 MBfilt;MBfilt;c:\windows\system32\drivers\MBfilt64.sys;c:\windows\SYSNATIVE\drivers\MBfilt64.sys [x] S3 NTIOLib_1_0_4;NTIOLib_1_0_4;c:\program files (x86)\MSI\Live Update 5\NTIOLib_X64.sys;c:\program files (x86)\MSI\Live Update 5\NTIOLib_X64.sys [x] S3 nusb3hub;Renesas Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys;c:\windows\SYSNATIVE\DRIVERS\nusb3hub.sys [x] S3 nusb3xhc;Renesas Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys;c:\windows\SYSNATIVE\DRIVERS\nusb3xhc.sys [x] S3 RTCore64;RTCore64;c:\program files (x86)\MSI Afterburner\RTCore64.sys;c:\program files (x86)\MSI Afterburner\RTCore64.sys [x] S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x] S3 taphss6;Anchorfree HSS VPN Adapter;c:\windows\system32\DRIVERS\taphss6.sys;c:\windows\SYSNATIVE\DRIVERS\taphss6.sys [x] S3 WinRing0_1_2_0;WinRing0_1_2_0;c:\users\RLXD\AppData\Local\Temp\tmpD529.tmp;c:\users\RLXD\AppData\Local\Temp\tmpD529.tmp [x] . . --- Andere Dienste/Treiber im Speicher --- . *NewlyCreated* - NTIOLIB_1_0_4 *NewlyCreated* - WINRING0_1_2_0 *NewlyCreated* - WS2IFSL . Inhalt des "geplante Tasks" Ordners . 2013-08-05 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-02 22:44] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\HardLinkMenu] @="{0A479751-02BC-11d3-A855-0004AC2568AA}" [HKEY_CLASSES_ROOT\CLSID\{0A479751-02BC-11d3-A855-0004AC2568AA}] 2012-05-05 05:29 522440 ----a-w- c:\program files\LinkShellExtension\HardlinkShellExt.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\IconOverlayHardLink] @="{0A479751-02BC-11d3-A855-0004AC2568DD}" [HKEY_CLASSES_ROOT\CLSID\{0A479751-02BC-11d3-A855-0004AC2568DD}] 2012-05-05 05:29 522440 ----a-w- c:\program files\LinkShellExtension\HardlinkShellExt.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\IconOverlaySymbolicLink] @="{0A479751-02BC-11d3-A855-0004AC2568EE}" [HKEY_CLASSES_ROOT\CLSID\{0A479751-02BC-11d3-A855-0004AC2568EE}] 2012-05-05 05:29 522440 ----a-w- c:\program files\LinkShellExtension\HardlinkShellExt.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Acronis Scheduler2 Service"="c:\program files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe" [2011-07-08 395928] "IntelTBRunOnce"="wscript.exe" [2009-07-14 168960] "IntelliType Pro"="c:\program files\Microsoft Device Center\itype.exe" [2012-06-26 1464928] "IntelliPoint"="c:\program files\Microsoft Device Center\ipoint.exe" [2012-06-26 2004584] "RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtkNGUI64.exe" [2012-06-12 6548112] "Creative SB Monitoring Utility"="sbavmon.dll" [2010-01-12 109056] . ------- Zusätzlicher Suchlauf ------- . uLocal Page = c:\windows\system32\blank.htm uStart Page = hxxp://www.google.com mLocal Page = c:\windows\SysWOW64\blank.htm uInternet Settings,ProxyOverride = *.local TCP: DhcpNameServer = 192.168.178.1 FF - ProfilePath - c:\users\RLXD\AppData\Roaming\Mozilla\Firefox\Profiles\2fn0yppo.default\ FF - prefs.js: browser.startup.homepage - about:home FF - prefs.js: network.proxy.ftp - 213.197.182.78 FF - prefs.js: network.proxy.ftp_port - 3128 FF - prefs.js: network.proxy.http - 127.0.0.1 FF - prefs.js: network.proxy.http_port - 8555 FF - prefs.js: network.proxy.socks - 213.197.182.78 FF - prefs.js: network.proxy.socks_port - 3128 FF - prefs.js: network.proxy.ssl - 213.197.182.78 FF - prefs.js: network.proxy.ssl_port - 3128 FF - prefs.js: network.proxy.type - 0 FF - ExtSQL: 2013-07-16 20:02; afurladvisor@anchorfree.com; c:\program files (x86)\Mozilla Firefox\browser\extensions\afurladvisor@anchorfree.com FF - ExtSQL: 2013-08-02 20:05; {fe272bd1-5f76-4ea4-8501-a05d35d823fc}; c:\users\RLXD\AppData\Roaming\Mozilla\Firefox\Profiles\2fn0yppo.default\extensions\{fe272bd1-5f76-4ea4-8501-a05d35d823fc}.xpi . - - - - Entfernte verwaiste Registrierungseinträge - - - - . BHO-{F9E4A054-E9B1-4BC3-83A3-76A1AE736170} - (no file) Wow6432Node-HKU-Default-Run-HanaConnect - c:\program files (x86)\HanaMobile\HanaConnect\StarterApp.exe HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start HKLM-Run-tvncontrol - c:\program files\TightVNC\tvnserver.exe AddRemove-Battlelog Web Plugins - c:\program files (x86)\Battlelog Web Plugins\uninstall.exe . . . [HKEY_LOCAL_MACHINE\system\ControlSet001\services\WinRing0_1_2_0] "ImagePath"="\??\c:\users\RLXD\AppData\Local\Temp\tmpD529.tmp" . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_USERS\S-1-5-21-463686566-1397544142-1076683294-1000\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*] @Allowed: (Read) (RestrictedCode) "??"=hex:1a,62,b4,a5,19,e9,32,c0,f1,2c,81,32,7e,16,55,38,6d,83,2f,f5,46,0f,49, 3b,ae,3b,c8,f2,ea,a8,a5,35,45,74,a2,eb,20,36,7d,17,bf,9e,40,c2,a3,25,f5,97,\ "??"=hex:65,34,23,f1,ac,3e,ae,99,14,20,f8,2a,53,ca,02,2f . [HKEY_USERS\S-1-5-21-463686566-1397544142-1076683294-1000\Software\SecuROM\License information*] "datasecu"=hex:02,89,7b,a2,4e,34,48,ee,a1,58,40,49,fe,8b,af,d4,65,ff,09,b3,be, 15,4e,87,df,c0,82,a9,59,14,74,84,ba,1d,e8,54,19,67,03,62,23,51,00,a5,38,b6,\ "rkeysecu"=hex:95,2b,89,42,0d,77,cb,45,e1,a2,93,58,b0,62,0c,02 . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_7_700_224_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_7_700_224_ActiveX.exe" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_7_700_224_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_7_700_224_ActiveX.exe" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.11" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . ------------------------ Weitere laufende Prozesse ------------------------ . c:\program files (x86)\Creative\Shared Files\CTAudSvc.exe c:\program files (x86)\Avira\AntiVir Desktop\avguard.exe c:\program files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe c:\windows\SysWOW64\PnkBstrA.exe c:\windows\SysWOW64\PnkBstrB.exe c:\program files (x86)\RivaTuner Statistics Server\RTSS.exe c:\program files (x86)\MSI Afterburner\MSIAfterburner.exe c:\program files (x86)\OpenOffice.org 3\program\soffice.exe c:\program files (x86)\OpenOffice.org 3\program\soffice.bin c:\program files (x86)\ROCCAT\Kone[+] Mouse\Kone[+]Monitor.exe c:\program files (x86)\MSI\Super-Charger\Super-Charger.exe c:\program files (x86)\MSI\Live Update 5\LU5.exe c:\program files (x86)\SHARKOON DarkGlider\trayicon.exe . ************************************************************************** . Zeit der Fertigstellung: 2013-08-05 11:01:02 - PC wurde neu gestartet ComboFix-quarantined-files.txt 2013-08-05 09:01 . Vor Suchlauf: 18 Verzeichnis(se), 13.065.490.432 Bytes frei Nach Suchlauf: 20 Verzeichnis(se), 12.512.276.480 Bytes frei . - - End Of File - - 23CACCA01B8623B2D6414E2A24F5932A A36C5E4F47E84449FF07ED3517B43A31 |
05.08.2013, 11:42 | #6 |
/// the machine /// TB-Ausbilder | Spiele minimieren sich in unregelmäßigen Abständen und Add-On "Plus-HD-2.3" entfernen. Downloade Dir bitte AdwCleaner auf deinen Desktop.
Downloade Dir bitte Malwarebytes Anti-Malware
und ein frisches FRST log bitte.
