Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: C:\Program Files(x86)\HomeTab\TBUpdater.dll

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 20.08.2013, 19:16   #1
Kakashi82
 
C:\Program Files(x86)\HomeTab\TBUpdater.dll - Standard

C:\Program Files(x86)\HomeTab\TBUpdater.dll



Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 20-08-2013 04
Ran by Ivory (administrator) on 20-08-2013 20:05:57
Running from C:\Users\Ivory\Downloads
Windows 7 Ultimate Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Creative Technology Ltd) C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
() C:\Program Files (x86)\Ashampoo\Ashampoo Core Tuner 2\ACT2Service.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe
() C:\Program Files (x86)\Allway Sync\Bin\SyncService.exe
(Infowatch) C:\Program Files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe
() C:\ProgramData\DatacardService\HWDeviceService64.exe
() C:\ProgramData\Mobile Partner\OnlineUpdate\ouc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
() C:\Windows\SysWOW64\PnkBstrB.exe
(Skype Technologies) C:\Program Files (x86)\Skype\Updater\Updater.exe
(SPAMfighter ApS) C:\Program Files (x86)\Fighters\FighterSuiteService.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
(TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe
(Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\ComUpdatus.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
(Ashampoo Development GmbH & Co. KG) C:\Program Files (x86)\Ashampoo\Ashampoo Core Tuner 2\ACT2.exe
(Akamai Technologies, Inc.) C:\Users\Ivory\AppData\Local\Akamai\netsession_win.exe
(Microsoft Corporation) C:\Program Files (x86)\Windows Sidebar\sidebar.exe
() C:\Users\Ivory\AppData\Local\Viber\Viber.exe
(Valve Corporation) D:\Steam\Steam.exe
() C:\Program Files (x86)\Allway Sync\Bin\syncappw.exe
(TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesApp64.exe
(Akamai Technologies, Inc.) C:\Users\Ivory\AppData\Local\Akamai\netsession_win.exe
(Samsung Electronics.) C:\Program Files (x86)\Samsung Magician\Samsung Magician.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer.exe
(Creative Technology Ltd.) C:\Program Files (x86)\Creative\Shared Files\Module Loader\DLLML.exe
(Creative Technology Ltd) C:\Program Files (x86)\Creative\Sound Blaster X-Fi Surround 5.1\Volume Panel\VolPanlu.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe
(Raptr, Inc) C:\PROGRA~2\Raptr\raptr.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\tv_w32.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\tv_x64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Creative Technology Ltd.) C:\Program Files (x86)\Creative\ShareDLL\CADI\NotiMan.exe
(Microsoft Corporation) C:\Windows\sysWOW64\wbem\wmiprvse.exe
(Raptr, Inc) C:\PROGRA~2\Raptr\raptr_im.exe
(Raptr Inc.) C:\Program Files (x86)\Raptr\raptr_ep64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\sysWOW64\wbem\wmiprvse.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\wmi64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\klwtblfs.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028896 2013-07-27] (NVIDIA Corporation)
HKLM\...\Run: [Creative SB Monitoring Utility] - C:\Windows\System32\sbavmon.dll [109056 2009-06-22] (Creative Technology Ltd.)
HKLM\...\Run: [Ashampoo Core Tuner 2] - C:\Program Files (x86)\Ashampoo\Ashampoo Core Tuner 2\ACT2.exe [5220768 2011-08-22] (Ashampoo Development GmbH & Co. KG)
HKCU\...\Run: [Akamai NetSession Interface] - C:\Users\Ivory\AppData\Local\Akamai\netsession_win.exe [4489472 2013-06-05] (Akamai Technologies, Inc.)
HKCU\...\Run: [DAEMON Tools Ultra Agent] - C:\Program Files (x86)\DAEMON Tools Ultra\DTAgent.exe [3088448 2013-03-06] (Disc Soft Ltd)
HKCU\...\Run: [Raptr] - C:\PROGRA~2\Raptr\raptrstub.exe [55360 2013-07-18] (Raptr, Inc)
HKCU\...\Run: [Viber] - C:\Users\Ivory\AppData\Local\Viber\Viber.exe [906240 2013-05-08] ()
HKCU\...\Run: [Steam] - D:\Steam\steam.exe [1807272 2013-07-27] (Valve Corporation)
HKCU\...\Run: [Allway Sync] - C:\Program Files (x86)\Allway Sync\Bin\syncappw.exe [94416 2013-07-02] ()
HKCU\...\Run: [FreeDriverScout] - C:\Program Files\Covus Freemium\Free Driver Scout\FreeDriverScout.exe [x]
HKCU\...\Run: [DLPRO-5] - C:\Program Files (x86)\Fighters\FighterLauncher.exe [859168 2013-06-05] (SPAMfighter ApS)
MountPoints2: F - F:\AutoRun.exe
MountPoints2: G - G:\AutoRun.exe
MountPoints2: {10698ef0-bedc-11e2-b75e-806e6f6e6963} - E:\CTRun\Start.EXE
MountPoints2: {45957bab-f6a1-11e2-a08f-001e101fa1f5} - G:\AutoRun.exe
MountPoints2: {622316fc-befe-11e2-a397-bc5ff421ecd9} - G:\setup.exe
MountPoints2: {7b2b9e6d-f535-11e2-9d4a-bc5ff421ecd9} - G:\AutoRun.exe
MountPoints2: {9f7e87e6-9a23-11e1-8eae-806e6f6e6963} - E:\start.exe
HKLM-x32\...\Run: [Module Loader] - C:\Program Files (x86)\Creative\Shared Files\Module Loader\DLLML.exe [57344 2007-07-23] (Creative Technology Ltd.)
HKLM-x32\...\Run: [VolPanel] - C:\Program Files (x86)\Creative\Sound Blaster X-Fi Surround 5.1\Volume Panel\VolPanlu.exe [241789 2009-07-07] (Creative Technology Ltd)
HKLM-x32\...\Run: [AVP] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe [356968 2012-12-20] (Kaspersky Lab ZAO)
HKU\fbwuser\...\Run: [Akamai NetSession Interface] - C:\Users\Ivory\AppData\Local\Akamai\netsession_win.exe [4489472 2013-06-05] (Akamai Technologies, Inc.)
HKU\fbwuser\...\Run: [DAEMON Tools Ultra Agent] - C:\Program Files (x86)\DAEMON Tools Ultra\DTAgent.exe [3088448 2013-03-06] (Disc Soft Ltd)
HKU\fbwuser\...\Run: [Raptr] - C:\PROGRA~2\Raptr\raptrstub.exe [55360 2013-07-18] (Raptr, Inc)
HKU\fbwuser\...\Run: [EPSON SX410 Series] - C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIFCE.EXE /FU "C:\Windows\TEMP\E_SC3BB.tmp" /EF "HKCU" [x]
HKU\fbwuser\...\Run: [Viber] - C:\Users\Ivory\AppData\Local\Viber\Viber.exe [906240 2013-05-08] ()
HKU\fbwuser\...\Run: [CTRegRun] - C:\Windows\CTRegRun.EXE [53248 2006-10-06] (Creative Technology Ltd )
HKU\fbwuser\...\Run: [Steam] - "C:\Program Files (x86)\Steam\Steam.exe" -silent [x]
HKU\fbwuser\...\Run: [CreativeTaskScheduler] - C:\Program Files (x86)\Creative\Shared Files\CTSched.exe [53341 2006-11-17] (Creative Technology Ltd)
HKU\fbwuser\...\RunOnce: [CTAutoUpdate] - C:\Program Files (x86)\Creative\Shared Files\Software Update\AutoUpdate.exe [623416 2009-06-19] (Creative Technology Ltd)
HKU\fbwuser\...\RunOnce: [StartMSu] - "C:\Program Files (x86)\Creative\MediaSource5\Startmsu.exe" /s [x]
HKU\fbwuser\...\RunOnce: [InetReg] - "C:\Program Files (x86)\Creative\Produktregistrierung\German\InetReg.exe" /PreProcess=RegFlash.exe /Delay=6 [x]
Startup: C:\Users\Ivory\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Samsung Magician.lnk
ShortcutTarget: Samsung Magician.lnk -> C:\Program Files (x86)\Samsung Magician\Samsung Magician.exe (Samsung Electronics.)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
BHO-x32: Kaspersky Passsword Manager Toolbar - {215BA832-75A3-426E-A4FC-7C5B58CE6A10} - C:\PROGRA~2\Kaspersky Lab\Kaspersky PURE 3.0\Kaspersky Password Manager\spIEBho.dll (Kaspersky Lab)
BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
Toolbar: HKLM-x32 - No Name - {a25e7121-3dd8-41b3-855b-756c5bc45449} -  No File
Toolbar: HKLM-x32 - Kaspersky Passsword Manager Toolbar - {215BA832-75A3-426E-A4FC-7C5B58CE6A10} - C:\PROGRA~2\Kaspersky Lab\Kaspersky PURE 3.0\Kaspersky Password Manager\spIEBho.dll (Kaspersky Lab)
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
DPF: HKLM-x32 {D4B68B83-8710-488B-A692-D74B50BA558E} hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab
DPF: HKLM-x32 {E705A591-DA3C-4228-B0D5-A356DBA42FBF} hxxp://ccfiles.creative.com/Web/softwareupdate/su2/ocx/20015/CTSUEng.cab
DPF: HKLM-x32 {F6ACF75C-C32C-447B-9BEF-46B766368D29} hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/130321/CTPID.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1

FireFox:
========
FF ProfilePath: C:\Users\Ivory\AppData\Roaming\Mozilla\Firefox\Profiles\ziw3582p.default
FF Homepage: about:home
FF NewTab: hxxp://newtab.certified-toolbar.com/nff?si=99&tid=0&st=newtab
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll ()
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll ()
FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB)
FF Plugin-x32: @esn/esnlaunch,version=2.1.4 - C:\Program Files (x86)\Battlelog Web Plugins\2.1.4\npesnlaunch.dll (ESN Social Software AB)
FF Plugin-x32: @esn/esnlaunch,version=2.1.7 - C:\Program Files (x86)\Battlelog Web Plugins\2.1.7\npesnlaunch.dll (ESN Social Software AB)
FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @live.heroesandgenerals.com/npretox - C:\Program Files (x86)\Heroes & Generals\live\npretoxlive.dll (Reto-Moto ApS)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @nullsoft.com/winampDetector;version=1 - C:\Program Files (x86)\Winamp Detect\npwachk.dll (Nullsoft, Inc.)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\Ivory\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll No File
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Ivory\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Extension: No Name - C:\Users\Ivory\AppData\Roaming\Mozilla\Extensions\prism@developer.mozilla.org
FF Extension: HomeTab - C:\Users\Ivory\AppData\Roaming\Mozilla\Firefox\Profiles\ziw3582p.default\Extensions\{ad7ef860-f366-4be1-8d12-4363b9356947}
FF Extension: No Name - C:\Users\Ivory\AppData\Roaming\Mozilla\Firefox\Profiles\ziw3582p.default\Extensions\complitly_0.sqlite
FF Extension: Hotspot Shield Helper (Please allow this installation) - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\afurladvisor@anchorfree.com
FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF HKLM-x32\...\Firefox\Extensions:  C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\url_advisor@kaspersky.com
FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\url_advisor@kaspersky.com
FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\virtual_keyboard@kaspersky.com
FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\virtual_keyboard@kaspersky.com
FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\content_blocker@kaspersky.com
FF Extension: Content Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\content_blocker@kaspersky.com
FF HKLM-x32\...\Firefox\Extensions: [anti_banner@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\anti_banner@kaspersky.com
FF Extension: Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\anti_banner@kaspersky.com
FF HKLM-x32\...\Firefox\Extensions: [online_banking@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\online_banking@kaspersky.com
FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\online_banking@kaspersky.com

Chrome: 
=======
CHR HomePage: hxxp://google.de/
CHR Extension: (Docs) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.0.0.6_0
CHR Extension: (Google Drive) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.2_0
CHR Extension: (YouTube) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0
CHR Extension: (Google Search) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0
CHR Extension: (Kaspersky URL Advisor) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\13.0.2.558_0
CHR Extension: (Gmail Offline) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejidjjhkpiempkbhmpbfngldlkglhimk\1.20_0
CHR Extension: (AdBlock) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.4_0
CHR Extension: (Safe Money) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\hakdifolhalapjijoafobooafbilfakh\13.0.2.558_0
CHR Extension: (Pocket Legends) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhpdbcnfpodnaefldpdohoibdajcfabp\2.0.0.0_0
CHR Extension: (Knastv\u00F6gel) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\neclhfjbfaefimgjbodbcnjemndkkfpc\3.2.6.2_0
CHR Extension: (Gmail) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0
CHR Extension: (Anti-Banner) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman\13.0.2.558_0
CHR HKLM-x32\...\Chrome\Extension: [bddpogknpjlgfpbboediomaiiaecfajn] - C:\Program Files (x86)\HomeTab\chrome\HomeTab.crx
CHR HKLM-x32\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\urladvisor.crx
CHR HKLM-x32\...\Chrome\Extension: [hakdifolhalapjijoafobooafbilfakh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\online_banking_chrome.crx
CHR HKLM-x32\...\Chrome\Extension: [hghkgaeecgjhjkannahfamoehjmkjail] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\content_blocker_chrome.crx
CHR HKLM-x32\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\virtkbd.crx
CHR HKLM-x32\...\Chrome\Extension: [pjldcfjmnllhmgjclecdnfampinooman] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\ab.crx

==================== Services (Whitelisted) =================

R2 ACT2_Service; C:\Program Files (x86)\Ashampoo\Ashampoo Core Tuner 2\ACT2Service.exe [1421216 2011-08-22] ()
R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe [356968 2012-12-20] (Kaspersky Lab ZAO)
R2 BotkindSyncService; C:\Program Files (x86)\Allway Sync\Bin\SyncService.exe [182784 2013-07-02] ()
R2 CSObjectsSrv; C:\Program Files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe [819040 2012-12-21] (Infowatch)
S3 Disc Soft Bus Service; C:\Program Files (x86)\DAEMON Tools Ultra\DiscSoftBusService.exe [580672 2013-03-06] (Disc Soft Ltd)
R2 HWDeviceService64.exe; C:\ProgramData\DatacardService\HWDeviceService64.exe [346976 2011-03-14] ()
S2 Mobile Partner. RunOuc; C:\Program Files (x86)\Mobile Partner\UpdateDog\ouc.exe [246112 2013-07-25] ()
R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-07-10] ()
R2 PnkBstrB; C:\Windows\SysWow64\PnkBstrB.exe [189248 2013-07-10] ()
R2 Suite Service; C:\Program Files (x86)\Fighters\FighterSuiteService.exe [1281568 2013-06-05] (SPAMfighter ApS)
R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe [2402080 2013-01-28] (TuneUp Software)

