|
Log-Analyse und Auswertung: Anwendungen minimieren sich automatisch?Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
07.08.2013, 17:29 | #1 |
| Anwendungen minimieren sich automatisch? Hallo! Seit einigen Tagen minimieren sich meine Anwendungen automatisch. Da Google mein Freund ist versuchte er mir weiter zu helfen und in diesen Foren habe ich heraus gelesen, dass man das Programm HijackThis benutzen sollte Das habe ich auch gemacht ..... Habe seit kurzen einen neuen Pc, darum habe ich in letzter Zeit sehr viel gedownloadet Vielleicht ist das auch noch interessant: Ich habe etwas gedownloadet und bevor ich es ausgeführt habe, scannte ich es mit VirusTotal.com. Zwei Drittel stellten fest das dieses Programm ein Trojaner ist.... Daraufhin löschte ich es sofort... Danke schon im voraus! _________________________________________________________ Logfile of Trend Micro HijackThis v2.0.4 Scan saved at 10:23:56, on 07.08.2013 Platform: Windows 7 SP1 (WinNT 6.00.3505) MSIE: Internet Explorer v10.0 (10.00.9200.16611) Boot mode: Normal Running processes: C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe D:\Steam\Steam.exe D:\W-LAN\TWCU.exe C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe D:\Internet\SRWare Iron\iron.exe D:\Internet\SRWare Iron\iron.exe D:\Internet\SRWare Iron\iron.exe D:\Internet\SRWare Iron\iron.exe D:\Internet\SRWare Iron\iron.exe D:\Internet\SRWare Iron\iron.exe D:\HijackThis\HiJackThis204.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://localoem.msn.com R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://localoem.msn.com R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://go.microsoft.com/fwlink/p/?LinkId=255141 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/p/?LinkId=255141 R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = F2 - REG:system.ini: UserInit=userinit.exe O4 - HKCU\..\Run: [Sidebar] C:\Program Files\Windows Sidebar\sidebar.exe /autoRun O4 - HKCU\..\Run: [Steam] "D:\Steam\Steam.exe" -silent O4 - Global Startup: TP-LINK Wireless Configuration Utility.lnk = D:\W-LAN\TWCU.exe O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\SKYPE4~1.DLL O20 - AppInit_DLLs: C:\Program Files (x86)\NVIDIA~1\NVSTRE~1\rxinput.dll O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing) O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing) O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing) O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing) O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing) O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing) O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing) O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing) O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing) O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing) O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing) O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing) O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing) O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing) O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing) -- End of file - 5803 bytes |
07.08.2013, 17:50 | #2 |
/// Malware-holic | Anwendungen minimieren sich automatisch? Hi
__________________nächstes mal bitte die angepinnten Themen lesen, niemand will HijackThis Logs sehen :-) Es folgt eine Anweisung zu FRST, davor kommt eine, die die Additions.txt betrifft, bitte beachten. Empfehlungen fürs Deinstallieren Bitte kopiere die Liste der installierten Programme aus der additions.txt hier in deinen Thread. Notiere mir bitte hinter jede Zeile, ob folgende Kategorie zutrifft: Unbekannt, Nötig, Unnötig Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
07.08.2013, 19:21 | #3 |
| Anwendungen minimieren sich automatisch? FRST:
__________________FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 07-08-2013 03 Ran by Gabriel (administrator) on 07-08-2013 20:13:27 Running from D:\Internet\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (SUPERAntiSpyware.com) D:\Internet\SASCORE64.EXE (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (SUPERAntiSpyware.com) D:\Internet\SUPERAntiSpyware.exe () D:\W-LAN\TWCU.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (SRWare) D:\Internet\SRWare Iron\iron.exe (SRWare) D:\Internet\SRWare Iron\iron.exe (SRWare) D:\Internet\SRWare Iron\iron.exe (SRWare) D:\Internet\SRWare Iron\iron.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RTHDVCPL] - C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7174216 2013-04-15] (Realtek Semiconductor) HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028896 2013-07-27] (NVIDIA Corporation) HKLM\...\Run: [IAStorIcon] - C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [286704 2013-03-22] (Intel Corporation) HKCU\...\Run: [Steam] - D:\Steam\Steam.exe [1807272 2013-07-27] (Valve Corporation) HKCU\...\Run: [SUPERAntiSpyware] - D:\Internet\SUPERAntiSpyware.exe [5622512 2013-05-15] (SUPERAntiSpyware.com) AppInit_DLLs: C:\Program Files\NVIDIA~1\NVSTRE~1\rxinput.dll [653600 2013-07-27] (NVIDIA Corporation) AppInit_DLLs-x32: C:\Program Files (x86)\NVIDIA~1\NVSTRE~1\rxinput.dll [593696 2013-07-27] (NVIDIA Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TP-LINK Wireless Configuration Utility.lnk ShortcutTarget: TP-LINK Wireless Configuration Utility.lnk -> D:\W-LAN\TWCU.exe () ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = MSN Deutschland: Aktuelle Nachrichten, Outlook.com Email und Skype Login. HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = MSN Deutschland: Aktuelle Nachrichten, Outlook.com Email und Skype Login. SearchScopes: HKLM - DefaultScope {98118634-B1DA-409A-BBA2-E6A614C58408} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE9TR&src=IE9TR&pc=MASBJS SearchScopes: HKLM - {98118634-B1DA-409A-BBA2-E6A614C58408} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE9TR&src=IE9TR&pc=MASBJS SearchScopes: HKLM-x32 - DefaultScope {98118634-B1DA-409A-BBA2-E6A614C58408} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE9TR&src=IE9TR&pc=MASBJS SearchScopes: HKLM-x32 - {98118634-B1DA-409A-BBA2-E6A614C58408} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE9TR&src=IE9TR&pc=MASBJS Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\SKYPE4~1.DLL (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 10.0.0.138 ==================== Services (Whitelisted) ================= R2 !SASCORE; D:\Internet\SASCORE64.EXE [143088 2013-05-08] (SUPERAntiSpyware.com) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15344 2013-03-22] (Intel Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [14984480 2013-07-27] (NVIDIA Corporation) R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-08-04] () ==================== Drivers (Whitelisted) ==================== S3 E100B; C:\Windows\System32\DRIVERS\efe5b32e.sys [192256 2009-06-10] (Intel Corporation) R0 iaStorF; C:\Windows\System32\drivers\iaStorF.sys [28656 2013-03-18] (Intel Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [39712 2013-05-14] (NVIDIA Corporation) R1 SASDIFSV; D:\Internet\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com) R1 SASDIFSV; D:\Internet\SASDIFSV64.SYS [14928 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com) R1 SASKUTIL; D:\Internet\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com) R1 SASKUTIL; D:\Internet\SASKUTIL64.SYS [12368 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com) S3 Serial; C:\Windows\system32\drivers\serial.sys [94208 2009-07-14] (Brother Industries Ltd.) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-08-07 20:13 - 2013-08-07 20:13 - 00000000 ____D C:\FRST 2013-08-07 18:48 - 2013-08-07 18:50 - 00000426 _____ C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 495b69b6-6e71-4454-9d9c-346530c6057f.job 2013-08-07 18:48 - 2013-08-07 18:50 - 00000426 _____ C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 1799b0e1-6885-4d89-8317-760a9b87957e.job 2013-08-07 18:48 - 2013-08-07 18:48 - 00003508 _____ C:\Windows\System32\Tasks\SUPERAntiSpyware Scheduled Task 1799b0e1-6885-4d89-8317-760a9b87957e 2013-08-07 18:48 - 2013-08-07 18:48 - 00003434 _____ C:\Windows\System32\Tasks\SUPERAntiSpyware Scheduled Task 495b69b6-6e71-4454-9d9c-346530c6057f 2013-08-07 18:47 - 2013-08-07 18:47 - 00000648 _____ C:\Users\Gabriel\Desktop\SUPERAntiSpyware Free Edition.lnk 2013-08-07 18:47 - 2013-08-07 18:47 - 00000000 ____D C:\Users\Gabriel\AppData\Roaming\SUPERAntiSpyware.com 2013-08-07 18:47 - 2013-08-07 18:47 - 00000000 ____D C:\Users\Gabriel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware 2013-08-07 18:47 - 2013-08-07 18:47 - 00000000 ____D C:\ProgramData\SUPERAntiSpyware.com 2013-08-07 17:38 - 2013-08-07 17:38 - 00000000 ____D C:\Users\Gabriel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2013-08-06 11:13 - 2009-09-04 17:44 - 00517960 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_5.dll 2013-08-06 11:13 - 2009-09-04 17:44 - 00515416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_5.dll 2013-08-06 11:13 - 2009-09-04 17:44 - 00238936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_5.dll 2013-08-06 11:13 - 2009-09-04 17:44 - 00176968 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_5.dll 2013-08-06 11:13 - 2009-09-04 17:44 - 00073544 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_3.dll 2013-08-06 11:13 - 2009-09-04 17:44 - 00069464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_3.dll 2013-08-06 11:13 - 2009-09-04 17:29 - 05554512 _____ (Microsoft Corporation) C:\Windows\system32\d3dcsx_42.dll 2013-08-06 11:13 - 2009-09-04 17:29 - 05501792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dcsx_42.dll 2013-08-06 11:13 - 2009-09-04 17:29 - 02582888 