__________________ --> Spiele minimieren sich in unregelmäßigen Abständen und Add-On "Plus-HD-2.3" entfernen. |
05.08.2013, 12:39 | #7 |
| Spiele minimieren sich in unregelmäßigen Abständen und Add-On "Plus-HD-2.3" entfernen. AdwCleaner: Code:
ATTFilter # AdwCleaner v2.306 - Datei am 05/08/2013 um 13:29:09 erstellt # Aktualisiert am 19/07/2013 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzer : RLXD - RELAXXED # Bootmodus : Normal # Ausgeführt unter : C:\Users\RLXD\Downloads\adwcleaner06.exe # Option [Löschen] **** [Dienste] **** ***** [Dateien / Ordner] ***** ***** [Registrierungsdatenbank] ***** Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170} ***** [Internet Browser] ***** -\\ Internet Explorer v10.0.9200.16635 [OK] Die Registrierungsdatenbank ist sauber. -\\ Mozilla Firefox v22.0 (de) Datei : C:\Users\RLXD\AppData\Roaming\Mozilla\Firefox\Profiles\2fn0yppo.default\prefs.js [OK] Die Datei ist sauber. ************************* AdwCleaner[R1].txt - [1379 octets] - [21/07/2013 10:35:08] AdwCleaner[R2].txt - [1236 octets] - [02/08/2013 20:46:25] AdwCleaner[R3].txt - [1243 octets] - [05/08/2013 13:28:44] AdwCleaner[S1].txt - [1441 octets] - [21/07/2013 10:35:32] AdwCleaner[S2].txt - [1298 octets] - [02/08/2013 20:46:51] AdwCleaner[S3].txt - [1177 octets] - [05/08/2013 13:29:09] ########## EOF - C:\AdwCleaner[S3].txt - [1237 octets] ########## Code:
ATTFilter Malwarebytes Anti-Malware 1.75.0.1300 www.malwarebytes.org Datenbank Version: v2013.08.05.04 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 10.0.9200.16635 RLXD :: RELAXXED [Administrator] 05.08.2013 13:36:53 mbam-log-2013-08-05 (13-36-53).txt Art des Suchlaufs: Quick-Scan Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 247810 Laufzeit: 1 Minute(n), 57 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 1 C:\Users\RLXD\Desktop\Concurrent RDP Patcher.exe (Trojan.Agent) -> Erfolgreich gelöscht und in Quarantäne gestellt. (Ende) FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 04-08-2013 Ran by RLXD (administrator) on 05-08-2013 13:43:45 Running from C:\Users\RLXD\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\system32\atiesrxx.exe (Creative Technology Ltd) C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe (AMD) C:\Windows\system32\atieclxx.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Hi-Rez Studios) E:\Games\HiPatchService.exe (AnchorFree Inc.) C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe () C:\Program Files (x86)\Hotspot Shield\bin\hsswd.exe () C:\Windows\SysWOW64\PnkBstrA.exe () C:\Windows\SysWOW64\PnkBstrB.exe (Mr. John aka japamd) C:\Program Files (x86)\RadeonPro\RadeonProSupport.exe (Splashtop Inc.) C:\Program Files (x86)\Splashtop\Splashtop Remote\SERVER\SRService.exe (Splashtop Inc.) C:\Program Files (x86)\Splashtop\Splashtop Software Updater\SSUService.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe (Safer Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe () C:\Program Files (x86)\RivaTuner Statistics Server\RTSS.exe () C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe (AddGadgets) C:\Program Files (x86)\PCMeter\PCMeterV0.3.exe (Acronis) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe (Microsoft Corporation) C:\Program Files\Microsoft Device Center\itype.exe (Microsoft Corporation) C:\Program Files\Microsoft Device Center\ipoint.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe (Spotify Ltd) C:\Users\RLXD\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\BookmarkDAV_client.exe (OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.exe (OpenOffice.org) C:\Program Files (x86)\OpenOffice.org 3\program\soffice.bin (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe () C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe (ROCCAT GmbH) C:\Program Files (x86)\ROCCAT\Kone[+] Mouse\Kone[+]Monitor.exe (Creative Technology Ltd) C:\Program Files (x86)\Creative\USB Sound Blaster HD\Volume Panel\VolPanlu.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe () C:\Program Files (x86)\SHARKOON DarkGlider\hid.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (MSI) C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe (Micro-Star International) C:\Program Files (x86)\MSI\Live Update 5\LU5.exe () C:\Program Files (x86)\SHARKOON DarkGlider\trayicon.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Desura Pty Ltd) C:\Program Files (x86)\Desura\desura.exe (Desura Pty Ltd) C:\Program Files (x86)\Common Files\Desura\desura_service.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [Acronis Scheduler2 Service] - C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [395928 2011-07-08] (Acronis) HKLM\...\Run: [IntelTBRunOnce] - C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs [4526 2010-11-29] () HKLM\...\Run: [IntelliType Pro] - C:\Program Files\Microsoft Device Center\itype.exe [1464928 2012-06-26] (Microsoft Corporation) HKLM\...\Run: [IntelliPoint] - C:\Program Files\Microsoft Device Center\ipoint.exe [2004584 2012-06-26] (Microsoft Corporation) HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6548112 2012-06-12] (Realtek Semiconductor) HKLM\...\Run: [Creative SB Monitoring Utility] - RunDll32 sbavmon.dll,SBAVMonitor [x] HKLM\...\Run: [tvncontrol] - "C:\Program Files\TightVNC\tvnserver.exe" -controlservice -slave [x] HKCU\...\Run: [Steam] - C:\Program Files (x86)\Steam\steam.exe [1807272 2013-07-27] (Valve Corporation) HKCU\...\Run: [Desura] - C:\Program Files (x86)\Desura\desura.exe [2529096 2012-02-23] (Desura Pty Ltd) HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3671872 2012-04-17] (DT Soft Ltd) HKCU\...\Run: [SpybotSD TeaTimer] - C:\Program Files (x86)\Spybot - Search & Destroy\TeaTimer.exe [2260480 2009-03-05] (Safer-Networking Ltd.) HKCU\...\Run: [Spotify Web Helper] - C:\Users\RLXD\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1104384 2013-07-14] (Spotify Ltd) HKCU\...\Run: [iCloudServices] - C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [59720 2013-04-05] (Apple Inc.) HKCU\...\Run: [ApplePhotoStreams] - C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [59720 2013-04-05] (Apple Inc.) HKCU\...\Run: [com.apple.dav.bookmarks.daemon] - C:\Program Files (x86)\Common Files\Apple\Internet Services\BookmarkDAV_client.exe [59720 2013-04-05] (Apple Inc.) HKCU\...\Policies\system: [DisableLockWorkstation] 0 HKLM-x32\...\Run: [NUSB3MON] - C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation) HKLM-x32\...\Run: [Super-Charger] - C:\Program Files (x86)\MSI\Super-Charger\StartSuperCharger.exe [303104 2011-07-06] (MSI) HKLM-x32\...\Run: [TrueImageMonitor.exe] - C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe [2673688 2011-07-08] () HKLM-x32\...\Run: [RoccatKone+] - C:\Program Files (x86)\ROCCAT\Kone[+] Mouse\Kone[+]Monitor.EXE [552960 2011-07-12] (ROCCAT GmbH) HKLM-x32\...\Run: [VolPanel] - C:\Program Files (x86)\Creative\USB Sound Blaster HD\Volume Panel\VolPanlu.exe [241757 2010-12-08] (Creative Technology Ltd) HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.) HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [345144 2013-06-24] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [SHARKOON DarkGlider] - C:\Program Files (x86)\SHARKOON DarkGlider\hid.exe [295936 2012-11-28] () HKLM-x32\...\Run: [QuickTime Task] - C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.) HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2013-05-31] (Apple Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation) HKLM-x32\...\Run: [Live Update 5] - C:\Program Files (x86)\MSI\Live Update 5\BootStartLiveupdate.exe [315392 2012-01-30] () HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766208 2013-07-23] (Advanced Micro Devices, Inc.) Startup: C:\Users\RLXD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 3.3.lnk ShortcutTarget: OpenOffice.org 3.3.lnk -> C:\Program Files (x86)\OpenOffice.org 3\program\quickstart.exe () ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope value is missing. BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO-x32: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~2\SPYBOT~1\SDHelper.dll (Safer Networking Limited) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: No Name - {F9E4A054-E9B1-4BC3-83A3-76A1AE736170} - No File Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\RLXD\AppData\Roaming\Mozilla\Firefox\Profiles\2fn0yppo.default FF Homepage: about:home FF NetworkProxy: "ftp", "213.197.182.78" FF NetworkProxy: "ftp_port", 3128 FF NetworkProxy: "http", "127.0.0.1" FF NetworkProxy: "http_port", 8555 FF NetworkProxy: "no_proxies_on", "localhost, 127.0.0.1, stealthy.co" FF NetworkProxy: "socks", "213.197.182.78" FF NetworkProxy: "socks_port", 3128 FF NetworkProxy: "ssl", "213.197.182.78" FF NetworkProxy: "ssl_port", 3128 FF NetworkProxy: "type", 0 FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll No File FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=1.118.0 - C:\Program Files (x86)\Battlelog Web Plugins\1.118.0\npesnlaunch.dll No File FF Plugin-x32: @esn/esnlaunch,version=1.132.0 - C:\Program Files (x86)\Battlelog Web Plugins\1.132.0\npesnlaunch.dll (ESN Social Software AB) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf - C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll (Foxit Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @nexon.net/NxGame - C:\ProgramData\NexonUS\NGM\npNxGameUS.dll No File FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\RLXD\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Plugin HKCU: ubisoft.com/uplaypc - C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll () FF Extension: No Name - C:\Users\RLXD\AppData\Roaming\Mozilla\Firefox\Profiles\2fn0yppo.default\Extensions\7125a285-7e68-47aa-9d72-e81874f4d47e@d3fcdb92-135d-4a8a-8cf6-11e3b57c5fda.com FF Extension: GFACE Experience Plugin - C:\Users\RLXD\AppData\Roaming\Mozilla\Firefox\Profiles\2fn0yppo.default\Extensions\cryenginebrowserplugin@crytek.com FF Extension: savefileto - C:\Users\RLXD\AppData\Roaming\Mozilla\Firefox\Profiles\2fn0yppo.default\Extensions\savefileto@mozdev.org.xpi FF Extension: stealthyextension - C:\Users\RLXD\AppData\Roaming\Mozilla\Firefox\Profiles\2fn0yppo.default\Extensions\stealthyextension@gmail.com.xpi FF Extension: No Name - C:\Users\RLXD\AppData\Roaming\Mozilla\Firefox\Profiles\2fn0yppo.