==================== Drivers (Whitelisted) ====================

R2 ACT2PM; C:\Program Files (x86)\Ashampoo\Ashampoo Core Tuner 2\ACT2ProcessMonitor64.sys [15160 2011-06-10] ()
R2 ACT2PM; C:\Program Files (x86)\Ashampoo\Ashampoo Core Tuner 2\ACT2ProcessMonitor64.sys [15160 2011-06-10] ()
R0 CSCrySec; C:\Windows\System32\DRIVERS\CSCrySec.sys [84536 2011-06-02] (Infowatch)
R1 CSVirtualDiskDrv; C:\Windows\System32\DRIVERS\CSVirtualDiskDrv.sys [66616 2011-06-02] (Infowatch)
R3 dtscsibus; C:\Windows\System32\DRIVERS\dtscsibus.sys [29696 2013-05-18] (Disc Soft Ltd)
R1 HssDRV6; C:\Windows\System32\DRIVERS\hssdrv6.sys [46792 2013-06-21] (AnchorFree Inc.)
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458584 2012-06-19] (Kaspersky Lab ZAO)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [620128 2013-08-20] (Kaspersky Lab ZAO)
R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [28504 2012-08-02] (Kaspersky Lab ZAO)
R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [29016 2012-09-03] (Kaspersky Lab)
R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29528 2012-09-03] (Kaspersky Lab)
R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [54368 2013-08-20] (Kaspersky Lab ZAO)
R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [178448 2013-08-20] (Kaspersky Lab ZAO)
R3 ksaud; C:\Windows\System32\drivers\ksaud.sys [1148288 2009-12-15] (Creative Technology Ltd.)
S3 RZMAELSTROMVADService; C:\Windows\System32\drivers\RzMaelstromVAD.sys [40696 2013-05-17] (Windows (R) Win 7 DDK provider)
R3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2013-06-06] (Anchorfree Inc.)
R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesDriver64.sys [11880 2012-11-16] (TuneUp Software)
R1 UimBus; C:\Windows\System32\DRIVERS\uimx64.sys [90960 2013-03-15] (Windows (R) 2000 DDK provider)
R1 Uim_IM; C:\Windows\System32\Drivers\Uim_IMx64.sys [633680 2013-03-15] (Paragon)
R1 Uim_VIM; C:\Windows\System32\Drivers\uim_vimx64.sys [390352 2013-03-15] (Paragon)
S3 cpuz135; \??\C:\Users\Ivory\AppData\Local\Temp\cpuz135\cpuz135_x64.sys [x]
S3 cpuz136; \??\C:\Windows\TEMP\cpuz136\cpuz136_x64.sys [x]
S3 IntcAzAudAddService; system32\drivers\RTKVHD64.sys [x]
S3 MBfilt; system32\drivers\MBfilt64.sys [x]
S4 nvvad_WaveExtensible; system32\drivers\nvvad64v.sys [x]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [x]
S3 tsusbhub; system32\drivers\tsusbhub.sys [x]
S3 VGPU; System32\drivers\rdvgkmd.sys [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-08-20 19:58 - 2013-08-20 19:58 - 01576208 _____ (Farbar) C:\Users\Ivory\Downloads\FRST64.exe
2013-08-20 19:57 - 2013-08-20 20:03 - 00000000 ___DC C:\AdwCleaner
2013-08-20 19:56 - 2013-08-20 19:57 - 00975858 _____ C:\Users\Ivory\Downloads\adwcleaner.exe
2013-08-20 17:46 - 2013-08-20 17:46 - 00000000 ___DC C:\Program Files (x86)\AGEIA Technologies
2013-08-20 17:43 - 2013-08-18 23:02 - 29337376 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 22101792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 15900936 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 13627696 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 11271968 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2013-08-20 17:43 - 2013-08-18 23:02 - 09281032 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 07720576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 07648000 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 06329552 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 02970400 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 02789152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 02007328 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 02007328 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6432680.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6432680.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 01222824 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 00681760 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 00603424 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 00586016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 00515360 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 00458528 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 00388384 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2013-08-20 17:41 - 2013-08-20 17:41 - 00000000 ___DC C:\NVIDIA
2013-08-20 16:46 - 2013-01-28 15:19 - 00037664 _____ (TuneUp Software) C:\Windows\system32\uxtuneup.dll
2013-08-20 16:46 - 2013-01-28 15:19 - 00029984 _____ (TuneUp Software) C:\Windows\SysWOW64\uxtuneup.dll
2013-08-20 16:21 - 2013-08-20 16:46 - 00000000 ___DC C:\Program Files (x86)\TuneUp Utilities 2013
2013-08-20 16:21 - 2013-08-20 16:21 - 00002225 _____ C:\Users\Public\Desktop\TuneUp 1-Klick-Wartung.lnk
2013-08-20 16:21 - 2013-08-20 16:21 - 00002207 _____ C:\Users\Public\Desktop\TuneUp Utilities 2013.lnk
2013-08-20 16:21 - 2013-01-28 15:19 - 00035104 _____ (TuneUp Software) C:\Windows\system32\TURegOpt.exe
2013-08-20 16:21 - 2013-01-28 15:19 - 00026400 _____ (TuneUp Software) C:\Windows\system32\authuitu.dll
2013-08-20 16:21 - 2013-01-28 15:19 - 00021792 _____ (TuneUp Software) C:\Windows\SysWOW64\authuitu.dll
2013-08-20 16:18 - 2013-08-20 16:18 - 28181424 _____ (TuneUp Software) C:\Users\Ivory\Downloads\TuneUpUtilities2013_de-DE.exe
2013-08-20 12:45 - 2013-08-20 12:45 - 00002234 _____ C:\Users\Ivory\Desktop\Sicherer Zahlungsverkehr.lnk
2013-08-20 12:43 - 2013-08-20 12:43 - 00001092 _____ C:\Users\Public\Desktop\Kaspersky PURE 3.0.lnk
2013-08-20 12:43 - 2012-07-11 17:09 - 00064856 _____ (Kaspersky Lab) C:\Windows\system32\klfphc.dll
2013-08-20 12:43 - 2011-06-02 14:39 - 00084536 _____ (Infowatch) C:\Windows\system32\Drivers\CSCrySec.sys
2013-08-20 12:43 - 2011-06-02 14:39 - 00066616 _____ (Infowatch) C:\Windows\system32\Drivers\CSVirtualDiskDrv.sys
2013-08-20 12:42 - 2013-08-20 20:05 - 00000000 ____D C:\ProgramData\Kaspersky Lab
2013-08-20 12:42 - 2013-08-20 13:15 - 00620128 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klif.sys
2013-08-20 12:42 - 2013-08-20 13:15 - 00090208 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klflt.sys
2013-08-20 12:42 - 2013-08-20 12:42 - 00000000 ___DC C:\Program Files (x86)\Kaspersky Lab
2013-08-20 12:42 - 2013-08-20 12:42 - 00000000 ____D C:\Windows\ELAMBKUP
2013-08-20 12:35 - 2013-08-20 12:35 - 00000000 __HDC C:\kleaner.tmp
2013-08-20 12:26 - 2013-08-20 12:29 - 188740896 _____ (Kaspersky Lab) C:\Users\Ivory\Downloads\pure13.0.2.558DE_4340.exe
2013-08-20 12:03 - 2013-08-20 12:03 - 00000000 ___DC C:\Program Files (x86)\Samsung Magician
2013-08-20 01:46 - 2009-06-10 23:00 - 00000824 _____ C:\Windows\system32\Drivers\etc\hosts.20130820-014601.backup
2013-08-20 01:45 - 2013-08-20 01:45 - 00000000 ____D C:\Users\Ivory\Documents\Bank
2013-08-20 01:40 - 2009-06-10 23:00 - 00000824 _____ C:\Windows\system32\Drivers\etc\hosts.20130820-014056.backup
2013-08-20 01:36 - 2013-08-20 01:36 - 00000000 ____D C:\Users\Ivory\AppData\Local\ALF_AG
2013-08-20 01:33 - 2013-08-20 01:33 - 00003213 _____ C:\Windows\wininit.ini
2013-08-20 01:09 - 2013-08-20 01:09 - 00000000 ____D C:\Users\Ivory\AppData\Local\Fighters
2013-08-20 01:02 - 2012-08-28 07:27 - 00058536 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\usbfilter.sys
2013-08-20 01:00 - 2013-08-02 19:29 - 00256088 _____ C:\Windows\system32\unrar64.dll
2013-08-20 00:59 - 2013-08-20 00:59 - 00000000 ___DC C:\Program Files (x86)\K-Lite Codec Pack
2013-08-20 00:48 - 2013-08-20 01:34 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2013-08-20 00:47 - 2013-08-20 00:47 - 00001018 _____ C:\Users\Public\Desktop\SSD Fresh.lnk
2013-08-20 00:47 - 2013-08-20 00:47 - 00000000 ___DC C:\Program Files (x86)\SSD Fresh
2013-08-20 00:47 - 2013-08-20 00:47 - 00000000 ____D C:\Users\Ivory\AppData\Local\Abelssoft
2013-08-20 00:46 - 2013-08-20 00:53 - 00002160 _____ C:\Users\Public\Desktop\OUTDATEfighter.lnk
2013-08-20 00:46 - 2013-08-20 00:53 - 00000000 ___DC C:\Program Files (x86)\Fighters
2013-08-20 00:46 - 2013-08-20 00:46 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Fighters
2013-08-20 00:46 - 2013-08-20 00:46 - 00000000 ____D C:\ProgramData\Fighters
2013-08-20 00:45 - 2013-08-20 19:51 - 00003660 _____ C:\Windows\System32\Tasks\FreeDriverScout
2013-08-20 00:45 - 2013-08-20 00:46 - 00000000 ____D C:\ProgramData\FreeDriverScout
2013-08-20 00:45 - 2013-08-20 00:45 - 00000000 ___DC C:\SoloApp
2013-08-20 00:45 - 2013-08-20 00:45 - 00000000 ____D C:\Users\Ivory\Documents\Freemium Driver Utilities
2013-08-20 00:44 - 2013-08-20 00:44 - 00002543 _____ C:\Users\Public\Desktop\Free Driver Scout.lnk
2013-08-20 00:44 - 2013-08-20 00:44 - 00000000 ____D C:\Windows\System32\Tasks\ProtectedSearch
2013-08-20 00:44 - 2013-08-20 00:44 - 00000000 ____D C:\Windows\System32\Tasks\Browser Updater
2013-08-20 00:44 - 2013-08-13 08:38 - 00032328 _____ C:\Windows\Launcher.exe
2013-08-20 00:28 - 2013-08-20 00:28 - 00001209 _____ C:\Users\Public\Desktop\Ashampoo Core Tuner 2.lnk
2013-08-20 00:28 - 2013-08-20 00:28 - 00000000 ___DC C:\Program Files (x86)\Ashampoo
2013-08-20 00:28 - 2013-08-20 00:28 - 00000000 ____D C:\ProgramData\Ashampoo
2013-08-20 00:24 - 2013-08-20 01:45 - 00000000 ____D C:\ProgramData\AlfBanCo5
2013-08-20 00:24 - 2013-08-20 01:40 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\ALFBanCo5
2013-08-20 00:24 - 2013-08-20 00:29 - 00000000 ___DC C:\Program Files (x86)\ALFBanCo5
2013-08-20 00:24 - 2013-08-20 00:24 - 00001023 _____ C:\Users\Public\Desktop\ALF-BanCo 5.lnk
2013-08-20 00:24 - 2009-06-23 12:58 - 00462848 _____ (REINER SCT ) C:\Windows\SysWOW64\rsct_ot.ocx
2013-08-20 00:24 - 2004-06-14 14:04 - 00874248 _____ (Xceed Software Inc        (450) 442-2626        support@xceedsoft.com        www.xceedsoft.com) C:\Windows\SysWOW64\SmartUI2.ocx
2013-08-20 00:24 - 2002-09-27 17:47 - 00442368 _____ (ComponentOne) C:\Windows\SysWOW64\vsflex7l.ocx
2013-08-20 00:24 - 2001-02-07 15:17 - 01066176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCOMCTL.1
2013-08-20 00:24 - 2000-10-01 23:00 - 00125712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VB6DE.DLL
2013-08-20 00:24 - 2000-05-21 23:00 - 01066176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscomctl.ocx
2013-08-20 00:24 - 2000-05-21 23:00 - 01009336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCHRT20.ocx
2013-08-20 00:24 - 2000-05-21 23:00 - 00140488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.ocx
2013-08-20 00:24 - 1998-07-05 23:00 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCC2DE.DLL
2013-08-20 00:24 - 1998-07-05 23:00 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CmDlgDE.dll
2013-08-20 00:24 - 1998-07-05 19:00 - 00158208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCMCDE.DLL
2013-08-19 18:26 - 2013-08-19 18:26 - 00433014 _____ C:\Users\Ivory\Downloads\SfBot.zip
2013-08-18 23:30 - 2013-08-18 23:30 - 00000000 ____D C:\Users\Ivory\Desktop\Sexy
2013-08-18 22:27 - 2011-07-21 12:44 - 20237824 _____ C:\Users\Ivory\Desktop\sfBot.exe
2013-08-18 22:27 - 2011-07-21 12:44 - 00000000 ____D C:\Users\Ivory\Desktop\data
2013-08-18 22:27 - 2011-03-21 22:19 - 00000000 ____D C:\Users\Ivory\Desktop\trans
2013-08-18 20:09 - 2013-08-18 22:27 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\SFBot
2013-08-18 20:02 - 2013-08-18 20:03 - 08393419 _____ C:\Users\Ivory\Downloads\SFBot_v2.1.0.zip
2013-08-15 09:21 - 2013-07-26 07:13 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-08-15 09:21 - 2013-07-26 07:13 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-08-15 09:21 - 2013-07-26 07:13 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-08-15 09:21 - 2013-07-26 07:12 - 19239424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-08-15 09:21 - 2013-07-26 07:12 - 15405056 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-08-15 09:21 - 2013-07-26 07:12 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-08-15 09:21 - 2013-07-26 07:12 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-08-15 09:21 - 2013-07-26 07:12 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-08-15 09:21 - 2013-07-26 07:12 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-08-15 09:21 - 2013-07-26 07:12 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-08-15 09:21 - 2013-07-26 07:12 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-08-15 09:21 - 2013-07-26 07:12 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-08-15 09:21 - 2013-07-26 07:12 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-08-15 09:21 - 2013-07-26 07:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-08-15 09:21 - 2013-07-26 05:35 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-08-15 09:21 - 2013-07-26 05:13 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-08-15 09:21 - 2013-07-26 05:13 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-08-15 09:21 - 2013-07-26 05:12 - 14329344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-08-15 09:21 - 2013-07-26 05:12 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-08-15 09:21 - 2013-07-26 05:12 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-08-15 09:21 - 2013-07-26 05:12 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-08-15 09:21 - 2013-07-26 05:12 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-08-15 09:21 - 2013-07-26 05:12 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-08-15 09:21 - 2013-07-26 05:12 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-08-15 09:21 - 2013-07-26 05:12 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-08-15 09:21 - 2013-07-26 05:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-08-15 09:21 - 2013-07-26 05:11 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-08-15 09:21 - 2013-07-26 05:11 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-08-15 09:21 - 2013-07-26 04:49 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-08-15 09:21 - 2013-07-26 04:39 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-08-15 09:21 - 2013-07-26 03:59 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-08-15 09:01 - 2013-08-15 09:01 - 00000000 ____D C:\Users\Ivory\Desktop\UpSkirts
2013-08-14 21:55 - 2013-07-25 11:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2013-08-14 21:55 - 2013-07-25 10:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2013-08-14 21:55 - 2013-07-19 03:58 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2013-08-14 21:55 - 2013-07-19 03:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2013-08-14 21:55 - 2013-07-09 08:03 - 05550528 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2013-08-14 21:55 - 2013-07-09 07:54 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2013-08-14 21:55 - 2013-07-09 07:53 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2013-08-14 21:55 - 2013-07-09 07:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2013-08-14 21:55 - 2013-07-09 07:51 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2013-08-14 21:55 - 2013-07-09 07:46 - 01472512 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2013-08-14 21:55 - 2013-07-09 07:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2013-08-14 21:55 - 2013-07-09 07:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2013-08-14 21:55 - 2013-07-09 07:03 - 03968960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2013-08-14 21:55 - 2013-07-09 07:03 - 03913664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2013-08-14 21:55 - 2013-07-09 06:53 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2013-08-14 21:55 - 2013-07-09 06:52 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2013-08-14 21:55 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2013-08-14 21:55 - 2013-07-09 06:52 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2013-08-14 21:55 - 2013-07-09 06:46 - 01166848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2013-08-14 21:55 - 2013-07-09 06:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2013-08-14 21:55 - 2013-07-09 06:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2013-08-14 21:55 - 2013-07-09 04:49 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2013-08-14 21:55 - 2013-07-09 04:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2013-08-14 21:55 - 2013-07-09 04:49 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2013-08-14 21:55 - 2013-07-09 04:49 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2013-08-14 21:55 - 2013-07-06 08:03 - 01910208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2013-08-14 21:55 - 2013-06-15 06:35 - 01111552 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2013-08-14 21:55 - 2013-06-15 06:32 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2013-08-14 15:42 - 2013-06-26 13:45 - 27927315 _____ C:\Users\Ivory\Desktop\Mein Film.mp4
2013-08-14 15:42 - 2012-11-23 04:01 - 29599649 _____ C:\Users\Ivory\Desktop\Mein Film 4.mp4
2013-08-14 11:29 - 2013-08-14 11:29 - 00603209 _____ C:\Users\Ivory\Documents\Backup s3 2013-08-14.mpb
2013-08-14 11:28 - 2013-08-14 15:59 - 00000000 ____D C:\Users\Ivory\Documents\S3 Anwendungen
2013-08-14 11:25 - 2013-08-14 11:41 - 00000000 ____D C:\Users\Ivory\Documents\S3 Datein
2013-08-13 07:27 - 2013-08-13 07:28 - 00000000 ____D C:\Users\Ivory\Desktop\Hot Celebs
2013-08-11 18:33 - 2013-08-20 19:53 - 00000000 ___DC C:\Program Files (x86)\Heroes & Generals
2013-08-11 18:33 - 2013-08-11 18:33 - 00001120 _____ C:\Users\Public\Desktop\Heroes & Generals spielen.lnk
2013-08-11 17:56 - 2013-08-11 18:36 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\.quickorder
2013-08-11 14:06 - 2013-08-11 14:06 - 00000000 ____D C:\ProgramData\launcher
2013-08-11 14:06 - 2013-08-11 14:06 - 00000000 ____D C:\ProgramData\explauncher
2013-08-11 14:06 - 2013-08-11 14:06 - 00000000 ____D C:\ProgramData\backup
2013-08-11 14:05 - 2013-08-11 14:05 - 00002413 _____ C:\Users\Public\Desktop\Paragon Backup & Recovery™ 2013 Free.lnk
2013-08-11 14:05 - 2013-08-11 14:05 - 00000000 ___DC C:\Program Files (x86)\Paragon Software
2013-08-11 12:33 - 2013-08-15 09:18 - 00000000 ____D C:\Windows\system32\MRT
2013-08-07 17:08 - 2013-08-07 17:08 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Prism
2013-08-07 17:08 - 2013-08-07 17:08 - 00000000 ____D C:\Users\Ivory\AppData\Local\Prism
2013-08-07 17:04 - 2013-08-20 00:43 - 00000000 ____D C:\ProgramData\Package Cache
2013-08-07 17:04 - 2013-08-08 07:01 - 00002090 _____ C:\Users\Public\Desktop\MechWarrior Online.lnk
2013-08-07 17:04 - 2013-08-07 17:06 - 00000000 ___DC C:\Program Files (x86)\Piranha Games
2013-08-07 16:56 - 2013-08-07 16:56 - 00000201 _____ C:\Users\Ivory\Desktop\Iron Grip Marauders.url
2013-08-07 03:29 - 2013-08-07 03:29 - 00001520 _____ C:\Users\Ivory\AppData\Local\recently-used.xbel
2013-08-07 03:00 - 2013-08-07 03:29 - 00000000 ____D C:\Users\Ivory\AppData\Local\gtk-2.0
2013-08-07 03:00 - 2013-08-07 03:00 - 00000000 ____D C:\Users\Ivory\.thumbnails
2013-08-07 02:57 - 2013-08-07 03:40 - 00000000 ____D C:\Users\Ivory\.gimp-2.8
2013-08-07 02:57 - 2013-08-07 02:57 - 00000000 ___DC C:\Program Files\GIMP 2
2013-08-07 02:57 - 2013-08-07 02:57 - 00000000 ____D C:\Users\Ivory\AppData\Local\gegl-0.2
2013-08-07 02:28 - 2013-08-20 13:25 - 00000000 ___DC C:\Program Files\PC Monitor
2013-08-07 00:05 - 2013-06-18 16:22 - 00872152 _____ (Realtek                                            ) C:\Windows\system32\Drivers\Rt64win7.sys
2013-08-07 00:05 - 2013-06-18 16:22 - 00074456 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll
2013-08-06 22:50 - 2013-08-06 22:50 - 00000627 _____ C:\Users\Public\Desktop\MP4 To MP3 Converter.lnk
2013-08-06 22:50 - 2013-08-06 22:50 - 00000000 ___DC C:\MP4ToMP3Converter
2013-08-06 20:40 - 2013-08-06 20:43 - 00000000 ____D C:\Users\Ivory\Documents\PCMark 7
2013-08-06 20:40 - 2013-08-06 20:40 - 00000000 ____D C:\Users\Ivory\AppData\Local\IsolatedStorage
2013-08-06 20:40 - 2013-08-06 20:40 - 00000000 ____D C:\Users\Ivory\AppData\Local\Futuremark_Corporation
2013-08-06 20:23 - 2013-08-06 20:23 - 00000000 ___DC C:\Program Files (x86)\Futuremark
2013-08-06 20:03 - 2013-08-06 20:03 - 00000000 ___DC C:\Program Files (x86)\Geekbench 2.2
2013-08-06 20:03 - 2013-08-06 20:03 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Geekbench 2.2
2013-08-06 08:07 - 2013-05-29 23:33 - 231939659 _____ C:\Users\Ivory\Downloads\Crazy Kiya Re - Dhoom 2 (2006) _HD_ 1080p _BluRay_ Music Video(1080p_H.264-AAC).mp4
2013-08-04 16:54 - 2013-08-04 16:54 - 00000000 ____D C:\Users\Ivory\AppData\Local\Ascaron Entertainment
2013-08-04 15:27 - 2013-08-04 15:27 - 00000000 ____D C:\Users\Ivory\AppData\Local\THQ
2013-08-04 15:27 - 2008-07-12 08:18 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll
2013-08-04 15:27 - 2008-07-12 08:18 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll
2013-08-04 15:27 - 2008-07-12 08:18 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll
2013-08-04 15:13 - 2013-08-04 15:13 - 00000000 ____D C:\Users\Ivory\AppData\Local\Risen2
2013-08-03 18:11 - 2013-08-03 18:11 - 00000201 _____ C:\Users\Ivory\Desktop\Saints Row The Third.url
2013-08-03 18:11 - 2013-08-03 18:11 - 00000201 _____ C:\Users\Ivory\Desktop\Risen 2 - Dark Waters.url
2013-08-02 12:33 - 2013-08-02 12:33 - 00026451 _____ C:\Users\Ivory\Desktop\Lingen 08_2013.ods
2013-08-02 12:21 - 2013-08-02 12:21 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\OpenOffice
2013-08-02 12:20 - 2013-08-14 13:23 - 00001513 _____ C:\Users\Public\Desktop\OpenOffice 4.0.0.lnk
2013-08-02 12:20 - 2013-08-02 12:20 - 00000000 ___DC C:\Program Files (x86)\OpenOffice 4
2013-08-01 20:13 - 2013-08-01 20:20 - 00001075 _____ C:\Users\Ivory\Desktop\Neverwinter.lnk
2013-08-01 20:13 - 2013-08-01 20:20 - 00000000 ____D C:\Users\Public\Games
2013-08-01 20:07 - 2013-08-01 20:07 - 00000000 ___DC C:\Cryptic Studios
2013-08-01 19:59 - 2013-08-20 16:25 - 00000000 ___DC C:\Program Files (x86)\Cryptic Studios
2013-08-01 09:20 - 2013-08-01 09:20 - 00000262 _____ C:\Users\Ivory\Desktop\Bailas Liste.txt
2013-08-01 07:16 - 2013-08-01 07:16 - 00001306 _____ C:\Users\Public\Desktop\Free YouTube Download.lnk
2013-08-01 07:16 - 2013-08-01 07:16 - 00000000 ___DC C:\Program Files (x86)\DVDVideoSoft
2013-07-31 21:44 - 2013-07-31 21:44 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\TuneUp Software
2013-07-31 21:44 - 2013-07-31 21:44 - 00000000 ____D C:\ProgramData\TuneUp Software
2013-07-31 21:43 - 2013-08-20 16:53 - 00000000 __SHD C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}
2013-07-31 21:11 - 2012-05-10 00:11 - 00000291 _____ C:\Windows\onlineeye.INI
2013-07-31 19:16 - 2013-08-20 12:36 - 00000000 ____D C:\ProgramData\Avira
2013-07-31 07:15 - 2013-08-18 23:02 - 15703176 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2013-07-31 07:15 - 2013-07-26 08:09 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6432641.dll
2013-07-31 07:15 - 2013-07-26 08:09 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6432641.dll
2013-07-31 07:14 - 2013-07-31 07:14 - 00000000 ___DC C:\NvidiaLogging
2013-07-28 02:49 - 2009-10-28 11:06 - 02902492 ____N (Creative) C:\Windows\SysWOW64\Sens_oal.dll
2013-07-28 02:45 - 2009-12-15 10:24 - 01148288 _____ (Creative Technology Ltd.) C:\Windows\system32\Drivers\ksaud.sys
2013-07-28 02:45 - 2009-12-07 11:29 - 00232960 _____ (Creative Technology Ltd.) C:\Windows\system32\KSVSPI64.dll
2013-07-28 02:45 - 2009-12-07 11:29 - 00173056 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\KSVSPI32.dll
2013-07-28 02:45 - 2009-11-19 14:59 - 00028635 _____ C:\Windows\system32\ksaud.ini
2013-07-28 02:45 - 2009-06-22 13:13 - 00109056 _____ (Creative Technology Ltd.) C:\Windows\system32\SBAVMon.dll
2013-07-28 02:45 - 2008-11-06 11:47 - 00008096 _____ C:\Windows\system32\MixerDefault.reg
2013-07-28 02:03 - 2013-07-28 02:04 - 00011279 _____ C:\Users\Ivory\AppData\Local\CleanupUninstall.txt
2013-07-28 00:54 - 2009-12-08 15:52 - 00230912 _____ C:\Windows\system32\APOMgr64.DLL
2013-07-28 00:54 - 2009-12-08 15:50 - 00177664 _____ C:\Windows\SysWOW64\APOMngr.DLL
2013-07-28 00:54 - 2009-11-30 18:54 - 00089088 _____ C:\Windows\system32\CmdRtr64.DLL
2013-07-28 00:54 - 2009-11-30 18:53 - 00073728 _____ C:\Windows\SysWOW64\CmdRtr.DLL
2013-07-28 00:54 - 2009-10-28 11:08 - 01939968 ____N (Creative) C:\Windows\system32\Sens_oal.dll
2013-07-28 00:54 - 2007-07-16 11:36 - 00000029 _____ C:\Windows\system32\ctzapxx.ini
2013-07-28 00:54 - 2007-07-09 04:59 - 00782336 ____R (Creative Labs Inc.) C:\Windows\SysWOW64\tmp6F94.tmp
2013-07-28 00:35 - 2013-07-28 00:35 - 00002492 _____ C:\Users\Ivory\Desktop\Creative Konsole Starter.lnk
2013-07-27 20:28 - 2007-07-09 04:59 - 00782336 ____R (Creative Labs Inc.) C:\Windows\SysWOW64\tmpDE00.tmp
2013-07-27 11:53 - 2013-08-15 08:53 - 00000000 ____D C:\Users\Ivory\Desktop\WhatsApp Images
2013-07-26 09:10 - 2013-07-26 09:10 - 00000000 ____D C:\Users\Ivory\Documents\SurDoc Universal Sync
2013-07-26 09:08 - 2013-07-26 23:48 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\SurDoc
2013-07-26 09:05 - 2013-07-26 09:05 - 00000000 ____D C:\ProgramData\SVG_Client
2013-07-25 19:05 - 2013-07-25 19:05 - 00001083 _____ C:\Users\Public\Desktop\Mobile Partner.lnk
2013-07-25 19:05 - 2013-07-25 19:05 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_ew_jubusenum_01007.Wdf
2013-07-25 19:05 - 2013-07-25 19:05 - 00000000 ____D C:\ProgramData\Mobile Partner
2013-07-25 19:05 - 2013-07-25 19:04 - 01490656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfCoInstaller01007.dll
2013-07-25 19:05 - 2013-07-25 19:04 - 01001472 _____ (DiBcom SA) C:\Windows\system32\Drivers\mod7700.sys
2013-07-25 19:05 - 2013-07-25 19:04 - 00421376 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbwwan.sys
2013-07-25 19:05 - 2013-07-25 19:04 - 00222464 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbmdm.sys
2013-07-25 19:05 - 2013-07-25 19:04 - 00212992 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_juwwanecm.sys
2013-07-25 19:05 - 2013-07-25 19:04 - 00117248 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_hwusbdev.sys
2013-07-25 19:05 - 2013-07-25 19:04 - 00098816 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jucdcacm.sys
2013-07-25 19:05 - 2013-07-25 19:04 - 00086016 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jubusenum.sys
2013-07-25 19:05 - 2013-07-25 19:04 - 00069632 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jucdcecm.sys
2013-07-25 19:05 - 2013-07-25 19:04 - 00032768 _____ (Huawei Tech. Co., Ltd.) C:\Windows\system32\Drivers\ewdcsc.sys
2013-07-25 19:05 - 2013-07-25 19:04 - 00028672 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_juextctrl.sys
2013-07-25 19:05 - 2013-07-25 19:04 - 00022016 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_hwupgrade.sys
2013-07-25 19:05 - 2013-07-25 19:04 - 00013952 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_usbenumfilter.sys
2013-07-25 19:04 - 2013-07-25 19:06 - 00000000 ____D C:\ProgramData\DatacardService
2013-07-25 19:04 - 2013-07-25 19:05 - 00000000 ___DC C:\Program Files (x86)\Mobile Partner
2013-07-23 06:43 - 2013-07-23 06:43 - 00000000 ____D C:\ProgramData\RzMaelstromVAD_1.1.41.1089
2013-07-23 06:37 - 2013-07-28 02:04 - 00000000 ____D C:\Users\Ivory\AppData\Local\Razer
2013-07-23 06:37 - 2013-07-28 02:04 - 00000000 ____D C:\ProgramData\Razer
2013-07-22 19:17 - 2013-07-22 19:17 - 00000000 ____D C:\Windows\System32\Tasks\Open Hardware Monitor
2013-07-22 19:13 - 2013-07-22 19:13 - 00000967 _____ C:\Users\Ivory\Desktop\TechPowerUp GPU-Z.lnk
2013-07-22 19:13 - 2013-07-22 19:13 - 00000000 ___DC C:\Program Files (x86)\GPU-Z
2013-07-22 19:13 - 2013-07-22 19:13 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TechPowerUp GPU-Z
2013-07-22 19:09 - 2013-07-22 19:11 - 00000000 ___DC C:\Program Files (x86)\Motherboard Monitor 5