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_42.dll 2013-08-06 11:13 - 2009-09-04 17:29 - 02475352 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_42.dll 2013-08-06 11:13 - 2009-09-04 17:29 - 01974616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_42.dll 2013-08-06 11:13 - 2009-09-04 17:29 - 01892184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_42.dll 2013-08-06 11:13 - 2009-09-04 17:29 - 00523088 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_42.dll 2013-08-06 11:13 - 2009-09-04 17:29 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_42.dll 2013-08-06 11:13 - 2009-09-04 17:29 - 00285024 _____ (Microsoft Corporation) C:\Windows\system32\d3dx11_42.dll 2013-08-06 11:13 - 2009-09-04 17:29 - 00235344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx11_42.dll 2013-08-06 11:13 - 2009-03-16 14:18 - 00521560 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_4.dll 2013-08-06 11:13 - 2009-03-16 14:18 - 00517448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_4.dll 2013-08-06 11:13 - 2009-03-16 14:18 - 00235352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_4.dll 2013-08-06 11:13 - 2009-03-16 14:18 - 00174936 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_4.dll 2013-08-06 11:13 - 2009-03-16 14:18 - 00024920 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_6.dll 2013-08-06 11:13 - 2009-03-16 14:18 - 00022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_6.dll 2013-08-06 11:13 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_41.dll 2013-08-06 11:13 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_41.dll 2013-08-06 11:13 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_41.dll 2013-08-06 11:13 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_41.dll 2013-08-06 11:13 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_41.dll 2013-08-06 11:13 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_41.dll 2013-08-06 11:13 - 2008-10-27 10:04 - 00518480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_3.dll 2013-08-06 11:13 - 2008-10-27 10:04 - 00514384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_3.dll 2013-08-06 11:13 - 2008-10-27 10:04 - 00235856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_3.dll 2013-08-06 11:13 - 2008-10-27 10:04 - 00175440 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_3.dll 2013-08-06 11:13 - 2008-10-27 10:04 - 00074576 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_2.dll 2013-08-06 11:13 - 2008-10-27 10:04 - 00070992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_2.dll 2013-08-06 11:13 - 2008-10-27 10:04 - 00025936 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_5.dll 2013-08-06 11:13 - 2008-10-27 10:04 - 00023376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_5.dll 2013-08-06 11:13 - 2008-10-15 06:22 - 05631312 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_40.dll 2013-08-06 11:13 - 2008-10-15 06:22 - 04379984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_40.dll 2013-08-06 11:13 - 2008-10-15 06:22 - 02605920 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_40.dll 2013-08-06 11:13 - 2008-10-15 06:22 - 02036576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_40.dll 2013-08-06 11:13 - 2008-10-15 06:22 - 00519000 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_40.dll 2013-08-06 11:13 - 2008-10-15 06:22 - 00452440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_40.dll 2013-08-06 11:13 - 2008-07-31 10:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll 2013-08-06 11:13 - 2008-07-31 10:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2013-08-06 11:13 - 2008-07-31 10:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2013-08-06 11:13 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2013-08-06 11:13 - 2008-07-31 10:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2013-08-06 11:13 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2013-08-06 11:13 - 2008-07-10 11:01 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2013-08-06 11:13 - 2008-07-10 11:00 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2013-08-06 11:13 - 2008-07-10 11:00 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2013-08-06 11:13 - 2008-07-10 11:00 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2013-08-06 11:13 - 2008-07-10 11:00 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2013-08-06 11:13 - 2008-07-10 11:00 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2013-08-06 11:13 - 2008-05-30 14:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2013-08-06 11:13 - 2008-05-30 14:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll 2013-08-06 11:13 - 2008-05-30 14:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2013-08-06 11:13 - 2008-05-30 14:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll 2013-08-06 11:12 - 2013-08-06 11:12 - 00010085 _____ C:\Windows\DirectX.log 2013-08-06 11:12 - 2008-05-30 14:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll 2013-08-06 11:12 - 2008-05-30 14:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2013-08-06 11:12 - 2008-05-30 14:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll 2013-08-06 11:12 - 2008-05-30 14:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2013-08-06 11:12 - 2008-05-30 14:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2013-08-06 11:12 - 2008-05-30 14:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2013-08-06 11:12 - 2008-05-30 14:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2013-08-06 11:12 - 2008-05-30 14:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll 2013-08-06 11:12 - 2008-05-30 14:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2013-08-06 11:12 - 2008-05-30 14:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll 2013-08-06 11:12 - 2008-03-05 16:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2013-08-06 11:12 - 2008-03-05 16:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll 2013-08-06 11:12 - 2008-03-05 16:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll 2013-08-06 11:12 - 2008-03-05 16:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2013-08-06 11:12 - 2008-03-05 16:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2013-08-06 11:12 - 2008-03-05 16:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll 2013-08-06 11:12 - 2008-03-05 15:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2013-08-06 11:12 - 2008-03-05 15:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2013-08-06 11:12 - 2008-03-05 15:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2013-08-06 11:12 - 2008-03-05 15:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll 2013-08-06 11:12 - 2008-02-05 23:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2013-08-06 11:12 - 2008-02-05 23:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll 2013-08-06 11:12 - 2007-10-22 03:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2013-08-06 11:12 - 2007-10-22 03:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll 2013-08-06 11:12 - 2007-10-22 03:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2013-08-06 11:12 - 2007-10-22 03:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll 2013-08-06 11:12 - 2007-10-12 15:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2013-08-06 11:12 - 2007-10-12 15:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2013-08-06 11:12 - 2007-10-12 15:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2013-08-06 11:12 - 2007-10-12 15:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll 2013-08-06 11:12 - 2007-10-02 09:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2013-08-06 11:12 - 2007-10-02 09:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll 2013-08-06 11:12 - 2007-07-20 00:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2013-08-06 11:12 - 2007-07-20 00:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll 2013-08-06 11:12 - 2007-07-19 18:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2013-08-06 11:12 - 2007-07-19 18:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2013-08-06 11:12 - 2007-07-19 18:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2013-08-06 11:12 - 2007-07-19 18:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll 2013-08-06 11:12 - 2007-07-19 18:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2013-08-06 11:12 - 2007-07-19 18:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll 2013-08-06 11:12 - 2007-06-20 20:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2013-08-06 11:12 - 2007-06-20 20:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll 2013-08-06 11:12 - 2007-05-16 16:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2013-08-06 11:12 - 2007-05-16 16:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2013-08-06 11:12 - 2007-05-16 16:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2013-08-06 11:12 - 2007-05-16 16:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll 2013-08-06 11:12 - 2007-05-16 16:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2013-08-06 11:12 - 2007-05-16 16:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll 2013-08-06 11:12 - 2007-04-04 18:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2013-08-06 11:12 - 2007-04-04 18:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2013-08-06 11:12 - 2007-04-04 18:54 - 00107368 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_3.dll 2013-08-06 11:12 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll 2013-08-06 11:12 - 2007-03-15 16:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2013-08-06 11:12 - 2007-03-15 16:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2013-08-06 11:12 - 2007-03-12 16:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2013-08-06 