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi FF Extension: No Name - C:\Users\RLXD\AppData\Roaming\Mozilla\Firefox\Profiles\2fn0yppo.default\Extensions\{fe272bd1-5f76-4ea4-8501-a05d35d823fc}.xpi FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA} FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA} FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA} FF Extension: Hotspot Shield Helper (Please allow this installation) - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\afurladvisor@anchorfree.com FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ==================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [84024 2013-06-24] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [108088 2013-06-24] (Avira Operations GmbH & Co. KG) R2 HiPatchService; E:\Games\HiPatchService.exe [8704 2012-07-12] (Hi-Rez Studios) R2 hshld; C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe [831272 2013-06-21] (AnchorFree Inc.) S3 HssTrayService; C:\Program Files (x86)\Hotspot Shield\bin\HssTrayService.EXE [78512 2013-06-21] () R2 HssWd; C:\Program Files (x86)\Hotspot Shield\bin\hsswd.exe [548136 2013-06-21] () R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-04-03] () R2 PnkBstrB; C:\Windows\SysWow64\PnkBstrB.exe [189248 2013-04-03] () R2 RadeonPro Support Service; C:\Program Files (x86)\RadeonPro\RadeonProSupport.exe [20608 2013-04-13] (Mr. John aka japamd) S3 SandraAgentSrv; C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2013.SP4\RpcAgentSrv.exe [71832 2009-06-15] (SiSoftware) R2 SBSDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe [1153368 2009-01-26] (Safer Networking Ltd.) ==================== Drivers (Whitelisted) ==================== R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [100712 2013-03-27] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [130016 2013-03-27] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-03-27] (Avira Operations GmbH & Co. KG) R3 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2012-04-30] (DT Soft Ltd) R1 HssDRV6; C:\Windows\System32\DRIVERS\hssdrv6.sys [46792 2013-06-21] (AnchorFree Inc.) R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO64A.SYS [29672 2013-01-08] (REALiX(tm)) R3 ksaud; C:\Windows\System32\drivers\ksaud.sys [1558656 2010-07-14] (Creative Technology Ltd.) S3 libusb0; C:\Windows\System32\DRIVERS\libusb0.sys [52320 2013-03-17] (hxxp://libusb-win32.sourceforge.net) R3 NTIOLib_1_0_4; C:\Program Files (x86)\MSI\Live Update 5\NTIOLib_X64.sys [14136 2010-10-22] (MSI) R3 NTIOLib_1_0_4; C:\Program Files (x86)\MSI\Live Update 5\NTIOLib_X64.sys [14136 2010-10-22] (MSI) S3 NTIOLib_1_0_6; C:\Program Files (x86)\Setup Files\Ms7673v1J0\NTIOLib_X64.sys [11888 2011-01-06] (MSI) S3 NTIOLib_1_0_6; C:\Program Files (x86)\Setup Files\Ms7673v1J0\NTIOLib_X64.sys [11888 2011-01-06] (MSI) R3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [13368 2013-07-15] () R3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [13368 2013-07-15] () S3 SANDRA; C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2013.SP4\WNt500x64\Sandra.sys [23112 2009-08-07] (SiSoftware) R3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2013-06-21] (Anchorfree Inc.) R0 vidsflt53; C:\Windows\System32\DRIVERS\vsflt53.sys [141920 2012-02-12] (Acronis) S3 ALSysIO; \??\C:\Users\RLXD\AppData\Local\Temp\ALSysIO64.sys [x] S3 atillk64; \??\C:\Program Files (x86)\GIGABYTE\atBIOS\ATITool\atillk64.sys [x] S3 catchme; \??\C:\ComboFix\catchme.sys [x] S3 MSI_MSIBIOS_010507; \??\C:\Program Files (x86)\MSI\Live Update 5\msibios64_100507.sys [x] S3 RTHDMIAzAudService; system32\drivers\RtHDMIVX.sys [x] R3 WinRing0_1_2_0; \??\C:\Users\RLXD\AppData\Local\Temp\tmpA6C9.tmp [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 314 2013-08-05 13:34 - 2013-08-05 13:34 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\Malwarebytes 2013-08-05 13:34 - 2013-08-05 13:34 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-08-05 13:34 - 2013-08-05 13:34 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-08-05 13:34 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2013-08-05 13:29 - 2013-08-05 13:29 - 00001306 _____ C:\AdwCleaner[S3].txt 2013-08-05 13:28 - 2013-08-05 13:28 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\RLXD\Downloads\mbam-setup-1.75.0.1300.exe 2013-08-05 13:28 - 2013-08-05 13:28 - 00001243 _____ C:\AdwCleaner[R3].txt 2013-08-05 11:01 - 2013-08-05 11:01 - 00031480 _____ C:\ComboFix.txt 2013-08-05 10:51 - 2013-08-05 11:01 - 00000000 ____D C:\Qoobox 2013-08-05 10:51 - 2013-08-05 11:00 - 00000000 ____D C:\Windows\erdnt 2013-08-05 10:51 - 2013-08-05 10:51 - 05099708 ____R (Swearware) C:\Users\RLXD\Downloads\ComboFix.exe 2013-08-05 10:51 - 2011-06-26 08:45 - 00256000 _____ C:\Windows\PEV.exe 2013-08-05 10:51 - 2010-11-07 19:20 - 00208896 _____ C:\Windows\MBR.exe 2013-08-05 10:51 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2013-08-05 10:51 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2013-08-05 10:51 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2013-08-05 10:51 - 2000-08-31 02:00 - 00098816 _____ C:\Windows\sed.exe 2013-08-05 10:51 - 2000-08-31 02:00 - 00080412 _____ C:\Windows\grep.exe 2013-08-05 10:51 - 2000-08-31 02:00 - 00068096 _____ C:\Windows\zip.exe 2013-08-05 03:10 - 2013-08-05 03:10 - 01788733 _____ (Farbar) C:\Users\RLXD\Downloads\FRST64.exe 2013-08-05 03:10 - 2013-08-05 03:10 - 00000000 ____D C:\FRST 2013-08-04 21:09 - 2013-08-04 21:09 - 90974992 _____ (Microsoft Corporation) C:\Users\RLXD\Downloads\msert.exe 2013-08-04 20:32 - 2013-08-04 20:32 - 00001147 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2013-08-04 12:22 - 2013-08-04 12:22 - 21703480 _____ (Mozilla) C:\Users\RLXD\Downloads\Firefox Setup 22.0(1).exe 2013-08-04 12:03 - 2013-08-04 12:04 - 35337790 _____ C:\Users\RLXD\Downloads\sharkoon_darkglider_061212_zip_48224.zip 2013-08-04 10:09 - 2013-08-04 10:09 - 00000000 ____D C:\Users\RLXD\AppData\Local\Ascaron Entertainment 2013-08-02 20:46 - 2013-08-02 20:46 - 00666633 _____ C:\Users\RLXD\Downloads\adwcleaner06(1).exe 2013-08-02 20:46 - 2013-08-02 20:46 - 00001298 _____ C:\AdwCleaner[S2].txt 2013-08-02 20:46 - 2013-08-02 20:46 - 00001236 _____ C:\AdwCleaner[R2].txt 2013-08-01 23:44 - 2013-08-01 23:45 - 00000000 ____D C:\Users\RLXD\Documents\Anomaly Warzone Earth 2013-08-01 22:02 - 2013-08-04 20:30 - 00000022 _____ C:\Users\RLXD\AppData\Roaming\Network Meter_Usage.ini 2013-08-01 21:57 - 2013-08-01 22:00 - 00009507 _____ C:\Windows\IE10_main.log 2013-08-01 21:57 - 2013-08-01 21:57 - 19238912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 15404032 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 14329856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 13760512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-08-01 21:57 - 2013-08-01 21:57 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-08-01 21:57 - 2013-08-01 21:57 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 02046976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 01509376 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-08-01 21:57 - 2013-08-01 21:57 - 01441280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-08-01 21:57 - 2013-08-01 21:57 - 01400416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-08-01 21:57 - 2013-08-01 21:57 - 01400416 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-08-01 21:57 - 2013-08-01 21:57 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 01054720 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00905728 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00762368 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00719360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00629248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00599552 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00523264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-08-01 21:57 - 2013-08-01 21:57 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00361984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-08-01 21:57 - 2013-08-01 21:57 - 00357888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00270848 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00247296 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00242200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00232960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00204800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00185344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00173568 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00150528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00138752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00137216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00125440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-08-01 21:57 - 2013-08-01 21:57 - 00073728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-08-01 21:57 - 2013-08-01 21:57 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-08-01 21:56 - 2013-08-01 21:56 - 00055445 _____ C:\Windows\SysWOW64\CCCInstall_201308012156042373.log 2013-08-01 21:56 - 2013-08-01 21:56 - 00000000 ____D C:\ProgramData\ATI 2013-08-01 21:56 - 2013-08-01 21:56 - 00000000 ____D C:\Program Files (x86)\AMD AVT 2013-08-01 21:51 - 2013-08-01 21:51 - 245472312 _____ (AMD Inc.) C:\Users\RLXD\Downloads\amd_catalyst_13.8_beta.exe 2013-08-01 20:41 - 2013-08-01 20:41 - 00000000 ____D C:\Users\RLXD\AppData\Local\MercurySteam 2013-08-01 11:40 - 2013-08-04 20:00 - 00137118 _____ C:\Users\RLXD\Network_Meter_Data.js 2013-08-01 11:39 - 2013-08-01 11:39 - 00337108 _____ C:\Users\RLXD\Downloads\Network_Meter.zip 2013-08-01 11:39 - 2013-08-01 11:39 - 00206064 _____ C:\Users\RLXD\Downloads\All_CPU_Meter.zip 2013-08-01 11:34 - 2013-08-01 11:34 - 00194110 _____ C:\Users\RLXD\Downloads\Resident Evil 6 (Vibrant).rar 2013-08-01 10:52 - 2013-08-01 10:52 - 00000000 ____D C:\Users\RLXD\Documents\CAPCOM 2013-08-01 09:52 - 2013-08-01 09:52 - 00000561 _____ C:\Windows\wmsetup.log 2013-08-01 09:52 - 2013-08-01 09:52 - 00000000 ____D C:\Users\RLXD\Documents\Riptide 2013-07-31 19:17 - 2013-07-31 19:17 - 00267437 _____ C:\Users\RLXD\Downloads\dirh_latest.zip 2013-07-31 19:17 - 2013-04-29 10:32 - 00593408 _____ (Microsoft) C:\Users\RLXD\Desktop\Dead Island - Riptide Helper.exe 2013-07-27 12:52 - 2013-07-27 12:53 - 00000000 ____D C:\Users\RLXD\Desktop\Cube World 2013-07-27 12:51 - 2013-07-27 12:52 - 29600281 _____ C:\Users\RLXD\Downloads\3DMGAME-Cube.World._.Fixed-3DM.7z 2013-07-24 02:39 - 2013-07-24 02:39 - 07918816 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll 2013-07-24 02:39 - 2013-07-24 02:39 - 01043000 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll 2013-07-24 02:39 - 2013-07-24 02:39 - 00157736 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdhcp64.dll 2013-07-24 02:39 - 2013-07-24 02:39 - 00142304 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdhcp32.dll 2013-07-24 02:39 - 2013-07-24 02:39 - 00126336 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll 2013-07-24 02:39 - 2013-07-24 02:39 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll 2013-07-24 02:39 - 2013-07-24 02:39 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll 2013-07-24 02:39 - 2013-07-24 02:39 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll 2013-07-24 02:39 - 2013-07-24 02:39 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll 2013-07-24 02:38 - 2013-07-24 02:38 - 06532912 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdag.dll 2013-07-24 02:38 - 2013-07-24 02:38 - 06475232 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdva.dll 2013-07-24 02:36 - 2013-07-24 02:36 - 12721664 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmdag.sys 2013-07-24 02:19 - 2013-07-24 02:19 - 00229376 _____ C:\Windows\system32\clinfo.exe 2013-07-24 02:18 - 2013-07-24 02:18 - 28193280 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl64.dll 2013-07-24 02:18 - 2013-07-24 02:18 - 00098816 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OpenVideo64.dll 2013-07-24 02:18 - 2013-07-24 02:18 - 00086528 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OVDecode64.dll 2013-07-24 02:18 - 2013-07-24 02:18 - 00083456 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OpenVideo.dll 2013-07-24 02:18 - 2013-07-24 02:18 - 00073216 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OVDecode.dll 2013-07-24 02:16 - 2013-07-24 02:16 - 23761408 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll 2013-07-24 02:16 - 2013-07-24 02:16 - 00129536 _____ (AMD) C:\Windows\system32\coinst_13.20.dll 2013-07-24 02:14 - 2013-07-24 02:14 - 00063488 