==================== One Month Modified Files and Folders =======

2013-08-20 20:05 - 2013-08-20 12:42 - 00000000 ____D C:\ProgramData\Kaspersky Lab
2013-08-20 20:04 - 2013-06-13 13:36 - 00041370 _____ C:\Windows\setupact.log
2013-08-20 20:04 - 2013-06-12 22:42 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\ViberPC
2013-08-20 20:04 - 2013-06-12 22:42 - 00000000 ____D C:\Users\Ivory\AppData\Local\Viber
2013-08-20 20:04 - 2013-05-18 12:45 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Raptr
2013-08-20 20:04 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-08-20 20:03 - 2013-08-20 19:57 - 00000000 ___DC C:\AdwCleaner
2013-08-20 20:03 - 2013-05-16 20:32 - 01976091 _____ C:\Windows\WindowsUpdate.log
2013-08-20 20:02 - 2013-08-20 20:02 - 00000000 ___DC C:\FRST
2013-08-20 19:58 - 2013-08-20 19:58 - 01576208 _____ (Farbar) C:\Users\Ivory\Downloads\FRST64.exe
2013-08-20 19:58 - 2009-07-14 06:45 - 00014336 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-08-20 19:58 - 2009-07-14 06:45 - 00014336 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-08-20 19:57 - 2013-08-20 19:56 - 00975858 _____ C:\Users\Ivory\Downloads\adwcleaner.exe
2013-08-20 19:53 - 2013-08-11 18:33 - 00000000 ___DC C:\Program Files (x86)\Heroes & Generals
2013-08-20 19:51 - 2013-08-20 00:45 - 00003660 _____ C:\Windows\System32\Tasks\FreeDriverScout
2013-08-20 19:51 - 2013-06-13 20:20 - 01080016 _____ C:\Windows\PFRO.log
2013-08-20 19:51 - 2013-05-16 22:32 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\TS3Client
2013-08-20 19:51 - 2013-05-16 20:45 - 00001108 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-08-20 19:51 - 2013-05-16 20:45 - 00001104 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-08-20 17:46 - 2013-08-20 17:46 - 00000000 ___DC C:\Program Files (x86)\AGEIA Technologies
2013-08-20 17:46 - 2013-05-16 20:35 - 00000000 ___DC C:\Program Files (x86)\NVIDIA Corporation
2013-08-20 17:46 - 2013-05-16 20:35 - 00000000 ____D C:\ProgramData\NVIDIA
2013-08-20 17:41 - 2013-08-20 17:41 - 00000000 ___DC C:\NVIDIA
2013-08-20 17:24 - 2013-06-18 16:52 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-08-20 17:20 - 2013-05-16 22:54 - 00000000 ___DC C:\Program Files (x86)\Creative
2013-08-20 17:18 - 2013-05-16 22:57 - 00000000 ____D C:\ProgramData\Creative
2013-08-20 17:15 - 2013-05-16 20:45 - 00004116 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-08-20 17:15 - 2013-05-16 20:45 - 00003864 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-08-20 16:53 - 2013-07-31 21:43 - 00000000 __SHD C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}
2013-08-20 16:53 - 2013-05-16 22:14 - 00000000 ____D C:\ProgramData\DriverGenius
2013-08-20 16:46 - 2013-08-20 16:21 - 00000000 ___DC C:\Program Files (x86)\TuneUp Utilities 2013
2013-08-20 16:25 - 2013-08-01 19:59 - 00000000 ___DC C:\Program Files (x86)\Cryptic Studios
2013-08-20 16:21 - 2013-08-20 16:21 - 00002225 _____ C:\Users\Public\Desktop\TuneUp 1-Klick-Wartung.lnk
2013-08-20 16:21 - 2013-08-20 16:21 - 00002207 _____ C:\Users\Public\Desktop\TuneUp Utilities 2013.lnk
2013-08-20 16:18 - 2013-08-20 16:18 - 28181424 _____ (TuneUp Software) C:\Users\Ivory\Downloads\TuneUpUtilities2013_de-DE.exe
2013-08-20 13:25 - 2013-08-07 02:28 - 00000000 ___DC C:\Program Files\PC Monitor
2013-08-20 13:18 - 2013-07-16 02:23 - 00002511 _____ C:\Users\Public\Desktop\T4E.Live Player.lnk
2013-08-20 13:18 - 2013-05-18 05:24 - 00002547 _____ C:\Users\Public\Desktop\Skype.lnk
2013-08-20 13:18 - 2013-05-18 05:24 - 00000000 ____D C:\ProgramData\Skype
2013-08-20 13:15 - 2013-08-20 12:42 - 00620128 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klif.sys
2013-08-20 13:15 - 2013-08-20 12:42 - 00090208 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klflt.sys
2013-08-20 13:15 - 2012-10-18 14:50 - 00054368 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\kltdi.sys
2013-08-20 13:15 - 2012-08-13 16:49 - 00178448 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\kneps.sys
2013-08-20 12:45 - 2013-08-20 12:45 - 00002234 _____ C:\Users\Ivory\Desktop\Sicherer Zahlungsverkehr.lnk
2013-08-20 12:43 - 2013-08-20 12:43 - 00001092 _____ C:\Users\Public\Desktop\Kaspersky PURE 3.0.lnk
2013-08-20 12:42 - 2013-08-20 12:42 - 00000000 ___DC C:\Program Files (x86)\Kaspersky Lab
2013-08-20 12:42 - 2013-08-20 12:42 - 00000000 ____D C:\Windows\ELAMBKUP
2013-08-20 12:36 - 2013-07-31 19:16 - 00000000 ____D C:\ProgramData\Avira
2013-08-20 12:35 - 2013-08-20 12:35 - 00000000 __HDC C:\kleaner.tmp
2013-08-20 12:31 - 2013-05-16 22:11 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Origin
2013-08-20 12:31 - 2013-05-16 20:52 - 00000000 ____D C:\Users\Ivory\AppData\Local\Origin
2013-08-20 12:30 - 2013-05-16 20:49 - 00000000 ___DC C:\Program Files (x86)\Origin
2013-08-20 12:29 - 2013-08-20 12:26 - 188740896 _____ (Kaspersky Lab) C:\Users\Ivory\Downloads\pure13.0.2.558DE_4340.exe
2013-08-20 12:03 - 2013-08-20 12:03 - 00000000 ___DC C:\Program Files (x86)\Samsung Magician
2013-08-20 12:03 - 2013-06-04 16:45 - 00001123 _____ C:\Users\Public\Desktop\Samsung Magician.lnk
2013-08-20 12:03 - 2013-05-16 20:32 - 00000000 ___RD C:\Users\Ivory\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-08-20 01:45 - 2013-08-20 01:45 - 00000000 ____D C:\Users\Ivory\Documents\Bank
2013-08-20 01:45 - 2013-08-20 00:24 - 00000000 ____D C:\ProgramData\AlfBanCo5
2013-08-20 01:40 - 2013-08-20 00:24 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\ALFBanCo5
2013-08-20 01:36 - 2013-08-20 01:36 - 00000000 ____D C:\Users\Ivory\AppData\Local\ALF_AG
2013-08-20 01:34 - 2013-08-20 00:48 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2013-08-20 01:33 - 2013-08-20 01:33 - 00003213 _____ C:\Windows\wininit.ini
2013-08-20 01:33 - 2013-06-09 07:52 - 00000000 ___DC C:\Program Files (x86)\Hotspot Shield
2013-08-20 01:33 - 2013-06-09 07:52 - 00000000 ____D C:\ProgramData\Hotspot Shield
2013-08-20 01:10 - 2013-05-17 17:12 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Winamp
2013-08-20 01:09 - 2013-08-20 01:09 - 00000000 ____D C:\Users\Ivory\AppData\Local\Fighters
2013-08-20 01:06 - 2013-05-17 17:12 - 00000000 ___DC C:\Program Files (x86)\Winamp
2013-08-20 01:03 - 2013-05-17 17:12 - 00000983 _____ C:\Users\Public\Desktop\Winamp.lnk
2013-08-20 01:03 - 2013-05-17 17:12 - 00000000 ___DC C:\Program Files (x86)\Winamp Detect
2013-08-20 01:02 - 2013-05-18 05:24 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Skype
2013-08-20 01:01 - 2013-05-18 05:24 - 00000000 __RDC C:\Program Files (x86)\Skype
2013-08-20 01:00 - 2013-05-16 20:50 - 00000000 ____D C:\ProgramData\Origin
2013-08-20 00:59 - 2013-08-20 00:59 - 00000000 ___DC C:\Program Files (x86)\K-Lite Codec Pack
2013-08-20 00:59 - 2013-06-18 16:52 - 00692104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-08-20 00:59 - 2013-06-18 16:52 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-08-20 00:59 - 2013-06-18 16:52 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-08-20 00:53 - 2013-08-20 00:46 - 00002160 _____ C:\Users\Public\Desktop\OUTDATEfighter.lnk
2013-08-20 00:53 - 2013-08-20 00:46 - 00000000 ___DC C:\Program Files (x86)\Fighters
2013-08-20 00:52 - 2013-05-16 20:33 - 00000822 _____ C:\Users\Public\Desktop\CCleaner.lnk
2013-08-20 00:52 - 2013-05-16 20:33 - 00000000 ___DC C:\Program Files\CCleaner
2013-08-20 00:47 - 2013-08-20 00:47 - 00001018 _____ C:\Users\Public\Desktop\SSD Fresh.lnk
2013-08-20 00:47 - 2013-08-20 00:47 - 00000000 ___DC C:\Program Files (x86)\SSD Fresh
2013-08-20 00:47 - 2013-08-20 00:47 - 00000000 ____D C:\Users\Ivory\AppData\Local\Abelssoft
2013-08-20 00:46 - 2013-08-20 00:46 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Fighters
2013-08-20 00:46 - 2013-08-20 00:46 - 00000000 ____D C:\ProgramData\Fighters
2013-08-20 00:46 - 2013-08-20 00:45 - 00000000 ____D C:\ProgramData\FreeDriverScout
2013-08-20 00:46 - 2013-05-17 03:17 - 00000000 ___DC C:\Program Files (x86)\Mozilla Firefox
2013-08-20 00:45 - 2013-08-20 00:45 - 00000000 ___DC C:\SoloApp
2013-08-20 00:45 - 2013-08-20 00:45 - 00000000 ____D C:\Users\Ivory\Documents\Freemium Driver Utilities
2013-08-20 00:44 - 2013-08-20 00:44 - 00002543 _____ C:\Users\Public\Desktop\Free Driver Scout.lnk
2013-08-20 00:44 - 2013-08-20 00:44 - 00000000 ____D C:\Windows\System32\Tasks\ProtectedSearch
2013-08-20 00:44 - 2013-08-20 00:44 - 00000000 ____D C:\Windows\System32\Tasks\Browser Updater
2013-08-20 00:43 - 2013-08-07 17:04 - 00000000 ____D C:\ProgramData\Package Cache
2013-08-20 00:29 - 2013-08-20 00:24 - 00000000 ___DC C:\Program Files (x86)\ALFBanCo5
2013-08-20 00:29 - 2009-07-14 04:34 - 00000479 _____ C:\Windows\win.ini
2013-08-20 00:28 - 2013-08-20 00:28 - 00001209 _____ C:\Users\Public\Desktop\Ashampoo Core Tuner 2.lnk
2013-08-20 00:28 - 2013-08-20 00:28 - 00000000 ___DC C:\Program Files (x86)\Ashampoo
2013-08-20 00:28 - 2013-08-20 00:28 - 00000000 ____D C:\ProgramData\Ashampoo
2013-08-20 00:24 - 2013-08-20 00:24 - 00001023 _____ C:\Users\Public\Desktop\ALF-BanCo 5.lnk
2013-08-19 20:00 - 2013-05-16 20:36 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\MyPhoneExplorer
2013-08-19 18:26 - 2013-08-19 18:26 - 00433014 _____ C:\Users\Ivory\Downloads\SfBot.zip
2013-08-19 14:02 - 2013-05-17 16:40 - 00001090 _____ C:\Users\Public\Desktop\TeamViewer 8.lnk
2013-08-18 23:30 - 2013-08-18 23:30 - 00000000 ____D C:\Users\Ivory\Desktop\Sexy
2013-08-18 23:02 - 2013-08-20 17:43 - 29337376 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 22101792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 15900936 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 13627696 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 11271968 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2013-08-18 23:02 - 2013-08-20 17:43 - 09281032 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 07720576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 07648000 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 06329552 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 02970400 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 02789152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 02007328 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 02007328 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6432680.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6432680.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 01222824 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 00681760 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 00603424 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 00586016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 00515360 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 00458528 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 00388384 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2013-08-18 23:02 - 2013-07-31 07:15 - 15703176 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2013-08-18 23:02 - 2013-07-18 16:32 - 00022581 _____ C:\Windows\system32\nvinfo.pb
2013-08-18 23:02 - 2013-05-16 20:35 - 00061216 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2013-08-18 23:02 - 2013-05-16 20:35 - 00053024 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2013-08-18 23:02 - 2013-05-16 20:34 - 12946848 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2013-08-18 23:02 - 2013-05-16 20:34 - 02986672 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2013-08-18 23:02 - 2013-05-16 20:34 - 02630304 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2013-08-18 23:02 - 2013-05-16 20:34 - 01412832 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2013-08-18 22:27 - 2013-08-18 20:09 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\SFBot
2013-08-18 21:34 - 2013-05-16 20:35 - 06599968 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2013-08-18 21:34 - 2013-05-16 20:35 - 03452192 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2013-08-18 21:34 - 2013-05-16 20:35 - 02559776 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2013-08-18 21:34 - 2013-05-16 20:35 - 00920864 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2013-08-18 21:34 - 2013-05-16 20:35 - 00219424 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2013-08-18 21:34 - 2013-05-16 20:35 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2013-08-18 20:03 - 2013-08-18 20:02 - 08393419 _____ C:\Users\Ivory\Downloads\SFBot_v2.1.0.zip
2013-08-18 19:45 - 2013-05-16 20:33 - 00002772 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2013-08-17 07:30 - 2013-05-16 20:35 - 03319709 _____ C:\Windows\system32\nvcoproc.bin
2013-08-15 09:19 - 2009-07-14 19:58 - 00696832 _____ C:\Windows\system32\perfh007.dat
2013-08-15 09:19 - 2009-07-14 19:58 - 00148128 _____ C:\Windows\system32\perfc007.dat
2013-08-15 09:19 - 2009-07-14 07:13 - 01634396 _____ C:\Windows\system32\PerfStringBackup.INI
2013-08-15 09:18 - 2013-08-11 12:33 - 00000000 ____D C:\Windows\system32\MRT
2013-08-15 09:17 - 2013-05-19 06:50 - 78161360 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-08-15 09:07 - 2013-06-20 17:28 - 00000090 _____ C:\Users\Ivory\Desktop\pg.log
2013-08-15 09:01 - 2013-08-15 09:01 - 00000000 ____D C:\Users\Ivory\Desktop\UpSkirts
2013-08-15 08:53 - 2013-07-27 11:53 - 00000000 ____D C:\Users\Ivory\Desktop\WhatsApp Images
2013-08-14 15:59 - 2013-08-14 11:28 - 00000000 ____D C:\Users\Ivory\Documents\S3 Anwendungen
2013-08-14 13:23 - 2013-08-02 12:20 - 00001513 _____ C:\Users\Public\Desktop\OpenOffice 4.0.0.lnk
2013-08-14 11:41 - 2013-08-14 11:25 - 00000000 ____D C:\Users\Ivory\Documents\S3 Datein
2013-08-14 11:29 - 2013-08-14 11:29 - 00603209 _____ C:\Users\Ivory\Documents\Backup s3 2013-08-14.mpb
2013-08-13 08:38 - 2013-08-20 00:44 - 00032328 _____ C:\Windows\Launcher.exe
2013-08-13 07:28 - 2013-08-13 07:27 - 00000000 ____D C:\Users\Ivory\Desktop\Hot Celebs
2013-08-11 18:37 - 2013-05-16 20:44 - 00000000 __HDC C:\Program Files (x86)\InstallShield Installation Information
2013-08-11 18:36 - 2013-08-11 17:56 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\.quickorder
2013-08-11 18:33 - 2013-08-11 18:33 - 00001120 _____ C:\Users\Public\Desktop\Heroes & Generals spielen.lnk
2013-08-11 14:06 - 2013-08-11 14:06 - 00000000 ____D C:\ProgramData\launcher
2013-08-11 14:06 - 2013-08-11 14:06 - 00000000 ____D C:\ProgramData\explauncher
2013-08-11 14:06 - 2013-08-11 14:06 - 00000000 ____D C:\ProgramData\backup
2013-08-11 14:05 - 2013-08-11 14:05 - 00002413 _____ C:\Users\Public\Desktop\Paragon Backup & Recovery™ 2013 Free.lnk
2013-08-11 14:05 - 2013-08-11 14:05 - 00000000 ___DC C:\Program Files (x86)\Paragon Software
2013-08-11 12:32 - 2013-05-16 22:16 - 01590298 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2013-08-10 00:34 - 2013-05-16 22:54 - 00000316 ___RH C:\Windows\ctfile.rfc
2013-08-09 01:24 - 2013-05-16 22:18 - 00000000 ___DC C:\Program Files\TeamSpeak 3 Client
2013-08-08 07:01 - 2013-08-07 17:04 - 00002090 _____ C:\Users\Public\Desktop\MechWarrior Online.lnk
2013-08-07 19:55 - 2009-07-14 07:08 - 00032640 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-08-07 19:54 - 2013-05-18 05:46 - 00000000 ____D C:\Users\Ivory\AppData\Local\Unity
2013-08-07 17:08 - 2013-08-07 17:08 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Prism
2013-08-07 17:08 - 2013-08-07 17:08 - 00000000 ____D C:\Users\Ivory\AppData\Local\Prism
2013-08-07 17:06 - 2013-08-07 17:04 - 00000000 ___DC C:\Program Files (x86)\Piranha Games
2013-08-07 16:56 - 2013-08-07 16:56 - 00000201 _____ C:\Users\Ivory\Desktop\Iron Grip Marauders.url
2013-08-07 16:56 - 2013-07-19 01:37 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2013-08-07 03:40 - 2013-08-07 02:57 - 00000000 ____D C:\Users\Ivory\.gimp-2.8
2013-08-07 03:29 - 2013-08-07 03:29 - 00001520 _____ C:\Users\Ivory\AppData\Local\recently-used.xbel
2013-08-07 03:29 - 2013-08-07 03:00 - 00000000 ____D C:\Users\Ivory\AppData\Local\gtk-2.0
2013-08-07 03:00 - 2013-08-07 03:00 - 00000000 ____D C:\Users\Ivory\.thumbnails
2013-08-07 03:00 - 2013-05-16 20:32 - 00000000 ____D C:\Users\Ivory
2013-08-07 02:57 - 2013-08-07 02:57 - 00000000 ___DC C:\Program Files\GIMP 2
2013-08-07 02:57 - 2013-08-07 02:57 - 00000000 ____D C:\Users\Ivory\AppData\Local\gegl-0.2
2013-08-07 00:05 - 2013-06-01 17:17 - 00000000 ___DC C:\Program Files (x86)\Realtek
2013-08-06 23:04 - 2013-07-12 14:10 - 00009489 _____ C:\Windows\LDPINST.LOG
2013-08-06 23:04 - 2013-05-16 20:49 - 00015194 _____ C:\Windows\system32\lvcoinst.log
2013-08-06 23:04 - 2013-05-16 20:49 - 00000000 ___DC C:\Program Files\Common Files\logishrd
2013-08-06 23:03 - 2013-05-17 02:46 - 00001624 _____ C:\Users\Public\Desktop\Logitech Webcam Software  .lnk
2013-08-06 22:50 - 2013-08-06 22:50 - 00000627 _____ C:\Users\Public\Desktop\MP4 To MP3 Converter.lnk
2013-08-06 22:50 - 2013-08-06 22:50 - 00000000 ___DC C:\MP4ToMP3Converter
2013-08-06 20:43 - 2013-08-06 20:40 - 00000000 ____D C:\Users\Ivory\Documents\PCMark 7
2013-08-06 20:40 - 2013-08-06 20:40 - 00000000 ____D C:\Users\Ivory\AppData\Local\IsolatedStorage
2013-08-06 20:40 - 2013-08-06 20:40 - 00000000 ____D C:\Users\Ivory\AppData\Local\Futuremark_Corporation
2013-08-06 20:23 - 2013-08-06 20:23 - 00000000 ___DC C:\Program Files (x86)\Futuremark
2013-08-06 20:23 - 2013-06-26 01:22 - 00071138 _____ C:\Windows\DirectX.log
2013-08-06 20:03 - 2013-08-06 20:03 - 00000000 ___DC C:\Program Files (x86)\Geekbench 2.2
2013-08-06 20:03 - 2013-08-06 20:03 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Geekbench 2.2
2013-08-06 00:27 - 2013-05-16 20:46 - 00002183 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2013-08-04 16:54 - 2013-08-04 16:54 - 00000000 ____D C:\Users\Ivory\AppData\Local\Ascaron Entertainment
2013-08-04 15:27 - 2013-08-04 15:27 - 00000000 ____D C:\Users\Ivory\AppData\Local\THQ
2013-08-04 15:13 - 2013-08-04 15:13 - 00000000 ____D C:\Users\Ivory\AppData\Local\Risen2
2013-08-03 18:11 - 2013-08-03 18:11 - 00000201 _____ C:\Users\Ivory\Desktop\Saints Row The Third.url
2013-08-03 18:11 - 2013-08-03 18:11 - 00000201 _____ C:\Users\Ivory\Desktop\Risen 2 - Dark Waters.url
2013-08-03 17:11 - 2013-05-16 20:33 - 00064024 _____ C:\Users\Ivory\AppData\Local\GDIPFONTCACHEV1.DAT
2013-08-03 17:11 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Sidebar
2013-08-03 17:10 - 2009-07-14 06:45 - 00305112 _____ C:\Windows\system32\FNTCACHE.DAT
2013-08-02 19:29 - 2013-08-20 01:00 - 00256088 _____ C:\Windows\system32\unrar64.dll
2013-08-02 19:29 - 2013-05-17 17:23 - 00217176 _____ C:\Windows\SysWOW64\unrar.dll
2013-08-02 12:33 - 2013-08-02 12:33 - 00026451 _____ C:\Users\Ivory\Desktop\Lingen 08_2013.ods
2013-08-02 12:21 - 2013-08-02 12:21 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\OpenOffice
2013-08-02 12:20 - 2013-08-02 12:20 - 00000000 ___DC C:\Program Files (x86)\OpenOffice 4
2013-08-02 12:20 - 2013-05-16 20:34 - 00000000 ___DC C:\Program Files (x86)\OpenOffice.org 3
2013-08-01 20:20 - 2013-08-01 20:13 - 00001075 _____ C:\Users\Ivory\Desktop\Neverwinter.lnk
2013-08-01 20:20 - 2013-08-01 20:13 - 00000000 ____D C:\Users\Public\Games
2013-08-01 20:20 - 2013-05-16 22:47 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2013-08-01 20:07 - 2013-08-01 20:07 - 00000000 ___DC C:\Cryptic Studios
2013-08-01 09:20 - 2013-08-01 09:20 - 00000262 _____ C:\Users\Ivory\Desktop\Bailas Liste.txt
2013-08-01 07:16 - 2013-08-01 07:16 - 00001306 _____ C:\Users\Public\Desktop\Free YouTube Download.lnk
2013-08-01 07:16 - 2013-08-01 07:16 - 00000000 ___DC C:\Program Files (x86)\DVDVideoSoft
2013-08-01 07:16 - 2013-07-01 08:40 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\DVDVideoSoft
2013-07-31 21:44 - 2013-07-31 21:44 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\TuneUp Software
2013-07-31 21:44 - 2013-07-31 21:44 - 00000000 ____D C:\ProgramData\TuneUp Software
2013-07-31 20:59 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF
2013-07-31 07:16 - 2013-05-16 20:33 - 00000000 ___DC C:\Program Files\NVIDIA Corporation
2013-07-31 07:14 - 2013-07-31 07:14 - 00000000 ___DC C:\NvidiaLogging
2013-07-28 02:50 - 2013-05-16 22:54 - 00000000 ___DC C:\Program Files\Creative
2013-07-28 02:49 - 2013-07-09 08:22 - 00466456 _____ (Creative Labs) C:\Windows\system32\wrap_oal.dll
2013-07-28 02:49 - 2013-07-09 08:22 - 00444952 _____ (Creative Labs) C:\Windows\SysWOW64\wrap_oal.dll
2013-07-28 02:49 - 2013-07-09 08:22 - 00122904 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\system32\OpenAL32.dll
2013-07-28 02:49 - 2013-07-09 08:22 - 00109080 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\SysWOW64\OpenAL32.dll
2013-07-28 02:49 - 2013-05-16 22:55 - 00000000 __HDC C:\Program Files (x86)\Creative Installation Information
2013-07-28 02:04 - 2013-07-28 02:03 - 00011279 _____ C:\Users\Ivory\AppData\Local\CleanupUninstall.txt
2013-07-28 02:04 - 2013-07-23 06:37 - 00000000 ____D C:\Users\Ivory\AppData\Local\Razer
2013-07-28 02:04 - 2013-07-23 06:37 - 00000000 ____D C:\ProgramData\Razer
2013-07-28 00:35 - 2013-07-28 00:35 - 00002492 _____ C:\Users\Ivory\Desktop\Creative Konsole Starter.lnk
2013-07-26 23:48 - 2013-07-26 09:08 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\SurDoc
2013-07-26 09:10 - 2013-07-26 09:10 - 00000000 ____D C:\Users\Ivory\Documents\SurDoc Universal Sync
2013-07-26 09:05 - 2013-07-26 09:05 - 00000000 ____D C:\ProgramData\SVG_Client
2013-07-26 08:09 - 2013-07-31 07:15 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6432641.dll
2013-07-26 08:09 - 2013-07-31 07:15 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6432641.dll
2013-07-26 07:13 - 2013-08-15 09:21 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-07-26 07:13 - 2013-08-15 09:21 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-07-26 07:13 - 2013-08-15 09:21 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-07-26 07:12 - 2013-08-15 09:21 - 19239424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-07-26 07:12 - 2013-08-15 09:21 - 15405056 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-07-26 07:12 - 2013-08-15 09:21 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-07-26 07:12 - 2013-08-15 09:21 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-07-26 07:12 - 2013-08-15 09:21 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-07-26 07:12 - 2013-08-15 09:21 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-07-26 07:12 - 2013-08-15 09:21 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-07-26 07:12 - 2013-08-15 09:21 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-07-26 07:12 - 2013-08-15 09:21 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-07-26 07:12 - 2013-08-15 09:21 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-07-26 07:12 - 2013-08-15 09:21 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-07-26 05:35 - 2013-08-15 09:21 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-07-26 05:13 - 2013-08-15 09:21 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-07-26 05:13 - 2013-08-15 09:21 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-07-26 05:12 - 2013-08-15 09:21 - 14329344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-07-26 05:12 - 2013-08-15 09:21 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-07-26 05:12 - 2013-08-15 09:21 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-07-26 05:12 - 2013-08-15 09:21 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-07-26 05:12 - 2013-08-15 09:21 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-07-26 05:12 - 2013-08-15 09:21 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-07-26 05:12 - 2013-08-15 09:21 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-07-26 05:12 - 2013-08-15 09:21 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-07-26 05:12 - 2013-08-15 09:21 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-07-26 05:11 - 2013-08-15 09:21 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-07-26 05:11 - 2013-08-15 09:21 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-07-26 04:49 - 2013-08-15 09:21 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-07-26 04:39 - 2013-08-15 09:21 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-07-26 03:59 - 2013-08-15 09:21 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-07-25 19:06 - 2013-07-25 19:04 - 00000000 ____D C:\ProgramData\DatacardService
2013-07-25 19:05 - 2013-07-25 19:05 - 00001083 _____ C:\Users\Public\Desktop\Mobile Partner.lnk
2013-07-25 19:05 - 2013-07-25 19:05 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_ew_jubusenum_01007.Wdf
2013-07-25 19:05 - 2013-07-25 19:05 - 00000000 ____D C:\ProgramData\Mobile Partner
2013-07-25 19:05 - 2013-07-25 19:04 - 00000000 ___DC C:\Program Files (x86)\Mobile Partner
2013-07-25 19:04 - 2013-07-25 19:05 - 01490656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfCoInstaller01007.dll
2013-07-25 19:04 - 2013-07-25 19:05 - 01001472 _____ (DiBcom SA) C:\Windows\system32\Drivers\mod7700.sys
2013-07-25 19:04 - 2013-07-25 19:05 - 00421376 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbwwan.sys
2013-07-25 19:04 - 2013-07-25 19:05 - 00222464 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbmdm.sys
2013-07-25 19:04 - 2013-07-25 19:05 - 00212992 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_juwwanecm.sys
2013-07-25 19:04 - 2013-07-25 19:05 - 00117248 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_hwusbdev.sys
2013-07-25 19:04 - 2013-07-25 19:05 - 00098816 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jucdcacm.sys
2013-07-25 19:04 - 2013-07-25 19:05 - 00086016 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jubusenum.sys
2013-07-25 19:04 - 2013-07-25 19:05 - 00069632 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jucdcecm.sys
2013-07-25 19:04 - 2013-07-25 19:05 - 00032768 _____ (Huawei Tech. Co., Ltd.) C:\Windows\system32\Drivers\ewdcsc.sys
2013-07-25 19:04 - 2013-07-25 19:05 - 00028672 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_juextctrl.sys
2013-07-25 19:04 - 2013-07-25 19:05 - 00022016 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_hwupgrade.sys
2013-07-25 19:04 - 2013-07-25 19:05 - 00013952 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_usbenumfilter.sys
2013-07-25 19:04 - 2013-06-04 09:15 - 01490656 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01007.dll
2013-07-25 11:25 - 2013-08-14 21:55 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2013-07-25 10:57 - 2013-08-14 21:55 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2013-07-23 06:43 - 2013-07-23 06:43 - 00000000 ____D C:\ProgramData\RzMaelstromVAD_1.1.41.1089
2013-07-22 19:17 - 2013-07-22 19:17 - 00000000 ____D C:\Windows\System32\Tasks\Open Hardware Monitor
2013-07-22 19:13 - 2013-07-22 19:13 - 00000967 _____ C:\Users\Ivory\Desktop\TechPowerUp GPU-Z.lnk
2013-07-22 19:13 - 2013-07-22 19:13 - 00000000 ___DC C:\Program Files (x86)\GPU-Z
2013-07-22 19:13 - 2013-07-22 19:13 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TechPowerUp GPU-Z
2013-07-22 19:11 - 2013-07-22 19:09 - 00000000 ___DC C:\Program Files (x86)\Motherboard Monitor 5

