|
Plagegeister aller Art und deren Bekämpfung: Optimize Pro / OpenCandyWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
12.08.2013, 19:00 | #1 |
| Optimize Pro / OpenCandy Hey Leute! Ein Kollege hat mir dieses Forum empfohlen, weil ich mal auf Nummer sicher gehen wollte. Folgendes, hab mir n Freeware geholt und anscheinend bei der Installation nicht ganz mitgelesen, zwar hab ich den DeltaToolbar weggeklickt, aber trotzdem dann Optimize Pro oben gehabt (PUP.Optional.OptimizePro.A), und dann nach Malewarebytes run ist auch noch PUP.Optional.OpenCandy zum Vorschein gekommen. Beide wurden von Malewarebytes beseitigt, nur die Frage.. bin ich jetzt wirklich sicher? Danke schonmal.. |
12.08.2013, 19:01 | #2 |
/// TB-Ausbilder | Optimize Pro / OpenCandyMein Name ist Matthias und ich werde dir bei der Bereinigung deines Computers helfen. Bitte beachte folgende Hinweise:
Ich habe dein Thema in Arbeit und melde mich so schnell wie möglich mit weiteren Anweisungen. |
12.08.2013, 19:01 | #3 |
/// TB-Ausbilder | Optimize Pro / OpenCandy Servus,
__________________ich schlage vor, wir schauen uns deinen Rechner einmal an und dann sehen wir, wie es um ihn steht. Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
|
12.08.2013, 19:18 | #4 |
| Optimize Pro / OpenCandy Hey! Also hab hier mal die Logs: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-08-2013 02 Ran by Paiva (administrator) on 12-08-2013 20:10:16 Running from C:\Users\Paiva\Downloads Windows 7 Ultimate (X64) OS Language: German Standard Internet Explorer Version 8 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\system32\atiesrxx.exe (Creative Technology Ltd) C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe (AMD) C:\Windows\system32\atieclxx.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe () C:\Users\Paiva\Local Settings\Apps\F.lux\flux.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (FNet Co., Ltd.) C:\Program Files (x86)\XFastUsb\XFastUsb.exe (Creative Technology Ltd) C:\Program Files (x86)\InstallShield Installation Information\{F3D9AC82-30F4-4BB9-B9AB-8697637568C1}\AMBSPISyncService.exe (Creative Technology Ltd) C:\Program Files (x86)\Creative\SB X-Fi MB\Volume Panel\VolPanlu.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (Macrovision Europe Ltd.) C:\Users\Paiva\AppData\Local\Temp\Sound_Blaster_X-Fi_MB_Cleanup.0001 (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Creative Labs) C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\XMBLicensing.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11660904 2010-11-30] (Realtek Semiconductor) HKLM\...\Run: [RunDLLEntry] - C:\Windows\system32\AmbRunE.dll [17920 2009-02-26] (Creative Technology Ltd.) HKCU\...\Run: [ASRockXTU] - [x] HKCU\...\Run: [zASRockInstantBoot] - [x] HKCU\...\Run: [F.lux] - C:\Users\Paiva\Local Settings\Apps\F.lux\flux.exe [966656 2009-08-29] () HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd) HKCU\...\Run: [Steam] - C:\Program Files (x86)\Steam\steam.exe [1807272 2013-07-27] (Valve Corporation) HKLM-x32\...\Run: [XFastUsb] - C:\Program Files (x86)\XFastUsb\XFastUsb.exe [4942336 2013-07-11] (FNet Co., Ltd.) HKLM-x32\...\Run: [CTSyncService] - C:\Program Files (x86)\InstallShield Installation Information\{F3D9AC82-30F4-4BB9-B9AB-8697637568C1}\AMBSPISyncService.exe [1233195 2009-07-08] (Creative Technology Ltd) HKLM-x32\...\Run: [VolPanel] - C:\Program Files (x86)\Creative\SB X-Fi MB\Volume Panel\VolPanlu.exe [241789 2009-05-04] (Creative Technology Ltd) HKLM-x32\...\Run: [UpdReg] - C:\Windows\UpdReg.EXE [90112 2000-05-11] (Creative Technology Ltd.) HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-03-09] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-11] (Adobe Systems Incorporated) HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [345144 2013-07-19] (Avira Operations GmbH & Co. KG) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=ASRK SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=ASRK BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 10.0.0.138 FireFox: ======== FF ProfilePath: C:\Users\Paiva\AppData\Roaming\Mozilla\Firefox\Profiles\hbgpnkj3.default FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll () FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll () FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @videolan.org/vlc,version=2.0.7 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Extension: No Name - C:\Users\Paiva\AppData\Roaming\Mozilla\Firefox\Profiles\hbgpnkj3.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi FF Extension: No Name - C:\Users\Paiva\AppData\Roaming\Mozilla\Firefox\Profiles\hbgpnkj3.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ==================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [84024 2013-07-19] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [108088 2013-07-19] (Avira Operations GmbH & Co. KG) ==================== Drivers (Whitelisted) ==================== R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [100712 2013-07-19] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [130016 2013-07-19] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-07-19] (Avira Operations GmbH & Co. KG) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2013-07-14] (DT Soft Ltd) R3 ffusb2audio; C:\Windows\System32\DRIVERS\ffusb2audio.sys [125304 2012-09-10] (Focusrite Audio Engineering Limited.) S3 FNETTBOH_305; C:\Windows\System32\drivers\FNETTBOH_305.SYS [31808 2013-07-28] (FNet Co., Ltd.) R1 FNETURPX; C:\Windows\System32\drivers\FNETURPX.SYS [15936 2013-07-11] (FNet Co., Ltd.) R1 ISODrive; C:\Program Files (x86)\UltraISO\drivers\ISODrv64.sys [115600 2010-01-29] (EZB Systems, Inc.) R1 ISODrive; C:\Program Files (x86)\UltraISO\drivers\ISODrv64.sys [115600 2010-01-29] (EZB Systems, Inc.) S3 FairplayKD; \??\C:\ProgramData\MTA San Andreas All\Common\temp\FairplayKD.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-08-12 20:09 - 2013-08-12 20:09 - 01575246 _____ (Farbar) C:\Users\Paiva\Downloads\FRST64.exe 2013-08-12 19:29 - 2013-08-12 19:29 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Paiva\Downloads\mbam-setup-1.75.0.1300(1).exe 2013-08-12 19:29 - 2013-08-12 19:29 - 00001109 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-08-12 19:29 - 2013-08-12 19:29 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Malwarebytes 2013-08-12 19:29 - 2013-08-12 19:29 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-08-12 19:29 - 2013-08-12 19:29 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-08-12 19:29 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2013-08-12 19:07 - 2013-08-12 19:07 - 00002037 _____ C:\Users\Paiva\Desktop\JDownloader.lnk 2013-08-12 19:06 - 2013-08-12 19:12 - 00000000 ____D C:\Program Files (x86)\JDownloader 2013-08-12 19:03 - 2013-08-12 19:03 - 00081488 _____ (AppWork UG (haftungsbeschränkt)) C:\Users\Paiva\Downloads\WebInstaller.exe 2013-08-10 04:45 - 2013-08-10 04:45 - 12230103 _____ C:\Users\Paiva\Downloads\Yung Exclusive - ExpensiveTaste Kit.rar 2013-08-08 18:12 - 2013-08-08 18:12 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-08-05 14:25 - 2013-08-05 17:34 - 00000000 ____D C:\Users\Paiva\Desktop\NI 2013-08-05 14:24 - 2013-08-05 14:24 - 00000000 ____D C:\Users\Paiva\Documents\My ISO Files 2013-08-05 14:24 - 2013-08-05 14:24 - 00000000 ____D C:\Program Files (x86)\UltraISO 2013-08-05 14:23 - 2013-08-05 14:23 - 04001621 _____ (EZB Systems, Inc. ) C:\Users\Paiva\Downloads\uiso9_pe.exe 2013-08-05 13:01 - 2013-08-05 13:01 - 00001799 _____ C:\Users\Paiva\Desktop\MagicISO.lnk 2013-08-05 13:01 - 2013-08-05 13:01 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MagicISO 2013-08-05 13:01 - 2013-08-05 13:01 - 00000000 ____D C:\Program Files (x86)\MagicISO 2013-07-31 15:53 - 2013-07-31 15:53 - 00262144 _____ C:\Windows\Minidump\073113-16364-01.dmp 2013-07-28 12:06 - 2013-07-28 12:06 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\East West 2013-07-28 11:59 - 2013-07-28 11:59 - 00000000 ____D C:\Users\Paiva\Documents\EXP 2013-07-28 11:46 - 2013-07-28 11:46 - 00031808 _____ (FNet Co., Ltd.) C:\Windows\system32\Drivers\FNETTBOH_305.SYS 2013-07-27 10:33 - 2013-07-24 20:55 - 00000000 ____D C:\Users\Paiva\Downloads\SuperStar O x ZShock Beat Finish Contest 2013-07-27 10:22 - 2013-07-27 10:22 - 24460867 _____ C:\Users\Paiva\Downloads\SuperStar O x ZShock Beat Finish Contest.rar 2013-07-26 17:47 - 2013-07-31 15:53 - 450842995 _____ C:\Windows\MEMORY.DMP 2013-07-26 17:47 - 2013-07-31 15:53 - 00000000 ____D C:\Windows\Minidump 2013-07-26 17:47 - 2013-07-26 17:47 - 00262144 _____ C:\Windows\Minidump\072613-16941-01.dmp 2013-07-23 21:52 - 2013-07-23 21:52 - 130326754 _____ C:\Users\Paiva\Downloads\iStandard Exclusive Sound Kits_The Focus Collection.zip 2013-07-23 21:49 - 2013-07-23 21:49 - 06402469 _____ C:\Users\Paiva\Downloads\UPGRADE 2 MIKE WILL MADE IT KIT.rar 2013-07-23 21:48 - 2013-07-23 21:48 - 360894745 _____ C:\Users\Paiva\Downloads\BWB UPGRADE 2 OFFICIAL.rar 2013-07-23 08:45 - 2013-07-23 08:45 - 199902500 _____ C:\Users\Paiva\Downloads\Groove3.FL.Studio.Tips.and.Tricks.TUTORiAL.DVDR-DYNAMiCS.part3.rar 2013-07-23 08:43 - 2013-07-23 08:43 - 943718401 _____ C:\Users\Paiva\Downloads\Groove3.FL.Studio.Tips.and.Tricks.TUTORiAL.DVDR-DYNAMiCS.part2.rar 2013-07-22 21:34 - 2013-07-22 21:35 - 943718401 _____ C:\Users\Paiva\Downloads\Groove3.FL.Studio.Tips.and.Tricks.TUTORiAL.DVDR-DYNAMiCS.part1.rar 2013-07-22 21:25 - 2013-07-22 21:25 - 156525548 _____ C:\Users\Paiva\Downloads\BOI-1DA SO MANY GIRLS REMAKE TUTORIAL (BEATGENERALS).zip 2013-07-22 21:23 - 2013-07-22 21:23 - 227707688 _____ C:\Users\Paiva\Downloads\FOUNTAIN OF YOUTH REMAKE TUTORIAL (BeatGenerals).zip 2013-07-21 11:45 - 2013-07-21 11:47 - 00000000 ____D C:\ProgramData\BlueStacksSetup 2013-07-21 11:45 - 2013-07-21 11:45 - 09174000 _____ (BlueStack Systems Inc.) C:\Users\Paiva\Downloads\BlueStacks-SplitInstaller_native.exe 2013-07-21 10:55 - 2013-07-21 10:58 - 54567980 _____ C:\Users\Paiva\Downloads\Aint Worried About Nothin - Redboy Beatz Remake.rar 2013-07-21 03:45 - 2013-08-07 19:11 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Skype 2013-07-21 03:45 - 2013-07-21 03:45 - 00002517 _____ C:\Users\Public\Desktop\Skype.lnk 2013-07-21 03:45 - 2013-07-21 03:45 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-07-21 03:44 - 2013-07-21 03:45 - 00000000 ____D C:\ProgramData\Skype 2013-07-21 03:44 - 2013-07-21 03:44 - 01492584 _____ (Skype Technologies S.A.) C:\Users\Paiva\Downloads\SkypeSetup.exe 2013-07-20 19:28 - 2013-07-20 19:33 - 00000000 ____D C:\Users\Paiva\Downloads\Project.Sam.Orchestral.Essentials.KONTAKT 2013-07-20 19:13 - 2013-07-20 19:13 - 2649113217 _____ C:\Users\Paiva\Downloads\Project.Sam.Orchestral.Essentials.KONTAKT.zip 2013-07-20 15:48 - 2013-07-20 15:52 - 69010428 _____ C:\Users\Paiva\Downloads\Drums For Days - Boom Bap Drum Kits.rar 2013-07-20 15:48 - 2013-07-20 15:48 - 05562123 _____ C:\Users\Paiva\Downloads\Chuck Inglish Drum Library.rar 2013-07-20 15:48 - 2013-07-20 15:48 - 04111967 _____ C:\Users\Paiva\Downloads\Cruel Summer Kit.rar 2013-07-20 15:46 - 2013-07-20 15:46 - 08992424 _____ C:\Users\Paiva\Downloads\Canei First Aid Kit.rar 2013-07-20 15:33 - 2013-07-20 15:33 - 04417089 _____ C:\Users\Paiva\Downloads\Distorted 808 Kickz.rar 2013-07-20 15:08 - 2013-07-20 15:08 - 03932974 _____ C:\Users\Paiva\Downloads\Urban Anthology.zip 2013-07-20 14:58 - 2013-07-20 14:58 - 227640285 _____ C:\Users\Paiva\Downloads\Mike Chavez WarChest Drums Volume 1.zip 2013-07-20 14:54 - 2013-07-20 14:54 - 08760939 _____ C:\Users\Paiva\Downloads\JAYBeatzs Secret Stash of Vocal Samples, If U Got Dis U Stole It From My Computer - Vol. I.zip 2013-07-19 22:00 - 2013-05-02 02:06 - 00278800 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2013-07-19 20:26 - 2013-07-19 20:26 - 1009076818 _____ C:\Users\Paiva\Downloads\AnnoDomini Drum Collection Vol.3.zip 2013-07-19 19:25 - 2013-07-19 19:25 - 1318164167 _____ C:\Users\Paiva\Downloads\CHOPPED KIT - @YOUNGZAY.zip 2013-07-19 19:17 - 2013-07-19 19:17 - 150092906 _____ C:\Users\Paiva\Downloads\MikeChav's Ultimate 909 Black Edition.zip 2013-07-19 19:08 - 2013-07-19 19:08 - 14326075 _____ C:\Users\Paiva\Downloads\The Lifted Collection.rar 2013-07-19 19:08 - 2013-07-19 19:08 - 05603882 _____ C:\Users\Paiva\Downloads\SDotFire He's On Fire Drums 3.rar 2013-07-19 19:04 - 2013-07-19 19:04 - 00083672 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2013-07-19 13:05 - 2013-07-19 13:05 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Avira 2013-07-19 13:00 - 2013-07-19 13:00 - 00000000 ____D C:\ProgramData\APN 2013-07-19 12:59 - 2013-07-19 12:59 - 00002066 _____ C:\Users\Public\Desktop\Avira Control Center.lnk 2013-07-19 12:59 - 2013-07-19 12:59 - 00000000 ____D C:\ProgramData\Avira 2013-07-19 12:59 - 2013-07-19 12:59 - 00000000 ____D C:\Program Files (x86)\Avira 2013-07-19 12:59 - 2013-07-19 12:58 - 00130016 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2013-07-19 12:59 - 2013-07-19 12:58 - 00100712 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2013-07-19 12:59 - 2013-07-19 12:58 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys 2013-07-19 11:04 - 2013-07-19 11:04 - 02092792 _____ C:\Users\Paiva\Downloads\avira_free_antivirus.exe 2013-07-19 10:48 - 2013-07-28 12:06 - 00000000 ____D C:\Program Files (x86)\East West 2013-07-19 10:48 - 2013-07-19 10:48 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\East West Colossus 2013-07-18 19:36 - 2013-08-12 20:05 - 00000000 ____D C:\Program Files (x86)\Steam 2013-07-18 19:36 - 2013-07-18 19:36 - 00000917 _____ C:\Users\Public\Desktop\Steam.lnk 2013-07-18 19:34 - 2013-07-18 19:34 - 08531968 _____ C:\Users\Paiva\Downloads\SteamInstall_German.msi 2013-07-18 17:50 - 2013-07-18 17:50 - 00000000 ____D C:\ProgramData\Audio Damage 2013-07-18 17:45 - 2013-07-18 17:45 - 00000000 ____D C:\Users\Paiva\Desktop\Kit 2013-07-18 17:36 - 2013-07-18 17:36 - 00000000 ____D C:\Program Files (x86)\Focusrite Guitar FX Plug-in Suite 2013-07-18 17:27 - 2013-07-18 17:27 - 00000000 ____D C:\Program Files (x86)\Uninstall 2013-07-18 17:14 - 2013-07-18 17:18 - 00000000 ____D C:\Users\Paiva\Desktop\Sonic Reality SampleTron Combis AMPLiFY 2013-07-17 21:37 - 2013-07-17 21:37 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\LolClient 2013-07-14 18:45 - 2013-07-14 18:45 - 00001286 _____ C:\Users\Paiva\Desktop\Z3TA+ 2.lnk 2013-07-14 18:45 - 2013-07-14 18:45 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Cakewalk 2013-07-14 18:18 - 2013-07-14 18:18 - 00000000 __SHD C:\Windows\SysWOW64\AI_RecycleBin 2013-07-14 18:18 - 2013-07-14 18:18 - 00000000 ____D C:\Riot Games 2013-07-14 18:18 - 2008-07-31 10:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2013-07-14 18:18 - 2008-07-31 10:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2013-07-14 18:18 - 2008-07-12 08:18 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2013-07-14 18:18 - 2008-07-12 08:18 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2013-07-14 18:18 - 2008-07-12 08:18 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2013-07-14 18:14 - 2013-07-14 18:18 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Riot Games 2013-07-14 18:13 - 2013-07-14 18:13 - 34888568 _____ (Riot Games) C:\Users\Paiva\Downloads\LeagueofLegends_EUW_Installer_06_12_13.exe 2013-07-14 17:52 - 2013-07-14 17:52 - 00000000 ____D C:\Program Files (x86)\IK Multimedia 2013-07-14 17:52 - 2009-09-18 12:34 - 00499712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp71.dll 2013-07-14 17:06 - 2009-10-24 21:15 - 01332224 _____ (AD © 2009) C:\Windows\SysWOW64\SYNSOEMU.DLL 2013-07-14 17:01 - 2013-07-14 17:01 - 00001014 _____ C:\Users\Public\Desktop\Kontakt 5.lnk 2013-07-14 17:01 - 2013-07-14 17:01 - 00000000 __HDC C:\ProgramData\{A9158F4E-7914-4019-808A-D4D4993E9958} 2013-07-14 17:01 - 2013-07-14 17:01 - 00000000 ____D C:\Users\Paiva\Documents\Native Instruments 2013-07-14 17:01 - 2013-07-14 17:01 - 00000000 ____D C:\Users\Paiva\AppData\Local\Native Instruments 2013-07-14 17:00 - 2013-07-14 17:00 - 00001059 _____ C:\Users\Public\Desktop\Service Center.lnk 2013-07-14 17:00 - 2013-07-14 17:00 - 00000000 __HDC C:\ProgramData\{95B4F0ED-951F-4D36-B068-5EC1C4C19C14} 2013-07-14 17:00 - 2013-07-14 17:00 - 00000000 ____D C:\ProgramData\Native Instruments 2013-07-14 17:00 - 2013-07-14 17:00 - 00000000 ____D C:\Program Files\Native Instruments 2013-07-14 17:00 - 2013-07-14 17:00 - 00000000 ____D C:\Program Files\Common Files\Native Instruments 2013-07-14 16:43 - 2013-07-14 16:47 - 00000000 ____D C:\Program Files (x86)\Spectrasonics 2013-07-14 16:43 - 2013-07-14 16:43 - 00000000 ____D C:\Program Files\Spectrasonics 2013-07-14 16:43 - 2013-07-14 16:43 - 00000000 ____D C:\Program Files (x86)\steinberg 2013-07-14 16:41 - 2013-07-14 16:41 - 00283200 _____ (DT Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys 2013-07-14 16:40 - 2013-07-14 16:42 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\DAEMON Tools Lite 2013-07-14 16:40 - 2013-07-14 16:42 - 00000000 ____D C:\ProgramData\DAEMON Tools Lite 2013-07-14 16:40 - 2013-07-14 16:41 - 00000000 ____D C:\Program Files (x86)\DAEMON Tools Lite 2013-07-14 16:37 - 2013-07-14 16:37 - 01700352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdiplus.dll 2013-07-14 16:37 - 2013-07-14 16:37 - 01060864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71.dll 2013-07-14 16:37 - 2013-07-14 16:37 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr71.dll 2013-07-14 16:33 - 2013-07-28 12:06 - 00000000 ____D C:\Program Files (x86)\VstPlugins 2013-07-14 16:33 - 2013-07-28 12:00 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line 2013-07-14 16:33 - 2013-07-14 16:33 - 00001146 _____ C:\Users\Public\Desktop\FL Studio 10.lnk 2013-07-14 16:33 - 2013-07-14 16:33 - 00001138 _____ C:\Users\Paiva\Desktop\ASIO4ALL v2 Instruction Manual.lnk 2013-07-14 16:33 - 2013-07-14 16:33 - 00000000 ____D C:\Users\Paiva\Documents\Image-Line 2013-07-14 16:33 - 2013-07-14 16:33 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASIO4ALL v2 2013-07-14 16:33 - 2013-07-14 16:33 - 00000000 ____D C:\Program Files (x86)\Outsim 2013-07-14 16:33 - 2013-07-14 16:33 - 00000000 ____D C:\Program Files (x86)\ASIO4ALL v2 2013-07-14 16:33 - 2009-09-15 11:14 - 01554944 _____ (HMS hxxp://hp.vector.co.jp/authors/VA012897/) C:\Windows\SysWOW64\vorbis.acm 2013-07-14 16:33 - 2006-06-20 10:56 - 00225280 _____ (Propellerhead Software AB) C:\Windows\SysWOW64\rewire.dll 2013-07-14 16:32 - 2013-07-28 12:00 - 00000000 ____D C:\Program Files (x86)\Image-Line 2013-07-14 16:27 - 2013-07-14 18:22 - 349905765 _____ C:\Users\Paiva\Downloads\FLStPrEd1101.rar 2013-07-14 13:28 - 2013-07-14 13:48 - 00000000 ____D C:\Users\Paiva\Documents\GTA San Andreas User Files 2013-07-14 13:28 - 2013-07-14 13:28 - 00001948 _____ C:\Users\Public\Desktop\MTA San Andreas 1.3.lnk 2013-07-14 13:28 - 2013-07-14 13:28 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2013-07-14 13:28 - 2013-07-14 13:28 - 00000000 ____D C:\ProgramData\MTA San Andreas All 2013-07-14 12:57 - 2013-07-14 13:03 - 00000000 ____D C:\Users\Paiva\Desktop\GTA SAN ANDREAS 2013-07-14 12:57 - 2013-07-14 12:57 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\WinRAR 2013-07-14 12:57 - 2013-07-14 12:57 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2013-07-14 12:57 - 2013-07-14 12:57 - 00000000 ____D C:\Program Files\WinRAR 2013-07-14 12:49 - 2013-07-14 12:49 - 01656459 _____ C:\Users\Paiva\Downloads\winrar-x64-420.exe 2013-07-14 12:16 - 2013-07-14 12:45 - 695792274 _____ C:\Users\Paiva\Downloads\GTA SAN ANDREAS.rar 2013-07-14 12:02 - 2013-07-14 12:02 - 20132936 _____ C:\Users\Paiva\Downloads\mtasa-1.3.1.exe 2013-07-14 11:13 - 2013-08-12 20:03 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\TS3Client 2013-07-14 10:58 - 2013-07-14 10:58 - 00000967 _____ C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk 2013-07-14 10:58 - 2013-07-14 10:58 - 00000000 ____D C:\Program Files\TeamSpeak 3 Client 2013-07-14 10:57 - 2013-07-14 10:58 - 34954912 _____ (TeamSpeak Systems GmbH) C:\Users\Paiva\Downloads\TeamSpeak3-Client-win64-3.0.10.1.exe ==================== One Month Modified Files and Folders ======= 2013-08-12 20:09 - 2013-08-12 20:09 - 01575246 _____ (Farbar) C:\Users\Paiva\Downloads\FRST64.exe 2013-08-12 20:09 - 2009-07-14 19:58 - 00645502 _____ C:\Windows\system32\perfh007.dat 2013-08-12 20:09 - 2009-07-14 19:58 - 00126822 _____ C:\Windows\system32\perfc007.dat 2013-08-12 20:09 - 2009-07-14 07:13 - 01472002 _____ C:\Windows\system32\PerfStringBackup.INI 2013-08-12 20:05 - 2013-07-18 19:36 - 00000000 ____D C:\Program Files (x86)\Steam 2013-08-12 20:04 - 2013-07-11 18:34 - 00956798 _____ C:\Windows\PFRO.log 2013-08-12 20:04 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-08-12 20:04 - 2009-07-14 06:51 - 00019648 _____ C:\Windows\setupact.log 2013-08-12 20:03 - 2013-07-14 11:13 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\TS3Client 2013-08-12 20:03 - 2013-07-11 18:15 - 00098205 _____ C:\Windows\WindowsUpdate.log 2013-08-12 19:40 - 2013-07-11 19:34 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-08-12 19:29 - 2013-08-12 19:29 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Paiva\Downloads\mbam-setup-1.75.0.1300(1).exe 2013-08-12 19:29 - 2013-08-12 19:29 - 00001109 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-08-12 19:29 - 2013-08-12 19:29 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Malwarebytes 2013-08-12 19:29 - 2013-08-12 19:29 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-08-12 19:29 - 2013-08-12 19:29 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-08-12 19:12 - 2013-08-12 19:06 - 00000000 ____D C:\Program Files (x86)\JDownloader 2013-08-12 19:07 - 2013-08-12 19:07 - 00002037 _____ C:\Users\Paiva\Desktop\JDownloader.lnk 2013-08-12 19:03 - 