|
Plagegeister aller Art und deren Bekämpfung: C:\Program Files(x86)\HomeTab\TBUpdater.dllWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
20.08.2013, 19:16 | #1 |
| C:\Program Files(x86)\HomeTab\TBUpdater.dllCode:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 20-08-2013 04 Ran by Ivory (administrator) on 20-08-2013 20:05:57 Running from C:\Users\Ivory\Downloads Windows 7 Ultimate Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (Creative Technology Ltd) C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe () C:\Program Files (x86)\Ashampoo\Ashampoo Core Tuner 2\ACT2Service.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe () C:\Program Files (x86)\Allway Sync\Bin\SyncService.exe (Infowatch) C:\Program Files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe () C:\ProgramData\DatacardService\HWDeviceService64.exe () C:\ProgramData\Mobile Partner\OnlineUpdate\ouc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe () C:\Windows\SysWOW64\PnkBstrA.exe () C:\Windows\SysWOW64\PnkBstrB.exe (Skype Technologies) C:\Program Files (x86)\Skype\Updater\Updater.exe (SPAMfighter ApS) C:\Program Files (x86)\Fighters\FighterSuiteService.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe (Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\ComUpdatus.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (Ashampoo Development GmbH & Co. KG) C:\Program Files (x86)\Ashampoo\Ashampoo Core Tuner 2\ACT2.exe (Akamai Technologies, Inc.) C:\Users\Ivory\AppData\Local\Akamai\netsession_win.exe (Microsoft Corporation) C:\Program Files (x86)\Windows Sidebar\sidebar.exe () C:\Users\Ivory\AppData\Local\Viber\Viber.exe (Valve Corporation) D:\Steam\Steam.exe () C:\Program Files (x86)\Allway Sync\Bin\syncappw.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesApp64.exe (Akamai Technologies, Inc.) C:\Users\Ivory\AppData\Local\Akamai\netsession_win.exe (Samsung Electronics.) C:\Program Files (x86)\Samsung Magician\Samsung Magician.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer.exe (Creative Technology Ltd.) C:\Program Files (x86)\Creative\Shared Files\Module Loader\DLLML.exe (Creative Technology Ltd) C:\Program Files (x86)\Creative\Sound Blaster X-Fi Surround 5.1\Volume Panel\VolPanlu.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe (Raptr, Inc) C:\PROGRA~2\Raptr\raptr.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\tv_w32.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\tv_x64.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Creative Technology Ltd.) C:\Program Files (x86)\Creative\ShareDLL\CADI\NotiMan.exe (Microsoft Corporation) C:\Windows\sysWOW64\wbem\wmiprvse.exe (Raptr, Inc) C:\PROGRA~2\Raptr\raptr_im.exe (Raptr Inc.) C:\Program Files (x86)\Raptr\raptr_ep64.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\sysWOW64\wbem\wmiprvse.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\wmi64.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\klwtblfs.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028896 2013-07-27] (NVIDIA Corporation) HKLM\...\Run: [Creative SB Monitoring Utility] - C:\Windows\System32\sbavmon.dll [109056 2009-06-22] (Creative Technology Ltd.) HKLM\...\Run: [Ashampoo Core Tuner 2] - C:\Program Files (x86)\Ashampoo\Ashampoo Core Tuner 2\ACT2.exe [5220768 2011-08-22] (Ashampoo Development GmbH & Co. KG) HKCU\...\Run: [Akamai NetSession Interface] - C:\Users\Ivory\AppData\Local\Akamai\netsession_win.exe [4489472 2013-06-05] (Akamai Technologies, Inc.) HKCU\...\Run: [DAEMON Tools Ultra Agent] - C:\Program Files (x86)\DAEMON Tools Ultra\DTAgent.exe [3088448 2013-03-06] (Disc Soft Ltd) HKCU\...\Run: [Raptr] - C:\PROGRA~2\Raptr\raptrstub.exe [55360 2013-07-18] (Raptr, Inc) HKCU\...\Run: [Viber] - C:\Users\Ivory\AppData\Local\Viber\Viber.exe [906240 2013-05-08] () HKCU\...\Run: [Steam] - D:\Steam\steam.exe [1807272 2013-07-27] (Valve Corporation) HKCU\...\Run: [Allway Sync] - C:\Program Files (x86)\Allway Sync\Bin\syncappw.exe [94416 2013-07-02] () HKCU\...\Run: [FreeDriverScout] - C:\Program Files\Covus Freemium\Free Driver Scout\FreeDriverScout.exe [x] HKCU\...\Run: [DLPRO-5] - C:\Program Files (x86)\Fighters\FighterLauncher.exe [859168 2013-06-05] (SPAMfighter ApS) MountPoints2: F - F:\AutoRun.exe MountPoints2: G - G:\AutoRun.exe MountPoints2: {10698ef0-bedc-11e2-b75e-806e6f6e6963} - E:\CTRun\Start.EXE MountPoints2: {45957bab-f6a1-11e2-a08f-001e101fa1f5} - G:\AutoRun.exe MountPoints2: {622316fc-befe-11e2-a397-bc5ff421ecd9} - G:\setup.exe MountPoints2: {7b2b9e6d-f535-11e2-9d4a-bc5ff421ecd9} - G:\AutoRun.exe MountPoints2: {9f7e87e6-9a23-11e1-8eae-806e6f6e6963} - E:\start.exe HKLM-x32\...\Run: [Module Loader] - C:\Program Files (x86)\Creative\Shared Files\Module Loader\DLLML.exe [57344 2007-07-23] (Creative Technology Ltd.) HKLM-x32\...\Run: [VolPanel] - C:\Program Files (x86)\Creative\Sound Blaster X-Fi Surround 5.1\Volume Panel\VolPanlu.exe [241789 2009-07-07] (Creative Technology Ltd) HKLM-x32\...\Run: [AVP] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe [356968 2012-12-20] (Kaspersky Lab ZAO) HKU\fbwuser\...\Run: [Akamai NetSession Interface] - C:\Users\Ivory\AppData\Local\Akamai\netsession_win.exe [4489472 2013-06-05] (Akamai Technologies, Inc.) HKU\fbwuser\...\Run: [DAEMON Tools Ultra Agent] - C:\Program Files (x86)\DAEMON Tools Ultra\DTAgent.exe [3088448 2013-03-06] (Disc Soft Ltd) HKU\fbwuser\...\Run: [Raptr] - C:\PROGRA~2\Raptr\raptrstub.exe [55360 2013-07-18] (Raptr, Inc) HKU\fbwuser\...\Run: [EPSON SX410 Series] - C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIFCE.EXE /FU "C:\Windows\TEMP\E_SC3BB.tmp" /EF "HKCU" [x] HKU\fbwuser\...\Run: [Viber] - C:\Users\Ivory\AppData\Local\Viber\Viber.exe [906240 2013-05-08] () HKU\fbwuser\...\Run: [CTRegRun] - C:\Windows\CTRegRun.EXE [53248 2006-10-06] (Creative Technology Ltd ) HKU\fbwuser\...\Run: [Steam] - "C:\Program Files (x86)\Steam\Steam.exe" -silent [x] HKU\fbwuser\...\Run: [CreativeTaskScheduler] - C:\Program Files (x86)\Creative\Shared Files\CTSched.exe [53341 2006-11-17] (Creative Technology Ltd) HKU\fbwuser\...\RunOnce: [CTAutoUpdate] - C:\Program Files (x86)\Creative\Shared Files\Software Update\AutoUpdate.exe [623416 2009-06-19] (Creative Technology Ltd) HKU\fbwuser\...\RunOnce: [StartMSu] - "C:\Program Files (x86)\Creative\MediaSource5\Startmsu.exe" /s [x] HKU\fbwuser\...\RunOnce: [InetReg] - "C:\Program Files (x86)\Creative\Produktregistrierung\German\InetReg.exe" /PreProcess=RegFlash.exe /Delay=6 [x] Startup: C:\Users\Ivory\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Samsung Magician.lnk ShortcutTarget: Samsung Magician.lnk -> C:\Program Files (x86)\Samsung Magician\Samsung Magician.exe (Samsung Electronics.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) BHO-x32: Kaspersky Passsword Manager Toolbar - {215BA832-75A3-426E-A4FC-7C5B58CE6A10} - C:\PROGRA~2\Kaspersky Lab\Kaspersky PURE 3.0\Kaspersky Password Manager\spIEBho.dll (Kaspersky Lab) BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) Toolbar: HKLM-x32 - No Name - {a25e7121-3dd8-41b3-855b-756c5bc45449} - No File Toolbar: HKLM-x32 - Kaspersky Passsword Manager Toolbar - {215BA832-75A3-426E-A4FC-7C5B58CE6A10} - C:\PROGRA~2\Kaspersky Lab\Kaspersky PURE 3.0\Kaspersky Password Manager\spIEBho.dll (Kaspersky Lab) DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab DPF: HKLM-x32 {D4B68B83-8710-488B-A692-D74B50BA558E} hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab DPF: HKLM-x32 {E705A591-DA3C-4228-B0D5-A356DBA42FBF} hxxp://ccfiles.creative.com/Web/softwareupdate/su2/ocx/20015/CTSUEng.cab DPF: HKLM-x32 {F6ACF75C-C32C-447B-9BEF-46B766368D29} hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/130321/CTPID.cab Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Ivory\AppData\Roaming\Mozilla\Firefox\Profiles\ziw3582p.default FF Homepage: about:home FF NewTab: hxxp://newtab.certified-toolbar.com/nff?si=99&tid=0&st=newtab FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll () FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll () FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=2.1.4 - C:\Program Files (x86)\Battlelog Web Plugins\2.1.4\npesnlaunch.dll (ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=2.1.7 - C:\Program Files (x86)\Battlelog Web Plugins\2.1.7\npesnlaunch.dll (ESN Social Software AB) FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @live.heroesandgenerals.com/npretox - C:\Program Files (x86)\Heroes & Generals\live\npretoxlive.dll (Reto-Moto ApS) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @nullsoft.com/winampDetector;version=1 - C:\Program Files (x86)\Winamp Detect\npwachk.dll (Nullsoft, Inc.) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\Ivory\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll No File FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Ivory\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Extension: No Name - C:\Users\Ivory\AppData\Roaming\Mozilla\Extensions\prism@developer.mozilla.org FF Extension: HomeTab - C:\Users\Ivory\AppData\Roaming\Mozilla\Firefox\Profiles\ziw3582p.default\Extensions\{ad7ef860-f366-4be1-8d12-4363b9356947} FF Extension: No Name - C:\Users\Ivory\AppData\Roaming\Mozilla\Firefox\Profiles\ziw3582p.default\Extensions\complitly_0.sqlite FF Extension: Hotspot Shield Helper (Please allow this installation) - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\afurladvisor@anchorfree.com FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF HKLM-x32\...\Firefox\Extensions: C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\url_advisor@kaspersky.com FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\url_advisor@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\virtual_keyboard@kaspersky.com FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\virtual_keyboard@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\content_blocker@kaspersky.com FF Extension: Content Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\content_blocker@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [anti_banner@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\anti_banner@kaspersky.com FF Extension: Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\anti_banner@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [online_banking@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\online_banking@kaspersky.com FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\online_banking@kaspersky.com Chrome: ======= CHR HomePage: hxxp://google.de/ CHR Extension: (Docs) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.0.0.6_0 CHR Extension: (Google Drive) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.2_0 CHR Extension: (YouTube) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0 CHR Extension: (Google Search) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0 CHR Extension: (Kaspersky URL Advisor) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\13.0.2.558_0 CHR Extension: (Gmail Offline) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejidjjhkpiempkbhmpbfngldlkglhimk\1.20_0 CHR Extension: (AdBlock) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.4_0 CHR Extension: (Safe Money) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\hakdifolhalapjijoafobooafbilfakh\13.0.2.558_0 CHR Extension: (Pocket Legends) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhpdbcnfpodnaefldpdohoibdajcfabp\2.0.0.0_0 CHR Extension: (Knastv\u00F6gel) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\neclhfjbfaefimgjbodbcnjemndkkfpc\3.2.6.2_0 CHR Extension: (Gmail) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0 CHR Extension: (Anti-Banner) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman\13.0.2.558_0 CHR HKLM-x32\...\Chrome\Extension: [bddpogknpjlgfpbboediomaiiaecfajn] - C:\Program Files (x86)\HomeTab\chrome\HomeTab.crx CHR HKLM-x32\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\urladvisor.crx CHR HKLM-x32\...\Chrome\Extension: [hakdifolhalapjijoafobooafbilfakh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\online_banking_chrome.crx CHR HKLM-x32\...\Chrome\Extension: [hghkgaeecgjhjkannahfamoehjmkjail] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\content_blocker_chrome.crx CHR HKLM-x32\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\virtkbd.crx CHR HKLM-x32\...\Chrome\Extension: [pjldcfjmnllhmgjclecdnfampinooman] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\ab.crx ==================== Services (Whitelisted) ================= R2 ACT2_Service; C:\Program Files (x86)\Ashampoo\Ashampoo Core Tuner 2\ACT2Service.exe [1421216 2011-08-22] () R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe [356968 2012-12-20] (Kaspersky Lab ZAO) R2 BotkindSyncService; C:\Program Files (x86)\Allway Sync\Bin\SyncService.exe [182784 2013-07-02] () R2 CSObjectsSrv; C:\Program Files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe [819040 2012-12-21] (Infowatch) S3 Disc Soft Bus Service; C:\Program Files (x86)\DAEMON Tools Ultra\DiscSoftBusService.exe [580672 2013-03-06] (Disc Soft Ltd) R2 HWDeviceService64.exe; C:\ProgramData\DatacardService\HWDeviceService64.exe [346976 2011-03-14] () S2 Mobile Partner. RunOuc; C:\Program Files (x86)\Mobile Partner\UpdateDog\ouc.exe [246112 2013-07-25] () R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-07-10] () R2 PnkBstrB; C:\Windows\SysWow64\PnkBstrB.exe [189248 2013-07-10] () R2 Suite Service; C:\Program Files (x86)\Fighters\FighterSuiteService.exe [1281568 2013-06-05] (SPAMfighter ApS) R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe [2402080 2013-01-28] (TuneUp Software) ==================== Drivers (Whitelisted) ==================== R2 ACT2PM; C:\Program Files (x86)\Ashampoo\Ashampoo Core Tuner 2\ACT2ProcessMonitor64.sys [15160 2011-06-10] () R2 ACT2PM; C:\Program Files (x86)\Ashampoo\Ashampoo Core Tuner 2\ACT2ProcessMonitor64.sys [15160 2011-06-10] () R0 CSCrySec; C:\Windows\System32\DRIVERS\CSCrySec.sys [84536 2011-06-02] (Infowatch) R1 CSVirtualDiskDrv; C:\Windows\System32\DRIVERS\CSVirtualDiskDrv.sys [66616 2011-06-02] (Infowatch) R3 dtscsibus; C:\Windows\System32\DRIVERS\dtscsibus.sys [29696 2013-05-18] (Disc Soft Ltd) R1 HssDRV6; C:\Windows\System32\DRIVERS\hssdrv6.sys [46792 2013-06-21] (AnchorFree Inc.) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458584 2012-06-19] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [620128 2013-08-20] (Kaspersky Lab ZAO) R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [28504 2012-08-02] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [29016 2012-09-03] (Kaspersky Lab) R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29528 2012-09-03] (Kaspersky Lab) R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [54368 2013-08-20] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [178448 2013-08-20] (Kaspersky Lab ZAO) R3 ksaud; C:\Windows\System32\drivers\ksaud.sys [1148288 2009-12-15] (Creative Technology Ltd.) S3 RZMAELSTROMVADService; C:\Windows\System32\drivers\RzMaelstromVAD.sys [40696 2013-05-17] (Windows (R) Win 7 DDK provider) R3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2013-06-06] (Anchorfree Inc.) R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesDriver64.sys [11880 2012-11-16] (TuneUp Software) R1 UimBus; C:\Windows\System32\DRIVERS\uimx64.sys [90960 2013-03-15] (Windows (R) 2000 DDK provider) R1 Uim_IM; C:\Windows\System32\Drivers\Uim_IMx64.sys [633680 2013-03-15] (Paragon) R1 Uim_VIM; C:\Windows\System32\Drivers\uim_vimx64.sys [390352 2013-03-15] (Paragon) S3 cpuz135; \??\C:\Users\Ivory\AppData\Local\Temp\cpuz135\cpuz135_x64.sys [x] S3 cpuz136; \??\C:\Windows\TEMP\cpuz136\cpuz136_x64.sys [x] S3 IntcAzAudAddService; system32\drivers\RTKVHD64.sys [x] S3 MBfilt; system32\drivers\MBfilt64.sys [x] S4 nvvad_WaveExtensible; system32\drivers\nvvad64v.sys [x] S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [x] S3 tsusbhub; system32\drivers\tsusbhub.sys [x] S3 VGPU; System32\drivers\rdvgkmd.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-08-20 19:58 - 2013-08-20 19:58 - 01576208 _____ (Farbar) C:\Users\Ivory\Downloads\FRST64.exe 2013-08-20 19:57 - 2013-08-20 20:03 - 00000000 ___DC C:\AdwCleaner 2013-08-20 19:56 - 2013-08-20 19:57 - 00975858 _____ C:\Users\Ivory\Downloads\adwcleaner.exe 2013-08-20 17:46 - 2013-08-20 17:46 - 00000000 ___DC C:\Program Files (x86)\AGEIA Technologies 2013-08-20 17:43 - 2013-08-18 23:02 - 29337376 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 22101792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 15900936 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 13627696 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 11271968 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2013-08-20 17:43 - 2013-08-18 23:02 - 09281032 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 07720576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 07648000 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 06329552 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 02970400 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 02789152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 02007328 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 02007328 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6432680.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6432680.