==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2013-08-13 09:41

==================== End Of Log ============================
         
Code:
ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 20-08-2013 04
Ran by Ivory at 2013-08-20 20:06:32
Running from C:\Users\Ivory\Downloads
Boot Mode: Normal
==========================================================


==================== Installed Programs =======================

   
Adobe Flash Player 11 ActiveX (x32 Version: 11.8.800.94)
Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.94)
Adobe Reader XI (11.0.03) - Deutsch (x32 Version: 11.0.03)
Akamai NetSession Interface (HKCU)
ALF-BanCo 5 (x32 Version: 5.2.0)
Allway Sync version 12.15.1 (x32)
AMD Catalyst Install Manager (Version: 8.0.911.0)
Ashampoo Core Tuner 2 v.2.0.1 (x32 Version: 2.01)
Battlefield 3™ (x32 Version: 1.6.0.0)
Battlelog Web Plugins (x32 Version: 2.1.7)
BSR Screen Recorder 6 (x32)
CameraHelperMsi (x32 Version: 13.51.815.0)
Creative Audio-Systemsteuerung (x32 Version: 3.00)
Creative Software AutoUpdate (x32 Version: 1.40)
Creative Sound Blaster Properties x64 Edition (x32)
Creative Systeminformationen (x32)
D3DX10 (x32 Version: 15.4.2368.0902)
DAEMON Tools Ultra (x32 Version: 1.0.0.0068)
DH Driver Cleaner Professional Edition (x32 Version: Version 1.5)
Driver Genius Professional Edition (x32 Version: 11.0)
Druckerdeinstallation für EPSON SX410 Series
eaner (Version: 4.04)
EPSON Scan (x32)
erLT (x32 Version: 1.20.138.34)
ESN Sonar (x32 Version: 0.70.4)
Etron USB3.0 Host Controller (x32 Version: 0.115)
Facebook Video Calling 1.2.0.287 (x32 Version: 1.2.287)
Fotogalerie (x32 Version: 16.4.3508.0205)
Free Driver Scout (Version: 1.0.0.127)
Free Driver Scout (x32 Version: 1.0.0.127)
Free YouTube Download version 3.2.9.725 (x32 Version: 3.2.9.725)
Futuremark SystemInfo (x32 Version: 4.17.0)
Geekbench 2.2 (x32)
GIMP 2.8.6 (Version: 2.8.6)
Google Chrome (x32 Version: 28.0.1500.95)
Google Update Helper (x32 Version: 1.3.21.153)
Half-Life Dedicated Server Update Tool (x32)
Hawken (HKCU)
Heroes & Generals (x32 Version: 1.0.4.6)
Host OpenAL (x32 Version: 2.02)
Iron Grip: Marauders (x32)
Java 7 Update 25 (x32 Version: 7.0.250)
Java Auto Updater (x32 Version: 2.1.9.5)
JDownloader 0.9 (x32 Version: 0.9)
Junk Mail filter update (x32 Version: 16.4.3508.0205)
Kaspersky PURE 3.0 (x32 Version: 13.0.2.558)
Killing Floor (x32)
K-Lite Codec Pack 10.0.0 Basic (x32 Version: 10.0.0)
Lautstärkefenster (x32 Version: 2.21)
League of Legends (x32 Version: 1.3)
Logitech Vid HD (x32 Version: 7.2 (7259))
Logitech Webcam-Software (x32 Version: 2.51)
LWS Facebook (x32 Version: 13.50.854.0)
LWS Gallery (x32 Version: 13.51.827.0)
LWS Help_main (x32 Version: 13.51.828.0)
LWS Launcher (x32 Version: 13.51.828.0)
LWS Motion Detection (x32 Version: 13.51.815.0)
LWS Pictures And Video (x32 Version: 13.51.815.0)
LWS Twitter (x32 Version: 13.30.1346.0)
LWS Webcam Software (x32 Version: 13.51.815.0)
LWS WLM Plugin (x32 Version: 1.30.1201.0)
LWS YouTube Plugin (x32 Version: 13.31.1038.0)
MechWarrior Online (x32 Version: 1.4.1.0)
MeinPlatz
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319)
Microsoft .NET Framework 4 Extended (Version: 4.0.30319)
Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Chart Controls for Microsoft .NET Framework 3.5 (KB2500170) (x32 Version: 3.5.30730.0)
Microsoft High Definition Audio Utility (64-bit) (Version: 3.3.0.0)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (x32 Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219)
Mobile Partner (x32 Version: 21.005.15.00.705)
Movie Maker (x32 Version: 16.4.3508.0205)
Mozilla Firefox 21.0 (x86 de) (x32 Version: 21.0)
Mozilla Maintenance Service (x32 Version: 21.0)
MP4 To MP3 Converter V3.0.4 (x32)
MSVCRT (x32 Version: 15.4.2862.0708)
MSVCRT_amd64 (x32 Version: 15.4.2862.0708)
MSVCRT110 (x32 Version: 16.4.1108.0727)
MSVCRT110_amd64 (Version: 16.4.1109.0912)
MyPhoneExplorer (x32 Version: 1.8.4)
Neverwinter (x32)
NVIDIA GeForce Experience 1.6 (Version: 1.6)
NVIDIA Grafiktreiber 326.80 (Version: 326.80)
NVIDIA Install Application (Version: 2.1002.133.889)
NVIDIA PhysX (x32 Version: 9.13.0725)
NVIDIA PhysX-Systemsoftware 9.13.0725 (Version: 9.13.0725)
NVIDIA Systemsteuerung 326.80 (Version: 326.80)
NVIDIA Update 7.2.17 (Version: 7.2.17)
NVIDIA Update Components (Version: 7.2.17)
OpenOffice 4.0.0 (x32 Version: 4.00.9702)
Origin (x32 Version: 9.3.1.4482)
OUTDATEfighter (x32 Version: 1.1.72)
Paragon Backup & Recovery™ 2013 Free (x32 Version: 90.00.0003)
Photo Common (x32 Version: 16.4.3508.0205)
Photo Gallery (x32 Version: 16.4.3508.0205)
Raptr (x32)
Realtek Ethernet Controller Driver (x32 Version: 7.73.618.2013)
Risen 2 - Dark Waters (x32)
Saints Row: The Third (x32)
Samsung Magician (x32 Version: 4.2.1)
SAMSUNG USB Driver for Mobile Phones (Version: 1.5.24.0)
Skype™ 6.7 (x32 Version: 6.7.102)
Sound Blaster X-Fi Surround 5.1 (x32 Version: 1.0)
SSD Fresh (x32 Version: 2013)
SSDlife Pro (x32 Version: 2.3.54)
Steam (x32 Version: 1.0.0.0)
T4E.Live Player 1.1.4 (x32 Version: 1.1.4)
TeamSpeak 3 Client (Version: 3.0.11.1)
TeamViewer 8 (x32 Version: 8.0.20202)
TechPowerUp GPU-Z (x32)
TuneUp Utilities 2013 (x32 Version: 13.0.3020.2)
TuneUp Utilities Language Pack (de-DE) (x32 Version: 13.0.3020.2)
Unity Web Player (HKCU Version: )
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2468871) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2533523) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2600217) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Extended (KB2836939) (x32 Version: 1)
Viber (HKCU Version: 3.0.0.132799)
Warframe (x32 Version: 1.0.0)
Winamp (x32 Version: 5.65 )
Winamp Erkennungs-Plug-in (HKCU Version: 1.0.0.1)
Windows Live Communications Platform (x32 Version: 16.4.3508.0205)
Windows Live Essentials (x32 Version: 16.4.3508.0205)
Windows Live ID Sign-in Assistant (Version: 7.250.4311.0)
Windows Live Installer (x32 Version: 16.4.3508.0205)
Windows Live Mail (x32 Version: 16.4.3508.0205)
Windows Live Messenger (x32 Version: 16.4.3508.0205)
Windows Live MIME IFilter (Version: 16.4.3508.0205)
Windows Live Photo Common (x32 Version: 16.4.3508.0205)
Windows Live PIMT Platform (x32 Version: 16.4.3508.0205)
Windows Live SOXE (x32 Version: 16.4.3508.0205)
Windows Live SOXE Definitions (x32 Version: 16.4.3508.0205)
Windows Live UX Platform (x32 Version: 16.4.3508.0205)
Windows Live UX Platform Language Pack (x32 Version: 16.4.3508.0205)
Windows Live Writer (x32 Version: 16.4.3508.0205)
Windows Live Writer Resources (x32 Version: 16.4.3508.0205)
WinRAR 4.20 (64-Bit) (Version: 4.20.0)
World of Tanks (x32)
XnView 2.03 (x32 Version: 2.03)

==================== Restore Points  =========================


==================== Hosts content: ==========================

2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

Task: {0C8E96C9-571B-412D-9F1B-78F3BA973084} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-07-22] (Piriform Ltd)
Task: {12A44517-D7C2-4A3C-92AE-4DF27004186F} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-08-20] (Adobe Systems Incorporated)
Task: {6C415463-6A72-4E35-82EB-E8BD2EBE3242} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => C:\Windows\system32\rundll32.exe [2009-07-14] (Microsoft Corporation)
Task: {6F059A62-149D-4DCC-B824-CFBF6C2CAFD4} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task
Task: {7F9052E5-8584-4712-B056-8A0F0327AD13} - System32\Tasks\Microsoft\Windows Defender\MP Scheduled Scan => c:\program files\windows defender\MpCmdRun.exe [2009-07-14] (Microsoft Corporation)
Task: {9704A077-188A-4442-B67A-B37747CC8549} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-05-16] (Google Inc.)
Task: {98F4F15D-F09A-4CD3-8D9B-83F7E7B32AA7} - System32\Tasks\Microsoft\Windows\WindowsBackup\Windows Backup Monitor => C:\Windows\system32\sdclt.exe [2010-11-20] (Microsoft Corporation)
Task: {AFA8D04E-5113-4066-88A6-5B22DF85E3B3} - System32\Tasks\ProtectedSearch\Protected Search => C:\Program Files (x86)\HomeTab\ProtectedSearch.exe No File
Task: {B154F6A1-D6A8-4EDC-A870-81105D2E00E6} - System32\Tasks\Browser Updater\Browser Updater => C:\Windows\system32\rundll32.exe [2009-07-14] (Microsoft Corporation)
Task: {CB9FDD68-372E-4238-AD75-DAD6EE53DC2C} - System32\Tasks\FreeDriverScout => C:\Program Files\Covus Freemium\Free Driver Scout\1Click.exe No File
Task: {D5ED2779-2A38-4D5D-8877-776CB728FD0D} - System32\Tasks\Open Hardware Monitor\Startup => D:\Chrome Downloads\openhardwaremonitor-v0.5.1-beta\OpenHardwareMonitor\OpenHardwareMonitor.exe [2012-07-26] ()
Task: {F0FD4262-F757-400B-9A44-7BC8DF0821B1} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-05-16] (Google Inc.)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Faulty Device Manager Devices =============

Name: GT-I9300
Description: GT-I9300
Class Guid: {eec5ad98-8080-425f-922a-dabf3de3f69a}
Manufacturer: SAMSUNG Electronics Co. Ltd. 
Service: WUDFRd
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (08/20/2013 08:06:32 PM) (Source: VSS) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Erstellen der Schattenkopieanbieter-COM-Klasse mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
] ist ein Fehler aufgetreten.


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen
   Schattenkopien abfragen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
   Snapshotkontext: 13
   Snapshotkontext: 13
   Ausführungskontext: Coordinator

Error: (08/20/2013 08:06:32 PM) (Source: VSS) (User: )
Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} und dem Namen "SW_PROV" kann nicht gestartet werden. [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
]


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen
   Schattenkopien abfragen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
   Snapshotkontext: 13
   Snapshotkontext: 13
   Ausführungskontext: Coordinator

Error: (08/20/2013 05:44:12 PM) (Source: System Restore) (User: )
Description: Fehler beim Erstellen des Wiederherstellungspunkts (Prozess = C:\Windows\system32\DrvInst.exe "4" "0" "C:\Users\Ivory\AppData\Local\Temp\{0e1be063-10ce-2a65-d82a-3e7c02a3e82a}\nv_dispi.inf" "9" "662e78e67" "00000000000004FC" "WinSta0\Default" "000000000000064C" "208" "c:\program files\nvidia corporation\installer2\display.driver.{140825b3-55c9-4983-88cc-e6b2b43e3352}"; Beschreibung = Gerätetreiber-Paketinstallation: NVIDIA Grafikkarte; Fehler = 0x80042302).

Error: (08/20/2013 05:44:12 PM) (Source: VSS) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "GetProviderMgmtInterface" ist ein unerwarteter Fehler aufgetreten. hr = 0x8004230f, Unerwarteter Fehler beim Schattenkopieanbieter bei dem Versuch, den angegebenen Vorgang zu verarbeiten.
.

Error: (08/20/2013 05:44:12 PM) (Source: VSS) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Erstellen der Schattenkopieanbieter-COM-Klasse mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
] ist ein Fehler aufgetreten.