2013-08-12 19:03 - 00081488 _____ (AppWork UG (haftungsbeschränkt)) C:\Users\Paiva\Downloads\WebInstaller.exe 2013-08-11 23:56 - 2013-07-11 20:16 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\vlc 2013-08-11 14:30 - 2009-07-14 06:45 - 00013536 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-08-11 14:30 - 2009-07-14 06:45 - 00013536 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-08-10 14:10 - 2013-07-11 18:45 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-08-10 04:45 - 2013-08-10 04:45 - 12230103 _____ C:\Users\Paiva\Downloads\Yung Exclusive - ExpensiveTaste Kit.rar 2013-08-08 23:16 - 2013-07-11 19:00 - 00000000 ____D C:\Users\Paiva\AppData\Local\CrashDumps 2013-08-08 18:12 - 2013-08-08 18:12 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-08-07 19:11 - 2013-07-21 03:45 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Skype 2013-08-05 17:34 - 2013-08-05 14:25 - 00000000 ____D C:\Users\Paiva\Desktop\NI 2013-08-05 14:24 - 2013-08-05 14:24 - 00000000 ____D C:\Users\Paiva\Documents\My ISO Files 2013-08-05 14:24 - 2013-08-05 14:24 - 00000000 ____D C:\Program Files (x86)\UltraISO 2013-08-05 14:23 - 2013-08-05 14:23 - 04001621 _____ (EZB Systems, Inc. ) C:\Users\Paiva\Downloads\uiso9_pe.exe 2013-08-05 13:01 - 2013-08-05 13:01 - 00001799 _____ C:\Users\Paiva\Desktop\MagicISO.lnk 2013-08-05 13:01 - 2013-08-05 13:01 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MagicISO 2013-08-05 13:01 - 2013-08-05 13:01 - 00000000 ____D C:\Program Files (x86)\MagicISO 2013-07-31 15:53 - 2013-07-31 15:53 - 00262144 _____ C:\Windows\Minidump\073113-16364-01.dmp 2013-07-31 15:53 - 2013-07-26 17:47 - 450842995 _____ C:\Windows\MEMORY.DMP 2013-07-31 15:53 - 2013-07-26 17:47 - 00000000 ____D C:\Windows\Minidump 2013-07-28 12:06 - 2013-07-28 12:06 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\East West 2013-07-28 12:06 - 2013-07-19 10:48 - 00000000 ____D C:\Program Files (x86)\East West 2013-07-28 12:06 - 2013-07-14 16:33 - 00000000 ____D C:\Program Files (x86)\VstPlugins 2013-07-28 12:00 - 2013-07-14 16:33 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line 2013-07-28 12:00 - 2013-07-14 16:32 - 00000000 ____D C:\Program Files (x86)\Image-Line 2013-07-28 11:59 - 2013-07-28 11:59 - 00000000 ____D C:\Users\Paiva\Documents\EXP 2013-07-28 11:46 - 2013-07-28 11:46 - 00031808 _____ (FNet Co., Ltd.) C:\Windows\system32\Drivers\FNETTBOH_305.SYS 2013-07-27 16:04 - 2013-07-11 18:52 - 00000000 ____D C:\Windows\system32\appmgmt 2013-07-27 15:55 - 2009-07-14 05:20 - 00000000 __RHD C:\Users\Public\Libraries 2013-07-27 10:22 - 2013-07-27 10:22 - 24460867 _____ C:\Users\Paiva\Downloads\SuperStar O x ZShock Beat Finish Contest.rar 2013-07-26 17:47 - 2013-07-26 17:47 - 00262144 _____ C:\Windows\Minidump\072613-16941-01.dmp 2013-07-26 17:45 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\LiveKernelReports 2013-07-24 20:55 - 2013-07-27 10:33 - 00000000 ____D C:\Users\Paiva\Downloads\SuperStar O x ZShock Beat Finish Contest 2013-07-23 21:52 - 2013-07-23 21:52 - 130326754 _____ C:\Users\Paiva\Downloads\iStandard Exclusive Sound Kits_The Focus Collection.zip 2013-07-23 21:49 - 2013-07-23 21:49 - 06402469 _____ C:\Users\Paiva\Downloads\UPGRADE 2 MIKE WILL MADE IT KIT.rar 2013-07-23 21:48 - 2013-07-23 21:48 - 360894745 _____ C:\Users\Paiva\Downloads\BWB UPGRADE 2 OFFICIAL.rar 2013-07-23 08:45 - 2013-07-23 08:45 - 199902500 _____ C:\Users\Paiva\Downloads\Groove3.FL.Studio.Tips.and.Tricks.TUTORiAL.DVDR-DYNAMiCS.part3.rar 2013-07-23 08:43 - 2013-07-23 08:43 - 943718401 _____ C:\Users\Paiva\Downloads\Groove3.FL.Studio.Tips.and.Tricks.TUTORiAL.DVDR-DYNAMiCS.part2.rar 2013-07-22 21:35 - 2013-07-22 21:34 - 943718401 _____ C:\Users\Paiva\Downloads\Groove3.FL.Studio.Tips.and.Tricks.TUTORiAL.DVDR-DYNAMiCS.part1.rar 2013-07-22 21:25 - 2013-07-22 21:25 - 156525548 _____ C:\Users\Paiva\Downloads\BOI-1DA SO MANY GIRLS REMAKE TUTORIAL (BEATGENERALS).zip 2013-07-22 21:23 - 2013-07-22 21:23 - 227707688 _____ C:\Users\Paiva\Downloads\FOUNTAIN OF YOUTH REMAKE TUTORIAL (BeatGenerals).zip 2013-07-21 11:47 - 2013-07-21 11:45 - 00000000 ____D C:\ProgramData\BlueStacksSetup 2013-07-21 11:45 - 2013-07-21 11:45 - 09174000 _____ (BlueStack Systems Inc.) C:\Users\Paiva\Downloads\BlueStacks-SplitInstaller_native.exe 2013-07-21 10:58 - 2013-07-21 10:55 - 54567980 _____ C:\Users\Paiva\Downloads\Aint Worried About Nothin - Redboy Beatz Remake.rar 2013-07-21 03:45 - 2013-07-21 03:45 - 00002517 _____ C:\Users\Public\Desktop\Skype.lnk 2013-07-21 03:45 - 2013-07-21 03:45 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-07-21 03:45 - 2013-07-21 03:44 - 00000000 ____D C:\ProgramData\Skype 2013-07-21 03:44 - 2013-07-21 03:44 - 01492584 _____ (Skype Technologies S.A.) C:\Users\Paiva\Downloads\SkypeSetup.exe 2013-07-20 19:33 - 2013-07-20 19:28 - 00000000 ____D C:\Users\Paiva\Downloads\Project.Sam.Orchestral.Essentials.KONTAKT 2013-07-20 19:13 - 2013-07-20 19:13 - 2649113217 _____ C:\Users\Paiva\Downloads\Project.Sam.Orchestral.Essentials.KONTAKT.zip 2013-07-20 15:52 - 2013-07-20 15:48 - 69010428 _____ C:\Users\Paiva\Downloads\Drums For Days - Boom Bap Drum Kits.rar 2013-07-20 15:48 - 2013-07-20 15:48 - 05562123 _____ C:\Users\Paiva\Downloads\Chuck Inglish Drum Library.rar 2013-07-20 15:48 - 2013-07-20 15:48 - 04111967 _____ C:\Users\Paiva\Downloads\Cruel Summer Kit.rar 2013-07-20 15:46 - 2013-07-20 15:46 - 08992424 _____ C:\Users\Paiva\Downloads\Canei First Aid Kit.rar 2013-07-20 15:33 - 2013-07-20 15:33 - 04417089 _____ C:\Users\Paiva\Downloads\Distorted 808 Kickz.rar 2013-07-20 15:08 - 2013-07-20 15:08 - 03932974 _____ C:\Users\Paiva\Downloads\Urban Anthology.zip 2013-07-20 14:58 - 2013-07-20 14:58 - 227640285 _____ C:\Users\Paiva\Downloads\Mike Chavez WarChest Drums Volume 1.zip 2013-07-20 14:54 - 2013-07-20 14:54 - 08760939 _____ C:\Users\Paiva\Downloads\JAYBeatzs Secret Stash of Vocal Samples, If U Got Dis U Stole It From My Computer - Vol. I.zip 2013-07-20 14:26 - 2013-07-11 18:38 - 00000000 ____D C:\ProgramData\Norton 2013-07-20 14:26 - 2013-07-11 18:32 - 00000000 ____D C:\ProgramData\Adobe 2013-07-19 20:26 - 2013-07-19 20:26 - 1009076818 _____ C:\Users\Paiva\Downloads\AnnoDomini Drum Collection Vol.3.zip 2013-07-19 19:25 - 2013-07-19 19:25 - 1318164167 _____ C:\Users\Paiva\Downloads\CHOPPED KIT - @YOUNGZAY.zip 2013-07-19 19:17 - 2013-07-19 19:17 - 150092906 _____ C:\Users\Paiva\Downloads\MikeChav's Ultimate 909 Black Edition.zip 2013-07-19 19:08 - 2013-07-19 19:08 - 14326075 _____ C:\Users\Paiva\Downloads\The Lifted Collection.rar 2013-07-19 19:08 - 2013-07-19 19:08 - 05603882 _____ C:\Users\Paiva\Downloads\SDotFire He's On Fire Drums 3.rar 2013-07-19 19:04 - 2013-07-19 19:04 - 00083672 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2013-07-19 13:05 - 2013-07-19 13:05 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Avira 2013-07-19 13:00 - 2013-07-19 13:00 - 00000000 ____D C:\ProgramData\APN 2013-07-19 12:59 - 2013-07-19 12:59 - 00002066 _____ C:\Users\Public\Desktop\Avira Control Center.lnk 2013-07-19 12:59 - 2013-07-19 12:59 - 00000000 ____D C:\ProgramData\Avira 2013-07-19 12:59 - 2013-07-19 12:59 - 00000000 ____D C:\Program Files (x86)\Avira 2013-07-19 12:58 - 2013-07-19 12:59 - 00130016 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2013-07-19 12:58 - 2013-07-19 12:59 - 00100712 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2013-07-19 12:58 - 2013-07-19 12:59 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys 2013-07-19 11:04 - 2013-07-19 11:04 - 02092792 _____ C:\Users\Paiva\Downloads\avira_free_antivirus.exe 2013-07-19 10:48 - 2013-07-19 10:48 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\East West Colossus 2013-07-18 19:39 - 2013-07-11 18:20 - 00000000 ____D C:\Users\Paiva 2013-07-18 19:36 - 2013-07-18 19:36 - 00000917 _____ C:\Users\Public\Desktop\Steam.lnk 2013-07-18 19:34 - 2013-07-18 19:34 - 08531968 _____ C:\Users\Paiva\Downloads\SteamInstall_German.msi 2013-07-18 17:50 - 2013-07-18 17:50 - 00000000 ____D C:\ProgramData\Audio Damage 2013-07-18 17:45 - 2013-07-18 17:45 - 00000000 ____D C:\Users\Paiva\Desktop\Kit 2013-07-18 17:36 - 2013-07-18 17:36 - 00000000 ____D C:\Program Files (x86)\Focusrite Guitar FX Plug-in Suite 2013-07-18 17:35 - 2013-07-11 19:37 - 00000000 ____D C:\Program Files\Steinberg 2013-07-18 17:27 - 2013-07-18 17:27 - 00000000 ____D C:\Program Files (x86)\Uninstall 2013-07-18 17:19 - 2013-07-11 18:28 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-07-18 17:18 - 2013-07-18 17:14 - 00000000 ____D C:\Users\Paiva\Desktop\Sonic Reality SampleTron Combis AMPLiFY 2013-07-18 17:12 - 2013-07-11 18:20 - 00000000 ____D C:\Users\Paiva\AppData\Local\VirtualStore 2013-07-17 21:37 - 2013-07-17 21:37 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\LolClient 2013-07-14 18:45 - 2013-07-14 18:45 - 00001286 _____ C:\Users\Paiva\Desktop\Z3TA+ 2.lnk 2013-07-14 18:45 - 2013-07-14 18:45 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Cakewalk 2013-07-14 18:44 - 2013-07-11 18:32 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Adobe 2013-07-14 18:22 - 2013-07-14 16:27 - 349905765 _____ C:\Users\Paiva\Downloads\FLStPrEd1101.rar 2013-07-14 18:18 - 2013-07-14 18:18 - 00000000 __SHD C:\Windows\SysWOW64\AI_RecycleBin 2013-07-14 18:18 - 2013-07-14 18:18 - 00000000 ____D C:\Riot Games 2013-07-14 18:18 - 2013-07-14 18:14 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Riot Games 2013-07-14 18:13 - 2013-07-14 18:13 - 34888568 _____ (Riot Games) C:\Users\Paiva\Downloads\LeagueofLegends_EUW_Installer_06_12_13.exe 2013-07-14 17:52 - 2013-07-14 17:52 - 00000000 ____D C:\Program Files (x86)\IK Multimedia 2013-07-14 17:01 - 2013-07-14 17:01 - 00001014 _____ C:\Users\Public\Desktop\Kontakt 5.lnk 2013-07-14 17:01 - 2013-07-14 17:01 - 00000000 __HDC C:\ProgramData\{A9158F4E-7914-4019-808A-D4D4993E9958} 2013-07-14 17:01 - 2013-07-14 17:01 - 00000000 ____D C:\Users\Paiva\Documents\Native Instruments 2013-07-14 17:01 - 2013-07-14 17:01 - 00000000 ____D C:\Users\Paiva\AppData\Local\Native Instruments 2013-07-14 17:00 - 2013-07-14 17:00 - 00001059 _____ C:\Users\Public\Desktop\Service Center.lnk 2013-07-14 17:00 - 2013-07-14 17:00 - 00000000 __HDC C:\ProgramData\{95B4F0ED-951F-4D36-B068-5EC1C4C19C14} 2013-07-14 17:00 - 2013-07-14 17:00 - 00000000 ____D C:\ProgramData\Native Instruments 2013-07-14 17:00 - 2013-07-14 17:00 - 00000000 ____D C:\Program Files\Native Instruments 2013-07-14 17:00 - 2013-07-14 17:00 - 00000000 ____D C:\Program Files\Common Files\Native Instruments 2013-07-14 16:47 - 2013-07-14 16:43 - 00000000 ____D C:\Program Files (x86)\Spectrasonics 2013-07-14 16:43 - 2013-07-14 16:43 - 00000000 ____D C:\Program Files\Spectrasonics 2013-07-14 16:43 - 2013-07-14 16:43 - 00000000 ____D C:\Program Files (x86)\steinberg 2013-07-14 16:42 - 2013-07-14 16:40 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\DAEMON Tools Lite 2013-07-14 