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 01222824 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 00681760 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 00603424 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 00586016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 00515360 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 00458528 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 00388384 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2013-08-20 17:41 - 2013-08-20 17:41 - 00000000 ___DC C:\NVIDIA 2013-08-20 16:46 - 2013-01-28 15:19 - 00037664 _____ (TuneUp Software) C:\Windows\system32\uxtuneup.dll 2013-08-20 16:46 - 2013-01-28 15:19 - 00029984 _____ (TuneUp Software) C:\Windows\SysWOW64\uxtuneup.dll 2013-08-20 16:21 - 2013-08-20 16:46 - 00000000 ___DC C:\Program Files (x86)\TuneUp Utilities 2013 2013-08-20 16:21 - 2013-08-20 16:21 - 00002225 _____ C:\Users\Public\Desktop\TuneUp 1-Klick-Wartung.lnk 2013-08-20 16:21 - 2013-08-20 16:21 - 00002207 _____ C:\Users\Public\Desktop\TuneUp Utilities 2013.lnk 2013-08-20 16:21 - 2013-01-28 15:19 - 00035104 _____ (TuneUp Software) C:\Windows\system32\TURegOpt.exe 2013-08-20 16:21 - 2013-01-28 15:19 - 00026400 _____ (TuneUp Software) C:\Windows\system32\authuitu.dll 2013-08-20 16:21 - 2013-01-28 15:19 - 00021792 _____ (TuneUp Software) C:\Windows\SysWOW64\authuitu.dll 2013-08-20 16:18 - 2013-08-20 16:18 - 28181424 _____ (TuneUp Software) C:\Users\Ivory\Downloads\TuneUpUtilities2013_de-DE.exe 2013-08-20 12:45 - 2013-08-20 12:45 - 00002234 _____ C:\Users\Ivory\Desktop\Sicherer Zahlungsverkehr.lnk 2013-08-20 12:43 - 2013-08-20 12:43 - 00001092 _____ C:\Users\Public\Desktop\Kaspersky PURE 3.0.lnk 2013-08-20 12:43 - 2012-07-11 17:09 - 00064856 _____ (Kaspersky Lab) C:\Windows\system32\klfphc.dll 2013-08-20 12:43 - 2011-06-02 14:39 - 00084536 _____ (Infowatch) C:\Windows\system32\Drivers\CSCrySec.sys 2013-08-20 12:43 - 2011-06-02 14:39 - 00066616 _____ (Infowatch) C:\Windows\system32\Drivers\CSVirtualDiskDrv.sys 2013-08-20 12:42 - 2013-08-20 20:05 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2013-08-20 12:42 - 2013-08-20 13:15 - 00620128 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klif.sys 2013-08-20 12:42 - 2013-08-20 13:15 - 00090208 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klflt.sys 2013-08-20 12:42 - 2013-08-20 12:42 - 00000000 ___DC C:\Program Files (x86)\Kaspersky Lab 2013-08-20 12:42 - 2013-08-20 12:42 - 00000000 ____D C:\Windows\ELAMBKUP 2013-08-20 12:35 - 2013-08-20 12:35 - 00000000 __HDC C:\kleaner.tmp 2013-08-20 12:26 - 2013-08-20 12:29 - 188740896 _____ (Kaspersky Lab) C:\Users\Ivory\Downloads\pure13.0.2.558DE_4340.exe 2013-08-20 12:03 - 2013-08-20 12:03 - 00000000 ___DC C:\Program Files (x86)\Samsung Magician 2013-08-20 01:46 - 2009-06-10 23:00 - 00000824 _____ C:\Windows\system32\Drivers\etc\hosts.20130820-014601.backup 2013-08-20 01:45 - 2013-08-20 01:45 - 00000000 ____D C:\Users\Ivory\Documents\Bank 2013-08-20 01:40 - 2009-06-10 23:00 - 00000824 _____ C:\Windows\system32\Drivers\etc\hosts.20130820-014056.backup 2013-08-20 01:36 - 2013-08-20 01:36 - 00000000 ____D C:\Users\Ivory\AppData\Local\ALF_AG 2013-08-20 01:33 - 2013-08-20 01:33 - 00003213 _____ C:\Windows\wininit.ini 2013-08-20 01:09 - 2013-08-20 01:09 - 00000000 ____D C:\Users\Ivory\AppData\Local\Fighters 2013-08-20 01:02 - 2012-08-28 07:27 - 00058536 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\usbfilter.sys 2013-08-20 01:00 - 2013-08-02 19:29 - 00256088 _____ C:\Windows\system32\unrar64.dll 2013-08-20 00:59 - 2013-08-20 00:59 - 00000000 ___DC C:\Program Files (x86)\K-Lite Codec Pack 2013-08-20 00:48 - 2013-08-20 01:34 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2013-08-20 00:47 - 2013-08-20 00:47 - 00001018 _____ C:\Users\Public\Desktop\SSD Fresh.lnk 2013-08-20 00:47 - 2013-08-20 00:47 - 00000000 ___DC C:\Program Files (x86)\SSD Fresh 2013-08-20 00:47 - 2013-08-20 00:47 - 00000000 ____D C:\Users\Ivory\AppData\Local\Abelssoft 2013-08-20 00:46 - 2013-08-20 00:53 - 00002160 _____ C:\Users\Public\Desktop\OUTDATEfighter.lnk 2013-08-20 00:46 - 2013-08-20 00:53 - 00000000 ___DC C:\Program Files (x86)\Fighters 2013-08-20 00:46 - 2013-08-20 00:46 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Fighters 2013-08-20 00:46 - 2013-08-20 00:46 - 00000000 ____D C:\ProgramData\Fighters 2013-08-20 00:45 - 2013-08-20 19:51 - 00003660 _____ C:\Windows\System32\Tasks\FreeDriverScout 2013-08-20 00:45 - 2013-08-20 00:46 - 00000000 ____D C:\ProgramData\FreeDriverScout 2013-08-20 00:45 - 2013-08-20 00:45 - 00000000 ___DC C:\SoloApp 2013-08-20 00:45 - 2013-08-20 00:45 - 00000000 ____D C:\Users\Ivory\Documents\Freemium Driver Utilities 2013-08-20 00:44 - 2013-08-20 00:44 - 00002543 _____ C:\Users\Public\Desktop\Free Driver Scout.lnk 2013-08-20 00:44 - 2013-08-20 00:44 - 00000000 ____D C:\Windows\System32\Tasks\ProtectedSearch 2013-08-20 00:44 - 2013-08-20 00:44 - 00000000 ____D C:\Windows\System32\Tasks\Browser Updater 2013-08-20 00:44 - 2013-08-13 08:38 - 00032328 _____ C:\Windows\Launcher.exe 2013-08-20 00:28 - 2013-08-20 00:28 - 00001209 _____ C:\Users\Public\Desktop\Ashampoo Core Tuner 2.lnk 2013-08-20 00:28 - 2013-08-20 00:28 - 00000000 ___DC C:\Program Files (x86)\Ashampoo 2013-08-20 00:28 - 2013-08-20 00:28 - 00000000 ____D C:\ProgramData\Ashampoo 2013-08-20 00:24 - 2013-08-20 01:45 - 00000000 ____D C:\ProgramData\AlfBanCo5 2013-08-20 00:24 - 2013-08-20 01:40 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\ALFBanCo5 2013-08-20 00:24 - 2013-08-20 00:29 - 00000000 ___DC C:\Program Files (x86)\ALFBanCo5 2013-08-20 00:24 - 2013-08-20 00:24 - 00001023 _____ C:\Users\Public\Desktop\ALF-BanCo 5.lnk 2013-08-20 00:24 - 2009-06-23 12:58 - 00462848 _____ (REINER SCT ) C:\Windows\SysWOW64\rsct_ot.ocx 2013-08-20 00:24 - 2004-06-14 14:04 - 00874248 _____ (Xceed Software Inc (450) 442-2626 support@xceedsoft.com www.xceedsoft.com) C:\Windows\SysWOW64\SmartUI2.ocx 2013-08-20 00:24 - 2002-09-27 17:47 - 00442368 _____ (ComponentOne) C:\Windows\SysWOW64\vsflex7l.ocx 2013-08-20 00:24 - 2001-02-07 15:17 - 01066176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCOMCTL.1 2013-08-20 00:24 - 2000-10-01 23:00 - 00125712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VB6DE.DLL 2013-08-20 00:24 - 2000-05-21 23:00 - 01066176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscomctl.ocx 2013-08-20 00:24 - 2000-05-21 23:00 - 01009336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCHRT20.ocx 2013-08-20 00:24 - 2000-05-21 23:00 - 00140488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.ocx 2013-08-20 00:24 - 1998-07-05 23:00 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCC2DE.DLL 2013-08-20 00:24 - 1998-07-05 23:00 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CmDlgDE.dll 2013-08-20 00:24 - 1998-07-05 19:00 - 00158208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCMCDE.DLL 2013-08-19 18:26 - 2013-08-19 18:26 - 00433014 _____ C:\Users\Ivory\Downloads\SfBot.zip 2013-08-18 23:30 - 2013-08-18 23:30 - 00000000 ____D C:\Users\Ivory\Desktop\Sexy 2013-08-18 22:27 - 2011-07-21 12:44 - 20237824 _____ C:\Users\Ivory\Desktop\sfBot.exe 2013-08-18 22:27 - 2011-07-21 12:44 - 00000000 ____D C:\Users\Ivory\Desktop\data 2013-08-18 22:27 - 2011-03-21 22:19 - 00000000 ____D C:\Users\Ivory\Desktop\trans 2013-08-18 20:09 - 2013-08-18 22:27 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\SFBot 2013-08-18 20:02 - 2013-08-18 20:03 - 08393419 _____ C:\Users\Ivory\Downloads\SFBot_v2.1.0.zip 2013-08-15 09:21 - 2013-07-26 07:13 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-08-15 09:21 - 2013-07-26 07:13 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-08-15 09:21 - 2013-07-26 07:13 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-08-15 09:21 - 2013-07-26 07:12 - 19239424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-08-15 09:21 - 2013-07-26 07:12 - 15405056 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-08-15 09:21 - 2013-07-26 07:12 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-08-15 09:21 - 2013-07-26 07:12 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-08-15 09:21 - 2013-07-26 07:12 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-08-15 09:21 - 2013-07-26 07:12 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-08-15 09:21 - 2013-07-26 07:12 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-08-15 09:21 - 2013-07-26 07:12 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-08-15 09:21 - 2013-07-26 07:12 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-08-15 09:21 - 2013-07-26 07:12 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-08-15 09:21 - 2013-07-26 07:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-08-15 09:21 - 2013-07-26 05:35 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-08-15 09:21 - 2013-07-26 05:13 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-08-15 09:21 - 2013-07-26 05:13 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-08-15 09:21 - 2013-07-26 05:12 - 14329344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-08-15 09:21 - 2013-07-26 05:12 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-08-15 09:21 - 2013-07-26 05:12 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-08-15 09:21 - 2013-07-26 05:12 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-08-15 09:21 - 2013-07-26 05:12 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-08-15 09:21 - 2013-07-26 05:12 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-08-15 09:21 - 2013-07-26 05:12 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-08-15 09:21 - 2013-07-26 05:12 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-08-15 09:21 - 2013-07-26 05:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-08-15 09:21 - 2013-07-26 05:11 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-08-15 09:21 - 2013-07-26 05:11 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-08-15 09:21 - 2013-07-26 04:49 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-08-15 09:21 - 2013-07-26 04:39 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-08-15 09:21 - 2013-07-26 03:59 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-08-15 09:01 - 2013-08-15 09:01 - 00000000 ____D C:\Users\Ivory\Desktop\UpSkirts 2013-08-14 21:55 - 2013-07-25 11:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2013-08-14 21:55 - 2013-07-25 10:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2013-08-14 21:55 - 2013-07-19 03:58 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2013-08-14 21:55 - 2013-07-19 03:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2013-08-14 21:55 - 2013-07-09 08:03 - 05550528 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2013-08-14 21:55 - 2013-07-09 07:54 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2013-08-14 21:55 - 2013-07-09 07:53 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2013-08-14 21:55 - 2013-07-09 07:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2013-08-14 21:55 - 2013-07-09 07:51 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2013-08-14 21:55 - 2013-07-09 07:46 - 01472512 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-08-14 21:55 - 2013-07-09 07:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2013-08-14 21:55 - 2013-07-09 07:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2013-08-14 21:55 - 2013-07-09 07:03 - 03968960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2013-08-14 21:55 - 2013-07-09 07:03 - 03913664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2013-08-14 21:55 - 2013-07-09 06:53 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2013-08-14 21:55 - 2013-07-09 06:52 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2013-08-14 21:55 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2013-08-14 21:55 - 2013-07-09 06:52 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2013-08-14 21:55 - 2013-07-09 06:46 - 01166848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-08-14 21:55 - 2013-07-09 06:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2013-08-14 21:55 - 2013-07-09 06:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2013-08-14 21:55 - 2013-07-09 04:49 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2013-08-14 21:55 - 2013-07-09 04:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2013-08-14 21:55 - 2013-07-09 04:49 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2013-08-14 21:55 - 2013-07-09 04:49 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2013-08-14 21:55 - 2013-07-06 08:03 - 01910208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2013-08-14 21:55 - 2013-06-15 06:35 - 01111552 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2013-08-14 21:55 - 2013-06-15 06:32 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 2013-08-14 15:42 - 2013-06-26 13:45 - 27927315 _____ C:\Users\Ivory\Desktop\Mein Film.mp4 2013-08-14 15:42 - 2012-11-23 04:01 - 29599649 _____ C:\Users\Ivory\Desktop\Mein Film 4.mp4 2013-08-14 11:29 - 2013-08-14 11:29 - 00603209 _____ C:\Users\Ivory\Documents\Backup s3 2013-08-14.mpb 2013-08-14 11:28 - 2013-08-14 15:59 - 00000000 ____D C:\Users\Ivory\Documents\S3 Anwendungen 2013-08-14 11:25 - 2013-08-14 11:41 - 00000000 ____D C:\Users\Ivory\Documents\S3 Datein 2013-08-13 07:27 - 2013-08-13 07:28 - 00000000 ____D C:\Users\Ivory\Desktop\Hot Celebs 2013-08-11 18:33 - 2013-08-20 19:53 - 00000000 ___DC C:\Program Files (x86)\Heroes & Generals 2013-08-11 18:33 - 2013-08-11 18:33 - 00001120 _____ C:\Users\Public\Desktop\Heroes & Generals spielen.lnk 2013-08-11 17:56 - 2013-08-11 18:36 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\.quickorder 2013-08-11 14:06 - 2013-08-11 14:06 - 00000000 ____D C:\ProgramData\launcher 2013-08-11 14:06 - 2013-08-11 14:06 - 00000000 ____D C:\ProgramData\explauncher 2013-08-11 14:06 - 2013-08-11 14:06 - 00000000 ____D C:\ProgramData\backup 2013-08-11 14:05 - 2013-08-11 14:05 - 00002413 _____ C:\Users\Public\Desktop\Paragon Backup & Recovery™ 2013 Free.lnk 2013-08-11 14:05 - 2013-08-11 14:05 - 00000000 ___DC C:\Program Files (x86)\Paragon Software 2013-08-11 12:33 - 2013-08-15 09:18 - 00000000 ____D C:\Windows\system32\MRT 2013-08-07 17:08 - 2013-08-07 17:08 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Prism 2013-08-07 17:08 - 2013-08-07 17:08 - 00000000 ____D C:\Users\Ivory\AppData\Local\Prism 2013-08-07 17:04 - 2013-08-20 00:43 - 00000000 ____D C:\ProgramData\Package Cache 2013-08-07 17:04 - 2013-08-08 07:01 - 00002090 _____ C:\Users\Public\Desktop\MechWarrior Online.lnk 2013-08-07 17:04 - 2013-08-07 17:06 - 00000000 ___DC C:\Program Files (x86)\Piranha Games 2013-08-07 16:56 - 2013-08-07 16:56 - 00000201 _____ C:\Users\Ivory\Desktop\Iron Grip Marauders.url 2013-08-07 03:29 - 2013-08-07 03:29 - 00001520 _____ C:\Users\Ivory\AppData\Local\recently-used.xbel 2013-08-07 03:00 - 2013-08-07 03:29 - 00000000 ____D C:\Users\Ivory\AppData\Local\gtk-2.0 2013-08-07 03:00 - 2013-08-07 03:00 - 00000000 ____D C:\Users\Ivory\.thumbnails 2013-08-07 02:57 - 2013-08-07 03:40 - 00000000 ____D C:\Users\Ivory\.gimp-2.8 2013-08-07 02:57 - 2013-08-07 02:57 - 00000000 ___DC C:\Program Files\GIMP 2 2013-08-07 02:57 - 2013-08-07 02:57 - 00000000 ____D C:\Users\Ivory\AppData\Local\gegl-0.2 2013-08-07 02:28 - 2013-08-20 13:25 - 00000000 ___DC C:\Program Files\PC Monitor 2013-08-07 00:05 - 2013-06-18 16:22 - 00872152 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys 2013-08-07 00:05 - 2013-06-18 16:22 - 00074456 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll 2013-08-06 22:50 - 2013-08-06 22:50 - 00000627 _____ C:\Users\Public\Desktop\MP4 To MP3 Converter.lnk 2013-08-06 22:50 - 2013-08-06 22:50 - 00000000 ___DC C:\MP4ToMP3Converter 2013-08-06 20:40 - 2013-08-06 20:43 - 00000000 ____D C:\Users\Ivory\Documents\PCMark 7 2013-08-06 20:40 - 2013-08-06 20:40 - 00000000 ____D C:\Users\Ivory\AppData\Local\IsolatedStorage 2013-08-06 20:40 - 2013-08-06 20:40 - 00000000 ____D C:\Users\Ivory\AppData\Local\Futuremark_Corporation 2013-08-06 20:23 - 2013-08-06 20:23 - 00000000 ___DC C:\Program Files (x86)\Futuremark 2013-08-06 20:03 - 2013-08-06 20:03 - 00000000 ___DC C:\Program Files (x86)\Geekbench 2.2 2013-08-06 20:03 - 2013-08-06 20:03 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Geekbench 2.2 2013-08-06 08:07 - 2013-05-29 23:33 - 231939659 _____ C:\Users\Ivory\Downloads\Crazy Kiya Re - Dhoom 2 (2006) _HD_ 1080p _BluRay_ Music Video(1080p_H.264-AAC).mp4 2013-08-04 16:54 - 2013-08-04 16:54 - 00000000 ____D C:\Users\Ivory\AppData\Local\Ascaron Entertainment 2013-08-04 15:27 - 2013-08-04 15:27 - 00000000 ____D C:\Users\Ivory\AppData\Local\THQ 2013-08-04 15:27 - 2008-07-12 08:18 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2013-08-04 15:27 - 2008-07-12 08:18 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2013-08-04 15:27 - 2008-07-12 08:18 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2013-08-04 15:13 - 2013-08-04 15:13 - 00000000 ____D C:\Users\Ivory\AppData\Local\Risen2 2013-08-03 18:11 - 2013-08-03 18:11 - 00000201 _____ C:\Users\Ivory\Desktop\Saints Row The Third.url 2013-08-03 18:11 - 2013-08-03 18:11 - 00000201 _____ C:\Users\Ivory\Desktop\Risen 2 - Dark Waters.url 2013-08-02 12:33 - 2013-08-02 12:33 - 00026451 _____ C:\Users\Ivory\Desktop\Lingen 08_2013.ods 2013-08-02 12:21 - 2013-08-02 12:21 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\OpenOffice 2013-08-02 12:20 - 2013-08-14 13:23 - 00001513 _____ C:\Users\Public\Desktop\OpenOffice 4.0.0.lnk 2013-08-02 12:20 - 2013-08-02 12:20 - 00000000 ___DC C:\Program Files (x86)\OpenOffice 4 2013-08-01 20:13 - 2013-08-01 20:20 - 00001075 _____ C:\Users\Ivory\Desktop\Neverwinter.lnk 2013-08-01 20:13 - 2013-08-01 20:20 - 00000000 ____D C:\Users\Public\Games 2013-08-01 20:07 - 2013-08-01 20:07 - 00000000 ___DC C:\Cryptic Studios 2013-08-01 19:59 - 2013-08-20 16:25 - 00000000 ___DC C:\Program Files (x86)\Cryptic Studios 2013-08-01 09:20 - 2013-08-01 09:20 - 00000262 _____ C:\Users\Ivory\Desktop\Bailas Liste.txt 2013-08-01 07:16 - 2013-08-01 07:16 - 00001306 _____ C:\Users\Public\Desktop\Free YouTube Download.lnk 2013-08-01 07:16 - 2013-08-01 07:16 - 00000000 ___DC C:\Program Files (x86)\DVDVideoSoft 2013-07-31 21:44 - 2013-07-31 21:44 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\TuneUp Software 2013-07-31 21:44 - 2013-07-31 21:44 - 00000000 ____D C:\ProgramData\TuneUp Software 2013-07-31 21:43 - 2013-08-20 16:53 - 00000000 __SHD C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F} 2013-07-31 21:11 - 2012-05-10 00:11 - 00000291 _____ C:\Windows\onlineeye.INI 2013-07-31 19:16 - 2013-08-20 12:36 - 00000000 ____D C:\ProgramData\Avira 2013-07-31 07:15 - 2013-08-18 23:02 - 15703176 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2013-07-31 07:15 - 2013-07-26 08:09 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6432641.dll 2013-07-31 07:15 - 2013-07-26 08:09 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6432641.dll 2013-07-31 07:14 - 2013-07-31 07:14 - 00000000 ___DC C:\NvidiaLogging 2013-07-28 02:49 - 2009-10-28 11:06 - 02902492 ____N (Creative) C:\Windows\SysWOW64\Sens_oal.dll 2013-07-28 02:45 - 2009-12-15 10:24 - 01148288 _____ (Creative Technology Ltd.) C:\Windows\system32\Drivers\ksaud.sys 2013-07-28 02:45 - 2009-12-07 11:29 - 00232960 _____ (Creative Technology Ltd.) C:\Windows\system32\KSVSPI64.dll 2013-07-28 02:45 - 2009-12-07 11:29 - 00173056 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\KSVSPI32.dll 2013-07-28 02:45 - 2009-11-19 14:59 - 00028635 _____ C:\Windows\system32\ksaud.ini 2013-07-28 02:45 - 2009-06-22 13:13 - 00109056 _____ (Creative Technology Ltd.) C:\Windows\system32\SBAVMon.dll 2013-07-28 02:45 - 2008-11-06 11:47 - 00008096 _____ C:\Windows\system32\MixerDefault.reg 2013-07-28 02:03 - 2013-07-28 02:04 - 00011279 _____ C:\Users\Ivory\AppData\Local\CleanupUninstall.txt 2013-07-28 00:54 - 2009-12-08 15:52 - 00230912 _____ C:\Windows\system32\APOMgr64.DLL 2013-07-28 00:54 - 2009-12-08 15:50 - 00177664 _____ C:\Windows\SysWOW64\APOMngr.DLL 2013-07-28 00:54 - 2009-11-30 18:54 - 00089088 _____ C:\Windows\system32\CmdRtr64.DLL 2013-07-28 00:54 - 2009-11-30 18:53 - 00073728 _____ C:\Windows\SysWOW64\CmdRtr.DLL 2013-07-28 00:54 - 2009-10-28 11:08 - 01939968 ____N (Creative) C:\Windows\system32\Sens_oal.dll 2013-07-28 00:54 - 2007-07-16 11:36 - 00000029 _____ C:\Windows\system32\ctzapxx.ini 2013-07-28 00:54 - 2007-07-09 04:59 - 00782336 ____R (Creative Labs Inc.) C:\Windows\SysWOW64\tmp6F94.tmp 2013-07-28 00:35 - 2013-07-28 00:35 - 00002492 _____ C:\Users\Ivory\Desktop\Creative Konsole Starter.lnk 2013-07-27 20:28 - 2007-07-09 04:59 - 00782336 ____R (Creative Labs Inc.) C:\Windows\SysWOW64\tmpDE00.tmp 2013-07-27 11:53 - 2013-08-15 08:53 - 00000000 ____D C:\Users\Ivory\Desktop\WhatsApp Images 2013-07-26 09:10 - 2013-07-26 09:10 - 00000000 ____D C:\Users\Ivory\Documents\SurDoc Universal Sync 2013-07-26 09:08 - 2013-07-26 23:48 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\SurDoc 2013-07-26 09:05 - 2013-07-26 09:05 - 00000000 ____D C:\ProgramData\SVG_Client 2013-07-25 19:05 - 2013-07-25 19:05 - 00001083 _____ C:\Users\Public\Desktop\Mobile Partner.lnk 2013-07-25 19:05 - 2013-07-25 19:05 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_ew_jubusenum_01007.Wdf 2013-07-25 19:05 - 2013-07-25 19:05 - 00000000 ____D C:\ProgramData\Mobile Partner 2013-07-25 19:05 - 2013-07-25 19:04 - 01490656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfCoInstaller01007.dll 2013-07-25 19:05 - 2013-07-25 19:04 - 01001472 _____ (DiBcom SA) C:\Windows\system32\Drivers\mod7700.sys 2013-07-25 19:05 - 2013-07-25 19:04 - 00421376 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbwwan.sys 2013-07-25 19:05 - 2013-07-25 19:04 - 00222464 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbmdm.sys 2013-07-25 19:05 - 2013-07-25 19:04 - 00212992 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_juwwanecm.sys 2013-07-25 19:05 - 2013-07-25 19:04 - 00117248 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_hwusbdev.sys 2013-07-25 19:05 - 2013-07-25 19:04 - 00098816 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jucdcacm.sys 2013-07-25 19:05 - 2013-07-25 