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Anbieterverwaltungsschnittstelle wird abgerufen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {00000000-0000-0000-0000-000000000000}
   Snapshotkontext: -1
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}

Error: (08/20/2013 05:44:12 PM) (Source: VSS) (User: )
Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} und dem Namen "SW_PROV" kann nicht gestartet werden. [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
]


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Anbieterverwaltungsschnittstelle wird abgerufen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {00000000-0000-0000-0000-000000000000}
   Snapshotkontext: -1
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}

Error: (08/20/2013 05:19:27 PM) (Source: System Restore) (User: )
Description: Fehler beim Erstellen des Wiederherstellungspunkts (Prozess = C:\Users\Ivory\AppData\Local\Temp\SETDEDA.tmp -deleter -l0x7 /remove -your_launcherSETUP.EXE -clone_of"C:\Program Files (x86)\InstallShield Installation Information\{BEEFC4F8-2909-48B3-AFAA-55D3533FDEDD}\"; Beschreibung = Entfernt Creative MediaSource 5; Fehler = 0x80042302).

Error: (08/20/2013 05:19:27 PM) (Source: VSS) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "GetProviderMgmtInterface" ist ein unerwarteter Fehler aufgetreten. hr = 0x8004230f, Unerwarteter Fehler beim Schattenkopieanbieter bei dem Versuch, den angegebenen Vorgang zu verarbeiten.
.

Error: (08/20/2013 05:19:27 PM) (Source: VSS) (User: )
Description: Volumeschattenkopie-Dienstfehler: Beim Erstellen der Schattenkopieanbieter-COM-Klasse mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
] ist ein Fehler aufgetreten.


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Anbieterverwaltungsschnittstelle wird abgerufen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {00000000-0000-0000-0000-000000000000}
   Snapshotkontext: -1
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}

Error: (08/20/2013 05:19:27 PM) (Source: VSS) (User: )
Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} und dem Namen "SW_PROV" kann nicht gestartet werden. [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.
]


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Anbieterverwaltungsschnittstelle wird abgerufen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {00000000-0000-0000-0000-000000000000}
   Snapshotkontext: -1
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}


System errors:
=============
Error: (08/20/2013 08:04:36 PM) (Source: WMPNetworkSvc) (User: )
Description: WMPNetworkSvc0x80070422

Error: (08/20/2013 08:04:35 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Heimnetzgruppen-Anbieter" ist vom Dienst "Funktionssuchanbieter-Host" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: 
%%1058

Error: (08/20/2013 08:04:23 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Mobile Partner. OUC" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1053

Error: (08/20/2013 08:04:23 PM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Mobile Partner. OUC erreicht.

Error: (08/20/2013 07:51:28 PM) (Source: WMPNetworkSvc) (User: )
Description: WMPNetworkSvc0x80070422

Error: (08/20/2013 07:51:28 PM) (Source: WMPNetworkSvc) (User: )
Description: WMPNetworkSvc0x80070422

Error: (08/20/2013 07:51:26 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Heimnetzgruppen-Anbieter" ist vom Dienst "Funktionssuchanbieter-Host" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: 
%%1058

Error: (08/20/2013 07:51:12 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Mobile Partner. OUC" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1053

Error: (08/20/2013 07:51:12 PM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Mobile Partner. OUC erreicht.

Error: (08/20/2013 04:46:06 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "TuneUp Designerweiterung" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1083


Microsoft Office Sessions:
=========================
Error: (08/20/2013 08:06:32 PM) (Source: VSS)(User: )
Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen
   Schattenkopien abfragen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
   Snapshotkontext: 13
   Snapshotkontext: 13
   Ausführungskontext: Coordinator

Error: (08/20/2013 08:06:32 PM) (Source: VSS)(User: )
Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}SW_PROV0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen
   Schattenkopien abfragen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}
   Snapshotkontext: 13
   Snapshotkontext: 13
   Ausführungskontext: Coordinator

Error: (08/20/2013 05:44:12 PM) (Source: System Restore)(User: )
Description: C:\Windows\system32\DrvInst.exe "4" "0" "C:\Users\Ivory\AppData\Local\Temp\{0e1be063-10ce-2a65-d82a-3e7c02a3e82a}\nv_dispi.inf" "9" "662e78e67" "00000000000004FC" "WinSta0\Default" "000000000000064C" "208" "c:\program files\nvidia corporation\installer2\display.driver.{140825b3-55c9-4983-88cc-e6b2b43e3352}"Gerätetreiber-Paketinstallation: NVIDIA Grafikkarte0x80042302

Error: (08/20/2013 05:44:12 PM) (Source: VSS)(User: )
Description: GetProviderMgmtInterface0x8004230f, Unerwarteter Fehler beim Schattenkopieanbieter bei dem Versuch, den angegebenen Vorgang zu verarbeiten.

Error: (08/20/2013 05:44:12 PM) (Source: VSS)(User: )
Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Anbieterverwaltungsschnittstelle wird abgerufen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {00000000-0000-0000-0000-000000000000}
   Snapshotkontext: -1
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}

Error: (08/20/2013 05:44:12 PM) (Source: VSS)(User: )
Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}SW_PROV0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Anbieterverwaltungsschnittstelle wird abgerufen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {00000000-0000-0000-0000-000000000000}
   Snapshotkontext: -1
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}

Error: (08/20/2013 05:19:27 PM) (Source: System Restore)(User: )
Description: C:\Users\Ivory\AppData\Local\Temp\SETDEDA.tmp -deleter -l0x7 /remove -your_launcherSETUP.EXE -clone_of"C:\Program Files (x86)\InstallShield Installation Information\{BEEFC4F8-2909-48B3-AFAA-55D3533FDEDD}\"Entfernt Creative MediaSource 50x80042302

Error: (08/20/2013 05:19:27 PM) (Source: VSS)(User: )
Description: GetProviderMgmtInterface0x8004230f, Unerwarteter Fehler beim Schattenkopieanbieter bei dem Versuch, den angegebenen Vorgang zu verarbeiten.

Error: (08/20/2013 05:19:27 PM) (Source: VSS)(User: )
Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Anbieterverwaltungsschnittstelle wird abgerufen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {00000000-0000-0000-0000-000000000000}
   Snapshotkontext: -1
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}

Error: (08/20/2013 05:19:27 PM) (Source: VSS)(User: )
Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}SW_PROV0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden.


Vorgang:
   Für diesen Anbieter eine aufrufbare Schnittstelle abrufen
   Anbieterverwaltungsschnittstelle wird abgerufen

Kontext:
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}
   Klassen-ID: {00000000-0000-0000-0000-000000000000}
   Snapshotkontext: -1
   Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5}


CodeIntegrity Errors:
===================================
  Date: 2013-07-22 19:09:12.833
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\SysWOW64\mbmiodrvr.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2013-07-22 19:09:12.794
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\SysWOW64\mbmiodrvr.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.


==================== Memory info =========================== 

Percentage of memory in use: 29%
Total physical RAM: 8171.59 MB
Available physical RAM: 5789.26 MB
Total Pagefile: 10169.77 MB
Available Pagefile: 7562.58 MB
Total Virtual: 8192 MB
Available Virtual: 8191.85 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:111.69 GB) (Free:5.04 GB) NTFS
Drive d: () (Fixed) (Total:465.66 GB) (Free:90.28 GB) NTFS
Drive e: (KRD10) (CDROM) (Total:0.64 GB) (Free:0 GB) CDFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 112 GB) (Disk ID: 20E7750A)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=112 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 90A3F265)
Partition 1: (Not Active) - (Size=466 GB) - (Type=07 NTFS)

==================== End Of Log ============================
         

Alt 20.08.2013, 19:21   #2
Kakashi82
 
C:\Program Files(x86)\HomeTab\TBUpdater.dll - Standard

C:\Program Files(x86)\HomeTab\TBUpdater.dll




FRST Logfile:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 20-08-2013 04
Ran by Ivory (administrator) on 20-08-2013 20:05:57
Running from C:\Users\Ivory\Downloads
Windows 7 Ultimate Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
(Creative Technology Ltd) C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
() C:\Program Files (x86)\Ashampoo\Ashampoo Core Tuner 2\ACT2Service.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe
() C:\Program Files (x86)\Allway Sync\Bin\SyncService.exe
(Infowatch) C:\Program Files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe
() C:\ProgramData\DatacardService\HWDeviceService64.exe
() C:\ProgramData\Mobile Partner\OnlineUpdate\ouc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
() C:\Windows\SysWOW64\PnkBstrB.exe
(Skype Technologies) C:\Program Files (x86)\Skype\Updater\Updater.exe
(SPAMfighter ApS) C:\Program Files (x86)\Fighters\FighterSuiteService.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
(TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe
(Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\ComUpdatus.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe
(Ashampoo Development GmbH & Co. KG) C:\Program Files (x86)\Ashampoo\Ashampoo Core Tuner 2\ACT2.exe
(Akamai Technologies, Inc.) C:\Users\Ivory\AppData\Local\Akamai\netsession_win.exe
(Microsoft Corporation) C:\Program Files (x86)\Windows Sidebar\sidebar.exe
() C:\Users\Ivory\AppData\Local\Viber\Viber.exe
(Valve Corporation) D:\Steam\Steam.exe
() C:\Program Files (x86)\Allway Sync\Bin\syncappw.exe
(TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesApp64.exe
(Akamai Technologies, Inc.) C:\Users\Ivory\AppData\Local\Akamai\netsession_win.exe
(Samsung Electronics.) C:\Program Files (x86)\Samsung Magician\Samsung Magician.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer.exe
(Creative Technology Ltd.) C:\Program Files (x86)\Creative\Shared Files\Module Loader\DLLML.exe
(Creative Technology Ltd) C:\Program Files (x86)\Creative\Sound Blaster X-Fi Surround 5.1\Volume Panel\VolPanlu.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe
(Raptr, Inc) C:\PROGRA~2\Raptr\raptr.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\tv_w32.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\tv_x64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Creative Technology Ltd.) C:\Program Files (x86)\Creative\ShareDLL\CADI\NotiMan.exe
(Microsoft Corporation) C:\Windows\sysWOW64\wbem\wmiprvse.exe
(Raptr, Inc) C:\PROGRA~2\Raptr\raptr_im.exe
(Raptr Inc.) C:\Program Files (x86)\Raptr\raptr_ep64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\sysWOW64\wbem\wmiprvse.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\wmi64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\klwtblfs.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028896 2013-07-27] (NVIDIA Corporation)
HKLM\...\Run: [Creative SB Monitoring Utility] - C:\Windows\System32\sbavmon.dll [109056 2009-06-22] (Creative Technology Ltd.)
HKLM\...\Run: [Ashampoo Core Tuner 2] - C:\Program Files (x86)\Ashampoo\Ashampoo Core Tuner 2\ACT2.exe [5220768 2011-08-22] (Ashampoo Development GmbH & Co. KG)
HKCU\...\Run: [Akamai NetSession Interface] - C:\Users\Ivory\AppData\Local\Akamai\netsession_win.exe [4489472 2013-06-05] (Akamai Technologies, Inc.)
HKCU\...\Run: [DAEMON Tools Ultra Agent] - C:\Program Files (x86)\DAEMON Tools Ultra\DTAgent.exe [3088448 2013-03-06] (Disc Soft Ltd)
HKCU\...\Run: [Raptr] - C:\PROGRA~2\Raptr\raptrstub.exe [55360 2013-07-18] (Raptr, Inc)
HKCU\...\Run: [Viber] - C:\Users\Ivory\AppData\Local\Viber\Viber.exe [906240 2013-05-08] ()
HKCU\...\Run: [Steam] - D:\Steam\steam.exe [1807272 2013-07-27] (Valve Corporation)
HKCU\...\Run: [Allway Sync] - C:\Program Files (x86)\Allway Sync\Bin\syncappw.exe [94416 2013-07-02] ()
HKCU\...\Run: [FreeDriverScout] - C:\Program Files\Covus Freemium\Free Driver Scout\FreeDriverScout.exe [x]
HKCU\...\Run: [DLPRO-5] - C:\Program Files (x86)\Fighters\FighterLauncher.exe [859168 2013-06-05] (SPAMfighter ApS)
MountPoints2: F - F:\AutoRun.exe
MountPoints2: G - G:\AutoRun.exe
MountPoints2: {10698ef0-bedc-11e2-b75e-806e6f6e6963} - E:\CTRun\Start.EXE
MountPoints2: {45957bab-f6a1-11e2-a08f-001e101fa1f5} - G:\AutoRun.exe
MountPoints2: {622316fc-befe-11e2-a397-bc5ff421ecd9} - G:\setup.exe
MountPoints2: {7b2b9e6d-f535-11e2-9d4a-bc5ff421ecd9} - G:\AutoRun.exe
MountPoints2: {9f7e87e6-9a23-11e1-8eae-806e6f6e6963} - E:\start.exe
HKLM-x32\...\Run: [Module Loader] - C:\Program Files (x86)\Creative\Shared Files\Module Loader\DLLML.exe [57344 2007-07-23] (Creative Technology Ltd.)
HKLM-x32\...\Run: [VolPanel] - C:\Program Files (x86)\Creative\Sound Blaster X-Fi Surround 5.1\Volume Panel\VolPanlu.exe [241789 2009-07-07] (Creative Technology Ltd)
HKLM-x32\...\Run: [AVP] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe [356968 2012-12-20] (Kaspersky Lab ZAO)
HKU\fbwuser\...\Run: [Akamai NetSession Interface] - C:\Users\Ivory\AppData\Local\Akamai\netsession_win.exe [4489472 2013-06-05] (Akamai Technologies, Inc.)
HKU\fbwuser\...\Run: [DAEMON Tools Ultra Agent] - C:\Program Files (x86)\DAEMON Tools Ultra\DTAgent.exe [3088448 2013-03-06] (Disc Soft Ltd)
HKU\fbwuser\...\Run: [Raptr] - C:\PROGRA~2\Raptr\raptrstub.exe [55360 2013-07-18] (Raptr, Inc)
HKU\fbwuser\...\Run: [EPSON SX410 Series] - C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIFCE.EXE /FU "C:\Windows\TEMP\E_SC3BB.tmp" /EF "HKCU" [x]
HKU\fbwuser\...\Run: [Viber] - C:\Users\Ivory\AppData\Local\Viber\Viber.exe [906240 2013-05-08] ()
HKU\fbwuser\...\Run: [CTRegRun] - C:\Windows\CTRegRun.EXE [53248 2006-10-06] (Creative Technology Ltd )
HKU\fbwuser\...\Run: [Steam] - "C:\Program Files (x86)\Steam\Steam.exe" -silent [x]
HKU\fbwuser\...\Run: [CreativeTaskScheduler] - C:\Program Files (x86)\Creative\Shared Files\CTSched.exe [53341 2006-11-17] (Creative Technology Ltd)
HKU\fbwuser\...\RunOnce: [CTAutoUpdate] - C:\Program Files (x86)\Creative\Shared Files\Software Update\AutoUpdate.exe [623416 2009-06-19] (Creative Technology Ltd)
HKU\fbwuser\...\RunOnce: [StartMSu] - "C:\Program Files (x86)\Creative\MediaSource5\Startmsu.exe" /s [x]
HKU\fbwuser\...\RunOnce: [InetReg] - "C:\Program Files (x86)\Creative\Produktregistrierung\German\InetReg.exe" /PreProcess=RegFlash.exe /Delay=6 [x]
Startup: C:\Users\Ivory\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Samsung Magician.lnk
ShortcutTarget: Samsung Magician.lnk -> C:\Program Files (x86)\Samsung Magician\Samsung Magician.exe (Samsung Electronics.)

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
BHO-x32: Kaspersky Passsword Manager Toolbar - {215BA832-75A3-426E-A4FC-7C5B58CE6A10} - C:\PROGRA~2\Kaspersky Lab\Kaspersky PURE 3.0\Kaspersky Password Manager\spIEBho.dll (Kaspersky Lab)
BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
Toolbar: HKLM-x32 - No Name - {a25e7121-3dd8-41b3-855b-756c5bc45449} -  No File
Toolbar: HKLM-x32 - Kaspersky Passsword Manager Toolbar - {215BA832-75A3-426E-A4FC-7C5B58CE6A10} - C:\PROGRA~2\Kaspersky Lab\Kaspersky PURE 3.0\Kaspersky Password Manager\spIEBho.dll (Kaspersky Lab)
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
DPF: HKLM-x32 {D4B68B83-8710-488B-A692-D74B50BA558E} hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab
DPF: HKLM-x32 {E705A591-DA3C-4228-B0D5-A356DBA42FBF} hxxp://ccfiles.creative.com/Web/softwareupdate/su2/ocx/20015/CTSUEng.cab
DPF: HKLM-x32 {F6ACF75C-C32C-447B-9BEF-46B766368D29} hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/130321/CTPID.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1

FireFox:
========
FF ProfilePath: C:\Users\Ivory\AppData\Roaming\Mozilla\Firefox\Profiles\ziw3582p.default
FF Homepage: about:home
FF NewTab: hxxp://newtab.certified-toolbar.com/nff?si=99&tid=0&st=newtab
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll ()
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll ()
FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB)
FF Plugin-x32: @esn/esnlaunch,version=2.1.4 - C:\Program Files (x86)\Battlelog Web Plugins\2.1.4\npesnlaunch.dll (ESN Social Software AB)
FF Plugin-x32: @esn/esnlaunch,version=2.1.7 - C:\Program Files (x86)\Battlelog Web Plugins\2.1.7\npesnlaunch.dll (ESN Social Software AB)
FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @live.heroesandgenerals.com/npretox - C:\Program Files (x86)\Heroes & Generals\live\npretoxlive.dll (Reto-Moto ApS)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @nullsoft.com/winampDetector;version=1 - C:\Program Files (x86)\Winamp Detect\npwachk.dll (Nullsoft, Inc.)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\Ivory\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll No File
FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Ivory\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF Extension: No Name - C:\Users\Ivory\AppData\Roaming\Mozilla\Extensions\prism@developer.mozilla.org
FF Extension: HomeTab - C:\Users\Ivory\AppData\Roaming\Mozilla\Firefox\Profiles\ziw3582p.default\Extensions\{ad7ef860-f366-4be1-8d12-4363b9356947}
FF Extension: No Name - C:\Users\Ivory\AppData\Roaming\Mozilla\Firefox\Profiles\ziw3582p.default\Extensions\complitly_0.sqlite
FF Extension: Hotspot Shield Helper (Please allow this installation) - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\afurladvisor@anchorfree.com
FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF HKLM-x32\...\Firefox\Extensions:  C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\url_advisor@kaspersky.com
FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\url_advisor@kaspersky.com
FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\virtual_keyboard@kaspersky.com
FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\virtual_keyboard@kaspersky.com
FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\content_blocker@kaspersky.com
FF Extension: Content Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\content_blocker@kaspersky.com
FF HKLM-x32\...\Firefox\Extensions: [anti_banner@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\anti_banner@kaspersky.com
FF Extension: Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\anti_banner@kaspersky.com
FF HKLM-x32\...\Firefox\Extensions: [online_banking@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\online_banking@kaspersky.com
FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\online_banking@kaspersky.com

Chrome: 
=======
CHR HomePage: hxxp://google.de/
CHR Extension: (Docs) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.0.0.6_0
CHR Extension: (Google Drive) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.2_0
CHR Extension: (YouTube) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0
CHR Extension: (Google Search) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0
CHR Extension: (Kaspersky URL Advisor) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\13.0.2.558_0
CHR Extension: (Gmail Offline) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejidjjhkpiempkbhmpbfngldlkglhimk\1.20_0
CHR Extension: (AdBlock) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.4_0
CHR Extension: (Safe Money) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\hakdifolhalapjijoafobooafbilfakh\13.0.2.558_0
CHR Extension: (Pocket Legends) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhpdbcnfpodnaefldpdohoibdajcfabp\2.0.0.0_0
CHR Extension: (Knastv\u00F6gel) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\neclhfjbfaefimgjbodbcnjemndkkfpc\3.2.6.2_0
CHR Extension: (Gmail) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0
CHR Extension: (Anti-Banner) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman\13.0.2.558_0
CHR HKLM-x32\...\Chrome\Extension: [bddpogknpjlgfpbboediomaiiaecfajn] - C:\Program Files (x86)\HomeTab\chrome\HomeTab.crx
CHR HKLM-x32\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\urladvisor.crx
CHR HKLM-x32\...\Chrome\Extension: [hakdifolhalapjijoafobooafbilfakh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\online_banking_chrome.crx
CHR HKLM-x32\...\Chrome\Extension: [hghkgaeecgjhjkannahfamoehjmkjail] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\content_blocker_chrome.crx
CHR HKLM-x32\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\virtkbd.crx
CHR HKLM-x32\...\Chrome\Extension: [pjldcfjmnllhmgjclecdnfampinooman] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\ab.crx

==================== Services (Whitelisted) =================

R2 ACT2_Service; C:\Program Files (x86)\Ashampoo\Ashampoo Core Tuner 2\ACT2Service.exe [1421216 2011-08-22] ()
R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe [356968 2012-12-20] (Kaspersky Lab ZAO)
R2 BotkindSyncService; C:\Program Files (x86)\Allway Sync\Bin\SyncService.exe [182784 2013-07-02] ()
R2 CSObjectsSrv; C:\Program Files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe [819040 2012-12-21] (Infowatch)
S3 Disc Soft Bus Service; C:\Program Files (x86)\DAEMON Tools Ultra\DiscSoftBusService.exe [580672 2013-03-06] (Disc Soft Ltd)
R2 HWDeviceService64.exe; C:\ProgramData\DatacardService\HWDeviceService64.exe [346976 2011-03-14] ()
S2 Mobile Partner. RunOuc; C:\Program Files (x86)\Mobile Partner\UpdateDog\ouc.exe [246112 2013-07-25] ()
R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-07-10] ()
R2 PnkBstrB; C:\Windows\SysWow64\PnkBstrB.exe [189248 2013-07-10] ()
R2 Suite Service; C:\Program Files (x86)\Fighters\FighterSuiteService.exe [1281568 2013-06-05] (SPAMfighter ApS)
R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe [2402080 2013-01-28] (TuneUp Software)