16:42 - 2013-07-14 16:40 - 00000000 ____D C:\ProgramData\DAEMON Tools Lite 2013-07-14 16:41 - 2013-07-14 16:41 - 00283200 _____ (DT Soft Ltd) C:\Windows\system32\Drivers\dtsoftbus01.sys 2013-07-14 16:41 - 2013-07-14 16:40 - 00000000 ____D C:\Program Files (x86)\DAEMON Tools Lite 2013-07-14 16:37 - 2013-07-14 16:37 - 01700352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdiplus.dll 2013-07-14 16:37 - 2013-07-14 16:37 - 01060864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc71.dll 2013-07-14 16:37 - 2013-07-14 16:37 - 00348160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr71.dll 2013-07-14 16:33 - 2013-07-14 16:33 - 00001146 _____ C:\Users\Public\Desktop\FL Studio 10.lnk 2013-07-14 16:33 - 2013-07-14 16:33 - 00001138 _____ C:\Users\Paiva\Desktop\ASIO4ALL v2 Instruction Manual.lnk 2013-07-14 16:33 - 2013-07-14 16:33 - 00000000 ____D C:\Users\Paiva\Documents\Image-Line 2013-07-14 16:33 - 2013-07-14 16:33 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASIO4ALL v2 2013-07-14 16:33 - 2013-07-14 16:33 - 00000000 ____D C:\Program Files (x86)\Outsim 2013-07-14 16:33 - 2013-07-14 16:33 - 00000000 ____D C:\Program Files (x86)\ASIO4ALL v2 2013-07-14 13:48 - 2013-07-14 13:28 - 00000000 ____D C:\Users\Paiva\Documents\GTA San Andreas User Files 2013-07-14 13:28 - 2013-07-14 13:28 - 00001948 _____ C:\Users\Public\Desktop\MTA San Andreas 1.3.lnk 2013-07-14 13:28 - 2013-07-14 13:28 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2013-07-14 13:28 - 2013-07-14 13:28 - 00000000 ____D C:\ProgramData\MTA San Andreas All 2013-07-14 13:03 - 2013-07-14 12:57 - 00000000 ____D C:\Users\Paiva\Desktop\GTA SAN ANDREAS 2013-07-14 12:57 - 2013-07-14 12:57 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\WinRAR 2013-07-14 12:57 - 2013-07-14 12:57 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2013-07-14 12:57 - 2013-07-14 12:57 - 00000000 ____D C:\Program Files\WinRAR 2013-07-14 12:49 - 2013-07-14 12:49 - 01656459 _____ C:\Users\Paiva\Downloads\winrar-x64-420.exe 2013-07-14 12:45 - 2013-07-14 12:16 - 695792274 _____ C:\Users\Paiva\Downloads\GTA SAN ANDREAS.rar 2013-07-14 12:02 - 2013-07-14 12:02 - 20132936 _____ C:\Users\Paiva\Downloads\mtasa-1.3.1.exe 2013-07-14 10:58 - 2013-07-14 10:58 - 00000967 _____ C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk 2013-07-14 10:58 - 2013-07-14 10:58 - 00000000 ____D C:\Program Files\TeamSpeak 3 Client 2013-07-14 10:58 - 2013-07-14 10:57 - 34954912 _____ (TeamSpeak Systems GmbH) C:\Users\Paiva\Downloads\TeamSpeak3-Client-win64-3.0.10.1.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-08-02 22:17 ==================== End Of Log ============================ Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 11-08-2013 02 Ran by Paiva at 2013-08-12 20:10:56 Running from C:\Users\Paiva\Downloads Boot Mode: Normal ========================================================== ==================== Installed Programs ======================= Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.94) Adobe Reader XI (11.0.03) - Deutsch (x32 Version: 11.0.03) AMD APP SDK Runtime (Version: 2.4.595.9) AMD Drag and Drop Transcoding (Version: 2.00.0000) ASIO4ALL (x32 Version: 2.10) ASRock App Charger v1.0.4 ASRock eXtreme Tuner v0.1.78 (x32) ASRock InstantBoot v1.26 (x32) ATI AVIVO64 Codecs (Version: 11.6.0.10308) ATI Catalyst Install Manager (Version: 3.0.816.0) Avira Free Antivirus (x32 Version: 13.0.0.3885) Cakewalk Session Drummer VSTi v2.0 (x32) Catalyst Control Center - Branding (x32 Version: 1.00.0000) Catalyst Control Center (x32 Version: 2011.0308.2325.42017) Catalyst Control Center Graphics Previews Common (x32 Version: 2011.0308.2325.42017) Catalyst Control Center InstallProxy (x32 Version: 2011.0308.2325.42017) Catalyst Control Center Localization All (x32 Version: 2011.0308.2325.42017) CCC Help Chinese Standard (x32 Version: 2011.0308.2324.42017) CCC Help Chinese Traditional (x32 Version: 2011.0308.2324.42017) CCC Help Czech (x32 Version: 2011.0308.2324.42017) CCC Help Danish (x32 Version: 2011.0308.2324.42017) CCC Help Dutch (x32 Version: 2011.0308.2324.42017) CCC Help English (x32 Version: 2011.0308.2324.42017) CCC Help Finnish (x32 Version: 2011.0308.2324.42017) CCC Help French (x32 Version: 2011.0308.2324.42017) CCC Help German (x32 Version: 2011.0308.2324.42017) CCC Help Greek (x32 Version: 2011.0308.2324.42017) CCC Help Hungarian (x32 Version: 2011.0308.2324.42017) CCC Help Italian (x32 Version: 2011.0308.2324.42017) CCC Help Japanese (x32 Version: 2011.0308.2324.42017) CCC Help Korean (x32 Version: 2011.0308.2324.42017) CCC Help Norwegian (x32 Version: 2011.0308.2324.42017) CCC Help Polish (x32 Version: 2011.0308.2324.42017) CCC Help Portuguese (x32 Version: 2011.0308.2324.42017) CCC Help Russian (x32 Version: 2011.0308.2324.42017) CCC Help Spanish (x32 Version: 2011.0308.2324.42017) CCC Help Swedish (x32 Version: 2011.0308.2324.42017) CCC Help Thai (x32 Version: 2011.0308.2324.42017) CCC Help Turkish (x32 Version: 2011.0308.2324.42017) ccc-utility64 (Version: 2011.0308.2325.42017) Counter-Strike: Source (x32) DAEMON Tools Lite (x32 Version: 4.47.1.0333) dows-Treiberpaket - Focusrite USB 2.0 Audio Driver (09/10/2012 2.4.128.0) (Version: 09/10/2012 2.4.128.0) East West Colossus (x32) East West Orchestra 1 - Strings (x32) Etron USB3.0 Host Controller (x32 Version: 0.96) F.lux (HKCU) FL Studio 10 (x32) Focusrite Guitar FX Plug-in Suite 1.0.2 (x32 Version: 1.0.2) Focusrite USB 2.0 Audio Driver 2.4 (Version: 2.4) HydraVision (x32 Version: 4.2.188.0) IL Download Manager (x32) IL Harmless (x32) Intel(R) Control Center (x32 Version: 1.2.1.1007) Intel(R) Management Engine Components (x32 Version: 7.0.0.1144) Intel(R) Processor Graphics (x32 Version: 8.15.10.2361) Java 7 Update 25 (x32 Version: 7.0.250) Java Auto Updater (x32 Version: 2.1.9.5) JDownloader 0.9 (x32 Version: 0.9) League of Legends (x32 Version: 3.0.1) Magic ISO Maker v5.5 (build 0281) (x32) Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.59192) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (Version: 10.0.30319) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Mozilla Firefox 23.0 (x86 de) (x32 Version: 23.0) Mozilla Maintenance Service (x32 Version: 23.0) MTA:SA v1.3.1 (x32 Version: v1.3.1) Native Instruments Kontakt 5 (Version: 5.0.2.5641) Native Instruments Kontakt 5 (x32) Native Instruments Service Center (Version: 2.3.2.926) Native Instruments Service Center (x32) Realtek Ethernet Controller Driver (x32 Version: 7.41.216.2011) Realtek High Definition Audio Driver (x32 Version: 6.0.1.6257) reFX Nexus VSTi RTAS v2.2.0 (x32) Skype™ 6.6 (x32 Version: 6.6.106) Sound Blaster X-Fi MB (x32 Version: 1.0) Steam (x32 Version: 1.0.0.0) Steinberg Cubase LE AI Elements 6 64bit (Version: 6.0.5) TeamSpeak 3 Client (Version: 3.0.10) Tone2 Gladiator VSTi v2.2 (x32) UltraISO Premium V9.53 (x32) VLC media player 2.0.7 (x32 Version: 2.0.7) WinRAR 4.20 (64-bit) (Version: 4.20.0) WMV9/VC-1 Video Playback (Version: 1.00.0000) XFastUsb (x32) ==================== Restore Points ========================= 26-07-2013 23:57:57 Geplanter Prüfpunkt 27-07-2013 13:55:02 Removed BlueStacks Notification Center 04-08-2013 17:22:26 Geplanter Prüfpunkt ==================== Hosts content: ========================== 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {8BD53F2B-5DE7-4A31-B766-B72FA8C78DE5} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-07-11] (Adobe Systems Incorporated) Task: {F8A91E41-AE73-48D4-8BE0-3301A4A08F91} - System32\Tasks\Microsoft\Windows Defender\MP Scheduled Scan => c:\program files\windows defender\MpCmdRun.exe [2009-07-14] (Microsoft Corporation) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (08/08/2013 11:16:36 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: Explorer.EXE, Version: 6.1.7600.16404, Zeitstempel: 0x4a765771 Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7600.16385, Zeitstempel: 0x4a5be02b Ausnahmecode: 0xc0000374 Fehleroffset: 0x00000000000c6cd2 ID des fehlerhaften Prozesses: 0x658 Startzeit der fehlerhaften Anwendung: 0xExplorer.EXE0 Pfad der fehlerhaften Anwendung: Explorer.EXE1 Pfad des fehlerhaften Moduls: Explorer.EXE2 Berichtskennung: Explorer.EXE3 Error: (07/27/2013 04:04:41 PM) (Source: MsiInstaller) (User: Paiva-PC) Description: Produkt: Avira SearchFree Toolbar plus Web Protection -- Fehler 25001. Die folgenden Anwendungen sollten geschlossen werden, bevor Sie mit der Deinstallation fortfahren: Mozilla Firefox Error: (07/20/2013 07:35:56 PM) (Source: Application Hang) (User: ) Description: Programm Multi Theft Auto.exe, Version 1.5479.0.0 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 1be0 Startzeit: 01ce856f8201e1b5 Endzeit: 0 Anwendungspfad: C:\Users\Paiva\Desktop\GTA SAN ANDREAS\GTA - San Andreas\Multi Theft Auto.exe Berichts-ID: cd89e621-f162-11e2-8aa4-002522c22eef Error: (07/19/2013 10:00:36 PM) (Source: Microsoft-Windows-CAPI2) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddLegacyDriverFiles: Unable to back up image of binary Symantec Network Security WFP Driver. System Error: Das System kann die angegebene Datei nicht finden. . Error: (07/19/2013 10:00:36 PM) (Source: Microsoft-Windows-CAPI2) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddLegacyDriverFiles: Unable to back up image of binary Symantec Iron Driver. System Error: Das System kann die angegebene Datei nicht finden. . Error: (07/19/2013 10:00:36 PM) (Source: Microsoft-Windows-CAPI2) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddLegacyDriverFiles: Unable to back up image of binary EraserUtilRebootDrv. System Error: Das System kann die angegebene Datei nicht finden. . Error: (07/19/2013 10:00:36 PM) (Source: Microsoft-Windows-CAPI2) (User: ) Description: Fehler beim Kryptografiedienst während der Verarbeitung des "OnIdentity()"-Aufrufobjekts "System Writer". Details: AddLegacyDriverFiles: Unable to back up image of binary Symantec Eraser Control driver. System Error: Das System kann die angegebene Datei nicht finden. . Error: (07/14/2013 06:16:51 PM) (Source: MsiInstaller) (User: Paiva-PC) Description: Produkt: League of Legends -- Failed to launch file: C:\Users\Paiva\AppData\Roaming\Riot Games\League of Legends\prerequisites\PMBInst.exe Error: 1223 Error: (07/11/2013 07:00:09 PM) (Source: Application Error) (User: ) Description: Aus einem der folgenden Gründe kann nicht auf die Datei "D:\Vista\Bin64\InstallManager.dll" zugegriffen werden: Es besteht ein Problem mit der Netzwerkverbindung, dem Datenträger mit der gespeicherten Datei bzw. den auf dem Computer installierten Speichertreibern, oder der Datenträger fehlt. Das Programm CATALYST™ Install Manager wurde wegen dieses Fehlers geschlossen. Programm: CATALYST™ Install Manager Datei: D:\Vista\Bin64\InstallManager.dll Der Fehlerwert ist im Abschnitt "Zusätzliche Dateien" aufgelistet. Benutzeraktion 1. Öffnen Sie die Datei erneut. Diese Situation ist eventuell ein temporäres Problem, das selbstständig behoben wird, wenn das Programm erneut ausgeführt wird. 2. Wenn Sie weiterhin nicht auf die Datei zugreifen können und - diese sich im Netzwerk befindet, dann sollte der Netzwerkadministrator überprüfen, dass kein Netzwerkproblem besteht und dass eine Verbindung mit dem Server hergestellt werden kann. - diese sich auf einem Wechseldatenträger, wie z. B. einer Diskette oder einer CD, befindet, überprüfen Sie, ob der Datenträger richtig in den Computer eingelegt ist. 3. Überprüfen und reparieren Sie das Dateisystem, indem Sie CHKDSK ausführen. Klicken Sie dazu im Menü "Start" auf "Ausführen", geben Sie CMD ein, und klicken Sie auf "OK". Geben Sie an der Eingabeaufforderung CHKDSK /F ein, und drücken Sie die EINGABETASTE. 