19:04 - 00086016 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jubusenum.sys 2013-07-25 19:05 - 2013-07-25 19:04 - 00069632 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jucdcecm.sys 2013-07-25 19:05 - 2013-07-25 19:04 - 00032768 _____ (Huawei Tech. Co., Ltd.) C:\Windows\system32\Drivers\ewdcsc.sys 2013-07-25 19:05 - 2013-07-25 19:04 - 00028672 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_juextctrl.sys 2013-07-25 19:05 - 2013-07-25 19:04 - 00022016 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_hwupgrade.sys 2013-07-25 19:05 - 2013-07-25 19:04 - 00013952 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_usbenumfilter.sys 2013-07-25 19:04 - 2013-07-25 19:06 - 00000000 ____D C:\ProgramData\DatacardService 2013-07-25 19:04 - 2013-07-25 19:05 - 00000000 ___DC C:\Program Files (x86)\Mobile Partner 2013-07-23 06:43 - 2013-07-23 06:43 - 00000000 ____D C:\ProgramData\RzMaelstromVAD_1.1.41.1089 2013-07-23 06:37 - 2013-07-28 02:04 - 00000000 ____D C:\Users\Ivory\AppData\Local\Razer 2013-07-23 06:37 - 2013-07-28 02:04 - 00000000 ____D C:\ProgramData\Razer 2013-07-22 19:17 - 2013-07-22 19:17 - 00000000 ____D C:\Windows\System32\Tasks\Open Hardware Monitor 2013-07-22 19:13 - 2013-07-22 19:13 - 00000967 _____ C:\Users\Ivory\Desktop\TechPowerUp GPU-Z.lnk 2013-07-22 19:13 - 2013-07-22 19:13 - 00000000 ___DC C:\Program Files (x86)\GPU-Z 2013-07-22 19:13 - 2013-07-22 19:13 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TechPowerUp GPU-Z 2013-07-22 19:09 - 2013-07-22 19:11 - 00000000 ___DC C:\Program Files (x86)\Motherboard Monitor 5 ==================== One Month Modified Files and Folders ======= 2013-08-20 20:05 - 2013-08-20 12:42 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2013-08-20 20:04 - 2013-06-13 13:36 - 00041370 _____ C:\Windows\setupact.log 2013-08-20 20:04 - 2013-06-12 22:42 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\ViberPC 2013-08-20 20:04 - 2013-06-12 22:42 - 00000000 ____D C:\Users\Ivory\AppData\Local\Viber 2013-08-20 20:04 - 2013-05-18 12:45 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Raptr 2013-08-20 20:04 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-08-20 20:03 - 2013-08-20 19:57 - 00000000 ___DC C:\AdwCleaner 2013-08-20 20:03 - 2013-05-16 20:32 - 01976091 _____ C:\Windows\WindowsUpdate.log 2013-08-20 20:02 - 2013-08-20 20:02 - 00000000 ___DC C:\FRST 2013-08-20 19:58 - 2013-08-20 19:58 - 01576208 _____ (Farbar) C:\Users\Ivory\Downloads\FRST64.exe 2013-08-20 19:58 - 2009-07-14 06:45 - 00014336 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-08-20 19:58 - 2009-07-14 06:45 - 00014336 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-08-20 19:57 - 2013-08-20 19:56 - 00975858 _____ C:\Users\Ivory\Downloads\adwcleaner.exe 2013-08-20 19:53 - 2013-08-11 18:33 - 00000000 ___DC C:\Program Files (x86)\Heroes & Generals 2013-08-20 19:51 - 2013-08-20 00:45 - 00003660 _____ C:\Windows\System32\Tasks\FreeDriverScout 2013-08-20 19:51 - 2013-06-13 20:20 - 01080016 _____ C:\Windows\PFRO.log 2013-08-20 19:51 - 2013-05-16 22:32 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\TS3Client 2013-08-20 19:51 - 2013-05-16 20:45 - 00001108 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-08-20 19:51 - 2013-05-16 20:45 - 00001104 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-08-20 17:46 - 2013-08-20 17:46 - 00000000 ___DC C:\Program Files (x86)\AGEIA Technologies 2013-08-20 17:46 - 2013-05-16 20:35 - 00000000 ___DC C:\Program Files (x86)\NVIDIA Corporation 2013-08-20 17:46 - 2013-05-16 20:35 - 00000000 ____D C:\ProgramData\NVIDIA 2013-08-20 17:41 - 2013-08-20 17:41 - 00000000 ___DC C:\NVIDIA 2013-08-20 17:24 - 2013-06-18 16:52 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-08-20 17:20 - 2013-05-16 22:54 - 00000000 ___DC C:\Program Files (x86)\Creative 2013-08-20 17:18 - 2013-05-16 22:57 - 00000000 ____D C:\ProgramData\Creative 2013-08-20 17:15 - 2013-05-16 20:45 - 00004116 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2013-08-20 17:15 - 2013-05-16 20:45 - 00003864 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2013-08-20 16:53 - 2013-07-31 21:43 - 00000000 __SHD C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F} 2013-08-20 16:53 - 2013-05-16 22:14 - 00000000 ____D C:\ProgramData\DriverGenius 2013-08-20 16:46 - 2013-08-20 16:21 - 00000000 ___DC C:\Program Files (x86)\TuneUp Utilities 2013 2013-08-20 16:25 - 2013-08-01 19:59 - 00000000 ___DC C:\Program Files (x86)\Cryptic Studios 2013-08-20 16:21 - 2013-08-20 16:21 - 00002225 _____ C:\Users\Public\Desktop\TuneUp 1-Klick-Wartung.lnk 2013-08-20 16:21 - 2013-08-20 16:21 - 00002207 _____ C:\Users\Public\Desktop\TuneUp Utilities 2013.lnk 2013-08-20 16:18 - 2013-08-20 16:18 - 28181424 _____ (TuneUp Software) C:\Users\Ivory\Downloads\TuneUpUtilities2013_de-DE.exe 2013-08-20 13:25 - 2013-08-07 02:28 - 00000000 ___DC C:\Program Files\PC Monitor 2013-08-20 13:18 - 2013-07-16 02:23 - 00002511 _____ C:\Users\Public\Desktop\T4E.Live Player.lnk 2013-08-20 13:18 - 2013-05-18 05:24 - 00002547 _____ C:\Users\Public\Desktop\Skype.lnk 2013-08-20 13:18 - 2013-05-18 05:24 - 00000000 ____D C:\ProgramData\Skype 2013-08-20 13:15 - 2013-08-20 12:42 - 00620128 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klif.sys 2013-08-20 13:15 - 2013-08-20 12:42 - 00090208 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klflt.sys 2013-08-20 13:15 - 2012-10-18 14:50 - 00054368 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\kltdi.sys 2013-08-20 13:15 - 2012-08-13 16:49 - 00178448 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\kneps.sys 2013-08-20 12:45 - 2013-08-20 12:45 - 00002234 _____ C:\Users\Ivory\Desktop\Sicherer Zahlungsverkehr.lnk 2013-08-20 12:43 - 2013-08-20 12:43 - 00001092 _____ C:\Users\Public\Desktop\Kaspersky PURE 3.0.lnk 2013-08-20 12:42 - 2013-08-20 12:42 - 00000000 ___DC C:\Program Files (x86)\Kaspersky Lab 2013-08-20 12:42 - 2013-08-20 12:42 - 00000000 ____D C:\Windows\ELAMBKUP 2013-08-20 12:36 - 2013-07-31 19:16 - 00000000 ____D C:\ProgramData\Avira 2013-08-20 12:35 - 2013-08-20 12:35 - 00000000 __HDC C:\kleaner.tmp 2013-08-20 12:31 - 2013-05-16 22:11 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Origin 2013-08-20 12:31 - 2013-05-16 20:52 - 00000000 ____D C:\Users\Ivory\AppData\Local\Origin 2013-08-20 12:30 - 2013-05-16 20:49 - 00000000 ___DC C:\Program Files (x86)\Origin 2013-08-20 12:29 - 2013-08-20 12:26 - 188740896 _____ (Kaspersky Lab) C:\Users\Ivory\Downloads\pure13.0.2.558DE_4340.exe 2013-08-20 12:03 - 2013-08-20 12:03 - 00000000 ___DC C:\Program Files (x86)\Samsung Magician 2013-08-20 12:03 - 2013-06-04 16:45 - 00001123 _____ C:\Users\Public\Desktop\Samsung Magician.lnk 2013-08-20 12:03 - 2013-05-16 20:32 - 00000000 ___RD C:\Users\Ivory\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-08-20 01:45 - 2013-08-20 01:45 - 00000000 ____D C:\Users\Ivory\Documents\Bank 2013-08-20 01:45 - 2013-08-20 00:24 - 00000000 ____D C:\ProgramData\AlfBanCo5 2013-08-20 01:40 - 2013-08-20 00:24 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\ALFBanCo5 2013-08-20 01:36 - 2013-08-20 01:36 - 00000000 ____D C:\Users\Ivory\AppData\Local\ALF_AG 2013-08-20 01:34 - 2013-08-20 00:48 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2013-08-20 01:33 - 2013-08-20 01:33 - 00003213 _____ C:\Windows\wininit.ini 2013-08-20 01:33 - 2013-06-09 07:52 - 00000000 ___DC C:\Program Files (x86)\Hotspot Shield 2013-08-20 01:33 - 2013-06-09 07:52 - 00000000 ____D C:\ProgramData\Hotspot Shield 2013-08-20 01:10 - 2013-05-17 17:12 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Winamp 2013-08-20 01:09 - 2013-08-20 01:09 - 00000000 ____D C:\Users\Ivory\AppData\Local\Fighters 2013-08-20 01:06 - 2013-05-17 17:12 - 00000000 ___DC C:\Program Files (x86)\Winamp 2013-08-20 01:03 - 2013-05-17 17:12 - 00000983 _____ C:\Users\Public\Desktop\Winamp.lnk 2013-08-20 01:03 - 2013-05-17 17:12 - 00000000 ___DC C:\Program Files (x86)\Winamp Detect 2013-08-20 01:02 - 2013-05-18 05:24 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Skype 2013-08-20 01:01 - 2013-05-18 05:24 - 00000000 __RDC C:\Program Files (x86)\Skype 2013-08-20 01:00 - 2013-05-16 20:50 - 00000000 ____D C:\ProgramData\Origin 2013-08-20 00:59 - 2013-08-20 00:59 - 00000000 ___DC C:\Program Files (x86)\K-Lite Codec Pack 2013-08-20 00:59 - 2013-06-18 16:52 - 00692104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-08-20 00:59 - 2013-06-18 16:52 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-08-20 00:59 - 2013-06-18 16:52 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-08-20 00:53 - 2013-08-20 00:46 - 00002160 _____ C:\Users\Public\Desktop\OUTDATEfighter.lnk 2013-08-20 00:53 - 2013-08-20 00:46 - 00000000 ___DC C:\Program Files (x86)\Fighters 2013-08-20 00:52 - 2013-05-16 20:33 - 00000822 _____ C:\Users\Public\Desktop\CCleaner.lnk 2013-08-20 00:52 - 2013-05-16 20:33 - 00000000 ___DC C:\Program Files\CCleaner 2013-08-20 00:47 - 2013-08-20 00:47 - 00001018 _____ C:\Users\Public\Desktop\SSD Fresh.lnk 2013-08-20 00:47 - 2013-08-20 00:47 - 00000000 ___DC C:\Program Files (x86)\SSD Fresh 2013-08-20 00:47 - 2013-08-20 00:47 - 00000000 ____D C:\Users\Ivory\AppData\Local\Abelssoft 2013-08-20 00:46 - 2013-08-20 00:46 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Fighters 2013-08-20 00:46 - 2013-08-20 00:46 - 00000000 ____D C:\ProgramData\Fighters 2013-08-20 00:46 - 2013-08-20 00:45 - 00000000 ____D C:\ProgramData\FreeDriverScout 2013-08-20 00:46 - 2013-05-17 03:17 - 00000000 ___DC C:\Program Files (x86)\Mozilla Firefox 2013-08-20 00:45 - 2013-08-20 00:45 - 00000000 ___DC C:\SoloApp 2013-08-20 00:45 - 2013-08-20 00:45 - 00000000 ____D C:\Users\Ivory\Documents\Freemium Driver Utilities 2013-08-20 00:44 - 2013-08-20 00:44 - 00002543 _____ C:\Users\Public\Desktop\Free Driver Scout.lnk 2013-08-20 00:44 - 2013-08-20 00:44 - 00000000 ____D C:\Windows\System32\Tasks\ProtectedSearch 2013-08-20 00:44 - 2013-08-20 00:44 - 00000000 ____D C:\Windows\System32\Tasks\Browser Updater 2013-08-20 00:43 - 2013-08-07 17:04 - 00000000 ____D C:\ProgramData\Package Cache 2013-08-20 00:29 - 2013-08-20 00:24 - 00000000 ___DC C:\Program Files (x86)\ALFBanCo5 2013-08-20 00:29 - 2009-07-14 04:34 - 00000479 _____ C:\Windows\win.ini 2013-08-20 00:28 - 2013-08-20 00:28 - 00001209 _____ C:\Users\Public\Desktop\Ashampoo Core Tuner 2.lnk 2013-08-20 00:28 - 2013-08-20 00:28 - 00000000 ___DC C:\Program Files (x86)\Ashampoo 2013-08-20 00:28 - 2013-08-20 00:28 - 00000000 ____D C:\ProgramData\Ashampoo 2013-08-20 00:24 - 2013-08-20 00:24 - 00001023 _____ C:\Users\Public\Desktop\ALF-BanCo 5.lnk 2013-08-19 20:00 - 2013-05-16 20:36 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\MyPhoneExplorer 2013-08-19 18:26 - 2013-08-19 18:26 - 00433014 _____ C:\Users\Ivory\Downloads\SfBot.zip 2013-08-19 14:02 - 2013-05-17 16:40 - 00001090 _____ C:\Users\Public\Desktop\TeamViewer 8.lnk 2013-08-18 23:30 - 2013-08-18 23:30 - 00000000 ____D C:\Users\Ivory\Desktop\Sexy 2013-08-18 23:02 - 2013-08-20 17:43 - 29337376 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 22101792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 15900936 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 13627696 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 11271968 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2013-08-18 23:02 - 2013-08-20 17:43 - 09281032 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 07720576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 07648000 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 06329552 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 02970400 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 02789152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 02007328 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 02007328 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6432680.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6432680.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 01222824 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 00681760 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 00603424 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 00586016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 00515360 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 00458528 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 00388384 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2013-08-18 23:02 - 2013-07-31 07:15 - 15703176 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2013-08-18 23:02 - 2013-07-18 16:32 - 00022581 _____ C:\Windows\system32\nvinfo.pb 2013-08-18 23:02 - 2013-05-16 20:35 - 00061216 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2013-08-18 23:02 - 2013-05-16 20:35 - 00053024 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2013-08-18 23:02 - 2013-05-16 20:34 - 12946848 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2013-08-18 23:02 - 2013-05-16 20:34 - 02986672 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2013-08-18 23:02 - 2013-05-16 20:34 - 02630304 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2013-08-18 23:02 - 2013-05-16 20:34 - 01412832 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2013-08-18 22:27 - 2013-08-18 20:09 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\SFBot 2013-08-18 21:34 - 2013-05-16 20:35 - 06599968 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2013-08-18 21:34 - 2013-05-16 20:35 - 03452192 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2013-08-18 21:34 - 2013-05-16 20:35 - 02559776 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2013-08-18 21:34 - 2013-05-16 20:35 - 00920864 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2013-08-18 21:34 - 2013-05-16 20:35 - 00219424 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2013-08-18 21:34 - 2013-05-16 20:35 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2013-08-18 20:03 - 2013-08-18 20:02 - 08393419 _____ C:\Users\Ivory\Downloads\SFBot_v2.1.0.zip 2013-08-18 19:45 - 2013-05-16 20:33 - 00002772 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC 2013-08-17 07:30 - 2013-05-16 20:35 - 03319709 _____ C:\Windows\system32\nvcoproc.bin 2013-08-15 09:19 - 2009-07-14 19:58 - 00696832 _____ C:\Windows\system32\perfh007.dat 2013-08-15 09:19 - 2009-07-14 19:58 - 00148128 _____ C:\Windows\system32\perfc007.dat 2013-08-15 09:19 - 2009-07-14 07:13 - 01634396 _____ C:\Windows\system32\PerfStringBackup.INI 2013-08-15 09:18 - 2013-08-11 12:33 - 00000000 ____D C:\Windows\system32\MRT 2013-08-15 09:17 - 2013-05-19 06:50 - 78161360 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-08-15 09:07 - 2013-06-20 17:28 - 00000090 _____ C:\Users\Ivory\Desktop\pg.log 2013-08-15 09:01 - 2013-08-15 09:01 - 00000000 ____D C:\Users\Ivory\Desktop\UpSkirts 2013-08-15 08:53 - 2013-07-27 11:53 - 00000000 ____D C:\Users\Ivory\Desktop\WhatsApp Images 2013-08-14 15:59 - 2013-08-14 11:28 - 00000000 ____D C:\Users\Ivory\Documents\S3 Anwendungen 2013-08-14 13:23 - 2013-08-02 12:20 - 00001513 _____ C:\Users\Public\Desktop\OpenOffice 4.0.0.lnk 2013-08-14 11:41 - 2013-08-14 11:25 - 00000000 ____D C:\Users\Ivory\Documents\S3 Datein 2013-08-14 11:29 - 2013-08-14 11:29 - 00603209 _____ C:\Users\Ivory\Documents\Backup s3 2013-08-14.mpb 2013-08-13 08:38 - 2013-08-20 00:44 - 00032328 _____ C:\Windows\Launcher.exe 2013-08-13 07:28 - 2013-08-13 07:27 - 00000000 ____D C:\Users\Ivory\Desktop\Hot Celebs 2013-08-11 18:37 - 2013-05-16 20:44 - 00000000 __HDC C:\Program Files (x86)\InstallShield Installation Information 2013-08-11 18:36 - 2013-08-11 17:56 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\.quickorder 2013-08-11 18:33 - 2013-08-11 18:33 - 00001120 _____ C:\Users\Public\Desktop\Heroes & Generals spielen.lnk 2013-08-11 14:06 - 2013-08-11 14:06 - 00000000 ____D C:\ProgramData\launcher 2013-08-11 14:06 - 2013-08-11 14:06 - 00000000 ____D C:\ProgramData\explauncher 2013-08-11 14:06 - 2013-08-11 14:06 - 00000000 ____D C:\ProgramData\backup 2013-08-11 14:05 - 2013-08-11 14:05 - 00002413 _____ C:\Users\Public\Desktop\Paragon Backup & Recovery™ 2013 Free.lnk 2013-08-11 14:05 - 2013-08-11 14:05 - 00000000 ___DC C:\Program Files (x86)\Paragon Software 2013-08-11 12:32 - 2013-05-16 22:16 - 01590298 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2013-08-10 00:34 - 2013-05-16 22:54 - 00000316 ___RH C:\Windows\ctfile.rfc 2013-08-09 01:24 - 2013-05-16 22:18 - 00000000 ___DC C:\Program Files\TeamSpeak 3 Client 2013-08-08 07:01 - 2013-08-07 17:04 - 00002090 _____ C:\Users\Public\Desktop\MechWarrior Online.lnk 2013-08-07 19:55 - 2009-07-14 07:08 - 00032640 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2013-08-07 19:54 - 2013-05-18 05:46 - 00000000 ____D C:\Users\Ivory\AppData\Local\Unity 2013-08-07 17:08 - 2013-08-07 17:08 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Prism 2013-08-07 17:08 - 2013-08-07 17:08 - 00000000 ____D C:\Users\Ivory\AppData\Local\Prism 2013-08-07 17:06 - 2013-08-07 17:04 - 00000000 ___DC C:\Program Files (x86)\Piranha Games 2013-08-07 16:56 - 2013-08-07 16:56 - 00000201 _____ C:\Users\Ivory\Desktop\Iron Grip Marauders.url 2013-08-07 16:56 - 2013-07-19 01:37 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2013-08-07 03:40 - 2013-08-07 02:57 - 00000000 ____D C:\Users\Ivory\.gimp-2.8 2013-08-07 03:29 - 2013-08-07 03:29 - 00001520 _____ C:\Users\Ivory\AppData\Local\recently-used.xbel 2013-08-07 03:29 - 2013-08-07 03:00 - 00000000 ____D C:\Users\Ivory\AppData\Local\gtk-2.0 2013-08-07 03:00 - 2013-08-07 03:00 - 00000000 ____D C:\Users\Ivory\.thumbnails 2013-08-07 03:00 - 2013-05-16 20:32 - 00000000 ____D C:\Users\Ivory 2013-08-07 02:57 - 2013-08-07 02:57 - 00000000 ___DC C:\Program Files\GIMP 2 2013-08-07 02:57 - 2013-08-07 02:57 - 00000000 ____D C:\Users\Ivory\AppData\Local\gegl-0.2 2013-08-07 00:05 - 2013-06-01 17:17 - 00000000 ___DC C:\Program Files (x86)\Realtek 2013-08-06 23:04 - 2013-07-12 14:10 - 00009489 _____ C:\Windows\LDPINST.LOG 2013-08-06 23:04 - 2013-05-16 20:49 - 00015194 _____ C:\Windows\system32\lvcoinst.log 2013-08-06 23:04 - 2013-05-16 20:49 - 00000000 ___DC C:\Program Files\Common Files\logishrd 2013-08-06 23:03 - 2013-05-17 02:46 - 00001624 _____ C:\Users\Public\Desktop\Logitech Webcam Software .lnk 2013-08-06 22:50 - 2013-08-06 22:50 - 00000627 _____ C:\Users\Public\Desktop\MP4 To MP3 Converter.lnk 2013-08-06 22:50 - 2013-08-06 22:50 - 00000000 ___DC C:\MP4ToMP3Converter 2013-08-06 20:43 - 2013-08-06 20:40 - 00000000 ____D C:\Users\Ivory\Documents\PCMark 7 2013-08-06 20:40 - 2013-08-06 20:40 - 00000000 ____D C:\Users\Ivory\AppData\Local\IsolatedStorage 2013-08-06 20:40 - 2013-08-06 20:40 - 00000000 ____D C:\Users\Ivory\AppData\Local\Futuremark_Corporation 2013-08-06 20:23 - 2013-08-06 20:23 - 00000000 ___DC C:\Program Files (x86)\Futuremark 2013-08-06 20:23 - 2013-06-26 01:22 - 00071138 _____ C:\Windows\DirectX.log 2013-08-06 20:03 - 2013-08-06 20:03 - 00000000 ___DC C:\Program Files (x86)\Geekbench 2.2 2013-08-06 20:03 - 2013-08-06 20:03 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Geekbench 2.2 2013-08-06 00:27 - 2013-05-16 20:46 - 00002183 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2013-08-04 16:54 - 2013-08-04 16:54 - 00000000 ____D C:\Users\Ivory\AppData\Local\Ascaron Entertainment 2013-08-04 15:27 - 2013-08-04 15:27 - 00000000 ____D C:\Users\Ivory\AppData\Local\THQ 2013-08-04 15:13 - 2013-08-04 15:13 - 00000000 ____D C:\Users\Ivory\AppData\Local\Risen2 2013-08-03 18:11 - 2013-08-03 18:11 - 00000201 _____ C:\Users\Ivory\Desktop\Saints Row The Third.url 2013-08-03 18:11 - 2013-08-03 18:11 - 00000201 _____ C:\Users\Ivory\Desktop\Risen 2 - Dark Waters.url 2013-08-03 17:11 - 2013-05-16 20:33 - 00064024 _____ C:\Users\Ivory\AppData\Local\GDIPFONTCACHEV1.DAT 