11:12 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2013-08-06 11:12 - 2007-03-12 16:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2013-08-06 11:12 - 2007-03-12 16:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2013-08-06 11:12 - 2007-03-05 12:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2013-08-06 11:12 - 2007-03-05 12:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2013-08-06 11:12 - 2007-01-24 15:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2013-08-06 11:12 - 2007-01-24 15:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2013-08-06 11:12 - 2006-12-08 12:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2013-08-06 11:12 - 2006-12-08 12:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2013-08-06 11:12 - 2006-11-29 13:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll 2013-08-06 11:12 - 2006-11-29 13:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll 2013-08-06 11:12 - 2006-11-29 13:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2013-08-06 11:12 - 2006-11-29 13:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2013-08-06 11:12 - 2006-09-28 16:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2013-08-06 11:12 - 2006-09-28 16:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll 2013-08-06 11:12 - 2006-09-28 16:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2013-08-06 11:12 - 2006-09-28 16:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2013-08-06 11:12 - 2006-07-28 09:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2013-08-06 11:12 - 2006-07-28 09:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2013-08-06 11:12 - 2006-07-28 09:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2013-08-06 11:12 - 2006-07-28 09:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2013-08-06 11:12 - 2006-05-31 07:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2013-08-06 11:12 - 2006-05-31 07:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2013-08-06 11:12 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2013-08-06 11:12 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2013-08-06 11:12 - 2006-03-31 12:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2013-08-06 11:12 - 2006-03-31 12:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2013-08-06 11:12 - 2006-03-31 12:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2013-08-06 11:12 - 2006-03-31 12:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2013-08-06 11:12 - 2006-02-03 08:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2013-08-06 11:12 - 2006-02-03 08:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2013-08-06 11:12 - 2006-02-03 08:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2013-08-06 11:12 - 2006-02-03 08:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2013-08-06 11:12 - 2006-02-03 08:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2013-08-06 11:12 - 2006-02-03 08:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2013-08-06 11:12 - 2005-12-05 18:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2013-08-06 11:12 - 2005-12-05 18:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2013-08-06 11:12 - 2005-07-22 19:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2013-08-06 11:12 - 2005-07-22 19:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2013-08-06 11:12 - 2005-05-26 15:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2013-08-06 11:12 - 2005-05-26 15:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2013-08-06 11:12 - 2005-03-18 17:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2013-08-06 11:12 - 2005-03-18 17:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2013-08-06 11:12 - 2005-02-05 19:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2013-08-06 11:12 - 2005-02-05 19:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2013-08-04 16:10 - 2013-08-04 16:22 - 00000000 ____D C:\Users\Gabriel\Desktop\Hax 2013-08-04 16:09 - 2013-08-04 16:10 - 00000000 ____D C:\Users\Gabriel\AppData\Roaming\WinRAR 2013-08-04 16:09 - 2013-08-04 16:09 - 00000000 ____D C:\Users\Gabriel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2013-08-03 13:05 - 2013-08-04 14:46 - 00000000 ____D C:\Users\Gabriel\AppData\Roaming\Origin 2013-08-03 13:05 - 2013-08-03 13:07 - 00000000 ____D C:\Users\Gabriel\AppData\Local\Origin 2013-08-03 12:57 - 2013-08-03 13:09 - 00000000 ____D C:\ProgramData\Origin 2013-08-03 12:57 - 2013-08-03 12:57 - 00000528 _____ C:\Users\Public\Desktop\Origin.lnk 2013-08-03 12:57 - 2013-08-03 12:57 - 00000000 ____D C:\ProgramData\Electronic Arts 2013-08-03 12:13 - 2013-08-03 12:13 - 00003104 _____ C:\Windows\System32\Tasks\{207E2780-EB80-4AB7-9E83-CC98CD947FB0} 2013-08-03 12:12 - 2013-08-04 17:37 - 00000000 ____D C:\Users\Gabriel\AppData\Roaming\Skype 2013-08-03 12:12 - 2013-08-03 12:22 - 00000000 ____D C:\ProgramData\Skype 2013-08-03 12:12 - 2013-08-03 12:12 - 00003104 _____ C:\Windows\System32\Tasks\{73B4E9C8-01B1-45A7-A5AA-5DC59216AE70} 2013-08-03 12:12 - 2013-08-03 12:12 - 00002517 _____ C:\Users\Public\Desktop\Skype.lnk 2013-08-03 12:12 - 2013-08-03 12:12 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-08-02 21:59 - 2013-08-02 21:59 - 00000688 _____ C:\Users\Gabriel\Desktop\TeamSpeak 3 Client.lnk 2013-08-02 21:59 - 2013-08-02 21:59 - 00000000 ____D C:\Users\Gabriel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client 2013-08-02 21:37 - 2013-08-02 21:37 - 00013065 _____ C:\Users\Gabriel\Desktop\Windows Defender - Verknüpfung.lnk 2013-08-02 14:01 - 2013-08-02 14:01 - 00000199 _____ C:\Users\Gabriel\Desktop\Counter-Strike Source.url 2013-08-02 14:00 - 2013-08-02 14:00 - 00000201 _____ C:\Users\Gabriel\Desktop\Call of Duty Modern Warfare 2 - Multiplayer.url 2013-08-02 11:54 - 2013-08-04 16:29 - 00282296 _____ C:\Windows\SysWOW64\PnkBstrB.xtr 2013-08-02 11:53 - 2013-08-02 11:53 - 00000000 ____D C:\Users\Gabriel\AppData\Local\PunkBuster 2013-08-02 11:39 - 2013-08-02 11:39 - 00000542 _____ C:\Users\Public\Desktop\Steam.lnk 2013-08-02 11:36 - 2013-08-02 11:50 - 00000000 ____D C:\Users\Gabriel\Documents\Battlefield Heroes 2013-08-02 09:53 - 2013-08-04 16:29 - 00282296 _____ C:\Windows\SysWOW64\PnkBstrB.exe 2013-08-02 09:53 - 2013-08-04 16:29 - 00076888 _____ C:\Windows\SysWOW64\PnkBstrA.exe 2013-08-02 09:53 - 2013-08-04 16:21 - 00270240 _____ C:\Windows\SysWOW64\PnkBstrB.ex0 2013-08-02 09:53 - 2013-08-02 09:53 - 00000000 ____D C:\Users\Gabriel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EA Games 2013-08-01 17:06 - 2013-08-01 17:06 - 00692104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-08-01 17:06 - 2013-08-01 17:06 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-08-01 17:06 - 2013-08-01 17:06 - 00000000 ____D C:\Windows\SysWOW64\Macromed 2013-08-01 17:06 - 2013-08-01 17:06 - 00000000 ____D C:\Windows\system32\Macromed 2013-08-01 17:06 - 2013-08-01 17:06 - 00000000 ____D C:\Users\Gabriel\AppData\Roaming\Macromedia 2013-08-01 17:05 - 2013-08-01 17:06 - 00000000 ____D C:\Users\Gabriel\AppData\Local\Adobe 2013-08-01 16:46 - 2013-08-01 16:46 - 00000662 _____ C:\Users\Public\Desktop\Iron.lnk 2013-08-01 16:46 - 2013-08-01 16:46 - 00000000 ____D C:\Users\Gabriel\AppData\Local\Chromium 2013-08-01 16:44 - 2013-08-01 16:45 - 29742428 _____ (SRWare ) C:\Users\Gabriel\Downloads\srware_iron.exe 2013-08-01 16:42 - 2013-08-07 18:01 - 00000136 _____ C:\Users\Gabriel\Desktop\Passwörter.txt 2013-08-01 16:39 - 2013-08-01 16:39 - 00000000 _SHDL C:\Users\UpdatusUser\Vorlagen 2013-08-01 16:39 - 2013-08-01 16:39 - 00000000 _SHDL C:\Users\UpdatusUser\Startmenü 2013-08-01 16:39 - 2013-08-01 16:39 - 00000000 _SHDL C:\Users\UpdatusUser\Netzwerkumgebung 2013-08-01 16:39 - 2013-08-01 16:39 - 00000000 _SHDL C:\Users\UpdatusUser\Lokale Einstellungen 2013-08-01 16:39 - 2013-08-01 16:39 - 00000000 _SHDL C:\Users\UpdatusUser\Eigene Dateien 2013-08-01 16:39 - 2013-08-01 16:39 - 00000000 _SHDL C:\Users\UpdatusUser\Druckumgebung 2013-08-01 16:39 - 2013-08-01 16:39 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Musik 2013-08-01 16:39 - 2013-08-01 16:39 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Bilder 2013-08-01 16:39 - 2013-08-01 16:39 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Verlauf 2013-08-01 16:39 - 2013-08-01 16:39 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Anwendungsdaten 2013-08-01 16:39 - 2013-08-01 16:39 - 00000000 _SHDL C:\Users\UpdatusUser\Anwendungsdaten 2013-08-01 16:39 - 2013-08-01 16:39 - 00000000 ____D C:\NvidiaLogging 2013-08-01 16:39 - 2013-03-14 18:17 - 00000000 ____D C:\Users\UpdatusUser\AppData\Roaming\Adobe 2013-08-01 16:39 - 2010-11-21 04:50 - 00000020 ___SH C:\Users\UpdatusUser\ntuser.ini 2013-08-01 16:38 - 2013-08-01 16:38 - 00000000 ____D C:\Users\Gabriel\AppData\Local\NVIDIA 2013-08-01 16:38 - 2013-05-14 21:28 - 00039712 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2013-08-01 16:38 - 2013-05-14 21:27 - 00029984 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll 2013-08-01 16:38 - 2013-05-14 21:27 - 00028448 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2013-07-29 11:50 - 2013-07-29 11:53 - 00000000 ____D C:\Users\Gabriel\AppData\Local\Microsoft Games 2013-07-27 13:42 - 2013-07-27 14:04 - 00000000 ____D C:\Users\Gabriel\AppData\Roaming\TP-LINK 2013-07-26 20:11 - 2012-05-05 07:25 - 00007520 _____ C:\Windows\system32\athrextx.cat 2013-07-26 20:11 - 2011-07-29 05:36 - 02755584 _____ (Atheros Communications, Inc.) C:\Windows\system32\athrx.sys 2013-07-26 20:10 - 2013-07-27 13:41 - 00000000 ____D C:\ProgramData\TP-LINK 2013-07-26 19:54 - 2013-07-26 19:54 - 00058016 _____ C:\Users\Gabriel\AppData\Local\GDIPFONTCACHEV1.DAT 2013-07-26 19:54 - 2013-07-26 19:54 - 00000000 ____D