4. Stellen Sie die Datei von einer Sicherungskopie wieder her, wenn das Problem weiterhin besteht. 5. Überprüfen Sie, ob andere Dateien auf demselben Datenträger geöffnet werden können. Falls dies nicht möglich ist, ist der Datenträger eventuell beschädigt. Wenden Sie sich an den Administrator oder den Hersteller der Computerhardware, um weitere Unterstützung zu erhalten, wenn es sich um eine Festplatte handelt. Zusätzliche Daten Fehlerwert: C0000012 Datenträgertyp: 5 Error: (07/11/2013 07:00:09 PM) (Source: Application Error) (User: ) Description: Name der fehlerhaften Anwendung: InstallManagerApp.exe, Version: 3.0.816.0, Zeitstempel: 0x4d76ffe0 Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7600.16385, Zeitstempel: 0x4a5be02b Ausnahmecode: 0xc0000006 Fehleroffset: 0x000000000003548f ID des fehlerhaften Prozesses: 0xb44 Startzeit der fehlerhaften Anwendung: 0xInstallManagerApp.exe0 Pfad der fehlerhaften Anwendung: InstallManagerApp.exe1 Pfad des fehlerhaften Moduls: InstallManagerApp.exe2 Berichtskennung: InstallManagerApp.exe3 System errors: ============= Microsoft Office Sessions: ========================= Error: (08/08/2013 11:16:36 PM) (Source: Application Error)(User: ) Description: Explorer.EXE6.1.7600.164044a765771ntdll.dll6.1.7600.163854a5be02bc000037400000000000c6cd265801ce945edc1a61ceC:\Windows\Explorer.EXEC:\Windows\SYSTEM32\ntdll.dllce45b99e-006f-11e3-8712-002522c22eef Error: (07/27/2013 04:04:41 PM) (Source: MsiInstaller)(User: Paiva-PC) Description: Produkt: Avira SearchFree Toolbar plus Web Protection -- Fehler 25001. Die folgenden Anwendungen sollten geschlossen werden, bevor Sie mit der Deinstallation fortfahren: Mozilla Firefox(NULL)(NULL)(NULL)(NULL)(NULL) Error: (07/20/2013 07:35:56 PM) (Source: Application Hang)(User: ) Description: Multi Theft Auto.exe1.5479.0.01be001ce856f8201e1b50C:\Users\Paiva\Desktop\GTA SAN ANDREAS\GTA - San Andreas\Multi Theft Auto.execd89e621-f162-11e2-8aa4-002522c22eef Error: (07/19/2013 10:00:36 PM) (Source: Microsoft-Windows-CAPI2)(User: ) Description: Details: AddLegacyDriverFiles: Unable to back up image of binary Symantec Network Security WFP Driver. System Error: Das System kann die angegebene Datei nicht finden. Error: (07/19/2013 10:00:36 PM) (Source: Microsoft-Windows-CAPI2)(User: ) Description: Details: AddLegacyDriverFiles: Unable to back up image of binary Symantec Iron Driver. System Error: Das System kann die angegebene Datei nicht finden. Error: (07/19/2013 10:00:36 PM) (Source: Microsoft-Windows-CAPI2)(User: ) Description: Details: AddLegacyDriverFiles: Unable to back up image of binary EraserUtilRebootDrv. System Error: Das System kann die angegebene Datei nicht finden. Error: (07/19/2013 10:00:36 PM) (Source: Microsoft-Windows-CAPI2)(User: ) Description: Details: AddLegacyDriverFiles: Unable to back up image of binary Symantec Eraser Control driver. System Error: Das System kann die angegebene Datei nicht finden. Error: (07/14/2013 06:16:51 PM) (Source: MsiInstaller)(User: Paiva-PC) Description: Produkt: League of Legends -- Failed to launch file: C:\Users\Paiva\AppData\Roaming\Riot Games\League of Legends\prerequisites\PMBInst.exe Error: 1223(NULL)(NULL)(NULL)(NULL)(NULL) Error: (07/11/2013 07:00:09 PM) (Source: Application Error)(User: ) Description: D:\Vista\Bin64\InstallManager.dllCATALYST™ Install ManagerC00000125 Error: (07/11/2013 07:00:09 PM) (Source: Application Error)(User: ) Description: InstallManagerApp.exe3.0.816.04d76ffe0ntdll.dll6.1.7600.163854a5be02bc0000006000000000003548fb4401ce7e5774c95e17D:\Vista\Bin64\InstallManagerApp.exeC:\Windows\SYSTEM32\ntdll.dll57a10d12-ea4b-11e2-8730-002522c22eef ==================== Memory info =========================== Percentage of memory in use: 27% Total physical RAM: 8104.67 MB Available physical RAM: 5862.66 MB Total Pagefile: 16207.49 MB Available Pagefile: 13568.51 MB Total Virtual: 8192 MB Available Virtual: 8191.82 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:465.66 GB) (Free:70.83 GB) NTFS (Disk=0 Partition=2) ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 1F9D9144) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=466 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
13.08.2013, 09:12 | #5 |
/// TB-Ausbilder | Optimize Pro / OpenCandy Servus, wir starten so: Schritt 1 Downloade Dir bitte AdwCleaner auf deinen Desktop.
Schritt 2 Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Schritt 3
Bitte poste mit deiner nächsten Antwort
|
13.08.2013, 20:38 | #6 |
| Optimize Pro / OpenCandy AdwCleaner Code:
ATTFilter # AdwCleaner v2.306 - Datei am 13/08/2013 um 21:19:44 erstellt # Aktualisiert am 19/07/2013 von Xplode # Betriebssystem : Windows 7 Ultimate (64 bits) # Benutzer : Paiva # Bootmodus : Normal # Ausgeführt unter : C:\Users\Paiva\Desktop\adwcleaner.exe # Option [Löschen] **** [Dienste] **** ***** [Dateien / Ordner] ***** Gelöscht mit Neustart : C:\ProgramData\APN Gelöscht mit Neustart : C:\ProgramData\DeviceVM Gelöscht mit Neustart : C:\Users\Paiva\AppData\Local\Temp\APN Gelöscht mit Neustart : C:\Users\Paiva\AppData\Roaming\DeviceVM ***** [Registrierungsdatenbank] ***** Schlüssel Gelöscht : HKCU\Software\InstallCore Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{0E5680D1-BF44-4929-94AF-FD30D784AD1D} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0E5680D1-BF44-4929-94AF-FD30D784AD1D} ***** [Internet Browser] ***** -\\ Internet Explorer v8.0.7600.16385 [OK] Die Registrierungsdatenbank ist sauber. -\\ Mozilla Firefox v23.0 (de) Datei : C:\Users\Paiva\AppData\Roaming\Mozilla\Firefox\Profiles\hbgpnkj3.default\prefs.js [OK] Die Datei ist sauber. ************************* AdwCleaner[S1].txt - [1213 octets] - [13/08/2013 21:19:44] ########## EOF - C:\AdwCleaner[S1].txt - [1273 octets] ########## JRT Logfile: Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 5.4.4 (08.12.2013:1) OS: Windows 7 Ultimate x64 Ran by Paiva on 13.08.2013 at 21:27:20,27 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys ~~~ Files ~~~ Folders Successfully deleted: [Folder] "C:\ProgramData\apn" Successfully deleted: [Folder] "C:\Windows\syswow64\ai_recyclebin" ~~~ FireFox Emptied folder: C:\Users\Paiva\AppData\Roaming\mozilla\firefox\profiles\hbgpnkj3.default\minidumps [7 files] ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 13.08.2013 at 21:32:19,61 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Code:
ATTFilter Malwarebytes Anti-Malware 1.75.0.1300 www.malwarebytes.org Datenbank Version: v2013.08.13.06 Windows 7 x64 NTFS Internet Explorer 8.0.7600.16385 Paiva 13.08.2013 21:34:27 mbam-log-2013-08-13 (21-34-27).txt Art des Suchlaufs: Quick-Scan Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 212670 Laufzeit: 3 Minute(n), 5 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 0 (Keine bösartigen Objekte gefunden) (Ende) |
14.08.2013, 13:44 | #7 |
/// TB-Ausbilder | Optimize Pro / OpenCandy Servus, wie läuft der Rechner derzeit? Gibt es noch Probleme? Wenn ja, welche? Kontrollscan mit FRST Führe wie zuvor beschrieben einen Scan mit FRST aus. Setze dazu eine Haken bei Addition.txt rechts unten und klicke auf Scan. Es werden wieder zwei Logdateien erzeugt. Poste mir diese. |
15.08.2013, 17:36 | #8 |
| Optimize Pro / OpenCandy Also eig. läuft mein Rechner ganz normal. Nichts ungewöhnliches bis jetzt. FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-08-2013 02 Ran by Paiva (administrator) on 15-08-2013 18:30:07 Running from C:\Users\Paiva\Downloads Windows 7 Ultimate (X64) OS Language: German Standard Internet Explorer Version 8 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (AMD) C:\Windows\system32\atiesrxx.exe (Creative Technology Ltd) C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe (AMD) C:\Windows\system32\atieclxx.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe () C:\Users\Paiva\Local Settings\Apps\F.lux\flux.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (FNet Co., Ltd.) C:\Program Files (x86)\XFastUsb\XFastUsb.exe (Creative Technology Ltd) C:\Program Files (x86)\InstallShield Installation Information\{F3D9AC82-30F4-4BB9-B9AB-8697637568C1}\AMBSPISyncService.exe (Creative Technology Ltd) C:\Program Files (x86)\Creative\SB X-Fi MB\Volume Panel\VolPanlu.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Macrovision Europe Ltd.) C:\Users\Paiva\AppData\Local\Temp\Sound_Blaster_X-Fi_MB_Cleanup.0001 (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Creative Labs) C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\XMBLicensing.exe (Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe (Oracle Corporation) C:\Program Files (x86)\Java\jre7\bin\javaw.exe (VideoLAN) C:\Program Files (x86)\VideoLAN\VLC\vlc.exe (TeamSpeak Systems GmbH) C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11660904 2010-11-30] (Realtek Semiconductor) HKLM\...\Run: [RunDLLEntry] - C:\Windows\system32\AmbRunE.dll [17920 2009-02-26] (Creative Technology Ltd.) HKCU\...\Run: [ASRockXTU] - [x] HKCU\...\Run: [zASRockInstantBoot] - [x] HKCU\...\Run: [F.lux] - C:\Users\Paiva\Local Settings\Apps\F.lux\flux.exe [966656 2009-08-29] () HKCU\...\Run: [DAEMON Tools Lite] - C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3672640 2013-03-14] (Disc Soft Ltd) HKCU\...\Run: [Steam] - C:\Program Files (x86)\Steam\steam.exe [1807272 2013-07-27] (Valve Corporation) HKLM-x32\...\Run: [XFastUsb] - C:\Program Files (x86)\XFastUsb\XFastUsb.exe [4942336 2013-07-11] (FNet Co., Ltd.) HKLM-x32\...\Run: [CTSyncService] - C:\Program Files (x86)\InstallShield Installation Information\{F3D9AC82-30F4-4BB9-B9AB-8697637568C1}\AMBSPISyncService.exe [1233195 2009-07-08] (Creative Technology Ltd) HKLM-x32\...\Run: [VolPanel] - C:\Program Files (x86)\Creative\SB X-Fi MB\Volume Panel\VolPanlu.exe [241789 2009-05-04] (Creative Technology Ltd) HKLM-x32\...\Run: [UpdReg] - C:\Windows\UpdReg.EXE [90112 2000-05-11] (Creative Technology Ltd.) HKLM-x32\...