2013-08-03 17:11 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Sidebar 2013-08-03 17:10 - 2009-07-14 06:45 - 00305112 _____ C:\Windows\system32\FNTCACHE.DAT 2013-08-02 19:29 - 2013-08-20 01:00 - 00256088 _____ C:\Windows\system32\unrar64.dll 2013-08-02 19:29 - 2013-05-17 17:23 - 00217176 _____ C:\Windows\SysWOW64\unrar.dll 2013-08-02 12:33 - 2013-08-02 12:33 - 00026451 _____ C:\Users\Ivory\Desktop\Lingen 08_2013.ods 2013-08-02 12:21 - 2013-08-02 12:21 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\OpenOffice 2013-08-02 12:20 - 2013-08-02 12:20 - 00000000 ___DC C:\Program Files (x86)\OpenOffice 4 2013-08-02 12:20 - 2013-05-16 20:34 - 00000000 ___DC C:\Program Files (x86)\OpenOffice.org 3 2013-08-01 20:20 - 2013-08-01 20:13 - 00001075 _____ C:\Users\Ivory\Desktop\Neverwinter.lnk 2013-08-01 20:20 - 2013-08-01 20:13 - 00000000 ____D C:\Users\Public\Games 2013-08-01 20:20 - 2013-05-16 22:47 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2013-08-01 20:07 - 2013-08-01 20:07 - 00000000 ___DC C:\Cryptic Studios 2013-08-01 09:20 - 2013-08-01 09:20 - 00000262 _____ C:\Users\Ivory\Desktop\Bailas Liste.txt 2013-08-01 07:16 - 2013-08-01 07:16 - 00001306 _____ C:\Users\Public\Desktop\Free YouTube Download.lnk 2013-08-01 07:16 - 2013-08-01 07:16 - 00000000 ___DC C:\Program Files (x86)\DVDVideoSoft 2013-08-01 07:16 - 2013-07-01 08:40 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\DVDVideoSoft 2013-07-31 21:44 - 2013-07-31 21:44 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\TuneUp Software 2013-07-31 21:44 - 2013-07-31 21:44 - 00000000 ____D C:\ProgramData\TuneUp Software 2013-07-31 20:59 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF 2013-07-31 07:16 - 2013-05-16 20:33 - 00000000 ___DC C:\Program Files\NVIDIA Corporation 2013-07-31 07:14 - 2013-07-31 07:14 - 00000000 ___DC C:\NvidiaLogging 2013-07-28 02:50 - 2013-05-16 22:54 - 00000000 ___DC C:\Program Files\Creative 2013-07-28 02:49 - 2013-07-09 08:22 - 00466456 _____ (Creative Labs) C:\Windows\system32\wrap_oal.dll 2013-07-28 02:49 - 2013-07-09 08:22 - 00444952 _____ (Creative Labs) C:\Windows\SysWOW64\wrap_oal.dll 2013-07-28 02:49 - 2013-07-09 08:22 - 00122904 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\system32\OpenAL32.dll 2013-07-28 02:49 - 2013-07-09 08:22 - 00109080 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\SysWOW64\OpenAL32.dll 2013-07-28 02:49 - 2013-05-16 22:55 - 00000000 __HDC C:\Program Files (x86)\Creative Installation Information 2013-07-28 02:04 - 2013-07-28 02:03 - 00011279 _____ C:\Users\Ivory\AppData\Local\CleanupUninstall.txt 2013-07-28 02:04 - 2013-07-23 06:37 - 00000000 ____D C:\Users\Ivory\AppData\Local\Razer 2013-07-28 02:04 - 2013-07-23 06:37 - 00000000 ____D C:\ProgramData\Razer 2013-07-28 00:35 - 2013-07-28 00:35 - 00002492 _____ C:\Users\Ivory\Desktop\Creative Konsole Starter.lnk 2013-07-26 23:48 - 2013-07-26 09:08 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\SurDoc 2013-07-26 09:10 - 2013-07-26 09:10 - 00000000 ____D C:\Users\Ivory\Documents\SurDoc Universal Sync 2013-07-26 09:05 - 2013-07-26 09:05 - 00000000 ____D C:\ProgramData\SVG_Client 2013-07-26 08:09 - 2013-07-31 07:15 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6432641.dll 2013-07-26 08:09 - 2013-07-31 07:15 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6432641.dll 2013-07-26 07:13 - 2013-08-15 09:21 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-07-26 07:13 - 2013-08-15 09:21 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-07-26 07:13 - 2013-08-15 09:21 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-07-26 07:12 - 2013-08-15 09:21 - 19239424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-07-26 07:12 - 2013-08-15 09:21 - 15405056 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-07-26 07:12 - 2013-08-15 09:21 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-07-26 07:12 - 2013-08-15 09:21 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-07-26 07:12 - 2013-08-15 09:21 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-07-26 07:12 - 2013-08-15 09:21 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-07-26 07:12 - 2013-08-15 09:21 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-07-26 07:12 - 2013-08-15 09:21 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-07-26 07:12 - 2013-08-15 09:21 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-07-26 07:12 - 2013-08-15 09:21 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-07-26 07:12 - 2013-08-15 09:21 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-07-26 05:35 - 2013-08-15 09:21 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-07-26 05:13 - 2013-08-15 09:21 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-07-26 05:13 - 2013-08-15 09:21 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-07-26 05:12 - 2013-08-15 09:21 - 14329344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-07-26 05:12 - 2013-08-15 09:21 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-07-26 05:12 - 2013-08-15 09:21 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-07-26 05:12 - 2013-08-15 09:21 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-07-26 05:12 - 2013-08-15 09:21 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-07-26 05:12 - 2013-08-15 09:21 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-07-26 05:12 - 2013-08-15 09:21 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-07-26 05:12 - 2013-08-15 09:21 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-07-26 05:12 - 2013-08-15 09:21 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-07-26 05:11 - 2013-08-15 09:21 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-07-26 05:11 - 2013-08-15 09:21 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-07-26 04:49 - 2013-08-15 09:21 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-07-26 04:39 - 2013-08-15 09:21 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-07-26 03:59 - 2013-08-15 09:21 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-07-25 19:06 - 2013-07-25 19:04 - 00000000 ____D C:\ProgramData\DatacardService 2013-07-25 19:05 - 2013-07-25 19:05 - 00001083 _____ C:\Users\Public\Desktop\Mobile Partner.lnk 2013-07-25 19:05 - 2013-07-25 19:05 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_ew_jubusenum_01007.Wdf 2013-07-25 19:05 - 2013-07-25 19:05 - 00000000 ____D C:\ProgramData\Mobile Partner 2013-07-25 19:05 - 2013-07-25 19:04 - 00000000 ___DC C:\Program Files (x86)\Mobile Partner 2013-07-25 19:04 - 2013-07-25 19:05 - 01490656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfCoInstaller01007.dll 2013-07-25 19:04 - 2013-07-25 19:05 - 01001472 _____ (DiBcom SA) C:\Windows\system32\Drivers\mod7700.sys 2013-07-25 19:04 - 2013-07-25 19:05 - 00421376 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbwwan.sys 2013-07-25 19:04 - 2013-07-25 19:05 - 00222464 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbmdm.sys 2013-07-25 19:04 - 2013-07-25 19:05 - 00212992 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_juwwanecm.sys 2013-07-25 19:04 - 2013-07-25 19:05 - 00117248 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_hwusbdev.sys 2013-07-25 19:04 - 2013-07-25 19:05 - 00098816 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jucdcacm.sys 2013-07-25 19:04 - 2013-07-25 19:05 - 00086016 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jubusenum.sys 2013-07-25 19:04 - 2013-07-25 19:05 - 00069632 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jucdcecm.sys 2013-07-25 19:04 - 2013-07-25 19:05 - 00032768 _____ (Huawei Tech. Co., Ltd.) C:\Windows\system32\Drivers\ewdcsc.sys 2013-07-25 19:04 - 2013-07-25 19:05 - 00028672 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_juextctrl.sys 2013-07-25 19:04 - 2013-07-25 19:05 - 00022016 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_hwupgrade.sys 2013-07-25 19:04 - 2013-07-25 19:05 - 00013952 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_usbenumfilter.sys 2013-07-25 19:04 - 2013-06-04 09:15 - 01490656 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01007.dll 2013-07-25 11:25 - 2013-08-14 21:55 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2013-07-25 10:57 - 2013-08-14 21:55 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2013-07-23 06:43 - 2013-07-23 06:43 - 00000000 ____D C:\ProgramData\RzMaelstromVAD_1.1.41.1089 2013-07-22 19:17 - 2013-07-22 19:17 - 00000000 ____D C:\Windows\System32\Tasks\Open Hardware Monitor 2013-07-22 19:13 - 2013-07-22 19:13 - 00000967 _____ C:\Users\Ivory\Desktop\TechPowerUp GPU-Z.lnk 2013-07-22 19:13 - 2013-07-22 19:13 - 00000000 ___DC C:\Program Files (x86)\GPU-Z 2013-07-22 19:13 - 2013-07-22 19:13 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TechPowerUp GPU-Z 2013-07-22 19:11 - 2013-07-22 19:09 - 00000000 ___DC C:\Program Files (x86)\Motherboard Monitor 5 ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-08-13 09:41 ==================== End Of Log ============================ Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 20-08-2013 04 Ran by Ivory at 2013-08-20 20:06:32 Running from C:\Users\Ivory\Downloads Boot Mode: Normal ========================================================== ==================== Installed Programs ======================= Adobe Flash Player 11 ActiveX (x32 Version: 11.8.800.94) Adobe Flash Player 11 Plugin (x32 Version: 11.8.800.94) Adobe Reader XI (11.0.03) - Deutsch (x32 Version: 11.0.03) Akamai NetSession Interface (HKCU) ALF-BanCo 5 (x32 Version: 5.2.0) Allway Sync version 12.15.1 (x32) AMD Catalyst Install Manager (Version: 8.0.911.0) Ashampoo Core Tuner 2 v.2.0.1 (x32 Version: 2.01) Battlefield 3™ (x32 Version: 1.6.0.0) Battlelog Web Plugins (x32 Version: 2.1.7) BSR Screen Recorder 6 (x32) CameraHelperMsi (x32 Version: 13.51.815.0) Creative Audio-Systemsteuerung (x32 Version: 3.00) Creative Software AutoUpdate (x32 Version: 1.40) Creative Sound Blaster Properties x64 Edition (x32) Creative Systeminformationen (x32) D3DX10 (x32 Version: 15.4.2368.0902) DAEMON Tools Ultra (x32 Version: 1.0.0.0068) DH Driver Cleaner Professional Edition (x32 Version: Version 1.5) Driver Genius Professional Edition (x32 Version: 11.0) Druckerdeinstallation für EPSON SX410 Series eaner (Version: 4.04) EPSON Scan (x32) erLT (x32 Version: 1.20.138.34) ESN Sonar (x32 Version: 0.70.4) Etron USB3.0 Host Controller (x32 Version: 0.115) Facebook Video Calling 1.2.0.287 (x32 Version: 1.2.287) Fotogalerie (x32 Version: 16.4.3508.0205) Free Driver Scout (Version: 1.0.0.127) Free Driver Scout (x32 Version: 1.0.0.127) Free YouTube Download version 3.2.9.725 (x32 Version: 3.2.9.725) Futuremark SystemInfo (x32 Version: 4.17.0) Geekbench 2.2 (x32) GIMP 2.8.6 (Version: 2.8.6) Google Chrome (x32 Version: 28.0.1500.95) Google Update Helper (x32 Version: 1.3.21.153) Half-Life Dedicated Server Update Tool (x32) Hawken (HKCU) Heroes & Generals (x32 Version: 1.0.4.6) Host OpenAL (x32 Version: 2.02) Iron Grip: Marauders (x32) Java 7 Update 25 (x32 Version: 7.0.250) Java Auto Updater (x32 Version: 2.1.9.5) JDownloader 0.9 (x32 Version: 0.9) Junk Mail filter update (x32 Version: 16.4.3508.0205) Kaspersky PURE 3.0 (x32 Version: 13.0.2.558) Killing Floor (x32) K-Lite Codec Pack 10.0.0 Basic (x32 Version: 10.0.0) Lautstärkefenster (x32 Version: 2.21) League of Legends (x32 Version: 1.3) Logitech Vid HD (x32 Version: 7.2 (7259)) Logitech Webcam-Software (x32 Version: 2.51) LWS Facebook (x32 Version: 13.50.854.0) LWS Gallery (x32 Version: 13.51.827.0) LWS Help_main (x32 Version: 13.51.828.0) LWS Launcher (x32 Version: 13.51.828.0) LWS Motion Detection (x32 Version: 13.51.815.0) LWS Pictures And Video (x32 Version: 13.51.815.0) LWS Twitter (x32 Version: 13.30.1346.0) LWS Webcam Software (x32 Version: 13.51.815.0) LWS WLM Plugin (x32 Version: 1.30.1201.0) LWS YouTube Plugin (x32 Version: 13.31.1038.0) MechWarrior Online (x32 Version: 1.4.1.0) MeinPlatz Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319) Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319) Microsoft .NET Framework 4 Extended (Version: 4.0.30319) Microsoft .NET Framework 4 Extended DEU Language Pack (Version: 4.0.30319) Microsoft Application Error Reporting (Version: 12.0.6015.5000) Microsoft Chart Controls for Microsoft .NET Framework 3.5 (KB2500170) (x32 Version: 3.5.30730.0) Microsoft High Definition Audio Utility (64-bit) (Version: 3.3.0.0) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.56336) Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (Version: 10.0.40219) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219) Mobile Partner (x32 Version: 21.005.15.00.705) Movie Maker (x32 Version: 16.4.3508.0205) Mozilla Firefox 21.0 (x86 de) (x32 Version: 21.0) Mozilla Maintenance Service (x32 Version: 21.0) MP4 To MP3 Converter V3.0.4 (x32) MSVCRT (x32 Version: 15.4.2862.0708) MSVCRT_amd64 (x32 Version: 15.4.2862.0708) MSVCRT110 (x32 Version: 16.4.1108.0727) MSVCRT110_amd64 (Version: 16.4.1109.0912) MyPhoneExplorer (x32 Version: 1.8.4) Neverwinter (x32) NVIDIA GeForce Experience 1.6 (Version: 1.6) NVIDIA Grafiktreiber 326.80 (Version: 326.80) NVIDIA Install Application (Version: 2.1002.133.889) NVIDIA PhysX (x32 Version: 9.13.0725) NVIDIA PhysX-Systemsoftware 9.13.0725 (Version: 9.13.0725) NVIDIA Systemsteuerung 326.80 (Version: 326.80) NVIDIA Update 7.2.17 (Version: 7.2.17) NVIDIA Update Components (Version: 7.2.17) OpenOffice 4.0.0 (x32 Version: 4.00.9702) Origin (x32 Version: 9.3.1.4482) OUTDATEfighter (x32 Version: 1.1.72) Paragon Backup & Recovery™ 2013 Free (x32 Version: 90.00.0003) Photo Common (x32 Version: 16.4.3508.0205) Photo Gallery (x32 Version: 16.4.3508.0205) Raptr (x32) Realtek Ethernet Controller Driver (x32 Version: 7.73.618.2013) Risen 2 - Dark Waters (x32) Saints Row: The Third (x32) Samsung Magician (x32 Version: 4.2.1) SAMSUNG USB Driver for Mobile Phones (Version: 1.5.24.0) Skype™ 6.7 (x32 Version: 6.7.102) Sound Blaster X-Fi Surround 5.1 (x32 Version: 1.0) SSD Fresh (x32 Version: 2013) SSDlife Pro (x32 Version: 2.3.54) Steam (x32 Version: 1.0.0.0) T4E.Live Player 1.1.4 (x32 Version: 1.1.4) TeamSpeak 3 Client (Version: 3.0.11.1) TeamViewer 8 (x32 Version: 8.0.20202) TechPowerUp GPU-Z (x32) TuneUp Utilities 2013 (x32 Version: 13.0.3020.2) TuneUp Utilities Language Pack (de-DE) (x32 Version: 13.0.3020.2) Unity Web Player (HKCU Version: ) Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1) Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2468871) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2533523) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2600217) (x32 Version: 1) Update for Microsoft .NET Framework 4 Extended (KB2836939) (x32 Version: 1) Viber (HKCU Version: 3.0.0.132799) Warframe (x32 Version: 1.0.0) Winamp (x32 Version: 5.65 ) Winamp Erkennungs-Plug-in (HKCU Version: 1.0.0.1) Windows Live Communications Platform (x32 Version: 16.4.3508.0205) Windows Live Essentials (x32 Version: 16.4.3508.0205) Windows Live ID Sign-in Assistant (Version: 7.250.4311.0) Windows Live Installer (x32 Version: 16.4.3508.0205) Windows Live Mail (x32 Version: 16.4.3508.0205) Windows Live Messenger (x32 Version: 16.4.3508.0205) Windows Live MIME IFilter (Version: 16.4.3508.0205) Windows Live Photo Common (x32 Version: 16.4.3508.0205) Windows Live PIMT Platform (x32 Version: 16.4.3508.0205) Windows Live SOXE (x32 Version: 16.4.3508.0205) Windows Live SOXE Definitions (x32 Version: 16.4.3508.0205) Windows Live UX Platform (x32 Version: 16.4.3508.0205) Windows Live UX Platform Language Pack (x32 Version: 16.4.3508.0205) Windows Live Writer (x32 Version: 16.4.3508.0205) Windows Live Writer Resources (x32 Version: 16.4.3508.0205) WinRAR 4.20 (64-Bit) (Version: 4.20.0) World of Tanks (x32) XnView 2.03 (x32 Version: 2.03) ==================== Restore Points ========================= ==================== Hosts content: ========================== 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {0C8E96C9-571B-412D-9F1B-78F3BA973084} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-07-22] (Piriform Ltd) Task: {12A44517-D7C2-4A3C-92AE-4DF27004186F} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-08-20] (Adobe Systems Incorporated) Task: {6C415463-6A72-4E35-82EB-E8BD2EBE3242} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => C:\Windows\system32\rundll32.exe [2009-07-14] (Microsoft Corporation) Task: {6F059A62-149D-4DCC-B824-CFBF6C2CAFD4} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task Task: {7F9052E5-8584-4712-B056-8A0F0327AD13} - System32\Tasks\Microsoft\Windows Defender\MP Scheduled Scan => c:\program files\windows defender\MpCmdRun.exe [2009-07-14] (Microsoft Corporation) Task: {9704A077-188A-4442-B67A-B37747CC8549} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-05-16] (Google Inc.) Task: {98F4F15D-F09A-4CD3-8D9B-83F7E7B32AA7} - System32\Tasks\Microsoft\Windows\WindowsBackup\Windows Backup Monitor => C:\Windows\system32\sdclt.exe [2010-11-20] (Microsoft Corporation) Task: {AFA8D04E-5113-4066-88A6-5B22DF85E3B3} - System32\Tasks\ProtectedSearch\Protected Search => C:\Program Files (x86)\HomeTab\ProtectedSearch.exe No File Task: {B154F6A1-D6A8-4EDC-A870-81105D2E00E6} - System32\Tasks\Browser Updater\Browser Updater => C:\Windows\system32\rundll32.exe [2009-07-14] (Microsoft Corporation) Task: {CB9FDD68-372E-4238-AD75-DAD6EE53DC2C} - System32\Tasks\FreeDriverScout => C:\Program Files\Covus Freemium\Free Driver Scout\1Click.exe No File Task: {D5ED2779-2A38-4D5D-8877-776CB728FD0D} - System32\Tasks\Open Hardware Monitor\Startup => D:\Chrome Downloads\openhardwaremonitor-v0.5.1-beta\OpenHardwareMonitor\OpenHardwareMonitor.exe [2012-07-26] () Task: {F0FD4262-F757-400B-9A44-7BC8DF0821B1} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-05-16] (Google Inc.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Faulty Device Manager Devices ============= Name: GT-I9300 Description: GT-I9300 Class Guid: {eec5ad98-8080-425f-922a-dabf3de3f69a} Manufacturer: SAMSUNG Electronics Co. Ltd. Service: WUDFRd Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (08/20/2013 08:06:32 PM) (Source: VSS) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Erstellen der Schattenkopieanbieter-COM-Klasse mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. ] ist ein Fehler aufgetreten. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen Schattenkopien abfragen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} Snapshotkontext: 13 Snapshotkontext: 13 Ausführungskontext: Coordinator Error: (08/20/2013 08:06:32 PM) (Source: VSS) (User: ) Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} und dem Namen "SW_PROV" kann nicht gestartet werden. [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. ] Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen Schattenkopien abfragen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} Snapshotkontext: 13 Snapshotkontext: 13 Ausführungskontext: Coordinator Error: (08/20/2013 05:44:12 PM) (Source: System Restore) (User: ) Description: Fehler beim Erstellen des Wiederherstellungspunkts (Prozess = C:\Windows\system32\DrvInst.exe "4" "0" "C:\Users\Ivory\AppData\Local\Temp\{0e1be063-10ce-2a65-d82a-3e7c02a3e82a}\nv_dispi.inf" "9" "662e78e67" "00000000000004FC" "WinSta0\Default" "000000000000064C" "208" "c:\program files\nvidia corporation\installer2\display.driver.{140825b3-55c9-4983-88cc-e6b2b43e3352}"; Beschreibung = Gerätetreiber-Paketinstallation: NVIDIA Grafikkarte; Fehler = 0x80042302). Error: (08/20/2013 05:44:12 PM) (Source: VSS) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "GetProviderMgmtInterface" ist ein unerwarteter Fehler aufgetreten. hr = 0x8004230f, Unerwarteter Fehler beim Schattenkopieanbieter bei dem Versuch, den angegebenen Vorgang zu verarbeiten. . Error: (08/20/2013 05:44:12 PM) (Source: VSS) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Erstellen der Schattenkopieanbieter-COM-Klasse mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. ] ist ein Fehler aufgetreten. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Anbieterverwaltungsschnittstelle wird abgerufen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {00000000-0000-0000-0000-000000000000} Snapshotkontext: -1 Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Error: (08/20/2013 05:44:12 PM) (Source: VSS) (User: ) Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} und dem Namen "SW_PROV" kann nicht gestartet werden. [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. ] Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Anbieterverwaltungsschnittstelle wird abgerufen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {00000000-0000-0000-0000-000000000000} Snapshotkontext: -1 Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Error: (08/20/2013 05:19:27 PM) (Source: System Restore) (User: ) Description: Fehler beim Erstellen des Wiederherstellungspunkts (Prozess = C:\Users\Ivory\AppData\Local\Temp\SETDEDA.tmp -deleter -l0x7 /remove -your_launcherSETUP.EXE -clone_of"C:\Program Files (x86)\InstallShield Installation Information\{BEEFC4F8-2909-48B3-AFAA-55D3533FDEDD}\"; Beschreibung = Entfernt Creative MediaSource 5; Fehler = 0x80042302). Error: (08/20/2013 05:19:27 PM) (Source: VSS) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Aufrufen von Routine "GetProviderMgmtInterface" ist ein unerwarteter Fehler aufgetreten. hr = 0x8004230f, Unerwarteter Fehler beim Schattenkopieanbieter bei dem Versuch, den angegebenen Vorgang zu verarbeiten. . Error: (08/20/2013 05:19:27 PM) (Source: VSS) (User: ) Description: Volumeschattenkopie-Dienstfehler: Beim Erstellen der Schattenkopieanbieter-COM-Klasse mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. ] ist ein Fehler aufgetreten. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Anbieterverwaltungsschnittstelle wird abgerufen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {00000000-0000-0000-0000-000000000000} Snapshotkontext: -1 Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Error: (08/20/2013 05:19:27 PM) (Source: VSS) (User: ) Description: Volumenschattenkopie-Dienst-Informationen: Der COM-Server mit CLSID {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} und dem Namen "SW_PROV" kann nicht gestartet werden. [0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. ] Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Anbieterverwaltungsschnittstelle wird abgerufen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {00000000-0000-0000-0000-000000000000} Snapshotkontext: -1 Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} System errors: ============= Error: (08/20/2013 08:04:36 PM) (Source: WMPNetworkSvc) (User: ) Description: WMPNetworkSvc0x80070422 Error: (08/20/2013 08:04:35 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Heimnetzgruppen-Anbieter" ist vom Dienst "Funktionssuchanbieter-Host" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1058 Error: (08/20/2013 08:04:23 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Mobile Partner. OUC" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (08/20/2013 08:04:23 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Mobile Partner. OUC erreicht. Error: (08/20/2013 07:51:28 PM) (Source: WMPNetworkSvc) (User: ) Description: WMPNetworkSvc0x80070422 Error: (08/20/2013 07:51:28 PM) (Source: WMPNetworkSvc) (User: ) Description: WMPNetworkSvc0x80070422 Error: (08/20/2013 07:51:26 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Heimnetzgruppen-Anbieter" ist vom Dienst "Funktionssuchanbieter-Host" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%1058 Error: (08/20/2013 07:51:12 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "Mobile Partner. OUC" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (08/20/2013 07:51:12 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Mobile Partner. OUC erreicht. Error: (08/20/2013 04:46:06 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "TuneUp Designerweiterung" wurde aufgrund folgenden Fehlers nicht gestartet: %%1083 Microsoft Office Sessions: ========================= Error: (08/20/2013 08:06:32 PM) (Source: VSS)(User: ) Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen Schattenkopien abfragen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} Snapshotkontext: 13 Snapshotkontext: 13 Ausführungskontext: Coordinator Error: (08/20/2013 08:06:32 PM) (Source: VSS)(User: ) Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}SW_PROV0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Schnittstellen für alle Anbieter auflisten, die diesen Kontext unterstützen Schattenkopien abfragen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a} Snapshotkontext: 13 Snapshotkontext: 13 Ausführungskontext: Coordinator Error: (08/20/2013 05:44:12 PM) (Source: System Restore)(User: ) Description: C:\Windows\system32\DrvInst.exe "4" "0" "C:\Users\Ivory\AppData\Local\Temp\{0e1be063-10ce-2a65-d82a-3e7c02a3e82a}\nv_dispi.inf" "9" "662e78e67" "00000000000004FC" "WinSta0\Default" "000000000000064C" "208" "c:\program files\nvidia corporation\installer2\display.driver.{140825b3-55c9-4983-88cc-e6b2b43e3352}"Gerätetreiber-Paketinstallation: NVIDIA Grafikkarte0x80042302 Error: (08/20/2013 05:44:12 PM) (Source: VSS)(User: ) Description: GetProviderMgmtInterface0x8004230f, Unerwarteter Fehler beim Schattenkopieanbieter bei dem Versuch, den angegebenen Vorgang zu verarbeiten. Error: (08/20/2013 05:44:12 PM) (Source: VSS)(User: ) Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Anbieterverwaltungsschnittstelle wird abgerufen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {00000000-0000-0000-0000-000000000000} Snapshotkontext: -1 Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Error: (08/20/2013 05:44:12 PM) (Source: VSS)(User: ) Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}SW_PROV0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Anbieterverwaltungsschnittstelle wird abgerufen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {00000000-0000-0000-0000-000000000000} Snapshotkontext: -1 Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Error: (08/20/2013 05:19:27 PM) (Source: System Restore)(User: ) Description: C:\Users\Ivory\AppData\Local\Temp\SETDEDA.tmp -deleter -l0x7 /remove -your_launcherSETUP.EXE -clone_of"C:\Program Files (x86)\InstallShield Installation Information\{BEEFC4F8-2909-48B3-AFAA-55D3533FDEDD}\"Entfernt Creative MediaSource 50x80042302 Error: (08/20/2013 05:19:27 PM) (Source: VSS)(User: ) Description: GetProviderMgmtInterface0x8004230f, Unerwarteter Fehler beim Schattenkopieanbieter bei dem Versuch, den angegebenen Vorgang zu verarbeiten. Error: (08/20/2013 05:19:27 PM) (Source: VSS)(User: ) Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Anbieterverwaltungsschnittstelle wird abgerufen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {00000000-0000-0000-0000-000000000000} Snapshotkontext: -1 Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Error: (08/20/2013 05:19:27 PM) (Source: VSS)(User: ) Description: {65ee1dba-8ff4-4a58-ac1c-3470ee2f376a}SW_PROV0x80070422, Der angegebene Dienst kann nicht gestartet werden. Er ist deaktiviert oder nicht mit aktivierten Geräten verbunden. Vorgang: Für diesen Anbieter eine aufrufbare Schnittstelle abrufen Anbieterverwaltungsschnittstelle wird abgerufen Kontext: Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} Klassen-ID: {00000000-0000-0000-0000-000000000000} Snapshotkontext: -1 Anbieter-ID: {b5946137-7b9f-4925-af80-51abd60b20d5} CodeIntegrity Errors: =================================== Date: 2013-07-22 19:09:12.833 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\SysWOW64\mbmiodrvr.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-07-22 19:09:12.794 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\SysWOW64\mbmiodrvr.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. ==================== Memory info =========================== Percentage of memory in use: 29% Total physical RAM: 8171.59 MB Available physical RAM: 5789.26 MB Total Pagefile: 10169.77 MB Available Pagefile: 7562.58 MB Total Virtual: 8192 MB Available Virtual: 8191.85 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:111.69 GB) (Free:5.04 GB) NTFS Drive d: () (Fixed) (Total:465.66 GB) (Free:90.28 GB) NTFS Drive e: (KRD10) (CDROM) (Total:0.64 GB) (Free:0 GB) CDFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 112 GB) (Disk ID: 20E7750A) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=112 GB) - (Type=07 NTFS) ======================================================== Disk: 1 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 90A3F265) Partition 1: (Not Active) - (Size=466 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
20.08.2013, 19:21 | #2 |
| C:\Program Files(x86)\HomeTab\TBUpdater.dllFRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 20-08-2013 04 Ran by Ivory (administrator) on 20-08-2013 20:05:57 Running from C:\Users\Ivory\Downloads Windows 7 Ultimate Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (Creative Technology Ltd) C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe () C:\Program Files (x86)\Ashampoo\Ashampoo Core Tuner 2\ACT2Service.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe () C:\Program Files (x86)\Allway Sync\Bin\SyncService.exe (Infowatch) C:\Program Files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe () C:\ProgramData\DatacardService\HWDeviceService64.exe () C:\ProgramData\Mobile Partner\OnlineUpdate\ouc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe () C:\Windows\SysWOW64\PnkBstrA.exe () C:\Windows\SysWOW64\PnkBstrB.exe (Skype Technologies) C:\Program Files (x86)\Skype\Updater\Updater.exe (SPAMfighter ApS) C:\Program Files (x86)\Fighters\FighterSuiteService.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe (Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\ComUpdatus.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\NvTmru.exe (Ashampoo Development GmbH & Co. KG) C:\Program Files (x86)\Ashampoo\Ashampoo Core Tuner 2\ACT2.exe (Akamai Technologies, Inc.) C:\Users\Ivory\AppData\Local\Akamai\netsession_win.exe (Microsoft Corporation) C:\Program Files (x86)\Windows Sidebar\sidebar.exe () C:\Users\Ivory\AppData\Local\Viber\Viber.exe (Valve Corporation) D:\Steam\Steam.exe () C:\Program Files (x86)\Allway Sync\Bin\syncappw.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesApp64.exe (Akamai Technologies, Inc.) C:\Users\Ivory\AppData\Local\Akamai\netsession_win.exe (Samsung Electronics.) C:\Program Files (x86)\Samsung Magician\Samsung Magician.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer.exe (Creative Technology Ltd.) C:\Program Files (x86)\Creative\Shared Files\Module Loader\DLLML.exe (Creative Technology Ltd) C:\Program Files (x86)\Creative\Sound Blaster X-Fi Surround 5.1\Volume Panel\VolPanlu.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe (Raptr, Inc) C:\PROGRA~2\Raptr\raptr.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\tv_w32.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\tv_x64.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Creative Technology Ltd.) C:\Program Files (x86)\Creative\ShareDLL\CADI\NotiMan.exe (Microsoft Corporation) C:\Windows\sysWOW64\wbem\wmiprvse.exe (Raptr, Inc) C:\PROGRA~2\Raptr\raptr_im.exe (Raptr Inc.) C:\Program Files (x86)\Raptr\raptr_ep64.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\sysWOW64\wbem\wmiprvse.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\wmi64.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\klwtblfs.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [Nvtmru] - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1028896 2013-07-27] (NVIDIA Corporation) HKLM\...\Run: [Creative SB Monitoring Utility] - C:\Windows\System32\sbavmon.dll [109056 2009-06-22] (Creative Technology Ltd.) HKLM\...\Run: [Ashampoo Core Tuner 2] - C:\Program Files (x86)\Ashampoo\Ashampoo Core Tuner 2\ACT2.exe [5220768 2011-08-22] (Ashampoo Development GmbH & Co. KG) HKCU\...\Run: [Akamai NetSession Interface] - C:\Users\Ivory\AppData\Local\Akamai\netsession_win.exe [4489472 2013-06-05] (Akamai Technologies, Inc.) HKCU\...\Run: [DAEMON Tools Ultra Agent] - C:\Program Files (x86)\DAEMON Tools Ultra\DTAgent.exe [3088448 2013-03-06] (Disc Soft Ltd) HKCU\...\Run: [Raptr] - C:\PROGRA~2\Raptr\raptrstub.exe [55360 2013-07-18] (Raptr, Inc) HKCU\...\Run: [Viber] - C:\Users\Ivory\AppData\Local\Viber\Viber.exe [906240 2013-05-08] () HKCU\...\Run: [Steam] - D:\Steam\steam.exe [1807272 2013-07-27] (Valve Corporation) HKCU\...\Run: [Allway Sync] - C:\Program Files (x86)\Allway Sync\Bin\syncappw.exe [94416 2013-07-02] () HKCU\...\Run: [FreeDriverScout] - C:\Program Files\Covus Freemium\Free Driver Scout\FreeDriverScout.exe [x] HKCU\...\Run: [DLPRO-5] - C:\Program Files (x86)\Fighters\FighterLauncher.exe [859168 2013-06-05] (SPAMfighter ApS) MountPoints2: F - F:\AutoRun.exe MountPoints2: G - G:\AutoRun.exe MountPoints2: {10698ef0-bedc-11e2-b75e-806e6f6e6963} - E:\CTRun\Start.EXE MountPoints2: {45957bab-f6a1-11e2-a08f-001e101fa1f5} - G:\AutoRun.exe MountPoints2: {622316fc-befe-11e2-a397-bc5ff421ecd9} - G:\setup.exe MountPoints2: {7b2b9e6d-f535-11e2-9d4a-bc5ff421ecd9} - G:\AutoRun.exe MountPoints2: {9f7e87e6-9a23-11e1-8eae-806e6f6e6963} - E:\start.exe HKLM-x32\...\Run: [Module Loader] - C:\Program Files (x86)\Creative\Shared Files\Module Loader\DLLML.exe [57344 2007-07-23] (Creative Technology Ltd.) HKLM-x32\...\Run: [VolPanel] - C:\Program Files (x86)\Creative\Sound Blaster X-Fi Surround 5.1\Volume Panel\VolPanlu.exe [241789 2009-07-07] (Creative Technology Ltd) HKLM-x32\...\Run: [AVP] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe [356968 2012-12-20] (Kaspersky Lab ZAO) HKU\fbwuser\...\Run: [Akamai NetSession Interface] - C:\Users\Ivory\AppData\Local\Akamai\netsession_win.exe [4489472 2013-06-05] (Akamai Technologies, Inc.) HKU\fbwuser\...\Run: [DAEMON Tools Ultra Agent] - C:\Program Files (x86)\DAEMON Tools Ultra\DTAgent.exe [3088448 2013-03-06] (Disc Soft Ltd) HKU\fbwuser\...\Run: [Raptr] - C:\PROGRA~2\Raptr\raptrstub.exe [55360 2013-07-18] (Raptr, Inc) HKU\fbwuser\...\Run: [EPSON SX410 Series] - C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIFCE.EXE /FU "C:\Windows\TEMP\E_SC3BB.tmp" /EF "HKCU" [x] HKU\fbwuser\...\Run: [Viber] - C:\Users\Ivory\AppData\Local\Viber\Viber.exe [906240 2013-05-08] () HKU\fbwuser\...\Run: [CTRegRun] - C:\Windows\CTRegRun.EXE [53248 2006-10-06] (Creative Technology Ltd ) HKU\fbwuser\...\Run: [Steam] - "C:\Program Files (x86)\Steam\Steam.exe" -silent [x] HKU\fbwuser\...\Run: [CreativeTaskScheduler] - C:\Program Files (x86)\Creative\Shared Files\CTSched.exe [53341 2006-11-17] (Creative Technology Ltd) HKU\fbwuser\...\RunOnce: [CTAutoUpdate] - C:\Program Files (x86)\Creative\Shared Files\Software Update\AutoUpdate.exe [623416 2009-06-19] (Creative Technology Ltd) HKU\fbwuser\...\RunOnce: [StartMSu] - "C:\Program Files (x86)\Creative\MediaSource5\Startmsu.exe" /s [x] HKU\fbwuser\...\RunOnce: [InetReg] - "C:\Program Files (x86)\Creative\Produktregistrierung\German\InetReg.exe" /PreProcess=RegFlash.exe /Delay=6 [x] Startup: C:\Users\Ivory\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Samsung Magician.lnk ShortcutTarget: Samsung Magician.lnk -> C:\Program Files (x86)\Samsung Magician\Samsung Magician.exe (Samsung Electronics.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) BHO-x32: Kaspersky Passsword Manager Toolbar - {215BA832-75A3-426E-A4FC-7C5B58CE6A10} - C:\PROGRA~2\Kaspersky Lab\Kaspersky PURE 3.0\Kaspersky Password Manager\spIEBho.dll (Kaspersky Lab) BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.) BHO-x32: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO) Toolbar: HKLM-x32 - No Name - {a25e7121-3dd8-41b3-855b-756c5bc45449} - No File Toolbar: HKLM-x32 - Kaspersky Passsword Manager Toolbar - {215BA832-75A3-426E-A4FC-7C5B58CE6A10} - C:\PROGRA~2\Kaspersky Lab\Kaspersky PURE 3.0\Kaspersky Password Manager\spIEBho.dll (Kaspersky Lab) DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab DPF: HKLM-x32 {D4B68B83-8710-488B-A692-D74B50BA558E} hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab DPF: HKLM-x32 {E705A591-DA3C-4228-B0D5-A356DBA42FBF} hxxp://ccfiles.creative.com/Web/softwareupdate/su2/ocx/20015/CTSUEng.cab DPF: HKLM-x32 {F6ACF75C-C32C-447B-9BEF-46B766368D29} hxxp://ccfiles.creative.com/Web/softwareupdate/ocx/130321/CTPID.cab Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Ivory\AppData\Roaming\Mozilla\Firefox\Profiles\ziw3582p.default FF Homepage: about:home FF NewTab: hxxp://newtab.certified-toolbar.com/nff?si=99&tid=0&st=newtab FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll () FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll () FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll (ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=2.1.4 - C:\Program Files (x86)\Battlelog Web Plugins\2.1.4\npesnlaunch.dll (ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=2.1.7 - C:\Program Files (x86)\Battlelog Web Plugins\2.1.7\npesnlaunch.dll (ESN Social Software AB) FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @live.heroesandgenerals.com/npretox - C:\Program Files (x86)\Heroes & Generals\live\npretoxlive.dll (Reto-Moto ApS) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @nullsoft.com/winampDetector;version=1 - C:\Program Files (x86)\Winamp Detect\npwachk.dll (Nullsoft, Inc.) FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\Ivory\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll No File FF Plugin HKCU: @unity3d.com/UnityPlayer,version=1.0 - C:\Users\Ivory\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS) FF Extension: No Name - C:\Users\Ivory\AppData\Roaming\Mozilla\Extensions\prism@developer.mozilla.org FF Extension: HomeTab - C:\Users\Ivory\AppData\Roaming\Mozilla\Firefox\Profiles\ziw3582p.default\Extensions\{ad7ef860-f366-4be1-8d12-4363b9356947} FF Extension: No Name - C:\Users\Ivory\AppData\Roaming\Mozilla\Firefox\Profiles\ziw3582p.default\Extensions\complitly_0.sqlite FF Extension: Hotspot Shield Helper (Please allow this installation) - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\afurladvisor@anchorfree.com FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} FF HKLM-x32\...\Firefox\Extensions: C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\url_advisor@kaspersky.com FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\url_advisor@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\virtual_keyboard@kaspersky.com FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\virtual_keyboard@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\content_blocker@kaspersky.com FF Extension: Content Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\content_blocker@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [anti_banner@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\anti_banner@kaspersky.com FF Extension: Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\anti_banner@kaspersky.com FF HKLM-x32\...