C:\Users\Gabriel\AppData\Roaming\Intel Corporation 2013-07-26 19:53 - 2013-08-07 10:23 - 00000000 ____D C:\Users\Gabriel\AppData\Local\VirtualStore 2013-07-26 19:53 - 2013-08-02 21:16 - 00000000 ___RD C:\Users\Gabriel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2013-07-26 19:53 - 2013-08-02 11:39 - 00000000 ____D C:\Users\Gabriel 2013-07-26 19:53 - 2013-07-26 19:53 - 00001436 _____ C:\Users\Gabriel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Gabriel\Vorlagen 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Gabriel\Startmenü 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Gabriel\Netzwerkumgebung 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Gabriel\Lokale Einstellungen 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Gabriel\Eigene Dateien 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Gabriel\Druckumgebung 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Gabriel\Documents\Eigene Musik 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Gabriel\Documents\Eigene Bilder 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Gabriel\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Gabriel\AppData\Local\Verlauf 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Gabriel\AppData\Local\Anwendungsdaten 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Gabriel\Anwendungsdaten 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Default\Vorlagen 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Default\Startmenü 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Default\Eigene Dateien 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Default\Druckumgebung 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Programme 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\ProgramData\Vorlagen 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\ProgramData\Startmenü 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\ProgramData\Favoriten 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\ProgramData\Dokumente 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Dokumente und Einstellungen 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 __SHD C:\Recovery 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 ___RD C:\Users\Gabriel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 ___RD C:\Users\Gabriel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-07-26 19:53 - 2013-03-14 18:17 - 00000000 ____D C:\Users\Gabriel\AppData\Roaming\Adobe 2013-07-26 19:53 - 2010-11-21 04:50 - 00000020 ___SH C:\Users\Gabriel\ntuser.ini 2013-07-26 19:53 - 2009-07-14 06:54 - 00001304 _____ C:\Users\Gabriel\Desktop\Schreiben.lnk 2013-07-26 19:53 - 2009-07-14 06:49 - 00000000 ___RD C:\Users\Gabriel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance 2013-07-26 19:35 - 2013-08-07 18:50 - 00079758 _____ C:\Windows\WindowsUpdate.log 2013-07-23 13:23 - 2010-11-21 05:23 - 00383786 __RSH C:\bootmgr 2013-07-23 12:38 - 2013-07-23 12:38 - 00000012 _____ C:\Windows\csup.txt 2013-07-23 12:38 - 2013-07-23 12:38 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2013-07-23 12:37 - 2013-07-23 12:37 - 00000000 ____D C:\ProgramData\Intel 2013-07-23 12:37 - 2013-07-23 12:37 - 00000000 ____D C:\Program Files\Intel 2013-07-23 12:36 - 2013-07-23 12:36 - 00000000 ____D C:\Program Files (x86)\Intel 2013-07-23 12:36 - 2013-07-23 12:36 - 00000000 ____D C:\Intel 2013-07-23 12:36 - 2013-02-27 15:37 - 00053248 _____ (Windows XP Bundled build C-Centric Single User) C:\Windows\SysWOW64\CSVer.dll 2013-07-23 12:35 - 2013-07-23 12:35 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_iusb3hcs_01009.Wdf 2013-07-23 12:34 - 2013-08-07 18:50 - 00000000 ____D C:\ProgramData\NVIDIA 2013-07-23 12:34 - 2013-07-23 12:34 - 00001291 _____ C:\Users\Public\Desktop\GeForce Experience.lnk 2013-07-23 12:34 - 2013-07-23 12:34 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies 2013-07-23 12:33 - 2013-08-01 16:39 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2013-07-23 12:33 - 2013-08-01 16:39 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2013-07-23 12:33 - 2013-08-01 16:37 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2013-07-23 12:33 - 2013-06-21 14:06 - 00061216 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2013-07-23 12:33 - 2013-06-21 14:06 - 00053024 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2013-07-23 12:33 - 2013-06-21 12:23 - 06496544 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2013-07-23 12:33 - 2013-06-21 12:23 - 03514656 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2013-07-23 12:33 - 2013-06-21 12:23 - 02555680 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2013-07-23 12:33 - 2013-06-21 12:23 - 00884512 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2013-07-23 12:33 - 2013-06-21 12:23 - 00237856 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2013-07-23 12:33 - 2013-06-21 12:23 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2013-07-23 12:33 - 2013-06-20 06:17 - 03253909 _____ C:\Windows\system32\nvcoproc.bin 2013-07-23 12:30 - 2013-07-23 12:30 - 00000000 ____D C:\Windows\SysWOW64\RTCOM 2013-07-23 12:30 - 2013-07-23 12:30 - 00000000 ____D C:\Program Files\Realtek 2013-07-23 12:29 - 2013-07-27 13:41 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-07-23 12:29 - 2013-07-23 12:30 - 00002212 _____ C:\RHDSetup.log 2013-07-23 12:29 - 2013-07-23 12:29 - 00000000 ____D C:\Program Files (x86)\Realtek 2013-07-23 12:29 - 2013-04-17 20:11 - 03355336 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2013-07-23 12:29 - 2013-04-17 13:27 - 00465645 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT 2013-07-23 12:29 - 2013-04-16 16:21 - 01003080 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2013-07-23 12:29 - 2013-04-11 14:35 - 00138824 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2013-07-23 12:29 - 2013-04-10 17:22 - 02802760 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2013-07-23 12:29 - 2013-04-09 15:21 - 01102616 _____ (Creative Technology Ltd.) C:\Windows\system32\MBAPO264.dll 2013-07-23 12:29 - 2013-04-09 15:21 - 00918296 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\MBAPO232.dll 2013-07-23 12:29 - 2013-04-03 22:02 - 00613448 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2013-07-23 12:29 - 2013-04-01 14:06 - 02079816 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll 2013-07-23 12:29 - 2013-03-26 17:04 - 02734624 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2013-07-23 12:29 - 2013-03-26 15:40 - 03693128 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2013-07-23 12:29 - 2013-03-26 14:38 - 01659464 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2013-07-23 12:29 - 2013-03-23 03:43 - 00208072 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2013-07-23 12:29 - 2013-03-20 13:16 - 02102040 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2013-07-23 12:29 - 2013-03-20 13:16 - 00910104 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2013-07-23 12:29 - 2013-03-14 18:17 - 00000000 ____D C:\Users\Default\AppData\Roaming\Adobe 2013-07-23 12:29 - 2013-03-14 18:17 - 00000000 ____D C:\Users\Default User\AppData\Roaming\Adobe 2013-07-23 12:29 - 2013-02-28 13:10 - 02032408 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2013-07-23 12:29 - 2013-02-20 18:55 - 01284680 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2013-07-23 12:29 - 2012-06-20 17:26 - 00110592 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2013-07-23 12:29 - 2012-06-08 16:23 - 00083072 _____ (Creative Technology Ltd.) C:\Windows\system32\MBWrp64.dll 2013-07-23 12:29 - 2012-03-08 11:47 - 00108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2013-07-23 12:29 - 2011-12-20 15:32 - 00331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2013-07-23 12:29 - 2011-11-22 16:28 - 00014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2013-07-23 12:29 - 2010-11-21 04:50 - 00000020 ___SH C:\Users\Default\ntuser.ini 2013-07-23 12:29 - 2010-11-08 07:31 - 00375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2013-07-23 12:29 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2013-07-23 12:29 - 2010-11-08 07:31 - 00310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2013-07-23 12:29 - 2010-11-08 07:31 - 00204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2013-07-23 12:29 - 2010-11-08 07:31 - 00101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2013-07-23 12:29 - 2010-11-08 07:31 - 00078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2013-07-23 12:29 - 2010-11-03 18:30 - 00149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2013-07-23 12:29 - 2010-09-27 09:34 - 00318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2013-07-23 12:29 - 2009-11-24 09:55 - 00518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2013-07-23 12:29 - 2009-11-24 09:55 - 00211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2013-07-23 12:29 - 2009-11-24 09:55 - 00198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2013-07-23 12:29 - 2009-11-24 09:55 - 00155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2013-07-23 12:29 - 2009-11-18 07:12 - 00032344 _____ (Creative Technology Ltd.) C:\Windows\system32\Drivers\MBfilt64.sys 2013-07-11 08:50 - 2013-06-21 14:06 - 27781920 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2013-07-11 08:50 - 2013-06-21 14:06 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2013-07-11 08:50 - 2013-06-21 14:06 - 21102368 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-07-11 08:50 - 2013-06-21 14:06 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-07-11 08:50 - 2013-06-21 14:06 - 15920536 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2013-07-11 08:50 - 2013-06-21 14:06 - 15144928 