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2013-07-24 02:14 - 2013-07-24 02:14 - 00057344 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2013-07-24 02:06 - 2013-07-24 02:06 - 00548824 _____ C:\Windows\SysWOW64\atiapfxx.blb 2013-07-24 02:06 - 2013-07-24 02:06 - 00548824 _____ C:\Windows\system32\atiapfxx.blb 2013-07-24 02:04 - 2013-07-24 02:04 - 00368640 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe 2013-07-24 02:03 - 2013-07-24 02:03 - 15716352 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd64.dll 2013-07-24 02:03 - 2013-07-24 02:03 - 00062464 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt64.dll 2013-07-24 02:03 - 2013-07-24 02:03 - 00055808 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl64.dll 2013-07-24 02:03 - 2013-07-24 02:03 - 00052224 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll 2013-07-24 02:03 - 2013-07-24 02:03 - 00049152 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll 2013-07-24 02:00 - 2013-07-24 02:00 - 25609728 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atio6axx.dll 2013-07-24 02:00 - 2013-07-24 02:00 - 14302208 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll 2013-07-24 01:41 - 2013-07-24 01:41 - 21624832 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll 2013-07-24 01:41 - 2013-07-24 01:41 - 00574976 _____ (AMD) C:\Windows\system32\atieclxx.exe 2013-07-24 01:41 - 2013-07-24 01:41 - 00026112 _____ (AMD) C:\Windows\system32\atimuixx.dll 2013-07-24 01:40 - 2013-07-24 01:40 - 00239616 _____ (AMD) C:\Windows\system32\atiesrxx.exe 2013-07-24 01:39 - 2013-07-24 01:39 - 00190976 _____ (AMD) C:\Windows\system32\atitmm64.dll 2013-07-24 01:25 - 2013-07-24 01:25 - 03399312 _____ C:\Windows\system32\atiumd6a.cap 2013-07-24 01:16 - 2013-07-24 01:16 - 03433360 _____ C:\Windows\SysWOW64\atiumdva.cap 2013-07-24 01:10 - 2013-07-24 01:10 - 00617472 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys 2013-07-24 01:10 - 2013-07-24 01:10 - 00100352 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll 2013-07-24 01:10 - 2013-07-24 01:10 - 00096768 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll 2013-07-24 01:10 - 2013-07-24 01:10 - 00075264 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6pxx.dll 2013-07-24 01:10 - 2013-07-24 01:10 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll 2013-07-24 01:10 - 2013-07-24 01:10 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll 2013-07-24 01:08 - 2013-07-24 01:08 - 00095744 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdave64.dll 2013-07-24 01:08 - 2013-07-24 01:08 - 00090112 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdave32.dll 2013-07-24 01:08 - 2013-07-24 01:08 - 00089088 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atisamu64.dll 2013-07-24 01:07 - 2013-07-24 01:07 - 00080896 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atisamu32.dll 2013-07-24 01:06 - 2013-07-24 01:06 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\ati2erec.dll 2013-07-23 20:29 - 2013-07-23 20:29 - 00051200 _____ C:\Windows\system32\kdbsdk64.dll 2013-07-23 20:24 - 2013-07-23 20:24 - 00038912 _____ C:\Windows\SysWOW64\kdbsdk32.dll 2013-07-21 10:45 - 2013-07-21 10:45 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_MijXfilt_01009.Wdf 2013-07-21 10:38 - 2012-05-12 12:31 - 00121416 _____ (MotioninJoy) C:\Windows\system32\Drivers\MijXfilt.sys 2013-07-21 10:38 - 2011-12-07 19:42 - 01721576 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01009.dll 2013-07-21 10:38 - 2011-12-07 19:42 - 00074960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\xusb21.sys 2013-07-21 10:35 - 2013-07-21 10:35 - 00666633 _____ C:\Users\RLXD\Downloads\adwcleaner06.exe 2013-07-21 10:35 - 2013-07-21 10:35 - 00001441 _____ C:\AdwCleaner[S1].txt 2013-07-21 10:35 - 2013-07-21 10:35 - 00001379 _____ C:\AdwCleaner[R1].txt 2013-07-21 10:10 - 2012-12-04 00:58 - 00444933 _____ C:\Windows\system32\Drivers\etc\hosts.20130721-101001.backup 2013-07-21 10:04 - 2013-07-21 10:04 - 21703480 _____ (Mozilla) C:\Users\RLXD\Downloads\Firefox Setup 22.0.exe 2013-07-21 09:51 - 2013-07-21 09:51 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\RLXD\Downloads\SpyHunter-Installer.exe 2013-07-21 09:44 - 2012-12-04 00:58 - 00444933 _____ C:\Windows\system32\Drivers\etc\hosts.20130721-094449.backup 2013-07-21 09:29 - 2013-07-21 09:30 - 00000088 _____ C:\Windows\DeleteOnReboot.bat 2013-07-21 09:18 - 2013-07-21 09:18 - 00000000 ____D C:\ProgramData\simplitec 2013-07-21 09:17 - 2013-07-21 09:21 - 04117346 _____ C:\Users\RLXD\Downloads\MotioninJoy_071001_signed.zip 2013-07-20 22:42 - 2013-07-20 22:42 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\gd.sos.McPixel 2013-07-20 22:16 - 2013-07-20 22:16 - 00000000 ____D C:\Users\RLXD\Documents\SART 2013-07-16 19:57 - 2013-07-16 19:57 - 00001024 _____ C:\Users\Public\Desktop\Hotspot Shield.lnk 2013-07-16 19:57 - 2013-07-16 19:57 - 00000020 ___SH C:\Users\fbwuser\ntuser.ini 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Vorlagen 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Startmenü 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Netzwerkumgebung 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Lokale Einstellungen 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Eigene Dateien 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Druckumgebung 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Documents\Eigene Musik 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Documents\Eigene Bilder 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\AppData\Local\Verlauf 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\AppData\Local\Anwendungsdaten 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Anwendungsdaten 2013-07-16 19:57 - 2013-02-11 21:39 - 00000000 ____D C:\Users\fbwuser\AppData\Roaming\Macromedia 2013-07-16 19:57 - 2012-03-01 00:59 - 00000000 ____D C:\Users\fbwuser\AppData\Local\Microsoft Help 2013-07-16 19:16 - 2013-08-04 13:15 - 00000000 ____D C:\Windows\rescache 2013-07-16 07:41 - 2013-07-16 07:41 - 00001086 _____ C:\Users\RLXD\Desktop\MSI Afterburner.lnk 2013-07-16 07:38 - 2013-07-16 07:40 - 15851608 _____ C:\Users\RLXD\Downloads\MSIAfterburnerSetup300Beta11.zip 2013-07-14 22:49 - 2013-07-14 22:50 - 00000000 ____D C:\Windows\system32\MRT 2013-07-14 22:49 - 2012-08-24 20:13 - 00154480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2013-07-14 22:49 - 2012-08-24 20:09 - 00458712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2013-07-14 22:49 - 2012-08-24 20:05 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2013-07-14 22:49 - 2012-08-24 20:03 - 01448448 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2013-07-14 22:49 - 2012-08-24 18:57 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2013-07-14 22:49 - 2012-08-24 18:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2013-07-14 22:49 - 2012-08-24 18:53 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2013-07-14 15:47 - 2013-07-14 15:47 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\fltk.org 2013-07-14 15:47 - 2013-07-14 15:47 - 00000000 ____D C:\ProgramData\fltk.org 2013-07-14 15:39 - 2013-07-14 15:39 - 290294456 _____ C:\Users\RLXD\Desktop\ss2_for_d3_by_kamikazze.7z 2013-07-14 15:38 - 2013-07-14 15:38 - 31034426 _____ C:\Users\RLXD\Desktop\ADaOB-v030.7z 2013-07-14 13:03 - 2013-07-16 07:41 - 00003024 _____ C:\Windows\System32\Tasks\RTSS 2013-07-14 13:01 - 2013-07-14 13:01 - 07321473 _____ C:\Users\RLXD\Downloads\RTSSSetup520-[Guru3D.com](1).exe 2013-07-14 12:59 - 2013-07-14 12:59 - 07321473 _____ C:\Users\RLXD\Downloads\RTSSSetup520-[Guru3D.com].exe 2013-07-14 12:57 - 2013-07-14 12:57 - 15569364 _____ C:\Users\RLXD\Downloads\MSIAfterburnerSetup300Beta10-[Guru3D.com].zip 2013-07-14 00:41 - 2013-07-14 00:41 - 00000000 ____D C:\ProgramData\Package Cache 2013-07-13 22:23 - 2013-07-15 01:41 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\Might & Magic Heroes VI 2013-07-13 22:23 - 2013-07-13 22:51 - 00000000 ____D C:\Users\RLXD\Documents\Might & Magic Heroes VI 2013-07-12 21:14 - 2013-07-12 21:14 - 00001865 _____ C:\Users\Public\Desktop\ImgBurn.lnk 2013-07-12 21:13 - 2013-07-12 21:13 - 03469871 _____ (LIGHTNING UK!) C:\Users\RLXD\Downloads\SetupImgBurn_2.5.8.0.exe 2013-07-11 22:11 - 2013-07-11 22:11 - 00000000 ____D C:\ProgramData\Nexon 2013-07-11 15:39 - 2013-07-11 15:39 - 00001552 _____ C:\Users\RLXD\Documents\Cards.txt 2013-07-11 14:09 - 2013-07-11 14:09 - 00000000 ____D C:\Users\RLXD\Documents\Gaslamp Games 2013-07-11 00:47 - 2013-06-05 05:34 - 03153920 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2013-07-11 00:47 - 2013-06-04 08:00 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2013-07-11 00:47 - 2013-06-04 06:53 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2013-07-11 00:47 - 2013-04-10 01:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2013-07-11 00:47 - 2013-04-03 00:51 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2013-07-08 01:29 - 2013-07-08 01:29 - 00000667 _____ C:\Users\RLXD\Desktop\GUIMiner.lnk 2013-07-08 01:22 - 2013-07-08 01:22 - 07731626 _____ (Igor Pavlov) C:\Users\RLXD\Downloads\guiminer-20121203.exe 2013-07-08 01:18 - 2013-07-08 02:27 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\MultiBit 2013-07-08 01:16 - 2013-07-08 01:17 - 12234752 _____ C:\Users\RLXD\Downloads\multibit-0.5.12-windows.exe 2013-07-08 00:41 - 2013-07-08 00:41 - 09915013 _____ (Bitcoin project) C:\Users\RLXD\Downloads\bitcoin-0.7.2-win32-setup.exe 2013-07-07 23:41 - 2013-07-07 23:41 - 10804841 _____ C:\Users\RLXD\Downloads\SABnzbd-0.7.14-win32-setup.exe 2013-07-07 00:08 - 2013-07-07 00:08 - 00000000 ____D C:\ProgramData\Splashtop ==================== One Month Modified Files and Folders ======= 2013-08-05 13:40 - 2013-06-20 21:06 - 00003732 _____ C:\Windows\PFRO.log 2013-08-05 13:40 - 2013-06-14 10:11 - 00014192 _____ C:\Windows\setupact.log 2013-08-05 13:40 - 2012-07-29 21:17 - 01118234 _____ C:\Windows\WindowsUpdate.log 2013-08-05 13:40 - 2012-02-19 14:07 - 00003020 _____ C:\Windows\System32\Tasks\MSIAfterburner 2013-08-05 13:40 - 2012-02-12 14:40 - 00000000 ____D C:\Program Files (x86)\Steam 2013-08-05 13:40 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-08-05 13:36 - 2011-04-12 09:43 - 00076306 _____ C:\Windows\system32\perfh007.dat 2013-08-05 13:36 - 2011-04-12 09:43 - 00029014 _____ C:\Windows\system32\perfc007.dat 2013-08-05 13:36 - 2009-07-14 07:13 - 00158510 _____ C:\Windows\system32\PerfStringBackup.INI 2013-08-05 13:35 - 2009-07-14 06:45 - 00021856 _____ C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-08-05 13:35 - 2009-07-14 06:45 - 00021856 _____ C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-08-05 13:34 - 2013-08-05 13:34 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\Malwarebytes 2013-08-05 13:34 - 2013-08-05 13:34 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-08-05 13:34 - 2013-08-05 13:34 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-08-05 13:34 - 2012-02-14 20:31 - 00000000 ____D C:\Program Files (x86)\Origin 2013-08-05 13:29 - 2013-08-05 13:29 - 00001306 _____ C:\AdwCleaner[S3].txt 2013-08-05 13:28 - 2013-08-05 13:28 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\RLXD\Downloads\mbam-setup-1.75.0.1300.exe 2013-08-05 13:28 - 2013-08-05 13:28 - 00001243 _____ C:\AdwCleaner[R3].txt 2013-08-05 13:03 - 2012-04-02 09:44 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-08-05 11:01 - 2013-08-05 11:01 - 00031480 _____ C:\ComboFix.txt 