==================== Drivers (Whitelisted) ====================

R2 ACT2PM; C:\Program Files (x86)\Ashampoo\Ashampoo Core Tuner 2\ACT2ProcessMonitor64.sys [15160 2011-06-10] ()
R2 ACT2PM; C:\Program Files (x86)\Ashampoo\Ashampoo Core Tuner 2\ACT2ProcessMonitor64.sys [15160 2011-06-10] ()
R0 CSCrySec; C:\Windows\System32\DRIVERS\CSCrySec.sys [84536 2011-06-02] (Infowatch)
R1 CSVirtualDiskDrv; C:\Windows\System32\DRIVERS\CSVirtualDiskDrv.sys [66616 2011-06-02] (Infowatch)
R3 dtscsibus; C:\Windows\System32\DRIVERS\dtscsibus.sys [29696 2013-05-18] (Disc Soft Ltd)
R1 HssDRV6; C:\Windows\System32\DRIVERS\hssdrv6.sys [46792 2013-06-21] (AnchorFree Inc.)
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458584 2012-06-19] (Kaspersky Lab ZAO)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [620128 2013-08-20] (Kaspersky Lab ZAO)
R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [28504 2012-08-02] (Kaspersky Lab ZAO)
R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [29016 2012-09-03] (Kaspersky Lab)
R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29528 2012-09-03] (Kaspersky Lab)
R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [54368 2013-08-20] (Kaspersky Lab ZAO)
R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [178448 2013-08-20] (Kaspersky Lab ZAO)
R3 ksaud; C:\Windows\System32\drivers\ksaud.sys [1148288 2009-12-15] (Creative Technology Ltd.)
S3 RZMAELSTROMVADService; C:\Windows\System32\drivers\RzMaelstromVAD.sys [40696 2013-05-17] (Windows (R) Win 7 DDK provider)
R3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2013-06-06] (Anchorfree Inc.)
R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesDriver64.sys [11880 2012-11-16] (TuneUp Software)
R1 UimBus; C:\Windows\System32\DRIVERS\uimx64.sys [90960 2013-03-15] (Windows (R) 2000 DDK provider)
R1 Uim_IM; C:\Windows\System32\Drivers\Uim_IMx64.sys [633680 2013-03-15] (Paragon)
R1 Uim_VIM; C:\Windows\System32\Drivers\uim_vimx64.sys [390352 2013-03-15] (Paragon)
S3 cpuz135; \??\C:\Users\Ivory\AppData\Local\Temp\cpuz135\cpuz135_x64.sys [x]
S3 cpuz136; \??\C:\Windows\TEMP\cpuz136\cpuz136_x64.sys [x]
S3 IntcAzAudAddService; system32\drivers\RTKVHD64.sys [x]
S3 MBfilt; system32\drivers\MBfilt64.sys [x]
S4 nvvad_WaveExtensible; system32\drivers\nvvad64v.sys [x]
S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [x]
S3 tsusbhub; system32\drivers\tsusbhub.sys [x]
S3 VGPU; System32\drivers\rdvgkmd.sys [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-08-20 19:58 - 2013-08-20 19:58 - 01576208 _____ (Farbar) C:\Users\Ivory\Downloads\FRST64.exe
2013-08-20 19:57 - 2013-08-20 20:03 - 00000000 ___DC C:\AdwCleaner
2013-08-20 19:56 - 2013-08-20 19:57 - 00975858 _____ C:\Users\Ivory\Downloads\adwcleaner.exe
2013-08-20 17:46 - 2013-08-20 17:46 - 00000000 ___DC C:\Program Files (x86)\AGEIA Technologies
2013-08-20 17:43 - 2013-08-18 23:02 - 29337376 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 22101792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 15900936 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 13627696 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 11271968 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2013-08-20 17:43 - 2013-08-18 23:02 - 09281032 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 07720576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 07648000 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 06329552 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 02970400 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 02789152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 02007328 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 02007328 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6432680.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6432680.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 01222824 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 00681760 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 00603424 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 00586016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 00515360 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 00458528 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 00388384 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2013-08-20 17:43 - 2013-08-18 23:02 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2013-08-20 17:41 - 2013-08-20 17:41 - 00000000 ___DC C:\NVIDIA
2013-08-20 16:46 - 2013-01-28 15:19 - 00037664 _____ (TuneUp Software) C:\Windows\system32\uxtuneup.dll
2013-08-20 16:46 - 2013-01-28 15:19 - 00029984 _____ (TuneUp Software) C:\Windows\SysWOW64\uxtuneup.dll
2013-08-20 16:21 - 2013-08-20 16:46 - 00000000 ___DC C:\Program Files (x86)\TuneUp Utilities 2013
2013-08-20 16:21 - 2013-08-20 16:21 - 00002225 _____ C:\Users\Public\Desktop\TuneUp 1-Klick-Wartung.lnk
2013-08-20 16:21 - 2013-08-20 16:21 - 00002207 _____ C:\Users\Public\Desktop\TuneUp Utilities 2013.lnk
2013-08-20 16:21 - 2013-01-28 15:19 - 00035104 _____ (TuneUp Software) C:\Windows\system32\TURegOpt.exe
2013-08-20 16:21 - 2013-01-28 15:19 - 00026400 _____ (TuneUp Software) C:\Windows\system32\authuitu.dll
2013-08-20 16:21 - 2013-01-28 15:19 - 00021792 _____ (TuneUp Software) C:\Windows\SysWOW64\authuitu.dll
2013-08-20 16:18 - 2013-08-20 16:18 - 28181424 _____ (TuneUp Software) C:\Users\Ivory\Downloads\TuneUpUtilities2013_de-DE.exe
2013-08-20 12:45 - 2013-08-20 12:45 - 00002234 _____ C:\Users\Ivory\Desktop\Sicherer Zahlungsverkehr.lnk
2013-08-20 12:43 - 2013-08-20 12:43 - 00001092 _____ C:\Users\Public\Desktop\Kaspersky PURE 3.0.lnk
2013-08-20 12:43 - 2012-07-11 17:09 - 00064856 _____ (Kaspersky Lab) C:\Windows\system32\klfphc.dll
2013-08-20 12:43 - 2011-06-02 14:39 - 00084536 _____ (Infowatch) C:\Windows\system32\Drivers\CSCrySec.sys
2013-08-20 12:43 - 2011-06-02 14:39 - 00066616 _____ (Infowatch) C:\Windows\system32\Drivers\CSVirtualDiskDrv.sys
2013-08-20 12:42 - 2013-08-20 20:05 - 00000000 ____D C:\ProgramData\Kaspersky Lab
2013-08-20 12:42 - 2013-08-20 13:15 - 00620128 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klif.sys
2013-08-20 12:42 - 2013-08-20 13:15 - 00090208 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klflt.sys
2013-08-20 12:42 - 2013-08-20 12:42 - 00000000 ___DC C:\Program Files (x86)\Kaspersky Lab
2013-08-20 12:42 - 2013-08-20 12:42 - 00000000 ____D C:\Windows\ELAMBKUP
2013-08-20 12:35 - 2013-08-20 12:35 - 00000000 __HDC C:\kleaner.tmp
2013-08-20 12:26 - 2013-08-20 12:29 - 188740896 _____ (Kaspersky Lab) C:\Users\Ivory\Downloads\pure13.0.2.558DE_4340.exe
2013-08-20 12:03 - 2013-08-20 12:03 - 00000000 ___DC C:\Program Files (x86)\Samsung Magician
2013-08-20 01:46 - 2009-06-10 23:00 - 00000824 _____ C:\Windows\system32\Drivers\etc\hosts.20130820-014601.backup
2013-08-20 01:45 - 2013-08-20 01:45 - 00000000 ____D C:\Users\Ivory\Documents\Bank
2013-08-20 01:40 - 2009-06-10 23:00 - 00000824 _____ C:\Windows\system32\Drivers\etc\hosts.20130820-014056.backup
2013-08-20 01:36 - 2013-08-20 01:36 - 00000000 ____D C:\Users\Ivory\AppData\Local\ALF_AG
2013-08-20 01:33 - 2013-08-20 01:33 - 00003213 _____ C:\Windows\wininit.ini
2013-08-20 01:09 - 2013-08-20 01:09 - 00000000 ____D C:\Users\Ivory\AppData\Local\Fighters
2013-08-20 01:02 - 2012-08-28 07:27 - 00058536 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\usbfilter.sys
2013-08-20 01:00 - 2013-08-02 19:29 - 00256088 _____ C:\Windows\system32\unrar64.dll
2013-08-20 00:59 - 2013-08-20 00:59 - 00000000 ___DC C:\Program Files (x86)\K-Lite Codec Pack
2013-08-20 00:48 - 2013-08-20 01:34 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2013-08-20 00:47 - 2013-08-20 00:47 - 00001018 _____ C:\Users\Public\Desktop\SSD Fresh.lnk
2013-08-20 00:47 - 2013-08-20 00:47 - 00000000 ___DC C:\Program Files (x86)\SSD Fresh
2013-08-20 00:47 - 2013-08-20 00:47 - 00000000 ____D C:\Users\Ivory\AppData\Local\Abelssoft
2013-08-20 00:46 - 2013-08-20 00:53 - 00002160 _____ C:\Users\Public\Desktop\OUTDATEfighter.lnk
2013-08-20 00:46 - 2013-08-20 00:53 - 00000000 ___DC C:\Program Files (x86)\Fighters
2013-08-20 00:46 - 2013-08-20 00:46 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Fighters
2013-08-20 00:46 - 2013-08-20 00:46 - 00000000 ____D C:\ProgramData\Fighters
2013-08-20 00:45 - 2013-08-20 19:51 - 00003660 _____ C:\Windows\System32\Tasks\FreeDriverScout
2013-08-20 00:45 - 2013-08-20 00:46 - 00000000 ____D C:\ProgramData\FreeDriverScout
2013-08-20 00:45 - 2013-08-20 00:45 - 00000000 ___DC C:\SoloApp
2013-08-20 00:45 - 2013-08-20 00:45 - 00000000 ____D C:\Users\Ivory\Documents\Freemium Driver Utilities
2013-08-20 00:44 - 2013-08-20 00:44 - 00002543 _____ C:\Users\Public\Desktop\Free Driver Scout.lnk
2013-08-20 00:44 - 2013-08-20 00:44 - 00000000 ____D C:\Windows\System32\Tasks\ProtectedSearch
2013-08-20 00:44 - 2013-08-20 00:44 - 00000000 ____D C:\Windows\System32\Tasks\Browser Updater
2013-08-20 00:44 - 2013-08-13 08:38 - 00032328 _____ C:\Windows\Launcher.exe
2013-08-20 00:28 - 2013-08-20 00:28 - 00001209 _____ C:\Users\Public\Desktop\Ashampoo Core Tuner 2.lnk
2013-08-20 00:28 - 2013-08-20 00:28 - 00000000 ___DC C:\Program Files (x86)\Ashampoo
2013-08-20 00:28 - 2013-08-20 00:28 - 00000000 ____D C:\ProgramData\Ashampoo
2013-08-20 00:24 - 2013-08-20 01:45 - 00000000 ____D C:\ProgramData\AlfBanCo5
2013-08-20 00:24 - 2013-08-20 01:40 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\ALFBanCo5
2013-08-20 00:24 - 2013-08-20 00:29 - 00000000 ___DC C:\Program Files (x86)\ALFBanCo5
2013-08-20 00:24 - 2013-08-20 00:24 - 00001023 _____ C:\Users\Public\Desktop\ALF-BanCo 5.lnk
2013-08-20 00:24 - 2009-06-23 12:58 - 00462848 _____ (REINER SCT ) C:\Windows\SysWOW64\rsct_ot.ocx
2013-08-20 00:24 - 2004-06-14 14:04 - 00874248 _____ (Xceed Software Inc        (450) 442-2626        support@xceedsoft.com        www.xceedsoft.com) C:\Windows\SysWOW64\SmartUI2.ocx
2013-08-20 00:24 - 2002-09-27 17:47 - 00442368 _____ (ComponentOne) C:\Windows\SysWOW64\vsflex7l.ocx
2013-08-20 00:24 - 2001-02-07 15:17 - 01066176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCOMCTL.1
2013-08-20 00:24 - 2000-10-01 23:00 - 00125712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VB6DE.DLL
2013-08-20 00:24 - 2000-05-21 23:00 - 01066176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscomctl.ocx
2013-08-20 00:24 - 2000-05-21 23:00 - 01009336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCHRT20.ocx
2013-08-20 00:24 - 2000-05-21 23:00 - 00140488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.ocx
2013-08-20 00:24 - 1998-07-05 23:00 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCC2DE.DLL
2013-08-20 00:24 - 1998-07-05 23:00 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CmDlgDE.dll
2013-08-20 00:24 - 1998-07-05 19:00 - 00158208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCMCDE.DLL
2013-08-19 18:26 - 2013-08-19 18:26 - 00433014 _____ C:\Users\Ivory\Downloads\SfBot.zip
2013-08-18 23:30 - 2013-08-18 23:30 - 00000000 ____D C:\Users\Ivory\Desktop\Sexy
2013-08-18 22:27 - 2011-07-21 12:44 - 20237824 _____ C:\Users\Ivory\Desktop\sfBot.exe
2013-08-18 22:27 - 2011-07-21 12:44 - 00000000 ____D C:\Users\Ivory\Desktop\data
2013-08-18 22:27 - 2011-03-21 22:19 - 00000000 ____D C:\Users\Ivory\Desktop\trans
2013-08-18 20:09 - 2013-08-18 22:27 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\SFBot
2013-08-18 20:02 - 2013-08-18 20:03 - 08393419 _____ C:\Users\Ivory\Downloads\SFBot_v2.1.0.zip
2013-08-15 09:21 - 2013-07-26 07:13 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-08-15 09:21 - 2013-07-26 07:13 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-08-15 09:21 - 2013-07-26 07:13 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-08-15 09:21 - 2013-07-26 07:12 - 19239424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-08-15 09:21 - 2013-07-26 07:12 - 15405056 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-08-15 09:21 - 2013-07-26 07:12 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-08-15 09:21 - 2013-07-26 07:12 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-08-15 09:21 - 2013-07-26 07:12 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-08-15 09:21 - 2013-07-26 07:12 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-08-15 09:21 - 2013-07-26 07:12 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-08-15 09:21 - 2013-07-26 07:12 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-08-15 09:21 - 2013-07-26 07:12 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-08-15 09:21 - 2013-07-26 07:12 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-08-15 09:21 - 2013-07-26 07:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-08-15 09:21 - 2013-07-26 05:35 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-08-15 09:21 - 2013-07-26 05:13 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-08-15 09:21 - 2013-07-26 05:13 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-08-15 09:21 - 2013-07-26 05:12 - 14329344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-08-15 09:21 - 2013-07-26 05:12 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-08-15 09:21 - 2013-07-26 05:12 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-08-15 09:21 - 2013-07-26 05:12 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-08-15 09:21 - 2013-07-26 05:12 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-08-15 09:21 - 2013-07-26 05:12 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-08-15 09:21 - 2013-07-26 05:12 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-08-15 09:21 - 2013-07-26 05:12 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-08-15 09:21 - 2013-07-26 05:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-08-15 09:21 - 2013-07-26 05:11 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-08-15 09:21 - 2013-07-26 05:11 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-08-15 09:21 - 2013-07-26 04:49 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-08-15 09:21 - 2013-07-26 04:39 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-08-15 09:21 - 2013-07-26 03:59 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-08-15 09:01 - 2013-08-15 09:01 - 00000000 ____D C:\Users\Ivory\Desktop\UpSkirts
2013-08-14 21:55 - 2013-07-25 11:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2013-08-14 21:55 - 2013-07-25 10:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2013-08-14 21:55 - 2013-07-19 03:58 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2013-08-14 21:55 - 2013-07-19 03:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2013-08-14 21:55 - 2013-07-09 08:03 - 05550528 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2013-08-14 21:55 - 2013-07-09 07:54 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2013-08-14 21:55 - 2013-07-09 07:53 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2013-08-14 21:55 - 2013-07-09 07:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2013-08-14 21:55 - 2013-07-09 07:51 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2013-08-14 21:55 - 2013-07-09 07:46 - 01472512 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2013-08-14 21:55 - 2013-07-09 07:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2013-08-14 21:55 - 2013-07-09 07:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2013-08-14 21:55 - 2013-07-09 07:03 - 03968960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2013-08-14 21:55 - 2013-07-09 07:03 - 03913664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2013-08-14 21:55 - 2013-07-09 06:53 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2013-08-14 21:55 - 2013-07-09 06:52 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2013-08-14 21:55 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2013-08-14 21:55 - 2013-07-09 06:52 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2013-08-14 21:55 - 2013-07-09 06:46 - 01166848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2013-08-14 21:55 - 2013-07-09 06:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2013-08-14 21:55 - 2013-07-09 06:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2013-08-14 21:55 - 2013-07-09 04:49 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2013-08-14 21:55 - 2013-07-09 04:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2013-08-14 21:55 - 2013-07-09 04:49 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2013-08-14 21:55 - 2013-07-09 04:49 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2013-08-14 21:55 - 2013-07-06 08:03 - 01910208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2013-08-14 21:55 - 2013-06-15 06:35 - 01111552 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2013-08-14 21:55 - 2013-06-15 06:32 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2013-08-14 15:42 - 2013-06-26 13:45 - 27927315 _____ C:\Users\Ivory\Desktop\Mein Film.mp4
2013-08-14 15:42 - 2012-11-23 04:01 - 29599649 _____ C:\Users\Ivory\Desktop\Mein Film 4.mp4
2013-08-14 11:29 - 2013-08-14 11:29 - 00603209 _____ C:\Users\Ivory\Documents\Backup s3 2013-08-14.mpb
2013-08-14 11:28 - 2013-08-14 15:59 - 00000000 ____D C:\Users\Ivory\Documents\S3 Anwendungen
2013-08-14 11:25 - 2013-08-14 11:41 - 00000000 ____D C:\Users\Ivory\Documents\S3 Datein
2013-08-13 07:27 - 2013-08-13 07:28 - 00000000 ____D C:\Users\Ivory\Desktop\Hot Celebs
2013-08-11 18:33 - 2013-08-20 19:53 - 00000000 ___DC C:\Program Files (x86)\Heroes & Generals
2013-08-11 18:33 - 2013-08-11 18:33 - 00001120 _____ C:\Users\Public\Desktop\Heroes & Generals spielen.lnk
2013-08-11 17:56 - 2013-08-11 18:36 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\.quickorder
2013-08-11 14:06 - 2013-08-11 14:06 - 00000000 ____D C:\ProgramData\launcher
2013-08-11 14:06 - 2013-08-11 14:06 - 00000000 ____D C:\ProgramData\explauncher
2013-08-11 14:06 - 2013-08-11 14:06 - 00000000 ____D C:\ProgramData\backup
2013-08-11 14:05 - 2013-08-11 14:05 - 00002413 _____ C:\Users\Public\Desktop\Paragon Backup & Recovery™ 2013 Free.lnk
2013-08-11 14:05 - 2013-08-11 14:05 - 00000000 ___DC C:\Program Files (x86)\Paragon Software
2013-08-11 12:33 - 2013-08-15 09:18 - 00000000 ____D C:\Windows\system32\MRT
2013-08-07 17:08 - 2013-08-07 17:08 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Prism
2013-08-07 17:08 - 2013-08-07 17:08 - 00000000 ____D C:\Users\Ivory\AppData\Local\Prism
2013-08-07 17:04 - 2013-08-20 00:43 - 00000000 ____D C:\ProgramData\Package Cache
2013-08-07 17:04 - 2013-08-08 07:01 - 00002090 _____ C:\Users\Public\Desktop\MechWarrior Online.lnk
2013-08-07 17:04 - 2013-08-07 17:06 - 00000000 ___DC C:\Program Files (x86)\Piranha Games
2013-08-07 16:56 - 2013-08-07 16:56 - 00000201 _____ C:\Users\Ivory\Desktop\Iron Grip Marauders.url
2013-08-07 03:29 - 2013-08-07 03:29 - 00001520 _____ C:\Users\Ivory\AppData\Local\recently-used.xbel
2013-08-07 03:00 - 2013-08-07 03:29 - 00000000 ____D C:\Users\Ivory\AppData\Local\gtk-2.0
2013-08-07 03:00 - 2013-08-07 03:00 - 00000000 ____D C:\Users\Ivory\.thumbnails
2013-08-07 02:57 - 2013-08-07 03:40 - 00000000 ____D C:\Users\Ivory\.gimp-2.8
2013-08-07 02:57 - 2013-08-07 02:57 - 00000000 ___DC C:\Program Files\GIMP 2
2013-08-07 02:57 - 2013-08-07 02:57 - 00000000 ____D C:\Users\Ivory\AppData\Local\gegl-0.2
2013-08-07 02:28 - 2013-08-20 13:25 - 00000000 ___DC C:\Program Files\PC Monitor
2013-08-07 00:05 - 2013-06-18 16:22 - 00872152 _____ (Realtek                                            ) C:\Windows\system32\Drivers\Rt64win7.sys
2013-08-07 00:05 - 2013-06-18 16:22 - 00074456 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll
2013-08-06 22:50 - 2013-08-06 22:50 - 00000627 _____ C:\Users\Public\Desktop\MP4 To MP3 Converter.lnk
2013-08-06 22:50 - 2013-08-06 22:50 - 00000000 ___DC C:\MP4ToMP3Converter
2013-08-06 20:40 - 2013-08-06 20:43 - 00000000 ____D C:\Users\Ivory\Documents\PCMark 7
2013-08-06 20:40 - 2013-08-06 20:40 - 00000000 ____D C:\Users\Ivory\AppData\Local\IsolatedStorage
2013-08-06 20:40 - 2013-08-06 20:40 - 00000000 ____D C:\Users\Ivory\AppData\Local\Futuremark_Corporation
2013-08-06 20:23 - 2013-08-06 20:23 - 00000000 ___DC C:\Program Files (x86)\Futuremark
2013-08-06 20:03 - 2013-08-06 20:03 - 00000000 ___DC C:\Program Files (x86)\Geekbench 2.2
2013-08-06 20:03 - 2013-08-06 20:03 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Geekbench 2.2
2013-08-06 08:07 - 2013-05-29 23:33 - 231939659 _____ C:\Users\Ivory\Downloads\Crazy Kiya Re - Dhoom 2 (2006) _HD_ 1080p _BluRay_ Music Video(1080p_H.264-AAC).mp4
2013-08-04 16:54 - 2013-08-04 16:54 - 00000000 ____D C:\Users\Ivory\AppData\Local\Ascaron Entertainment
2013-08-04 15:27 - 2013-08-04 15:27 - 00000000 ____D C:\Users\Ivory\AppData\Local\THQ
2013-08-04 15:27 - 2008-07-12 08:18 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll
2013-08-04 15:27 - 2008-07-12 08:18 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll
2013-08-04 15:27 - 2008-07-12 08:18 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll
2013-08-04 15:13 - 2013-08-04 15:13 - 00000000 ____D C:\Users\Ivory\AppData\Local\Risen2
2013-08-03 18:11 - 2013-08-03 18:11 - 00000201 _____ C:\Users\Ivory\Desktop\Saints Row The Third.url
2013-08-03 18:11 - 2013-08-03 18:11 - 00000201 _____ C:\Users\Ivory\Desktop\Risen 2 - Dark Waters.url
2013-08-02 12:33 - 2013-08-02 12:33 - 00026451 _____ C:\Users\Ivory\Desktop\Lingen 08_2013.ods
2013-08-02 12:21 - 2013-08-02 12:21 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\OpenOffice
2013-08-02 12:20 - 2013-08-14 13:23 - 00001513 _____ C:\Users\Public\Desktop\OpenOffice 4.0.0.lnk
2013-08-02 12:20 - 2013-08-02 12:20 - 00000000 ___DC C:\Program Files (x86)\OpenOffice 4
2013-08-01 20:13 - 2013-08-01 20:20 - 00001075 _____ C:\Users\Ivory\Desktop\Neverwinter.lnk
2013-08-01 20:13 - 2013-08-01 20:20 - 00000000 ____D C:\Users\Public\Games
2013-08-01 20:07 - 2013-08-01 20:07 - 00000000 ___DC C:\Cryptic Studios
2013-08-01 19:59 - 2013-08-20 16:25 - 00000000 ___DC C:\Program Files (x86)\Cryptic Studios
2013-08-01 09:20 - 2013-08-01 09:20 - 00000262 _____ C:\Users\Ivory\Desktop\Bailas Liste.txt
2013-08-01 07:16 - 2013-08-01 07:16 - 00001306 _____ C:\Users\Public\Desktop\Free YouTube Download.lnk
2013-08-01 07:16 - 2013-08-01 07:16 - 00000000 ___DC C:\Program Files (x86)\DVDVideoSoft
2013-07-31 21:44 - 2013-07-31 21:44 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\TuneUp Software
2013-07-31 21:44 - 2013-07-31 21:44 - 00000000 ____D C:\ProgramData\TuneUp Software
2013-07-31 21:43 - 2013-08-20 16:53 - 00000000 __SHD C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}
2013-07-31 21:11 - 2012-05-10 00:11 - 00000291 _____ C:\Windows\onlineeye.INI
2013-07-31 19:16 - 2013-08-20 12:36 - 00000000 ____D C:\ProgramData\Avira
2013-07-31 07:15 - 2013-08-18 23:02 - 15703176 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2013-07-31 07:15 - 2013-07-26 08:09 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6432641.dll
2013-07-31 07:15 - 2013-07-26 08:09 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6432641.dll
2013-07-31 07:14 - 2013-07-31 07:14 - 00000000 ___DC C:\NvidiaLogging
2013-07-28 02:49 - 2009-10-28 11:06 - 02902492 ____N (Creative) C:\Windows\SysWOW64\Sens_oal.dll
2013-07-28 02:45 - 2009-12-15 10:24 - 01148288 _____ (Creative Technology Ltd.) C:\Windows\system32\Drivers\ksaud.sys
2013-07-28 02:45 - 2009-12-07 11:29 - 00232960 _____ (Creative Technology Ltd.) C:\Windows\system32\KSVSPI64.dll
2013-07-28 02:45 - 2009-12-07 11:29 - 00173056 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\KSVSPI32.dll
2013-07-28 02:45 - 2009-11-19 14:59 - 00028635 _____ C:\Windows\system32\ksaud.ini
2013-07-28 02:45 - 2009-06-22 13:13 - 00109056 _____ (Creative Technology Ltd.) C:\Windows\system32\SBAVMon.dll
2013-07-28 02:45 - 2008-11-06 11:47 - 00008096 _____ C:\Windows\system32\MixerDefault.reg
2013-07-28 02:03 - 2013-07-28 02:04 - 00011279 _____ C:\Users\Ivory\AppData\Local\CleanupUninstall.txt
2013-07-28 00:54 - 2009-12-08 15:52 - 00230912 _____ C:\Windows\system32\APOMgr64.DLL
2013-07-28 00:54 - 2009-12-08 15:50 - 00177664 _____ C:\Windows\SysWOW64\APOMngr.DLL
2013-07-28 00:54 - 2009-11-30 18:54 - 00089088 _____ C:\Windows\system32\CmdRtr64.DLL
2013-07-28 00:54 - 2009-11-30 18:53 - 00073728 _____ C:\Windows\SysWOW64\CmdRtr.DLL
2013-07-28 00:54 - 2009-10-28 11:08 - 01939968 ____N (Creative) C:\Windows\system32\Sens_oal.dll
2013-07-28 00:54 - 2007-07-16 11:36 - 00000029 _____ C:\Windows\system32\ctzapxx.ini
2013-07-28 00:54 - 2007-07-09 04:59 - 00782336 ____R (Creative Labs Inc.) C:\Windows\SysWOW64\tmp6F94.tmp
2013-07-28 00:35 - 2013-07-28 00:35 - 00002492 _____ C:\Users\Ivory\Desktop\Creative Konsole Starter.lnk
2013-07-27 20:28 - 2007-07-09 04:59 - 00782336 ____R (Creative Labs Inc.) C:\Windows\SysWOW64\tmpDE00.tmp
2013-07-27 11:53 - 2013-08-15 08:53 - 00000000 ____D C:\Users\Ivory\Desktop\WhatsApp Images
2013-07-26 09:10 - 2013-07-26 09:10 - 00000000 ____D C:\Users\Ivory\Documents\SurDoc Universal Sync
2013-07-26 09:08 - 2013-07-26 23:48 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\SurDoc
2013-07-26 09:05 - 2013-07-26 09:05 - 00000000 ____D C:\ProgramData\SVG_Client
2013-07-25 19:05 - 2013-07-25 19:05 - 00001083 _____ C:\Users\Public\Desktop\Mobile Partner.lnk
2013-07-25 19:05 - 2013-07-25 19:05 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_ew_jubusenum_01007.Wdf
2013-07-25 19:05 - 2013-07-25 19:05 - 00000000 ____D C:\ProgramData\Mobile Partner
2013-07-25 19:05 - 2013-07-25 19:04 - 01490656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfCoInstaller01007.dll
2013-07-25 19:05 - 2013-07-25 19:04 - 01001472 _____ (DiBcom SA) C:\Windows\system32\Drivers\mod7700.sys
2013-07-25 19:05 - 2013-07-25 19:04 - 00421376 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbwwan.sys
2013-07-25 19:05 - 2013-07-25 19:04 - 00222464 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbmdm.sys
2013-07-25 19:05 - 2013-07-25 19:04 - 00212992 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_juwwanecm.sys
2013-07-25 19:05 - 2013-07-25 19:04 - 00117248 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_hwusbdev.sys
2013-07-25 19:05 - 2013-07-25 19:04 - 00098816 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jucdcacm.sys
2013-07-25 19:05 - 2013-07-25 19:04 - 00086016 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jubusenum.sys
2013-07-25 19:05 - 2013-07-25 19:04 - 00069632 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jucdcecm.sys
2013-07-25 19:05 - 2013-07-25 19:04 - 00032768 _____ (Huawei Tech. Co., Ltd.) C:\Windows\system32\Drivers\ewdcsc.sys
2013-07-25 19:05 - 2013-07-25 19:04 - 00028672 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_juextctrl.sys
2013-07-25 19:05 - 2013-07-25 19:04 - 00022016 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_hwupgrade.sys
2013-07-25 19:05 - 2013-07-25 19:04 - 00013952 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_usbenumfilter.sys
2013-07-25 19:04 - 2013-07-25 19:06 - 00000000 ____D C:\ProgramData\DatacardService
2013-07-25 19:04 - 2013-07-25 19:05 - 00000000 ___DC C:\Program Files (x86)\Mobile Partner
2013-07-23 06:43 - 2013-07-23 06:43 - 00000000 ____D C:\ProgramData\RzMaelstromVAD_1.1.41.1089
2013-07-23 06:37 - 2013-07-28 02:04 - 00000000 ____D C:\Users\Ivory\AppData\Local\Razer
2013-07-23 06:37 - 2013-07-28 02:04 - 00000000 ____D C:\ProgramData\Razer
2013-07-22 19:17 - 2013-07-22 19:17 - 00000000 ____D C:\Windows\System32\Tasks\Open Hardware Monitor
2013-07-22 19:13 - 2013-07-22 19:13 - 00000967 _____ C:\Users\Ivory\Desktop\TechPowerUp GPU-Z.lnk
2013-07-22 19:13 - 2013-07-22 19:13 - 00000000 ___DC C:\Program Files (x86)\GPU-Z
2013-07-22 19:13 - 2013-07-22 19:13 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TechPowerUp GPU-Z
2013-07-22 19:09 - 2013-07-22 19:11 - 00000000 ___DC C:\Program Files (x86)\Motherboard Monitor 5