\Run: [StartCCC] - C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [336384 2011-03-09] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-05-11] (Adobe Systems Incorporated) HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [345144 2013-07-19] (Avira Operations GmbH & Co. KG) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - DefaultScope value is missing. SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=ASRK SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&fr=chr-devicevm&type=ASRK BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKCU - No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 10.0.0.138 FireFox: ======== FF ProfilePath: C:\Users\Paiva\AppData\Roaming\Mozilla\Firefox\Profiles\hbgpnkj3.default FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll () FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll () FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @videolan.org/vlc,version=2.0.7 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Extension: No Name - C:\Users\Paiva\AppData\Roaming\Mozilla\Firefox\Profiles\hbgpnkj3.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi FF Extension: No Name - C:\Users\Paiva\AppData\Roaming\Mozilla\Firefox\Profiles\hbgpnkj3.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} ==================== Services (Whitelisted) ================= R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [84024 2013-07-19] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [108088 2013-07-19] (Avira Operations GmbH & Co. KG) ==================== Drivers (Whitelisted) ==================== R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [100712 2013-07-19] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [130016 2013-07-19] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-07-19] (Avira Operations GmbH & Co. KG) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2013-07-14] (DT Soft Ltd) R3 ffusb2audio; C:\Windows\System32\DRIVERS\ffusb2audio.sys [125304 2012-09-10] (Focusrite Audio Engineering Limited.) S3 FNETTBOH_305; C:\Windows\System32\drivers\FNETTBOH_305.SYS [31808 2013-07-28] (FNet Co., Ltd.) R1 FNETURPX; C:\Windows\System32\drivers\FNETURPX.SYS [15936 2013-07-11] (FNet Co., Ltd.) R1 ISODrive; C:\Program Files (x86)\UltraISO\drivers\ISODrv64.sys [115600 2010-01-29] (EZB Systems, Inc.) R1 ISODrive; C:\Program Files (x86)\UltraISO\drivers\ISODrv64.sys [115600 2010-01-29] (EZB Systems, Inc.) S3 FairplayKD; \??\C:\ProgramData\MTA San Andreas All\Common\temp\FairplayKD.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-08-13 21:32 - 2013-08-13 21:32 - 00000875 _____ C:\Users\Paiva\Desktop\JRT.txt 2013-08-13 21:27 - 2013-08-13 21:27 - 00000000 ____D C:\Windows\ERUNT 2013-08-13 21:19 - 2013-08-13 21:19 - 00001342 _____ C:\AdwCleaner[S1].txt 2013-08-13 21:19 - 2013-08-13 21:19 - 00000233 _____ C:\Windows\DeleteOnReboot.bat 2013-08-13 21:18 - 2013-08-13 21:18 - 01158722 _____ (Thisisu) C:\Users\Paiva\Desktop\JRT.exe 2013-08-13 21:17 - 2013-08-13 21:17 - 00666633 _____ C:\Users\Paiva\Desktop\adwcleaner.exe 2013-08-12 20:10 - 2013-08-12 20:10 - 00000000 ____D C:\FRST 2013-08-12 20:09 - 2013-08-12 20:09 - 01575246 _____ (Farbar) C:\Users\Paiva\Downloads\FRST64.exe 2013-08-12 19:29 - 2013-08-12 19:29 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Paiva\Downloads\mbam-setup-1.75.0.1300(1).exe 2013-08-12 19:29 - 2013-08-12 19:29 - 00001109 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-08-12 19:29 - 2013-08-12 19:29 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Malwarebytes 2013-08-12 19:29 - 2013-08-12 19:29 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-08-12 19:29 - 2013-08-12 19:29 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-08-12 19:29 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2013-08-12 19:07 - 2013-08-12 19:07 - 00002037 _____ C:\Users\Paiva\Desktop\JDownloader.lnk 2013-08-12 19:06 - 2013-08-12 21:12 - 00000000 ____D C:\Program Files (x86)\JDownloader 2013-08-12 19:03 - 2013-08-12 19:03 - 00081488 _____ (AppWork UG (haftungsbeschränkt)) C:\Users\Paiva\Downloads\WebInstaller.exe 2013-08-10 04:45 - 2013-08-10 04:45 - 12230103 _____ C:\Users\Paiva\Downloads\Yung Exclusive - ExpensiveTaste Kit.rar 2013-08-08 18:12 - 2013-08-08 18:12 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-08-05 14:25 - 2013-08-05 17:34 - 00000000 ____D C:\Users\Paiva\Desktop\NI 2013-08-05 14:24 - 2013-08-05 14:24 - 00000000 ____D C:\Users\Paiva\Documents\My ISO Files 2013-08-05 14:24 - 2013-08-05 14:24 - 00000000 ____D C:\Program Files (x86)\UltraISO 2013-08-05 14:23 - 2013-08-05 14:23 - 04001621 _____ (EZB Systems, Inc. ) C:\Users\Paiva\Downloads\uiso9_pe.exe 2013-08-05 13:01 - 2013-08-05 13:01 - 00001799 _____ C:\Users\Paiva\Desktop\MagicISO.lnk 2013-08-05 13:01 - 2013-08-05 13:01 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MagicISO 2013-08-05 13:01 - 2013-08-05 13:01 - 00000000 ____D C:\Program Files (x86)\MagicISO 2013-07-31 15:53 - 2013-07-31 15:53 - 00262144 _____ C:\Windows\Minidump\073113-16364-01.dmp 2013-07-28 12:06 - 2013-07-28 12:06 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\East West 2013-07-28 11:59 - 2013-07-28 11:59 - 00000000 ____D C:\Users\Paiva\Documents\EXP 2013-07-28 11:46 - 2013-07-28 11:46 - 00031808 _____ (FNet Co., Ltd.) C:\Windows\system32\Drivers\FNETTBOH_305.SYS 2013-07-27 10:33 - 2013-07-24 20:55 - 00000000 ____D C:\Users\Paiva\Downloads\SuperStar O x ZShock Beat Finish Contest 2013-07-27 10:22 - 2013-07-27 10:22 - 24460867 _____ C:\Users\Paiva\Downloads\SuperStar O x ZShock Beat Finish Contest.rar 2013-07-26 17:47 - 2013-07-31 15:53 - 450842995 _____ C:\Windows\MEMORY.DMP 2013-07-26 17:47 - 2013-07-31 15:53 - 00000000 ____D C:\Windows\Minidump 2013-07-26 17:47 - 2013-07-26 17:47 - 00262144 _____ C:\Windows\Minidump\072613-16941-01.dmp 2013-07-23 21:52 - 2013-07-23 21:52 - 130326754 _____ C:\Users\Paiva\Downloads\iStandard Exclusive Sound Kits_The Focus Collection.zip 2013-07-23 21:49 - 2013-07-23 21:49 - 06402469 _____ C:\Users\Paiva\Downloads\UPGRADE 2 MIKE WILL MADE IT KIT.rar 2013-07-23 21:48 - 2013-07-23 21:48 - 360894745 _____ C:\Users\Paiva\Downloads\BWB UPGRADE 2 OFFICIAL.rar 2013-07-23 08:45 - 2013-07-23 08:45 - 199902500 _____ C:\Users\Paiva\Downloads\Groove3.FL.Studio.Tips.and.Tricks.TUTORiAL.DVDR-DYNAMiCS.part3.rar 2013-07-23 08:43 - 2013-07-23 08:43 - 943718401 _____ C:\Users\Paiva\Downloads\Groove3.FL.Studio.Tips.and.Tricks.TUTORiAL.DVDR-DYNAMiCS.part2.rar 2013-07-22 21:34 - 2013-07-22 21:35 - 943718401 _____ C:\Users\Paiva\Downloads\Groove3.FL.Studio.Tips.and.Tricks.TUTORiAL.DVDR-DYNAMiCS.part1.rar 2013-07-22 21:25 - 2013-07-22 21:25 - 156525548 _____ C:\Users\Paiva\Downloads\BOI-1DA SO MANY GIRLS REMAKE TUTORIAL (BEATGENERALS).zip 2013-07-22 21:23 - 2013-07-22 21:23 - 227707688 _____ C:\Users\Paiva\Downloads\FOUNTAIN OF YOUTH REMAKE TUTORIAL (BeatGenerals).zip 2013-07-21 11:45 - 2013-07-21 11:47 - 00000000 ____D C:\ProgramData\BlueStacksSetup 2013-07-21 11:45 - 2013-07-21 11:45 - 09174000 _____ (BlueStack Systems Inc.) C:\Users\Paiva\Downloads\BlueStacks-SplitInstaller_native.exe 2013-07-21 10:55 - 2013-07-21 10:58 - 54567980 _____ C:\Users\Paiva\Downloads\Aint Worried About Nothin - Redboy Beatz Remake.rar 2013-07-21 03:45 - 2013-08-13 22:23 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Skype 2013-07-21 03:45 - 2013-07-21 03:45 - 00002517 _____ C:\Users\Public\Desktop\Skype.lnk 2013-07-21 03:45 - 2013-07-21 03:45 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-07-21 03:44 - 2013-07-21 03:45 - 00000000 ____D C:\ProgramData\Skype 2013-07-21 03:44 - 2013-07-21 03:44 - 01492584 _____ (Skype Technologies S.A.) C:\Users\Paiva\Downloads\SkypeSetup.exe 2013-07-20 19:28 - 2013-07-20 19:33 - 00000000 ____D C:\Users\Paiva\Downloads\Project.Sam.Orchestral.Essentials.KONTAKT 2013-07-20 19:13 - 2013-07-20 19:13 - 2649113217 _____ C:\Users\Paiva\Downloads\Project.Sam.Orchestral.Essentials.KONTAKT.zip 2013-07-20 15:48 - 2013-07-20 15:52 - 69010428 _____ C:\Users\Paiva\Downloads\Drums For Days - Boom Bap Drum Kits.rar 2013-07-20 15:48 - 2013-07-20 15:48 - 05562123 _____ C:\Users\Paiva\Downloads\Chuck Inglish Drum Library.rar 2013-07-20 15:48 - 2013-07-20 15:48 - 04111967 _____ C:\Users\Paiva\Downloads\Cruel Summer Kit.rar 2013-07-20 15:46 - 2013-07-20 15:46 - 08992424 _____ C:\Users\Paiva\Downloads\Canei First Aid Kit.rar 2013-07-20 15:33 - 2013-07-20 15:33 - 04417089 _____ C:\Users\Paiva\Downloads\Distorted 808 Kickz.rar 2013-07-20 15:08 - 2013-07-20 15:08 - 03932974 _____ C:\Users\Paiva\Downloads\Urban Anthology.zip 2013-07-20 14:58 - 2013-07-20 14:58 - 227640285 _____ C:\Users\Paiva\Downloads\Mike Chavez WarChest Drums Volume 1.zip 2013-07-20 14:54 - 2013-07-20 14:54 - 08760939 _____ C:\Users\Paiva\Downloads\JAYBeatzs Secret Stash of Vocal Samples, If U Got Dis U Stole It From My Computer - Vol. I.zip 2013-07-19 22:00 - 2013-05-02 02:06 - 00278800 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2013-07-19 20:26 - 2013-07-19 20:26 - 1009076818 _____ C:\Users\Paiva\Downloads\AnnoDomini Drum Collection Vol.3.zip 2013-07-19 19:25 - 2013-07-19 19:25 - 1318164167 _____ C:\Users\Paiva\Downloads\CHOPPED KIT - @YOUNGZAY.zip 2013-07-19 19:17 - 2013-07-19 19:17 - 150092906 _____ C:\Users\Paiva\Downloads\MikeChav's Ultimate 909 Black Edition.zip 2013-07-19 19:08 - 2013-07-19 19:08 - 14326075 _____ C:\Users\Paiva\Downloads\The Lifted Collection.rar 2013-07-19 19:08 - 2013-07-19 19:08 - 05603882 _____ C:\Users\Paiva\Downloads\SDotFire He's On Fire Drums 3.rar 2013-07-19 19:04 - 2013-07-19 19:04 - 00083672 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2013-07-19 13:05 - 2013-07-19 13:05 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Avira 2013-07-19 12:59 - 2013-07-19 12:59 - 00002066 _____ C:\Users\Public\Desktop\Avira Control Center.lnk 2013-07-19 12:59 - 2013-07-19 12:59 - 00000000 ____D C:\ProgramData\Avira 2013-07-19 12:59 - 2013-07-19 12:59 - 00000000 ____D C:\Program Files (x86)\Avira 2013-07-19 12:59 - 2013-07-19 12:58 - 00130016 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2013-07-19 12:59 - 2013-07-19 12:58 - 00100712 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2013-07-19 12:59 - 2013-07-19 12:58 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys 2013-07-19 11:04 - 2013-07-19 11:04 - 02092792 _____ C:\Users\Paiva\Downloads\avira_free_antivirus.exe 2013-07-19 10:48 - 2013-07-28 12:06 - 00000000 ____D C:\Program Files (x86)\East West 2013-07-19 10:48 - 2013-07-19 10:48 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\East West Colossus 2013-07-18 19:36 - 2013-08-13 21:26 - 00000000 ____D C:\Program Files (x86)\Steam 2013-07-18 19:36 - 2013-07-18 19:36 - 00000917 _____ C:\Users\Public\Desktop\Steam.lnk 2013-07-18 19:34 - 2013-07-18 19:34 - 08531968 _____ C:\Users\Paiva\Downloads\SteamInstall_German.msi 2013-07-18 17:50 - 2013-07-18 17:50 - 00000000 ____D C:\ProgramData\Audio Damage 2013-07-18 17:45 - 2013-07-18 17:45 - 00000000 ____D C:\Users\Paiva\Desktop\Kit 2013-07-18 17:36 - 2013-07-18 17:36 - 00000000 ____D C:\Program Files (x86)\Focusrite Guitar FX Plug-in Suite 