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2013-07-11 08:50 - 2013-06-21 14:06 - 13411896 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-07-11 08:50 - 2013-06-21 14:06 - 12427240 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2013-07-11 08:50 - 2013-06-21 14:06 - 11235104 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2013-07-11 08:50 - 2013-06-21 14:06 - 09239344 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2013-07-11 08:50 - 2013-06-21 14:06 - 07687592 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-07-11 08:50 - 2013-06-21 14:06 - 07641832 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2013-07-11 08:50 - 2013-06-21 14:06 - 06324360 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-07-11 08:50 - 2013-06-21 14:06 - 02953504 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2013-07-11 08:50 - 2013-06-21 14:06 - 02936208 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2013-07-11 08:50 - 2013-06-21 14:06 - 02777888 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-07-11 08:50 - 2013-06-21 14:06 - 02597856 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2013-07-11 08:50 - 2013-06-21 14:06 - 02363680 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2013-07-11 08:50 - 2013-06-21 14:06 - 02002720 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-07-11 08:50 - 2013-06-21 14:06 - 01832224 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6432049.dll 2013-07-11 08:50 - 2013-06-21 14:06 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6432049.dll 2013-07-11 08:50 - 2013-06-21 14:06 - 01059560 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2013-07-11 08:50 - 2013-06-21 14:06 - 00925648 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2013-07-11 08:50 - 2013-06-21 14:06 - 00572704 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2013-07-11 08:50 - 2013-06-21 14:06 - 00570656 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2013-07-11 08:50 - 2013-06-21 14:06 - 00467232 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-07-11 08:50 - 2013-06-21 14:06 - 00465184 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-07-11 08:50 - 2013-06-21 14:06 - 00432928 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2013-07-11 08:50 - 2013-06-21 14:06 - 00372000 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2013-07-11 08:50 - 2013-06-21 14:06 - 00266448 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2013-07-11 08:50 - 2013-06-21 14:06 - 00218592 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2013-07-11 08:50 - 2013-06-21 14:06 - 00214448 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2013-07-11 08:50 - 2013-06-21 14:06 - 00181488 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2013-07-11 08:50 - 2013-06-21 14:06 - 00021578 _____ C:\Windows\system32\nvinfo.pb 2013-07-11 08:50 - 2013-06-21 14:02 - 01510176 _____ (NVIDIA Corporation) C:\Windows\system32\nvir3dgenco6420172.dll 2013-07-11 08:50 - 2013-06-21 14:02 - 00448288 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstusb.sys 2013-07-11 08:50 - 2013-02-25 07:27 - 00194848 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2013-07-11 08:50 - 2013-02-25 07:27 - 00031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2013-07-11 08:50 - 2013-01-29 10:35 - 01510176 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll ==================== One Month Modified Files and Folders ======= 2013-08-07 18:58 - 2009-07-14 06:45 - 00020288 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-08-07 18:58 - 2009-07-14 06:45 - 00020288 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-08-07 18:56 - 2011-04-12 09:43 - 00698632 _____ C:\Windows\system32\perfh007.dat 2013-08-07 18:56 - 2011-04-12 09:43 - 00148826 _____ C:\Windows\system32\perfc007.dat 2013-08-07 18:56 - 2009-07-14 07:13 - 01618216 _____ C:\Windows\system32\PerfStringBackup.INI 2013-08-07 18:53 - 2013-07-26 19:35 - 00079758 _____ C:\Windows\WindowsUpdate.log 2013-08-07 18:50 - 2013-08-07 18:48 - 00000426 _____ C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 495b69b6-6e71-4454-9d9c-346530c6057f.job 2013-08-07 18:50 - 2013-08-07 18:48 - 00000426 _____ C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 1799b0e1-6885-4d89-8317-760a9b87957e.job 2013-08-07 18:50 - 2013-07-23 12:34 - 00000000 ____D C:\ProgramData\NVIDIA 2013-08-07 18:50 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-08-07 18:50 - 2009-07-14 06:51 - 00043060 _____ C:\Windows\setupact.log 2013-08-07 18:48 - 2013-08-07 18:48 - 00003508 _____ C:\Windows\System32\Tasks\SUPERAntiSpyware Scheduled Task 1799b0e1-6885-4d89-8317-760a9b87957e 2013-08-07 18:48 - 2013-08-07 18:48 - 00003434 _____ C:\Windows\System32\Tasks\SUPERAntiSpyware Scheduled Task 495b69b6-6e71-4454-9d9c-346530c6057f 2013-08-07 18:47 - 2013-08-07 18:47 - 00000648 _____ C:\Users\Gabriel\Desktop\SUPERAntiSpyware Free Edition.lnk 2013-08-07 18:47 - 2013-08-07 18:47 - 00000000 ____D C:\Users\Gabriel\AppData\Roaming\SUPERAntiSpyware.com 2013-08-07 18:47 - 2013-08-07 18:47 - 00000000 ____D C:\Users\Gabriel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SUPERAntiSpyware 2013-08-07 18:47 - 2013-08-07 18:47 - 00000000 ____D C:\ProgramData\SUPERAntiSpyware.com 2013-08-07 18:01 - 2013-08-01 16:42 - 00000136 _____ C:\Users\Gabriel\Desktop\Passwörter.txt 2013-08-07 17:38 - 2013-08-07 17:38 - 00000000 ____D C:\Users\Gabriel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2013-08-07 10:23 - 2013-07-26 19:53 - 00000000 ____D C:\Users\Gabriel\AppData\Local\VirtualStore 2013-08-06 11:12 - 2013-08-06 11:12 - 00010085 _____ C:\Windows\DirectX.log 2013-08-04 17:37 - 2013-08-03 12:12 - 00000000 ____D C:\Users\Gabriel\AppData\Roaming\Skype 2013-08-04 16:29 - 2013-08-02 11:54 - 00282296 _____ C:\Windows\SysWOW64\PnkBstrB.xtr 2013-08-04 16:29 - 2013-08-02 09:53 - 00282296 _____ C:\Windows\SysWOW64\PnkBstrB.exe 2013-08-04 16:29 - 2013-08-02 09:53 - 00076888 _____ C:\Windows\SysWOW64\PnkBstrA.exe 2013-08-04 16:22 - 2013-08-04 16:10 - 00000000 ____D C:\Users\Gabriel\Desktop\Hax 2013-08-04 16:21 - 2013-08-02 09:53 - 00270240 _____ C:\Windows\SysWOW64\PnkBstrB.ex0 2013-08-04 16:10 - 2013-08-04 16:09 - 00000000 ____D C:\Users\Gabriel\AppData\Roaming\WinRAR 2013-08-04 16:09 - 2013-08-04 16:09 - 00000000 ____D C:\Users\Gabriel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2013-08-04 14:46 - 2013-08-03 13:05 - 00000000 ____D C:\Users\Gabriel\AppData\Roaming\Origin 2013-08-04 14:40 - 2010-11-21 05:47 - 00147226 _____ C:\Windows\PFRO.log 2013-08-03 13:09 - 2013-08-03 12:57 - 00000000 ____D C:\ProgramData\Origin 2013-08-03 13:07 - 2013-08-03 13:05 - 00000000 ____D C:\Users\Gabriel\AppData\Local\Origin 2013-08-03 12:57 - 2013-08-03 12:57 - 00000528 _____ C:\Users\Public\Desktop\Origin.lnk 2013-08-03 12:57 - 2013-08-03 12:57 - 00000000 ____D C:\ProgramData\Electronic Arts 2013-08-03 12:22 - 2013-08-03 12:12 - 00000000 ____D C:\ProgramData\Skype 2013-08-03 12:13 - 2013-08-03 12:13 - 00003104 _____ C:\Windows\System32\Tasks\{207E2780-EB80-4AB7-9E83-CC98CD947FB0} 2013-08-03 12:12 - 2013-08-03 12:12 - 00003104 _____ C:\Windows\System32\Tasks\{73B4E9C8-01B1-45A7-A5AA-5DC59216AE70} 2013-08-03 12:12 - 2013-08-03 12:12 - 00002517 _____ C:\Users\Public\Desktop\Skype.lnk 2013-08-03 12:12 - 2013-08-03 12:12 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-08-02 21:59 - 2013-08-02 21:59 - 00000688 _____ C:\Users\Gabriel\Desktop\TeamSpeak 3 Client.lnk 2013-08-02 21:59 - 2013-08-02 21:59 - 00000000 ____D C:\Users\Gabriel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client 2013-08-02 21:37 - 2013-08-02 21:37 - 00013065 _____ C:\Users\Gabriel\Desktop\Windows Defender - Verknüpfung.lnk 2013-08-02 21:16 - 2013-07-26 19:53 - 00000000 ___RD C:\Users\Gabriel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2013-08-02 14:01 - 2013-08-02 14:01 - 00000199 _____ C:\Users\Gabriel\Desktop\Counter-Strike Source.url 2013-08-02 14:00 - 2013-08-02 14:00 - 00000201 _____ C:\Users\Gabriel\Desktop\Call of Duty Modern Warfare 2 - Multiplayer.url 2013-08-02 11:53 - 2013-08-02 11:53 - 00000000 ____D C:\Users\Gabriel\AppData\Local\PunkBuster 2013-08-02 11:50 - 2013-08-02 11:36 - 00000000 ____D C:\Users\Gabriel\Documents\Battlefield Heroes 2013-08-02 11:39 - 2013-08-02 11:39 - 00000542 _____ C:\Users\Public\Desktop\Steam.lnk 2013-08-02 11:39 - 2013-07-26 19:53 - 00000000 ____D C:\Users\Gabriel 2013-08-02 09:53 - 2013-08-02 09:53 - 00000000 ____D C:\Users\Gabriel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\EA Games 2013-08-01 17:06 - 2013-08-01 17:06 - 00692104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-08-01 17:06 - 2013-08-01 17:06 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-08-01 17:06 - 2013-08-01 17:06 - 00000000 ____D C:\Windows\SysWOW64\Macromed 2013-08-01 17:06 - 2013-08-01 17:06 - 00000000 ____D C:\Windows\system32\Macromed 2013-08-01 17:06 - 2013-08-01 17:06 - 00000000 ____D C:\Users\Gabriel\AppData\Roaming\Macromedia 2013-08-01 17:06 - 2013-08-01 17:05 - 00000000 ____D C:\Users\Gabriel\AppData\Local\Adobe 2013-08-01 16:46 - 2013-08-01 16:46 - 00000662 _____ C:\Users\Public\Desktop\Iron.lnk 2013-08-01 16:46 - 2013-08-01 16:46 - 00000000 ____D C:\Users\Gabriel\AppData\Local\Chromium 2013-08-01 16:45 - 2013-08-01 16:44 - 29742428 _____ (SRWare ) C:\Users\Gabriel\Downloads\srware_iron.exe 2013-08-01 16:39 - 2013-08-01 16:39 - 00000000 _SHDL C:\Users\UpdatusUser\Vorlagen 2013-08-01 16:39 - 2013-08-01 16:39 - 00000000 _SHDL C:\Users\UpdatusUser\Startmenü 2013-08-01 16:39 - 2013-08-01 16:39 - 00000000 _SHDL C:\Users\UpdatusUser\Netzwerkumgebung 2013-08-01 16:39 - 2013-08-01 16:39 - 00000000 _SHDL C:\Users\UpdatusUser\Lokale Einstellungen 2013-08-01 