==================== One Month Modified Files and Folders =======

2013-08-20 20:05 - 2013-08-20 12:42 - 00000000 ____D C:\ProgramData\Kaspersky Lab
2013-08-20 20:04 - 2013-06-13 13:36 - 00041370 _____ C:\Windows\setupact.log
2013-08-20 20:04 - 2013-06-12 22:42 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\ViberPC
2013-08-20 20:04 - 2013-06-12 22:42 - 00000000 ____D C:\Users\Ivory\AppData\Local\Viber
2013-08-20 20:04 - 2013-05-18 12:45 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Raptr
2013-08-20 20:04 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-08-20 20:03 - 2013-08-20 19:57 - 00000000 ___DC C:\AdwCleaner
2013-08-20 20:03 - 2013-05-16 20:32 - 01976091 _____ C:\Windows\WindowsUpdate.log
2013-08-20 20:02 - 2013-08-20 20:02 - 00000000 ___DC C:\FRST
2013-08-20 19:58 - 2013-08-20 19:58 - 01576208 _____ (Farbar) C:\Users\Ivory\Downloads\FRST64.exe
2013-08-20 19:58 - 2009-07-14 06:45 - 00014336 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-08-20 19:58 - 2009-07-14 06:45 - 00014336 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-08-20 19:57 - 2013-08-20 19:56 - 00975858 _____ C:\Users\Ivory\Downloads\adwcleaner.exe
2013-08-20 19:53 - 2013-08-11 18:33 - 00000000 ___DC C:\Program Files (x86)\Heroes & Generals
2013-08-20 19:51 - 2013-08-20 00:45 - 00003660 _____ C:\Windows\System32\Tasks\FreeDriverScout
2013-08-20 19:51 - 2013-06-13 20:20 - 01080016 _____ C:\Windows\PFRO.log
2013-08-20 19:51 - 2013-05-16 22:32 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\TS3Client
2013-08-20 19:51 - 2013-05-16 20:45 - 00001108 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-08-20 19:51 - 2013-05-16 20:45 - 00001104 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-08-20 17:46 - 2013-08-20 17:46 - 00000000 ___DC C:\Program Files (x86)\AGEIA Technologies
2013-08-20 17:46 - 2013-05-16 20:35 - 00000000 ___DC C:\Program Files (x86)\NVIDIA Corporation
2013-08-20 17:46 - 2013-05-16 20:35 - 00000000 ____D C:\ProgramData\NVIDIA
2013-08-20 17:41 - 2013-08-20 17:41 - 00000000 ___DC C:\NVIDIA
2013-08-20 17:24 - 2013-06-18 16:52 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-08-20 17:20 - 2013-05-16 22:54 - 00000000 ___DC C:\Program Files (x86)\Creative
2013-08-20 17:18 - 2013-05-16 22:57 - 00000000 ____D C:\ProgramData\Creative
2013-08-20 17:15 - 2013-05-16 20:45 - 00004116 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-08-20 17:15 - 2013-05-16 20:45 - 00003864 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-08-20 16:53 - 2013-07-31 21:43 - 00000000 __SHD C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F}
2013-08-20 16:53 - 2013-05-16 22:14 - 00000000 ____D C:\ProgramData\DriverGenius
2013-08-20 16:46 - 2013-08-20 16:21 - 00000000 ___DC C:\Program Files (x86)\TuneUp Utilities 2013
2013-08-20 16:25 - 2013-08-01 19:59 - 00000000 ___DC C:\Program Files (x86)\Cryptic Studios
2013-08-20 16:21 - 2013-08-20 16:21 - 00002225 _____ C:\Users\Public\Desktop\TuneUp 1-Klick-Wartung.lnk
2013-08-20 16:21 - 2013-08-20 16:21 - 00002207 _____ C:\Users\Public\Desktop\TuneUp Utilities 2013.lnk
2013-08-20 16:18 - 2013-08-20 16:18 - 28181424 _____ (TuneUp Software) C:\Users\Ivory\Downloads\TuneUpUtilities2013_de-DE.exe
2013-08-20 13:25 - 2013-08-07 02:28 - 00000000 ___DC C:\Program Files\PC Monitor
2013-08-20 13:18 - 2013-07-16 02:23 - 00002511 _____ C:\Users\Public\Desktop\T4E.Live Player.lnk
2013-08-20 13:18 - 2013-05-18 05:24 - 00002547 _____ C:\Users\Public\Desktop\Skype.lnk
2013-08-20 13:18 - 2013-05-18 05:24 - 00000000 ____D C:\ProgramData\Skype
2013-08-20 13:15 - 2013-08-20 12:42 - 00620128 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klif.sys
2013-08-20 13:15 - 2013-08-20 12:42 - 00090208 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klflt.sys
2013-08-20 13:15 - 2012-10-18 14:50 - 00054368 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\kltdi.sys
2013-08-20 13:15 - 2012-08-13 16:49 - 00178448 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\kneps.sys
2013-08-20 12:45 - 2013-08-20 12:45 - 00002234 _____ C:\Users\Ivory\Desktop\Sicherer Zahlungsverkehr.lnk
2013-08-20 12:43 - 2013-08-20 12:43 - 00001092 _____ C:\Users\Public\Desktop\Kaspersky PURE 3.0.lnk
2013-08-20 12:42 - 2013-08-20 12:42 - 00000000 ___DC C:\Program Files (x86)\Kaspersky Lab
2013-08-20 12:42 - 2013-08-20 12:42 - 00000000 ____D C:\Windows\ELAMBKUP
2013-08-20 12:36 - 2013-07-31 19:16 - 00000000 ____D C:\ProgramData\Avira
2013-08-20 12:35 - 2013-08-20 12:35 - 00000000 __HDC C:\kleaner.tmp
2013-08-20 12:31 - 2013-05-16 22:11 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Origin
2013-08-20 12:31 - 2013-05-16 20:52 - 00000000 ____D C:\Users\Ivory\AppData\Local\Origin
2013-08-20 12:30 - 2013-05-16 20:49 - 00000000 ___DC C:\Program Files (x86)\Origin
2013-08-20 12:29 - 2013-08-20 12:26 - 188740896 _____ (Kaspersky Lab) C:\Users\Ivory\Downloads\pure13.0.2.558DE_4340.exe
2013-08-20 12:03 - 2013-08-20 12:03 - 00000000 ___DC C:\Program Files (x86)\Samsung Magician
2013-08-20 12:03 - 2013-06-04 16:45 - 00001123 _____ C:\Users\Public\Desktop\Samsung Magician.lnk
2013-08-20 12:03 - 2013-05-16 20:32 - 00000000 ___RD C:\Users\Ivory\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-08-20 01:45 - 2013-08-20 01:45 - 00000000 ____D C:\Users\Ivory\Documents\Bank
2013-08-20 01:45 - 2013-08-20 00:24 - 00000000 ____D C:\ProgramData\AlfBanCo5
2013-08-20 01:40 - 2013-08-20 00:24 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\ALFBanCo5
2013-08-20 01:36 - 2013-08-20 01:36 - 00000000 ____D C:\Users\Ivory\AppData\Local\ALF_AG
2013-08-20 01:34 - 2013-08-20 00:48 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2013-08-20 01:33 - 2013-08-20 01:33 - 00003213 _____ C:\Windows\wininit.ini
2013-08-20 01:33 - 2013-06-09 07:52 - 00000000 ___DC C:\Program Files (x86)\Hotspot Shield
2013-08-20 01:33 - 2013-06-09 07:52 - 00000000 ____D C:\ProgramData\Hotspot Shield
2013-08-20 01:10 - 2013-05-17 17:12 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Winamp
2013-08-20 01:09 - 2013-08-20 01:09 - 00000000 ____D C:\Users\Ivory\AppData\Local\Fighters
2013-08-20 01:06 - 2013-05-17 17:12 - 00000000 ___DC C:\Program Files (x86)\Winamp
2013-08-20 01:03 - 2013-05-17 17:12 - 00000983 _____ C:\Users\Public\Desktop\Winamp.lnk
2013-08-20 01:03 - 2013-05-17 17:12 - 00000000 ___DC C:\Program Files (x86)\Winamp Detect
2013-08-20 01:02 - 2013-05-18 05:24 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Skype
2013-08-20 01:01 - 2013-05-18 05:24 - 00000000 __RDC C:\Program Files (x86)\Skype
2013-08-20 01:00 - 2013-05-16 20:50 - 00000000 ____D C:\ProgramData\Origin
2013-08-20 00:59 - 2013-08-20 00:59 - 00000000 ___DC C:\Program Files (x86)\K-Lite Codec Pack
2013-08-20 00:59 - 2013-06-18 16:52 - 00692104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-08-20 00:59 - 2013-06-18 16:52 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-08-20 00:59 - 2013-06-18 16:52 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-08-20 00:53 - 2013-08-20 00:46 - 00002160 _____ C:\Users\Public\Desktop\OUTDATEfighter.lnk
2013-08-20 00:53 - 2013-08-20 00:46 - 00000000 ___DC C:\Program Files (x86)\Fighters
2013-08-20 00:52 - 2013-05-16 20:33 - 00000822 _____ C:\Users\Public\Desktop\CCleaner.lnk
2013-08-20 00:52 - 2013-05-16 20:33 - 00000000 ___DC C:\Program Files\CCleaner
2013-08-20 00:47 - 2013-08-20 00:47 - 00001018 _____ C:\Users\Public\Desktop\SSD Fresh.lnk
2013-08-20 00:47 - 2013-08-20 00:47 - 00000000 ___DC C:\Program Files (x86)\SSD Fresh
2013-08-20 00:47 - 2013-08-20 00:47 - 00000000 ____D C:\Users\Ivory\AppData\Local\Abelssoft
2013-08-20 00:46 - 2013-08-20 00:46 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Fighters
2013-08-20 00:46 - 2013-08-20 00:46 - 00000000 ____D C:\ProgramData\Fighters
2013-08-20 00:46 - 2013-08-20 00:45 - 00000000 ____D C:\ProgramData\FreeDriverScout
2013-08-20 00:46 - 2013-05-17 03:17 - 00000000 ___DC C:\Program Files (x86)\Mozilla Firefox
2013-08-20 00:45 - 2013-08-20 00:45 - 00000000 ___DC C:\SoloApp
2013-08-20 00:45 - 2013-08-20 00:45 - 00000000 ____D C:\Users\Ivory\Documents\Freemium Driver Utilities
2013-08-20 00:44 - 2013-08-20 00:44 - 00002543 _____ C:\Users\Public\Desktop\Free Driver Scout.lnk
2013-08-20 00:44 - 2013-08-20 00:44 - 00000000 ____D C:\Windows\System32\Tasks\ProtectedSearch
2013-08-20 00:44 - 2013-08-20 00:44 - 00000000 ____D C:\Windows\System32\Tasks\Browser Updater
2013-08-20 00:43 - 2013-08-07 17:04 - 00000000 ____D C:\ProgramData\Package Cache
2013-08-20 00:29 - 2013-08-20 00:24 - 00000000 ___DC C:\Program Files (x86)\ALFBanCo5
2013-08-20 00:29 - 2009-07-14 04:34 - 00000479 _____ C:\Windows\win.ini
2013-08-20 00:28 - 2013-08-20 00:28 - 00001209 _____ C:\Users\Public\Desktop\Ashampoo Core Tuner 2.lnk
2013-08-20 00:28 - 2013-08-20 00:28 - 00000000 ___DC C:\Program Files (x86)\Ashampoo
2013-08-20 00:28 - 2013-08-20 00:28 - 00000000 ____D C:\ProgramData\Ashampoo
2013-08-20 00:24 - 2013-08-20 00:24 - 00001023 _____ C:\Users\Public\Desktop\ALF-BanCo 5.lnk
2013-08-19 20:00 - 2013-05-16 20:36 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\MyPhoneExplorer
2013-08-19 18:26 - 2013-08-19 18:26 - 00433014 _____ C:\Users\Ivory\Downloads\SfBot.zip
2013-08-19 14:02 - 2013-05-17 16:40 - 00001090 _____ C:\Users\Public\Desktop\TeamViewer 8.lnk
2013-08-18 23:30 - 2013-08-18 23:30 - 00000000 ____D C:\Users\Ivory\Desktop\Sexy
2013-08-18 23:02 - 2013-08-20 17:43 - 29337376 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 22101792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 15900936 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 13627696 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 11271968 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2013-08-18 23:02 - 2013-08-20 17:43 - 09281032 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 07720576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 07648000 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 06329552 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 02970400 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 02789152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 02007328 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 02007328 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6432680.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6432680.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 01222824 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 00681760 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 00603424 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 00586016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 00515360 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 00458528 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 00388384 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2013-08-18 23:02 - 2013-08-20 17:43 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2013-08-18 23:02 - 2013-07-31 07:15 - 15703176 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2013-08-18 23:02 - 2013-07-18 16:32 - 00022581 _____ C:\Windows\system32\nvinfo.pb
2013-08-18 23:02 - 2013-05-16 20:35 - 00061216 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2013-08-18 23:02 - 2013-05-16 20:35 - 00053024 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2013-08-18 23:02 - 2013-05-16 20:34 - 12946848 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2013-08-18 23:02 - 2013-05-16 20:34 - 02986672 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2013-08-18 23:02 - 2013-05-16 20:34 - 02630304 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2013-08-18 23:02 - 2013-05-16 20:34 - 01412832 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2013-08-18 22:27 - 2013-08-18 20:09 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\SFBot
2013-08-18 21:34 - 2013-05-16 20:35 - 06599968 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2013-08-18 21:34 - 2013-05-16 20:35 - 03452192 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2013-08-18 21:34 - 2013-05-16 20:35 - 02559776 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2013-08-18 21:34 - 2013-05-16 20:35 - 00920864 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2013-08-18 21:34 - 2013-05-16 20:35 - 00219424 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2013-08-18 21:34 - 2013-05-16 20:35 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2013-08-18 20:03 - 2013-08-18 20:02 - 08393419 _____ C:\Users\Ivory\Downloads\SFBot_v2.1.0.zip
2013-08-18 19:45 - 2013-05-16 20:33 - 00002772 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2013-08-17 07:30 - 2013-05-16 20:35 - 03319709 _____ C:\Windows\system32\nvcoproc.bin
2013-08-15 09:19 - 2009-07-14 19:58 - 00696832 _____ C:\Windows\system32\perfh007.dat
2013-08-15 09:19 - 2009-07-14 19:58 - 00148128 _____ C:\Windows\system32\perfc007.dat
2013-08-15 09:19 - 2009-07-14 07:13 - 01634396 _____ C:\Windows\system32\PerfStringBackup.INI
2013-08-15 09:18 - 2013-08-11 12:33 - 00000000 ____D C:\Windows\system32\MRT
2013-08-15 09:17 - 2013-05-19 06:50 - 78161360 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-08-15 09:07 - 2013-06-20 17:28 - 00000090 _____ C:\Users\Ivory\Desktop\pg.log
2013-08-15 09:01 - 2013-08-15 09:01 - 00000000 ____D C:\Users\Ivory\Desktop\UpSkirts
2013-08-15 08:53 - 2013-07-27 11:53 - 00000000 ____D C:\Users\Ivory\Desktop\WhatsApp Images
2013-08-14 15:59 - 2013-08-14 11:28 - 00000000 ____D C:\Users\Ivory\Documents\S3 Anwendungen
2013-08-14 13:23 - 2013-08-02 12:20 - 00001513 _____ C:\Users\Public\Desktop\OpenOffice 4.0.0.lnk
2013-08-14 11:41 - 2013-08-14 11:25 - 00000000 ____D C:\Users\Ivory\Documents\S3 Datein
2013-08-14 11:29 - 2013-08-14 11:29 - 00603209 _____ C:\Users\Ivory\Documents\Backup s3 2013-08-14.mpb
2013-08-13 08:38 - 2013-08-20 00:44 - 00032328 _____ C:\Windows\Launcher.exe
2013-08-13 07:28 - 2013-08-13 07:27 - 00000000 ____D C:\Users\Ivory\Desktop\Hot Celebs
2013-08-11 18:37 - 2013-05-16 20:44 - 00000000 __HDC C:\Program Files (x86)\InstallShield Installation Information
2013-08-11 18:36 - 2013-08-11 17:56 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\.quickorder
2013-08-11 18:33 - 2013-08-11 18:33 - 00001120 _____ C:\Users\Public\Desktop\Heroes & Generals spielen.lnk
2013-08-11 14:06 - 2013-08-11 14:06 - 00000000 ____D C:\ProgramData\launcher
2013-08-11 14:06 - 2013-08-11 14:06 - 00000000 ____D C:\ProgramData\explauncher
2013-08-11 14:06 - 2013-08-11 14:06 - 00000000 ____D C:\ProgramData\backup
2013-08-11 14:05 - 2013-08-11 14:05 - 00002413 _____ C:\Users\Public\Desktop\Paragon Backup & Recovery™ 2013 Free.lnk
2013-08-11 14:05 - 2013-08-11 14:05 - 00000000 ___DC C:\Program Files (x86)\Paragon Software
2013-08-11 12:32 - 2013-05-16 22:16 - 01590298 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2013-08-10 00:34 - 2013-05-16 22:54 - 00000316 ___RH C:\Windows\ctfile.rfc
2013-08-09 01:24 - 2013-05-16 22:18 - 00000000 ___DC C:\Program Files\TeamSpeak 3 Client
2013-08-08 07:01 - 2013-08-07 17:04 - 00002090 _____ C:\Users\Public\Desktop\MechWarrior Online.lnk
2013-08-07 19:55 - 2009-07-14 07:08 - 00032640 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-08-07 19:54 - 2013-05-18 05:46 - 00000000 ____D C:\Users\Ivory\AppData\Local\Unity
2013-08-07 17:08 - 2013-08-07 17:08 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Prism
2013-08-07 17:08 - 2013-08-07 17:08 - 00000000 ____D C:\Users\Ivory\AppData\Local\Prism
2013-08-07 17:06 - 2013-08-07 17:04 - 00000000 ___DC C:\Program Files (x86)\Piranha Games
2013-08-07 16:56 - 2013-08-07 16:56 - 00000201 _____ C:\Users\Ivory\Desktop\Iron Grip Marauders.url
2013-08-07 16:56 - 2013-07-19 01:37 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2013-08-07 03:40 - 2013-08-07 02:57 - 00000000 ____D C:\Users\Ivory\.gimp-2.8
2013-08-07 03:29 - 2013-08-07 03:29 - 00001520 _____ C:\Users\Ivory\AppData\Local\recently-used.xbel
2013-08-07 03:29 - 2013-08-07 03:00 - 00000000 ____D C:\Users\Ivory\AppData\Local\gtk-2.0
2013-08-07 03:00 - 2013-08-07 03:00 - 00000000 ____D C:\Users\Ivory\.thumbnails
2013-08-07 03:00 - 2013-05-16 20:32 - 00000000 ____D C:\Users\Ivory
2013-08-07 02:57 - 2013-08-07 02:57 - 00000000 ___DC C:\Program Files\GIMP 2