2013-07-18 17:27 - 2013-07-18 17:27 - 00000000 ____D C:\Program Files (x86)\Uninstall 2013-07-18 17:14 - 2013-07-18 17:18 - 00000000 ____D C:\Users\Paiva\Desktop\Sonic Reality SampleTron Combis AMPLiFY 2013-07-17 21:37 - 2013-07-17 21:37 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\LolClient ==================== One Month Modified Files and Folders ======= 2013-08-15 18:21 - 2013-07-14 11:13 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\TS3Client 2013-08-14 22:55 - 2013-08-14 20:33 - 525000008 _____ C:\Users\Paiva\Downloads\Spectrasonics.Omnisphere.v1.0.VSTi.RTAS.AU.PC.MAC.DVDR.D1-AiRISO.part11.rar 2013-08-14 22:48 - 2013-07-11 18:15 - 00103349 _____ C:\Windows\WindowsUpdate.log 2013-08-13 21:32 - 2013-08-13 21:32 - 00000875 _____ C:\Users\Paiva\Desktop\JRT.txt 2013-08-13 21:28 - 2009-07-14 06:45 - 00013536 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-08-13 21:28 - 2009-07-14 06:45 - 00013536 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-08-13 21:27 - 2013-08-13 21:27 - 00000000 ____D C:\Windows\ERUNT 2013-08-13 21:26 - 2013-07-18 19:36 - 00000000 ____D C:\Program Files (x86)\Steam 2013-08-13 21:25 - 2009-07-14 19:58 - 00645502 _____ C:\Windows\system32\perfh007.dat 2013-08-13 21:25 - 2009-07-14 19:58 - 00126822 _____ C:\Windows\system32\perfc007.dat 2013-08-13 21:25 - 2009-07-14 07:13 - 01472002 _____ C:\Windows\system32\PerfStringBackup.INI 2013-08-13 21:20 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-08-13 21:20 - 2009-07-14 06:51 - 00019704 _____ C:\Windows\setupact.log 2013-08-13 21:19 - 2013-08-13 21:19 - 00001342 _____ C:\AdwCleaner[S1].txt 2013-08-13 21:19 - 2013-08-13 21:19 - 00000233 _____ C:\Windows\DeleteOnReboot.bat 2013-08-13 21:19 - 2013-07-11 20:16 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\vlc 2013-08-13 21:18 - 2013-08-13 21:18 - 01158722 _____ (Thisisu) C:\Users\Paiva\Desktop\JRT.exe 2013-08-13 21:17 - 2013-08-13 21:17 - 00666633 _____ C:\Users\Paiva\Desktop\adwcleaner.exe 2013-08-13 19:44 - 2013-07-14 10:58 - 00000000 ____D C:\Program Files\TeamSpeak 3 Client 2013-08-12 21:12 - 2013-08-12 19:06 - 00000000 ____D C:\Program Files (x86)\JDownloader 2013-08-12 20:15 - 2013-08-12 20:10 - 00015246 _____ C:\Users\Paiva\Downloads\Addition.txt 2013-08-12 20:10 - 2013-08-12 20:10 - 00000000 ____D C:\FRST 2013-08-12 20:09 - 2013-08-12 20:09 - 01575246 _____ (Farbar) C:\Users\Paiva\Downloads\FRST64.exe 2013-08-12 20:04 - 2013-07-11 18:34 - 00956798 _____ C:\Windows\PFRO.log 2013-08-12 19:29 - 2013-08-12 19:29 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Paiva\Downloads\mbam-setup-1.75.0.1300(1).exe 2013-08-12 19:29 - 2013-08-12 19:29 - 00001109 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2013-08-12 19:29 - 2013-08-12 19:29 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Malwarebytes 2013-08-12 19:29 - 2013-08-12 19:29 - 00000000 ____D C:\ProgramData\Malwarebytes 2013-08-12 19:29 - 2013-08-12 19:29 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware 2013-08-12 19:07 - 2013-08-12 19:07 - 00002037 _____ C:\Users\Paiva\Desktop\JDownloader.lnk 2013-08-12 19:03 - 2013-08-12 19:03 - 00081488 _____ (AppWork UG (haftungsbeschränkt)) C:\Users\Paiva\Downloads\WebInstaller.exe 2013-08-10 14:10 - 2013-07-11 18:45 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2013-08-10 04:45 - 2013-08-10 04:45 - 12230103 _____ C:\Users\Paiva\Downloads\Yung Exclusive - ExpensiveTaste Kit.rar 2013-08-08 23:16 - 2013-07-11 19:00 - 00000000 ____D C:\Users\Paiva\AppData\Local\CrashDumps 2013-08-08 18:12 - 2013-08-08 18:12 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2013-08-05 17:34 - 2013-08-05 14:25 - 00000000 ____D C:\Users\Paiva\Desktop\NI 2013-08-05 14:24 - 2013-08-05 14:24 - 00000000 ____D C:\Users\Paiva\Documents\My ISO Files 2013-08-05 14:24 - 2013-08-05 14:24 - 00000000 ____D C:\Program Files (x86)\UltraISO 2013-08-05 14:23 - 2013-08-05 14:23 - 04001621 _____ (EZB Systems, Inc. ) C:\Users\Paiva\Downloads\uiso9_pe.exe 2013-08-05 13:01 - 2013-08-05 13:01 - 00001799 _____ C:\Users\Paiva\Desktop\MagicISO.lnk 2013-08-05 13:01 - 2013-08-05 13:01 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MagicISO 2013-08-05 13:01 - 2013-08-05 13:01 - 00000000 ____D C:\Program Files (x86)\MagicISO 2013-07-31 15:53 - 2013-07-31 15:53 - 00262144 _____ C:\Windows\Minidump\073113-16364-01.dmp 2013-07-31 15:53 - 2013-07-26 17:47 - 450842995 _____ C:\Windows\MEMORY.DMP 2013-07-31 15:53 - 2013-07-26 17:47 - 00000000 ____D C:\Windows\Minidump 2013-07-28 12:06 - 2013-07-28 12:06 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\East West 2013-07-28 12:06 - 2013-07-19 10:48 - 00000000 ____D C:\Program Files (x86)\East West 2013-07-28 12:06 - 2013-07-14 16:33 - 00000000 ____D C:\Program Files (x86)\VstPlugins 2013-07-28 12:00 - 2013-07-14 16:33 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line 2013-07-28 12:00 - 2013-07-14 16:32 - 00000000 ____D C:\Program Files (x86)\Image-Line 2013-07-28 11:59 - 2013-07-28 11:59 - 00000000 ____D C:\Users\Paiva\Documents\EXP 2013-07-28 11:46 - 2013-07-28 11:46 - 00031808 _____ (FNet Co., Ltd.) C:\Windows\system32\Drivers\FNETTBOH_305.SYS 2013-07-27 16:04 - 2013-07-11 18:52 - 00000000 ____D C:\Windows\system32\appmgmt 2013-07-27 15:55 - 2009-07-14 05:20 - 00000000 __RHD C:\Users\Public\Libraries 2013-07-27 10:22 - 2013-07-27 10:22 - 24460867 _____ C:\Users\Paiva\Downloads\SuperStar O x ZShock Beat Finish Contest.rar 2013-07-26 17:47 - 2013-07-26 17:47 - 00262144 _____ C:\Windows\Minidump\072613-16941-01.dmp 2013-07-26 17:45 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\LiveKernelReports 2013-07-24 20:55 - 2013-07-27 10:33 - 00000000 ____D C:\Users\Paiva\Downloads\SuperStar O x ZShock Beat Finish Contest 2013-07-23 21:52 - 2013-07-23 21:52 - 130326754 _____ C:\Users\Paiva\Downloads\iStandard Exclusive Sound Kits_The Focus Collection.zip 2013-07-23 21:49 - 2013-07-23 21:49 - 06402469 _____ C:\Users\Paiva\Downloads\UPGRADE 2 MIKE WILL MADE IT KIT.rar 2013-07-23 21:48 - 2013-07-23 21:48 - 360894745 _____ C:\Users\Paiva\Downloads\BWB UPGRADE 2 OFFICIAL.rar 2013-07-23 08:45 - 2013-07-23 08:45 - 199902500 _____ C:\Users\Paiva\Downloads\Groove3.FL.Studio.Tips.and.Tricks.TUTORiAL.DVDR-DYNAMiCS.part3.rar 2013-07-23 08:43 - 2013-07-23 08:43 - 943718401 _____ C:\Users\Paiva\Downloads\Groove3.FL.Studio.Tips.and.Tricks.TUTORiAL.DVDR-DYNAMiCS.part2.rar 2013-07-22 21:35 - 2013-07-22 21:34 - 943718401 _____ C:\Users\Paiva\Downloads\Groove3.FL.Studio.Tips.and.Tricks.TUTORiAL.DVDR-DYNAMiCS.part1.rar 2013-07-22 21:25 - 2013-07-22 21:25 - 156525548 _____ C:\Users\Paiva\Downloads\BOI-1DA SO MANY GIRLS REMAKE TUTORIAL (BEATGENERALS).zip 2013-07-22 21:23 - 2013-07-22 21:23 - 227707688 _____ C:\Users\Paiva\Downloads\FOUNTAIN OF YOUTH REMAKE TUTORIAL (BeatGenerals).zip 2013-07-21 11:47 - 2013-07-21 11:45 - 00000000 ____D C:\ProgramData\BlueStacksSetup 2013-07-21 11:45 - 2013-07-21 11:45 - 09174000 _____ (BlueStack Systems Inc.) C:\Users\Paiva\Downloads\BlueStacks-SplitInstaller_native.exe 2013-07-21 10:58 - 2013-07-21 10:55 - 54567980 _____ C:\Users\Paiva\Downloads\Aint Worried About Nothin - Redboy Beatz Remake.rar 2013-07-21 03:45 - 2013-07-21 03:45 - 00002517 _____ C:\Users\Public\Desktop\Skype.lnk 2013-07-21 03:45 - 2013-07-21 03:45 - 00000000 ___RD C:\Program Files (x86)\Skype 2013-07-21 03:45 - 2013-07-21 03:44 - 00000000 ____D C:\ProgramData\Skype 2013-07-21 03:44 - 2013-07-21 03:44 - 01492584 _____ (Skype Technologies S.A.) C:\Users\Paiva\Downloads\SkypeSetup.exe 2013-07-20 19:33 - 2013-07-20 19:28 - 00000000 ____D C:\Users\Paiva\Downloads\Project.Sam.Orchestral.Essentials.KONTAKT 2013-07-20 19:13 - 2013-07-20 19:13 - 2649113217 _____ C:\Users\Paiva\Downloads\Project.Sam.Orchestral.Essentials.KONTAKT.zip 2013-07-20 15:52 - 2013-07-20 15:48 - 69010428 _____ C:\Users\Paiva\Downloads\Drums For Days - Boom Bap Drum Kits.rar 2013-07-20 15:48 - 2013-07-20 15:48 - 05562123 _____ C:\Users\Paiva\Downloads\Chuck Inglish Drum Library.rar 2013-07-20 15:48 - 2013-07-20 15:48 - 04111967 _____ C:\Users\Paiva\Downloads\Cruel Summer Kit.rar 2013-07-20 15:46 - 2013-07-20 15:46 - 08992424 _____ C:\Users\Paiva\Downloads\Canei First Aid Kit.rar 2013-07-20 15:33 - 2013-07-20 15:33 - 04417089 _____ C:\Users\Paiva\Downloads\Distorted 808 Kickz.rar 2013-07-20 15:08 - 2013-07-20 15:08 - 03932974 _____ C:\Users\Paiva\Downloads\Urban Anthology.zip 2013-07-20 14:58 - 2013-07-20 14:58 - 227640285 _____ C:\Users\Paiva\Downloads\Mike Chavez WarChest Drums Volume 1.zip 2013-07-20 14:54 - 2013-07-20 14:54 - 08760939 _____ C:\Users\Paiva\Downloads\JAYBeatzs Secret Stash of Vocal Samples, If U Got Dis U Stole It From My Computer - Vol. I.zip 2013-07-20 14:26 - 2013-07-11 18:38 - 00000000 ____D C:\ProgramData\Norton 2013-07-20 14:26 - 2013-07-11 18:32 - 00000000 ____D C:\ProgramData\Adobe 2013-07-19 20:26 - 2013-07-19 20:26 - 1009076818 _____ C:\Users\Paiva\Downloads\AnnoDomini Drum Collection Vol.3.zip 2013-07-19 19:25 - 2013-07-19 19:25 - 1318164167 _____ C:\Users\Paiva\Downloads\CHOPPED KIT - @YOUNGZAY.zip 2013-07-19 19:17 - 2013-07-19 19:17 - 150092906 _____ C:\Users\Paiva\Downloads\MikeChav's Ultimate 909 Black Edition.zip 2013-07-19 19:08 - 2013-07-19 19:08 - 14326075 _____ C:\Users\Paiva\Downloads\The Lifted Collection.rar 2013-07-19 19:08 - 2013-07-19 19:08 - 05603882 _____ C:\Users\Paiva\Downloads\SDotFire He's On Fire Drums 3.rar 2013-07-19 19:04 - 2013-07-19 19:04 - 00083672 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys 2013-07-19 13:05 - 2013-07-19 13:05 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Avira 2013-07-19 12:59 - 2013-07-19 12:59 - 00002066 _____ C:\Users\Public\Desktop\Avira Control Center.lnk 2013-07-19 12:59 - 2013-07-19 12:59 - 00000000 ____D C:\ProgramData\Avira 2013-07-19 12:59 - 2013-07-19 12:59 - 00000000 ____D C:\Program Files (x86)\Avira 2013-07-19 12:58 - 2013-07-19 12:59 - 00130016 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys 2013-07-19 12:58 - 2013-07-19 12:59 - 00100712 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys 2013-07-19 12:58 - 2013-07-19 12:59 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys 2013-07-19 11:04 - 2013-07-19 11:04 - 02092792 _____ C:\Users\Paiva\Downloads\avira_free_antivirus.exe 2013-07-19 10:48 - 2013-07-19 10:48 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\East West Colossus 2013-07-18 19:39 - 2013-07-11 18:20 - 00000000 ____D C:\Users\Paiva 2013-07-18 19:36 - 2013-07-18 19:36 - 00000917 _____ C:\Users\Public\Desktop\Steam.lnk 2013-07-18 19:34 - 2013-07-18 19:34 - 08531968 _____ C:\Users\Paiva\Downloads\SteamInstall_German.msi 2013-07-18 17:50 - 2013-07-18 17:50 - 00000000 ____D C:\ProgramData\Audio Damage 2013-07-18 17:45 - 2013-07-18 17:45 - 00000000 ____D C:\Users\Paiva\Desktop\Kit 2013-07-18 17:36 - 2013-07-18 17:36 - 00000000 ____D C:\Program Files (x86)\Focusrite Guitar FX Plug-in Suite 2013-07-18 