16:39 - 2013-08-01 16:39 - 00000000 _SHDL C:\Users\UpdatusUser\Eigene Dateien 2013-08-01 16:39 - 2013-08-01 16:39 - 00000000 _SHDL C:\Users\UpdatusUser\Druckumgebung 2013-08-01 16:39 - 2013-08-01 16:39 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Musik 2013-08-01 16:39 - 2013-08-01 16:39 - 00000000 _SHDL C:\Users\UpdatusUser\Documents\Eigene Bilder 2013-08-01 16:39 - 2013-08-01 16:39 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Verlauf 2013-08-01 16:39 - 2013-08-01 16:39 - 00000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Anwendungsdaten 2013-08-01 16:39 - 2013-08-01 16:39 - 00000000 _SHDL C:\Users\UpdatusUser\Anwendungsdaten 2013-08-01 16:39 - 2013-08-01 16:39 - 00000000 ____D C:\NvidiaLogging 2013-08-01 16:39 - 2013-07-23 12:33 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2013-08-01 16:39 - 2013-07-23 12:33 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2013-08-01 16:38 - 2013-08-01 16:38 - 00000000 ____D C:\Users\Gabriel\AppData\Local\NVIDIA 2013-08-01 16:37 - 2013-07-23 12:33 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2013-08-01 16:30 - 2009-07-14 05:20 - 00000000 __RHD C:\Users\Public\Libraries 2013-08-01 16:25 - 2009-07-14 07:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD 2013-07-29 11:53 - 2013-07-29 11:50 - 00000000 ____D C:\Users\Gabriel\AppData\Local\Microsoft Games 2013-07-27 14:08 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF 2013-07-27 14:04 - 2013-07-27 13:42 - 00000000 ____D C:\Users\Gabriel\AppData\Roaming\TP-LINK 2013-07-27 13:41 - 2013-07-26 20:10 - 00000000 ____D C:\ProgramData\TP-LINK 2013-07-27 13:41 - 2013-07-23 12:29 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-07-26 20:10 - 2009-07-14 07:32 - 00000000 ____D C:\Windows\system32\restore 2013-07-26 19:54 - 2013-07-26 19:54 - 00058016 _____ C:\Users\Gabriel\AppData\Local\GDIPFONTCACHEV1.DAT 2013-07-26 19:54 - 2013-07-26 19:54 - 00000000 ____D C:\Users\Gabriel\AppData\Roaming\Intel Corporation 2013-07-26 19:53 - 2013-07-26 19:53 - 00001436 _____ C:\Users\Gabriel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Musik 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Public\Documents\Eigene Bilder 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Gabriel\Vorlagen 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Gabriel\Startmenü 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Gabriel\Netzwerkumgebung 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Gabriel\Lokale Einstellungen 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Gabriel\Eigene Dateien 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Gabriel\Druckumgebung 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Gabriel\Documents\Eigene Musik 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Gabriel\Documents\Eigene Bilder 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Gabriel\AppData\Roaming\Microsoft\Windows\Start Menu\Programme 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Gabriel\AppData\Local\Verlauf 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Gabriel\AppData\Local\Anwendungsdaten 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Gabriel\Anwendungsdaten 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Default\Vorlagen 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Default\Startmenü 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Default\Netzwerkumgebung 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Default\Lokale Einstellungen 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Default\Eigene Dateien 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Default\Druckumgebung 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Musik 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Default\Documents\Eigene Bilder 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Default\AppData\Local\Verlauf 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Default\AppData\Local\Anwendungsdaten 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Default\Anwendungsdaten 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Musik 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Default User\Documents\Eigene Bilder 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Verlauf 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Anwendungsdaten 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Programme 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\ProgramData\Vorlagen 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\ProgramData\Startmenü 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\ProgramData\Favoriten 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\ProgramData\Dokumente 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\ProgramData\Anwendungsdaten 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Program Files\Gemeinsame Dateien 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 _SHDL C:\Dokumente und Einstellungen 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 __SHD C:\Recovery 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 ___RD C:\Users\Gabriel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-07-26 19:53 - 2013-07-26 19:53 - 00000000 ___RD C:\Users\Gabriel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools 2013-07-26 19:53 - 2013-03-14 16:50 - 00000000 ____D C:\Windows\Panther 2013-07-26 19:53 - 2009-07-14 05:20 - 00000000 __RHD C:\Users\Default 2013-07-26 19:53 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\Recovery 2013-07-26 19:53 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Windows NT 2013-07-26 19:31 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2013-07-26 19:29 - 2013-03-14 16:54 - 00005949 _____ C:\Windows\TSSysprep.log 2013-07-26 19:29 - 2009-07-14 06:46 - 00004822 _____ C:\Windows\DtcInstall.log 2013-07-23 13:24 - 2012-03-22 15:21 - 00000000 ____D C:\Windows\OemDrv 2013-07-23 13:23 - 2009-07-14 07:32 - 00032768 _____ C:\Windows\system32\config\BCD-Template 2013-07-23 13:22 - 2009-07-14 06:45 - 00000000 ____D C:\Windows\Setup 2013-07-23 13:22 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\oobe 2013-07-23 13:08 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\sysprep 2013-07-23 12:38 - 2013-07-23 12:38 - 00000012 _____ C:\Windows\csup.txt 2013-07-23 12:38 - 2013-07-23 12:38 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2013-07-23 12:37 - 2013-07-23 12:37 - 00000000 ____D C:\ProgramData\Intel 2013-07-23 12:37 - 2013-07-23 12:37 - 00000000 ____D C:\Program Files\Intel 2013-07-23 12:37 - 2013-03-14 17:51 - 01642956 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2013-07-23 12:36 - 2013-07-23 12:36 - 00000000 ____D C:\Program Files (x86)\Intel 2013-07-23 12:36 - 2013-07-23 12:36 - 00000000 ____D C:\Intel 2013-07-23 12:35 - 2013-07-23 12:35 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_iusb3hcs_01009.Wdf 2013-07-23 12:34 - 2013-07-23 12:34 - 00001291 _____ C:\Users\Public\Desktop\GeForce Experience.lnk 2013-07-23 12:34 - 2013-07-23 12:34 - 00000000 ____D C:\Program Files (x86)\AGEIA Technologies 2013-07-23 12:33 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\Help 2013-07-23 12:30 - 2013-07-23 12:30 - 00000000 ____D C:\Windows\SysWOW64\RTCOM 2013-07-23 12:30 - 2013-07-23 12:30 - 00000000 ____D C:\Program Files\Realtek 2013-07-23 12:30 - 2013-07-23 12:29 - 00002212 _____ C:\RHDSetup.log 2013-07-23 12:29 - 2013-07-23 12:29 - 00000000 ____D C:\Program Files (x86)\Realtek 2013-07-23 12:27 - 2009-07-14 06:45 - 00275856 _____ C:\Windows\system32\FNTCACHE.DAT ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-08-02 09:23 ==================== End Of Log ============================ |
07.08.2013, 19:28 | #4 |
| Anwendungen minimieren sich automatisch? Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.94) Unbekannt Battlefield Heroes (HKCU) Nötig Call of Duty: Modern Warfare 2 - Multiplayer (x32) Nötig Counter-Strike: Source (x32) Nötig Intel(R) Rapid Storage Technology (Version: 12.5.0.1066) Unbekannt Metro: Last Light (x32) Nötig Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319) Unbekannt Microsoft .NET Framework 4.5 (Version: 4.5.50709) Unbekannt Microsoft Office (x32 Version: 15.0.4454.1510) Unbekannt Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336) Unbekannt Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001) Unbekannt Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000) Unbekannt Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729) Unbekannt Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161) Unbekannt Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Unbekannt Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219) Unbekannt Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Unbekannt NVIDIA 3D Vision Treiber 320.49 (Version: 320.49) Unbekannt NVIDIA GeForce Experience 1.6 (Version: 1.6) Unbekannt NVIDIA Grafiktreiber 320.49 (Version: 320.49) Unbekannt NVIDIA HD-Audiotreiber 1.3.24.2 (Version: 1.3.24.2) Unbekannt NVIDIA Install Application (Version: 2.1002.131.854) NVIDIA PhysX (x32 Version: 9.13.0604) Unbekannt NVIDIA PhysX-Systemsoftware 9.13.0604 (Version: 9.13.0604) Unbekannt NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.2049) Unbekannt NVIDIA Systemsteuerung 320.49 (Version: 320.49) Unbekannt NVIDIA Update 7.2.17 (Version: 7.2.17) Unbekannt NVIDIA Update Components (Version: 7.2.17) Unbekannt NVIDIA Virtual Audio 1.2.1 (Version: 1.2.1) Unbekannt Origin (x32 Version: 9.3.1.4482) Nöig PunkBuster Services (x32 Version: 0.990) Unbekannt Realtek High Definition Audio Driver (x32 Version: 6.0.1.6886) Nötig Rome: Total War - Alexander (x32) Nötig Rome: Total War (x32) Nötig rosoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319) Unbekannt