2013-08-05 11:01 - 2013-08-05 10:51 - 00000000 ____D C:\Qoobox 2013-08-05 11:00 - 2013-08-05 10:51 - 00000000 ____D C:\Windows\erdnt 2013-08-05 10:59 - 2013-03-17 13:36 - 00000306 __RSH C:\ProgramData\ntuser.pol 2013-08-05 10:59 - 2009-07-14 04:34 - 00000215 _____ C:\Windows\system.ini 2013-08-05 10:51 - 2013-08-05 10:51 - 05099708 ____R (Swearware) C:\Users\RLXD\Downloads\ComboFix.exe 2013-08-05 10:39 - 2012-04-28 00:16 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-08-05 03:10 - 2013-08-05 03:10 - 01788733 _____ (Farbar) C:\Users\RLXD\Downloads\FRST64.exe 2013-08-05 03:10 - 2013-08-05 03:10 - 00000000 ____D C:\FRST 2013-08-04 22:27 - 2013-01-26 01:15 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\Spotify 2013-08-04 21:13 - 2012-02-12 15:07 - 00003926 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{0B41F018-6579-4320-882F-E13EBD3F2D39} 2013-08-04 21:09 - 2013-08-04 21:09 - 90974992 _____ (Microsoft Corporation) C:\Users\RLXD\Downloads\msert.exe 2013-08-04 20:32 - 2013-08-04 20:32 - 00001147 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2013-08-04 20:32 - 2013-07-03 23:53 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-08-04 20:30 - 2013-08-01 22:02 - 00000022 _____ C:\Users\RLXD\AppData\Roaming\Network Meter_Usage.ini 2013-08-04 20:00 - 2013-08-01 11:40 - 00137118 _____ C:\Users\RLXD\Network_Meter_Data.js 2013-08-04 13:15 - 2013-07-16 19:16 - 00000000 ____D C:\Windows\rescache 2013-08-04 12:28 - 2012-03-02 23:24 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\.purple 2013-08-04 12:22 - 2013-08-04 12:22 - 21703480 _____ (Mozilla) C:\Users\RLXD\Downloads\Firefox Setup 22.0(1).exe 2013-08-04 12:04 - 2013-08-04 12:03 - 35337790 _____ C:\Users\RLXD\Downloads\sharkoon_darkglider_061212_zip_48224.zip 2013-08-04 12:01 - 2012-11-03 12:31 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\SanDisk 2013-08-04 11:53 - 2012-08-23 09:02 - 00000000 ____D C:\ProgramData\Adobe 2013-08-04 11:53 - 2012-02-12 14:26 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\Adobe 2013-08-04 11:52 - 2013-02-11 21:39 - 00000000 ____D C:\Program Files (x86)\Adobe 2013-08-04 11:51 - 2013-02-11 21:38 - 00000000 ____D C:\Users\RLXD\AppData\Local\Adobe 2013-08-04 10:09 - 2013-08-04 10:09 - 00000000 ____D C:\Users\RLXD\AppData\Local\Ascaron Entertainment 2013-08-04 10:09 - 2013-06-13 13:34 - 00204695 _____ C:\Windows\DirectX.log 2013-08-03 18:06 - 2012-02-14 20:31 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\Origin 2013-08-03 18:06 - 2012-02-14 20:31 - 00000000 ____D C:\Users\RLXD\AppData\Local\Origin 2013-08-02 20:59 - 2013-01-18 23:24 - 00000000 ____D C:\Users\RLXD\AppData\Local\Apple Computer 2013-08-02 20:46 - 2013-08-02 20:46 - 00666633 _____ C:\Users\RLXD\Downloads\adwcleaner06(1).exe 2013-08-02 20:46 - 2013-08-02 20:46 - 00001298 _____ C:\AdwCleaner[S2].txt 2013-08-02 20:46 - 2013-08-02 20:46 - 00001236 _____ C:\AdwCleaner[R2].txt 2013-08-01 23:45 - 2013-08-01 23:44 - 00000000 ____D C:\Users\RLXD\Documents\Anomaly Warzone Earth 2013-08-01 22:11 - 2012-02-19 13:46 - 00000000 ____D C:\Program Files (x86)\MSI Afterburner 2013-08-01 22:09 - 2012-02-12 13:56 - 00001409 _____ C:\Users\RLXD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-08-01 22:02 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2013-08-01 22:00 - 2013-08-01 21:57 - 00009507 _____ C:\Windows\IE10_main.log 2013-08-01 21:57 - 2013-08-01 21:57 - 19238912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 15404032 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 14329856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 13760512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-08-01 21:57 - 2013-08-01 21:57 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-08-01 21:57 - 2013-08-01 21:57 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 02046976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 01509376 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2013-08-01 21:57 - 2013-08-01 21:57 - 01441280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2013-08-01 21:57 - 2013-08-01 21:57 - 01400416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat 2013-08-01 21:57 - 2013-08-01 21:57 - 01400416 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat 2013-08-01 21:57 - 2013-08-01 21:57 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 01054720 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00905728 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00762368 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00719360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00629248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00599552 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00523264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00441856 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2013-08-01 21:57 - 2013-08-01 21:57 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00361984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2013-08-01 21:57 - 2013-08-01 21:57 - 00357888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00281600 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00270848 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00247296 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00242200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\url.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00232960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00226816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00226304 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00216064 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00204800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00185344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00173568 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00163840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00150528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00149504 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00144896 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00138752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00137216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00125440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00110592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00097280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00079872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2013-08-01 21:57 - 2013-08-01 21:57 - 00073728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2013-08-01 21:57 - 2013-08-01 21:57 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00041984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00038400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00027648 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00023040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll 2013-08-01 21:57 - 2013-08-01 21:57 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe 2013-08-01 21:57 - 2013-08-01 21:57 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe 2013-08-01 21:56 - 2013-08-01 21:56 - 00055445 _____ C:\Windows\SysWOW64\CCCInstall_201308012156042373.log 2013-08-01 21:56 - 2013-08-01 21:56 - 00000000 ____D C:\ProgramData\ATI 2013-08-01 21:56 - 2013-08-01 21:56 - 00000000 ____D C:\Program Files (x86)\AMD AVT 2013-08-01 21:56 - 2012-02-26 21:18 - 00000000 ____D C:\ProgramData\AMD 2013-08-01 21:55 - 2012-07-29 21:21 - 00000000 ____D C:\Program Files\ATI Technologies 2013-08-01 21:55 - 2012-07-29 21:20 - 00000000 ____D C:\AMD 2013-08-01 21:54 - 2012-03-17 01:13 - 00131622 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2013-08-01 21:51 - 2013-08-01 21:51 - 245472312 _____ (AMD Inc.) C:\Users\RLXD\Downloads\amd_catalyst_13.8_beta.exe 2013-08-01 20:41 - 2013-08-01 20:41 - 00000000 ____D C:\Users\RLXD\AppData\Local\MercurySteam 2013-08-01 11:40 - 2012-02-12 13:56 - 00000000 ____D C:\Users\RLXD 2013-08-01 11:39 - 2013-08-01 11:39 - 00337108 _____ C:\Users\RLXD\Downloads\Network_Meter.zip 2013-08-01 11:39 - 2013-08-01 11:39 - 00206064 _____ C:\Users\RLXD\Downloads\All_CPU_Meter.zip 2013-08-01 11:39 - 2012-10-01 00:12 - 00000765 _____ C:\Users\RLXD\AppData\Roaming\Network Meter_Settings.ini 2013-08-01 11:34 - 2013-08-01 11:34 - 00194110 _____ C:\Users\RLXD\Downloads\Resident Evil 6 (Vibrant).rar 2013-08-01 11:00 - 2013-02-04 12:00 - 00124465 _____ C:\ProgramData\Network_Meter_Data.csv 2013-08-01 10:52 - 2013-08-01 10:52 - 00000000 ____D C:\Users\RLXD\Documents\CAPCOM 2013-08-01 09:52 - 2013-08-01 09:52 - 00000561 _____ C:\Windows\wmsetup.log 2013-08-01 09:52 - 2013-08-01 09:52 - 00000000 ____D C:\Users\RLXD\Documents\Riptide 2013-08-01 09:49 - 2013-05-07 23:17 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\FEZ 2013-07-31 19:17 - 2013-07-31 19:17 - 00267437 _____ C:\Users\RLXD\Downloads\dirh_latest.zip 2013-07-27 12:53 - 2013-07-27 12:52 - 00000000 ____D C:\Users\RLXD\Desktop\Cube World 2013-07-27 12:52 - 2013-07-27 12:51 - 29600281 _____ C:\Users\RLXD\Downloads\3DMGAME-Cube.World._.Fixed-3DM.7z 2013-07-24 02:39 - 2013-07-24 02:39 - 07918816 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atidxx32.dll 2013-07-24 02:39 - 2013-07-24 02:39 - 01043000 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll 2013-07-24 02:39 - 2013-07-24 02:39 - 00157736 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdhcp64.dll 2013-07-24 02:39 - 2013-07-24 02:39 - 00142304 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdhcp32.dll 2013-07-24 02:39 - 2013-07-24 02:39 - 00126336 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiuxpag.dll 2013-07-24 02:39 - 2013-07-24 02:39 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll 2013-07-24 02:39 - 2013-07-24 02:39 - 00078432 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll 2013-07-24 02:39 - 2013-07-24 02:39 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll 2013-07-24 02:39 - 2013-07-24 02:39 - 00071704 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll 2013-07-24 02:39 - 2013-06-05 01:12 - 00115512 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiu9p64.dll 2013-07-24 02:39 - 2011-12-03 05:22 - 01251120 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx64.dll 2013-07-24 02:39 - 2011-12-03 04:57 - 09066784 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atidxx64.dll 2013-07-24 02:39 - 2011-12-03 04:21 - 00143304 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiuxp64.dll 2013-07-24 02:39 - 2011-12-03 04:20 - 00098496 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiu9pag.dll 2013-07-24 02:38 - 2013-07-24 02:38 - 06532912 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdag.dll 2013-07-24 02:38 - 2013-07-24 02:38 - 06475232 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiumdva.dll 2013-07-24 02:38 - 2013-06-05 01:11 - 07607720 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd64.dll 2013-07-24 02:38 - 2013-06-05 01:11 - 07093744 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiumd6a.dll 2013-07-24 02:36 - 2013-07-24 02:36 - 12721664 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmdag.sys 2013-07-24 02:19 - 2013-07-24 02:19 - 00229376 _____ C:\Windows\system32\clinfo.exe 2013-07-24 02:18 - 2013-07-24 02:18 - 28193280 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdocl64.dll 2013-07-24 02:18 - 2013-07-24 02:18 - 00098816 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OpenVideo64.dll 2013-07-24 02:18 - 2013-07-24 02:18 - 00086528 