17:35 - 2013-07-11 19:37 - 00000000 ____D C:\Program Files\Steinberg 2013-07-18 17:27 - 2013-07-18 17:27 - 00000000 ____D C:\Program Files (x86)\Uninstall 2013-07-18 17:19 - 2013-07-11 18:28 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2013-07-18 17:18 - 2013-07-18 17:14 - 00000000 ____D C:\Users\Paiva\Desktop\Sonic Reality SampleTron Combis AMPLiFY 2013-07-18 17:12 - 2013-07-11 18:20 - 00000000 ____D C:\Users\Paiva\AppData\Local\VirtualStore 2013-07-17 21:37 - 2013-07-17 21:37 - 00000000 ____D C:\Users\Paiva\AppData\Roaming\LolClient ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-08-13 01:54 ==================== End Of Log ============================ --- --- --- Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 11-08-2013 02 Ran by Paiva at 2013-08-15 18:37:50 Running from C:\Users\Paiva\Downloads Boot Mode: Normal ========================================================== ==================== Installed Programs ======================= Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.94) Adobe Reader XI (11.0.03) - Deutsch (x32 Version: 11.0.03) AMD APP SDK Runtime (Version: 2.4.595.9) AMD Drag and Drop Transcoding (Version: 2.00.0000) ASIO4ALL (x32 Version: 2.10) ASRock App Charger v1.0.4 ASRock eXtreme Tuner v0.1.78 (x32) ASRock InstantBoot v1.26 (x32) ATI AVIVO64 Codecs (Version: 11.6.0.10308) ATI Catalyst Install Manager (Version: 3.0.816.0) Avira Free Antivirus (x32 Version: 13.0.0.3885) Cakewalk Session Drummer VSTi v2.0 (x32) Catalyst Control Center - Branding (x32 Version: 1.00.0000) Catalyst Control Center (x32 Version: 2011.0308.2325.42017) Catalyst Control Center Graphics Previews Common (x32 Version: 2011.0308.2325.42017) Catalyst Control Center InstallProxy (x32 Version: 2011.0308.2325.42017) Catalyst Control Center Localization All (x32 Version: 2011.0308.2325.42017) CCC Help Chinese Standard (x32 Version: 2011.0308.2324.42017) CCC Help Chinese Traditional (x32 Version: 2011.0308.2324.42017) CCC Help Czech (x32 Version: 2011.0308.2324.42017) CCC Help Danish (x32 Version: 2011.0308.2324.42017) CCC Help Dutch (x32 Version: 2011.0308.2324.42017) CCC Help English (x32 Version: 2011.0308.2324.42017) CCC Help Finnish (x32 Version: 2011.0308.2324.42017) CCC Help French (x32 Version: 2011.0308.2324.42017) CCC Help German (x32 Version: 2011.0308.2324.42017) CCC Help Greek (x32 Version: 2011.0308.2324.42017) CCC Help Hungarian (x32 Version: 2011.0308.2324.42017) CCC Help Italian (x32 Version: 2011.0308.2324.42017) CCC Help Japanese (x32 Version: 2011.0308.2324.42017) CCC Help Korean (x32 Version: 2011.0308.2324.42017) CCC Help Norwegian (x32 Version: 2011.0308.2324.42017) CCC Help Polish (x32 Version: 2011.0308.2324.42017) CCC Help Portuguese (x32 Version: 2011.0308.2324.42017) CCC Help Russian (x32 Version: 2011.0308.2324.42017) CCC Help Spanish (x32 Version: 2011.0308.2324.42017) CCC Help Swedish (x32 Version: 2011.0308.2324.42017) CCC Help Thai (x32 Version: 2011.0308.2324.42017) CCC Help Turkish (x32 Version: 2011.0308.2324.42017) ccc-utility64 (Version: 2011.0308.2325.42017) Counter-Strike: Source (x32) DAEMON Tools Lite (x32 Version: 4.47.1.0333) dows-Treiberpaket - Focusrite USB 2.0 Audio Driver (09/10/2012 2.4.128.0) (Version: 09/10/2012 2.4.128.0) East West Colossus (x32) East West Orchestra 1 - Strings (x32) Etron USB3.0 Host Controller (x32 Version: 0.96) F.lux (HKCU) FL Studio 10 (x32) Focusrite Guitar FX Plug-in Suite 1.0.2 (x32 Version: 1.0.2) Focusrite USB 2.0 Audio Driver 2.4 (Version: 2.4) HydraVision (x32 Version: 4.2.188.0) IL Download Manager (x32) IL Harmless (x32) Intel(R) Control Center (x32 Version: 1.2.1.1007) Intel(R) Management Engine Components (x32 Version: 7.0.0.1144) Intel(R) Processor Graphics (x32 Version: 8.15.10.2361) Java 7 Update 25 (x32 Version: 7.0.250) Java Auto Updater (x32 Version: 2.1.9.5) JDownloader 0.9 (x32 Version: 0.9) League of Legends (x32 Version: 3.0.1) Magic ISO Maker v5.5 (build 0281) (x32) Malwarebytes Anti-Malware Version 1.75.0.1300 (x32 Version: 1.75.0.1300) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.59192) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (Version: 10.0.30319) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Mozilla Firefox 23.0 (x86 de) (x32 Version: 23.0) Mozilla Maintenance Service (x32 Version: 23.0) Native Instruments Kontakt 5 (Version: 5.0.2.5641) Native Instruments Kontakt 5 (x32) Native Instruments Service Center (Version: 2.3.2.926) Native Instruments Service Center (x32) Realtek Ethernet Controller Driver (x32 Version: 7.41.216.2011) Realtek High Definition Audio Driver (x32 Version: 6.0.1.6257) reFX Nexus VSTi RTAS v2.2.0 (x32) Skype™ 6.6 (x32 Version: 6.6.106) Sound Blaster X-Fi MB (x32 Version: 1.0) Steam (x32 Version: 1.0.0.0) Steinberg Cubase LE AI Elements 6 64bit (Version: 6.0.5) TeamSpeak 3 Client (Version: 3.0.11.1) Tone2 Gladiator VSTi v2.2 (x32) UltraISO Premium V9.53 (x32) VLC media player 2.0.7 (x32 Version: 2.0.7) WinRAR 4.20 (64-bit) (Version: 4.20.0) WMV9/VC-1 Video Playback (Version: 1.00.0000) XFastUsb (x32) ==================== Restore Points ========================= 13-08-2013 00:01:52 Geplanter Prüfpunkt ==================== Hosts content: ========================== 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {1B8273E7-1194-43A7-A2B8-39F55B5C7C49} - System32\Tasks\Microsoft\Windows Defender\MP Scheduled Scan => c:\program files\windows defender\MpCmdRun.exe [2009-07-14] (Microsoft Corporation) Task: {8BD53F2B-5DE7-4A31-B766-B72FA8C78DE5} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-07-11] (Adobe Systems Incorporated) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (08/15/2013 06:26:09 PM) (Source: ESENT) (User: ) Description: Windows (3076) Windows: Das Datenbankmodul kann keine Aktualisierungen akzeptieren, weil die Festplatte, auf der sich die Protokolldatei der Datenbank befindet, über zu wenig freien Speicherplatz verfügt . Error: (08/15/2013 06:24:00 PM) (Source: ESENT) (User: ) Description: Windows (3076) Windows: Versuch, in Datei "C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSStmp.log" bei Offset 0 (0x0000000000000000) für 1048576 (0x00100000) Bytes zu schreiben, ist nach Windows0 Sekunden mit Systemfehler 112 (0x00000070): "Es steht nicht genug Speicherplatz auf dem Datenträger zur Verfügung. " fehlgeschlagen. Fehler -1808 (0xfffff8f0) bei Schreiboperation. Wenn dieser Zustand andauert, ist die Datei möglicherweise beschädigt und muss aus einer vorherigen Sicherung wiederhergestellt werden. System errors: ============= Error: (08/14/2013 07:51:23 PM) (Source: DCOM) (User: ) Description: {995C996E-D918-4A8C-A302-45719A6F4EA7} Microsoft Office Sessions: ========================= Error: (08/15/2013 06:26:09 PM) (Source: ESENT)(User: ) Description: Windows3076Windows: Error: (08/15/2013 06:24:00 PM) (Source: ESENT)(User: ) Description: Windows3076Windows: C:\ProgramData\Microsoft\Search\Data\Applications\Windows\MSStmp.log0 (0x0000000000000000)1048576 (0x00100000)-1808 (0xfffff8f0)112 (0x00000070)Es steht nicht genug Speicherplatz auf dem Datenträger zur Verfügung. 0 ==================== Memory info =========================== Percentage of memory in use: 23% Total physical RAM: 8104.67 MB Available physical RAM: 6226.99 MB Total Pagefile: 16207.49 MB Available Pagefile: 13169.53 MB Total Virtual: 8192 MB Available Virtual: 8191.8 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:465.66 GB) (Free:4.62 GB) NTFS (Disk=0 Partition=2) ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 1F9D9144) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=466 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
15.08.2013, 18:23 | #9 |
/// TB-Ausbilder | Optimize Pro / OpenCandy Servus, wir kontrollieren nochmal alles: Schritt 1 ESET Online Scanner
Schritt 2 Downloade Dir bitte SecurityCheck und:
Bitte poste mit deiner nächsten Antwort
|
15.08.2013, 20:52 | #10 |
| Optimize Pro / OpenCandy OK Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=f075427cda11c14aa3e19b4da38f4a9d # engine=14785 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2013-08-15 07:11:38 # local_time=2013-08-15 09:11:38 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1033 # osver=6.1.7600 NT # compatibility_mode=1799 16775165 100 94 11202 2362479 3983 0 # compatibility_mode=5893 16776574 100 94 3759 128999569 0 0 # scanned=165233 # found=0 # cleaned=0 # scan_time=3505 Code:
ATTFilter Results of screen317's Security Check version 0.99.72 Windows 7 x64 (UAC is enabled) Out of date service pack!! ``````````````Antivirus/Firewall Check:`````````````` Avira Desktop Antivirus up to date! (On Access scanning disabled!) `````````Anti-malware/Other Utilities Check:````````` Malwarebytes Anti-Malware Version 1.75.0.1300 Java 7 Update 25 Adobe Flash Player 11.8.800.94 Adobe Reader XI Mozilla Firefox (23.0) ````````Process Check: objlist.exe by Laurent```````` Avira Antivir avgnt.exe Avira Antivir avguard.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: ````````````````````End of Log`````````````````````` |
16.08.2013, 11:16 | #11 |
/// TB-Ausbilder | Optimize Pro / OpenCandy Servus, Wenn du keine Probleme mehr hast, dann sind wir hier fertig. Deine Logdateien sind sauber. Zum Schluss müssen wir noch ein paar abschließende Schritte unternehmen, um deinen Pc aufzuräumen und abzusichern. Downloade und installiere als Erstes: Windows 7 Service Pack 1 (vorletzter Link: windows6.1-KB976932-X64.exe) Schritt 1 Die Reihenfolge ist hier entscheidend.
Schritt 2 Abschließend habe ich noch ein paar Tipps zur Absicherung deines Systems. Ich kann gar nicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von Registry Cleanern. Diese Schaden deinem System mehr als dass sie helfen. Hier ein englischer Link: Miekemoes Blogspot ( MVP ) Was du vermeiden solltest:
Nun bleibt mir nur noch dir viel Spaß beim sicheren Surfen zu wünschen... ... und vielleicht möchtest du ja das Trojaner-Board unterstützen? Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so dass ich dieses Thema aus meinen Abos löschen kann. |
16.08.2013, 11:28 | #12 |
| Optimize Pro / OpenCandy Oh super danke. Hatte bisschen Angst. |
16.08.2013, 11:29 | #13 |
/// TB-Ausbilder | Optimize Pro / OpenCandy Ich bin froh, dass wir helfen konnten In diesem Forum kannst du eine kurze Rückmeldung zur Bereinigung abgeben, sofern du das möchtest: Lob, Kritik und Wünsche Klicke dazu auf den Button "NEUES THEMA" und poste ein kleines Feedback. Vielen Dank! Dieses Thema scheint erledigt und wird aus meinen Abos gelöscht. Solltest Du das Thema erneut brauchen, schicke mir bitte eine PM. Jeder andere bitte hier klicken und einen eigenen Thread erstellen. |
Themen zu Optimize Pro / OpenCandy |
beseitigt, candy, delta, empfohlen, forum, freeware, installation, kollege, leute, malewarebytes, nummer, opencandy, pup.optional.opencandy, pup.optional.optimizepro.a, schei, wirklich |