SHIELD Streaming (Version: 1.05.19) Unbekannt Sid Meier's Civilization V (x32) Nötig Skype™ 6.7 (x32 Version: 6.7.102) Nötig SRWare Iron Version SRWare Iron 28.0.1550.0 (x32 Version: SRWare Iron 28.0.1550.0) Nötig Steam (x32 Version: 1.0.0.0) Nötig SUPERAntiSpyware (Version: 5.6.1020) Unnötig TeamSpeak 3 Client (HKCU Version: 3.0.11) Nötig TP-LINK TL-WN781ND Driver (x32 Version: 1.2.1) Nötig TP-LINK Wireless Configuration Utility (x32 Version: 1.2.1) Nötig Update for Microsoft .NET Framework 4.5 (KB2750147) (x32 Version: 1) Unbekannt WinRAR 4.20 (64-Bit) (Version: 4.20.0) Nötig FRST Additions Logfile: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 07-08-2013 03 Ran by Gabriel at 2013-08-07 20:13:44 Running from D:\Internet\Downloads Boot Mode: Normal ========================================================== ==================== Installed Programs ======================= Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.94) Battlefield Heroes (HKCU) Call of Duty: Modern Warfare 2 - Multiplayer (x32) Counter-Strike: Source (x32) Intel(R) Rapid Storage Technology (Version: 12.5.0.1066) Metro: Last Light (x32) Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319) Microsoft .NET Framework 4.5 (Version: 4.5.50709) Microsoft Office (x32 Version: 15.0.4454.1510) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) NVIDIA 3D Vision Treiber 320.49 (Version: 320.49) NVIDIA GeForce Experience 1.6 (Version: 1.6) NVIDIA Grafiktreiber 320.49 (Version: 320.49) NVIDIA HD-Audiotreiber 1.3.24.2 (Version: 1.3.24.2) NVIDIA Install Application (Version: 2.1002.131.854) NVIDIA PhysX (x32 Version: 9.13.0604) NVIDIA PhysX-Systemsoftware 9.13.0604 (Version: 9.13.0604) NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.2049) NVIDIA Systemsteuerung 320.49 (Version: 320.49) NVIDIA Update 7.2.17 (Version: 7.2.17) NVIDIA Update Components (Version: 7.2.17) NVIDIA Virtual Audio 1.2.1 (Version: 1.2.1) Origin (x32 Version: 9.3.1.4482) PunkBuster Services (x32 Version: 0.990) Realtek High Definition Audio Driver (x32 Version: 6.0.1.6886) Rome: Total War - Alexander (x32) Rome: Total War (x32) rosoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319) SHIELD Streaming (Version: 1.05.19) Sid Meier's Civilization V (x32) Skype™ 6.7 (x32 Version: 6.7.102) SRWare Iron Version SRWare Iron 28.0.1550.0 (x32 Version: SRWare Iron 28.0.1550.0) Steam (x32 Version: 1.0.0.0) SUPERAntiSpyware (Version: 5.6.1020) TeamSpeak 3 Client (HKCU Version: 3.0.11) TP-LINK TL-WN781ND Driver (x32 Version: 1.2.1) TP-LINK Wireless Configuration Utility (x32 Version: 1.2.1) Update for Microsoft .NET Framework 4.5 (KB2750147) (x32 Version: 1) WinRAR 4.20 (64-Bit) (Version: 4.20.0) ==================== Restore Points ========================= 26-07-2013 18:10:23 Installed TP-LINK Wireless Configuration Utility and Driver 26-07-2013 18:11:46 Installed TP-LINK Wireless Configuration Utility and Driver 26-07-2013 18:12:02 Installed TP-LINK Wireless Configuration Utility 26-07-2013 18:46:09 Removed TP-LINK Wireless Configuration Utility and Driver 26-07-2013 18:46:53 Removed TP-LINK Wireless Configuration Utility 27-07-2013 11:41:28 Installed TP-LINK Wireless Configuration Utility and Driver 27-07-2013 11:41:51 Installed TP-LINK Wireless Configuration Utility 02-08-2013 09:38:47 Steam wird installiert 02-08-2013 19:31:10 Windows Update 06-08-2013 09:11:24 Microsoft Visual C++ 2005 Redistributable wird installiert 06-08-2013 09:12:23 DirectX wurde installiert ==================== Hosts content: ========================== 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {188A139B-635D-4816-8280-9E12C8ED0FDB} - System32\Tasks\SUPERAntiSpyware Scheduled Task 495b69b6-6e71-4454-9d9c-346530c6057f => D:\Internet\SASTask.exe [2013-05-08] (SUPERAdBlocker.com) Task: {30627207-9889-46E9-AC50-53438353935B} - System32\Tasks\{73B4E9C8-01B1-45A7-A5AA-5DC59216AE70} => D:\Internet\SRWare Iron\iron.exe [2013-07-23] (SRWare) Task: {41499D38-9A52-43B8-878B-C64181471EA1} - System32\Tasks\SUPERAntiSpyware Scheduled Task 1799b0e1-6885-4d89-8317-760a9b87957e => D:\Internet\SASTask.exe [2013-05-08] (SUPERAdBlocker.com) Task: {940CD45B-A1DD-4C82-BD4E-E9A22E578C29} - System32\Tasks\{207E2780-EB80-4AB7-9E83-CC98CD947FB0} => D:\Internet\SRWare Iron\iron.exe [2013-07-23] (SRWare) Task: {B712CF59-1A3E-4061-8819-3869B77731E0} - System32\Tasks\Microsoft\Windows Defender\MP Scheduled Scan => c:\program files\windows defender\MpCmdRun.exe [2009-07-14] (Microsoft Corporation) Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 1799b0e1-6885-4d89-8317-760a9b87957e.job => D:\Internet\SUPERAntiSpyware.exe Task: C:\Windows\Tasks\SUPERAntiSpyware Scheduled Task 495b69b6-6e71-4454-9d9c-346530c6057f.job => D:\Internet\SUPERAntiSpyware.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (08/07/2013 06:52:36 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/07/2013 06:50:52 PM) (Source: NvStreamSvc) (User: ) Description: NvStreamSvcUnregistering VAD endpoint [0] Error: (08/07/2013 06:50:49 PM) (Source: NvStreamSvc) (User: ) Description: NvStreamSvcNvVAD endpoint registered successfully [0] Error: (08/07/2013 00:44:03 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/07/2013 00:42:18 PM) (Source: NvStreamSvc) (User: ) Description: NvStreamSvcUnregistering VAD endpoint [0] Error: (08/07/2013 00:42:16 PM) (Source: NvStreamSvc) (User: ) Description: NvStreamSvcNvVAD endpoint registered successfully [0] Error: (08/07/2013 00:05:00 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/07/2013 00:03:14 PM) (Source: NvStreamSvc) (User: ) Description: NvStreamSvcUnregistering VAD endpoint [0] Error: (08/07/2013 00:03:12 PM) (Source: NvStreamSvc) (User: ) Description: NvStreamSvcNvVAD endpoint registered successfully [0] Error: (08/07/2013 09:39:58 AM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 System errors: ============= Error: (08/07/2013 06:50:16 PM) (Source: DCOM) (User: ) Description: {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} Error: (08/05/2013 04:15:56 PM) (Source: BROWSER) (User: ) Description: Das Einlesen der Sicherungsliste durch den Suchdienst schlug auf Transport "\Device\NetBT_Tcpip_{9BC36CCC-3271-4DA4-A417-1451A48D1C6D}" zu oft fehl. Der Sicherungssuchdienst wird beendet. Error: (08/04/2013 08:17:57 PM) (Source: bowser) (User: ) Description: Der Hauptsuchdienst erhielt eine Serverankündigung vom Computer "ECKERSTORFER-PC", der der Hauptsuchdienst der Domäne für den NetBT_Tcpip_{9BC36CCC-3271-4DA4-A417-1451A48D1C6D}-Transport zu sein scheint. Der Hauptsuchdienst wurde beendet oder es wird eine Auswahl erzwungen. Error: (08/03/2013 00:57:08 PM) (Source: cdrom) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\CdRom0 gefunden. Error: (08/03/2013 00:57:02 PM) (Source: cdrom) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\CdRom0 gefunden. Error: (08/03/2013 00:56:55 PM) (Source: cdrom) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\CdRom0 gefunden. Error: (08/03/2013 00:56:49 PM) (Source: cdrom) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\CdRom0 gefunden. Error: (08/02/2013 09:37:36 PM) (Source: BROWSER) (User: ) Description: Das Einlesen der Sicherungsliste durch den Suchdienst schlug auf Transport "\Device\NetBT_Tcpip_{9BC36CCC-3271-4DA4-A417-1451A48D1C6D}" zu oft fehl. Der Sicherungssuchdienst wird beendet. Error: (08/02/2013 11:51:42 AM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Steam Client Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (08/02/2013 11:51:42 AM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Steam Client Service erreicht. Microsoft Office Sessions: ========================= Error: (08/07/2013 06:52:36 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/07/2013 06:50:52 PM) (Source: NvStreamSvc)(User: ) Description: NvStreamSvcUnregistering VAD endpoint [0] Error: (08/07/2013 06:50:49 PM) (Source: NvStreamSvc)(User: ) Description: NvStreamSvcNvVAD endpoint registered successfully [0] Error: (08/07/2013 00:44:03 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/07/2013 00:42:18 PM) (Source: NvStreamSvc)(User: ) Description: NvStreamSvcUnregistering VAD endpoint [0] Error: (08/07/2013 00:42:16 PM) (Source: NvStreamSvc)(User: ) Description: NvStreamSvcNvVAD endpoint registered successfully [0] Error: (08/07/2013 00:05:00 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/07/2013 00:03:14 PM) (Source: NvStreamSvc)(User: ) Description: NvStreamSvcUnregistering VAD endpoint [0] Error: (08/07/2013 00:03:12 PM) (Source: NvStreamSvc)(User: ) Description: NvStreamSvcNvVAD endpoint registered successfully [0] Error: (08/07/2013 09:39:58 AM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 ==================== Memory info =========================== Percentage of memory in use: 24% Total physical RAM: 8120.61 MB Available physical RAM: 6092.67 MB Total Pagefile: 16239.39 MB Available Pagefile: 13954.83 MB Total Virtual: 8192 MB Available Virtual: 8191.79 MB ==================== Drives ================================ Drive c: (System) (Fixed) (Total:160 GB) (Free:119.9 GB) NTFS (Disk=0 Partition=1) ==>[Drive with boot components (obtained from BCD)] Drive d: (Data) (Fixed) (Total:771.51 GB) (Free:718.29 GB) NTFS (Disk=0 Partition=2) ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 932 GB) (Disk ID: 452D22A2) Partition 1: (Active) - (Size=160 GB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=772 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
07.08.2013, 19:37 | #5 |
/// Malware-holic | Anwendungen minimieren sich automatisch? was ist mit der bearbeiteten additions.txt? öffne außerdem SUPERAntiSpyware und poste bisher erstellte Logs mit funden.