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\OVDecode64.dll 2013-07-24 02:18 - 2013-07-24 02:18 - 00083456 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OpenVideo.dll 2013-07-24 02:18 - 2013-07-24 02:18 - 00073216 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\OVDecode.dll 2013-07-24 02:16 - 2013-07-24 02:16 - 23761408 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\amdocl.dll 2013-07-24 02:16 - 2013-07-24 02:16 - 00129536 _____ (AMD) C:\Windows\system32\coinst_13.20.dll 2013-07-24 02:14 - 2013-07-24 02:14 - 00063488 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2013-07-24 02:14 - 2013-07-24 02:14 - 00057344 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2013-07-24 02:06 - 2013-07-24 02:06 - 00548824 _____ C:\Windows\SysWOW64\atiapfxx.blb 2013-07-24 02:06 - 2013-07-24 02:06 - 00548824 _____ C:\Windows\system32\atiapfxx.blb 2013-07-24 02:04 - 2013-07-24 02:04 - 00368640 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiapfxx.exe 2013-07-24 02:03 - 2013-07-24 02:03 - 15716352 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticaldd64.dll 2013-07-24 02:03 - 2013-07-24 02:03 - 00062464 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalrt64.dll 2013-07-24 02:03 - 2013-07-24 02:03 - 00055808 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\aticalcl64.dll 2013-07-24 02:03 - 2013-07-24 02:03 - 00052224 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalrt.dll 2013-07-24 02:03 - 2013-07-24 02:03 - 00049152 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticalcl.dll 2013-07-24 02:00 - 2013-07-24 02:00 - 25609728 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atio6axx.dll 2013-07-24 02:00 - 2013-07-24 02:00 - 14302208 _____ (Advanced Micro Devices Inc.) C:\Windows\SysWOW64\aticaldd.dll 2013-07-24 01:42 - 2013-06-05 00:03 - 00442368 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll 2013-07-24 01:41 - 2013-07-24 01:41 - 21624832 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atioglxx.dll 2013-07-24 01:41 - 2013-07-24 01:41 - 00574976 _____ (AMD) C:\Windows\system32\atieclxx.exe 2013-07-24 01:41 - 2013-07-24 01:41 - 00026112 _____ (AMD) C:\Windows\system32\atimuixx.dll 2013-07-24 01:40 - 2013-07-24 01:40 - 00239616 _____ (AMD) C:\Windows\system32\atiesrxx.exe 2013-07-24 01:39 - 2013-07-24 01:39 - 00190976 _____ (AMD) C:\Windows\system32\atitmm64.dll 2013-07-24 01:25 - 2013-07-24 01:25 - 03399312 _____ C:\Windows\system32\atiumd6a.cap 2013-07-24 01:16 - 2013-07-24 01:16 - 03433360 _____ C:\Windows\SysWOW64\atiumdva.cap 2013-07-24 01:11 - 2012-07-28 03:15 - 01091584 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll 2013-07-24 01:11 - 2012-01-19 18:53 - 00824320 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll 2013-07-24 01:10 - 2013-07-24 01:10 - 00617472 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\atikmpag.sys 2013-07-24 01:10 - 2013-07-24 01:10 - 00100352 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll 2013-07-24 01:10 - 2013-07-24 01:10 - 00096768 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll 2013-07-24 01:10 - 2013-07-24 01:10 - 00075264 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6pxx.dll 2013-07-24 01:10 - 2013-07-24 01:10 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atiglpxx.dll 2013-07-24 01:10 - 2013-07-24 01:10 - 00069632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atiglpxx.dll 2013-07-24 01:08 - 2013-07-24 01:08 - 00095744 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdave64.dll 2013-07-24 01:08 - 2013-07-24 01:08 - 00090112 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdave32.dll 2013-07-24 01:08 - 2013-07-24 01:08 - 00089088 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atisamu64.dll 2013-07-24 01:07 - 2013-07-24 01:07 - 00080896 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atisamu32.dll 2013-07-24 01:06 - 2013-07-24 01:06 - 00043520 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\ati2erec.dll 2013-07-23 20:29 - 2013-07-23 20:29 - 00051200 _____ C:\Windows\system32\kdbsdk64.dll 2013-07-23 20:24 - 2013-07-23 20:24 - 00038912 _____ C:\Windows\SysWOW64\kdbsdk32.dll 2013-07-23 01:42 - 2012-11-03 00:18 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\foobar2000 2013-07-21 21:51 - 2012-12-03 01:18 - 00000000 ____D C:\Users\RLXD\AppData\Local\My Games 2013-07-21 21:51 - 2012-02-13 00:28 - 00000000 ____D C:\Users\RLXD\Documents\My Games 2013-07-21 10:45 - 2013-07-21 10:45 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_MijXfilt_01009.Wdf 2013-07-21 10:35 - 2013-07-21 10:35 - 00666633 _____ C:\Users\RLXD\Downloads\adwcleaner06.exe 2013-07-21 10:35 - 2013-07-21 10:35 - 00001441 _____ C:\AdwCleaner[S1].txt 2013-07-21 10:35 - 2013-07-21 10:35 - 00001379 _____ C:\AdwCleaner[R1].txt 2013-07-21 10:05 - 2012-12-22 15:02 - 00000000 ____D C:\Users\RLXD\AppData\Local\Google 2013-07-21 10:05 - 2012-12-22 15:02 - 00000000 ____D C:\Program Files (x86)\Google 2013-07-21 10:04 - 2013-07-21 10:04 - 21703480 _____ (Mozilla) C:\Users\RLXD\Downloads\Firefox Setup 22.0.exe 2013-07-21 09:52 - 2013-02-18 02:39 - 00000000 ____D C:\Program Files (x86)\i-Funbox DevTeam 2013-07-21 09:51 - 2013-07-21 09:51 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\RLXD\Downloads\SpyHunter-Installer.exe 2013-07-21 09:38 - 2012-11-04 21:55 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2013-07-21 09:30 - 2013-07-21 09:29 - 00000088 _____ C:\Windows\DeleteOnReboot.bat 2013-07-21 09:21 - 2013-07-21 09:17 - 04117346 _____ C:\Users\RLXD\Downloads\MotioninJoy_071001_signed.zip 2013-07-21 09:18 - 2013-07-21 09:18 - 00000000 ____D C:\ProgramData\simplitec 2013-07-21 09:13 - 2012-05-06 16:51 - 00000000 ____D C:\Users\RLXD\Documents\Square Enix 2013-07-20 22:42 - 2013-07-20 22:42 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\gd.sos.McPixel 2013-07-20 22:16 - 2013-07-20 22:16 - 00000000 ____D C:\Users\RLXD\Documents\SART 2013-07-16 20:08 - 2012-02-24 01:43 - 00000000 ____D C:\Users\RLXD\Documents\SavedGames 2013-07-16 19:57 - 2013-07-16 19:57 - 00001024 _____ C:\Users\Public\Desktop\Hotspot Shield.lnk 2013-07-16 19:57 - 2013-07-16 19:57 - 00000020 ___SH C:\Users\fbwuser\ntuser.ini 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Vorlagen 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Startmenü 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Netzwerkumgebung 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Lokale Einstellungen 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Eigene Dateien 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Druckumgebung 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Documents\Eigene Musik 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Documents\Eigene Bilder 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\AppData\Local\Verlauf 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\AppData\Local\Anwendungsdaten 2013-07-16 19:57 - 2013-07-16 19:57 - 00000000 _SHDL C:\Users\fbwuser\Anwendungsdaten 2013-07-16 19:57 - 2012-05-02 21:31 - 00000000 ____D C:\Program Files (x86)\Hotspot Shield 2013-07-16 10:20 - 2013-05-02 11:16 - 00000000 ____D C:\Program Files (x86)\RivaTuner Statistics Server 2013-07-16 07:41 - 2013-07-16 07:41 - 00001086 _____ C:\Users\RLXD\Desktop\MSI Afterburner.lnk 2013-07-16 07:41 - 2013-07-14 13:03 - 00003024 _____ C:\Windows\System32\Tasks\RTSS 2013-07-16 07:40 - 2013-07-16 07:38 - 15851608 _____ C:\Users\RLXD\Downloads\MSIAfterburnerSetup300Beta11.zip 2013-07-15 01:41 - 2013-07-13 22:23 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\Might & Magic Heroes VI 2013-07-14 22:50 - 2013-07-14 22:49 - 00000000 ____D C:\Windows\system32\MRT 2013-07-14 19:56 - 2013-01-26 01:16 - 00000000 ____D C:\Users\RLXD\AppData\Local\Spotify 2013-07-14 15:47 - 2013-07-14 15:47 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\fltk.org 2013-07-14 15:47 - 2013-07-14 15:47 - 00000000 ____D C:\ProgramData\fltk.org 2013-07-14 15:47 - 2012-03-04 21:10 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2013-07-14 15:39 - 2013-07-14 15:39 - 290294456 _____ C:\Users\RLXD\Desktop\ss2_for_d3_by_kamikazze.7z 2013-07-14 15:38 - 2013-07-14 15:38 - 31034426 _____ C:\Users\RLXD\Desktop\ADaOB-v030.7z 2013-07-14 15:28 - 2013-04-26 22:22 - 00013888 _____ C:\Users\RLXD\Documents\TombRaider.log 2013-07-14 13:01 - 2013-07-14 13:01 - 07321473 _____ C:\Users\RLXD\Downloads\RTSSSetup520-[Guru3D.com](1).exe 2013-07-14 12:59 - 2013-07-14 12:59 - 07321473 _____ C:\Users\RLXD\Downloads\RTSSSetup520-[Guru3D.com].exe 2013-07-14 12:59 - 2012-02-13 22:04 - 00000000 ____D C:\Windows\SysWOW64\directx 2013-07-14 12:57 - 2013-07-14 12:57 - 15569364 _____ C:\Users\RLXD\Downloads\MSIAfterburnerSetup300Beta10-[Guru3D.com].zip 2013-07-14 00:44 - 2012-04-02 09:44 - 00692104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-07-14 00:44 - 2012-04-02 09:44 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-07-14 00:44 - 2012-02-12 14:26 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-07-14 00:41 - 2013-07-14 00:41 - 00000000 ____D C:\ProgramData\Package Cache 2013-07-13 22:51 - 2013-07-13 22:23 - 00000000 ____D C:\Users\RLXD\Documents\Might & Magic Heroes VI 2013-07-12 21:14 - 2013-07-12 21:14 - 00001865 _____ C:\Users\Public\Desktop\ImgBurn.lnk 2013-07-12 21:13 - 2013-07-12 21:13 - 03469871 _____ (LIGHTNING UK!) C:\Users\RLXD\Downloads\SetupImgBurn_2.5.8.0.exe 2013-07-11 22:11 - 2013-07-11 22:11 - 00000000 ____D C:\ProgramData\Nexon 2013-07-11 15:39 - 2013-07-11 15:39 - 00001552 _____ C:\Users\RLXD\Documents\Cards.txt 2013-07-11 14:09 - 2013-07-11 14:09 - 00000000 ____D C:\Users\RLXD\Documents\Gaslamp Games 2013-07-11 13:00 - 2012-05-11 21:22 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2013-07-11 13:00 - 2012-05-11 21:22 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2013-07-11 13:00 - 2012-02-12 13:43 - 00000000 ____D C:\Windows\Panther 2013-07-11 13:00 - 2011-04-12 09:55 - 00000000 ____D C:\Program Files\Windows Journal 2013-07-11 13:00 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Defender 2013-07-11 13:00 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2013-07-11 13:00 - 2009-07-14 06:45 - 04923616 _____ C:\Windows\system32\FNTCACHE.DAT 2013-07-11 01:13 - 2012-02-29 01:13 - 00000000 ____D C:\ProgramData\Microsoft Help 2013-07-08 02:27 - 2013-07-08 01:18 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\MultiBit 2013-07-08 01:53 - 2012-04-30 22:38 - 00000000 ____D C:\Users\RLXD\AppData\Local\SKIDROW 2013-07-08 01:49 - 2012-02-18 14:04 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\DAEMON Tools Lite 2013-07-08 01:29 - 2013-07-08 01:29 - 00000667 _____ C:\Users\RLXD\Desktop\GUIMiner.lnk 2013-07-08 01:22 - 2013-07-08 01:22 - 07731626 _____ (Igor Pavlov) C:\Users\RLXD\Downloads\guiminer-20121203.exe 2013-07-08 01:17 - 2013-07-08 01:16 - 12234752 _____ C:\Users\RLXD\Downloads\multibit-0.5.12-windows.exe 2013-07-08 01:16 - 2013-01-01 13:45 - 00000000 ____D C:\Users\RLXD\AppData\Roaming\Bitcoin 2013-07-08 00:41 - 2013-07-08 00:41 - 09915013 _____ (Bitcoin project) C:\Users\RLXD\Downloads\bitcoin-0.7.2-win32-setup.exe 2013-07-07 23:42 - 2013-02-12 22:12 - 00000991 _____ C:\Users\RLXD\Desktop\SABnzbd.lnk 2013-07-07 23:41 - 2013-07-07 23:41 - 10804841 _____ C:\Users\RLXD\Downloads\SABnzbd-0.7.14-win32-setup.exe 2013-07-07 00:10 - 2013-06-16 13:16 - 00000552 _____ C:\SSUUpdater.log 2013-07-07 00:08 - 2013-07-07 00:08 - 00000000 ____D C:\ProgramData\Splashtop ZeroAccess: C:\Windows\Installer\{1ab9e80a-6010-cf06-7b01-46b72b6ce766} C:\Windows\Installer\{1ab9e80a-6010-cf06-7b01-46b72b6ce766}\@ ZeroAccess: C:\Users\RLXD\AppData\Local\{1ab9e80a-6010-cf06-7b01-46b72b6ce766} C:\Users\RLXD\AppData\Local\{1ab9e80a-6010-cf06-7b01-46b72b6ce766}\@ ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-08-04 13:08 ==================== End Of Log ============================ FRST-Additions: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 04-08-2013 Ran by RLXD at 2013-08-05 13:43:57 Running from C:\Users\RLXD\Downloads Boot Mode: Normal ========================================================== ==================== Installed Programs ======================= µTorrent (x32 Version: 3.1.2) A New Beginning - Final Cut (x32) A.R.E.S. (x32) Ace of Spades (x32) Acronis True Image WD*Edition (x32 Version: 13.0.14164) Adobe AIR (x32 Version: 3.5.0.1060) Adobe Flash Player 11 ActiveX (x32 Version: 11.7.700.224) Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.94) Afterfall InSanity Extended Edition (x32) AGEIA GAME System Software (x32 Version: 2.7.3) AIDA64 Extreme Edition v2.20 (x32 Version: 2.20) AIMP3 (x32 Version: v3.00.976) AirMech (x32) Alan Wake (x32) Alan Wake's American Nightmare (x32) AMD Accelerated Video Transcoding (Version: 13.20.100.30723) AMD APP SDK Runtime (Version: 10.0.1084.4) AMD Catalyst Control Center (x32 Version: 2013.0723.1944.33607) AMD Catalyst Install Manager (Version: 8.0.915.0) AMD Drag and Drop Transcoding (Version: 2.00.0000) AMD Media Foundation Decoders (Version: 1.0.80723.2017) AMD Wireless Display v3.0 (Version: 1.0.0.12) AMD Wireless Display v3.0 (Version: 1.0.0.13) Anna (x32) Anomaly Warzone Earth (x32) Apple Application Support (x32 Version: 2.3.4) Apple Mobile Device Support (Version: 6.1.0.13) Apple Software Update (x32 Version: 2.1.3.127) Application Profiles (x32 Version: 2.0.4427.36392) Application Profiles (x32 Version: 2.0.4560.34681) Application Profiles (x32 Version: 2.0.4888.34279) Atlantica (x32 Version: 31408) AudioGenie (x32) Avira Free Antivirus (x32 Version: 13.0.0.3885) AviSynth 2.5 (x32) Awesomenauts (x32) Bastion (x32) Batman: Arkham City™ (x32) Battlefield 3™ (x32 Version: 1.5.0.0) Battlelog Web Plugins (x32 Version: 1.132.0) BioShock (x32) BioShock 2 (x32) BioShock Infinite (x32) Blocks That Matter (x32) Bonjour (Version: 3.0.0.10) Borderlands 2 (x32) Brütal Legend (x32) Cargo Commander (x32) Catalyst Control Center - Branding (x32 Version: 1.00.0000) Catalyst Control Center Graphics Previews Common (x32 Version: 2013.0723.1944.33607) Catalyst Control Center InstallProxy (x32 Version: 2013.0723.1944.33607) Catalyst Control Center Localization All (x32 Version: 2013.0723.1944.33607) CCC Help Chinese Standard (x32 Version: 2013.0723.1943.33607) CCC Help Chinese Traditional (x32 Version: 2013.0723.1943.33607) CCC Help Czech (x32 Version: 2013.0723.1943.33607) CCC Help Danish (x32 Version: 2013.0723.1943.33607) CCC Help Dutch (x32 Version: 2013.0723.1943.33607) CCC Help English (x32 Version: 2013.0723.1943.33607) CCC Help Finnish (x32 Version: 2013.0723.1943.33607) CCC Help French (x32 Version: 2013.0723.1943.33607) CCC Help German (x32 Version: 2013.0723.1943.33607) CCC Help Greek (x32 Version: 2013.0723.1943.33607) CCC Help Hungarian (x32 Version: 2013.0723.1943.33607) CCC Help Italian (x32 Version: 2013.0723.1943.33607) CCC Help Japanese (x32 Version: 2013.0723.1943.33607) CCC Help Korean (x32 Version: 2013.0723.1943.33607) CCC Help Norwegian (x32 Version: 2013.0723.1943.33607) CCC Help Polish (x32 Version: 2013.0723.1943.33607) CCC Help Portuguese (x32 Version: 2013.0723.1943.33607) CCC Help Russian (x32 Version: 2013.0723.1943.33607) CCC Help Spanish (x32 Version: 2013.0723.1943.33607) CCC Help Swedish (x32 Version: 2013.0723.1943.33607) CCC Help Thai (x32 Version: 2013.0723.1943.33607) CCC Help Turkish (x32 Version: 2013.0723.1943.33607) ccc-utility64 (Version: 2013.0723.1944.33607) Chaos on Deponia (x32) clrmamepro (x32 Version: 4.00.08.1) Combined Community Codec Pack 2011-11-11 (x32 Version: 2011.11.11.0) ControlCenter (x32 Version: 2.2.063) Core Temp 1.0 RC4 (Version: 1.0) Cortex Command (x32) Counter-Strike: Global Offensive (x32) Creative Systeminformationen (x32 Version: 1.10) Cry of Fear (x32) Crysis®3 (x32 Version: 1.0.0.0) CrystalDiskInfo 4.2.0a (x32 Version: 4.2.0a) CrystalDiskMark 3.0.2f Shizuku Edition (Version: 3.0.2f) Curse Client (HKCU Version: 5.1.1.370) DAEMON Tools Lite (x32 Version: 4.45.4.0315) Dead Island Riptide (x32) Dead Pixels (x32) Deadlight (x32) Desura (x32 Version: 100.53) Desura: 3079 (x32 Version: Full) Desura: Cute Things Dying Violently (x32 Version: Full) Desura: Escape Goat (x32 Version: Full) Desura: Guncraft (x32 Version: Pre-Order) Desura: La-Mulana (x32 Version: Full) Desura: Monster RPG 2 (x32 Version: Full) Desura: Paranautical Activity (x32 Version: Beta) Desura: Soulcaster (x32 Version: Full) Desura: Soulcaster II (x32 Version: Full) Diablo III (x32 Version: 1.0.7.14633) DiRT Showdown (x32) Disciples III: Renaissance (x32) Dishonored (x32 Version: 1.0) DLC Quest (x32) DmC Devil May Cry (x32) Don't Starve (x32) Dungeons of Dredmor (x32) Dxtory 2.0.109 (x32 Version: 2.0.109) Dynamite Jack (x32) eaner (Version: 4.02) EasyBoost (x32 Version: 1.0.7.1) EasyViewer (x32 Version: 1.3.0.9) ESN Sonar (x32 Version: 0.70.4) Far Cry 3 (x32 Version: 1.04) FEZ (x32) ffdshow v1.1.3800 [2011-03-28] (x32 Version: 1.1.3800.0) FileZilla Client 3.6.0.2 (x32 Version: 3.6.0.2) FINAL FANTASY VII (x32) FINAL FANTASY XIV - A Realm Reborn (Beta Version) (x32 Version: 0.9.1000) FLY'N (x32) foobar2000 v1.2.2 (x32 Version: 1.2.2) Foxit Reader (x32 Version: 6.0.3.524) Galaxy on Fire 2™ Full HD (x32) Gratuitous Space Battles (x32) Guild Wars 2 (x32) GundeadliGne (x32) Hack, Slash, Loot (x32) Half-Life 2 (x32) Hitman: Absolution (x32) Hitogata Happa (x32) Home (x32) Hotline Miami (x32) Hotspot Shield 3.09 (x32 Version: 3.09) I Am Alive (x32) iCloud (Version: 2.1.2.8) ImgBurn (x32 Version: 2.5.8.0) iNFekt NFO Viewer (Version: 0.8.5) Intel(R) Management Engine Components (x32 Version: 7.1.50.1172) Ion Assault (x32) iTunes (Version: 11.0.4.4) Java 7 Update 25 (x32 Version: 7.0.250) Java Auto Updater (x32 Version: 2.1.9.5) Java(TM) 6 Update 22 (x32 Version: 6.0.220) Java(TM) 6 Update 25 (x32 Version: 6.0.250) king.com (remove only) (x32) Lagarith Lossless Codec (1.3.27) (x32) Last.fm Scrobbler 2.1.35 (x32) Live Update 5 (x32 Version: 5.0.106) Lost Chronicles of Zerzura (x32) MacGuffin's Curse (x32) Magicka (x32) Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300) Mark of the Ninja (x32) McPixel (x32) MediaMonkey 4.0 (x32 Version: 4.0) Microsoft .NET Framework 4.5 (Version: 4.5.50709) Microsoft Application Error Reporting (Version: 12.0.6015.5000) Microsoft Chart Controls for Microsoft .NET Framework 3.5 (KB2500170) (x32 Version: 3.5.30730.0) Microsoft Games for Windows - LIVE Redistributable (x32 Version: 3.5.92.0) Microsoft Games for Windows Marketplace (x32 Version: 3.5.50.0) Microsoft Office Access Runtime (English) 2007 (x32 Version: 12.0.6612.1000) Microsoft Silverlight (Version: 5.1.20513.0) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.50727.42) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.59193) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.56336) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000) Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (Version: 9.0.21022) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (x32 Version: 9.0.21022) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30411 (x32 Version: 9.0.30411) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (x32 Version: 11.0.50727.1) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (x32 Version: 11.0.50727.1) Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (Version: 11.0.50727) Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (Version: 11.0.50727) Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (x32 Version: 11.0.50727) Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (x32 Version: 11.0.50727) Microsoft XNA Framework Redistributable 3.1 (x32 Version: 3.1.10527.0) Microsoft XNA Framework Redistributable 4.0 (x32 Version: 4.0.20823.0) Microsoft XNA Framework Redistributable 4.0 Refresh (x32 Version: 4.0.30901.0) Microsoft_VC80_CRT_x86 (x32 Version: 8.0.50727.4053) Microsoft_VC90_CRT_x86 (x32 Version: 1.00.0000) Microsoft-Maus- und Tastatur-Center (Version: 1.1.500.0) Might & Magic ® Heroes ® VI (x32) Monaco (x32) Mozilla Firefox 22.0 (x86 de) (x32 Version: 22.0) Mozilla Maintenance Service (x32 Version: 22.0) Mozilla Thunderbird 17.0.7 (x86 de) (x32 Version: 17.0.7) MSI Afterburner 3.0.0 Beta 11 (x32 Version: 3.0.0 Beta 11) Noitu Love 2 Devolution (x32) NVIDIA PhysX (x32 Version: 9.12.0213) Offspring Fling! (x32) OpenAL (x32) OpenOffice.org 3.3 (x32 Version: 3.3.9567) Orcs Must Die! 2 (x32) Organ Trail: Director's Cut (x32) Origin (x32 Version: 8.5.0.4554) Party of Sin (x32) Penny Arcade's On the Rain-Slick Precipice of Darkness 3 (x32) Penny Arcade's On the Rain-Slick Precipice of Darkness 4 (x32) Pidgin (x32 Version: 2.10.7) Pluto Client (x32) Psychonauts (x32) PunkBuster Services (x32 Version: 0.992) QuickPar 0.9 (x32 Version: 0.9) QuickSFV (Remove only) QuickTime (x32 Version: 7.74.80.86) RadeonPro 1.0 (Build 1.1.1.0) (x32) RAGE (x32) Rapture3D 2.4.11 Game (x32) Rayman Origins (x32) Realtek Ethernet Controller Driver (x32 Version: 7.67.1226.2012) Realtek High Definition Audio Driver (x32 Version: 6.0.1.6657) Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.34.0) Resident Evil 6 / Biohazard 6 (x32) Retro City Rampage™ (x32) Risen 2 - Dark Waters (x32) RivaTuner Statistics Server 5.2.0 (x32 Version: 5.2.0) ROCCAT Kone[+] Mouse Driver (x32) Rochard (x32) SABnzbd 0.7.14 (x32 Version: 0.7.14) Sacred 2 Gold (x32) Saints Row 2 (x32) Sanctum 2 (x32) Scribblenauts Unlimited (x32) Serious Sam 3: BFE (x32) SHARKOON DarkGlider Gaming Mouse (x32) Sid Meier's Civilization V (x32) Sine Mora (x32) SiSoftware Sandra Lite 2013.SP4 (Version: 19.50.2013.7) Skype™ 6.0 (x32 Version: 6.0.126) Snapshot (x32) Sniper Elite: Nazi Zombie Army (x32) Sonic & All-Stars Racing Transformed (x32) Spec Ops: The Line (x32) Splashtop Software Updater (x32 Version: 1.5.6.11) Splashtop Streamer (x32 Version: 2.4.0.1) Spotify (HKCU Version: 0.9.1.57.ge7405149) Spybot - Search & Destroy (x32 Version: 1.6.2) Steam (x32 Version: 1.0.0.0) Storm in a Teacup (x32) Strong Bad Episode 1: Homestar Ruiner (x32) Super Meat Boy (x32) Super-Charger (x32 Version: 1.0.117) Syndicate (x32) System Requirements Lab CYRI (x32 Version: 4.5.1.0) System Shock 2 (x32) TeamingGenie (x32 Version: 1.0.1.3) TeamSpeak 3 Client (Version: 3.0.8.1) TeamViewer 8 (x32 Version: 8.0.17292) TechPowerUp GPU-Z (x32) Terraria (x32) The Basement Collection (x32) The Binding Of Isaac (x32) The Book of Unwritten Tales (x32) The Book of Unwritten Tales: The Critter Chronicles (x32) The Secret World (x32 Version: 1.0.0) The Walking Dead (x32) They Bleed Pixels (x32) To the Moon (x32) Tom Clancy's Splinter Cell: Conviction (x32) Tomb Raider (x32) Torchlight II (x32) Trine 2 (x32) Tweaking.com - Windows Repair (All in One) (x32 Version: 1.8.0) Überwachungstool für die Intel® Turbo-Boost-Technik 2.0 (Version: 2.1.23.0) Ubisoft Game Launcher (x32 Version: 1.0.0.0) Unity Web Player (HKCU Version: ) Unmechanical (x32) Update for Microsoft .NET Framework 4.5 (KB2750147) (x32 Version: 1) Update for