\Firefox\Extensions: [online_banking@kaspersky.com] C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\online_banking@kaspersky.com FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\FFExt\online_banking@kaspersky.com Chrome: ======= CHR HomePage: hxxp://google.de/ CHR Extension: (Docs) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.0.0.6_0 CHR Extension: (Google Drive) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.2_0 CHR Extension: (YouTube) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_0 CHR Extension: (Google Search) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_0 CHR Extension: (Kaspersky URL Advisor) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj\13.0.2.558_0 CHR Extension: (Gmail Offline) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejidjjhkpiempkbhmpbfngldlkglhimk\1.20_0 CHR Extension: (AdBlock) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.6.4_0 CHR Extension: (Safe Money) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\hakdifolhalapjijoafobooafbilfakh\13.0.2.558_0 CHR Extension: (Pocket Legends) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhpdbcnfpodnaefldpdohoibdajcfabp\2.0.0.0_0 CHR Extension: (Knastv\u00F6gel) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\neclhfjbfaefimgjbodbcnjemndkkfpc\3.2.6.2_0 CHR Extension: (Gmail) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0 CHR Extension: (Anti-Banner) - C:\Users\Ivory\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman\13.0.2.558_0 CHR HKLM-x32\...\Chrome\Extension: [bddpogknpjlgfpbboediomaiiaecfajn] - C:\Program Files (x86)\HomeTab\chrome\HomeTab.crx CHR HKLM-x32\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\urladvisor.crx CHR HKLM-x32\...\Chrome\Extension: [hakdifolhalapjijoafobooafbilfakh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\online_banking_chrome.crx CHR HKLM-x32\...\Chrome\Extension: [hghkgaeecgjhjkannahfamoehjmkjail] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\content_blocker_chrome.crx CHR HKLM-x32\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\virtkbd.crx CHR HKLM-x32\...\Chrome\Extension: [pjldcfjmnllhmgjclecdnfampinooman] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\ChromeExt\ab.crx ==================== Services (Whitelisted) ================= R2 ACT2_Service; C:\Program Files (x86)\Ashampoo\Ashampoo Core Tuner 2\ACT2Service.exe [1421216 2011-08-22] () R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe [356968 2012-12-20] (Kaspersky Lab ZAO) R2 BotkindSyncService; C:\Program Files (x86)\Allway Sync\Bin\SyncService.exe [182784 2013-07-02] () R2 CSObjectsSrv; C:\Program Files (x86)\Common Files\InfoWatch\CryptoStorage\ProtectedObjectsSrv.exe [819040 2012-12-21] (Infowatch) S3 Disc Soft Bus Service; C:\Program Files (x86)\DAEMON Tools Ultra\DiscSoftBusService.exe [580672 2013-03-06] (Disc Soft Ltd) R2 HWDeviceService64.exe; C:\ProgramData\DatacardService\HWDeviceService64.exe [346976 2011-03-14] () S2 Mobile Partner. RunOuc; C:\Program Files (x86)\Mobile Partner\UpdateDog\ouc.exe [246112 2013-07-25] () R2 PnkBstrA; C:\Windows\SysWow64\PnkBstrA.exe [76888 2013-07-10] () R2 PnkBstrB; C:\Windows\SysWow64\PnkBstrB.exe [189248 2013-07-10] () R2 Suite Service; C:\Program Files (x86)\Fighters\FighterSuiteService.exe [1281568 2013-06-05] (SPAMfighter ApS) R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe [2402080 2013-01-28] (TuneUp Software) ==================== Drivers (Whitelisted) ==================== R2 ACT2PM; C:\Program Files (x86)\Ashampoo\Ashampoo Core Tuner 2\ACT2ProcessMonitor64.sys [15160 2011-06-10] () R2 ACT2PM; C:\Program Files (x86)\Ashampoo\Ashampoo Core Tuner 2\ACT2ProcessMonitor64.sys [15160 2011-06-10] () R0 CSCrySec; C:\Windows\System32\DRIVERS\CSCrySec.sys [84536 2011-06-02] (Infowatch) R1 CSVirtualDiskDrv; C:\Windows\System32\DRIVERS\CSVirtualDiskDrv.sys [66616 2011-06-02] (Infowatch) R3 dtscsibus; C:\Windows\System32\DRIVERS\dtscsibus.sys [29696 2013-05-18] (Disc Soft Ltd) R1 HssDRV6; C:\Windows\System32\DRIVERS\hssdrv6.sys [46792 2013-06-21] (AnchorFree Inc.) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458584 2012-06-19] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [620128 2013-08-20] (Kaspersky Lab ZAO) R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [28504 2012-08-02] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [29016 2012-09-03] (Kaspersky Lab) R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29528 2012-09-03] (Kaspersky Lab) R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [54368 2013-08-20] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [178448 2013-08-20] (Kaspersky Lab ZAO) R3 ksaud; C:\Windows\System32\drivers\ksaud.sys [1148288 2009-12-15] (Creative Technology Ltd.) S3 RZMAELSTROMVADService; C:\Windows\System32\drivers\RzMaelstromVAD.sys [40696 2013-05-17] (Windows (R) Win 7 DDK provider) R3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2013-06-06] (Anchorfree Inc.) R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesDriver64.sys [11880 2012-11-16] (TuneUp Software) R1 UimBus; C:\Windows\System32\DRIVERS\uimx64.sys [90960 2013-03-15] (Windows (R) 2000 DDK provider) R1 Uim_IM; C:\Windows\System32\Drivers\Uim_IMx64.sys [633680 2013-03-15] (Paragon) R1 Uim_VIM; C:\Windows\System32\Drivers\uim_vimx64.sys [390352 2013-03-15] (Paragon) S3 cpuz135; \??\C:\Users\Ivory\AppData\Local\Temp\cpuz135\cpuz135_x64.sys [x] S3 cpuz136; \??\C:\Windows\TEMP\cpuz136\cpuz136_x64.sys [x] S3 IntcAzAudAddService; system32\drivers\RTKVHD64.sys [x] S3 MBfilt; system32\drivers\MBfilt64.sys [x] S4 nvvad_WaveExtensible; system32\drivers\nvvad64v.sys [x] S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [x] S3 tsusbhub; system32\drivers\tsusbhub.sys [x] S3 VGPU; System32\drivers\rdvgkmd.sys [x] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2013-08-20 19:58 - 2013-08-20 19:58 - 01576208 _____ (Farbar) C:\Users\Ivory\Downloads\FRST64.exe 2013-08-20 19:57 - 2013-08-20 20:03 - 00000000 ___DC C:\AdwCleaner 2013-08-20 19:56 - 2013-08-20 19:57 - 00975858 _____ C:\Users\Ivory\Downloads\adwcleaner.exe 2013-08-20 17:46 - 2013-08-20 17:46 - 00000000 ___DC C:\Program Files (x86)\AGEIA Technologies 2013-08-20 17:43 - 2013-08-18 23:02 - 29337376 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 22101792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 15900936 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 13627696 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 11271968 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2013-08-20 17:43 - 2013-08-18 23:02 - 09281032 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 07720576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 07648000 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 06329552 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 02970400 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 02789152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 02007328 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 02007328 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6432680.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6432680.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 01222824 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 00681760 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 00603424 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 00586016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 00515360 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 00458528 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 00388384 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2013-08-20 17:43 - 2013-08-18 23:02 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2013-08-20 17:41 - 2013-08-20 17:41 - 00000000 ___DC C:\NVIDIA 2013-08-20 16:46 - 2013-01-28 15:19 - 00037664 _____ (TuneUp Software) C:\Windows\system32\uxtuneup.dll 2013-08-20 16:46 - 2013-01-28 15:19 - 00029984 _____ (TuneUp Software) C:\Windows\SysWOW64\uxtuneup.dll 2013-08-20 16:21 - 2013-08-20 16:46 - 00000000 ___DC C:\Program Files (x86)\TuneUp Utilities 2013 2013-08-20 16:21 - 2013-08-20 16:21 - 00002225 _____ C:\Users\Public\Desktop\TuneUp 1-Klick-Wartung.lnk 2013-08-20 16:21 - 2013-08-20 16:21 - 00002207 _____ C:\Users\Public\Desktop\TuneUp Utilities 2013.lnk 2013-08-20 16:21 - 2013-01-28 15:19 - 00035104 _____ (TuneUp Software) C:\Windows\system32\TURegOpt.exe 2013-08-20 16:21 - 2013-01-28 15:19 - 00026400 _____ (TuneUp Software) C:\Windows\system32\authuitu.dll 2013-08-20 16:21 - 2013-01-28 15:19 - 00021792 _____ (TuneUp Software) C:\Windows\SysWOW64\authuitu.dll 2013-08-20 16:18 - 2013-08-20 16:18 - 28181424 _____ (TuneUp Software) C:\Users\Ivory\Downloads\TuneUpUtilities2013_de-DE.exe 2013-08-20 12:45 - 2013-08-20 12:45 - 00002234 _____ C:\Users\Ivory\Desktop\Sicherer Zahlungsverkehr.lnk 2013-08-20 12:43 - 2013-08-20 12:43 - 00001092 _____ C:\Users\Public\Desktop\Kaspersky PURE 3.0.lnk 2013-08-20 12:43 - 2012-07-11 17:09 - 00064856 _____ (Kaspersky Lab) C:\Windows\system32\klfphc.dll 2013-08-20 12:43 - 2011-06-02 14:39 - 00084536 _____ (Infowatch) C:\Windows\system32\Drivers\CSCrySec.sys 2013-08-20 12:43 - 2011-06-02 14:39 - 00066616 _____ (Infowatch) C:\Windows\system32\Drivers\CSVirtualDiskDrv.sys 2013-08-20 12:42 - 2013-08-20 20:05 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2013-08-20 12:42 - 2013-08-20 13:15 - 00620128 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klif.sys 2013-08-20 12:42 - 2013-08-20 13:15 - 00090208 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klflt.sys 2013-08-20 12:42 - 2013-08-20 12:42 - 00000000 ___DC C:\Program Files (x86)\Kaspersky Lab 2013-08-20 12:42 - 2013-08-20 12:42 - 00000000 ____D C:\Windows\ELAMBKUP 2013-08-20 12:35 - 2013-08-20 12:35 - 00000000 __HDC C:\kleaner.tmp 2013-08-20 12:26 - 2013-08-20 12:29 - 188740896 _____ (Kaspersky Lab) C:\Users\Ivory\Downloads\pure13.0.2.558DE_4340.exe 2013-08-20 12:03 - 2013-08-20 12:03 - 00000000 ___DC C:\Program Files (x86)\Samsung Magician 2013-08-20 01:46 - 2009-06-10 23:00 - 00000824 _____ C:\Windows\system32\Drivers\etc\hosts.20130820-014601.backup 2013-08-20 01:45 - 2013-08-20 01:45 - 00000000 ____D C:\Users\Ivory\Documents\Bank 2013-08-20 01:40 - 2009-06-10 23:00 - 00000824 _____ C:\Windows\system32\Drivers\etc\hosts.20130820-014056.backup 2013-08-20 01:36 - 2013-08-20 01:36 - 00000000 ____D C:\Users\Ivory\AppData\Local\ALF_AG 2013-08-20 01:33 - 2013-08-20 01:33 - 00003213 _____ C:\Windows\wininit.ini 2013-08-20 01:09 - 2013-08-20 01:09 - 00000000 ____D C:\Users\Ivory\AppData\Local\Fighters 2013-08-20 01:02 - 2012-08-28 07:27 - 00058536 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\usbfilter.sys 2013-08-20 01:00 - 2013-08-02 19:29 - 00256088 _____ C:\Windows\system32\unrar64.dll 2013-08-20 00:59 - 2013-08-20 00:59 - 00000000 ___DC C:\Program Files (x86)\K-Lite Codec Pack 2013-08-20 00:48 - 2013-08-20 01:34 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2013-08-20 00:47 - 2013-08-20 00:47 - 00001018 _____ C:\Users\Public\Desktop\SSD Fresh.lnk 2013-08-20 00:47 - 2013-08-20 00:47 - 00000000 ___DC C:\Program Files (x86)\SSD Fresh 2013-08-20 00:47 - 2013-08-20 00:47 - 00000000 ____D C:\Users\Ivory\AppData\Local\Abelssoft 2013-08-20 00:46 - 2013-08-20 00:53 - 00002160 _____ C:\Users\Public\Desktop\OUTDATEfighter.lnk 2013-08-20 00:46 - 2013-08-20 00:53 - 00000000 ___DC C:\Program Files (x86)\Fighters 2013-08-20 00:46 - 2013-08-20 00:46 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Fighters 2013-08-20 00:46 - 2013-08-20 00:46 - 00000000 ____D C:\ProgramData\Fighters 2013-08-20 00:45 - 2013-08-20 19:51 - 00003660 _____ C:\Windows\System32\Tasks\FreeDriverScout 2013-08-20 00:45 - 2013-08-20 00:46 - 00000000 ____D C:\ProgramData\FreeDriverScout 2013-08-20 00:45 - 2013-08-20 00:45 - 00000000 ___DC C:\SoloApp 2013-08-20 00:45 - 2013-08-20 00:45 - 00000000 ____D C:\Users\Ivory\Documents\Freemium Driver Utilities 2013-08-20 00:44 - 2013-08-20 00:44 - 00002543 _____ C:\Users\Public\Desktop\Free Driver Scout.lnk 2013-08-20 00:44 - 2013-08-20 00:44 - 00000000 ____D C:\Windows\System32\Tasks\ProtectedSearch 2013-08-20 00:44 - 2013-08-20 00:44 - 00000000 ____D C:\Windows\System32\Tasks\Browser Updater 2013-08-20 00:44 - 2013-08-13 08:38 - 00032328 _____ C:\Windows\Launcher.exe 2013-08-20 00:28 - 2013-08-20 00:28 - 00001209 _____ C:\Users\Public\Desktop\Ashampoo Core Tuner 2.lnk 2013-08-20 00:28 - 2013-08-20 00:28 - 00000000 ___DC C:\Program Files (x86)\Ashampoo 2013-08-20 00:28 - 2013-08-20 00:28 - 00000000 ____D C:\ProgramData\Ashampoo 2013-08-20 00:24 - 2013-08-20 01:45 - 00000000 ____D C:\ProgramData\AlfBanCo5 2013-08-20 00:24 - 2013-08-20 01:40 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\ALFBanCo5 2013-08-20 00:24 - 2013-08-20 00:29 - 00000000 ___DC C:\Program Files (x86)\ALFBanCo5 2013-08-20 00:24 - 2013-08-20 00:24 - 00001023 _____ C:\Users\Public\Desktop\ALF-BanCo 5.lnk 2013-08-20 00:24 - 2009-06-23 12:58 - 00462848 _____ (REINER SCT ) C:\Windows\SysWOW64\rsct_ot.ocx 2013-08-20 00:24 - 2004-06-14 14:04 - 00874248 _____ (Xceed Software Inc (450) 442-2626 support@xceedsoft.com www.xceedsoft.com) C:\Windows\SysWOW64\SmartUI2.ocx 2013-08-20 00:24 - 2002-09-27 17:47 - 00442368 _____ (ComponentOne) C:\Windows\SysWOW64\vsflex7l.ocx 2013-08-20 00:24 - 2001-02-07 15:17 - 01066176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCOMCTL.1 2013-08-20 00:24 - 2000-10-01 23:00 - 00125712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VB6DE.DLL 2013-08-20 00:24 - 2000-05-21 23:00 - 01066176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscomctl.ocx 2013-08-20 00:24 - 2000-05-21 23:00 - 01009336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCHRT20.ocx 2013-08-20 00:24 - 2000-05-21 23:00 - 00140488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.ocx 2013-08-20 00:24 - 1998-07-05 23:00 - 00064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCC2DE.DLL 2013-08-20 00:24 - 1998-07-05 23:00 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CmDlgDE.dll 2013-08-20 00:24 - 1998-07-05 19:00 - 00158208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCMCDE.DLL 2013-08-19 18:26 - 2013-08-19 18:26 - 00433014 _____ C:\Users\Ivory\Downloads\SfBot.zip 2013-08-18 23:30 - 2013-08-18 23:30 - 00000000 ____D C:\Users\Ivory\Desktop\Sexy 2013-08-18 22:27 - 2011-07-21 12:44 - 20237824 _____ C:\Users\Ivory\Desktop\sfBot.exe 2013-08-18 22:27 - 2011-07-21 12:44 - 00000000 ____D C:\Users\Ivory\Desktop\data 2013-08-18 22:27 - 2011-03-21 22:19 - 00000000 ____D C:\Users\Ivory\Desktop\trans 2013-08-18 20:09 - 2013-08-18 22:27 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\SFBot 2013-08-18 20:02 - 2013-08-18 20:03 - 08393419 _____ C:\Users\Ivory\Downloads\SFBot_v2.1.0.zip 2013-08-15 09:21 - 2013-07-26 07:13 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-08-15 09:21 - 2013-07-26 07:13 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-08-15 09:21 - 2013-07-26 07:13 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-08-15 09:21 - 2013-07-26 07:12 - 19239424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-08-15 09:21 - 2013-07-26 07:12 - 15405056 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-08-15 09:21 - 2013-07-26 07:12 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-08-15 09:21 - 2013-07-26 07:12 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-08-15 09:21 - 2013-07-26 07:12 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-08-15 09:21 - 2013-07-26 07:12 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-08-15 09:21 - 2013-07-26 07:12 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-08-15 09:21 - 2013-07-26 07:12 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-08-15 09:21 - 2013-07-26 07:12 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-08-15 09:21 - 2013-07-26 07:12 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-08-15 09:21 - 2013-07-26 07:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-08-15 09:21 - 2013-07-26 05:35 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-08-15 09:21 - 2013-07-26 05:13 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-08-15 09:21 - 2013-07-26 05:13 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-08-15 09:21 - 2013-07-26 05:12 - 14329344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-08-15 09:21 - 2013-07-26 05:12 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-08-15 09:21 - 2013-07-26 05:12 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-08-15 09:21 - 2013-07-26 05:12 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-08-15 09:21 - 2013-07-26 05:12 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-08-15 09:21 - 2013-07-26 05:12 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-08-15 09:21 - 2013-07-26 05:12 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-08-15 09:21 - 2013-07-26 05:12 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-08-15 09:21 - 2013-07-26 05:12 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-08-15 09:21 - 2013-07-26 05:11 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-08-15 09:21 - 2013-07-26 05:11 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-08-15 09:21 - 2013-07-26 04:49 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-08-15 09:21 - 2013-07-26 04:39 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-08-15 09:21 - 2013-07-26 03:59 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-08-15 09:01 - 2013-08-15 09:01 - 00000000 ____D C:\Users\Ivory\Desktop\UpSkirts 2013-08-14 21:55 - 2013-07-25 11:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2013-08-14 21:55 - 2013-07-25 10:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2013-08-14 21:55 - 2013-07-19 03:58 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2013-08-14 21:55 - 2013-07-19 03:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2013-08-14 21:55 - 2013-07-09 08:03 - 05550528 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2013-08-14 21:55 - 2013-07-09 07:54 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2013-08-14 21:55 - 2013-07-09 07:53 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2013-08-14 21:55 - 2013-07-09 07:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2013-08-14 21:55 - 2013-07-09 07:51 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2013-08-14 21:55 - 2013-07-09 07:46 - 01472512 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2013-08-14 21:55 - 2013-07-09 07:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2013-08-14 21:55 - 2013-07-09 07:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2013-08-14 21:55 - 2013-07-09 07:03 - 03968960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2013-08-14 21:55 - 2013-07-09 07:03 - 03913664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2013-08-14 21:55 - 2013-07-09 06:53 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2013-08-14 21:55 - 2013-07-09 06:52 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2013-08-14 21:55 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2013-08-14 21:55 - 2013-07-09 06:52 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2013-08-14 21:55 - 2013-07-09 06:46 - 01166848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2013-08-14 21:55 - 2013-07-09 06:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2013-08-14 21:55 - 2013-07-09 06:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll 2013-08-14 21:55 - 2013-07-09 04:49 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2013-08-14 21:55 - 2013-07-09 04:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2013-08-14 21:55 - 2013-07-09 04:49 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2013-08-14 21:55 - 2013-07-09 04:49 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2013-08-14 21:55 - 2013-07-06 08:03 - 01910208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys 2013-08-14 21:55 - 2013-06-15 06:35 - 01111552 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2013-08-14 21:55 - 2013-06-15 06:32 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 2013-08-14 15:42 - 2013-06-26 13:45 - 27927315 _____ C:\Users\Ivory\Desktop\Mein Film.mp4 2013-08-14 15:42 - 2012-11-23 04:01 - 29599649 _____ C:\Users\Ivory\Desktop\Mein Film 4.mp4 2013-08-14 11:29 - 2013-08-14 11:29 - 00603209 _____ C:\Users\Ivory\Documents\Backup s3 2013-08-14.mpb 2013-08-14 11:28 - 2013-08-14 15:59 - 00000000 ____D C:\Users\Ivory\Documents\S3 Anwendungen 2013-08-14 11:25 - 2013-08-14 11:41 - 00000000 ____D C:\Users\Ivory\Documents\S3 Datein 2013-08-13 07:27 - 2013-08-13 07:28 - 00000000 ____D C:\Users\Ivory\Desktop\Hot Celebs 2013-08-11 18:33 - 2013-08-20 19:53 - 00000000 ___DC C:\Program Files (x86)\Heroes & Generals 2013-08-11 18:33 - 2013-08-11 18:33 - 00001120 _____ C:\Users\Public\Desktop\Heroes & Generals spielen.lnk 2013-08-11 17:56 - 2013-08-11 18:36 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\.quickorder 2013-08-11 14:06 - 2013-08-11 14:06 - 00000000 ____D C:\ProgramData\launcher 2013-08-11 14:06 - 2013-08-11 14:06 - 00000000 ____D C:\ProgramData\explauncher 2013-08-11 14:06 - 2013-08-11 14:06 - 00000000 ____D C:\ProgramData\backup 2013-08-11 14:05 - 2013-08-11 14:05 - 00002413 _____ C:\Users\Public\Desktop\Paragon Backup & Recovery™ 2013 Free.lnk 2013-08-11 14:05 - 2013-08-11 14:05 - 00000000 ___DC C:\Program Files (x86)\Paragon Software 2013-08-11 12:33 - 2013-08-15 09:18 - 00000000 ____D C:\Windows\system32\MRT 2013-08-07 17:08 - 2013-08-07 17:08 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Prism 2013-08-07 17:08 - 2013-08-07 17:08 - 00000000 ____D C:\Users\Ivory\AppData\Local\Prism 2013-08-07 17:04 - 2013-08-20 00:43 - 00000000 ____D C:\ProgramData\Package Cache 2013-08-07 17:04 - 2013-08-08 07:01 - 00002090 _____ C:\Users\Public\Desktop\MechWarrior Online.lnk 2013-08-07 17:04 - 2013-08-07 17:06 - 00000000 ___DC C:\Program Files (x86)\Piranha Games 2013-08-07 16:56 - 2013-08-07 16:56 - 00000201 _____ C:\Users\Ivory\Desktop\Iron Grip Marauders.url 2013-08-07 03:29 - 2013-08-07 03:29 - 00001520 _____ C:\Users\Ivory\AppData\Local\recently-used.xbel 2013-08-07 03:00 - 2013-08-07 03:29 - 00000000 ____D C:\Users\Ivory\AppData\Local\gtk-2.0 2013-08-07 03:00 - 2013-08-07 03:00 - 00000000 ____D C:\Users\Ivory\.thumbnails 2013-08-07 02:57 - 2013-08-07 03:40 - 00000000 ____D C:\Users\Ivory\.gimp-2.8 2013-08-07 02:57 - 2013-08-07 02:57 - 00000000 ___DC C:\Program Files\GIMP 2 2013-08-07 02:57 - 2013-08-07 02:57 - 00000000 ____D C:\Users\Ivory\AppData\Local\gegl-0.2 2013-08-07 02:28 - 2013-08-20 13:25 - 00000000 ___DC C:\Program Files\PC Monitor 2013-08-07 00:05 - 2013-06-18 16:22 - 00872152 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys 2013-08-07 00:05 - 2013-06-18 16:22 - 00074456 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll 2013-08-06 22:50 - 2013-08-06 22:50 - 00000627 _____ C:\Users\Public\Desktop\MP4 To MP3 Converter.lnk 2013-08-06 22:50 - 2013-08-06 22:50 - 00000000 ___DC C:\MP4ToMP3Converter 2013-08-06 20:40 - 2013-08-06 20:43 - 00000000 ____D C:\Users\Ivory\Documents\PCMark 7 2013-08-06 20:40 - 2013-08-06 20:40 - 00000000 ____D C:\Users\Ivory\AppData\Local\IsolatedStorage 2013-08-06 20:40 - 2013-08-06 20:40 - 00000000 ____D C:\Users\Ivory\AppData\Local\Futuremark_Corporation 2013-08-06 20:23 - 2013-08-06 20:23 - 00000000 ___DC C:\Program Files (x86)\Futuremark 2013-08-06 20:03 - 2013-08-06 20:03 - 00000000 ___DC C:\Program Files (x86)\Geekbench 2.2 2013-08-06 20:03 - 2013-08-06 20:03 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Geekbench 2.2 2013-08-06 08:07 - 2013-05-29 23:33 - 231939659 _____ C:\Users\Ivory\Downloads\Crazy Kiya Re - Dhoom 2 (2006) _HD_ 1080p _BluRay_ Music Video(1080p_H.264-AAC).mp4 2013-08-04 16:54 - 2013-08-04 16:54 - 00000000 ____D C:\Users\Ivory\AppData\Local\Ascaron Entertainment 2013-08-04 15:27 - 2013-08-04 15:27 - 00000000 ____D C:\Users\Ivory\AppData\Local\THQ 2013-08-04 15:27 - 2008-07-12 08:18 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2013-08-04 15:27 - 2008-07-12 08:18 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2013-08-04 15:27 - 2008-07-12 08:18 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2013-08-04 15:13 - 2013-08-04 15:13 - 00000000 ____D C:\Users\Ivory\AppData\Local\Risen2 2013-08-03 18:11 - 2013-08-03 18:11 - 00000201 _____ C:\Users\Ivory\Desktop\Saints Row The Third.url 2013-08-03 18:11 - 2013-08-03 18:11 - 00000201 _____ C:\Users\Ivory\Desktop\Risen 2 - Dark Waters.url 2013-08-02 12:33 - 2013-08-02 12:33 - 00026451 _____ C:\Users\Ivory\Desktop\Lingen 08_2013.ods 2013-08-02 12:21 - 2013-08-02 12:21 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\OpenOffice 2013-08-02 12:20 - 2013-08-14 13:23 - 00001513 _____ C:\Users\Public\Desktop\OpenOffice 4.0.0.lnk 2013-08-02 12:20 - 2013-08-02 12:20 - 00000000 ___DC C:\Program Files (x86)\OpenOffice 4 2013-08-01 20:13 - 2013-08-01 20:20 - 00001075 _____ C:\Users\Ivory\Desktop\Neverwinter.lnk 2013-08-01 20:13 - 2013-08-01 20:20 - 00000000 ____D C:\Users\Public\Games 2013-08-01 20:07 - 2013-08-01 20:07 - 00000000 ___DC C:\Cryptic Studios 2013-08-01 19:59 - 2013-08-20 16:25 - 00000000 ___DC C:\Program Files (x86)\Cryptic Studios 2013-08-01 09:20 - 2013-08-01 09:20 - 00000262 _____ C:\Users\Ivory\Desktop\Bailas Liste.txt 2013-08-01 07:16 - 2013-08-01 07:16 - 00001306 _____ C:\Users\Public\Desktop\Free YouTube Download.lnk 2013-08-01 07:16 - 2013-08-01 07:16 - 00000000 ___DC C:\Program Files (x86)\DVDVideoSoft 2013-07-31 21:44 - 2013-07-31 21:44 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\TuneUp Software 2013-07-31 21:44 - 2013-07-31 21:44 - 00000000 ____D C:\ProgramData\TuneUp Software 2013-07-31 21:43 - 2013-08-20 16:53 - 00000000 __SHD C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F} 2013-07-31 21:11 - 2012-05-10 00:11 - 00000291 _____ C:\Windows\onlineeye.INI 2013-07-31 19:16 - 2013-08-20 12:36 - 00000000 ____D C:\ProgramData\Avira 2013-07-31 07:15 - 2013-08-18 23:02 - 15703176 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2013-07-31 07:15 - 2013-07-26 08:09 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6432641.dll 2013-07-31 07:15 - 2013-07-26 08:09 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6432641.dll 2013-07-31 07:14 - 2013-07-31 07:14 - 00000000 ___DC C:\NvidiaLogging 2013-07-28 02:49 - 2009-10-28 11:06 - 02902492 ____N (Creative) C:\Windows\SysWOW64\Sens_oal.dll 2013-07-28 02:45 - 2009-12-15 10:24 - 01148288 _____ (Creative Technology Ltd.) C:\Windows\system32\Drivers\ksaud.sys 2013-07-28 02:45 - 2009-12-07 11:29 - 00232960 _____ (Creative Technology Ltd.) C:\Windows\system32\KSVSPI64.dll 2013-07-28 02:45 - 2009-12-07 11:29 - 00173056 _____ (Creative Technology Ltd.) C:\Windows\SysWOW64\KSVSPI32.dll 2013-07-28 02:45 - 2009-11-19 14:59 - 00028635 _____ C:\Windows\system32\ksaud.ini 2013-07-28 02:45 - 2009-06-22 13:13 - 00109056 _____ (Creative Technology Ltd.) C:\Windows\system32\SBAVMon.dll 2013-07-28 02:45 - 2008-11-06 11:47 - 00008096 _____ C:\Windows\system32\MixerDefault.reg 2013-07-28 02:03 - 2013-07-28 02:04 - 00011279 _____ C:\Users\Ivory\AppData\Local\CleanupUninstall.txt 2013-07-28 00:54 - 2009-12-08 15:52 - 00230912 _____ C:\Windows\system32\APOMgr64.DLL 2013-07-28 00:54 - 2009-12-08 15:50 - 00177664 _____ C:\Windows\SysWOW64\APOMngr.DLL 2013-07-28 00:54 - 2009-11-30 18:54 - 00089088 _____ C:\Windows\system32\CmdRtr64.DLL 2013-07-28 00:54 - 2009-11-30 18:53 - 00073728 _____ C:\Windows\SysWOW64\CmdRtr.DLL 2013-07-28 00:54 - 2009-10-28 11:08 - 01939968 ____N (Creative) C:\Windows\system32\Sens_oal.dll 2013-07-28 00:54 - 2007-07-16 11:36 - 00000029 _____ C:\Windows\system32\ctzapxx.ini 2013-07-28 00:54 - 2007-07-09 04:59 - 00782336 ____R (Creative Labs Inc.) C:\Windows\SysWOW64\tmp6F94.tmp 2013-07-28 00:35 - 2013-07-28 00:35 - 00002492 _____ C:\Users\Ivory\Desktop\Creative Konsole Starter.lnk 2013-07-27 20:28 - 2007-07-09 04:59 - 00782336 ____R (Creative Labs Inc.) C:\Windows\SysWOW64\tmpDE00.tmp 2013-07-27 11:53 - 2013-08-15 08:53 - 00000000 ____D C:\Users\Ivory\Desktop\WhatsApp Images 2013-07-26 09:10 - 2013-07-26 09:10 - 00000000 ____D C:\Users\Ivory\Documents\SurDoc Universal Sync 2013-07-26 09:08 - 2013-07-26 23:48 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\SurDoc 2013-07-26 09:05 - 2013-07-26 09:05 - 00000000 ____D C:\ProgramData\SVG_Client 2013-07-25 19:05 - 2013-07-25 19:05 - 00001083 _____ C:\Users\Public\Desktop\Mobile Partner.lnk 2013-07-25 19:05 - 2013-07-25 19:05 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_ew_jubusenum_01007.Wdf 2013-07-25 19:05 - 2013-07-25 19:05 - 00000000 ____D C:\ProgramData\Mobile Partner 2013-07-25 19:05 - 2013-07-25 19:04 - 01490656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfCoInstaller01007.dll 2013-07-25 19:05 - 2013-07-25 19:04 - 01001472 _____ (DiBcom SA) C:\Windows\system32\Drivers\mod7700.sys 2013-07-25 19:05 - 2013-07-25 19:04 - 00421376 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbwwan.sys 2013-07-25 19:05 - 2013-07-25 19:04 - 00222464 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbmdm.sys 2013-07-25 19:05 - 2013-07-25 19:04 - 00212992 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_juwwanecm.sys 2013-07-25 19:05 - 2013-07-25 19:04 - 00117248 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_hwusbdev.sys 2013-07-25 19:05 - 2013-07-25 19:04 - 00098816 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jucdcacm.sys 2013-07-25 19:05 - 2013-07-25 19:04 - 00086016 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jubusenum.sys 2013-07-25 19:05 - 2013-07-25 19:04 - 00069632 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jucdcecm.sys 2013-07-25 19:05 - 2013-07-25 19:04 - 00032768 _____ (Huawei Tech. Co., Ltd.) C:\Windows\system32\Drivers\ewdcsc.sys 2013-07-25 19:05 - 2013-07-25 19:04 - 00028672 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_juextctrl.sys 2013-07-25 19:05 - 2013-07-25 19:04 - 00022016 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_hwupgrade.sys 2013-07-25 19:05 - 2013-07-25 19:04 - 00013952 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_usbenumfilter.sys 2013-07-25 19:04 - 2013-07-25 19:06 - 00000000 ____D C:\ProgramData\DatacardService 2013-07-25 19:04 - 2013-07-25 19:05 - 00000000 ___DC C:\Program Files (x86)\Mobile Partner 2013-07-23 06:43 - 2013-07-23 06:43 - 00000000 ____D C:\ProgramData\RzMaelstromVAD_1.1.41.1089 2013-07-23 06:37 - 2013-07-28 02:04 - 00000000 ____D C:\Users\Ivory\AppData\Local\Razer 2013-07-23 06:37 - 2013-07-28 02:04 - 00000000 ____D C:\ProgramData\Razer 2013-07-22 19:17 - 2013-07-22 19:17 - 00000000 ____D C:\Windows\System32\Tasks\Open Hardware Monitor 2013-07-22 19:13 - 2013-07-22 19:13 - 00000967 _____ C:\Users\Ivory\Desktop\TechPowerUp GPU-Z.lnk 2013-07-22 19:13 - 2013-07-22 19:13 - 00000000 ___DC C:\Program Files (x86)\GPU-Z 2013-07-22 19:13 - 2013-07-22 19:13 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TechPowerUp GPU-Z 2013-07-22 19:09 - 2013-07-22 19:11 - 00000000 ___DC C:\Program Files (x86)\Motherboard Monitor 5 ==================== One Month Modified Files and Folders ======= 2013-08-20 20:05 - 2013-08-20 12:42 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2013-08-20 20:04 - 2013-06-13 13:36 - 00041370 _____ C:\Windows\setupact.log 2013-08-20 20:04 - 2013-06-12 22:42 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\ViberPC 2013-08-20 20:04 - 2013-06-12 22:42 - 00000000 ____D C:\Users\Ivory\AppData\Local\Viber 2013-08-20 20:04 - 2013-05-18 12:45 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Raptr 2013-08-20 20:04 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2013-08-20 20:03 - 2013-08-20 19:57 - 00000000 ___DC C:\AdwCleaner 2013-08-20 20:03 - 2013-05-16 20:32 - 01976091 _____ C:\Windows\WindowsUpdate.log 2013-08-20 20:02 - 2013-08-20 20:02 - 00000000 ___DC C:\FRST 2013-08-20 19:58 - 2013-08-20 19:58 - 01576208 _____ (Farbar) C:\Users\Ivory\Downloads\FRST64.exe 2013-08-20 19:58 - 2009-07-14 06:45 - 00014336 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2013-08-20 19:58 - 2009-07-14 06:45 - 00014336 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2013-08-20 19:57 - 2013-08-20 19:56 - 00975858 _____ C:\Users\Ivory\Downloads\adwcleaner.exe 2013-08-20 19:53 - 2013-08-11 18:33 - 00000000 ___DC C:\Program Files (x86)\Heroes & Generals 2013-08-20 19:51 - 2013-08-20 00:45 - 00003660 _____ C:\Windows\System32\Tasks\FreeDriverScout 2013-08-20 19:51 - 2013-06-13 20:20 - 01080016 _____ C:\Windows\PFRO.log 2013-08-20 19:51 - 2013-05-16 22:32 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\TS3Client 2013-08-20 19:51 - 2013-05-16 20:45 - 00001108 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2013-08-20 19:51 - 2013-05-16 20:45 - 00001104 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2013-08-20 17:46 - 2013-08-20 17:46 - 00000000 ___DC C:\Program Files (x86)\AGEIA Technologies 2013-08-20 17:46 - 2013-05-16 20:35 - 00000000 ___DC C:\Program Files (x86)\NVIDIA Corporation 2013-08-20 17:46 - 2013-05-16 20:35 - 00000000 ____D C:\ProgramData\NVIDIA 2013-08-20 17:41 - 2013-08-20 17:41 - 00000000 ___DC C:\NVIDIA 2013-08-20 17:24 - 2013-06-18 16:52 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job 2013-08-20 17:20 - 2013-05-16 22:54 - 00000000 ___DC C:\Program Files (x86)\Creative 2013-08-20 17:18 - 2013-05-16 22:57 - 00000000 ____D C:\ProgramData\Creative 2013-08-20 17:15 - 2013-05-16 20:45 - 00004116 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2013-08-20 17:15 - 2013-05-16 20:45 - 00003864 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2013-08-20 16:53 - 2013-07-31 21:43 - 00000000 __SHD C:\ProgramData\{C4ABDBC8-1C81-42C9-BFFC-4A68511E9E4F} 2013-08-20 16:53 - 2013-05-16 22:14 - 00000000 ____D C:\ProgramData\DriverGenius 2013-08-20 16:46 - 2013-08-20 16:21 - 00000000 ___DC C:\Program Files (x86)\TuneUp Utilities 2013 2013-08-20 16:25 - 2013-08-01 19:59 - 00000000 ___DC C:\Program Files (x86)\Cryptic Studios 2013-08-20 16:21 - 2013-08-20 16:21 - 00002225 _____ C:\Users\Public\Desktop\TuneUp 1-Klick-Wartung.lnk 2013-08-20 16:21 - 2013-08-20 16:21 - 00002207 _____ C:\Users\Public\Desktop\TuneUp Utilities 2013.lnk 2013-08-20 16:18 - 2013-08-20 16:18 - 28181424 _____ (TuneUp Software) C:\Users\Ivory\Downloads\TuneUpUtilities2013_de-DE.exe 2013-08-20 13:25 - 2013-08-07 02:28 - 00000000 ___DC C:\Program Files\PC Monitor 2013-08-20 13:18 - 2013-07-16 02:23 - 00002511 _____ C:\Users\Public\Desktop\T4E.Live Player.lnk 2013-08-20 13:18 - 2013-05-18 05:24 - 00002547 _____ C:\Users\Public\Desktop\Skype.lnk 2013-08-20 13:18 - 2013-05-18 05:24 - 00000000 ____D C:\ProgramData\Skype 2013-08-20 13:15 - 2013-08-20 12:42 - 00620128 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klif.sys 2013-08-20 13:15 - 2013-08-20 12:42 - 00090208 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\klflt.sys 2013-08-20 13:15 - 2012-10-18 14:50 - 00054368 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\kltdi.sys 2013-08-20 13:15 - 2012-08-13 16:49 - 00178448 _____ (Kaspersky Lab ZAO) C:\Windows\system32\Drivers\kneps.sys 2013-08-20 12:45 - 2013-08-20 12:45 - 00002234 _____ C:\Users\Ivory\Desktop\Sicherer Zahlungsverkehr.lnk 2013-08-20 12:43 - 2013-08-20 12:43 - 00001092 _____ C:\Users\Public\Desktop\Kaspersky PURE 3.0.lnk 2013-08-20 12:42 - 2013-08-20 12:42 - 00000000 ___DC C:\Program Files (x86)\Kaspersky Lab 2013-08-20 12:42 - 2013-08-20 12:42 - 00000000 ____D C:\Windows\ELAMBKUP 2013-08-20 12:36 - 2013-07-31 19:16 - 00000000 ____D C:\ProgramData\Avira 2013-08-20 12:35 - 2013-08-20 12:35 - 00000000 __HDC C:\kleaner.tmp 2013-08-20 12:31 - 2013-05-16 22:11 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Origin 2013-08-20 12:31 - 2013-05-16 20:52 - 00000000 ____D C:\Users\Ivory\AppData\Local\Origin 2013-08-20 12:30 - 2013-05-16 20:49 - 00000000 ___DC C:\Program Files (x86)\Origin 2013-08-20 12:29 - 2013-08-20 12:26 - 188740896 _____ (Kaspersky Lab) C:\Users\Ivory\Downloads\pure13.0.2.558DE_4340.exe 2013-08-20 12:03 - 2013-08-20 12:03 - 00000000 ___DC C:\Program Files (x86)\Samsung Magician 2013-08-20 12:03 - 2013-06-04 16:45 - 00001123 _____ C:\Users\Public\Desktop\Samsung Magician.lnk 2013-08-20 12:03 - 2013-05-16 20:32 - 00000000 ___RD C:\Users\Ivory\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup 2013-08-20 01:45 - 2013-08-20 01:45 - 00000000 ____D C:\Users\Ivory\Documents\Bank 2013-08-20 01:45 - 2013-08-20 00:24 - 00000000 ____D C:\ProgramData\AlfBanCo5 2013-08-20 01:40 - 2013-08-20 00:24 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\ALFBanCo5 2013-08-20 01:36 - 2013-08-20 01:36 - 00000000 ____D C:\Users\Ivory\AppData\Local\ALF_AG 2013-08-20 01:34 - 2013-08-20 00:48 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2013-08-20 01:33 - 2013-08-20 01:33 - 00003213 _____ C:\Windows\wininit.ini 2013-08-20 01:33 - 2013-06-09 07:52 - 00000000 ___DC C:\Program Files (x86)\Hotspot Shield 2013-08-20 01:33 - 2013-06-09 07:52 - 00000000 ____D C:\ProgramData\Hotspot Shield 2013-08-20 01:10 - 2013-05-17 17:12 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Winamp 2013-08-20 01:09 - 2013-08-20 01:09 - 00000000 ____D C:\Users\Ivory\AppData\Local\Fighters 2013-08-20 01:06 - 2013-05-17 17:12 - 00000000 ___DC C:\Program Files (x86)\Winamp 2013-08-20 01:03 - 2013-05-17 17:12 - 00000983 _____ C:\Users\Public\Desktop\Winamp.lnk 2013-08-20 01:03 - 2013-05-17 17:12 - 00000000 ___DC C:\Program Files (x86)\Winamp Detect 2013-08-20 01:02 - 2013-05-18 05:24 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Skype 2013-08-20 01:01 - 2013-05-18 05:24 - 00000000 __RDC C:\Program Files (x86)\Skype 2013-08-20 01:00 - 2013-05-16 20:50 - 00000000 ____D C:\ProgramData\Origin 2013-08-20 00:59 - 2013-08-20 00:59 - 00000000 ___DC C:\Program Files (x86)\K-Lite Codec Pack 2013-08-20 00:59 - 2013-06-18 16:52 - 00692104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2013-08-20 00:59 - 2013-06-18 16:52 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2013-08-20 00:59 - 2013-06-18 16:52 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2013-08-20 00:53 - 2013-08-20 00:46 - 00002160 _____ C:\Users\Public\Desktop\OUTDATEfighter.lnk 2013-08-20 00:53 - 2013-08-20 00:46 - 00000000 ___DC C:\Program Files (x86)\Fighters 2013-08-20 00:52 - 2013-05-16 20:33 - 00000822 _____ C:\Users\Public\Desktop\CCleaner.lnk 2013-08-20 00:52 - 2013-05-16 20:33 - 00000000 ___DC C:\Program Files\CCleaner 2013-08-20 00:47 - 2013-08-20 00:47 - 00001018 _____ C:\Users\Public\Desktop\SSD Fresh.lnk 2013-08-20 00:47 - 2013-08-20 00:47 - 00000000 ___DC C:\Program Files (x86)\SSD Fresh 2013-08-20 00:47 - 2013-08-20 00:47 - 00000000 ____D C:\Users\Ivory\AppData\Local\Abelssoft 2013-08-20 00:46 - 2013-08-20 00:46 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Fighters 2013-08-20 00:46 - 2013-08-20 00:46 - 00000000 ____D C:\ProgramData\Fighters 2013-08-20 00:46 - 2013-08-20 00:45 - 00000000 ____D C:\ProgramData\FreeDriverScout 2013-08-20 00:46 - 2013-05-17 03:17 - 00000000 ___DC C:\Program Files (x86)\Mozilla Firefox 2013-08-20 00:45 - 2013-08-20 00:45 - 00000000 ___DC C:\SoloApp 2013-08-20 00:45 - 2013-08-20 00:45 - 00000000 ____D C:\Users\Ivory\Documents\Freemium Driver Utilities 2013-08-20 00:44 - 2013-08-20 00:44 - 00002543 _____ C:\Users\Public\Desktop\Free Driver Scout.lnk 2013-08-20 00:44 - 2013-08-20 00:44 - 00000000 ____D C:\Windows\System32\Tasks\ProtectedSearch 2013-08-20 00:44 - 2013-08-20 00:44 - 00000000 ____D C:\Windows\System32\Tasks\Browser Updater 2013-08-20 00:43 - 2013-08-07 17:04 - 00000000 ____D C:\ProgramData\Package Cache 2013-08-20 00:29 - 2013-08-20 00:24 - 00000000 ___DC C:\Program Files (x86)\ALFBanCo5 2013-08-20 00:29 - 2009-07-14 04:34 - 00000479 _____ C:\Windows\win.ini 2013-08-20 00:28 - 2013-08-20 00:28 - 00001209 _____ C:\Users\Public\Desktop\Ashampoo Core Tuner 2.lnk 2013-08-20 00:28 - 2013-08-20 00:28 - 00000000 ___DC C:\Program Files (x86)\Ashampoo 2013-08-20 00:28 - 2013-08-20 00:28 - 00000000 ____D C:\ProgramData\Ashampoo 2013-08-20 00:24 - 2013-08-20 00:24 - 00001023 _____ C:\Users\Public\Desktop\ALF-BanCo 5.lnk 2013-08-19 20:00 - 2013-05-16 20:36 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\MyPhoneExplorer 2013-08-19 18:26 - 2013-08-19 18:26 - 00433014 _____ C:\Users\Ivory\Downloads\SfBot.zip 2013-08-19 14:02 - 2013-05-17 16:40 - 00001090 _____ C:\Users\Public\Desktop\TeamViewer 8.lnk 2013-08-18 23:30 - 2013-08-18 23:30 - 00000000 ____D C:\Users\Ivory\Desktop\Sexy 2013-08-18 23:02 - 2013-08-20 17:43 - 29337376 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 25256224 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 22101792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 15900936 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 13627696 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 11271968 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2013-08-18 23:02 - 2013-08-20 17:43 - 09281032 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 07720576 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 07648000 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 06329552 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 02970400 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 02789152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 02007328 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 02007328 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6432680.