__________________ -Verdächtige mails bitte an uns zur Analyse weiterleiten: markusg.trojaner-board@web.de Weiterleiten Anleitung: http://markusg.trojaner-board.de Mails bitte vorerst nach obiger Anleitung an markusg.trojaner-board@web.de Weiterleiten Wenn Ihr uns unterstützen möchtet |
07.08.2013, 20:21 | #6 |
| Anwendungen minimieren sich automatisch? [QUOTE=markusg;1127820]was ist mit der bearbeiteten additions.txt? Wie meinst du das? |
07.08.2013, 20:30 | #7 |
/// Malware-holic | Anwendungen minimieren sich automatisch? es steht doch oben, du sollst die Programme in der additions.txt beschriften, lies die Anleitung bzw den Post den ich für frst geschrieben hab noch malb
__________________ -Verdächtige mails bitte an uns zur Analyse weiterleiten: markusg.trojaner-board@web.de Weiterleiten Anleitung: http://markusg.trojaner-board.de Mails bitte vorerst nach obiger Anleitung an markusg.trojaner-board@web.de Weiterleiten Wenn Ihr uns unterstützen möchtet |
07.08.2013, 20:48 | #8 | |
| Anwendungen minimieren sich automatisch?Zitat:
Battlefield Heroes (HKCU) Nötig Call of Duty: Modern Warfare 2 - Multiplayer (x32) Nötig Counter-Strike: Source (x32) Nötig Intel(R) Rapid Storage Technology (Version: 12.5.0.1066) Unbekannt Metro: Last Light (x32) Nötig Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319) Unbekannt Microsoft .NET Framework 4.5 (Version: 4.5.50709) Unbekannt Microsoft Office (x32 Version: 15.0.4454.1510) Unbekannt Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336) Unbekannt Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001) Unbekannt Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.61000) Unbekannt Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729) Unbekannt Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161) Unbekannt Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Unbekannt Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219) Unbekannt Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Unbekannt NVIDIA 3D Vision Treiber 320.49 (Version: 320.49) Unbekannt NVIDIA GeForce Experience 1.6 (Version: 1.6) Unbekannt NVIDIA Grafiktreiber 320.49 (Version: 320.49) Unbekannt NVIDIA HD-Audiotreiber 1.3.24.2 (Version: 1.3.24.2) Unbekannt NVIDIA Install Application (Version: 2.1002.131.854) NVIDIA PhysX (x32 Version: 9.13.0604) Unbekannt NVIDIA PhysX-Systemsoftware 9.13.0604 (Version: 9.13.0604) Unbekannt NVIDIA Stereoscopic 3D Driver (x32 Version: 7.17.13.2049) Unbekannt NVIDIA Systemsteuerung 320.49 (Version: 320.49) Unbekannt NVIDIA Update 7.2.17 (Version: 7.2.17) Unbekannt NVIDIA Update Components (Version: 7.2.17) Unbekannt NVIDIA Virtual Audio 1.2.1 (Version: 1.2.1) Unbekannt Origin (x32 Version: 9.3.1.4482) Nöig PunkBuster Services (x32 Version: 0.990) Unbekannt Realtek High Definition Audio Driver (x32 Version: 6.0.1.6886) Nötig Rome: Total War - Alexander (x32) Nötig Rome: Total War (x32) Nötig rosoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319) Unbekannt SHIELD Streaming (Version: 1.05.19) Unbekannt Sid Meier's Civilization V (x32) Nötig Skype™ 6.7 (x32 Version: 6.7.102) Nötig SRWare Iron Version SRWare Iron 28.0.1550.0 (x32 Version: SRWare Iron 28.0.1550.0) Nötig Steam (x32 Version: 1.0.0.0) Nötig SUPERAntiSpyware (Version: 5.6.1020) Unnötig TeamSpeak 3 Client (HKCU Version: 3.0.11) Nötig TP-LINK TL-WN781ND Driver (x32 Version: 1.2.1) Nötig TP-LINK Wireless Configuration Utility (x32 Version: 1.2.1) Nötig Update for Microsoft .NET Framework 4.5 (KB2750147) (x32 Version: 1) Unbekannt WinRAR 4.20 (64-Bit) (Version: 4.20.0) Nötig Meinst du das?! |
07.08.2013, 20:54 | #9 |
/// Malware-holic | Anwendungen minimieren sich automatisch? Hi warum machst du nur die Hälfte, superantispyware Logs fehlen, es würd uns zeit sparen, müsste ich nicht alles doppelt anfragen :-(
__________________ -Verdächtige mails bitte an uns zur Analyse weiterleiten: markusg.trojaner-board@web.de Weiterleiten Anleitung: http://markusg.trojaner-board.de Mails bitte vorerst nach obiger Anleitung an markusg.trojaner-board@web.de Weiterleiten Wenn Ihr uns unterstützen möchtet |
07.08.2013, 21:00 | #10 | |
| Anwendungen minimieren sich automatisch?Zitat:
SUPERAntiSpyware Scann-Protokoll hxxp://www.superantispyware.com Generiert 08/07/2013 bei 08:12 PM Version der Applikation : 5.6.1020 Version der Kern-Datenbank : 10406 Version der Spur-Datenbank : 8218 Scan type : Critical Point Scan Totale Scann-Zeit : 00:00:17 Operating System Information Windows 7 Home Premium 64-bit, Service Pack 1 (Build 6.01.7601) UAC On - Limited User Gescannte Speicherelemente : 523 Erfasste Speicher-Bedrohungen : 0 Gescannte Register-Elemente : 63677 Erfasste Register-Bedrohungen : 0 Gescannte Datei-Elemente : 7233 Erfasste Datei-Elemente : 0 Danke für deine Hilfe |
07.08.2013, 21:01 | #11 |
/// Malware-holic | Anwendungen minimieren sich automatisch? das ist ein neues Log von heute. was ist mit alten bei denen es Funde gab?
__________________ -Verdächtige mails bitte an uns zur Analyse weiterleiten: markusg.trojaner-board@web.de Weiterleiten Anleitung: http://markusg.trojaner-board.de Mails bitte vorerst nach obiger Anleitung an markusg.trojaner-board@web.de Weiterleiten Wenn Ihr uns unterstützen möchtet |
08.08.2013, 10:43 | #12 |
| Anwendungen minimieren sich automatisch? 1. SUPERAntiSpyware Scan Log SUPERAntiSpyware | Remove Malware | Remove Spyware - AntiMalware, AntiSpyware, AntiAdware! Generated 08/07/2013 at 06:49 PM Application Version : 5.6.1020 Core Rules Database Version : 10406 Trace Rules Database Version: 8218 Scan type : Quick Scan Total Scan Time : 00:01:28 Operating System Information Windows 7 Home Premium 64-bit, Service Pack 1 (Build 6.01.7601) UAC On - Limited User Memory items scanned : 538 Memory threats detected : 0 Registry items scanned : 63665 Registry threats detected : 0 File items scanned : 10445 File threats detected : 4 Adware.Tracking Cookie C:\Users\Gabriel\AppData\Roaming\Microsoft\Windows\Cookies\3W1NIJW3.txt [ /atdmt.com ] C:\Users\Gabriel\AppData\Roaming\Microsoft\Windows\Cookies\KQKGH7HW.txt [ /ads.play4free.com ] C:\Users\Gabriel\AppData\Roaming\Microsoft\Windows\Cookies\EN1LKJLX.txt [ /c.atdmt.com ] Trojan.Dropper/Storm C:\WINDOWS\SYSTEM32\FSVK.EXE.EXE 2.SUPERAntiSpyware Scann-Protokoll SUPERAntiSpyware | Remove Malware | Remove Spyware - AntiMalware, AntiSpyware, AntiAdware! Generiert 08/07/2013 bei 07:34 PM Version der Applikation : 5.6.1020 Version der Kern-Datenbank : 10406 Version der Spur-Datenbank : 8218 Scan Art : kompletter Scann Totale Scann-Zeit : 00:14:09 Operating System Information Windows 7 Home Premium 64-bit, Service Pack 1 (Build 6.01.7601) UAC On - Limited User Gescannte Speicherelemente : 516 Erfasste Speicher-Bedrohungen : 0 Gescannte Register-Elemente : 73237 Erfasste Register-Bedrohungen : 0 Gescannte Datei-Elemente : 48737 Erfasste Datei-Elemente : 0 3.SUPERAntiSpyware Scann-Protokoll SUPERAntiSpyware | Remove Malware | Remove Spyware - AntiMalware, AntiSpyware, AntiAdware! Generiert 08/07/2013 bei 08:12 PM Version der Applikation : 5.6.1020 Version der Kern-Datenbank : 10406 Version der Spur-Datenbank : 8218 Scan type : Critical Point Scan Totale Scann-Zeit : 00:00:17 Operating System Information Windows 7 Home Premium 64-bit, Service Pack 1 (Build 6.01.7601) UAC On - Limited User Gescannte Speicherelemente : 523 Erfasste Speicher-Bedrohungen : 0 Gescannte Register-Elemente : 63677 Erfasste Register-Bedrohungen : 0 Gescannte Datei-Elemente : 7233 Erfasste Datei-Elemente : 0 3. SUPERAntiSpyware Scan Log hxxp://www.superantispyware.com Generated 08/08/2013 at 12:11 PM Application Version : 5.6.1020 Core Rules Database Version : 10676 Trace Rules Database Version: 8488 Scan type : Complete Scan Total Scan Time : 00:12:45 Operating System Information Windows 7 Home Premium 64-bit, Service Pack 1 (Build 6.01.7601) UAC On - Limited User Memory items scanned : 533 Memory threats detected : 0 Registry items scanned : 72737 Registry threats detected : 0 File items scanned : 48447 File threats detected : 4 Adware.Tracking Cookie C:\Users\Gabriel\AppData\Roaming\Microsoft\Windows\Cookies\KERX5FBA.txt [ /atdmt.com ] C:\Users\Gabriel\AppData\Roaming\Microsoft\Windows\Cookies\5ASRRBM2.txt [ /ads.play4free.com ] C:\Users\Gabriel\AppData\Roaming\Microsoft\Windows\Cookies\CKPX07JT.txt [ /c.atdmt.com ] cdn1.static.pornhub.phncdn.com [ C:\USERS\GABRIEL\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\TE56SFWW ] Geändert von Maschawa (08.08.2013 um 11:12 Uhr) |
08.08.2013, 12:56 | #13 |
/// Malware-holic | Anwendungen minimieren sich automatisch? Hi, deinstaliere Superantispyware, bringt meist eh nichts weiter. Es sind 2 Logs zu erstellen, gleichzeitig posten. 1. Scan mit Combofix
2. Downloade dir bitte TDSSKiller.exe und speichere diese Datei auf dem Desktop
__________________ -Verdächtige mails bitte an uns zur Analyse weiterleiten: markusg.trojaner-board@web.de Weiterleiten Anleitung: http://markusg.trojaner-board.de Mails bitte vorerst nach obiger Anleitung an markusg.trojaner-board@web.de Weiterleiten Wenn Ihr uns unterstützen möchtet |
Themen zu Anwendungen minimieren sich automatisch? |
.dll, anwendungen, explorer, foren, google, hijack, hijackthis, internet, internet explorer, lsass.exe, micro, microsoft, neue, nvidia, programm, scan, sich automatisch, software, system32, trojaner, update, virus, windows, windows media player, wireless, wmp |