Microsoft .NET Framework 4.5 (KB2805221) (x32 Version: 1) Update for Microsoft .NET Framework 4.5 (KB2805226) (x32 Version: 1) Uplay (x32 Version: 2.0) USB Sound Blaster HD (x32 Version: 1.0) VideoGenie (x32 Version: 1.0.0.12) Viking: Battle for Asgard (x32) Warlock - Master of the Arcane (x32) WBFS Manager 3.0 (x32 Version: 3.0) Windows Live ID Sign-in Assistant (Version: 6.500.3165.0) Winki (x32 Version: 3.2.114) WinRAR 4.10 (64-Bit) (Version: 4.10.0) WinSCP 4.0.7 (x32 Version: 4.0.7) Wizorb (x32) Worms Revolution (x32) ==================== Restore Points ========================= 04-08-2013 08:08:50 DirectX wurde installiert 04-08-2013 09:56:37 Removed Dual-Core Optimizer. ==================== Hosts content: ========================== 2009-07-14 04:34 - 2013-08-05 10:58 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (whitelisted) ============= Task: {136936E4-3F23-4B9F-B2F8-675D70101B28} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-05-24] (Piriform Ltd) Task: {16ED369E-EA17-4ABA-9BE9-F58EE3844062} - System32\Tasks\Microsoft\Windows Defender\MP Scheduled Scan => c:\program files\windows defender\MpCmdRun.exe [2009-07-14] (Microsoft Corporation) Task: {18B8A6D1-BEB0-4960-8A3A-FA92CFFAE4DE} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => C:\Program Files\Microsoft Device Center\itype.exe [2012-06-26] (Microsoft Corporation) Task: {1BC7E8FE-ABD7-45F6-8CC4-603FEC289FC7} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {5E14B62F-E945-4A07-9DAD-16D6EA5539CA} - System32\Tasks\User_Feed_Synchronization-{0B41F018-6579-4320-882F-E13EBD3F2D39} => C:\Windows\system32\msfeedssync.exe [2013-08-01] (Microsoft Corporation) Task: {61F4856A-A653-45E8-94B3-831BB83C682F} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe [2013-07-15] () Task: {71F94EA0-0DEB-429F-82C8-7756EDAEF85B} - System32\Tasks\Microsoft_Hardware_Launch_devicecenter_exe => C:\Program Files\Microsoft Device Center\devicecenter.exe [2012-06-26] (Microsoft) Task: {74786F80-F264-4AF5-8004-5B7D11493CE0} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => C:\Program Files\Microsoft Device Center\ipoint.exe [2012-06-26] (Microsoft Corporation) Task: {A1E7A73E-BE46-4DBE-9E21-8CF57447A553} - System32\Tasks\RTSS => C:\Program Files (x86)\RivaTuner Statistics Server\RTSS.exe [2013-06-14] () Task: {A89224AD-AFD4-4BD4-89A1-6BE4E6CD48E1} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-07-14] (Adobe Systems Incorporated) Task: {AC300B61-F251-4208-80AE-629EE72B97E4} - System32\Tasks\PCMeter\Startup => C:\Program Files (x86)\PCMeter\PCMeterV0.3.exe [2012-08-25] (AddGadgets) Task: {E327EA38-E45D-4402-935A-B6D93F5D7A02} - System32\Tasks\Core Temp Autostart RLXD => C:\Program Files\Core Temp\Core Temp.exe [2012-10-14] () Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (08/04/2013 01:09:49 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.CRT,processorArchitecture="x86",type="win32",version="8.0.50727.762"1". Die abhängige Assemblierung "Microsoft.VC80.CRT,processorArchitecture="x86",type="win32",version="8.0.50727.762"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (08/04/2013 01:09:49 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.CRT,processorArchitecture="x86",type="win32",version="8.0.50727.762"1". Die abhängige Assemblierung "Microsoft.VC80.CRT,processorArchitecture="x86",type="win32",version="8.0.50727.762"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (08/03/2013 06:02:57 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: sidebar.exe, Version: 6.1.7601.17514, Zeitstempel: 0x4ce79791 Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.17725, Zeitstempel: 0x4ec49b8f Ausnahmecode: 0xc0000374 Fehleroffset: 0x000ce6c3 ID des fehlerhaften Prozesses: 0x1010 Startzeit der fehlerhaften Anwendung: 0xsidebar.exe0 Pfad der fehlerhaften Anwendung: sidebar.exe1 Pfad des fehlerhaften Moduls: sidebar.exe2 Berichtskennung: sidebar.exe3 Error: (08/01/2013 04:13:43 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.CRT,processorArchitecture="x86",type="win32",version="8.0.50727.762"1". Die abhängige Assemblierung "Microsoft.VC80.CRT,processorArchitecture="x86",type="win32",version="8.0.50727.762"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (08/01/2013 04:13:43 PM) (Source: SideBySide) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "Microsoft.VC80.CRT,processorArchitecture="x86",type="win32",version="8.0.50727.762"1". Die abhängige Assemblierung "Microsoft.VC80.CRT,processorArchitecture="x86",type="win32",version="8.0.50727.762"" konnte nicht gefunden werden. Verwenden Sie für eine detaillierte Diagnose das Programm "sxstrace.exe". Error: (08/01/2013 11:39:15 AM) (Source: PerfOS) (User: ) Description: Error: (08/01/2013 11:39:14 AM) (Source: PerfOS) (User: ) Description: Error: (08/01/2013 11:39:13 AM) (Source: PerfOS) (User: ) Description: Error: (08/01/2013 11:39:12 AM) (Source: PerfOS) (User: ) Description: Error: (08/01/2013 11:38:54 AM) (Source: PerfOS) (User: ) Description: System errors: ============= Error: (08/05/2013 01:41:26 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Superfetch" wurde mit folgendem Fehler beendet: %%2 Error: (08/05/2013 01:41:09 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "WinRing0_1_2_0" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (08/05/2013 01:40:45 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Net.Tcp Listener Adapter" ist vom Dienst "Net.Tcp Port Sharing Service" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1058 Error: (08/05/2013 01:40:45 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Net.Pipe Listener Adapter" ist von folgendem Dienst abhängig: was. Dieser Dienst ist eventuell nicht installiert. Error: (08/05/2013 01:40:45 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Net.Msmq Listener Adapter" ist von folgendem Dienst abhängig: msmq. Dieser Dienst ist eventuell nicht installiert. Error: (08/05/2013 01:40:28 PM) (Source: volmgr) (User: ) Description: Die Initialisierung des Speicherabbildes ist fehlgeschlagen. Error: (08/05/2013 01:30:58 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "WinRing0_1_2_0" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (08/05/2013 01:30:56 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Superfetch" wurde mit folgendem Fehler beendet: %%2 Error: (08/05/2013 01:30:15 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Net.Tcp Listener Adapter" ist vom Dienst "Net.Tcp Port Sharing Service" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1058 Error: (08/05/2013 01:30:15 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Net.Pipe Listener Adapter" ist von folgendem Dienst abhängig: was. Dieser Dienst ist eventuell nicht installiert. Microsoft Office Sessions: ========================= Error: (08/04/2013 01:09:49 PM) (Source: SideBySide)(User: ) Description: Microsoft.VC80.CRT,processorArchitecture="x86",type="win32",version="8.0.50727.762"c:\program files (x86)\Last.fm\ext_skypenotify.dll Error: (08/04/2013 01:09:49 PM) (Source: SideBySide)(User: ) Description: Microsoft.VC80.CRT,processorArchitecture="x86",type="win32",version="8.0.50727.762"c:\program files (x86)\Last.fm\ext_messengernotify.dll Error: (08/03/2013 06:02:57 PM) (Source: Application Error)(User: ) Description: sidebar.exe6.1.7601.175144ce79791ntdll.dll6.1.7601.177254ec49b8fc0000374000ce6c3101001ce9062e7b4f1fcC:\Program Files (x86)\Windows Sidebar\sidebar.exeC:\Windows\SysWOW64\ntdll.dll2954e0ee-fc56-11e2-81c2-8c89a57d4ce9 Error: (08/01/2013 04:13:43 PM) (Source: SideBySide)(User: ) Description: Microsoft.VC80.CRT,processorArchitecture="x86",type="win32",version="8.0.50727.762"c:\program files (x86)\Last.fm\ext_skypenotify.dll Error: (08/01/2013 04:13:43 PM) (Source: SideBySide)(User: ) Description: Microsoft.VC80.CRT,processorArchitecture="x86",type="win32",version="8.0.50727.762"c:\program files (x86)\Last.fm\ext_messengernotify.dll Error: (08/01/2013 11:39:15 AM) (Source: PerfOS)(User: ) Description: Error: (08/01/2013 11:39:14 AM) (Source: PerfOS)(User: ) Description: Error: (08/01/2013 11:39:13 AM) (Source: PerfOS)(User: ) Description: Error: (08/01/2013 11:39:12 AM) (Source: PerfOS)(User: ) Description: Error: (08/01/2013 11:38:54 AM) (Source: PerfOS)(User: ) Description: CodeIntegrity Errors: =================================== Date: 2013-08-05 10:58:11.401 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume4\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-08-05 10:58:11.361 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume4\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2012-12-08 15:19:23.845 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume4\Windows\System32\MBWrp64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2012-12-08 15:19:23.829 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume4\Windows\System32\MBWrp64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2012-12-08 15:18:56.884 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume4\Windows\System32\MBWrp64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2012-12-08 15:18:56.869 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume4\Windows\System32\MBWrp64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2012-12-08 15:18:51.831 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume4\Windows\System32\MBWrp64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2012-12-08 15:18:51.816 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume4\Windows\System32\MBWrp64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2012-12-04 23:39:21.579 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume4\Windows\System32\MBWrp64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2012-12-04 23:39:21.567 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume4\Windows\System32\MBWrp64.dll" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Memory info =========================== Percentage of memory in use: 19% Total physical RAM: 16354.07 MB Available physical RAM: 13214.72 MB Total Pagefile: 16352.26 MB Available Pagefile: 12934.27 MB Total Virtual: 8192 MB Available Virtual: 8191.81 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:119.14 GB) (Free:11.78 GB) NTFS (Disk=0 Partition=2) Drive d: (Volume) (Fixed) (Total:931.51 GB) (Free:13.77 GB) NTFS (Disk=1 Partition=1) Drive e: (Datenhafen) (Fixed) (Total:2328.64 GB) (Free:180.11 GB) NTFS (Disk=2 Partition=2) ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 119 GB) (Disk ID: 06C3B62E) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=119 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows XP) (Size: 932 GB) (Disk ID: 54108E94) Partition 1: (Not Active) - (Size=932 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (Size: 2329 GB) (Disk ID: 05742A4F) Partition: GPT Partition Type ==================== End Of Log ============================ Geändert von RLXD (05.08.2013 um 12:45 Uhr) |
05.08.2013, 19:11 | #8 |
/// the machine /// TB-Ausbilder | Spiele minimieren sich in unregelmäßigen Abständen und Add-On "Plus-HD-2.3" entfernen.ESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu Spiele minimieren sich in unregelmäßigen Abständen und Add-On "Plus-HD-2.3" entfernen. |
angemeldet, deal finder, entfernen, firefox, hintergrund, immernoch, nervig, pop-ups, problemchen, probleme, rechner, spiele, spiele minimieren, spielen, spyhunter, spyhunter entfernen, starten, trojan.agent, unregelmäßige, versucht, weiterhelfen, werbung, würde |