2013-08-07 02:57 - 2013-08-07 02:57 - 00000000 ____D C:\Users\Ivory\AppData\Local\gegl-0.2
2013-08-07 00:05 - 2013-06-01 17:17 - 00000000 ___DC C:\Program Files (x86)\Realtek
2013-08-06 23:04 - 2013-07-12 14:10 - 00009489 _____ C:\Windows\LDPINST.LOG
2013-08-06 23:04 - 2013-05-16 20:49 - 00015194 _____ C:\Windows\system32\lvcoinst.log
2013-08-06 23:04 - 2013-05-16 20:49 - 00000000 ___DC C:\Program Files\Common Files\logishrd
2013-08-06 23:03 - 2013-05-17 02:46 - 00001624 _____ C:\Users\Public\Desktop\Logitech Webcam Software  .lnk
2013-08-06 22:50 - 2013-08-06 22:50 - 00000627 _____ C:\Users\Public\Desktop\MP4 To MP3 Converter.lnk
2013-08-06 22:50 - 2013-08-06 22:50 - 00000000 ___DC C:\MP4ToMP3Converter
2013-08-06 20:43 - 2013-08-06 20:40 - 00000000 ____D C:\Users\Ivory\Documents\PCMark 7
2013-08-06 20:40 - 2013-08-06 20:40 - 00000000 ____D C:\Users\Ivory\AppData\Local\IsolatedStorage
2013-08-06 20:40 - 2013-08-06 20:40 - 00000000 ____D C:\Users\Ivory\AppData\Local\Futuremark_Corporation
2013-08-06 20:23 - 2013-08-06 20:23 - 00000000 ___DC C:\Program Files (x86)\Futuremark
2013-08-06 20:23 - 2013-06-26 01:22 - 00071138 _____ C:\Windows\DirectX.log
2013-08-06 20:03 - 2013-08-06 20:03 - 00000000 ___DC C:\Program Files (x86)\Geekbench 2.2
2013-08-06 20:03 - 2013-08-06 20:03 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Geekbench 2.2
2013-08-06 00:27 - 2013-05-16 20:46 - 00002183 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2013-08-04 16:54 - 2013-08-04 16:54 - 00000000 ____D C:\Users\Ivory\AppData\Local\Ascaron Entertainment
2013-08-04 15:27 - 2013-08-04 15:27 - 00000000 ____D C:\Users\Ivory\AppData\Local\THQ
2013-08-04 15:13 - 2013-08-04 15:13 - 00000000 ____D C:\Users\Ivory\AppData\Local\Risen2
2013-08-03 18:11 - 2013-08-03 18:11 - 00000201 _____ C:\Users\Ivory\Desktop\Saints Row The Third.url
2013-08-03 18:11 - 2013-08-03 18:11 - 00000201 _____ C:\Users\Ivory\Desktop\Risen 2 - Dark Waters.url
2013-08-03 17:11 - 2013-05-16 20:33 - 00064024 _____ C:\Users\Ivory\AppData\Local\GDIPFONTCACHEV1.DAT
2013-08-03 17:11 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Sidebar
2013-08-03 17:10 - 2009-07-14 06:45 - 00305112 _____ C:\Windows\system32\FNTCACHE.DAT
2013-08-02 19:29 - 2013-08-20 01:00 - 00256088 _____ C:\Windows\system32\unrar64.dll
2013-08-02 19:29 - 2013-05-17 17:23 - 00217176 _____ C:\Windows\SysWOW64\unrar.dll
2013-08-02 12:33 - 2013-08-02 12:33 - 00026451 _____ C:\Users\Ivory\Desktop\Lingen 08_2013.ods
2013-08-02 12:21 - 2013-08-02 12:21 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\OpenOffice
2013-08-02 12:20 - 2013-08-02 12:20 - 00000000 ___DC C:\Program Files (x86)\OpenOffice 4
2013-08-02 12:20 - 2013-05-16 20:34 - 00000000 ___DC C:\Program Files (x86)\OpenOffice.org 3
2013-08-01 20:20 - 2013-08-01 20:13 - 00001075 _____ C:\Users\Ivory\Desktop\Neverwinter.lnk
2013-08-01 20:20 - 2013-08-01 20:13 - 00000000 ____D C:\Users\Public\Games
2013-08-01 20:20 - 2013-05-16 22:47 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2013-08-01 20:07 - 2013-08-01 20:07 - 00000000 ___DC C:\Cryptic Studios
2013-08-01 09:20 - 2013-08-01 09:20 - 00000262 _____ C:\Users\Ivory\Desktop\Bailas Liste.txt
2013-08-01 07:16 - 2013-08-01 07:16 - 00001306 _____ C:\Users\Public\Desktop\Free YouTube Download.lnk
2013-08-01 07:16 - 2013-08-01 07:16 - 00000000 ___DC C:\Program Files (x86)\DVDVideoSoft
2013-08-01 07:16 - 2013-07-01 08:40 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\DVDVideoSoft
2013-07-31 21:44 - 2013-07-31 21:44 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\TuneUp Software
2013-07-31 21:44 - 2013-07-31 21:44 - 00000000 ____D C:\ProgramData\TuneUp Software
2013-07-31 20:59 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF
2013-07-31 07:16 - 2013-05-16 20:33 - 00000000 ___DC C:\Program Files\NVIDIA Corporation
2013-07-31 07:14 - 2013-07-31 07:14 - 00000000 ___DC C:\NvidiaLogging
2013-07-28 02:50 - 2013-05-16 22:54 - 00000000 ___DC C:\Program Files\Creative
2013-07-28 02:49 - 2013-07-09 08:22 - 00466456 _____ (Creative Labs) C:\Windows\system32\wrap_oal.dll
2013-07-28 02:49 - 2013-07-09 08:22 - 00444952 _____ (Creative Labs) C:\Windows\SysWOW64\wrap_oal.dll
2013-07-28 02:49 - 2013-07-09 08:22 - 00122904 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\system32\OpenAL32.dll
2013-07-28 02:49 - 2013-07-09 08:22 - 00109080 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\SysWOW64\OpenAL32.dll
2013-07-28 02:49 - 2013-05-16 22:55 - 00000000 __HDC C:\Program Files (x86)\Creative Installation Information
2013-07-28 02:04 - 2013-07-28 02:03 - 00011279 _____ C:\Users\Ivory\AppData\Local\CleanupUninstall.txt
2013-07-28 02:04 - 2013-07-23 06:37 - 00000000 ____D C:\Users\Ivory\AppData\Local\Razer
2013-07-28 02:04 - 2013-07-23 06:37 - 00000000 ____D C:\ProgramData\Razer
2013-07-28 00:35 - 2013-07-28 00:35 - 00002492 _____ C:\Users\Ivory\Desktop\Creative Konsole Starter.lnk
2013-07-26 23:48 - 2013-07-26 09:08 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\SurDoc
2013-07-26 09:10 - 2013-07-26 09:10 - 00000000 ____D C:\Users\Ivory\Documents\SurDoc Universal Sync
2013-07-26 09:05 - 2013-07-26 09:05 - 00000000 ____D C:\ProgramData\SVG_Client
2013-07-26 08:09 - 2013-07-31 07:15 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6432641.dll
2013-07-26 08:09 - 2013-07-31 07:15 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6432641.dll
2013-07-26 07:13 - 2013-08-15 09:21 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-07-26 07:13 - 2013-08-15 09:21 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-07-26 07:13 - 2013-08-15 09:21 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-07-26 07:12 - 2013-08-15 09:21 - 19239424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-07-26 07:12 - 2013-08-15 09:21 - 15405056 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-07-26 07:12 - 2013-08-15 09:21 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-07-26 07:12 - 2013-08-15 09:21 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-07-26 07:12 - 2013-08-15 09:21 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-07-26 07:12 - 2013-08-15 09:21 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-07-26 07:12 - 2013-08-15 09:21 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-07-26 07:12 - 2013-08-15 09:21 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-07-26 07:12 - 2013-08-15 09:21 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-07-26 07:12 - 2013-08-15 09:21 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-07-26 07:12 - 2013-08-15 09:21 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-07-26 05:35 - 2013-08-15 09:21 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-07-26 05:13 - 2013-08-15 09:21 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-07-26 05:13 - 2013-08-15 09:21 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-07-26 05:12 - 2013-08-15 09:21 - 14329344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-07-26 05:12 - 2013-08-15 09:21 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-07-26 05:12 - 2013-08-15 09:21 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-07-26 05:12 - 2013-08-15 09:21 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-07-26 05:12 - 2013-08-15 09:21 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-07-26 05:12 - 2013-08-15 09:21 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-07-26 05:12 - 2013-08-15 09:21 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-07-26 05:12 - 2013-08-15 09:21 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-07-26 05:12 - 2013-08-15 09:21 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-07-26 05:11 - 2013-08-15 09:21 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-07-26 05:11 - 2013-08-15 09:21 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-07-26 04:49 - 2013-08-15 09:21 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-07-26 04:39 - 2013-08-15 09:21 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-07-26 03:59 - 2013-08-15 09:21 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-07-25 19:06 - 2013-07-25 19:04 - 00000000 ____D C:\ProgramData\DatacardService
2013-07-25 19:05 - 2013-07-25 19:05 - 00001083 _____ C:\Users\Public\Desktop\Mobile Partner.lnk
2013-07-25 19:05 - 2013-07-25 19:05 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_ew_jubusenum_01007.Wdf
2013-07-25 19:05 - 2013-07-25 19:05 - 00000000 ____D C:\ProgramData\Mobile Partner
2013-07-25 19:05 - 2013-07-25 19:04 - 00000000 ___DC C:\Program Files (x86)\Mobile Partner
2013-07-25 19:04 - 2013-07-25 19:05 - 01490656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfCoInstaller01007.dll
2013-07-25 19:04 - 2013-07-25 19:05 - 01001472 _____ (DiBcom SA) C:\Windows\system32\Drivers\mod7700.sys
2013-07-25 19:04 - 2013-07-25 19:05 - 00421376 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbwwan.sys
2013-07-25 19:04 - 2013-07-25 19:05 - 00222464 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbmdm.sys
2013-07-25 19:04 - 2013-07-25 19:05 - 00212992 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_juwwanecm.sys
2013-07-25 19:04 - 2013-07-25 19:05 - 00117248 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_hwusbdev.sys
2013-07-25 19:04 - 2013-07-25 19:05 - 00098816 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jucdcacm.sys
2013-07-25 19:04 - 2013-07-25 19:05 - 00086016 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jubusenum.sys
2013-07-25 19:04 - 2013-07-25 19:05 - 00069632 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jucdcecm.sys
2013-07-25 19:04 - 2013-07-25 19:05 - 00032768 _____ (Huawei Tech. Co., Ltd.) C:\Windows\system32\Drivers\ewdcsc.sys
2013-07-25 19:04 - 2013-07-25 19:05 - 00028672 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_juextctrl.sys
2013-07-25 19:04 - 2013-07-25 19:05 - 00022016 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_hwupgrade.sys
2013-07-25 19:04 - 2013-07-25 19:05 - 00013952 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_usbenumfilter.sys
2013-07-25 19:04 - 2013-06-04 09:15 - 01490656 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01007.dll
2013-07-25 11:25 - 2013-08-14 21:55 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2013-07-25 10:57 - 2013-08-14 21:55 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2013-07-23 06:43 - 2013-07-23 06:43 - 00000000 ____D C:\ProgramData\RzMaelstromVAD_1.1.41.1089
2013-07-22 19:17 - 2013-07-22 19:17 - 00000000 ____D C:\Windows\System32\Tasks\Open Hardware Monitor
2013-07-22 19:13 - 2013-07-22 19:13 - 00000967 _____ C:\Users\Ivory\Desktop\TechPowerUp GPU-Z.lnk
2013-07-22 19:13 - 2013-07-22 19:13 - 00000000 ___DC C:\Program Files (x86)\GPU-Z
2013-07-22 19:13 - 2013-07-22 19:13 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TechPowerUp GPU-Z
2013-07-22 19:11 - 2013-07-22 19:09 - 00000000 ___DC C:\Program Files (x86)\Motherboard Monitor 5

==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2013-08-13 09:41

==================== End Of Log ============================
         
--- --- ---
__________________


Alt 20.08.2013, 20:56   #3
smeenk
/// Malwareteam / Visitor
 
C:\Program Files(x86)\HomeTab\TBUpdater.dll - Standard

C:\Program Files(x86)\HomeTab\TBUpdater.dll



Eine moment bitte
__________________

Alt 20.08.2013, 21:07   #4
smeenk
/// Malwareteam / Visitor
 
C:\Program Files(x86)\HomeTab\TBUpdater.dll - Standard

C:\Program Files(x86)\HomeTab\TBUpdater.dll



Bitte lade dir Zoek.exe von hier: http://hijackthis.nl/smeenk/
  • Speichere Zoek.exe auf deinem Desktop.
  • Bitte lade dir Zoekscript.txt aus den Anhang.
  • Achtung: Das angehängten Skript wurde nur für diesen speziellen Fall geschrieben und könnte andere Computer beschädigen.
  • Speichere Zoekscript.txt auf deinem Desktop(Wichtig: es muss sich in jedem Fall im gleichen Ordner wie Zoek.exe befinden)
  • Wichtig: Stelle deine Anti Viren Software temporär ab. Dies kann Zoek nämlich bei der Arbeit behindern.
  • Schließe alle laufenden Programme damit Zoek ungehindert arbeiten kann.
  • Ziehe Zoekscript.txt in die Zoek.exe wie in diesem Bild:
  • Sei geduldig bis das Skript durchläuft.
  • Wenn das Tool fertig ist wird sich Notepad mit dem Logfile öffnen (ggf. erst nach einem Neustart). Das Log befindet sich aber auch noch unter c:
  • Bitte poste mir das ZOEK-Log (möglichst in CODE-Tags - #-Symbol im Antwortfenster klicken)

Geändert von smeenk (20.08.2013 um 21:22 Uhr)

Alt 22.08.2013, 10:53   #5
Kakashi82
 
C:\Program Files(x86)\HomeTab\TBUpdater.dll - Standard

C:\Program Files(x86)\HomeTab\TBUpdater.dll



habe aus einem anderen threat das auch gemacht dort gab es aber mehr programme, nach dem ich die dann alle gemacht habe war der fehler weg, welches programm das nun letztendlich war kann ich nicht sagen habe aber die logfiles noch wenn du diese brauchst oder haben willst für andere leute damit es schneller geht.


Antwort

Themen zu C:\Program Files(x86)\HomeTab\TBUpdater.dll
0x8007042, adblock, akamai, browser, defender, desktop, ebanking, error, failed, farbar, farbar recovery scan tool, fehler, flash player, freemium, google, home, homepage, hometab\tbupdater.dll, hotspot, installation, kaspersky, mozilla, mp3, newtab, plug-in, prozess, realtek, registry, rundll, scan, services.exe, software, svchost.exe, system, teamspeak, unerwarteter fehler, whatsapp




Ähnliche Themen: C:\Program Files(x86)\HomeTab\TBUpdater.dll


  1. beim Hochfahren von Vista kommt immer diese Fehlermeldung c:\program files(x86)\hometab\tbupdater.dll
    Plagegeister aller Art und deren Bekämpfung - 29.03.2015 (9)
  2. Meldung RunDLL Program Files (x86)\HomeTab\TBUpdater.dll
    Log-Analyse und Auswertung - 26.10.2014 (28)
  3. Problem beim starten von C:\Program Files(x86)\HomeTab\TBUpdater.dll
    Log-Analyse und Auswertung - 22.08.2014 (15)
  4. C:\Program Files\HomeTab\TBUpdater.dll problem
    Plagegeister aller Art und deren Bekämpfung - 17.08.2014 (41)
  5. Fehlermeldung: Beim Starten von C:\Program Files (x86)\HomeTab\TBUpdater.dll
    Log-Analyse und Auswertung - 29.06.2014 (11)
  6. Problem beim Starten von windows Vista C:\Program files (X86)\Hometab\TBUpdater.dll kommt nach hochfahren des PC
    Plagegeister aller Art und deren Bekämpfung - 03.06.2014 (10)
  7. Problem beim Starten von C:\Program files (X86)\Hometab\TBUpdater.dll kommt nach hochfahren des PC
    Plagegeister aller Art und deren Bekämpfung - 31.05.2014 (13)
  8. Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll
    Plagegeister aller Art und deren Bekämpfung - 01.12.2013 (19)
  9. c:\program files(x86)\hometab\tbupdater.dll
    Log-Analyse und Auswertung - 05.10.2013 (14)
  10. Windows 7 C:\Program Files(x86)\HomeTab\TBUpdater.dll bekomme ständig diese meldung.
    Log-Analyse und Auswertung - 20.09.2013 (20)
  11. Problem mit dem Modul C:\Program Files\HomeTab\TBUpdater.dll wurde nicht gefunden ...
    Plagegeister aller Art und deren Bekämpfung - 24.08.2013 (9)
  12. Problem beim Windows 7 Start program files\hometab\TBUpdater.dll
    Plagegeister aller Art und deren Bekämpfung - 20.08.2013 (13)
  13. Problem beim Starten von C:\Program Files(x86)\HomeTab\TBUpdater.dll
    Log-Analyse und Auswertung - 30.07.2013 (12)
  14. C:\Program Files(x86)\HomeTab\TBUpdater.dll bekomme ständig diese meldung ,ich poste mal die 2 logfile
    Log-Analyse und Auswertung - 28.07.2013 (21)
  15. Problem beim Starten von C:\Program Files(x86)\HomeTab\TBUpdater.dll
    Plagegeister aller Art und deren Bekämpfung - 27.07.2013 (11)
  16. C:\Program Files(x86)\HomeTab\TBUpdater.dll bekomme ständig diese meldun.
    Mülltonne - 25.07.2013 (1)
  17. C:\Program Files(x86)\HomeTab\TBUpdater.dll
    Plagegeister aller Art und deren Bekämpfung - 22.06.2013 (7)

Zum Thema C:\Program Files(x86)\HomeTab\TBUpdater.dll - Code: Alles auswählen Aufklappen ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 20-08-2013 04 Ran by Ivory (administrator) on 20-08-2013 20:05:57 Running from C:\Users\Ivory\Downloads Windows 7 Ultimate - C:\Program Files(x86)\HomeTab\TBUpdater.dll...
Archiv
Du betrachtest: C:\Program Files(x86)\HomeTab\TBUpdater.dll auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.