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6432680.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 01222824 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 00681760 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 00603424 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 00586016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 00515360 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 00458528 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 00388384 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2013-08-18 23:02 - 2013-08-20 17:43 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2013-08-18 23:02 - 2013-07-31 07:15 - 15703176 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2013-08-18 23:02 - 2013-07-18 16:32 - 00022581 _____ C:\Windows\system32\nvinfo.pb 2013-08-18 23:02 - 2013-05-16 20:35 - 00061216 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2013-08-18 23:02 - 2013-05-16 20:35 - 00053024 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2013-08-18 23:02 - 2013-05-16 20:34 - 12946848 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2013-08-18 23:02 - 2013-05-16 20:34 - 02986672 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2013-08-18 23:02 - 2013-05-16 20:34 - 02630304 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2013-08-18 23:02 - 2013-05-16 20:34 - 01412832 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2013-08-18 22:27 - 2013-08-18 20:09 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\SFBot 2013-08-18 21:34 - 2013-05-16 20:35 - 06599968 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2013-08-18 21:34 - 2013-05-16 20:35 - 03452192 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2013-08-18 21:34 - 2013-05-16 20:35 - 02559776 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2013-08-18 21:34 - 2013-05-16 20:35 - 00920864 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2013-08-18 21:34 - 2013-05-16 20:35 - 00219424 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2013-08-18 21:34 - 2013-05-16 20:35 - 00063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2013-08-18 20:03 - 2013-08-18 20:02 - 08393419 _____ C:\Users\Ivory\Downloads\SFBot_v2.1.0.zip 2013-08-18 19:45 - 2013-05-16 20:33 - 00002772 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC 2013-08-17 07:30 - 2013-05-16 20:35 - 03319709 _____ C:\Windows\system32\nvcoproc.bin 2013-08-15 09:19 - 2009-07-14 19:58 - 00696832 _____ C:\Windows\system32\perfh007.dat 2013-08-15 09:19 - 2009-07-14 19:58 - 00148128 _____ C:\Windows\system32\perfc007.dat 2013-08-15 09:19 - 2009-07-14 07:13 - 01634396 _____ C:\Windows\system32\PerfStringBackup.INI 2013-08-15 09:18 - 2013-08-11 12:33 - 00000000 ____D C:\Windows\system32\MRT 2013-08-15 09:17 - 2013-05-19 06:50 - 78161360 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2013-08-15 09:07 - 2013-06-20 17:28 - 00000090 _____ C:\Users\Ivory\Desktop\pg.log 2013-08-15 09:01 - 2013-08-15 09:01 - 00000000 ____D C:\Users\Ivory\Desktop\UpSkirts 2013-08-15 08:53 - 2013-07-27 11:53 - 00000000 ____D C:\Users\Ivory\Desktop\WhatsApp Images 2013-08-14 15:59 - 2013-08-14 11:28 - 00000000 ____D C:\Users\Ivory\Documents\S3 Anwendungen 2013-08-14 13:23 - 2013-08-02 12:20 - 00001513 _____ C:\Users\Public\Desktop\OpenOffice 4.0.0.lnk 2013-08-14 11:41 - 2013-08-14 11:25 - 00000000 ____D C:\Users\Ivory\Documents\S3 Datein 2013-08-14 11:29 - 2013-08-14 11:29 - 00603209 _____ C:\Users\Ivory\Documents\Backup s3 2013-08-14.mpb 2013-08-13 08:38 - 2013-08-20 00:44 - 00032328 _____ C:\Windows\Launcher.exe 2013-08-13 07:28 - 2013-08-13 07:27 - 00000000 ____D C:\Users\Ivory\Desktop\Hot Celebs 2013-08-11 18:37 - 2013-05-16 20:44 - 00000000 __HDC C:\Program Files (x86)\InstallShield Installation Information 2013-08-11 18:36 - 2013-08-11 17:56 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\.quickorder 2013-08-11 18:33 - 2013-08-11 18:33 - 00001120 _____ C:\Users\Public\Desktop\Heroes & Generals spielen.lnk 2013-08-11 14:06 - 2013-08-11 14:06 - 00000000 ____D C:\ProgramData\launcher 2013-08-11 14:06 - 2013-08-11 14:06 - 00000000 ____D C:\ProgramData\explauncher 2013-08-11 14:06 - 2013-08-11 14:06 - 00000000 ____D C:\ProgramData\backup 2013-08-11 14:05 - 2013-08-11 14:05 - 00002413 _____ C:\Users\Public\Desktop\Paragon Backup & Recovery™ 2013 Free.lnk 2013-08-11 14:05 - 2013-08-11 14:05 - 00000000 ___DC C:\Program Files (x86)\Paragon Software 2013-08-11 12:32 - 2013-05-16 22:16 - 01590298 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2013-08-10 00:34 - 2013-05-16 22:54 - 00000316 ___RH C:\Windows\ctfile.rfc 2013-08-09 01:24 - 2013-05-16 22:18 - 00000000 ___DC C:\Program Files\TeamSpeak 3 Client 2013-08-08 07:01 - 2013-08-07 17:04 - 00002090 _____ C:\Users\Public\Desktop\MechWarrior Online.lnk 2013-08-07 19:55 - 2009-07-14 07:08 - 00032640 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2013-08-07 19:54 - 2013-05-18 05:46 - 00000000 ____D C:\Users\Ivory\AppData\Local\Unity 2013-08-07 17:08 - 2013-08-07 17:08 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Prism 2013-08-07 17:08 - 2013-08-07 17:08 - 00000000 ____D C:\Users\Ivory\AppData\Local\Prism 2013-08-07 17:06 - 2013-08-07 17:04 - 00000000 ___DC C:\Program Files (x86)\Piranha Games 2013-08-07 16:56 - 2013-08-07 16:56 - 00000201 _____ C:\Users\Ivory\Desktop\Iron Grip Marauders.url 2013-08-07 16:56 - 2013-07-19 01:37 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2013-08-07 03:40 - 2013-08-07 02:57 - 00000000 ____D C:\Users\Ivory\.gimp-2.8 2013-08-07 03:29 - 2013-08-07 03:29 - 00001520 _____ C:\Users\Ivory\AppData\Local\recently-used.xbel 2013-08-07 03:29 - 2013-08-07 03:00 - 00000000 ____D C:\Users\Ivory\AppData\Local\gtk-2.0 2013-08-07 03:00 - 2013-08-07 03:00 - 00000000 ____D C:\Users\Ivory\.thumbnails 2013-08-07 03:00 - 2013-05-16 20:32 - 00000000 ____D C:\Users\Ivory 2013-08-07 02:57 - 2013-08-07 02:57 - 00000000 ___DC C:\Program Files\GIMP 2 2013-08-07 02:57 - 2013-08-07 02:57 - 00000000 ____D C:\Users\Ivory\AppData\Local\gegl-0.2 2013-08-07 00:05 - 2013-06-01 17:17 - 00000000 ___DC C:\Program Files (x86)\Realtek 2013-08-06 23:04 - 2013-07-12 14:10 - 00009489 _____ C:\Windows\LDPINST.LOG 2013-08-06 23:04 - 2013-05-16 20:49 - 00015194 _____ C:\Windows\system32\lvcoinst.log 2013-08-06 23:04 - 2013-05-16 20:49 - 00000000 ___DC C:\Program Files\Common Files\logishrd 2013-08-06 23:03 - 2013-05-17 02:46 - 00001624 _____ C:\Users\Public\Desktop\Logitech Webcam Software .lnk 2013-08-06 22:50 - 2013-08-06 22:50 - 00000627 _____ C:\Users\Public\Desktop\MP4 To MP3 Converter.lnk 2013-08-06 22:50 - 2013-08-06 22:50 - 00000000 ___DC C:\MP4ToMP3Converter 2013-08-06 20:43 - 2013-08-06 20:40 - 00000000 ____D C:\Users\Ivory\Documents\PCMark 7 2013-08-06 20:40 - 2013-08-06 20:40 - 00000000 ____D C:\Users\Ivory\AppData\Local\IsolatedStorage 2013-08-06 20:40 - 2013-08-06 20:40 - 00000000 ____D C:\Users\Ivory\AppData\Local\Futuremark_Corporation 2013-08-06 20:23 - 2013-08-06 20:23 - 00000000 ___DC C:\Program Files (x86)\Futuremark 2013-08-06 20:23 - 2013-06-26 01:22 - 00071138 _____ C:\Windows\DirectX.log 2013-08-06 20:03 - 2013-08-06 20:03 - 00000000 ___DC C:\Program Files (x86)\Geekbench 2.2 2013-08-06 20:03 - 2013-08-06 20:03 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Geekbench 2.2 2013-08-06 00:27 - 2013-05-16 20:46 - 00002183 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2013-08-04 16:54 - 2013-08-04 16:54 - 00000000 ____D C:\Users\Ivory\AppData\Local\Ascaron Entertainment 2013-08-04 15:27 - 2013-08-04 15:27 - 00000000 ____D C:\Users\Ivory\AppData\Local\THQ 2013-08-04 15:13 - 2013-08-04 15:13 - 00000000 ____D C:\Users\Ivory\AppData\Local\Risen2 2013-08-03 18:11 - 2013-08-03 18:11 - 00000201 _____ C:\Users\Ivory\Desktop\Saints Row The Third.url 2013-08-03 18:11 - 2013-08-03 18:11 - 00000201 _____ C:\Users\Ivory\Desktop\Risen 2 - Dark Waters.url 2013-08-03 17:11 - 2013-05-16 20:33 - 00064024 _____ C:\Users\Ivory\AppData\Local\GDIPFONTCACHEV1.DAT 2013-08-03 17:11 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Sidebar 2013-08-03 17:10 - 2009-07-14 06:45 - 00305112 _____ C:\Windows\system32\FNTCACHE.DAT 2013-08-02 19:29 - 2013-08-20 01:00 - 00256088 _____ C:\Windows\system32\unrar64.dll 2013-08-02 19:29 - 2013-05-17 17:23 - 00217176 _____ C:\Windows\SysWOW64\unrar.dll 2013-08-02 12:33 - 2013-08-02 12:33 - 00026451 _____ C:\Users\Ivory\Desktop\Lingen 08_2013.ods 2013-08-02 12:21 - 2013-08-02 12:21 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\OpenOffice 2013-08-02 12:20 - 2013-08-02 12:20 - 00000000 ___DC C:\Program Files (x86)\OpenOffice 4 2013-08-02 12:20 - 2013-05-16 20:34 - 00000000 ___DC C:\Program Files (x86)\OpenOffice.org 3 2013-08-01 20:20 - 2013-08-01 20:13 - 00001075 _____ C:\Users\Ivory\Desktop\Neverwinter.lnk 2013-08-01 20:20 - 2013-08-01 20:13 - 00000000 ____D C:\Users\Public\Games 2013-08-01 20:20 - 2013-05-16 22:47 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games 2013-08-01 20:07 - 2013-08-01 20:07 - 00000000 ___DC C:\Cryptic Studios 2013-08-01 09:20 - 2013-08-01 09:20 - 00000262 _____ C:\Users\Ivory\Desktop\Bailas Liste.txt 2013-08-01 07:16 - 2013-08-01 07:16 - 00001306 _____ C:\Users\Public\Desktop\Free YouTube Download.lnk 2013-08-01 07:16 - 2013-08-01 07:16 - 00000000 ___DC C:\Program Files (x86)\DVDVideoSoft 2013-08-01 07:16 - 2013-07-01 08:40 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\DVDVideoSoft 2013-07-31 21:44 - 2013-07-31 21:44 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\TuneUp Software 2013-07-31 21:44 - 2013-07-31 21:44 - 00000000 ____D C:\ProgramData\TuneUp Software 2013-07-31 20:59 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF 2013-07-31 07:16 - 2013-05-16 20:33 - 00000000 ___DC C:\Program Files\NVIDIA Corporation 2013-07-31 07:14 - 2013-07-31 07:14 - 00000000 ___DC C:\NvidiaLogging 2013-07-28 02:50 - 2013-05-16 22:54 - 00000000 ___DC C:\Program Files\Creative 2013-07-28 02:49 - 2013-07-09 08:22 - 00466456 _____ (Creative Labs) C:\Windows\system32\wrap_oal.dll 2013-07-28 02:49 - 2013-07-09 08:22 - 00444952 _____ (Creative Labs) C:\Windows\SysWOW64\wrap_oal.dll 2013-07-28 02:49 - 2013-07-09 08:22 - 00122904 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\system32\OpenAL32.dll 2013-07-28 02:49 - 2013-07-09 08:22 - 00109080 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\SysWOW64\OpenAL32.dll 2013-07-28 02:49 - 2013-05-16 22:55 - 00000000 __HDC C:\Program Files (x86)\Creative Installation Information 2013-07-28 02:04 - 2013-07-28 02:03 - 00011279 _____ C:\Users\Ivory\AppData\Local\CleanupUninstall.txt 2013-07-28 02:04 - 2013-07-23 06:37 - 00000000 ____D C:\Users\Ivory\AppData\Local\Razer 2013-07-28 02:04 - 2013-07-23 06:37 - 00000000 ____D C:\ProgramData\Razer 2013-07-28 00:35 - 2013-07-28 00:35 - 00002492 _____ C:\Users\Ivory\Desktop\Creative Konsole Starter.lnk 2013-07-26 23:48 - 2013-07-26 09:08 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\SurDoc 2013-07-26 09:10 - 2013-07-26 09:10 - 00000000 ____D C:\Users\Ivory\Documents\SurDoc Universal Sync 2013-07-26 09:05 - 2013-07-26 09:05 - 00000000 ____D C:\ProgramData\SVG_Client 2013-07-26 08:09 - 2013-07-31 07:15 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6432641.dll 2013-07-26 08:09 - 2013-07-31 07:15 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6432641.dll 2013-07-26 07:13 - 2013-08-15 09:21 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2013-07-26 07:13 - 2013-08-15 09:21 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2013-07-26 07:13 - 2013-08-15 09:21 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2013-07-26 07:12 - 2013-08-15 09:21 - 19239424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2013-07-26 07:12 - 2013-08-15 09:21 - 15405056 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2013-07-26 07:12 - 2013-08-15 09:21 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2013-07-26 07:12 - 2013-08-15 09:21 - 02647040 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2013-07-26 07:12 - 2013-08-15 09:21 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2013-07-26 07:12 - 2013-08-15 09:21 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2013-07-26 07:12 - 2013-08-15 09:21 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2013-07-26 07:12 - 2013-08-15 09:21 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll 2013-07-26 07:12 - 2013-08-15 09:21 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2013-07-26 07:12 - 2013-08-15 09:21 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2013-07-26 07:12 - 2013-08-15 09:21 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2013-07-26 05:35 - 2013-08-15 09:21 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2013-07-26 05:13 - 2013-08-15 09:21 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2013-07-26 05:13 - 2013-08-15 09:21 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2013-07-26 05:12 - 2013-08-15 09:21 - 14329344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2013-07-26 05:12 - 2013-08-15 09:21 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2013-07-26 05:12 - 2013-08-15 09:21 - 02048512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2013-07-26 05:12 - 2013-08-15 09:21 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2013-07-26 05:12 - 2013-08-15 09:21 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2013-07-26 05:12 - 2013-08-15 09:21 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2013-07-26 05:12 - 2013-08-15 09:21 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll 2013-07-26 05:12 - 2013-08-15 09:21 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2013-07-26 05:12 - 2013-08-15 09:21 - 00039936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2013-07-26 05:11 - 2013-08-15 09:21 - 13761024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2013-07-26 05:11 - 2013-08-15 09:21 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2013-07-26 04:49 - 2013-08-15 09:21 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2013-07-26 04:39 - 2013-08-15 09:21 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe 2013-07-26 03:59 - 2013-08-15 09:21 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe 2013-07-25 19:06 - 2013-07-25 19:04 - 00000000 ____D C:\ProgramData\DatacardService 2013-07-25 19:05 - 2013-07-25 19:05 - 00001083 _____ C:\Users\Public\Desktop\Mobile Partner.lnk 2013-07-25 19:05 - 2013-07-25 19:05 - 00000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_ew_jubusenum_01007.Wdf 2013-07-25 19:05 - 2013-07-25 19:05 - 00000000 ____D C:\ProgramData\Mobile Partner 2013-07-25 19:05 - 2013-07-25 19:04 - 00000000 ___DC C:\Program Files (x86)\Mobile Partner 2013-07-25 19:04 - 2013-07-25 19:05 - 01490656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdfCoInstaller01007.dll 2013-07-25 19:04 - 2013-07-25 19:05 - 01001472 _____ (DiBcom SA) C:\Windows\system32\Drivers\mod7700.sys 2013-07-25 19:04 - 2013-07-25 19:05 - 00421376 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbwwan.sys 2013-07-25 19:04 - 2013-07-25 19:05 - 00222464 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ewusbmdm.sys 2013-07-25 19:04 - 2013-07-25 19:05 - 00212992 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_juwwanecm.sys 2013-07-25 19:04 - 2013-07-25 19:05 - 00117248 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_hwusbdev.sys 2013-07-25 19:04 - 2013-07-25 19:05 - 00098816 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jucdcacm.sys 2013-07-25 19:04 - 2013-07-25 19:05 - 00086016 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jubusenum.sys 2013-07-25 19:04 - 2013-07-25 19:05 - 00069632 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_jucdcecm.sys 2013-07-25 19:04 - 2013-07-25 19:05 - 00032768 _____ (Huawei Tech. Co., Ltd.) C:\Windows\system32\Drivers\ewdcsc.sys 2013-07-25 19:04 - 2013-07-25 19:05 - 00028672 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_juextctrl.sys 2013-07-25 19:04 - 2013-07-25 19:05 - 00022016 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_hwupgrade.sys 2013-07-25 19:04 - 2013-07-25 19:05 - 00013952 _____ (Huawei Technologies Co., Ltd.) C:\Windows\system32\Drivers\ew_usbenumfilter.sys 2013-07-25 19:04 - 2013-06-04 09:15 - 01490656 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01007.dll 2013-07-25 11:25 - 2013-08-14 21:55 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2013-07-25 10:57 - 2013-08-14 21:55 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2013-07-23 06:43 - 2013-07-23 06:43 - 00000000 ____D C:\ProgramData\RzMaelstromVAD_1.1.41.1089 2013-07-22 19:17 - 2013-07-22 19:17 - 00000000 ____D C:\Windows\System32\Tasks\Open Hardware Monitor 2013-07-22 19:13 - 2013-07-22 19:13 - 00000967 _____ C:\Users\Ivory\Desktop\TechPowerUp GPU-Z.lnk 2013-07-22 19:13 - 2013-07-22 19:13 - 00000000 ___DC C:\Program Files (x86)\GPU-Z 2013-07-22 19:13 - 2013-07-22 19:13 - 00000000 ____D C:\Users\Ivory\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TechPowerUp GPU-Z 2013-07-22 19:11 - 2013-07-22 19:09 - 00000000 ___DC C:\Program Files (x86)\Motherboard Monitor 5 ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-08-13 09:41 ==================== End Of Log ============================ |
20.08.2013, 20:56 | #3 |
/// Malwareteam / Visitor | C:\Program Files(x86)\HomeTab\TBUpdater.dll Eine moment bitte
__________________ |
20.08.2013, 21:07 | #4 |
/// Malwareteam / Visitor | C:\Program Files(x86)\HomeTab\TBUpdater.dll Bitte lade dir Zoek.exe von hier: http://hijackthis.nl/smeenk/
Geändert von smeenk (20.08.2013 um 21:22 Uhr) |
22.08.2013, 10:53 | #5 |
| C:\Program Files(x86)\HomeTab\TBUpdater.dll habe aus einem anderen threat das auch gemacht dort gab es aber mehr programme, nach dem ich die dann alle gemacht habe war der fehler weg, welches programm das nun letztendlich war kann ich nicht sagen habe aber die logfiles noch wenn du diese brauchst oder haben willst für andere leute damit es schneller geht. |
Themen zu C:\Program Files(x86)\HomeTab\TBUpdater.dll |
0x8007042, adblock, akamai, browser, defender, desktop, ebanking, error, failed, farbar, farbar recovery scan tool, fehler, flash player, freemium, google, home, homepage, hometab\tbupdater.dll, hotspot, installation, kaspersky, mozilla, mp3, newtab, plug-in, prozess, realtek, registry, rundll, scan, services.exe, software, svchost.exe, system, teamspeak, unerwarteter fehler, whatsapp |